Quantcast
Channel: Symantec Connect - Products - Discussions
Viewing all 21603 articles
Browse latest View live

How to handle infections that aren't detected by SEP

$
0
0
I need a solution

We have a third party service that detects when our machines are attemping to connect to known bot networks.  When we receive these alerts, we send a desktop technician to take a look at the machine.  Sometimes they run a SEP 12 scan, which doesn't detect anything.  (If SEP 12 were able to detect it, it would have stopped it in the first place, since it is configured to run in memory.)

For machines in this state, where you know something is wrong, but you can't find any evidence of that with SEP, what should you do?  Is there another Symantec tool that is recommended, or are we supposed to just find another third party tool to get a "second opinion" on the machine?


Java 1.7.0.7

$
0
0
I need a solution

In my env. i have to use Java for Kronos - payroll  system as well as managing cisco ASA etc.

i have SEPM 12.1 RU3 with a mix of SEP 12.1.2015 and 12.1.3 clients installed. I'm noticing now that Java is being blocked unless i upgrade java to the latest version.

I haven't changed any policies. Can someone point me as to where this is being controlled. I need to be able to use Java 7.0.7

SEP 12 Console Installatioin - recovery file not detected automatically

$
0
0
I need a solution

Hello,

 

I am attempting to install SEP 12 on a brand new Windows Server 2008 server.

I have reached part of the wizard to configure Management Server. Unfortunately it did not detect the default recovery file, nor do I know what file this is.

See attached screenshot.

Why ???

Endpoint Protection Manager runs LiveUpdate return code = 4

$
0
0
I need a solution

I've been having a problem for two weeks now where after I upgraded from SEPM 11.0 to 12.1 I now encounter this error

"LiveUpdate encountered one or more errors. Return code = 4"

From what I've read, Return code = 4 is usually linked to a proxy error but everything I have in LiveUpdate is configured.  If I run luall.exe manually it will fail with the same error code on express but will complete and update if I run it under interactive mode.  This makes little sense to me.

I've tried un-installing and re-installing LiveUpdate, I've repaired SEPM.  All to no avail.  If anyone has any ideas on this I'm all ears and I'd be happy to upload any log files that are needed.  Thanks!

replace client communication

$
0
0
I need a solution

In our organisation some of sep clients are not getting updates from Symantec endpoint protection server, After some analysis found that the clients which have not been updated that is moved from other site and there was different Symantec Endpoint Protection Server, so clients are trying to connect that server only. Someone has advised me to replace communication settings on those clients which having problem.

 

Informations about Private Insight server

$
0
0
I need a solution

Hi all,

SEP 12.1.3 contains as a new feature "Integration with Insight for Private Clouds appliance", which seems to mean that SEP is able to work with a local Insight reputation database. That's great because some customers are hesitant to allow Insight Lookup via WAN.

However, I didn't find anything about the new feature except this KB article:

Configuring Symantec Endpoint Protection Manager to work with a private Insight server

http://www.symantec.com/docs/HOWTO84720

Are there some more informations about installing and configuring Private Insight servers available?

rollback issue

$
0
0
I need a solution

Roll back issue. Please help

sep log

=== Verbose logging started: 21-06-2013  22:50:22  Build type: SHIP UNICODE 5.00.9200.00  Calling process: C:\Windows\system32\msiexec.exe ===
MSI (c) (CC:D8) [22:50:22:051]: Font created.  Charset: Req=0, Ret=0, Font: Req=MS Shell Dlg, Ret=MS Shell Dlg

MSI (c) (CC:D8) [22:50:22:051]: Font created.  Charset: Req=0, Ret=0, Font: Req=MS Shell Dlg, Ret=MS Shell Dlg

