Allowlisting Basics
Overview and basic procedures for allowlisting programs in Root Lock by HeartSuite.
Overview: By default, any program on a Linux server can execute, access any file, and connect to any destination. Root Lock by HeartSuite controls all three per program — not per user, per program. Two different programs running under the same user get separate allowlist entries with separate permissions. The Dashboard guides you through each approval phase and tracks your progress.
Allowlisting spans three phases of the Root Lock by HeartSuite setup process:
[p]): Approve which programs are permitted to execute.[f]): Approve which files and directories each program can read or write.[i]): Approve which outbound internet destinations each program can reach.Start from the Dashboard — it shows how many items are waiting in each queue and the Suggested Next Step directs you to whichever needs attention. The review queues manage volume through intelligent grouping, not blind bulk approval.
Overview and basic procedures for allowlisting programs in Root Lock by HeartSuite.
CLI tools for scripted and automated allowlisting workflows.
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.