Quantcast
Channel: Symantec Connect - Products
Viewing all 22854 articles
Browse latest View live

Latest SEP on virtual (Openstack) RDS Windows 2012 servers

$
0
0
Ja, ich suche eine Lösung

Hi there,

Are there any best practices for configuring SEP on virtual RDS servers Window 2012?

I know about: shared insight cache server config, randomization for updates and scans.
However im reading this: https://symwisedownload.symantec.com//resources/sites/SYMWISE/content/live/SOLUTIONS/91000/TECH91070/en_US/SEP_Citrix-Terminal_Servers.pdf?__gda__=1464316151_d4263b2c588fc15a0dc00db782654c9a

And i wonder if its still necessary to change register values for the latest SEP clients and a multi-user RDS enviroments so the SEP processes wont run for each logt in user.

Thanks,

Levd

0

Liveupdate no longer running on clients

$
0
0
Ja, ich suche eine Lösung

We have a number of clients (~1-2% of total clients) which are no longer running Liveupdate.

The lue.log file shows no recent activity, and attempting to run (via psexec) a LU session using sepliveupdate.exe results in the following error:

C:\Program Files\Symantec\Symantec Endpoint Protection>sepliveupdate
The SepLiveUpdate session encountered an error: failure initializing IPC TIM impl, the error code is: 80040300.

This does not generate any new log entries in lue.log, so the issue appears to be invoking Liveupdate itself, rather than any issue with connectivity or definitions.

Is there a known solution to this issue?

0

Memory corruption in Symantec Client - CVE-2016-2208

Message: System message from LiveUpdate

$
0
0
Ja, ich suche eine Lösung

Hi,

I want to know how I resolve this:

Event type:System message from LiveUpdate
Event description:The latest Centralized Reputation Settings update failed to load. The component has no valid content and will not function correctly until it is updated.
Event Source:LiveUpdate Manager
Event Severity:Error

I have a lot of messages with this error and I don't know how I resolve this problem.

Thanks

0

Endpoint HTTP/HTTPS False Positives - Cookies

$
0
0
Ja, ich suche eine Lösung

In my environment, we utilize both the following Data Identifiers in our Endpoint Detect policies:

  • Randomized Social Security Number Patterns
  • US Social Security Number Patterns

Both of these Data Identifiers are configured to use the Narrow Breadth and have not been modified from their original design (using all of the standard/default RegEx Patterns, Validation Checks, etc.)

I find that both of these identifiers will frequently detect false positives in the HTTP/HTTPS protocols due to certain tracking cookies that match these identifiers.

Examples:

For now, my process has been to research and document the purpose and typical use of these cookies through online research. Once documented, I then build a policy exception using RegEx to exclude these specific cookies.

I'm curious if others have experienced this same problem? If so, how did you tune these out? Do you have any good resources for performing research on what the cookies are used for to help document and provide justification for tuning them out?

Thanks in advance!

0

Manual enabling / disabling and download network traffic capture

$
0
0

Hi Team

Situation:

I had a case with an ATP appliance that was difficult for network troubleshooting (lack of evidence )

Customer is using TAP Mode but ATP showed wrong network information, specifically  External traffic presented as Internal.

ATP was configured  with all the Internal networks from the customer.

As a troubleshooting we tried to use 'tcpdump' but this command's output cannot be re-direct to output of our choice. Even if it's possible to create a file and save the output internally the issue is that I wouldn't be able to then grab that data or read it afterward. This requires Symantec Support to log on and transfer it off.

Two weeks with a TechSupport case , a few Webex sessions , lots of screen captures and no one gave us a solution (even with bsupport logs transfered to Sym).

Finally with a Linux computer connected to the SPAN port we collected (traffic capture) enough evidence to let the network admin know that the Switch configuration was wrong: they spanned the external (dirty) WAN and not moved the Span inside.

Idea for Product Improvement:

-Give us the option to capture traffic for at least 30 seconds and download to our computer-

A legacy product from the same family called Symantec Web Gateway  lets us capture traffic on the network.To do that on SWG, we must enable the traffic capture process and when it was finish just to disable and download it to our computer.

Probably this information is available to Symantec by manually running "gather_logs" on the Appliance's CLI but the idea is save time and resources from Symantec, Partners and customers to have a faster solution.

Of course, there's a performance implication on this so  Symantec must let customers and partners now that the feature must be used just for a few seconds/minutes.

Thanks

Symantec Desktop Encryption always encrypts email

$
0
0
Ja, ich suche eine Lösung

I am using Symantec Desktop Encryption 10.3.2 MP12 with Outlook 2016 connecting to Exchange.
Every time I send an email to someone whose key is in my keyring the email is automatically encrypted.

I am very familiar with the Security Policies. I currently have only the standard Require Encryption policy and I've verified that it is configurated correctly, to only encrypt emails that are set to "Confidential" sensitivity or those with "[PGP]" in the subject line.
No other policies are active.

Before upgrading from Outlook 2013, Symantec Encryption version 10.3.1 to Outlook 2016 with Symantec Encryption version 10.3.2 MP12, the Require Encryption policy worked as it should; sending in clear unless one of the two conditiions was met.

I've even disabled all policies and I tried inserting a policy to force Send in clear to domain "*" after the require encryption policy (as recommended in a similar post from 2013). The system still encrypts all emails to any recipient for which I have their key on my keyring.

Any ideas?

0

SPE NAS Hitachi Integration

$
0
0
Ja, ich suche eine Lösung

Hello,

I want to secure my Hitachi NAS By using the SPE NAS Engine with icap protocal.

