Quantcast
Channel: Symantec Connect - Products - Discussions
Viewing all 12029 articles
Browse latest View live

Errors when trying to manually update Def files

$
0
0
I need a solution

I am attempting to manually update def files on a linux server running SAVFL.  When I run the .sh file I get the following errors:

 

 bash 20131217-003-unix.sh
: command not foundh: line 21:
': not a valid identifiere 22: export: `PATH
: command not foundh: line 23:
: command not foundh: line 24:
: command not foundh: line 25:
: command not foundh: line 26:
: command not foundh: line 27:
: command not foundh: line 33:
'0131217-003-unix.sh: line 34: syntax error near unexpected token `do
'0131217-003-unix.sh: line 34: `for x in $*; do
 

Any ideas??


Symantec antivirus; tamper protection blocking ERSvc (error reporting service)

$
0
0
I need a solution

Hi, this is my first post; hope this is in the right place. So a client of ours has been getting a MS Visual C++ Runtime Library pop-up error for the last few days. Looked into it a bit and see in the event logs a string of entries that are always coincedently happening around the same time as the runtime error. Genrally the runtime error happens at 4 hour intervals at around 7am, 11am, 3pm, 7pm, followed by entries in the application log from symantec regarding tamper protection blocking svchost.exe PID1484 (that PID corresponds to ERSvc, error reporting service) from GFValidate.exe. Here's the entry:

 
SYMANTEC TAMPER PROTECTION ALERT
 
Target:  C:\Program Files\Symantec\Symantec Protection Center\bin\GFValidate.exe
Event Info:  Suspend Thread
Action Taken:  Blocked
Actor Process:  C:\WINDOWS\System32\svchost.exe (PID 1484)
Time:  Thursday, December 19, 2013  11:19:21 AM
 
 
That entry repeats 3-4 times, followed by this:
 
Faulting application GFValidate.exe, version 12.0.122.176, faulting module msvcr80.dll, version 8.0.50727.3053, fault address 0x000046b4.
 
For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
 
 
Not sure why ERSvc is being blocked at those times, and not at other times, since it's a valid Windows service and is constantly running. Any suggestions would be greatly appreciated as to whether this is a legit threat that's being detected, or a false alarm, and if so whether its possible/safe to allow this as an exception within tamper protection. Let me know if more info is needed.
 
Some basics: They have Symantec Protection Center, and Symantec Antivirus 10.1.5.5000, and Windows Server 2k3. 
 
Thanks!

 

1387481220

MAC OS 10.9 Scans w/ Network Threat

$
0
0
I need a solution

Symantec Endpoint 12.1.4 features new Network Threat protection for MAC OSX.  On our MACs this feature is blocking scanning from authorized ACAS servers with  Brute Force Remote Login event for inbound TCP port 22. There is no exception in the list for this event. When we add the IP range of the scanning subnet to the Excluded Hosts list, it has no effect

SEPM server generating considerable traffic and packet loss

$
0
0
I need a solution

Resulting ins a lot of data packet loss in all of the sites. The last time I've seen this was when the SEPM went corrupt and I had to rebuild the entire structure, I do not see any smoking gun, but this activity went on for 90 minutes. It was detected that our SEPM onsite was the cause of this, but we can not narrow down exactly what it was doing. Any assistance will be greatly appreciated.

 

I made no changes to the SEPM server at all. I did delete about 30 PC's that were no longer on our network though.

I really would like to know wwhat could have generated this traffic and congest the network

SEP Management Server port 80 ?

$
0
0
I need a solution

Hi All,

Does the SEPM server v12.1.2 needs to have same IP address with port 80 as the secondary entry after the port 8014 ?

because in the Policies tab | Policy Component | Management Server Lists it is listing as follows:

  • SEPM IP Address:8014 
  • Priority 1
  • Priority 2
  • SEPM IP Address:80 

 

SEPM 12.1.4: "server communication error: would you like to refresh the page?"

SEP 12.11 - 64bit GUP - can it pass defs to 32bit clients?

$
0
0
I need a solution

Hi,

We use GUP's extensively and are plamnning to move to 12.2 shortly.

 

Currently the GUP is the same OS type and edition and the clients that update from it - 32bit operating system.

 

We are starting to put in 64bit clients, will these get defintiions from the GUPs or do I need to configure something or install a 64bit GUP?

 

Also can the opposite work?  If I put in a 64bit GUP in, can it update both 64 and 32bit gups?

 

Thanks

SAVFL exclussions

$
0
0
I need a solution

When putting folder exclussions in SAVFL for auto protect will it automatically include sub folders or do they need to be put in induvidually? 

1387542764

SEPM server is not showing the exact client virus definition details.

