I need to use wildcards in an exclusion policy path, since a file that I need ignored will have changing version numbers. I can't seem to paste in a path that contains wildcard characters though (*,?) What do I need to do to make this work?
Exclusion policy - wildcards
Find SEP signature of a CVE
Hi All,
I have a list of CVE (Common Vulnerabilities and Exposures) and I need to know if in my network there are some risks that use that CVE.
Is possible to know what are the SEP signature that covers the risk related to a CVE?
I have consulted the search area of the Symantec web site, but for many CVE I have not found anything.
Thanks
Downloading Updates
How do I ensure that the definitions are being downloaded as smaller “delta” updates
SEP system slowdown
Hello:
We are using SEP 12.1 on about 15 machines in an unmanaged installation. Lately on multiple machines we have experienced system slowdown. During this time CPU usage is about 10% for a process labeled system with a description of NT Kernel and System. Constant hard disk activity is audible as well. During this time if I disable SEP the hard disk activity stops and the CPU usage for system is reduced immediately and performance returns to an acceptable level. SEP is not scheduled for any scans. This has happened on One Windows 8.1 and two windows 7 machines. Any idea as to what is happening?
Thanks -Bob
How to stop the SMC service through command line (Smc.exe -stop -p xxxxxxxx)
How to stop the SMC service through command line?
tried directed to below paths.
32bit:
C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin
64bit:
C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\12.1.3001.165.105\Bin64
and
Smc.exe -stop -p xxxxxxxx
but not working. smc.exe -stop is working; but with password it is not workig helpme out.
Force disable "LiveUpdate" on client
HI All
I Need to force disable "Live update" on client ( Server). Must all server update directly to Antivirus Server Manager .
How to Config Live update ? Please asdvise me .
Install client without manager
Hi
i want to install client on a windows machine ( trial version ) before i buy ( i dont want to install manager ) ,
Where can i download the client
I extracted Symantec_Endpoint_Protection_SBE_12.1.4a_Part1_Trialware_EN and run setup.exe
unmanged client installation greyed
How to block all websites and allow only certain websites
How to block all websites (Deny All without type websites address) and allow only certain websites using my SEPM,
Running Version: 12.1.4013.4013
Thanks,
Qamrul
Symantec Vulnerability Protection add-on not compatiable with Internet Explorer 11
We are having issues with Symantec Vulnerability Protection add-on (version 12.1.4013.4013) not being compatiable with Internet Explorer 11.
We are getting the 'Symantec Vulnerability Protection add-on not compatiable and has been disabled' message when launching IE 11 with Protected Mode set to enabled.
I have only tested on laptops running Windows 8.1 so far but will also test our Windows 7 clients.
Any ideas?
SEP IPS blocking outbound traffic from vulnerability scanner
We are running SEP 12.1.4013.4013 on management servers and all clients. I have been experiencing problems getting a vulnerability scanner (Nessus) to run on a server with a SEP IPS policy applied, even though I have added the scanner IP to the "excluded hosts" list.
I have seen a similar issue reported in thid article (https://www-secure.symantec.com/connect/forums/ips-blocking-traffic-internal-vulnerability-check-server) and read the associated documentation (http://www.symantec.com/docs/HOWTO81159). I have also read the Installation and Administration Guide PDF included with the SEP software. The documentation clearly states: "The client allows all inbound traffic and outbound traffic from these hosts, regardless of the firewall rules and settings or IPS signatures." (emphasis added)
I have followed the steps in HOWTO81159 to setup the vulnerability scanner IP as an excluded host, but the IPS signatures still block the outbound traffic. The location-specific settings are set to "server control" and I have verified the SEP policy version has had enough time to sync with the client. But it's not until I totally remove the IPS policy from the group that the scanner is in, that the scanner works successfully.
Has anyone else been able to successfully exclude a host IP (especially a Nessus scanner) from an IPS policy and actually prove that it works?
Many thanks!
Scott
PS. I currently have an open ticket with Symantec Support on this issue (who have so far said that I can't exclude a host from the IPS rules - contrary to the documentation and HOWTO article above?!?), so I'm seeking practical experience from the community.
upgrade SEP manager to RU4 MP1a failed
i try to upgrade SEP manager to from version 12.14a to SEP 12.1 ru4 mp1a but failed with following screenshot and log details. The upgrading is failed and i can not login to SEP console by admin account anymore, can someone help me out ? many thanks!