MSI (c) (CC:A0) [22:50:22:059]: Resetting cached policy values
MSI (c) (CC:A0) [22:50:22:059]: Machine policy value 'Debug' is 0
MSI (c) (CC:A0) [22:50:22:059]: ******* RunEngine:
           ******* Product: C:\SEP\Sep64.msi
           ******* Action:
           ******* CommandLine: **********
MSI (c) (CC:A0) [22:50:22:059]: Machine policy value 'DisableUserInstalls' is 0
MSI (c) (CC:A0) [22:50:22:063]: Note: 1: 1402 2: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer 3: 2
MSI (c) (CC:A0) [22:50:22:063]: SOFTWARE RESTRICTION POLICY: Verifying package --> 'C:\SEP\Sep64.msi' against software restriction policy
MSI (c) (CC:A0) [22:50:22:063]: SOFTWARE RESTRICTION POLICY: C:\SEP\Sep64.msi has a digital signature
MSI (c) (CC:A0) [22:50:22:127]: SOFTWARE RESTRICTION POLICY: C:\SEP\Sep64.msi is permitted to run at the 'unrestricted' authorization level.
MSI (c) (CC:A0) [22:50:22:131]: Cloaking enabled.
MSI (c) (CC:A0) [22:50:22:131]: Attempting to enable all disabled privileges before calling Install on Server
MSI (c) (CC:A0) [22:50:22:135]: End dialog not enabled
MSI (c) (CC:A0) [22:50:22:135]: Original package ==> C:\SEP\Sep64.msi
MSI (c) (CC:A0) [22:50:22:135]: Package we're running from ==> C:\SEP\Sep64.msi
MSI (c) (CC:A0) [22:50:22:139]: APPCOMPAT: Compatibility mode property overrides found.
MSI (c) (CC:A0) [22:50:22:139]: APPCOMPAT: looking for appcompat database entry with ProductCode '{C02FF081-3B1D-47BA-AA68-37D0EA4B75C5}'.
MSI (c) (CC:A0) [22:50:22:139]: APPCOMPAT: no matching ProductCode found in database.
MSI (c) (CC:A0) [22:50:22:143]: MSCOREE not loaded loading copy from system32
MSI (c) (CC:A0) [22:50:22:147]: Machine policy value 'TransformsSecure' is 0
MSI (c) (CC:A0) [22:50:22:147]: User policy value 'TransformsAtSource' is 0
MSI (c) (CC:A0) [22:50:22:147]: Machine policy value 'DisablePatch' is 0
MSI (c) (CC:A0) [22:50:22:147]: Machine policy value 'AllowLockdownPatch' is 0
MSI (c) (CC:A0) [22:50:22:147]: Machine policy value 'DisableLUAPatching' is 0
MSI (c) (CC:A0) [22:50:22:147]: Machine policy value 'DisableFlyWeightPatching' is 0
MSI (c) (CC:A0) [22:50:22:147]: APPCOMPAT: looking for appcompat database entry with ProductCode '{C02FF081-3B1D-47BA-AA68-37D0EA4B75C5}'.
MSI (c) (CC:A0) [22:50:22:147]: APPCOMPAT: no matching ProductCode found in database.
MSI (c) (CC:A0) [22:50:22:147]: Transforms are not secure.
MSI (c) (CC:A0) [22:50:22:147]: PROPERTY CHANGE: Adding MsiLogFileLocation property. Its value is 'C:\Users\Client\AppData\Local\Temp\SEP_INST.log'.
MSI (c) (CC:A0) [22:50:22:147]: Command Line: SRCLICFILE=EE CURRENTDIRECTORY=C:\SEP CLIENTUILEVEL=0 CLIENTPROCESSID=5580
MSI (c) (CC:A0) [22:50:22:147]: PROPERTY CHANGE: Adding PackageCode property. Its value is '{152B7A12-2F5D-4010-9EF8-C49C3AF774B4}'.
MSI (c) (CC:A0) [22:50:22:147]: Product Code passed to Engine.Initialize:           ''
MSI (c) (CC:A0) [22:50:22:147]: Product Code from property table before transforms: '{C02FF081-3B1D-47BA-AA68-37D0EA4B75C5}'
MSI (c) (CC:A0) [22:50:22:147]: Product Code from property table after transforms:  '{C02FF081-3B1D-47BA-AA68-37D0EA4B75C5}'
MSI (c) (CC:A0) [22:50:22:147]: Product not registered: beginning first-time install
MSI (c) (CC:A0) [22:50:22:147]: PROPERTY CHANGE: Adding ProductState property. Its value is '-1'.
MSI (c) (CC:A0) [22:50:22:147]: Entering CMsiConfigurationManager::SetLastUsedSource.
MSI (c) (CC:A0) [22:50:22:147]: User policy value 'SearchOrder' is 'nmu'
MSI (c) (CC:A0) [22:50:22:147]: Adding new sources is allowed.
MSI (c) (CC:A0) [22:50:22:147]: PROPERTY CHANGE: Adding PackagecodeChanging property. Its value is '1'.
MSI (c) (CC:A0) [22:50:22:147]: Package name extracted from package path: 'Sep64.msi'
MSI (c) (CC:A0) [22:50:22:147]: Package to be registered: 'Sep64.msi'
MSI (c) (CC:A0) [22:50:22:147]: Note: 1: 2262 2: AdminProperties 3: -2147287038
MSI (c) (CC:A0) [22:50:22:147]: Machine policy value 'DisableMsi' is 0
MSI (c) (CC:A0) [22:50:22:147]: Machine policy value 'AlwaysInstallElevated' is 0
MSI (c) (CC:A0) [22:50:22:147]: User policy value 'AlwaysInstallElevated' is 0
MSI (c) (CC:A0) [22:50:22:147]: Product installation will be elevated because user is admin and product is being installed per-machine.
MSI (c) (CC:A0) [22:50:22:147]: Running product '{C02FF081-3B1D-47BA-AA68-37D0EA4B75C5}' with elevated privileges: Product is assigned.
MSI (c) (CC:A0) [22:50:22:147]: PROPERTY CHANGE: Adding SRCLICFILE property. Its value is 'EE'.
MSI (c) (CC:A0) [22:50:22:147]: PROPERTY CHANGE: Adding CURRENTDIRECTORY property. Its value is 'C:\SEP'.
MSI (c) (CC:A0) [22:50:22:147]: PROPERTY CHANGE: Adding CLIENTUILEVEL property. Its value is '0'.
MSI (c) (CC:A0) [22:50:22:147]: PROPERTY CHANGE: Adding CLIENTPROCESSID property. Its value is '5580'.
MSI (c) (CC:A0) [22:50:22:147]: TRANSFORMS property is now:
MSI (c) (CC:A0) [22:50:22:147]: PROPERTY CHANGE: Adding VersionDatabase property. Its value is '200'.
