{"id":17301,"date":"2023-07-03T12:43:52","date_gmt":"2023-07-03T10:43:52","guid":{"rendered":"https:\/\/www.boc.de\/watchguard-info-portal\/?p=17301"},"modified":"2026-04-09T15:50:12","modified_gmt":"2026-04-09T13:50:12","slug":"howto-boc-best-practices-empfehlungen-zu-watchguard-epdr","status":"publish","type":"post","link":"https:\/\/wordpress.boc.de\/watchguard-info-portal\/2023\/07\/howto-boc-best-practices-empfehlungen-zu-watchguard-epdr\/","title":{"rendered":"HOWTO: BOC Best Practices\/Empfehlungen zu WatchGuard Endpoint Security Elite (Advanced EPDR) \/ 360 (EPDR)"},"content":{"rendered":"<p>Gilt f\u00fcr WatchGuard Endpoint Security Elite (vormals Advanced EPDR), 360 (vormals EPDR) und Panda AD360 <strong>(Letzte Aktualisierung 02.04.26 \/ Neue Endpoint Version 4.70.00 \/ Aether 19)<\/strong>.<\/p>\n<div style=\"border: 3px solid red; padding: 20px 20px 0px 20px; border-radius: 15px;\">\n<p><strong>Hinweis:<br \/>\n<\/strong>Zum 1. April 2026 hat WatchGuard eine Umbenennung seines Endpoint-Security-Portfolios vorgenommen und somit das Portfolio \u00fcbersichtlicher gestaltet und besser an aktuelle Anforderungen der IT-Sicherheit angepasst.<\/p>\n<table>\n<tbody>\n<tr>\n<td width=\"313\"><strong>Bisheriger Produktname<\/strong><\/td>\n<td width=\"313\"><strong>Neuer Produktname (ab 1. April)<\/strong><\/td>\n<\/tr>\n<tr>\n<td width=\"313\">WatchGuard Advanced EPDR<\/td>\n<td width=\"313\">WatchGuard Endpoint Security Elite<\/td>\n<\/tr>\n<tr>\n<td width=\"313\">WatchGuard EPDR<\/td>\n<td width=\"313\">WatchGuard Endpoint Security 360<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>Weitere Informationen dazu finden Sie in unserem Blog-Artikel <a href=\"https:\/\/www.boc.de\/watchguard-info-portal\/2026\/03\/watchguard-benennt-endpoint-produkte-ab-1-april-um\/\" target=\"_blank\" rel=\"noopener noreferrer\">&gt;&gt; WatchGuard benennt Endpoint-Produkte ab 1. April um<\/a>.<\/p>\n<\/div>\n<p>&nbsp;<\/p>\n<p>Der folgende Artikel beschreibt die BOC Best Practices\/Empfehlungen f\u00fcr WatchGuard Endpoint Security Elite \/ 360. Wir gehen davon aus, dass auf allen Endger\u00e4ten kein Third-Party AV\/Endpoint Schutz vorhanden ist. Unsere BOC Best Practices zu EDR Core finden Sie in dem Blogartikel <a href=\"https:\/\/www.boc.de\/watchguard-info-portal\/2023\/09\/howto-boc-best-practices-empfehlungen-zu-watchguard-edr-core\/\" target=\"_blank\" rel=\"noopener noreferrer\">&gt;&gt; HOWTO: BOC Best Practices\/Empfehlungen zu WatchGuard EDR Core<\/a>.<\/p>\n<p><strong>*Folgende Anleitung zeigt eine Grundeinrichtung. Abweichende Konfigurationen in Ihrer Umgebung wie bspw. non-persistente Computer\/Server, Blockieren von USB-Sticks,&#8230; werden hier nicht ber\u00fccksichtigt*<\/strong><\/p>\n<h5>Unser Konzept besteht aus drei Teilen \/ Haupt OUs:<!--more--><\/h5>\n<ol>\n<li><strong>Learning-Mode (Basic-Security):<\/strong><br \/>\nGruppe f\u00fcr die Erstinstallation\/Roll-Out der Clients\/Server. Der Basis-Schutz ist vorhanden, 100 % Klassifizierung der Prozesse und Applikationen wird durchgef\u00fchrt. Alles Unbekannte wird <u>nicht<\/u> blockiert!<\/li>\n<li><strong>Lock-Mode (Advanced-Security):<\/strong><br \/>\nNach einer kurzen Audit-Phase (ca. 7 Tage) sollten alle Endger\u00e4te in den Lock-Mode wechseln. Hier werden zus\u00e4tzlich zu allen sch\u00e4dlichen Prozessen, ebenfalls unbekannte Prozesse gestoppt bis diese klassifiziert wurden.<\/li>\n<li><strong style=\"font-size: inherit;\">Lock-Mode (Full-Security)<br \/>\n<\/strong>Final sollten sich alle Endger\u00e4te in dieser Gruppe befinden. Zus\u00e4tzlich zum Kern-Feature \u201eLock-Mode\u201c (100% Zero-Trust-Mechanismus) werden hier weitere Security-Features aktiviert (z. B. Anti-Exploit-Protection, Schutz vor Netzwerkangriffen,\u2026).