|
[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]
Re: RE: Scanning Microsoft and Non-Microsoft product vulnerabilities |  |
- To: "Patch Management Mailing List" <[EMAIL PROTECTED]>
- Subject: Re: RE: Scanning Microsoft and Non-Microsoft product vulnerabilities
- From: "dharmesh sureshchandra kadia" <[EMAIL PROTECTED]>
- Date: 16 Apr 2004 11:22:33 -0000
- Cc: "Threlkeld,Richard" <[EMAIL PROTECTED]>
- Reply-to: "Patch Management Mailing List" <[EMAIL PROTECTED]>
 |
| |
Dear All,
It seems to all conversation i found four best tools for Sequrity & Patch menagment.
Security scanning & patch management is essential to prevent vulnerabilities on your network. Patch management in particular has become a hot topic and I review some of the leading security scanning & patch management tools available today. This review gives you a ?birds eye? view of each tool, to give you an idea how they work and what they they?re meant for. I also compare tools so you can decide which would be best for your network.
Security scanning : Scanning your network for security holes is probably one of the most important tasks you need to perform to keep your network secure. You obviously need to know what security holes are present on your network and using a security scanner is the easiest/only way to find out.
Scan your network from several viewpoints ? scan it from outside your network (as in outside your firewall), from inside your network with admin rights, and from inside your network without admin rights. Scan your DMZ and web servers!
Patch management : Patch management and security scanning are closely related, simply because a missing patch is essentially a vulnerability. Therefore one needs to scan for missing patches and of course deploy those patches as soon as they come out. Failure to do so makes you doubly vulnerable, not only because the vulnerability is there, but also because it has become publicized so it?s more likely to be used.
Installing security hot fixes on operating systems has become a hot topic, and there have been a flurry of new products arriving on the market.
In this review I looked at 1 pure security scanner, a hybrid security scanner/patch management tool and 2 pure patch management tools. All 4 are quite different in their capabilities, but their purpose is the same ? to help secure your network.
Products reviewed:
? Shavlik HfnetchkPro - Silver Rating: 4/5
? GFI LANguard N.S.S - Gold Rating: 5/5
? eEye Retina - Bronze Rating: 3/5
? Microsoft SUS - Gold Rating: 5/5
Regards,
Dharmesh
On Fri, 16 Apr 2004 Threlkeld, Richard wrote :
>To handle non-Microsoft platforms with SMS, Vintela has an awesome solution set.
>
> http://www.vintela.com
>
>Everything you can do on Microsoft platforms with SMS, you can do transparently with no extra effort on other platforms.
>
>Richard Threlkeld
>Microsoft MVP - SMS
>[EMAIL PROTECTED]
>
>Looking to get more involved in the SMS community?
>Join the SMS email discussion list today: http://lists.listleague.com/mailman/listinfo/mssms
>
>________________________________
>
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
>Sent: Thursday, April 15, 2004 1:35 PM
>To: Patch Management Mailing List
>Subject: RE: Scanning Microsoft and Non-Microsoft product vulnerabilities
>
>
>SMS2003 can do a bit of it, but it was really designed for pure Microsoft Environment.
>However, that being said, it can be used to collect software inventory accross the network (Windows Machines)
>and reports can be generated by software version, or even registry information collected.
>Not to mention what is reported in the control panel
>
>Also included is software metering too.
>
>All through a juicy web portal.
>
>(PS, It can be configured to scan for a specific *.dll, com, exe ...what ever.
>
>
>thats my two cents
>
>Darrin
>
>
> -----Original Message-----
> From: Estelow, Robert, CTR, OSD-RA [mailto:[EMAIL PROTECTED]
> Sent: Thu 4/15/2004 11:07 AM
> To: Patch Management Mailing List
> Cc:
> Subject: Scanning Microsoft and Non-Microsoft product vulnerabilities
>
>
>
> Hello,
>
> I need some guidance regarding a patch scanning and deployment tool which
> includes support for Microsoft and Non-Microsoft apps (i.e. Documentum, BEA,
> Real, Quicktime, Adobe, WinZip, Macromedia, etc.).
>
> Does anyone know if a current product has this breadth of patch scanning and
> deployment functionality?
>
> Thanks in advance,
> Rob.
>
> Robert Estelow
> Lockheed Martin
>
> ---
> To unsubscribe send a blank email to [EMAIL PROTECTED]
>
>
>Nrzǧujy^jj!Ú?é??Zfjvzg
---
To unsubscribe send a blank email to [EMAIL PROTECTED]
 |
| |