Manage Endpoints in the GravityZone Portal
Table of Contents
The Gravity Zone portal provides some powerful tools for creating and assigning policies. We highly recommend reading up on all of the available tools available to you with a Bitdefender partner account here.
Create & Assign a New Policy
To create and assign a new policy, follow these steps:
- Navigate to your GravityZone portal and choose the "Policies" option from the left sidebar.
-
Click Add to start to configure your new policy:
Tips:- To help you get set up and running with GravityZone's policies, see Partner's Guide and Online Support Center.
- If you plan on using the Firewall Module, review the default firewall settings. By default, Bitdefender might have all Network Printing blocked.
-
Once you have your new policy configured, choose the "Network" option from the left sidebar. Select the Company or Endpoints you'd like to assign the new policy to, then select “Assign Policy:”
-
Choose your new policy, then click Save:
You've successfully created and assigned a policy in the Gravity Zone portal.
Remove Licenses
Syncro bills for Bitdefender based on the information stored in GravityZone.
- First, make sure the effective policy for the asset does not include Bitdefender in the Antivirus tab. This will prevent the effective policy from reinstalling Bitdefender automatically.
- To trigger an uninstallation of the Bitdefender Agent from GravityZone, navigate to the "Network" tab in GravityZone.
-
Right-click on the Asset you want to manage and select Tasks > Uninstall Agent:
Tip: Select all the endpoints and send a bulk action using the Actions button at the top:
After the uninstall completes, we recommend that you verify that the asset has been truly removed in GravityZone. This can help avoid unexpected charges.
If you're having trouble uninstalling Bitdefender, you can manually run the Bitdefender Uninstall Tool.
Note: Even if an asset has been removed from Syncro, if it’s still appearing in GravityZone, you will be billed for the endpoint usage. See Billing for more information.
Enable Bitdefender Add-Ons
Bitdefender add-ons can ONLY be enabled inside the GravityZone portal.
IMPORTANT:
- Please read this section before making any changes to your GravityZone account. Enabling add-ons in your GravityZone policies can result in extra charges. See the Partner's Guide for more information.
- Patch Management is not a module Syncro resells from Bitdefender; even if you enable it via a policy, it is non-functional. Instead, use Syncro's built-in tools for Third-Party Patch Management and Windows Patch Management.
You are able to enable or disable add-ons for the companies you manage.
Read on, or watch this short video to learn more:
To enable or disable add-ons for the companies you manage, follow these steps:
- Navigate to the Companies tab, then choose a Company.
- In the Licensing subtab, click Edit Licensing Options:
Advanced Threat Security: HyperDetect, Sandbox Analyzer
Offers advanced security or managed threat hunting services using more aggressive tunable machine learning, enhanced sandbox detection, threat context, and visibility. Protects customers against targeted and file-less attacks, ransomware, and exploits. It blocks attacks at pre-execution with aggressive tunable machine learning.
IMPORTANT: The HyperDetect feature is enabled on all Syncro partner accounts as an option to resell. If you toggle HyperDetect to ‘On’ in your Default GravityZone policy, this is what incurs the add-on charge. To disable this, navigate to your default policy (or, any active policies) in GravityZone and ensure that both HyperDetect and Sandbox Analyzer are disabled.
To disable them from the policy, follow these steps:
- In the Policies section, select the policy that is currently being assigned.
- In the Antimalware section, under HyperDetect, find the HyperDetect toggle.
-
At the top of the screen, click to move the HyperDetect toggle OFF:
- Save the policy.
If you've never created a custom policy and are still using the default policy in GravityZone, then this policy is read-only and you won't be able to make the changes necessary to get these modules disabled. You'll first want to clone the default policy, which will give you write access. Then, you'll proceed with disabling the settings detailed above and set this as your new default policy. Once handled, you can proceed with re-assigning your existing endpoints to the new default policy.
This video from Bitdefender Support will show how to enable HyperDetect along with a quick demo.
