Video Screencast Help
updated event 19 Sep 2017
Please join us for the next Cleveland User Group meeting on October 18th, 2017 from 9:00-1:00 (location details TBA). Come ready to rub elbows with experts in your field! Breakfast and lunch will be served, so come hungry as well. We hope to see you there! Agenda: Symantec Strategy – How application isolation changes ...
new discussion 19 Sep 2017
After installing the agent and trying to make a test (./sisipsconfig.sh -t) or to see the state (./sisipsconfig.sh -v) of the agent the following appears: -sh-4.1$ ./sisipsconfig.sh -t /opt/Symantec/sdcssagent/IPS/bin/sisipsconfigtool: /usr/lib64/libssl.so.10: no version information available (required by ...
updated discussion 19 Sep 2017
Hi all, We have a API here that is validating through VIP. The issue is that this API is sending an ID number to VIP for authentication, not the account name as listed in Active Directory. This ID number is an attribute in our Active Directory, and I have configured VIP to pull this attribute using the "VIP User Attributes Settings". Is it possible for VIP to validate using just that ID ...
updated event 19 Sep 2017
Please join us for the next Atlanta User Group meeting, Thursday, September 21, 2017, from 1:00 to 4:00 pm -- hosted at State Farm. Food will be served, so come hungry! Agenda: 1:00 - 1:15 Introduction/Lunch/Networking 1:15 – 2:00 GASOC Presentation: Sedric Beasley – Sep 14 Upgrade User Case 2:00 – 2:45 Symantec Presentation: Tomas ...
new discussion 19 Sep 2017
After installing the agent and trying to make a test (./sisipsconfig.sh -t) or to see the state (./sisipsconfig.sh -v) of the agent the following appears: -sh-4.1$ ./sisipsconfig.sh -t /opt/Symantec/sdcssagent/IPS/bin/sisipsconfigtool: /usr/lib64/libssl.so.10: no version information available (required by ...
updated discussion 19 Sep 2017
Hi all, We have a API here that is validating through VIP. The issue is that this API is sending an ID number to VIP for authentication, not the account name as listed in Active Directory. This ID number is an attribute in our Active Directory, and I have configured VIP to pull this attribute using the "VIP User Attributes Settings". Is it possible for VIP to validate using just that ID ...
new discussion 19 Sep 2017
I was recently made the administrator of our SG appliance and, after reading the best practices document on policy, I'm in the process of optimizing our visual policy rules. As such, I'm seeking confirmation that the following rules are redundant.        Destination Action Request URL: coral.ccc.centurylink.com  Do Not Cache Request URL: ...
updated article 31 Aug 2017
Business Email Compromise (BEC) emails, also known as “CEO fraud” or “whaling’, are crafted emails sent to vulnerable users by cybercriminals impersonating senior executives. Symantec has published the following resources to help you understand how to keep your organization safe from these attacks: Blogs: Introducing the Strongest Protection and Visibility for Business Email ...
updated article 25 Aug 2017
Overview of IT Analytics IT Analytics provides cube based reporting (pivot tables), additional reports, and Key Peformance Indicators (KPIs) for various Symantec products: Symantec IT Management Suite (Altiris) Symantec Data Loss Prevention (DLP) Symantec Critical Systems Protection (CSP) Symantec Endpoint Protection (SEP) IT Analytics is developed by Bay Dynamics but is available as part of ...
updated article 25 Aug 2017
Symantec offers three live, instructor-led training courses for Symantec Endpoint Protection 14. The Symantec Endpoint Protection 14: Plan and Implement course is designed for the network, IT security, and systems administration professional in a Security Operations position tasked with planning and implementing a Symantec Endpoint Protection environment. This course covers how to architect ...
updated article 25 Aug 2017
Symantec offers live, instructor-led training for Data Loss Prevention. The Symantec Data Loss Prevention 14.6: Administration course is designed to provide you with the fundamental knowledge to configure and administer the Symantec Data Loss Prevention Enforce platform. The hands-on labs include exercises for configuring Enforce server, detection servers, and DLP agents as well as performing ...
updated article 22 Aug 2017
SysAdmin Day is an annual event celebrated on the last Friday in July and exists to show appreciation for the work of Sys Admins and other IT workers. Your network is secure, your computer is up and running, and your printer is jam-free. Why? Because you’ve got an awesome sysadmin (or maybe a whole IT department) keeping your business up and running. So say IT loud; say IT proud … But it's not ...
new blog entry 19 Sep 2017
It started with a mug. The Cape Town, South Africa office connected with Symantec’s Green Team in 2015 when Symantec launched the "One Mug, One Planet" campaign to help reduce paper cup usage across operations by 15 percent. Inspired to minimize their impacts both inside and outside the office, the Cape Town office joined the campaign, making a commitment to use a reusable mug every day. Two ...
updated blog entry 18 Sep 2017
As departments adopt more cloud services to perform business critical activities, the Symantec cloud team is working hard to help IT organizations quickly extend their cloud monitoring and control capabilities to protect more cloud services. SuccessFactors, Google Hangouts, and Facebook Workplace are among the many new and enhanced services supported by CloudSOC to help organizations ...
