zotdefend
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
zotdefend [2025/05/30 16:29] – [2. Enforcement of more strict security standards] jnilsson | zotdefend [2025/06/30 13:06] (current) – [Method One (preferred): Book an appointment with SSCS] jnilsson | ||
---|---|---|---|
Line 1: | Line 1: | ||
====== ZotDefend security package information ====== | ====== ZotDefend security package information ====== | ||
- | {{:: | + | [[https:// |
- | Below you can find a brief summary of the information we currently have available about the ZotDefend program. | + | ===== What is ZotDefend? ===== |
+ | ZotDefend is OIT's branding for the programs and policies that are being enforced in response to the {{ :: | ||
- | ===== Book an appointment with SSCS to get ZotDefend | + | More information about ZotDefend, including what needs to be installed, can be found in the [[# |
- | Send us an email ([[sscs@uci.edu]]) | + | ===== Temporary Exemption ===== |
+ | If you need to quickly access a site that has been blocked, you can request | ||
- | {{:proptag.png?200|}} | + | * [[https://activate.uci.edu/ |
- | The appointment should take 15-30 minutes, during which we will install an application called BigFix. This will add the computer to our inventory | + | You may do this on personal devices |
- | ===== Two aspects of the ZotDefend | + | ===== How to set up ZotDefend |
- | ===== 1. Minimum Requirements for the UCOP Mandate ===== | + | ==== Method One (preferred): |
- | The [[https:// | + | Send us an email ([[sscs@uci.edu]]) to make an appointment to set up the ZotDefend requirements on your computer. This is only required on university-owned computers, not on tablets, phones, or personal devices. |
- | We will use an application called BigFix to install the following packages: | + | === Property Tag === |
- | * [[https:// | + | Please provide your computer' |
- | * [[https:// | + | |
- | ==== BigFix Installer ==== | + | {{: |
- | You can download the installer for BigFix for your computer on your own, or we can help you with this during our appointment. | + | === Appointment info === |
- | * For Mac: [[https:// | + | The appointment should take 15-30 minutes, during which we will install an application called |
- | * For Windows: [[https:// | + | |
- | The BigFix installer is **password protected**. | + | We will use BigFix |
- | If you are installing this on your own, please email us ([[sscs@uci.edu]]) with the computer' | + | * [[https:// |
+ | * [[https:// | ||
+ | * [[https:// | ||
- | {{:proptag.png? | + | ==== Method Two: Install the ZotDefend components on your own ==== |
- | ===== 2. Enforcement of more strict security standards ===== | + | === Instructions for Windows computers |
+ | If you use a Windows computer and would prefer to do this on your own, you can download the installer for BigFix here: | ||
- | In addition to the Trellix and Tenable security packages described above, OIT is requiring the following: | + | * For Windows: [[https:// |
- | * Duo Desktop - this is an application that can scan your computer | + | The BigFix installer |
- | Duo Desktop | + | After BigFix |
- | * KFS | + | |
- | * Docusign | + | |
- | * [[https:// | + | |
- | Please be aware that OIT might change the security requirements in the future as well. We will update this page as more information becomes available. | + | === Instructions for Mac computers === |
- | ==== Temporary Exemption ==== | + | If you use a Mac computer, then we recommend scheduling an appointment with us by contacting us via email ([[sscs@uci.edu]]). You can install BigFix, but we have observed that BigFix will usually not install Trellix HX correctly. If the installation ends in a broken state, then we must manually uninstall and reinstall it. |
- | If you need to quickly access | + | |
- | * [[https:// | + | If you want to install BigFix on your own, you can use this link: |
- | ===== OIT information about ZotDefend ===== | + | * For Mac: [[https:// |
- | Here are the OIT published pages about the ZotDefend project: | + | The BigFix installer is **password protected**. We will provide |
- | * [[https:// | + | === Instructions for Linux computers === |
- | * [[https:// | + | |
- | * [[https:// | + | |
- | * [[https:// | + | |
- | ===== FAQs about ZotDefend ===== | + | Please reach out to us via email ([[sscs@uci.edu]]) to let us know which computer(s) you are setting this up on and we can send you an installation script. When you reach out to us, please provide the property tag for your computer. See the example image above for what a [[ # |
+ | |||
+ | ===== Frequently Asked Questions | ||
==== How do I request an exemption? ==== | ==== How do I request an exemption? ==== | ||
Line 72: | Line 70: | ||
* [[https:// | * [[https:// | ||
+ | You may do this on personal devices and as often as needed. | ||
==== What are the software components being installed? ==== | ==== What are the software components being installed? ==== | ||
- | These four components are being installed on Windows and Mac computers: | + | |
- | | + | |
* [[https:// | * [[https:// | ||
* [[https:// | * [[https:// | ||
- | * [[https:// | + | * [[https:// |
- | Linux computers only need the Trellix HX and Tenable Nessus | + | |
+ | ==== Which websites require Duo Desktop, in addition to Trellix HX and Tenable Nessus? ==== | ||
+ | |||
+ | Duo Desktop is required in order to verify your device' | ||
+ | * KFS | ||
+ | * Docusign | ||
+ | * Atlassian | ||
+ | * OneTrust | ||
+ | * [[https:// | ||
+ | |||
+ | Please be aware that OIT might change the security requirements and/or the list of sites and services that require enforcement. We will update this page as more information becomes available. | ||
==== What is the UC Cybersecurity Mandate? ==== | ==== What is the UC Cybersecurity Mandate? ==== | ||
Line 105: | Line 113: | ||
* this is done by requiring DUO when logging in to gmail and outlook email systems | * this is done by requiring DUO when logging in to gmail and outlook email systems | ||
- | ==== What does UCOP have to say about EDR? ==== | + | ==== Is ZotDefend required on personal computers too? ==== |
- | UCOP has released the following | + | No, it is neither required nor recommended to install or configure any of this on computers/ |
+ | |||
+ | Keep in mind that tablets, phones, and similar devices are also exempt from the ZotDefend project. | ||
+ | |||
+ | ==== But I use a personal computer for work... ==== | ||
+ | |||
+ | If you do not have a university-owned computer (purchased either with school funds or grant funding), reach out to us at [[sscs@uci.edu]] and we can help you determine what to do. | ||
+ | |||
+ | ==== What has OIT published about ZotDefend? ==== | ||
+ | |||
+ | Here are the OIT published pages about the ZotDefend project: | ||
+ | |||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | * [[https:// | ||
+ | |||
+ | ==== What do I do if I installed ZotDefend following OIT's self-enrollment instructions? | ||
+ | |||
+ | Please reach out to us ([[sscs@uci.edu]]) and let us know the [[ # | ||
+ | |||
+ | ==== What is UCOP's response to my concerns about Trellix? ==== | ||
+ | |||
+ | UCOP has released the following | ||
* [[https:// | * [[https:// | ||
+ | |||
+ | There is also an FAQ which covers questions about compatible devices, privacy/ | ||
+ | |||
+ | * [[https:// | ||
[[https:// | [[https:// |
zotdefend.1748622581.txt.gz · Last modified: 2025/05/30 16:29 by jnilsson