<\/li>\n<\/ol>\n<h3>Vorgehen:<\/h3>\n<p><strong>1. Computer -&gt; Meine Organisation:<\/strong><br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-17306 alignnone\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2023\/07\/boc-best-practices-endpoint-security-1.png\" alt=\"\" width=\"1245\" height=\"630\" \/><\/p>\n<p><strong>2. Sicherheitseinstellungen (Einstellungen -&gt; Workstations und Server):<\/strong><br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-17309 alignnone\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2023\/07\/boc-best-practices-endpoint-security-2.png\" alt=\"\" width=\"1133\" height=\"874\" \/><\/p>\n<p><strong>3. Die OUs m\u00fcssen mit den entsprechenden Sicherheitseinstellungen\/Profilen verkn\u00fcpft werden:<\/strong><br \/>\n<img loading=\"lazy\" decoding=\"async\" class=\"size-full wp-image-17311 alignnone\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2023\/07\/boc-best-practices-endpoint-security-3.png\" alt=\"\" width=\"1116\" height=\"888\" \/><\/p>\n<div class=\"info-box\">\n<div class=\"box\">\n<div class=\"text-content\">\n<h3 id=\"Sicherheitseinstellungen\">Sicherheitseinstellungen\/Profile:<\/h3>\n<p><strong><u>Hinweis:<\/u> Seit dem 1. April 2026 hei\u00dft der Audit-Mode nun Learning-Mode.<\/strong><\/p>\n<table class=\"tableepdr11\" width=\"697\">\n<tbody>\n<tr>\n<td width=\"318\"><\/td>\n<td width=\"125\"><strong>1. Learning-Mode<br \/>\n(Basic-Security)<\/strong><\/td>\n<td width=\"130\"><strong>2. Lock-Mode<br \/>\n(Advanced-Security)<\/strong><\/td>\n<td width=\"125\"><strong>3. Lock-Mode<br \/>\n(Full-Security)<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>Beschreibung<\/strong><\/td>\n<td width=\"125\">1. Learning-Mode<br \/>\n(Basic-Security)<\/td>\n<td width=\"130\">2. Lock-Mode<br \/>\n(Advanced-Security)<\/td>\n<td width=\"125\">3. Lock-Mode<br \/>\n(Full-Security)<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<div class=\"su-accordion su-u-trim\">\n<div class=\"su-spoiler su-spoiler-style-default su-spoiler-icon-plus su-spoiler-closed\" data-scroll-offset=\"0\" data-anchor-in-url=\"no\"><div class=\"su-spoiler-title\" tabindex=\"0\" role=\"button\"><span class=\"su-spoiler-icon\"><\/span>Allgemein<\/div><div class=\"su-spoiler-content su-u-clearfix su-u-trim\">\n<table class=\"tableepdr11\" width=\"697\">\n<tbody>\n<tr>\n<td width=\"318\"><\/td>\n<td width=\"125\"><strong>1. Learning-Mode<br \/>\n(Basic-Security)<\/strong><\/td>\n<td width=\"130\"><strong>2. Lock-Mode<br \/>\n(Advanced-Security)<\/strong><\/td>\n<td width=\"125\"><strong>3. Lock-Mode<br \/>\n(Full-Security)<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" bgcolor=\"#e6ecfd\" width=\"318\"><strong>Allgemein<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"130\"><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>Lokale Warnungen<\/strong><\/td>\n<td width=\"125\"><\/td>\n<td width=\"130\"><\/td>\n<td width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Warnungen zu Malware, Firewall und Ger\u00e4tekontrolle anzeigen<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" class=\"\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Jedes Mal einen Alarm anzeigen, wenn die Webzugriffskontrolle eine Seite blockiert<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>Updates<\/strong><\/td>\n<td width=\"125\"><\/td>\n<td width=\"130\"><\/td>\n<td width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Automatische Wissensaktualisierung<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Bei jeder Wissensaktualisierung einen Scan im Hintergrund ausf\u00fchren<\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\">\u2013<\/td>\n<td width=\"125\">\u2013<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>Andere Sicherheitsprodukte deinstallieren<\/strong><\/td>\n<td width=\"125\"><\/td>\n<td width=\"130\"><\/td>\n<td width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Schutz