Video Screencast Help

Disabled clients in SEPM

Created: 03 Dec 2012 | 8 comments

I recently had to reload my SEPM box which manages my client and mobile machines.  This was due to an inability in the server to update/download recent Windows definitions.  After reloading the database from a backup (from the previous day) and reestablishing all of my clients in the client list, I checked the home page which shows 2/3 of my Endpoints as being Disabled.  How do I rectify this?

Currently running SEPM 12.1.2015

If you need any other information, just ask!  Thanks!

Comments 8 CommentsJump to latest comment

_Brian's picture

So some are actually reporting in while the majority are not?

Have a look at this KB article to see if it helps:

https://www.symantec.com/business/support/index?pa...

Rafeeq's picture

do you see green dot on your clients in the sepm console?

did you restore the certificates after you restored the DB?

http://www.symantec.com/business/support/index?pag...

Ajit Jha's picture

I hope you have followed the Best Practices while Restoring the Database.

http://www.symantec.com/business/support/index?pag...

Please revert back with the SEPM Log.

Regard's

Ajit Jha

Technical Consultant

ASC & STS

W007's picture

HI,

Check this thread

https://www-secure.symantec.com/connect/forums/clients-show-disabled-home-menu-sepm-how-do-you-re-able-them

 

Don't forget to mark your thread as 'SOLVED' with the answer that best helped you.

jcritzer's picture

Let me try to clarify the numbers on the home screen...

 

Total Endpoints: 650

Up-to-date: 478

Out-of-date: 1

Offline: 169

Disabled: 445

(*Endpoints can be counted in more than one category)

 

Most of my clients have a little green dot on them, like they're connected.  I'm at a loss.  Hope to have more time to look at this tonight.

_Brian's picture

Disabled is slightly misleading. It usually means that one of the installed components is turned off. So you need to click on Disabled and another window will open and you can view each client to determine what is wrong.

jcritzer's picture

Brian-

So I just checked the disabled status for each client and the only component reflecting a disabled state is "Early Launch Antimalware Status."  How do I either enable this or, if disabling it is not a good idea, make it go away so I don't have to deal with the misleading information?

_Brian's picture

This only applies to Win8 clients so if you have no Win8 clients than you can disable.

Open you AV policy

Under Protection Technology, select Early Laucnh Anti-Malware Driver tab

Here you can either Enable or Disable, depending on if you want to use or not.

See thread here on ELAM:

https://www-secure.symantec.com/connect/forums/elam