In this article, we will learn about the Symantec Endpoint Protection product, how we can download the program, and after this process is completed, we will discuss the product installation and configuration configuration.
Symantec Endpoint Protection is an antivirus program that can be managed centrally and is rapidly taking place in small, medium and large businesses today. Of course, only malicious codes, trojens, worms, trojans, rootkits, malware, etc. Anti-malware and antispyware protection as well as security features have been improved. For example, it allows you to intervene up to the hardware of your installed notebook, desktop or server, and since it performs them from a single central platform, we prevent the dangers that the company users can bring from outside, both with usb and cd. Let’s move on to the Installation steps and then the configuration without further ado.
Symantec Endpoint Protection Installation
The first thing to do is to enter the address https://fileconnect.symantec.com with the serial number sent to you and after selecting the required language option on the screen, enter the serial number information you have in the part that says serial number. See fig 1
When you complete the step in Figure 1, you will see the symantec software license agreement, we need to accept this option (I Agree) See. Figure2
After completing the step in Figure 2, you can download the program with the language support specified by symantec. See. Figure 3
Now we have Symantec Endpoint Protection 11.0 product, so let’s start installing without waiting too long. Of course, this process does not happen when you say, first of all, we need to take a look at the system requirements, some of the Symantec Endpoint Protection system requirements. (For more information about the system requirements, you can check the Admin Guide when you download the product.)
There are some requirements for installation above, if you want to look at all of them, you can access them from the Admin Guide where you downloaded the program. We will perform our setup on 2008 R2 .
Active Directory is installed on our server where we will install and other requirements.
Internet Information Services server 5.1 or higher will have WorldWideWeb services enabled
Internet Information Services 7.0, if installed in 2008 environment
Or higher (Windows Server 2008), CGI, ASP.net, and IIS 6.0 Management Compatibility.
Internet Explorer 6.0 or higher must have a Static IP address (recommended). Keyboard and language settings must be iniglizce . We are now ready for installation.
Symantec Endpoint Protection Installation,
We run Setup.exe and the Autorun wizard appears.
From the steps above
1. Read This First option is for you to review important information before installation or migration.
2. Install Symantec Endpoint Protection Manager option, we will be using it to start the installation of our Management server. With this management server and console, we will be able to manage the agents installed on our laptops, desktops and servers from a single zone, and we can access the place where we set up the management server via IIS.
3. The Install Symantec Endpoint Protection Client option allows us to install only a client, namely a single antivirus, of course, if this is done, we will have an unmanageable antivirus, it only serves the machine it is installed on.
We choose and choose option 2
Symantec reports welcome to the installation wizard for Endpoint Protection manager and we need to click the next button to continue. We said Next and came to the next step.
We are faced with a wizard that states that we need to accept the license agreement from us and continue with the next button.
On the screen above, we determine the location where Symantec Endpoint Protection Manager will be installed, I leave it as default. With Next, we continue our setup.
In this screen, we have installed the IIS service needed before installing SEP (symantec endpoint protection).
With the Create a custom web site option, a symantec-specific web site is created on our IIS, so we can check all the computers in our network and manage our agents over the computer we want connected to our network. Without forgetting, if the firewall is open, we need to allow port 8014, and it is possible to change the port number if desired. With the Create a custom Web site option, we click on the next button and move on to the next step.
And now we click Install and start the installation.
One frame from the loading stage .
The installation is complete, we click the finish button and wait for 5 seconds. Our next settings will include management consol configuration and agent section.
Simple installs an embedded database for the symantec endpoint protection manager (SQL 2005 express) and the information transmitted by the agents is stored in this database. It can support up to 100 clients, that means 100 agents.
Advanced, this option means that if you have more clients (100-1000) in your structure, it means as many agents as it allows to keep angent information on a SQL server within your organization.
We proceed with the Simple option.
