> Source: [sk141692](https://support.checkpoint.com/results/sk/sk141692)

# sk141692 - How to enable "termination on execution" feature of Firewall and Application Control blade

| Property | Value |
|----------|-------|
| Solution ID | sk141692 |
| Date Created | 2018-12-28 |
| Last Modified | 2021-01-12 |
| Technical Level | General |
| Products | Endpoint Security |
| Versions | Cloud, E89.X, E88.X |

## Solution

If required, the Firewall and Application Control blade is able to terminate undesired applications at the very beginning of application start. All applications that were added to the "Termination" policy will not be allowed to start.

**This feature is disabled by default.**

**How to enable?** Perform the following steps on all Endpoint Security Clients, according to relevant case**:** Server Version \>=R81 And Client version \>=E84.20  

Feature can be set up via policy in *Smart-Endpoint* application  

![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk141692/terminate_on_execution202010260910431.png)  

**Note:** On client versions **E84.20 and E84.30** , client **reboot**is required after policy installation !

<br />

Server Version \< R81 Or Client version \< E84.20  

**Option 1: Perform the following steps on all Endpoint Security Clients**

1. Boot in Safe Mode without networking.
2. Open *regedit* and find reg key *HKEY_LOCAL_MACHINE\\SYSTEM\\CurrentControlSet\\Services\\vsdatant\\Parameters*
3. Create DWORD value *AC_TermOnExecution* with value "1".
4. Reboot to Normal Mode.

**Option 2: Perform the following steps in SmartEndpoint:**

1. In a compliance policy, open "Required Applications and Files Compliance Settings" action.
2. Click "Create Rule" button. In a created new rule, right-click on an empty Name cell and click "Edit...". Enter "Enable AC_TermOnExecution" rule name.
3. Right-click on a "Checks" cell. in a context menu, select "New...", and select "Registry Entity Check":  

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1543832048635/Untitled1812030240.png)
4. In the "Name" field, enter "Check AC_TermOnExecution".

5. Select "Check Registry" checkbox. Select "Registry key and value exist" option.

6. In the "Registry Value Name" field, enter:  

   *UPDATE REG_DWORD HKEY_LOCAL_MACHINE\\SYSTEM\\CurrentControlSet\\Services\\vsdatant\\Parameters\\AC_TermOnExecution*
7. In the "Registry Value Data" field, enter "1".

8. Uncheck "Check File" checkbox:

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1543832048635/Untitled1812030239.png)
9. Click "OK".

10. Save and install policy.

Once the rule is enforced on a target PC, the "terminate on execution" feature will be enabled in the next OS boot.

**Related Solution:** [sk132932 - How to modify registry entry or replace/install file on Endpoint Security Client using Compliance Blade](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk132932).

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
