Jump to:navigation, search
Wiki
























De.png
Fr.png


Beschreibung der Geräteübersicht im AV-Portal


Last adaptation to the version: 3.3 (06.2021)


New:

  • Display of the OOBE status in the Antivirus tab
  • Filtering on devices with OOoBE status not ready
  • New Action in quarantine: Unignore



Introductory remarks

Device Information presents information about current threats as well as information about the device.F

Device overview

Overview devices

In the device overview all devices can be managed which are installed and assigned to the own or the customer license. Several devices can be moved at the same time and the most important device information is displayed.

The list can be sorted by clicking on the according column name.

The visualisation of a newly installed device may take a few minutes.

























Restrict the selection:
 Search Displays only devices that match the search text.
Not applied to: Operating system and status.

Export table Exports the table with the device overview into a xlsx file which can be downloaded afterwards via a displayed link.
Table settingsLeads to the tab Table Settings in the User Preferences.
Here you can select the columns to be displayed for the tables Devices and Licenses.
Opens a box with filter settings:
  Filter
Display Entries 25 Number of entries per page (10, 25, 50, 100)
Status filter: Displays only entries with the selected status (see below).

Actions 
Allows different actions with the selected devices

  Move Moves devices to a new group. If the group is no longer part of the installed license, the license affiliation is also changed.

  Activate Enables Securepoint Antivirus Pro on the device

  Deactivating Disables Securepoint Antivirus Pro on the device

  Delete Deletes the device from the device management.

Nur möglich, wenn das Gerät vorher deaktiviert wurde!

 Only possible if the device has been deactivated before!


Caption Description
Hostname As stored in the operating system of the device. Links directly to Device Information.
Own description As stored in the Device Information (freely definable).
Group Group to which the device belongs. Links directly to Group Settings.
IP address IP address of the device.
Domain Domain name, if device is a member.
Operating System Operating system of the device.
Infections Number of reported (and untreated) infections since last contact.
Status























Category Status Information text Filter Info Recommendation for action
Device status 10 The device is up-to-date - - -
20 The device has not answered for x days unknown The device is either no longer available or no connection to the backend can be established. Check the device.
30 x threats found threatened Threats were found on the device. Check your device and threats.
20 Version x is not current obsolete The device has a connection to the backend, but not the latest version. Check your device and updates.

20
The client does not have a sufficient security status - The system protection and/or updates are not enabled Check the machine and client settings.
40 The client was deactivated on date deactivated The device has been deactivated via the AV portal. The licence has been removed from the unit. -
20 The operating system is no longer supported by Microsoft, updates may no longer be available EOL The operating system is no longer supported by Microsoft, updates may no longer be available Upgrade or change the operating system.
Device statusX 15
Setting status 10 The settings were applied on date - - -
20 The settings of the device do not match the settings of the configuration profile Settings incomplete The machine does not have the settings from the configuration profile. Check the device and transmit the configuration.
30 The group assigned to the device has no configuration profile Configuration profile missing The group assigned to the device has no configuration profile Assign the configuration profile to the group.
40 The machine does not support remote settings, the client is out of date - The device has a client version < 30.x and cannot connect to the backend Check your device and updates.
Setting statusX 25
Other 50 The host name is used by multiple clients within one license. Review The host name of the machine is in multiple use. Check the device and host name.
50 The notifications have been muted. muted All notifications for the device have been muted. -
50 The notifications were partially muted. partly muted Notifications for the device were partially muted. -
OtherX 35
45


The device status update is transmitted every 10 minutes.

The AV client sends the virus status to the dashboard every 60 seconds.




Device information

Device information
Device information


Further device information can be displayed by clicking on the device name. These are divided into different sections. By clicking on the Basic Information, Antivirus or Operating System tabs you will get the corresponding information. The version information is compared with the data from the update servers and indicates which modules are on which update status.

In the viruses Quarantine area, current threats are displayed. Threats with which an action has been performed (e.g. Delete and Save) will be displayed at viruses History.

In the Exclusions tab, files, folders or processes can be excluded from the scan.




Versions

The Versions section displays the installed and the latest versions of various components of Antivirus Pro:

  • Product
  • Updater
  • Scan Engine
  • AntiSPAM Engine
  • Virus database
  • SPAM database


Wenn die installierte Version nicht mit der neusten Version übereinstimmt, sollte ein Update auf dem Client durchgeführt werden. Ggf. kann hier ein Problem im Update-Prozess erkannt werden.



