Symantec Endpoint Protection 12.1 client install rolls back, returning 1603

Attempts to install Symantec Endpoint Protection (SEP) client (managed or unmanaged, with any feature set) rolls back.



MSI (s) (DC:0C) [10:01:50:831]: Executing op: ProgressTotal(Total=1,Type=1,ByteEquivalent=1300000)
MSI (s) (DC:0C) [10:01:50:831]: Executing op: ServiceControl(,Name=SepMasterService,Action=1,Wait=1,)
MSI (s) (DC:0C) [10:01:52:002]: Executing op: ActionStart(Name=ShowServiceProgress_RB,Description=Executing rollback script via service,Template=[1])
MSI (s) (DC:0C) [10:01:52:002]: Executing op: CustomActionSchedule(Action=ShowServiceProgress_RB,ActionType=3329,Source=BinaryData,Target=ShowServiceProgress_RB,CustomActionData={A4C6A6D3-7221-458F-A52B-BA6011F550EF};SOFTWARE\Symantec\Symantec Endpoint Protection;Executing rollback script via service;)
MSI (s) (DC:0C) [10:01:52:049]: Executing op: ActionStart(Name=ShowServiceProgress,Description=Executing install script via service,Template=[1])
MSI (s) (DC:0C) [10:01:52:049]: Executing op: CustomActionSchedule(Action=ShowServiceProgress,ActionType=3073,Source=BinaryData,Target=ShowServiceProgress,CustomActionData={A4C6A6D3-7221-458F-A52B-BA6011F550EF};SOFTWARE\Symantec\Symantec Endpoint Protection;Executing install script via service;)
MSI (s) (DC:C0) [10:01:52:096]: Invoking remote custom action. DLL: C:\WINDOWS\Installer\MSICC.tmp, Entrypoint: ShowServiceProgress
ScriptGen: ShowServiceProgress() MSIRUNMODE_SCHEDULED
ScriptGen: ShowServiceProgress() calling WaitForSingleObject(scriptStarted) ...
ScriptGen: ShowServiceProgress() WaitForSingleObject(scriptStarted) returned WAIT_OBJECT_0
ScriptGen: ShowServiceProgress() script execution failed.
ScriptGen: ShowServiceProgress() reset script failure event.
ScriptGen: ShowServiceProgress() is returning an error (so close to the end!)
MSI (s) (DC:0C) [10:02:11:737]: User policy value 'DisableRollback' is 0
MSI (s) (DC:0C) [10:02:11:737]: Machine policy value 'DisableRollback' is 0
Action ended 10:02:11: InstallFinalize. Return value 3.
MSI (s) (DC:0C) [10:02:11:752]: Executing op: Header


2011-09-22T14:02:11.565Z INFO  I SIS    Executing action ( 307 ) - CreateShortcut  currentPosition: 144824
2011-09-22T14:02:11.565Z DEBUG I SIS      DeleteFileAction: target does not exist: C:\Documents and Settings\All Users\Start Menu\Programs\Symantec Endpoint Protection\Symantec Endpoint Protection.lnk
2011-09-22T14:02:11.565Z ERROR I SIS      Failed to acquire shell interface.
2011-09-22T14:02:11.565Z ERROR I SIS        
2011-09-22T14:02:11.565Z ERROR I SIS        This action failed to execute!  Dumping action parameters from the script:
2011-09-22T14:02:11.565Z ERROR I SIS          ShortcutPath=[C:\Documents and Settings\All Users\Start Menu\Programs\Symantec Endpoint Protection\Symantec Endpoint Protection.lnk]
2011-09-22T14:02:11.565Z ERROR I SIS          Target=[C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Bin\SymCorpUI.exe]
2011-09-22T14:02:11.565Z ERROR I SIS          TargetDirectory=[]
2011-09-22T14:02:11.565Z ERROR I SIS          Arguments=[]
2011-09-22T14:02:11.565Z ERROR I SIS          IconFile=[]
2011-09-22T14:02:11.565Z ERROR I SIS          IconIndex=[0]
2011-09-22T14:02:11.565Z INFO  I SIS        ExecuteScript() - Successfully set failure event.
2011-09-22T14:02:11.565Z INFO  I SIS    ExecuteScript() returning ACTION_FAILED_WITH_ROLLBACK
2011-09-22T14:02:11.565Z INFO  I SIS  
2011-09-22T14:02:11.565Z INFO  I SIS  script completed with status: ACTION_FAILED_WITH_ROLLBACK
2011-09-22T14:02:11.565Z INFO  r SIS  TransitionToEnteringRollbackScript() - success
2011-09-22T14:02:11.565Z INFO  r SIS    
2011-09-22T14:02:11.565Z INFO  r SIS    starting execution of script: C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.671.4971.105\Scripts\startrollback.sis



Windows 2003 Standard SP2 Server (32-bit)

Symantec Endpoint Protection version 12.1.671.4971



Environmental factors can impact the SEP install.

Verify the following items:
a. What drive/file system location is the system variables TMP and TEMP pointing to?
b. Verify AD and GPO policies that restrict file system permissions.
c. Verify the user account being used to install SEP has sufficient permissions/rights to write to the file system.


Create an install package or create a custom setting under the “Client Install Settings” options to not use “Add the program to the Start Menu”, leave this unchecked.
If the install is successful, manually create the shortcut on the desktop that points SymCorpUI.exe.


