MD101
MD101
MD101
Evolution of
AppLocker
Create a new WDAC policy by scanning the system for installed applications
New-CIPolicy -Level PcaCertificate -FilePath $InitialCIPolicy –UserPEs 3> CIPolicyLog.txt
Computer Configuration > Administrative Templates > System > Device Guard
Any applications that were caught as exceptions, but should be allowed to run in your environment
Any applications that actually should not be allowed to run in your environment