How to install a Hotfix
There are several types of HOTFIXES. fsfix, jar, and zip.
FSFIX -> This is for Windows clients. This hotfix can be run on each Windows clients. JAR -> This is for Policy Manager deployment. You can deploy hotfix using Policy Manager automatically. ZIP -> This contains both FSFIX and JAR, sometimes only one from those. Users need to extract this file.
Internet Explorer may change the file extension for fsfix/ jar to ".zip" This is due to the security setting. When it happens, please change the file extension back to the original one. [How to install] Fsfix
Download the fsfix fix to target machine. Double click fsfix. Message is shown. Click "Yes" to proceed. Wait until installation finishes. You can see message window when it's finished. Click "OK" to finish installation.
Open policy manager console and select "installation" Click on "Installation package". Click on "Import" and import Jar file. Click on "Close" Select target PC(or domain) and click on "install package". Select package name and click on "OK" Deploy policy to targets.
Sometimes, a reboot is recommended. Please reboot your PC, if needed. This message is shown based on your OS status even if the hotfix does not need an OS reboot.
Article no: 000014849
DeepGuard blocks the application. This was determined to be a high-risk application by system control heuristics. After the file SHA-1 hash and file path is excluded in F-Secure Client Security 13.x/14.x, Deepguard continues to block the application
You can exclude the network drivers from being scanned, by doing the following:
Log in to Policy Manager Console Click on the Settings tab Click on Advanced View Navigate to F-Secure DeepGuard Click Settings Click Excluded applications and enter the exclusion in UNC format, like:'\\servername\share\folder\to\the\app.exe'
If this location is also mapped to a drive letter, then another exclusion must also be added in the mapped format, so for example ' N:\folder\to\the\app.exe'
If the network drive was mapped to N. Both formats are needed, as mapped network drives are user-specific, settings and DeepGuard can't automatically do the user based drive letter mapping. Folder based exclusions on network drives are also supported.
Please refer to the screenshot below when making the exclusions:
7. Distribute the policy Note: If you are using F-Secure Client Security 13.10, kindly upgrade to 13.11 since the latest version has improvements for DeepGuard. Wildcard exclusions are only applicable for Real-time scanning. For Deepguard exclusion, kindly use file or folder path. F-Secure Security Cloud (ORSP) has a higher priority compared to SHA-1 exclusions. Only file or folder path exclusion has higher priority over ORSP. If you are using Policy Manager Version 14.xx. This setting has been replaced by Files and applications excluded from scanning, which applies to version 12.x, 13.x, and 14.x hosts. Your existing trusted applications have been moved to the new setting.
Article no: 000004819
This article is applicable for the following products: Server Security 12.x, Email and Server Security 12.x, PSB Server Security 12, PSB Email and Server Security. How to uninstall F-Secure Server products on Windows server using Uninstallation Tool?
Although F-Secure Uninstallation Tool is not supported to be used on Windows server, the tool can be used for special cases with the following instructions. Important! DO NOT run this tool if you have Policy Manager installed on the same server. It will delete everything including the H2DB database and will cause data loss.
Download the tool from here Open Command Prompt (cmd) with Run as Administrator... option Navigate to the folder where you saved the UninstallationTool.exe (e.g. Downloads)
cd C:\Users\<your username>\Downloads
Type in Uninstallationtool.exe -a --server to launch the Uninstallation Tool Follow the instruction on the screen and allow the tool to finish the uninstallation Uninstallation will be done.
Article no: 000001459
This article is applicable to the following F-Secure products: Client Security, Policy Manager, PSB Portal, and Computer Protection
Is there a way to prevent customers from copying data to USB storage devices with F-Secure device contol? Can we block all USB storage devices with Business Suite Products
You can limit or block access permissions for removable drives using Device control. Refer to the following link for instructions:
Limiting access permissions for removable drives Blocking device access using predefined rules Getting Hardware ID for a device
Note: Device control can only be configured from the Policy Manger or PSB Portal (Profile editor). There is no local configuration user interface.
Article no: 000002202