- Configuring a new Cylance Endpoint Security tenant
- Cylance Endpoint Security requirements
- Requirements: Cylance console
- Requirements: CylancePROTECT Desktop
- Requirements: CylanceOPTICS
- Requirements: CylancePROTECT Mobile app
- Requirements: BlackBerry Connectivity Node
- Requirements: CylanceGATEWAY Connector
- Requirements: CylanceGATEWAY agents
- Requirements: CylanceAVERT
- Cylance Endpoint Security network requirements
- Cylance Endpoint Security proxy requirements
- Accessing the management console and configuring authentication
- Setting up administrators
- Setting up zones to manage CylancePROTECT Desktop and CylanceOPTICS
- Setting up CylancePROTECT Desktop
- Testing your CylancePROTECT Desktop deployment
- Create and manage a device policy
- Installing the CylancePROTECT Desktop agent for Windows
- Installing the CylancePROTECT Desktop agent for macOS
- Installing the CylancePROTECT Desktop agent for Linux
- Require users to provide a password to remove the CylancePROTECT Desktop and CylanceOPTICS agents
- Setting up CylanceOPTICS
- Managing updates for the CylancePROTECT Desktop and CylanceOPTICS agents
- Best practices for deploying CylancePROTECT Desktop on Windows virtual machines
- Using RMM solutions to install the Cylance agents on devices
- Installing the BlackBerry Connectivity Node
- Linking to your company directory
- Adding users and devices
- Setting up CylancePROTECT Mobile
- Setting up CylanceGATEWAY
- Defining your private network
- Setting up the CylanceGATEWAY Connector
- Install the CylanceGATEWAY Connector to a vSphere environment
- Install the CylanceGATEWAY Connector to an ESXi environment
- Prerequisites to install CylanceGATEWAY Connector to a Microsoft Entra ID environment
- Install the CylanceGATEWAY Connector to a Microsoft Entra ID environment
- Install the CylanceGATEWAY Connector to a Hyper-V environment
- Install the CylanceGATEWAY Connector to an AWS environment
- Configure the CylanceGATEWAY Connector in the VM environment
- Access the CylanceGATEWAY Connector using OpenSSH
- Configure your firewall for the CylanceGATEWAY Connector
- Enroll the CylanceGATEWAY Connector with the BlackBerry Infrastructure
- View details for an enrolled CylanceGATEWAY Connector
- Configure the CylanceGATEWAY Connector
- Managing CylanceGATEWAY Connectors
- Manage CylanceGATEWAY Connectors
- Update a CylanceGATEWAY Connector
- UDP connectivity test responses
- Specify your private network
- Specify your private DNS
- Specify your DNS suffixes
- Specify private CylanceGATEWAY agent IP ranges
- Bring your own IP addresses (BYOIP)
- Setting up the CylanceGATEWAY Connector
- Network Address Translation with CylanceGATEWAY
- Define network services
- Controlling network access
- Configuring network protection
- Searching ACL rules and Network Services
- Using source IP pinning
- Configuring the Gateway service options
- Gateway Service policy parameters
- Configure Gateway service options
- Specifying how devices activated with an EMM solution use the CylanceGATEWAY tunnel
- Specify which apps use CylanceGATEWAY on iOS devices
- Specify which apps use CylanceGATEWAY on iOS devices in a Microsoft Intune environment
- Specify CylanceGATEWAY options on Android Enterprise devices
- Specify CylanceGATEWAY options on Chromebook devices
- Specify CylanceGATEWAY options on Android Enterprise devices in your Microsoft Intune environment
- Connecting Cylance Endpoint Security to MDM solutions to verify whether devices are managed
- Installing the CylanceGATEWAY agent
- Defining your private network
- Enrolling CylancePROTECT Mobile and CylanceGATEWAY users
- Setting up CylanceAVERT
- Connecting Cylance Endpoint Security to external services
- BlackBerry Docs
- Cylance Endpoint Security
- Cylance Endpoint Security
- Cylance Endpoint Security Setup Guide
- Setting up CylancePROTECT Desktop
- Create and manage a device policy
Create and manage a device policy
You create and assign device policies to control the features of the
CylancePROTECT Desktop
and CylanceOPTICS
agents, and to configure how you want the agents to detect and respond to threats.
Execution control is enabled by default in all device policies, allowing the
CylancePROTECT Desktop
agent to alert the management console when unsafe or abnormal files attempt to run. After the CylancePROTECT Desktop
agent is installed, it analyzes all running processes and modules to determine whether there are threats that are already active.You can create and assign different device policies to meet the needs of various groups within your organization. Each device is assigned to one device policy. The default policy is assigned to a device if no other policy is assigned.
- In the management console, on the menu bar, clickPolicies > Device Policy.
- Do any of the following:TaskStepsCreate a new device policy.
- ClickAdd Policy.
- On theGeneral Infotab, specify a name for the policy.
- Configure the settings for the device policy (see the device policy settings links below).
- ClickSave.
Edit a device policy.- Click the name of the device policy that you want to edit.
- Configure the settings for the device policy (see the device policy settings links below).
- ClickSave.
Copy a device policy.- Click the name of the device policy that you want to copy.
- Click
.
- On theGeneral Infotab, specify a name for the copied policy.
- Configure the settings for the device policy (see the device policy settings links below).
- ClickSave.
Configure device policy settings.For more information about the available settings, see the following:For more information about enabling and configuringCylanceOPTICSusing theCylanceOPTICSSettings tab, see Enable and configure CylanceOPTICS.Automatically assign a device policy to devices in a zone.You can associate a device policy with a zone so that when devices are added to that zone, they are automatically assigned that device policy. For more information, see Add and configure a zone.Manually assign a device policy to a device- In the management console, on the menu bar, clickAssets > Devices.
- Select the devices that you want to assign a device policy to.
- ClickAssign Policy
- Select the device policy that you want to assign.
- ClickSave