MSI (c) (CC:A0) [22:50:22:147]: SHELL32::SHGetFolderPath returned: C:\Users\Client\AppData\Roaming
MSI (c) (CC:A0) [22:50:22:147]: SHELL32::SHGetFolderPath returned: C:\Users\Client\Favorites
MSI (c) (CC:A0) [22:50:22:147]: SHELL32::SHGetFolderPath returned: C:\Users\Client\AppData\Roaming\Microsoft\Windows\Network Shortcuts
MSI (c) (CC:A0) [22:50:22:147]: SHELL32::SHGetFolderPath returned: C:\Users\Client\Documents
MSI (c) (CC:A0) [22:50:22:147]: SHELL32::SHGetFolderPath returned: C:\Users\Client\AppData\Roaming\Microsoft\Windows\Printer Shortcuts
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Users\Client\AppData\Roaming\Microsoft\Windows\Recent
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Users\Client\AppData\Roaming\Microsoft\Windows\SendTo
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Users\Client\AppData\Roaming\Microsoft\Windows\Templates
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\ProgramData
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Users\Client\AppData\Local
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Users\Client\Pictures
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Users\Public\Desktop
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Users\Client\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Users\Client\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Users\Client\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Users\Client\AppData\Roaming\Microsoft\Windows\Start Menu
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Users\Client\Desktop
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Templates
MSI (c) (CC:A0) [22:50:22:151]: SHELL32::SHGetFolderPath returned: C:\Windows\Fonts
MSI (c) (CC:A0) [22:50:22:151]: Note: 1: 2898 2: MS Sans Serif 3: MS Sans Serif 4: 0 5: 16
MSI (c) (CC:A0) [22:50:22:155]: MSI_LUA: Setting AdminUser property to 1 because this is the client or the user has already permitted elevation
MSI (c) (CC:A0) [22:50:22:155]: MSI_LUA: Setting MsiRunningElevated property to 1 because the install is already running elevated.
MSI (c) (CC:A0) [22:50:22:155]: PROPERTY CHANGE: Adding MsiRunningElevated property. Its value is '1'.
MSI (c) (CC:A0) [22:50:22:155]: PROPERTY CHANGE: Adding Privileged property. Its value is '1'.
MSI (c) (CC:A0) [22:50:22:155]: Note: 1: 1402 2: HKEY_CURRENT_USER\Software\Microsoft\MS Setup (ACME)\User Info 3: 2
MSI (c) (CC:A0) [22:50:22:155]: PROPERTY CHANGE: Adding USERNAME property. Its value is 'Client'.
MSI (c) (CC:A0) [22:50:22:155]: Note: 1: 1402 2: HKEY_CURRENT_USER\Software\Microsoft\MS Setup (ACME)\User Info 3: 2
MSI (c) (CC:A0) [22:50:22:155]: PROPERTY CHANGE: Adding DATABASE property. Its value is 'C:\SEP\Sep64.msi'.
MSI (c) (CC:A0) [22:50:22:155]: PROPERTY CHANGE: Adding OriginalDatabase property. Its value is 'C:\SEP\Sep64.msi'.
MSI (c) (CC:A0) [22:50:22:155]: Machine policy value 'MsiDisableEmbeddedUI' is 0
MSI (c) (CC:A0) [22:50:22:155]: PROPERTY CHANGE: Adding SourceDir property. Its value is 'C:\SEP\'.
MSI (c) (CC:A0) [22:50:22:155]: PROPERTY CHANGE: Adding SOURCEDIR property. Its value is 'C:\SEP\'.
MSI (c) (CC:D8) [22:50:22:155]: PROPERTY CHANGE: Adding VersionHandler property. Its value is '5.00'.
=== Logging started: 21-06-2013  22:50:22 ===
MSI (c) (CC:A0) [22:50:22:159]: Note: 1: 2205 2:  3: PatchPackage
MSI (c) (CC:A0) [22:50:22:159]: Machine policy value 'DisableRollback' is 0
MSI (c) (CC:A0) [22:50:22:159]: User policy value 'DisableRollback' is 0
MSI (c) (CC:A0) [22:50:22:159]: PROPERTY CHANGE: Adding UILevel property. Its value is '5'.
MSI (c) (CC:A0) [22:50:22:159]: Note: 1: 2203 2: C:\Windows\Installer\inprogressinstallinfo.ipi 3: -2147287038
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying VersionNT property. Its current value is '602'. Its new value: '601'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying VersionNT64 property. Its current value is '602'. Its new value: '601'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '0'. Its new value: '14'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '14'. Its new value: '13'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '13'. Its new value: '12'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '12'. Its new value: '11'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '11'. Its new value: '10'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '10'. Its new value: '9'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '9'. Its new value: '8'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '8'. Its new value: '7'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '7'. Its new value: '6'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '6'. Its new value: '5'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '5'. Its new value: '4'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '4'. Its new value: '3'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '3'. Its new value: '2'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '2'. Its new value: '1'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '1'. Its new value: '0'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying VersionNT property. Its current value is '601'. Its new value: '600'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying VersionNT64 property. Its current value is '601'. Its new value: '600'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '0'. Its new value: '14'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '14'. Its new value: '13'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '13'. Its new value: '12'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '12'. Its new value: '11'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '11'. Its new value: '10'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '10'. Its new value: '9'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '9'. Its new value: '8'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '8'. Its new value: '7'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '7'. Its new value: '6'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '6'. Its new value: '5'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '5'. Its new value: '4'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '4'. Its new value: '3'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '3'. Its new value: '2'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '2'. Its new value: '1'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '1'. Its new value: '0'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying VersionNT property. Its current value is '600'. Its new value: '502'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying VersionNT64 property. Its current value is '600'. Its new value: '502'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '0'. Its new value: '14'.
MSI (c) (CC:A0) [22:50:22:163]: APPCOMPAT: [DetectVersionLaunchCondition] Launch condition version successfully detected.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying VersionNT property. Its current value is '502'. Its new value: '602'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying ServicePackLevel property. Its current value is '14'. Its new value: '0'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Modifying VersionNT64 property. Its current value is '502'. Its new value: '602'.
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Adding ACTION property. Its value is 'INSTALL'.
MSI (c) (CC:A0) [22:50:22:163]: Doing action: INSTALL
Action 22:50:22: INSTALL.
Action start 22:50:22: INSTALL.
MSI (c) (CC:A0) [22:50:22:163]: UI Sequence table 'InstallUISequence' is present and populated.
MSI (c) (CC:A0) [22:50:22:163]: Running UISequence
MSI (c) (CC:A0) [22:50:22:163]: PROPERTY CHANGE: Adding EXECUTEACTION property. Its value is 'INSTALL'.
MSI (c) (CC:A0) [22:50:22:163]: Doing action: Check32BitSupport
Action 22:50:22: Check32BitSupport.
Action start 22:50:22: Check32BitSupport.
MSI (c) (CC:94) [22:50:22:351]: Invoking remote custom action. DLL: C:\Users\Client\AppData\Local\Temp\MSIFEBF.tmp, Entrypoint: Check32BitSupport
MSI (c) (CC:C0) [22:50:22:355]: Cloaking enabled.
MSI (c) (CC:C0) [22:50:22:355]: Attempting to enable all disabled privileges before calling Install on Server
MSI (c) (CC:C0) [22:50:22:355]: Connected to service for CA interface.
MSI (c) (CC:0C) [22:50:22:435]: PROPERTY CHANGE: Adding Supports32BitDlls property. Its value is '1'.
Action ended 22:50:22: Check32BitSupport. Return value 1.
MSI (c) (CC:A0) [22:50:22:439]: Skipping action: No32BitSupportError (condition is false)
MSI (c) (CC:A0) [22:50:22:439]: Doing action: FindRelatedProducts
Action 22:50:22: FindRelatedProducts. Searching for related applications
Action start 22:50:22: FindRelatedProducts.
Action ended 22:50:22: FindRelatedProducts. Return value 1.
MSI (c) (CC:A0) [22:50:22:439]: Skipping action: DowngradeError (condition is false)
MSI (c) (CC:A0) [22:50:22:439]: Skipping action: LegacyNortonError (condition is false)
MSI (c) (CC:A0) [22:50:22:439]: Skipping action: LegacySymError (condition is false)
MSI (c) (CC:A0) [22:50:22:439]: Doing action: DriverCheck
Action 22:50:22: DriverCheck.
Action start 22:50:22: DriverCheck.
MSI (c) (CC:74) [22:50:22:471]: Invoking remote custom action. DLL: C:\Users\Client\AppData\Local\Temp\MSIFFD9.tmp, Entrypoint: DriverCheck
DriverCheck SymEvent did not open. Trying accessing via CreateFile
DriverCheck SymEvent did not open (probably doesn't exist -- this is fine) with: 2
DriverCheck SymTDI did not open. Trying accessing via CreateFile
DriverCheck SymTDI did not open (probably doesn't exist -- this is fine) with: 2
DriverCheck WPS did not open. Trying accessing via CreateFile
DriverCheck WPS did not open (probably doesn't exist -- this is fine) with: 2
Action ended 22:50:22: DriverCheck. Return value 1.
MSI (c) (CC:A0) [22:50:22:479]: Doing action: SetMigrateProperty
Action 22:50:22: SetMigrateProperty.
Action start 22:50:22: SetMigrateProperty.
