Enforced Client Product Guide

Using the Virus and Spyware Protection Service

 

Configuring policies for virus and spyware protection

Select a spyware protection mode

You can specify how the virus and spyware protection service responds to detections of potentially unwanted programs on client computers.

„Protect: It attempts to clean the detected item. If the item cannot be cleaned, a copy of the item is placed in a quarantine folder and the original item is deleted.

„Prompt: It displays a dialog box with information about the detection, and allows the user to select a course of action. This option is the default.

„Report: It reports detections to the SecurityCenter and takes no additional action.

For all modes, detections are reported to the SecurityCenter, where you can view information about them in reports.

To prevent popup prompts from appearing on client computers when threats are detected, and for highest security, we recommend using Protect mode.

4

To specify a response to potentially unwanted program detections:

1On the Groups + Policies page, click Add Policy (or click Edit to modify an existing policy).

2Click the Spyware Protection tab, select a Spyware Protection Mode, then click Save.

Use the following table to determine how policy options are implemented in the different protection modes.

Mode

Behavior of protection service

 

 

Report

„ No user prompts.

 

„ Detections reported to SecurityCenter.

 

„ Administrator can select approved programs, which are not reported as

 

detections.

 

„ Can be used as a Learn mode.

 

 

Prompt

„ Users prompted about detections.

 

„ Detections reported to SecurityCenter.

 

„ Administrator can select approved programs. These programs are not reported

 

as detections, and users are not prompted for a response to them.

 

„ Users can approve additional programs in response to prompts. These are

 

reported to SecurityCenter.

 

 

Protect

„ Users not prompted about detections.

 

„ Users notified about deleted or quarantined programs.

 

„ Detections reported to SecurityCenter.

 

„ Administrator can select approved programs. These programs are not reported

 

as detections.

 

 

 

If the policy is changed from Prompt mode to Protect mode or Report mode, the virus and

 

spyware protection service saves user settings for approved programs. If the policy is then

 

changed back to Prompt mode, these settings are reinstated.

 

 

99

Page 99
Image 99
SonicWALL 4.5 manual Select a spyware protection mode, Mode Behavior of protection service Report, Protect

4.5 specifications

SonicWALL 4.5 is a robust network security solution designed to address the evolving challenges in threat protection and data security. This release brings a suite of advanced features, cutting-edge technologies, and characteristics tailored to enhance system performance and resilience against cyber threats.

One of the highlight features of SonicWALL 4.5 is its Integrated Intrusion Prevention System (IPS). This system provides real-time threat detection and response by monitoring network traffic for potential vulnerabilities and malicious activities. With continuously updated signature-based detection, it ensures that organizations are protected against the latest exploits and attack vectors.

Another key component is the Next-Generation Firewall (NGFW) capabilities, which combine traditional firewall functions with advanced features such as application awareness, user identity control, and content filtering. The NGFW allows organizations to enforce detailed policies based on user roles, thereby enhancing the security posture while maintaining user productivity.

SonicWALL 4.5 also incorporates advanced malware protection through its Capture Advanced Threat Protection (ATP) service. This multi-engine sandboxing technology analyzes suspicious files and URLs in a secure environment, providing organizations with in-depth insights into potential threats before they reach the network.

Furthermore, the solution includes enhancements to Secure Mobile Access, enabling secure remote connections while ensuring that sensitive data remains protected. With features like SSL VPN, SonicWALL 4.5 allows users to securely access private networks from anywhere while maintaining compliance with data protection regulations.

In terms of management, SonicWALL 4.5 introduces an intuitive interface for centralized management, enabling IT administrators to configure and monitor multiple devices effortlessly. The reporting and logging capabilities are enhanced, providing detailed insights into network activity, which is crucial for compliance and forensic analysis.

SonicWALL 4.5 also prioritizes user experience and performance with its optimized hardware, ensuring faster processing speeds and reduced latency. Features like high availability and load balancing further enhance system reliability.

In summary, SonicWALL 4.5 stands out with its integrated IPS, NGFW capabilities, advanced malware protection through Capture ATP, secure mobile access, intuitive management interface, and optimized performance. This comprehensive suite of features positions SonicWALL 4.5 as a formidable player in the realm of network security, making it an appealing choice for organizations seeking robust protection against an ever-evolving threat landscape.