Endpoint Protection

 View Only
  • 1.  Issue with getting def updates since moving to MR5

    Posted Oct 14, 2009 06:44 AM
    Hi,

    Hoping someone can help me out with an issue I'm experiencing.

    Last week I upgraded 5 servers to MR5, 2 were SEPM's 2 were F&P servers on a WAN site and 1 was a server that acts as a GUP on the same WAN site as the F&P servers.

    The SEPM servers have upgraded fine on Thursday last week and are working as expected with no issues to date.  On the WAN site I'm having issues with getting the definitions to update.

    Firstly after the update all servers we rebooted.  The GUP server reported in its log that it was acting as a GUP updated its definitions from the ones that came with MR5 to the latest version available on the SEPM, shortly afterwards the FP02 updated its definitions, however the FP01 didn't and as of Monday morning of this week was still sitting with the MR5 definitions.

    The GUP on Friday morning stopped acting as a GUP (no policy change), checking in the SEPM on the server said it wasn't a GUP and it had stopped listening on TCP 2967.  I restarted all SEP services on it but that made no difference.  So as of Friday the GUP and FP02 were running definitions from Thursday and the FP01 from the MR5 install.

    So under the direction of symantec support on Tuesday I updated the LiveUpdate policy to allow the clients to run LiveUpdate manually.  I ran LiveUpdate on the GUP and FP01 and both connected out to the Internet and pulled down their definitions.  At the same time as the policy updated on the GUP to allow LiveUpdate to run it again reported it was acting as a GUP and started listening on TCP2967 and continues to until now (Wednesday afternoon).

    As of this morning, the GUP is running the latest definitions, the FP01 the defs from yesterdays manual LU and the FP02 still running defs from last Thurs when the GUP appeared to work.

    So, I'm slightly better off as the GUP is updating but the two other MR5 clients aren't!!  All other servers on the site are running MR4 and have updated using the GUP, so that says to me its an MR5 problem.  Also previous to the update all clients used the GUP fine and updated including the F&P servers that now are not updating.

    So any suggestions?

    Neil






  • 2.  RE: Issue with getting def updates since moving to MR5
    Best Answer

    Posted Oct 14, 2009 06:54 AM
    Hi,

            There are a few option for the GUP functionality in MR5 . I would therefore request you to go through these links once.

    http://service1.symantec.com/SUPPORT/ent-security.nsf/docid/2009092901593448

    http://service1.symantec.com/SUPPORT/ent-security.nsf/docid/2009092821543448