Symantec Endpoint Protection: Difference between revisions

Content deleted Content added
GreenC bot (talk | contribs)
Rescued 3 archive links; Move 2 urls. Wayback Medic 2.5 per WP:URLREQ#Network World
Tags: Mobile edit Mobile app edit Android app edit App section source
 
(6 intermediate revisions by 4 users not shown)
Line 8:
| caption = Symantec Endpoint Protection Manager GUI, version 14.2
| developer = [[Broadcom Inc.]]
| latest_release_version = 14.3 RU7RU9 (Build 968111216)
| latest_release_date = {{Start date and age|df=yes|20232024|0306|24}}<ref>{{cite web|title=What's new for all releases of Symantec Endpoint Protection 14.x|url=https://knowledge.broadcom.com/external/article/154575/release-versions-notes-new-fixes-and-sys.html|website=Release versions, notes, new fixes, and system requirements for Endpoint Security and all versions of Endpoint Protection|publisher=[Symantec]|date=17 November 2020}}</ref>
| latest_preview_version =
| latest_preview_date =
Line 18:
| website = {{URL|https://www.broadcom.com/products/cyber-security/endpoint}}
}}
'''Symantec Endpoint Protection''', developed by [[Broadcom Inc.]], is a security software suite that consists of [[anti-malware]], [[intrusion prevention]] and [[Firewall (computing)|firewall]] features for [[server (computing)|server]] and [[desktop computer|desktop]] computers.<ref name="two" /> It has the largest market-share of any product for [[endpoint security]].<ref name="gartner">{{Cite web |url=https://www.gartner.com/doc/reprints?id=1-3N82LG5&ct=161205&st=sb |title=Magic Quadrant for Endpoint Protection Platforms |last=Ouellet |first=Eric |last2=McShane |first2=Ian |date=30 January 2017 |website=gartner.com |publisher=[[Gartner]] |last3=Litan |first3=Avivah}}</ref>
 
==Version history==
Line 25:
At the time, Symantec Antivirus Corporate Edition was widely criticized as having become bloated and unwieldy.<ref name="two" /> Endpoint Protection 11.0 was intended to address these criticisms.<ref name="two">{{Cite news |url=https://books.google.com/books?id=LmAEAAAAMBAJ&pg=PA36 |title=Troubled Waters |last=Walsh |first=Lawrence |date=November 2007 |work=CSO Magazine |publisher=[[CXO Media]] |issue=10 |volume=6}}</ref> The [[disk footprint]] of Symantec Corporate Edition 10.0 was almost 100 MB, whereas Endpoint Protection's was projected to be 21 MB.<ref name="two" />
 
In 2009, Symantec introduced a managed service, whereby Symantec staff deploy and manage Symantec Endpoint Protection installations remotely.<ref>{{Cite web |url=http://www.networkworld.com/article/2257821/security-vulnerability-mgmt/symantec-unveils-endpoint-protection-services.html |title=Symantec unveils endpoint protection services |last=Messmer |first=Ellen |date=23 June 2009 |website=[[Network World]] |publisher=[[IDG]] |access-date=3 May 2017 |archive-date=19 May 2018 |archive-url=https://web.archive.org/web/20180519224646/https://www.networkworld.com/article/2257821/security-vulnerability-mgmt/symantec-unveils-endpoint-protection-services.html |url-status=dead }}</ref> A Small Business Edition with a faster installation process was released in 2010.<ref>{{Cite web |url=http://www.crn.com/features/security/222300110/security-in-20-minutes-really.htm |title=Security In 20 Minutes, Really |last=Moltzen |first=Edward |date=1 January 2010 |website=[[CRN (magazine)|CRN]] |publisher=The Channel Company}}</ref> In February 2011, Symantec announced version 12.0 of Endpoint Protection.<ref name="Messmer 2011">{{Cite web |url=http://www.networkworld.com/article/2199769/network-security/symantec-looks-to-protect-users-from-mutating-malware.html |archive-url=https://web.archive.org/web/20170816201424/http://www.networkworld.com/article/2199769/network-security/symantec-looks-to-protect-users-from-mutating-malware.html |url-status=dead |archive-date=16 August 2017 |title=Symantec looks to protect users from mutating malware |last=Messmer |first=Ellen |date=15 February 2011 |website=[[Network World]] |publisher=[[IDG]]}}</ref> Version 12 incorporated a cloud-based database of malicious files called Symantec Insight.<ref name="Messmer 2011" /> Insight was intended to combat [[malware]] that generates mutations of its files to avoid detection by [[Signature based detection|signature-based]] anti-malware software.<ref name="Messmer 2011" /> In late 2012, Symantec released version 12.1.2, which supports [[VMware]] vShield.<ref>{{Cite web |url=http://www.networkworld.com/article/2161783/network-security/symantec-releases-first-anti-malware-software-to-work-with-vmware-vshield-security-.html |archive-url=https://web.archive.org/web/20170816192706/http://www.networkworld.com/article/2161783/network-security/symantec-releases-first-anti-malware-software-to-work-with-vmware-vshield-security-.html |url-status=dead |archive-date=16 August 2017 |title=Symantec releases first anti-malware software to work with VMware vShield security system |last=Messmer |first=Ellen |date=3 December 2012 |website=[[Network World]] |publisher=[[IDG]]}}</ref>
 
