Endpoint Protection

 View Only
  • 1.  SEP Host Integrity Check For Last Scan Time

    Posted May 15, 2009 07:21 AM
    Hello all,

    I'm looking to setup a host integrity check based on the last scan time of a client.  I want to block a client if it hasn't been scanned for, say a week.  The HI policy setup seems to have a number of options to manipulate registry keys etc. but I can see anyway of checking the scan time.  There is a reg key called TimeOfLastScan as REG_BINARY but all I seem to be able to do is check it exists, increment it or see if it equals a set value.

    Has anybody else managed to do this or does anybody have a way of setting up a HI policy based on this requirement?

    Cheers

    John


  • 2.  RE: SEP Host Integrity Check For Last Scan Time

    Posted May 15, 2009 09:26 AM
    This is a feature of SNAC (network access control). Did you purchase this functionality? This generally requires the Symantec Enforcer.

    Here is some more information on how to set it up if you did purchase SNAC

    http://seer.entsupport.symantec.com/docs/305175.htm