What's new in GFI LanGuard™ 2011 SR2?
Improved! Management of security issues
GFI LanGuard 2011 SR2 includes a set of changes to help ensure that a more accurate calculation of your network’s vulnerability level. The new version can be set to ignore security issues for certain computers and acknowledge security issues for others. In addition administrators now have the ability to change the severity of security issues for certain computers. This can be used when a security issue is more (or less) dangerous on specific computers than it was classified by default.
NEW! Support for custom computer groups
You can now group computers based on text files containing lists. This allows you to scan for security issues, remediate them and generate reports for custom groups of computers based on criteria such as physical location, department or operating system.
NEW! Wake-on-LAN support
GFI LanGuard now supports wake-on-LAN to turn computers on before starting a scan or remediation if they are turned off. It also offers the option to shut them down once the required operation is complete. This saves energy and makes it easier to scan and remediate the network outside working hours.
GFI LanGuard 2011 has the following new features:
GFI LanGuard 2011 integrates with over 1,500 critical security applications of the following categories: antivirus, antispyware, firewall, anti-phishing, backup client, VPN client, URL filtering, patch management, web browser, instant messaging, peer-to-peer, disk encryption, data loss prevention and device access control. It provides reports on their status and rectifies issues by allowing operations like enable antivirus or firewall, trigger definitions update for antivirus or antispyware, uninstall peer-to-peer applications, etc.
Agents technology
GFI LanGuard can be configured to run either in agent-less or agent-based mode. The agents technology enables automated audits and distributes the scanning load across client machines. The administrator simply needs to define the network perimeter and provide credentials to enable automatic network discovery, agent deployment and auditing of the client machines. Manual intervention is necessary only when fine-tuning is required. This feature provides the following benefits:
- High speed: Scan hundreds or thousands of machines in just few minutes
- Automation: Agents update the client status on server on regular schedule. Every time the application is opened, users can analyze a complete and up-to-date network security overview
- Scalability: Due to distributed load it is possible to scan more machines in one go, even in WAN environments
- Accuracy: Local scans have less failure points than remote scans; agents will continue to work even when computers are not connected to the network.
New powerful interactive dashboard
GFI LanGuard 2011 features a powerful and interactive dashboard that processes all security audits to provide a summary of current network security status and a history of all relevant changes in the network over time. It also drills down through information starting from network-wide security sensors to individual security scan results.
Full text search support
GFI LanGuard 2011 makes it possible for users to instantly locate the information they are interested in. Searching the scan results is now as easy as searching on the Internet. The search displays instant results with links to relevant items. You can search for both current and past events and for specific items like vulnerabilities, installed applications, missing patches etc. Moreover, you can save and print search reports.
Revamped reporting
In the latest version of GFI LanGuard, reports are integrated within the main application. All reports are based on a computer’s current status, and not on specific scans. These reports can be exported to popular formats like PDF, HTML, XLS, XLSX, RTF and CVS and can be scheduled and sent by email. They can also be used as a template to create new custom reports and are fully re-brandable.
Network discovery not bound by license limitations
With GFI LanGuard 2011, license slots are no longer required for all computers and devices in the scan results database. Only the ones that are scanned beyond network discovery are bound by license limitations.
Integration with existing network infrastructure
GFI LanGuard 2011 can now import organizational units or entire active directory. This leads to easier computer management as you can view the computers in GFI LanGuard as they are organized in your network.
Improved support for virtual infrastructure
GFI LanGuard 2011 offers detection of virtual machines hosted by the scanned computer, which means you can have a better view of your virtual infrastructure.
Custom software deployment improvements
With the latest version of GFI LanGuard 2011, you can save custom software deployment configuration for re-usage. Moreover, you are also given support for configuration (auxiliary) files, i.e., for installations that require a configuration file as a parameter.
Silent installation
The recording file is no longer required for the installation of GFI LanGuard 2011.
Notes:
1) Localization of GFI LanGuard 2011 into German and Italian will be available in Q3.
2) Freeware for GFI LanGuard is no longer available with version 2011.
System Requirements:
System requirements: Hardware
Hardware requirements depend on network size. Refer to table below for the minimum specifications according to your network size.
| |
1 to 100 scan targets |
100 to 500 scan targets |
500 to 3000 scan targets |
| Processor |
2 GHz Dual Core |
2.8 GHz Dual Core |
3 GHz Quad Core |
| Physical Storage |
5 GB |
10 GB |
20 GB |
| Memory |
2 GB |
4 GB |
8 GB |
| Network bandwidth usage |
1544 kbps |
1544 kbps |
1544 kbps |
System requirements: Software
Supported operating systems (x86 or x64):
- Microsoft Windows Server 2008 Standard/Enterprise
- Microsoft Windows Server 2003 Standard/Enterprise
- Microsoft Windows 7 Professional/Enterprise/Ultimate
- Microsoft Windows Vista Business/Enterprise/Ultimate
- Microsoft Windows XP Professional (SP2 or higher)
- Microsoft Small Business Server 2008 Standard
- Microsoft Small Business Server 2003 (SP1)
Supported databases
- Microsoft Access
- Microsoft SQL Server 2000 or later
- MSDE/SQL Server Express Edition
Other server components
The following components are required to be installed on the server where GFI LanGuard is installed:
- Microsoft .NET Framework 3.5
Target computer components
The following components are required to be installed on target computers for GFI LanGuard to be able to scan them:
- Secure Shell (SSH) - Required for UNIX based scan targets. Commonly included as part of all major Unix/Linux distributions.
- Windows Management Instrumentation (WMI) - Required to scan Windows-based scan targets. Included in all Windows 2000 or newer operating systems.
- Enable File and Printer Sharing.
- Enable Remote Registry.
GFI LanGuard agents
Supported operating systems (x86 or x64):
- Microsoft Windows Server 2008 Standard/Enterprise
- Microsoft Windows Server 2003 Standard/Enterprise
- Microsoft Windows 7 Professional/Enterprise/Ultimate/Home Premium
- Microsoft Windows Vista Business/Enterprise/Ultimate/Home
- Microsoft Windows XP Professional (SP2 or higher)
- Microsoft Small Business Server 2008 Standard
- Microsoft Small Business Server 2003 (SP1)
- Microsoft Windows 2000 Professional/Server/Advanced
-SP4
-Internet Explorer 6 SP1 or higher
-Windows Installer 3.1 or higher
GFI LanGuard agent footprint
The target scan machines should cater for the minimum required resources specified below:
- RAM: 25MB
- Agent disk space: 350MB