Endpoint Protection

 View Only
  • 1.  Wan Link utilization high by using Symantec Endpoint

    Posted Oct 27, 2010 08:15 AM

     

    Hi All,

     

    Its me Rizwan i am having issue over wan link. my branch office users computer are connecting to Head Office located Symantec Endpoint Server but i have made one computer as group provider in my brach office which takes update and distribute in their local computers.

    But When i see my WAN graph its taking high in other hand i block communicate with branch office its run smoothly.

    Kindly advise me if there any rule or any function that i could minmize my wan traffice.

     

    Thanks in advance..

     

    Rizwan Haider

    Network Engineer.



  • 2.  RE: Wan Link utilization high by using Symantec Endpoint

    Posted Oct 27, 2010 08:19 AM

    On What port is that traffic going ?



  • 3.  RE: Wan Link utilization high by using Symantec Endpoint

    Posted Oct 27, 2010 08:20 AM

    You have amde sure all the clients in the branch have the GUP policy applied to them yes?? If not they will still be reporting back to the main management server for updates.

     

    They will still check into the management server for status updates etc so try changing this to be every hours rather than the default and also ensure the clients are set to PULL the from SEPM and SEPM is not configured to PUSH the data.

    If it's set to push it can greatly increase traffic as the connection teh clients stays open all the time instead of only once every hour for a second or two.



  • 4.  RE: Wan Link utilization high by using Symantec Endpoint

    Posted Oct 27, 2010 08:24 AM

    Make sure that the GUP is configured properly and it is taking update from the SEPM

    http://www.symantec.com/business/support/index?page=content&id=TECH104539&locale=en_US



  • 5.  RE: Wan Link utilization high by using Symantec Endpoint

    Posted Oct 27, 2010 11:16 AM

    In the LiveUpdate policy that sets a specific machine as a GUP you have the option of setting bandwidth throttling.  I do this at 32 Kb/s for my stores so that I do not saturate the WAN link.



  • 6.  RE: Wan Link utilization high by using Symantec Endpoint

    Posted Oct 27, 2010 02:13 PM

    We had the same issue here with our setup. We have three branchs with lower bandwidth links. I would highly recommand that you use a GUP setup. We have the SEPM in our data center and each of the DCs in the branch offices are setup as GUPs.

    The value here is that the SEPM will update the three DCs (DC1, DC2, and DC3) over the WAN links. From there each the GUPs take over and update the clients on the LAN. Saves a ton of bandwidth.

    Some considerations, first the GUPs need to be on the same subnet to work, and the GUP should be a server OS (for unlimited connections). You really should be on RU5 or above as well.

     

    Hope that helps!