-
dl.delivery.mp.microsoft.com cache site marked as harmfull
Microsoft seems to have outsourced their updates distribution and this gets blocked. How do I allow this traffic as it's a IP address that's changing? WithSecure Elements Endpoint Protection har nya identifieringar: Tid|Konto|Värd|Infektion|Åtgärd|Typ|Infekterat objekt|Infekterat objekt SHA1 fre, 10 maj 2024 19:58:48…
-
Device Control not blocking exe files ?
Good day, I am trying out the device control feature and have disallowed launching exe files from USB sticks (rest of settings remain unchanged so far). Profile with respective settings is assigned to the device and profile assignment state is up-to-date. Still able to launch exe files from the USB stick. The stick was…
-
Accessibility Issue: Unable to Access Target from "Security Events" Tab
Bonjour, Quand je suis dans l'onglet "Événements de sécurité" et que je clique sur la cible pour pouvoir l'ouvrir, je n'arrive pas à accéder à la cible. J'arrive à accéder aux paramètres de la cible depuis l'onglet "Appareils". Est-ce normal ou s'agit-il d'un problème de l'interface ?
-
Feature Request / Profiles in API
Hi, Has an IT partner, we manage a lot of companies, and configuration profile management has been delegated to IT Technicians in charge of these companies. We were looking for a tool allowing us to compare all configuration profiles from all these companies to a specific main profile. It looks like the API does not…
-
EPP Summary Report
Good Day I had previously raised this issue and still await feedback to resolve this issue. I require the following report for distribution as part of the Monthly Report Pack sent to clients. How do draw the report ?
-
how to unblock chatgpt
At our company we use the web content control to block the chat category. However now we want to make an exception for chatgpt. I tried adding "chatgpt.com" to our list of allowed sites but this does not seem to work. Is there a way to make an exception for chatgpt instead of opening up the whole chat category for our…
-
API not working
Helou! I have created a .PS1 script that removes a workstation from WithSecure. However, my script is not working. Could someone tell me what is wrong with my code? I am getting an “Authentication Failed” error. What is the purpose of the Client ID and Secret? Should they be used here as well? # Vastuuhenkilö Julle…
-
Capteur EDR
Bonjour à toutes et tous ! Je rencontre un problème avec le capteur EDR suite à des mises à jour de Windows 11. J'ai le message suivant : " L'état du capteur est temporairement indisponible " J'ai désinstallé et réinstalle l'agent WithSecure mais le problème reste le même. Avez-vous déjà rencontré ce problème ? Merci
-
Seeking Feedback on Replacement for Old EPP Summary Report
We wanted to reach out to you regarding an important update regarding our reporting system. After careful consideration, we have decided to retire the old EPP summary report, recognizing its declining usage and limited information. In its place, we aim to introduce a new, customizable report providing a comprehensive…
-
Can do something to withsecure agent currently works on windows 7 computers
I understand that Windows 7 is no longer support, but even without updates the agent should work and be able to stay active with the virus database… like a basic protection? I have several computers with Windows 7 professional that i can't renew, since the minimum patch level of 29.2.2024 update that mandates ACS was…
-
About the reports in Withsecure
Good day, I have a question about the reports. It seems that some layout looks off. When i wanna change it too Pie it then looks a bit better. In the screenshot like this one below. Looks off with its bar. Is this something that will be fixed in the future? Kind regards, Roy
-
Upcoming major Capricorn update for Endpoint Protection
We plan to release a major Capricorn database update on September 24th, 2024. This will be delivered to Elements Endpoint Protection installations on Windows, Mac and Linux automatically. Read the full article here:
-
Change product key macOS terminal
Hi, We've installed WithSecure™ Elements Agent for Computers on multiple iMac computers, but because of an error in the activating of new license, we didn't have the opportunity to add the license key. Is there a possibility to apply the license throught MacOS Terminal? We can access the terminal of the iMac with Remote…
-
Elements Connector folder location
Is it at all possible to move the default connector "cache" folders for software updates to a different drive? I have tried looking for config files or registry entries relating to this but found none. I would like the connector "cache" folders to reside on the D:.