von anderen Anbietern automatisch deinstallieren (<a href=\"https:\/\/www.boc.de\/watchguard-info-portal\/2023\/05\/howto-deinstallation-von-third-party-avs-endpoint-protections-via-watchguard-endpoint-security\/\" target=\"_blank\" rel=\"noopener noreferrer\">Hinweis beachten<\/a>)<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>Privatsph\u00e4re<\/strong><\/td>\n<td width=\"125\"><\/td>\n<td width=\"130\"><\/td>\n<td width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Name und vollst\u00e4ndigen Pfad der Dateien, auf die sch\u00e4dliche Programme zugreifen, abrufen und in der Konsole anzeigen<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Benutzer, der zum Zeitpunkt, zu dem Bedrohungen auf Computern erkannt wurden, angemeldet ist, abrufen und in der Konsole anzeigen<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>Netzwerkauslastung<\/strong><\/td>\n<td width=\"125\"><\/td>\n<td width=\"130\"><\/td>\n<td width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Maximale Anzahl an MB, die in einer Stunde \u00fcbertragen werden k\u00f6nnen (0\u00a0unbegrenzt):<\/td>\n<td width=\"125\">0<\/td>\n<td width=\"130\">0<\/td>\n<td width=\"125\">0<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>Von Scans ausgeschlossene Dateien und Pfade<\/strong><\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\">\u2013<\/td>\n<td width=\"125\">\u2013<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div><\/div>\n<div class=\"su-spoiler su-spoiler-style-default su-spoiler-icon-plus su-spoiler-closed\" data-scroll-offset=\"0\" data-anchor-in-url=\"no\"><div class=\"su-spoiler-title\" tabindex=\"0\" role=\"button\"><span class=\"su-spoiler-icon\"><\/span>Zero-Trust Application Service<\/div><div class=\"su-spoiler-content su-u-clearfix su-u-trim\">\n<table class=\"tableepdr11\" width=\"697\">\n<tbody>\n<tr>\n<td width=\"318\"><\/td>\n<td width=\"125\"><strong>1. Learning-Mode<br \/>\n(Basic-Security)<\/strong><\/td>\n<td width=\"130\"><strong>2. Lock-Mode<br \/>\n(Advanced-Security)<\/strong><\/td>\n<td width=\"125\"><strong>3. Lock-Mode<br \/>\n(Full-Security)<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" bgcolor=\"#e6ecfd\" width=\"318\"><strong>Zero-Trust Application Service<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"130\"><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Zero-Trust Application Service<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" class=\"\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Betriebsmodus (nur Windows)<\/td>\n<td width=\"125\">Learning<\/td>\n<td width=\"130\">Lock<\/td>\n<td width=\"125\">Lock<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Blockierung den Computerbenutzern melden<\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\"><img decoding=\"async\" class=\"\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" class=\"\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Computerbenutzern die M\u00f6glichkeit zur Ausf\u00fchrung unbekannter blockierter Programme geben (nur f\u00fcr fortgeschrittene Benutzer oder Administratoren empfohlen)<\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\">\u2013<\/td>\n<td width=\"125\">\u2013<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Sch\u00e4dliche Aktivit\u00e4t erkennen (nur Linux)<\/td>\n<td width=\"125\">Learning<\/td>\n<td width=\"130\">Blockieren<\/td>\n<td width=\"125\">Blockieren<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div><\/div>\n<div class=\"su-spoiler su-spoiler-style-default su-spoiler-icon-plus su-spoiler-closed\" data-scroll-offset=\"0\" data-anchor-in-url=\"no\"><div class=\"su-spoiler-title\" tabindex=\"0\" role=\"button\"><span class=\"su-spoiler-icon\"><\/span>Virenschutz<\/div><div class=\"su-spoiler-content su-u-clearfix su-u-trim\">\n<table class=\"tableepdr11\" width=\"697\">\n<tbody>\n<tr>\n<td