Close

Oregon county dodges viruses

Clackamas County, Ore., had a near miss with some computer viruses a few months ago.

That's when the Sasser virus and a couple of other worms came roaring through the Internet, said Greg Johnson, system administrator for the county.

The county had been using software from LANdesk Software of South Jordan, Utah, for a few years for hardware and software inventory, and had just installed LANdesk Patch Manager 8, Johnson said.

'We had tried Microsoft's patch management service,' Johnson said. 'But we couldn't get a lot of the granular details. And it required a lot of custom Perl scripting,' he said.

With the Microsoft patches, county IT employees had to go on site and fix infected machines, Johnson said. That meant interrupting people's work in the middle of the day to reboot their PCs.

As soon as the county bought the LANdesk patch management tool, the Exploit virus came out.

The virus came out on a Tuesday, Johnson said. By Friday night, the county had about 1,300 machines that needed a patch. 'We caught most of the PCs by early that next week,' he said.

When a user logged into his PC, the policy manager ran a check to see if a patch is installed or not. 'We even caught PCs that weren't turned on,' Johnson said.

When the Sasser virus hit later that same week, Johnson and his team heard grumblings and watched reports on the firewall. 'We found one machine that had tried to be infected, but it was patched, so it got quarantined, with no real infections,' he said.

The county is still working on the process for remote users. 'We have a lot of machines that dial into the county but aren't county maintained,' he said.

Most of the county's PCs run on Microsoft XP and use Microsoft Exchange for e-mail.

A client portion of the LANdesk software sits on the PCs and a server portion sits on the server back end. 'Microsoft released different versions of its patches for different operating systems. We had to figure out which patch was for which machine,' Johnson said. 'The nice part is that LANdesk handles security permissions for us.'

About the Author

Trudy Walsh is a senior writer for GCN.

Reader Comments

Please post your comments here. Comments are moderated, so they may not appear immediately after submitting. We will not post comments that we consider abusive or off-topic.

Your Name:(optional)
Your Email:(optional)
Your Location:(optional)
Comment:
Please type the letters/numbers you see above

GCN eNewsletters

eSeminar

  • Telework at OPM: The responsibilities and the benefits

    Federal Computer Week will present the Office of Personnel Management’s Dan Green, Marie L’Etoile and Dr. Kim Wells in an eSeminar at 2 p.m. Wednesday, July 29, where they will discuss the implications telework has for businesses, agencies and employees. Read more