Wednesday, November 16, 2011

(T3): MAV-Only Deployment




MAV can be deployed to computers that you don’t do any type of monitoring on.  By deploying in this manner, the only charge incurred for this installation is the MAV cost.


In order to ensure that no additional charges are applied, the Advanced Monitoring Agent should be installed on the client computer using an Installation Template configured with ZERO CHECKS.  If the agent is NOT installed that way, charges for the automatically discovered checks will be incurred (as well as Activation Charges on Server Agents) for the first month; even if the checks are immediately deleted from the dashboard. 
For best results, configure the Site in the Dashboard with the Zero-check template before doing anything else.  This ensures that even a silent installation of the agent will have no checks enabled.  Also, be sure to disable any other features (Take Control or Patch Management) for that Client or Site.
Charges for the checks associated with Managed Antivirus (Managed Antivirus check, Windows Service Check and Antivirus Update check) will be suppressed. Servers using Managed Antivirus only will not be charged an Activation Fee or Dashboard Charge until such time as they add another monitoring check or device feature (Take Control or Patch Management) as outlined below. 

On a server, adding any one of the following items via the dashboard will add that specific charge only to the agent cost.  This is still considered a “MAV-only” installation.
  • SMS alerts
  • 5 minute monitoring
  • Client Dashboard access
  • Client Daily/Weekly/Monthly reports
On a workstation, adding any one of the following items via the dashboard will add that particular charge only to the agent cost.  This is still considered a “MAV-only” installation.
  • 30 minute monitoring
  • Client Daily or Weekly reports
On a server, adding any one of the following items to the installation will add that charge AND Activation Fee (regardless of installation date) and the Dashboard Access charge.  This is no longer a “MAV-only” agent.
  • Another monitoring check
  • Take Control
  • Patch Management
  • Automated Task
On a workstation agent, adding any one of the following items to the installation will add that charge only.  (There are no activation or dashboard access charges on Workstation Agents anyway.)  This is no longer a “MAV-only” agent.
  • Another monitoring check
  • Take Control
  • Patch Management
  • Automated Task
By utilizing the GFIMAX Dashboard, you now have a centralized location/platform to deploy, manage, and re-mediate security concerns stemming from viruses and malware, without any of the overhead that comes with larger deployment configurations that require local console controllers.

4 comments:

  1. Does this apply to MOB only installs too?

    ReplyDelete
    Replies
    1. Yes, the process for a "MOB-Only" setup is about identical: simply replace references to "MAV" with "MOB"

      Delete
  2. It seems that by default the patch management installed with the MAV only configuration I used from another article... Does this happen by default and is patch management "charged"

    ReplyDelete
    Replies
    1. Yes, you should go through each of the features and ensure the policies are set to "OFF" for the level you're deploying MAV-only.

      A few versions after the publication of this article, the default configuration of Patch Management was changed to be ON in a "report only" type mode. No alerts are enabled, and all approval and deployment is set to MANUAL.

      As indicated, if it is ON, it's chargeable as well as "defeating" the MAV-only setup.

      Delete