2014-05-05 05:12:14.623 THREAD 1 SEVERE: ================== Server Environment ===================
2014-05-05 05:12:14.623 THREAD 1 SEVERE: os.name = Windows Server 2008 R2
2014-05-05 05:12:14.623 THREAD 1 SEVERE: os.version = 6.1
2014-05-05 05:12:14.623 THREAD 1 SEVERE: os.arch = x64
2014-05-05 05:12:14.623 THREAD 1 SEVERE: java.version = 1.7.0_51
2014-05-05 05:12:14.623 THREAD 1 SEVERE: java.vendor = Oracle Corporation
2014-05-05 05:12:14.623 THREAD 1 SEVERE: java.vm.name = Java HotSpot(TM) Client VM
2014-05-05 05:12:14.623 THREAD 1 SEVERE: java.vm.version = 24.51-b03
2014-05-05 05:12:14.623 THREAD 1 SEVERE: java.home = E:\Symantec\Symantec Endpoint Protection Manager\jre
2014-05-05 05:12:14.623 THREAD 1 SEVERE: catalina.home = E:\Symantec\Symantec Endpoint Protection Manager\tomcat
2014-05-05 05:12:14.623 THREAD 1 SEVERE: java.user = null
2014-05-05 05:12:14.623 THREAD 1 SEVERE: user.language = en
2014-05-05 05:12:14.623 THREAD 1 SEVERE: user.country = US
2014-05-05 05:12:14.623 THREAD 1 SEVERE: scm.server.version = 12.1.4104.4130
2014-05-05 05:12:14.623 THREAD 1 INFO: Main>> Main> Upgrade parameters
2014-05-05 05:12:14.623 THREAD 1 INFO: Main>> Main> Upgrade args length = 0
2014-05-05 05:12:14.623 THREAD 1 INFO: Main>> Main> Unable to get the command-line arguments
2014-05-05 05:12:14.623 THREAD 1 INFO: Main>> Main> Server Home: E:\Symantec\Symantec Endpoint Protection Manager\tomcat
2014-05-05 05:12:17.060 THREAD 1 INFO: Main>> Main> You are using MSSQL server.
2014-05-05 05:12:17.435 THREAD 1 INFO: Has valid SAV license
2014-05-05 05:12:17.451 THREAD 1 INFO: Has valid SNAC license
2014-05-05 05:12:17.810 THREAD 1 INFO: Main>> executePreLaunchSteps> Config schema format is upgraded from (schema version from db): 12.1.4.0
2014-05-05 05:12:19.107 THREAD 1 INFO: Saving disaster recovery data to: E:\Symantec\Symantec Endpoint Protection Manager\tomcat\..\Server Private Key Backup\recovery_2014-05-05-05-12-19.zip
2014-05-05 05:12:19.170 THREAD 1 INFO: Main>> executePreLaunchSteps> DbVersion: 12.1.4.0 schemaVersionFromDB: 12.1.4.0 isSpm51Mr7: false hasOtherOSAgents: false dbcompanySize: 0 dbConnected: true
2014-05-05 05:12:19.170 THREAD 1 INFO: Main>> checkUpgradeFeasibility> Checking for upgrade feasibility, current schema version = 12.1.4.1, schema version from db = 12.1.4.0
2014-05-05 05:12:19.170 THREAD 1 INFO: VersionToBeSupported: 12.1.4.0
2014-05-05 05:12:19.185 THREAD 1 INFO: SchemaVersion>> isSupported> versionToBeSupported '12.1.4.0 is supported for this release
2014-05-05 05:12:19.185 THREAD 1 INFO: Main>> displayOnlineServerListIfAny> Checking online servers... siteId = F0973E810A18F7220135CA3A950027A9
2014-05-05 05:12:19.185 THREAD 1 INFO: SELECT CONTENT FROM SYSTEM_STATE WHERE OWNER = '049212870A18F722010F9696F37F9042'
2014-05-05 05:12:19.217 THREAD 1 INFO: SYSOUT : Checking onlist status for server CNDC0SRV080.nneas.net
2014-05-05 05:12:19.217 THREAD 1 INFO: SYSOUT : Not checking status. offline status detected
2014-05-05 05:12:19.217 THREAD 1 INFO: SYSOUT : [name=CNDC0SRV080.nneas.net,id=049212870A18F722010F9696F37F9042] is offline
2014-05-05 05:12:19.217 THREAD 1 INFO: Main>> displayOnlineServerListIfAny> Checking online servers... exclude local server id = 049212870A18F722010F9696F37F9042
2014-05-05 05:12:19.217 THREAD 1 INFO: Main>> displayOnlineServerListIfAny> Online servers:[]
2014-05-05 05:12:19.217 THREAD 1 INFO: Main>> launchMainFrame> Launching the UI
2014-05-05 05:12:19.748 THREAD 1 INFO: isLicenseInstallationValid: sep.slf =true OD file=true
2014-05-05 05:12:21.654 THREAD 28 INFO: Initializing ...
