softwarehowto.com
  Home Contacts Partners Add Software Remove Manuals
 
System safety monitor: Driver rules applied for applications to load drivers
 
Introduction
System Safety Monitor
Hotkeys
   
Tutorial
Install SSM
Create Rules
Setup Logging
Enable Applications Rules
Create Rules in Learning Mode
Enable Modules
Setup Windows Filters
   
Preferences
Process Monitor
Rules
Application Rules
Library (DLL) Rules
Driver Rules
Registry Rules
Network Rules
   
Modules
INI-files Module
Start Menu Module
Services Module
Window Filter Module
Layered Service Provider Module
Hooks Module
NetStat Module
Modules Alerts Dialog
 
Buy System Safety Monitor Online! Buy System Safety Monitor Online!

Driver Rules

Driver rules are displayed on the "Rules"->"Drivers" tab.

Driver rules

usb drive locking software free password recovery recover files partition
recover deleted files sd card free micro sd recovery software restore deleted photos
recover deleted photos memory card microsoft office purchase order purchase order management software

Overview

Driver rules are applied if an application is about to load a driver. When an application is trying to load a driver for which no rule exists, the user will be prompted to create a permanent or temporary (one time) rule. On attempt to load an updated/modified driver for which an enabling rule exists, SSM will ask user permission to recalculate the rule checksum.

Advanced properties

Configure driver rules

In this window user defines which groups and applications can load the given driver.

Advanced properties for Driver Rules

Actions for particular group or application in the list:

  • "Deny to load" (Prevent injection) - the group/application is not allowed to load this driver;
  • "Allow to load" (Allow injection) - the group/application is allowed to load this driver;
  • "Default" (Prevent injection, Allow injection and Ask user accordingly):
    • for group: the group's action that is set in;
    • for non-group: action, inherited from the group.

Special permissions

Logging tab

Driver rules logging options

Enable logging

If you set then SSM will use settings from "Logging" section in "Options" tab.

Options tab

Protect rule from deletion

Protects rule from deletion: when "Remove rules for non-existent files" is executed, this rule by default is unchecked for deletion.

Don't verify checksum (NOTE: this option is unchecked and disabled for "Checksum rule" object type rules and it is not available for "Driver (folder)" object type rules). Do not perform the driver checksum (MD5 or SHA256) check when the driver is being loading.

Include subfolders (NOTE: only for "Driver (folder)" object type rules)
Specifies whether settings are applied to drivers in the subfolders.

Buy System Safety Monitor Online! Buy System Safety Monitor Online!
 
Home Contacts Partners Add Software Remove Manuals