We have enabled Malicious activity protection feature in cisco AMP, how do we validate it in policy.xml. What is the key word to search and check if it has enabled or not.
Can someone help in this regard.
You could look at the serial number to ensure it matches the serial number in the console for that policy or look for this in the policy.xml:<heurtistic> <enable>1</enable>
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: