Microsoft Software Update Services and Managed Symantec Anti-virus. Michael Satut TSS/Crown IT Support m-satut@northwestern.edu



Similar documents
Getting started. Symantec AntiVirus Corporate Edition 8.1 for Workstations and Network Servers

Pearl Echo Installation Checklist

Getting Started. Symantec Client Security. About Symantec Client Security. How to get started

Getting started. Symantec AntiVirus Corporate Edition. About Symantec AntiVirus. How to get started

System Management. What are my options for deploying System Management on remote computers?

Getting started. Symantec AntiVirus Business Pack. About Symantec AntiVirus. Where to find information

Getting started. Symantec AntiVirus Corporate Edition. About Symantec AntiVirus. How to get started

Patch management with GFI LANguard and Microsoft WSUS

Kaspersky Endpoint Security 10 for Windows. Deployment guide

Symantec AntiVirus Enterprise Edition

Windows XP with Symantec AntiVirus 10 Corporate Edition

Using Remote Web Workplace Version 1.01

Ignify ecommerce. Item Requirements Notes

Installation Guide for Symantec Endpoint Protection and Symantec Network Access Control

Total Defense Endpoint Premium r12

SyncLockStatus Evaluator s Guide

Kaseya Server Instal ation User Guide June 6, 2008

Core Protection for Virtual Machines 1

HP Client Automation Standard Fast Track guide

Microsoft Windows Server Update Services Questions & Answers About The Product

Sage Grant Management System Requirements

AV Management Dashboard

Data Sheet: Endpoint Security Symantec Endpoint Protection The next generation of antivirus technology from Symantec

KASPERSKY LAB. Kaspersky Administration Kit version 6.0. Administrator s manual

How To Set Up Safetica Insight 9 (Safetica) For A Safetrica Management Service (Sms) For An Ipad Or Ipad (Smb) (Sbc) (For A Safetaica) (

Receptionist-Small Business Administrator guide

PC-Duo Web Console Installation Guide

WINSCRIBE HARDWARE SPECIFICATIONS

F-Secure Internet Gatekeeper Virtual Appliance

Windows Server 2003 x64 with Symantec AntiVirus 10 Corporate Edition

Quick Installation Guide

HoneyBOT User Guide A Windows based honeypot solution

Installation and Deployment

Symantec Endpoint Protection Analyzer Report

How To Install Sedar On A Workstation

Best Practices & Deployment SurfControl Mobile Filter v

Using WMI Scripts with BitDefender Client Security

Asta Powerproject Enterprise

McAfee Enterprise Edition v Installation & Configuration For Windows NT, 2000, and XP

Patch management with GFI LanGuard and Microsoft WSUS

Data Sheet: Endpoint Security Symantec Endpoint Protection The next generation of antivirus technology from Symantec

intertrax Suite resource MGR Web

NSi Mobile Installation Guide. Version 6.2

Remote Support Jumpoint Guide: Unattended Access to Computers in a Network 3. Requirements and Considerations to Install a Jumpoint 4.

Step-by-Step Guide to Setup Instant Messaging (IM) Workspace Datasheet

WebEx Remote Access White Paper. The CBORD Group, Inc.

Getting Started with Symantec Endpoint Protection

Intelligent Power Protector User manual extension for Microsoft Virtual architectures: Hyper-V 6.0 Manager Hyper-V Server (R1&R2)

Symantec Mail Security for Domino

Nexio Connectus with Nexio G-Scribe

Requirements Document for ROI Print Assessment/Print Manager

SPAMfighter Exchange Module

Remote Deposit Capture Installation Guide

Patch management with GFI LANguard N.S.S. & Microsoft WSUS

Novell Open Workgroup Suite

Prerequisites Guide. Version 4.0, Rev. 1

Symantec Endpoint Protection Small Business Edition Getting Started Guide

ITA Mail Archive Setup Guide

Determining Your Computer Resources

Internet Explorer Exploit Protection ENTERPRISE BRIEFING REPORT

System Administration Training Guide. S100 Installation and Site Management

OPAS Prerequisites. Prepared By: This document contains the prerequisites and requirements for setting up OPAS.

XIA Configuration Server

MailStore Outlook Add-in Deployment

Version 3.8. Installation Guide

Getting Started with ESXi Embedded

Enterprise Manager. Version 6.2. Installation Guide

Cisco IP Communicator (Softphone) Compatibility

Version 5.5. SurfControl Web Filter Starter Guide

HP Vulnerability and Patch Manager 6.0 software Installation and Configuration Guide

Ad-Aware Management Server Installed together with Ad-Aware Business Client Ad-Aware Update Server Before You Start the Deployment...

