This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Application control Sophos Enterprise cnsole vs UTM ?

Hello,

 

We use Sophos enterprise console to maintain Antivirus paterns + device control + application control on all our PC inside LAN.

I would like to know if in this context, use application control from UTM device is necessary or not ?

What's the different between Application control inside Enterprise console software and inisde UTM core system ?

It seems thats update list are more complete on UTM than on Enterprise Console for my side but what's your feeling about it ?

 

thanks in advance !

Thomas.



This thread was automatically locked due to age.
Parents
  • Hello Thomas,

    speaking from the SEC side. SESC's Application Control is a by-product of AV scanning. During scanning (on-access or on-demand) detection identities similar to those for viruses/malware are considered. When a user accesses a blocked application's executable access is denied and the application is prevented from running.
    UTM's Application Control is something completely different. It works inspecting (and optionally blocking) traffic.

    With the UTM you would be able (I assume) to block facebook traffic from a browser not "known"  to SESC. Clearly only with SESC you can block applications that work locally, like viewers, office suites, and so on.

    Christian

Reply
  • Hello Thomas,

    speaking from the SEC side. SESC's Application Control is a by-product of AV scanning. During scanning (on-access or on-demand) detection identities similar to those for viruses/malware are considered. When a user accesses a blocked application's executable access is denied and the application is prevented from running.
    UTM's Application Control is something completely different. It works inspecting (and optionally blocking) traffic.

    With the UTM you would be able (I assume) to block facebook traffic from a browser not "known"  to SESC. Clearly only with SESC you can block applications that work locally, like viewers, office suites, and so on.

    Christian

Children