2014-05-05 05:12:21.654 THREAD 28 INFO: UpgradeStep >> checkUpgradeStatus.
2014-05-05 05:12:21.670 THREAD 28 INFO: Executing command - stop semsrv
2014-05-05 05:12:21.732 THREAD 28 INFO: The Symantec Endpoint Protection Manager service is not started.
2014-05-05 05:12:21.732 THREAD 28 INFO:
2014-05-05 05:12:21.732 THREAD 28 INFO: More help is available by typing NET HELPMSG 3521.
2014-05-05 05:12:21.732 THREAD 28 INFO:
2014-05-05 05:12:21.732 THREAD 28 INFO: Waiting for service termination: semsrv
2014-05-05 05:12:21.732 THREAD 28 INFO: Checking whether the service is stopped: semsrv
2014-05-05 05:12:21.732 THREAD 28 INFO: Retrieve status for service semsrv
2014-05-05 05:12:21.811 THREAD 28 INFO: The status for semsrv' service is 1
2014-05-05 05:12:21.811 THREAD 28 INFO: Service is stopped.
2014-05-05 05:12:21.811 THREAD 28 INFO: Executing command - stop semwebsrv
2014-05-05 05:12:21.873 THREAD 28 INFO: The Symantec Endpoint Protection Manager Webserver service is not started.
2014-05-05 05:12:21.873 THREAD 28 INFO:
2014-05-05 05:12:21.873 THREAD 28 INFO: More help is available by typing NET HELPMSG 3521.
2014-05-05 05:12:21.873 THREAD 28 INFO:
2014-05-05 05:12:21.873 THREAD 28 INFO: Stop SemSrv done.
2014-05-05 05:12:21.873 THREAD 28 INFO: Action Start:0
2014-05-05 05:12:21.889 THREAD 28 INFO: initDataSource
2014-05-05 05:12:22.123 THREAD 28 INFO: grantSEMUserPrivilege isDBowner true
2014-05-05 05:12:22.123 THREAD 28 INFO: UpgradeStep >> checkUpgradeStatus.
2014-05-05 05:12:22.123 THREAD 28 INFO: UpgradeStep >> checkUpgradeStatus.
2014-05-05 05:12:22.123 THREAD 28 INFO: Set the config manager cache threshold to 500!
2014-05-05 05:12:22.201 THREAD 28 INFO: Config schema format is upgraded from: 12.1.4.0
2014-05-05 05:12:22.201 THREAD 28 INFO: Upgrade schema started ...
