Efficient quarantine and release procedures are essential for promptly isolating infected devices, minimizing disruptions to the enterprise network.
This streamlined approach enhances endpoint security, swiftly addressing security incidents and reducing the risk of further compromise. A proactive strategy in implementing these measures contributes to a resilient and secure network environment.
Upon enabling network quarantine for an infected endpoint it will remain isolated from all networks while maintaining a connection only with the Endpoint Central server(all capabilities of Endpoint Central can still be efficiently performed).
Upon unblocking network quarantine on the device, it will regain full connectivity to all networks. Before proceeding, it is crucial to confirm that all identified threats on the endpoint have been effectively resolved.
To unblock a machine through the console, follow the steps below:
Unblock should occur instantly. If an on-demand connection failure occurs, allow up to 5 hours for the process to complete. If the issue continues after this time, please refer to the manual steps below.
If a device remains quarantined, you can manually remove it by following these steps to manually de-isolate it from network quarantine:
Thank you for your feedback!
Sorry about that!