Endpoint Protection

 View Only
  • 1.  Security Alerts on machines running XP Mode

    Posted May 12, 2010 09:52 AM
    I just put a machine out there running Symantec Endpoint Protection 11.0.5 and XP-Mode.  The host machine is constantly putting out alerts saying that the XP-Mode VM is scanning it.  I can add a rule in the firewall to allow traffic from that VM to pass through, however everything is managed through policy.  Is there a way to modify the firewall on that specific computer without modifying the policy on all the machines that policy pertains to in OU?  Basically I just don't want to create an OU for that one computer and apply a non-shared firewall policy to it.  Any ideas?


  • 2.  RE: Security Alerts on machines running XP Mode
    Best Answer

    Posted May 12, 2010 10:03 AM
    In SEPM go to Clients--->corresponding group--->policies here under location specific policies tou can see one setting as client user interface .If you set this to server control no firewall policy can me modified in the client.If it is mixed mode you can modify the policies in the client but in the SEPM policy the rules which is above blue line will get priority.if you set it to client control you can create policies in the client.(In client GUi--->NTP-->option(in status tab itself)--->configure firewall rule)


  • 3.  RE: Security Alerts on machines running XP Mode

    Posted May 12, 2010 12:05 PM
    Install it as Unmanaged.Then add rules as you want..


  • 4.  RE: Security Alerts on machines running XP Mode

    Posted May 14, 2010 09:35 AM
    Thanks man.  That worked.  I moved the users computer account in an OU whose Symantec Policy was set as Mixed Mode and it worked perfectly.