Endpoint Protection

 View Only
  • 1.  Can SEPM import Host Groups (used in Policy Components) from AD?

    Posted Apr 27, 2017 11:05 AM

    I have a question about what can be imported into the Symantec Endpoint Protection Manager from AD.   I'm already familiar with how to import user accounts and groups of client endpoints from an AD OU, but I am unsure if the same thing can be done with Policy Components.    

    Rather than manually manage Host Groups that we use in some of our firewall rules, we'd like Host Groups to be linked to a group in AD and automatically updated.   That way, for example, if we had a custom Allow Server Farm firewall rule, we would not have to manually edit the associated Host Group that lists every IP address, range, or hostname in the server farm - it could be added to an AD group by another team, and automatically imported.

    Is that possible?

     



  • 2.  RE: Can SEPM import Host Groups (used in Policy Components) from AD?

    Posted Apr 27, 2017 01:42 PM
    Nope. It's only related to OU structure for the purpose of managing users/computers.


  • 3.  RE: Can SEPM import Host Groups (used in Policy Components) from AD?

    Broadcom Employee
    Posted May 01, 2017 12:13 PM

    No, You can either import the existing group structure, or import individual computer accounts or user accounts into the Symantec Endpoint Protection Manager groups that you create.