7 Customizing the default protection policy 7.1 Introduction The default protection policies which ship with GFI EndPointSecurity are fully customizable and can be configured to suit your company’s portable device security policy. In this chapter you will learn how to make configuration changes in all sections of the default protection policies. The information gained from this chapter will also help you in building your own protection policy from scratch. Chapter Preview These are the protection policy sections which will be covered: • Configuring which portable devices will be controlled • Configuring which connectivity ports will be controlled • Configuring power users • Configuring device category access permissions • Configuring connectivity port usage permissions • Configuring access permissions for a specific device • Viewing permissions • Configuring priorities for permissions • Configuring portable device blacklist • Configuring portable device whitelist • Configuring temporary access privileges • Configuring file-type filters • Configuring event logging and notifications.