User Guide

ICS Dissolvable Agent for SafeGuard Administration Guide
29
Chapter 4: Administering Security Scanner Policies
Anti-Spyware Scan Rules
The term ‘spyware’ refers to applications that collect user data on host computers for
either commercial or malicious purposes.
Spyware may do any of the following:
Aid hackers in circumventing your security and spreading malicious code.
Spyware can introduce worms, dial out to toll lines, and introduce other serious
security breaches.
Send information about a user, the user’s behavior, the computer system or the
computer system’s use without requesting permission from the user to do so. This
can be a serious breach of security for your users and your organization.
Present advertising, often without notification, to the users without any
additional benefit. This is a less serious threat, but is annoying to users and can
have a serious impact on productivity.
For more information about types of spyware and the risks they present, see the online
help for the Anti-Spyware Enforcement rules.
Use anti-spyware scan rules to protect your end points from spyware. Anti-spyware scan
rules allow you to control gateway access for users who have spyware software on their
end point computers. ICS comes preconfigured with software definitions for many types
of known spyware, organized by type. Through anti-spyware enforcement rules you can
protect your organization, and encourage or require your users to remove spyware
residing on their computers.
For each type of spyware, you can set the action you would like ICS to take when that
spyware type is detected on an end point computer. You can also create exceptions for
specific spyware programs you consider benign and want to allow.
If you want to protect your Gateway and your end point users from spyware, create an
anti-spyware enforcement rule for your policy. You can only use one Anti-spyware scan
rule for each policy, though you may wish to use different rules in different policies. Only
the rule included in your active policy will be enforced for your users.
Creating an Anti-spyware Rule
The steps below give an overview of creating an Anti-spyware scan rule. For detailed
information about individual user interface elements, and how to complete the page, see
the online help.
To Create an Anti-spyware Rule:
1 Log into the ICS Administrator Console and click Enforcement Rules.
2 On the Enforcement Rules page click New Rule and choose Anti-Spyware Scan.