Home
Symantec™ Client Management Suite 7.5 powered by Altiris
Contents
1. Known issues Update installations that The Windows Software Update Delivery Summary report shows N A require a computer restart are update installations that require computer restart as complete shown as complete You can use the Restart Status report to view if any computers are pending restart Some system privileges on When you migrate from 6 x to ITMS 7 5 some system privileges on N A the Roles page can become the Roles page become unchecked after migration This may cause unchecked after migration problems with saving Software Update policies under Patch Management Administrator role If this problem occurs you need to enable the View Security privilege The client computers are The client computers are sometimes listed in the Windows Computers N A sometimes listed in the Not Reporting System Assessment Scan Data report even when Windows Computers Not the Vulnerability Scan is executed successfully on them This happens Reporting System if the software releases that are installed on these computers are not Assessment Scan Data selected in the Windows Patch Data Import Task report even though the Vulnerability Scan was successful The modified update will not If you change the settings of the Advertisement Set policy and then N A be re downloaded when the run the Patch Management with the Revise option enabled the modified Revise option is enabled update will not be re downloaded The out of scope
2. 42 Fixed issues Table 3 5 Other known issues for UNIX Linux and Mac platforms continued Not all inventory data is reported correctly on Solaris platforms The inventory for the following data class fields is not correctly collected Platform Data class Field Solaris OS_OperatingSystem CountryCode NumberOfLicensedUsers RegisteredUser SerialNumber Solaris HW_DisplayController MaxRefreshRate VideoProcessor Solaris HW_DiskPartition Bootable Solaris SW_BIOSElement BuildNumber IdentificationCode Name Solaris HW_DisplayController MaxMemorySupported VideoProcessor AdapterRAM Solaris HW_Battery HW_USBDevice all fields Solaris HW_SCSIController HardwareVersion Index MaxDataWidth MaxTransferRate Solaris HW_SCS Controller HardwareVersion for SCSI Fibre Channel Controller Solaris OS_OperatingSystem MaxProcessMemorySize Solaris x86 HW_Chassis Model AudibleAlarm PartNumber SecurityBreach Solaris SPARC HW_PhysicalMemory all fields As a workaround you can run custom inventory to collect required data on Solaris platforms Fixed issues The following are the fixed issues for this release Table 3 6 Fixed issues The DMI Version column in the Hardware Inventory Search report does not display any value The Asset Tag column is empty in the report that is located in Symantec Management Console at Reports gt All reports gt Discovery and Inventory gt
3. Following is the workaround for this issue a Navigate to lt Install_dir gt Program Files Notification Server NSCapBin UNIX Deployment Mac universal Automation folder a Select Show hidden files folder and drives a Uncheck the Hide Protected operating system files Recommended check box a Ifthe Thumbs db file is present then run the following command in the command prompt for the location where the file is generated with Administrator Privileges ATTRIB S H Thumbs db The Install Windows OS task fails in a Notification Server only set up if the port 445 is blocked The Install Windows OS task fails in a Notification Server only set up if the port 445 is blocked Table 2 2 The Automation folder is not updated on the client computers after you recreate the preboot configuration Deployment Solution Known Issues Known Issues of Deployment Solution 7 5 continued The automation folder is not updated on the client computers After you update the preboot configuration the package distribution points are not updated after you recreate the preboot configuration Following is the workaround for this issue a Inthe Symantec Management Console navigate to Settings gt All Settings gt Deployment and Migration and select the Automation folder upgrade policy a Disable the appropriate automation folder upgrade policy a From the Settings gt Deployment gt Create Preboot Configurations recreate the preboot conf
4. Not possible to run out of band tasks on IPMI computers It is not possible to run one to many out of band tasks on IPMI computers That is because the IP address of the IPMI management controller differs from the computers s IP address Notification Server does not know the IPMI controller s IP Running one to many out of band task is not possible on IPMI computers Restore State power action cannot restore S4 and S3 states The Restore State power action is not capable of putting computers into Stand by S3 or Hibernate S4 states Consequently the Restore State power action turns off the computer if needed in an attempt to restore the Hibernate S4 state and turns on the computer if needed to restore the Stand by S3 state Some Intel AMT inventory data is not collected The following Intel AMT inventory is not collected by the Get Out of Band Inventory task a RTCI AMT Battery Serial Number a RTCI AMT Battery Manufacture Date Table 10 3 Real Time System Management Other known issues Known issues Error while performing power One to one and one to many Reboot power management command N A management operation using WS MAN connection executes with an error Power management Reboot command operation failed on the UI despite the fact that the computer successfully restarts This problem is known for Dell Precision T3500 computers Not possible to connect to It is not possible to conne
5. AIX HW_USBDevice all fields AIX HW_DesktopMonitor Manufacturer Model MonitorType SerialNumber ManufacturingDate FeatureSupport AIX SW_BIOSElement some firmware fields AIX HW_DisplayController MaxMemorySupported AdapterRAM MaxRefreshRate AIX HW_Printer DefaultPaperType HorizontalResolution VerticalResolution AIX OS_OperatingSystem CountryCode NumberOfLicensedUsers RegisteredUser SerialNumber Asa workaround you can run custom inventory to collect required data on AIX platforms Inventory Solution 40 Known issues Table 3 5 Other known issues for UNIX Linux and Mac platforms continued Not all inventory data is reported correctly on HP UX and HP UX IA64 platforms The inventory for the following data class fields is not correctly collected Platform Data class Field HP UX HW_Baseboard some fields HP UX HW_Chassis Manufacturer AudibleAlarm LockPresent PartNumber SecurityBreach SecurityStatus HP UX HW_Chassis ChassisPackageType HP UX HW_USBDevice USBVersion SerialNumber DeviceSpeed HP UX HW_PhysicalMemory Manufacturer Speed DataWidth and TotalWidth HP UX HW_DesktopMonitor MonitorType VideolnputMode ManufacturingDate FeatureSupport HP UX HW_SCS Controller Index HP UX SW_BIOSElement some firmware fields HP UX HW_DisplayController MaxMemorySupported AdapterRAM MaxRefreshRate HP UX HW_Printer DefaultPaperTy
6. Inventory gt Cross platform gt Hardware gt Hardware Inventory Search report In 7 5 release the DMI Version column has been removed from the report Table 3 6 Inventory Solution 43 Other things to know Fixed issues continued On the parent Notification Server computer no version is displayed for the key program file that is dynamically associated with a software component on a child Notification Server computer On a child Notification Server computer you can collect full inventory and application metering information for the managed software product that has a software component with dynamically associated key program files However after replication on the parent Notification Server computer the versions are not displayed for the dynamically associated key program files at the following locations m Inthe Software Catalog when you open the managed software product and view the relevant software component a Inthe Executable Usage report In 7 5 release this issue has been fixed The reports Installed Software Underutilized Software and Executable Usage can show different count of installed software If all your target computers have Inventory Plug in installed but only some of them have Application Metering Plug in installed then after you gather full inventory on all target computers and enable the software based usage tracking option the reports Installed Software Underutilized
7. Make sure that your firewall and proxy configuration allows network communication to these URLs Entitlement check is removed Patch Management Solution for Linux no longer checks for entitlement N A from the product For this reason inventory policies and the Update Agent Discovery task are removed from the product Use mirror credentials for In the previous versions of Patch Management Solution for Linux you N A Novell used Novell Customer Center credentials Starting from version 7 1 you must type the Novell Mirror credentials on the Novell page Novell Customer Center tab 65 Patch Management Solution for Linux Other things to know Table 7 6 Other things to know continued 66 Log file is created on the A log file is created on the endpoint that lets you troubleshoot patch N A endpoint installation issues for the particular computer The log file location is swuagent var InstallLog txt Integrating Patch IT Analytics solution provides reports that display patch management N A Management Solution with IT data By default users with Patch Administrator role do not have Analytics solution access to these reports To grant access add the IT Analytics Users role to the users For more information see the IT Analytics documentation Patch Management Solution This is done for binding Linux update channels with exact OS version HOWTO65658 for Linux creates a new Software association type dur
8. 1 Support for Red Hat Enterprise Linux RHEL 6 0 6 1 6 2 and 6 3 Workflow The following enhancements are added to Workflow Solution a Web Application Project Type You can use the Workflow Dialog and Service Models in the same Project You can use multiple entry points to control how the Web Application Project Type is consumed You can use the Start Workflow component to invoke a Workflow Model from another Model Type a Workflow Solution Center An online repository that contains the prebuilt Workflow templates and updated Workflow component packs for you to download It also contains videos and documentation on how to implement the templates and the component packs a Collaborative component wiki All component information is now stored on Symantec Connect in the collaborative component pages Each component has its own wiki page The collaborative component pages are community based You can also access these pages from inside Workflow Designer For more information about what has changed in each of the solutions and components see the individual solution chapters in this document See About Client Management Suite on page 10 Client Management Suite 19 System requirements and supported platforms System requirements and supported platforms Before you install Client Management Suite 7 5 read the section Hardware recommendations in the T Management Suite 7 5 Planning for Implementation Guide at the followi
9. 9 5 The installation of SEP12 RU1 failed on client computers that are installed with SOPHOS 9 5 This issue has been fixed The SEP installation failed on The SEP installation failed during migration of SEP 12 RU1 package on client computers client computers where McAfee 2011 was installed installed with McAfee 2011 This issue has been fixed Other things to know Following are things to know about this release Deprecated features See Table 13 3 on page 115 Things to know See Table 13 4 on page 115 Technology Wake on LAN option or Intel vPro option See Table 13 5 on page 116 Testing results for multiple vPro scenarios See Table 13 6 on page 117 Table 13 3 Deprecated features The Repair Symantec The repair capability in SEPIC is limited to supported SEP versions older than 12 0 Endpoint Protection Client This capability is not available for newer versions task does not support SEP 12 1 onwards Table 13 4 Things to know Remote SERT Boot Task IDER takes time to boot depending on size of an image After you perform an IDE Redirection the vPro client takes some time to boot depending on the size of the image There is no progress indicator provided on the Remote SERT Boot Task page Once the restart is done you can connect to the remote computer through the pcAnywhere Remote Control button This could be verified if you try to connect to the vPro client immediately after redir
10. 93 Known issues es The following are the known issues for this release If additional information about an issue is available the issue has a corresponding article link The known issues are separated into the following groups a General issues See Table 11 2 on page 93 a Managed software delivery issues See Table 11 3 on page 94 a Cloud enabled Management issues See Table 11 4 on page 96 a Software Portal issues See Table 11 5 on page 97 a Hierarchy and replication issues See Table 11 6 on page 97 a Non Windows specific issues See Table 11 7 on page 97 a Software Management Framework issues See Table 11 8 on page 98 a Other issues See Table 11 9 on page 101 Table 11 2 General issues Symantec Management Agent and Software Management Plug in req upgrade to run Managed Delivery Policies and Qu Delivery tasks under specific user credentials After upgrade from IT Management Suite 7 0 previous versions of N A Symantec Management Agent and Software Management Plug in may uire fail to run Managed Delivery Policies and Quick Delivery tasks under specific user credentials ik Workaround Upgrade Symantec Management Agent and Software Management Plug in or run Managed Delivery Policies and Quick Delivery tasks using Symantec Management Agent credentials Full inventory is required gather missing uninstall string could be missing from the inventory gathered by the previous versions for a s
11. Data for Red Hat and Import Patch Data for Novell Data for Red Hat or the fail When you open the task details in the Task Status table no Import Patch Data for mention is made of the lack of free space causing the task to fail Novell failing due to lack of free space on the Notification Server computer Reports can show incorrect The Novell Red Hat Compliance by Update report can show incorrect N A data number of computers on which updates have been installed For example this happens when the same update belongs to two different channels Such an update is displayed as if it was installed on two computers To work around this issue use the report s parameters section to filter the results by operating system or by software channel Sometimes a software update This issue may occur when anonymous access is enabled for the Altiris N A policy fails to save folder in IIS Automation policy report The automation policy creates a report but it contains no data N A Maintain Retired Machine Historical Data does not return any result Steps to do if installation fails Sometimes bulletin can fail to install because of a conflicting bulletin N A included into the same software update policy To work around this issue Symantec recommends that you create a software update policy for this failing bulletin only If it still fails you can set the log level to DEVNOTE and examine the rpm output You can also try to install the update and it
