Upload
others
View
2
Download
0
Embed Size (px)
Citation preview
ViRobot ISMS User’s Manual
█ Copyright 1998-2006 by HAURI Inc.
The 2nd Edition on April, 2006
All rights reserved worldwide. No part of this publication or software may be reproduced,
transmitted, transcribed, stored in an archival system or translated into any languages,
human or machine, in any form or by any means, electronic, mechanical, magnetic,
chemical, manual, or otherwise, without the express written permission of
HAURI Inc.
Address : 5F, KCC Bldg., 7-50, Garwol-Dong, Yongsan-Gu, Seoul, Korea
Homepage : http://www.hauri.co.kr (Korean), http://www.hauri.net (English)
E-mail : [email protected]
Tel: +82-2-6090-7300 Fax: +82-2-6090-7310
2
█ HAURI’s affiliated companies
USA : Global HAURI Inc.
Address : 100N Winshester Blvd, Suite#355 Santa Clara CA 95050
Homepage : http://www.globalhauri.com
E-mail : [email protected], [email protected]
Tel : +1 408-260-6920 Fax : +1 408-260-7920 Toll Free : 866-GO-HAURI (General)
EUROPE : HAURI EUROPE Gmbh
Address : Alt-Württemberg-Allee 42, DE 71638 Ludwigsburg, Germany
Homepage : http://www.hauri-europe.com
Tel : +49 7141 6851 122 Fax : +49 7141 6851 130
BRAZIL : Hauri do Brazil
Address : Av. Paulista, 2202 3o. andar, conj. 31, São Paulo Cep 01310-300
Homepage : http://www.hauri.com.br
E-mail : [email protected], [email protected]
Tel : + 55-11-3251-0199, Fax : +55-11-3251-1067
3
█ For the Readers
This Manual is for our customers who purchased ViRobot ISMS Server 3.0. Before you
start using ViRobot ISMS Server 3.0, be sure to read this guide so that it can help you to
use ViRobot ISMS Server 3.0 effectively.
The ViRobot ISMS Server 3.0 may be slightly different from your program due to on
going functional improvement.
█ Read and get the help
This Manual is divided into four chapters. Chapter 1 provides general information
about ViRobot ISMS Server 3.0. The Chapter 2 explains installation procedures of
ViRobot ISMS Server 3.0. Chapter 3 explains components of ViRobot ISMS Server 3.0
and instructions on how to use the software. The Chapter 4 explains actual examples
of installation, un-installation and usage of the software based on diverse system
environments.
█ Trademarks
ViRobot ISMS, HAURI (HAURI) are trademarks of HAURI Inc.
MS, DOS, Windows, MS-Office, MS-Outlook, and Outlook Express are registered
trademarks of Microsoft Corporation and other products or companies’ names may be
registered trademarks of their owners.
4
█ Trademark and Logo
Hereinafter, the term VISMS will indicate ViRobot ISMS Server 3.0.
Table of Contents
I. Introduction to ViRobot ISMS Server 3.0..................... 9
Chapter 1 Overview...................................................................9 1. Register your copy of VISMS................................................................ 11 2. How to contact us.................... 오류! 책갈피가 정의되어 있지 않습니다.
Chapter 2 ViRobot ISMS Server 3.0 Features............................... 13 1. ViRobot ISMS Server 3.0 Features....................................................... 14
1) Security Policy Batch Application thru Adjustment of Network Security Le
vel .................................................................................................14 2) Network System Vulnerability Analysis, Warning & Blocking Functions .14 3) Powerful Update Function through Intelligent Client Robot .................14 4) Task Scheduler to Ensure Success of Remote Commands.................14 5) Access Control by Network, File & Execution Privilege ......................14 6) Infectious Virus Prior/Post-Response through Rapid Pattern Update ...15 7) Supports Encoded Communication for Between Servers & Client’s Infor
5
mation Send/Receive .......................................................................15 8) Integrated Security Service through Diverse Network Environment Suppor
t ....................................................................................................15 9) System Performance Protection through Systematic Log Record Manage
ment ..............................................................................................15 10) Supports Diverse Setup Methods through Server/Client OS Automatic Id
entification......................................................................................15 11) Diverse Format Statistics Report Generation...................................15 12) OS Security Patch, Hardware & Software Asset Information Reporting16 13) Diverse Hardware & Software Platform Support ..............................16 14) Faster and More Powerful Remote Control Function ........................16
II. Getting started with ViRobot ISMS Server 3.0 ................. 17
Chapter 1 Components of ViRobot ISMS Server 3.0 ..................... 17 1. SiteServer Daemon............................................................................... 18 2. ViRobot ISMS Console 3.0 ................................................................... 18 3. ViRobot ISMS Client ............................................................................. 18
① Agent ....................................................................................18 ② ViRobot Desktop 5.0................................................................18 ③ PC Firewall .............................................................................18 ④ Access Control .......................................................................19 ⑤ Intelligent Client Robot.............................................................19 ⑥ Message Client .......................................................................19
4. Other Components................................................................................ 19 ① MSDE, MS-SQL2000 ............................................................... 19 ② Encoded Communication .........................................................19 ③ Communication Ports ..............................................................19 ④ Service ..................................................................................21
Chapter 2. System Requirements of ViRobot ISMS Server 3.0 /Client
3.0 ....................................................................................... 22 1. ViRobot ISMS Server 3.0 ...................................................................... 23 2. ViRobot ISMS Console 3.0 ................................................................... 23 3. ViRobot ISMS Client 3.0 ....................................................................... 24
6
Chapter 3. Installing ViRobot ISMS Server 3.0 /Client 3.0 .............. 25 1. Self-active window for installation ......................................................... 26 2. Installing ViRobot ISMS Server 3.0....................................................... 28 3. Installing ViRobot ISMS Console 3.0 .................................................... 30 4. Installing ViRobot ISMS Client 3.0 ........................................................ 31
Chapter 4. Upgrading to ViRobot ISMS Server 3.0........................ 33 1. Customers with ViRobot Management Server 2.0 ................................ 34
1) Scenario .....................................................................................34 2) Customer Environment..................................................................34 3) Upgrade Method ..........................................................................34
2. Customers with ViRobot Management Server 2.0 & Other Solution..... 35 1) Scenario .....................................................................................35 2) Customer Environment..................................................................35 3) Upgrade Method ..........................................................................35
3. Customers with ViRobot Expert 4.0 ...................................................... 36 1) Scenario .....................................................................................36 2) Customer Environment..................................................................36 3) Upgrade Method ..........................................................................36
Chapter 5. Uninstalling ViRobot ISMS Server 3.0/ Client 3.0 .......... 38 1. Uninstalling ViRobot ISMS Server 3.0 .................................................. 39 2. Uninstalling ViRobot ISMS Client 3.0.................................................... 40
III. Using ViRobot ISMS Server 3.0.................................... 42
Chapter 1 Product Architecture ................................................. 42 1. ViRobot ISMS Server 3.0 ...................................................................... 42 2. ViRobot ISMS Console 3.0 ................................................................... 42 3. ViRobot ISMS Client 3.0 ....................................................................... 43 4. Message Client ..................................................................................... 43
Chapter 2. How to Use the Product ........................................... 44 1. How to Use ViRobot ISMS Server 3.0 .................................................. 44
1) Start ...........................................................................................44 2) Settings ......................................................................................47
2. How to Use ViRobot ISMS Console 3.0................................................ 65
7
1) ViRobot ISMS Console 3.0 Start .....................................................65 2) ViRobot ISMS Console 3.0 Configuration .........................................68 3) Execution of ViRobot ISMS Console 3.0 Tasks .................................68
① Start ......................................................................................68 ② Management...........................................................................88 ③ Task Scheduler .......................................................................95 ④ Analysis .................................................................................97 ⑤ Policy Settings...................................................................... 105
4) ViRobot ISMS Console 3.0 Menu .................................................. 129 ① File...................................................................................... 129 ② Edit ..................................................................................... 130 ③ View .................................................................................... 133 ④ Tools................................................................................... 134 ⑤ Advanced............................................................................. 134 ⑥ Report ................................................................................. 138 ⑦ Help .................................................................................... 144
3. How to Use ViRobot ISMS Client 3.0.................................................. 145 1) What is ViRobot ISMS Client 3.0? ................................................. 145 2) Start ......................................................................................... 145 3) ViRobot ISMS Client 3.0 User Manager .......................................... 146
① Information window ............................................................... 146 ② Tools window ....................................................................... 147 ③ Configuration window ............................................................ 147 ④ Help .................................................................................... 150 ⑤ Menu Information .................................................................. 150
4. How to Use Message Client................................................................ 152 1) Start ......................................................................................... 152 2) Message Management & Printing ................................................. 154 3) Edit Message............................................................................. 159 4) Message Ordering...................................................................... 161 5) Change Message Letter Size........................................................ 161 6) Reload Message ........................................................................ 162 7) Empty Message Recycle Bin ........................................................ 162 8) Address Book Management ......................................................... 162 9) Address Book Wizard.................................................................. 169 10) Chat Function .......................................................................... 171
8
11) Categorization ......................................................................... 179 12) Contacts ................................................................................. 180 13) Message Management window Functions .................................... 181
I. Introduction to ViRobot ISMS Server 3.0
Chapter 1 Overview
………………………………………………………………………………………………
1. Register your copy of VISMS
………………………………………………………………………………………………
2. How to contact us
………………………………………………………………………………………………
…
9
10
1. Register your copy of VISMS
All registered customers will receive HAURI newsletters via email and priority in getting
its various services such as customer and technical support, product updates, and
virus security information.
1) Customer Service
Customer service period expires one year after the date of registration.
2) Benefits of being a registered customer:
▪ Virus definition and emergency updates against new virus attacks.
▪ Priority technical & customer support via Email/Telephone/On-line/Fax
▪ Free Engine updates.
▪ Free security information & user tips via email.
3) How to Register
Register online at our website www.globalhauri.com or www.hauri.net.
4) Renew your registration when your customer support period expires.
Regular engine updates are crucial to protect your system against new viruses.
Customer service and engine update period expires one year after the registration date.
You will need to renew your registration to continue receiving services from Hauri.
2. How to Contact Us
KOREA : HAURI Inc.
Address : 5F, KCC Bldg., 7-50, Garwol-Dong, Yongsan-Gu, Seoul, Korea
Homepage : http://www.hauri.co.kr (Korean), http://www.hauri.net (English)
E-mail : [email protected]
Tel: +82-2-6090-7300 Fax: +82-2-6090-7310
USA : Global HAURI Inc.
Address : 100N Winshester Blvd, Suite#355 Santa Clara CA 95050
Homepage : http://www.globalhauri.com
E-mail : [email protected], [email protected]
11
Tel : +1 408-260-6920 Fax : +1 408-260-7920 Toll Free : 866-GO-HAURI (General)
EUROPE : HAURI EUROPE Gmbh
Address : Alt-Württemberg-Allee 42, DE 71638 Ludwigsburg, Germany
Homepage : http://www.hauri-europe.com
Tel : +49 7141 6851 122 Fax : +49 7141 6851 130
BRAZIL : Hauri do Brazil
Address : Av. Paulista, 2202 3o. andar, conj. 31, São Paulo Cep 01310-300
Homepage : http://www.hauri.com.br
E-mail : [email protected], [email protected]
Tel : + 55-11-3251-0199, Fax : +55-11-3251-1067
12
I. Introduction to ViRobot ISMS Server 3.0
Chapter 2 ViRobot ISMS Server 3.0 Features
………………………………………………………………………………………………
1. ViRobot ISMS Server 3.0 Features
………………………………………………………………………………………………
…
13
1. ViRobot ISMS Server 3.0 Features
1) Security Policy Batch Application thru Adjustment of Network Security Level
ViRobot ISMS Server 3.0 has the function to enforce security policies that an
enterprise security administrator has configured on all systems in batch mode.
Based on configured options, security levels for Spam Mail or Share Folders may be
individually adjusted by each user like the security configuration function of web
browsers.
2) Network System Vulnerability Analysis, Warning & Blocking Functions
When there is a virus infected PC within your enterprise network, ViRobot ISMS
Server 3.0 sends a warning message and the administrator then may block its
connection with other systems to minimize damage to the rest of the network.
3) Powerful Update Function through Intelligent Client Robot
Update feature of ViRobot ISMS using Intelligent Client Robot (ICR) is pursuing
distributed update concept instead of centralized update relying on the server.
Once a client downloads the latest engine from the server, it induces other clients’
update to enable engine update between clients. The feature does not affect the
client’s performance due to incremental update and also reduces the server
network loads. It also guarantees the shortest update completion in case of
emergency.
(It takes about 10 minutes to update 10,000 clients during simulation tests.)
4) Task Scheduler to Ensure Success of Remote Commands
ViRobot ISMS Server 3.0 provides remote command task scheduling function to
facilitate network-wide integrated security management by the administrator. If this
feature is used, it guarantees remote commands such as Induce Connection, Virus
Scan, Operation of Resident scan, Message Transmission regardless of the clients’
connection
5) Access Control by Network, File & Execution Privilege
Administrator privilege becomes more powerful as system-wide integrated security
management function grows. ViRobot ISMS Server 3.0 allows access control of
several administrators so that network, file, or execution type privileges are
allocated by each administrator to prevent security problems from human risk or
14
error.
6) Infectious Virus Prior/Post-Response through Rapid Pattern Update
Outbreak prevention is enabled through pattern updates of viruses, worms and
other malicious programs which exploit system vulnerabilities. Outbreak response is
also provided through diagram of security information and step-by-step guide in
order to prevent re-infection.
7) Supports Encoded Communication for Between Servers & Client’s Information
Send/Receive
Data communication during network connection and information transmission
between server and clients is encrypted through powerful encryption
communication feature
8) Integrated Security Service through Diverse Network Environment Support
Diverse network environments such as VPN or Proxy can be supported for the
integrated security network setup.
9) System Performance Protection through Systematic Log Record Management
Log record volume increases as the number of client PCs increase. Their storage
and processing at the central console can be burdensome. ViRobot ISMS Server
3.0 offers efficient categorization of log records to facilitate administrator
verification and thus, protect the system performance.
10) Supports Diverse Setup Methods through Server/Client OS Automatic Identification
ViRobot ISMS Server 3.0 automatically identifies operating systems of server and
clients to support setup of integrated security products by OS. It allows Automatic
Setup, Remote Setup, and Web Setup. Thus, setup can be customized to suit a
customer’s system environment.
11) Diverse Format Statistics Report Generation
Analysis by virus or user, asset analysis and virus statistics can be displayed
through bar, pie or line type graphs. Diverse document formats (Excel, XML, TEXT,
HTML etc.) also supported. Graph statistics can be arrayed by drag and drop
grouping and particular data can be arrayed by logical function. Report creation
wizard allows to create report during specific period and continual report tasks can
15
be automated.
12) OS Security Patch, Hardware & Software Asset Information Reporting
ViRobot ISMS Server 3.0 allows easy real-time verification of OS patch status by
department and individual computer so that users who have not had security patch
installed can be advised to do so through warning messages. Also, hardware or
software asset setup status can be reported.
13) Diverse Hardware & Software Platform Support
ViRobot ISMS Server 3.0 supports ViRobot Groupware Anti-Virus Solution, Mail
Anti-Virus Solution and PDA Anti-Virus Solution. It can also manage Anti-Virus
solutions used in UNIX, Linux OS environments.
14) Faster and More Powerful Remote Control Function
Remote control function has been improved drastically so that system access
speed and data recall speed.
16
II. Getting started with ViRobot ISMS Server 3.0
Chapter 1 Components of ViRobot ISMS Server 3.0
……………………………………………………………………………………………
1. SiteServer Daemon
……………………………………………………………………………………………
2. ViRobot ISMS Console 3.0
……………………………………………………………………………………………
3. ViRobot ISMS Client
……………………………………………………………………………………………
4. Other Components
……………………………………………………………………………………………
17
1. SiteServer Daemon
The SiteServer Daemon is ViRobot ISMS Server. It is the device that connects to
HAURI Center Server to update ViRobot ISMS Server 3.0 Modules and ViRobot
Desktop 5.0 Engine to perform automatic updating of systems under its control. Also,
it maintains continual communication with ViRobot ISMS Console 3.0 and systems
under its control to provide services and modules needed for their management.
2. ViRobot ISMS Console 3.0
ViRobot ISMS Console 3.0 is an admin device provided via User Interface that the
administrator connects via Admin Server to manage systems under control. It
performs all management service functions including Status Verify, Remote Command,
Data Collect, Report Generation, and Monitoring on all systems under control.
3. ViRobot ISMS Client
All computers where ViRobot ISMS Client 3.0 is installed are referred as ‘systems
under control.’ Each system under control has the following components:
① Agent
It is communication software that ViRobot ISMS Client 3.0 uses to communicate
with server/console. It provides overall communication functions such as Anti-
virus Automatic Update, and Remote Command Process.
② ViRobot Desktop 5.0
It is a anti-virus engine that performs Protection functions. When ViRobot ISMS
Client 3.0 is installed, it is automatically installed through the Update function.
③ PC Firewall
It is a Desktop Firewall. It performs network blocking function whenever
necessary through commands Virus Prevention / Outbreak Prevention / Outbreak
Response.
18
④ Access Control
It blocks virus attack, access to Share Folders, and installation of unwanted
execution programs. It is activated when access control is needed through
commands such as Virus Prevention / Outbreak Prevention / Outbreak Response.
⑤ Intelligent Client Robot
It is a Intelligent Client Robot function that acts as mutual update server and client
between agents during command execution such as Virus Prevention / Outbreak
Prevention / Outbreak Response.
⑥ Message Client
It performs message communication between ViRobot ISMS Server 3.0 and
ViRobot ISMS Client 3.0 or between a ViRobot ISMS Client 3.0 and another
ViRobot ISMS Client 3.0. Send Message and File Send are possible.
4. Other Components
The following basic components are provided to support powerful functions of
ViRobot ISMS Server 3.0:
① MSDE, MS-SQL2000
DBMS is used to manage various Log and Data. DBMS provides various useful
information through Console Analysis Function and Report Generation.
