DEVICE IMAGING AND INTEGRATION Palo Alto Traps POC · Swearingen attended a WebEx conference call...

10
Device Imaging and Integration Posted by April 27, 2018 Lillie Swearingen, Technical Analyst DEVICE IMAGING AND INTEGRATION Palo Alto Traps POC Monday, Larry Barrios, Anthony Melton , and Lillie Swearingen had a conference call with representatives from Palo Alto Networks regarding setting up a Traps Endpoint Protection Proof of Concept. It was decided the POC would start on Thursday. Anthony and Lillie on the Conference Call Thursday, representatives from Palo Alto Networks came on-site to set up the Traps POC. Lillie Swearingen created an Ivanti package and pushed the Traps software to a lab at ISC-W and a lab at Jersey Village High School. Anthony Melton operated the Traps Console and set up a “learning” environment as well as a “prevent” environment for the POC. The learning environment was set on computers for the beginning of the POC. This allows Traps to gather data about PC usage and threats. Anthony and Lillie at the POC

Transcript of DEVICE IMAGING AND INTEGRATION Palo Alto Traps POC · Swearingen attended a WebEx conference call...

Device Imaging and Integration

Posted by April 27, 2018Lillie Swearingen, Technical Analyst

DEVICE IMAGING AND INTEGRATION

Palo Alto Traps POC

Monday, Larry Barrios, Anthony

Melton, and Lillie Swearingen had a

conference call with representatives

from Palo Alto Networks regarding

setting up a Traps Endpoint

Protection Proof of Concept. It was

decided the POC would start on

Thursday.

Anthony and Lillie on the Conference Call

Thursday, representatives from Palo Alto Networks

came on-site to set up the Traps POC. Lillie

Swearingen created an Ivanti package and pushed

the Traps software to a lab at ISC-W and a lab at

Jersey Village High School. Anthony Melton

operated the Traps Console and set up a “learning”

environment as well as a “prevent” environment for

the POC. The learning environment was set on

computers for the beginning of the POC. This

allows Traps to gather data about PC usage and

threats.Anthony and Lillie at the POC

Device Imaging and Integration

Posted by April 27, 2018Lillie Swearingen, Technical Analyst

DEVICE IMAGING AND INTEGRATION

Palo Alto Traps POC

For the POC, the team first installed a

malware that was “known” to Traps

WildFire cloud-based threat analysis

service. Traps captured it and provided

full details on the type of malware and

performed a quarantine.

Palo Alto Reps with Anthony and Larry

Next Steps:

1. Monitor the Traps Console during the POC.

2. Monitor any incidents on endpoints that might hinder use.

3. Review the results of the POC.

Anthony Infecting a Computer

Then, the group created a new, mutated malware unknown by

WildFire. Traps again captured the malware but categorized it as

“unknown”. Our system, using Traps, sent information about the

malware for analysis through WildFire and within five minutes, it

was discovered as “known” with a full detailed report on what the

malware would do to the computer and files if allowed to infect.

Device Imaging and Integration

Posted by April 27, 2018Lillie Swearingen, Technical Analyst

DEVICE IMAGING AND INTEGRATION

CyLance Conference Call

Next Steps:

1. CyLance will provide a quote by

Monday, April 30th.

2. A POC will be setup for on-site

testing of the product.

3. POC results will be considered

and compared against Palo Alto

Network Traps moving forward.

Nancy, Anthony, and Lillie

Larry Barrios, Anthony Melton, Nancy Grella, and Lillie

Swearingen attended a WebEx conference call with

CyLance regarding their threat prevention solution. A

quick demonstration of the Console was given and

questions were answered regarding the product, including

cloud versus on-site solutions, deployment of the

software, and the possibility of a Chromebook solution in

the future.

Device Imaging and Integration

Posted by April 27, 2018Lillie Swearingen, Technical Analyst

DEVICE IMAGING AND INTEGRATION

CFPD ARMS Update

Anthony Melton installed

eleven prerequisites for ARMS

2018 on 145 officer laptops.

These prerequisites are

required for the ARMS 2018

upgrade. Now that they are

complete, the server can be

upgraded as well.

