Video Screencast Help
Search Video Help Close Back
to help
Not able to make it to Vision this year? Get a sampling in the Best of Vision on Demand group.

Network Threat Protection

Updated: 21 May 2010 | 4 comments
Spentak's picture
0 0 Votes
Login to vote

I have Symantec Enpoint Protection 11. Every day on my small office network I have to manually turn off Network threat protection on each computer so my computers can access my back end database. I would like it to work so that not only can I access my database, but so that any computer can access the shared network files. I have messed with the settings, but can't seem to get it to work.  Also is there a way to prevent outbount internet traffic. Meaning my employees can't use the internet? If there is no way to get around the network threat protection, how to i make it so that symantec disables network threat protection automatically at startup?

Comments

Spentak's picture
30
Jul
2008
0 Votes 0
Login to vote

Any ideas?

ChadG's picture
30
Jul
2008
0 Votes 0
Login to vote

hi there,

 

Have you tried adding the path & file names to the exceptions list .. server side?  (Centralized Exceptions Policy)   We created AV & Spam only packages for our servers ... which doesn't include the other modules at all.

 

 

 

Chad

 

Message Edited by ChadG on 07-30-2008 01:28 PM
Ted G.'s picture
30
Jul
2008
0 Votes 0
Login to vote

If the firewall is blocking your access to the server, you must either configure it to allow communication, or not use it at all.

 

The firewall is extremely restrictive when first installed by design and must be opened up accordingly for each environment it's installed to. Due to nature of said environments, it's not possible to provide any one solution other than advising the firewall needs to be configured for your environment. You can get clues from the NTP logs on the client machines as to what's being blocked and which rules are doing the blocking.

 

susanthas-123's picture
30
Jul
2008
0 Votes 0
Login to vote

Hi Spentak,

 

At least try to create a firewall rule to allow any host to allow the access the target database server IP address without blocking any ports. This is less secure but at least you can reduce the headache quickly. Apart from that are you using SEP 11 MR2 or less version? AS the other guys mention try the exception policy too.