New technology has paved the way for sophisticated enterprise networks that are dynamic in nature. The size and complexity of these networks makes it hard to keep track of changes made in the network, giving hackers an opening to introduce malicious files or tamper with existing ones. These altered files could put your entire network at risk and in turn put your business in jeopardy. File integrity monitoring was introduced to address this exact issue by conducting periodic checks on OpManager installation folder to ensure the integrity of files by comparing them to a set baseline value. You can access OpManager's file integrity monitoring feature by navigating to General Settings > Security Settings > File Integrity.
Files that are bundled within the product are known as Product files. These files are present under the OpManager directory. Product files are checked at regular intervals for their integrity. If there is a mismatch, the files will be listed as tampered with under Product files. In case of a checksum mismatch, kindly report it at the earliest to our support team. The support team will reach out to you and replace the tampered file with the original one. They will also analyze the root cause of the tampering and offer tips on how to prevent such instances in the future.
Files that are not bundled with the product but found under the OpManager installation directory are known as external files. They are not necessary for the default functioning of OpManager. Any new executable files will be scanned and included under External files and may need immediate attention. Select a file and click the Actions button to whitelist or blacklist it, or exclude the file from being scanned.
Note: Kindly note that excluding a file from scanning must be done at the user discretion. Exclude a file from scanning only if the file is highly reliable.
With its file integrity monitoring capabilities, OpManager allows you to conduct regular integrity checks on your OpManager directory and list the results in an orderly fashion so you can get a comprehensive overview of the tampered files in your installation directory. Click the Reports button to see the list of files that have already had actions performed on them. Here, you can also perform actions individually or in bulk on selected files.
The first file integrity scan will be scheduled to run 10 minutes after OpManager is installed. You can later schedule the checks at your convenience. By scheduling integrity checks, your files will be automatically checked at the specified time every day for their corresponding integrity values. In the event of file tampering, they will be listed under the External files/ Product files section of the File Integrity tab, where you can decide the appropriate action to be taken.
Apart from these automated file integrity checks, OpManager allows you to scan your directory manually independent of scheduled scans. The bottom of the File Integrity tab displays the latest file integrity scan that took place in your OpManager installation directory. You can use the Scan Now button to scan files immediately.
Download OpManager, network monitoring software that offers file integrity features and much more.