
best thing is that it is centerlized and if any attack or virus detedted it islotae the system then admin can review all log from central port Review collected by and hosted on G2.com.
there is no depth of exclusion if want exlude all subdomain can not use *.domian.com need to manualy define all URL and for some custom app or script that you have to define fix path location otherwise MDR blocck and remove that Review collected by and hosted on G2.com.