Quantcast
Channel: Symantec Connect - Products - Discussions
Viewing all 21603 articles
Browse latest View live

Site not private -- NET::ERR_CERT_AUTHORITY_ONVALID

$
0
0
I need a solution

Hi, and thanks in advance for any assistance.

I have multiple end-users intermittently getting the follow error. I suspect certificate issue, but I am having difficulty proving it. I no very little about these proxy's. We have 2 ProxySG's at this location and I think one of them was has a problem that is causing this issue.

An application is stopping Chrome from safely connecting to this site. Ask your IT
administrator to resolve this issue.

NET::ERR_CERT_AUTHORITY_ONVALID

Advanced: A root certificate for "Symantec Blue Coat" Your IT

0

Ping transmit failed. Dell OptiPlex 7460 AIO, Dell Latitude 5400

$
0
0
I need a solution

OptiPlex 7460 AIO

    Processor - Intel(R) Core(TM) i5-8500 CPU @ 3.00GHz

    RAM - 16GB

    OS - Windows 10 Pro

Latitude 5400   

    Processor - Intel(R) Core(TM) i5-8265U CPU @ 1.60GHz

    RAM - 16GB

    OS - Windows 10 Pro

Symantec Ghost 12.0.0.8023

Trying to image new Dell OptiPlex 7460 All-in-ones as well as some Dell Latitude 5400s. All updates for windows as well as drivers and firmware are up to date, there are no driver conflicts. When trying to map the images to a network drive (I have no information about the specs or build of the server, sorry) I am met with "System error 1231" saying the network location cannot be reached. I am able to ping the server via windows command prompt but not through ghosts command prompt. All pings other than the loop-back address are returning a transmit failed, general failure. 

I am able to ping the server though other PCs i have available in ghost, just not these specific computers.

Any help is appreciated! Thanks.

0

What does "Clean Security risk" status mean in the 'view log' menu?

$
0
0
I need a solution

Hello!

Found out that one of my PCs was infected, what does the status in the title mean?

Thanks!

0

Email Recipient Exception Not Working

$
0
0
I need a solution

I followed the instructions at the URL below, but I am not able to exclude emails sent only to users on my internal domain.   This is on 15.5 with an endpoint running the Outlook client (Office 365 ProPlus).  The test emails I sent to myself are detected, although I have the following listed under Policy List > Configure Policy > Detection tab > Exceptions:

  • OVR_EXCEPTION_INTERNAL_EMAIL_RECIPIENT (Protocol): Protocol is Email/SMTP.
  • OVR_EXCEPTION_INTERNAL_EMAIL_RECIPIENT (Recipient): Match COMPANY_RECIPIENT.
    All recipients must match.

COMPANY_RECIPIENT is a Reusable Recipient Pattern with the company domain "company.com" listed under the URL Domains section.

I only have one policy group and one policy enabled.

Can you please let me know how to troubleshoot this further?

Thanks,

Ryan

https://www.symantec.com/connect/articles/create-dlp-policy-add-exceptio...

0

Unified Agent - No Access to Internet in WiFi with Captive Portals

$
0
0
I need a solution

Hello,

we have the Main Problem that our Users cannot use free WiFi in Hotels or Airport Lounges when they have a Captive Portal.

The Unified Agents detect this but the User didn't have any possibility to access the Cative Portal to get access to the Internet.

The Only two Poissibilities are

1. Disable the Unified Agent

2. User there own WiFi with Tethering

Did anybody hav a solution for that?

Thanks for help and answering.

Kind Regards

Alen 

0

Moving to new SEPM server, new IP, new name and new domain...

$
0
0
I need a solution

Our MS 2008 server SEPM 14 RU1 MP2 server is coming to its end, we will be moving to a new 2016 server with a new IP, new name and new domain.  We are in a large Gov't enterprise, hence being dictated to move to the new domain for the new server.  Obviously there will be much pain in the firewall rules, trusts, etc.  I have been down that road before, it's ugly but can and will be done.  My question is this, which method would be best to migrate over,  setting up the new server as a Replication Partner, or new Site Partner?  The database is already on a newer server, so that will remain as it is.  We will also have to migrate our DMZ server, but that will be a separate nightmare of firewall rules and etc. to deal with.  Any advise or thoughts on the best method for the SEPM move is appreciated.

0

Installation Failure SEE 11.2.1

$
0
0
I need a solution

I can't get the SEE install to work!  I've looked at the install log and see that custom action 'setrebootrequired'  is where the issue occurs.  The error itself says "Error: failed to loadlibrary c:\program files\symantec\endpoint encryption\drive encryption\dealwrap.dll"  The install then rolls back.  I have disabled roll back and looking in the installation folder I see that dll is there.  I also tried to just register the dll manually but it fails.  Any help would be appreciated.  

0

SEP Cloud branding problem

$
0
0
I need a solution

Hi all.  I've been with SEPC since the beginning, and regular SEP back to version 11, then the client security back to version 9. 

SEPC has a way to go and has some poor design flaws that they seem to not want to address yet, but they're working hard on it and contiuously as evidenced by the status alerts I get on maintenance, upgrades, etc.  So that's great.

What's not great, is their insistent need to brand everything under the hood as Norton.  Part of the reason I am able to convince my small business customers to go with SEPC instead of buying cheaper Norton subscriptions, besides the technical stuff, is that it carries a bit more clout a a business product.  And indeed it does, but this only gets apparent by having a technical discussion.  That's fine, but often I have to make excuses for Symantec when the customer asks me why there's so much Norton stuff popping up. 

Like, today, even now as I write this, I'm deploying a bunch of SEPC clients to a new customer, and what does it do after installing?  Gives this great big welcome across thanking the user for installing NORTON.  It even prompts to givec a tour of the Norton product!  Seriously Symantec, you guys really need to prioritize and focus your branding efforts at the SMB level, it's not well done.  Sure, some people (not many, despite what you might think) recognize the Norton label on websites as a good thing, but 99% of SMB and consumers recognize the name Norton as the consumer antivirus product many of them have grown to dislike over the years, primarily due to past issues with things like system performance.  So it's a real nuistance to make excuses for Symantec's poor granding decisions by saying that they've layered on a management framework to the Norton technology, don't worry, it's not Norton antivirus.  

Words always make the situation sound harsh - I'm half-smiling here, but not also half shaking my head and a multi-billion leader in the security space not being able to properly differentiate their product branding.  Trust me, it does not do you any favors citing Norton as the backend of your SEPC platform.  

0

Invalid certificate

$
0
0
I need a solution

Hello guys, 

The client request to the google.com then client and server weren't complete communication with google certificate. The problem is if client request to any website then using bluecoat certificate and the browser couldn't verify that certificate. In ssl client configuriation include custom keyring and support for TLSv1.2, TLSv1.1, TLSv1, SSLv3* ssl protocols.

Thank you guys!

0

Need suggestion, Want to Install SEPM 14.2 alongside WSUS

$
0
0
I need a solution

I have WSUS Server in Windows Server 2012. Can I install SEPM 14.2 alongside WSUS Server? Will it be problem with them? Can their client's still receive updates perfectly?

0

Content & Malware Analysis - Virtual Appliance

$
0
0
I need a solution

Hi All,

I've configured my Virtual Appliance Content Analysis in my lab and I have a few questions.

1. I got a license for - Sandbox Broker and On-Box Sandboxing.  what can I do with the content analysis with these licenses?

2. I can see in the Statistics > Historical Connections all the websites from the users. but if I try to download the EICAR test file, the result is CLEAN

Log file from my content analysis;

https://imgur.com/Z0h8xYa

3. there is a Malware Analysis Virtual Appliance? if No, Can I do some malware analysis in the virtual content analysis?

Thanks,

0

In-place upgrading with Patch

$
0
0
I need a solution

Followed this how to: https://support.symantec.com/en_US/article.DOC9422...

The files are both on the NS and the package server, it gets to my test computer but fails in a second with exit code 1 and the only log info I can find in the patch logs is:

2019-05-29T10:51:48.0378476Z 3434 I ChildProcess.cpp:70 PATHTOFIXES=C:\ProgramData\Symantec\Patch\InstallationSandbox#2019-05-29-T-10-51-06\
2019-05-29T10:51:48.0378476Z 3434 I ChildProcess.cpp:77 EXTRACTDIR=Windows10x64Enterprise1903.dir\; LSFN=Windows10x64Enterprise1903.iso
2019-05-29T10:51:48.0713499Z 3434 I ChildProcess.cpp:114 Started C:\Windows\sysnative\cmd.exe /Q /D /V:ON /C "C:\ProgramData\Symantec\Patch\InstallationSandbox#2019-05-29-T-10-51-06\Windows10x64Enterprise1903.iso_install.bat"
2019-05-29T10:51:58.5008495Z 3434 V ChildProcess.cpp:140 Process handle 00000414 returned '2147746298'.
2019-05-29T10:51:58.5013501Z 3434 W DeployerImpl.cpp:106 Patch state is 'Failed'. Registry bread crumb patch state not updated.

Am I missing a step or is there is better log file to be looking at? 8.5 ru 1

0

Symantec Endpoint Protection keeps stopping

$
0
0
I need a solution

When I try to open the GUI I get the message "symantec endpoint protection cannot open because some symantec services are stopped. restart the symantec services and then open the symantec endpoint protection". 

