[olug] Anti-Virus for Lin Win Mac LiveCDRootkit Detection
    Phil Brutsche 
    phil at brutsche.us
       
    Wed Oct 22 19:30:57 UTC 2008
    
    
  
I wouldn't use the same product for your Windows desktops and your Linux
servers. Defense in depth - if your Windows AV miss something, and your
Linux SMB servers use the same AV product...
I wouldn't use ClamAV for anything these days - there are a lot of
trojans going around that ClamAV doesn't detect but the commercial
offerings do.
Commercial offerings to explore:
F-Prot (don't use the free version, pay for it!)
F-Secure
Kaspersky
Rob Townley wrote:
> Was wondering what Anti-Virus shields you use on samba shares?  Of
> course there is ClamAV, but I am willing to pay to keep those
> definitions updated.
>  Prefer a single vendor for Linux and Windows - Mac would be icing on the cake.
> 
> I am interested in fsecure bc I used their livecd for rootkit
> detection.  However, RootKit detectors often only target Linux xor
> Windows, not both.
> 
>  Would also like a whitelist provider.
> 
> Mcafee does have an inexpensive LinuxShield but no livecd rootkit
> detector and the whitelist requires the much more expensive Host
> Intrusion Prevention purchase.
-- 
Phil Brutsche
phil at brutsche.us
    
    
More information about the OLUG
mailing list