Quantcast
Channel: Symantec Connect - Endpoint Protection - Discussions
Viewing all 10484 articles
Browse latest View live

SEPM and Protection for Sharepoint

$
0
0
I need a solution

We have a new sharepoint 2013 environment and I am looking at deploying AV to the sharepoint servers. I have created a new group and created a new policy that contain exclusions for folders for sharepoint per https://support.microsoft.com/en-gb/kb/952167 

We also use Protection for Sharepoint installed and running. Will I need to include any other exclusions if we are using Protection for Sharepoint or will the above KB exclusiuons work?

We are on SEPM 12.1 RU2

0

Remote push sep 12.1.1 to 12.1.6

$
0
0
I need a solution

Hi Team,

Please share requirement on remote push and what is the size of sep pagage flow in the network.

0

SEPM Report - Quarantine - "Action Required"

$
0
0
I need a solution

Hello dears,

thedrawbackis presentingtheSEPMRU6MP312.1.6,regardinga report thatappears asquarantineapplicationprimario.exeown applicationusingthe companystillremains inquarantineor from thedetection of itnothe hasrestarted the computer.To rulethis drawbackis suggestedrestarting the computer.andthe computer isrestartedbuttheinconvenintepersistsevenasthe image is displayed.

imagewhere you can seethat the applicationis quarantinedand adateattached3weeks ago.

Ialsoattached thegenerated reportand allrelatetoprimario.exeapplication,which is properapplicationof the company.

agradecereyour help.

cuarentena.png

0

Information of SEP IPS Attack Signatures

$
0
0
I need a solution

Hi guys, does the SEP IPS components uses these attack signatures which are listed here on this Security response. Meaning SEP IPS components have all these attack signatures in place to prevent from such exploits. Please confirm

https://www.symantec.com/security_response/attacks...

Secondly under SEPM which logs and reports i can validate to check if any of the attacks were blocked by SEP which matched the above signatures. Your usual support is highly appreciated. Thanks 

0

server auto reboot unexpectedly while install SEP

$
0
0
I need a solution

My Server information

# uname -a

Linux xen05 2.6.18-408.el5xen #1 SMP Fri Dec 11 14:07:27 EST 2015 x86_64 x86_64 x86_64 GNU/Linux

# java -version

java version "1.8.0_91"

Java(TM) SE Runtime Environment (build 1.8.0_91-b14)

Java HotSpot(TM) 64-Bit Server VM (build 25.91-b14, mixed mode)

UnlimitedJCEPolicyJDK7 also implement on /usr/java/latest/lib/security
I tried to re-install SEP few times, issue still existing

glibc, libgcc also installed for both i686, x86_64

When I install SEP 12.1.6 on linux RedHat 5.11 x86_64 servers, servers reboot unexpectedly as following.

But i686 server with same kernel are completed successfully

# ./install.sh -i

Starting to install Symantec Endpoint Protection for Linux

Performing pre-check...

Pre-check succeeded

Begin installing virus protection component

Preparing...                ########################################### [100%]

Performing pre-check...

Pre-check is successful

   1:sav                    ########################################### [100%]

Virus protection component installed successfully

Begin installing Auto-Protect component

Preparing...                ########################################### [100%]

Performing pre-check...

Pre-check is successful

   1:savap-x64              ########################################### [100%]

And captioned server found automatically rebooted

======================

Log for sepfl-install.log

Sat Jun 11 09:52:17 HKT 2016: Starting to install Symantec Endpoint Protection for Linux

FromProduct=

ToProduct=12.1.6867.6400

Sat Jun 11 09:52:21 HKT 2016: Performing pre-check...

/etc/Symantec.conf exists, need to check JAVA_HOME in it firstly.

Searching /usr/java for java...

/usr/java/default/bin/java

found java: /usr/java/default/bin/java

Sat Jun 11 09:52:23 HKT 2016: Pre-check succeeded

Sat Jun 11 09:52:25 HKT 2016: Begin installing virus protection component

Sat Jun 11 09:52:25 HKT 2016: Performing pre-check...

Found /root/SepPrecheck.cfg, no need to perform pre-check

Sat Jun 11 09:52:25 HKT 2016: Pre-check is successful

Any advise for this problem?

0

Changing SQL Account for SEPM-SQL

$
0
0
I need a solution

Hi,

We have two SEPM's - replicated. We wanted to change the SQL user account from xxxxx to yyyyy for both the SEPMs.

Is it required to disable the replication before running management server configuration wizard?

0
1465907265

How to block Youtube without affecting google in SEP 12.1.6mp4

$
0
0
I need a solution

hi

I want to create a rule in the SEP firewall to block youtube only and not block the google... this can be?

 youtube and google use the same IPS??..  help me please

Thank you!

