Q:
What can Viewfinity products offer your organization?
A: Viewfinity offers uncomplicated systems and privilege management solutions to manage, support and control desktops,
laptops and Windows servers. Viewfinity is a single platform used for supporting both on-network PCs and mobile users through
which IT administrators can manage and control any computer over the WAN regardless of worker location.
Viewfinity offers true native remote systems management capabilities with absolute network independence;
there is no reliance on corporate network connectivity or VPN.
We offer a better method for mobile workforce management for patch management, software and OS deployment,
manage user privileges, troubleshoot and resolve problems faster, and more. Viewfinity also complements traditional
systems management, like SCCM and SMS, by offering the ability to flexibly manage administrator rights for locked
down computers. The software is intuitive and easy to use, and no training is required.
Viewfinity systems and privilege management solution can be delivered from a cloud hosted platform or installed on premises.
Practical Features and Benefits of Viewfinity Systems and Privilege Management
- Deploys software using only an Internet connection, no server is required
- Reaches and supports mobile workers who are disconnected from corporate network
- Provides OS image deployment
- Supports locked down, least privileges environments with management of privileges through granular regulation
of administrator rights
- Centrally manages all laptops and desktops on the application-level, even if the machine is located outside the firewall
- Provides central management of securing and patching all systems in the organization
- Remote desktop capabilities connect to remote computers locally or through the secure HTTPS tunnel
- Asset management prepares for software audits, reconciles purchases and helps forecast future software license
needs based on real-time usage information
- Saves money through automated power management policies
Q:
How can your product help my organization maintain our PC lockdown policy for laptops and desktops?
A: Through the use of automated policy settings, corporate guidelines can be established and applied for multiple dimensions of configurable, logical groupings: departments, applications, end users, connectivity status, time of day and more. Our Viewfinity Privilege Management offers a rich set of features that help IT and Business Managers ensure their organization is operating within a least privileged environment and according to legal parameters of software license agreements. Our software helps you to automatically manage your Windows application control policies dictated by corporate management and your legal department.
The following features are available to help meet your corporate compliance and security needs:
- Application Lockdown: Ability to reset changes to the individual applications to corporate standard. Provides IT department with ability to set protection on critical applications which should not be updated even if user posses local administrative rights. If Viewfinity detects that application configuration files, registry setting, dlls, or executables for any of these protected applications are modified, Viewfinity will automatically rollback the application to its protected state.
- Block Application: Using Viewfinity, the IT Administrator may establish policies that identify applications (by group if needed) that should be blocked from executing on corporate desktops and laptops. For example, the Brokerage division has a specific policy that prohibits any Instant Messaging software form executing. Viewfinity automatically enforces this policy for members of the Brokerage group, ensuring that these PCs are intact with corporate compliance regulations. Policies can be set for multiple combinations software such as Skype, ICQ, Yahoo Messenger, AOL, etc. Policies can also be flagged to unblock usage of specific applications while the end user is not connected to the corporate network.
- Elevate Privileges Certain applications and desktop functions (ActiveX, application, and printer installations) require local administrative privileges in order to run and function properly on a desktop or laptop. Most organizations consider this practice to be a security risk. Viewfinity solves this problem by elevating security rights to administrative levels per specific process. There is no need to jeopardize your network by granting full administrative rights to users just so they can run a business application that requires administrative privileges
- Activity Recording: Our real-time monitoring and recording of laptop, desktop and application events provides the administrator with a auditable record of all changes being made on the laptop or desktop. Viewfinity's precise activity recording feature provides a picture of all meaningful user/application activity for every laptop and desktop in easy-to-identify format.
- Policy Management: Viewfinity's policy management provides built-in, preconfigured capabilities for granular application-level control and policy customization to help control your desktop environment. Many conditions that formerly required complete lockdown in order to be enforced can now be implemented without creating excessive limitations on the end user machine. Supports multiple configurable options, by department/groups, time of day, connectivity status and more.
- Policy Auditing & Reporting: To ensure compliance, Viewfinity has built-in audit reporting that provides automated confirmation of delivery and enforcement of policies. Viewfinity provides detailed reporting on all administrator privilege policies, including an audit trail report that provides confirmation that a policy has been delivered and activated on endpoint devices. This includes validation of policy delivery to mobile and remote users, single or group of computers and/or for a specific application.
