- 10 Microsoft research projects
- 10 kitchen gadgets for the geek gourmet
- Verizon trounces competition
- Smartphone smackdown: Storm vs. iPhone
- FBI warns of holiday cyber scams
Beagle. NetSky. Sasser. Three viruses, all wreaking havoc in one month's time. Anti-virus software is no longer just an option - it's a requirement.
Everyone with a computer connected to a network, especially those running a Windows operating system, must run an anti-virus program to protect against these attacks. But anti-virus companies traditionally have been a bit lax in providing adequate management wares to help IT control these products on a wide scale.
We took a quick look at McAfee Security's ProtectionPilot 1.0 management console. While this software can manage only up to 500 machines in its current state, it was a simple, intuitive approach to anti-virus management that has features we hope to see bubble up to more wide-scale AV management wares.
ProtectionPilot is used for all anti-virus management across all Windows machines, including deployment, reporting and profile configuration. One key default configuration set with this product is the concept of update checks. By default, the central server checks for new signature updates from McAfee, and the clients check the central server for new signature updates every hour.
The dashboard, viewable immediately after launching the console and authenticating yourself, provides all the information an anti-virus manager needs to see with one glance: time of last signature update, the anti-virus update status of all registered computers and the number of viruses found with the actions taken (for example deleted, quarantined or cleaned). One nice feature is that this screen (and any other) has a printer-friendly view, perfect for management-compliance reports.
Deploying anti-virus software to any computer on a network is as simple as following the steps of a deployment wizard. Machines also can be categorized according to existing Active Directory groups or custom groups defined by an administrator. If a remote client needs an immediate signature update, the process is as simple as selecting the Update button. You can update all registered computers with one click of the mouse.
Once computer groups are created, each group can run a different client policy. Configurable options include the ability to disable the start-up splash screen, the icon displaying in the system tray, on-access file scan, quarantine location and alert manager. The only option we could not find to configure was the ability to remove the program from the Add/ Remove Programs list or require a password for un-install to prevent users from removing the software from their systems.
Partner Content
Brilliantly simple security and control solutions for email, web and endpoint
www.sophos.com
Stopping data leakage
Learn how to exploit your current security investment to control the information that flows into, through and out of your network.
Download the white paper.
Why detection rates aren't enough
Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask prospective vendors to get the right endpoint solution.
Download the white paper.
Applications: taking back control
Employees installing unauthorized applications is a growing threat to business security and productivity. Cost-effectively reduce this threat by integrating control into your malware protection.
Learn more today.
Comment