|
| |
| |
|
GFI EndPoint Security |
|
|
 |
| |
|
You have invested in network anti-virus
software, firewalls, email and web content
security to protect against external threats.
Yet any user can come into the office, plug in a
USB stick the size of the average keychain and
take in/out over 32 GB of data. This poses a
tremendous threat: Users can take confidential
data or they can unknowingly introduce viruses,
trojans, illegal software and more – actions
that can affect your network and company
severely. Yet, as an administrator you have no
way to control this! Group policy offers no
control.
You can configure and categorize
computers into different protection groups: For
each group you may specify different levels of
protection and devices to allow or disallow
access to. You can also leverage the power of
groups and make an entire department a member of
the group and easily change the settings for the
entire group. Configuration of GFI
EndPointSecurity is effortless and leverages the
power of Active Directory and does not require
the administrator to remember and keep track of
which policies were deployed to which computers.
Other storage control software requires
cumbersome per-machine administration, forcing
you to make the changes on a per-machine basis
and update the configuration on each machine
before the settings can take effect.
With GFI EndPointSecurity you
can log device-related user activity to both the
event log and a central SQL Server. A list of
files accessed to/from the device is recorded
whenever users plug in devices both successfully
and unsuccessfully.
The GFI EndPointSecurity
ReportPack is a full-fledged reporting add-on to
GFI EndPointSecurity. This reporting package can
be scheduled to automatically generate graphical
IT-level and management reports based on data
collected by GFI EndPointSecurity, giving you
the ability to report on devices connected to
the network, device usage trends, files copied
to and from devices (including actual names of
files copied!) and much more.
Because you can easily
add/remove a user to a group in Active
Directory, it is simple to grant temporary
access to a removable media, floppy or CD.
Temporary access may be occasionally required,
but should not mean that you cannot control
access the rest of the time
 |
GFI
EndPoint Security ensures that users cannot download
data from the network and copy it to USB Flash
Drive, USB hard drive, portable storage device,
laptops and other mobile equipment.
According to a 2005 FBI Computer Crime Survey, 44%
of organizations have reported network intrusions
from within their own organizations.
It’s almost too easy to use portable storage
devices, users simply plug a 4GB USB Flash Drive
in to a USB or a FireWire port and they are up
and running. The devices are small
and easily concealable, installation requires no
technical expertise – it has never been easier
to steal data.
|
 |
GFI EndPointSecurity allows network administrators to
actively manage user access and log the activity
of:
-
Media players,
including iPod,
Creative Zen and
others
-
USB sticks,
CompactFlash, memory
cards, CDs, floppies
& other storage
devices
-
PDAs, BlackBerry
handhelds, mobile
phone and similar
communication
devices
-
Network cards,
laptops and other
network connections.
|
|
|
 
|
|
|

- A data thief can
get away with more data in his pockets, a
negligent employee can inject more malware to
the corporate computers, and a malicious user
can upload more illegal content to the corporate
web servers than ever before with iPod’s, MP3
players, digital cameras, mobile phones, memory
card, flash drives, CD/DVD writers, floppies,
PDA’s and other plug-and-play devices which have
ever increasingly storage capabilities.
-
Dissatisfied employees
that feel they have
been unfairly dismissed
can sell company
knowledge, strategies or
other sensitive
information and in that
way take advantage of
their trusted position
and permissions. Another
example is people
leaving the company to
work with a competitor,
the dishonest ones may
use the information
acquired to gain an edge
over their previous
employer. The point is
that internal users may
deliberately or
accidentally copy
confidential information
to these devices,
introduce malicious code
or transfer other
unwanted data to the
corporate network.
Loss of company
information can be extremely harmful for most
corporations: data leakage, data disclosure
incidents, blackmail, identity theft, industrial
espionage, etc. When information is exposed to
the public at the wrong time it can damage a
company’s reputation – such things can be fatal,
even for larger companies. The data that network
administrators protect can be anything from
blueprints, budgets, social security/credit card
numbers, engineering plans, price lists, source
code, database schemes, video/sound files,
client/financial records.
GFI EndPointSecurity
offers many great features to take control
of vulnerable data and network environments. It
allows the control of data flow to and from
storage devices on a user by user basis
throughout the network, plus the following:
|
|
|