Endpoint Protection

 View Only
Expand all | Collapse all

pulling all the management servers under one roof

Migration User

Migration UserFeb 20, 2012 05:42 AM

pete

peteFeb 20, 2012 07:52 AM

  • 1.  pulling all the management servers under one roof

    Posted Feb 20, 2012 04:05 AM

    Guys, Is it possible to have a single primary sepm and multipple secondary sepm located at remote places without making them as replication partner of my primary sepm?.



  • 2.  RE: pulling all the management servers under one roof

    Broadcom Employee
    Posted Feb 20, 2012 04:21 AM

    the remote SEPM's cannot talk to primary SEPM, hence there will not be primary or secondary. THe remote SEPM's will be considered as primary SEPM as well.

    What do you want to achieve?

    You can think of SPC (protection centre) , which will manage all the SEPM's.



  • 3.  RE: pulling all the management servers under one roof

    Posted Feb 20, 2012 04:30 AM

    pete, I have more than 10 remote locations, each have a sepm. Is it possible to bring all the sepm under one management point from where i can distribute policy setting and take client side reports?.



  • 4.  RE: pulling all the management servers under one roof

    Broadcom Employee
    Posted Feb 20, 2012 04:35 AM

    for that you can ITA along with SPC for reporting. WIth SEPM I think it is not possible as these are not replicating.

    The policy distribution has to be done manually i.e. export and import.



  • 5.  RE: pulling all the management servers under one roof

    Posted Feb 20, 2012 04:45 AM

    If you are not interested in going down the path of making them replication partners. I suggest deploying Group Update Providers(GUP) at each location, and publishing your 'centralised' SEPM through your firewall for these remote locations.

    The last step is to get the clients to report to the new SEPM server.It is possible  to do this without re-deploying SEP, by either using the sylinkdrop tool in a start-up script or some policy editing using notepad.

     

    In this deployment, all endpoint traffic (logs/policies) report directly to the SEPM server (small amount of traffic), updates are proxied through the GUP.



  • 6.  RE: pulling all the management servers under one roof

    Broadcom Employee
    Posted Feb 20, 2012 04:56 AM

    in that case, clients will be connecting through WAN to SEPM, and you should also look at the sizing document.



  • 7.  RE: pulling all the management servers under one roof

    Posted Feb 20, 2012 05:42 AM

    Guys, Am planning to configure all the remote sepm as replication partner to my primary (the one i manage) through WAN and assign management server list according to client's location by creating seperate group for each remote locations. Can that be  done?.



  • 8.  RE: pulling all the management servers under one roof

    Posted Feb 20, 2012 05:42 AM

    Can a GUP distribute policies as well?



  • 9.  RE: pulling all the management servers under one roof

    Broadcom Employee
    Posted Feb 20, 2012 05:54 AM

    no, it will distribute only content at this time.



  • 10.  RE: pulling all the management servers under one roof

    Broadcom Employee
    Posted Feb 20, 2012 05:55 AM

    once replication is set you can assign the MSL to the groups .



  • 11.  RE: pulling all the management servers under one roof

    Posted Feb 20, 2012 06:22 AM

    If i set replication intervel as one day and there is no major change in my sepm (Only replicate logs from remote server) , How much data (size) will be trasnfered between two sepm for a successful replication to happen.



  • 12.  RE: pulling all the management servers under one roof

    Broadcom Employee
    Posted Feb 20, 2012 06:47 AM

    Conditions for every environment are different which may effect the overall performance of replication. 

    you may check this article

    Best Practice for setting replication frequency

    http://www.symantec.com/business/support/index?page=content&id=TECH91509



  • 13.  RE: pulling all the management servers under one roof

    Broadcom Employee
    Posted Feb 20, 2012 06:59 AM

    Hi,

    Replication is a good option if you are following recommendations.

    Symantec recommends to have 1 Primary & 4 secondary sites i.e 1:4

    If you replicated 10 sites with Primary SEPM, your SEPM database size will increase depending upon number of clients across the sites.

    Check following URL for more details.

    https://www-secure.symantec.com/connect/articles/replication-and-considerations

    I think GUP should be the first choice & if you wish to have redundancy, you can install an additional SEPM on the primary site itself and replicate with existing SEPM.

     

    Group Update Provider: Sizing and Scaling Guidelines

    http://www.symantec.com/business/support/index?page=content&id=TECH95353

    Best Practices with Symantec Endpoint Protection (SEP) Group Update Providers (GUP)

    http://www.symantec.com/business/support/index?page=content&id=TECH93813

    New features and functionality in Symantec Endpoint Protection Release Update 5 (SEP RU 5) Group Update Provider (GUP)

    http://www.symantec.com/business/support/index?page=content&id=TECH96417&locale=en_US

     

    Video’s created on Group Update Provider on the Symantec Connect website.

    https://www-secure.symantec.com/connect/videos/group-update-providers-part-1

    https://www-secure.symantec.com/connect/videos/group-update-providers-part-2

     

    I hope it will help you !!!



  • 14.  RE: pulling all the management servers under one roof
    Best Answer

    Posted Feb 20, 2012 07:35 AM

    But in one of the symantec document i'ce read i can have maximum of 20 replication partners provided the replication time does not overlap with others. (Any way that's not possible in realtime)

     

    And this is what i was looking for..

     

    http://www.symantec.com/business/support/index?page=content&id=TECH94122

     

    Delphin



  • 15.  RE: pulling all the management servers under one roof

    Broadcom Employee
    Posted Feb 20, 2012 07:52 AM

    20 is too much!



  • 16.  RE: pulling all the management servers under one roof

    Broadcom Employee
    Posted Feb 20, 2012 08:49 AM

    Hi sadelphin,

    You are correct but Support strongly recommends that you do not exceed more than 10 replication partner.

    Article shared by you is explaining multiple features under one roof.

     



  • 17.  RE: pulling all the management servers under one roof

    Posted Feb 20, 2012 11:24 AM

    Hey pete and chetan.. Thanks.. yup 20 is too much.. I wont go for that. Will go, and implement and let you ppl know what happened...