MSI (c) (CC:44) [22:50:22:507]: Invoking remote custom action. DLL: C:\Users\Client\AppData\Local\Temp\MSI9.tmp, Entrypoint: SetMigrateProperty
Action ended 22:50:22: SetMigrateProperty. Return value 1.
MSI (c) (CC:A0) [22:50:22:515]: Skipping action: SetSNACMigratePropertyAmberPlus (condition is false)
MSI (c) (CC:A0) [22:50:22:515]: Skipping action: SetSNACMigratePropertyOlder (condition is false)
MSI (c) (CC:A0) [22:50:22:515]: Skipping action: SetSNACMigratePropertyPreAmber (condition is false)
MSI (c) (CC:A0) [22:50:22:515]: Doing action: VerifyBFERunning
Action 22:50:22: VerifyBFERunning.
Action start 22:50:22: VerifyBFERunning.
MSI (c) (CC:F0) [22:50:22:543]: Invoking remote custom action. DLL: C:\Users\Client\AppData\Local\Temp\MSI29.tmp, Entrypoint: VerifyBFERunning
InstallUtils::CServiceUtil::isServiceRunningChecking status of service: BFE
InstallUtils::CServiceUtil::isServiceRunningService BFE is currently running.
MSI (c) (CC!EC) [22:50:22:547]: PROPERTY CHANGE: Adding BFEServiceRunning property. Its value is '1'.
Action ended 22:50:22: VerifyBFERunning. Return value 1.
MSI (c) (CC:A0) [22:50:22:547]: Doing action: AppSearch
Action 22:50:22: AppSearch. Searching for installed applications
Action start 22:50:22: AppSearch.
AppSearch: Property: SAVMIGINSTDIR, Signature: SavInstDirSig
MSI (c) (CC:A0) [22:50:22:547]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps 3: 2
AppSearch: Property: SAVMIGINSTDIR, Signature: SavInstDirSig16
MSI (c) (CC:A0) [22:50:22:547]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Symantec\InstalledApps 3: 2
AppSearch: Property: SCSMIGINSTDIR, Signature: ScsInstDirSig
MSI (c) (CC:A0) [22:50:22:547]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps 3: 2
AppSearch: Property: SEAMIGINSTDIR, Signature: SeaInstDirSig
MSI (c) (CC:A0) [22:50:22:547]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Sygate Technologies, Inc.\Sygate Personal Firewall 3: 2
AppSearch: Property: SNACMIGINSTDIR, Signature: SnacInstDirSig
MSI (c) (CC:A0) [22:50:22:547]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps 3: 2
AppSearch: Property: SNACMIGINSTDIR, Signature: SnacInstDirSig16
MSI (c) (CC:A0) [22:50:22:547]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Symantec\InstalledApps 3: 2
AppSearch: Property: SEPMIGINSTDIR, Signature: BasePathTemp
MSI (c) (CC:A0) [22:50:22:547]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps 3: 2
AppSearch: Property: SEPMIGINSTDIR, Signature: BasePath
MSI (c) (CC:A0) [22:50:22:551]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec Endpoint Protection\InstalledApps 3: 2
AppSearch: Property: SEPMIGINSTDIR, Signature: BasePath16
MSI (c) (CC:A0) [22:50:22:551]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Symantec\Symantec Endpoint Protection\InstalledApps 3: 2
AppSearch: Property: OLDSILOFOUND, Signature: OLDSILOSIG
MSI (c) (CC:A0) [22:50:22:551]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Symantec\Symantec Endpoint Protection 3: 2
AppSearch: Property: OS_SUPPORTS_UI, Signature: findExplorer
MSI (c) (CC:A0) [22:50:22:551]: PROPERTY CHANGE: Adding OS_SUPPORTS_UI property. Its value is 'C:\Windows\explorer.exe'.
AppSearch: Property: IE6FOUND, Signature: sigShdocvw
MSI (c) (CC:A0) [22:50:22:551]: PROPERTY CHANGE: Adding IE6FOUND property. Its value is 'C:\Windows\SysWOW64\shdocvw.dll'.
AppSearch: Property: SPMXMLFOUND, Signature: SPMXML
MSI (c) (CC:A0) [22:50:22:551]: PROPERTY CHANGE: Adding SPMXMLFOUND property. Its value is 'C:\SEP\SyLink.xml'.
AppSearch: Property: INSTALLEDPRODUCTTYPE, Signature: INSTALLEDPRODUCTTYPESIG
MSI (c) (CC:A0) [22:50:22:551]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec Endpoint Protection\SMC\Common 3: 2
AppSearch: Property: SERDEFDATFOUND, Signature: SERDEFDAT
AppSearch: Property: OLDPRODUCTVERSION, Signature: OldProductVersion
MSI (c) (CC:A0) [22:50:22:551]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec Endpoint Protection\SMC 3: 2
AppSearch: Property: MIGRATIONPENDINGREBOOT, Signature: MigrationPendingRebootSig
MSI (c) (CC:A0) [22:50:22:555]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Symantec\Symantec Endpoint Protection\VolatileInstallData 3: 2
AppSearch: Property: UNINSTALLREBOOTREQUIRED, Signature: UninstallRebootSig
MSI (c) (CC:A0) [22:50:22:555]: PROPERTY CHANGE: Adding UNINSTALLREBOOTREQUIRED property. Its value is '1'.
AppSearch: Property: SYMRASMAN_REG13_PATH, Signature: SymRasMan_1
MSI (c) (CC:A0) [22:50:22:555]: PROPERTY CHANGE: Adding SYMRASMAN_REG13_PATH property. Its value is 'C:\Windows\System32\rastls.dll'.
AppSearch: Property: SYMRASMAN_REG13_INTERACTIVEUIPATH, Signature: SymRasMan_2
MSI (c) (CC:A0) [22:50:22:555]: PROPERTY CHANGE: Adding SYMRASMAN_REG13_INTERACTIVEUIPATH property. Its value is 'C:\Windows\System32\rastls.dll'.
AppSearch: Property: SYMRASMAN_REG13_CONFIGUIPATH, Signature: SymRasMan_3
MSI (c) (CC:A0) [22:50:22:555]: PROPERTY CHANGE: Adding SYMRASMAN_REG13_CONFIGUIPATH property. Its value is 'C:\Windows\System32\rastls.dll'.
