<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Blade Actions Hierarchy in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/Blade-Actions-Hierarchy/m-p/96948#M2617</link>
    <description>&lt;P&gt;Do the actions in Entire Organisation filter through to other rules?&lt;/P&gt;&lt;P&gt;For example, will the exclusions set in 'Anti-Malware &amp;gt; Scan all files upon access' set for the Entire organisation be applied to the groups within other Anti-Malware rules.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="BladeActionsHierarchy.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/8088i0ACF798E071BE924/image-size/large?v=v2&amp;amp;px=999" role="button" title="BladeActionsHierarchy.jpg" alt="BladeActionsHierarchy.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;To create a new action the previous shared action has to be cloned. If the actions from&amp;nbsp;Entire organisation are passed down, should we then manually remove each cloned action?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 17 Sep 2020 12:55:17 GMT</pubDate>
    <dc:creator>64Bit</dc:creator>
    <dc:date>2020-09-17T12:55:17Z</dc:date>
    <item>
      <title>Blade Actions Hierarchy</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Blade-Actions-Hierarchy/m-p/96948#M2617</link>
      <description>&lt;P&gt;Do the actions in Entire Organisation filter through to other rules?&lt;/P&gt;&lt;P&gt;For example, will the exclusions set in 'Anti-Malware &amp;gt; Scan all files upon access' set for the Entire organisation be applied to the groups within other Anti-Malware rules.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="BladeActionsHierarchy.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/8088i0ACF798E071BE924/image-size/large?v=v2&amp;amp;px=999" role="button" title="BladeActionsHierarchy.jpg" alt="BladeActionsHierarchy.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;To create a new action the previous shared action has to be cloned. If the actions from&amp;nbsp;Entire organisation are passed down, should we then manually remove each cloned action?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Sep 2020 12:55:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Blade-Actions-Hierarchy/m-p/96948#M2617</guid>
      <dc:creator>64Bit</dc:creator>
      <dc:date>2020-09-17T12:55:17Z</dc:date>
    </item>
    <item>
      <title>Re: Blade Actions Hierarchy</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Blade-Actions-Hierarchy/m-p/97135#M2627</link>
      <description>&lt;P&gt;I believe only the most specific rule applies, but&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/9483"&gt;@Oren_Shalgi&lt;/a&gt;&amp;nbsp;can probably confirm.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 21 Sep 2020 05:12:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Blade-Actions-Hierarchy/m-p/97135#M2627</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-09-21T05:12:17Z</dc:date>
    </item>
    <item>
      <title>Re: Blade Actions Hierarchy</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Blade-Actions-Hierarchy/m-p/97775#M2652</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Endpoint policy follows a first-match concept, with Entire Organization being the last one that is being matched.&lt;/P&gt;
&lt;P&gt;In SmartEndpoint we have the shared action concept so you can re-use the same action and its settings on different rules.&lt;/P&gt;
&lt;P&gt;You have indication of the name in bold when the action on that rule is different than the one for Entire Organization.&lt;/P&gt;
&lt;P&gt;In the example above the setting that will enforced on group CAD are those that are defined in "Scan all files upon access CAD". If you make changes to "Scan all files upon access" you should do the same changes on&amp;nbsp;"Scan all files upon access CAD" for them to apply, or change the action on that rule to "Scan all files upon access".&lt;/P&gt;
&lt;P&gt;Hope it is clearer.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Oren.&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 09:25:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Blade-Actions-Hierarchy/m-p/97775#M2652</guid>
      <dc:creator>Oren_Shalgi</dc:creator>
      <dc:date>2020-09-29T09:25:39Z</dc:date>
    </item>
  </channel>
</rss>

