Quantcast
Channel: Symantec Connect - Endpoint Protection - Discussions
Viewing all 10484 articles
Browse latest View live

SEPM 12.1.4a Client Deployment Hangs

$
0
0
I need a solution

Hello,

A couple of weeks ago I upgraded SEPM to 12.1.4a on a Win2k8R2 server. Clients are Windows 7.  I deploy SEP Client Packages from one domain to 3 other internal domains using Remote Push Client Deployment Wizard.

Since the SEPM update, Client Deployment Wizard will hang if there are deployment failures in the group of workstations I select to deploy the Client Package  to.  In other words, If I identify 10 workstations to deploy the client to, and 2 of them are unavailable at the time of the Remote Push, the Client Deployment Wizard will hang at 80%.  I've let the  Wizard run over night to give it ample opportunity to complete to the point I can click "Next" instead of "Canx" to exit from the Wizard.

Does anyone have any idea what might be causing the Wizard to hang?  Is there something I should be doing differently or is there a fix?

I'm assuming that the clients that report back to the Client Deployment Wizard  100%, have successfully received the Client Package, even if I have to click "cancel" to exit from the Wizard?

Any information/recommendation is greatly appreciated.

 

 


Schedule Time for GUP to get content from SEPM

$
0
0
I need a solution

Hello everyone,

We are using GUP's in a few of our slow link offices (1.5 meg pipes). they are working pretty good however we want to find a way to "schedule" when the GUP gets updates from the SEPM, even one computer copying a definition update over our slow wan links is too much. we want to tell our GUPs not to update until after hours.

Does anyone know of a way to achieve this? I know its not a setting at least not one that Ive found but maybe a scheduled task to kill a service?

 

Any thoughts would be great!

 

Thanks! 

1395763179

SEP 12.1.4 detected pending system changes during install

$
0
0
I need a solution

I'm trying to install a 12.1.4 client package on XP sent via an email from SEPM. When I run Setup.exe I get a message saying:

"Symantec Endpoint Protection has detected that there are pending system changes that require a reboot. Please reboot the system and rerun the installation."

A reboot doesn't help. I have spent the last 6 hours scouring Google and I can see this is a pretty common problem. I have cleared the registry key:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SessionManager\PendingFileRenameOperations

...but it makes no difference. If I do reboot and try it again, the first time I try and install it hangs for a long time as "Please wait while Windows configures Symantec Endpoint Protection" and then it just disappears without any warning errors. At THIS point, the previsouly cleared "PendingFileRenameOperations" registry key gets filled with hundreds of lines of these:

\??\C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.4013.4013.105\Bin\TBDEB.tmp

\??\C:\Documents and Settings\All Users\Application Data\Symantec\Symantec Endpoint Protection\12.1.4013.4013.105\Data\Cached Installs\Program Files\Symantec\Name\Version\Bin\ccIPC.dll

\??\C:\Documents and Settings\All Users\Application Data\Symantec\Symantec Endpoint Protection\12.1.4013.4013.105\Data\Cached Installs\Program Files\Symantec\Name\Version\Bin\ccL120U.dll

\??\C:\Documents and Settings\All Users\Application Data\Symantec\Symantec Endpoint Protection\12.1.4013.4013.105\Data\CmnClnt\ccGEvt\Global\LM2.dat

\??\C:\Documents and Settings\All Users\Application Data\Symantec\Symantec Endpoint Protection\12.1.4013.4013.105\Data\CmnClnt

Please note this is just an extract, I can post more if it's needed.

The only other info I have is that someone tried to install a vesion of SEP 12.1 (unmanaged) before me and it failed with a different error. See the 5th image attached for this error, no idea if this is related.

Client version unavailable

$
0
0
I need a solution

Hi all,

For awhile I have had clients in my sepm that say 'client version unavaliable'. They also are reporting offline with a yellow triangle. However I know for a fact that some of those computers are on everyday. I've tried to do some research about this 'client version unavailable' but am not able to come up with anything that can really help me.