0

can we change definitions folder in C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.6860.6400.105\Data

$
0
0
I need a solution

Hi All,

Can we change "Definitions" folder in C:\ProgramData\Symantec\Symantec Endpoint Protection\12.1.6860.6400.105\Data\Definitions? As, I am not able to change it even after stopping symantec services & disabling tamper protection.

What would be the impact if we change this folder name from "Definitions" to "XYZ or anything"?

Thanks.

0
1465911622

Latest threat samsam.exe

$
0
0
I need a solution

Hi Chaps,

                 Do any of you know if this now covered by SEP definitions?

PaulC

0
1465832298

pushing clinet (SEP) from sepm server

$
0
0
I need a solution

Hi,

is it recomending to push the SEP client from SEPM console?is it working?

0

SEPM - SQL Account Change Issue

$
0
0
I need a solution

Hi

I'm trying to change the DB user account from xxxx to yyyy. While running the management server configuration wizard, I got an error message as "While reconfiguring the Server, you are not allowed to change the credentials with which the database was created".

The permission for yyyyis the same of xxxx (Connect & Execute for the instance).

My account has the local admin account on SEPM server.

I have attached the screenshot of the message.

0

SEP for IOS and Andriod

$
0
0
I need a solution

Apart from Mobility Suite , do we have any other solution for Mobile Devices?

0

Continuously scanning .tmpscan

$
0
0
I need a solution

I have SEP 12.1 and FireAmp 4.1 in my system. I updated SEP last June 1, 2016.

Suddenly last June 13 SEP quarantined (4 instance) of *.tmpscan pointing to FireAmp's tmp folder.

From June 14 up to today (June 15) SEP is still continuously scanning .tmpscan files tagging them as Trojan.Gen2 and

then quarantine them.

I did the following:

1. update SEP virus definition to June 14.

2. perform an SEP fullscan (no infection or risk found)

3. uninstall FireAmp and delete the whole FireAmp folder path.

4. restarted the machine and perform another fullscan (still running as of this writing and still no risk found)

Still, despite all these, SEP is continuously detecting these rick although the path is no longer existing.

Anybody who might be able to help?

Thank you in advance

0

GUP - Group OU issues

$
0
0
I need a solution

Hi, We are running SEP12 RU6MP1 in our environment. Our SEP infrastructure synch with AD. AD synch is set to occur hourly. When configuring GUPs, we move the machine to be configured as a GUP to a certain OU container in AD. The machine moves to the correct OU in AD, but on the client, it stays on another OU.

I have created a package pointing it to the correct OU, installed it on the server. It seemed fine. After some time, the client SEP group moved back into the incorrect OU container. What might be causing this issue?

Thanks in advanced,

Mabunda

0

SEP Changes

$
0
0
I need a solution

Good day experts,

I am a new DBA at my work place and it is my first time to work with Symantec.My manager asked me to get the following information from the database.

He wants me to pull information to see any changes in  the machines,ie OS changes vs previous month and removed systems vs the previous month.Please help how can i do that?

 
 
0

Is Scripting possible?

$
0
0
I need a solution

Dear all,

I was wondering if there is a possibility of scripting stuff (i.e. moving clients from one OU to another) on the SEPM?

If yes: What do I have t do to get it running and how?

Best Regards

Stephan

0

Error VP SHELLRES.DLL is missing

$
0
0
I need a solution

On the client computer, getting the error as Error VP SHELLRES.DLL is missing .... Any Idea

0
1466003935
3646011

Next Version Update

$
0
0
I need a solution

Ihave heard previously that the next update for SEP 12.1 will happen this month.

Is there going to be one ? If not now when ?

trying to plan

0

SEP Blocking Mcafee EPO Icon

$
0
0
I need a solution

Urgent help needed

SEP Blocking mcafee EPO icon from running thus causing encryption problems Here is the error in the Mcafee log file:

2016-06-15 11:07:39.132 macmnsvc(2280.3900) aac_service.Info: The process <C:\PROGRAM FILES\MCAFEE\AGENT\X86\MCTRAY.EXE>(7088) was blocked from accessing('C' (1)) <AAC_OBJECT_SECTION:C:\Windows\SysWOW64\SYSFER.DLL> via the rule <Sanitize McTray Process>

SEP Version:  12.1.6860.6400

EPO Version: 5.1

Running SEP AV Full protection and Mcafee Endpoint Encryption on laptops

Speradic, not affecting all clients.

Any thoughts on this?

0

Error 1913 getting while install SEP 12.1.6

$
0
0
I need a solution

Hi Team, Error 1913 getting while install SEP 12.1.6 ,please suggest .

0
Viewing all 10484 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>