How to find last status changes in daily report.
Other delivery methods for alerts
We are using SEPM 11, but we have no exchange server. That limits us from getting alerts. Are there any other ways we can get alerts?
Windows XP SP3 Network Issues: missing Authentication Tab
I've some PCs that perform a strange behaviour.
SEP 12.1 RU2 Installed with all components.
Everything works fine till the user change its IP settings. When it tries to return in dhcp settings, it cannot get IP Address, ipconfig shows nothing and the authentication tab is missing in the lan properties.
If I cleanwipe it and reinstall, everything's works fine... till the next IP change.
Steps I've already performed:
- services checked and already started (I mean wired and wireless autoconfig);
- socks reset;
- network card deleted and automatically reinstalled;
- network card deleted and manually installed with latest drivers.
No way, the issue persists.
SEPM syslog facility
The condition was that syslog received syslog messages from sepm, but it seemd that facility settings was not included, in this case, syslog server could not classify these messages to corresponding files.
My question is that if sepm send syslog with facility settings inside or not?
SEP shows disabled even when client is working fine
In the security status details page on the top dashboard when i click inside i see 40 machines showing Network Threat Protection Failures adn a red X.
When i check the client manually it says a green sign and everything is ok. Also we have disabled the NTP firewall status centrally on SEPM but the component is installed. (Basically it is turned off).
So how do i fix this incorrect reporting and remove that RED X:
Computers with Network Threat Protection Disabled: | 32 |
Total Computers with Network Threat Protection Installed: | 244 |
Failure Ratio: | 13.11% |
Maximum Acceptable Failure Ratio: | 10% |
We are using 12.1.2015.2015 on both server and clients.
Proactive threat function is not working
Hi All,
In my environment I am using symantec endpoint protection 12.1 ru1 and we have around 350 clients but today i am facing problem that 10 systems are showing that proactive threat function is not working properly due to some internal configuration error. what does it mean and how to get out of this problem
Thanks in advance
Vinod Kumar D
zeroday threat
Hello,
I am getting a great support from Symantec Connet site. Today my first question is about zeroday threat, what mean zeroday threat in symantec?
SEP client with os Windows 8 - showing incomaptiblity when running the SEP client program
Hello every one,
Hope you can help with solutions regarding on current scenario
We have SEP 12.1.671 - SBE edition intalled on Windows Server 2008 R2.
Currently it has 5 clients with OS windows 7
Administration purchased a new laptop with Windows 8
I installed the current x64 symantec client setup on windows 8 and after installation it works fine for 1 month. then suddenly after updating and applying required updates from microsoft at the Windows 8 machine, after restart and opening sep client, the software was unable to open and show the window of SEP client, instead it is showing Program compatibility.
1. is there anyway how to solve this issue? if the cause is from microsoft update. what particular update was this?
2. is there a work around to be done on the SEPM?
Hope that you could help me and suggest some work arounds for this.
as our administration is purchasing additional 15 laptops with Windows 8 OS.
I also try to uninstall the SEP client on Windows 8 Machine and it doesn't allow me to uninstall even administrator account is currently used.
Thanks and appreciate whatever your workarounds and solution.
:)
Andronickooo
Where to find expiration date of Symantec Endpoint Protection on MAC?
Where can i find the expiration date of the Symantec Endpoint Protection i installed on my MACbook?
Upgrading SEPM from 11.x to 12.1.2015.2015
Good Morning Connect,
I have recently taken over the SEPM solution that our server team had since install. IT Security is taking over the responsibility. We are having a few issues with this turn over which are listed below:
- The server admin that is responsible for it now did't do the install and is took over SEPM like I am now
- The server admin is now engaged in other matters with disaster recovery class / setup
- The server admin never installed or upgraded versions just patch releases to the 11.x environment
So as the Technical Security Analyst, my job is outlined in the task below:
- Migrate (hopefully) all the structure to the new install of 12.1.2015.2015
- Get with the desktop team and server teams to give them the new 12.X client install to bake into image
- Start upgrading current clients on 11.X
I am stuck in a few places with my task as I have been researching without success. Migrating from 11 to 12. There is a new server that we installed version 12 on. This server is a vm server and it has the sql server installed on the same server. (We are under 3000 clients on our network) How would I take our existing structure with groups, roles, policies, and reports into the new environment?
Once the initial migration of structure is complete, pushing out the version 12 client does't seem that bad. I can't however push out the new version to the clients on the network without making sure they are in the correct group and have the correct policies.
