This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

multiple vendors AV on single user device

hi 

I have a requirement to have two layers of AV on a single user device.  I already use a different vendor to sophos for the primary solution but was wondering if sophos would be a good pick for the secondary check.

Obviously not all AV products can sit together on a single windows desktop and may cause performance problems

my thinking was to have the second product as a command line only solution, this being called from a script after the first vendors sweep has executed.

I know sophos has a command line tool and I hope this could be used, before I can test this I have the following questions...

1) How would a command line only sophos solution stay up to date signature wise, alot of command line only AV products are for a standalone  environment and do not have a backend infrastructure.  I would prefer a pull solution from the desktop to check for dat updates ETC, I don't want our sys man solution pushing this.

2) Is the sophos signature digitally signed?

thanks all

fox

:1868


This thread was automatically locked due to age.
Parents
  • hi Christian thanks for the reply

    The device requires a second vendor to scan a certain folder on the  pc before it is permitted to write the data to a cd.  This is a fixed requirement to allow export of data off the network.

    I have to have a secondary av client.  Avira told me they could do it but their command line client cannot check or pull down signature updates you can only push them to the desktop which I want to avoid.

    In an ideal world the user clicks go on the folder they want to export.  The primary av app checks it central server to check if its up to date then scans the users folder (that is working now).  If successful the 2nd av client which is a command line tool scans the folder but only after it has also checked if its up to date, if the scan is clean the user is permitted to write to the cd and take  data offline.  This is the issue as avira say we can only keep the command line client up to date manually by pushing signature updates each day to the desktops, this would require us to use our patch management tool for the job rather than the vendors technology, we cannot do this.

    Can sophos provide a pure command line av client which can exist with the primary windows gui av client of another vendor as a secondary check.  If so how do we keep the sophos av command line client up to date using a pull technique even if it is from a simple NTFS file share or something from a command line switch.

    much appreciated

    fox 

    :1875
Reply
  • hi Christian thanks for the reply

    The device requires a second vendor to scan a certain folder on the  pc before it is permitted to write the data to a cd.  This is a fixed requirement to allow export of data off the network.

    I have to have a secondary av client.  Avira told me they could do it but their command line client cannot check or pull down signature updates you can only push them to the desktop which I want to avoid.

    In an ideal world the user clicks go on the folder they want to export.  The primary av app checks it central server to check if its up to date then scans the users folder (that is working now).  If successful the 2nd av client which is a command line tool scans the folder but only after it has also checked if its up to date, if the scan is clean the user is permitted to write to the cd and take  data offline.  This is the issue as avira say we can only keep the command line client up to date manually by pushing signature updates each day to the desktops, this would require us to use our patch management tool for the job rather than the vendors technology, we cannot do this.

    Can sophos provide a pure command line av client which can exist with the primary windows gui av client of another vendor as a secondary check.  If so how do we keep the sophos av command line client up to date using a pull technique even if it is from a simple NTFS file share or something from a command line switch.

    much appreciated

    fox 

    :1875
Children
No Data