Quantcast
Channel: Symantec Connect - Endpoint Protection - Discussions
Viewing all 10484 articles
Browse latest View live

Possible to export/import custom scan jobs?

$
0
0
I need a solution

I like to have C:\Users scanned more often since viruses end up there.  I don't want a quick or full scan, just that whole C:\users folder.  I've been setting that up manually on each machine before it goes out.  (And apparently the account a custom scan is set up in is the only one that can view that custom scan?)  I just check the task scheduler and there's nothing under Symantec there that I'm noticing.

Is it possible to export a custom scan and then import, the same way I might do that with a scheduled task?

The ultimate solution would be a policy on SEPM but that's not possible or wasn't the last time I checked.

0

SEPM 14 Certification Error

Need Sugesstion to configure windows server to distribute updates

$
0
0
I need a solution

Hi,

We have installed SEP Manager in our windows server and configured live update administrator to download the updates.

We are having 100's of client servers in different lan networks. So, our requirement is to configure a windows server inside each lan , which will pull live updates from SEP Manager and distribute the same to the clients inside the lan.

We need suggestion to implement the above requirement

0

Symantec Action

$
0
0
I need a solution

Hi all,

I'm new here. My question is, what is the difference of Threat not cleaned and Left alone?

Does the two action is the same or not?

Thanks!

0

SEP 14 Unmanaged Client

$
0
0
I need a solution
NEED HELP
 
I’m a little bit confused with how the product licensing work, I purchased a license for 8 users through a reseller, then they provide me with an E-Cert. please check my step are correct.
 
1. I follow this link [https://fileconnect.symantec.com] and key-in the serial number provided in the e-cert to download.
 
2. Because the license is not managed by server type, so I download “Symantec_Endpoint_Protection_14.0.1MP1_All_Clients_EN”
extract and install it on 8 PC with windows 7 & 10
 
But, it did not ask for license key or anything, just install, update and straightaway using, and I also cannot find license information in the console, is it license is installed automatically?
 
Is it each different license need to download with serial?
Let’s say, 8 users license means I can install maximum 8 PC using the same download? then it will fail if exceed user limit? how about reformating or transfer license to another pc?
 
 
Please help me understand, because I do not see license info after install, just afraid that it is running on trial version.
Could anyone tell me how to check the license info, how many days left, how many total license and how many already deployed?
 
 
This is my first time using symantec product, hope someone can reply me soon.....thank you.
 
 
Regards,
Wilson Chin
0

Whitelist application on System Lockdown SEP14

$
0
0
I need a solution
Need your technical expertise and assistance in SEP 14. The one of their requirement is the application control and devices. Client wants all workstation on white list mode and all new application that will be run or installed will be block. It will just be allowed if the SEP administrator will be added it into the whitelist. We configure the System Lockdown of SEP14, We created a file fingerprint list with checksum.exe where it will be the baseline image then we log and enable the system lockdown. After we enable it seems working fine, all new application are block. However we are having challenges in whitelisting the application specially in installer file .exe where installer application extracting new file.
 
We are on the part on to white list the application. I tried to white list a Java installer (java.exe). I added the directory file on the white list (as also seen on image below)
 
 
and it work fine, it allows the application please see below image.
 
 
However after I execute the application (java.exe) it extract new file so it block the new .exe file it runs (See error in below image)
 
 
I checked the unapproved application, and tried to add on the white list the msiexec.exe and MSIF6CE.tmp based from the error. But im still having the same error from "Blocked msiexec.exe from accessing MSIF6CE.tmp" now "Blocked msiexec.exe from accessing MSIF49D.tmp"
 
Need your assistance on how to allow the application/installer (.exe) that extracting new file and running new (.exe) file.
 
Thanks!
 
 
0

SEPM adding people to alert lists

$
0
0
I need a solution

Hi,

Using SEPM version 14.0.2349.0100

We have it setup to email the administrator account when viruses are detected, or virus definition files are out of date etc. (CRITICAL: OLD VIRUS DEFINITIONS) but I can't remember where this was setup, and I can't find it in the GUI.

I want to add another email address to receive these alerts.  Is it as simple as creating a new administrator account within SEPM, or is there a list of recipients for these alerts somewhere?

0
1520247805

New\Edit GUP Server policy

$
0
0
I need a solution

Hi All,

I have newly built server to take over the GUP role for an old server being decommissioned.

Do I need to create a new group update policy of can edit the existing polciy and simply just the server name under GUP servers on the SEPM console?

0
1520263223

SEPM 12.1.4 migrate to SEPM 14.x but keep clients at 12.x

$
0
0
I need a solution

Hello all.  I eventually want to upgrader the current SEPM 12.1.4x to 14.x, and move it or install SEMP 14x on a new 2016 server and migrate the users/poolices over.  I do not want to update clients automatically at this time, but will do so eventually.  I have servers I do not want to update automatically, as this could cause chaos.

So is this possible?  I am reading the best way to migrate to a new server is to do an inplace update of the current SEPM 12.1.4 server to 14, then install 14 on a new server, and migrate it from there.  Is there a better way?

Thanks.

