Where to download SEP MR3. Lil bit new to symantec :smileyindifferent:. I tried fileconnect. But its not there. BTW hows dis release is it a stable one or still in beta stage.
there are several different products that are entitled to SEP.
The request to post MR3 to them all went in at the same time, but there is a little lag between when its available for "Symantec Endpoint Protection" and "Multi-Tier"
I suspect those of you having problems accessing are using MultiTier keys?
I just upgrade my MR2 SEPM's to MR3 and it renames the 'Global' & 'Temporary' groups to 'My Company' and 'Default Group' respectively. If you have notification conditions setup based on groups like I do they will be broken.
Also, after some of my clients auto-upgraded and rebooted (not because of the auto-upgrade but for other reasons) they received an application error regarding SNAC.EXE even though we do not use SNAC.
I have 2 cases already open with support regarding MR3 and I just installed it today.
thanks for that, I can't comment on the SNAC one, the service shouldn't even start if the license isn't present.
with the renamed groups notification issue, the renamed groups is correct, they are meant to be called "My Company" and "Default Group" however I don't believe the actual identifier in the DB has changed, so the notification should point to the same group GUID underneath the GUI - have you tested a notification at all?
Hi, Can someone please confirm: If I upgrade the Protection Manager, will it automatically upgrade the clients? If not, how do I automatically upgrade the clients?
No and Yes. You can set it so that the Management Console will automatically upgrade the clients of the groups you select or you can push the new package yourself.
The information on updating your clients can be found near the end of this document under the header "Upgrading the Symantec Endpoint Protection Clients":
One more question. I had a server die which hosted the manager. Now all the clients cannot contact the manager since I've rebuilt the server. Is there a way to find these clients with protection manager? You can find unmanaged clients but it always asks me to reinstall. Can't I just add them to a group? Hope that makes sense.
Your options at that point are to simply re-deploy a new client install package flagged to reset communication (as you have already noted) or acquire our "SylinkReplacer" utility. The utility will allow you to do a search by IP Address range and send new sylink.xml (communication) files from your server to the clients in question.
Thanks for the help. Sylink worked fine. Calling Symantec support however was a nightmare. Took 5 different people and 30 minutes to get access to the file :/
I upgraded 4 servers of one of our clients to MR3. No problem so far. Though, I didn't notice much change yet other than download randimization and clients panel view options.
I'll do a pilot install on 10 clients, I'll be testing upgrade from version 10 and version 11, servers, laptops, 64bits. Let's see what's gonna happen.
Can someone point me to the release notes? I cant seem to find them and the package is too big to download during the day for my slow internet connection.
I don't understand why the release notes are not available but the upgrade is. You would think the release notes would be an important part of the release process. I am not sure about installing an update without knowing exactly what it is supposed to fix.
I'd just like to add my voice to the call for release notes...
I have upgraded, and so far there don't appear to be any obvious problems - indeed, I like some of the more obvious changes....
It's massively important that the change/modification/addition notes are released though - There could be important changes or features that result in a royal c**k up without them....
The Symantec Endpoint Protection Manager password lifetime is hard coded Fix ID: 1194677 Symptoms: The administrator cannot configure how long a password has before it expires and must be changed. Solution: Added a configuration option to allow the administrator to configure the password expiration timeframe.
--------------------
In the SEPM, I can only configure password expiry IF I select Symantec Management Server Authentication.
I use Directory Authentication and the option is grayed out.
In the past, I was prompted to change my SEPM password despite not using SEPM auth.
Does this addition to the options also prevent prompting when using alternate auth methods?
Unable to stop users from stopping a scan when configuring the client to be able to snooze a scan Fix ID: 1225607 Symptoms: To configure the client with the ability to snooze a scan, the "Allow user to stop a scan" box must also be unchecked. Solution: Added a checkbox to allow the administrator to provide the ability to pause a scan but not cancel it. ---------------
I can confirm that this works as expected with a scheduled scan, but it does not appear to work when an administrator chooses to run a full scan from the SEPM console.