AppSearch: Property: SYMRASMAN_REG13_IDENTITYPATH, Signature: SymRasMan_4
MSI (c) (CC:A0) [22:50:22:555]: PROPERTY CHANGE: Adding SYMRASMAN_REG13_IDENTITYPATH property. Its value is 'C:\Windows\System32\rastls.dll'.
AppSearch: Property: SYMRASMAN_REG25_PATH, Signature: SymRasMan_5
MSI (c) (CC:A0) [22:50:22:555]: PROPERTY CHANGE: Adding SYMRASMAN_REG25_PATH property. Its value is 'C:\Windows\System32\rastls.dll'.
AppSearch: Property: SYMRASMAN_REG25_INTERACTIVEUIPATH, Signature: SymRasMan_6
MSI (c) (CC:A0) [22:50:22:555]: PROPERTY CHANGE: Adding SYMRASMAN_REG25_INTERACTIVEUIPATH property. Its value is 'C:\Windows\System32\rastls.dll'.
AppSearch: Property: SYMRASMAN_REG25_CONFIGUIPATH, Signature: SymRasMan_7
MSI (c) (CC:A0) [22:50:22:555]: PROPERTY CHANGE: Adding SYMRASMAN_REG25_CONFIGUIPATH property. Its value is 'C:\Windows\System32\rastls.dll'.
AppSearch: Property: SYMRASMAN_REG25_IDENTITYPATH, Signature: SymRasMan_8
MSI (c) (CC:A0) [22:50:22:555]: PROPERTY CHANGE: Adding SYMRASMAN_REG25_IDENTITYPATH property. Its value is 'C:\Windows\System32\rastls.dll'.
AppSearch: Property: SPA51BLOCK, Signature: SPA51Block
MSI (c) (CC:A0) [22:50:22:555]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Sygate Technologies, Inc.\Sygate Personal Firewall 3: 2
AppSearch: Property: OLDAPPDATADIR, Signature: SEPAppDataDirSigTemp
MSI (c) (CC:A0) [22:50:22:555]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Symantec\InstalledApps 3: 2
AppSearch: Property: OLDAPPDATADIR, Signature: SEPAppDataDirSig
MSI (c) (CC:A0) [22:50:22:555]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Symantec\Symantec Endpoint Protection\InstalledApps 3: 2
AppSearch: Property: FOUNDLIVEUPDTHST, Signature: findLiveupdatehst
MSI (c) (CC:A0) [22:50:22:555]: Note: 1: 1324 2: Data\Config 3: 1
MSI (c) (CC:A0) [22:50:22:555]: Note: 1: 1324 2: Data\Config 3: 1
AppSearch: Property: FOUNDSETTINGSHOSTSLIVEUPDATE, Signature: findSettingsHostsLiveUpdate
MSI (c) (CC:A0) [22:50:22:555]: Note: 1: 1324 2: Data\Config 3: 1
MSI (c) (CC:A0) [22:50:22:555]: Note: 1: 1324 2: Data\Config 3: 1
AppSearch: Property: FOUNDSNACSLF, Signature: findSnacSlf
AppSearch: Property: WINDOWSFUNDAMENTALS, Signature: findWindowsFundamentals
MSI (c) (CC:A0) [22:50:22:555]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Microsoft\WinFLP\Optional Components 3: 2
AppSearch: Property: DEFENDERFOUND, Signature: DEFENDERFOUND
MSI (c) (CC:A0) [22:50:22:555]: PROPERTY CHANGE: Adding DEFENDERFOUND property. Its value is 'Microsoft Windows Defender'.
AppSearch: Property: WINDOWSFIREWALLSTATE, Signature: GetFirewallState
MSI (c) (CC:A0) [22:50:22:555]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\Symantec Endpoint Protection\SMC\TSE 3: 2
AppSearch: Property: SYSFERFOUND64, Signature: findSysferDll64
AppSearch: Property: SYSFERTHUNKFOUND64, Signature: findSysferThunkDll64
MSI (c) (CC:A0) [22:50:22:559]: Note: 1: 1325 2: sysferThunk.dll
AppSearch: Property: OUTLOOKFOUND, Signature: OUTLOOKSIG1
MSI (c) (CC:A0) [22:50:22:559]: PROPERTY CHANGE: Adding OUTLOOKFOUND property. Its value is 'C:\Program Files (x86)\Microsoft Office\Office12\'.
AppSearch: Property: OUTLOOKFOUND, Signature: OUTLOOKSIG2
AppSearch: Property: EXCHANGEFOUND, Signature: EXCHANGESIG
MSI (c) (CC:A0) [22:50:22:559]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\EXCHNG32.EXE 3: 2
AppSearch: Property: NOTESFOUND, Signature: NOTESSIG
MSI (c) (CC:A0) [22:50:22:559]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\App Paths\notes.exe 3: 2
AppSearch: Property: SAVCORP7XFOUND, Signature: SavCorp7XSig
MSI (c) (CC:A0) [22:50:22:559]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Norton AntiVirus Corporate Edition 3: 2
AppSearch: Property: NORTONFOUND, Signature: DingSiloSig
MSI (c) (CC:A0) [22:50:22:559]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7} 3: 2
AppSearch: Property: FOUNDBROWSERPROTECTIONLITE, Signature: SymBLPSig
MSI (c) (CC:A0) [22:50:22:559]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Symantec\SymBPL\{D270A25E-8BB6-4895-8517-89B898969BBF} 3: 2
AppSearch: Property: SAVSMIGFOLDER, Signature: SAVSMIGFOLDERSIG
MSI (c) (CC:A0) [22:50:22:559]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\Symantec\InstalledApps 3: 2
AppSearch: Property: SDIDATFOUND, Signature: SDIDATFOUND
AppSearch: Property: SYSFERFOUND32, Signature: findSysferDll32
AppSearch: Property: SYSFERTHUNKFOUND32, Signature: findSysferThunkDll32
MSI (c) (CC:A0) [22:50:22:559]: Note: 1: 1325 2: sysferThunk.dll
AppSearch: Property: FOREFRONTTMGFOUND, Signature: foreFrontTMG
AppSearch: Property: FOREFRONTTMGFOUND, Signature: ForeFrontTMGSig
AppSearch: Property: FOUNDSEPSLF, Signature: findSepSlf
AppSearch: Property: TEEFERFOUND, Signature: TEEFERFOUNDSIG
MSI (c) (CC:A0) [22:50:22:559]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SYSTEM\CurrentControlSet\services\Teefer2 3: 2
AppSearch: Property: PENDINGMODULEREMOVAL, Signature: PENDINGMODULEREMOVALSIG
