Kaspersky Endpoint Security 10 for Windows

Creating Application Startup Control rules using Kaspersky Security Center

22 December 2022

ID 130538

To create an Application Startup Control rule using Kaspersky Security Center:

  1. Open the Administration Console of Kaspersky Security Center.
  2. In the Managed devices folder in the Administration Console tree, open the folder with the name of the administration group to which the relevant client computers belong.
  3. In the workspace, select the Policies tab.
  4. Select the necessary policy.
  5. Open the Properties: <Policy name> window by using one of the following methods:
    • In the context menu of the policy, select Properties.
    • Click the Configure policy link located in the right part of the Administration Console workspace.
  6. In the Endpoint control section, select the Application Startup Control subsection.

    In the right part of the window, the settings of the Application Startup Control component are displayed.

  7. Click the Add button.

    The Application Startup Control rule window opens.

  8. In the Category drop-down list, select the created application category based on which you want to create a rule.
  9. Specify the list of users and/or user groups for which you want to configure permission to start applications from the selected category. To do this, in the Principals and their rights table, click the Add button.

    The standard Select Users or Groups window in Microsoft Windows opens. This window lets you select users and / or user groups.

  10. In the Principals and their rights table:
    • If you want to allow users and / or groups of users to start applications that belong to the selected category, select the Allow check boxes opposite those users.
    • If you want to block users and / or groups of users from starting applications that belong to the selected category, select the Block check boxes opposite those users.
  11. Select the Deny for other users check box if you want all users that do not appear in the Principal column and that are not part of the group of users specified in the Principal column to be blocked from starting applications that belong to the selected category.
  12. If you want Kaspersky Endpoint Security to consider applications from the category that is specified in the rule as trusted updaters with the right to start other applications for which no Application Startup Control rules are defined, select the Trusted Updaters check box.
  13. Click OK.
  14. In the Application Startup Control section of the policy properties window, click the Apply button.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.