File: //etc/Acronis/APL/active-protection.conf
# Commented lines contain default values
# 'active protection' (aka AP/APL)
# ACTIVE_PROTECTION_DISABLED false
# Add all files from rpm and dpkg package managers to white list
# PACKAGE_MANAGER_DPKG_WHITELIST_ENABLED true
# PACKAGE_MANAGER_RPM_WHITELIST_ENABLED true
# PACKAGE_MANAGER_ACRONIS_RPM_WHITELIST_ENABLED true
# RUNTIME_BLACKLIST_ENABLED true
# Path to log file
# LOG_DIR_PATH /var/log/Acronis/APL
# Size of log file activating log file rotation when reached
# LOG_FILE_SIZE_LIMIT 10MiB
# Number of log file backups participating in log file rotation
# LOG_FILE_ROTATE_COUNT 14
# CPS Log Level, by default everything is enabled except for VERBOSE
# To enable VERBOSE logging, use CPS_LOG_LEVEL_MASK=15
# CPS_LOG_LEVEL_MASK 7
# Path to directory, where backup is stored
# BACKUP_STORAGE_DIR /var/cache/Acronis/APL/backup
# Set limit on total size of backup
# default is min of 10% of disk capacity and 20GiB
# STORAGE_CAPACITY 20GiB
# File 'info' (and 'backup' data if present) will be discarded if there
# are no actions with the file during this time interval
# FILEINFO_LIFETIME 5min
# Number of threads witch will process messages
# EVENT_HANDLERS_NUMBER 8
# Set timeout for resetting heuristics
# RESET_HEURISTICS_TIMEOUT 1min
# SILENT_MODE false
# Enable interrupt alerter feature
# INTERRUPT_ALERTER_ENABLED true
# Interrupt alerter sending interval to AlertManager, alerts will be coalesced for this amount of time
# INTERRUPT_ALERTER_SENDING_INTERVAL 15sec
# Interrupt alerter will send alert to this aakore endpoint for alert manager
# INTERRUPT_ALERTER_ENDPOINT /api/alert_manager/v1/alerts
# Interrupt alerter will send alert to this aakore endpoint for alert manager if EDR is enabled
# INTERRUPT_ALERTER_EDR_ENDPOINT /api/cps/v1/ap_send_alert
# When AP is fully started, it will send a message to this endpoint
# CONNECTED_EDR_ENDPOINT /api/cps/v1/ap_connected
# Interrupt alerter HTTP request timeout
# INTERRUPT_ALERTER_TIMEOUT 10sec
# Enable quarantine requester feature
# QUARANTINE_REQUESTER_ENABLED true
# Quarantine requester sending interval to CPS
# QUARANTINE_REQUESTER_SENDING_INTERVAL 5sec
# Quarantine requester will send alert to this aakore endpoint for CPS
# QUARANTINE_REQUESTER_ENDPOINT /api/cps/v1/quarantine
# Quarantine requester HTTP request timeout
# QUARANTINE_REQUESTER_TIMEOUT 10sec
# Quarantine requester retries amount
# QUARANTINE_REQUESTER_RETRIES 3
# 'antimalware protection' (aka AMP/AVC/CPS/NGMP)
# ANTIMALWARE_ENABLED true
# TELEMETRY_ENABLED false
# Enable telemetry alerter feature
# TELEMETRY_ALERTER_ENABLED true
# Server address to send value to
# TELEMETRY_ALERTER_HOST telemetry.acronis.com
# Telemetry will send alert to this endpoint
# TELEMETRY_ALERTER_ENDPOINT /cps
# Port to send telemetry to
# TELEMETRY_ALERTER_PORT 443
# Sending interval to telemetry, alerts will be coalesced for this amount of time
# TELEMETRY_ALERTER_SENDING_INTERVAL 15s
# Telemetry HTTP request timeout
# TELEMETRY_ALERTER_TIMEOUT 10
# --- Cloud Whitelists Configuration Start ---
# HOST - host and port to make request to
# PORT - empty values mean that the request will be sent over 'aakore'
# ENDPOINT - endpoint to send request to
# TIMEOUT - http request timeout
# CACHE_SIZE - max amount of local records in LRU
# CACHE_TTL - local ttl in the cache
# CLEANSET_ENABLED true
# CLEANSET_HOST nimbus.bitdefender.net
# CLEANSET_PORT 443
# CLEANSET_ENDPOINT /napi/file_md5/cleanset
# Key used in headers to access BitDefender
# CLEANSET_KEY 64c55ccf-759b-4fa3-82a0-799b89b5bb05
# CLEANSET_TIMEOUT 3
# CLEANSET_CACHE_SIZE 500
# CLEANSET_CACHE_TTL 300
# CLOUD_WHITELIST_ENABLED true
# CLOUD_WHITELIST_HOST telemetry.acronis.com
# CLOUD_WHITELIST_PORT 443
# CLOUD_WHITELIST_ENDPOINT /api/av/whitelist
# CLOUD_WHITELIST_TIMEOUT 3
# CLOUD_WHITELIST_CACHE_SIZE 500
# CLOUD_WHITELIST_CACHE_TTL 300
# FRS_ENABLED true
# FRS_HOST
# FRS_PORT
# FRS_ENDPOINT /api/frs/v1/reputation/requests
# FRS_TIMEOUT 3
# FRS_CACHE_SIZE 500
# FRS_CACHE_TTL 300
# --- Cloud Whitelists Configuration End ---
# DRIVER_ALERT_HOST ""
# DRIVER_ALERT_PORT 0
# DRIVER_ALERT_ENDPOINT "/api/alert_manager/v1/alerts"
# DRIVER_ALERT_TIMEOUT 10
# DRIVER_ALERT_RETRY_INTERVAL 15
# UNLOAD_DRIVER_ON_EXIT false
UNLOAD_DRIVER_ON_EXIT true
# UNLOAD_DRIVER_RETRY_COUNT 0
UNLOAD_DRIVER_RETRY_COUNT 20
# UNLOAD_DRIVER_RETRY_INTERVAL 15sec
# AUTH_REQUIRED true