Video Screencast Help
Search Video Help Close Back
to help
New in the Rewards Catalog: Vouchers for "Symantec Technical Specialist" and "Symantec Certified Specialist" exams.

SEPM needs more Functionality on GUP's

Updated: 06 Nov 2009 | 1 comment
Mithun Sanghavi's picture
4 Agree
1 Disagree
+3 5 Votes
Login to vote

Hello,

Symantec Endpoint Protection Manager needs to have more Functionality and Features in regards to Group Update Provider.

Today, Symantec Endpoint Protection Manager RU5 have added good Functionality.

Check the Following KB's

1) New features and functionality in Symantec Endpoint Protection Release Update 5 (SEP RU 5) Group Update Provider (GUP)

http://service1.symantec.com/support/ent-security.nsf/854fa02b4f5013678825731a007d06af/74cab076e9ab68f64925763f005a2237?OpenDocument

2) Configuring the Group Update Provider (GUP) in Symantec Endpoint Protection 11.0 RU5

http://service1.symantec.com/support/ent-security.nsf/854fa02b4f5013678825731a007d06af/cb487ea7138bf8d24925763f00708be0?OpenDocument

But even today, we are don't have much to check on How to handle the GUP's from SEPM other than visiting the Groups Liveupdate Policy.

Suggestions:

1) Customers do not have a way to create a Log for GUP seperately.

We are looking forward for a Seperate Log in the Monitors > Log where Customers could create logs for GUP.

2) No way to check if there is GUP assigned to the Group unless checking the Liveupdate Policy.

We are looking forward for some easier way where Customer could check if GUP is assigned to the Groups without visiting the Liveupdate Policy.

3) No way to ensure if the clients are receiving updates from GUP or from SEPM.

After Assigning, incase if we want to check if the GUP is updating the Clients or if the SEPM is, then we don't have a choice rather to get a Sylink Log and understand the Process.

As a Layman, we would like a way to check if the clients are receiving Virus definitions updates from GUP or SEPM.

We are expecting these updates to take place in upcoming Releases... Please.

Mithun Sanghavi

Comments

Mithun Sanghavi's picture
06
Nov
2009
2 Votes 0
Login to vote

Check the following.

Hello,

Check the following KB's and Steps:

A) Troubleshooting the Group Update Provider (GUP) in Symantec Endpoint Protection

http://service1.symantec.com/SUPPORT/ent-security.nsf/docid/2008040113243148

B) Detailed report about GUP getting updated from SEPM Server.

1. Turn on Sylink logging.
2. Wait for the client to update content. ( The client can be forced to update content in some way, such as removing the virus definitions, or select a client that has been turned off for a day and has not checked in.)
3. Turn off Sylink logging once  the client has updated its definitions. (It can be  verified through the Client UI that the definition date has changed.)
4. Examine the log and do a text search for 2967. The SEPM will not use this port by default; only the GUP does.

WE ARE LOOKING FORWARD SOME EASY WAY TO CHECK THE ABOVE.
 

Mithun Sanghavi
Symantec Technical Support Engineer, SEP
MIM | MCSA | SCTS | ITIL v3

Follow me on Twitter: @mithun_sanghavi

Don't forget to mark your thread as 'SOLVED' with the answer that best helped yo