How to disable and add exceptions to the Software Restriction Policies for TeamViewer in Windows 10
Background
Instruments with Windows 10 Operating System (OS) have the Software Restriction Policies (SRP) feature enabled by default. This security feature blocks programs that are not specifically on the SRP exceptions list. When using TeamViewer QuickSupport (QS), an exception must be added to SRP to allow TeamViewer QS to launch properly.
Resolution Actions
Disabling and Enabling SRP
Confirm that a sequencing run is not in progress and the instrument is idle.
Log in to the Windows OS using the sbsadmin local Administrator account.
For NovaSeq 6000 with serial numbers smaller than A01535, the
sbsuseraccount is part of the Administrators group.
Open Windows File Explorer and navigate to the C:\Illumina\Security folder (Figure 1).
Double-click Disable.reg and acknowledge the prompts (Figures 2, 3).
When finished, double-click Enable.reg and acknowledge the prompts to re-enable SRP.
Adding Exceptions for TeamViewer to SRP
Confirm that a sequencing run is not in progress and the instrument is idle.
Log in to the Windows OS using the sbsadmin local Administrator account.
For NovaSeq 6000 with serial numbers smaller than A01535, the
sbsuseraccount is part of the Administrators group.
Disable SRP by navigating to C:\Illumina\Security, double-clicking Disable.reg, then acknowledge the prompts (Figures 1-3).
In the Windows search bar, input
secpoland open the Local Security Policy App (Figure 4).In the Local Security Policy dialog box, expand Software Restriction Policies, then select Additional Rules (Figure 5).
To add a rule:
On the Action menu, select New Path Rule….
In the Path field, enter the certificate, file name, file extension, or directory that you want to allow.
In the Security level list, select Unrestricted.
[Optional] In the Description field, enter a reason for creating the rule.
Select OK to add the rule.
Separately add the following rules using Steps 6a-e for both of the following paths (Figures 6, 7):
TeamViewerQS*.exe
C:\Users\\AppData\Local\Temp\TeamViewer\
Close the Local Security Policy application.
Reenable SRP by navigating to C:\Illumina\Security, double-click Enable.reg, then acknowledge the prompts.
Sign out of
sbsadminaccount and then sign back in assbsuserfor the settings to take effect.

Figure 1: Double-click Disable.reg to disable SRP.

Figure 2: Select Yes to acknowledge the prompt.

Figure 3: Select OK to acknowledge the prompt.

Figure 4: Open Local Security Policy to add exceptions for TeamViewer to SRP.

Figure 5: Expand Software Restriction Policies and then select Additional Rules.

Figure 6: Select Action and then select New Path Rule...

Figure 7: Input TeamViewerQS.exe in the Path free-text field and select Unrestricted in the Security Level drop-down menu, then select OK. Repeat these steps to add C:\Users\\AppData\Local\Temp\TeamViewer\ as a second Path Rule.
For any feedback or questions regarding this article (Illumina Knowledge Article #6523), contact Illumina Technical Support techsupport@illumina.com.
Last updated
Was this helpful?