MSI (c) (CC:A0) [22:50:22:559]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SOFTWARE\Symantec\Symantec Endpoint Protection\{E1A40A89-2B89-44FA-9E96-395B7D7F03AC}\Install 3: 2
AppSearch: Property: FOREFRONEXCFOUND, Signature: ForeFrontExchange
AppSearch: Property: SNACNPFOUND32, Signature: findSnacNp32
AppSearch: Property: SNACNPFOUND64, Signature: findSnacNp64
MSI (c) (CC:A0) [22:50:22:559]: PROPERTY CHANGE: Adding SNACNPFOUND64 property. Its value is 'C:\Windows\system32\snacnp.dll'.
AppSearch: Property: VC8B762CHECK, Signature: VC8b762CheckSig
AppSearch: Property: VC8B42CHECK, Signature: VC8b42CheckSig
MSI (c) (CC:A0) [22:50:22:563]: PROPERTY CHANGE: Adding VC8B42CHECK property. Its value is 'C:\Windows\WinSxS\amd64_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.42_none_93b21c24844efba7\'.
AppSearch: Property: VC8B1416CHECK, Signature: VC8b1416CheckSig
AppSearch: Property: WSCONFONLINE, Signature: WSConfOnlineSig
MSI (c) (CC:A0) [22:50:22:563]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\SOFTWARE\WholeSecurity Inc.\Confidence Online(tm) Server 3: 2
Action ended 22:50:22: AppSearch. Return value 1.
MSI (c) (CC:A0) [22:50:22:563]: Doing action: checkInstallBlocksUI
Action 22:50:22: checkInstallBlocksUI. Searching for installed applications
Action start 22:50:22: checkInstallBlocksUI.
MSI (c) (CC:AC) [22:50:22:599]: Invoking remote custom action. DLL: C:\Users\Client\AppData\Local\Temp\MSI59.tmp, Entrypoint: checkInstallBlocksUI
MSI (c) (CC!3C) [22:50:22:607]: PROPERTY CHANGE: Adding IdcXmlPath property. Its value is 'C:\Windows\Temp\idc.xml'.
IDCCA:  CMsiUtil::isActionScheduled: Unable to fetch view (Result: 259)
Action ended 22:50:22: checkInstallBlocksUI. Return value 1.
MSI (c) (CC:A0) [22:50:22:647]: Doing action: CommunicateLaunchConditions
Action 22:50:22: CommunicateLaunchConditions.
Action start 22:50:22: CommunicateLaunchConditions.
MSI (c) (CC:74) [22:50:22:695]: Invoking remote custom action. DLL: C:\Users\Client\AppData\Local\Temp\MSIA8.tmp, Entrypoint: CommunicateLaunchConditions
Communicate LC: NOT Version9X=1
Communicate LC: VersionNT > 500=1
Communicate LC: NOT WINDOWSFUNDAMENTALS=1
Communicate LC: (NOT MIGRATIONPENDINGREBOOT) OR SISFAILED=1
Communicate LC: (NOT UNINSTALLREBOOTREQUIRED) OR Installed=0
Communicate LC: Symantec Endpoint Protection has detected that there are pending system changes that require a reboot.  Please reboot the system and rerun the installation.
Communicate LC:  calling communicate state with the following arguments:
Communicate LC: Prodversion = 12.1.3001.165
Communicate LC: PathToSylink = C:\SEP\
Communicate LC: Oldversion =
Communicate LC: ReasonStr = Symantec Endpoint Protection has detected that there are pending system changes that require a reboot.  Please reboot the system and rerun the installation.
Communicate LC: StatusCode = 302469124
Communicate LC: Communicator failed to communicate.
Action ended 22:50:23: CommunicateLaunchConditions. Return value 1.
MSI (c) (CC:A0) [22:50:23:215]: Skipping action: IsAdmin (condition is false)
MSI (c) (CC:A0) [22:50:23:215]: Doing action: preLaunchCond
Action 22:50:23: preLaunchCond. Examining launch conditions
Action start 22:50:23: preLaunchCond.
MSI (c) (CC:6C) [22:50:23:251]: Invoking remote custom action. DLL: C:\Users\Client\AppData\Local\Temp\MSI2EB.tmp, Entrypoint: preLaunchCond
IDCCA:  preLaunchCond - Launch condition `4Symantec Endpoint Protection has detected that there are pending system changes that require a reboot.  Please reboot the system and rerun the installation.` with condition `(NOT UNINSTALLREBOOTREQUIRED) OR Installed` failed
MSI (c) (CC!EC) [22:50:23:283]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:283]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:283]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:283]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:283]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:283]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:283]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:283]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:287]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:287]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:287]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:287]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:287]: Note: 1: 2731 2: 0
Unable to determine feature state: 1606
MSI (c) (CC!EC) [22:50:23:287]: Note: 1: 2732 2: 0
IDCCA: Unable to get target path (Result: 267)
MSI (c) (CC!EC) [22:50:23:287]: Note: 1: 2732 2: 0
IDCCA: Unable to get target path (Result: 267)
IDCCA: Machine ID: 6f6ac79b16d3a9d1cd550b63ea9b29dc127a953
IDCCA: HttpQueryInfo: 0  Error: 12007
IDCCA: Logout failure:0 12007
Action ended 22:50:30: preLaunchCond. Return value 1.
MSI (c) (CC:A0) [22:50:30:568]: Doing action: LaunchConditions
Action 22:50:30: LaunchConditions. Evaluating launch conditions
Action start 22:50:30: LaunchConditions.

