Configuration McAfee VirusScan Enterprise EnEN en-US
Configuration McAfee VirusScan Enterprise EnEN en-US
Configuration McAfee VirusScan Enterprise EnEN en-US
Preface 2
Application Manual
11/2014
A5E31308835-AB
Legal information
Warning notice system
This manual contains notices you have to observe in order to ensure your personal safety, as well as to prevent
damage to property. The notices referring to your personal safety are highlighted in the manual by a safety alert
symbol, notices referring only to property damage have no safety alert symbol. These notices shown below are
graded according to the degree of danger.
DANGER
indicates that death or severe personal injury will result if proper precautions are not taken.
WARNING
indicates that death or severe personal injury may result if proper precautions are not taken.
CAUTION
indicates that minor personal injury can result if proper precautions are not taken.
NOTICE
indicates that property damage can result if proper precautions are not taken.
If more than one degree of danger is present, the warning notice representing the highest degree of danger will be
used. A notice warning of injury to persons with a safety alert symbol may also include a warning relating to property
damage.
Qualified Personnel
The product/system described in this documentation may be operated only by personnel qualified for the specific
task in accordance with the relevant documentation, in particular its warning notices and safety instructions. Qualified
personnel are those who, based on their training and experience, are capable of identifying risks and avoiding
potential hazards when working with these products/systems.
Proper use of Siemens products
Note the following:
WARNING
Siemens products may only be used for the applications described in the catalog and in the relevant technical
documentation. If products and components from other manufacturers are used, these must be recommended or
approved by Siemens. Proper transport, storage, installation, assembly, commissioning, operation and
maintenance are required to ensure that the products operate safely and without any problems. The permissible
ambient conditions must be complied with. The information in the relevant documentation must be observed.
Trademarks
All names identified by ® are registered trademarks of Siemens AG. The remaining trademarks in this publication
may be trademarks whose use by third parties for their own purposes could violate the rights of the owner.
Disclaimer of Liability
We have reviewed the contents of this publication to ensure consistency with the hardware and software described.
Since variance cannot be precluded entirely, we cannot guarantee full consistency. However, the information in
this publication is reviewed regularly and any necessary corrections are included in subsequent editions.
1 Security information......................................................................................................................................5
2 Preface.........................................................................................................................................................7
3 Virus scanner administration........................................................................................................................9
3.1 Definitions................................................................................................................................9
3.2 Using virus scanners..............................................................................................................10
3.3 Basic virus scanner architecture............................................................................................10
4 Configuration of McAfee VirusScan Enterprise..........................................................................................13
4.1 Introduction............................................................................................................................13
4.2 VSE Functions ......................................................................................................................13
4.2.1 General..................................................................................................................................14
4.2.2 Access Protection..................................................................................................................14
4.2.3 Alert........................................................................................................................................14
4.2.4 Buffer Overflow Protection.....................................................................................................14
4.2.5 General Options.....................................................................................................................15
4.2.6 On-Access Default Processes...............................................................................................15
4.2.7 On-Access General................................................................................................................16
4.2.8 Quarantine Manager..............................................................................................................17
4.2.9 Unwanted Programs..............................................................................................................17
4.2.10 Pattern Updates.....................................................................................................................17
Note
Note that certain virus scanners are only approved for certain product versions.
Additional information is available on the Internet at the following address:
http://support.automation.siemens.com (http://support.automation.siemens.com/WW/view/en/
10154608)
3.1 Definitions
Virus scanners
A virus scanner is software that detects, blocks or eliminates known harmful program routines
(computer viruses, worms and similar malware).
Security Suite
Program suites usually sold by former virus scanner manufacturers that provide further security
functionalities in addition to traditional virus scanner functions, such as IPS, Application
Control, Firewall, etc.
Internet
Depending on the manufacturer it may also be possible to use multiple virus scan servers
which can be arranged in parallel or in a hierarchy.
The following functions are not recommended and are not checked in the compatibility test:
● "On Delivery Email Scan" – The use of e-mail programs is not recommended on PCS 7
and WinCC computers.
● "On-Access High-Risk Processes" – This function is a refinement of the "On-Access
General" function. We recommend that you configure all PCS 7 and WinCC computers the
same way and that you treat all data equally.
● "On-Access Low-Risk Processes" – This function is a refinement of the "On-Access
General" function. We recommend that you configure all PCS 7 and WinCC computers the
same way and that you treat all data equally.
This means you should not assign any policies to this function. The user is fully responsible
for any use of functions and settings which are not recommended.
4.2.1 General
We recommend that you use the same policies for all PCS 7 and WinCC computers and that
you make the same settings for the workstation and servers.
4.2.3 Alert
The following configurations refer to a new policy derived from the McAfee Default Policy.
No changes required.
Display Options
System tray icon Show the system tray icon with Select
minimal menu options
Password Options
User interface password Password protection for all items Select; choose a password
listed
Scan Items
Actions
When a thread is found If the first action fails, then per‐ Deny access to files
form this action
When an unwanted program is If the first action fails, then per‐ Deny access to files
found form this action
General
ScriptScan
Blocking
Messages