AV Exclusions on Linux

How to apply the AV exclusion on Linux OS for the BigFix Platform core components.

  • On the BigFix Server

    The following folder and sub folder paths should be excluded:

    /opt/BESServer/

    /opt/BESWebReportsServer/

    /var/opt/BESServer/

    /var/opt/BESInstallers/

    /var/opt/BESWebReportsServer/

    /var/log/

    /etc/opt/BESServer/

    /etc/opt/BESWebReportsServer/

    /etc/init.d/

    /usr/lib/systemd/system

    Additionally the following processes should be excluded as well:

    /opt/BESServer/bin/BESFillDB

    /opt/BESServer/bin/BESGatherDB

    /opt/BESServer/bin/BESRootServer

    /opt/BESServer/bin/BESAdmin.sh

    /opt/BESServer/bin/BESAdmin

    /opt/BESServer/bin/iem

    /opt/BESServer/bin/Airgap

    /opt/BESServer/bin/Airgap.sh

    /opt/BESWebReportsServer/bin/WebReportsInitDB.sh

    /opt/BESWebReportsServer/bin/BESWebReportsServer

  • On the BigFix Relay

    The following folder and sub folder paths should be excluded:

    /opt/BESRelay/

    /var/opt/BESRelay/

    /var/log/

    /etc/init.d/

    /usr/lib/systemd/system

    Additionally the following processes should be excluded as well:

    /opt/BESRelay/bin/BESRelay

  • On the BigFix Client

    The following folder and sub folder paths should be excluded:

    /opt/BESClient/

    /var/opt/BESClient/

    /var/opt/BESCommon/

    /etc/opt/BESClient/

    /etc/init.d/

    /usr/lib/systemd/system

    Additionally the following processes should be excluded as well:

    /opt/BESClient/bin/BESClient

    /opt/BESClient/bin/qna

    /opt/BESClient/bin/XBESClientUI

    /opt/BESClient/bin/XOpenUI

    /opt/BESClient/bin/xqna

  • On the BigFix WebUI Server

    The following folder and sub folder paths should be excluded:

    /opt/BESWebUI/

    /var/opt/BESWebUI/

    /etc/init.d/

    /usr/lib/systemd/system

    Additionally the following processes should be excluded as well:

    /opt/BESWebUI/bin/BESWebUI

    /var/opt/BESWebUI/node

  • On the BigFix Portal

    The following folder and sub folder paths should be excluded:

    /opt/BESPluginPortal/

    /var/opt/BESPluginPortal/

    /var/log/

    /etc/init.d/

    /usr/lib/systemd/system

    Additionally the following processes should be excluded as well:

    /opt/BESPluginPortal/bin/BESPluginPortal