② Encoded Communication
Data communication for ViRobot uses the Stream Encoded Algorithm of RSA’s
RC4(2048Bit) Encoded Algorithm, which is used mostly in Data Communication
and SSL Method. ViRobot ISMS Server 3.0 /Console 3.0 can automatically
distinguish encoded data from general data, accommodates old version Agents
and provides rapid encoding/decoding performance. Key values used in
encoding are uniquely created for each customer server. Encoding function can
be used as an option and can be configured as a default function.
③ Communication Ports
19
Product Category Port Function
File Server 18500
Used for file transfer between server and clients and
when client connects to server and receives files for
updating via Vrdown.exe (Update Execution File).
Server
Report
Server 18504
Used for receiving client generated reports; automatic
reporting of client information; Status Information
Transfer, and Server Connect Verification at scheduled
events at clients.
Client Report
Server 18506
Used for communication between Console and Clients
and when waiting for response to Remote Command
(Agent Settings Change).
Examples: Asset Information Retrieve, Software
Information Retrieve
Server
Report
Server
18507
Used for communication between Console and Server
and when waiting for information from server. Console
Authorization
Server 18508
Used for communication between Console and Clients
and when Client gives authorization or disapproval to
Remote Command from Console. Examples: Infected
File Retrieve, Remote Explorer, Remote Client Control
Update
Command
Process
18505
Used for File Download and communication with
Console. Also used when waiting for Console
Command.
Remote
Command 20030
Port through which Authorization Message is sent to
Authorization Server’s 18508 Port at Console when
Remote Command is given, and actual data moves
through when Client gives authorization.
Client
Intelligent
Update 18512
Intelligent Client Robot feature between clients’ update.
Remote
Control 18514
Used for client Remote Control from Console.
Chat 18515 Used for Chat during Client Remote Control from
Console.
Remote
Control
File Send 18516 Used for File Send during Client Remote Control from
Console.
20
④ Service
A. ViRobot ISMS Server 3.0 Service.
B. ViRobot ISMS Client 3.0 Service
C. ViRobot for WinNT(tm) Folder Protect: Access Control Service
D. HAURI Common Service: Common service for providing execution privileges to
authorized users.
E. HAURI Firewall: PC Firewall Service
F. ViRobot ISMS Scheduler Service: Task Scheduler Server Service (for NT)
G. ViRobot Desktop Monitoring: ViRobot Desktop 5.0 Resident Monitoring Service
H. ViRobot for WinNT(tm) Update: ViRobot Desktop 5.0 Automatic Update Service
21
II. Getting started with ViRobot ISMS Server 3.0
Chapter 2. System Requirements of ViRobot ISMS Server
3.0 /Client 3.0
………………………………………………………………………………………………
1. ViRobot ISMS Server 3.0
………………………………………………………………………………………………
2. ViRobot ISMS Console 3.0
………………………………………………………………………………………………
3. ViRobot ISMS Client 3.0
………………………………………………………………………………………………
22
1. ViRobot ISMS Server 3.0
■ Minimum System Requirements (Installation)
▪ Operating System: Windows XP/2000 Professional/2000 Server/NT
Workstation/NT Server/Windows Me/98/95
▪ CPU: Intel Pentium II 233 MHz or higher processor
▪ Memory: 64 MB or higher
▪ Hard Disk: 100 MB of available hard disk space
▪ Other: IE 4.0 or later, TCP/IP Support Network recommended
■ Recommended System Requirements (Based on 500 clients)
▪ Operating System: Windows XP/2000 Professional/2000 Server/NT
Workstation/NT Server/Windows Me/98/95
▪ CPU: Intel Pentium4, 1.5 GHz or higher processor
▪ Memory: 512MB or higher
▪ Hard Disk: 500 MB of available hard disk space
▪ Other: IE 6.0 or later, TCP/IP Support Network recommended.
More than 500 clients, PC server level equipment is recommended.
2. ViRobot ISMS Console 3.0
▪ Operating System: Windows XP/2000 Professional/2000 Server/NT
Workstation/NT Server/Windows Me/98/95
▪ CPU: Intel Pentium II 500MHz or higher processor
▪ Memory: 128 MB or higher
▪ Hard Disk: 500 MB of available hard disk space
23
▪ Other: IE 5.0 or later, TCP/IP Support Network recommended
3. ViRobot ISMS Client 3.0
■ Minimum System Requirements (Installation)
▪ Operating System: Windows XP/2000 Professional/2000 Server/NT
Workstation/NT Server/Windows Me/98/95
▪ CPU: Intel Pentium III 233 MHz or higher processor
▪ Memory: 64 MB DIMM SDRAM or higher
▪ Hard Disk: 100 MB of available hard disk space
▪ Other: IE 4.0 or later, TCP/IP Support Network recommended
■ Recommended System Requirements
▪ Operating System: Windows XP/2000 Professional/2000 Server/NT
Workstation/NT Server/Windows Me/98/95
▪ CPU: Intel Pentium III 300 MHz or higher processor
▪ Memory: 128MB or higher
▪ Hard Disk: 300 MB of available hard disk space
▪ Other: IE 5.5 or later, TCP/IP Support Network recommended
24
II. Getting started with ViRobot ISMS Server
Chapter 3. Installing ViRobot ISMS Server 3.0 /Client 3.0
………………………………………………………………………………………………
1. Self-active window for Installation
………………………………………………………………………………………………
2. Installing ViRobot ISMS Server 3.0
………………………………………………………………………………………………
3. Installing ViRobot ISMS Console 3.0
………………………………………………………………………………………………
4. Installing ViRobot ISMS Client 3.0
………………………………………………………………………………………………
25
1. Self-active window for installation
Insert the provided CD into the CD-ROM drive of your computer. The AURORUN will
start.
Otherwise, please follow the steps below to perform installation manually:
① Click ‘Start’ button in the Task Bar and click [Run] menu item.
② In the Open(O) space, enter CD-ROM Drive and the Setup Program Name, then
click ‘YES’ button. (If the CD-ROM Drive is ‘D’, then execute
D:₩INSTALL.EXE).
If your computer already has ViRobot installed, a message will appear as,
“Anti-virus software is already installed. Do you want to reinstall after
removing the installed software?” If you click ‘YES’ button, previous ViRobot
program will be automatically deleted. Reboot your computer and install
26
[Figure 2-3-1] Main Installation Menu
A. ViRobot ISMS Manual
ViRobot ISMS Server 3.0 Manual is executed. We recommend that you read the
manual before setup.
B. Virus scanning before Install
ViRobot ISMS Server 3.0 attempts virus scanning of the system prior to its
setup.
C. Setup client
ViRobot ISMS Client 3.0 is installed. Server must first be installed before this
step.
D. Setup server
ViRobot ISMS Server 3.0 and ViRobot ISMS Console 3.0 are installed.
E. Setup DBMS
MSDE is installed. This database is used for analysis and report functions.
Upon Server setup, DBMS is automatically installed. However, you may
manually install DBMS before Server setup.
F. Explore CD Contents
Shows Folder and File information within the setup CD.
27
2. Installing ViRobot ISMS Server 3.0
① ViRobot ISMS Server 3.0 Setup Screen will appear. To begin Setup, click ‘Setup
Server’ button.
② ViRobot ISMS Server 3.0 License Agreement will appear. If you agree with the
Agreement Content, click ‘YES(Y)’ button.
③ Enter Customer Information including User Name, Company, and Serial Number
(Product Number). Serial Number is on a sticker in Users’ Manual. Upon entry,
press ‘Next(N)’ button.
④ Select the folder to install ViRobot ISMS Server 3.0. ViRobot ISMS Server 3.0
default setup folder is "C:₩Program Files₩HAURI₩SiteServer”. To install in a
different folder, click ‘REVIEW(R)’ button. When folder has been selected, click
‘Next(N)’ button.
⑤ Setup software uses current configuration data to begin copying program files
into your computer. You may verify contents in Setup Preview and click ‘Next(N)’
28
button.
⑥ Then, ViRobot Pre-setup Processes are screen for Virus infection. If any has
been infected, it is treated before setup process is resumed.
⑦ Select DBMS Setup Options
A. No Setup
DBMS is not installed. If you select this option, then you cannot use [Analysis],
[Report] functions at the Console. Therefore, you may select this option when
installing a Sub-Server that does not need [Analysis], [Report] functions.
B. New Setup
ViRobot ISMS Server 3.0 Setup requires DBMS setup. DBMS to install is MSDE.
This is the appropriate option for a first time setup.
⒜ Backup
Weekly/ Monthly/ Quarterly/ Semiannual/ Annual Backup Frequency can be
configured.
⒝ PORT
1433 Port is used. You may select a different port.
C. Use Existing One
If your company already uses either MS-SQL Server or MSDE, existing
database may be used.
⒜ Check connection;
Existing ViRobot ISMS Server 3.0 DB Table is used as it is. Therefore, its ID
and Password are registered.
⒝ If Use Existing One is not selected, then a new database and Table will be
created. Therefore, you need to enter Connect ID and Password.
For DB Server IP, enter IP of your DB Server. For Backup Frequency/ PORT,
follow the procedure of B. New Setup.
⑧ Select the list of devices to install ViRobot ISMS Server 3.0. If you wish to
manage both Server and Console from the same computer, check both items.
Otherwise, select only the item desired. Upon entry, press ‘Next(N)’ button.
⑨ Select Server Group. For the initial Server setup, select a Main Server, then Sub-
Servers that receive Update from the Main Server. When selecting a Sub-Server,
enter IP address of the Main Server where ViRobot ISMS Server 3.0 has previously
29
been installed, then press ‘Check Connection’ button to verify the connection.
Then click ‘Next(N)’ button.
⑩ Server /Console Environment Is set. Enter Department Name and Telephone
Number of Administrator. For Administrator Registration, ID and Password shall
be entered. If Administrator Registration is not done, upon completion of setup
you should register the same ID and Password for both Server and Console
settings. They are then automatically registered as for System Administrator.
Upon entry, press ‘Next(N)’ button.
⑪ ViRobot ISMS Server 3.0 setup is performed.
⑫ ViRobot ISMS Server 3.0 Setup is finished. To update ViRobot ISMS Server 3.0 to
its Current Version, click ‘Finish’ button. During ViRobot Engine Module
downloading process, Microsoft SQL Desktop Engine is automatically installed.
⑬ Upon completion of the entire ViRobot ISMS Server 3.0 setup process, then
ViRobot ISMS Server 3.0 and Console are automatically executed.
3. Installing ViRobot ISMS Console 3.0
① 1) ViRobot ISMS Server 3.0 Setup steps ①~⑧ are performed in the same
manner.
② Here, for step ⑦ select ‘A. No Setup’ and for step ⑧, select ‘Site Server
Console Administrator.’ Upon entry, press ‘Next(N)’ button.
② In Console Configuration, Name/ Department Name/ Telephone Number shall be
entered. Upon entry, press ‘Next(N)’ button.
③ Perform ViRobot ISMS Console 3.0 Setup.
④ ViRobot ISMS Server 3.0 Setup is now finished. To update ViRobot ISMS Server
3.0 to Current Version, click ‘Finish’ button.
⑤ Remote Console Auto Update Window will appear.
30
⑥ Before clicking the ‘Resume Update’ button, enter from Console [Settings] –
[Configuration] - [Console Settings] – [Server Address] then connecting Server
IP Address; register the Server registered ID and Password; then click ‘User
Settings Change(P)’ button.
⑦ Click within Remote Console Auto Update window the ‘Resume Update’ button,
then Remote Console is updated to current information.
4. Installing ViRobot ISMS Client 3.0
① ViRobot ISMS Server 3.0 Setup Screen will appear. To begin Setup, click ‘Client
Setup’ button.
② ViRobot ISMS Client 3.0 Setup Help window will appear. Please read it prior to
Setup.
③ Default setup/ Client Setup Main Wizard/ Ghost Client Setup Screen will appear.
A. Default setup
Setup from the CD in a general Computer Environment.
B. Client Setup Main Wizard
Regardless of computer specifications and different OS types, this mode
distributes a compressed setup.exe file which is best suited to your company’s
system environment as the Client Configuration.
31
C. Ghost Client Setup
For any business that manages computer setup through a Ghost, Ghost Client
Setup mode is supported. Computer with Ghost image setup has the same ID
as ViRobot ISMS Client 3.0. Therefore, ID duplication problem will occur.
Therefore, use Ghost Client Setup Method to install ViRobot ISMS Client 3.0
first, then create a Ghost Image. This way ID duplication issue with ViRobot
ISMS Client 3.0 is resolved.
④ Click ‘Default Setup’ (for general Setup Environment) button.
⑤ Enter Connecting Server IP Address and click ‘Test’ button. If ‘Server
Connection Success’ message is displayed, click ‘YES’ button, then click ‘Next’
button.
⑥ Enter Department Name/ User Name/ Telephone Number, then click ‘Install’
button.
⑦ ViRobot window and Pre-setup Virus Scan window will appear. If you do not
want this function, click ‘Exit’ button. However, we recommend Pre-setup Virus
Scan before setup.
⑧ ‘Install’ button is changed to ‘Finish’ button. If you click ‘Finish’ button, ViRobot
ISMS Server Client 3.0 Setup is finished.
⑨ Upon Setup Finish ViRobot Anti-virus Update window appears and downloading of
Current Anti-virus Engine from Server is performed. Upon downloading, together
with ViRobot ISMS Client 3.0 Setup, ViRobot Desktop 5.0 is also installed
automatically.
32
II. Getting started with ViRobot ISMS Server 3.0
Chapter 4. Upgrading to ViRobot ISMS Server 3.0
………………………………………………………………………………………………
1. Customers with ViRobot Management Server 2.0
………………………………………………………………………………………………
2. Customers with ViRobot Managements Server 2.0 & Other solutions
………………………………………………………………………………………………
3. Customers with ViRobot Expert 4.0
………………………………………………………………………………………………
33
1. Customers with ViRobot Management Server 2.0
1) Scenario
This customer uses existing ViRobot Admin Server 2.0, about 5,000 clients, one
main server and two Sub-Servers. All clients perform updating of ViRobot Expert
4.0 via VMS Agent 2.0. The administrator wishes to upgrade one Main Server and
two Sub-Servers to ViRobot ISMS Server 3.0 Main Server and Sub-Servers and all
clients to ViRobot ISMS Client 3.0 to automatically install ViRobot Desktop 5.0.
Administrator wishes to complete these tasks with minimum effort.
2) Customer Environment
① NT (Windows NT/2000/XP) Operating System operates ViRobot Admin Server2.0.
Administrator Console has the same system the Remote Console has a different
system installed.
② NT (Windows NT/2000/XP) Operating System has ViRobot Admin Server2.0 Sub-
Server. Sub-Servers are all updated via the single Main Server.
③ Clients with Windwos98 or greater MS Windows Operating Systems have Site
Client for VMS2.0 installed for use.
④ On desktop systems with Site Client for VMS2.0 installed, ViRobot Expert 4.0 and
Server System has ViRobot Advanced Server installed.
3) Upgrade Method
① At VMS 2.0 Main Server, enter ViRobot ISMS Server 3.0 CD and begin ViRobot
ISMS Server 3.0 Setup.
③ Select ‘Remove’ to remove items.
(Caution! Upon Removal, VMS2.0 Group Information is automatically backed up
but Virus related data and Log Information are all deleted.)
③ Upon Removal Complete, proceed with ViRobot ISMS Server 3.0 Main Server
Setup.
④ Upon completion of the Main Server Setup, perform Sub-Server upgrading via
Main Server.
Sub-Server Upgrade does not require other tasks.
⑤ Existing Remote Consoles receive upgrade modules from the Server for
automatic upgrading.
34
⑥ Upon completion of Server and Sub-Server upgrading, each Site Client for
VMS2.0 is upgraded to ViRobot ISMS Client 3.0 at their log-in time and ViRobot
Desktop 5.0 is automatically installed.
2. Customers with ViRobot Management Server 2.0 & Other
Solution
1) Scenario
Existing ViRobot Admin Server2.0 is being used. There are about 1,000 clients and
one Main Server. For enterprise Intranet MS Exchange Server 2000(2003) is used as
Groupware but UNIX based Send Mail Server is also being used. Groupware Server
and Mail Server have HAURI Anti-Virus Solution installed. All clients upgrade to
ViRobot Expert4.0 Engine via VMS Agent 2.0. The administrator wishes to upgrade
the Main Server to ViRobot ISMS Server 3.0Main Server and all clients to ViRobot
ISMS Client 3.0 for automatic setup of ViRobot Desktop 5.0. He/she also wishes to
migrate to Groupware Server and Mail Server’s Policy and Prior/Post-Response
systems. Administrator wishes to complete these tasks with the minimum effort.
2) Customer Environment
① NT (Windows NT/2000/XP) Operating System operates ViRobot Admin Server2.0.
Administrator Console also has the same system while Remote Console has a
different system installed.
② Clients with Windwos98 or greater MS Windows Operating Systems have Site
Client for VMS2.0 installed.
③ Desktop systems with Site Client for VMS2.0 installed also has ViRobot Expert
4.0 and the Server System has ViRobot Advanced Server installed.
④ UNIX and Linux non-MS Windows Operating Systems have Site Client for
VMS2.0 installed.
⑤ HAURI ViRobot Exchange3.0 or GatewayWall 3.0 Groupware/Mail Anti-Virus
Solution is installed in Groupware Server/Mail Server.
3) Upgrade Method
① At VMS 2.0 Main Server, enter ViRobot ISMS Server 3.0 CD and begin ViRobot
ISMS Server 3.0 Setup.
35
② Select items for ‘Remove’ for removal of any component.
(Caution! Upon Removal, VMS2.0 Group Information is backed up automatically,
but Virus related data and Log Information are all deleted.)
③ Upon Removal Complete, proceed with ViRobot ISMS Server 3.0 Main Server
Setup.
④ Upon completion of Main Server Setup each Site Client for VMS2.0 is upgraded
to ViRobot ISMS Client 3.0 at log-in time and ViRobot Desktop 5.0 is
automatically installed.
⑤ Existing Remote Console receives upgrade modules from the Server and is
automatically upgraded.
⑥ If you want ViRobot ISMS and ViRobot Exchange2.0 or GatewayWall 3.0 and
Integration, please request HAURI Technical Support.