I install the SPE NAS on my network, but i can't find were i can declare the ip adresse of my Hitachi NAS Client.

Can you help me please to resolve this issue ?

Thanks in advance

0

GetAppInfo tool for OS/X?

$
0
0
Ja, ich suche eine Lösung

Is anyone aware of a GetAppInfo tool that can be used to gather the Name, Binary Name, Internal Name, Original Filename & Publisher Name for OS/X applications such as the windows version of the tool is capable of doing for building out custom application monitoring profiles? 

0

黑客盗用推特账户发布成人交友和黄色网站链接

$
0
0
黑客盗用2,500多个推特账户以发布成人交友和黄色网站链接

Read More

PGP Desktop Email VS Desktop Email Encryption

$
0
0
Ja, ich suche eine Lösung

I am looking to buy "PGP Desktop Email" v10.3 but it is not offered in the store and all I can find is Desktop Email Encryption.

Is Desktop Email Encryption exactly the same product as "PGP Desktop Email" v10.3 or is it different in any way?

0

乗っ取られた Twitter アカウントが、アダルト出会い系サイトやセフレ紹介サイトへのリンクをツイート

$
0
0
2,500 を超える Twitter アカウントが乗っ取られ、アダルト出会い系サイトやセフレ紹介サイトへのリンクをツイートしています。

Read More

External Logging to Syslog server not working

$
0
0
Ja, ich suche eine Lösung

We have symantec 12.1.6 - external logging is enabled . This was working fine until few days back when we found that no logs are

received from SEPM to RLC - Remote log Collector

Is there any troubleshooting we can do to confirm configuration from SEPM is working fine ? Is there any logs in SEPM  we can check ?

I have run through below article https://support.symantec.com/content/unifiedweb/en_US/article.TECH234688.html

however upgrade has happened some months  back and issue appeared only few days back. So I believe this is not related to the

upgrade.

0

How to register the license for Premium AntiSpam with Symantec Mail Security for Microsoft Exchange (SMSMSE)

$
0
0
Ja, ich suche eine Lösung

Hi,

Got this error when i tried enable the SPA on SMSMSE please assist.

SMSMSE.png

Kind regards,

0

Workaround for Remote deployment of SEP on multiple Linux machines

$
0
0
Ja, ich suche eine Lösung

Hi All,

I'm looking for workaround or way to install SEP on multiple remote Linux machines.  As I'm aware that SEPM doesn't have any deployment tool for Linux but I would like to address this issue as most of our systems are at remote location and getting putty session copying the files remotely is quite different and a lot of change request needs to be done.

Any help or suggestions are highly appreciated 

Thanks,

-Syed Hussain

0

Integration with Market Channel Data

$
0
0
Ja, ich suche eine Lösung

Hello DLP champs,

My client uses DLP within their organization currently. They have a need to slurp up chat data/attachments from the following platforms:

  • Instant Bloomberg
  • Bloomberg Dealing
  • Reuters Messenger
  • Reuters Dealing
  • FX Connect.

My question: Is there a connector into DLP for these? If so, can someone point me at some documentation for this?

Thanks!

0

user is able to disable to sepm client from system tray in Windows 10

$
0
0
Ja, ich suche eine Lösung

Hi,

We just upgraded Windows 8 to Windows 10. Now what i can see that "user is able to disable to sepm client from system tray in Windows 10" . Earlier they can't on Windows 8/7 . No Policy has been changed (Same Policy was working on Windows 8) . We are using Windows Server 2012 R2 with SEPM 12.1 RU6 MP3 . Anybody has idea regarding this.

One strange thing i see that it worked on some Windows 10 mcahines and for some Windows 10 it is not working

0

Need vietool download for SEP version 12.1.6.MP3

$
0
0
Ja, ich suche eine Lösung

We need vietool.exe for SEP version 12.1.6.MP3

Is it still available for download somewhere? I now have only access to 12.1.6.MP4 (latest version)

0

Key search results

$
0
0
Ja, ich suche eine Lösung

Hello all!

Is there any additional information available about error 2508: too many matches found during public key lookups on any given 'open' keyserver? Currently I've only been able to extract results up to 100 keys per server;

keyserver search (2508:too many matches found)
keyserver search (2504:successful search)

100 keys found

I find it coincidental when all the servers I look up contain only up to a 100 keys.

The command line documentation only clarifies the following:

2508 - too many matches found - The search timed out while still receiving results from the keyserver.

The above stated seems to suggest I suffer from time outs even though the search completes succesfully constantly providing up to 100 results.

Any suggestions on how to retrieve the correct amount of keys available?

0

Unable to view USB Hard drive contents after lock(read-only access)

$
0
0
Ja, ich suche eine Lösung

Hi,
I am looking for some assistance that I can't see to find on other forums/ posts.

My work laptop has PGP Desktop 10.3 and when I connected my USB flashdrive it prompted me to Encrypt or Lock. Given the information on both of these options the only choice I had in order to access the files was to Lock the device. This meant that it became read-only access.

Once locked I could view my hard drive but the folders in it immediately got converted to .exe format. I couldn't view the contents of these folders after that. Later when I connect my hard drive to any ther personal laptop or even office laptop, I don't see the folders. I only see couple of my personal .xls files.

Loking for assistance from my office isn't fruitful as they mention that since its personal hard drive they can't help much.

Can any one provide me with any steps to unlock the USB Hard drive?
 

0
Viewing all 22854 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>