Application
...
Application-level security attack, such as file system corruption, registry corruption, spyware, and keylogging, pose a serious threat to mission critical business operations. Altiris® Arellia Application Control SolutionTM Solution™ software helps you manage this risk by allowing you to control of the software applications in your Altiris environment.
With Application Control Solution you can:
- Create policies to automatically inventory software packages or systems and add authorized applications to a whitelist. See Whitelisting Software Packages and /wiki/spaces/ACS75DOC/pages/1151082.
- Create policies to whitelist trusted file owners or digital certificates.
- Elevate privileges for applications that standard users use
- Implement the principle of least privilege in order to enhance the protection of data and functionality from malicious behavior. See Restrict an Applicationapplication's Process Rights. process rights.
Info | ||
---|---|---|
|
...
The principle of |
...
least privilege requires that each subject in a system |
...
is granted the most restrictive set of privileges (or lowest clearance) that is needed for the performance of authorized tasks. The application of this principle limits the damage that can result from accident, error, or unauthorized use. |
- Apply security ratings to withstand future attacks by reducing attack surface. You can reduce the attack surface by reducing the number of applications that are available to exploitation. See Security Rating (page 46) Manual security rating.
- Isolate an application to protect against file system and registry corruption or misuse. This is done through integration You can achieve this goal by integrating with Altiris® Software Virtualization SolutionTM software. See Run an Application in an SVS Layer (page 53)application in a Symantec Workspace Virtualization (SWV) layer.
- Protect against data theft. You can automate the encryption of documents as because Application Control Solution has seamless integration with Windows Encrypted File System. For information, see http://www.microsoft.com/resources/documentation/ windows/xp/all/proddocs/en-us/encrypt_overview.mspx?mfr=true.
search Microsoft for EFS Encryption. Using Application Control Solution, you can automatically encrypt documents on a notebook , thus preventing and prevent theft. See Automate Document Encryption (page 50) See Automate document encryption. - Control an application's ability to read or write to specific network locations. See Prevent Read/Write to File Types or Network Locations (page 52)read and write to file types or network locations.
- Prevent potentially malicious applications, such as keyloggers, from installing Windows API hooks. See Manage Applications (page 28) Prevent malicious applications from running.
- Protect from against viruses and spyware. See Quarantine Files (page 53)files.
...
Getting started scenarios
For sample scenarios that highlight the functionality and use of this solution, see Application Control Solution Sample Scenarios (page 48).