
SysLock Modes
SysLock can run in two different modes. The first mode is called "These applications may not run". This mode is utilized by specifying executables that are prohibited.
The second mode is called "Only these applications may run". This mode is very restrictive an only allows users to work with executables that have been authorized by the system administrator. Unlike group policy which requires you to know the name of the executable you wish to lock down, with SysLock you do not have to know the name of the executable you with to lock down. This is important because most administrators usually do not know the name of the "virus of the day".
Even if a user renames an executable, SysLock will recognize the renamed executable and not allow it to run.

Security Management
Using SysLock, an administrator may specify the applications to be blocked on the system via an inclusive list (i.e., only specified apps can run) or an exclusive list (i.e., only specified apps are blocked). Additionally, SysLock can be configured to notify the user of the blocked application, to perform other notification events via standard SysTrack notification mechanisms, or to take defined actions such as the execution of specified corrective scripts.