3. Customers with ViRobot Expert 4.0
1) Scenario
Since there is no Virus Protection Admin Server, internal security management is not
being performed. There are about 500 clients and they have diverse windows 98 or
greater MS Windows Operating Systems. All computers have either ViRobot Expert
4.0/ ViRobot Advanced Server or another Anti-virus software installed. However,
there are some computers without any Anti-virus software. Administrator wishes to
introduce Virus Protection Admin Server to automatically install on all computers
Anti-virus, PC Firewall, and Access Control with the minimum effort.
2) Customer Environment
① Various Windwos98 or greater MS Windows Operating Systems are being used.
② On general computer ViRobot Expert 4.0 and Server System, ViRobot Advanced
Server is installed.
③ Some computers have either other vendor’s Anti-virus software or none at all.
④ Each Protection function is managed by its own client.
3) Upgrade Method
① At VMS 2.0 Main Server enter ViRobot ISMS Server 3.0 CD and begin ViRobot
ISMS Server 3.0 Setup.
36
② Proceed with ViRobot ISMS Server 3.0 Main Server Setup.
③ Upon Main Server Setup complete, use the generated ViRobot ISMS Client 3.0
Setup File to install the Agent.
④ As ViRobot ISMS Client 3.0 Setup proceeds, ViRobot Desktop 5.0 is
automatically installed.
⑤ On computers with another vendor’s Anti-virus installed, use Automatic Delete
Function to delete it and proceed with ViRobot setup.
37
II. Getting started with ViRobot ISMS Server 3.0
Chapter 5. Uninstalling ViRobot ISMS Server 3.0/ Client 3.0
………………………………………………………………………………………………
1. Uninstalling ViRobot ISMS Server 3.0
………………………………………………………………………………………………
2. Uninstalling ViRobot ISMS Client 3.0
………………………………………………………………………………………………
38
1. Uninstalling ViRobot ISMS Server 3.0
ViRobot ISMS Server 3.0 has VMS Server 2.0 Delete Utility to conveniently remove the
software.
① In [Start]>[Settings]>[Control Panel]>[Add/Remove Programs] select ViRobot
ISMS Server 3.0 and click ‘Change/Remove(C).’
② In [Start]>[Program]>[ViRobot ISMS Server 3.0], select ViRobot ISMS Server 3.0
Uninstallation.
③ In Explorer within ViRobot ISMS Server 3.0 installed Folder (₩Program
Files₩HAURI₩SiteServer), execute UnSetup.exe.
[Figure 2 - 5 - 1] Un-installation Password to Remove VISMS
Un-installation Password is required to remove ViRobot ISMS Server 3.0. By
default, the password is ‘serverdown’.
39
[Figure 2 - 5 - 2] “Remove” to uninstall VISMS
④ From [Figure 2-5-2] Screen, select ‘Remove’ and click ‘Next’ button.
ViRobot ISMS has ViRobot ISMS Server 3.0Setup/Remove Utility to conveniently
do software removal.
2. Uninstalling ViRobot ISMS Client 3.0
① From [Start]>[Settings]>[Control Panel]>[Add/Remove Programs] select VISMS
Client 3.0 and click ‘Change/Remove(C)’ button.
④ From Explorer, within VMS Server installed Folder (₩Program
Files₩HAURI₩SiteClient) execute UnSetup.exe.
③ Screen [Figure 2-5-1] will prompt. Un-installation Password is required to
remove ViRobot ISMS Client. By default, the password is ‘agentdown’.
40
Passwords to remove VISMS Server or Client can be set by the
administrator.
For the efficient management, the password should not be shared.
41
III. Using ViRobot ISMS Server 3.0
Chapter 1 Product Architecture
………………………………………………………………………………………………
1. ViRobot ISMS Server 3.0 Server
………………………………………………………………………………………………
2. ViRobot ISMS Console 3.0
………………………………………………………………………………………………
3. ViRobot ISMS Client 3.0
………………………………………………………………………………………………
4. Message Client
………………………………………………………………………………………………
1. ViRobot ISMS Server 3.0
ViRobot ISMS Server 3.0 is the Admin Server. It is the device that updates ViRobot
ISMS Server 3.0 Module and ViRobot Desktop 5.0 Engine from HAURI(HAURI) Center
Server and performs automatic updating of systems under Control with the current
engine. Also, it maintains continual communication with ViRobot ISMS Console 3.0
and Systems under Control and provides them with needed services and modules.
2. ViRobot ISMS Console 3.0
ViRobot ISMS Console 3.0 is the ViRobot ISMS Console 3.0. ViRobot ISMS Console
3.0 is the management device that the Administrator connects via Admin Server to
manage Systems under Control that are connected to Admin Server. It performs all
42
management services for Systems under Control including Status Verify, Remote
Command, Data Collect, Report Generation, and Monitoring.
3. ViRobot ISMS Client 3.0
All computers where ViRobot ISMS Client 3.0 is installed are called Systems under
Control.
Client performs functions such as Agent/ ViRobot Desktop 5.0/ PC Firewall/ Access
Control/ Intelligent Agent.
4. Message Client
It is a function that handles message communication between ViRobot ISMS and
Client or Client and Client. Send Message and File Send are possible.
43
III. Using ViRobot ISMS Server 3.0
Chapter 2. How to Use the Product
………………………………………………………………………………………………
1. How to Use ViRobot ISMS Server 3.0
………………………………………………………………………………………………
2. How to Use ViRobot ISMS Console 3.0
………………………………………………………………………………………………
3. How to Use ViRobot ISMS Client 3.0
………………………………………………………………………………………………
4. How to Use Message Client
……………………………………………………………………………………………
1. How to Use ViRobot ISMS Server 3.0
1) Start
ViRobot ISMS Server 3.0 is provided in the form of Server Service. It is displayed as
a Windows Tray Icon in normal situations.
[Figure 3 - 2 - 1] SiteServer Tray Icon
If Configuration or Monitoring is desired, execute ViRobot ISMS Server 3.0 Settings
and you may view such information as Configuration Change & Log Record,
ViRobot ISMS Server 3.0 Administrator Registration & Delete, and Clients’ Connect
Status. Within System Tray, right mouse click on ViRobot ISMS Server 3.0 Icon and
execute ViRobot ISMS Server 3.0 Configuration, then you will find, for Windows
44
95/98/ME, Finish(X) is Enabled while for Windows NT Server/2000 Professional/2000
Server/2000 Advanced Server, Finish(X) is Disabled.
Due to on-going development, menus of ViRobot ISMS Server 3.0 can be added or
removed by component.
① Settings
From the above menu, if you click Setting(S), the following Log-in window
appears.
[Figure 3 - 2 - 2] Log-in
After Log-in, you may perform Server Settings.
② ViRobot ISMS Console 3.0
From the Console Screen, if you click the following button;
[Figure 3 - 2 - 3] “Connect” icon to log-on
The following Log-in window appears. After Log-in, Console is started.
45
[Figure 3 - 2 - 4] VISMS Console Log-in
③ Pause
Pause temporarily stops Update Service to clients.
A. When Pause Service Menu is checked;
⒜ When Server is receiving Module Update.
⒝ When Server has not completed normal download during Module Update.
⒞ When the Administrator has selected Pause Service Menu, its Restart can be
done either automatically upon completion of Module Download or by the
Administrator.
④ Module Update
Module Update is performed within the folder, ₩Program
Files₩HAURI₩SiteServer₩VISMSupdate and receives ViRobot ISMS Server 3.0
Product Update Modules, and within the folder, ₩Program
File₩HAURI₩SiteServer₩Down, downloads ViRobot Product Group Update
Modules. Upon completion of Module Update, if there is any Current ViRobot
ISMS Server 3.0 Product Update Module, Server is automatically updated with this
module. This function can be performed manually by the Administrator when
normal update fails or for emergency updates.
⑤ ViRobot ISMS Server 3.0 Product Information
ViRobot ISMS Server 3.0 Product Information consists of the following:
A. ‘Module creation date 2003-03-16 AM 9:59:00’ This message shows
ViRobot ISMS Server 3.0 Current Update Date. It is the Execution Date of
46
files that are executed as a part of the service. For Windows NT/2000
Professional/ 2000 Server/ 2000 Advanced Server the execution date of
Svrsvc.exe; with Windows 95/98/ME, execution date of SiteSvr.exe is
displayed.
B. Client Address: 2.2.2.1 Server shows installed PC’s IP Address.
[Figure 3 - 2 - 5] ISMS Server 3.0 Product Information
⑥ Language
Right mouse click the ViRobot ISMS Server 3.0 Tray Icon, then the Language
Menu that supports multi-language version appears. As of October 2001, Korean,
English, Chinese and Japanese are supported.
2) Settings
Double click on the Tray Icon or right mouse click on it and select Setting(S) to
perform ViRobot ISMS Server 3.0 Settings.
① General
47
[Figure 3 - 2 - 6] VISMS Server 3.0 Settings – General
A. Destination Settings
⒜ Anti-virus Directory
Shows ViRobot Setup Path.
⒝ Download Directory
When ViRobot ISMS Server 3.0 is an upper level Server i.e. Main Server, then
this is the download location from connection to either HAURI ViRobot
ISMS Center Server or ISP (Kornet, Hitel, etc.) Server; in case of a Sub-
Server, connection is made to an upper level Server.
ViRobot ISMS Server 3.0 distributes Current Anti-virus Module to Clients that
connect to this location.
48
B. Server Status
It is a reporting function that generates report on ViRobot ISMS Server 3.0
Service Function and Service Status. ViRobot ISMS Server 3.0 can be
categorized into the following three functions. User can verify if services are
being performed normally by viewing the status information on the right of each
item.
⒜ File Server
It handles ViRobot ISMS Server 3.0’s File Distribution Function. It provides
response to Client’s File Request or make File Request and Receive from
Server.
⒝ Report Server
ViRobot ISMS Server 3.0 provides Send/Receive Result with Clients in a
Report form. Report Server handles this function.
⒞ Console Server
Administrator uses ViRobot ISMS Console 3.0 to connect to a specific
ViRobot ISMS Server 3.0, and manage the server through Monitoring & Remote
Commands. ViRobot ISMS Console 3.0 Service Function supports connection with
Server.
C. Connection Interval
It configures connection frequency of ViRobot ISMS Server 3.0 connection with
higher level Server ( in case of HAURI ViRobot ISMS Center Server or ISP Server
or Sub-Server, the upper level Main Server).
Default value is 14400 seconds(4 hours). With shorter frequency you may verify
current anti-virus module, but too small frequency can create unneeded
network load. Therefore, default value is recommended.
D. Administrator Settings/Other Settings
General Tab’s Other Settings is divided into ViRobot ISMS Server 3.0
Connection Settings and Console Administrator Registration & Delete Function.
(These are inherently the same function with only the beginnings different.)
⒜ Settings
49
[Figure 3 - 2 - 7] VISMS Server 3.0 Settings - Other Settings - Settings
█ Agent
● No Ping Trial
ViRobot ISMS Server 3.0 periodically verifies Network Connection Status.
● Notify Manager Automatically When Error Occurs
This function configures Administrator Automatic Notification so that
lower level Sub-Server or Clients’ Virus Outbreak Information can be
automatically notified. ViRobot ISMS Server 3.0 sends Virus Log to
Administrator in e-mail to configured email address at every Server
Update or Administrator Update. Administrator shall enter his/her Mail
Address in Mail Address and for Outgoing Mail Server(SMTP) enter SMTP
address of registered account in MS-Outlook/Outlook Express. Account
Name and Password shall be those of the Receiving Mail Server.
█ Time Out
● Ping Wait-Time
Sometimes Ping Response, which verifies network connection status,
50
may be delayed depending on network status. When there is no ping
response within the specified Time Out period, the connection is cut off.
● Socket Communication Time-Out
ViRobot ISMS Server 3.0 uses Socket when performing service functions
with upper level Server or lower level Clients. Here, in case of poor
Socket Communication due to network problem, ViRobot ISMS Server 3.0
Maximum Response Time is set.
█ Information Storage
ViRobot ISMS Server 3.0 Configuration [Log] Tab shows Client or upper
level Server Connection Information and Response Information. Here,
Information Storage refers to the Maximum Virus Information/Status Log
Information that the Server can save. If the maximum Information limit is
exceeded, Existing Information is deleted and New Information is saved.
● Virus Information
Maximum Virus Information to be displayed in [Log] Tab.
● Status Log Information
Maximum Network Connection Information to be displayed in [Log] Tab.
█ Update Settings
If you click Update Settings button, Task Scheduler Wizard Screen will
appear.
This Wizard helps configure frequency of ViRobot ISMS Server 3.0
Program Update and other related Updates. Update Frequency can be
configured for Daily or Weekly by clicking Next(N) button. (Open button
brings Existing Update Schedule File.)
51
[Figure 3 - 2 - 8] Scheduled Task Wizard
● Update Frequency Settings Screen will appear. Select desired
Frequency (Daily or Weekly), then click Next(N) button.
◈ Daily
Update Scheduled Tasks can be scheduled Daily at a specific Time.
During the Task Execution Update attempt can be made once or for
designated number of times.
◈ Weekly
Update Scheduled Task can be scheduled for specific day of week,
specific Time.
⒝ Administrator
Console Administrator who can connect to ViRobot ISMS Server 3.0 and
perform Monitoring can be registered, changed or deleted. ViRobot ISMS
Server 3.0 allows multiple Administrators. Registered Administrators can
install Remote Console at not only the Server PC but any computer with
Network Support to connect to the Server and perform Client Monitoring
(such as Virus Outbreak Information) and Remote Management functions.
52
[Figure 3 - 2 - 9] VISMS Server 3.0 Settings – Other Settings – Account
█ Add
Console Administrator who can authorize connection to the current ViRobot
ISMS Server 3.0 can be registered.
Console Administrator can, using Authorized ID and Password, register
within Console Configuration (refer to Console Description) and make
connection.
The next Screen shows the process of clicking Addi(A) button and adding
Console Administrator.
● Administrator Type
Administrator can be designated by privilege as System Administrator,
Report/Log Administrator, or Node Administrator.
● User Settings
Administrator’s privileges can be selected and saved or deleted. Also, a
saved Administrator Privilege set can be selected and applied to another
Administrator ID.
● Privilege
53
Privileges can be set for each Administrator.
[Figure 3 - 2 - 10] VISMS Server 3.0 Settings– Other Settings – Account - Add
█ Edit
For a selected Administrator, click Save Settings button and Administrator
Password, Type, and Privilege can be registered.
█ Delete
For a selected Administrator, click Delete(D) button and an Administrator
can be deleted.
54
⒞ Network
[Figure 3 - 2 - 11] VISMS Server 3.0 Settings– Other Settings – Network(1)
█ VPN Settings
This settings is set when Console Command response is not feasible. For
example, when connecting to an external Internet Connection from a
private IP console, this setting allows public IP to be used for command
response when sending a command to a public IP client.
█ Download
Accurate update is available for not only general Proxy Servers but also for
Certified Proxy Servers.
In case of a General Proxy Server, register the Proxy Server IP /Proxy
Server Port value. For a Certified Proxy Server, check Authentication and
register User name /Password only. For a Certified Proxy Server, if you
register IP and Port at the same time, then it is registered as a general
Proxy Server. So please be careful.
55
[Figure 3 - 2 - 12] VISMS Server 3.0 Settings– Other Settings – Network(2)
② Advanced
[Figure 3 - 2 - 13] VISMS Server 3.0 Settings – Advanced
A. SiteServer
Here, you may add/delete the ViRobot ISMS Server 3.0 address to download
56
current anti-virus Module.
⒜ Add
Add button allows you to add ViRobot ISMS Server 3.0 Address. In the Site
Server Address box you may enter ViRobot ISMS Server 3.0 IP Address as
well as a suitable description in the Description cell, then click “Add” button.
Here, Address Add button is used for an Auxiliary Anti-Virus Server to enter
its Main Anti-Virus Server’s address.
⒝ Delete
Select the Item to delete, then click Delete button to delete the ViRobot ISMS
Server 3.0 Address.
⒞ Check
Allows verifying correct connection with an added ViRobot ISMS Server 3.0. If
You may verify network connection to see if ViRobot ISMS Server 3.0 is being
serviced correctly and Network Connection has been made. From the list,
select ViRobot ISMS Server 3.0, and click Connect OK button to verify
Connection Success/Failure.
B. Main Server/Sub-Server Selection
Here, you may determine whether the current ViRobot ISMS Server 3.0 will
function as the Main Server or as a Sub-Server.
Main Server can have HAURI ViRobot ISMS Server 3.0 as its upper level Server
and download current anti-virus modules from ViRobot ISMS Server 3.0 via
Internet and distribute them to lower level Server & Clients.
Sub-Server can have the Main Server or another Sub-Server as its upper level
Server; download from its upper level Server via intranet current anti-virus
modules and distribute them to other lower level Sub-Server or Clients.
C. Sub Server Policy
If this server has been configured as a Sub Server, this function allows inheriting
Main Server’s Policy. If you wish to use this Sub Server as an independent Policy
Server, this function needs to be unchecked.
D. DBMS Usage
⒜ Server Address
MSDE or MS SQL Server’s Address can be registered here.
⒝ Account
57
ViRobot ISMS Server 3.0 DB’s dedicated Account is automatically registered.
If you use sa Account for Setup, automatically vms user Account is registered
at MSDE. If MS SQL Server is used not with sa Account but another account,
use that account during Setup.
⒞ Port
MSDE Port.
⒟ Table Create
Select this item if you wish to create a new Table for ViRobot ISMS Server 3.0.
If, excluding MSDE, you are reinstalling ViRobot ISMS Server 3.0, leave ‘Table
Create’ unchecked to use the existing Table.
⒠ Connect Check
This function verifies MSDE and Network Communication.
③ Log
This function shows Network Connection Information of clients that are connected
to ViRobot ISMS Server 3.0, Administrator Console Connection Information, and
File Send/Receive with upper level Server and lower level Clients.
The following Screen shows ViRobot ISMS Server 3.0 [Log] Tab showing Log
information.
58
[Figure 3 - 2 - 14] VISMS Server 3.0 Settings – Log
A. Log Settings
This function selectively sends Log Information to Console and manages Log
File.
⒜ Log Transfer into Console
59
[Figure 3 - 2 - 15]VISMS Server 3.0 Settings – Log – Log Settings
█ Log Transfer into Console
Each item can be selectively checked for Console Log Transfer.
█ Log Transfer into Upper Level Server
In case of a Sub-Server, select each item to transfer to Main Server.