Q:
My mobile users have local administrative rights. I cannot revoke admin rights but at the same time I would like
to know when they install non compliant software on their computers so I could take action. Is this possible with your product?
A: Viewfinity supports auto notification upon installation of specified applications. Administrators may create a policy containing a group of applications which are not in compliance with internal corporate policies and receive notifications if these applications are being installed or launched.
Q:
I have a group of users who have local administrative rights on their computers. They can install any
applications on their computers, which may create security issues for our network. How Viewfinity can help to address this issue?
A: There are several ways to address this problem. Viewfinity's Block Application
or Hide Application Policy can be enforced. For example, an Administrator can create group of
Instant Messenger Applications (AOL, ICQ, Skype, etc.) and block/hide execution of these applications
either permanently or based on time schedule/connectivity status/group.
Q:
I am running a locked down desktop environment. Granting local administrative rights is against company policy.
I have a specific group of users who need to run an application which requires local administrative rights in
order to run and execute specific functions. Can Viewfinity help me to preserve compliance on my desktops while
still allowing this group of users to run this application?
A: Yes. Any policy can be created to elevate privileges for applications requiring administrative rights and applied to groups of computers. There is no need to grant admin rights to the end users. Viewfinity will raise security rights only for the individual application requiring such privileges.
Q:
What other functions are available using the Privilege Management feature?
A: Viewfinity supports a variety of management functions for which privilege elevation can be applied.
Among these options are: Printer installations, Microsoft Management Console, Power Options,
ActiveX installation, Approval of certain application installations, and many others.
Q:
When Privilege Elevation technology is applied to certain a process, will the process execute under the credentials of the Administrator?
A: When permissions are raised, the elevation is performed directly within the security token of the user account. The application or process is started using the current user credentials as opposed to using RUN AS which needs the Administrative account in order to raise privileges.
The RUN AS method potentially introduces security risks if administrator's password is provided.
Q:
Do I need to logout in order for a Policy to be enforced?
A: No. Any Viewfinity policies, including Privilege Management, Lockdown, and Block are delivered in real time and do not require users to logoff/login in order to take effect.
Q:
If my clients are located outside of the corporate network and are not connected through a VPN, can I still deliver policies?
A: Yes. Polices can be delivered over a standard internet connection.
Q:
What if my client is working off-line (not connected to internet or corporate network)? Will the policy still function?
A: Yes. As long as the policy was delivered, the Viewfinity Agent will make sure that the policy is always functioning, even on a disconnected PC.
Q:
I am managing multiple remote small offices. My clients do not have Active Directory. Can I still use your product
in order to deliver policies and distribute software?
A: Yes, Viewfinity supports all product functions for both Active Directory and workgroup clients.
Q:
How can I be sure that Privilege Management and other policies such as Block have been delivered and executed
properly on a large group of users/computers?
A: Viewfinity provides detailed reporting on all administrator privilege policies, including an audit trail report that provides confirmation that a policy has been delivered and activated on endpoint devices. This includes validation of policy delivery to mobile and remote users, single or group of computers and/or for a specific application.
Q:
Can I audit specific desktops for suspicious activity? For example, internal data copy, deletion, etc.?
A: Yes. Viewfinity's Activity Recording feature records on a desktop level all activity generated by users including file copy, move, and delete events, using external devices such as USB, installation of software, etc.
Q:
My company's polices don't permit use of Instant Messenger inside the corporate network. However,
I would like to allow the use of Skype for some users. It is difficult for the IT team to maintain such a setup.
Can Viewfinity help me?
A: Yes. Viewfinity allows for very flexible application policies. For example, a block policy can be created to block usage of certain software only when a computer is authenticated against the internal Active Directory or network. At the point when a computer is disconnected, applications can be automatically unblocked without any manual steps from the IT team.
Q:
I would like to allow my clients to use only approved applications and want to make sure that no non-approved applications sre used.
Can Viewfinity help me?
A: Yes. Viewfinity supports a "white list" mode in which the Administrator can create a policy and list approved applications. All other applications will be automatically blocked.
Q:
My users have local Admin rights and can make changes to Applications and the OS.
I have a business critical application for which I would like to maintain a "golden state" and not allow
changes to configuration and look and feel. Can Viewfinity help me?
