Video Screencast Help
Symantec to Separate Into Two Focused, Industry-Leading Technology Companies. Learn more.

Defwatch Scan is displaying Undesired Notifications and not following Centralized Exceptions

Created: 02 May 2012 | 1 comment

Hello,

I deployed SEP 12.1 to several servers, with disabling all the notifications and setting the actions for Remote Access program to "Leave Alone" in the on-access and the scheduled scans.

However when the Defwatch scan run , it displays undesired pop-up messages and tries to quarantine/remove the Remote Access Programs in violation with the configured action.

I followed http://www.symantec.com/business/support/index?page=content&id=TECH106098 to disable the scan itself, what I need to know whether this is is normal for Defwatch to ignore the actions, or I misconfigured it ? if so then how can I reconfigure it properly ?

Regards,

Abd El Hafez Mohamed

Comments 1 CommentJump to latest comment

Mithun Sanghavi's picture

Hello,

What version of SEP 12.1 are you carrying?

I would request you to change the same settings in the Auto-Protect under Virus and Spyware Protection policy.

or / and 

Create an exceptions for the same. Check these Articles below:

Creating Centralized Exceptions Policies in the Symantec Endpoint Protection Manager 12.1

http://www.symantec.com/docs/TECH183201

Configuring Exceptions for Symantec Endpoint Protection (SEP) 12.1

http://www.symantec.com/docs/TECH176906

Hope that helps!!

Mithun Sanghavi
Senior Consultant
MIM | MCSA | MCTS | STS | SSE | SSE+ | ITIL v3

Don't forget to mark your thread as 'SOLVED' with the answer that best helped you.