This guide can be used when WatchGuard starts generating false positives about the Atera agent being malicious.
You will need to log into your WatchGuard account to whitelist the Atera agent's file path. Once you have successfully logged in, please follow the steps below to configure scan exclusions:
1. In WatchGuard Cloud, select Configure > Endpoints.
2. Select Settings.
3. From the left pane, select Workstations and Servers.
4. Select an existing security settings profile to edit, copy an existing profile, or in the upper-right corner of the page, click Add to create a new profile.
The Add Settings or Edit Settings page opens.
5. Enter a Name and Description for the profile, if required.
6. Select General.
2. Select Settings.
3. From the left pane, select Workstations and Servers.
4. Select an existing security settings profile to edit, copy an existing profile, or in the upper-right corner of the page, click Add to create a new profile.
The Add Settings or Edit Settings page opens.
5. Enter a Name and Description for the profile, if required.
6. Select General.
7. To exclude a specific file, in the Files text box, type the file name and path to exclude (e.g.: C:\windows\system32\filename.dll)
Note: separate multiple entries with commas.
8. To exclude all files in a specific location, in the Folders text box, type a folder path (e.g.: C:\windows\system32, \\192.168.21.23\test, and %ProgramFiles%\Test)
9. Click Save.
10. Select the profile and assign recipients, if required.
For more details, please check the following WatchGuard article.