Have tested this on 2 machines with the same result. The forced scan presents the pause button and not the stop button (good so far), but when pressing the pause button, the scan pauses without presenting the snooze option box.
Pausing and un-pausing 3 times causes the pause button to become inactive.
Sam, Yes, MR3 memory footprint is reduced, as are boot times
Nick, Yes and I need to check how it should work - the defect was around the ability to even have the options - not neccessarily how they work - did this work correctly in SAV? (I've never used it)
As far as I remember it worked in SAV, but can't honestly remember ever specifically testing it... One of those things, you never notice until it bites you..
I have discovered another problem too - When exporting a log file, if you hit save, or try to save the notepad file after opening, I get access denied. Im using the console from a Vista machine, I'm an admin of the local box and the UAC is turned off. Easy enough to work around (select all, copy and paste into a new file), but would be better if it worked....
A little update for you guys about my situation with MR3. I've installed it on 4 load balancing servers connected to a seperate SQL 2005 server. I confronted a few problems but I overcame all of them. We started client installation. I've built up packages with the latest definitions. Installations are successful but PTP definitions do not update until the next randomized update.
You'll finally be able to see a lot of information about your clients, in the clients tab. Only disappointment for me was "install packages" tab, which I cannot get to work.
We have 15000 clients to deploy. We'll see what is going to happen.
Please keep us posted Bekir. Would like to make sure MR3 doesn't cause any major fallout. We have about 3000 clients distributed throughout 20 locations. Want to make sure we don't encounter any WAN saturation issues or anything else surprising. If you've been through an MR3 migration, what are some recommendations on getting clients upgraded, consdering WAN implications...perhaps RemotExec or AD GPOs? Thanks.
bekirdur, is that 15,000 new clients or 15000 clients on MR2 that would be upgrading to MR3? I have 25,200 MR2 clients that we would need to upgrade to MR3 some time in the next two weeks, so would be interested in hearing your experience.
------------------------------------------------------------
MR99 will fix it all.
Has anyone had experience using the URL deployment method for a client installation package, as opposed to the management server deployment method? I can find very little documentation on it, and the Symantec Support rep I called couldn't find anything in a cursory search. We have IIS servers in each of our 20 locations, and I would gladly drop an exported installation package on each one of them if I could guarantee that clients assigned the group for each location would pull the installation package from the local IIS server instead of going across the WAN to the sepm server at our headquarters.
"Is VMWare supported as a platform for Symantec Endpoint Protection? VMWare is a supported platform for Symantec Endpoint Protection, but it is not an optimized experience. Optimization will come in future releases as the Symantec Endpoint Protection team works with VMWare to provide better integration kits."
Comments
Where to download SEP MR3. Lil bit new to symantec :smileyindifferent:. I tried fileconnect. But its not there. BTW hows dis release is it a stable one or still in beta stage.
Thanx
Hi,
This Release is available only for Platinum Customers of Symantec.
Also the release notes of the product is not yet publish on Platinum Website.
Rgrds,
SAM
Thanx Alot. So fast . . !:womanvery-happy:
How long before the great unwashed (i.e. me) gets to give it a spin?
I'd rather be precautious :)
Best regards,
Bekir Burak Durmaz
MR3 is now on Fileconnect for us "non-platinum" folks
"Hurricane" Andrew
Milford, Delaware
Yes, MR3 11.0.3001.2224 is now available on FileConnect. =)
Strange, not seeing it for any of my clients on fileconnect. Maybe there is a delay in when it gets to the UK ?.
Nope...not available for me yet. Are the release notes out though?
same here ... i see only MR2 on fileconnect
It appears it may still be making its way across the lines. Keep checking back from time to time.
Figures. just when finisheing my MR2 deployment MR3 comes out.
When does MR4 come out?
there are several different products that are entitled to SEP.
The request to post MR3 to them all went in at the same time, but there is a little lag between when its available for "Symantec Endpoint Protection" and "Multi-Tier"
I suspect those of you having problems accessing are using MultiTier keys?
