Endpoint Protection

 View Only
  • 1.  Cleaning out unmanaged detector list

    Posted Jan 18, 2013 09:38 AM

    Hello,

       I've "inheritied" our SEPM 12.1 environment when I started at this company, and now I'm trying to "reverse engineer" it's setup.

       I've set up a managed detector and it seems to work fine - for what it is.  I understand that it's not perfect, and that's OK.

       But it seems to still bringing up 2 machines that I KNOW have SEPM installed.

       So, is there a way to clear out what the unmanaged detector is sending to the SEPM?  Or is this list on the SEPM server and i need to do something there?

     

     



  • 2.  RE: Cleaning out unmanaged detector list
    Best Answer

    Posted Jan 18, 2013 09:42 AM

    Not really and this seems to be a limitation.

    You can add these two devices as exceptions.

    You can also try disabling the unmanaged detector and re-enabling to see if that works

    I've had these same issues in the past.



  • 3.  RE: Cleaning out unmanaged detector list

    Posted Jan 18, 2013 09:58 AM

    As per above recommnedation disable and enable again the unmanaged detector - this should clear up the old logs. Have a look at the previous threads as well:

     

    https://www-secure.symantec.com/connect/forums/how-clear-unkown-device-failures-list#comment-4455511

    https://www-secure.symantec.com/connect/forums/still-found-unmanaged-detector-false-positive-sep-12-ru1-mp1