PROTECTION SERVICE FOR BUSINESS WELCOME TO THE BUSINESS OF FREEDOM

Backup Exec 15. Quick Installation Guide

1.0 Hardware Requirements:

FedEx Ship Manager Software. Installation Guide


FEATURE COMPARISON BETWEEN WINDOWS SERVER UPDATE SERVICES AND SHAVLIK HFNETCHKPRO

Compiled By: Chris Presland v th September. Revision History Phil Underwood v1.1

Symantec Backup Exec 2010 R2. Quick Installation Guide

Information Technology

Web based training for field technicians can be arranged by calling These Documents are required for a successful install:

Symantec Endpoint Protection 11.0 Architecture, Sizing, and Performance Recommendations

Symantec LiveUpdate Administrator. Getting Started Guide

ManageEngine Desktop Central Training

INSTALLING MICROSOFT SQL SERVER AND CONFIGURING REPORTING SERVICES

Dell UPS Local Node Manager USER'S GUIDE EXTENSION FOR MICROSOFT VIRTUAL ARCHITECTURES Dellups.com

Symantec Backup Exec 12.5 for Windows Servers. Quick Installation Guide

Pre-Installation Notes & Checklist for LISTSERV Maestro

AVeS Cloud Security powered by SYMANTEC TM

ClickOnce Deployment Notes

OfficeScan. Client/Server Edition 8 for Enterprise and Medium Business


Installation Guide for Pulse on Windows Server 2008R2

Installation Notes for Outpost Network Security (ONS) version 3.2

VMware Horizon Mirage Installation Guide

What is WS_FTP? How WS_FTP Works

Transcription:

Microsoft Software Update Services and Managed Symantec Anti-virus Michael Satut TSS/Crown IT Support m-satut@northwestern.edu

Introduction The recent increase in virus and worm activity has created the constant need to both manually patch Microsoft Windows operating systems and update the virus protection of desktop computers During the lag between availability of updates and actual installation of these updates, desktop computers are vulnerable to both exploit and virus infection. Microsoft SUS and Managed SAV were implemented at School of Communication and then Crown as a more automatic, manageable and efficient solution

SUS- Definition Microsoft Software Update Services (SUS) enables administrators to quickly and reliably deploy the latest critical updates and security updates to Windows 2000 and Windows Server 2003-based servers, as well as to desktop computers running Windows 2000 Professional or Windows XP Professional (http://www.microsoft.com/sus).

SUS- Benefits Gives the local administrator control over when updates are published Automatic installation of approved updates Greatly reduces the gap between release and the deployment of patches Eliminates the need for individual computer visits for the purpose of MS updates Allows for various scheduling options Downloads occur in the background The software is free from Microsoft

SUS- How it works Automatic Updates is a proactive pull service that allows for automatic detection, download, and installation of required Windows updates such as critical operating system fixes and Windows security patches (http://www.microsoft.com/sus).

SUS- Implementation Easily implemented and controlled via Active Directory group policy

SUS- Management Remote administration via HTTP or HTTPS, using a web-based interface Manual or scheduled synchronization with public Windows Update service Allows for selective content approval

SUS Screenshot 1

SUS Screenshot 2

SUS- Requirements Clients Windows 2000 SP3, Windows XP SP1 or later versions require no additional software Windows 2000 SP2 or Windows XP RTM require a MSI installation of the client Server Microsoft Windows 2000 or 2003 server Internet Information Services (IIS) must be enabled on the server An Intel X-86 or compatible P700-level processor, 512 megabytes (MB) of RAM, and 6 gigabytes (GB) of available hard-disk space

Managed SAV- Definition A managed Symantec Anti-Virus environment creates two-way communication between your clients and your parent server. This allows for direct oversight and management of client configuration and virus definitions.

Managed SAV- Benefits More timely and controlled distribution of virus definitions Allows for oversight of all managed client s antivirus protection and status Eliminates the need for individual computer visits to manually update virus definitions Downloads occur in the background The software is also free (NU site-licensed)

Managed SAV- How it works Push and Pull technology On demand administrators can: Initiate a server push of new virus definitions Start a virus sweep of all managed clients On the hour clients will check in with server to: Pull new virus definitions and configuration changes Report current individual status to server

Managed SAV- Implementation Install server version of SAV Install Symantec System Center Console Convert clients to managed: Login scripts or manual install on each client Determine virus definition source: LiveUpdate vs. Intelligent Updater

Managed SAV- Management Management through Symantec System Center Console View and modify client configuration and status Verify clients virus definitions Push updates or start a virus sweep

Managed SAV- Requirements Server Microsoft Windows NT4 sp6, 2000 or 2003 Intel Pentium processor Static IP addresses (recommended) Can be an existed file server or domain controller Also NetWare compatible Client firewall For full functionality, desktop firewall software needs to have port 2967/UDP open

Examples School of Communication Large user base Difficult and time consuming to visit all machines as often as needed for AV and MS Updates Crown Small user base, but high profile Needed to decrease lag and increase security

Bottom line Installation of these two services will reduce client visits and increase your baseline of security Since its inception at Crown there has only been one virus infection This infection was by Novarg/MyDoom, and occurred both because the virus arrived before definitions became available and because of user execution of the attachment despite multiple warnings This is not a complete solution. It is still important to: Educate your users Consider both software and hardware based firewalls Use strong passwords on all accounts Disable unnecessary services

Questions? More information on SUS http://www.microsoft.com/sus More information on SAV \\chocolate.tss.northwestern.edu\navadmin\docs