Allow isolation allowlist entries by executable, not just IP address
Stephen Moody
We would like to be able to have isolation exception rules mapped to specific executables in addition to IP addresses. Currently, cloud RMMs/remote tools can't be effectively allowed, nor other tools like endpoint PAM that would be useful in isolation incidents, without having to un-isolate the host. The WFP filter engine appears to allow rules defined by executable, which seem like would give us the capabilities needed.
Y
Yossi Leitner
We don't use isolation because the lack of this feature.
Why? because we have a content filter installed on devices, that if it's being blocked internet access, it also blocks internet access. So neither the filter nor Huntress can communicate with the device.