View Full Version : Can admin of Enterprise edition define their own "virus"
mgshn
August 20th, 2007, 09:51 AM
Is it possible for the administrator to use NOD32 Enterprise edition to block access to a specific program throughout the enterprise?
YeOldeStonecat
August 20th, 2007, 10:55 AM
I'd take the group policy approach..disallowrun
mgshn
August 20th, 2007, 11:00 AM
Thanks for the reply. Our experience is the using group policies is not responsive enough to shutdown programs quickly. Take for example the skype incident last week. We used our current enterprise-managed desktop firewall to disable it throughout our enterprise in a matter of minutes.
I am wondering if NOD32 could provide the same capabilites (with considerably lower overhead).
YeOldeStonecat
August 20th, 2007, 11:29 AM
Hmmm...enterprise firewall...that's a start. Dunno what the SkyPE incident is, but as far as antivirus goes, I don't imagine there's a way for you to be able to go in and change the behavior of an antivirus program, as to telling it to detect other additional things other than what it's programmed for by Eset as far as heuristics and defs. I've never seen an AV product that allows users to go in and specify additional programs.
Perhaps when ESS comes out in Enterprise Version..with the software firewall.
IMO, your best control of end users is through active directory, group policy, managed workstations firewalls, and control of web access through proxy such as ISA or other 3rd party ones like Websense or Sonicwall, etc.
vBulletin® Copyright ©2000-2009, Jelsoft Enterprises Ltd.