Specialists in IT Security, System Migration,
Wintel Design.

Supportspread Banner Pictures

Sanctuary - Introduction

Sanctuary - A Lumension Brand®

Supportspread’s consultants have successfully worked with numerous small and large scale organisations to deploy the Sanctuary products to tens of thousands of end users. Our work on these assignments has included all aspects such as the solutions design, the program definition and the deployment of clients.

Our client base range from small clients to desktop environments in excess of 100,000 users.

Having designed systems for large banking environments to government clients, our skilled staff can assist with the development and installation of Sanctuary products to suit both your business and security requirements.

Deliverables also include knowledge transfers to allow clients to gain the maximum potential from the delivered solution.

  • Design the solution
  • Advise on the project timescales and requirements
  • Deliver the solution on time and within budget

Supportspread offer the following design phases to all Sanctuary clients - :

Pilot – Proof Of Concept Phase.

Complete analysis of the client’s environment, design of a test environment to test client’s hardware and software against both Device and Application control prior to implementation onto the live estate.

Phase 1 - Infrastructure Design

The successful deployment of the Sanctuary Device Control and Application Control software requires a highly available infrastructure. This phase of the service will examine the existing infrastructure and tailor the design for the Sanctuary software installation to make the most efficient use of available resources. The output from this phase will be a viable design for hardware and software to build a robust infrastructure for the Sanctuary platform.

Phase 2 - System Build

This phase of the project will install new systems, operating systems and third party software. Testing will be performed to ensure all components communicate as required. All installations will be documented with the documentation included in the handover to the customer.

Phase 3 - Policy Configuration and Roll-Out to an initial group of Devices and Applications

Supportspread will work closely with the nominated representative from the customer to determine the policy for the Sanctuary Device control software. The policy design work will ensure that the policies are complementary with any relevant policies or procedures the customer has in operation.

Once the policies have been designed and agreed, they will be rolled out to the target systems. It is expected that there will be a period of monitoring and to allow any fine-tuning of the policies to take place. Once confidence has been gained from the system it will be appropriate to commence Phase 4.

Phase 4 - Policy Configuration and Roll-Out to the Remaining Devices

On the successful completion of Phase 3, Phase 4 will roll-out the Sanctuary Device control software to the remaining users and computers included in the Pilot exercise.

In addition to our demonstrated abilities we also have the potential to:

  • Provide Project Management for large deployments
  • Provide guidance on policies, procedures and working practices to support the products and BS7799 - ISO 17799

Supportspread have the skills in-house to build and deploy systems, perform software installations and configurations.

The Sanctuary products from Lumension dramatically reduce the costs of securing your business.

The reasons why are both compelling and straightforward. Sanctuary gives you control of your desktop and server environments.

It enhances productivity because external and internal distractions aren’t allowed to execute at will. And, by preventing intrusion of your business through ‘backdoor’ programs, Sanctuary minimises the threat of losing sensitive information that could result in a serious competitive disadvantage, high legal costs or a severe rupture of credibility.

The Sanctuary product set consists of the following:

Sanctuary Standard Edition

Prevents/denies unwanted executables within all workstations.

Sanctuary Custom Edition

Enforces a granular policy over user/user groups and their use of specific applications to match complex and distributed enterprise environments.

Sanctuary Terminal Services Edition

Extends the power of Sanctuary to the complex thin client terminal environment by providing granular application and access control over users on business critical terminal services, enhancing availability and stability.

Sanctuary Server Edition

Prevents/denies unwanted executables within server environments, stopping attacks on mail servers, CRM applications, web and other critical database servers.

Sanctuary Device Control

Establishes and enforces granular policy about which devices can be used by whom, as well as how and when they can be used.