05.08.2013 Views

Trend Micro InterScan Gateway Security Appliance M-Series ...

Trend Micro InterScan Gateway Security Appliance M-Series ...

Trend Micro InterScan Gateway Security Appliance M-Series ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

How <strong>InterScan</strong> <strong>Gateway</strong> <strong>Security</strong> <strong>Appliance</strong> Works<br />

File extension checking—IntelliScan also uses extension checking, that is, the file<br />

name itself. The list of extension names to scan for is updated with each new pattern<br />

file. For example, when there is a new vulnerability discovered with regard to ".jpg"<br />

files, the ".jpg" extension is immediately added to the extension-checking list for the<br />

next pattern update.<br />

Only files of the type that are capable of being infected are scanned. For example,<br />

.gif files make up a large volume of all Web traffic, but they are not currently able to<br />

carry viruses and therefore do not need to be scanned. Similarly, .jpg files are not<br />

currently utilized to carry viruses, though there is some concern this may change in<br />

the future—which means, IntelliScan would be changed to also scan for this threat.<br />

As of the date of publication of this guide, however, with true file type selected, once<br />

the true type has been determined, these inert file types are not scanned.<br />

Outbreak Defense Services<br />

A virus outbreak can occur on the Internet and spread rapidly. Outbreak Defense is a<br />

combination of services designed to protect networks in the event of an outbreak and<br />

to repair clients' computers that have been exposed to viruses or malware.<br />

Outbreak Defense uses the following components to protect networks from outbreaks<br />

and clean clients exposed to viruses or malware:<br />

• Outbreak Prevention Services and Outbreak Prevention Policy<br />

• Damage Cleanup Services and Damage Cleanup Tool<br />

Outbreak Prevention Services and Outbreak Prevention Policy<br />

Outbreak Prevention Services protects networks by deploying an Outbreak Prevention<br />

Policy.<br />

When <strong>Trend</strong>Labs receives information that a new outbreak is developing anywhere<br />

in the world, it quickly develops a response to it called an Outbreak Prevention<br />

Policy. <strong>Trend</strong> <strong>Micro</strong> ActiveUpdate servers then deploy the Outbreak Prevention<br />

Policy to <strong>InterScan</strong> <strong>Gateway</strong> <strong>Security</strong> <strong>Appliance</strong>. The Outbreak Prevention Policy<br />

remains in effect for the administrator-specified amount of time or until <strong>Trend</strong>Labs<br />

develops a complete solution to the threat.<br />

3-19

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!