Installing ARMS Prereqs

Device Imaging and Integration

Posted by April 27, 2018Lillie Swearingen, Technical Analyst

DEVICE IMAGING AND INTEGRATION

Transportation Support

Lillie Swearingen travelled to each Transportation Center this

week to upgrade and re-license the Cummins bus diagnostic

software.

She was also trained by Tony at NW Radio on how to add and

remove busses from the database on KAS-10, a software and

radio setup that records bus-to-bus, dispatch-to-bus, and bus-

to-dispatch communications. A record of each communication

is displayed on screen and can be played back as necessary.

Lillie and a Bus

Tony at NW Radio with a KAS-10 Setup

Device Imaging and Integration

Posted by April 27, 2018Lillie Swearingen, Technical Analyst

DEVICE IMAGING AND INTEGRATION

Natatorium Camera Demo

Anthony Melton visited Director Jonathan Mayer and Coach Amanda Brush about their needs for

a solution to record dives for training and playback at the Pridgeon Stadium Natatorium. They

were in need of a camera and television in a specific area. After speaking with the Security

Department and CFISD Police Department, Anthony was given a camera to use as a demo

before Coach Brush purchases a camera and hires someone to mount the equipment. They will

also need to test a jump from the diving board to be recorded for the demo. Nothing will be

finalized until the demonstration is successful.

Camera for DemoPridgeon Stadium Anthony in the Natatorium

Device Imaging and Integration

Posted by April 27, 2018Lillie Swearingen, Technical Analyst

DEVICE IMAGING AND INTEGRATION

Voice of the Technician Meeting

Lillie Swearingen presented at Wednesday’s Voice of the Technician Meetings. She

covered upcoming Ivanti Level 2 Certification training sessions, tips to help pass the

Ivanti Level 2 Certification test, status of Ivanti Level 3 Certification sessions, upcoming

DII and Technician Zoom meetings, the Windows 10 Troubleshooting Certification

training and whether or not these Microsoft sessions would be useful to Technicians in

the future. The majority of Technicians said they would attend future Microsoft training

sessions and would be willing to provide input as to what should be included in the

training.

Lillie Presenting

Device Imaging and Integration

Posted by April 27, 2018Lillie Swearingen, Technical Analyst

DEVICE IMAGING AND INTEGRATION

Google Meeting

Larry Barrios and Nancy Grella met

with Becky Cook, Jessica Powell,

and Danielle Haynes of ITS to

discuss turning on Team Drive for

administrators now and then next

year for teachers.

They also talked about issues with

playing videos due to YouTube

blocks through the filter. Greg

Rhodes (NMO) will need to be

involved in future discussions

regarding this issue.

Nancy, Jessica, Becky, Danielle

Device Imaging and Integration

Posted by April 27, 2018Lillie Swearingen, Technical Analyst

DEVICE IMAGING AND INTEGRATION

DII & Technician Zoom Meeting

Derly Buentello, Anthony Melton, and Larry Barrios hosted a

Zoom meeting with multiple Technicians. They covered campus

testing support, campus network support, Microsoft Windows 10

training, and then had an open forum for questions.

Feedback from the Zoom meeting was highly positive and these

meetings will continue in the future.

Take Aways:

1. Choose a location for the next Zoom meeting with

less background noise.

2. When inviting high school Technicians, include

both Technicians from the campus.

3. Confirm training content is provided to Technicians

prior to the training session.

4. Provide a computer with a built-in camera for all

Technicians.

Device Imaging and Integration

Posted by April 27, 2018Lillie Swearingen, Technical Analyst

DEVICE IMAGING AND INTEGRATION

Whereabouts Meeting

Larry Barrios, Nancy Grella, Derly Buentello, and Daniel met with John Crumbley

and Eric May of ISA to discuss Whereabouts Mobile Deployment. The Android

app is ready for DII to test for the use case of employee site location sign-in and

sign-out. For school campus check-in visits, the finalized app name will be

Campus Visit Sign-In. DII will work with ISA to provide end-to-end AirWatch

support. For Staff Development visits, the finalized app name will be Staff

Development Sign-In. Again, DII will work with ISA to provide end-to-end

AirWatch support. Larry and John are to develop a purchase package for the

district staff.