Quantcast
Channel: Symantec Connect - Endpoint Protection - Discussions
Viewing all 10484 articles
Browse latest View live

Unmanaged Detector does not detect anything

$
0
0
I need a solution

Dear all,

I am trying to use Unmanaged Detector in some network subnet. In few network subnet, it's work. But in few another subnet it is not work. I tried to use many client but nothing changed (SEP 12.1.7 and SEP 14). Also, i can use advanced ip scanner to find out MAC and hostname of PC in the same network subnet. 

Please help me. Is there any requirement to use Unmanaged Detector.

Sincerely.

0

Application Control Questions

$
0
0
I need a solution

Hi,

I'm fairly new to SEP and application control and have a quick question. I'm using applcation control and blocked unapporved applications. At the moment we are entering MD5s in manually and the list is getting hard to manage. Also its very hard to search if want to unblock a application. 

Is there a better way of doing this? Can I edit the DAT file in a editor and then import it? 

Sorry fo all the questions.

Regards

Sid

0

Why updating definitions is so resource consuming?

$
0
0
I do not need a solution (just sharing information)

Every morning i go through the same routine "Oh, no, i can't do anything yet and all the apps are showing "No responding" because SEP needs to update". This is not a 10 years old PC. It has SSD, i3-4000M (which is more than ok for office work), 4 GB of RAM. Nothing else manages to bring this PC to a halt other than SEP updates. Why can't this process be on a lowest possible priority? It is not so critical. And maybe it can launch later in the day and not just after the system start.

0

Symantec endpoint Live update via proxy

$
0
0
I need a solution

Hello,

We have small amount of Windows 2012 R2 servers and we want to install Symantec endpoint  Antivirus system.

I would like to know the options to perform the Live update.  

If I have to do it via proxy, what URLs should be allowed to perform the same?

0

Ports used by SEP12

$
0
0
I need a solution

Hi All, I want to make sure I have the correct information as my SEPM is being moved to a new data center. IP's and Hostnames all remain the same. The only problem is we now have to request the internal and external ports that our applications will be using to communicate with Symantec for updates and internally for the clients. To help me out and make sure I give the correct information does anyone have a list of the ports I will need to be open to ensure that my SEPM and SEP cleints will work/communicate correctly. I do know that the SEPM I manage was installed with all the out of the box port settings. Nothing was changed or added? Help would be greatly appreciated.

Cheers

PaulC

0
1502988147

GUP Supernet example configuration need

$
0
0
I need a solution

Hi experts, GUP Supernet is the new enchanment for v14.x

But, I'm looking for how to configure it, but no luck.

I hope that you can shed the light, appreciate it.

Cheers,

Loh

0
1503037057

SQL 2016 database on remote computer and native client ?

$
0
0
I do not need a solution (just sharing information)

Hi ALl

good morning.

As we have upgarded our Sep to 14 MP 2 and we have SQL 2008 r2 databse installed on remote computer . now we want t omigrate our database to sql 2016 on different server and in order to perform the same we need to upgrade native client also but we are unable to found sql natvi client 2016 . please suggest. could we use any older version of nativ client than SQL 2016 ?

 Thank in advance.

Munna yadav.

0

Remove files from Thunderbird junkmail

$
0
0
I need a solution

SEP sends an email daily with virus detection information, and it's 100% what has already been sorted into the junk folder of Thunderbird. Is there any way SEP can automatically remove the files from the junk folder, rather than just reporting it found them?

0

Large SEM5 log on SEP 14

$
0
0
I need a solution

Hi,

Hasn't this issue been addressed on the SEP 14 version? My server's drive got full twice in a span of one week. Server 2016 operating system.

0

Unmanaged clients license expiration

$
0
0
I need a solution

Hello all, 

I have a doubt about the license on the unmanged clients. Does anyone know what happens whith the unmanaged clients when the license installed on the SEPM expire? Do they need to be re-created?

My only experience with this issue is with my labs machines, and now if I create an unmanged client with the trial license, the license in the client expire and it doesn.t work fully. 

I have a client with mobile employes that can be out of office for up to two years whithout going to the office, which means without connection to the SEPMs to update the license, and they have asked me what will happen with these clients at the end of the year when they have to renew the license. Do they have to connect them to the SEPM (impossible)? do they have to create a new client package when the new license is being deployed, and install it, or everything will work as expected in an unmanged client?

Kind regards, 

Juan

0

Symantec 14MP2 issue with McAfee Encryption Agnet Installation

$
0
0
I need a solution

we are facing issue in Symantec 14MP2 client. This version is preventing McAfee encryption agent installation.

After further trouble shooting I come to know that Application and Device control component is causing issue.

I excluded some below process but issue remain same.

