Quantcast
Channel: Symantec Connect - Endpoint Protection - Discussions
Viewing all 10484 articles
Browse latest View live

SEPM14.2 RU1 report have been limited to the maximum servers

$
0
0
I need a solution

SEPM14.2 RU1 report have been limited to the maximum servers

Detail

- SEPM version 14.2 RU1 ( 1 server)

- SEP version 14.2.1015 ( 600+ servers)

 

I have upgrade SEPM version 14.2.1015 to 14.2 RU1. After upgrade completed the report on SEPM has been limited to the maximum servers.

I'm trying to fix maximum number of rows in report detail as below. but can't replace number of rows more than 200 .

Please kindly to provide solution on this case.

Thank you.

0

unable to access remote web console

$
0
0
I need a solution

Hi all,

i'm currently facing issue while accessing my SEPM remotly through web console. I tried to change the browsers but each time it comes up with "The connection timed out" error.

when i tried to get web console access on my physical SEPM server through I.E its working smoothly.

as server machine  has limited resources so i increased its RAM. but still its not working.

Please suggest if i need any configurational changes.?

0

The installer integrity check failed with error code 0x8007065b

$
0
0
I need a solution
I can not install antivirus software after using CleanWipe software
I encounter the following error:
"The installer integrity check failed. Common causes for this failure include an incomplete download, damaged media, or problems with the Trusted Root certificate store.0x8007065b

I installed all the certificate but unfortunately there is still a problem

0

Unmanaged Lab Network Firewall polices - Looking for ideas

$
0
0
I do not need a solution (just sharing information)

We currently have 2 primary firewall policies, OnNet and OffNet.  When OnNet (on the corporate network) the Firewall is enabled but basically in Allow All mode.  When in OffNet (anywhere but the corporate network) the firewall is much more restrictive.  We have an additional unmanaged network that we are trying to figure out how to deal with.  We call it a Lab network and is a combination of corporate laptops that come and go, as well as computers and devices that could have come from anywere really, vendors, customers, etc.  Some of them are computers, some of them are instruments, etc.  Currently when on the "lab" network corporate computers are in OffNet mode.  The issue is this, computers need to talk to devices while on that network that are consistantly being blocked by the firewall.  Sometimes the corporate computer initiates the connection, sometimes the other device inititates the connection. Nothing is consistant either, IP's ports or protocols, the use case is very broad. What we don't want to do is just turn the firewall off when they are on this network, but there is also no easy way to define what ports and protocols need to be allowed. Does anyone have any suggestions on how to deal with this?

0

SEP 14.2 interfering with Windows Firewall Security

$
0
0
I need a solution

Hi,

We have SEP 14.2 rolled out to some pilot users.  We do not use the SEP Firewall.  We have Windows Firewall rules active.

However, despite Windows Firewall rules being 'On', the Windows Security Centre complains because its looking for the SEP settings and complaining because the Symantec Firewall settings are 'Off'.

Is there a way around this or is this just a cosmetic notification that we have to live with for now?

This was not an issue with SEP 14.0.

Images are below. 

Any help is appreciated..

0

During the installation of symantec in linux shows me this Error: No drivers are loaded into kernel

$
0
0
I need a solution

[root@localhost paquetelinuxrpm]# sudo ./install.sh -i
Starting to install Symantec Endpoint Protection for Linux
Performing pre-check...
Pre-check succeeded
Begin installing virus protection component
Preparando...                         ################################# [100%]
Performing pre-check...
Pre-check is successful
Actualizando / instalando...
   1:sep-14.2.3335-1000               ################################# [100%]
Virus protection component installed successfully
Begin installing Auto-Protect component
Preparando...                         ################################# [100%]
Performing pre-check...
Pre-check is successful
Actualizando / instalando...
   1:sepap-x64-14.2.3335-1000         ################################# [100%]
Auto-Protect component installed successfully
Begin installing GUI component
Preparando...                         ################################# [100%]
Performing pre-check...
Pre-check is successful
Actualizando / instalando...
   1:sepui-14.2.3335-1000             ################################# [100%]
GUI component installed successfully
Pre-compiled Auto-Protect kernel modules are not loaded yet, need compile them f                                                                                        rom source code
Build Auto-Protect kernel modules from source code failed with error: 1
Running LiveUpdate to get the latest defintions...
Update was successful
Installation completed
=============================================================
Daemon status:
symcfgd                         [running]
rtvscand                        [running]
smcd                            [running]
=============================================================
Error: No drivers are loaded into kernel.
=============================================================
Auto-Protect starting
Protection status:
Definition:     Waiting for update.
AP:             Malfunctioning
=============================================================
The log files for installation of Symantec Endpoint Protection for Linux are und                                                                                        er ~/:
sepfl-install.log
sep-install.log
sepap-install.log
sepui-install.log
sepfl-kbuild.log

