Endpoint Protection

 View Only
  • 1.  SEP 12.1.3001.165/Win 8 Installation

    Posted Nov 21, 2013 03:29 AM

    My engineers recently did a SEP POC and they noted the below - Is there any way SEP can be deployed on to Win7/8 machines without having to do the below?

     

    In deploying the SEP agent to Win 7 and Win 8 machines the following have got to be considered.

    1. Have an account with administrative privileges
    2. Ensure that Simple File Sharing is turn off.
    3. Ensure Network discovery is turned on
    4. Remote registry service needs to be started
    5. Make sure administrative shares are enabled.
    6. Ensure the Firewall is turned off.


  • 2.  RE: SEP 12.1.3001.165/Win 8 Installation
    Best Answer

    Posted Nov 21, 2013 03:44 AM
    1. Have an account with administrative privileges
    2. Ensure that Simple File Sharing is turn off.
    3. Ensure Network discovery is turned on
    4. Remote registry service needs to be started
    5. Make sure administrative shares are enabled.

    All the above are needed if you are doing the push deployment from the SEPM console. However if you are installing locally on the machine theyn you dont need it

     

    wrt to Firewall the port used for communication for ex 8014 should be allowed. You can just create an exception without needing to disable it completely.



  • 3.  RE: SEP 12.1.3001.165/Win 8 Installation

    Broadcom Employee
    Posted Nov 21, 2013 03:50 AM

    if you have any 3rd party tool using diferent protocol then it can be used. the above factors are requirement for push deployment.



  • 4.  RE: SEP 12.1.3001.165/Win 8 Installation
    Best Answer

    Trusted Advisor
    Posted Nov 21, 2013 04:19 AM

    If you export a package from the SEPM and install directly onto the machine is the only way to avoid the majority of those items.

    Export the client from the SEPM as a single setup.exe onto the machine double click and install directly.

    You only need the requirements above if you don't have direct access to the machines to push directly from the SEPM.

    Other alternative if no direct access to the machines is build the package from the SEPM and send user the web link to install. Via the "install protection client to computers" on the common tasks top right of SEPM Home screen if using SEP 12.



  • 5.  RE: SEP 12.1.3001.165/Win 8 Installation

    Posted Nov 21, 2013 04:20 AM

    Thanks guys.



  • 6.  RE: SEP 12.1.3001.165/Win 8 Installation

    Trusted Advisor
    Posted Nov 21, 2013 09:21 AM

    Hello,

    There is no specific document on the prerequirements for windows 8 OS to install symantec endpoint client. It is important for you to know that Windows 8 is supported from Symantec Endpoint Protection 12.1.RU2 onwards. Currently the latest version is Symantec Endpoint Protection 12.1.RU4.

    However, there are few documents which you be helpful to you - 

    About Windows 8 and Symantec Endpoint Protection 12.1

    http://www.symantec.com/docs/TECH174348

    Preparing Windows operating systems for remote deployment

    http://www.symantec.com/docs/HOWTO80805

    It states - Prepare Windows 8 or Windows Server 2012 computers

    Before you deploy, perform the following tasks:

    • Disable the Windows Firewall.

    • Create the registry key LocalAccountTokenFilterPolicy. For more information, visit the following URL:

      http://support.microsoft.com/kb/942817

    • Enable and start the Remote Registry service.

    Hope that helps!!