A cloud version of Endpoint Protection was released in September 2016.<ref>{{Cite web |url=http://www.crn.com/news/security/300082061/symantec-rolls-out-new-cloud-based-endpoint-protection-solution-for-smbs.htm |title=Symantec Rolls Out New Cloud-Based Endpoint Protection Solution For SMBs |last=Kuranda |first=Sarah |date=13 September 2016 |website=[[CRN (magazine)|CRN]] |publisher=The Channel Company}}</ref> This was followed by version 14 that November.<ref name="Osborne 2016">{{Cite web |url=httphttps://www.zdnet.com/article/symantec-launches-endpoint-protection-solution-based-on-artificial-intelligence/ |title=Symantec launches endpoint protection solution based on artificial intelligence |last=Osborne |first=Charlie |date=1 October 2016 |website=[[ZDNet]] |publisher=[[CBS Interactive]]}}</ref> Version 14 incorporates [[machine learning]] technology to find patterns in digital data that may be indicative of the presence of a cyber-security threat.<ref name="Osborne 2016" /> It also incorporates memory exploit mitigation and performance improvements.<ref name="gartner">{{Cite web |last=Ouellet |first=Eric |last2=McShane |first2=Ian |last3=Litan |first3=Avivah |date=30 January 2017 |title=Magic Quadrant for Endpoint Protection Platforms |url=https://www.gartner.com/doc/reprints?id=1-3N82LG5&ct=161205&st=sb |website=gartner.com |publisher=[[Gartner]]}}</ref>
 
==Features==
Symantec Endpoint Protection is a security software suite that includes [[intrusion prevention]], [[Firewall (computing)|firewall]], and [[anti-malware]] features.<ref name="SearchSecurity20182">{{cite web | title=Symantec Endpoint Protection and the details for buyers to know | website=SearchSecurity | date=February 8, 2018 | url=http://searchsecurity.techtarget.com/feature/Antimalware-protection-products-Symantec-Endpoint-Protection | access-date=February 8, 2018}}</ref> According to ''SC Magazine'', Endpoint Protection also has some features typical of [[data loss prevention]] software.<ref name="scmag" /> It is typically installed on a server running [[Windows]], [[Linux]], or [[macOS]].<ref name="one">{{Cite news |url=https://www.scmagazine.com/symantec-endpoint-protection-12-v121/review/6652/ |title=Symantec Endpoint Protection 12 v12.1 |last=Stephenson |first=Peter |date=1 August 2012 |work=SC Magazine |access-date=16 April 2017 |publisher=[[Haymarket Media Group]]}}</ref> As of 2018, Version 14 is the only currently-supported release.<ref name="Symantec Enterprise Technical Support 2017">{{Cite web |url=https://support.symantec.com/en_US/article.TECH154475.html |archive-url=https://web.archive.org/web/20160923050424/https://support.symantec.com/en_US/article.TECH154475.html |url-status=dead |archive-date=23 September 2016 |title=Released versions of Symantec Endpoint Protection |date=16 March 2017 |website=Enterprise Technical Support |publisher=[[NortonLifeLock|Symantec]] |access-date=18 April 2017}}</ref>
 
Endpoint Protection scans computers for security threats.<ref name="SearchSecurity20182"/> It is used to prevent unapproved programs from running,<ref name="SearchSecurity20182"/> and to apply firewall policies that block or allow network traffic.<ref>{{Cite web |url=http://www.symantec.com/docs/HOWTO80961 |title=About the Symantec Endpoint Protection firewall |date=28 October 2016 |website=Enterprise Technical Support |publisher=[[NortonLifeLock|Symantec]]}}{{dead link|date=April 2024|bot=medic}}{{cbignore|bot=medic}}</ref> It attempts to identify and block malicious traffic in a corporate network or coming from a [[web browser]].<ref>{{Cite web |url=http://www.symantec.com/docs/HOWTO80870 |title=How intrusion prevention works |date=28 October 2016 |website=Enterprise Technical Support |publisher=[[NortonLifeLock|Symantec]]}}{{dead link|date=April 2024|bot=medic}}{{cbignore|bot=medic}}</ref> It uses aggregate information from users to identify malicious software.<ref name="scmag" /> As of 2016, Symantec claims to use data from 175 million devices that have installed Endpoint Security in 175 countries.<ref name="scmag" />
 
Endpoint Protection has an administrative console that allows the IT department to modify security policies for each department,<ref name="SearchSecurity20182"/> such as which programs or files to exclude from antivirus scans.<ref name="scmag" /> It does not manage mobile devices directly, but treats them as peripherals when connected to a computer and protects the computer from any malicious software on the mobile devices.<ref name="scmag" />