Chapter 31 Endpoint Security
Then he also needs to check the personal firewall software name defined on the UAG. Copy and
paste the name of the output item 4 for the setting later.
Router(config)# show eps signature personal-firewall
No.
Name
===============================================================================
1
Kaspersky_Internet_Security_v2009
2
Kaspersky_Internet_Security_v2010
3
Microsoft_Security_Center
4
Windows_Firewall
5
TrendMicro_PC-cillin_Internet_Security_v2010
6
TrendMicro_PC-cillin_Internet_Security_Pro_v2010
7
Windows_Firewall_Public
8
Kaspersky_Internet_Security_v2011
9
Kaspersky_Internet_Security_v2012
Router(config)#
Now Peter can create the EPS object profile as the example shown next. Note that he uses the
matching-criteria all command to make sure all users' computers have the required software
installed and settings being configured before they access the company's SSL VPN.
Router(config)# eps profile EPS-Example
Router(eps EPS-Example)# windows-version windows-xp
Router(eps EPS-Example)# personal-firewall activate
Router(eps EPS-Example)# anti-virus activate
Router(eps EPS-Example)# windows-auto-update enable
Router(eps EPS-Example)# windows-service-pack 2
Router(eps EPS-Example)# personal-firewall Windows_Firewall detect-auto-protection
enable
Router(eps EPS-Example)# anti-virus Kaspersky_Anti-Virus_v2011 detect-auto-
protection enable
Router(eps EPS-Example)# matching-criteria all
Router(eps EPS-Example)# exit
Router(config)#
198
Detection
yes
yes
yes
yes
yes
yes
yes
yes
no
UAG CLI Reference Guide