课程: ISC2 Certified Information Systems Security Professional (CISSP) (2024) Cert Prep

免费学习该课程!

今天就开通帐号,24,600 门业界名师课程任您挑!

Application management

Application management

- [Instructor] One of the best ways to protect against malicious software is to prevent users from running unwanted applications with a technology called application control. Application control restricts the software that runs on a system to programs that meet the organization's security policy. There are two main approaches to application control, whitelisting and blacklisting. In the whitelisting approach, administrators create a list of all the applications that users may run on their systems. This works well in a very tightly controlled environment, but it can be difficult to administer if you have many different applications and roles. The blacklisting approach offers users much more flexibility. Instead of listing the applications that users are allowed to run, administrators list prohibited applications instead. This is much easier for users, but it reduces the effectiveness of application control. I do want to take a minute to note that many cybersecurity professionals find…

内容