Endpoint Protection

 View Only
  • 1.  Firewall rule release

    Posted Nov 20, 2017 07:58 AM

    Hello,

    Do I need to release firewall rules for SEP14 to update LiveUpdate?

    If so, I would like to know whats (ports, urls and ips) used by LiveUpdate SEP14 to release the rules in the firewall?

    Thanks



  • 2.  RE: Firewall rule release
    Best Answer

    Posted Nov 20, 2017 02:26 PM

    Yes, what's needed is located in this KB article:

    http://www.symantec.com/docs/TECH102059



  • 3.  RE: Firewall rule release
    Best Answer

    Trusted Advisor
    Posted Nov 21, 2017 04:03 AM

    Hello,

    Yes, you would require firewall ports and certain URL's to be opened for the Liveupdate to occur.

    Make sure that the firewall allows the LiveUpdate executable to connect to the Internet through the correct ports and that the firewall allows connections to the correct domains. Read your firewall's documentation or contact the manufacturer to find out how to confirm these settings.

    • LiveUpdate connects over TCP ports 80 (HTTP), 21 (FTP) and 443 (HTTPS).
    • The file that connects to the Internet is LuComServer_*_*.exe in LiveUpdate 2.5 and later and Lucomserver.exe in LiveUpdate 2.0 and earlier.
    • The default folder for this file is C:\Program Files\Symantec\LiveUpdate.
    • LiveUpdate connects via HTTP to the domains liveupdate.symantecliveupdate.com, liveupdate.symantec.com, and akamai.net.
    • If a connection fails, LiveUpdate tries to connect to one of the other listed domains. The listed domains may change because of server maintenance.
    • If LiveUpdate cannot make an HTTP connection, LiveUpdate connects via FTP to update.symantec.com/opt/content/onramp.

    Note: Symantec does not supply IP addresses for Symantec LiveUpdate servers. The server addresses are not static and, consequently, routing directly to an IP address may cause LiveUpdate to fail.

    Reference: http://www.symantec.com/docs/TECH139451

     

    Secondly, check the articles below for better insight - 

    Which Communications Ports does Symantec Endpoint Protection use?

    http://www.symantec.com/docs/TECH163787

    Best Practices: Symantec Endpoint Protection Manager in a Demilitarized Zone

    http://www.symantec.com/docs/TECH178325

    Traffic to Download Insight servers is blocked or cannot activate licenses when using a proxy server

    http://www.symantec.com/docs/TECH162286

    Regards,