Basic informations

Basic informations



The basic informations display important informations about the device and settings for notifications.

Description Description
Own designation A free designation can be entered.
Device ID 1234abcd-12ab-12ab-12ab-123456abcdef
Hostname As stored in the operating system of the host
IP address IP address in the local network of the host
Domain if applicable, display of the domain in which the device is a member
Client Password Shows whether the client is protected with a password against modification / uninstallation.
Last communication Date and time of communication between client and portal
Installed at Date and time of installation
Letzte Übertragung der Konfiguration Last transfer of the configuration from the portal to the client
Customer Linked to the associated customer administration in the reseller portal
Groups Links to the corresponding group in the group management in the AV portal and displays all devices belonging to this group.
Also shows the ↳ configuration profile associated with this group, which is linked to edit with
Action
Description
Displays the action log for this device.

  • Displays the corresponding license
  • Actions are listed in plain text.
  • Status:
    • launched

    • successfully

    • failed An error occurred during communication between the portal and the client.
  • Start date (with time)
  • End date (if already completed), with time
  • Action: Shows details, if any
Moves the device to another group

Transfers the current configuration to the client.

Deactivates the device

Deletes the device from the portal.
Only possible if the device was previously deactivated.

To reintegrate a deleted device into the portal, the client on the device must first be uninstalled and then reinstalled.




Antivirus

Antivirus
Antivirusinformationen eines Gerätes



The tab Antivirus contains the information about the Securepoint Antivirus Client.

The information whether the license is active, the client is currently running or a threat has been found is highlighted in color.

Displayed information:
Beschriftung Status Description
License active Activated, with valid and active license
Threats 7 Number of reported threats

The line is highlighted in red if threats are found.

Real-time scan Checkbox activated, if function activated in client
The line is highlighted in yellow if the function is disabled in the client.
Real-time PUA scan Checkbox activated, if function activated in client
The line is highlighted in yellow if the function is disabled in the client.
E-Mail Scan Checkbox activated, if function activated in client
OOBE condition Ready Indicates whether the Out of box experience condition is ready and the AV is allowed to perform scans with it.
For more information, see the wiki article on OOBE condition.





Operating System

Operating System



The operating system information contains information about the operating system on which the Securepoint Antivirus Pro Client is installed.

Beschriftung Description
Operating System Name of the operating system
Architecture 32- or 64-bit
Type Workstation, Exchange-Server, Domain-Controller
Versions
Service Pack Version Version of the Installed Service Pack
Buildnumber






Quarantine

Quarantine
Quarantine



Shows various information about found viruses.
The listing can be sorted by column headings.


New With the button actions various actions can be triggered on the host for those entries marked with .

Caption value: description:
Source File: Virus / Potentially Unwanted Application is contained in a file
Outlook Threat is contained in an email
SharePoint Threat is contained in a SharePoint object
PUA (Possible Unwanted Application)
Virus
Designation EICAR-Test-File Name of the file by the Ikarus engine. Please note: The names of viruses and PUAs can differ between different antivirus programs.
File path / subject C:\... Local file path on the device with AV Client
user
File size 68 B Size of the infected file
Date found 14.04.2020 12:26:19
Status exists Access to the object is blocked. No actions have been performed so far
ignored Object was found, but the access was temporarily (until the next restart of the Antivirus Pro service) released again.
deleted The object was deleted.
copy exists A backup copy has been made and access to it has been blocked. The original object was deleted.
file is missing The file was removed on the host system (without executing it).
Suggestions Suggested action
Actions Displays the details of the scan profile and whether the individual settings are synchronized between the portal and the client.
Performs one of the following actions
Delete Deletes the object definitely from the system.
Backup and delete Files: Creates a backup copy, blocks access to it and deletes the original object. This allows the file to be restored to its original location if necessary.
E-mails: Creates a backup copy, blocks access to it and deletes the mail. If required, the e-mail can be saved in .msg format to a selectable location.
SharePoint: The Sharepoint server blocks the upload and warns the user.
Ignore Temporarily releases the selected files (until the next restart of the Antivirus Pro service)
Unignore New as of version 3.3 Cancels the previously selected share of a file already before a reboot.
Restore Restores the file to its original location. The status changes to exists}
Send to lab The suspicious file is sent to the analysis laboratory. An email address for feedback can be provided upon request. The status does not change.
Remove from List Removes entries from the quarantine list. These entries are then only in the
History{{{2}}}
without the possibility of action.
Purge Is like "Backup and Delete": It creates a backup copy of the file, and then deletes the original. Additional removes virus entries from the registry. The process can take much longer.
Run suggestions Carry out the recommendation. Vorlage:Hint Especially advantageous in case of several marked threats via the button on the left at the beginning of the table!





