Other Considerations; Anti-Virus Software; Data Execution Prevention (Dep); Patching - GE IPC2018 Deployment Manual

Table of Contents

Advertisement

5

Other Considerations

This chapter provides additional recommendations and frequently asked questions (FAQ).

5.1 Anti-virus software

GE encourages customers to use third-party anti-virus (AV) software of their choice and to keep it up-to-date with the latest
updates.
While GE does not specifically certify any particular anti-virus supplier's software, we do test our products with GE's
corporate standard (currently Sophos Antivirus) installed and running on all test and system lab machines. In the event there
is a Proficy product defect discovered while running any anti-virus software, GE will make all reasonable efforts to provide a
solution. However, if the issue is found to be based on specific behavior of the AV software, the customer might be advised to
work with the AV software vendor and/or switch to another AV software vendor to get resolution to their issue.

5.2 Data Execution Prevention (DEP)

GE products function with Microsoft Windows Data Execution Prevention (DEP) enabled and GE recommends that
customers enable this feature as an added protection against the exploitation of application security vulnerabilities such as
buffer overflows.
In the event there is a Proficy product defect discovered while running DEP, GE will make all reasonable efforts to provide a
solution.

5.3 Patching

5.3.1 Patching GE Proficy Software

GE recommends that customers keep Proficy software up-to-date by applying the latest Software Improvement Module (SIM)
to their deployed Proficy products. SIMs add new functionality, fix bugs, and address security vulnerabilities.
Security advisories and security-related SIMs can be found on the GE Support website at
http://www.geautomation.com/security.
Customers can also sign up for notification of new SIMs and security advisories on the website.

5.3.2 Patching third-party Software

GE recommends that customers keep operating systems, databases, and other third-party software in their environment
up-to-date with the latest security patches from the software vendor.
GE regularly validates the compatibility of selected GE products with third-party operating system security patches. For more
information on this process, refer to GE Support website at http://www.geautomation.com/security.
Other Considerations
GFK-3015 Secure Deployment Guide 15
For public disclosure

Advertisement

Table of Contents
loading

Table of Contents