-
WithSecure vulnerability scan results csv export
If memory serves me correctly. There was a feature from the Elements console that allowed one to export a csv/xls file that listed all network scanned devices (Vulnerability assets), their accessable services and vulnerabilities. I just can't seem to get that option any ware. Anyone want to enlighten me? Regards, Ernest
-
Attack Surface reduction rules
Hi, We use withsecure as our primary AV and MDE as secondary AV, and was wondering if it is possible to configure MDE recommended ASR rules using withsecure. Examples of these rules include: Block JavaScript or VBScript from launching downloaded executable content Block Adobe Reader from creating child processes Block all…
-
Upgrade PM from 15.30 to 16.02
Hello everybody, Is there any administrative guide could help me to upgrade the PM suite ? In the previous upgrade I did not uninstall old version, but there was the same path. Someone help me please ? Thanks
-
Time Zone Setting
Please clarify the difference between the 2 timezone setting in the withsecure portal (GMT+ 08:00) Asia/Singapore (GMT+00:00 GMT) What is the time display in the audit log report if the time setting is defined as per option 1 & 2 Note. The timezone setting of my workstation is defined as UTC+8:00 Kuala Lumpur, Singapore,
-
Important Reminder: ALL Protection for F-Secure branded B2B products ends completely on 31/12/2024
If you are using an F-Secure branded B2B product, please read this article. It contains information you need to ensure protection and functionality continues in 2025. See the article here:
-
EVM Authenticate scan with SNMPv3
Hi, I have tried SNMPv3 authenticate scan in Elements Vulnerability Management. I works great with FortiGate but I have tried with other kind of network devices and it's not working. Based on the information found in the scan logs, it seems that SNMPv3 authenticate scan only support Fortigate, Cisco and Paloalto. It's…
-
Deep Guard issue (Rcpp-package)
We are dealing with a virus alert on several laptops of researchers within our team. However, I wonder if we might be facing a false positive. The alert from WithSecure indicates a possible infection via files related to the R program, specifically embedded in a PDF file. What we know so far: Computers were potentially…
-
Luminen skills for all Elements users
After 3 months of positive feedback from our Luminen Early Access program, which brought AI-powered reporting and analytics to both Broad Context Detections and Security Awareness, we are now taking the first steps on enabling this level of functionality for more of our users. What is crucial, Luminen will be automatically…
-
Upcoming changes to Navigation in Elements Security Center
Earlier, we started re-vamping the navigation in Elements Security Center, to make the navigation less product-centric, and more about the capabilities of Elements. We will soon be making the next set of changes, which will bring Elements Vulnerability Management (EVM) capabilities to the new navigation. For those…
-
Multi-Factor Authentication (MFA) Mandatory for WithSecure Accounts
Multi-Factor Authentication (MFA) has been mandatory for Elements accounts in Europe and the Americas since May 2024. As of August 1, 2024, users in Asia are also covered by this policy. This requirement will now extend to all remaining WithSecure Business Accounts, including access to: Partner Portal WithSecure Community…
-
With Secure Endpoint Protection Summary Report
Good day The With Secure Endpoint Protection Summary Report forms part of the monthly report pack submitted to our clients. The report is core to the report pack. Please urgently advise how we obtain the report. Regards Quinton Rosen IT Manager
-
Multi Factor Authentication is now mandatory in Elements
As of August 1st, Multi-Factor Authentication (MFA) is mandatory for all Elements users. Users who have not set up an MFA method will be required to do so upon their next login.
-
Client and Server Security does not connect to Policy Manager
Hello Everyone, i updated my Policy Manager from v15.30 to v16. After the update was done i loaded the installation files for Client and Server Security into the Policy Manager. I exported them as MSI with the corresponding Tree-Information per Client and installed them manually on the Machines. However, the servers and PC…
-
API-Request | List all installed Software on Device
In the near future, will there be an API endpoint to list all installed software on a device?
-
Reporting on Missing Patches
Hi, I see that there are report enhancements being worked on. This is great. However, the most important information about patching is a listing of machines/patches that ARE NOT deployed. This appears to be the only information I can't get on a report wrt patching. Does anyone know if this feature is coming? The rest of…
-
EDR Reporting
Hello, I'm looking to see if Annual EDR reports are available. some customers ask us if it is possible to create a PDF annual report of BCDs and actions taken by EDR. I found the monthly report but no annual report. Are there plans to add it later? Regards,