updated blog entry 12 Sep 2017
CloudSOC Audit customers are already able to discover and rate over 22K cloud apps and services with the leading Cloud Access Security Broker (CASB) solution. And now, Symantec has added thousands of native mobile apps to its growing app library. Currently in beta, the full release will ...
new blog entry 11 Sep 2017
As CIO for the Williams Group, I think a lot about how to secure our information and intellectual property – and we clearly generate a ton of it. During a typical race weekend, our Formula One team generates about 60 gigabytes of telemetry and 80 gigabytes of additional data, delivering a total of 140 GB that requires analysis in order to determine each critical decision made throughout each ...
updated blog entry 08 Sep 2017
Overview Volume 22 of the Microsoft Security Intelligence Report  includes some interesting insights regarding attacks on cloud apps, including the highlights below: Microsoft reported a 300% increase in the company’s cloud-based user accounts being attacked year-over-year as of 1Q2017 vs. 1Q2016 The number of account sign-ins attempted from malicious IP addresses increased by 44% ...
updated blog entry 08 Sep 2017
This Saturday, September 9th, Europe celebrates its third annual European Battery Recycling Day. This day, organized by Eucobat, a European association working to ensure that all waste batteries are collected and recycled in an ecologically sound way, works to raise the awareness of consumers and businesses on the importance of collecting spent batteries for recycling. In France, ...
updated download 15 Sep 2017
This Page has information on AWS Cloud formation Template (CFT) based test drive that can be used by CWP users to validate CWP features. This template automates the creation of instances, subnets, VPC's etc. Multi-tier Organisation Setup ABC Trade Corporation is a leading multi-national company. It has typical N-tier architecture, separating front-end and back-end of the organisation. Each ...
updated download 30 Aug 2017
Symantec DCS Policy Utility v1.0.0.11 For Windows OS (Note .NET Framework 4.5 is required) Designed to help you tune your policy by processing the log files from an Agent. There's a getting started tab that explains the best steps to get the logs and events you need to troubleshoot your policy. The program does not make any changes to the machine or policy. It parses the sisidsevents and ...
updated download 16 Aug 2017
Attached html code of custom block page and below is screenshot of block page, Follow KB article to apply on ProxySG. https://support.symantec.com/en_US/article.DOC9820...
updated download 08 Jul 2017
This application control rule prevents process from using *vssadmin.exe to delete shadow copies blocks vssadmin.exe with the folowing argument: .*delete[^\]*shadows[^\]*\/all[^\]*\/quiet.*
updated download 08 Jul 2017
This rule prevents from different malicious activity: * OFFICE, ADOBE, CSCRIPT, WSCRIPT and BROWSERS products from launching CMD or POWERSHELL * scripts from accessing DOCUMENTS (ransomeware protection)
updated download 03 Jul 2017
This application control rule is protecting you from: Adobe products running powershell Office products running cmd or powershell CMD from running powershell or VB scripts VB script from using documents on pc cscript or wscript from running powershell or cmd
updated event 19 Sep 2017
Please join us for the next Cleveland User Group meeting on October 18th, 2017 from 9:00-1:00 (location details TBA). Come ready to rub elbows with experts in your field! Breakfast and lunch will be served, so come hungry as well. We hope to see you there! Agenda: Symantec Strategy – How application isolation changes ...
updated event 19 Sep 2017
Please join us for the next Atlanta User Group meeting, Thursday, September 21, 2017, from 1:00 to 4:00 pm -- hosted at State Farm. Food will be served, so come hungry! Agenda: 1:00 - 1:15 Introduction/Lunch/Networking 1:15 – 2:00 GASOC Presentation: Sedric Beasley – Sep 14 Upgrade User Case 2:00 – 2:45 Symantec Presentation: Tomas ...
updated event 18 Sep 2017
Symantec offers live, instructor-led training for Data Center Security: Server Advanced. The Symantec Data Center Security: Server Advanced 6.7 Administration course is an introduction to implementing and managing a Symantec Data Center Security: Server Advanced 6.7 deployment. The architecture and individual components of the SDCS:SA 6.7 solution are detailed and explained. Agent installation ...
updated event 12 Sep 2017
NetX a Symantec Authorized Training Partner (ATP) delivers Instructor-led Training Classes either on-site or remotely.  We offer over 20 different Symantec Classes, for a complete list please visit netxinc.com/training Attend from your home, office or one of our convenient locations.   Our training classes are Guaranteed to Run, We Never Cancel!  Symantec Ghost ...
updated event 12 Sep 2017
NetX a Symantec Authorized Training Partner (ATP) delivers Instructor-led Training Classes either on-site or remotely.  We offer over 20 different Symantec Classes, for a complete list please visit netxinc.com/training Attend from your home, office or one of our convenient locations.   Our training classes are Guaranteed to Run, We Never Cancel!  Symantec Data Loss ...