  • fcag.exe
  • fcags.exe
  • fcagswd.exe
  • mfefire.exe
  • mfemms.exe
  • mfevtps.exe
  • mfehidin.exe
  • macompatsvc.exe
  1. Create "Folder" exceptions for "All Scans" for the following paths:
  • C:\Program Files\Common Files\McAfee\SystemCore\
  • C:\Program Files\McAfee\*
  • C:\Program Files (x86)\McAfee\*

After this I found one article on Internet https://support.symantec.com/en_US/article.HOWTO95454.html?redirect=false related to sysfer.dll. after adding this exclusion we are able to install McAfee Drive Encryption agent.

Now my query is this Sysfer.dll article is for SEPM 12.1, Still this issue is persist with 14MP1?

And if we add this sysfer.dll in application exclusion are we safe?

0

How do I know that the update is successful

$
0
0
I need a solution

HI

After the Offline update process I want to know whether the update succeeded or not

i update from this site:

Symantec Endpoint Protection Manager Installations on Windows Platforms

https://www.symantec.com/security_response/definit...

How do I know that the update is successful
How to show a picture from within the program that the update was successful

0

[SID: 30033] System Infected: Downloader.Dromedan Activity 21 attack blocked. Traffic has been blocked for this application: C:\WINDOWS\SYSTEM32\REGSVR32.EXE

$
0
0
I need a solution

Hello All,

I keep getting the below given notification from Symantec Endpoint on different SEP clients:

[SID: 30033] System Infected: Downloader.Dromedan Activity 21 attack blocked. Traffic has been blocked for this application: C:\WINDOWS\SYSTEM32\REGSVR32.EXE

[SID: 28173] Web Attack : Malvertisement Website Redirect 21 attack blocked. Traffic has been blocked for this application: C:\USERS\INSRATHORE\APPDATA\LOCAL\GOOGLE\CHROME\APPLICATION\CHROME.EXE
[SID: 30033] System Infected: Downloader.Dromedan Activity 21 attack blocked. Traffic has been blocked for this application: C:\WINDOWS\SYSTEM32\REGSVR32.EXE

Can anyone suggest me with the solution and how to resolve it ? 

What could be the possible reason for the same ? 

0

SEP 14 Device Control for Mac

Whitelisting Request Status

$
0
0
I need a solution

Hello,

I submitted a whitelisting request 3 days ago, submitssion #4120434, and the only reply I have so far is the [No Reply] response that the submission was received.

My requests have typically been taking no more than 24 hours, just wondering why I have not received a reply on this one.

Thanks for any help 

Jim

0

Settings changes to Retention Logs revert back after PC reboot

$
0
0
I need a solution

So I have a weird one.

One of my client's offices is using managed clients of SEP 12.

When you click View Logs in the SEP interface of the client version, two of the users PCs only show logs from the past 14 days.

The PC accounts that these two users use are admin accounts.

If you click Change Settings in the SEP interface, they can manually change the Log Retention period, but it reverts back to 14 days after a PC reboot.

The other users are showing logs from the past year.

The PC accounts that these other users use are non-admin accounts.

They cannot click Change Settings in the SEP interface, that function has been locked by the administrator.

On the SEP management server, the policy settings for log retention is 14 days.

I changed the policy settings on SEPM to be 365 days for log retention, but if this doesn't work for keeping logs in the interface past 14 days, I am out of ideas.

I know the lifetime logs can still be found in the SEP installation folder, but my users use the Export Logs function to send the scan logs to their IT security team in their overseas headquarters.

Any suggestions?

0

Symantec endpoint protection 14 not getting updates

$
0
0
I need a solution

Some of my computer are not downloading updates from the symantec endpoint protection manager.

0

Downgrade Newly Purchase SEP 14 License

$
0
0
I need a solution

I just purchased SEP 14 license. I am new SEP user, never purchase SEP before. I want to install version 12.1 instead.

Can I downgrade my license?

0

Surface pro 4 windows 10

$
0
0
I need a solution

Hi,

I have a problem wierd, when I deployu my package on desktop, laptop no problem, but some surface after the installation the wi-fi stop working.

After investiging I found when I installed the options firewall with will be installed on the hard drive I have no problem, but If and I don't know why surface install this way with entire feature will be installed on the hard drive the wi-fi stop working.

I have adress IP I can ping from a other pc but can login on the domain or go to internet don't work.

Any idee Why

Windows 10 enterprise, sep 14.0.2415 and if I change manually to installed to the hard drive it work, but I put a package for all my pc and exetp for the surface everything is fine

Thx

0

Liveupdate administrator

$
0
0
I need a solution

hello everyone,

i need your help please  with something i'm trying to fix these last days. We have closed network with sepmanager 14 mp2 , until now we updated the virus definition with jdb. We decided last week to install 

Liveupdate administrator on a network with internet connectivity and open a feed for updating the sepm. I installed the last LUA release and the LUA download updates. My problem is with the sepm it can connect to the LUA but there is something really strange it download sep definition for the 12.6 version , although the lua is configured to download and distribute the 14 version.

any idea?

thank you

Eric

0
Viewing all 10484 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>