$
0
0
I need a solution

SEPM server is not showing the exact client virus definition details. Clients are updated on ground locally, but not showing th latest update in my SEPM console. SEPM11 version and SEP11 client. Please help.

Will any of these updates cause any issues with SEPM?

$
0
0
I need a solution

I need to run these updates, but want to make sure I am not setting myself up for an ambush.

Thank you

Trying to designate a new server as a GUP, but it is a VMWare server

$
0
0
I need a solution

Is this an issue? When I designated it to be a GUP, it seemed to be ok in the console, but when I looked at the properties, it reads "false" for "Group Update Provider" Do I need to do anything else? Restart services, is it ok to have a VM server serve as a GUP>?

1387555099

SEPM clients virus def stuck

$
0
0
I need a solution

Hello,

I have about 30 clients  that has corrupted virus and not able to update to the latest virus def.

Is there any way to run intelligent updater on these clients all at once and not one by one manually?

Thanks in advance

SEPM Second Site Synchronization Failure

$
0
0
I need a solution

I am attempting to migrate our SEPM to a new server on the same local network. I am following the instructions available here: http://www.symantec.com/business/support/index?page=content&id=TECH104389

I initially had issues replicating the database as described here: http://www.symantec.com/business/support/index?page=content&id=TECH106224

So I set the stack as described there. However after that "fix" it still does not work correctly. It will attempt to connect and sync for many hours and then fail near the end and give me the following error:

 

Synchronization to the remote site failed: [Sybase][JDBC Driver][SQL Anywhere] Connection was terminated

 

I have tried several times and it ends the same way ever time. I have disabled all known firewalls on both machines. 

I have tried adding the new server as a second management server in the site, but this will not create the new database I need, and I do not know the old embedded database password (as well as I have tried several tiems to recover it using instructions found here and it fails).

I am at wits end trying to figure out why its not completing the sync. 

app and device policy stops working

$
0
0
I need a solution

I have a windows XP machine, I applied the application and device policy to disable USB drivers. I have printers and scanners excluded.

This machine was working perfectly fine, no issues for at least 6 months with the same SEP policy.

I get a call stating the printer has an error, after troubleshooting it (reinstalling drivers, remove software...) and still did not work, I decide to change the USB cable.

When I replace the USB cable, the SEP policy blocks it.

Printer and workstation are the same, policy is the same.

I move the workstation to a different group without the app & device policy, and it works.

 

 

 

Nothing has changed on the sep side(I am the only one that has access to SEP).

 

Any ideas?

 

Thanks,

Joseph

Need to reboot all system through host Integrity policy

$
0
0
I need a solution

Hi

I want my all client where we have SEP installed must get Reboot every after 4 hours.

Can anyone having this policy or created this policy through HI?

Client OS: Window xp and window 7

SEPM version:-11.7 MP1 and 12.1 RU4


Reset password.

$
0
0
I need a solution

Team,

How to reset the SEPM Password we didnot find the reset file in symantec path.

 

MAC IPS defs!!!!

$
0
0
I need a solution

Are 9 days old! How about an update so I don't keep being bothered with out of date alerts?!?!?!

0

Customer Having problem with End users which are continuouly sending unknown mail from their system?

$
0
0
I need a solution

Customer Having problem with End users which are continuously sending unknown mail from their system?

They are using Symantec Endpoint protection 12.1.3 . Has 300 users in the system and they complain me from 10-15 PC lots of mails is sending automatically which are not send by the users. So what kind of solution I will provided to them. Any suggestion you can give to me!?

Running Symantec Locally Error

$
0
0
I need a solution

Helloo every one, hope your having a great day.

 

I was just wondering about this error, as it happen before and i reinstall as Pete. Told me https://www-secure.symantec.com/connect/forums/upgrading-1211101401-1214 and it work after that it was not working again, same error again when i run only the Local Icon Symante Protection Manager as you can see in the attached file, but if Symante Protection Manager Webaccess or Symante Protection Manager Remote Console it is working fine and if i run the systemhelp there is nothing other then the error that they told me its normal.

Comment désactiver Les transmissions d'informations automatique dans SEP ?

$
0
0
I need a solution

Bonjour,

Je cherche à savoir s'il y a un moyen de désactiver automatiquement les options de transmissions de données présentent dans la section "Gestion des clients" de Symantec Endpoint Protection (voir copie d'écran).

Y a t'il des options à ajouter dans le fichier setaid.ini, une optin en ligne de commande ou une clé de registre pour éviter l'activation par défaut de cette option ?

Pour information, j'utilise SEP v12.13001.165 de l'application sous Windows 7 64bit.

Merci.

 

 

 

Viewing all 12029 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>