Endpoint Protection

 View Only
  • 1.  SEPM - Monitor / Reports not load successfully and can't logoff (hold on logoff screen) 2

    Posted Nov 18, 2011 02:36 AM

    Sorry that to open new thread again. Ref to the below thread.

    https://www-secure.symantec.com/connect/forums/sepm-cant-load-monitor-reports-occassionally-and-cant-logoff-successfully

    The problem is still not completely solved after configure the firewall settings.

    This site is very strange and they are using Fortigate 100A (old firewall).

    When I connected the Windows 2003 member Server (SEPM with embedded database installed) to the ADSL without passing through firewall directly, the operation of SEPM is running normally and fast.

    When I connected Server back to the internal network with Fortigate 100A firewall connected, the problems come back again.

    i.e. SEPM can't load monitor / reports and can't logoff (hold in logoff screen)

    Already allow below ports on firewall.
    - TCP 8443, 8014, 9090, 2638, 8005, 8045, 8765
    - UDP 1812

    Then I tried to use policy to allow all traffic for ANY SERVICES to communicate with this server. But the results are same.

    The fortigate 100A firewall in that site ever had problem before that route change was not effective until restart it. I ever tried restart firewall but didn't solve.

    Then I tried to connect it ADSL directly again. All problems disappeared.

    Is it certified that the firewall has problem? Thanks.



  • 2.  RE: SEPM - Monitor / Reports not load successfully and can't logoff (hold on logoff screen) 2

    Posted Nov 18, 2011 04:28 AM

    Didi you tried accessing the console using web interface. https://localhost:9090



  • 3.  RE: SEPM - Monitor / Reports not load successfully and can't logoff (hold on logoff screen) 2

    Posted Nov 18, 2011 04:44 AM

    Yes, same. Can access Home page but the information is not updated. Still cannot load Monitor / Report page.

    When I connected Server to ADSL directly, all information could be updated and all 3 tabs' pages can be appeared quickly.



  • 4.  RE: SEPM - Monitor / Reports not load successfully and can't logoff (hold on logoff screen) 2

    Posted Nov 18, 2011 05:06 AM

    Create a Policy in Fortigate to Allow Symantec Sites or allow All Service from the Host and then check please. 

     

    I have Fortigate 220B in my site with Symantec in place as well but never faced such issue



  • 5.  RE: SEPM - Monitor / Reports not load successfully and can't logoff (hold on logoff screen) 2

    Posted Nov 18, 2011 09:32 PM

    In Fortigate 100A, I tried the following settings to allow all services.

    Server address name is Server246: 192.168.100.246

    Policy:
    Internal to WAN
    - Allow Any Service from Server246 (source) to All (Dest)
    - Allow Any Service from All (source) to Server246 (Dest)

    WAN to Internal
    - Allow Any Service from All (source) to Server246 (Dest)

    Then reboot the firewall once.

    But results are same on SEPM. I suspect if the Fortiage 100A has internal problems itself. Any other way can do to troubleshoot these problem?

    Another site is using Netscreen 25, don't have any similar problems.

    Thanks.