Exclusions

Exclusions
Exclusions



Caption Description
Type Kind of exclusion. Defined in the configuration profile or directly in the client:
  • File & Folder Exclusion
  • Process exclusion
File & folder path c:\
Process name
Status
  • Client and profile in sync
  • Only exist on client
Action Adds exclusions from the device to the profile.
Once defined exclusions can be transferred to all devices that are assigned to the same profile.






client configuration

 client configuration



The current settings on the client are displayed here.

Copy device settings to profile Copies the device settings to the profile assigned to the device
synchronous The settings in the machine and in the profile are identical.
asynchronous The settings in the device and in the profile are not identical.


System protection
Caption Default Description
Monitoring the system Can be disabled in the Guard section.
PUA and PUP detection Can be disabled in the Guard section.
System monitoring after reboot Can be deactivated in the Tools menu → Settings / tab Extras.
Use default settings Can be deactivated in the Tools menu → Settings / tab Exclusions.
Maximum file size (In MB) - Size in MB up to which files are scanned.
nn Default value in the default settings 128 MB
Participate in signature quality assurance Can be deactivated in the Tools menu → Settings / tab Extras.
Email Protection
Caption Default Description
Monitoring emails Can be deactivated in the Tools menu → Settings / Email.
Save infected attachments Can be deactivated in the Tools menu → Settings / Email.
Anti-SPAM
Caption Default Description
Enable Anti-SPAM Can be activated in the menu Extra → Settings / Tab Anti-SPAM.
Check online Additionally checks against online blacklists and databases. Requires more time.
Action on SPAM email Mark email Can be configured in the Extra menu → Settings / tab Anti-SPAM
Possible Spam Scoring 3 Can be configured in the Extra menu → Settings / tab Anti-SPAM
Spam Scoring 7 Can be configured in the Extra menu → Settings / tab Anti-SPAM
Logging
Caption Default Description
Log system supervision in the main log Can be activated in the Tools menu → Settings / tab Logging.
Record logs for scans Can be activated in the Tools menu → Settings / tab Logging.
Record all data when scanning Can be activated in the Tools menu → Settings / tab Logging.
Overwrite logs Can be activated in the Tools menu → Settings / tab Logging.
Extras
Caption Default Description
Use Proxy-Server Can be activated in the Tools menu → Settings / tab Update.
Use System Proxy Can be activated in the Tools menu → Settings / tab Update.
Proxyserver Address - Can be activated in the Tools menu → Settings / tab Update.
Proxyserver port - Can be activated in the Tools menu → Settings / tab Update.
Proxyserver login Can be activated in the Tools menu → Settings / tab Update.
Password protection Can be activated in the Tools menu → Settings / tab Extras at Password protection.




Scan profile

 Scan profile


Scan status Finished The scan status is self-explanatory AVP v3.3 Geräte Scanprofile-en.png
Scan Profiles tab
Cancelled
Not running
Profile status Synchronous The settings between client and portal are identical.
Settings asynchronous The settings between client and portal are not identical.
Transfer configuration to the client in the Basic Information tab under Actions using the button.
Only available on client This scan profile is not stored in the portal.
With the
button (see below), the scan profile can be copied from the device and saved in the portal.
Actions
Displays the details of the scan profile and whether the individual settings are synchronized between the portal and the client.
Copies and transfers the scan profile to the portal
Option to Start Scan"


Comments and Muting

 Comments and Muting



Caption Description
Annotation text Annotation about the device (independent of muting)
Muting Enables or disables muting.
Muted until By clicking in the input field, you can set a time until which the mute function should remain active. In calendar pop-up a month and a day can be selected. Click to select a time. By default the current time is used. Click on the red buttons or on the values to change them.
Affected field

Selection of the notification type:

Any notification for this device

Notifications about outdate status

Notifications about new threats

Notifications about insufficient security status


Accept the settings with Save