As part of the ThreatLocker rollout, a new process for approving and installing applications will be implemented.
Previously, application control blocks by Ivanti could be bypassed by one of the following methods:
- Install applications from the \\mel-cm-svr1\Application Control folder, or
- Put the laptop in question into Maintenance Mode in Ivanti.
As we move away from Ivanti to ThreatLocker, these methods will no longer be available.
Applications source installs can still stored in the Application Control folder, but installing new applications from this location will not automatically bypass ThreatLocker.
An extensive process has been conducted in order to populate ThreatLocker with the requrrei rules to allow pre-approved/exisiting applications.
However, some may have been missed and new applications are required from time to time. Therefore, if you find you are installing or running and application that gets blocked by ThreatLocker (indicated by the pop-up below), and you beleive this application to be legitimately required, the please follow the below approval process.
Application Approval Process
- Confirm the business requirement with the user.
- Escalate the request to SecOps (Red Hamel and Andy McConnell).
- SecOps will assess the request.
- If approved, SecOps will implement the required policy change within Threatlocker.