It should be up for all SKU's and bundles soon.
Paul Murgatroyd
Principal Product Manager, Symantec Endpoint Protection
Endpoint twitter feed: http://twitter.com/symc_endpoint
A word of caution....
I just upgrade my MR2 SEPM's to MR3 and it renames the 'Global' & 'Temporary' groups to 'My Company' and 'Default Group' respectively. If you have notification conditions setup based on groups like I do they will be broken.
Also, after some of my clients auto-upgraded and rebooted (not because of the auto-upgrade but for other reasons) they received an application error regarding SNAC.EXE even though we do not use SNAC.
I have 2 cases already open with support regarding MR3 and I just installed it today.
ch1221, what are you case IDs?
For others waiting for FileConnect posting, both MultiTier keys and "Normal" should now be able to download MR3.
Paul Murgatroyd
Principal Product Manager, Symantec Endpoint Protection
Endpoint twitter feed: http://twitter.com/symc_endpoint
320-135-594 - SNAC error
320-135-618 - renamed groups
thanks for that, I can't comment on the SNAC one, the service shouldn't even start if the license isn't present.
with the renamed groups notification issue, the renamed groups is correct, they are meant to be called "My Company" and "Default Group" however I don't believe the actual identifier in the DB has changed, so the notification should point to the same group GUID underneath the GUI - have you tested a notification at all?
Paul Murgatroyd
Principal Product Manager, Symantec Endpoint Protection
Endpoint twitter feed: http://twitter.com/symc_endpoint
Why does CD1 extract a folder called CD1 and CD2 extracts a folder called CD3???
that relates to SNAC, in the full "SEP & SNAC package" there is three CD's
CD1 is SEP, CD2 is SNAC, CD3 is additional tools
cosmetic only, I'll see if it can be sorted easily...
Paul Murgatroyd
Principal Product Manager, Symantec Endpoint Protection
Endpoint twitter feed: http://twitter.com/symc_endpoint
Hi, Can someone please confirm: If I upgrade the Protection Manager, will it automatically upgrade the clients? If not, how do I automatically upgrade the clients?
No and Yes. You can set it so that the Management Console will automatically upgrade the clients of the groups you select or you can push the new package yourself.
The information on updating your clients can be found near the end of this document under the header "Upgrading the Symantec Endpoint Protection Clients":
Title: 'Migrating to Symantec Endpoint Protection 11.0 MR3'
Document ID: 2008091611042748
> Web URL: http://service1.symantec.com/SUPPORT/ent-security.nsf/docid/2008091611042748?Open&seg=ent
Hope that helps!
Thanks :)
One more question. I had a server die which hosted the manager. Now all the clients cannot contact the manager since I've rebuilt the server. Is there a way to find these clients with protection manager? You can find unmanaged clients but it always asks me to reinstall. Can't I just add them to a group? Hope that makes sense.
Your options at that point are to simply re-deploy a new client install package flagged to reset communication (as you have already noted) or acquire our "SylinkReplacer" utility. The utility will allow you to do a search by IP Address range and send new sylink.xml (communication) files from your server to the clients in question.
Title: 'Using the "SylinkReplacer" Utility'
Document ID: 2008062412271448
> Web URL: http://service1.symantec.com/SUPPORT/ent-security.nsf/docid/2008062412271448?Open&seg=ent
As noted in that document you will have to contact Symantec Technical Support to acquire this utility.
Hope that helps!
Thanks for the help. Sylink worked fine. Calling Symantec support however was a nightmare. Took 5 different people and 30 minutes to get access to the file :/
I upgraded 4 servers of one of our clients to MR3. No problem so far. Though, I didn't notice much change yet other than download randimization and clients panel view options.
I'll do a pilot install on 10 clients, I'll be testing upgrade from version 10 and version 11, servers, laptops, 64bits. Let's see what's gonna happen.
Best regards,
Bekir Burak Durmaz
Can someone point me to the release notes? I cant seem to find them and the package is too big to download during the day for my slow internet connection.
