Video Screencast Help
Symantec to Separate Into Two Focused, Industry-Leading Technology Companies. Learn more.

Bypass proxy while SEP client connects to SEPM\GUP server

Created: 22 Apr 2013 | 2 comments
Jprrakash's picture
0 Agree
0 Disagree
0 0 Votes
Login to vote

I would like to propose a new feature to include in upcoming SEP versions. Recently, we noticed SEP clients uses HTTP traffic to connect to GUP/SEPM for downloading the virus signature. Eventhough the GUP server and SEP clients are within LAN they still uses proxy for downloading the VDF.

This makes worse when the SEP client downloads full VDF file via proxy. Currently, we have external communication settings for SEP clients to use a proxy server for all external communications. Likewise, shall we have a feature to exclude\restrict SEP clients not to use proxy to connect GUP\SEPM server and download the VDF. It should use only LAN for such activities.

Comments 2 CommentsJump to latest comment

Ajit Jha's picture

Ensure that the clients are configured to bypass the proxy.

  1. Open Internet Explorer.
  2. Tools > Internet Options > Connections > LAN settings.
  3. Uncheck "Automatically detect settings".
  4. Under proxy server, click "Advanced".
  5. Under Exceptions, enter in the SEPM IP address and hostname.
    Note: Also can add the local network for example: 10.*.*.* or 192.168.*.* depending on the addressing of the local network.
  6. Reboot and test.

Regard's

Ajit Jha

Technical Consultant

ASC & STS

0
Login to vote
Ajit Jha's picture

If clients are still communicating through the proxy after configuring to bypass the proxy, add exceptions to the proxy server to "no authentication" for any request going to the management servers. Traffic that traverses the proxy going to the SEPM should now be ignored.

Regard's

Ajit Jha

Technical Consultant

ASC & STS

0
Login to vote