Kaspersky Endpoint Security 10 for Windows

Testing Application Startup Control rules

22 December 2022

ID 133827

To ensure that Application Startup Control rules do not block applications required for work, it is recommended to put newly created rules into test mode and analyze their operation.

An analysis of the operation of Application Startup Control rules requires a review of the Application Startup Control events that are reported to Kaspersky Security Center. If all applications required for the computer user's work are allowed to start, the rules have been correctly created. Otherwise, we recommend revising the settings of the rules you created.

Test mode for Application Startup Control rules is disabled by default.

To test Application Startup Control rules:

  1. Open the application settings window.
  2. In the left part of the window, in the Endpoint control section, select the Application Startup Control subsection.

    In the right part of the window, the settings of the Application Startup Control component are displayed.

  3. Select the Enable Application Startup Control to make the component settings available for editing.
  4. In the Application Startup Control mode drop-down list, select one of the following items:
    • Black List, if you want to allow the startup of all applications except the applications specified in block rules.
    • White List, if you want to block the startup of all applications except the applications specified in allow rules.
  5. In the Action drop-down list, select Notify.
  6. To save changes, click the Save button.

Kaspersky Endpoint Security will not block applications whose startup is forbidden by Application Startup Control rules, but will send notifications about their startup to the Administration Server.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.