Product

Overview 

According to the Ponemon Institute, 59% of people who lost their job admitted to taking confidential company information with them either on DVD or using USB drives. The proliferation of consumer devices such as iPods, USB devices, Smart Phones and more, has dramatically increased the risk of intentional and unintentional data leaks and other malicious activity. While most companies have antivirus software, firewalls, email and web content security to protect against external threats, few realize how easy it is for an employee to simply walk in and copy large amounts of sensitive data onto an iPod or USB stick. There is also an increased risk of malicious and other illegal software introduction to your network through these devices. Of course your administrator could lock down all ports - an ill-advised, difficult and unsustainable solution.

Prevent Data Theft and Virus Infection from within with Endpoint Security Software

Many businesses are unaware of, or choose to ignore, the threat presented by portable devices in their network environment until some event, ranging from unfortunate to catastrophic, happens. In hard economic times, cybercrime and data leakage increase, finding an easy target in endpoints. The key to managing portable devices in your business environment is to give your administrators direct control over what devices are in use on your network. With GFI EndPointSecurity™ you not only gain control over what is in use but you also know what has been used and by who, and most importantly you gain in-depth knowledge of what data has been copied.

Control Portable Device Access to Your Network with GFI EndPointSecurity

GFI EndPointSecurity enables administrators to actively manage user access and log the activity of:

  • Media players, including iPods, Creative Zen and others
  • USB drives, CompactFlash, memory cards, CDs, floppies & other portable storage devices
  • PDAs, iPhone, BlackBerry handhelds, mobile phones, smart phones and similar communication devices
  • Network cards, laptops and other network connections.

Why Choose GFI EndPointSecurity?

  • Prevents data leaks and theft by comprehensively controlling access to portable storage devices with minimal administrative effort
  • Prevents introduction of malicious and other unauthorized software to the network
  • Gives administrators greater control - you can block devices by class, file extensions, physical port or device ID from a single location
  • Allows administrators to grant temporary device or port access for a stipulated timeframe
  • Centrally monitors the network, detects connected devices and performs various tasks
  • Automatically protects newly detected computers by deploying an agent and a default blocking policy
  • Can automatically download and install SQL Express if a database server is not available
  • Supports 32 & 64-bit platforms, including Windows 7, Windows Vista and Windows Server 2008 R2.

Features 

How it works
To control access, GFI EndPointSecurity™ installs a small footprint agent on your user's machine. This agent is only 1.2 MB in size, meaning your user will never know it is there. GFI EndPointSecurity includes a remote deployment tool based on GFI LANguard™ technology, allowing you to deploy the agent to hundreds of machines with just a few clicks. After installation, the agent queries Active Directory when the user logs on and sets permissions to the different nodes accordingly. If the user is not a member of a group that allows access to a particular device or set of devices, then access is blocked.

Manage user access and protect your network from portable devices
Using GFI EndPointSecurity you can centrally disable access to any portable device, preventing both data theft and the introduction of data or software that could be harmful to your network. Although you could block portable storage devices such as CDs and floppy drives from the BIOS of the individual machine, the solution is inconvenient and impractical when applying software or network upgrades. For example, a new software or device installation would require the administrator to physically visit each machine, switch off the computer, temporarily disable protection, perform the install and then re-enable protection. Furthermore any sophisticated user can hack the BIOS, circumventing the security measure altogether. GFI EndPointSecurity allows you to take control over your environment and the access of a wide variety of devices including:

  • Floppy disks
  • CDs and DVD ROMs
  • iPods/iPhones
  • Storage devices
  • Printers
  • PDAs
  • Network adapters
  • Modems
  • Imaging devices
  • And more

Centralized monitoring
GFI EndPointSecurity incorporates a dedicated node making it possible for administrators to view all computers on a network from a single location. Here, administrators can assign a secondary name to computers, to make it easier to identify them.

Computer auto-discovery and automatic protection
GFI EndPointSecurity can monitor the network, detect new computers that are connected onto the network, notify the administrator, and perform various tasks as configured by the administrator. For example, the administrator can set automatic detection to occur at pre-set intervals - hourly, daily, weekly, etc. One can also set the scope of the auto discovery, for example, only computers detected on the domain or on the entire network. Once computers are detected, the administrator can choose whether to automatically protect them by deploying a pre-defined policy, or simply to be notified that new computers were detected. If auto-protect is selected, as soon as a computer is detected, the product would automatically install the agent and apply the default policy selected by the administrator.