Bitdefender MDR Bundle
Syncro's MDR bundle includes Bitdefender Core, Advanced Threat Security, EDR (Endpoint Detection and Response), and MDR (Managed Detection and Response).
Endpoint Detection and Response (EDR)
Offers clear visibility into indicators of compromise (ICOs) plus one-click threat investigation and incident response workflows, Bitdefender EDR reduces resource and skill requirements for security teams. It performs a broad capture of system activities (file & process, program installation, module loads, registry modification, network connections, etc.) to aid in an enterprise-wide visualization of the chain events in the attack.
IMPORTANT: Deploying the EDR module for install incurs an add-on charge, but you still must have a correctly configured GravityZone policy assigned to use the installed module.
Email Security
Protect emails from spam, phishing, malware as well as sophisticated or targeted attacks. It prevents email impersonation and fraud and leverages multiple leading security engines and behavioral technologies to analyze incoming and outgoing email content, URLs, or attachments.
Please refer to this video from Bitdefender Support showing how to set up this feature.
Security for Exchange
We label this as "Exchange Security and Anti-Spam." Bitdefender Security for Exchange provides antimalware, antispam, anti-phishing, attachment and content filtering seamlessly integrated with the Microsoft Exchange Server, to ensure a secure messaging and collaboration environment and increase productivity.
Full Disk Encryption
Leverages the encryption mechanisms provided by Windows(BitLocker) and Mac (FileVault), taking advantage of the native device encryption, to ensure compatibility and performance. There will be no additional agent to deploy and no key management server to install.
Security for Virtual Environments
For both Server and Desktop, protection is specifically designed for virtual environments, enabling a seamless fit into your virtual and cloud infrastructure.
Managed Detection and Response (MDR)
Bitdefender Managed Detection and Response gives you 24x7access to an elite team of cybersecurity experts. Our service is also backed by industry-leading, trusted Bitdefender security technologies like GravityZone® eXtended Detection & Response (XDR).
Bitdefender MDR combines endpoint, network, cloud, identity, and productivity application telemetry into actionable security analytics, augmented by the threat-hunting expertise of a fully staffed security operations center (SOC) with security analysts from global intelligence agencies.
Note: MDR also requires BitDefender Core, ATS, and EDR.
Mobile Security
GravityZone Security for Mobile ensures safe and secure access to corporate data, safeguarding both corporate-owned and BYOD devices from modern attack vectors, including zero-day, phishing, and network attacks, by detecting both known and unknown threats.
Note: Mobile Security is for iOS, Android and ChromeOS.
XDR Sensors
Note: XDR Sensors also require BitDefender Core, ATS, and EDR.
Sensor | Description |
---|---|
Cloud |
GravityZone XDR for MSP automatically correlates information about potential attacks across all parts of your clients’ organization into a consolidated view, showing where the attack originated and how it is spreading. At the same time, further investigation and quick response options are available to contain the attack rapidly. The Cloud Sensor collects and processes information about configuration changes and user activity. |
Identity |
GravityZone XDR for MSP automatically correlates information about potential attacks across all parts of your clients’ organization into a consolidated view, showing where the attack originated and how it is spreading. At the same time, further investigation and quick response options are available to contain the attack rapidly. The Identity Sensor collects and processes user sign-in activity, configuration changes and other activity. |
Network |
GravityZone XDR for MSP automatically correlates information about potential attacks across all parts of your clients’ organization into a consolidated view, showing where the attack originated and how it is spreading. At the same time, further investigation and quick response options are available to contain the attack rapidly. The Network Sensor collects and processes network traffic across the environment. |
Productivity App |
GravityZone XDR for MSP automatically correlates information about potential attacks across all parts of your clients’ organization into a consolidated view, showing where the attack originated and how it is spreading. At the same time, further investigation and quick response options are available to contain the attack rapidly. The Productivity App Sensor collects and pre-processes data about email traffic and content. |