12. It is possible to set the following values Very Low Low Normal High Very High Use the relevant command to specify the process priority settings accordingly Linux UNIX Mac Very Low 19 39 20 Low 10 30 10 Normal 0 20 0 High 10 10 10 Very High 20 0 20 You can change these mapping values in the database in the Inv_Task_Setting table Migrating data class from 6 x When you migrate inventory data from 6 x to 7 5 the data from the AeX AC Inventory Result data class gets migrated to the Inventory Results table To view the migrated data do the following a Inthe Resource Manager on the toolbar click View gt Inventory a Inthe navigation pane expand Data Classes gt Inventory gt Operating System gt Inventory Results On older Solaris SPARC computers W_Baseboard and HW_Chassis data class information is not collected When you gather hardware inventory on some older Solaris SPARC computers the HW_Baseboard and HW_Chassis data class information is not collected These models are for example Ultra2 Ultra60 and Netra T1 On more modern Solaris SPARC hardware such as SunFire V210 V240 or newer models regardless of version 9 or 10 this problem does not occur For 7 5 release the description of several Agent and Plug in filters has been changed The changes in the filter descriptions are as follows Inventory Solution 45 Other things to know Table 3 8 Changes in t
13. Software Delivery resource the applicability check for the second resource fails policy The failure occurs because this check runs before the first software resource is installed Applications with large With a Managed Software Delivery policy or Quick Delivery task TECH133459 installation paths fail to execute applications with large installation paths fail to execute Table 11 8 Software Management Solution Known issues Software Management Framework issues continued When creating a package by When creating a package by ASDK AutoGenerateCommandLines N A ASDK command lines may parameter set to True no command lines are generated for the get not generated for the package package Unable to add one large file If you add one large file or a very big number of small files estimating N A or a very big number of small around 2 GB in total the procedure will fail with errors in the Notification files estimating around 2 GB Server computer log file while editing a software resource in total while editing a software resource Java Update software Java 6 Update software component which is installed on the client N A component is not added into computer is not added into the Software Catalog after running the the Software Catalog after Software Discovery task running the Software Discovery task Installation error code Modified installation error code descriptions are reset to defaul
14. be the same on the parent and child 73 Table 9 3 Patch Management Solution for Windows Hierarchy and replication issues continued 74 Known issues Errors occur when the plug in requests configuration for replicated software update tasks before the associated packages have been re created During software update policy replication the policies are created before the packages have been downloaded to the child Notification Server computers If a software update plug in requests configuration during this time errors appear in logs as the policies are incomplete until the packages are downloaded After the packages are downloaded the errors will no longer occur N A Notification Server Item replication deletes any task history on the child Replication of items down a hierarchy deletes any task history on the child for the Patch Management server tasks N A The Vulnerability Scan task fails if the patch data has not been replicated If you run complete replication but do not replicate the patch data and then try to run the Vulnerability Scan task on a child server or a client computer from the Parent Notification Server the scan will fail N A Replicated Policies Get Deleted on the Child Notification Server when using Standard Replication Schedule Replicated policies get deleted on the Child Notification Server when Patch Management Import Data for Windows uses the Standard Repl
15. can import drivers to the driver database from the driver database that is installed from the previous version If you are installing Deployment Solution for the first time then you must add the drivers to the driver database For information on adding drivers to the driver database please refer to the Deployment Solution 7 5 User Guide on http www symantec com DOC5678 Mac imaging is not supported on HTTP HTTPS and you must have the Publish UNC codebase check box checked in the Package Server Settings page From this release onwards the RapiDeploy tool is for legacy use only Symantec recommends that you use the Ghost tool over RapiDeploy tool to execute imaging tasks on Windows and Linux client computers Deployment Solution does not support the client computers that are managed with Cloud enabled Management Chapter Inventory Solution This chapter includes the following topics Known issues a Fixed issues Other things to know Known issues The following are the known issues for this release For the most up to date information latest workarounds and other technical support information about this solution see the Technical Support knowledge base The known issues are separated into the following groups a Installation and upgrade issues See Table 3 1 on page 32 a Hierarchy and replication issues See Table 3 2 on page 34 a Other known issues that are common for all types of platforms See Table 3 3 on
16. computer is running Microsoft on some computers Windows Vista 32 bit and 64 bit editions Only secure CIRA Intel AMT computer management using CIRA is possible only with Intel N A connections are supported AMT 4 0 and later computers that are configured to use TLS or TLS with mutual authentication Unable to connect to Intel Secure connection using the WSMAN protocol to an Intel DASH N A DASH computer configured in mutual authentication mode computer that is configured in Mutual authentication mode is not supported Real Time System Management Table 10 3 Other known issues continued 90 Known issues Setup and Configuration In the Real Time view on the Intel AMT Configuration Mode page N A Server address is not the setup and Configuration Server address is not shown for computers displayed with Intel AMT version 2 6 and 4 0 During upgrade custom During the upgrade to 7 5 any custom filters of Network Filtering are N A configuration of Network Filtering resets to default reset to the default configuration To keep using the custom setting you need to do the following a On your NS Server from the RTSM Web U Data folder copy the CBFilters bak file a Rename the CBFilters bak file to CBFilters xml a Replace the original xml with the one containing the custom configuration Chapter Software Management Solution This chapter includes the following topics a Wha
17. directly from the Apple website N A have Internet access About Patch Management You can assign the following security roles to Symantec Management N A security roles Console users a Patch Management Administrators a Patch Management Rollout Users with Patch Management Administrators role have full access to Patch Management Solution functionality but no access to the rest of the Symantec Management Console Users with Patch Management Rollout role have limited access to the following Patch Management Solution functionality a Software Update policies a Reports a Patch Remediation Center page Users with Patch Management Rollout role can perform the following actions a Enable disable change settings in the software update policies a View reports 69 Chapter Patch Management Solution for Windows This chapter includes the following topics a What s new in this release Known issues Fixed issues a Other things to know What s new in this release In Patch Management Solution for Windows 7 5 the following new features are introduced Table 9 1 List of new features New Package Distribution Hierarchy Editable Property HEP is introduced This feature allows to control the parent Notification Server if the Package Distribution section on the Windows Patch Remediation Settings page is editable on the child Notification Server This means that these settings can then be managed on
18. file TECH189097 In Symantec Management Console SMC after you removed the Local Machine Administrator caller from the Authentication tab of pcAnywhere Settings Windows policy and selected Enable Local Administrators group either of the following error messages was displayed The data could not be loaded Or The following exception was logged in the log file AddBinaryData The process cannot access the file lt Install Directory gt Program Files Altiris pcA WINNT Local Machine RussianAdministrator CIF because it is being used by another process Or pcAnywhere plug in displayed the following error Error opening file documents and settings all users appliation data syamntec pcanywhere hosts WINNT local machine RussianAdministrator cif TECH191999 The client computer could not connect to the host computer within the stipulated timeout period of TECH188183 15 seconds and the following error message was displayed The selected computer is not responding Connection cannot be made The pcAnywhere plug in installer pcAClientInstallManager exe from pcAnywhere solution TECH194058 failed to detect and uninstall the latest pcAnywhere box product that was already present on the computer pcAnywhere Solution 12 6 7 Table 6 3 Fixed issues continued 56 Fixed issues During the upgrade of the pcAnywhere the caller files were not upgraded becau
19. folder for UEFI EFI computers that are installed with Windows 8 and Windows 2012 operating system Table 2 1 Support for LinuxPE v2 6 Deployment Solution What s new in this release List of new features in Deployment Solution 7 5 continued Deployment Solution supports LinuxPE v2 6 SSL support in preboot environment Deployment Solutions now supports SSL communication in the preboot environment Support for WinPE 4 0 Deployment Solution supports WinPE 4 0 preboot package for both x64 and x86 architecture computers Leverage Package Server Deployment Solution now leverages the function of the Package Server for storing images and large amount of data thereby removing the dependency from the Task Server The network share facility of the Task Server is removed and all data is stored on the Package Server PXE service changes and improvement A new site service Network Boot Service NBS is introduced in this release that runs on a site server This service performs the combined tasks of the PXE server TFTP server Boot Disk Creator and the preboot image creation policy The NBS can be installed independent of the task service and the package service and can therefore be deployed on a site server as a standalone Predefined Computers Deployment Solution provides provision to add predefined computer through the Predefined Computers dialog box of the console besides importing them An already ad
20. from 7 0 to 7 5 After you break the hierarchy on the parent Notification Server computer sometimes the child Notification Server computer retains its association with the parent server Workaround Also break the hierarchy on the child Notification Server computer N A Table 7 2 Patch Management Solution for Linux Installation and upgrade issues continued 59 Known issues Invalid custom severities are Invalid custom severities are cleaned up during upgrade However N A not removed from the bulletins keep the invalid severities assigned to them To remove an bulletins invalid severity from a bulletin change its severity by using the right click menu Package server settings are Package server settings on the Policy and Package Settings tab are N A not migrated from 7 0 not migrated from 7 0 Configure the settings after the migration SQL queries in automation Parameters in the default automation policies can be migrated but SQL N A policies are overwritten queries are overwritten Symantec recommends that if you want to customize an automation policy you clone the policy and then make changes to the clone Custom severity with Sometimes custom severity with non Latin characters is not migrated N A non Latin characters is not migrated after upgrade from 7 0 RHEL3 RHEL4 and SLES9 The historical data is kept in the database but you cannot download N A are no longer s
21. must be on the same Service Pack level Issues occur when various Microsoft Office components are having different Service Pack versions applied N A Table 9 4 Patch Management Solution for Windows Software updates installation issues continued 77 Known issues A removed vendor or If a vendor or software release is removed from Patch Data this vendor N A software update is displayed or software release is still displayed under Vendors and Software list in the Vendors and Software on the Import Patch Data for Windows page after the Vendors and list Software list is updated The removed vendor or software release will disappear from the list after the Import Patch Data for Windows task is completed The Windows Computers The Windows Computers with Software Update Plug in counter in N A with Software Update the Patch Configuration Summary Web Part works only for those Plug in counter works only client computers that have the Software Update plug in originally rolled for the client computers that out from the same Notification Server The counter excludes the client have the Software Update computers clients that were redirected from another Notification Server plug in originally rolled out after the Software Update plug in rollout It will include the redirected from the same Notification client computers only after they are reinstalled or upgraded Server If you change the package When on the I