Supports Windows 7 and BitLockerTo Go
Windows 7’s“BitLocker To Go” is designed to encrypt data on removable devices. GFI EndPointSecurity 4.2 can detect devices that are encrypted with BitLocker To Go, and apply different permissions to these devices.

Get detailed reports on device usage with GFI EndPointSecurity ReportPack™ add-on
The GFI EndPointSecurity ReportPack is a powerful reporting package that adds on for free to GFI EndPointSecurity. This reporting package can be scheduled to automatically generate graphical IT-level or higher level management reports, based on data collected by GFI EndPointSecurity. This gives you the ability to report on devices connected to the network, user activity, endpoint files copied to and from devices (including actual names of files copied), and much more. The latest ReportPack includes enhanced reports that highlight users trying to bypass security policies by renaming file extensions etc.                                                 

More information about the GFI EndPointSecurity ReportPack

Windows 7 support for tamper-proof agent
The agent used to control machines has a number of security elements applied to render it tamper-proof. Users are unable to uninstall the agent as it is not published as an installed application. As additional security, uninstall can only be accomplished if a special 128-character ID to unlock the uninstaller is registered. A sample of the other security features includes encryption of the configuration file used by the agent; the automatic regeneration of registry keys and critical files if these are tampered with; and an emergency block mode if the configuration file is corrupt, leaving access to the driver only possible by a system reinstall or using the recovery console.

Log the activity of portable device access to your network
USB sticks present a significant threat to your business environment. They are small, easily hidden and can store up to 16 GB of data. Even plugging a digital camera into a USB port gives users access to storage on an SD card. SD cards are available in 32 GB capacity and more; that's a lot of potential for carrying off your data or for exporting infected software onto your network. In addition to blocking access to portable storage media, GFI EndPointSecurity logs device related user activity to both the event log and to a central SQL Server. A list of files that have been accessed on a given device is recorded every time an allowed user plugs in.

Easily configure group-based protection control via active directory
You can categorize computers into protection groups. For each group you may specify the level of protection and portable device access to allow. The ability to group your networked computers is a powerful feature; making, for example, an entire department into one group and then managing the department's setting by managing the group as a single entity. Configuration of GFI EndPointSecurity is effortless and leverages the power of Active Directory. It does not require the administrator to remember and track which policies were deployed to which computers. Many other storage control software requires cumbersome machine by machine administration, forcing you to make the changes on a per-machine basis and then to update the configuration on each machine before the settings take effect. GFI EndPointSecurity does away with all of that.

Advanced granular access control via whitelists and blacklists
GFI EndPointSecurity enables you to allow or deny access to a range of device classes, as well as to block files transferred by file extension, by physical port and by device ID (the factory ID that identifies each device). It is also possible to specify users or groups and then manage their access to devices giving them permissions ranging from no access ever, some access to some devices some of the time, and all of the way to full access at all times. GFI EndPointSecurity allows administrators to define a device whitelist and a blacklist allowing only company-approved devices, effectively and easily blocking all others.

Real-time status monitoring and alerts
GFI EndPointSecurity provides real-time status monitoring through its user interface. It displays statistical data through graphical charts, the live status of the agent and more. GFI EndPointSecurity also allows you to send alerts when specific devices are connected to the network. Alerts can be sent to one or more recipients by email, network messages, and SMS notifications sent through an email-to-SMS gateway or service.

Easy unattended agent deployment
GFI EndPointSecurity provides administrators with the ability to automatically schedule agent deployment after a policy or configuration change. If a deployment fails, it is rescheduled until deployed successfully. The GFI EndPointSecurity remote deployment tool can deploy its security agent network-wide in a few minutes and we facilitate Active Directory deployment through MSI.

Permit temporary device access
Temporary access can be granted to users for a device (or group of devices) on a particular computer for a particular timeframe. This can be done even if the GFI EndPointSecurity agent is not connected to the network!

Policy creation wizard
To facilitate the creation of security policies, GFI EndPointSecurity includes a wizard to create security policies. Administrators can also create new policies based on existing ones.

Daily/weekly digest
An email notification containing activity statistics can be sent on a daily or weekly basis, enabling the recipient to have an overview of, for example, how many files were copied to and from devices, how many may potentially carry malware, etc.

