

Compliance is all about proving that you're thorough and proving it in writing for the record, not about jumping through hoops that don't apply to your situation. Remember that for all compliance, there are always ways to document that you've handled the needs with an exception to the guidelines. 5% of the time it's about scanning non-Linux fileshares or file repositories. I haven't run SEP on anything, but my inclination is to strenuously avoid "beyond" ClamAV out of your distro repos.ĩ5% of the time, antivirus on Linux is about unthinking compliance check-off.
