Could not install Symantec Endpoint Protection on ISA machine from DC where SEP installer reside. (Full Version)

All Forums >> [ISA Server 2000 General] >> Installation



Message


warian -> Could not install Symantec Endpoint Protection on ISA machine from DC where SEP installer reside. (13.May2008 4:15:47 AM)

Dear All,

I have Domain Controller that has Symantec Endpoint Protection 11.0 installed and ISA machine as my proxy and firewall server. I could install Symantec Endpoint Protection from DC into my desktop machine as unattended installation.
But I could not install it for my ISA machine as same as what I did on desktop machine.
Is there anybody can help my problem?
Thanks in advance for your help.

Regards,
Warian




AHIT -> RE: Could not install Symantec Endpoint Protection on ISA machine from DC where SEP installer reside. (14.May2008 10:49:54 PM)

There may be a multitude of possibilities here:
1. Is the ISA machine in the same domain as the DC.. or at least have a trust between domains?
2. Is this ISA 2000 or a later version? Later versions can limit traffic on "all" interfaces including the internal NIC's so you may need to create a rule in ISA to allow this traffic - suggest utilising appropriate ISA version sub-forums in this case instead of ISA 2000 if this is the case.

You say you couldn't do a unattended install, can you do a pull install from teh ISa machine itself? See Symantec support at http://www.symantec.com/business/support/overview.jsp?pid=54619 for more help there.

http://www.symantec.com/business/products/overview.jsp?pcid=2241&pvid=endpt_prot_1 being product info about Symantec Endpoint Protection 11.0 says it "Seamlessly integrates essential technologies such as antivirus, antispyware, firewall, intrusion prevention, device and application control.
". Installing "another" firewall onto the ISA machine is probably a bad idea as it could conflict (resource wise or ruleset wise) with ISA itself.





warian -> RE: Could not install Symantec Endpoint Protection on ISA machine from DC where SEP installer reside. (15.May2008 11:00:57 AM)

Thanks for your reply.
I am using ISA Server 2004. This ISA machine is member domain DC where installed with SEP 11.0. I had stop Windows Firewall services for both machine. Two machine has visible and could share files each others.
I could ping from DC to ISA machine vice versa.
Is it possible to have two firewall application on one domain eventhought the machine is different?

Regards,
Warian




Page: [1]