AntiVirus for Windows Servers?

Jamsan

Senior member
Sep 21, 2003
795
0
71
I'm looking to replace our Antivirus, as McAfee recently end-of-lifed it (currently have McAfee VirusScan Enterprise 8.0) - We're thinking of going up to the current version of the app (8.7), but want to weigh all of our options out prior to doing so. The other options we're looking at are Sophos and Symantec Corporate. Anyone have any experiencing or any reviews available comparing the 3 (or any others I haven't included)? Servers are a mix of web, file server, dhcp/dns/dc, and SQL.

Lastly, the chosen product should be compatible with Windows 08 server, as we may plan an upgrade on some of the servers soon.

Thanks.
 

chuck2002

Senior member
Feb 18, 2002
467
0
0
I was involved in the campus AV license for FSU and we had the same choice.
It came down to the three you mentioned, where Mcafee was currently licensed on campus. We also wanted antispyware, which wasn't in our campus agreement previously.
We sent out for bid to Mcafee, Sophos and Symantec, but doing for campus, the scale was for 50k plus devices.
Result: Symantec wasn't interested in putting out a price.
Sophos brought a price and we tested the product along with the management interface
Mcafee was cheaper.
We assumed both products have equal scanning capabilities, which may or may not be true depending on who you ask, but since it is a moving target, we had to equal the playing field and say they discover threats equally.
From an end user and management interface perspective, Mcafee wins hands down. The Sophos management interface was crummy. Truly crummy.
We decided to stick with Mcafee, as for the price it was a clear winner. Sophos would have had to be head and shoulders better and it simply was not as good.

We are currently running 8.7 AV with antispyware and ePO 4.0.
Also, we run Citrix servers and found that the Antispyware module add on was crushing the performance on these servers. Uninstalling antispyware for these servers fixed the issue. We have since placed a policy that no servers get the antispyware addon.
Otherwise 8.7 and ePO has been excellent for us.
 
Mar 26, 2008
148
0
0
We were using 8.0i on our servers as well but we would experience intermittent problems where some of our servers would lose their network connection and we would have to bounce them to regain the connection. After researching the problem we determined 8.0i was causing the problem. McAfee has a patch for the problem but it didn't really help much. So finally we decided to go with 8.5i which has been rock-solid. We have a mix of 2000, '03, and '08 and all are now using 8.5i.
 

mvbighead

Diamond Member
Apr 20, 2009
3,793
1
81
I will say that we have 8.5.0i; it is managed out of our corporate office, and the big issue we have with it is performance. It absolutely killed our file server, (which has dual Xeons in the +2.0GHz range), and also our older workstations have gotten to a point where they are almost unusable (Dell GX260s with P4 2.4GHz procs). Since I can't really configure any of the settings as an admin since it is managed elsewhere, all I can do is send feedback up the ladder and hope for some assistance. It isn't at all bad for current systems with Dual Core CPUs, but if you have single core CPUs, you might want to test it out if you can before you step up there.
 

drebo

Diamond Member
Feb 24, 2006
7,034
1
81
Symantec Endpoint Protection is a fantastic application. I recommend it for and sell it to all of our clients, and I recommend it here as well.
 

Emulex

Diamond Member
Jan 28, 2001
9,759
1
71
yup SEP is great. just disable everything but AV.

the small business version is really nice not so top heavy on administration server requirements.

been using sep11 since MR1 and quite honestly its just now getting stable on 2008 or x64.

one cool thing is that SEP will on clients protect its other symantec products. if you try to nuke a backup exec job on a client pc; tamper protection can block it. keeps idiots from stopping important processes.

SEP is also cool if both the server and client (over a network share) are using the same SEP it will not double scan if you desire.

overall a really wonky program but when its going smooth it does work quite well.

heed my warning on the server install just the AV and think carefully about the active-scanning.

p.s. SEP has client scanning of inbound and outbound mail (pop/smtp) and built in scanning in outlook ; iirc one of those products left that out. not all gateways catch all viruses 100% of the time; the outbound filter keeps folks from spamming since it effectively rate limits itself outbound
 

Matt84

Senior member
May 21, 2003
241
4
81
Originally posted by: mvbighead
I will say that we have 8.5.0i; it is managed out of our corporate office, and the big issue we have with it is performance. It absolutely killed our file server, (which has dual Xeons in the +2.0GHz range), and also our older workstations have gotten to a point where they are almost unusable (Dell GX260s with P4 2.4GHz procs). Since I can't really configure any of the settings as an admin since it is managed elsewhere, all I can do is send feedback up the ladder and hope for some assistance. It isn't at all bad for current systems with Dual Core CPUs, but if you have single core CPUs, you might want to test it out if you can before you step up there.

We had exaclty the same issues with McAfee 8.0 and 8.5 on our old single core developer workstations. It was so bad that compilation times of less than 1 minute with the resident protection disabled would take over 15 with it enabled.

Complaining to management fell on deaf ears until one ofour developers worked out that if you killed the McAfee Framework Service process, the central management program could no longer push out policy settings to that machine. From that point forward we could disable the resident scanner while compiling our applications and then turn it back on again after.

Once management found out about this they began to take the issue seriously. Now we have Sophos and it seems very light on resources compared to McAfee.
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |