Endpoint Protection

 View Only
  • 1.  SEPM/LUA

    Posted Nov 19, 2013 01:43 PM

    Hello everyone,

    I have a SEPM 12.1.4 installed that connects to LUA server for virus def. My question is what ports need to be open between SEPM-LUA, SEPM-clients (desktop/servers) and Clients (desktop/servers) -LUA ?

    Thanks

     



  • 2.  RE: SEPM/LUA

    Posted Nov 19, 2013 01:44 PM

    See here for LUA ports

    Installing and Configuring LiveUpdate Administrator (LUA)

    Article:TECH102701  |  Created: 2007-01-19  |  Updated: 2013-01-09  |  Article URL http://www.symantec.com/docs/TECH102701

     

    SEPM/clients communicate over port 8014

    See these articles as well:

    https://www-secure.symantec.com/connect/articles/knowledgebase-articles-liveupdate-administrator-lua



  • 3.  RE: SEPM/LUA



  • 4.  RE: SEPM/LUA

    Posted Nov 19, 2013 01:56 PM

    Is this correct?

    SEPM to Client port 8014

    SEPM to SQL port 1433

    LUA to SEPM ports 7070, 7071, 7072

    LUA to Client ?

     



  • 5.  RE: SEPM/LUA

    Posted Nov 19, 2013 01:56 PM

    Yes.

    Why do you want clients to get updates from LUA? You should have them get them from a GUP or the SEPM. In any case, LUA to client is also 7070

    When to use LiveUpdate Administrator

    Article:TECH154896  |  Created: 2011-03-06  |  Updated: 2013-05-16  |  Article URL http://www.symantec.com/docs/TECH154896

     



  • 6.  RE: SEPM/LUA

    Posted Nov 19, 2013 02:31 PM

     

    Normally we have clients get it from SEPM but this is a secure environment and this is the only way to do it. Thanks

     



  • 7.  RE: SEPM/LUA

    Posted Nov 19, 2013 02:35 PM

    Ok, than it should communicate over the 70xx ports



  • 8.  RE: SEPM/LUA

    Posted Nov 19, 2013 05:32 PM

    Hi artk1,

    Brian is correct, assuming that you are using the default clu-prod distribution center of the LUA 2.x server.

    Another option is to have the content that was downloaded by the LUA 2.x server distributed to any file server, webserver etc in your environment. The SEP clients could be configured to retrieve their new defs from there using port 21, 80 etc that may already be open. 

    Hope this helps!

    Mick