Symantec™ Protection Suite
Enterprise Edition 4.0
Getting Started Guide
Dec. 2012
CONTENTS
GETTING STARTED WITH SYMANTEC™ PROTECTION SUITE ....................................................... 4
ABOUT SYMANTEC PROTECTION SUITE ENTERPRISE EDITION ............................................................................ 4
ABOUT THE COMPONENTS INCLUDED IN SYMANTEC PROTECTION SUITE ENTERPRISE EDITION ............................. 5
SYMANTEC PROTECTION SUITE 4.0 ENTERPRISE EDITION REFERENCE ARCHITECTURE ......................................... 9
GETTING STARTED WITH SPS EE 4.0 ........................................................................................................... 11
WHERE TO GET MORE INFORMATION ........................................................................................................... 15
DOCUMENT LOCATIONS .......................................................................................................................... 15
ACCESSING THE SUITE SOFTWARE ................................................................................................ 17
Dec. 2012
SPS Enterprise Edition 4.0 Getting Started Guide
The software described in this book is furnished under a license agreement and may be used only in accordance
with the terms of the agreement.
Legal Notice
Copyright © 2012 Symantec™ Corporation. All rights reserved.
Symantec, the Symantec Logo, Bloodhound, Confidence Online, Digital Immune System, LiveUpdate, Norton,
Norton 360, Sygate, and TruScan are trademarks or registered trademarks of Symantec Corporation or its
affiliates in the U.S. and other countries. Other names may be trademarks of their respective owners.
The product described in this document is distributed under licenses restricting its use, copying, distribution,
and decompilation/reverse engineering. No part of this document may be reproduced in any form by any
means without prior written authorization of Symantec Corporation and its licensors, if any.
THE DOCUMENTATION IS PROVIDED "AS IS" AND ALL EXPRESS OR IMPLIED CONDITIONS, REPRESENTATIONS AND
WARRANTIES, INCLUDING ANY IMPLIED WARRANTY OF MERCHANTABILITY, FITNESS FOR A PARTICULAR
PURPOSE OR NON-INFRINGEMENT, ARE DISCLAIMED, EXCEPT TO THE EXTENT THAT SUCH DISCLAIMERS ARE
HELD TO BE LEGALLY INVALID. SYMANTEC CORPORATION SHALL NOT BE LIABLE FOR INCIDENTAL OR CONSEQUENTIAL
DAMAGES IN CONNECTION WITH THE FURNISHING, PERFORMANCE, OR USE OF THIS DOCUMENTATION. THE
INFORMATION CONTAINED IN THIS DOCUMENTATION IS SUBJECT TO CHANGE WITHOUT NOTICE.
The Licensed Software and Documentation are deemed to be commercial computer software as defined in FAR
12.212 and subject to restricted rights as defined in FAR Section 52.227-19 "Commercial Computer Software -
Restricted Rights" and DFARS 227.7202, "Rights in Commercial Computer Software or Commercial Computer
Software Documentation", as applicable, and any successor regulations. Any use, modification, reproduction
release, performance, display or disclosure of the Licensed Software and Documentation by the U.S. Government
shall be solely in accordance with the terms of this Agreement.
Symantec Corporation
350 Ellis Street
Mountain View, CA 94043
http://www.symantec.com
Printed in the United States of America.
10 9 8 7 6 5 4 3 2 1
SPS EE 4.0 Getting Started Guide Nov. 2012
Page 3
GETTING STARTED WITH SYMANTEC™ PROTECTION SUITE
This document is not intended to replace the point-product Getting Started Guides. Please see the
“Where to get more information” section for further details.
ABOUT SYMANTEC PROTECTION SUITE ENTERPRISE EDITION
This document includes the following topics:
■
About Symantec™ Protection Suite
■
Components of Protection Suite Enterprise Edition 4.0
■
Getting Started with SPS EE 4.0
■
Where to get more information
■
Accessing the Suite Software
Symantec Protection Suite Enterprise Edition (SPS EE) 4.0 is powered by Symantec Insight and
protects against today’s complex malware, web and spam threats with the fastest, most-effective
endpoint security, combined with industry-leading messaging protection and innovative Web
security.
Powerful, centralized visibility and control of your Windows®, Mac® OS X and Linux®
environments are achieved with Symantec™ Protection Center v2 enabling policy enforcement,
consolidated reporting, and real-time intelligence.
Symantec™ Protection Suite Enterprise Edition’s unparalleled combination of award-winning
technologies from the world leader in security and data protection enables you to
comprehensively protect, intelligently manage, and automatically control the assets most crucial
to your business—while reducing upfront and on-going costs.
SPS EE 4.0 Getting Started Guide Nov. 2012
Page 4
Symantec Protection Center v2 is a centralized
security management console that allows
organizations to identify emerging threats,
prioritize tasks and accelerate time to protection
based on relevant, actionable intelligence.
■
Cross-product reporting including prebuilt reports that
cover malware, email, and assets
■
The Global Intelligence Network monitors security
events globally and provides early-warning alerts of
attacks
■
Security, infrastructure, and global intelligence
notifications are delivered via real-time, prioritized
security news feeds
■
Prebuilt workflow templates allow out-of-the-box
automation of common security processes
ABOUT THE COMPONENTS INCLUDED IN SYMANTEC PROTECTION SUITE ENTERPRISE EDITION
Symantec Protection Suite includes multiple layers of protection from the market-leading
endpoint security, messaging and web security, and data and system recovery technologies.
Symantec™ Protection Suite eliminates environment complexity by deploying integrated essential
endpoint and messaging security technologies as unified solutions with coordinated management.
