Login to participate
Security IdeasRSS
idea RSS
1 - 20 of 20
2
Suggested November 10, 2009 3:16AM by Aniruddha
There should be an option for adding the finger print list while applying application and device policy. For Ex. If there are multiple versions of a application in your network in such case, we can create a fingerprint list under policies-> policy compnents-> fingerprint list but there is no option to include this fingerprint list while applying the application and device policy, so we have to enter every single fingerprint value manually. If there will be ...
No comments yet.
1
Suggested November 1, 2009 8:26PM by kkitajima
CLI console will log out automatically after a few minutes. Customer would like to change the timing to log out from CLI command.
1 Comments (last comment 1 week 6 days ago)
1
Suggested November 1, 2009 8:05PM by kkitajima
The customer would like to set the SSH client to allow connection or to deny connection. The SNAC appliance does not have the interface to set it as CLI command. He requests to implement this function.
No comments yet.
0 votes
Suggested October 25, 2009 9:58PM by kkitajima
SNAC checks the client by the following step to quarantine. 1. SNAC checks whether HI check is pass or not. 2. If fail, client is remediation in the HI policy. 3. If remediation fails, the client is moved to quarantine. Customers think the best way to the following step for quarantine. 1. SNAC checks whether HI check is pass or not. 2. If fail, client is moved to quarantine at first. 3. Do remediation in quarantine network. If remediation done, then back to ...
No comments yet.
-1
Suggested October 25, 2009 7:38PM by kkitajima
By default, DHCP enforcer cannot allow to access SSH from external network interface role. It needs to add the routing to IP address of SSH clients by hands. Customer requests the configuration for the routing in the initial settings to allow to access by SSH client.
No comments yet.
0 votes
Suggested October 25, 2009 7:21PM by kkitajima
Customer would like to add the function for counting the message dialog pop-up. We can use the "Utility: Show message dialog" in the custome requirement. Customer does not hope to continue the dialog pop-up every HI check. To avoid that, he requests to add the count setting into the function of "Utility: Show message dialog". He understands to handle it by script but they request it as the default function.
No comments yet.
1
Suggested October 13, 2009 1:08AM by kkitajima
To connect the device like printer with MAB, we should set "Unavailable" as "Host authentiation", "Pass" as "User authentication" and "Ignore Result" as "Policy Check result" to open the port. This means no client machine can connect the port. So our customer requests to enhancement to create the separate area to set 802.1x and MAB.
1 Comments (last comment 4 weeks 4 hours ago)
0
Suggested October 8, 2009 5:54AM by Nillon
Hi, Ï would very much like to see the location-independant settings to be set as the other policies so that i can make the change in one place instead of going through every non-inheritance group. Normally i have alot of groups and all or almost all of them have inheritance unticket. So for me to set a new password for uninstalling the client, i need to do this manually on each and every group in the domain.
No comments yet.
0 votes
Suggested October 6, 2009 6:25AM by Bekir
I wish, gateway enforcer could only do a token authentication before allowing you to reach the resources. So that I can use my token as an administrator to reach my servers from anywhere in my internal network where SEP or ODC is installed. Regards,
No comments yet.
7
Suggested September 23, 2009 6:39AM by snekul
I did a search and found a few things here and there about x64, but I'd like to say that I'd like to see Full x64 feature parity in Symantec Applications, paticularly SEP.  At the University, we are quickly seeing the need for more and more x64 desktops, but upgrading to x64 should not downgrade our security. By default, most Windows computers purchased with over 3 GB of RAM come with the 64 bit OS.  Many of our students didn't even know they were running the 64 bit ...
1 Comments (last comment 8 weeks 5 days ago)
6
Suggested September 15, 2009 7:34AM by timaa
Is there a section on this site (or any site for that matter) that lists the ideas in terms of Symantecs priority. I understand that there is a section for in developement. But I think many of the people who enter ideas here want to know how/when their ideas will get addressed. Also, is there some threshold where Symantec looks at the idea and says 'welp, that one passed 75 votes, that now qualifies for 'developement' resources to fix that issue in the next release.
