Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Bitdefender GravityZone Whitelisting allows system administrators to create a whitelist of trusted applications based on their digital signatures, file paths, or other attributes. These trusted applications are considered safe and are allowed to run without any restrictions or additional security checks.

The primary executables of CyberCNS which can be whitelisted are as below:

​cybercnsagent.exe
cyberutilities.exe
nmap.exe
osqueryi.exe
cybercnsagentmonitor.exe 

For remote assets getting scanned via Probe Agent:

  • Whitelist the below executable path of the dissolvable agent into a remote asset  "C:\windows\CyberCNS_DissolvableAgent" 

  • To whitelist the folder on the remote asset, use the installation folder path i.e “C:\Windows\CyberCNSAgent”

Please follow the below steps to whitelist the CyberCNS Folder from Exclusion.

...

C:\Test– excludes all files and folders under the Test folder

Info
  • For network vulnerabilities detection using a probe agent, nmap is used from the location (A program has been allowed to connect to the Internet. Process path C:\PROGRA~2\CyberCNS AgentV2\nmap\nmap.exe.Protocol UDP(17).port53 ) 

  • Please allow port scanning from probe agent to help determine vulnerabilities.

Steps to be followed In the Bit

...

Defender

  • In the Bit defenderDefender, Navigate to -> Policies → Click on Add

...

  • Enable In-policy exclusions and then select Type as Folder and give the path as "C:\Program Files (x86)\CyberCNSAgentV2” and then click on Save.

...

  • Confirm the configured Policy is applied for the endpoint by navigating to Network and then click clicking on the endpoint to verify.

...

  • Below is the screenshot of the endpoint machine that excluded the CyberCNS folder from scanning.

...

This completes the Bitdefender GravityZone Whitelisting documentation.

...