[SOLVED] SEPM not pushing virus definitions to SEP clients
We are running SEPM 12.1 on Windows 2008 server (not R2) (32-bit),SEP 12.1 on Windows 2008 server (not R2) (32-bit) and SEP 12.1 on Windows 7 clients (64-bit). All of these are on CRN so no internet is possible. We have just gotten the server to see the clients by using the export communication settings method. We are wanting to load the definitions into SEPM and push for all the SEP clients. I have seperated the clients into groups for 32-bit and 64-bit. The issue is I have just been handed this project and cannot find a solution anywhere. I believe the folder I want to place the definitions into is "SEPM\data\outbox" ? Can someone point me in the right direction to get this working otherwise we have to go to each computer and use the intelliupdater disk we burn to update individually. Thank you.
Comments 16 Comments • Jump to latest comment
Hi.
How to update definitions for Symantec Endpoint Protection Manager (SEPM) using a .jdb file
http://www.symantec.com/business/support/index?page=content&id=TECH102607
How to manually update definitions for a managed Symantec Endpoint Protection Client using the .jdb file
http://www.symantec.com/business/support/index?pag
Thanks In Advance.
Manish
Don't forget to mark your thread as 'SOLVED' with the answer that best helped you.
since your manager is 32 bit you need to download the 32 bit JDB definitions file
once you dowanlod and paste it in outbox, once its processed all your 32 and 64 bit servers / desktops wil be updated. You can see the extraction status of jdb in the liveupdate tab
Please don't forget to mark your thread solved with whatever answer helped you : ) Rafeeq
To download the .jdb certified definitions:
Rafeeq, I was under the impression that this meant .jdb file was both the only one available. If this is not the case please inform me. Also, I did the manual install on the SEPM server. update went fine and the "C:\Program Files\Symantec\Symantec Endpoint Protection Manager\Inetpub\content\{535CB6A4-441F-4e8a-AB97-804CD859100E}" folder had my date. I copied the .jdb file into the outbox but nothing happens. No clients nor the other server is updated. I made sure the clients all had the "%ALLUSERSPROFILES%\Symantec\Symantec Endpoint Protection\Current Version\Inbox" folder.
Yes, It's update both of 32 bit and 64 bit.
Thanks In Advance.
Manish
Don't forget to mark your thread as 'SOLVED' with the answer that best helped you.
So just put into the outbox folder ?
yes just paste it there, it will update it automatically :)
Please don't forget to mark your thread solved with whatever answer helped you : ) Rafeeq
To download the .jdb Rapid Release definitions:
To use the .jdb file to update definitions for SEPM:
Verify that the SEPM content is updated:
32 bit definitions: "C:\Program Files\Symantec\Symantec Endpoint Protection Manager\Inetpub\content\{C60DC234-65F9-4674-94AE-62158EFCA433}"
64 bit definitions: "C:\Program Files\Symantec\Symantec Endpoint Protection Manager\Inetpub\content\{1CD85198-26C6-4bac-8C72-5D34B025DE35}"
32 bit Definitions : "C:\Program Files\Symantec\Symantec Endpoint Protection Manager\Inetpub\content\{535CB6A4-441F-4e8a-AB97-804CD859100E}"
64 bit Definitions : "C:\Program Files\Symantec\Symantec Endpoint Protection Manager\Inetpub\content\{07B590B3-9282-482f-BBAA-6D515D3855E2}"
Reference
http://www.symantec.com/business/support/index?page=content&id=TECH102607
Thanks In Advance.
Manish
Don't forget to mark your thread as 'SOLVED' with the answer that best helped you.
While using the .jdb option is defnititely easier, it only updates the Virus definitions. I'd personally recommend taking a look at the below articles which uses the LUA and is able to update all of SEP's content definitions (including Virud Defs, IPS, SONAR, etc):
http://www.symantec.com/docs/HOWTO44060
http://www.symantec.com/docs/TECH106254
http://www.cstl.com/
Okay, I just left the .jdb file in the outbox folder. we have the LiveUpdate policy enabled but it is setup to only update weekly. I need to change this as that is probably the reason it is not updating right away correct? Also, I need to check the box for enable the client to download the update from the LiveUpdate server option (sorry I forgot exactly what it says).
AMLatC ST, is LUA even an option since there is no internet?
*EDIT* - AMLatC ST, that is a VERY nice way of doing it and I may have to implement that. Thank you!
Thank you all for the help so far.
No problems. Like I said, I'd definitely recommend this option over just using the JDB files, as it would be far more secure to utilise all of SEP's technologies if possible
http://www.cstl.com/
if the manager has internet connection, it should get the updates from symantec live update server.
JDB is used to manually update the definitons.
as long as you dont have internet, LU admin will not work,
Please don't forget to mark your thread solved with whatever answer helped you : ) Rafeeq
So after testing, using the .jdb file to update the SEPM worked without a hitch. CHECK
Updating the clients manually with the .jdb individually works without a hitch. CHECK
However, placing the .jdb file into the "C:\Program Files\Symantec\Symantec Endpoint Protection Manager\data\outbox\" folder so it shows "C:\Program Files\Symantec\Symantec Endpoint Protection Manager\data\outbox\ad3b0a15.jdb" does not update the clients or the other server at all. I left the file in the folder for approximately 3 hours so far. Changed the LiveUpdate to use local server and set the path to the server with SEPM installed "double \ domain \ server." Changed the scheduled weekly updated to daily and set the time for different times and non worked.
it will update the client if you place jdb in
C:\Program Files\Symantec\Symantec Endpoint Protection Manager\data\outbox\??
I never heard of this :)
is there a link where it states the above?
manager will be updated after placing the file in content\incoming folder
cleints will take from manager,
I never heard of this Outbox folder..
Please don't forget to mark your thread solved with whatever answer helped you : ) Rafeeq
Me: So just put into the outbox folder ?
You: yes just paste it there, it will update it automatically :)
Apparently I got confused. I got it to work however after a lot of trial and error. I was dumb and had the use default management server unclicked. Checked that box and all is well.
:) you just need to put the JDB inside
"C:\Program Files\Symantec\Symantec Endpoint Protection Manager\data\inbox\content\incoming
Folder
=================================================
However, placing the .jdb file into the "C:\Program Files\Symantec\Symantec Endpoint Protection Manager\data\outbox\" folder so it shows "C:\Program Files\Symantec\Symantec Endpoint Protection Manager\data\outbox\ad3b0a15.jdb" does not update the clients or the other server at all.
Placing JDB in outbox folder wil not work.
================================================
Please don't forget to mark your thread solved with whatever answer helped you : ) Rafeeq
Got it. I learned a very valuable 6 hour lesson today. Thank you so much for the help. I hope if someone runs into this issue they can find this thread.
Would you like to reply?
Login or Register to post your comment.