Quantcast
Channel: Symantec Connect - Endpoint Protection - Discussions
Viewing all 10484 articles
Browse latest View live

Not able to Remote Push SEP to Windows 10 Enterprise.

$
0
0
I need a solution

Hello,

I'm currently running SEMP 14.0.1 (14.0 RU1) and I'm attempting to send a SEP install to a Windows 10 OS laptop (Version 1709, OS Build 16299.547). I've tried installing it by IP and computer name. Everytime I'm prompted with domain creditentials, SEPM gives error message ""Login to "computer name" (ipaddres) failed. The client could not be installed on the remote computer."" Ive confirmed several times username and password is correct, the account is not locked, and I was able to send a install successfully to a Windows 7 machine. I've disabled all firewalls, and Windows Defender on the laptop. I know there was an issue with software versions of SEPM not working on Windows 10 versions, but from what I've read I should have a version that is compatible to both my SEMP and Windows 10 build. Any ideas folks?

Thanks,

Jared

0

Release Notification: 14.2 build 770 (14.2.770.0000) will be replacing 14.2 build 760 (14.2.760.0000) on FileConnect

$
0
0
I do not need a solution (just sharing information)

We have refreshed the 14.2 build currently hosted on FileConnect with a newer version that addresses a few in-field issues. The new version is: 14.2.770.0000. There is no requirement to upgrade to this new version for customers already on 14.2, unless they have experienced one of the issues listed below and have not applied any of the associated workarounds.

In-field issues that were fixed:

https://support.symantec.com/en_US/article.TECH250796.html?

https://support.symantec.com/en_US/article.TECH250795.html?

https://support.symantec.com/en_US/article.TECH250794.html?

0

RSAT Tools on Windows 10 Build 1803

$
0
0
I need a solution

I have loaded the newest Symantec Endpoint Protection Client 14.2.770.0000.

I can not run most of the RSAT tools and servermanager.exe.

What is the solution other than moving back to the 14.1.x cilent?

0

Location Awareness issues

$
0
0
I need a solution

Hiya,

I am tryng to setup Location Awareness based on subnet.

I created Location X with the rule "if computer has an IP address of 172.16.133.0 and subnet mask 255.255.255.0" and then I created another location, Locaton Y, and copied this condition except changed it to "if computer DOES NOT have this IP.."

A client has the IP of 172.16.133.43 yet it is falling into Location Y for some reason. In the condition(s) there are other subnets, such as 172.16.132.0 and 172.16.134.0"

I know it's probably hard for you to know why this happening from the above explanation. Is there a way to see why a client has fallen into Location Y? Anything in the reports? i.e "client 123 was assigned to Location Y because it meets condition A"

If there were a conflict it would fall into the default group so not sure what is triggering it to fall into the "does NOT have the IP.."  condition of Location Y.

Cheers,
Sam

EDIT: I have seen the article https://support.symantec.com/en_US/article.TECH250794.html about Location Awareness stop working so will try the latest client tomrrow but Location Awareness does still work if I disable Location Y for example.

0

Clients not updating install features when moved to new group

$
0
0
I need a solution

I moved a few machines to a new group that contains policies for firewall, Sonar, download protection etc. When I moved them and forced update they still do not get the new features only have AV (Virus and Spyware Protection). 

The policy serial number is correct and same on all machines

Firewall status says "Not installed"

All systems in the group have the green dot, even those that dont have the new features.

Should I repush the OS to these machine containing the new install package? Or is there an easier way for all these machines to get the new package.

0

wpfgfx_v0400.dll false positive with SEP 14.2.760 24.07.2018 defs Win8.1 July updates

$
0
0
I need a solution

wpfgfx_v0400.dll false positive with SEP 14.2.760 24.07.2018 defs Win8.1 July updates

TROJAN.GEN.NP2 Cleaned by deletion  on 5 computers all with Wndows 8.1 Enterprise

Until now I dont't have allerts from Windows 7 or Windows 10 computers

C:\Windows\WinSxS\x86_netfx4-wpfgfx_b03f5f7f11d50a3a_4.0.9664.17161_none_aadf6268cce74b6f\wpfgfx_v0400.dll   

and

C:\Windows\WinSxS\x86_microsoft-windows-ucrt_31bf3856ad364e35_6.3.9600.18817_none_40af860e34de2c39\ucrtbase.dll

0

Multiple SEP icons/instances when opening multiple citrix sessions on pc

$
0
0
I need a solution

Hi all,

Has anyone found that multiple SEP icons/instances are active when opening multiple Citrix sessions on a pc.

See screenshot?

Is there a workaround or solution to this? Currently running SEP v14 Ru1Mp2.

Thanks in advance for any assistance

.

0

Managment Server Lists

$
0
0
I need a solution

Hi, 

Im setting up a new Enviroment and have the second site already replicating to the old. I changed the priority on the Management server Lists last friday to the new site, but still over 70% are reporting to the old enviroment. What do i need to check to make sure that all the clients are reporting to the new servers.

0

Installation Compliance on Endpoints, Systems Baseline

$
0
0
I need a solution

I need help with the ones written below:

SEP AV installation Compliance on Endpoints, Systems Baseline. How frequently Baseline will get compared with AV data,

Process to ensure system is compliant before it handed over to End user

Thank You!