A: Yes. The Lockdown feature supports the ability to reset changes to individual applications to certain
standards defined by IT. If the Viewfinity software detects that application configuration files,
registry setting, dlls, or executables for any of these protected applications are modified, Viewfinity
will automatically return the application to its protected state.
Viewfinity is a single platform used for supporting both on-network PCs and mobile workforce management for patch management, software and OS deployment, manage user privileges, troubleshoot and resolve problems faster, and more. All laptops, desktops and servers are managed at the application-level, and our platform architecture allows management of both mobile and on-network computers using only an internet connection (no VPN needed).
Below are examples of our features that help administrators solve IT problems each and every day:
Software Deployment: The Viewfinity service-platform allows for unattended and transparent software distribution. No more desk-side visits are necessary, thereby eliminating lengthy software installation and configuration projects. Using our intuitive wizard interface, software can be scheduled for targeted groups of computers either for local distribution or IT Administrators may use our cloud-computing platform for storing software packages and functioning as the distribution point.
OS Deployment:Using Acronis' award-winning disk imaging technology, Acronis Snap Deploy creates an exact disk image of the standard configuration, including the operating system, configuration files and all applications. It then deploys that image to multiple systems simultaneously, making it ideal for rapid bare-metal installations.
Asset Management: provides the ability to dynamically collect an accurate and real-time inventory of your entire computing infrastructure such as hardware and deployed software along with associated procurement details necessary for software compliance regulations. Automatically update the inventory report when a laptop reconnects to the corporate network.
Patch Management: enables IT administrators to deploy the latest Microsoft product updates to both Microsoft Windows Servers and Windows XP, Windows Vista and Windows 7 client operating systems. By following Microsoft’s lifecycle support for operating systems, Viewfinity ensures that the all supported operating systems and applications can be secured through patch updates.
Remote Desktop built-in remote access capabilities enable you to work on a remote computer as if you were sitting right in front of it. Leveraging a standard internet connection to reach end users regardless of their location, Remote Desktop allows you to access desktops owned by your organization via the Internet or LAN. Remote Desktop uses SSL (HTTPs) protocol to ensure your privacy is secured and protected.
Activity Recording: real-time monitoring and recording of laptop, desktop and application events provides complete record of all changes being made on the laptop or desktop.
Rollback: Administrators can rollback specific Windows settings and personality settings independently of other applications. Rollback enables these precise rollback functions: End User Personality Setting Rollback and Centralized System Restore.
Dashboard: The Viewfinity Systems Management console provides a quick view into the operations and status of the company assets through the Viewfinity Dashboard. The Viewfinity Dashboard technology allows a Viewfinity administrator to completely customize what is shown based on company specific needs and requirements through the use of graphical web panes. Each web pane is capable of showing any type of reporting data defined by the Viewfinity administrator.
Q:
How can I deliver a software package to internal and external clients who are not connected to my network?
A: Viewfinity supports several methods of software delivery. One option provides the ability to push the package from an internal UNC path (for internal users). The package can also be uploaded to Viewfinity's web-based computing platform and then scheduled for delivery to external clients via an internet connection.
Q:
My external clients are not always connected to the internet. How can I make sure that the software package will be delivered?
A: Viewfinity's Package Task Delivery option supports time scheduler for software delivery and also has an option to configure Retires of software delivery. When disconnected computer will appear will connect to internet the software package will be delivered.
Q:
I have custom and home-grown applications. Can Viewfinity create MSI setup files?
A: Presently Viewfinity does not generate MSI installation files but it does work with existing packages (MSI, EXE, VB, BAT) and supports delivery of these packages.
Q:
I scheduled several Software Distribution tasks. How can I track the delivery status?
A: Viewfinity tracks the status of software packages at all phases of delivery. Real time reports can be executed which will show the current progress of the delivery task and final status, whether it succeeded or failed.
Q:
Can I use your product to identify what type of software and hardware is deployed in my environment?
A: Yes, we have an Asset Inventory module built-into the Viewfinity product. Our inventory metrics generate meaningful reports needed by IT and business decision makers so you can make informed decisions about your IT investments. Asset Inventory includes records about Applications, Hardware, Network, Service, Drivers, user group, etc.
Q:
I would like to identify how often certain applications are being used by a group of users. Is this possible?
