Employees on their workstations, right-click on the Status bar Sep icon, stop the SEP service, resulting in administrator-defined policy invalidation, for the above situation, please install the following method operation.
1. Open the SEPM.
2. Select the "anti-virus and anti-spyware" policy you use in the "strategy" and lock all marked places, both: "File system auto-protect", "email auto-protect", "outlook Auto-protect", "lotus Auto-protect", "Truscan Active threat Scan" , "Quarantine", "submit", "other".
3, then, in the "client" issued the policy you have just modified.
4. Select "Client", select the group you want to disable (if there are multiple groups, to set each group), click "Policy", "General Settings", "Security settings", you can increase the client's uninstall password and stop the service password. Prevent customers from uninstalling, and stopping Sep services.
5, click the "Location-specific Settings" below, click "Server Control", tap "Custom", here can do not display the client icon, but this will be inconvenient for the customer's operation. Remove the "Allow customers to enable and disable Network Threat protection" section below and save it.
Configuration to this end. Contact me if you have any questions
This article is from the "Flying Chopper " blog, please be sure to keep this source http://caidao.blog.51cto.com/254338/477020
Prohibit users themselves from stopping Sep-flying Chopper-51CTO Tech Blog