2014-05-05 05:12:22.217 THREAD 28 INFO: Process SQL script file:MSSQLServerTeslaToLightCycle.sql
2014-05-05 05:12:22.217 THREAD 28 INFO: Process SQL InputStream sqlis:sun.net.www.protocol.jar.JarURLConnection$JarURLInputStream@160dd37
2014-05-05 05:12:22.217 THREAD 28 INFO: DatabaseUtilities>>execCommandFromScript>>cmdSeperator:;;
2014-05-05 05:12:22.217 THREAD 28 INFO: DatabaseUtilities>>execCommandFromScript>>sqlStr:DROP VIEW V_AGENT_INCL_GROUP_ID
2014-05-05 05:12:22.217 THREAD 28 INFO: DROP VIEW V_AGENT_INCL_GROUP_ID
2014-05-05 05:12:22.311 THREAD 28 INFO: CREATE VIEW V_AGENT_INCL_GROUP_ID as SELECT AGENT_ID, AGENT_TYPE, R_OS_TYPE, COMPUTER_ID, DOMAIN_ID, GROUP_ID, AGENT_VERSION, PROFILE_VERSION, PROFILE_SERIAL_NO, PROFILE_CHECKSUM, IDS_VERSION, IDS_SERIAL_NO, IDS_CHECKSUM, HI_STATUS, HI_REASONCODE, HI_REASONDESC, CREATION_TIME, STATUS, LAST_UPDATE_TIME, LAST_SERVER_ID, LAST_SITE_ID, ATTRIBUTE_EXTENSION, FULL_NAME, EMAIL, JOB_TITLE, DEPARTMENT, EMPLOYEE_NUMBER, EMPLOYMENT_STATUS, OFFICE_PHONE, MOBILE_PHONE, HOME_PHONE, USN, TIME_STAMP, DELETED, PATTERN_IDX, AP_ONOFF, INFECTED, WORSTINFECTION_IDX, LAST_SCAN_TIME, LAST_VIRUS_TIME, CONTENT_UPDATE, AVENGINE_ONOFF, TAMPER_ONOFF, MAJOR_VERSION, MINOR_VERSION, REBOOT_REQUIRED, REBOOT_REASON, LICENSE_STATUS, LICENSE_EXPIRY, TIMEZONE, FIREWALL_ONOFF, FREE_MEM, FREE_DISK, LAST_DOWNLOAD_TIME, CURRENT_CLIENT_ID, LICENSE_ID, IS_GRACE, SNAC_LICENSE_ID, PTP_ONOFF, LAST_HEURISTIC_THREAT_TIME, BASH_STATUS, DA_ONOFF, CIDS_DRV_ONOFF, CIDS_SILENT_MODE, CIDS_DRV_MULF_CODE, CIDS_BROWSER_IE_ONOFF, CIDS_BROWSER_FF_ONOFF, CIDS_ENGINE_VERSION, CIDS_DEFSET_VERSION, DEPLOY_STATUS, DEPLOY_MSG, DEPLOY_PRE_VER, DEPLOY_TARGET_VER, DEPLOY_RUNNING_VER, DEPLOY_TIMESTAMP, OS_BIT_TYPE, ELAM_ONOFF, OSELAM_STATUS, VSIC_STATUS, IS_NPVDI_CLIENT, SVA_ID, LAST_CONNECTED_IP_ADDR FROM SEM_AGENT with (NOLOCK)
2014-05-05 05:12:22.326 THREAD 28 INFO: Database Schema has been upgraded.
2014-05-05 05:12:22.373 THREAD 28 INFO: Upgrading from 12 RU4 to 12 RU4MP1
2014-05-05 05:12:22.373 THREAD 28 INFO: UpgradeStep >> checkUpgradeStatus.
2014-05-05 05:12:22.373 THREAD 28 INFO: UpgradeStep >> checkUpgradeStatus.
2014-05-05 05:12:22.373 THREAD 28 INFO: UpgradeStep >> checkUpgradeStatus.
2014-05-05 05:12:22.373 THREAD 28 INFO: UpgradeStep >> checkUpgradeStatus.
2014-05-05 05:12:22.608 THREAD 28 INFO: Start to increase CONTENT DB file maximum size.
2014-05-05 05:12:22.623 THREAD 28 INFO: The current size is: 0MB.
2014-05-05 05:12:22.639 THREAD 28 SEVERE: java.sql.SQLException: MODIFY FILE failed. Size is greater than MAXSIZE.
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.SQLDiagnostic.addDiagnostic(SQLDiagnostic.java:368)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.TdsCore.tdsErrorToken(TdsCore.java:2820)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.TdsCore.nextToken(TdsCore.java:2258)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.TdsCore.getMoreResults(TdsCore.java:632)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.processResults(JtdsStatement.java:584)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeSQL(JtdsStatement.java:546)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeImpl(JtdsStatement.java:723)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeUpdate(JtdsStatement.java:1166)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeUpdate(JtdsStatement.java:1119)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.db.util.DbUtil.updateDBFileMaxSize(DbUtil.java:1054)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.Schema12RU4To12RU4MP1.increaseContentDBFileSize(Schema12RU4To12RU4MP1.java:77)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.Schema12RU4To12RU4MP1.upgrade(Schema12RU4To12RU4MP1.java:51)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.SchemaUpgrade.execute(SchemaUpgrade.java:84)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.Upgrade.doUpgrade(Upgrade.java:1061)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.ui.UpgradeTask.go(UpgradeTask.java:127)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.ui.UpgradeProgressPanel$2.construct(UpgradeProgressPanel.java:138)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.util.SwingWorker$2.run(SwingWorker.java:145)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at java.lang.Thread.run(Thread.java:744)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: java.sql.SQLException: MODIFY FILE failed. Size is greater than MAXSIZE.