A: Yes, Viewfinity's Application License & Usage Report can generate real-time statistics which will display frequency of usage of selected applications by time period on a group of computers.
Q:
I need to customize how patches are deployed in my company. Does Viewfinity allow me to set schedules for patch deployment?
A: Viewfinity Patch Management enables an organization to fully manage the distribution of updates that are released through Microsoft Update to computers that are on your network as well as mobile computers not connected to the internal network.
Q:
What operating systems are supported by Viewfinity Patch Management?
A: Viewfinity Patch Management enables IT administrators to deploy the latest Microsoft product updates to both Microsoft Windows Servers and Windows XP, Windows Vista and Windows 7 client operating systems. By following Microsoft’s lifecycle support for operating systems, Viewfinity ensures that the all supported operating systems and applications can be secured through patch updates.
Q:
Can I keep track of the status of patch distributions with Viewfinity Patch Management?
A: Yes. Viewfinity provides stock reports for patch management, including existing patch levels, and patch distribution and status, but also includes the ability to create new reports and customize existing ones. Also, Viewfinity Systems Management provides a Dashboard technology that gives the ability to create on-screen real-time status updates for vulnerabilities, unpatched systems, and overall patch process status.
Q:
Some of my client computers are not AD members. Can I deliver patches to these machines?
A: Yes. Viewfinity supports both type of clients: AD members or clients outside of AD.
Q:
I created a Dashboard View of computers missing critical patches. Can I view this information in a real time?
A: Yes. Viewfinity Dashboard supports 2 options how information can be updated. The updates can be automatic based on real time changed or updated can be manually updated by a system administrator.
Q:
I would like to identify how often certain applications are being used by a group of users. Is this possible?
A: Yes, Viewfinity's Application License & Usage Report can generate real-time statistics which will display frequency of usage of selected applications by time period on a group of computers.
Q:
I would like to track application license usage. Is this possible with your product?
A: Yes. Viewfinity License Management provides detailed information regarding the actual usage of applications and cross-references usage with the amount of licenses owned. With this side-by-side display of licenses owned compared to actual usage, companies can control and administer software license allocation based on application usage activity and eliminate the need to pay for licenses that aren't being used.
Q:
I read that the Activity Recording feature has the ability to perform screen recordings (video clips) and/or thumbnail
screen shots based on desktop activity. This is very helpful for the system administrator who is troubleshooting
issues but for my organization it could raise privacy issues. How can this concern be addressed?
A: While we believe that specific activity screen recordings and thumbnail screenshots are great troubleshooting tools (and help with compliance) we realize that privacy is critical for some situations. The product is configurable to meet your specific requirements. Screen recordings can be enabled or disable for a single user or group of users.
Q:
I lost some of my personal settings, specifically my network printer and group network drive. Can I use Viewfinity Rollback
function to restore these settings?
A: Yes. Viewfinity tracks activity related to changes in the user profile and supports restoration of changes related to local settings such as: mapped drives, network printers, desktop look and feel, customized application settings, etc.
Q:
How far back can I rollback changes which have occurred on my desktop?
A: Viewfinity allows flexible, configurable options by client or group that control the rollback capacity based on time or allocated disk space.
Q:
I don't have network access to mobile laptop users. Can I rollback my entire OS to a certain point in time?
A: Yes. Viewfinity offers a Central System Restore feature, which is integrated with Microsoft System Restore. Because of Viewfinity’s HTTPs secure tunneling model, a direct connection between the user and the administrator is not required. System Restore procedures can be executed over an internet connection without needing to establish a Remote Desktop session.
Q:
I executed a rollback and would like to verify that the laptop is now fully operational but it is presently
not connected to the corporate network. Is there a way to connect to this laptop using Viewfinty?
A: Yes. Viewfinity has built in Remote Desktop capabilities that connect via a HTTPs tunnel. Your client PC can be located inside or outside of the corporate network.
Q:
Do I need to open any firewall ports in order for Remote Desktop to work?
A: Viewfinity's Remote Desktop uses default ports 80 and 443 for establishing a connection. There is no need to open any additional ports unless the default HTTP ports 80 and 443 are blocked.
Q:
I am connected to an endpoint client with Viewfinity's Remote Desktop. Can I transfer files to the desktop?
A: Yes. Viewfinity's Remote Desktop establishes a HTTPS tunnel connection between the
administrator and client machine and allows copying files between local drives.
