-
- Lurker
- Posts: 2
- Liked: 1 time
- Joined: Jan 24, 2017 7:06 pm
- Contact:
Windows 10 controlled folder access (ransomware protection)
Hi,
I'am trying to configure the new Windows 10 feature "Controlled folder access" to prevent possible ransomware from encrypting Veeam backups on my external HD drive.
https://docs.microsoft.com/en-us/window ... loit-guard
quote:
"By default, Windows adds apps that it considers friendly to the allowed list - apps added automatically by Windows are not recorded in the list shown in the Windows Defender Security Center app or by using the associated PowerShell cmdlets. You shouldn't need to add most apps. Only add apps if they are being blocked and you can verify their trustworthiness."
With this feature enabled my Veeam backup task fails, so I think Veeam isn't automatically added to the allowed list. So the question is: Which Veeam executables and/or services must been added to the allowed list? So far I've already added the following ones (but without success):
- Veeam.EndPoint.Backup.exe
- Veeam.EndPoint.Service.exe
I'am trying to configure the new Windows 10 feature "Controlled folder access" to prevent possible ransomware from encrypting Veeam backups on my external HD drive.
https://docs.microsoft.com/en-us/window ... loit-guard
quote:
"By default, Windows adds apps that it considers friendly to the allowed list - apps added automatically by Windows are not recorded in the list shown in the Windows Defender Security Center app or by using the associated PowerShell cmdlets. You shouldn't need to add most apps. Only add apps if they are being blocked and you can verify their trustworthiness."
With this feature enabled my Veeam backup task fails, so I think Veeam isn't automatically added to the allowed list. So the question is: Which Veeam executables and/or services must been added to the allowed list? So far I've already added the following ones (but without success):
- Veeam.EndPoint.Backup.exe
- Veeam.EndPoint.Service.exe
-
- Product Manager
- Posts: 14944
- Liked: 1831 times
- Joined: Feb 04, 2013 2:07 pm
- Full Name: Dmitry Popov
- Location: Prague
- Contact:
Re: Windows 10 controlled folder access (ransomware protecti
Hey solution719,
Try to add C:\Program Files\Veeam\Endpoint Backup\x64\VeeamAgent.exe to the list of trusted applications.
Try to add C:\Program Files\Veeam\Endpoint Backup\x64\VeeamAgent.exe to the list of trusted applications.
-
- Lurker
- Posts: 2
- Liked: 1 time
- Joined: Jan 24, 2017 7:06 pm
- Contact:
Re: Windows 10 controlled folder access (ransomware protecti
Adding all *.exe files located in the following directories works for me:
- C:\Program Files\Veeam\Endpoint Backup\
- C:\Program Files\Veeam\Endpoint Backup\x64\
- C:\Program Files\Veeam\Endpoint Backup\x32\
- C:\Program Files\Veeam\Endpoint Backup\
- C:\Program Files\Veeam\Endpoint Backup\x64\
- C:\Program Files\Veeam\Endpoint Backup\x32\
-
- Product Manager
- Posts: 14944
- Liked: 1831 times
- Joined: Feb 04, 2013 2:07 pm
- Full Name: Dmitry Popov
- Location: Prague
- Contact:
Re: Windows 10 controlled folder access (ransomware protecti
Makes sense. Thank you for sharing.
-
- Lurker
- Posts: 1
- Liked: never
- Joined: Mar 22, 2018 4:54 pm
- Full Name: xcabur
Re: Windows 10 controlled folder access (ransomware protecti
Hi, I enabled Windows Folder Access Control to Veeam Endpoint Backup Free target too without adding any *.exe to the whitelist. If I try to make a zip file of a veeam backup file, the folder access control block it. But the backup still works. Now, I'm a little bit confused if folder access control works correctly. Is it realy necessary to add the veeam exe to the whitelist?
Who is online
Users browsing this forum: No registered users and 1 guest