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.SQLDiagnostic.addDiagnostic(SQLDiagnostic.java:368)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.TdsCore.tdsErrorToken(TdsCore.java:2820)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.TdsCore.nextToken(TdsCore.java:2258)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.TdsCore.getMoreResults(TdsCore.java:632)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.processResults(JtdsStatement.java:584)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeSQL(JtdsStatement.java:546)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeImpl(JtdsStatement.java:723)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeUpdate(JtdsStatement.java:1166)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeUpdate(JtdsStatement.java:1119)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.db.util.DbUtil.updateDBFileMaxSize(DbUtil.java:1054)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.Schema12RU4To12RU4MP1.increaseContentDBFileSize(Schema12RU4To12RU4MP1.java:77)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.Schema12RU4To12RU4MP1.upgrade(Schema12RU4To12RU4MP1.java:51)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.SchemaUpgrade.execute(SchemaUpgrade.java:84)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.Upgrade.doUpgrade(Upgrade.java:1061)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.ui.UpgradeTask.go(UpgradeTask.java:127)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.ui.UpgradeProgressPanel$2.construct(UpgradeProgressPanel.java:138)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.util.SwingWorker$2.run(SwingWorker.java:145)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at java.lang.Thread.run(Thread.java:744)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: com.sygate.scm.server.util.ServerException: Unexpected server error.
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.db.util.DbUtil.updateDBFileMaxSize(DbUtil.java:1057)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.Schema12RU4To12RU4MP1.increaseContentDBFileSize(Schema12RU4To12RU4MP1.java:77)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.Schema12RU4To12RU4MP1.upgrade(Schema12RU4To12RU4MP1.java:51)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.SchemaUpgrade.execute(SchemaUpgrade.java:84)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.Upgrade.doUpgrade(Upgrade.java:1061)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.ui.UpgradeTask.go(UpgradeTask.java:127)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.upgrade.ui.UpgradeProgressPanel$2.construct(UpgradeProgressPanel.java:138)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.util.SwingWorker$2.run(SwingWorker.java:145)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at java.lang.Thread.run(Thread.java:744)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: Caused by: java.sql.SQLException: MODIFY FILE failed. Size is greater than MAXSIZE.
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.SQLDiagnostic.addDiagnostic(SQLDiagnostic.java:368)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.TdsCore.tdsErrorToken(TdsCore.java:2820)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.TdsCore.nextToken(TdsCore.java:2258)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.TdsCore.getMoreResults(TdsCore.java:632)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.processResults(JtdsStatement.java:584)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeSQL(JtdsStatement.java:546)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeImpl(JtdsStatement.java:723)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeUpdate(JtdsStatement.java:1166)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at net.sourceforge.jtds.jdbc.JtdsStatement.executeUpdate(JtdsStatement.java:1119)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: at com.sygate.scm.server.db.util.DbUtil.updateDBFileMaxSize(DbUtil.java:1054)
2014-05-05 05:12:22.639 THREAD 28 SEVERE: ... 8 more
2014-05-05 05:12:22.639 THREAD 28 SEVERE: Upgrade.doUpgrade com.sygate.scm.server.util.ServerException: Unexpected server error.
2014-05-05 05:12:28.186 THREAD 23 INFO: UpgradeFinalPanel >> saveStage > Launching log file...
Getting Device Control Notifications For Already Blocked Device
since upgrading to 12.1.4 i seem to be getting repeat notifications for blocked devices
seems like every time a client is restarted i get a new notification.
i this normal behaviour?
SEP and MS SQL
i have 2 windows server 2008 R2 with MS SQL
on those servers is present SEP (only antivirus and antispyware) R4aMP1
periodically the HD led is always on and the servers are "blocked" for some minutes.
i tried many micorsoft KB, now i'm trying with SEP disabled.
some ideas ?
SEPM Application and Device Control Logs
hello everyone,
I have a question about application and device control logs which can be seen on SEPM. When I set the criteria for displaying logs for last three months I can only see logs for one month, though I know that there was blocking in those two months which aren't shown on SEPM.