22. new features in Client Management Suite 7 5 are categorized into the following a General enhancements in Symantec Management Platform 7 5 See Table 1 2 on page 13 a Key new features in solutions of Client Management Suite 7 5 Client Management Suite 13 What s new in this release See Table 1 3 on page 16 Table 1 2 List of general enhancements General enhancements a Symantec Management Console a Administrators will notice console performance up to 15 times faster than in previous releases a New Task Rerun functionality lets you rerun tasks on computers that failed the task a New Software Delivery flipbook page lets you view and act on summary information about Quick Delivery tasks and Managed Delivery policies in your environment a New Log Viewer a Ability to load a large amount of log files without consuming too much of your server s resources a Simplified filter mechanism a Bookmarks a Ability to search in log files without loading the log files into Log Viewer a Reporting New SuppressReportAutorun functionality a Symantec Management Platform does not support a hierarchy that is more than 2 levels a parent notification server with child Notification Servers deep a Network Discovery supports Linux and Mac devices by SSH protocol Cloud enabled Management CEM Cloud enabled Management CEM lets you manage remote endpoints even when those endpoints are not connected to the corporate network thro
23. on the target computer The user must click Yes in the installation dialog box a See the HOWTO article for additional details Additional information about update installation prerequisites may be available in the Resource Manager or on the vendor s website Known issues HOWTO54657 Some software updates are shown as not installed in the Windows Update dialog box Some software updates that you install using Patch Management Solution can be shown as not installed on the managed computers in the Windows Update dialog box This issue occurs because the executable is a full software release not a patch Symantec recommends that you use Altiris Software Management Solution from Symantec to roll out this software The following software updates are known to have this issue KB982671 Microsoft NET Framework 4 KB968930 Windows PowerShell 2 0 and WinRM 2 0 a KB940157 Windows Search 4 0 IE8 Internet Explorer 8 a KB2526954 Microsoft Silverlight IE9 Internet Explorer 9 m KB2463332 Windows Internal Database Service Pack 4 N A 75 Patch Management Solution for Windows Table 9 4 Software updates installation issues continued Some updates require original installation media Some updates may require original installation media The updates that are known to require one are as follows a Microsoft Project 2003 SP3 a Microsoft Visio 2003 SP3 a Citrix Presentation Server If the product w
24. page 34 Other known issues for Windows platforms See Table 3 4 on page 35 a Other known issues for UNIX Linux and Mac platforms See Table 3 5 on page 36 Table 3 1 Inventory Solution 32 Known issues Installation and upgrade issues Installation of the Inventory Plug in for UNIX Linux and Mac fails after migration to Inventory Solution 7 5 toa custom location When you migrate Inventory Solution from version 7 0 to 7 5 and instead of the default location C Program Files Altiris select some custom location for example C AdministratorTools Altiris then the installation of Inventory Plug in for UNIX Linux and Mac fails on the target Notification Server computer You get the error message Failed to get package snapshot The problem does not occur if you select the default location during the migration Some inventory automation policy settings are not preserved after an upgrade from Inventory Solution 7 x to 7 5 The On Off status of the following automation policies is not preserved after upgrade a Low Disk Space a Collection failed a New machine a Inactive machine a Machine changed identity Enabled inventory automation policies send important alerts to an administrator If the On status is not preserved the administrator can miss important alerts Software components are not displayed in the Catalog after upgrade When you upgrade from SMP 7 1 SP 1 to SMP 7 5 and gath
25. pages does not work of 60 minutes is always used Staging Red Hat and Novell When you specify an alternate download location for Red Hat and Novell N A patches from an alternate patches the download fails This setting is under Settings gt Software location is not possible gt Patch Management on the Core Services page on the Languages and Locations tab Software updates import task When the Import Patch Data for Red Hat or the Import Patch Data N A status is incorrect for Novell task is running the Pending status is displayed in the Task Status section of the task page This status is not correct To view the correct status of the task click the task instance and open the task instance details Software update details page In Resource Manager the Summaries gt Software Bulletin Details N A does not work or Summaries gt Software Update Details pages do not work The Software Update Tasks In the Red Hat Novell Software Update Tasks Delivery Summary N A Delivery Summary Web Part Web Part the tasks that were executed more than 30 days ago are shows executed tasks as shown as Incomplete incomplete Cannot save settings on Red The changes on the Red Hat and Novell pages cannot be saved if you N A Hat and Novell pages when leave the credentials fields empty credentialsileit empty Workaround Type the credentials the credentials are critical for the solution to work If you do not know the valid credentials at the time
26. the Available Mac Software Updates report Workaround Manually download the update from the Apple Downloads site If you are unsure whether your computer needs a particular update download and open the update installer The installer indicates whether the firmware update is already installed or is not needed Fixed issues The following are the fixed issues that for this release If additional information about an issue is available the issue has a corresponding article link Table 8 3 A manual update of the IIS After you perform the upgrade from 7 0 to 7 5 you must manually N A configuration is required after update the Physical Path value for the following node in the IIS upgrade from 7 0 to 7 1 or Manager later Default Web Site Altiris Packages 3fb61de0 7af0 40b3 a40e 2 303410715d Set the Physical Path value to the actual location of the package By default the package location is as follows C Program Files Altiris Patch Management Mac Packages SoftwareUpdateHelper Other things to know The following are the things to know about this release If additional information about an issue is available the issue has a corresponding article link Patch Management Solution for Mac Other things to know Table 8 4 Other things to know Hierarchy is not supported This product does not support hierarchy and replication N A Client Mac computers must Client Mac computers download updates
27. the hierarchy on the child Notification Server computer The Download from staging The Download from staging location setting on the Core Services N A location setting is reset to page is reset to default after upgrade default License count is reset after The count of licenses in use is reset after you upgrade from version N A upgrade 7 1 or earlier to 7 5 The count will increase after you upgrade the Software Update Plug in on the client computers to version 7 5 and then run the system assessment scan Table 9 2 SQL queries in automation policies are overwritten Patch Management Solution for Windows Installation and upgrade issues continued The query parameters in the automation policies Item Status Changed After PM Import Maintain Retired Machine Historical data Software Update Advertisement Disabled Software Update Policy Failed are not migrated during an upgrade from 7 x to this version of Patch Management Solution Parameters in the default automation policies can be migrated but SQL queries are overwritten Symantec recommends that if you want to customize an automation policy you clone the policy and then make changes to the clone Known issues N A Software update packages are not migrated to 7 5 in case of an off box upgrade If you are performing an off box upgrade to 7 5 installing on a new computer and using migration wizard to transfer data the software update packa
28. then click Hierarchy gt Replicate Now a Inthe confirmation dialog box click OK Inventory for Network Devices 48 Other things to know Table 4 3 Other things to know continued The Symantec Management Platform provides role based security The Administrator role has all rights to perform all agentless inventory tasks For other users you can assign rights to different roles Security and permissions The following are the unique privileges for Inventory for Network Devices Read SNMP Table Lets you access the SNMP Table Mappings page for initial viewing Import SNMP Table XML Lets you import SNMP Table mapping definitions as XML Manage SNMP Tables Lets you create delete and edit existing SNMP user tables Note Predefined tables cannot be edited Test SNMP Table Mappings Lets you use the test SNMP functionality on the SNMP Table Mappings page Chapter ITAnalytics This chapter includes the following topics System requirements Known issues Fixed issues Other things to know System requirements IT Analytics requires the following Symantec Management Platform 7 5 Microsoft SQL Server 2005 SP4 2008 SP1 or higher or 2008 R2 or higher and 2012 for IT Analytics Cube database Microsoft SQL Server 2005 SP4 2008 SP1 or higher or 2008 R2 or higher and 2012 for IT Analytics Reports ADOMD NET 9 0 Microsoft Office Web Components 11 2003 Microsoft Report Viewer 2008 S
29. 1 0 7072 1031 Registry entries and folders Few registry entries and folders are present even after you uninstall the existing antivirus The count of these entries and folders varies for the antivirus solutions Symantec Endpoint Protection Integration Component 113 Fixed issues Table 13 1 Known issues continued Uninstallation and inventory of localized antivirus software The Endpoint Protection Integration Component 7 5 does not support inventory or uninstallation of the localized versions of the following antivirus software a F Secure AV 2012 a F Secure IS 2012 a F Secure AV for workstations 9 30 a Kaspersky Endpoint Protection Integration Component 7 5 by default supports the uninstallation and inventory of the following localized antivirus software a ESET NOD32 5 0 a ESET SMART SECURITY 5 0 a CA Antivirus Plus 2010 a McAfee Antivirus Plus 2012 a McAfee Total Protection 2012 a Trend Micro Office Scan Client 10 5 a F Secure AV for Windows Servers 9 20 a SAVCE 10 1 9000 1 a SOPHOS Antivirus 9 7 Endpoint Protection Integration Component 7 5 supports the uninstallation of the following localized antivirus software a MS Forefront Endpoint Protection 2010 SAVCE 10 1 9000 9 32 bit and 64 bit package If a 32 bit package is selected for installation on a 64 bit computer or a 64 bit package is selected for installation on a 32 bit computer then the migration job fails Power Sensiti
30. 7 5 and the Client Management Suite 7 5 solutions You can upgrade from the previous versions of Symantec Management Platform and Client Management Suite solutions to the latest versions using Symantec Installation Manager The supported upgrade paths are as follows Client Management Suite General installation and upgrade information a 7 1 a 7 1 SP1 a 7 1 SP2 To perform an upgrade from CMS 7 1 or later in the Symantec Installation Manager click Upgrade Installed Products and then choose to install this product Symantec recommends that you upgrade all the installed products to the latest version The easiest way to upgrade to 7 5 version is to choose to install a suite If you use hierarchy you must disable hierarchy replication and upgrade all products to the latest version on each of the Notification Server computers For more information on how to upgrade to Client Management Suite 7 5 solutions see the Upgrading to IT Management Suite 7 5 chapter in the T Management Suite 7 5 Installation and Upgrade Guide at the following URL http www symantec com docs DOC5697 Upgrade to Symantec Management Agent 7 5 After upgrade to SMP 7 5 and CMS 7 5 you must upgrade the Symantec Management Agent SMA on client computers to SMA 7 5 After upgrade to SMP 7 5 and CMS 7 5 you must upgrade the Symantec Management Agent SMA on client computers to SMA 7 5 Additionally you must upgrade the SMA plug ins to the latest versions that a
31. C location to another an UNC path to another path the packages will not be relocated lacationdoes NEE WOR Workaround Relocate the packages manually Software updates cannot be Only UNC paths can be used as an alternate download location ona N A downloaded from an alternate download location on a non lIS package server non IIS Windows package server If you specify a local path on the server as the alternate download location the software updates are not downloaded from a package server that does not have IIS installed Table 7 4 Patch Management Solution for Linux Other known issues continued Known issues The Patch Administrator A user who belongs to the Patch Management Administrators role N A cannot edit the default targets cannot edit default targets in the following policies m ne patch management Novell patch management configuration policy configuration policies i f You access this policy from Settings gt Software gt Patch Management gt Novell Settings gt Novell a Red Hat patch management configuration policy You access this policy from Settings gt Software gt Patch Management gt Red Hat Settings gt Red Hat Workaround On the configuration policy s page delete the default targets and then add the appropriate custom targets Task details do not show the When there is no free space on the Notification Server computer the N A cause of the Import Patch Import Patch
32. EInstall and LinInstall Deployment Solution 30 Other things to know Table 2 2 Known Issues of Deployment Solution 7 5 continued configuration with the Repair option of the Symantec Installation Manager You cannot recreate the PEInstall and LinInstall configuration with the Repair option of the Symantec Installation Manager This issue occurs when you delete the configuration files from the following paths and recreate the PEInstall with the Repair option from the Symantec Installation Manager a lt Install_dir gt Program Files Altiris Notification Server NSCap bin Win32 x86 Deployment Automation PEInstall_x86 a lt Install_dir gt Program Files Altiris Notification Server NSCap bin Win64 x64 Deployment Automation PEInstall_x64 a lt Install_dir gt Program Files Altiris Notification Server NSCap bin UNIX Deployment Linux x86 Automation LinInstall_x86 Following is the workaround for this issue In the Symantec Management Console navigate to Setting gt Deployment gt Create Preboot Configurations select the PEInstall or LinInstall and click the Recreate Preboot Environment Other things to know The following are things to know about this release From this release onwards few of the drivers that were earlier available in the driver database have been removed You can add the drivers to the driver database in the following ways If you are upgrading to the Deployment Solution 7 5 version then you