Other features:

  • Ability to group computers, e.g., by department, by domain, etc.
  • Scan and detect a list of devices that have been used or are currently in use
  • Password protected agents to avoid tampering
  • Set up custom popup messages for users when they are blocked from using a device
  • Browse user activity and device usage logs through a backend database
  • Maintenance function that allows you to delete information that is older than a certain number of days
  • Support for operating systems in any Unicode compliant language

System Requirements

Hardware

  • Processor: 2GHz processor clock speed
  • RAM: 512 MB (minimum); 1 GB (recommended)
  • Hard Disk: 100 MB of available space
Software

Operating system (x64 or x86):

  • Microsoft Windows XP Professional
  • Microsoft Windows Vista (Enterprise, Business or Ultimate edition)
  • Microsoft Windows 7
  • Microsoft Windows 2003 Server
  • Microsoft Small Business Server 2003
  • Microsoft Windows 2008 Server (Standard or Enterprise edition)(SR1 - SR2)
  • Microsoft Windows 2008 Server R2
  • Microsoft Small Business Server 2008
Other components
  • Internet Explorer 5.5 or later
  • NET Framework version 2.0
  • Database Backend: SQL Server 2000, 2005, 2008
  • Port: TCP port 1116 (default)

NOTE 1: The firewall has to be configured to allow connections between the GFI EndPointSecurity machine and computers running the GFI EndPointSecurity Agent.

NOTE 2: GFI EndPointSecurity can only be installed and launched when using administrative privileges.

Agent - Hardware requirements

  • Processor: 1GHz processor clock speed
  • RAM: 256 MB (minimum); 512 MB (recommended)
  • Hard Disk: 50 MB of available space
Agent - System requirements

Operating system (x64 or x86):

  • Microsoft Windows Server 2008 R2 x64 (Standard or Enterprise edition)
  • Microsoft Windows Server 2008 (Standard or Enterprise edition)
  • Microsoft Windows Server 2003 (Standard, Enterprise or Web edition)
  • Microsoft Windows 7 (Enterprise, Business or Ultimate editions)
  • Microsoft Windows Vista (Enterprise, Business or Ultimate editions)
  • Microsoft Windows XP (Professional edition)
  • Microsoft Windows Small Business Server 2008 (Standard or Enterprise editions)
  • Microsoft Windows Small Business Server 2003

Looking for pricing information?

Want to speak to a sales expert?

If you are an end user looking for pricing information please click here to send us an email.

If you are a reseller/partner please visit our home page to login in to the Partner Area.

GFI FAXmaker v.2013

GFI FaxMaker™ is a leading fax server for small to medium-sized businesses (SMBs). It makes sending and receiving faxes an efficient, simple and cost effective process and solves the problems with manual faxing: printing out the document, walking to the f...

GFI MailEssentials v.2012

The most effective way to beat spammers at their game is to use GFI MailEssentials™, a leading anti-spam solution that has won several awards. GFI MailEssentials features not one, but two anti-spam engines to give administrators an ultra high spam capture...

GFI Network Server Monitor

GFI Network Server Monitor™ scans your network for failures or irregularities. GFI Network Server Monitor scans automatically so you can identify issues and fix unexpected problems before your users (or managers) even know they've happened....

GFI EventsManager v.2013

The enormous volume of system event logs generated daily is of growing importance to organizations that are required to record information for forensic purposes and due to the ever-growing reach of regulatory compliance. Increased threats to business cont...

GFI LANguard v.2012 SR1

GFI LanGuard™ is an award-winning network security and vulnerability scanner used by thousands of customers. GFI LanGuard provides a complete network security overview with minimal administrative effort, while also providing remedial action through its pa...

GFI MAX RemoteManagement

Award-winning GFI MAX RemoteManagement™ is an IT Managed Services software solution which makes it easy to stay on top of your customers' servers, desktops, networks, hardware, software, antivirus, inventory tracking, automated server and desktop maintena...

GFI MailArchiver 2012 SR2

GFI MailArchiver is an email archiving software that solves your email management problems on Exchange Server. With thousands of customers, it is a leading email archiving solution for small to medium-sized businesses (SMBs). GFI MailArchiver is used by a...

GFI WebMonitor for ISA Server/Standalone v.2013

Research by IDC shows that up to 40% of employee Internet access is non-work related. While shutting off Internet access is impractical, Internet monitoring and access control software enables network administrators to reduce unproductive Internet use: GF...