Sophos Endpoint Security and Control 8.0
Sophos ESC integrates a number of point products

First Look: Sophos Endpoint Security and Control 8.0

Upgrade adds integrated endpoint security, malicious script detection and anti-rootkit functions

Written by Dave Bailey

Larger Image

Sophos Endpoint Security and Control is an integrated endpoint security system aimed at small and large enterprises needing to secure the desktops and laptops of employees, contractors, partners and guest visitors.

The package was updated in September to incorporate malicious script and rootkit detection, and consists of Enterprise Console, Anti-Virus, Client Firewall and Network Admission Control.

Sophos says that Enterprise Console can manage "tens of thousands" of desktop systems, all from a single console. The system can be used to manage Linux, Mac OS X, NetApp Storage Systems, Netware, Unix, Windows and Windows Mobile.

Users can be prevented from attaching removable storage devices or installing applications which IT managers do not want running on their networks, such as games, instant messaging and VoIP clients.

Email and Simple Network Management Protocol messages can be displayed on systems which have malware, or any administrator-defined unwanted applications installed or running on the network.

We looked at version 8.0 installed on a Windows Server 2003 R2 system running Dynamic Host Configuration Protocol, Domain Name Services and Active Directory.

Installation was quick and easy, and loading the Enterprise Console allows you to create what Sophos calls a 'library' which stores and deploys software and security updates from the Sophos web site.

If your network is a large one, so-called 'child' libraries can be set up to bridge subnets and take the strain off your main 'central installation directory'.

Storing all the data used for reporting from Sophos' scanning engines requires an SQL Server database. For small firms the standard Microsoft SQL Server Desktop Engine should suffice, but larger firms will probably want to hold data in an enterprise SQL Server database version 2000 or 2005.

We could create a group to contain the desktop systems which were members of our Active Directory domain, and then scan the network by specifying an IP address range for Endpoint Security and Control to use, or simply synchronising with Active Directory.

After the group was set up it was simple to scan for problems, such as the lack of security updates or the presence of any malware.

This quick look at the Sophos system showed it as easy to manage and likely to replace a lot of point products in enterprises. The full review later will have details on how the system can lock down devices and how the Sophos' Network Admission Control server performs.

Product overview

Ratings

  • Our rating: 4
  • Average user rating:

Verdict

Best prices

reader comments

related articles

Review: VMware Workstation 6.5

Update offers improved ACE integration and guest operating system support 21 Nov 2008

First Look: Symantec BackUp Exec 12.5

Symantec gives new version of BackUp Exec virtual focus 29 Oct 2008

Review : Security suite patches Windows kit

Shavlik’s latest patching and anti-spyware suite keeps desktops and servers clean 27 Feb 2008

poll

Securing the future

Securing the future

Does the security channel need a governing body?

Previous poll results

Vendor Q&A Session: Rick Wallis, NEC Computers

Vendor Q&A Session: Rick Wallis, NEC Computers

During this Q&A session Rick Wallis, UK Sales Director at NEC Computers, talks about the firm’s reasons for committing to a 100 per cent channel strategy

In the Studio with CRN: Oracle

CRN TV catches up with Alan Hartwell, vice president of technology solutions and channels at Oracle

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Advertisement

White papers

Search white papers

Top categories

Primary Navigation