People started asking for those yesterday, and they still haven't put them up yet.
I would expect them to be here when they finally get around to putting them up:
http://service1.symantec.com/support/ent-security.nsf/854fa02b4f5013678825731a007d06af/2c62c4ee0e697aae882573b000034ded?OpenDocument
I don't understand why the release notes are not available but the upgrade is. You would think the release notes would be an important part of the release process. I am not sure about installing an update without knowing exactly what it is supposed to fix.
LOL! Same here
"Hurricane" Andrew
Milford, Delaware
I'd just like to add my voice to the call for release notes...
I have upgraded, and so far there don't appear to be any obvious problems - indeed, I like some of the more obvious changes....
It's massively important that the change/modification/addition notes are released though - There could be important changes or features that result in a royal c**k up without them....
Nick
release notes are coming soon, with the large number of defects we fixed its taking time to get the note finalised in an understandable manner.
Paul Murgatroyd
Principal Product Manager, Symantec Endpoint Protection
Endpoint twitter feed: http://twitter.com/symc_endpoint
upgrading SEPM now to MR3.
Nice and fast download servers, woot.
Getting this error all the time in the event log after upgrading from MR2->MR3
"The Symantec Eraser Control driver service failed to start due to the following error:
The specified service does not exist."
Hi Paul,
It's already been 5 days since the product got released.. Still no release notes here.... We r waiting for the same. :smileysurprised:
We have stopped our implementation as the management needs the release notes before the implementation.
When it'll be going to publish........... Please reply..
Rgrds,
SAM
Any word on the release notes. And if so, where can I find them. Downloaded SEP 11.0.3, but no release notes.........
Release notes is there on website now
http://service1.symantec.com/support/ent-security.nsf/854fa02b4f5013678825731a007d06af/2c62c4ee0e697aae882573b000034ded?OpenDocument
wow that's alot of changes. Are there any known issues?
Hi Paul,
Just want to know whether SEP MR3 have reduced the memory footprint as well as system startup & shutdown time.
Rgrds,
SAM
Hi Paul,
I have a query about -
-------------------
The Symantec Endpoint Protection Manager password lifetime is hard coded
Fix ID: 1194677
Symptoms: The administrator cannot configure how long a password has before it expires and must be changed.
Solution: Added a configuration option to allow the administrator to configure the password expiration timeframe.
--------------------
In the SEPM, I can only configure password expiry IF I select Symantec Management Server Authentication.
I use Directory Authentication and the option is grayed out.
In the past, I was prompted to change my SEPM password despite not using SEPM auth.
Does this addition to the options also prevent prompting when using alternate auth methods?
Thanks
Nick
Sorry - me again....
Regarding:-
---------------
Unable to stop users from stopping a scan when configuring the client to be able to snooze a scan
Fix ID: 1225607
Symptoms: To configure the client with the ability to snooze a scan, the "Allow user to stop a scan" box must also be unchecked.
Solution: Added a checkbox to allow the administrator to provide the ability to pause a scan but not cancel it.
---------------
I can confirm that this works as expected with a scheduled scan, but it does not appear to work when an administrator chooses to run a full scan from the SEPM console.
Have tested this on 2 machines with the same result. The forced scan presents the pause button and not the stop button (good so far), but when pressing the pause button, the scan pauses without presenting the snooze option box.
Pausing and un-pausing 3 times causes the pause button to become inactive.
Thanks
Nick
Sam, Yes, MR3 memory footprint is reduced, as are boot times
Nick, Yes and I need to check how it should work - the defect was around the ability to even have the options - not neccessarily how they work - did this work correctly in SAV? (I've never used it)
Paul Murgatroyd
Principal Product Manager, Symantec Endpoint Protection
Endpoint twitter feed: http://twitter.com/symc_endpoint
Hi Paul,
As far as I remember it worked in SAV, but can't honestly remember ever specifically testing it... One of those things, you never notice until it bites you..