█ Delete Log File Automatically
When Log does not have a Date Limit, past Log records are automatically
deleted to reduce Server storage space.
60
B. DBMS Backup
[Figure 3 - 2 - 16] VISMS Server 3.0 Settings – Log – DB Backup
⒜ Auto
█ Backup Period
You may specify Backup Period from one to 12 months.
█ Backup when Exceed Capacity
When Hard Disk or database Capacity exceeds a configured value,
Automatic Backup is performed.
█ Removal Option of Original Data During Backup
You may select to delete Original Data during Backup.
█ Save Path
Backup Save Path can be set.
⒝ Manual
Removal Option of Original Data During Backup are set before performing
61
Backup.
⒞ Saving Path
Backup Save Path can be selected to recover Backup Data.
C. Export List
Log Information can be saved as a Text File.
D. Delete
Currently displayed Log Information is deleted.
④ Status
Displays Network Status information of Clients that are connected and receiving
service from ViRobot ISMS Server 3.0.
The following shows ViRobot ISMS Server 3.0 [Status] Tab.
62
[Figure 3 - 2 - 17] VISMS Server 3.0 Settings – Status
Users may use Delete button or Delete All button to delete information of clients
that are being serviced.
A. Connected Clients
Shows the number of clients that are connected to the ViRobot ISMS Server 3.0.
B. Clients in Service
Shows the number of clients being serviced among connected clients.
‘Service’ refers to Send/Receive of Self Update files of Anti-virus Modules and
ViRobot ISMS Client 3.0 Self Update files and other general files as well as
various Remote Command services.
Show Only File Downloading Users option shows only the clients that are
currently connected to ViRobot ISMS Server 3.0 and downloading files.
63
⑤ Properties
ViRobot ISMS Server 3.0 Properties is set. Server Name has to coincide with the
Center Information. Please register any changes here excluding the Server Name.
[Figure 3 - 2 - 18] VISMS Server 3.0 Settings – Properties
A. General Information
⒜ Server Name
Server Name can be any appropriate name that Administrator can recognize
as the server name. Default value is the PC (server) name where ViRobot
ISMS Server 3.0 is installed.
⒝ Other Items
64
Administrator can bring other items excluding the Server Name from Console
for reference. Please enter these items in detail.
2. How to Use ViRobot ISMS Console 3.0
ViRobot ISMS Console 3.0 displays Virus Status statistics and performs a number of
Client Management functions. Once ViRobot ISMS Server 3.0 collects information,
Console uses collected information to perform various commands on clients remotely.
The following screen shows a Console after initial Log-in.
[Figure 3 - 2 - 19] VISMS Console
1) ViRobot ISMS Console 3.0 Start
ViRobot ISMS Console 3.0 is a management tool for monitoring specific ViRobot
ISMS Server 3.0 (including Client Connect Status and Virus Outbreak Information).
Administrator uses Console software to remotely manage specific ViRobot ISMS
65
Server 3.0 Network Status, Service Status and other clients that are connected to
ViRobot ISMS Server 3.0.
Administrator can configure/modify Connecting ViRobot ISMS Server 3.0 Server from
ViRobot ISMS Console 3.0 [Configuration]
① When installed together with ViRobot ISMS Server 3.0.
ViRobot ISMS Console 3.0 can be executed by clicking right mouse the ViRobot
ISMS Server 3.0 Tray Icon and executing ViRobot ISMS Console 3.0(Y).
[Figure 3 - 2 - 20] Start VISMS Console #1
② When Console only is installed
Within [Start]>[Program]>[ViRobot ISMS Server 3.0] click on ViRobot ISMS
Server 3.0 Administrator. For a server where ViRobot ISMS Server 3.0 is installed,
click on ViRobot ISMS Console 3.0 from the right mouse menu of ViRobot ISMS
Server 3.0 tray iron
66
[Figure 3 - 2 - 21] Start VISMS Console #2
ViRobot ISMS Console 3.0 can be started as follows:
When Console Program is started, [Figure 3-2-19] ViRobot ISMS Console 3.0
Execution Screen appears. To enable communication between Console and
Server, press Connect( ) button to perform User (Administrator)
Authentication Verify within Anti-Virus System Log-in Screen.
The following screen shows Anti-Virus System Log-in Screen.
[Figure 3 - 2 - 22] VISMS Console – Log-on
Log-in Authentication consists of entering Connect Server Address and
67
Authorized (Administrator) User Name and Password, and click OK button.
User Name and Password distinguishes small and capital letters. Therefore, you
need to accurately enter them when entering User Name and Password. Also,
check if “Caps Lock” key is turned on.
When you have performed default Log-in Authentication according to the above
Reference information, the Console Configuration lack Server Address and User
Registration information that are needed for connection with the Server. Therefore,
please be sure, after Log-in, to click [Edit]>[Configuration] and enter accurate
ViRobot ISMS Server 3.0 Address and Administrator ID and Password that are
registered with ViRobot ISMS Server 3.0. Only when the Administrator has been
properly registered with the Console, connection to ViRobot ISMS Server 3.0 and
normal Protection functions are activated.
2) ViRobot ISMS Console 3.0 Configuration
Console Environment & Policy, User System’s ViRobot Detail Environment can be
set.
Please refer to the following ‘3) Execution of Console Tasks ⑤ Settings;
Configuration’
3) Execution of ViRobot ISMS Console 3.0 Tasks
① Start
A. Start Window
The following figure shows the initial screen when ViRobot ISMS Server 3.0 is
first opened.
This is the main screen that allows control of all component functions of
ViRobot ISMS Server 3.0.
68
Log Information Component Virus Search
Notice
Task
Policy
Statistic
[Figure 3 - 2 - 23] Windows on VISMS Console
⒜ Notice
When Urgent Virus Pattern has been sent, a warning window appears for
notification and/or execute Emergency update Command. User may also
configure Prevention measures and Post-Responses used for urgent situation.
[Start] tool provides the same functions.
⒝ Task
You may define specific tool commands on desired Group or Nodes to
execute or monitor such commands on all computers that are On or Off.
Virus Log Backup is possible and supports Remote ViRobot ISMS Client 3.0
Setup. [Edit Schedule Task] Tool also provides the same function.
⒞ Policy
Policies such as Prior/Post-Response, ViRobot, Network, Agent, and Server
Settings can be defined and supports Policy Inherit. [Settings] Tool also
provides the same function.
⒟ Statistics
69
Virus, Asset Information can be saved in database and statistics compiled on
saved information on Daily, Monthly, and History basis. This function is
necessary for any Administrator that wants reports. [Analysis] Tool also
provides the same function..
⒠ Virus Search Window
When accurate Virus Name is entered in Search window, HAURI Inc. Web Site
sends Virus Information on the specified virus.
⒡ Component Information Window
Notice, Task, Policy, and Statistics are all connected to Component base.
When selecting a component, its dedicated Component Information window
appears.
⒢ Information such as Start Log Information Window Server and Client Task
Status, Connect Time, Log Title, and Log Content are shown in real-time.
B. Start Components
When Start button is pressed, by default Start Information is selected and
[Figure 3-2-16]Screen is displayed.
[Figure 3 - 2 - 24] VISMS Console – Start Menu
⒜ Start Menu Information
Urgent Security, Engine Version, Virus Infection Status Information is displayed.
Daily Virus Infection Status shows Infection Status of Virus, Network, Spyware,
Mail, and Spam Mail selectively in graphic format.
70
Virus Prevention can be configured as follows.
█ Normal (Resident Scanning)
It is the most general security level and is based on Resident Scanning
█ High (Blocking Configuration Error)
● Blocking Vulnerable Account Access
This method blocks viruses that attack MS Operating System’s
Account Vulnerability. Since such viruses block all account access
using Administrator’s name, it is recommended to rename
Administrator for normal performance.
● Blocking Shared Virus Infected
This function blocks Write Privilege Access to Share Folder to block
virus infection through Share Folders. Read and Execution functions
other than Write are allowed.
█ Maximum (Blocking Network Access/ Blocking Infection-Executables)
● Blocking Network Access
This function blocks all external network connection to any computer
with Block Network Access set. Target computers for protection may
connect to outside through network and already connected sessions
are protected.
Here, new external network connect attempts since Access Block
Command are blocked.
● Blocking Infection Executables
This function blocks Write Privilege of Execution Files (exe, com, bat,
etc.), thus preventing virus from destroying or changing important
files. Since this function blocks Create, Size Change, Date Change,
Name Change, and Delete, normal program operation can be limited
while File Read and Execution are not limited. Also, Log File or
database Files usage is not restricted.
71
█ User Defined
Normal/High/Maximum Security Levels can be set as user-defined.
⒝ Service Products
ViRobot ISMS Server 3.0 can manage computers with non-Microsoft O.S.
besides Window Operating Systems using ViRobot ISMS Client 3.0. Window
Update Module, Groupware/Server Family Update Module and UNIX/LINUX
Update Modules can be selected to be compatible with ViRobot ISMS Client
3.0 Management Environment to receive product updates.
⒞ Setup Distribution
█ Connection Status
● Client Nodes
Server Nodes
Nodes Other Products
Using Node Policy
Nodes that made connections prior to the valid node connect date are
automatically deleted from Control Node when connecting to ViRobot ISMS
Console.
█ Remote Setup
This is automatic batch-mode setup on systems where ViRobot ISMS Client
3.0 has not been installed. From Windows Domain Environment batch setup
through Domain Admin Privilege Account is possible. In a general Network
Environment ViRobot ISMS Client 3.0 Automatic Setup can be attempted on
Windows NT based systems with vulnerable Password System.
█ Install Manager
72
[Figure 3 - 2 - 25] Remote Installation Manager – Stage 1
● Select Search Method
◈ IP Scan: By clicking on the Add button the user may configure the internal
IP Range for Search. [Figure 3-2-25] shows the screen where the Network IP
range of 172.1.1.1~172.1.1.254 is set for search.
◈ Network Scan: Total enterprise network is searched. Search result appears
by Domain Name or Task Group Name.
◈ Network Environment
Searched Information result values are shown. [Figure 3-2-25] Architecture
Diagram shows Nodes with no ViRobot ISMS Client 3.0 setup in red.
73
[Figure 3 - 2 - 26] Remote Installation Manager – Stage 2
Table: The same as in Remote Setup Wizard- Scheduler function.
File: The same as in Remote Setup Wizard- Scheduler function
[Figure 3 - 2 - 27] Remote Installation Manager – Stage 3
Select All: Select nodes for Setup.
Install: Pressing Install button brings up Setup Status Information as
74
situation changes.
: Scheduler Icon
At each scheduled time IP Range is searched to find computers with no
ViRobot system installed and remote setup is performed.
[Figure 3 - 2 - 28] Remote Installation Wizard Scheduler – Search Uninstalled
PC
Search Method: Refer to [Figure 3-2-25] Remote Setup Wizard.
Set IP Range: Refer to [Figure 3-2-25] Remote Setup Wizard.
Network Environment: Select based on Intranet Speed.
75
[Figure 3 - 2 - 29] Remote Installation Wizard Scheduler – Schedule
Registration
Execute Remote Setup: Registers Remote Setup period and the number of
Setup trials.
Scheduler Operation Time: Registers Remote Setup Operation Time.
Register: Registers the list of Accounts with Setup Privilege.
[Figure 3 - 2 - 30] Remote Installation Wizard Scheduler – Admin Table
Using Vulnerable Accounts: Attempt setup using Vulnerable Accounts and
Password Information that are exploited by Worms.
76
Setup File: Registers setup.exe Setup File that is created by Install Build.
: Create Logon Script
In Icon Active Directory (including NT4.0 PDC Environment) Domain, this
function places Logon Script in the Domain Controller Server’s NETLOGON
Folder just like ViRobot ISMS Client 3.0 Setup File to apply it during Logon
time. You may verify that a BAT file related to Logon Script has been
registered by looking in Account of Account List.
[Figure 3 - 2 - 31] Remote Installation Wizard – Create Logon Script
: Allows Add/Delete of ViRobot ISMS Client 3.0 Setup File.
: Create Setup File
Makes ViRobot ISMS Client 3.0 Setup version for remote setup. You can
register only Server Address and click “Create” button.
77
Within ViRobot ISMS Client 3.0 Setup Version Configuration, if you check
Message Generation during Setup, then Setup can fail. So please be careful not
to do so.
: Register Account
Refer to [Figure 3-2-30].
: Search Installed PC/Uninstalled PC
Upon completion of Remote Setup Wizard Task, you may verify
Installed/Uninstalled.
Off Status computers can be considered as Uninstalled PC and needs resetup.
If you click Save button, the Installed PC/Uninstalled PC List is saved in a TXT
file.
[Figure 3 - 2 - 32] Remote Installation Wizard – Search Installed PC /Uninstalled
PC
█ Program/File Distribution
This function shows software files that are being distributed by Server via
Distribution Manager.
Refer to Scenario for more details of SW/File Distribution function.
█ Distribution Manager
MS Security Patch File and other functions are displayed in ViRobot ISMS
Server 3.0 to support Distribution and Setup.
78
[Figure 3 - 2 - 33] Program Distribution Manager
● Program List
If you click Add button of Program List, ‘Set Updates Based On Project’
window appears.
◈ Distribution Program Settings
Register Program Files to distribute in Setup File List. Click on the Add button
to register Install Target Path, File Description, Language, and Link File
information.
[Figure 3 - 2 - 34] Program Distribution Manager – Distribution Program
79
◈ Execution Option
Here, you can choose diverse options for Distribution Program information to
configure the distribution environment.
[Figure 3 - 2 - 35] Program Distribution Manager – Execution Option
Execution Program: Install Execution Program is automatically registered.
Program Information: Register Setup Information after program setup.
Option: Register parameter options to Execution File.
Display: Hide option hides Setup Screen.
Setting Distribution Day: Either Daily option or specific day of week can be
specified for distribution.
Setting Time: Any time for distribution can be set.
◈ Setting
Version can be specified to enable Program Setup for different versions of
Operating System.
80
[Figure 3 - 2 - 36] Program Distribution Manager – Setup File Info
Path to Decompress: Register the path to decompress download files.
Software Version: Register version of Setup File.
Set OS: Setup is set by Operating System.
◈ Allowed Department List Settings
[Figure 3 - 2 - 37] Program Distribution Manager – Allowed Department List
Department Name: Enter Department Names for distribution or select
81
Information File.
Period: Set the time period of Client Distribution.
◈ Allowed IP List
Unless Department Names and Period setting are contained in Allowed IP list,
distribution is not allowed.
[Figure 3 - 2 - 38] Program Distribution Manager – Allowed IP List
Allowed IP Band: IP band for client distribution is set here.
Period: The time period for Client Distribution is set here.
⒟ Update Details
█ ViRobot Update
Daily Update Virus Anti-virus Information is displayed by year-month-date.
█ VISMS Update
Shows detailed ViRobot ISMS Server 3.0 Update Module Information.
⒠ Virus Outbreak Prevention
This is an advanced Virus Prevention method where only Virus patterns that
have been analyzed prior to a new Anti-virus Engine completion are used to
provide Virus Information to Administrator and to apply blocking so that Virus
damage propagation can be prevented until the next Anti-virus Engine Update.
82
[Figure 3 - 2 - 39] Virus Outbreak Prevention
█ Pattern List
If you click Emergency updated Virus Pattern List, then Protection Information
including Virus, Pattern, and Protection Contents are provided
█ Virus Information
You may view Urgent Virus Information. This information can be registered to
Pattern and applied against Virus Propagation, or Administrator may recognize
it and use it for virus blocking through other Security Solution.
█ Pattern List
Information including Pattern Name, Pattern Version, Update Branch, Pattern
Registrant, Registration Date, and Pattern Application Period is provided.
█ Protection Item
These are items used for Virus Blocking. Each protection item is displayed
with its Protection content and can be selectively applied via Apply All, Cancel
All, or Partially Apply.
Virus propagation via e-mails has been increasing. This option allows virus
prevention using e-mail virus patterns. Sender, Receiver, Title, Content
83
(Content or Hash), and attached file are registered for an Protection item.
◈ Operating System
The prevention function takes care of Protection function for all Operating
Systems including Servers and Clients within the company’s internal network.
Registry, Boot File(Win.ini, System.ini), Process, Service, Memory, and Share
Folder are registered for Protection items.
◈ Network
Virus propagating Network Pattern Information including IP, Propagation
Direction (In, Out), Protocol, and Port are registered as Protection Items.
⒡ Virus Outbreak Response
In case you experience serious virus propagation that cannot be handled by
general Virus Anti-virus Engine, then dedicated Anti-virus or other
response/recovery method such as MS Security Patch might be needed. This
function presents accurate Patch Information and Method for a virus pattern
and automates such Response/Recovery. Default setting is Manual.
[Figure 3 - 2 - 40] Virus Outbreak Response
█ List
If you click on a Outbreak Response Pattern which has been registered
84
through Emergency update, then you may see Pattern Application Sequence in
the right side window. Each pattern may have different application sequence
and all applicable processes are automatically executed. If you click on a
Pattern Application Sequence, you may verify its content as in the following
window, and select Automatic/Manual application option based on your
corporate environment and severity of virus damage.
⒢ Notice
[Figure 3 - 2 - 41] Notice window
█ Emergency Alert
Emergency Alert on a Virus Outbreak with fast propagation speed and serious
damage level with necessary information can be displayed on Console Screen
as a message to allow Administrator take immediate measures.
█ Emergency Update
You may select either Console Update or Intelligent Update to perform
Emergency update.
85
[Figure 3 - 2 - 42] Notice – Emergency update
● Emergency update via Console Update (Central Control)
ViRobot ISMS Server 3.0 provides Emergency update service to all Clients.
● Emergency update via Intelligent Update (Distributed Update)
A client that receives Emergency update initially provides the same service to
other clients within its Network Sector.
[Figure 3 - 2 - 43] Comparison of Console Update and Intelligent Update
◈ Executing ISMS and ViRobot Update
Engine can also be urgently updated.
86
◈ Executing Policy Distribution
Policy Commands are urgently updated.
◈ Executing Outbreak Prevention Distribution
Prevention Patterns are urgently updated.
Intelligent Client Robot Concurrent Connections: A number of computers for
Intelligent Client Robot, selected among Agents, register target computers in
order to provide Concurrent Emergency Update service. You may set this
number depending on Computer Specification and Network environment.
