You can import policies onto your Symantec Endpoint Detection and Response appliances. Importing policies into the Cloud environment is currently unsupported. And when you import policies onto an appliance, those policies do not propagate to the Cloud environment.
To import Symantec Endpoint Detection and Response Whitelist policies or Blacklist policies
Do one of the following:
In the EDR cloud console, click . Then under Environment, select the appliance that you want to import the policies to.
In the EDR appliance console, click .
Click the plus icon.
Select .
In the Import Policy dialog box, click . Locate and select the file that you want to import.
The file must be in .json format.
Click .
A message appears indicating whether the list was successfully imported.
In the Import Policy dialog box, click .
The newly imported entries should appear in the policy list.
You can check the Logging > System Activity page for the appliance on which you imported the policy for the import status. The status also provides the number of duplicate entries, if any are found.
See Searching the System Activity log
See About importing and exporting policies
See Creating a Blacklist policy
See Creating a Whitelist policy
See Exporting Whitelist policies and Blacklist policies
Thanks for your feedback. Let us know if you have additional comments below. (requires login)