Automatic controls help you achieve, prove, and enforce adherence to IT policy and regulatory
objectives with ease. You can also simplify implementation and operations by quickly deploying
with minimal disruption to your environment through easy management and optimized utilization
of system resources.
Centrally manage backup and recovery tasks for multiple desktops/laptops across your entire
organization to insure business continuity in the event of system outages.
Protection Suite provides instant threat protection with support from the largest Global
Intelligence Network in the world and comprehensive virus protection against malicious threats
that target Windows®, Linux® and Macintosh® systems.
Table 1-1 describes the protection technologies included in SPS EE 4.0 and their benefits.
Table 1-1 – Protection Suite Components
SPS EE 4.0 Getting Started Guide Nov. 2012
Page 5
Symantec Endpoint Protection is a client-server
solution that protects laptops, desktops, Mac and
Linux computers, and servers in your network
against malware. Symantec Endpoint Protection
combines virus protection with advanced threat
protection to proactively secure your computers
against known and unknown threats.
This comprehensive solution protects
confidential and valuable information by
combining multiple layers of protection on a
single integrated client. Symantec Endpoint
Protection reduces management overhead, time,
and cost by offering a single management
console and a single client.
■
Virus and Spyware Protection detects new threats
earlier and more accurately using not just signature-based
and behavioral-based solutions, but the reputation-based
security of Symantec Insight.
■
SONAR examines programs as they run, and identifies
and stops malicious behavior of new and previously
unknown threats.
■
A rules-based firewall engine shields Windows
computers from malicious threats before they appear.
■
Intrusion Prevention scans network traffic and files for
indications of attempted intrusions.
■
Browser Intrusion Prevention scans for attacks that are
directed at Windows-based browser vulnerabilities.
■
Universal download protection monitors all downloads
from the browser and validates that the downloads are
not malware.
■
Application Control controls what applications are
allowed to run or access system resources in a Windows
environment.
■
Device Control manages the peripheral devices that
users can attach to desktop computers.
■
Network Access Control and host integrity checking
controls access to corporate networks and enforces
endpoint security policy regardless of how endpoints
connect to the network
Mail Security for
Exchange and
Domino
Symantec Mail Security provides real-time
protection for email against viruses, spam,
spyware, phishing, and other attacks while
enforcing content policies. Powered by
Brightmail technology, this email security
software stops 99 percent of spam while making
fewer than 1 false positive per million messages.
It supports 64 bit and Virtualized server
environments with easy installation and simple
administration.
■
Protects against viruses, mass-mailer worms, Trojan
horses, spam, spyware, phishing, and denial of service
attacks
■
Stops 99 percent of spam while making fewer than 1
mistake per million messages.
■
Filters email content with pre-defined policies, regular
expressions, attachment criteria and True File typing.
■
Management console provides centralized server group
policy configuration, notifications, alerts, and reporting.
■
Integration with Microsoft Operations Manager and
Systems Center v2 Operations Manager creates an email
SPS EE 4.0 Getting Started Guide Nov. 2012
Page 6
security software solution that enables end-to-end
monitoring of your IT environment.
Symantec Messaging Gateway powered by
Brightmail, delivers inbound and outbound
messaging security, with effective and accurate
real-time antispam and antivirus protection,
advanced content filtering, data loss prevention,
and email encryption.
Messaging Gateway is simple to administer and
catches more than 99% of spam with less than
one in a million false positives. Defend your email
perimeter, and quickly respond to new
messaging threats with this market leading
messaging security solution.
Deploy Messaging Gateway as a virtual appliance
or purchase a dedicated physical hardware
appliance.
■
Detects spam, denial-of-service attacks, and other
inbound email threats
■
Leverages a global sender reputation and local sender
reputation analysis to reduce email infrastructure costs by
restricting unwanted connections
■
Filters email to remove unwanted content, demonstrate
regulatory compliance, and protect against intellectual
property and data loss over email
■
Protects sensitive client data and valuable confidential
information, with the ability to fingerprint and identify
actual company data within messages or attachments.
■
Obtains visibility into messaging trends and events with
minimal administrative burden
Symantec Web Gateway is an innovative Web
security gateway appliance that protects
organizations against Web threats, which include
malicious URLs, spyware, botnets, viruses, and,
other types of malware.
Symantec Web Gateway provides controls for
Web content and Internet applications. Backed
by the Symantec™ Global Intelligence Network,
Symantec Web Gateway is built on a scalable
platform that quickly and simultaneously scans
for malware and inappropriate Web content.
Symantec Web Gateway helps organizations to
maintain critical uptime and employee
productivity by blocking attacks.
Deploy Web Gateway as a virtual appliance or
purchase a dedicated physical hardware
appliance.
■
Fast protection at the Web gateway across multiple
protocols for inbound and outbound web traffic
■
Protection against malware threats on all Web file
transfer channels
■
Ability to inspect for, detect, and block active botnets
■
URL filtering with flexible policy controls and in-depth
reporting (the URL filtering license is required)
■
Advanced application control capabilities with ability to
monitor and control usage by end-users spanning multiple
applications
■
Detection of compromised endpoints by network
fingerprinting and behavioral modeling
■
Comprehensive Web reporting and alerting
■
Flexible policy controls, which allow policy creation on
Web-based criteria and control over of how policies are
applied across an organization
■
SSL-encrypted network traffic monitoring for URL
content filtering, blacklisted-domain matching, and
SPS EE 4.0 Getting Started Guide Nov. 2012
Page 7