Intelligent Update Range
Intelligent Update Server sends UDP Broadcasting to internal Network Agents
telling them to get Emergency update from itself. Here, the broadcasting is
done based on the specified IP Range. You may increase this number
depending on computer specifications and network environment.
What is Intelligent Agent?
Existing VMS Update method is Server Centralized so that some companies
experience problems with rapid updating in case of urgent data needs. As
a solution to this problem, Intelligent Agent provides Intelligent
Communication among Agents to enable Peer-to-Peer agent update with the
same ViRobot product.
Intelligent Agent can distribute, besides Emergency update, Urgent
Policy (Prior Protection Policy), and share Infected Host Information
among Agents to block before Virus Attacks within an enterprise network.
Intelligent Agent is a required function for Rapid Update and Virus
Blocking.
87
② Management
The following figure shows the screen for Client Management at ViRobot ISMS
Console 3.0.
A. Management Window Overview
Tool Bar
Client Information
Management Node
Shortcut Command
Virus Information
Log Information
[Figure 3 - 2 - 44] VSMS Console – Main Window
⒜ Tool Bar
Includes functions such as Connect/Disconnect with ViRobot ISMS Console
3.0 Server, Configuration, Prior/Post Protection, Management, Task Schedule,
Report Generation, Policy Settings, and Verify Asset Information.
█ : Disconnect from Server: The opposite function of [Figure 3-2-3].
█ : Save: Saves Console Information.
█ : Back : Displays [Log Information window] Content in Text format.
█ : Next: Saves [Virus Information window] Text File.
88
█ : View/Hide: Views or hides [Management Node window].
█ : Configuration of Server and ViRobot Template.
█ : Lock Console
█ : Console Help (F1)
⒝ Control Node window
This is Hierarchical Node Management window of ViRobot ISMS Server 3.0. It
manages lower level servers or clients that are connected to relevant ViRobot
ISMS Server 3.0 hierarchically. Administrator selects the nodes to perform
tasks and send a command. Then, all lower nodes including selected nodes
execute the command.
⒞ Node Command Set
This tool bar is a set of all node related commands. Administrator uses this
tool bar to perform relevant node’s Network Status Check, Agent Execution
Option, Client Configuration, File Send, Send Message, Remote Virus
Scanning, ViRobot Configuration, Software/Hardware Asset Management,
Remote Explorer, and Remote Client Control.
⒟ Client Information window
This window shows selected node’s clients. If All Nodes is selected, then it
shows all clients connected to ViRobot ISMS Server 3.0.
⒠ Virus Information window
It shows virus infection information of selected clients. Administrator can
bring client’s infected files through Infected File Retrieve function from the
right mouse functions of Virus Information window.
⒡ Log Information window
This window shows Log Information that ViRobot ISMS Server 3.0 processes.
Administrator may view this Log Information and check ViRobot ISMS Server
3.0 Service Status. Depending on type of Outbreak Log, he/she sends the
89
Status by Receive Time, User Name, and Address including the Client’s
Connect or Disconnect, Virus Infection Report Information, and other
Information.
⒢ Log Information window selection
█ Start
General Server and Client’s Status Information is displayed
█ Connect
Client and Server Connect Information is displayed.
█ Virus
Virus Information such as Virus Infection & Treated are shown.
█ Task
Commands that Server sends to Clients and related Information are shown.
█ Error
When ViRobot engine date is passed by a certain period without update
performed, then an Error Log is sent to Console.
90
B. Introduction of Management Function
You may verify all status information of control node at the Console.
[Figure 3 - 2 - 45] Menu - Management Console
⒜ Total Nodes – All currently connected Client’s List is displayed.
⒝ Normal Node – Clients that are found to be normal from Verify Network are
shown.
⒞ Failure Node – Clients that are found to be abnormal from Verify Network are
shown.
91
⒟ Server Node – Registered Sub-Server list is displayed.
⒠ Server Status: normal – Only Sub-Servers that are found to be normal from
Verify Network are shown.
⒡ Server Status: failed - Only Sub-Servers that are found to be abnormal from
Verify Network are shown.
⒢ Group Node - Hierarchical upper level Group and lower level Group nodes
are shown.
⒣ File – File Type Virus Log only is displayed.
⒤ Network – Network Virus Log only is displayed.
⒥ Spyware – Spyware Log only is displayed.
⒦ E-Mail – Mail Virus Log only is displayed.
⒧ Spam Mail – Spam Mail Log only is displayed.
⒨ Network Vulnerabilities Information – Vulnerable Network Paths where viruses
such as Trojan Horse, Back Door, and other viruses can attack are displayed.
⒩ Security Patch Information – MS Security Patch Information or Vulnerable
System’s Password Setting is displayed.
⒪ Shared Information – System Shared Password Information and its Privilege
Information are shown
⒫ Worm Vulnerabilities Information – RPC (DCOM, Locator) and WebDAV
related Worm Virus Vulnerability is displayed.
⒬ Hardware Asset Management – Currently used hardware by Client or Group
is displayed in detail.
⒭ Software Asset Management – Currently used software by Client or Group is
displayed in detail.
(s) File Distribution – Information on files distributed from Server to Clients is
displayed in detail.
(f) ViRobot Distribution – ViRobot Distribution Time, Engine Date, Version, and
Status by client or group are shown.
C. Tool Function Introduction
This function controls Management Target Clients from Console through
Remote Commands. For Administrator convenience, you may selectively use
the left side Tool Set and Tool Menu. For the Tool Set, select Target (Total,
Group, Client), then use the right Mouse function.
92
[Figure 3 - 2 - 46] Shortcut
Menu - Tools
[Figure 3 - 2 - 47] Menu - Tools
93
⒜ Network Test – Check Network Status of Selected Node (including lower level
Client and Group).
⒝ Agent Test– Verify if ViRobot ISMS Client 3.0 is operating normally.
⒞ Induce Update – Induce update through Remote Connect.
⒟ Remote Virus Scan – Perform Remote Virus Scanning command.
⒠ Remote Virus Scan - Scanning Settings for Remote Virus Scan
⒡ Pause Resident Scan - Specific Client Resident Scan Stop based on need.
⒢ Restart Resident Scan - Specific Client Resident Restart
⒣ Retrieve Infected File – Retrieve Client’s Virus Infected File (Client’s
Authorization needed)
⒤ Edit Agent Settings – Remotely change Client’s Configuration.
⒥ Edit Group Settings – Remotely change Group’s Configuration.
⒦ Retrieve Real-time Hardware Information – Retrieve Client’s Current
Hardware Information.
⒧ Retrieve Real-time Software Information – Retrieve Client’s Current Software
Information.
⒨ Retrieve Real-time Network Vulnerability Information – Retrieve vulnerable
network path information where Trojan Horse, Back Door, and diverse Viruses
can attack.
⒩ Retrieve Real-time Worm Vulnerability – Retrieve RPC (DCOM, Locator) and
WebDAV related Worm Virus Vulnerability Information
⒪ Retrieve Real-time Security Patch Information – Retrieve Client’s Security
Patch Information.
⒫ Retrieve Real-time Share Information – Retrieve Client’s information share
status.
⒬ Send Message – Send Message such as Total Notification or Virus Infection
Caution.
⒭ Send File – Send file remotely to Clients.
⒮ Execute Remote Program – Remotely execute Client’s Program.
⒯ Edit Remote Registry – Display Client’s Registry Information window and
control from Console.
⒰ Remote Task Manager – Display Client’s Task Administrator window and
control from Console.
⒱ Remote Explorer – Remotely manage Client’s File in Explorer format.
(Client’s Authorization needed)
⒲ Remote Control - Client’s Monitor Screen Control (Client’s Authorization
94
needed)
⒳ Remote Window Shutdown – Remotely shutdown Client’s Window System.
⒴ Outbreak Response – Apply registered Outbreak Response Pattern to
specific node (Client or Group).
③ Task Scheduler
This function allows scheduling of tasks to execute. Scheduled commands
enable efficient processing of tasks on clients that are not currently on-line.
[Figure 3 - 2 - 48] Task Scheduler – Edit Task Scheduler
A. Edit Task Scheduler
This function registers Task Schedule and checks Node List for schedule
application.
⒜ Task Scheduler
In [Figure 3-2-46], from within the left hand side Groups, you may select a
Target for Schedule application.
⒝ Schedule Information
When a Schedule is created, it appears as registered in Schedule Information
Window.
95
⒞ Task Number
Schedule Create Date and Task Name are registered.
⒟ Task Name
Network Test, Agent Test, Induce Update, Remote Virus Scan, Remote Virus
Scan Settings, Pause/Restart Real-time Monitor, Group Configuration
Change, Send Message, File Send, Remote Program Execution, and Remote
OS Finish can be registered.
⒠ Condition
█ Until Success: Start Date is set.
█ Until Specific Date: Start Date and End Date are set.
█ Repeatedly: Start Date and End Date are not relevant.
⒡ Cycle
Everyday or any day from Monday to Sunday can be set.
⒢ Interval
█ Every Hour on the Hour
█ Specific Hour: Time Interval function is used to set Execution Times.
█ Specific Interval: Time Interval function is used to set Execution Times.
⒣ Restart
This function is performed first to create a Schedule.
⒤ Schedule
Schedule is configured with settings.
⒥ Delete
Either a completed Schedule or a waiting Schedule is deleted.
⒦ Edit
Either a completed Schedule or a waiting Schedule Is edited.
⒧ Stop
Either a completed Schedule or a waiting Schedule is stopped.
⒨ Restart
Stopped Schedule is restarted.
⒩ Additional
This function configures settings needed for Remote Virus Scan Settings,
Group Setting Change, Send Message, File Send, Execute Remote Program,
and Remote Window Close functions.
⒪ Node List
Target nodes for Schedule Policy are registered. Depending on Schedule
Policy, Target Nodes can be verified.
96
B. Scheduled Task Status
You may verify application options of created Schedule commands.
[Figure 3 - 2 - 49] Task Scheduler – Status of Schedule Task
⒜ Scheduled Item
Scheduled tasks within Task Scheduler are registered.
⒝ Completed List
Nodes where Schedule Task has been executed are entered into Complete
List. Once they are in Complete List, they are no longer subject to a Schedule.
⒞ Waiting List
Nodes where Schedule Task is either in progress or not complete yet are in
Wait Status according to Schedule Setting.
④ Analysis
This function performs analysis of Virus Statistics such by Viruses, Asset
Management, and Period.
A. Analysis Menu
Virus Analysis, Asset Analysis, and Statistics are displayed.
97
[Figure 3-2-50] Analysis – Virus Analysis - Top10 viruses
98
[Figure 3 - 2 - 51] Menu - Analysis
⒜ Top 10 Viruses
Virus Name and Infection Frequency are displayed for Top Ten Outbreak
rankings.
⒝ Infection Status by User
Virus Type, Virus Name, and Infection Frequency are displayed by virus.
⒞ Infection Status by Department
For each Department, Virus Type, Virus Name, and Infection Frequency are
displayed.
⒟ Top 10 Infected Users
Infection Frequency by virus and user are displayed for Top 10 Infection
rankings.
⒠ Infected User Status by Virus
For each Virus, Infected User and Virus Infection Frequency for each User are
displayed.
99
⒡ Infected Department Status by Virus
For each Department, Infected Virus Name and Infection Frequency by virus
are displayed.
⒢ Black List Status
In an Internal Network Environment, when a specific computer is repeatedly
attacked by viruses, ViRobot ISMS Client categorizes it as an Urgent
Situation and reports the Attacker Computer as a Black List member for the
Server to take appropriate measures including Network Isolation. Reported
Black List Information includes Target Department Name, Receive Time, File
Name, Response Status, Target User Name, Attack Frequency, Attack Host,
Attack IP, Target IP, Virus Name, and Access Account.
⒣ Hardware Asset Status
User Name, Hardware Type, Hardware Details, and Frequency Used are
displayed.
⒤ Software Asset Status
User Name, Software Type, and Frequency Used are displayed.
⒥ Daily Infection Statistics by Virus Type
Daily Virus type (File, Spam Mail, Spyware, Network, E-mail) and Infection
Frequency Statistics are displayed.
⒦ Daily Infection Statistics
Daily Virus Infection Frequency statistics are displayed.
⒧ Daily Infection Statistics by Virus Type
Daily Virus type (File, Spam Mail, Spyware, Network, and E-mail), and
Infection Frequency Statistics are displayed.
⒨ Monthly Infection Statistics
Monthly Virus Infection Frequency Statistics are displayed.
B. Chart Area
If you click the Chart button, you may view desired graphs of various formats
and period settings.
[Figure 3 - 2 - 50] Analysis – Chart
⒜ Chart Analysis window
100
Diverse graphs can be chosen with Chart setting.
⒝ Select Chart Type
Bar, Pie, or Line type graph can be selected.
⒞ Angle
Graph angle is adjusted.
⒟ 3D
Three-dimensional graph mode is set.
⒠ Enlarge
Graph’s detailed view is possible.
⒡ Period Setting
Period Setting for Graph is selected.
C. Grouping
Hierarchical Grouping of Statistics Data can be done.
[Figure 3 - 2 - 513] Analysis – Grouping #1
⒜ Grouping
Grouping is possible for all analysis data items using Drag and Drop function
and the result is displayed hierarchically.
[Figure 3 - 2 - 524] Analysis – Grouping #2
⒝ Group Item Menu
This function shows Virus Item within Item Menu using examples.
101
[Figure 3 - 2 - 535] Analysis – Grouping – Group Item Menu
█ All: Shows all Viruses.
█ Network (Example: Pertains to another Configuration item and only shows
items with virus type of Network (Other items in the list have the same
meaning.)
█ Custom Filter: User defined search using Condition List.
[Figure 3 - 2 - 546] Analysis – Grouping – Custom Filter
● ‘Show Rows Where’ Condition List
You may select Conditions that execute the right hand side Entry Values.
102
[Figure 3 - 2 - 557] Analysis – Grouping – Condition List
◈ equals(=): Equal to Entry value
◈ does not equals(≠): Different from Entry value
◈ is less than(<): Smaller than Entry value
◈ is less than or equal to(< =): Less than or equal to Entry value
◈ is greater than(>): Greater than Entry value
◈ is greater than or equals to(>=): Greater than or equal to Entry value
◈ like(≒): Similar to Entry value
◈ not like: Not similar to Entry value
◈ is blank: Entry value is blank
◈ is not blank: Entry value is not blank
● Connection
◈ AND: AND with the following condition.
◈ OR: OR with the following condition
◈ Right Side Entry window: Enter Condition
103
How to Enter Condition in Right Side Entry Window
1. Accurately enter Virus Filter Condition as Trojan.Win32.Madcode.28160
Example: equals “Trojan.Win32.Madcode.28160”
2. Display all viruses related to Trojan
Example: like “Trojan%”
3. Display all viruses related to Win32
Example: like “%Win32%”
To link other conditions, select AND/OR, then enter the subsequent
condition.
█ Customize Organization
If you customize using Custom Filter, you may view Group Task Status and
the [Customize…] button in Group Task area. Clicking on this button
allows you to Edit/Save Group Result values in Filter Builder.
[Figure 3 - 2 - 58] Analysis – Group Item Menu – Customize
● Filter Builder
[Figure 3 - 2 - 569] Custom Filter Setting
104
[Figure 3 - 2 - 60] Filter Builder
Filter Builder can be edited manually. You can either change Name of Content
directly or click the item and use [Figure 3-2-59] Filter builder Editor. Content
edited using [Figure 3-2-58] Filter Builder is displayed as Group Task Status
value and [Save As/Open] is possible for this value.
[Figure 3 - 2 - 61] Filter Builder Editor
⑤ Policy Settings
You may set Policy to apply on ViRobot ISMS Client 3.0 at ViRobot ISMS Server
3.0.
105
[Figure 3 - 2 - 62] Policy Settings - Allocation Tree
106
[Figure 3 - 2 - 63] Policy Settings - Policy Tree
A. Policy Settings
⒜ Policy Tree
█ Allocation Tree: General Group Information needed for Policy Settings.
█ Policy Tree: Policy Group created upon Policy Setting.
⒝ Policy Settings
Performs Application or Cancel of Protection Strategy, ViRobot, Network,
Agent, and Server Policy. Application menu item is applied by selected Node
and Group.
█ Policy Name: Select Node or Group and click Apply button, then the Name
is registered.
█ Description : Describes the contents of policies.
█ Parental Policy: The applied policy above is registered.
107
[Figure 3-2-64] Policy Tree Settings Window – Select Parental Policy
█ : Policy item is selected and new policy template is made.
█ : Policy Template is deleted.
█ : Policy Template is set and Set Value is saved in Console.
█ : Policy Details currently allocated and Inherit Status are
monitored.
⒞ Allocation Policy Menu Window
General Group necessary for Policy Settings is selected, New Policy
Template is selected and is clicked, Allocation trees by a group or a
node are allocated.
⒟ Policy Settings Window by a Menu
Policies by a menu can be selected to define detailed settings.
If you select Inheriting from Parent, then settings of menu items are ignored
and it inherits from Parent Group’s Policy.
█ Protection Strategy Policy Settings
Within Policy Settings Window, Protection Strategy Policy Settings Screen
is displayed.
108
● Outbreak Prevention
◈ Inheriting from Parent: Selected Node or Group inherits Parent’s
Prevention Policy Settings. Outbreak Prevention is categorized for
each grade by vulnerability level. If you uncheck [Inheriting from
Parent], you may select either Automatic or Manual application of
Prevention by a level.
◈ Enable Outbreak Prevention Service: Outbreak Prevention Service Is
set.
● Outbreak Response
Configuration is the same as Outbreak Prevention.
█ ViRobot Policy Settings
Besides file scan specified in System Configuration, you may define more
detailed Configuration on system areas that are vulnerable to virus attacks
and Scan operation against threat elements.
● System Environment
◈ Scan Threats: This refers to a general function for virus scanning
using vaccine.
Scan Target Settings
All Files: All files are scanned in a scan operation.
MS Office Files: Document Files (xls, doc, ppt) are scanned.
Executable Files: Execution Files (exe, com, dll, ocx) are scanned.
User Defined Extension: button is used to Add/Set
specific files for scanning.