width=\"318\"><\/td>\n<td width=\"125\"><strong>1. Learning-Mode<br \/>\n(Basic-Security)<\/strong><\/td>\n<td width=\"130\"><strong>2. Lock-Mode<br \/>\n(Advanced-Security)<\/strong><\/td>\n<td width=\"125\"><strong>3. Lock-Mode<br \/>\n(Full-Security)<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" bgcolor=\"#e6ecfd\" width=\"318\"><strong>Virenschutz<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"130\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Datei-Virenschutz<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">E-Mail-Virenschutz<\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\">\u2013<\/td>\n<td width=\"125\">\u2013<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Webbrowsing-Virenschutz<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>Zu erkennende Bedrohungen<\/strong><\/td>\n<td width=\"125\"><\/td>\n<td width=\"130\"><\/td>\n<td width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Viren erkennen<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Hacker-Tools und PUPs erkennen<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Sch\u00e4dliche Aktionen blockieren<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Phishing erkennen<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Keine Bedrohungen f\u00fcr die folgenden Adressen und Dom\u00e4nen erkennen:<\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\">\u2013<\/td>\n<td width=\"125\">\u2013<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Decoy Files zur besseren Erkennung von Ransomware erstellen (ab Version 4.10.00)<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>AMSI (ab Version 4.40.00)<\/strong><\/td>\n<td width=\"125\"><\/td>\n<td width=\"130\"><\/td>\n<td width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Erweitertes Scannen mit AMSI aktivieren<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>Dateitypen<\/strong><\/td>\n<td width=\"125\"><\/td>\n<td width=\"130\"><\/td>\n<td width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Komprimierte Dateien in E-Mails scannen<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Komprimierte Dateien auf dem Laufwerk scannen (nicht empfohlen)<\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\">\u2013<\/td>\n<td width=\"125\">\u2013<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Alle Dateien bei Erstellung oder \u00c4nderung unabh\u00e4ngig von ihrer Erweiterung scannen (nicht empfohlen)<\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\">\u2013<\/td>\n<td width=\"125\">\u2013<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div><\/div>\n<div class=\"su-spoiler su-spoiler-style-default su-spoiler-icon-plus su-spoiler-closed\" data-scroll-offset=\"0\" data-anchor-in-url=\"no\"><div class=\"su-spoiler-title\" tabindex=\"0\" role=\"button\"><span class=\"su-spoiler-icon\"><\/span>Anti-Exploit<\/div><div class=\"su-spoiler-content su-u-clearfix su-u-trim\">\n<table class=\"tableepdr11\" width=\"697\">\n<tbody>\n<tr>\n<td width=\"318\"><\/td>\n<td width=\"125\"><strong>1. Learning-Mode<br \/>\n(Basic-Security)<\/strong><\/td>\n<td width=\"130\"><strong>2. Lock-Mode<br \/>\n(Advanced-Security)<\/strong><\/td>\n<td width=\"125\"><strong>3. Lock-Mode<br \/>\n(Full-Security)<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" bgcolor=\"#e6ecfd\" width=\"318\"><strong>Anti-Exploit<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"130\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Codeeinf\u00fcgung<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Betriebsmodus (nur Windows)<\/td>\n<td width=\"125\">Pr\u00fcfen<\/td>\n<td width=\"130\">Pr\u00fcfen<\/td>\n<td width=\"125\">Blockieren<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Blockierung dem Computerbenutzer melden<\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\">\u2013<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Benutzer