Trend Micro™ Network VirusWall™ Enforcer 2500 Administrator’s Guide
1
-
34
specifying the policy with a setting of any source (Endpoint) and any
destination as the first priority means that policies with priorities 2 and 3 are never
applied. The any source (Endpoint) and any destination policy matches all endpoints
and the other two policies with specific settings are never applied. Even if the first
policy in
is removed, the third policy is still never applied since the
destination of the third policy is more specific than the second policy.
Policy Enforcement Considerations
•
Carefully set policy priority based on the first-match rule.
•
Traffic from endpoints must pass through Network VirusWall Enforcer 2500 or
the device will not detect the endpoint.
•
You can use a switch’s mirror function with the Network VirusWall Enforcer
2500
S
NIFFER
port feature to scan all packets on the network and monitor activity
without disrupting your network architecture. Refer to the
Getting Started Guide
for more information about different types of ports.
•
To minimize endpoint disruption and to monitor activity, select
Remote login
for
the
Endpoint installation method, Monitor
for the
Endpoint Action
, and
disable the detecting page. However, if Remote login is unsuccessful ActiveX is
used.
•
If you have a DNS server on your network, ensure the following:
•
Add the Gateway and DNS IP addresses to
Global Endpoint Exceptions
.
Priority
Endpoint
Destination
Scan Feature
1
*
*
Network Virus Policy
2
RD, Marketing
*
Antivirus Program
Scan, Network Virus
Policy
3
RD, Marketing
Sales
Antivirus Program
Scan, System Threat
Scan, Vulnerability
Scan, Network Virus
Policy
T
ABLE
1-6.
Example of incorrectly prioritized policies