Access to Symantec Web Gateway

$
0
0
I need a solution

Hi

question 1

is there anyway to restrict access to Symantec Web Gateway just from the Management Interface Only ???

 

question 2

is there anyway to restrict access to Symantec Web Gateway just from a defined user list ???

 

Thanks

 

 


DLP will catch offline activity

$
0
0
I need a solution

Is it possible that user can be at offline location and do any suspious activity on his laptop, DLP will be capture user activities?

malfunctioning error

$
0
0
I need a solution

My SEP Clients have issue with some components are malfunctioning so I am trying to push a defintion from sepm server but client not getting update?

Upgraded to SBS 12.1 3 RU3 Client package query

$
0
0
I need a solution

As a result of previous posts I have now downloaded the SEPM and installed it. I understand by doing this it has downloaded the 32bit, 64 bit and MAC client software for pushing to clients which I also understand will be done automatically when the clients are switched on. I have looked to see how I can tell when the client version has been upgraded. Hoew can I tell this on the client as if I look at the server (64bit client) A/V I cannot see a version in there?

Symantec bad reputation recurring

$
0
0
I need a solution

Hi all,

I'm the admin for a network of about 40 computers in a Bio company. At the 6th of June 2013 we started having problems emailing some of our suppliers and checked the common 100+ blacklists and we were/are not listed. In discussions with our ISP support people, I found out that the email address where we couldn't send mail to where using Symantec product. We found out that we got listed on Symantec's blacklist. I also imagine some of our clients may use that same product. I requested de-listing using the http://ipremoval.sms.symantec.com/lookup/" form and got removed. Next day we got re-listed, and I requested de-listening again... I've checked our logs; we are not infected with anything. Our gateway will only accept port 25 mail from our MS Exchange server. The exchange server only accepts incoming port 25 mail from our spam firewall, and only accepts outgoing mail (destined for the internet) from domain-authenticated computers/users running outlook. It does not accept regular pop/smtp client connections. We do not have an open relay, and we do not send bulk mail. Our email volume is very low. The ip address in question is 81.218.134.114 and has the proper forward and reverse dns records. I checked the dns using a few web-based diagnostics, and all checks out fine. I did the same for the smtp side and it's all good too..

I haven't kept track of the number of times I've had to request de-listing, but it is in excess of 20 times and this problem needs to be resolved

I did read the entire faq and in addition some other posts in the forum. My problem is that none of these things seem to apply in this case. As far as I can see we are properly configured and are not breaking any rules...

I would like to know what is causing us to keep getting listed on only this one blacklist. I cannot seem to get a response from Symantec..

Please respond to my query. I've tried everything I can think of to find the problem, and I cannot fix it if no-one at Symantec is willing to reply to my inquiries.

Looking forward to a reply! Thanks!

 

PGP desktop

$
0
0
I need a solution

Hi support

we have PGP Desktop and our email in encrypted, after few month we got a new domain so we need to move all our old email to the new one, but it not work so we create a pst (personal folder ) and imported in the new domain BUT it not work also,

Pls can we got full instruction how to move the old email to the new one because it very impotent emails

 

Thanks,

Nasser

Event ID ( 7101 ) in Source ( SEPM )

$
0
0
I need a solution

Hallo All how are you ? hope your having a Great Day :)

 

I have a question,

 

since the last two days the symantec server is not running properly, every time i restart it dosnt run, it stuck on the loading windows until i restart a lot of times or restore point, so after the windows started i went to the Computer Managment and checked the Event ID for the Symantec and i found this msg:

 

Event ID ( 7101 ) in Source ( SEPM ) on Client PC

The description for Event ID ( 7101 ) in Source ( SEPM ) cannot be found. The local computer may not have the necessary registry information or message DLL files to display messages from a remote computer. You may be able to use the /AUXSOURCE= flag to retrieve this description; see Help and Support for details. The following information is part of the event: Symantec Endpoint Protection contains licenses that are about to expire.
Total licensed seats : 25
Used license seats :  17
 
now the part of licenses need renew i know that but the upper part what could be the issue ?
 
Thanks

SEP11 upgrade to SEP12

$
0
0
I need a solution

How to migrate SEPM11 client to the SEPM12 console

I had used ClientRemote tools to push the install packages to the SEP11 clients , and it prompt the push has been completed, but even i restart the client os , it's always in the SEPM11 console
 

how to solve it ,is there other way to migrate clients?

thanks


SEPM 12.1 Console - Admin account can't see client groups

$
0
0
I need a solution

Hi guys,

I'm hoping this is a simple fix and a known issue but I haven't come across any information regarding it yet.

I have a new instance of SEP 12.1.2100.2093 running and working well aside from one issue. We are using Active Directory accounts for administration and as such the process of importing Active Directory OU's as client groups was done using an AD account.

This issue I have is that when logging in as the built-in admin (don't ask why it's being used if we're using AD accounts, long story) these imported client groups are not visible. All other administrative accounts in SEP can view them, and if I create a new local admin account in SEP it can also view them.

Any ideas why this is the case?

Appreciate any feedback or assistance.

Thanks,

Brent

On demand backup with SEPM

$
0
0
I need a solution

Hi Team

Can somebody please help me how to get on demand backup with SEPM.Awaiting for prompt reply.

 

Unable to stop encryption process using PGP WDE

$
0
0
I need a solution

Hi guys,

I was trying to encrypt an external USB HDD using PGP Desktop 10.2.1 MP4, it was fine doing encryption until my Windows 7 run into some problems.

When I try to resume encryption, the progress indicator didn't move at all. So I check the disk status using, pgpwde --status --disk 1, and found out that the encryption was interrupted by some unknown system error. 

I tried to stop the encryption by using, pgpwde --stop --disk 1 --passphrase "<passphrase>", and encounter an error code -12202 Invalid credential specified.

I was sure that my passphrase was correct and my keypair is configured in GKM.

Any solution or advise on this matter?

Thank you.

Regards,

Kevin

 

SEP 12.1.2: Generating filtered clients question

$
0
0
I need a solution

Hey guys,

 

I'm trying to generate a report or log of all clients that are part of the domain environmen meaning it wont include all the clients that are just under work group, but I cannot seem to make it right,.

can anyone tell me how to deal with this?

 

Thanks,

Rapid Release Update Error

$
0
0
I need a solution

Hi,

I regularly receive following error:

Server XXXXX was not able to receive Rapid Release Virus Definition update due to an unknown failure.  Check Event Log for details.

BUT when checking eventlog I notice that 3/4 seconds later there is a entry that update was successful.

We have here an SBS2012 installed in Hyper-V. We are using Symantec Mail Security for Exchange 7.0.1.66. It is a trial-version.

RAM must not be the problem (32GB for SBS).

Any Idea?

 

Viewing all 21603 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>