Video Screencast Help
Search Video Help Close Back
to help
Not able to make it to Vision this year? Get a sampling in the Best of Vision on Demand group.

Clients not pulling new AV Definitions from Symantec Endpoint Protection Manager

Updated: 21 May 2010 | 7 comments
ryan.brown.ctr-123's picture
+1 1 Vote
Login to vote

We are building a new network at my location. We setup a Symantec Endpoint Protection Manager server. It is a Windows 2008 32 bit server. Program installed fine. I download the .jdb definition and place it in the C:\Program Files\Symantec\Symantec Endpoint Protection Manager\data\inbox\content\incoming\ folder. The Manager absorbs the definitions and it eventually was taken in by 8/10 servers and the 2 workstations I have on there. 2 servers will not grab the new definition. I made sure that the Windows Firewall was turned off on the Manager and 2 servers. One server is SQL 2005 and the other is a domain controller. I just installed the client on there to protect the system. They are checking in at regular intervals but still will not pull a definition. I uninstalled the client and went through the registry and the Program Files directory to try and uninstall everything I could find. I then pushed out the client to the DC from the manager and after doing that it still cannot pull the latest definitions. Any help would be appreciated. This is the SEP version 11 MR4. I don't know the other digits behind 11. Hope what I have given helps if need be. Thanks in advance.

 

Comments

Sandeep Cheema's picture
15
Apr
2009
2 Votes 0
Login to vote

32 | 64

Are these two servers 64 bit?
If that is the case, Is the manager downloading the 64 bit definitions?

De facto when AV does something, it starts jumping up and down, waving its arms, and shouting "Hey!  I found a virus!  Look at me!  I'm soooo goooood!"

Paul Mapacpac's picture
15
Apr
2009
2 Votes 0
Login to vote

Re

Can you see these clients on the SEPM console?

Tejas Shah's picture
15
Apr
2009
0 Votes 0
Login to vote

Check clients are configured as managed or not?

Check clients are configured as managed or not?

Open SEP - > Help & Support -> Troublshooting 

In the management tab, you shold see Server and Group as desired/set by you.

Revert with that status.

Tejas

ryan.brown.ctr-123's picture
15
Apr
2009
0 Votes 0
Login to vote

The two servers in question

The two servers in question are both 32 bit. I am just grabbing the .jdb file from the website Iinked here which shows that it is good for 32 bit clients.

http://www.symantec.com/business/security_response/definitions/download/detail.jsp?gid=savce

When I do go to the client and look at the "Help and Support" area, I see it it managed and pointing to the SEPM as it should.

I work with the military and have a closed network and one connected to the Internet. The closed network has SEPM on one of the servers and it works perfectly. I copied the settings exactly to the other network and after reassigning the LU policy which tells them to grab the updates from the SEPM, 8/10 servers updated except for those other two.

Sorry for the long delay, I am 8 hours ahead of Eastern so there will be a delay.

Thanks

 

SameerU's picture
15
Apr
2009
0 Votes 0
Login to vote

Clients not pulling new AV Definitions from Symantec Endpoint Pr

Hi

Goto

C:\Program Files\Common Files\Symantec Shared\VirusDefs

Delete the temp folders and run the RXdef tool for SEPM

Regards
SAMEER

ryan.brown.ctr-123's picture
16
Apr
2009
0 Votes 0
Login to vote

I do see C:\Program

I do see C:\Program Files\Common Files\Symantec Shared but that is. I don't see a VirusDefs folder. These are Windows 2008 servers and Windows Vista and maybe those are somewhere else.

Paul Mapacpac's picture
16
Apr
2009
0 Votes 0
Login to vote

Re

Can you restore communication settings for the 2 clients in question?