Currently on 12.1.4013.4013
Manager is 12.1.4a

How to get schedulled scanned and not scanned systems report and email alerts

$
0
0
I need a solution

How to get schedulled scanned and not scanned systems report and email alerts, I cannot export report as number clients reporting to SEPM are 15000,

KB2930275 - MS14-015 - Did anyone has issues?

$
0
0
I need a solution

Hello, I had serious problems after installing this MS update (PC not reaching welcome screen, I had to replace win32k.sys from backup location). If trying uninstall SEP MS update goes fine. I find strage that no one talks about this here because on the internet many reported issues with this update. Does anybody has issues by installing this update?
 

SEPM "Best Practicies analyzer"

$
0
0
I need a solution

Hi all!

I'm looking for an application from SEPM that analyzes and shows the "inconsistences" (like best practicies) of my environment, I know exists, I already had used it before, but now I don't remember their name. Someone know which application I'm talking?

 

1395840018

When is the next SEP Upgrade

$
0
0
I need a solution

I have 12.1.4 installed on some systems and it has caused an issue.  My last communication with Support said that it  would be corrected in 12.1.5, but I've been waiting for a few months and have not heard when that will be released.

 

currently if i leave 12.1.4 running it will lock a nic on my Virtual Host server until I stop SEP... as a result I'm starting and stopping SEP daily to get a scan in. I'd like to not have to do this.


SEP 12.1.4013.4013 IMPORTANT BUG / NOT DETECT WINDOWS FIREWALL

$
0
0
I need a solution

Scenario;

 

- Clean install Xp sp3 with updates from microsoft

- No policies about firewall on clients

- Unmanaged Version 32BIT for XP

 

An technician from Symatec says;

"To prevent the above situation Symantec Endpoint Protection (SEP) installer automatically detects and disables Windows Firewall if enabled. Exception to this would be that if SEP is installed without Network Threat Protection (NTP) active Windows Firewall will not be disabled."

 

I tested with 12.1.4013.4013 version and DOES NOT WORK. SEP not detect firewall state and not disables. I think there is a importan bug because in this situation both firewalls (SEP and windows) are running at the same time.

On win7 machines works fine.

 

 

Sql Server and AV file scanning (mdf\ldf).....

$
0
0
I need a solution

In

 

http://www.symantec.com/business/support/index?page=content&id=TECH105240&actp=search&viewlocale=en_US&searchid=1368444860319

 

updated 2012-11-12, I found this second bullet point:

 

>>>>>>>>>

  • The SEP client is not able to scan the data structures within the Microsoft SQL Server database files, and cannot detect threats or risks inside them.

>>>>>>>>>

 

1. Does this still apply to Sql Server 2012? (The URL referred to "Centralized Exceptions" but I don't know what that is.)

 

If so, then there really is no need to scan sql mdf\ldf files as SEP does not understand their format.

 

TIA,

Bill

 

 

 

1395850830

Removing Duplicate Endpoints

$
0
0
I need a solution

How do I remove duplicate Endpoints from the SEPM? I see some Endpoint with duplicate hostnames but there are Endpoints (due to internal reasons) that show up with name ABC but then for some reason Helpdesk needs to change it to DEF and therefore the machine is no longer ABC and ABC needs to be deleted from the SEPM.

I"m told machines get renamed a lot. Is there any way to remove these duplicates machines so they dont eat up licenses?

Moving Clients from One Domain to Another Without Sylink

$
0
0
I need a solution

If I were to create a new package, with a new SEP version, under the new domain that I want to move endpoints to, can I install this package over the existing SEP and have these endpoints check into the new domain?

Symantec Endpoint Manager Console Not Opening

$
0
0
I need a solution

Hey guys,

I am dealing with Symantec Support as well but could use some other help since this is my production server having the issue:

I go to open the SEPM console and it just blinks one the toolbar once and quits. The javaw.exe process i see running in task manager. The Web browser for the manager does work however, and the clients are reporting in which leaves me to believe it isnt the database.