I ran the SymDiag, attached the diagnostic file.

Sep Build 14.2 MP1

Windows Build 1809

Can you help me? Thanks.

0

database Table

$
0
0
I need a solution

What table in the database contains Createddate for ther date when a pc was first entered into the console after imaging and the agent connected to the server?

Several articles point to Item table , for example https://support.symantec.com/en_US/article.HOWTO7181.html--but  I get nulls for the date.  Also there is an older xml in another article that imported but then there is an error.

Basically I am trying to find this to get a count of pcs that were imaged during a timeframe of the past month.

0

Problem with authentication / Virtual URL

$
0
0
I need a solution

Hi All,

My current proxySG deployment

 - forward proxy with transparent mode

 - Origin IP Ridirect 

 - virtual URL without domain 

-  virtual URL tursted inside IE intranet zone

I have issue with pop up authentication. For now I am using virtual url without domain " ( http://proxysg ) and this is work for all laptop and PC that joined domain.

But for mobile device to work with proxy I have to change the virtual url with domain (http://proxysg.bluecoat.com ) so that users get prompted for username and password. If i using virtual URL without domain user did not get prompt authentication message and get authentication error page from http://proxysg

After used new virtual url, mobile user able to authenticated and it is worked as expected.

Issue arise when i changing to the  (http://proxysg.bluecoat.com ) PC/laptop users getting pop up for authentication message which they dont like it. 

my question : 1. should i use origin cookies redirect to avoid frequent pop up authentication message ?

                      2. what is the best way for mobile traffic in case use proxy ?

                      3. which virtual URL should I use ?

Thanks
 

0

Symantec email proxy - temp directory

$
0
0
I need a solution

hi 

I use SEP 14.1 on Win 7.

When i try to send  many email i have error (cannot access the temporary folder) (screen in attach).

How i can fix this blocking?

0

JAVA JRE not usable after upgrade to SEP 14.x

$
0
0
I need a solution

Hello,

We have several servers with application that are using JAVA JRE 1.8.0.31 - 1.8.0.151.

After upgrade to SEP 14.x the application could not use the installed JRE environment anymore.

After poiting the environment variable for this application to <JDK install dir>\jre they worked again.

Is there someone having similar experiences after upgrade to 14.x

Thanks

Jim Bon

0

Unable to change subscription numbers

$
0
0
I need a solution

We have a subscription to email security.cloud, and want to change the number of users. Sounds easy!

But no. We log in to the Messagelabs dashboard and can view results of email scanning etc, but there is no administrative, subscription or billing information on any screen. "Mysymantec" lists no products/subscriptions for us. I suspect our account lacks some administrative privileges, but I'm not sure.

I tried a live chat - I had to wait for an hour, and then got cut off before getting an answer. I tried the UK Symantec phone number that's on our invoice. Nobody answers the phone. I emailed  cld_order_services@symantec.com, got a request for more information which I provided, and then no further response.

It's very weird. Symantec is a big company that presumably wants to sell me products, and yet it seems almost impossible to do so!

Is there a way of getting hold of someone who has the power to modify our subscription? Thanks!

0

Single 2008R2 SEP v14 upgrade to 2016 SEP 14.2

$
0
0
I need a solution

Hi,

We have a single Endpoint Protection Server version 14.0.1904 running on Windows 2008R2 Server. I am looking to upgrade the version of SEP to 14.2 and install on to a new Windows 2016 Server. 

The SEP database is on the SEP Server.

There is documentation around performing an in place upgrade on the same server but I've not seen anything about upgrading and migrating to a new server.

Is there documentation that discusses this approach or is there a recommended approach to take for this?

There is the option to Export Server Properties. Would this enable a full server export and then import to a version 14.2 server or would it only work on a server running the same version? There is also the Server Private Key Backup. What would the approach be around this?

Many thanks

Ben

0

Sophos UTM in front of SMG and DMARC

$
0
0
I need a solution

Hi there,

we have a Sophos UTM Cluster with SMTP-Protection enabled which is accepting our E-Mails and relay/forward them to Symantec Messaging Gateway.

We are using Sender Authentication with DMARC Reporting. However, SMG is sending DMARC-Report for almost every inbound mail to the senders. Complaining the private IP which our Sophos UTM is presenting on relay-connection for inbound mail.

How to configure SMG to look at the Mail-Header in the right position. Or how to explain SMG that there is one inbound relay hop?

Sometimes it detects the originating E-Mail correctly and does not complain. Putting the SMG in the front is not an option. Cause either can't it deny on receive just delete or qurantaine and also the AntiSpam filter is not that good, compared to SOPHOS UTM. We just use it for aditional Scan and want it to use DMARC.

Regards

Joerg

0
1559164949
Viewing all 21603 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>