Does the McAfee Application Control product have a "fail close" feature to be used for preventing unrestricted code execution when failure conditions in McAfee Application Control are detected?
In practical terms, which are the protections/options provided by McAfee to prevent code execution when McAfee Application Control stop working (e.g. due to an internal error or as consequence of an attack)?
If such ”fail close” feature does not exist in Application Control, Is there any other McAfee product which provide code execution protection in the scenario described here, e.g. by real time monitoring Application Control and intervene if needed (i.e. App Control failure)?
Unfortunantly there is no fail close if our service is failed. As our service is what is making sure is blocked. You could run ENS to block certain exploits (example Memory protection is better with ENS) and is usually disabled for solidcore if you have both on the machine.
Was my reply helpful?
If this information was helpful in any way or answered your question, will you please select Accept as Solution in my reply and together we can help other members?