Video Screencast Help
Search Video Help Close Back
to help
New in the Rewards Catalog: Vouchers for "Symantec Technical Specialist" and "Symantec Certified Specialist" exams.

Enabling SEP Firewall

Updated: 02 Sep 2010 | 13 comments
Faizal's picture
0 0 Votes
Login to vote

Hi,

Recently I installed SEP with only Antivirus & Antispyware features on workstations and only enabled the antivirus policy. Now I would like to enable the firewall features on the installed workstations. Is it sufficient if I just create a firewall policy and distribute it to the workstations?

 

Thanks..

 

Faizal

Comments

Aniket Amdekar's picture
01
Mar
2010
0 Votes 0
Login to vote

HI, The firewall component

HI,

The firewall component needs to be installed on the client machines so that the Firewall policy will be effective.

You have 2 options.

1. Create an install package with Firewall enabled, and deploy it to the workstations.

2. Assign an upgrade package to the group using Upgrade Groups with package. and when it asks you to keep the same settings, you can choose the approproate feature set so that firewall component will be installed.

After doing this, you can enable the firewall policy and see the results.

Best,
Aniket

Faizal's picture
01
Mar
2010
0 Votes 0
Login to vote

hi,for upgrade groups with

hi,

for upgrade groups with package option, If I uncheck Maintain existing client features when updating, can I just select only network threat protection as I already have installed av and antispyware components? or should i select Antivirus, Antispyware, and TruScan Proactive Threat Scan?

also..issit possible to monitor the upgrade status from sepm?

Faizal

Rafeeq's picture
01
Mar
2010
0 Votes 0
Login to vote

Hi

No , you should select all the packages what you want to get installed.
Yes, you can monitor the upgrade status from sepm 
open sepm
reports
report type: Report type
select a report: Select a report:
this will give you the migration report.

Please don't forget to mark your thread solved with whatever answer helped you : ) Rafeeq

Faizal's picture
01
Mar
2010
0 Votes 0
Login to vote

so..in this case..only

so..in this case..only network threat protection?

Rafeeq's picture
01
Mar
2010
0 Votes 0
Login to vote

hi

if you uncheck maintain exisiting feautuers you will get these options
If you want to install AV /AS , PTP, NTP ---------select all features will install all the components
If you want to install Only ntp -----------will uninstall whatever you have earlier and will install only NTP
If you want to installAV and PTP ---select AV and PTP only  

Please don't forget to mark your thread solved with whatever answer helped you : ) Rafeeq

Rafeeq's picture
01
Mar
2010
2 Votes +2
Login to vote

hi

this should help

How to add or remove features to existing Symantec Endpoint Protection client installations

http://service1.symantec.com/SUPPORT/ent-security.nsf/docid/2008111808135348
 

Please don't forget to mark your thread solved with whatever answer helped you : ) Rafeeq

Aniket Amdekar's picture
01
Mar
2010
0 Votes 0
Login to vote

You can use the article

You can use the article mentioned by Rafeeq to create a Feature Set. And choose that feature set in the upgrade wizard.

Aniket

Faizal's picture
01
Mar
2010
0 Votes 0
Login to vote

thanks... by the way...can

thanks...

by the way...can the upgrade be done with the GUP? also, if i select download source from url, where do i find the existing upgrade files so that I can put it on the 2nd / 3rd server?

AravindKM's picture
01
Mar
2010
0 Votes 0
Login to vote

Enter subject (optional)

Upgrade cannot be done through GUP

Please don't forget to mark your thread solved with whatever answer helped you : ) Thanks & Regards Aravind

AravindKM's picture
01
Mar
2010
0 Votes 0
Login to vote

Enter subject (optional)

Upgrade cannot be done through GUP

Please don't forget to mark your thread solved with whatever answer helped you : ) Thanks & Regards Aravind

Faizal's picture
02
Mar
2010
0 Votes 0
Login to vote

what about the upgrade

what about the upgrade source? where is it located? so that i can distribute it to other servers and make clients download from them

AravindKM's picture
02
Mar
2010
0 Votes 0
Login to vote

Enter subject (optional)

It is present in your SEPM itself.While installing the SEPM it is getting added to the SEPM.Otherwise while upgrading the SEPM new package will get added or you can add it manually also.I think in your case only default package is req

Please don't forget to mark your thread solved with whatever answer helped you : ) Thanks & Regards Aravind

Rafeeq's picture
02
Mar
2010
0 Votes 0
Login to vote

hi

you can export a package from sepm ( client install package)
put it in a shared drive and ask clients to run the setup from there.
 

Please don't forget to mark your thread solved with whatever answer helped you : ) Rafeeq