0

Error on mysymantec to download the endpoint application

$
0
0
I need a solution

Hi All,

I have a issue:

- After login to mysymantec, i unable to view my products. Found out issue from url address as below :

ErrorCode=5&ErrorDescription=Unable+to+create+user&ErrorDetails=User+cannot+access+this+community

- Anyone did having the same issue and got solution as I need to download the latest version of endpoint protection for the user.

0

Rest API Groups multi page

$
0
0
I need a solution

Who can help me with this one? I need to report data from by SEPM server. Because the report function is not showing me what I need I started to word with the API using PowerShell.

I need to get at least a list form my groups wit thu number of ComputerAgents in it. Based on the example scripts provided by Symantec i've started to get information using this powershell command:

(Invoke-RestMethod -method get -Uri https://localhost:8446/sepm/api/v1/groups -Headers @{Authorization='Bearer '+"MyKey"}).content | select-object FullPathName,numberOfPhysicalComputers

It shows me exactly what i need but because the api/v1/groups contains pages, I only get the info from the first page. How do I get the information from all pages? Hope someone can tell me.

0

Symantec Endpoint Protection and Printers

$
0
0
I need a solution

Hello, 

I've been trying to assist a remote user with an issue he's been having with an HP printer. It stopped printing and the help desk un-installed the printer in the course of troubleshooting the failure to print problem. I end up with the ticket and I try to help him get the printer re-installed. We try it via USB because wirelessly it just hangs forever and ever. Well, whenever he plugged in the printer during the installation process, he would get a notification from SEP saying "Blocked SearchIndexter.exe from accessing system volume information. Please contact Help Desk for blocked USB devices." I had him try it a few times because I wanted to make sure I was not imagining it. I'm not an expert on the product by any means I don't have the power to administer it but my understanding is that we've got it configured to block writing to USB devices. My question is just very basic. Forgive the noobishness of it. Can SEP block the installation of a printer? I'd appreciate any insight I can get. Thanks! 

0

Enabling LiveUpdate for Cisco ISE (NAC) integration

$
0
0
I need a solution

Hi,

One of our customer has Symantec Endpoint protection 14.x implemented in the network with signatures pushed from Group Update Server. Currently we are implementing Cisco ISE (Network Adminission Control) solution which will have a client software on the user machines (Anyconnect Client). The requirement is that when a user tries to connect to the network, the Anyconnect agent will check whether the Symantec AV signatures are older than lets say 7 days , if the signatures are older then it will trigger a signature update. The issue that currently the customer has disabled live update functionality from the user machines and they informed us that they are using local Group Update Server instead of live update. Cisco TAC informed that the Anyconnect agent will simply trigger a live update action as part of the remediation process. I have a few questions regarding this scenario

1. When GUP server is used , the user machine can initiate an update or no?.

2. Is there any process I can ask the anyconnect agent to run (to initiate an update with GUP) when it detects an older signature?.

3. Does GUP have any benefits over an internal live update server?. Which one is recommended?.

Thanks

Shabeeb

0

Definitions not getting updated for 2003 Servers

$
0
0
I need a solution

Hello All,

               We have 2 data centers in our environment in one of the Data center, the management console(14.2 RU1 (14.2 3335)) are getting updated with the latest virus definitions from the LUA and all the reporting clients including 2003 servers are getting the latest virus definition from the Managemnet Console, we don't have any issue over there where as we have an issue in the another data center the consoles(14.2 RU1 (14.2 3335)) are getting the definitions from the LUA and it's getting updated and only the 2003 servers are not getting the latest definitions.. I have checked in the LUA it's downloading the content and moving it to the distribution center. Can some one help me why the 2003 Servers are not getting the definitions from the console?