um Erlaubnis zur Beendigung eines kompromittierten Prozesses fragen (kann in einigen F\u00e4llen zu Datenverlust f\u00fchren)<\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\">\u2013<\/td>\n<td width=\"125\">\u2013<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>Anf\u00e4lliger Treiber (ab Version 4.40.00)<\/strong><\/td>\n<td width=\"125\"><\/td>\n<td width=\"130\"><\/td>\n<td width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Treiber mit Sicherheitsl\u00fccken erkennen<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Betriebsmodus (nur Windows)<\/td>\n<td width=\"125\">Pr\u00fcfen<\/td>\n<td width=\"130\">Pr\u00fcfen<\/td>\n<td width=\"125\">Blockieren<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div><\/div>\n<div class=\"su-spoiler su-spoiler-style-default su-spoiler-icon-plus su-spoiler-closed\" data-scroll-offset=\"0\" data-anchor-in-url=\"no\"><div class=\"su-spoiler-title\" tabindex=\"0\" role=\"button\"><span class=\"su-spoiler-icon\"><\/span>Schutz vor Netzwerkangriffen<\/div><div class=\"su-spoiler-content su-u-clearfix su-u-trim\">\n<table class=\"tableepdr11\" width=\"697\">\n<tbody>\n<tr>\n<td width=\"318\"><\/td>\n<td width=\"125\"><strong>1. Learning-Mode<br \/>\n(Basic-Security)<\/strong><\/td>\n<td width=\"130\"><strong>2. Lock-Mode<br \/>\n(Advanced-Security)<\/strong><\/td>\n<td width=\"125\"><strong>3. Lock-Mode<br \/>\n(Full-Security)<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" bgcolor=\"#e6ecfd\" width=\"318\"><strong>Schutz vor Netzwerkangriffen<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"130\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Schutz vor Netzwerkangriffen<br \/>\n(ab Version 4.30.00)<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Betriebsmodus (nur Windows)<\/td>\n<td width=\"125\">Pr\u00fcfen<\/td>\n<td width=\"130\">Pr\u00fcfen<\/td>\n<td width=\"125\">Blockieren<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div><\/div>\n<div class=\"su-spoiler su-spoiler-style-default su-spoiler-icon-plus su-spoiler-closed\" data-scroll-offset=\"0\" data-anchor-in-url=\"no\"><div class=\"su-spoiler-title\" tabindex=\"0\" role=\"button\"><span class=\"su-spoiler-icon\"><\/span>Erweiterte Sicherheitsrichtlinien (nur bei Endpoint Security Elite)<\/div><div class=\"su-spoiler-content su-u-clearfix su-u-trim\">\n<table class=\"tableepdr11\" width=\"697\">\n<tbody>\n<tr>\n<td width=\"318\"><\/td>\n<td width=\"125\"><strong>1. Learning-Mode<br \/>\n(Basic-Security)<\/strong><\/td>\n<td width=\"130\"><strong>2. Lock-Mode<br \/>\n(Advanced-Security)<\/strong><\/td>\n<td width=\"125\"><strong>3. Lock-Mode<br \/>\n(Full-Security)<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" bgcolor=\"#e6ecfd\" width=\"318\"><strong>Erweiterte Sicherheitsrichtlinien (nur bei Endpoint Security Elite)<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"130\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Erweiterte Sicherheitsrichtlinien<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">PowerShell mit verborgenen Parametern<\/td>\n<td width=\"125\">Pr\u00fcfen<\/td>\n<td width=\"130\">Pr\u00fcfen<\/td>\n<td width=\"125\">Blockieren<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Vom Benutzer ausgef\u00fchrtes PowerShell<\/td>\n<td width=\"125\">Pr\u00fcfen<\/td>\n<td width=\"130\">Pr\u00fcfen<\/td>\n<td width=\"125\">Pr\u00fcfen<sub>1<\/sub><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Unbekannte Skripte<\/td>\n<td width=\"125\">Pr\u00fcfen<\/td>\n<td width=\"130\">Pr\u00fcfen<\/td>\n<td width=\"125\">Pr\u00fcfen<sub>1<\/sub><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Lokal kompilierte Programme<\/td>\n<td width=\"125\">Pr\u00fcfen<\/td>\n<td width=\"130\">Pr\u00fcfen<\/td>\n<td width=\"125\">Blockieren<sub>1<\/sub><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Dokumente