Antivirus
Best Practices
Can I install antivirus software on Envision?
Antivirus Configuration Best Practices
? DO NOT INSTALL the Anti Virus software on D:\ as this is your swap space
? Isolate enVision in its own Group or Group Anti Virus Policy
? Do not scan EMC Celerra NAS if enVision IPDB is stored there. This NAS is already hashed, and EMC has Celerra-AV scanning if necessary that is more efficient.
? No On-Demand scans during Top of Hour, Midnight (UTC) during enVision daily Indexing.
? Configure first action to be Quarantine, DO NOT DELETE.
? Some Anti Virus software require various ports and services to communicate to the server if you plan on deploying in a managed format. Where possible, it is recommend that you not enable these services or open these ports. Rather, one can typically leave the Anti Virus client in un-managed mode and configure it to seek updates daily on its own.
? Exclude any hashed enVision LogSmart IPDB log storage locations (E:\nic\lsnode\data is default on an enVision ES appliance)
? Exclude D:\tmp directory from scanning (Nuggets are read only as ASCII text)
? Exclude %_Envision%\database\* from scanning.
? Ensure that you are scanning %_envision%\ftp_files\*, as this FTP drop site is a potential entry point for malware.
Related Articles
Security Best Practices for RSA Authentication Manager Self-Service Console 54Number of Views RSA MFA Agent for Windows logs a warning that "System cannot access location data for this computer" 34Number of Views Best Practices for backup and restoration of FIM configuration and secrets files 16Number of Views RSA Governance & Lifecycle Recipes: Varonis - Best Practices for Planning and Implementing NTFS Permissions 28Number of Views RSA response to Fox-IT report and Best Practices for RSA SecurID 27Number of Views
Trending Articles
RSA Authentication Manager Upgrade Process RSA Release Notes for RSA Authentication Manager 8.8 RSA RADIUS Server service failed to start in the RSA Authentication Manager 8.1 Operations Console Microsoft Entra ID External MFA - Relying Party Configuration Using OIDC - RSA Ready Implementation Guide RSA Release Notes: Cloud Access Service and RSA Authenticators