| | |
Network security problem
![]() |
•
•
Join Date: Feb 2005
Posts: 21
Reputation:
Solved Threads: 1
Hello, I am trying to fix a problem that my friend is having at he's work. The problem is none of the computer have administrator privilages, which is normal. But the anti-virus can't update it definition files, unless it open windows installer. But if we enable windows installer, then people on the network can install what they want on there computers, and we don't want that. Is there a way to cure this problem.
•
•
Join Date: Oct 2004
Posts: 36
Reputation:
Solved Threads: 0
Are you in charge of "security"?...........contact your admin or manager. Are you trying to do work that you're not going get paid for? Everyone wants to be the star of a their system.
In low assurance environments, AV is a good thing... but once you lock the systems down to providing exactly the rights your users require. You're ok.
Normal users in a higher assurance environment should not ever be allowed to make changes to their system without going through proper change control channels. In fact at my work, every single desktop system is set up in the exact same manner, and users are only allowed to modify their profiles.
Many of the client applications can only be launched as reduced privilege processes, permissions are tightly controlled, again with the point of only allowing users access to the applications they need as defined by their role and to the internal data as defined by that same role definition.
This is the real problem, most security teams have no clue what their users need, and how to effectively support business needs... consequently to avoid calls to to tech support they give their users way too much rope. This would be a low assurance environment, and prime for AV controls.
In low assurance environments, AV is a good thing... but once you lock the systems down to providing exactly the rights your users require. You're ok.
Normal users in a higher assurance environment should not ever be allowed to make changes to their system without going through proper change control channels. In fact at my work, every single desktop system is set up in the exact same manner, and users are only allowed to modify their profiles.
Many of the client applications can only be launched as reduced privilege processes, permissions are tightly controlled, again with the point of only allowing users access to the applications they need as defined by their role and to the internal data as defined by that same role definition.
This is the real problem, most security teams have no clue what their users need, and how to effectively support business needs... consequently to avoid calls to to tech support they give their users way too much rope. This would be a low assurance environment, and prime for AV controls.
Hello, I once tried to update my AVG via the AVG antivirus program itself. And I couldn't. Can't connect directly to the AVG update source.
Probably because some servers filter the connection. Or thought it was dangerous to allow such "remote" connections directly.
As the computer is under a government department...
The solution for my case was this : I downloaded the defination file, and when I check for updates... i retrieve it from my download's folder.
And it worked. Hope this helps to give you some ideas.
Although its rather stupid to be so manual in updating anti virus programs.
However, our department's Norton AntiVirus program can run its live update! Don't know why... any ideas?
Probably because some servers filter the connection. Or thought it was dangerous to allow such "remote" connections directly.
As the computer is under a government department...
The solution for my case was this : I downloaded the defination file, and when I check for updates... i retrieve it from my download's folder.
And it worked. Hope this helps to give you some ideas.
Although its rather stupid to be so manual in updating anti virus programs.
However, our department's Norton AntiVirus program can run its live update! Don't know why... any ideas?
•
•
•
•
Originally Posted by jfountain02
Hello, I am trying to fix a problem that my friend is having at he's work. The problem is none of the computer have administrator privilages, which is normal. But the anti-virus can't update it definition files, unless it open windows installer. But if we enable windows installer, then people on the network can install what they want on there computers, and we don't want that. Is there a way to cure this problem.
•
•
Join Date: Jul 2005
Posts: 15
Reputation:
Solved Threads: 0
•
•
•
•
Originally Posted by LiBOC
I downloaded the defination file, and when I check for updates... i retrieve it from my download's folder.
....
However, our department's Norton AntiVirus program can run its live update! Don't know why... any ideas?
The reason your Norton worked, is because it uses several services to manage the software, and those services are given Local System privelages.
![]() |
Similar Threads
- network security provider (Network Security)
- Where do my programs reside? (VB.NET)
- HELP - AFTERMATH of "Smart Security Problem"! (Web Browsers)
- cannot format network drive problem (Windows 95 / 98 / Me)
Other Threads in the Network Security Forum
- Previous Thread: server 2003 internet blocking
- Next Thread: wan select?
| Thread Tools | Search this Thread |
adobe advice antivirus apple banking blackhat botnet browser business china confidentiality crack crime cybercrime daniweb data database dataloss dataprotection development email emailretention encryption europe exploit facebook fail firefox flash forensic fraud gmail google government hack hacker hacking hardware hotmail idtheft information internet iphone kaspersky koobface law linux malware mcafee mckinnon microsoft military mobile music nasa nationalsecurity network networks news obama password passwords paypal pentagon phishing php politics privacy realplayer report research review sans satnav scam school search security skype socialnetworking software spam sqlinjection survey symantec symbian terrorism terrorist theft trends trojan twitter uk usb virus vulnerability web worm yahoo zeroday