33. MT Settings page Task progress window and remote control and Redirect to optical floppy drive or image on a server are not disabled IDE R session to MS DOS boot image does not work correctly with certain HP client computers IDE R session to an MS DOS boot image may not work correctly with managed HP client computers that have BIOS versions earlier than 1 5 The workaround is to upgrade the client BIOS Alt lt key gt sequences do not transfer to client computer during SOL session When you use any Alt lt key gt sequence on the keyboard during the Serial over LAN session the controlled computer may not receive it Cannot install Windows using IDE R on HP Compaq dc7700p system Due to SOL emulation limitations installation of a graphical operating system through IDE R can lead to a BSOD on some Intel vPro implementations and is not fully supported by Intel AMT 2 x products The problem affects HP Compaq Business Desktop System BIOS for Intel vPro Technology 786E1 BIOS For resolution download and install the latest BIOS firmware update from the vendor s website The first line of the terminal output is not displayed in SOL IDE R session When you establish a SOL IDE R session with HP computers with Intel AMT 2 5 the first line of the terminal output is not displayed in the remote console Ctrl Alt Del sequence does not work in the SOL session Ctrl Alt Del key sequence does not work in the SOL session
34. Mac Management Software Detection Rules Detection rules for Mac let you manage software with Managed Software Delivery policies You can automatically remediate and reinstall software Easy to import and install Mac software packages The Software Management Framework detects the platform type of a software package and then creates the appropriate command lines for installation You can now filter by platform in the Software Catalog This lets you view only Mac software packages NTLMv2 support You can authenticate with newer versions of Active Directory 2008 or newer Mac imaging You no longer need a separate server to image Macs You can use your existing Windows Site Servers You use the same site server that you use for PXE booting You can network boot and image Macs remotely The opt folder that gets created with the agent is hidden You can access the folders to install the deployment agent plug in and the automation folders from the Action menu The Mac automation OS includes a Symantec background display so that you know when the Mac is in automation The Symantec Management Agent icon is now added to the menu bar of a managed Mac client computer You can use the icon on the menu bar to open Symantec Management Agent on your Mac computer Out of Band Management component The Out of Band Management Component OOB is no longer bundled with ITMS This component was required to define apply and maintain the confi
35. Mac computers You can collect software inventory using the filescan rules with the acceptable date format for LastModifiedDate such as YYYY MM DD HH MM SS or YYYY MM DD However after software inventory is collected on UNIX Linux and Mac computers you get the error Unsupported file filter property LastModified The filter will be ignored As a result the data for last modified date is not collected To work around the problem you can create a custom inventory task to collect the data for last modified date Some inventory scans may take a long time to complete The default inventory task includes several software rules for scanning that can take quite a long time depending on the platform For example on Solaris platforms the opt or Volumes on Mac OS directories contain multiple subfolders and files On less powerful computers this can take more than one hour To avoid this you can exclude such rules and exactly define the directories that you want to scan Inventory scan does not scan deeper than system limitations Each operating system has a maximum length paths limitation though not the file system For example for Solaris and Mac OS X by default the limit is 1024 chars and for Linux OS it is 4096 As a result an Inventory scan does not detect files allocated deeper than the system limitations The Manufacturer field of the Storage data class may be empty On UNIX Linux Mac OS clien
36. P1 Known issues The following are the known issues for this release If additional information about an issue is available the issue has a corresponding article link For the most up to date information latest workarounds and other technical support information about this solution see the Technical Support knowledge base Table 5 1 Known issues After you configure your cubes and reports the Context sensitive Help topics may not appear for the Cubes Dashboards and Reports pages To get the Context sensitive Help topics to appear for the Cubes Dashboards and Reports pages in the Symantec Management Console you must do the following a Install the Language Packs When you use Symantec Installation Manager to install IT Analytics install the Language Packs a Enable the Localize Report Parameters In the Symantec Management Console on the Settings menu click Notification Server gt IT Analytics Settings In the left pane expand IT Analytics Settings and then click Configuration In the right pane on the Configuration page in the Optional Configuration section next to Localize Report Parameters click Yes and then click Save Report Parameters Settings ITAnalytics Fixed issues N A Fixed issues The following issues are the fixed issues for this release Table 5 2 Fixed issues Saved cube views are removed after reinstall or upgrade Previously saved cube views were removed during reinst
37. Pass thru Authentication with Chrome amp Firefox on ServiceDesk amp Workflow at the following URL http Awww symantec com docs TECH204270 Known issues The following are the known issues for this release If a workaround or other information about an issue is available the issue has a corresponding article link Table 12 2 Known issues in this release JavaScript error encountered When you log in to the Process Manager portal using Internet Explorer N A in Internet Explorer 9 when 9 click the My Tasks Lists tab and perform one of the tasks listed expanding or collapsing above you find that the JavaScript functionality is lost The loss of groupings resizing columns functionality usually occurs shortly after the page refreshes or sorting columns The following error message is displayed in Internet Explorer 9 SCRIPT5007 Unable to get value of the property init object is null or undefined ig _WebGrid dom js line 4911 character 2 Table 12 2 Workflow Solution Known issues in this release continued 105 Fixed issues Cannot start Workflow Designer tool on computers on which User Account Control UAC is enabled The Windows Explorer does not have permissions to access the Workflow Designer executable file Additionally the following error message is displayed Windows cannot access the specified device file to access the item path or You may not have the appropriate pe
38. Patch Data pages 3 Optional Configure the notification options If you enable administrator notifications you must also configure the SMTP server settings You can configure SMTP settings on the Settings gt Notification Server gt Notification Server Settings page 4 On the next page configure the assessment scan and update installation schedules or leave the default ones 5 Click Schedule patch N A When a maintenance window is configured the update installation does not run on the schedule If a maintenance window opens before the software update installation schedule the schedule including the Start End dates is disregarded and the software update gets installed before the scheduled time This issue occurs when Override Maintenance Windows settings is not checked This behavior is expected N A Table 9 7 Patch Management Solution for Windows Other things to know Other things to know continued 82 Close the Altiris Log Viewer If you close the Altiris Log Viewer when you run the Import Patch N A to improve the performance Data for Windows task you can improve the task s performance by of the patch data import task as much as 50 percent for Microsoft and Adobe A log file is created on the A log file is created on the endpoint that lets you troubleshoot patch N A endpoint installation issues for the particular computer The log file location is as follows SALTIRI
39. Portal publishing When migrating from Software Management Solution 6 x the Software N A permissions are incorrectly Portal publishing permissions for a software resource change their migrated during upgrade from status from Approved to Requesting Approval Software Management Solution 6 x Software Portal becomes If the application identity user is a domain user with enabled Use N A inaccessible in case of invalid Kerberos configuration Kerberos DES Encryption types for this account encryption option the Software Portal page will be inaccessible from the client computers to any domain users Table 11 6 Hierarchy and replication issues Managed Delivery policy If on the Parent Notification Server you create a Managed Software N A which contains a software Delivery policy which contains a software resource with Applivability resource with applicability checks apply it to client computers assigned to the Child Notification checks is not replicated to Server and then run an emergency update on that policy the policy is the Child Notification Server not replicated to the Child Notification Server Workaround To fix the issue run the differential replication task Managed Software Delivery Due to significant changes in this component Symantec Management N A policies and Quick Software Delivery tasks execution requires Symantec Management Agent upgrade Agent has to be upgraded to version 7 5 in an envir
40. Pro computers and stop IDER by clicking on Stop Redirection button Stop Redirection functionality does not work on multiple vPro computer But it works for single redirected vPro computer
41. Report Process ID field was The report now displays Report Process ID field for IFrame Web Part N A not displayed for IFrame Web Part in the report Could not authenticate The Workflow user is now authenticated by sending an email to the N A Workflow users of Workflow SMTP server using the Master Settings page of the Process Manager and therefore ServiceDesk 7 5 users with locked down flows could not send email to people outside their domain For automation rule set that Automation rule set that is configured to Any group satisfies setting N A was configured to Any group now evaluates for any one created group to have the associated satisfies setting the rule was conditions satisfied After the associated conditions for any one group always evaluated as are met the rule action is executed conditions being met and rule action was executed Report Viewer Web Part The report entries now appear as expanded or contracted as per the N A report settings in the Report Viewer Web Part Pass through authentication Pass thru authentication now works for login pages created in project N A by Process Manager Login component 106 Workflow Solution 107 Other things to know Table 12 3 Fixed issues in this release continued Search feature for the The search feature forService Catalog Web Part can now be displayed N A Service Catalog Web Part or hidden per the configuration in the Service Catalog Settings page Sel
42. S AGENT INSTALL FOLDER Agents PatchMgmtAgent Integrating Patch IT Analytics solution provides reports that display patch management N A Management Solution with IT data By default users with Patch Administrator role do not have Analytics solution access to these reports To grant access add the IT Analytics Users role to the users For more information see the IT Analytics documentation Interaction with the Windows Installing software updates on Microsoft Windows Vista or later operating N A Update service systems fails if the Windows Update service s startup type is set to Disabled The service s startup type must be set to Automatic or Manual when a software update is installing it starts the service The service is not stopped after the installation is complete If you want to stop the service you can run a post deployment task Altiris Real Time System Manager software has a Service Management task that you can use With certain settings the If you set the Legacy Agent Communication option to OFF and then N A software update installation will fail to start on 7 1 SP1 client computers on the Windows Patch Remediation Settings page in the Run with rights drop down list click Specified user the software update installation will fail to start on 7 1 SP1 client computers To work around the issue on the 7 1 SP1 client computers in the Run with rights drop down list click System Account Patch Ma
43. Software and Executable Usage show different count of installed software a Inthe reports Installed Software and Underutilized Software the columns Count and Total Installed respectively show the data for all target computers with Inventory Plug in a Inthe Executable Usage report the column Installed shows the data for the target computers with Application Metering Plug in It is recommended to install Application Metering Plug in on all the target computers on which you want to track software usage Other things to know The following are the things to know about this release The other things to know are separated in the following groups Other things to know See Table 3 7 on page 44 Changes in the filter description See Table 3 8 on page 45 Inventory Solution 44 Other things to know Table 3 7 Other things to know Requirements for UNIX Linux and Mac computers To be able to collect the inventory data ensure that the following requirements are met on your UNIX Linux and Mac computers a Perl version 5 6 or later is installed a PATH environment variable has correct reference to Perl location Otherwise you cannot collect all inventory data and the errors appear in the log Process priority settings on UNIX Linux and Mac platform The priority of the executed inventory tasks is set to Normal by default You can change the priority on the inventory policy page at Advanced gt Run Options