The above wizard asks me to enter user name and password information to access the management console. Admin user comes by default. It is recommended that the password be complex. With Next, we go to the next step.
This wizard informs us that the product we are installing will be sent to its own servers SSL-based data in order to prevent viruses and potential threats in our system. If you don’t want to send it, simply remove the tick in the checkbox.
This step gives us some information about the management server configuration. It is useful to save and it is also possible to print it with the print option.
In this step, a database is created where agent information under the control of management consol will be kept.This process takes between 2 and 5 minutes.
Our installation is complete, but it asks if we can use deployment wizard for clients as well.
Yes, this option is the option to start to create agents to be uploaded to clients if we complete the steps.
No , this option means we will not use the client deployment wizard.
On this screen, we will create a symantec package for the windows client and continue with the Next option.
I am creating a group named MSPOLATUSERS above, with the package we have created, clients will automatically be included in the MSPOLATUSERS group. If there is a package created before, it is possible to show it with select an existing option.
In the package that I continue to configure for clients, I have the opportunity to determine what protection is provided for, in other words, Symantec Endpoint Protection Client Package Features allows us to determine what will be active when the client is installed. Since I use a separate protection solution for the Email server in our structure, I do not check Microsoft Outlook Scanner. So it is possible with symantec.
Specify the types of install packages you wish to create, for 32bit and 64 bit OS versions, we specify that Package will be created.
Do you want a single.EXE file for each client install package, If deployment will be done with windows software, yes if not, you can pass with no. Yes option offers you tekbir exe. The No option offers an exe with its components in a folder.
During the installation of the exiles created with the Do you want an unattended or slient installation, Unattended option , information about the installation can be seen on the screen. Slient option allows loading the created package in silent background, and we continue with slient option. Finally, we specify the place where this packagean will be registered.
I will load the package created on this wizard later and proceed with next.
Creating a package.
Package items are ready for loading. According to the OS system of my clients, we can start installing the necessary files. Since we have chosen slient mode while installing the exeler, no shirbaz will appear. The installation will be completed in the background in 1-2 minutes.
And the SEP Manager login screen appears. We log in with our required username and password.
Above we see the Symantec Endpoint Protection Manager management console. Here, we can control the situations related to our Agents. I will explain the entire console panel part by part. Now let’s continue our work. Let’s come to the client part.
As you can see, a group called MSPOLATUSERS has been formed. Now, I am installing one of the packages that I have created compatible with 32 and 64 OS versions to any client or server and we see that the installed machine is in this group.
As seen on the manager consol screen above, our client came and scanned, update, restart etc. It is possible to affect the hardware of the pc it is installed on.
Symantec Endpoint Protection Password Reset , If you forget or want to change the connection password to the management console. Follow the path below.
C: \ Program Files (x86) \ Symantec \ Symantec Endpoint Protection Manager \ Tools and double click on resetpass, then enter your new password and verify again. Your password will be changed. If you cannot login , restart IIS and say iisreset from the command line .
Let’s take a look at the machine where we installed our agent.After the installation, that is, after installing the package exe we created, we reach the symantec icon in the taskbar section of our computer, as shown in the figure below. During the initial setup! It is natural that you may encounter with the sign of a team update and contact information, contact with management consol, etc. transactions are completed in this order.
When we click on Symantec Endpoint Protection 1
2 after Symantec Endpoint Protection update
Antivirus and Antispyware Protection (Virus, Worm, Spyware) provides protection.
Proactive Threat Protection (Protection against Zero-Day Attacks (Worm, Trojan and Keystrokelogging etc.), Blocking (Device Control) and Application Control.
Network Threat Protection (Firewall and Intrusion Prevention) provides protection.
We examined the Symantec Endpoint Protection management consol installation and configuration. In other parties, I will mention the management consol menus and symantec endpoint protection menus and their features installed on our devices. At the end of the parties, I aim for you to fully master the SEP. If our help touched us, how happy we are.