Compressed File Scan Settings
Include Compressed File: Compressed File’s is scanned. Scan up
to fifth compression layer is possible. You may set the number of
levels to scan.
Compressed File Classification Method
- Using Format Info.: While Scan of a compressed file can be
done after decompressing; using Compressed File Internal
Format may slow the Scan speed.
109
- Using File Extension Info.: Although Scanning with Extension
only may be fast, a compressed file may not be decompressed
in case its extension is modified.
Scan Operation Settings
When Threats Detected,
- Show Report Only: Only infected files are displayed in the
Repairing window.
- Repair after Confirmation: Virus Verify window appears to allow
selection of Repair, No Repair, Cancel or Repair All.
- Automatic Repair without Alert: When a virus is detected,
automatically repairs it without notice.
- Automatic Delete without Alert: When a virus is found,
automatically delete it without notice.
Other Scan Settings
Include Subfolder : All subfolders of selected folder are scanned.
Include File without Extension: Scan of files without extension is
included.
Delete File for Irreparable Threat: When the infected files are failed
to be repaired, this file is deleted to prevent other files from
damages.
Create Log: Log File Create Option after virus scanning is set.
Making Signal When a Virus Found : When a virus is found, a warning
sound is generated.
◈ Scan Mail
This is a protective function against E-Mail Viruses and Spam.
Mail Common Set
Auto-run Email Protector upon System Boot-up: Apply Protector
settings to all mail packets and mail sizes for both outgoing and
incoming mails for all accounts under control.
Classification:
- Receiving Mail: Apply Protector on mail packets received by
selected users.
110
- Sending Mail: Apply Protector on mail packets sent by selected
user.
- All Mails: Apply Protector on all Outgoing and incoming mail
packets by selected users.
- Limit Mail Size: Excessive mail sizes slow down Scan speed.
This option sets mail size limit to speed up Scan operation.
Create Log
Report on mail Scan is generated. This report can be viewed within
Protection Report.
Mail Attached File
Support Mail Attached File Scan
- Automatic Repair without Alert: Automatically repairs infected
files without a notice.
- Proceed After Alert Message: Information of Infected attachment
files are shown in the Repairing window.
- Automatic Delete without Alert: Automatically delete infected files
without asking user.
Include Compressed File
Among Mail attached files, Compressed Files are also scanned.
Anti-Spam
Enable Spam Filtering
Script-Gater
Enable Malicious Script Scan
◈ System Access Control
Privileges can be assigned to allow only authorized users to access via
Security Program Self Access Control.
Auto-Run File System Access Control upon Bootup: When user
system is booted, ViRobot Access Control Function is automatically
started.
Set HAURI Product Protection (Recommended): HAURI Product
Group File damage is prevented in %PROGRAMFILESDIR%₩HAURI
folder.
Create Log: Create report on folders limited in Access Control.
111
● Advanced
◈ Additional Scan Option
Detailed operation settings and additional Scan can be set for Threat
Scan.
Option Settings for Program Start-up
The following Initial Scan can be performed prior to executing
ViRobot Desktop 5.0.
Progress Memory Scan
Scan threats such as viruses that are in current system memory.
Progress Process Scan
Scan Processes that are being executed in current system.
Progress Boot Sector Scan
Scan boot area of storage devices such as Hard Disk.
Scan ViRobot Self Infection
Scan the ViRobot Desktop 5.0 itself for virus infection.
Response Settings after Scanning
Operation is configured after virus scanning.
Auto Termination if there’s no threats detected
When Virus Scan is completed, ViRobot Desktop 5.0 is
automatically terminated.
Setting User Defined Folder
The folder designated in this option is registered in the Rapid Screen
List of ViRobot software so that it is screened without a separate
folder designation.
◈ Backup/Quarantine
File backup during Virus Scan, detailed operation settings during
Threats Scan and additional Scan can be configured here.
Backup Environment Settings
Backup is configured before Repair.
Backup Settings Before Repair
Backup option can be set before repairing the threats detected as
a virus.
112
Limit Backup Item Number
The number of backup items including Files and Registries and
Mails for Backup can be limited before Repairing.
Quarantine Settings
Quarantine Option on file not repairable can be configured.
For Irreparable virus: Quarantine option can be set.
Restoring folder of quarantined items for further repair: Initially files
not repairable could become repairable later upon Engine Update.
This option designates Recovery Folder after Repairing of isolated
files.
Exclusion Target Settings
Exclusion Settings for Threats Scan
In case a file could be damaged from Repair after Virus Scan, it
can be excluded from Scanning list.
◈ Create Log
Create Log
Create System Log
Execution Information is recorded in the main modules of ViRobot
Desktop. User can check the Process Module Information at the
time of Virus Scan via this function.
Create Threats Detection Log
This report contains all information found from Threats Scan (Virus,
Spyware, etc.) and all details by execution type.
Create Task Log
This report contains all occurrences during Scan in detail (Backup,
Isolate, Exclude Target Search, etc.).
Create Error Report Log
This report contains Exceptions and Errors that occur during
ViRobot Desktop 5.0 Operation.
Limit Log Size
Default report size is 1024 bytes.
113
◈ Schedule Scan
Schedule Settings
Daily, Weekly, Monthly or At Screen Protect Execution can be
selected for Virus Scan. Random Number Application sets Virus Scan
performed at random times chosen by the computer using random
numbers.
Initialize User Schedule
Initialize Schedule Settings.
Running Schedule Scan in Background Mode
Virus Scan is started in the background according to schedule set.
● Real-Time Monitoring
Real-time Monitoring Settings can be made here. Configuration for
General Scan and separate Real-time Monitoring can be set to optimize
the system for User’s Environment and provide protection from Virus
Threats.
◈ File Monitoring
Monitoring Environment against Threats such as File types or Scripts
can be configured here.
Scan
All Files: All file formats are scanned. When this option is chosen,
some of the following options are automatically canceled.
MS Office Files: Only document files of Office Format such as doc,
xls, and ppt, are scanned.
Executable Files: Executable files such as exe, com, and bat are
scanned.
User Defined Extension: Besides Doc files and Execution files,
User may define to register other file formats for Scan.
Additional Settings for Scan Target
Upon Windows shutdown, Execution of Floppy Disk Boot Scan: In
case the system is booted from a floppy disk, its Scan can protect
the computer from Boot Virus.
Exclusion Folder
Set File Monitoring Exclude Folders: Register up to five exclude
114
folders. Click ‘Add’ button, then select folders.
◈ Registry Monitoring
User may set Monitoring Environment against Threats such as viruses
or scripts changing the Registry thus affecting the System continuously.
Configuration
Start Registry Monitoring: Registry Monitoring Function is executed.
Display Notification Message: An Alert message is displayed to
notify the User when a Registry Change occurs.
Create Log: A report on Registry Monitoring is created.
Registry Monitoring Process
Upon Registry Modification: You may select to either allow Registry
Changes or to recover previous values to maintain Registry values
before any change.
Registry Monitoring Item Settings: You may designate Registry
Monitoring Item Settings, including basic major Registries but also
user defined areas.
Apply Default Registry Monitoring Item: Only major Registries such
as those that automatically start at System Rebooting or Operating
System start are monitored.
User Defined Registry Scan Target: User may define additional
registries up to 50 for monitoring.
● Service
Settings on harmful software types such as Spyware and various
additional service Configuration can be made.
◈ Malware
Spyware Settings
Scan Spyware: Spyware Diagnose is set.
Scan File: Diagnose Spywares that exist as Cookies or other
executable files.
Scan Registry: Diagnose values within Registry that Spyware has
set/modified.
You may select “Notify to the user during repair(delete)” or “Delete
115
without confirmation during repair(delete)” upon spyware detection.
Adware Settings
Scan Adware: Adware Scan is set.
You may select “Notify to the user during repair (delete)” or
“Delete without confirmation during repair (delete)” upon Adware
detection.
Other Malicious Program Settings
Scan other malicious program : The other Malware Scan is set.
You may select “Notify to the user during repair (delete)” or
“Delete without confirmation during repair (delete)” upon other
malicious program detection.
◈ Protection
Internet Messenger Protection
Computer can be protected from Threats attack via MSN, Yahoo, or
AOL Messenger. You can select messenger target for protection.
Protecting Internet Messenger from Viruses
You may select either “Notify to user (recommended)” or “Process
after notification” or “ Delete without confirmation” upon threats
detection.
Include Compressed File.
Create Log: report is generated on Monitoring Information against
Threat Elements that penetrate via Messengers.
◈ System Tools
System Tools for convenient system protection against Threat
Elements such as Viruses can be configured here.
System Tools Settings
Support R-mouse popup menu: When this option is chosen, user
may select a folder or file for Scan, push the right mouse button to
select ViRobot icon, then Scan is executed on the selected item.
● Restriction Policy
Password Settings and Advanced Settings of ViRobot Desktop 5.0 can be
116
locked.
ViRobot UI Settings
Password Settings
Lockdown ViRobot Configuration
█ Network Policy Settings
ViRobot Firewall is a PC Firewall that functions as Virus Wall against
specific Viruses and blocks any unauthorized access or Virus attack at the
source to provide security to user PC.
● Basic Information
User may configure Security Level depending on desired usage of Virus
Wall.
◈ Component
Use Network Block Feature: Function to block Network
communication by intercepting In-Direction Network excluding the
Ports related ViRobot ISMS.
Enable Network Access Control Policy: General Network related
Access Control is used.
Enable Process Access Control Policy: Controls usage of all
programs that make use of Internet. (Normal Security Level)
◈ Enable Emergency Lock
This function is used in a highly urgent situation that is required
stopping of Virus damages. All Network Ports excluding ViRobot ISMS
related ports are blocked to disconnect Network Communication.
◈ Network Rule
Add Network Rule means direct entry of policy by clicking
button to create a policy containing Protocol Selection,
Control, From/To Addresses or Ports, and Time Limits as user defined
policy. Please refer to [Figure 3-2-66/67].
Priority: Priority is determined with a Policy Priority
Name: Policy name is entered.
Direction: Select whether to control incoming traffic or outgoing
117
traffic.
Control: Select either Block or Allow.
Protocol: Select one of the three TCP/UDP/IP protocols.
IP Address/Port (Refer to [Figure 3-2-66/67] )
Sender/Destination: In case Direction comes in or goes out of User’s
Computer, enter IP Address and Port that controls in Destination.
IP/Port Registration is consisted of all IP/Port, specified one IP/Port,
and a particular IP/Port range.
[Figure 3 - 2 - 65] Network Rule – IP Settings
This is a screen of Port Number Setting.
[Figure 3 - 2 – 66] Network Rule – Port Settings
Delete Firewall Block in Agent: This function deletes the Network Rule
118
that has been configured in Agent for Blocking Policy Application from Console.
◈ Process Rule
Add Program Block Rule: You may click button to enter a
File Path and a File Name for controlling and click [OK] to be
registered
.
Priority: Set Priority with a Policy priority.
File Name: When a program’s Execution File is selected, the File
Name is automatically entered.
Control: Select either “Deny/Allow” for setting regarding to Access
from External programs.
Full Path: Enter Whole Paths which have Process Rule Program.
[Figure 3 – 2 – 67] Process Rule Policy
Delete Program Block Rule in Agent: This function deletes Agent’s
Communication Protocol Block Rule that has been configured for Block
Policy Application from the Console.
● Restriction Policy
◈ Administrator Mode
User is not allowed to modify PC Firewall Policy
◈ User Mode
User is allowed to modify PC Firewall Policy.
█ Agent Policy Settings
119
● General
◈ Server Connection Interval
Set Server Connection Interval
◈ Server Settings
Server Address can change to assigned Server Address.
● Notify
◈ Management Server
◈ ViRobot Real-time Monitor Settings
◈ Message Settings
Bank ATM machine can be cited as an example of this function.
Show Instance Message
You may configure so that Message Client’s Message window does
not display to User.
Show Windows NT Message
You may configure so that Operating System Message window does
not display on User via Windows Messenger Service.
◈ Display Settings for Repair Confirmation Window
Bank ATM machine can be cited as an example of this function.
● Update
◈ Update Error Report
You may specify Error Report generation in case ViRobot is not
updated for a specific period (default 14 days). From Selection Item in
Log Information Windows, select Error to view Log Information.
◈ Auto Update upon Boot up
Set Auto Update upon Client booting
◈ Intelligent Client Robot
Set Update via Intelligent Client Robot Function.
◈ ViRobot Update
ViRobot enables to update via ViRobot ISMS 3.0 or Internet.
● Virus Protection
◈ Virus Protection Feature by Agent
Virus Protection Policy of ①Start is sent to all users in a batch mode and
may not be an appropriate policy for some environments. Therefore, this
120
function allows the Administrator to select a Group or Nodes that require
Direct Virus Protection Policy in case Virus Protection Policy needs to be
sent. This function operates independent of the Virus Protection function
of ①Start. For further details on Virus Protection, please refer ‘Chapter 2
ViRobot ISMS Server 3.0 Major Features; 1. Virus Protection Policy’
● Restriction Policy
◈ Lockdown Option of Client Configuration
To manage the Items of ViRobot ISMS Client 3.0 Configuration, the
following Items can be changed to be restricted.
Allow All
Disallow General Tab
Disallow User Settings Tab
Disallow Name/Department/Name
Disallow All
◈ Setting Client Uninstallation Password
Deletion Protection is enable by setting a Password. If there is no
Entry, agentdaown is basically applied.
◈ Restrict Update Time Settings
Update Restriction of assigned time is set. Set the time to restrict
Update and if you want to Release, set again Update Restriction
Release.
◈ Use XP Firewall
In case Agent OS is above Windows XP SP2, the usage of Firewall
Function provided in XP OS is determined.
█ Server Policy Settings
● General
◈ Location Settings
Anti-virus Directory: ViRobot Desktop 5.0 Vaccine Engine Path
Download Directory: ViRobot Desktop 5.0 Module Path
◈ Connection Interval
This is the connection interval where ViRobot ISMS Server 3.0 attempts
connection to HAURI Inc. Update Center Server for update. (1,400 seconds=4 hours)
121
● Advanced
◈ Management Server
When the Server for configuration is to be used not as the Main Server
but as a Sub-Server, the Main Server’s IP Address for update servicing is registered here.
● Administrator
◈ Administrator Information
This function allows the Account created at Main Server to be used in
a batch mode for integrated account management and security in a
network environment consisting of Main Server and Sub-Server.
● Network
◈ VPN
Please select when IP Address of node in console is incorrect.
● Log
In case excessive Log records from nodes under control causing Server
overload, you may limit Log Receive selectively to reduce Server and
Network load. You may select setting for Between Server and Client,
Between Main Server and Sub-Server, and Between Server and Console.
◈ Log Transfer to Console
Agent Connect Information
Virus Infection information
ViRobot Distribution Information
Network Infection information
Server Update Information
Server File Service Information
◈ Log Transfer into Upper Level Server
Agent Connection Information
Virus Infection information
ViRobot Distribution Information
Network Infection information
Auto Clearance of Log File
122
When Log Date Limitation is not set, prior Log continues to occupy
Server capacity. Therefore, you may set Automatic Delete of Log prior
to Period Setting.
● Others
You may set additional environment for ViRobot ISMS Server 3.0.
◈ Agent
No Ping Trial
Through a specific Port Communication other than between Server
and Client Ping Communication Network Status is checked frequently.
Notify to Administrator if Error Occurs
Administrator Mail Notification Function is used to automatically
notify Administrator Virus Outbreak Information of lower level Sub-
Server or Clients. ViRobot ISMS Server 3.0 sends Virus Log Mail to
Administrator at every Server Update or Update by Administrator.
In the next screen Administrator Mail can be set. In Mail Address box,
enter Administrator’s email address. For Outgoing Mail Server
(SMTP) enter SMTP Address from MS-Outlook/Outlook Express
Account Registration Information. Account Name and Password are
those registered in Incoming Mail Server. Enter Instant Message
Address to receive Automatic Notification of Virus Outbreak
Information via Client’s Send Message Function. In the Address box,
enter Administrator’s IP address for receiving Notification.
[Figure 3 – 2 – 68] Process Rule Policy
123
◈ Time Out
Ping Waiting Time
Ping, which helps verify Network Connection Option, can have slow
response depending on Network Status. If there is no response until
Time Out is over, connection is severed.
Socket Communication Time-Out
ViRobot ISMS Server 3.0 uses Socket when executing Service
Functions with upper level Server or lower level Clients. When
Network problems or other problems cause Socket Communication
to be troublesome, ViRobot ISMS Server 3.0 Maximum Response
Time is set.
◈ Information Storage
ViRobot ISMS Server 3.0 Configuration [Log] Tab displays Client or
upper level Server Connection Information and Treatment Information.
Here, Maximum Virus Information/Status Log records for Server
Storage are limited. If the Maximum Information record number is
exceeded, Existing Information is deleted and New Information is
Saved.
Virus Information
Maximum number of Virus Records to display in [Log] Tab.
Status Log Information
Maximum number of Network Connection records to display in [Log]
Tab.
B. Emergency Policy
If a powerful Virus attack occurs while a general policy has been configured on
Protection Strategy, ViRobot, Network, Agent, and Server, an optimum policy
for the Virus attack can be configured and implemented urgently. General
Policy is automatically backed up so that, after Emergency Policy is Canceled,
General Policy is recovered.
⒜ Protection Strategy Policy Settings
█ Outbreak Prevention/Outbreak Response
Selecting of Enable OutBreak Prevention Service (Use OutBreak Prevention
Function) allows Automatic/Manual selection of Pattern Update by Grade.
Grade of a Virus Pattern File that HAURI analyzes is lowered as its Risk
124
Level changes. Administrator may selectively apply either Automatic or
Manual mode by Grade considering suitability and stability of corporate
network.
█ Network Emergency Policy
This setting is the same as General Policy setting.
█ ViRobot Emergency Policy
This setting is the same as General Policy setting.
█ Security Emergency Policy
Resident Monitor, PC Firewall, and Access Control Use Option are applied.
C. Environment Setting
Console Environment, Policy, and User’s ViRobot Desktop 5.0 Detail
Environment can be set.