44. Symantec Client Management Suite 7 5 powered by Altiris technology Release Notes vi Symantec Symantec Client Management Suite powered by Altiris technology Release Notes The software described in this book is furnished under a license agreement and may be used only in accordance with the terms of the agreement Legal Notice Copyright 2013 Symantec Corporation All rights reserved Symantec the Symantec Logo the Checkmark Logo and are trademarks or registered trademarks of Symantec Corporation or its affiliates in the U S and other countries Other names may be trademarks of their respective owners This Symantec product may contain third party software for which Symantec is required to provide attribution to the third party Third Party Programs Some of the Third Party Programs are available under open source or free software licenses The License Agreement accompanying the Software does not alter any rights or obligations you may have under those open source or free software licenses Please see the Third Party Legal Notice Appendix to this Documentation or TPIP ReadMe File accompanying this Symantec product for more information on the Third Party Programs The product described in this document is distributed under licenses restricting its use copying distribution and decompilation reverse engineering No part of this document may be reproduced in any form by any means without prior written authorization of
45. Symantec Corporation and its licensors if any THE DOCUMENTATION IS PROVIDED AS IS AND ALL EXPRESS OR IMPLIED CONDITIONS REPRESENTATIONS AND WARRANTIES INCLUDING ANY IMPLIED WARRANTY OF MERCHANTABILITY FITNESS FOR A PARTICULAR PURPOSE OR NON INFRINGEMENT ARE DISCLAIMED EXCEPT TO THE EXTENT THAT SUCH DISCLAIMERS ARE HELD TO BE LEGALLY INVALID SYMANTEC CORPORATION SHALL NOT BE LIABLE FOR INCIDENTAL OR CONSEQUENTIAL DAMAGES IN CONNECTION WITH THE FURNISHING PERFORMANCE OR USE OF THIS DOCUMENTATION THE INFORMATION CONTAINED IN THIS DOCUMENTATION IS SUBJECT TO CHANGE WITHOUT NOTICE The Licensed Software and Documentation are deemed to be commercial computer software as defined in FAR 12 212 and subject to restricted rights as defined in FAR Section 52 227 19 Commercial Computer Software Restricted Rights and DFARS 227 7202 Rights in Commercial Computer Software or Commercial Computer Software Documentation as applicable and any successor regulations Any use modification reproduction release performance display or disclosure of the Licensed Software and Documentation by the U S Government shall be solely in accordance with the terms of this Agreement Symantec Corporation 350 Ellis Street Mountain View CA 94043 http Awww symantec com Technical Support Symantec Technical Support maintains support centers globally Technical Support s primary role is to respond to specific queries about product features and functiona
46. Usage script does not detect entries for any local logins on Solaris platforms On UNIX Linux and Mac computers NSE file contains unchanged data after software inventory scan even if delta inventory is enabled When you collect software inventory using the filescan rules with delta inventory enabled for the second time NSE file contains full inventory data However it should contain only the changes in the target directory such as changed number or size of files Some values of the OS_Timezone data class are reported incorrectly or not reported on HP UX platforms If the time zone is not GMT the values of the OS_Timezone data class are reported incorrectly or not reported on HP UX platforms The StandardName StandardCaption StandardOffset values are reported incorrectly The DaylightName DaylightCaption DaylightOffset values are not reported Errors in the Notification Server computer log after an inventory policy is run on Linux computer When you complete running an inventory policy on Linux computer you get multiple errors in the Notification Server computer log The errors notify you that login session start time cannot be set Table 3 5 Inventory Solution 38 Known issues Other known issues for UNIX Linux and Mac platforms continued Unsupported file filter property error occurs in the Notification Server computer log after software inventory is collected on UNIX Linux and
47. able to gather the information about the version of this product After you run the NS Nightly schedule task the Yahoo Messenger is displayed on the Software Catalog page under Newly Discovered Software instead of under Unmanaged Software File scan unable to gather the data if the file type is written in capital letters When you configure the advanced options for the Inventory policy and include a file scanning rule for a file type that is not in a default list the files are not scanned if the file type is written in capital letters Data class information is missing because Microsoft IIS version 8 0 drops some registry key When you view the data class information in the Resource Manager on the IIS Settings page the values for some fields are not populated This happens because Microsoft IIS version 8 0 drops some registry keys and Inventory Solution cannot report inventory for these fields Table 3 4 A huge number of events is logged into the SMA log during software scan on Windows 8 computers Inventory Solution Known issues Other known issues for Windows platforms continued When you run a software scan on a Windows 8 computer with trace level logging enabled numerous events are logged into the Symantec Management Agent SMA log As a result the SMA log folder size can exceed 1GB To avoid this issue disable trace level logging before you run the software scan Table 3 5 Trash direct
48. age To install Workflow Server you must download and execute the Workflow installer and then register the server with Enterprise Management Table 12 4 Things to know continued Workflow Solution 109 Other things to know The Process Manager session ID is now read directly from the Process Manager authentication cookie For security reasons the Process Manager session ID is now read from the authentication cookie instead of the EnsembleSessionID query string value For this scenario both the Process Manager and any application that uses the Process Manager login component must have the same computer key For more information on configuring the computer key using the IIS Manager for the Process Manager and any other application see the following Microsoft TechNet article http technet microsoft com en us library cc7 72287 v ws 10 aspx FileBrowserWebpart The FileBrowser Web Part has been deprecated and is no longer available from the following navigation path Process Manager gt Admin gt Portal gt Webparts Catalog gt Ul N A Non native PDF components have been removed The non native PDF components are removed from Workflow Solution 7 5 because the two separate third party libraries that are used by the components are deprecated In Workflow Solution 7 5 only native PDF components are available N A MySQL driver has been removed The MySQL driver is removed f
49. all or upgrade With IT Analytics 7 5 your saved cube views are retained so that you do not need to recreate them again post reinstall or upgrade For more information see the Adding a Custom Data Class to IT Analytics Cubes article on Symantec Connect Other things to know The following are the things to know about this release If additional information about an issue is available the issue has a corresponding article link 50 ITAnalytics 51 Other things to know Table 5 3 Other things to know Duplication of data in Client If you use IT Analytics to process data from a parent CMDB and child HOWTO60946 Server Management Pack CMDB you need to configure Cube Inclusions cubes Chapter pcAnywhere Solution 12 6 7 This chapter includes the following topics a What s new in this release a General installation and upgrade information Known issues a Fixed issues What s new in this release In IT Management Suite 7 5 pcAnywhere Solution 12 6 7 and pcAnywhere Solution 12 6 7 HF1 are included For What s new in pcAnywhere Solution 12 6 7 see the pcAnywhere Solution 12 6 7 release notes at the following link http www symantec com docs DOC5350 Table 6 1 List of new features pcAnywhere Plug in for Installs pcAnywhere Solution as a host where the solution is installed without the Windows Install Host Only pcAnywhere Quick Connect option on the computer Note The new f
50. and only process the parent CMDB for the Asset specific cubes In addition you can configure the child CMDBs to only be in scope for the inventory based cubes Computers Patch Mobile Management cubes and reports Two new cubes were added to the ITA Client Server Management Content Pack iOS Devices and Mobile Devices Each cube provides detailed information specific to the inventory that each device type collects A dashboard specific to each cube has also been provided along with reports to show more detailed information The Mobile Devices cube includes iOS Devices but the information that is contained with this cube is generic data that exists for all mobile devices The iOS Devices cube however contains information specific to the data that would only be collected from iOS Devices Data Class to Dimension Utility you can add a custom data class to a cube without having to understand the underlying details of performing this customization Patch Management The following enhancements are added to Patch Management Support for Cloud enabled Management Support for Agent Registration New Patch Workflow pcAnywhere Solution Note The new features require pcAnywhere Solution 12 6 7 HF1 The following enhancements are added pcAnywhere Solution pcAnywhere Plug in for Windows Install Host Only Installs pcAnywhere Solution as a host where the solution is installed without the pcAnywhere Quick Connect option on the co
51. and the package share is created on the connected external hard disk Table 2 2 Deployment Solution 25 Known Issues Known Issues of Deployment Solution 7 5 continued The Capture Personality task fails for Windows XP Professional x86 and Windows 7 SP1 x64 managed computers when they are moved from a CEM to Non CEM environment When executing the Capture Personality task on Windows XP Professional x86 and Windows 7 SP1 x64 an error is displayed when Package Server and the client computer are moved from CEM environment to Non CEM environment For Mac computers saved data for the Network Adapter is not displayed in the Apply System Configuration task For Mac computers when you create a Apply System Configuration task if you set the DNS1 address as Leave existing and provide only DNS2 address then the DNS2 address is not saved and is not available in the Edit configuration of the Apply System Configuration task for editing For Mac computers the Apply System Configuration task is not able to restore the network details For Mac computers you cannot restore the network details such as Domain suffix using the restore functionality of the Apply System Configuration task You can modify only the host name using the Apply System Configuration task A Linux image that is created over HTTP and imported using Resource Import Tool does not display partition details in the Advanced tab of the Deploy Ima
52. as installed from a CD DVD then the original CD DVD must be inserted in the disk reader on the client computer If the product was installed from a network location then anonymous access from the client computer to this location must be available to install the update 76 Known issues N A An issue occurs when installing Sun Java updates When Java software is in use on the client computer the update cannot be installed silently A Close applications dialog box appears on the client that prevents the update process from proceeding Workaround You can add a tskill java A command into the installation script to terminate the Java processes cmd exe C start wait NET STOP JAVA QUICK STARTER tskill java A cmd exe C start wait SLSFN s IEXPLORER 1 MOZILLA 1 quiet norestart cmd exe C start wait NET START JAVA QUICK STARTER N A Sun Java gets uninstalled if Internet Explorer is open at the time of installation If an Internet Explorer window is open on an endpoint at the time of Sun Java update installation Sun Java gets completely uninstalled from the endpoint The uninstall is performed silently and the status of software update installation is Installed JAVA6 27 and JAVA6 29 are among the bulletins that are known to have this problem Workaround If possible restart the endpoint or kill Internet Explorer before installing the update N A Microsoft Office components
53. ate from 6 x and 7 0 to 7 1 SP2 but are not tables are not displayed after displayed on the SNMP data mapping tables page migration to 7 1 SP2 Inventory for Network Devices 47 Fixed issues Fixed issues The following are the fixed issues for this release Table 4 2 Fixed issues The reports in the Agentless The folder has been renamed The Network Discovery reports are now located at Inventory folder belong to Symantec Management Console gt Reports gt All reports gt Discovery and Inventory Network Discovery gt Discovery Other things to know The following are the things to know about this release Table 4 3 Other things to know Hierarchy and replication All discovered agentless inventory resources computers routers switches etc support replicate up to the parent Notification Server Predefined SNMP data mapping tables replicate down from the parent Notification Server to the child Notification Servers Possible workaround To manually replicate a custom SNMP data mapping table down from the parent Notification Server to child Notification Servers do the following a Inthe Symantec Management Console on the Settings menu click All Settings a Inthe left pane expand Notification Server gt Resource and Data Class Settings gt Data Classes gt Network Resource Data a Inthe left pane under Network Device Data right click the custom SNMP data mapping table that you want to replicate and
54. ation stops in middle Ghost tool re launches and continues to create image over UNC path While creating images using the Ghost imaging tool image creation task stops in the middle the Ghost tool launches again and the image creation again continues over the UNC path 26 Table 2 2 Deployment Solution 27 Known Issues Known Issues of Deployment Solution 7 5 continued Ghost imaging tool attempts multiple times to create image on web server even when the server is unavailable Even when the web server is unavailable the Ghost imaging tool attempts multiple times to create an image on the web server from the client computer Restore Backup Image task fails if image is stored in non default path The Restore Backup Image task fails if the image package is stored in the non default location of the computer The deployment related tasks fail when Notification Server is changed from HTTP to HTTPS The deployment related tasks fail when Notification Server is changed from HTTP to HTTPS A predefined computer with a space in the UUID hardware identifier boots as an unknown computer If the UUID hardware identifier of a predefined computer has a space separator then it boots as an unknown computer after you add the computer into the network The Apply System Configuration task fails to change the host name for the SUSE Linux Enterprise SP1 client computers You cannot change the host name for
