For the complete documentation index, see llms.txt. This page is also available as Markdown.
Cortex Cloud Runtime

Manage endpoint prevention profiles

Manage endpoint prevention profiles by viewing their policy usage, editing their settings, or creating policy rules.

Go to InventoryEndpointsPolicy ManagementPreventionProfiles.

Check profile usage

Check which policy rules use a profile before you modify or delete it.

Right-click the profile, then select View Policy Rules.

Cortex Cloud opens a filtered Prevention Policy Rules tab. It shows only rules using that profile.

Manage a profile

Edit

  1. Right-click the profile, then select Edit.

  2. Make your changes, then click Save.

Export

  1. Right-click the profile, then select Export Profile.

  2. Click Export to download the profile.

Duplicate

  1. Right-click the profile, then select Save as New.

  2. Edit the name, description, and any settings.

  3. Click Create.

Create a policy rule with the new profile.

Delete

  1. Delete or detach every policy rule that uses the profile.

  2. Locate the profile and confirm its Usage Count is 0.

  3. Right-click the profile, then select Delete.

  4. Click Yes to confirm.

Create a policy rule from a profile

1

Right-click the profile, then select Create a new policy rule using this profile.

Cortex Cloud sets the platform from the profile configuration. It also assigns the profile by type.

2

Enter a Policy Name. Optionally, add a description.

3

Assign additional profiles, then click Next. The endpoint list opens.

4

Select target endpoints. Alternatively, use filters to define the policy criteria. Click Next.

5

Review the policy rule summary, then click Done.

Last updated

Was this helpful?