1 Comments (last comment 10 weeks 2 days ago)
8
Suggested September 13, 2009 7:32PM by JRV
Prelude Initially, I wrote this about Backup Exec, because that's where I ran into this problem. I'm also a SAV & SEP veteran but don't recall seeing this heinous language in their KB articles. So maybe it's a Veritas thing. But, whatever... ...then it occurred to me that while BE may (or may not) be the only Symantec enterprise product to which the symptom applies, the cure is universal. Because it bridges a huge gap between the goals of Symantec Sales, Support, ...
15 Comments (last comment 8 weeks 2 days ago)
1
Suggested September 8, 2009 10:51PM by kkitajima
The customer is using Gateway Enforcer in 1GB network as inside and 100MB network as outside. TCP/IP buffer size of SNAC  is not changed from console. So they request to add the way to tune them to avoid packet loss.
No comments yet.
2
Suggested September 8, 2009 10:25PM by kkitajima
By default, NIC cannot select the negotiation and it sets auto-negotiation on SNAC Enforcer Appliance. Some customer request to fix the negotiation to avoid the packet loss.
No comments yet.
0 votes
Suggested August 27, 2009 3:00AM by stakimoto
Our current SNAC approach is 1. Check HI pass or not 2. If fail, do remediation 1st 3. If remediation fails, then quarantine client. My customer is thinking following approach is best 1. Check HI pass or not 2. If fail, quarantine client anyway 1st 3. Do remediation in quarantine network. If remediation done, then back to production.
No comments yet.
0 votes
Suggested August 26, 2009 5:29PM by stakimoto
If we enable "Display a notification message when a Host Integrity check fails" , a notification dialog will appear when HI fails on client machine. But this notification dialog will dissappear after 30 sec automatically or press "OK" on dialog and NEVER appear again even if HI would fail after dialog gone. Customer's request is add an option to display notification dialog again if HI would failed again, to notify end-user "you should do something action to pass HI ...
1 Comments (last comment 8 weeks 3 days ago)
0 votes
Suggested August 23, 2009 8:44PM by stakimoto
We cannot insert "Return code" in the message field of HI policy -> Custom requirement -> "Utility: Show message dialog" so message box content becomes always 1 line that is very difficult to read for end-user if it is long sentences. E.g. we cannot show dialog messages as following now. Please done this... Then please done this... Or please done this... At this point, message box shows... 1. Please done this ...  2. Then please done this... 3. Or please ...
1 Comments (last comment 4 weeks 3 days ago)
2
Suggested August 19, 2009 9:49PM by kkitajima
Customers replace the SNAC enforcer if they have hardware issues. A customer requests to implement backup and restore configuration without initial setting up.
No comments yet.
4
Suggested July 30, 2009 12:40AM by sachin.kasabe@s...
Hi, We are using Symantec Network Access Control Enforcer 6100 Series - v11.0.4000 build 5119. We have to add network devices ( i.e Routers, IP Phones, UPS, Switches etc.) in Gateway Enforcer in Trusted External IP Address Range. Since we are having 35 HUB locations, 325 Spoke locations in our WAN. Spoke locations will connect to Hub locations & each wan locations are having 9 IP based network devices ( i.e Routers, IP Phones, UPS, Switches etc.) connecting to our ...
No comments yet.
58
Suggested May 22, 2009 6:26PM by .peter
Use this new feature to suggest new ideas for Symantec products or services - or even suggest new ideas for this website.  Once your idea has been submitted, other community members can vote on it.  The top ideas move to the top where they are reviewed by Symantec product managers.  For a quick demo of how ideas work, watch this video:
2 Comments (last comment 26 weeks 5 days ago)
Status:
Implemented
1 - 20 of 20
Show Listings per page