55. ation Server before it can be managed Legacy Agent Communication LAC mode The Legacy Agent Communication LAC mode lets you control whether the computers that use older versions of Symantec Management Agent can communicate with the upgraded Notification Server 7 5 This option lets you upgrade the agents in your environment in phases and still maintain management capabilities for the legacy agents Expanded list of supported platforms The following operating system is now supported for the installation of Symantec Management Platform and its components a Windows Server 2008 R2 SP1 64 bit The following versions of Microsoft SQL Server are now supported for the Configuration Management Database CMDB a Microsoft SQL Server 2008 R2 SP1 a Microsoft SQL Server 2008 R2 SP2 a Microsoft SQL Server 2008 SP3 a Microsoft SQL Server 2012 a Microsoft SQL Server 2012 SP1 The following operating systems are now supported or have improved support for the installation of the Symantec Management Agent a Windows 7 SP1 a Windows 8 a Windows Server 2008 R2 SP1 a Windows Server 2012 a Red Hat Enterprise Linux 5 7 5 8 5 9 6 2 6 3 and 6 4 a Novell SUSE Linux 11 SP2 a MacOS X 10 8 a IBMAIX 7 1 14 Client Management Suite 15 What s new in this release Table 1 2 List of general enhancements continued The following enhancements are added to the Mac management functionality of IT Management Suite
56. cability check evaluates work properly when Neutral as Not Detected and the software is not installed language is selected Software Components do not Replication of software components does not work from a parent or N A replicate using Replicate Now child Notification Server when you use Replicate Now in the following situations a Inthe Software view when you use the right click menu Hierarchy gt Replicate Now on either Software Releases or Software Updates a Inthe Manage menu select All Resources and right click ona software component From the right click menu select Hierarchy gt Replicate Now Table 11 8 Software Management Solution 99 Known issues Software Management Framework issues continued An incorrect version is When you run Collect Full Inventory on a client computer with N A reported for Microsoft Internet Microsoft Internet Explorer 8 installed the version is incorrectly displayed Explorer 8 in the inventory report If an externally initiated restart If an externally initiated restart is performed during Managed Software N A is performed during Managed Delivery then the software that is installed after the restart fails The Software Delivery then the reason the installation fails is that the software starts to install while a software that is installed after user logoff is still pending the restart fails Software resource Consider a software applicatio
57. cation Server web applications had the view state MAC disabled Notification Server web applications had the view state MAC disabled and was a security threat This issue has been fixed Endpoint Protection Integration failed to uninstall ESET NOD32 Ver4 0 after installing SEP Client on the client computer The Endpoint Protection Integration failed to uninstall ESET NOD32 Ver4 0 after installing SEP Client on the client computer This issue has been fixed The SEPIC 7 1 1037 RTCI security privileges were changed during SEPIC configuration The SEPIC 7 1 1037 RTCI security privileges were changed during SEPIC configuration This issue has been fixed The System Jobs and Task contents did not display the description about Symantec Endpoint Protection Management The System Jobs and Task contents did not display description about Symantec Endpoint Protection Management This issue has been fixed The Endpoint Protection Integration task issue on delivery of the SEP 12 1 package to the client computers The Endpoint Protection Client Integration Migration task failed to delivery of SEP 12 1 package on the client computers which had ESET NOD 32 antivirus installed This issue has been fixed Symantec Endpoint Protection Integration Component 115 Other things to know Table 13 2 Fixed Issues continued Installation of SEP 12 RU1 failed on client computers installed with SOPHOS
58. cee esis send ectnsenie cates men hteemn ante seaphenieenssateeamniees 43 Chapter 4 Inventory for Network Devices ascese 46 KNOWN ISSUS accessos rinapi ieni iae oi senna 46 Fixed ISSUES oirrne enra E Ree eee 47 Other things to KOW sonisissiii innin salandan a ae eiaa na 47 Chapter 5 Pe Scot Roe octane eee ae ee ead 49 SYSTEM MEQUIFEMOMS oi tecc vee cacetenbethtcstscsaesribsiees EEE oE aiara 49 KNOWN ISSUES ennaa E E EE E ERa 49 Fixed ISSUES aisina eane oara oa aaa eE O n RE 50 Other things to KNOW 20 0 2 c cceedeeeebeeeeeecee seed conten seeereeeedeeebeesonseeenee 50 Chapter 6 Chapter 7 Chapter 8 Chapter 9 Chapter 10 Chapter 11 Chapter 12 Contents pcAnywhere Solution 12 6 7 oo ccccccccccceeeeceeeeeteseeteeees 52 What s new in this release ccc cece cece cece cece tees ee eeatecenatesenaeeeenaes 52 General installation and upgrade information ccceeeeeeeeeeeeeeee tees 53 KNOWN ISSUCS cet cscaghococonsuntcoaetteated kecwakoag tines ob teed E EN A A 53 FIXECNISSUGS EE E AN ae oleae he ata ed oe es oles cee tyne 54 Patch Management Solution for Linux 00 00 ce 57 What s new in this release c cc ccce cece cece ee ceeeeeeeeeasesenatesenaeneenaes 57 KMOWMMISSUCS rosy Scag E AEAEE E A A E T E A A E 57 DE M E T EEN PE EE E OTE A E ET 62 Other things to KNOW cccececeeeee ee ee ee ee ee ee ee ee ee ee ee ee ee eeeeeeeeaeaeaeaea 64 Patch Management Solution for Mac
59. ces a IT Management Suite Migration Guide version 6 x to 7 5 at the following URL http Awww symantec com docs DOC5668 a T Management Suite Migration Guide version 7 0 to 7 5 at the following URL http Awww symantec com docs DOC5669 Chapter Deployment Solution This chapter includes the following topics a What s new in this release a Known Issues a Other things to know What s new in this release In the Deployment Solution 7 5 the following new features are introduced Table 2 1 List of new features in Deployment Solution 7 5 Support for Mac 10 6 10 7 Deployment Solution supports the following for the Mac OS computers and 10 8 versions of a Imaging of Mac computers operating system a Installing Mac OS on computers a Providing option to customize the background image of Mac computers when in the automation environment mode a Providing option to install the Mac plug ins and the automation folders from the Actions gt Deployment menu of the console Class 2 type of UEFI EFI Deployment Solution supports the following for the Windows UEFI EFI client computers computers that are installed with Windows operating system Booting the UEFI EFI computers in the preboot environment using the WinPE 4 0 preboot package a Imaging the computers using the Ghost imaging tool a Installing the Windows OS on the UEFI EFI computers using the Install Windows OS task of Deployment Solution a Installing the automation
60. client The Compliance Summary report displays the summary for the total N A computers are displayed in number of Notification Server client computers including the the Compliance Summary out of scope client computers teport The drill down report displays detailed information for the computers from the trusted scope only Moving or deleting a folder or If after you generate Patch data at least 10000 packages you move N A a file takes too much time or delete a folder or a file it takes about 3 minutes until the action is completed This problem is connected with the performance of Windows Shell if you enter the Alternative When on the Import Patch Data for Windows page under Package N A Location path in the wrong format the new location will still be saved successfully but the import will fail Location you select Alternative Location you need to enter it in the following format as follows lt alternative location gt pmimport cab Otherwise if you enter the path in the wrong format the new location will still be saved successfully but the import will fail Table 9 5 Patch Management Solution for Windows Other known issues continued 80 Fixed issues After the disaster recovery After you have performed the disaster recovery you need to rerun the N A you need to rerun the Patch Patch Management import Management import Patch Management Solution Patch Management Sol
61. ct to Intel AMT 5 0 using secure WS MAN N A Intel AMT 5 0 using secure connection To solve this limitation you need to upgrade the Intel AMT WS MAN connection 5 0 firmware to the latest Intel AMT 5 2 Unable to connect to Intel Secure connection using the WSMAN protocol to an Intel DASH N A DASH computer configured computer that is configured in Mutual authentication mode is not in mutual authentication supported mode IDE redirection does not work When you are connected to a client using the Kerberos user starting N A with Kerberos user IDE redirection session can fail Firewall settings prevent WMI If you provided valid WMI credentials but cannot establish a WMI N A connection to a computer running Windows XP Service Pack 2 connection to a computer that is running Windows XP Service Pack 2 WMI is not in the list of supported protocols on the Real Time Consoles page check the firewall settings on the target computer The default configuration of the Windows Firewall program in Windows XP SP2 blocks incoming network traffic on Transmission Control Protocol TCP port 445 Configure the firewall to allow incoming network traffic on TCP port 445 For possible resolution methods see the topics on troubleshooting in the Real Time System Management User Guide 87 Table 10 3 Firewall settings prevent remote connection to Windows Vista or Windows 7 client computer Real Time System Management Oth
62. cumentation Also you should be at the computer on which the problem occurred in case it is necessary to replicate the problem When you contact Technical Support please have the following information available Product release level a Hardware information Available memory disk space and NIC information Operating system Version and patch level Network topology Router gateway and IP address information Problem description a Error messages and log files a Troubleshooting that was performed before contacting Symantec a Recent software configuration changes and network changes Licensing and registration If your Symantec product requires registration or a license key access our technical support Web page at the following URL www symantec com business support Customer service Customer service information is available at the following URL www symantec com business support Customer Service is available to assist with non technical questions such as the following types of issues Questions regarding product licensing or serialization Product registration updates such as address or name changes General product information features language availability local dealers Latest information about product updates and upgrades Information about upgrade assurance and support contracts Information about the Symantec Buying Programs Advice about Symantec s technical support options Nontechnical presales qu
63. d are displayed after a managed computer boots in the automation environment The boot image customization feature provides customization of the background screen that is displayed in the preboot environment The provision to lock or unlock the preboot screen is also provided Known Issues The following are the known issues for this release Table 2 2 Known Issues of Deployment Solution 7 5 For Linux computers the Boot To task when executed displayed incorrect status For Linux client computers that are in the production environment the Boot To task status displays as Failed even after the task completes successfully Multiple NIC entries cannot be added for a predefined computer You cannot specify multiple NIC entries when adding a predefined computer through the Predefined Computers dialog box of the console The workaround to this issue is that you can add one NIC as DHCP and the other NICs as static In the Deploy Image task the UNC path is displayed for the images that are created using the HTTP or HTTPS path The Deploy Image task displays a UNC path for the images that are created using the HTTP path or the HTTPS path An external hard disk that is connected to the package server computer is considered as a fixed drive and the package share is created on the connected external hard disk An external hard disk that is connected to the package server computer is considered as a fixed drive
64. d be selected while executing Remote SERT Boot Task and Power Sensitive Malware Scanning Job When you create a Remote SERT Boot Task instance or Power Sensitive Malware Scanning Job instance you should select the Default connection profile which has been configured for use on vPro computers Note For the Power Sensitive Malware Scanning Job AMT credentials for all selected vPro computers must be the same Viewing the summary of unmanaged managed unprotected and managed protected computers The information pertaining to view the unmanaged managed unprotected and managed protected computers report was not incorporated in the User Guide Do the following to view the summary of unmanaged managed unprotected and managed protected computers 1 Inthe Symantec Management Console on the Reports menu click All Reports 2 Inthe left pane click Reports gt Symantec Endpoint Protection Management gt Details of unmanaged managed unprotected and managed protected computers The timeouts that are defined for each task in the Power Sensitive Malware are as follows Table 13 5 Wake on LAN Power On vPro Technology Wake on LAN option or Intel vPro option 60 mins Approximately 1 hr 116 Table 13 5 Update Antivirus Definition Symantec Endpoint Protection Integration Component Other things to know 30 mins Technology Wake on LAN option or Intel vPro option continued Quick Scan Full sca
