Endpoint Protection

 View Only
  • 1.  Communicating from offsite laptop to SEP management server

    Posted Apr 12, 2009 11:01 AM
    Hi,

    I'm not sure if this is a silly question but:

    All our client computers are laptops. A large portion are used offsite either frequently or entirely.
    All the laptops are set up tp communicate with the management server.

    The question is - is there a way for the laptops to communicate with the management server while offsite for the purpose of -
    sending alerts when infected, receiving policy changes, reporting to status to the server etc.

    Any help would be appreciated


    Thanks
    paul


  • 2.  RE: Communicating from offsite laptop to SEP management server

    Posted Apr 12, 2009 12:06 PM
    Not if the SEPM that you have also has an external IP and configured in the location which anyway is a big security hole.


  • 3.  RE: Communicating from offsite laptop to SEP management server

    Posted Apr 13, 2009 01:25 AM
    HI,

    Not for alerts/communication, but you can create a policy for all the laptop users to have 2-way definition update mechanism.

    If the users are in corporate office then they will take the definition update from SEPM server and when they are roaming i.e. away from corporate office, they can take update from Internet.

    You can create a policy to enable liveupdate button for laptop users.

    As far sa there definition are up-to-date, they will be prevented from any further infection as noe-a-days most of the infection happens on laptop users when they are ona roaming profile.

    Rgrds,
    SAM


  • 4.  RE: Communicating from offsite laptop to SEP management server

    Posted Apr 13, 2009 01:53 AM
    There users must be in a same LAN to transact with the SEPM. Hence, the solution is only a sort of VPN which can be established by having a RAS, NAT an IP to the server or VPN.

    As a piece of advice, set the clients to obtain the Virus Definitions from the internet by themselves and only retrieve the policies from the server, so that you can preserve the clients’ bandwidth more.


  • 5.  RE: Communicating from offsite laptop to SEP management server

    Posted Apr 13, 2009 01:58 PM
    That was pretty much what I figured but I wanted to check before making a statement of fact.

    Thanks to everyone
    Paul