During security audits, over 15,000 vulnerability assessments are made and networks are scanned IP by IP. GFI LANguard N.S.S. gives you the capability to perform multi-platform scans (Windows, Mac OS, Linux) across all environments and to analyze your network’s security health from a single source of data. This ensures that you are able to identify and rectify any threats before hackers manage to do so. IMPROVED! – Identify security vulnerabilities and take remedial actionGFI LANguard N.S.S. scans computers, identifies and categorizes security vulnerabilities, recommends a course of action and provides tools that enable you to solve these issues. GFI LANguard N.S.S. also makes use of a graphical threat level indicator that provides an intuitive, weighted assessment of the vulnerability status of a scanned computer or group of computers. Wherever possible a web link or more information on a particular security issue is provided, such as a BugTraq ID or a Microsoft Knowledge Base article ID. View screenshot. IMPROVED! – Extensive, industrial-strength vulnerabilities databaseGFI LANguard N.S.S. ships with a complete and thorough vulnerability assessment database, which includes standards such as OVAL (2,000+ checks) and SANS Top 20. This database is regularly updated with information from BugTraq, SANS Corporation, OVAL, CVE and others. Through its auto-update system, GFI LANguard N.S.S. is always kept updated with information about newly released Microsoft security updates as well as new vulnerability checks issued by GFI and other community-based information repositories such as the OVAL database. Ensures that third party security applications such as anti-virus and anti-spyware offer optimum protectionGFI LANguard N.S.S. also checks that supported security applications such as anti-virus and anti-spyware software are updated with the latest definition files and are functioning correctly. For example, you can ensure that supported security applications have all key features (such as real-time scanning) enabled. Easily creates different types of scans and vulnerability testsYou can easily configure scans for different types of information; such as open shares on workstations, security audit/password policies and machines missing a particular patch or service pack. You can scan for different types of vulnerabilities to identify potential security issues. These include:
- Open ports: GFI LANguard N.S.S. scans for unnecessary open ports and checks that no port hijacking is in force.
- Unused local users and groups: Remove or disable User accounts no longer in use.
- Blacklisted applications: Identify unauthorized or dangerous software and add to blacklists of applications you want to associate with a high security vulnerability alert.
- Dangerous USB devices, wireless nodes and links: Scans all devices connected to USB or wireless links and alerts you of any suspicious activity.
- And much more! View screenshot.
Setup your own custom vulnerability checksGFI LANguard N.S.S. allows you to easily create custom vulnerability checks through wizard-assisted custom-vulnerability condition setup screens. You can also write complex vulnerability checks using the GFI LANguard N.S.S. VBScript-compatible script engine. GFI LANguard N.S.S. includes a script editor and debugger to help with script development. Easily analyze and filter scan resultsGFI LANguard N.S.S. enables you to easily analyze and filter scan results by clicking on one of the default filter nodes. This enables you to identify, for example, machines with high security vulnerabilities or machines that are missing a particular service pack. Custom filters can also very easily be created from scratch or customized. You can also export scan results data to XML. View screenshot. |