D

0

Get Client definitions through API

$
0
0
I need a solution

Hi,

We're trying to automate checking the definition versions of SEPM Clients by using the REST API. We're able to get the AV definition, but we're missing the following:

  • SONAR = Behavior-Based Protection
  • Intrusion Prevention Signature = Network-Based Protection (IPS)

Does anyone know if the API is capable of providing this information for Clients? If so, please explain how.

Thanks.

0

risk notification per application

$
0
0
I need a solution

SEPM > monitors > logs > risk <selection application bottom right under advanced setting>

is there a way to have this scheduled? or even set this up as a notification?

I would like to know when a particular application gets tagged as a risk and with any type of action,

and should be notified, or even checked in a scheduled report.

or if there is another way to get to the information? sql query side might be a little delayed?

Anyway - let me know if you guys know of anything

Regards

Gino

0

How to check SEP14 client package installer settings on a client

$
0
0
I need a solution

Hi All, does anyone know if there is a way to check on a host windows workstation if the Dark Network option was used in the installer for the SEP client?

Cheers

PaulC

0

SEP Application & Device Control Policy

$
0
0
I do not need a solution (just sharing information)

I'm in the task of reconfiguring the SEP Application & Device Control Policy since they are saying that SEP is causing much performance issues on Windows 10 machines.

Is it OK to use the ADC policy with its default configuration? or do you guys have any recommenedation on how to configure it effectively without compromising security and performance?

0

Uninstalled SEP 12.1.6 MP9 - Windows 10 will not boot - INACCESSIBLE_BOOT_DEVICE

$
0
0
I need a solution

I've got a Dell Latitude 5580 that developed a restart loop problem after the Microsoft Jan/Feb updates.  Another person recovered using a restore point and then installe dthe Microsoft updates, everything was working but SEP client was not updating (Download Insight, IPS, etc.).  I tried uninstalling SEP (this was how I cleared up a problem on another Dell Latitude 3460).  After the uninstall, Latitude 5580 is unable to boot (INACCESSIBLE_BOOT_DEVICE, no further info).  I tried to use a restore point, but the system is still unable to boot (same behavior).  There were 2 earlier restore points in the initial menu, but now they have disappeared.  The only restore point that I have now is the one that does not work.

I've run the Dell diagnostics and everything came up clean.  I can see the C: drive and list directories.  I think that I'm just going to have to rebuild the system.  I just wondered if anyone on this forum had any other ideas on how I might recover from this before rebuilding. 

0
1520371011

HeartBeat Interval

$
0
0
I need a solution

Hello,

i have a simple question for which i tried to have an answer from different support (SEPM Guide, Forums...) but all what i found was ambiguous (not direct)

When new definition are downloaded by SEPM from Symantec LiveUpdate Servers, when are they distributed to GUPs and then to other SEP clients ?

The heartbeat interval is determinant in this operation (updating the GUPs and SEP clients) ? Thank you for handling my request

Thank you for your answers

Kind Regards

N.Achraf

0

GUP server Roles and Features

$
0
0
I need a solution

Been trying to find the info if I need to install any roles or features for our new GUP server, currently our servers aren't picking up any def's so supecting I need to install some additional roles. Can anyone advise if any roles need to be insytalled and if so what or point me to the right direction. the one link I did find isn't valid anymore.

0

What roles and features are needed for GUP server

$
0
0
I need a solution

Been trying to find the info if I need to install any roles or features for our new GUP server, currently our servers aren't picking up any def's so supecting I need to install some additional roles. Can anyone advise if any roles need to be installed and if so what or point me to the right direction. the one link I did find isn't valid anymore.

0

Offline update download for Live update Administrator

$
0
0
I need a solution

HI,

We installed Live update Administrator and also we added product catalog and now we need to download the updates for which we dont have internet access.

So, we downloaded the updated from another LUA in another network and copied the contents to this LUA download location.

But still its not showing the downloaded updates in lUA console. Please let us know is there alternate solution to download the updated offline

0

FILE REPUTATION LOOKUP ALERT

$
0
0
I need a solution

hy,

i have a sepm 14 RU1 MP1 on windows server 2012 r2

i have a lot of clients 14 RU1 MP1 on windows 7 and win 10 and they are ok

i have also some win xp with clients 12.1.7369.6900. i receive a mail alert with subject FILE REPUTATION LOOKUP ALERT. In the body i have x computer reported file reputation lookup issues. details: The reputation verification for untrusted files failed due to network errors in the last 3 days. 

why ? is there a solutions ?

0

How to fix MicTray issue

$
0
0
I need a solution

Hello there,

I have some devices with problem Audio Driver HP reporting on SEPM as Risk.Mtray. The proposed solution was to update driver but I noticed after update testing in some cases continue reporting issue.

I saw in some articles that the path of the crash was specifically C: \ Windows \ System32 \ MicTray64.exe but
I have computers pointing to failure also in the C: \ Windows \ System32 \ spool \ drivers \ x64 \ 3 \ Xerox \ Product Data \ Public \ DCPs \ x2UNIVMS \ V5.0 \ swsetup \ Audio \ Audio \ X86 \ MicTray \ MicTray \ MicTray .exe

Someone got solve completely that issue? Or give me a suggestion how to do?

Thanks!

0
Viewing all 10484 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>