Endpoint Protection

 View Only
  • 1.  Proactive Threat Protection Definitions

    Posted Jan 12, 2011 03:04 PM

    How do I update the Proactive Threat Protection Definitions on the SEP 11 Server to push down to the clients?  This server is on a closed network not connected to the internet.



  • 2.  RE: Proactive Threat Protection Definitions

    Posted Jan 12, 2011 03:12 PM

    In that case you need to configure a LUA ,jdb will not update the PTP defs

    Install LiveUpdate Adminstrator on a machine that has acess to the internt  and configure the SEPM' to download updates from LUA 

     

    Best Practices for LiveUpdate Administrator (LUA) 2.x

    http://www.symantec.com/docs/TECH93409

     

    How to update content on a Symantec Endpoint Protection Manager that doesn't have Internet access 

    http://www.symantec.com/docs/TECH104893



  • 3.  RE: Proactive Threat Protection Definitions

    Posted Jan 12, 2011 06:46 PM

    Can't do that, it's a closed classified network no connection to the internet anywhere.  Is there any other manual way to update the definitions?  If not is it possible to easily remove Proactive Threat Protection from the clients?

     

    Thanks!



  • 4.  RE: Proactive Threat Protection Definitions
    Best Answer

    Posted Jan 13, 2011 01:45 AM

    You mentioned that none of the machines have internet access, and LUA cannot be installed.

     

    Is there any other manual way to update the definitions? ....We can download only AV/AS definitions. We cannot download rapid release definitions for PTP.

     

    If not is it possible to easily remove Proactive Threat Protection from the clients?....Yes

     

     

    How to add or remove features to existing Symantec Endpoint Protection client installations

    http://www.symantec.com/business/support/index?page=content&id=TECH90936

    However this applicable for few clients, if the number of clients are more and they are managed by the SEPM, then create a new package without PTP & NTP, and then push it to all  clients. The AV/AS definitions can be downloaded on a different machine outside the network and the downloaded exe file can be kept at a central location within the closed network and executed on all the machines, thereby updating the virus definitions on the clients.

     

    In case of unmanaged clients the steps mentioned in the above link should help.



  • 5.  RE: Proactive Threat Protection Definitions

    Posted Jan 13, 2011 04:53 AM

    Here is a link to a proposed enhancement to SEP:

     

    Network and Proactive Threat Protection Definition updates  (https://www-secure.symantec.com/connect/idea/network-and-proactive-threat-protection-definition-updates )

     

    Symantec's developers may take action if there is sufficient customer interest in creating a special tool to update PTP and NTP fro isolated networks like yours.

     

    Please browse the "Ideas" section for additional features that you would like to see in a future release of SEP!

     

    Hope this helps!

     

    Mick