Link to home
Start Free TrialLog in
Avatar of Pau Lo
Pau Lo

asked on

AV on internet-facing servers

Is there any logic why you would not put AV apps on internet-facing web servers? I would have thought due to their public exposure they are a higher risk for AV infection.
ASKER CERTIFIED SOLUTION
Avatar of David Johnson, CD
David Johnson, CD
Flag of Canada image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Services have errors, all the time. So if your webserver suffers from some 0-day explout, attackers might be able to run code using the service account (of the web service). Not quite what I'd call "low risk". AV software might stop that code.

But AV software is not the best measure. You should turn on applocker and whitelist only the components needed by the web server.