0

List of SEP event id's in windows event viewer -monitoring

$
0
0
I need a solution

Hi all,

Does Symantec have or does anyone know the list of SEP v14 event ID's that would be written to the Windows event viewer?

We would like to monitor the windows event viewer logs for SEP via SCOM. Anyone monitoring it currently?

Thanks in advance for any assistance provided.

T

0

Content updates priority

$
0
0
I need a solution

Good afternoon, 

I have a doubt about the priority of the sources that a SEP client will use in case several of them are available. If in the LU policy, we have checked both

- use the default management server

- use a liveupdate server --> specific internal liveupdate server

As far as I know the clients that use this policy would get their content from the SEPM, and in case the SEPM is not available, from the internal LUA. Am I correct?

I think that the priority when you have several sources for content updates is as follows:

  1. GUPs (multiple, explicit, single)
  2. SEPM
  3. LiveUpdate servers (either internal or external)

Is there a way of configuring the clients to use the internal LUA and go to the SEPM in case of LUA's failure?

Kind regards, 

Juan

0

SEP 14 - computer status shows "DBDATA_AGENT_TYPE_0" in Client type

$
0
0
I do not need a solution (just sharing information)

Hello Everyone

I recently noticed that the computer status log extracted through the SEPM console (version 14 MP2) shows "DBDATA_AGENT_TYPE_0" information in the Client Type column instead of displaying the "Symantec Endpoint Protection" info.
This only occurs in the logs of some SEP clients of the environment that I manage.
Anyone here ever seen such a case?
Was it some version bug?

0

SEPPrep push to a large number of clients?

$
0
0
I need a solution

Hello,

     I'm gradually migrating a fairly large enterprise from McAfee to SEP 14.2.  I have a SEPM setup with a client protecting the SEPM server.  I want to start prioritizing migration for groups.  I figure I'd start with a test group of 100 and move up to 1,000 clients.  Since I'm going to be removing McAfee and it has previously shown itself to be VERY persistant and obstinant to removal, I wanted to use the SEPPrep/competing-products removal tool enmasse to cleanly remove McAfee just prior to pushing SEP.  It appears that it's intended to be used on a single client at a time.  Is there a supported way to push the tool to a large number of clients to ensure McAfee gets removed cleanly?

Thanks,

Paul

0

how to integrate with SEPM to CAS

Symantec Not Showing In MacOS Notification Center

$
0
0
I need a solution

I've come across an issue where some of my Mac clients are showing Symantec in their System Preferences > Notifications and some do not. I can't figure out how this gets installed or enabled. We install SEP by generating a remote deployment package from the SEP installer and then deploying it through JAMF or ARD. I'm enclosing a screenshot that shows it in one of my Mac clients.

Any help is appreciated!

0

Symantec_Endpoint_Protection.14.2.0.Part1_Trialware_CS.exe is missing a SHA256 digest algorithm

$
0
0
I need a solution

Attention: The person(s) who digitally sign(s) Symantec Endpoint Protection Trialware

Symantec_Endpoint_Protection.14.2.0.Part1_Trialware_CS.exe is missing a SHA256 digest algorithm.

The MD5 hashsum of Symantec_Endpoint_Protection.14.2.0.Part1_Trialware_CS.exe is 49e392843e663ac28baa6c5758abbf4f

Please correct the oversight and reupload the abovementioned trialware to the relevant website.

The Japanese, Korean and Traditional Chinese versions of 14.2.770.000 trialware have both SHA1 and SHA256 digest algorithms.

0

Many Symantec popup windows after Windows10 update

$
0
0
I need a solution

Every time a Windows 10 computer does some major updates, Symantec start poping up a dialog boxes and ask, "Do you want to allow it to access the network?". Two attached images shows the issue. This message pop ups for skype, dropbox and many other things. This has been hapening to many of our Windows 10 computers(not windows 7). Please let me know if you know anything about this

0

SEP Quarantining files in EVVC folder

$
0
0
I need a solution

Hi Folks,

I have a user's computer which is detecting files in the folder c:\users\<username>\appdata\roaming\evvc\ as threats and quarantining the files. 

I have isolated the computer and began searching for a virus that could be on the computer but have come up empty handed.

I gave the user a new computer to work on while I was searching his original 'infected computer' and now the new computer is doing the same thing (I didn't transfer any file from his original computer).

I'm guessing that if this is a virus that it might be in his mail box or enterprise Vault. but I also read on other anti virus forums that sometimes this is a false positive.

a full virus scan only show's up the files created within the EVVC folder but doesn't show any other threats.

has anyone seen this before?

Regards

Ciaran

0

Firewall issue

$
0
0
I need a solution

After latest update, I lose internet connection in the subnet after restart, and need to open firewall config in the client, check off and on my own added protocol (allow trafic on the net pci card), and only then the internet connection to my subnet is back!

Please solve the issue!

0

Python API to post IoCs to SEPM14.2

$
0
0
I need a solution

Hi all,

I was wondering if it is possible to use python and the API to upload IoCs (file hashes, IP addressed, FQDN, etc) directly to the SEPM server to then be disseminated out to clients.

I have a trial of SEPM 14.2 , and an researching if I can create an integration between my IoC feed and SEPM via python.

Many thanks in advance

JB

0
Viewing all 10484 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>