mit Makros<\/td>\n<td width=\"125\">Pr\u00fcfen<\/td>\n<td width=\"130\">Pr\u00fcfen<\/td>\n<td width=\"125\">Pr\u00fcfen<sub>1<\/sub><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Bei Windows-Start auszuf\u00fchrende Registry-\u00c4nderung<\/td>\n<td width=\"125\">Nicht erkennen<\/td>\n<td width=\"130\">Nicht erkennen<\/td>\n<td width=\"125\">Nicht erkennen<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p><sub>1<\/sub> = Die folgenden Settings m\u00fcssen je nach Kundenumgebung und Ereignisse der Learning-Phase individuell bestimmt werden. Wir empfehlen bei Abweichungen eine Untergruppe zu definieren. Bsp. \"3. Lock-Mode - DEVELOPER (Full-Security)\"<\/p>\n<ul>\n<li style=\"list-style-type: none;\">\n<ul>\n<li>Vom Benutzer ausgef\u00fchrtes PowerShell: Im Regelfall f\u00fcr Standard-User nicht n\u00f6tig<\/li>\n<li>Unbekannte Skripte \/ Lokal kompilierte Programme: Bei Development-Maschinen -&gt; Pr\u00fcfen<\/li>\n<li>Dokumente mit Makros: Je nach Kundenumgebung. Wenn m\u00f6glich -&gt; Blockieren<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<\/div><\/div>\n<div class=\"su-spoiler su-spoiler-style-default su-spoiler-icon-plus su-spoiler-closed\" data-scroll-offset=\"0\" data-anchor-in-url=\"no\"><div class=\"su-spoiler-title\" tabindex=\"0\" role=\"button\"><span class=\"su-spoiler-icon\"><\/span>Firewall (Windows-Computer)<\/div><div class=\"su-spoiler-content su-u-clearfix su-u-trim\">\n<table class=\"tableepdr11\" width=\"697\">\n<tbody>\n<tr>\n<td width=\"318\"><\/td>\n<td width=\"125\"><strong>1. Learning-Mode<br \/>\n(Basic-Security)<\/strong><\/td>\n<td width=\"130\"><strong>2. Lock-Mode<br \/>\n(Advanced-Security)<\/strong><\/td>\n<td width=\"125\"><strong>3. Lock-Mode<br \/>\n(Full-Security)<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" bgcolor=\"#e6ecfd\" width=\"318\"><strong>Firewall (Windows-Computer)<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\">Windows Firewall via GPO<\/td>\n<td bgcolor=\"#e6ecfd\" width=\"130\">Windows Firewall via GPO<\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\">Windows Firewall via GPO<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div><\/div>\n<div class=\"su-spoiler su-spoiler-style-default su-spoiler-icon-plus su-spoiler-closed\" data-scroll-offset=\"0\" data-anchor-in-url=\"no\"><div class=\"su-spoiler-title\" tabindex=\"0\" role=\"button\"><span class=\"su-spoiler-icon\"><\/span>Ger\u00e4testeuerung (Windows-Computer)<\/div><div class=\"su-spoiler-content su-u-clearfix su-u-trim\">\n<table class=\"tableepdr11\" width=\"697\">\n<tbody>\n<tr>\n<td width=\"318\"><\/td>\n<td width=\"125\"><strong>1. Learning-Mode<br \/>\n(Basic-Security)<\/strong><\/td>\n<td width=\"130\"><strong>2. Lock-Mode<br \/>\n(Advanced-Security)<\/strong><\/td>\n<td width=\"125\"><strong>3. Lock-Mode<br \/>\n(Full-Security)<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" bgcolor=\"#e6ecfd\" width=\"318\"><strong>Ger\u00e4testeuerung (Windows-Computer)<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"130\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Ger\u00e4testeuerung aktivieren<\/td>\n<td width=\"125\">Erlauben\/Zulassen<\/td>\n<td width=\"130\">Erlauben\/Zulassen<\/td>\n<td width=\"125\">Erlauben\/Zulassen<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">AutoPlay auf Wechseldatentr\u00e4gern deaktivieren (ab Version 4.50.00)<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div><\/div>\n<div class=\"su-spoiler su-spoiler-style-default su-spoiler-icon-plus su-spoiler-closed\" data-scroll-offset=\"0\" data-anchor-in-url=\"no\"><div class=\"su-spoiler-title\" tabindex=\"0\" role=\"button\"><span class=\"su-spoiler-icon\"><\/span>Webzugriffskontrolle<\/div><div class=\"su-spoiler-content su-u-clearfix su-u-trim\">\n<table class=\"tableepdr11\" width=\"697\">\n<tbody>\n<tr>\n<td