Endpoint Protection

 View Only
  • 1.  How does the SEPM count online endpoints?

    Posted Nov 05, 2014 05:40 PM

    Hello everyone,

    I am wondering what logs or events (if any) the SEP Manager uses to count up-to-date and offline endpoints?

     

    Looking through event logs and there are numerous event entries that refer to clients including:

    “The client has downloaded the correct package successfully”

    “The client has downloaded globalindex.dax”

    “The client has downloaded GUP list”

    “The management server received the client log successfully”

    “The client has downloaded the policy successfully”

     

    Does anyone know if these are what the SEPM uses to count online status as it doesn't appear any 1 specific entry logs enough events to equal our up-to-date endpoints.

    I read Mithun Sanghavi's article on the SEP Heartbeat Process but I i'm not sure what record or event is triggered or generated when the SEP client connects to SEPM.

     

    Any help kindly appreciated.

    Kind Regards,

    Ryan



  • 2.  RE: How does the SEPM count online endpoints?

    Posted Nov 06, 2014 12:20 PM

    Uses the heartbeat to determine when it should check in, if it misses the heartbeat, it counts this as offline.