Adding Threats to Exclusions
If you get a threat that you know is not malicious, you can add it to your exclusions so that it is no longer reported as a threat. This helps reduce distractions by preventing false positives in the future. If you decide the threat may be malicious later, you can also remove the threat from the exclusions.
When you add a threat to the exclusions, you're adding the threat's Hash to the list. A threat on the exclusions list is allowed for all endpoints in the site where you allowed the threat.
You can also add files and folders that are not included in an existing threat to inclusions. See Adding Files and Folders to Exclusions.
To add a threat to exclusions
In Barracuda XDR Dashboard, click Endpoint Security > Overview.
In the All Threats table, click the row of the threat you want to add to the exclusions.
In the top right corner, click Unquarantine and Add to Exclusions.
Click Confirm.
To view the exclusion list, go to Endpoint Security
> Exclusions.
Additional exclusion types and scopes for threats are available. For more information, contact the SOC.