I have discovered another problem too - When exporting a log file, if you hit save, or try to save the notepad file after opening, I get access denied. Im using the console from a Vista machine, I'm an admin of the local box and the UAC is turned off. Easy enough to work around (select all, copy and paste into a new file), but would be better if it worked....
Cheers
nick
I'll check, that could (sadly) be a Vista-ism, but we should be able to work round it
Paul Murgatroyd
Principal Product Manager, Symantec Endpoint Protection
Endpoint twitter feed: http://twitter.com/symc_endpoint
Hello All,
The release notes are now available in doc 2007121216360648.
anyone else note that the MR3_AllWin_EN_CD2.zip actually extracts into a folder called CD3, while CD1 extracts into CD1 as it should?
Is there actually a CD3, or is this a mistake in compiling the ZIP files????
My sites - http://theamcpages.com & http://antique-engines.com
Toy:
Shadow:
its "by design" and has been like that since the SAV days
In the whole suite
CD1 - SEP/SAV
CD2 - SNAC/SCS
CD3 - Additional Tools
With SAV there was also a mysterious CD4 too :smileyhappy:
Paul Murgatroyd
Principal Product Manager, Symantec Endpoint Protection
Endpoint twitter feed: http://twitter.com/symc_endpoint
Actaully, for my recollection, it has not - and I've been with SAV since version 7.00
And the 11.02 I have unzipped as CD1 and CD2 -
this is the very first time I've seen CD3 mentioned or unzipped.
My sites - http://theamcpages.com & http://antique-engines.com
Toy:
Shadow:
Hello al!
A little update for you guys about my situation with MR3. I've installed it on 4 load balancing servers connected to a seperate SQL 2005 server. I confronted a few problems but I overcame all of them. We started client installation. I've built up packages with the latest definitions. Installations are successful but PTP definitions do not update until the next randomized update.
You'll finally be able to see a lot of information about your clients, in the clients tab. Only disappointment for me was "install packages" tab, which I cannot get to work.
We have 15000 clients to deploy. We'll see what is going to happen.
Best regards,
Bekir Burak Durmaz
Please keep us posted Bekir. Would like to make sure MR3 doesn't cause any major fallout. We have about 3000 clients distributed throughout 20 locations. Want to make sure we don't encounter any WAN saturation issues or anything else surprising. If you've been through an MR3 migration, what are some recommendations on getting clients upgraded, consdering WAN implications...perhaps RemotExec or AD GPOs? Thanks.
bekirdur, is that 15,000 new clients or 15000 clients on MR2 that would be upgrading to MR3? I have 25,200 MR2 clients that we would need to upgrade to MR3 some time in the next two weeks, so would be interested in hearing your experience.
------------------------------------------------------------
MR99 will fix it all.
All 80 client of mine were upgraded in less than 4 hours.
Yeah its small environment but it worked.
Has anyone had experience using the URL deployment method for a client installation package, as opposed to the management server deployment method? I can find very little documentation on it, and the Symantec Support rep I called couldn't find anything in a cursory search. We have IIS servers in each of our 20 locations, and I would gladly drop an exported installation package on each one of them if I could guarantee that clients assigned the group for each location would pull the installation package from the local IIS server instead of going across the WAN to the sepm server at our headquarters.
Now that we're at MR3, when is this product going to run well on VMware virtual machines?
http://service1.symantec.com/SUPPORT/ent-security.nsf/docid/2007071909500548
"Is VMWare supported as a platform for Symantec Endpoint Protection?
VMWare is a supported platform for Symantec Endpoint Protection, but it is not an optimized experience. Optimization will come in future releases as the Symantec Endpoint Protection team works with VMWare to provide better integration kits."
What future release are we talking about?
Can SEP 11.0 MR3 be installed or rather Upgraded (in my case) to a partition other than the System partition?
System requirements state
I want to put both on a different partition. I'm running out of space on my system partition. I'm a quite a bit smaller site than bekirdur ;)
edit: my current MR2 is on the system partition but I want to move it.
Would you like to reply?
Login or Register to post your comment.