I ahve a replication partner whose Console is also not opening. The web console for the replica also works.

I have tried to run the Install files and run the repair and that did not fix it. I have re-configured the settings using the configuration manager and re-added everything and same thing. I am at a loss, please help!!

1395862013

Upgrading 12.1.2 to 12.1.4

$
0
0
I need a solution

Has there been any reports of connectivity/network failure during or after the upgrade? Trying to investigate an issue. There was a SEP upgrade from 12.1.2 to 12.1.4 and a Windows Updates push occuring at the same time. Trying to determine if it was SEP causing the issue. Deployment message currently says "Client has successfully downloaded and verified the upgrade package, type SymDelta version 12.1.4013.4013 filesize 14655509" and therefore the package was not installed nor pending a restart.

Window Xp lockdown

$
0
0
I need a solution

We have a few Xp machines left that we wont beable to replace before 8th of April so we have thought if we apply a lockdown to these machines and only let the minimum of applications talk to the network and restrict the server it talks to down it will reduce down any XP risks further.

The problem is i created a Firewall rule one application at a time and moving on to the next when that was working, but after my test machine was rebooted it seems to have stopped working any basically my rules are being ingorned. If i enable the allow any app rule it works fine but i dont want that.

 

The rules i have created that allow the application and ports are at the top of the list above the block all. The traffic log still shows the application as blocked but all the information in the log matches the allow rule so if should allow the traffic to pass.

 

Any ideas on what i have missed?

 

Sep client is v12.1.4013.4013

 

 


Encountered an error while decompressing file C:\Documents and Settings\All Users\Application Data\Symantec\Symantec Endpoint Protection\12.1.1000.157.105\Data\LUE\Downloads\1395353946jtun_sep12ennful26.m26.

$
0
0
I need a solution

Encountered an error while decompressing file C:\Documents and Settings\All Users\Application Data\Symantec\Symantec Endpoint Protection\12.1.1000.157.105\Data\LUE\Downloads\1395353946jtun_sep12ennful26.m26.
Encountered an error while processing an update for Virus and Spyware Definitions Win32 (hub).
Failed to install update for Virus and Spyware Definitions Win32.
Failed to install update for Virus and Spyware Definitions Win32 (hub).

 

SEPM 12.1.4 is Filling my Hard Drive!

$
0
0
I need a solution

Hi:

 

How do I get the new SEPM 12.1.4 to stop filling up my hard drive?  I need to know how to clean it our and prevent it from happening again.  I went to this version because of the security issue that came up but now I have a much worse problem.  Is there a thread on a fix for this?

Remote user can get updated with sepm and internet both

$
0
0
I need a solution

Team,

My company have two location and using SEP 12.1, there are 435 user's in SEPM. 405 user's are in domain and 30 user's are remote user's and they are using TATA Photan for network.

Now management want to apply location awareness policy for remote user, can you guys provide me step by step guide.

Cannot update policy

$
0
0
I need a solution

We are running SEP12.1 on Server 2008 with mix of XP and Win 7 Clients total about 400.  I created a new group with a non-shared Policy with various sections unlocked to basically disable if needed. I moved 10 units over to the new group then right clicked the group and chose the run command on computers and then update content. The monitor screen showed that all clients were updated successfully. When I logged in to few units and right clicked the shield the disable option was greyed out.  What is strange to me that if I logged in using my account as domain admin the disable option was no longer greyed.

 

I thought the SEPM pushed content out based on client name and not user credentials.

 

Any help would be appreciated.

SEP 12 action: Restart required - Quarantined

$
0
0
I need a solution

Hello,

Could someone tell me what does the following action mean exactly in the SEP 12? I haven't found any information about it.

Security risk found (Restart required - Quarantined) 

Thanks
Zoltan

Viewing all 10484 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>