EDR

Print Friendly, PDF & Email

Seqrite EDR is a comprehensive detection and response solution. This resolves the user’s data
visibility and control over the system hardware, operating system, and applications.

The EDR edition is available with EPP 8.3 version with Endpoint Protection. Here are a few
benefits of EDR edition.

  • Helps utilize multi-phase verification that enables comprehensive analysis of all events through multiple layers in the system.
  • Ensures immediate remediation action that helps restrict potentially infected hosts and perform automated actions automatically or manually.
  • Enables automated and manual IOC lookup on previous data generated by the Seqrite
    Threat Intel team and other sources.
  • Integrates advanced notification system seamlessly with the system with all the SIEM solutions and sends
    notifications.
  • Comprehensive air-gap network support, ensuring offline updates of rules, policies,
    signatures, and other components.
  • Note
    User need to purchase the EDR edition separately to avail this policy settings.

    Endpoint protection Response

  • To enable EDR for a container policy, follow these steps:
    1. On the EPP console page, Select Policies tab from the left navigation pane.
    2. On the Policy settings page, Select EDR.
  • To create feature policy for EDR, follow these steps:
    1. On the Policies page, Select Create from the list option
    2. On the Create Policy page, enter the required fields as mentioned.
    3. Field Description
      Policy Name Enter a Policy name.
      Policy Type Select Feature Policy option.
      Select Feature Select Advanced Protection.
      Description Enter a description for policy settings .

      Click Create

    4. Select Enable EDR.
    5. Click Save Policy.

    EDR feature policy is now created

    For more information about EDR. Click here .

    Was this page helpful?