width=\"318\"><\/td>\n<td width=\"125\"><strong>1. Learning-Mode<br \/>\n(Basic-Security)<\/strong><\/td>\n<td width=\"130\"><strong>2. Lock-Mode<br \/>\n(Advanced-Security)<\/strong><\/td>\n<td width=\"125\"><strong>3. Lock-Mode<br \/>\n(Full-Security)<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" bgcolor=\"#e6ecfd\" width=\"318\"><strong>Webzugriffskontrolle<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"130\"><strong>\u00a0<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u00a0<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Webzugriffskontrolle aktivieren<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Immer aktiviert<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Zugriff auf Seiten verweigern, die als unbekannt eingestuft wurden<\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\">\u2013<\/td>\n<td width=\"125\">\u2013<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Zugriff auf folgende Adressen und Dom\u00e4nen immer verweigern:<\/td>\n<td width=\"125\">\u2013<\/td>\n<td width=\"130\">\u2013<\/td>\n<td width=\"125\">\u2013<\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\"><strong>Verweigern \/ Blocken:<\/strong><\/td>\n<td width=\"125\"><\/td>\n<td width=\"130\"><\/td>\n<td width=\"125\"><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Erweiterter Schutz - Neue Exploits<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Erweiterter Schutz - Verd\u00e4chtiger Inhalt<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" width=\"318\">Erweiterter Schutz - Erh\u00f6hte Expositionen<\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"130\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<td width=\"125\"><img decoding=\"async\" src=\"https:\/\/www.boc.de\/watchguard-info-portal\/wp-content\/uploads\/2016\/07\/red-check.png\" \/><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div><\/div>\n<div class=\"su-spoiler su-spoiler-style-default su-spoiler-icon-plus su-spoiler-closed\" data-scroll-offset=\"0\" data-anchor-in-url=\"no\"><div class=\"su-spoiler-title\" tabindex=\"0\" role=\"button\"><span class=\"su-spoiler-icon\"><\/span>Pr\u00fcfmodus<\/div><div class=\"su-spoiler-content su-u-clearfix su-u-trim\">\n<table class=\"tableepdr11\" width=\"697\">\n<tbody>\n<tr>\n<td width=\"318\"><\/td>\n<td width=\"125\"><strong>1. Learning-Mode<br \/>\n(Basic-Security)<\/strong><\/td>\n<td width=\"130\"><strong>2. Lock-Mode<br \/>\n(Advanced-Security)<\/strong><\/td>\n<td width=\"125\"><strong>3. Lock-Mode<br \/>\n(Full-Security)<\/strong><\/td>\n<\/tr>\n<tr>\n<td style=\"text-align: left;\" bgcolor=\"#e6ecfd\" width=\"318\"><strong>Pr\u00fcfmodus<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u2013<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"130\"><strong>\u2013<\/strong><\/td>\n<td bgcolor=\"#e6ecfd\" width=\"125\"><strong>\u2013<\/strong><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div><\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<p>&nbsp;<\/p>\n<h3>Wichtiger Hinweis:<\/h3>\n<p>Bei jedem Versionsupdate werden unter Umst\u00e4nden neue Sicherheitsfeatures wie z. B. Schutz vor Netzwerkangriffen etc. in allen bestehenden Sicherheitseinstellungen (Profilen) scharfgeschaltet. Deshalb sollten Sie nach jedem Versionsupdate Ihre Einstellungen pr\u00fcfen und ggfs. anpassen. Wir empfehlen bei neuen Features immer den Modus auf &#8220;Pr\u00fcfen&#8221; zu stellen. Nach einer kurzen Test-Phase k\u00f6nnen die Settings entsprechend der obigen Tabelle gesetzt werden.<\/p>\n<p>Bsp.: Beim Versionsupdate auf 4.40.00 kam das Feature &#8220;Anf\u00e4llige Treiber&#8221; hinzu. Wir empfehlen in allen 3 Sicherheitsprofilen (1. Learning-Mode, 2.\/3. Lock-Mode) den Betriebsmodus f\u00fcr das neue Feature auf &#8220;Pr\u00fcfen&#8221; zu stellen. Sollten nach einer kurzen Testphase keine False-Positives auftauchen, k\u00f6nnen die Einstellungen aus der Best-Practice-Tabelle \u00fcbernommen werden.