0

Getting this Pop-up....

SEP 15 Firewall Report Inbound Attack Sources?

$
0
0
I need a solution

We just noticed that our weekly Firewall Report (default) is showing a bunch of internal IP addresses as our top sources of inbound attacks. We're trying to understand this and not having any luck finding any further information about this report. Looking on the console, I don't see any security events that match up with these addresses. Does anyone have any clue about this, or can you point me to any documentation? Trying to figure out why/how we'd have our own machines as our top attack sources without this activity showing up in our alerts and security events. I know that some kinds of scans can get flagged as attacks, so it's possible that these are false positives, but not finding any way to verify this.

Also not sure if this is the right forum to post about SEP 15, but the cloud console link took me here, so...

Thank you!

0

Content install failed on the client Product: SEPC STIC

$
0
0
I need a solution

We are getting the following error on a number of servers in our environment and are not sure what causes this error and how to resolve.

Content install failed on the client

Product: SEPC STIC
Version: 14.0 RU1
Language: SymAllLanguages
Moniker: {075551EC-66BD-4487-9E2E-40645AF6F8B0}
Sequence: 190513038
Publish Date: Monday, May 13, 2019
Revision: 038

Any further information would be helpful.  Thanks!

0

Mobile device can connect to system

$
0
0
I need a solution

Mobile device can connect to system and can share data/network/ via USB tethering How we can block it? 

Can we add machemism to SEPM to block the same.

0

Using SCCM to push sylink package

$
0
0
I need a solution

Hello,

    I am moving clients from SEP 12.1.6 manager to SEP 14.2 manager. I have moved all of the ones I can using the tool from the SEP 14.2 manager but still have about 500+ devices that I can't move using that tool. I was thinking about using SCCM to update the sylink file on these clients so they will start checking in with the SEP 14.2 manager. Has anyone done this before with SCCM? What were some of the hurdles?

0

License Renewed

$
0
0
I need a solution

Hi 

The license is expiring soon. Have renewed the license but the Serial number in new renewal certificate is the same as old Serial Number.

I have try:

1. Use renew button but it prompt me the license has been added.

2. When i delete and re-add the license it always detected the old license expiring dated not the updated 

3. I not able to get the .slf file after the Symantec have change they method which causing a lot of problem to me.

After the fileconnect change it give me a big headache time to get Symantec application for user to upgrade they Symantec product, It was a hell yeah, Any advise? Thanks.

0

Apache HTTP Server (32 bit) service reports high cpu usage

$
0
0
I need a solution

Hello,

We are experiencing Apache HTTP Server (32 bit) service high cpu usage [75% approx] which raises the overall CPU utilization to 100% constantly after upgrading SEPM 14.2RU1  Version: 14.2.3332.1000 on Windows 2016 Servers Virtual Machines. However, the physical machines are working fine.

The Virtual Machines configuration is - Windows Server 2016 @2.00GHz  - 6 processors, 32GB RAM. The previous SEPM version 14.2MP1 didn't have this issue.

Appreciate your thoughts.

Thank you.

0

Config.properties shows Access Denied

$
0
0
I need a solution

Hello,

I have been facing a strange issue these days. Earlier, I could not modify the tomcat\etc\config.properties after copying the file to different location than source, modify it and copy it back.

Now I am not all able to open the file , it keep saying "ACCESS is denied"

We have disabled the Symantec Client on the Symnatec Server. Removed Tamper protection, still, it fails to open.

How can I open/edit the config.proerties file now?

0

System Lockdown not working after upgrading to 14.2 RU1

$
0
0
I need a solution

Hello, collegues.

After upgrading to latest SEP version 14.2.3332.1000 (Manager and clients) System Lockdown Blacklist mode does not appear to be working - applications that are a part of File Fingerprint list are still being allowed to run and are not blocked as expected. Client versions prior to 14.2 RU1 work as expected. Has anyone encountered this problem? And, may be knows the solution ?

Thanks.

Stas.

0
Viewing all 10484 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>