130 likes | 294 Views
OfficeScan 10.5 VDI-aware endpoint security. Datacenter-hosted virtual desktop infrastructure. User Operating environment Virtual machine on an central server Accessed from existing hardware or a thin client Can be accessed from anywhere Home PC over VPN BYOC Analysts view:
E N D
OfficeScan 10.5 VDI-aware endpoint security
Datacenter-hosted virtual desktop infrastructure • User Operating environment • Virtual machine on an central server • Accessed from existing hardware • or a thin client • Can be accessed from anywhere • Home PC over VPN • BYOC • Analysts view: • Gartner: • “[VDI] will undergo an explosive growth...“ • Enterprise strategy group: • ”60% of enterprises have a VDI strategy“ • Forrester: • “three-quarters of firms now have client • virtualization on their IT agenda for the next • 12 months“
Reasons for VDI-adoption: • Lower operational cost than physical hardware • Easier Deployment, Patching, Application Provisioning • Extended desktop hardware lifecycles • Windows 7 adoption funds get reassigned to VDI • Security and data protection • Data never leaves the data center • Regulatory compliance (PCI, HIPAA, etc.) • More tightly controlled environment
VDI Risks • Malware risk potential: Identical to physical desktops • Same operating systems • Same software • Same vulnerabilities • Same user activities => Same risk of exposing corporate and sensitive data • New challenges, unique to VDI: • Identify endpoints virtualization status • Manage resource contention • CPU • Storage IOPs • Network
Resource Contention • The “9-AM problem” • Multiple users log in and get updates at the same time • Scheduled scans • Adds significant load to the endpoint • Multiplied by number of VMs Cumulative system load Customers had to completely disable Security in their VDI environments!
OfficeScan 10.5 has VDI-intelligence • Detects whether endpoints are physical or virtual • With VMware View • With Citrix XenDesktop • Serializes updates and scans per VDI-host • Controls the number of concurrent scans and updates per VDI host • Maintains availability and performance of VDI host • Faster than concurrent approach • Leverages Base-images to further shorten scan times • Pre-scans and white-lists VDI base-images • Prevents duplicate scanning of unchanged files on a VDI host • Further reduces impact on the VDI host
OfficeScan 10.5 has VDI-intelligence • With OfficeScan 10.5, customers can run more than double the number of desktop images per host – without sacrificing security • Investment in OfficeScan‘s VDI plug-in pays for itself: • In less than 3 months with 1000 users* • In less than 2 months with 2500 users* Customers no longer have to choose between Security and Return On Investment *: assuming average cost of $8000 per VDI server and the deployment of standard endpoint security
Integration with Citrix Receiver • BYOC • Users bring their own computers • Ensure protection before granting access • OfficeScan 10.5 • Deploys through Citrix Receiver • Secures endpoints as a self-service application • Easy provisioning of OfficeScan clients to enduser devices • Supports consumerization no trade-off in security
Windows 7 support • Logo-certification as compatible with Windows 7 • Supports XP, Vista, Win7 • Windows POSReady, Windows Embedded Enterprise • Supports Server 2003, 2003R2, 2008 and 2008R2 • Integrates with Windows 7 Action Center • Support for 32 and 64 bit environments • Easy migration from physical to virtual deployments accross versions of Windows
FILE REPUTATION WEB REPUTATION Batch Updates Query CRC/URL Query CRC/URL Immediate response Immediate response Local Smart Protection Network Server Local File Reputation AND Web Reputation Internet Corporate Network • New: Local Web-reputation: • Privacy mode • Proxy mode • Improves user experience Constant, real-time updates happen in the cloud
Enterprise-class management • Unified management for physical and virtual endpoints • Increased management scalability • 20,000 or more endpoints per management server (up from 8000) • Allows consolidation of management stations • Improved Role-based administration • More granular • Controls applicable to the client-tree segregate customers/regions • Improved Active Directory Integration • Sync changes to AD • Improved Security compliance reports
Summary • Industry‘s first VDI-aware endpoint security solution • Optimized for physical and virtual desktops • Optimizes VDI Return on Investment • Pays for itself in 3 months or less • Best security for Windows 7 • Local Smart Protection Network Server • File Reputation and Web Reputation in the local cloud • Optimizes performance and privacy • Management enhancements • Enables management server consolidation • More granular Role-based Administration • Leverages Active Directory