⒜ Console Settings
█ General
● Setting Management Node
◈ When a new node connected, apply to the unknown
◈ When a new server connected, create into same group
◈ Show group name as user’s department name
● Setting Management Group
This function manages the situation where, from the Console’s Control
Node window, a node appears as several Clients. This situation occurs
when the Client software is installed as a Ghost Image using Norton
Ghost at the time of Computer’s initial installation or System
Reinstallation. (This happens because Client’s GUID (Identifier) is
copied.)
● Automatic Group Adjustment
Organization Chart is renewed when User is changed.
◈ Upon Group Name Change: Automatic transfer to the Department in
Organization File when the Department Name of an Agent is changed.
◈ Upon IP Change: Auto-transfer to the Department in Organization File
when IP of an Agent is changed.
◈ Upon IP C class Range Change: Auto-transfer to the Department in
125
Organization File when IP C Class substitution in Agent is changed.
◈ Upon IP B Class Range Change: Auto-transfer to the Department in
Organization File when IP B Class Substitution is changed.
[Figure 3 – 2 – 69] Settings – Environment Configuration – Console
Settings – Other – Automatic Group Adjustment
◈ If [Edit] button is clicked, the setting standard of Group Organization
Chart can be set. If the Department Name among an Agent included
in Start Range, Last Range is changed, it automatically transfer to a
Registered Group Name
126
[Figure 3 – 2 – 70] Settings – Environment Configuration – Console
Settings – Other – Automatic Group Adjustment - Edit
● Auto Save
The details of Management Information in Console is not saved. From at
lease 10 minutes to maximum 240 minutes can be automatically saved.
● Task Scheduler
When Tool Commend is failed, it induces to manage with Task Scheduler.
█ Advanced
● Chart Base
● Policy Base
█ Details
● Retrieving Virus log
Only Virus Log of the configured period is displayed in Console.
● Filtering Log Records
Only selected Log record among File Distribution Result, Client
Connection Status, ViRobot Distribution Information Log are displayed in Console.
● Log Count
Maximum number of Status Log records that are generated in real-time
is set.
127
● Save Log File
Log File is saved in a txt File.
█ Network
● Setting VPN
It is set when Console Command Reply is not possible. For example,
when the Console, as a Private IP, makes an external Internet Connection
and a Command is sent to a Public IP mapped as a Public IP Client, the
Command Reply uses a Public IP and not a Private IP.
● Setting Port
Remote Control Port Number is 18514 by default.
● Setting Remote Control
When Console Server has two IP addresses, the IP that allows Remote
Control Command Reply is entered.
● Order Thread
Depending on Network and System Environment the number of Threads
can be increased.
● Ping Settings
Ping Check isn’t enabled when Commend is executed.
⒝ Template
█ Remote Virus Scan Settings
● Scan Settings
◈ Specify drive and folder
Designate all Local Drives, System Boot Area and Folder for Virus Scan.
◈ Scan Files
Scanning can be done on All Files or by File Format or Extension. For
Compressed Files the number of subfolder layers can be set for in-
depth Folder Scan.
● Repair Setting
◈ At Virus Discovery, View Report or Automatic Treatment may be
selected.
◈ For irrepairable Virus Files, Isolation Area can be specified to backup
such files for treatment of critical files at a later time.
128
● Exclusion Settings
Designate paths or names to exclude from scan by entering Folder, File
or Extension.
● Spyware Scan Settings
Please refer to number ⑤ in Chapter 3 [Starting ViRobot ISMS Console 3.0
█ ViRobot Policy Settings
Refer to ViRobot Policy Settings.
4) ViRobot ISMS Console 3.0 Menu
① File
[Figure 3 - 2 - 71] VISMS Console – File
A. Disconnect from the Server
⒜ Connection is attempted to Site Server address that is configured in
Configuration. If the connection is made normally, Console receives
Environment information that describes the hierarchical relationship between
Server and Clients from ViRobot ISMS Server 3.0 Server.
⒝ If you wish to disconnect from Site Server, click one more time.
B. Save into the Server
Node Information, Virus Outbreak Information, Distribution Information, and
Asset Information are saved in a file.
C. Save Node Information as a File
129
Only Clients’ Node Information is saved as a file.
⒜ IP Information File is saved in C:₩SiteServer₩Console₩ as Sites.ip file.
⒝ Sites.ip file contains connected Node Tree Structure and Client Information
that are displayed in Client Information window. Client Information should
be backed up and managed periodically.
⒞ Backup file can be set as Sites.bak or a similar name.
D. View Items in Text
Analysis Information such as Client Information window, Virus Outbreak
Information window, Log Outbreak Information window, and other items
displayed in Analysis Information window can be viewed as a TXT file within
Memo Pad or MS Word Pad. Place mouse on TXT list window and select
either Memo Pad or MS Word Pad.
E. Export Items as File
Analysis Information including Client Information window, Virus Outbreak
Information window, Log Outbreak Information window, and other items
displayed in Analysis Information window can be saved in a file. Place mouse
on the List and make a selection to export as a file.
F. Log Management
⒜ Save Log Record
Log from Status Information Log window is saved as a TXT file.
⒝ Delete Log Record
Selected Log in Status Information Log window is deleted.
⒞ Export Virus Log
Virus Outbreak Information for a specific period that is supplied to ViRobot
ISMS Console 3.0 is exported as a file. The Virus Outbreak Information
exported as a file can be excluded from the information displayed in Virus
Outbreak Information.
[Figure 3-2-72] refer to Outbreak Period Settings
⒟ Import Virus Log
This function retrieves the Virus Log that has been exported into a file back to
ViRobot ISMS Console 3.0 and include in Virus Outbreak Information window.
② Edit
130
[Figure 3 - 2 -72] VISMS Console – Edit
A. Delete
From Control Node window, Selected Nodes can be deleted.
B. Management Node
⒜ Expand/Collapse
It is used to expand or collapse nodes when viewing them from Control Node
window. It is executed on lower level nodes of a selected node within Control
Node window.
C. View Selected Node and All Below
You may select to view either “One Stage Below Current Group Node” or “All
Clients Below Current Group Node” to verify nodes in Client Information
window. The following are view options:
⒜ The level of lower level clients per Node that has been configured within the
Control Node window.
⒝ View Selected Node & One Lower Stage” displays only one stage below the
selected node in Client Information window and levels below the first stage
are not shown.
⒞ View Selected Node and All Below displays Selected Node and all clients that
belong to it in Client Information window.
D. Array Client/Group
Control Node window’s Tree Structure can be arrayed in batch mode.
E. Off All
131
Change icon display of all Sub-Server/Client Node’s Agent and Sub-Server
Display Status in Control Node window to their initial status prior to
connection. The initial icon display is in dark color.
F. Add Sub-Server
Here, we can add a Sub-Server that will share the roles of the Main Server.
Sub-Server can have Main Server as its upper level Server or another Sub-
Server. In Server Setting, a Name should be assigned to facilitate identification
of this Sub-Server in Control Node. Address shall be the IP Address of this
Sub-Server. User can manage this Sub-Server from the Main Server Console
using Advanced Menu-Server Command.
[Figure 3 - 2 - 73] Add Sub Server
G. Add Group
Here, you may create a Group to manage at a level below the Server at the
Control Node. Name must be unique within the selected Node and below in hierarchy.
[Figure 3 - 2 - 74] Add Group
132
H. Add Client
One or more Clients are automatically added by entering the number of clients
to add.
[Figure 3 - 2 - 75] Client Addition Wizard
I. Registration Information
Please refer to “2. How to Use ViRobot ISMS Console 3.0” - “3) Console
Component” - “⑤ Setting” - “Configuration.”
③ View
[Figure 3 - 2 - 76] VISMS Console – View
A. Management window
⒜ Management Node
Management window is displayed from Management Menu.
⒝ Management Information
Total Node window is displayed from Management Menu.
⒞ Task Log
Task Log Status window is displayed from Management Menu.
133
B. Temporary Folder of Infected Files
This is the Isolation Folder which can be retrieved via Retrieve Infected File
Command. Default path is “C:₩Program Files₩HAURI₩SiteServer₩Console₩Viruses.”
C. Vaccine Module Folder
This is the folder for Incoming Vaccine Module from HAURI Vaccine Center.
Default path is “C:₩Program Files₩HAURI₩SiteServer₩Down.”
D. Language
Korean, English, Chinese, Japanese and other languages depending on system
environment are supported.
④ Tools
Refer to “[Figure 3-2-48] Tools Menu.”
⑤ Advanced
A. Server Command
[Figure 3 - 2 -77] VISMS Console – Advanced
⒜ Induce Server Update
Administrator may induce connection of Sub-Servers to Main Server. Induced
Clients are forced to connect to Server, download update.zip, and attempt
updating by Administrator.
⒝ Edit Server Group Settings
Sub-Server Group Setting may be modified.
⒞ Server Remote Control
Selected Sub-Server can be remotely controlled.
134
⒟ Pause/Restart
Server Update Service Use option can be set.
You may select the Server Node to apply Filer Pause Service or Restart from
Control Node window. You may select either Pause Service or Restart Service
to Pause/Restart Update Service of Server Node.
█ Pause Service – Selected Server Node’s Client Update Service is paused.
█ Restart Service – Selected Server restarts Client Update Service and
updating of lower level Clients.
[Figure 3 - 2 -78] Advanced – Server Command – Pause/Restart Server
(
⒠ Export to Distribution Address Book
It is a Script Function that sends Identifier and IP Address when distributing
Files and Programs to specific Group and Users.
B. Administrator Tools
⒜ Create Group Organization
It is an admin function to manage multiple Clients in a batch mode from
Console Control Node.
Here the administrator may register a company’s internal Organization Chart
and induce Users to register with their own Group from the Organization
Chart when Clients are installed. The following figure shows the screen where
Console and Server connection is asked to be stopped temporarily in order to
create a Group Organization.
135
[Figure 3 - 2 - 79] Advanced – Manager Tools – Create Group Organization Chart #1
The following screen shows the Console Server connection terminated upon
clicking Yes button.
[Figure 3 - 2 - 80] Advanced – Manager Tools – Create Group Organization Chart #2
The following screen shows a Group Organization created.
[Figure 3 - 2 - 81] Advanced – Manager Tools – Create Group Organization Chart #3
█
Group Name to create is entered.
136
█
Upon entering Group Name, you may specify a Group Location or Delete it.
: Apply Group Information █
Information entered in Create Group Organization Chart window is
registered with the Console. Applied file is saved as
C:₩SiteServer₩Console₩Group.dat and Sites.ip.
⒝ Duplicate User Management
Console Control Node has the Duplicate User Management function that
prevents duplication of Client’s Identifier (GUID) at ViRobot ISMS Client 3.0
reinstallation. If Duplication Users exist, Remote Commands may not execute
normally.
[Figure 3 - 2 - 82] Advanced – Manager Tools – Duplicate User
Management #1
[Figure 3 - 2 - 83] Advanced – Manager Tools – Duplicate User Management #2
137
[Figure 3 - 2 - 84] Advanced – Manager Tools – Duplicate User Management #3
Server Communication is temporarily disconnected and Duplicate Identifier
(GUID) values are deleted for registration as a normal node.
[Figure 3 - 2 - 85] Advanced – Manager Tools – Duplicate User Management
#4
⑥ Report
[Figure 3 - 2 -86] VISMS Console – Report
If you click Report Menu “Create Report,” “Report Management window“will
appear.
Report Management window fabricates diverse information collected from Agents
138
as a database and provides it in a report form. Based on a created report
Administrator may convert related information into Group Task or Graphs for
overall management purposes.
█ Diverse Report Formats are supported.
█ ViRobot, Virus, and Asset Statistics Information is provided.
█ Resulting Information Grouping is possible.
█ Through Automatic Create Report Wizard, Administrator’s reporting task is
automated.
█ Viewing or saving in diverse forms such as HTML View, Chart View, and
Filtering Group Data View is possible.
139
Report Form Chart Grouping
[Figure 3 - 2 -87] Report – Create Report
A. Report Format
All report view options are included. All items within View Condition window
may be viewed by clicking button. Grouped Conditions may be
viewed by clicking .
⒜ Report
█ ViRobot
● ViRobot Install Status by Department:
● ViRobot Install Status
140
█ Virus
● Top 10 Viruses
● Infection Status by User
● Infection Status by Department
● Top10 Infections
● Virus Status by Virus
● Infected Department Status by Virus
● Black List: The list of nodes that are Virus Risk Elements at Agent can
be managed as Black list by Server.
█ Resources
Hardware and Software Asset Information is supported. In particular,
Hardware Asset History includes their Installation Dates to allow Asset
History Reporting.
● Hardware Asset Information
● Hardware Asset History
● Software Asset Information
█ Statistics
● Daily Virus Infection Statistics
● Daily Virus Type Infection Statistics
● Monthly Virus Infection Statistics
● Monthly Virus Type Infection Statistics
█ User Defined Report
supports User Defined Report “Add/Delete/Review.”
“Add” button executes “User Defined Report Management.”
141
Item Selection Window
Condition Configuration Window
Condition Status Window
DB Execution Window
[Figure 3 - 2 -88] Report - User Defined Report Management
● Item Selection window: Selection from among Software Resource,
Hardware Resource, Virus Log, ViRobot Log, and Automatic Create
Report can be made.
● Condition Setting window
◈ Report Title: Enter your own User Defined Report Title.
◈ Item: Select a Condition Clause as Connecting Criteria.
◈ Condition: Refer to ”III: How to Use” - “Chapter 2 How to Use the
Product” - “2. How to Use ViRobot ISMS Console 3.0” - “④ Analysis” - “C. Group Task
Area” - “⒝ Group Item Menu.”
◈ Value: Select the Target Value to apply an Item and Condition.
142
◈ Connection: AND/ OR can be selected. It is used to connect with
another Condition Clause.
◈ Activate Option: Use Option means including Condition Status Item in
Create Report while Unuse implies not including in Create Report.
◈ Condition Status window Item Content is deleted.
◈ : Upon Condition Setting and database Execution,
clicking Create Report creates a new User Defined Report.
● DB Execution window
Status Information based on Condition Setting is displayed in MS SQL
(MSDE) T-SQL format. Administrator familiar with Query Analysis can
make modifications here. Clicking Refresh creates fresh ordering of
database Clauses. Prior to pressing Create Report you must execute
Refresh first to ensure proper report creation.
[Figure 3 - 2 -89] Result of a User Defined Report
B. Department
Control Node’s Group Information is displayed
Control Node Search Index is made possible.
C. Period Settings
Among Report Format’s View Conditions, View Report by Period is made
possible.
143
[Figure 3 - 2 -90] Report – Period Settings
D. View List
Recently viewed View List is displayed
⑦ Help
[Figure 3 - 2 - 91] VISMS Console – Help
A. Help Item
Help for Anti-Virus Server ViRobot ISMS Console 3.0 is executed. You may view
detailed descriptions of Console Functions.
B. Anti-Virus System Information
Anti-Virus System Information shows Anti-Virus Server ViRobot ISMS Console
3.0 Basic Information.
In the following information you may verify Anti-Virus Server ViRobot ISMS
Console 3.0 Update Date. You may also verify current PC’s IP Address. Here,
you may verify the IP Address that is displayed in Background Screen’s
[Network Environment]>[Registration Information].
⒜ Creation date ’05/11/2004 4:00:00 PM’: Anti-Virus Server Administrator
Console’s Version Date
⒝ Client Address: 2.2.2.1 Console is installed as Client’s IP Address
144
[Figure 3 - 2 - 92] About ViRobot ISMS Console
3. How to Use ViRobot ISMS Client 3.0
1) What is ViRobot ISMS Client 3.0?
ViRobot ISMS Client 3.0 Program is installed on Client PC to monitor/treat Virus
activities. It provides default functions as well as a number of additional functions.
It communicates periodically with ViRobot ISMS Server 3.0 to send activity data.
Also, it automatically installs and executes Current Vaccines on the computer.
ViRobot ISMS Client 3.0 is provided as a Service in Server Format. It functions as a
Tray Icon of Windows System in normal mode.
[Figure 3 - 3 - 1] VISMS Client Tray Icon Menu
2) Start
ViRobot ISMS Client 3.0 is provided as a Server Format Service. In normal operation
it acts as a Tray Icon [Figure 3-3-1]of Windows System. When Configuration or
145
Monitoring is desired, User Manager is executed to view Configuration Change, Log
Record, and Installation Information. Right mouse click on the ViRobot ISMS Client
3.0 Icon, and choose from the menu, User Manager for execution.
3) ViRobot ISMS Client 3.0 User Manager
The following screen shows User Manager Initial Screen. In the bottom Status
Display Bar, Server Connection Status is displayed.
Information
Tool s
Configuration
Help Window
[Figure 3 - 3 - 2] VISMS Client - User Manager
① Information window
Agent System Information, Virus Information, Log Information, Distribution
Information, and Shared Information are displayed in Details Information window.
A. System
⒜ Agent
Company Name, Department Name, User Name, System’s Network Address,
MAC Address, Server Address, Server Connection Interval, and Agent Version
are displayed.
⒝ ViRobot
ViRobot Version, ViRobot Installation Path, and Virus Recent Outbreak Date
Information are displayed.
⒞ Local
146
System’s Department Name, and User Name are displayed.
⒟ Security
Urgent Security Settings made in [Figure 3-2-21] are applied here.
B. Virus Information
Virus Outbreak information can be viewed as Outbreak Time, Status, Virus
Name, and Infected File Name. Using this information, User PC’s Infection
Status can be identified and appropriate actions taken. In particular, Log Verify
can be done by Virus Forms such as File, Network, Mail, Spam, and Spyware.
C. Log Information
Log Information can be viewed as Log Type, Outbreak Time, and Address
(Content).
D. Distribution Information
ViRobot Distribution Information can be viewed by Date and Version to verify
Current Version.
E. Shared Information
Shared File Name, Path, Use Privileges, and Password can be viewed.
Here, Special Shared Information is not shown.
② Tools window
A. Virus Scan
ViRobot Desktop 5.0’s Resident Monitoring window will appear. Here, you may
use all functions of ViRobot Desktop 5.0.
B. Schedule Scan
You may create a Virus Schedule Scan Policy using ViRobot Desktop 5.0.
C. Send Message
Send Message is possible using Message Client. Refer to ‘4. How to Use
Message Client’ for details.