updated event 08 Sep 2017
Symantec offers live, instructor-led training for CloudSOC. The Symantec CloudSOC R1 course is intended for IT professionals who wish to develop the knowledge and skills to deploy and manage Symantec CASB/s solution, CloudSOC. This course is intended for users who want to apply Symantec CloudSOC's capabilities to control Shadow Data and Shadow IT in cloud applications. For more information, ...
updated event 08 Sep 2017
Symantec offers live, instructor-led training for CloudSOC. The Symantec CloudSOC R1 course is intended for IT professionals who wish to develop the knowledge and skills to deploy and manage Symantec CASB/s solution, CloudSOC. This course is intended for users who want to apply Symantec CloudSOC's capabilities to control Shadow Data and Shadow IT in cloud applications. For more information, ...
updated event 06 Sep 2017
Please Login/register to Connect to signup for this free event October 10th  12pm – 5pm Symantec:  88 Wood Street, LONDON, EC2V 7AJ  Join us for our first Endpoint Security user group in London, on October 10th Join a Symantec researcher for a briefing on the latest attack trends and intelligence on ransomware, Business Email Compromise, file-less attacks and ...
new event 06 Sep 2017
The Financial Services Information Sharing & Analysis Center’s (FS-ISAC) Fall Summit is coming up soon on October 1-4 in Baltimore Maryland. It is the fall season go-to event for Cyber Security top professionals in the Financial industry, where they can learn best practices for protecting business-critical systems and assets. If you are attending the FS-ISAC Fall Summit, please join us at Dan ...
updated event 01 Sep 2017
The public cloud offers undeniable benefits for organizations including agility, cost savings, and competitive advantages. In fact, some enterprises are choosing to abandon their on-premises data centers altogether and go “all-in” with the public cloud. The reality, however, is that most companies are pursuing a “hybrid” approach, using a combination of public cloud, private cloud, and ...
new video 24 Jul 2017
A how-to video that guides you through the steps necessary to establish content classification in Box for CloudSOC content.
new video 07 Jul 2017
We had SEPM 12.1 MP 7 running on SQL 2008, in order to upgrade to SEPM 14, we had to upgrade to SQL 2016 first then repoint the application to the new database then SEPM to 14.  For this, we created a lab and demonstrated this step by step via the video.  Sharing as it may help others. [connect_embed_youtube:cTRpU0NzkZ8]
new idea 18 Sep 2017
Can Symantec please review the way accounts are created for the SEPM console. Currently you cannot downgrade an admin to a sysadmin, you would have to delete the current account and then recreate the account with lower permissions.
updated idea 18 Sep 2017
ProxySG, beside database categories, have System categories, listed as: none - Set the policy action for web sites that could not be categorized by the service point. unavailable - Set the policy action for web sites for which the Unified Agent could not reach WebPulse to determine a categorization. Typical reasons include local connectivity issues (for example, a personal firewall blocking ...
new idea 08 Sep 2017
new idea 06 Sep 2017
The BlueCoat Director has the ability to manage content on multiple BlueCoat ProxySG systems. There is no similar capability in Symantec Management Center as of version 1.10.1.1. If Management Center is the future replacement of BlueCoat Director then it must incorporate all the content management capabilities that Director has today.  I opened Symantec case #13080179 about this issue and ...
updated idea 28 Aug 2017
"New Risk Detected" events include a hash as part of the logged information. We are firing tickets off "Single Risk Event" due to the verbosity of the alert. However Single Risk Event does not include a hash value which is something we need to help identify and contain threats. we are unable to marry New Risk Detected and Single Risk Event messages into one notification. Need SEP to log a hash ...
updated idea 28 Aug 2017
Hi Symantec, This idea is raised as a result of Case 12903179.  Please allow the Email Gateway product to white list email addresses from being scanned for Malware detections. This functionality currently exists however it only prevents checking from a SPAM perspective.  Adam.
new idea 17 Aug 2017
In reference to  --  Submitting legitimate emails flagged as spam   --   https://support.symantec.com/en_US/article.TECH233...   --. We send the sample to CLOUDfeedback@feedback-87.brightmail.com That process should provide the results to the submitter. In several cases, via a support case, we learned that the sample "failed to process".    ...
Member Name
Reward Points
All Time
Member Name
Reward Points
Last 30 Days
Member Name
ArticlesSolved
Mithun Sanghavi
1,267
61
SMLatCST
438
1
jjesse
108
24
ℬrίαη
2,879
25

A Message From Your Community Manager: RGMDonaldson

Welcome to the Security Community on Symantec Connect.

The Security Community covers many different security products from Symantec and provides valuable technical information for each.

Please feel free to contact me via private message with any questions you may have.

I look forward to hearing from you and answering any questions about the Community.

Login to contact the Community Manager.