65. ded predefined computer can be edited using the Edit option of the dialog box Support for Red Hat Enterprise Linux Deployment Solution now supports execution of deployment tasks on client computers of RHEL 6 0 and RHEL 6 1 operating systems Except for the SOI task all other tasks can be executed on the RHEL 6 2 and RHEL 6 3 computers For more information refer to the Symantec Management Platform and Altiris Solutions Support Matrix at http Awww symantec com docs HOWTO9965 Support for SUSE Linux ES 11 SP1 Deployment Solution now supports execution of deployment tasks on client computers of SLES 11 SP1 operating system Support for ESX 4 0 4 1 and ESXi 4 1 5 1 Deployment Solution now supports installation of ESX 4 0 ESX 4 1 and ESXi 4 1 and ESXi 5 1 operating systems on the client computers using the Install Linux ESX OS task Support for Windows 8 and Windows Server 2012 computers Deployment Solution now supports Windows 8 and Windows Server 2012 computers 23 Table 2 1 Deployment Solution 24 Known Issues List of new features in Deployment Solution 7 5 continued Manual job selection for managed computers in automation environment and boot image customization Deployment Solution provides a new feature to manually select predefined jobs in the automation environment for a re deployed managed computer The predefined set of jobs are configured for the Initial Deployment job an
66. der the user name folder Workaround To fix the issue in the file location path use the Yuseprofile environment variable which points to the same folder N A Registry Key File Path to File Version rule does not support environment variables When running a Managed Software Delivery policy under Currently logged in user the Registry Key File Path to File Version detection check fails to detect a file if the path is specified using environment variables N A Table 11 3 Client computer restarts on completing the software installation may confuse the computer users in case of different settings specified by multiple users Software Management Solution Managed software delivery issues continued If multiple users log in locally or remotely to the client computer on which a software resource is installed by a Managed Software Delivery Policy and specify different settings when prompted to restart the computer after the software installation is complete the following situations may occur If a client computer user snoozes the computer restart after a software resource is installed by a Managed Software Delivery policy computer can only restart when this user is logged in again If another user logs in to the same client computer and selects to restart the computer after the installation is complete the computer does not restart If a user has accepted computer restart but it was snoozed by an
67. e inventory and is not associated with an executable file To enable a non MSI based software component for metering you should manually add executable files to the software component For more information see the topics about association of new program files to metered software components in the Inventory Solution 7 5 User Guide A license is not reclaimed when the Asset Status is set to a custom asset status A license is not reclaimed when the Asset Status is set to a custom asset status Inventory Solution license should be reclaimed on setting the Asset Status to other than Active If you create several rules for the same type of files the delta inventory information will not be sent for those files When you create an Inventory policy to gather the information about file properties and in the Advanced Options dialog box create several rules for the same file type the Send inventory changes deltas only will not work for that type of files Full information will be sent to the Notification Server computer after each inventory scan Table 3 4 Other known issues for Windows platforms After the NS Nightly schedule task runs the Yahoo Messenger is displayed in the Software Catalog under Newly Discovered Software instead of under Unmanaged Software After you gather inventory the data about Yahoo Messenger is not displayed in the Software Catalog This happens because Software Management Framework is un
68. eatures require pcAnywhere Solution 12 6 7 HF1 pcAnywhere Solution 12 6 7 53 General installation and upgrade information Table 6 1 List of new features continued pcAnywhere Plug in for Upgrades pcAnywhere Solution to the latest host only version The host only version Windows Upgrade Host of pcAnywhere Solution does not have the pcAnywhere Quick Connect option installed Only on the computer Note The new features require pcAnywhere Solution 12 6 7 HF1 Host Only parameter in the Displays whether pcAnywhere Solution is available as host only that is without the pcAnywhere Hosts by pcAnywhere Quick Connect option on the host computer Version report Note The new features require pcAnywhere Solution 12 6 7 HF1 General installation and upgrade information To install Symantec pcAnywhere 12 6 7 Hot Fix HF1 through Symantec Installation Manager see the following article http www symantec com docs TECH206021 Known issues The following are known issues for this release If additional information about an issue is available the issue has a corresponding article link For the known issues in pcAnywhere Solution 12 6 7 see the pcAnywhere Solution 12 6 7 release notes at the following link http www symantec com docs DOC5350 Table 6 2 pcAnywhere Solution 12 6 7 Known issues in pcAnywhere Solution 54 Fixed issues Inventory filters do not display the managed computers withou
69. ect or clear the Show Search check box to show or hide the Search Service Item option For more information about additional fixed issues in Workflow Solution 7 5 see the following URL http www symantec com docs DOC6715 Other things to know The following are the things to know about this release If additional information about an item or feature is available a corresponding article link is provided Table 12 4 Things to know Improved security controls on Symantec has improved security controls on the DOC6160 the Workflow Server Workflow Server The improved security can potentially block the ability to deploy from a local Workflow Designer to a remote Workflow Server If you cannot deploy to a remote Workflow Server change the following setting on the remote Workflow Server before attempting to deploy To allow remote connections a Onthe Workflow Server right click on the Task Tray Tool and click Settings a Inthe Workflow Server section next to Workflow Server Configuration click the ellipsis a Inthe General section check Allow Remote Connections Please note that the Symantec security best practice is to revert this setting after you are finished deploying For more information on Symantec security best practices see the article ServiceDesk Workflow General Security Best Practices Cloud enabled Management Workflow does not support Cloud enabled Management N A Table 12 4 Things to kno
70. ection and if you are not able to connect to the client computer This issue indicates that the client computer is in booting state Table 13 4 Remote SERT Boot Task IDER is performed only on one computer at a time Symantec Endpoint Protection Integration Component Other things to know Things to know continued The Remote SERT Boot Task is performed only on one computer at a time If you select multiple computers the redirection operation is performed on all the computers although you can take remote control of only one computer at a time The Stop Redirection operation is performed on all the selected vPro computers Power Sensitive Malware Scanning Power On task fails on Wake on LAN enabled computers Since the Power On task is designed for vPro computers the task is expected to fail on non vPro Wake on LAN enabled computers The job continues to the next Wake on LAN task which turns on non vPro computers The Wake on LAN task succeeds on vPro computers Default connection profile should be configured before you execute Remote SERT Boot Task and Power Sensitive Malware Scanning Job Before executing Remote SERT Boot Task and Power Sensitive Malware Scanning Job you must configure the Default connection profile pertaining to the vPro computer s credentials AMT protocol in Edit Default connection profile Window so that the tasks execute successfully on vPro clients Default connection profile shoul
71. ed Software Delivery policy is created for a software which has a dependency on another software using Managed Software Delivery wizard where on the Specify dependencies and updates page the Verify dependencies option is checked and the software resource option is unchecked for the corresponding software the dependent software is not installed even if the dependency option is later checked in the policy settings Workaround To fix the issue remove the software resource from the Managed Software Delivery policy and add it again N A Managed Software Delivery policies and Quick Delivery tasks fail to run from a directory on the Notification Server computer Managed Software Delivery policy or a Quick Delivery task fail with a 1619 error code if the following conditions are met There are no package servers in an environment A software resource is imported from a Notification Server a The Use the following settings to download and run option is checked a The Download and run locally if bandwidth is above is unchecked a The Run from server if bandwidth is above any connection speed is checked a The Current logged in user option is checked on the Run Options settings N A File Version detection check does not support the user name environment variable When running a Managed Software Delivery policy under Currently logged in user the file version detection check fails to detect a file which is located un
72. er inventory some software components may not be displayed in the Software Catalog After you run the NS Nightly schedule to associate Software component to software product task these components are displayed on the Software Catalog page under Newly Discovered Software Hidden software components are displayed in the Catalog after upgrade When you upgrade from SMP 7 1 SP 1 to SMP 7 5 and gather inventory the software components that should be hidden are displayed in the software products lists on the Software page and Software Catalog dialog box After you run the NS Nightly schedule to associate Software component to software product task the hidden components will disappear from all software lists During the upgrade Symantec Management Agent stops working on Windows 2008 R2 SP1 client computers When you upgrade the Symantec Management Agent from 7 0 or 7 1 to 7 5 it stops working on the Windows 2008 R2 SP1 client computers On client computers with other operating systems the Agent is upgraded successfully After you manually start the Symantec Management Agent on the client computer it continues to function normally Inventory Solution 33 Known issues Table 3 1 Installation and upgrade issues continued During the Inventory Solution Plug in upgrade the Symantec Management Agent service can sometimes crash on the client computers After you upgrade or migrate to 7 5 during the Inventory So
73. er known issues continued When using Real Time System Manager to remotely connect to Windows Vista or Windows 7 client computers you must make sure that Windows Firewall is configured to allow remote Windows Management Instrumentation WMI connections on the client computer To enable WMI connections on Windows Vista in the Control Panel click Windows Firewall gt Change Settings gt Exceptions and then check Windows Management Instrumentation WMI Additionally for standalone Windows Vista and Windows 7 clients not in a domain you must disable the User Account Control UAC To do this for Windows Vista in the Control Panel click User Accounts gt Turn User account control on or off and then uncheck Use User Account Control UAC to help protect your computer Optionally you can disable the UAC for the built in administrator account if you want to use this account for remote connection To do this in the Control Panel gt Administrative Tools gt Local Security Policy MMC snap in click Local Policies gt Security Options and disable the User Account Control Admin Approval mode for Built in Administrator account policy For more information see the topics on troubleshooting in the Real Time System Management User Guide Known issues N A Connection capabilities limited when connecting to computers that have multiple network cards Real Time System Manager s connection to client computers that have more t
74. es in the AddRemoveProgram data class are visible in the Resource Manager even after running the Collect full inventory task on this client computer Workaround To fix the issue run the Collect full inventory task on this client computer once again 100 Table 11 8 Software Management Solution 101 Fixed issues Software Management Framework issues continued Importing packages if When importing software packages using Import Software wizard N A package files contain package files can be read by an unauthorized party during data transfer sensitive information in from package store to the Notification Server computer If package files unencrypted form may lead contain sensitive information such as passwords inside scripts in to a possibility of information unencrypted form then such software import can be a subject to disclosure threat information disclosure threat Users with enabled required Level 1 Worker with enabled required privileges and permissions cannot TECH195077 privileges and permissions create a Quick Software Delivery task and a Managed Software Delivery cannot create delivery tasks Policy An error appears when trying An error appears when trying to install Wise Toolkit on a server with TECH210284 to install Wise Toolkit installed Software Management Solution 7 5 as a result of the end of life of Wise Package Studio Migrated software After upgrading to Software Management Solut
75. es not replicate to the child Notification Server computers immediately to the child Notification Server computers immediately Software update status does Sometimes the software update status does not get updated on the N A not get updated on the Software Updates tab Software Updates tab of the Symantec Management Agent Patch Management Solution for Windows 81 Other things to know Other things to know The following are the things to know about this release If additional information about an issue is available the issue has a corresponding article link Table 9 7 Other things to know You can use the First Time Setup portal to configure Patch Management Solution for the first time If you want you can use the wizard on the Home gt Notification Server Management gt First Time Setup page to configure Patch Management Solution for the first use Perform the following steps in order 1 Onthe portal page under Step 5 Schedule Patch Management click Schedule Patch 2 Inthe wizard configure the schedules for the patch metadata import tasks If you want to enable more than one task make sure the schedules are staggered to prevent the server from overloading When you turn on the Linux tasks you must type the Novell Mirror Credentials and the Red Hat Network access credentials By default all vendors and all channels are enabled You can customize the settings later on the appropriate Import
