Application Control Policy [EPS-LAN]

Application Control is a powerful feature in Endpoint Security (EPS) – Admin Console that enables administrators to control which applications can run on endpoint devices.

Its primary purpose is to improve organizational productivity by blocking unauthorized or unnecessary applications while allowing only approved applications to run.

With Application Control, administrators can:

  • View applications running on client PCs connected to the network.
  • Block or allow specific applications.
  • Create different application control policies for different departments.
  • Manage application control remotely without visiting client PCs.
  • Administer application control through the web console or the local Endpoint Security Server.

How to Configure Application Control

Follow the steps below to implement Application Control in your organization.

Step 1: Open the Application Policy

  1. Log in to the Endpoint Security Dashboard.
  2. Navigate to the Application Policy tab.
  3. Select the required policy.

Step 2: Import the Launch Process Report

To import the list of applications running on client systems:

  1. Go to Policy Management.
  2. Select the required policy.
  3. Click Report.
  4. Enable the App Control Info checkbox.
  5. Select ON from the drop-down list.
  6. Click Update Policy.

Note:

  • If you do not want to include operating system processes, select the Ignore OS File checkbox.
  • After the policy is updated, the client’s launched processes will be imported and displayed in the Report tab.

Step 3: Block Specific Applications

To block selected applications:

  1. Go to Application Policy.
  2. Select Allow All Except Block List mode.
  3. Select the required policy.
  4. Search for the application in the report.
  5. Select the application’s checkbox.
  6. Enter the reason for blocking the application.
  7. Click Block Apps.
  8. Click Apply Policy.

Step 4: View Blocked Applications

After applying the policy, the blocked applications will appear under the Blocked Apps tab.

Step 5: Unblock an Application

To remove an application from the blocked list:

  1. Open the Blocked Apps tab.
  2. Select the application you want to unblock.
  3. Enter the reason for unblocking the application.
  4. Click Unblock Apps.
  5. Click Apply Policy.

Step 6: Block Applications Using a Pattern

This feature allows you to block multiple applications that share common attributes.

To create a blocking pattern:

  1. Go to Application Policy.
  2. Select the required policy.
  3. Open the Blocked Pattern tab.
  4. Click Add Pattern.
  5. Enter one or more of the following details:
    • Process Path
    • Company Name
    • Internal Name
    • Product Name
    • Description
  6. Save the pattern.
  7. Click Apply Policy.

Applications matching the specified pattern will be blocked automatically.

Step 7: Block Applications by Category (Allow All Except Block List Mode)

To allow all applications except those belonging to selected categories:

  1. Select Allow All Except Block List mode.
  2. Click Block App Category List.
  3. Select the application categories that you want to block.
  4. Click Apply Policy.

Exclude Applications (Optional):

If you want to allow a specific application from a blocked category:

  1. Add the application to the Exclude List.
  2. Click Apply Policy.

Note:
The Exclude List allows specific applications to run even if their category is blocked. In other words, all applications in the selected category will be blocked except the applications added to the Exclude List.

Step 8: Allow Only Approved Applications

To allow only approved applications:

  1. Select Block All Except Allow List mode.

In this mode:

  • All applications are blocked by default.
  • Only operating system processes and Net Protector Endpoint Security components are allowed.
  • Administrators can add additional approved applications to the Whitelist.

Users can whitelist multiple applications by importing a CSV or text file.

Step 9: Create and Import a Global Application Whitelist

To allow a predefined set of trusted applications:

  1. Create a Global Application Whitelist using whiteappdbc.exe.
  2. Generate the AppWListDB.csv file.
  3. Import the AppWListDB.csv file into Endpoint Security.

All applications included in the whitelist will be allowed for the selected Organization.

Step 10: Allow Applications by Category (Block All Except Allow List Mode)

To block all applications while allowing only selected application categories:

  1. Select Block All Except Allow List mode.
  2. Click Allow App Category List.
  3. Select the application categories that you want to allow.
  4. Click Apply Policy.

Step 11: View the Application Blocking Report

To view blocked application reports:

  1. Go to the Report tab.
  2. Select App Blocked Report.
  3. Select the required client IP address to view the report.

Blocked Types

SFLDMBlock All Except Allow List mode
PatternApplication blocked using a configured blocking pattern
CategoryBlocked Category