Introduction; Security Enforcement For Mobile Computers; Ndis Layer Firewall Protection - Novell ZENWORKS ENDPOINT SECURITY MANAGEMENT 3.5 - ENDPOINT SECURITY CLIENT Manual

Hide thumbs Also See for ZENWORKS ENDPOINT SECURITY MANAGEMENT 3.5 - ENDPOINT SECURITY CLIENT:
Table of Contents

Advertisement

Introduction

1
®
®
Novell
ZENworks
Endpoint Security Management (ESM) is designed to protect corporate data
assets, through a centrally managed tool called the Endpoint Security Client. The Endpoint Security
Client 3.5 is installed on Windows XP and Windows 2000 enterprise computers and enforces
security policies written and sent down through the ESM management and distribution system. This
allows large enterprises and small businesses to create, deploy, enforce, and monitor computer
security policies on computers inside and outside of the corporate security perimeter.
For Windows Vista computers, see
The following sections contain additional information:
Section 1.1, "Security Enforcement for Mobile Computers," on page 9
Section 1.2, "NDIS Layer Firewall Protection," on page 9

1.1 Security Enforcement for Mobile Computers

Security is enforced both globally and by network location. Each location listed in a security policy
determines the user's permissions in that network environment and determines which firewall
settings are activated. The firewall settings determine which networking ports, network addresses,
and applications are granted network access and how that access is permitted.
ESM Adjusts Security Settings Based on the Detected Network Environment
Figure 1-1
Normal operations of the Endpoint Security Client 3.5 are transparent to the user, after the network
environments have been defined. Occasionally, Endpoint Security Client 3.5 protective measures
can interrupt normal operation; when this occurs, messages and hyperlinks display to notify the user
about the security policy, what protective steps have been taken, and refer them to additional
information to help correct the issue.

1.2 NDIS Layer Firewall Protection

In securing mobile devices, ESM is superior to typical personal firewall technologies that operate
only in the application layer or as a firewall-hook driver. ESM client security is integrated into the
Network Driver Interface Specification (NDIS) driver for each network interface card (NIC),
ZENworks Endpoint Security Client 4.0 User
Guide.
Introduction
1
9

Advertisement

Table of Contents
loading

Table of Contents