③ Configuration window
A. Edit Client Configuration
147
[Figure 3 - 3 - 3] Client Configuration – General
⒜ General
From ViRobot ISMS Client 3.0 Configuration - [General] Tab, you may
configure ViRobot ISMS Client 3.0 Connecting Site Server Address and
ViRobot Download Folder and Update Interval with Server Connection.
█ Server Setting
You may Add/Delete the Server Address for ViRobot ISMS Client 3.0 to
connect.
Server Address is the entered value at Installation by default and can be
changed by User. When you are not sure of Server Address, ask the
Administrator.
Verify Connection may take a long time depending on network condition.
(Maximum 1 min.)
148
█ Destination Setting
For Vaccine Directory, ViRobot Desktop 5.0 Installation Path is displayed.
ViRobot ISMS Client 3.0 installs ViRobot Desktop 5.0 to this directory,
download Current Vaccine Module to Temporary Download Directory, and
upgrade ViRobot Desktop 5.0.
█ Connection Interval
The Server connection frequency of ViRobot ISMS Client 3.0 is configured.
The unit is seconds. If connection interval is short, excessive connections
can cause overload to Server.
Installation Default value is recommended. (14400 seconds=4 hours)
⒝ User Setting
ViRobot ISMS Client 3.0 Configuration - [User Setting] Tab allows simplified
User Information setting. Department Name and Name are registered and
managed at Server as a part of Group and Node information.
The following screen shows ViRobot ISMS Client 3.0 User Setting Screen.
149
[Figure 3 - 3 - 4] Client Configuration – Setting
B. Language Setting
Korean, English, Chinese, Japanese and other languages are supported. Here,
other languages require appropriate customizing.
④ Help
Help Item and Anti-Virus System (ViRobot ISMS Client 3.0) Information is
displayed.
Anti-Virus System Information, ViRobot ISMS Client 3.0 Module, and IP
Information are provided.
⑤ Menu Information
A. File
⒜ List Export
Log Information is saved in TXT File.
⒝ List Delete
Log is deleted.
⒞ Terminate
150
ISMS User Manager window is closed.
B. Information
The same as in Information window.
C. Tools
The same as in Tool window.
D. Configuration
The same as in Configuration window.
F. Help
The same as in Help window.
151
4. How to Use Message Client
What is Message Client?
It provides Instant Message function. Message Client’s User Interface is organized
as MS-Outlook to provide familiar user interface environment.
For enterprise users to conveniently send Instant Messages, various additional
functions such as Address Book are provided. Users using Message Client can
send messages to Administrator (Server) and other users and attach files in
messages. Users can easily manage messages as in MS-Outlook.
Message Client provides an environment familiar to general users who are used to
email software so that no additional training is required for its use.
1) Start
Message Client can be executed from within [Start]>[Program]>[ViRobot ISMS
Client 3.0] or from Tray Icon.
① Upon successful installation of VMS Client, execute [Start]>[Program]>[VISMS
Client 3.0]>[Message Client].
[Figure 3 - 4 - 1] Message Client From [Start]>[Program] Menu
② Message Client Execution from Tray Icon
From System Tray right mouse click on ViRobot ISMS Client 3.0 Icon and select
from the Menu, Send Message.
152
[Figure 3 - 4 - 2] Message Client – VISMS Client Tray Icon Menu
Because Message Client uses IP Address, if Network Environment is DHCP, Send
Message may not be done properly in the Current Version.
The following screen shows Message Client Screen Organization.
Tool Bar
Categorization Message
Management
Contacts
Message Window
[Figure 3 - 4 - 3] Message Client - Main Window
153
2) Message Management & Printing
Messages sent to other users or Administrator are displayed in Message
Management window.
Message Management window displays Title, Sender, Arrival Date/Time, and Sender
Address. User may perform management tasks such as message editing including
Read/Unread/Delete and Add Sender to Address Book.
① View Incoming Messages
To view a message, select a message from Message Management window to
display the message content in the Message window in lower right side of screen.
If the message has an attached file, click on the attached file to execute or save
it.
[Figure 3 - 4 - 4] Preview from Message Management window
If you wish to continue to display a message, select the desired message from
Message Management window and click on from the Tool Bar. Then,
154
the next View Message window appears.
[Figure 3 - 4 - 5] View Instant Message
② Create New Message
To create a new message, either click on [File]>[New]>[New Message] or click
on from Tool Bar.
155
[Figure 3 - 4 - 6] Create New Message
Enter a name in Recipient (D) and the Recipient’s IP Address in Address(I).
If the Recipient is already listed in Address Book, click on the Address Book
button in Recipient Entry window’s right hand side to open the Address Book. If
the Selected Address is a Group, the message is sent to all contacts in the Group.
[Figure 3 - 4 - 7] Select Recipient
Enter Title and Message Content, and a figure to distinguish the message in
Display Icon. If an attached file exists, click on attached file to open File
156
Selection window or drag and drop the file from Windows Explorer. Only one
attached file is supported.
Created messages can be reused from Menu Bar [File]>[Message Open/Save]
Item or using Tool Bar , .
③ Send Message & Reply
Send Message is used when received message content needs to be forwarded to
another person. Message Reply is used to send a reply to the sender of the
message. For Send Message, either click on Menu [File]>[New]>[Send
Message] or click on Tool Bar .
[Figure 3 - 4 - 8] Send Message
User may enter Recipient’s Name and Address either directly or click on Address
Book button in right side of Recipient Entry window and select from the Address
Book.
Message Reply can be done by clicking on Menu [File]>[New]>[Message Reply]
or use Tool Bar .
157
[Figure 3 - 4 - 9] Send Message – Reply
To change Recipient, click on Address Book button in the right side of Recipient
Entry window and select from the Address Book.
④ Message Printing
Message Printing is used to print out Message Content. From Menu Bar click on
[File]>[Printing] to select a printer connected to User PC. Default value is the
PC’s default printer.
[Figure 3 - 4 - 10] Print
158
3) Edit Message
Edit Message means managing incoming messages as Read/ Unread /Delete
/Recovery. It also includes message search function.
① Mark as Read
From Message Management window selected Messages are displayed as Read.
To do so, either click Menu [Edit]>[Mark as Read] or use Tool Bar .
The following screen shows the message titled ‘Virus Alert!’ as Read.
[Figure 3 - 4 - 11] Mark as Read
② Mark as Unread
From Message Management window, display selected Messages as Unread.
For Read Status Display, either click on Menu [Edit]>[Mark as Unread] or use
Tool Bar .
Mark as Read and Mark as Unread allow selection of multiple messages and
executing from Message Management Window.
③ Mark All as Read
Marks all messages as Read in Message Management window. Click on Menu Bar
[Edit]>[Mark All as Read].
④ Mark All as Unread
Marks all messages as Unread in Message Management window. Click on Menu
Bar [Edit]>[Mark All as Unread].
⑤ Delete/Restore
159
Delete or Restore selected messages in Message Management window. Deleted
Messages are sent to Recycle Bin. To Delete, click on Menu Bar’s
[Edit]>[Delete] or use Tool Bar .
The following screen shows Recycle Bin. Restore can be done by clicking on
Menu [Edit]>[Restore] or use Tool Bar within a selected Recycle
Bin.
[Figure 3 - 4 - 12] Delete Message
⑥ Select All
All messages in Message Management window are selected. Click on Menu Bar’s
[Edit]>[Select All].
⑦ Message Search
Out of many received messages, Messages can be searched by Category, Title,
Sender, Content or Receive Date. Click on Menu Bar’s [Edit]>[Search] or use
Tool Bar .
[Figure 3 - 4 - 13] Search Message
[Search Condition] Tab’s Search Location refers to the Message Category Folder.
Sender, Group, Title, Content, and Receive Date are included in search condition
160
only when their values are entered.
4) Message Ordering
Many messages can be ordered by Title /Receive Date /Group /Sender /Sender
Address for convenient viewing.
To perform Ordering, select from Menu Bar [View]>[Ordering] a specific ordering
method and click on it, or click on desired Column Head in Message Management
window.
Column Head
[Figure 3 - 4 - 14] Sort Message
5) Change Message Letter Size
You may adjust letter size of message contents from View Message window in three
sizes of Small, Normal and Large.
To change letter size, from Menu Bar [View]>[Letter Size], select an appropriate
letter size and click on it.
161
6) Reload Message
Message Client only shows Execution Time messages. Messages arriving after
Execution are received by ViRobot ISMS Client 3.0 and added to Message File and
displayed as an Instance. To view new incoming messages in Message Client, click
Menu [Tools]>[Reload Messages] or press Tool Bar .
Message Print
Message Reply
Message Client Icon
[Figure 3 - 4 - 15] View Instant Message
User may reply to a message from View Instant Message window or execute
Message Client. If Message Client is already being executed, the executing
Message Client is displayed on top of the screen.
7) Empty Message Recycle Bin
Messages saved in Recycle Bin can be permanently erased. Empty Recycle Bin is
performed from Menu Bar [Tools]>[Empty Recycle Bin] or select Categorize Folder-
Recycle Bin, then click Right Mouse button and click from Menu, Empty Recycle Bin.
8) Address Book Management
User can create frequent Contacts or Groups in Address Book. Contact List of
Address Book can be managed from within Message Management Screen, Create
Message, Send Message, or Reply Message function.
162
Address Book can be executed by clicking on Menu Bar’s [Tools]>[Address Book]
or use Tool Bar .
Group Management Contact
Management
[Figure 3 - 4 - 16] Address Books
From Group Management window, you may execute Add Group/Delete/Change
Information/Send Message to Group/ Registration Information. From Contact
Management window, you can execute Add Contact /Delete /Edit /Send Message
/Select All /Registration Information.
① Add Contact
It is used to add contacts in an Address Book. From Menu [File]>[New]>[new
Contact] or use Tool Bar to add a new contact to existing list.
[Figure 3 - 4 - 17] Add Contact
163
Basically you can enter Name and Address and leave the other entries blank.
Then click OK(O) button to complete creating a new contact to Address Book and
it is also automatically added to Message Client Main Management window.
[Reference] While a Group is selected, click on Menu [File]>[Add]>[Add
Contact] or execute Tool Bar , then the Contact is added to the
Group and also added to the Total Contact List.
② Add Group
It is used to add a new group to Address Book. Click on Menu
[File]>[Add]>[Add Group] or click Tool Bar to add a new group
to Group List.
[Figure 3 - 4 - 18] Add Group
Enter a unique Group Name in Group Name cell and select contacts to include in
this Group from Selective Contacts list, and click OK(O) button. Then, a new
group is added to Address Book. Added Group is also automatically added in
Message Client’s Main Management window.
③ Edit Contact Information
This function is used to change information of selected contacts. From Contact
Management window, select Contact to change and click right mouse button
164
Menu Edit Information or click Tool Bar , then the following Edit
Information window appears.
[Figure 3 - 4 - 19] Edit Contact Information
Modify items and click OK(O) button, then the change is reflected in Address
Book.
④ Edit Group Information
It is used to change selected group’s information. Select the group to change
information from Group Management window, then click Menu [Edit]>[Edit Group
Information] or click on Right Mouse button Menu’s Edit Group Information, or
click Tool Bar . Then, the following Edit Group Information
Screen will appear.
165
[Figure 3 - 4 - 20] Edit Group Information
Already selected contact list of the group is located in the screen right, and
selective contact list on the left side. Desired contacts from the group can be added or
deleted. To complete editing, click Ok(O) button.
⑤ Delete Contact
Contacts that are no longer needed are deleted. From Contact Management
window, select the contact to delete, and click on Menu Bar’s [Edit]>[Delete] or
click Tool Bar .
⑥ Delete Group
Group that is no longer needed can be deleted. From Group Management window,
select the group to delete, click on Menu Bar’s [Edit]>[Delete] or Tool Bar
.
⑦ Select All
All contacts in Contact Management window are selected. Click on Menu Bar’s
[Edit]>[Select All].
⑧ Send Message
Send a message to selected contacts or groups. First, select Contacts or Group
166
to send the message, then from the Right Mouse button Menu, click on Send
Message or Tool Bar .
⑨ Send Message to a Contact in Group
Message is sent to only specified contacts in a Group. First select a Group to
show contacts in the Group in Contact Management window. Either drag and
drop desired contacts or while Ctrl key is pressed, select multiple contacts. To
send message to selected contacts, click .
[Figure 3 - 4 - 21] Address Books – Selecting Recipient
“Send Message” can be done from within Address Book’s Total List.
167
[Figure 3 - 4 - 22] Send Message
Recipient is represented by one contact among many and the Address is
displayed as that of the representative recipient.
⑩ Contact Ordering
Address Book Total List or Selected Group’s Contact can be ordered. From Menu
Bar [View]>[Ordering], select one of the Ordering Methods, or click on the
Column Head area of Contact Management window.
168
[Figure 3 - 4 - 23] Address Book - Sort Contacts
⑪ Address Book File Optimize
Address Book File Optimize function optimizes the file space of Address Book
when it contains excessive number of contacts or groups. This function can be
used by Users with many Group additions and deletions. In general, normal users
do not experience any problem without executing the File Optimize.
9) Address Book Wizard
This function facilitates creating an Address Book that is needed company-wide
conveniently from Message Client. You may use Sites.ip file which is Server’s Client
Control Node Information Saved file to create an Address Book. Therefore, you may
request and receive from Administrator Sites.ip File and generate an Address Book.
(Administrator can create a company-wide Address Book and distribute in a batch
mode to all clients using Anti-Virus Server ViRobot ISMS Console 3.0 File Send
Function.)
Click on Menu Bar’s [Tools]>[Address Book Wizard].
169
[Figure 3 - 4 - 24] Address Book Wizard #1
Load Administrator Address File Sites.ip by clicking Search... button, then press
Next button.
[Figure 3 - 4 - 25] Address Book Wizard #2
Click □+ All to select Group or Users to add and press button. Selected
Group or Users are conveniently added to Address Book.
170
[Figure 3 - 4 - 26] Address Book Wizard #3
Address Book Contacts
[Figure 3 - 4 - 27] Address Book - Contacts
10) Chat Function
Message Client allows Chatting and Folder Sharing among Users via Messenger
Function. To use Chat function, first use Address Book Wizard to perform Contact
Registration.
① Chat
Close Address Book window, select ‘John Doe’ among contacts and from right
mouse menu, select Chat.
171
[Figure 3 - 4 - 28] Message Client – Contacts - Chat
Upon Chat selection, Chat window appears.
[Figure 3 - 4 - 29] Message Client – Chat window #1
Unless both Chat parties’ information is configured mutually, Chat is not enabled.
172
Therefore, you need to enter User Information in the Chat option prior to Chat
execution. From Chat window Tools > Option enter User Information, Chat Room
Management and Share Management.
[Figure 3 - 4 - 30] Message Client – Chat window #2
A. For User Information, enter Chat counterpart’s Registration Information.
173
[Figure 3 - 4 - 31] Chat Option – User Information
B. Chat Room Management configures Chat Room Create/Join Invitation and
Connecting Port.
[Figure 3 - 4 - 32] Chat Option – Chat Room Management
② Download & Share Management
A. Chat counterparts designate Share Folder and Download Share Folder for
Chat purposes.
174
[Figure 3 - 4 - 33] Chat Option – Share Management
The above entered User Information, Chat Room Management, and Share
Management Information are saved in C:₩SiteClient₩ChatUI.ini File, which looks
like the following figure.
[Figure 3 - 4 - 34] C:₩SiteClient₩ChatUI.ini File
Select a file to download from File List and click on Selected File Download.
175
Multiple Selection and Multiple Download are possible.
File Receive area shows visually what part has been received.
[Figure 3 - 4 - 35] Chat – Download
③ Invite User
During Chat you may invite any user registered in Address Book for Chat.
Select Tools > Invite User.
[Figure 3 - 4 - 36] Chat – Invite User #1
From Contact List select persons you wish to invite, then click on Invite button.
176
[Figure 3 - 4 - 37] Chat - Invite User #2
Then the invited party has the following window displayed. Select either Permit or
Cancel. When Permit is pressed, Chat is enabled in Chat Room.
[Figure 3 - 4 - 38] Chat - Invite User #3
The following is Chat window when Permit is selected. Chat with existing Chat
participant is possible.
Existing Chat Participant
[Figure 3 - 4 - 39] Chat – Chatting Window #1
177
Chat Monitor-Chat Window does not list own Chat Information.
[Figure 3 - 4 - 40] Chat – Chatting Window #2
A. Private Chat
You may select a specific person among many and engage in chat with that
person only.
Check the box of Participant for Private Chat.
[Figure 3 - 4 - 41] Chat – Chatting Window #3
B. View User Information
178
[Figure 3 - 4 - 42] Chat – Tools – View User Information
C. Kick Out User
A specific selected person can be kicked out of Chat Room. Expelled person is
not allowed to connect to the Room where he/she was expelled or enter it even
if invited by another participant.
[Figure 3 - 4 - 43] Chat – Tools – Purge User
11) Categorization
Categorization in the left side of Message Client Main Screen helps manage
messages by Status Category. User may view messages in a selected category. To
perform Categorization, click Right Mouse button to show Menu. Menu functions
179
apply to a selected category. Menu differs by Folder selected.
[Figure 3 - 4 - 44] Categorization Folder
① Display All Messages as Read/Unread
Displays all messages in the selected category as either Read or Unread.
Selected desired category and click on the desired function from Right Mouse button
Menu.
② Delete All Messages
All messages in a selected category are deleted. Select desired category, then
from Right Mouse button Menu, click Total Delete.
Deleted Messages are sent to Recycle Bin.
12) Contacts
[Figure 3 - 4 - 45] Contacts Folder
① Send Message to Selected Contact or Group
You may send a message to a selected group or contacts in Contact Folder.
Select the Group or Contacts for Send Message, and from Right Mouse button
Menu, select Send Message.
② Delete Selected Contact or Group
Selected contacts or group in Contacts folder are deleted.
Selected Group or Contacts to delete, then from Right Mouse button Menu, select
180
Delete.
13) Message Management window Functions
[Figure 3 - 4 - 46] Message Management window
① Add Selected Message Sender to Address Book
Message Sender can be added to Address Book.
Select a message and from Right Mouse button Menu, select Add Sender to
Address Book. The sender is then added to Address Book’s Total List.
② Drag & Drop Status Setting
Select one or more messages to change Status value (Message Read/ Unread/
Deleted), drag them with mouse to specific location within Categorization Folder to move
them to specific category.
181