Best mix of protection for corp LAN

Discussion in 'other anti-virus software' started by spiff5000, Jul 15, 2004.

Thread Status:
Not open for further replies.
  1. spiff5000

    spiff5000 Registered Member

    Joined:
    Jun 27, 2004
    Posts:
    49
    Hi all.

    Two months ago, NAV was corrupted on my server due to the Randex worm. It didn't infect the machine but it took me several hours to realize NAV was hosed and causing the server to malfunction. Since then I've been on a quest to "layer-up" my protection. I've already bought and installed the following:

    Sonicwall 4060 Firewall with Intrusion Prevention Service... on the gateway
    GFI LANguard... for on-demand vulnerability detection
    Symantec Anti-Virus v8.0 Corp Ed... running on servers and workstations
    Webroot SpySweeper v2 Enterprise Ed... on workstations

    I think I'm still lacking in worm/trojan prevention and application protection on the workstations. But I can't afford to install TDS, WG, PG, personal firewall or whatever else on 100+ workstations. Nor do I want software that will prompt users to take action on something they don't understand (i.e. SSM or PG asking if 'XYZ' can launch IE). I think some sort of app guard on the servers would be smart, but I don't check the servers on a daily basis for pop-up messages.

    Given the above, what should I invest my limited money and time on?

    -Spiff5000
    *tagline pending regulatory approval*
     
  2. hohoho

    hohoho Guest

    take a look at BOClean (www.nsclean.com). I think that's precisely what you need. It can run completely without user knowing its presence. But, it is a memory monitor only anti-trojan which some people do not believe in.
     
  3. se7engreen

    se7engreen Registered Member

    Joined:
    Feb 6, 2004
    Posts:
    369
    Location:
    USA
    If you upgrade your SAV 8 to 9 you will gain email scanning and outbound worm heuristics.
     
  4. meneer

    meneer Registered Member

    Joined:
    Nov 27, 2002
    Posts:
    1,132
    Location:
    The Netherlands
    How about some corporate mail protection?
    Since you're running GFI already, have a look at their, very affordable, mailessentials for exchange or smtp.
    It also includes an anti-spam option, real good value.

    You better also run a gttp proxy with content inspection. I don't know your setup, so you'll have to look around.

    Our corp AV is based on CA eTrust, it comes with content inspection licence. Just requires a server.
     
  5. spiff5000

    spiff5000 Registered Member

    Joined:
    Jun 27, 2004
    Posts:
    49
    hohoho:

    I'll take a look at BOclean.

    se7segreen:

    I currently have program SAV version 8.1.0.825 with scan engine 4.2.0.7. Bloodhound heuristics at set to maximum.

    meneer:

    Unfortunately, my Exchange 5.5 (WinNT) server is designed to route via site-connector to our primary Exchange server at our corporate HQ. So GFI MailEssentials and similar products cannot work :doubt: in my configuration. But I've just purchased I Hate Spam for each desktop, which should arrive any day now.

    -Spiff5000
    *DNA patent pending*
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.