Remote Monitoring & Management Help

Configure Antivirus Alert suppression

There can be multiple antivirus pattern files released throughout the space of a day and this can potentially lead to the failure of the Antivirus Update Check where the version discovered on the device differs to the file the vendor reports as the latest release.

To handle this type of scenario, you can set the number of consecutive failures before the antivirus product is reported as failed on the Dashboard and an Alert generated (where configured).

This setting is configured in the Dashboard and available at the global - against all monitored servers and / or workstations - or device level.

Please be aware that manually re-running the Check will contribute to the number of consecutive failures count.

The number of consecutive failures replaces the previous number of days setting for the Antivirus Update Check.

Global Configuration

  1. Log into the Dashboard
  2. Go to Settings
  3. Alerts
  4. Alert Policy
  5. Under the Server Alert Thresholds and / or Workstation Alert Thresholds tab (depending on the device types you wish to configure)
  6. Click the Antivirus Update Check drop-down in the Checks section
  7. Select the number of consecutive failures before the Antivirus Update Check is reported as failed and an Alert sent (where configured)
  8. OK to exit the dialog and save changes

new_settings_alerts clip0869

Device Configuration

  1. Log into the Dashboard
  2. Right-click on the target device in the north pane (or from the Server, Workstation or Device drop-down)
  3. Select Edit Device type
  4. Go to Alert Policy
  5. Click the Antivirus Update Check drop-down in the Check section
  6. Select the number of consecutive failures before the Antivirus Update Check is reported as failed and an Alert sent (where configured)
  7. OK to exit the dialog and save changes

clip0870

Display definition file information on the Dashboard

Information on the discovered definition file (version, release date etc.) is available by clicking the Extra link beside the target Antivirus Update Check. This opens the More Information dialog with the discovered definition file highlighted. Where we were unable to retrieve the definition file version this is indicated in the dialog with a question mark.

av_dsc_checks

From Dashboard 6.46 the legacy Norman and CA products will no longer display the version details in the More information dialog.