Q:
Please describe Viewfinity's web-hosted management platform.
Q:
How difficult is it to deploy Viewfinity using the hosted model?
A: Implementing Viewfinity is a transparent process. In four easy steps, you will be up-and-running and managing your desktops in less than 10 minutes. Viewfinity's products are deployed using your existing AD and network infrastructure and will reach any and all end-points from a single point. Viewfinity's agents are installed only on-demand, thus no manual intervention is needed for deployment, upgrades, maintenance and uninstall of the agents.
Q: What is Viewfinity's Security Policy?
A: Viewfinity uses advanced technology for Internet security. When you access the Viewfinity Site using a web browser,
128 bit Secure Socket Layer (SSL) technology protects your information. Using both server authentication and data
encryption, SSL ensures your data is safe, secure, and available only to registered Users in your organization.
Viewfinity servers are hosted in a secure server environment that uses a double layer firewall
infrastructure - a physical firewall at the data center and another software firewall on Viewfinity server.
Other advanced technologies to prevent interference or access from outside intruders are also utilized.
Note: the Viewfinity Web-hosted Service is not used to host customer data other than what is necessary for user
authentication and basic computer inventory information.
Q:
We would like to deploy Viewfinity solution internally in our organization. Is it possible?
A: Yes. Viewfinity supports 2 types of deployment. 1) Web-hosted delivery platform where server infrastructure is hosted by Viewfinity; 2) On-premise installation where the Viewfinity software is hosted internally within your organization.
Q:
What is involved in deploying Viewfinity platform inside of my organization?
A: Typically you need Windows Server, SQL Express or Full version of SQL, IIS and Viewfinity program. Please contact Viewfinity for more information.
Q:
I would like to host Viewfinity internally in my organization but I have many mobile employees.
Is it possible to support mobile machines with an internally hosted platform?
A: Yes. The Viewfinity server can be placed in DMZ zone and as long as long as the IIS server is a public internet-facing server, mobile clients can be supported and managed in the same fashion as our fully functional web-hosted delivery model.
Q:
I have remote users working from home. How can I deploy the Viewfinity agent on their computers?
A: Administrators simply generate a web link and email it to the remote end user. The end user would then click on the link,
download the client agent and install it on the remote computer.
Viewfinity also supports other methods of client deployment:
- Automated discovery of your Active Directory, Network subnets and client installation
- Administrators may download our agent and deploy it using other methods that are already in place for software distribution
Q:
Can I manage laptops/desktops outside of my corporate network?
A: Yes. Using the Viewfinity cloud-computing platform, Viewfinity can be up and running
quickly to provide management, support and control for desktops, servers and laptops the moment an internet
connection is established.
This makes it extremely cost effective and easy for IT to support local as well as mobile workers.
Q:
How many client connections can the Viewfinity service handle?
A: The Viewfinity Web-hosted infrastructure can scale to manage the number of clients you have in your organization.
Q:
Where does Viewfinity store the record of desktop activities and events? Is this data transferred to the Viewfinity web server?
A: No. All laptop and desktop activity and event changes are stored locally on the client PC. This protects
the organization by ensuring that all activity remains locally secured and that bandwidth is not highly utilized.
When an end user requires assistance, the IT administrator will access, via the Viewfinity management console,
all details related to a specific computer and will perform corrective actions directly on the desktop without
transferring data over the internet.
Q:
What type of security technologies are used to secure connection between internal clients and hosted Viewfinity platform?
A: Viewfinity uses advanced technology for Internet security. When you access the Viewfinity Site using web browser, 128 bit Secure Socket Layer (SSL) technology protects your information. Using both server authentication and data encryption, SSL ensures your data is safe, secure, and available only to registered Users in your organization. In addition, other advanced firewall technologies are utilized to prevent interference or access from outside intruders.
Q:
Does my laptop need to be connected to the Viewfinity management server for the Desktop Virtualization to function?
A: No. It is not necessary to always be connected. The Viewfinity agent running locally on the desktop/laptop will enforce polices and maintain its encapsulated state.
Q:
If I want to host the Viewfinity server internally is it possible?
A: Yes. Internal implementation of the Viewfinity product is available. Please contact Viewfinity Sales for more details at info@viewfinity.com.