We all know that shared-folders are honeypots for viruses (specially worms). When such share is on SEP client exception-list it becomes a vector for the malwares.
I suggest a flag when adding a folder-exception under centralized exceptions policy to ignore the exception if the folder is shared.
Of course, it requires some code-implementation on client-side as well.
If you like the idea please vote it and perhaps Symantec will include it on the next releases....