The version of SEPM is 12.1.2
Secondly when configuring log retention , there are two ways in which it can be done. First is we can set the log retention period in the edit database properties by going into ADMIN > local site > edit site properites.
Second option is Clients > My company > Log setting.
What is the diffrence between two ? and if we have configured difrrent parameters in both which takes precedence ?
Waiting for your kind replies. Regards,
SEP 12.1 and Citrix Application Streaming
Dear all,
since we are using Symantec Endpoint Protection 12.1 is our application streaming from citrix not longer working.
When we start an streamed application on our Client (Windows 7 x64) we get no error message. The application doesn´t start.
Only in the event log we are seeing the following:
First:
Faulting application name: fin.exe, version: 6.0.33597.0, time stamp: 0x4fee338c
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x770c48f3
Faulting process id: 0xf54
Faulting application start time: 0x01cf6869ae98bae7
Faulting application path: c:\Program Files (x86)\Citrix\RadeCache\99734268-e771-4121-8de5-85ebc9a6f1fa_1\Device\C\Program Files (x86)\Microsoft Dynamics NAV\60\Classic\fin.exe
Faulting module path: unknown
Report Id: ecd8db46-d45c-11e3-acb4-000c29661b59
Second:
Fault bucket 3971477843, type 5
Event Name: BEX
Response: Not available
Cab Id: 0
Problem signature:
P1: fin.exe
P2: 6.0.33597.0
P3: 4fee338c
P4: StackHash_4c0d
P5: 0.0.0.0
P6: 00000000
P7: 770c48f3
P8: c0000005
P9: 00000008
P10:
Attached files:
C:\Users\....\AppData\Local\Temp\WER1FD0.tmp.WERInternalMetadata.xml
These files may be available here:
C:\Users\....\AppData\Local\Microsoft\Windows\WER\ReportArchive\AppCrash_fin.exe_a1d63180c96228e47bef283f37dc58d87c57d7_14352701
Analysis symbol:
Rechecking for solution: 0
Report Id: ecd8db46-d45c-11e3-acb4-000c29661b59
Report Status: 0
When I uninstall SEP, everything is working fine. I´ve also tried to disable everything step by step but nothing worked. Also when I install our old version (11.x) everything works.
Have anyone some ideas what I can try?
Best Regards
HRoegener
Install Failed, rolled back... but in Windows the client appears fine and dandy.
working with a 2008 R2 enterprise server.
What would cause this machine to show up in the SEPM with a issue icon (little arrow and the red X) and state the install was failed, rolled back, but the client once i log into it is running SEP with a green dot and no visable issues to speak of. I tried deleteing the object from SEPM but when it re-populates it is no different.
Any suggestions besides reinstalling it? I can't reboot this server until Friday night when i get a maint window.
thanks all and happy Monday.
how to secure EMC storage devices with the help of SEP
Hi All,
Can anyone tell that how we can secure EMC storage devices with the help of SEP version 11.xxx or 12.xx.
Install SEP with access to C drive
Hi
I have domain administrator privilages and i need to install SEP on a machine by copying the package to C drive and from there install it, is it possible????
Thanks
Virus qui nous infecte les poste de travail
Bonjour;
Veuillez nous aidez à supprimer un virus qui nous propage le réseau et les postes de travail
Malgré que l'antivirus Symantec Endpoint Protection 12.1 est installé, et à jour, au niveau de ces postes, comme on a soumissionné ce virus pas mal de fois au niveau de Symantec mais sans résultat
ce virus viens sous forme exécutable "msdll.exe" avec une icône d'image à côté du nom de fichier (veuillez trouver ci-joint l'imprime écran d'un pc infecter)
Le virus empêche l'utilisateur, d'ouvrir ces dossiers directement par un double clique, mais par un clic droit ouvrir
S.V.P; J’ai besoin de votre aide
SEP Client constantly changes location to default and back.
Hi all,
We are having a strange issue with some of our SEP clients. They are constantly switching between locations.
We have a central management server in our head office. In one of our regional hubs, we have another management server which is configured as a replica of this. The clients in this region are set to use the local management server.
However, the clients keep switching from their location and then back to default. Looking at the connection status, they are connecting to the local management server, and then connecting back to our main server back in head office. The connections are successful.
I have checked the site-specific config, and they should be pointed to the local management server. No idea why they keep switching.
Any ideas??