<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cluster mode: vscan settings : On-access-policy in ONTAP Discussions</title>
    <link>https://community.netapp.com/t5/ONTAP-Discussions/Cluster-mode-vscan-settings-On-access-policy/m-p/13981#M3224</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am trying to find out the what would be the right vscan setting for my cluster mode environment.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The settings I am specifically after are "Filters" options under&amp;nbsp; "On-access-policy". By default it is set to mandatory. But the negative with that is if the AV scanners drops out then the end user would get a access denied error. So I was trying to see if "scan-execute-access" would the right one. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The man page of that options says "Scan only files opened with execute-access (CIFS only)". My understanding is that there would be a scan request only when a user open the file (with him having right access ofcourse). &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does this include a scan on the execution and writing of the file as well?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also would there be a scan request if the same file is opened by a user with only read access?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any detailed information about this would be of great help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 05 Jun 2025 05:35:11 GMT</pubDate>
    <dc:creator>KUBER_KATANA1</dc:creator>
    <dc:date>2025-06-05T05:35:11Z</dc:date>
    <item>
      <title>Cluster mode: vscan settings : On-access-policy</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/Cluster-mode-vscan-settings-On-access-policy/m-p/13981#M3224</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am trying to find out the what would be the right vscan setting for my cluster mode environment.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The settings I am specifically after are "Filters" options under&amp;nbsp; "On-access-policy". By default it is set to mandatory. But the negative with that is if the AV scanners drops out then the end user would get a access denied error. So I was trying to see if "scan-execute-access" would the right one. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The man page of that options says "Scan only files opened with execute-access (CIFS only)". My understanding is that there would be a scan request only when a user open the file (with him having right access ofcourse). &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does this include a scan on the execution and writing of the file as well?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also would there be a scan request if the same file is opened by a user with only read access?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any detailed information about this would be of great help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Jun 2025 05:35:11 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/Cluster-mode-vscan-settings-On-access-policy/m-p/13981#M3224</guid>
      <dc:creator>KUBER_KATANA1</dc:creator>
      <dc:date>2025-06-05T05:35:11Z</dc:date>
    </item>
  </channel>
</rss>

