Endpoint Protection

 View Only
  • 1.  upgrading from SEPM console

    Posted Aug 07, 2014 09:45 AM

    Hello,

    We have around 5000 systems are in network,We are planning to push the SEP from the SEPM console,if we push it from sepm console is it recomended from symantec,

    is there any advatntage and dis advatage by doing this?which port this uses while pushing it from SEPM console.

     

    clinet systems are having 12.1.1 now we are planning for 12.1.4



  • 2.  RE: upgrading from SEPM console

    Posted Aug 07, 2014 09:46 AM

    You need to scheduled this accordingly. Doing 5,000 clients from the SEPM is a big task. Are these at different (remote) sites? Client will check in on tcp 8014 but the client will pul down the package over ephemeral ports.

    Which communication ports does Symantec Endpoint Protection use?



  • 3.  RE: upgrading from SEPM console

    Posted Aug 07, 2014 09:50 AM

    You can use autoupgrade feature to push it.

    --Edit--

    How to upgrade Symantec Endpoint Protection clients using the Auto-Upgrade feature

    Article:TECH96789  |  Created: 2009-01-14  |  Updated: 2014-04-11  |  Article URL http://www.symantec.com/docs/TECH96789

    You cn schedule it according to your bandwidth. Below thread help you

    https://www-secure.symantec.com/connect/forums/sep-1214-mp1-agent-upgrade 



  • 4.  RE: upgrading from SEPM console

    Posted Aug 07, 2014 09:55 AM

    is there any issue while doing it?some of the systems are in LAN and some are in WAN.Wat is the recomendation for this?



  • 5.  RE: upgrading from SEPM console

    Posted Aug 07, 2014 09:57 AM

    I wouldn't recommend using SEPM to push upgrades over the WAN. Need to use another tool such as SCCM or remote deploy tool
     



  • 6.  RE: upgrading from SEPM console

    Posted Aug 07, 2014 09:59 AM

    can i get the clarity why sccm is good compare to SEPM for wan..

    if the systems are in LAN,can we push it from SEPM



  • 7.  RE: upgrading from SEPM console

    Posted Aug 07, 2014 10:02 AM

    Yes, if in LAN, SEPM is fine provided you have a good connection.

    For WAN, SCCM uses distro points at the remote site so you can push right from the distro point instead of over the WAN. Similar to how the GUP works for content updates



  • 8.  RE: upgrading from SEPM console

    Posted Aug 07, 2014 10:04 AM

    use this method for WAN

    https://www-secure.symantec.com/connect/forums/deploying-sep-client-installation-package-over-wan

    SCCM has distribution points where only one instance of the file gets to the DP and all clients get from there local subnet. 

    if you use SEPM, it will push each packages ( approx 400 MB) on all the machines , on your link it will 400MB X no of machines 



  • 9.  RE: upgrading from SEPM console

    Posted Aug 07, 2014 10:04 AM

    For the wan system you can use the remote deployment tool.

    https://www-secure.symantec.com/connect/articles/overview-push-deployment-wizard-symantec-endpoint-protection-121



  • 10.  RE: upgrading from SEPM console

    Broadcom Employee
    Posted Aug 07, 2014 01:56 PM

    Hi,

    SEP 12.1 RU5 is in the beta testing. I would suggest to hold the upgrade plan if possible.

    After SEP 12.1 RU5 release directly upgrade to it. I am guessing that RU5 may release within next 3-4 weeks.