Video Screencast Help
Search Video Help Close Back
to help
Not able to make it to Vision this year? Get a sampling in the Best of Vision on Demand group.

File uses for Symnatec Endpoint Configuration

Updated: 22 May 2010 | 10 comments
Yobo's picture
0 0 Votes
Login to vote
This issue has been solved. See solution.

Dear Partner,

From the symantec end point protection,  what the are files that can be examine to confirmed that embeeded database is being configure during installation.

In additional, I heard from a customer  that from the symantec end point Client  have two two configuration which can be used to verify what configuration has been push down and configure for the client. May I know what are the two configuration files?

A new Symantec endpoint will be setup in another Office in oversea and he would like me to configure exactly the same as the existing endpoint configuration
By the way, is it possible to push Symantec antivirus  Only   instead of symantec antiviurs + spyware?  Is this possible?

Thanks

Comments

Prachand's picture
25
Jul
2009
0 Votes 0
Login to vote

Embedded database being configured

Hi,

During the installation of SEPM we get an option to select which database is being configured.

Also the same information can be seen under ODBC Connection.

For an embedded (Sybase) database the Symantec Embedded Database service is running and that the dbsrv9.exe process is listening on TCP port 2638

 

Prachand Kumar MCSE-2003 Symantec Technical Specialist (SCTS)

Prachand's picture
25
Jul
2009
0 Votes 0
Login to vote

is it possible to push Symantec antivirus Only instead of sym

No it possible to push Symantec antivirus Only instead of symantec antiviurs + spyware.
Antivirus and antispyware protection are inbuilt together. They cannot be separated . this is by design

Prachand Kumar MCSE-2003 Symantec Technical Specialist (SCTS)

Yobo's picture
25
Jul
2009
0 Votes 0
Login to vote

Dear Partner,  When I select

Dear Partner,

 When I select symantec antivirus + spyware only and push down to client,   why is the Network Access Control appear on the symantec endpoint projection.

Kaushal Suthar's picture
25
Jul
2009
0 Votes 0
Login to vote

On the SEP client, you can

On the SEP client, you can check the sylink.xml and config.xml files under C:\program files\symantec\symantec endpoint protection folder. This holds all communication settings and server details.

You can configure the new clients in exactly the same way. You can use the same deployment package and also put the new clients in same group in SEPM so that they would get the same policies. You could also copy policies from one group and paste it on a new group in SEPM. 

You see NAc component because your SEPM has integrated NAC package under installation packages.
 

Ramji Iyyer's picture
25
Jul
2009
0 Votes 0
Login to vote

NAC package has been

NAC package has been installed in SEPM.

Do you see in client Network Access Control   Allowed ?

Regards....
Ramji Iyyer

Regards...
Ramji Iyyer

Vikram Kumar-SAV to SEP's picture
25
Jul
2009
3 Votes +3
Login to vote

SEP

Symantec Endpoint has total 8 features that are divided into 4 components

1. Antivirus and Antispyware Protection ( Antivirus + Antispyware )
2.Proactive threat Protection ( Proactive Behaviour based scan + Application Control + Device control )
3. Netowkr threat Protection ( Firewall + Intrusion Prevention System )
4. Symantec Network Access Control--which has to be purchased seperately

Once you have Install SNAC license on your SEPM on all the clients SNAC component will automatically get enabled and you cannot un-install or Disable it.
However it is harmless untill you configure it..
This is a policy based compliance products..which will check whatever policies you have configured whether the clients are compliant with it or not.
So without policy it just sits there..

Communication..
2 files were used in older version of symantec antivirus (10.x and earlier) namely grc.dat and root certificate.

From SEP 11..its only 1 file Sylink.xml, which will give you all the information about where this client belongs to. information in sylink are : server ip,port,domain id,communication mode, heartbeat interval etc..

Yobo's picture
01
Aug
2009
0 Votes 0
Login to vote

Dear Partner, In the

Dear Partner,

In the servivces, I disabled the services but on the server side when I view the client the NAC is still there? Is it possible to hide that Icon?

Thanks

Peterpan's picture
01
Aug
2009
0 Votes 0
Login to vote

You dont have to disable the

You dont have to disable the NAC on the SEPM instead if you do not want to see the NAC into the client just remve the license of the NAC from the SEPM server

:-)

Yobo's picture
02
Aug
2009
0 Votes 0
Login to vote

Dear Partner, I'm currently

Dear Partner,

I'm currently using an evaluation copy. How can remove that away?
Thanks

Prachand's picture
03
Aug
2009
3 Votes +3
Login to vote

Upgrade from Trailware not supported

Upgrade from Trialware is not supported

Currently there are no migration paths from Trialware to a Licensed build. The recommended solution at this time is to uninstall the Trialware version, restart the computer, and install the Licensed build in its place.

Symantec Endpoint Protection Trialware Migration

http://service1.symantec.com/SUPPORT/ent-security....

Prachand Kumar MCSE-2003 Symantec Technical Specialist (SCTS)