Book Image

Microsoft System Center Endpoint Protection Cookbook - Second Edition

By : Henriksen
Book Image

Microsoft System Center Endpoint Protection Cookbook - Second Edition

By: Henriksen

Overview of this book

System Center Configuration Manager is now used by over 70% of all the business in the world today and many have taken advantage engaging the System Center Endpoint Protection within that great product. Through this book, you will gain knowledge about System Center Endpoint Protection, and see how to work with it from System Center Configuration Manager from an objective perspective. We’ll show you several tips, tricks, and recipes to not only help you understand and resolve your daily challenges, but hopefully enhance the security level of your business. Different scenarios will be covered, such as planning and setting up Endpoint Protection, daily operations and maintenance tips, configuring Endpoint Protection for different servers and applications, as well as workstation computers. You’ll also see how to deal with malware and infected systems that are discovered. You’ll find out how perform OS deployment, Bitlocker, and Applocker, and discover what to do if there is an attack or outbreak. You’ll find out how to ensure good control and reporting, and great defense against threats and malware software. You’ll see the huge benefits when dealing with application deployments, and get to grips with OS deployments, software updates, and disk encryption such as Bitlocker. By the end, you will be fully aware of the benefits of the System Center 2016 Endpoint Protection anti-malware product, ready to ensure your business is watertight against any threat you could face.
Table of Contents (10 chapters)
9
Index

Introduction

In this chapter, we will demonstrate the combined strength and flexibility of Endpoint Protection and Configuration Manager. You can target any system you want, as long as it has the client software installed with whatever policy configuration you would like. Configuration Manager will ensure that it is enforced and applied to the targeted system. But surely you can do this somewhat with other antimalware products as well, so why is this different? Because with Configuration Manager, you also have a full inventory of both hardware and software on every server and workstation, and you have integration to Active Directory as well.

All this information is put together and at your disposal in a database. This means you can target whatever you want and have it update automatically if this would make it easier to maintain. One of the huge benefits of running System Center Endpoint Protection regarding this is that it contains out-of-the-box policy for many known products such as...