SEP: Client Troubleshooting Steps

Read Using the command-line interface section in administration_guide.pdf which explains all basic logging tasks for SEP client

SEP Client Log File: C:Program FilesSymantecSymantec Endpoint ProtectionSyslog.log

Enabling debug logging:

C:>"Program FilesSymantecSymantec Endpoint ProtectionSmc.exe" -stop

C:>reg add "HKLMSOFTWARESymantecSymantec Endpoint ProtectionSMC" /f /v smc_debuglog_on /t REG_DWORD /d 1

C:>"Program FilesSymantecSymantec Endpoint ProtectionSmc.exe" -start

Check the Debug log file: C:Program FilesSymantecSymantec Endpoint Protectiondebug.log

Remotely drop SyLink.xml file:

C:>psexec \TESTPC1 -s C:tempSylinkDrop.exe -silent C:tempSyLink.xml

PsExec v1.5 – execute processes remotely

Copyright (C) 2001-2004 Mark Russinovich

www.sysinternals.com

Sylink file has been successfully replaced.

C:tempSylinkDrop.exe exited on TESTPC1 with error code 0.

<

p>C:>

Leave a Reply

Your email address will not be published. Required fields are marked *