Policy -> Update

Keeping endpoint protection current is essential to staying ahead of emerging threats. The Update policy allows the admin to configure how endpoints receive virus definition and product updates, whether from the internet or a local LAN server, and to set a schedule so updates are applied automatically without manual intervention.

Key Features

  • Flexible Update Source: Choose to update endpoints directly from the internet or from a local LAN server, reducing internet bandwidth usage across the organization.
  • Proxy Support: Route update traffic through a proxy server for environments with restricted internet access.
  • Post-Update Memory Scan: Automatically scan endpoint memory after every update to catch threats that may already be active in memory.
  • Scheduled Updates: Set updates to run on a daily or interval basis at a defined time, ensuring endpoints always stay current.
  • Pre-Update Backup: Optionally back up the existing update files before downloading new ones.
  • Internet Update Control: Block internet-based updates entirely when updates must be sourced only from the LAN server.

Configuring Update Settings

To configure how endpoints receive updates, follow these general steps:

  1. Navigate to Policy > Update tab.
  2. Select the checkbox next to Update settings to enable the section.
  3. Choose the update source from the Update from dropdown.
  4. If updating from a LAN server, specify the Network Path.
  5. Select the appropriate Proxy server option.
  6. Enable Scan memory after update (Windows) if required.
  7. Click Save & Next.

Update from

Defines the source from which endpoints download updates:

  • Internet: Endpoints fetch updates directly from NPAV’s update servers over the internet.
  • LAN Server: Endpoints fetch updates from a local server on the network, reducing internet bandwidth consumption. When selected, the Network Path field becomes active and must be specified.

Network Path

Specifies the shared folder or LAN server location from which endpoints should pull updates when Update from is set to LAN Server.

Proxy server

Determines whether update traffic is routed through a proxy:

  • Direct: Endpoints connect directly to the update source without using a proxy.
  • Proxy: Endpoints route update requests through a configured proxy server, typically used in networks with restricted direct internet access.

Scan memory after update (Windows)

When enabled, the endpoint automatically scans system memory immediately after applying an update, helping detect any threats that were active in memory before the latest definitions were installed.

Update Schedule Setting

The Update schedule setting section lets the admin set how often NPAV updates are checked for and applied on endpoints, either on a daily basis or at fixed intervals.

Type

Defines the update frequency:

  • Daily: Updates are checked for and applied once every day at the time specified.
  • Interval: Updates are checked for and applied repeatedly at a fixed time interval.

Time (Hrs / Min)

Specifies the exact hour and minute at which the scheduled update should run, allowing the admin to time updates outside of peak business hours.

Additional Options

  • Take backup before downloading new updates: When enabled, the current update files are backed up before new updates are downloaded, allowing a rollback if a new update causes issues.
  • Block Internet Updates: When enabled, endpoints are prevented from fetching updates over the internet, useful when the organization wants to enforce updates only from a LAN server.