We have certain manufacturing servers, etc that have different policies in place. Some software can't be hindered by firewalls, others can't have anything, etc, etc. We also have 1000 field sales laptops. We had to get a custom policy for these laptops since they aren't connected to the vpn for more than a couple of minutes at a time. We put in if the client cannot touch our dns server, then it goes to Symantec Online to receive updates.
As you can see I am stuck and looking for a white paper, a how to guide, or anything that will help me out with migrating to the new version. Any help will be greatly appreciated. I have contacted our technical sales rep for more information but did't know if someone had something accessible so I could start and show progress to management.
Thanks,
Kyle
SEP 12.1.2: Configure VirusDef location (C:\ProgramData...)
Hi all,
Is it possible during installation of the SEP 12.1.2 client, to amend install location C:\ProgramData\Symantec to another path?
If so, how?
We would like to put it on another drive with plenty of space.
Regards,
Liam
Apache http server a cessé de fonctionner
Bonjour,
J'ai installé SEPM sur Windows Server 2008.
Le système d'exploitation bloque le lancement du serveur Apache (httpd.exe).
J'ai pas trouvé une solution pour relancer le serveur Apache.
Merci d'avance pour votre aide.
Cordialement,
SEP 12.1 Skipping LiveUpdate Option
Aide configuration LUA
Bonjour,
Je suis un peu nouveau dans le monde de SEP. Je suis entrain de monter un réseau où les machines clientes disposant de SEP 11 vont se mettre à jour à partir d'un serveur interne, donc d'après ce que j'ai compris, on a besoin d'installer LiveUpdate Administrator.
Est - il obligatoire d'installer SEP Manager?
Merci pour vos réponses.
Server rebooting due to Symantec Antivirus 8.1.1.323
There are unexpected system shutdowns and After enabling the creation of memory dump files on the server, and
analyzing the first .dmp file generated:
BugCheck 1000008E, {c0000005, 809040be, b4c4a6d4, 0}
*** WARNING: Unable to verify timestamp for NAVAP.sys
*** ERROR: Module load completed but symbols could not be loaded for NAVAP.sys
Probably caused by : NAVAP.sys ( NAVAP+2d873 )
Followup: MachineOwner
We have windows server 2003 and we are using Symantec Antivirus 8.1.1.323.
There are unexpected system shutdowns and After enabling the creation of memory dump files on the server.
This is a virtual server.Host is experiencing unexpected system shutdowns (sourcetype="wineventlog:system" AND EventCode="6008")
nlnvp.dll and Lotus Notes
We use lotus notes here and the latest 12.1.2015.2015 version of symantec. The issue is i am unable to delete the NLNVP.DLL from the program folder even after i uninstall the Lotus notes completely from that system. It says you need Administrator permissions even though i am the local admin of that system. I even stopped symantec services but still it wont go away. Any ideas?
We are facing issues of this and i already read some articles where it creates issues and entries get added to notes.ini files.ExtMgr_Addins=NLNVP.DLL
SEP - Remove TotalDefense V14 during deployment
Getting started with SEP and moving from the current TotalDefense v14. Currently Symantec have CA 8.1 and TotalDefense R12 listed as removable during the SEP deployment. Is there any plan to add v14 in the near future?
Or anyone else performed this same deployment and have some insight? Our TotalDefense Console is gone (the BS killed the server it was on basically) and the TD provided removal script does not actually remove when ran as a startup script : /.
dbsrv12.exe memory consumption
We have SEP 12 installed on a Windows 2003 Server, and dbsrv12.exe is consuming large amounts of memory (about 1GB or even more) and we have to manually stop the SEP embedded database and SEP manager services to reduce it, but only for a few days, and then we have to do that again all over ..
Any help ?
Realistic Size limitations of SEPM Host Groups?
Hello,
Like other folks in this discussion group I use host groups within SEP firewall rules to block access to known nasty sites. That list is getting pretty large, and I'm wondering "how big is too big?". 100 rows? 500? I understand that YMWWV (your mileage will wildly vary) depending on hardware, but does anyone have any stats about large host groups used in SEP firwealls used on average hardware (let's say, Core i5 based laptops with 4GB of RAM on 32 bit Windows 7)?
While I'm writing I'd also like to second/third/fourth comments made here and in the ideas section to improve management of host groups in future revisions - it's a great feature, and things like bulk import, comments and date stamps would be a great help.
Happy Hunting
SEP 12.1.671 compatible with Server 2012
Can someone let me know if SEP 12.1.671 compatible with Server 2012?