Administration
Installation Guide
8
So, looking through
Profile
(My Profile)
, most of the items in
‘Settings’ are self-explanatory and you will probably be familiar with, if
you’ve tested the standard, single-user version of NOD32. However, there
are one or two items of note which we should look at.
In the ‘
Scanner
’ section, you will notice ‘
Use of Advanced Heuristics
’ is
not enabled by default. This is because Advanced Heuristics main purpose
is detecting as yet unknown threats that arrive at a workstation either via
the internet or through removable media disks, etc. Therefore, Advanced
Heuristics are an absolute ‘must’ to have enabled in AMON / IMON / DMON
/ EMON / XMON. By enabling Advanced Heuristics in an On-Demand Scan,
there is a higher chance of the scan flagging a legitimate file or program as
a ‘False Positive’ plus the scanning time may be slightly longer than normal.
‘Potentially dangerous applications’ is also not checked by default (this also
applies to all the other scanning modules in NOD32) because there is a
chance that your company may use some other remote access programs
which NOD32 might mistake for some hacker’s tools. Therefore, this option
should be enabled with caution.
‘
List all files
’ is not enabled by default because the resultant scan log could
be enormous and therefore difficult to plough through when checking for
threats.
‘
Run-time packers
’, ‘
Archives
’ and ‘
Self-extracting archives
’ are
not
set to be scanned by default because of the slow-down in scan time plus
there is a much higher chance that scanning in archives could lead to a
greater number of incidents like “Why can’t I delete that nasty infiltration” or
“What exactly is this archive?” If the user opened any such file, AMON will
immediately flag the enclosed malware.
‘
Mailbox databases
’ are also not scanned by default for the following
reasons:
Mail files can be massive in size and take a very long time to scan.
If the scanner is configured to delete infected files, then the entire
mail file will be deleted instead of just the infected message. To
eliminate a virus in an infected message the individual message
should be deleted.
‘
MIME files
’ or NTFS streams are not scaned by default because
exploitation of them has been exceptionally small.
In the areas titled ‘
If an alert is generated
’ and also ‘
If cleaning cannot
be performed
’ you will have already made similar choices perhaps, in
the IMON / DMON / EMON / XMON module setups. The default setting
is to Prompt the user to take some action in both cases. However, you
may prefer to have ‘Files’ cleaned as the first action and if that cannot be
performed to have them deleted. This is merely an example of the various
choices you have, not a recommendation necessarily.
►
►
Summary of Contents for LAN Update Server 2.7
Page 6: ...Administration Installation Guide Overview ...
Page 9: ...Administration Installation Guide Installation foranoffice network ...
Page 14: ...Administration Installation Guide 14 Running RAC ...
Page 17: ...Administration Installation Guide 17 Configuration Editor ...
Page 33: ...Administration Installation Guide 33 Createa package ...
Page 35: ...Administration Installation Guide 35 Remote Installation ...
Page 43: ...Administration Installation Guide 43 Use of Tasks ...
Page 49: ...Administration Installation Guide 49 More detailed information ...
Page 65: ...Administration Installation Guide 65 Possible problems error codes ...
Page 70: ...Administration Installation Guide 70 Installation for a multi site network ...
Page 72: ...Administration Installation Guide 72 ...
Page 74: ...Administration Installation Guide 74 Installation for asmall office network ...
Page 82: ...Administration Installation Guide 82 Additional information ...