Endpoint Protection

 View Only
Expand all | Collapse all

Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

  • 1.  Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Posted Aug 12, 2012 11:06 PM

    Hi,

    I've been asked by my security team, as to why Symantec is not communicationg on protected / secure channel in my company ?

    because it seems that the reporting page is using only HTTP protocol "http://SEPM-Server01:8014/Reporting/login/login.php" 

     

    but when you see the above it says 443 SSL encrypted ?



  • 2.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Broadcom Employee
    Posted Aug 12, 2012 11:46 PM

    the porrt 443 mentioned is ablut the SEP and SEPM client communication not the reporting

    port 443: Optional secured HTTPS communication between a SEP Manager and SEP clients and Enforcers

    if you want reporting to be on secured used 8443

    port 8443: HTTPS communication between a remote management console and the SEP Manager. All login information and administrative communication takes place using this secure port

    check the port used by SEP

    http://www.symantec.com/business/support/index?page=content&id=TECH163787

     



  • 3.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Posted Aug 12, 2012 11:47 PM

    Hi,

    Check this artical it may be help

    Symantec Endpoint Protection 12.1: Enabling SSL Between the Manager and Clients

    http://www.symantec.com/business/support/index?page=content&id=TECH162326



  • 4.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Posted Aug 13, 2012 12:05 AM

    thanks guys, because changing the http into https the URL doesn't work at all.

    FYI: this is using SEPM v 12.1 RU 1



  • 5.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Posted Aug 13, 2012 12:12 AM
      |   view attached

    hi,

    Check this attachment.

     

    Attachment(s)



  • 6.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Posted Aug 13, 2012 04:27 AM

    Thanks for the response guys,

    Pete, I've tried to go to: https://SEPM-Server01:8443/Reporting/login/login.php yes it opens up SEPM Web Access and I can see the certificate error (red address bar).

    does this means that the console is still encrypted ?



  • 7.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Posted Aug 13, 2012 08:33 AM

    If you use SEPM 12.1, you should have access to Reporting in HTTPS only (improvement compared to SEPM 11.0):

    https://YOURSERVERNAME:8445/reporting

     

    Regarding Client-Server communication, you can configure SSL as previously mentioned.

     



  • 8.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Posted Aug 22, 2012 05:41 AM

    John,

    I've successfully connected to the reporting page by using this URL: https://SEPMServer-vm:8445/Reporting/login/login.php does that means the channel is secured even though the address bar is red ?



  • 9.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php
    Best Answer

    Posted Aug 22, 2012 05:57 AM

    Yes, the address bar is red because the certificate used is self-signed. You may make it known by Internet Explorer following this article:
    http://www.symantec.com/docs/TECH123686

     



  • 10.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Posted May 07, 2020 09:21 AM
    I am using external cert, 
    when i put https:\\fqdn:8443,  there is green url and works fine.

    but when launch reporting url by https://fqdn:8445/Reporting/login/login.php, it change itself to https://hostname:8445/Reporting/login/login.php

    and then due to difference in url and certificate server name, The red error on url comes up.

    now the question is why fqdn changes itself to hostname only.


  • 11.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Posted Aug 22, 2012 06:02 AM

    Ah, I see now, so it is already encrypted by SSL certificate (self signed by the SEPM) the article that you provided was just to "Installing" it into the browser CA list to make the bar goes green.

     

    cmiiw ?



  • 12.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Posted Aug 22, 2012 06:09 AM

    Correct.



  • 13.  RE: Securing SEPM report page http://SEPM-Server01:8014/Reporting/login/login.php

    Posted Aug 22, 2012 06:27 AM

    Thanks John !