CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Internal Security > Endpoint Security (Formerly Integrity)
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2008-05-18
Junior Member
 
Join Date: 2007-02-23
Posts: 27
Rep Power: 0
Tommo has an average reputation (10+)
Default Endpoint Security Server and Antispyware updates

Hi All,

Really just a bit of inside info that may save you some time.

I've got a VM Endpoint Server, using an Eval. While I was able to get my AV updates, I could not get any updates for the Antispyware software - I was always shown the current version as "N/A".

I believe all installs will do this at the moment due to the following error - spoke to one of the SE's the other day and he sent this. It's all approximate as the solution was not for the Endpoint GUI, but you should be able to follow, plus I'm using SPLAT too:

I think this could be a knows issue with _ not being a valid DNS char. Try the following and let me know, this should be resolved in the next HFA

In the meantime, you can do the following steps to fix it -


Log into the Endpoint Server (From the Window option in Dashboard). Once you can see the Overview page, press and hold CTRL + ALT, and click on the Endpoint logo in the top left 2 or 3 times. You should see a system properties tab in the hidden perperties page.


Change the value of the properties – Replace ‘upd_integrity.zonelabs.com’ with ‘upd.zonelabs.com’.


secsvcs.as.offline.update.urls - http://upd.zonelabs.com/zonealarm/on...128.241.220.72
secsvcs.as.update.url - http://upd.zonelabs.com/zonealarm/online/


Save the changes.


Go to folder “C:\Program Files\CheckPoint\EndpointSecurityServer\engine\web apps\ROOT\bin\updater\clientEngine” (or the equivalent server path) and rename the following files –


confZLToProduction.xml to confZLToProduction.old
confZLToStaging.xml to confZLToStaging.old


Stop the CPES 7.0 server and restart the server. Observe that new confZLToProduction.xml and confZLToStaging.xml are automatically generated with the new AS update url.


If you had offline antispyware updates turned on previously, you will need to toggle it ‘off’. Save the changes. And, then toggle it back to ‘on’. Save the changes. This will refresh the serverlist. All the endpoints will be notified the next time they heartbeat.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 06:39.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0