<\/p>\n<p>Zus\u00e4tzlich empfehlen wir immer den kontrollierten Upgrade-Prozess. Weitere Informationen hierzu finden Sie unter <a href=\"https:\/\/www.boc.de\/watchguard-info-portal\/2025\/03\/howto-watchguard-endpoint-security-kontrollierter-upgrade-prozess\/\">&gt;&gt; HOWTO: WatchGuard Endpoint Security \u2013 Kontrollierter Upgrade-Prozess<\/a>.<\/p>\n<p>Release Notes zu den einzelnen Versionsupdates finden Sie unter <a href=\"https:\/\/www.watchguard.com\/support\/release-notes\/Cloud\/Content\/en-US\/Endpoint-Security\/EN_release-notes_Endpoint-Security.html\" target=\"_blank\" rel=\"noopener noreferrer\">&gt;&gt; Endpoint Security Release Notes<\/a> oder <a href=\"https:\/\/info.pandasecurity.com\/aether\/?product=AD360&amp;lang=en&amp;_gl=1*ou004d*_ga*MzQ4NTk1MTAyLjE2ODMxMjU5NzE.*_ga_P4QYHQWT8T*MTY4Nzc4MTY0MS4xNS4wLjE2ODc3ODE2NDEuNjAuMC4w&amp;_ga=2.252472521.130653036.1687781641-348595102.1683125971\" target=\"_blank\" rel=\"noopener noreferrer\">&gt;&gt; Adaptive Defense 360 Release Notes<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Gilt f\u00fcr WatchGuard Endpoint Security Elite (vormals Advanced EPDR), 360 (vormals EPDR) und Panda AD360 (Letzte Aktualisierung 02.04.26 \/ Neue Endpoint Version 4.70.00 \/ Aether 19). Hinweis: Zum 1. April 2026 hat WatchGuard eine Umbenennung seines Endpoint-Security-Portfolios vorgenommen und somit das Portfolio \u00fcbersichtlicher gestaltet und besser an aktuelle Anforderungen der IT-Sicherheit angepasst. Bisheriger Produktname Neuer Produktname (ab 1. April) WatchGuard Advanced EPDR WatchGuard Endpoint Security &hellip; <a href=\"https:\/\/wordpress.boc.de\/watchguard-info-portal\/2023\/07\/howto-boc-best-practices-empfehlungen-zu-watchguard-epdr\/\" class=\"more-link\">Weiterlesen <span class=\"screen-reader-text\">HOWTO: BOC Best Practices\/Empfehlungen zu WatchGuard Endpoint Security Elite (Advanced EPDR) \/ 360 (EPDR)<\/span> <span class=\"meta-nav\">&raquo;<\/span><\/a><\/p>\n","protected":false},"author":9,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[362,3],"tags":[1412,676,958,363,947,1413,1181,704,839,946,1047],"class_list":["post-17301","post","type-post","status-publish","format-standard","hentry","category-howto","category-watchguard-technischer-blog","tag-1412","tag-ad360","tag-advanced-epdr","tag-best-practices","tag-boc-best-practices","tag-elite","tag-empfehlungen","tag-endpoint-security","tag-epdr","tag-watchguard-endpoint-security","tag-watchguard-endpoint"],"_links":{"self":[{"href":"https:\/\/wordpress.boc.de\/watchguard-info-portal\/wp-json\/wp\/v2\/posts\/17301"}],"collection":[{"href":"https:\/\/wordpress.boc.de\/watchguard-info-portal\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/wordpress.boc.de\/watchguard-info-portal\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/wordpress.boc.de\/watchguard-info-portal\/wp-json\/wp\/v2\/users\/9"}],"replies":[{"embeddable":true,"href":"https:\/\/wordpress.boc.de\/watchguard-info-portal\/wp-json\/wp\/v2\/comments?post=17301"}],"version-history":[{"count":89,"href":"https:\/\/wordpress.boc.de\/watchguard-info-portal\/wp-json\/wp\/v2\/posts\/17301\/revisions"}],"predecessor-version":[{"id":30780,"href":"https:\/\/wordpress.boc.de\/watchguard-info-portal\/wp-json\/wp\/v2\/posts\/17301\/revisions\/30780"}],"wp:attachment":[{"href":"https:\/\/wordpress.boc.de\/watchguard-info-portal\/wp-json\/wp\/v2\/media?parent=17301"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/wordpress.boc.de\/watchguard-info-portal\/wp-json\/wp\/v2\/categories?post=17301"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/wordpress.boc.de\/watchguard-info-portal\/wp-json\/wp\/v2\/tags?post=17301"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}