76. established with Intel AMT 2 5 devices Function keys do not work in the SOL session If some of the F1 F10 keys do not work in the SOL session use the lt Esc gt 1 lt Esc gt 0 key sequence to emulate the function keys This problem only occurs with certain BIOS firmware 85 Table 10 1 Real Time System Management 86 Known issues SOL IDE R issues continued SOL IDE R session terminates after 1 minute when it is run by wireless interface On some hardware HP Fujitsu the SOL IDE R session initiated by wireless connection terminates after 1 minute This is a hardware limitation To work around this issue do the following 1 Inthe Notification Server computer s registry set the following DWORD value to de HKEY_LOCAL_MACHINE SOFTWARE Altiris eXpress Notification Server Productinstallation 13987439 8929 48d2 aa30 ef4bf0eb26a6 InstantAMT Ping 2 Restart the IIS One to many server IDE R task fails if the IDE R session is left active from the one to one real time task and vice versa You must wait until the previous session is expired or terminate the session manually Boot redirection options not available for DASH computers Real Time View gt Administrative Tasks gt Hardware management gt Redirection options are not available when connected to a DASH computer This issue is firmware dependent Upgrading DASH firmware can solve the problem Table 10 2 RTCI issues
77. estions Issues that are related to CD ROMs DVDs or manuals Support agreement resources If you want to contact Symantec regarding an existing support agreement please contact the support agreement administration team for your region as follows Asia Pacific and Japan customercare_apac symantec com Europe Middle East and Africa semea symantec com North America and Latin America supportsolutions symantec com Contents Technical Support toacistnacnare nid acdentace Pace saceseaenane cade oanadnatcaa land cnacoteaicaatand banainceaes 4 Chapter 1 Client Management Suite a nn 10 About Client Management Suite 0 cece eee ee teeta een ee ee eeneees 10 What has changed in the release notes cececeeeeeeeeeeeeeeeeeeees 11 Components of Client Management Suite 7 5 0 0 cece eee eee eee es 11 What s new in this release cic ceccseeneu eed dechenadaivssnascuneddenowtenegeemeneds 12 System requirements and supported platforms 19 General installation and upgrade information cceeceeeeeeeeeeeee ee es 19 Chapter 2 Deployment Solution o ae 22 What s new in this release chsiccicscgses enseteesnndecte nahosneeosedetecenecnwnoneds 22 KNOWN SSUES iia aa a ieena aE Epaia 24 Other things tO KNOW cssocceessesdseeescnssew nsec deterrence nerapna 30 Chapter 3 nventory Solution ossessi 31 KOWD ISSUES siie de anaie o Ee api 31 Fixed ISSUES ina ern a an E aa DEE EE ee ines 42 Other things to KNOW ssccs
78. etering Agent Package a Double click the AMAgentSetup or in the command prompt run the following command msiexec i lt path of msi gt skipaim 1 After you upgrade Application Metering Plug in to 7 5 the Symantec Management Agent starts working properly Table 3 2 Inventory Solution 34 Known issues Hierarchy and replication issues Replicated custom data class is editable on a child Notification Server computer When you create a custom data class and then replicate the data class from the parent Notification Server computer to its child the custom data class is editable on the child Notification Server computer A custom data class that is defined on the parent Notification Server computer should never be editable on a child Notification Server computer Different region time format settings on parent and child servers lead to incorrect Days Metered data display If the parent Notification Server and child Notification Server have different region time format settings the Days Metered count on the Underutilized Software report page will display incorrect value When you replicate a task from parent to child NS the task advance options can be edited When you replicate an inventory task from a parent Notification Server to a child Notification Server in a hierarchy you can edit the advanced options of the replicated task on the child NS computer After you edit the advanced options of the replica
79. from the parent to the child under these circumstances the affected software resource on the child shows an incorrect association Instead of showing one association from the parent Notification Server the affected software resource shows two associations one from the parent and one from the child Workaround Perform a second replication from parent to child After this second replication the affected software resource shows the correct association The Software Data Provider When you add or run data providers and then try to view the status of N A Status report does not show the data providers using the Software Data Provider Status report results the report does not show results A Managed Software Delivery The Log off user option in the Managed Software Delivery policy N A policy only logs off a single logs off only a single session rather than all sessions when multiple user session when there are sessions are active poe een a iiai For more information see topics on Results based actions settings in aria sede hl Software Management Solution in the T Management Suite asia Administration Guide at the following URL http Awww symantec com docs DOC5330 Workaround Use the Log off option available with the Restart Computer task to successfully log off every session The Windows Language The applicability check status should evaluate as Detected and the N A applicability rule does not software installs successfully Instead the appli
80. g The Software Management Framework can create default command lines for Mac packages embedded inside of archive files This addition means that the Desktop administrator can add Mac packages to the Software Catalog Once the Mac packages are added to the Software Catalog the administrator can manage it by using the functionality available in the Software Catalog For example the desktop administrator may like to use the Command Line Builder functionality that is part of the Software Catalog for Mac packages Enhanced software management in Software Catalog The Software Management Framework provides software categorization by the operating system and software platform This enhancement simplifies software management for administrators especially in heterogeneous environments The new options are available on the Software resource page Association tab in the Association Type drop down menu as Applies to Operating System and Applies to Software Platform Support for the latest SWV Agent Software Management Solution supports the latest version of the SWV Agent 7 5 522 The Wise Toolkit and the Wise Connector removal The Wise Toolkit and the Wise Connector components of the Software Management Solution are being deprecated in this release as a result of the end of life of Wise Package Studio Customers who require the Wise Toolkit should contact Technical Support Known issu Software Management Solution
81. ge task dialog box For Linux client computers the partition information is not displayed in the Advanced tab of the Deploy Image task for an image that is created over HTTP and is imported using the Resource Import Tool The Create Image task fails when the default drive on package server is full The Create Image task fails to create new images when the default drive on the package server is full The workaround for the issue is as follows In the Symantec Management Console create a Copy File task that replicates a package that is created on Notification Server to the package server This replication of the package creates a new net share on the package server if an additional drive is available on package server Table 2 2 Undefined error occurs on SMP and Personality Capture task fails if client computer moves to non CEM mode Deployment Solution Known Issues Known Issues of Deployment Solution 7 5 continued An undefined error occurs on the SMP and the Personality Capture task fails if CEM policy is enabled After the CEM policy is enabled the package servers that are in the non CEM environment are also CEM enabled and the client computer of the non CEM environment fails to communicate with the package servers The workaround to this issue is as follows a Go to Settings gt Notification Server gt Cloud enabled Management a Expand Policy gt Cloud enabled Management Settings a Select the Applied To fi
82. ges are not migrated You must copy the packages manually or use a network location to store the packages N A The Alternative Location settings and credentials are not migrated from 7 1 SP2 When you upgrade from 7 1 SP2 to 7 5 and run the Import Patch Data for Windows task the Alternative Location settings and credentials are not migrated N A Windows Computers with Software Update Plug in counter does not show the count of the agents with non upgraded plug ins When you upgrade to 7 5 the Windows Computers with Software Update Plug in counter in the Patch Configuration Summary Web Part does not show the count of the agents with non upgraded plug ins To obtain the correct data you need to upgrade the Software Upgrade plug in to the 7 5 version N A The Delete packages after value that is not available in the drop down list in 7 5 will be set to Never delete after you migrate If before you migrate from 6 x to 7 5 on the Windows Patch Remediation Settings page you set Delete packages after to a value that is not available in the similar drop down list in 7 5 the value will be set to Never delete after you migrate However the distributed updates will still use the custom value that you set N A The Software Update Plug in cannot be uninstalled unless it is upgraded to 7 5 You cannot uninstall the Software Update Plug in with the Software Update Plug in Uninstall policy unless you upgrade Syman
83. guration of Intel Active Management Technology AMT Though the OOB Management Component is no longer bundled existing Real Time System Manager features continue to function on supported Intel AMT computers When you perform an upgrade from earlier versions of IT Management Suite the Out of Band Remover utility removes the Out of Band Management Component items from Notification Server and site servers The Intel Setup and Configuration Software SCS database commonly referred to as the IntelAMT database remains intact The Out of Band Remover utility does not affect the Intel AMT firmware configuration settings on the client computers If you have already installed a standalone Intel SCS server it is not affected by the O0OBRemover utility For more information on how to discover out of band capable computers along with guidance migrating your current IntelAMT database to the latest version of Intel SCS see http www symantec com docs DOC6628 UNIX Linux Mac agent Client Management Suite 16 What s new in this release Table 1 2 List of general enhancements continued The new features are as follows Package file import now supports PKG MPKG and APP file types During the import of these packages the install interactive install and uninstall command lines are automatically generated for a software resource and also the detection rules are added However note that you can only import PKG MPKG and APP files if t
84. h tne en th a a th Nome Aue Race aeons 111 System requireMentS 02 25ccdesesbscsbensoieiwns cob evee naia iiaae ests 111 KNOWM ISSUGS Lsien in vee ede dg elute E eds ead ydenesteivceeds 112 FIXGdiISSUCS erioa err poa atap buna age sean lieth wnate fextareenyehater ae 113 Other things to know 9 Chapter Client Management Suite This chapter includes the following topics a About Client Management Suite a What has changed in the release notes a Components of Client Management Suite 7 5 a What s new in this release a System requirements and supported platforms a General installation and upgrade information About Client Management Suite Client Management Suite combines the necessary tools that help you deploy manage secure and troubleshoot your desktop computers and laptop computers throughout their entire lifecycle The solutions that are part of the Client Management Suite help you discover the resources in your network and let you check their state The reporting tools help you identify problems and take immediate action to fix them Client Management Suite lets you automate time consuming and redundant tasks to reduce the effort of managing your client systems Client Management Suite is a collection of solutions that run on the Symantec Management Platform The platform and solutions of the Client Management Suite provide the following key features a Discovery and inventory The suite lets you gather comprehe
85. han one NIC network interface card has been improved The following limitations still apply a The Real Time System Manager connection timeout is 10 minutes a The Symantec Management Agent must have the Configuration Management Database CMDB updated with the new IP address after the client computer connects to the network N A One to many tasks cannot manage resources by an IP address To manage a computer from the Real Time view one to one you can enter an IP address and connect to the computer One to many tasks do not work in this way To run one to many tasks the target computer s FQDN must be resolvable correctly from the Notification Server computer N A Cannot power off Intel ASF hardware from S3 state Some Intel ASF hardware does not support power off from the S3 state You can try to turn on the computer and then run the turn off command again Broadcom ASF does not have this problem N A 88 Table 10 3 Real Time System Management Other known issues continued 89 Known issues PXE Boot does not work with When in the Real Time view you select the Reboot command and N A some ASF hardware choose to boot from PXE some ASF hardware fails to boot from PXE This is a hardware limitation HP with Broadcom ASF DELL Precision T3400 and a few other computers are known to have this problem You can try to turn off the computer and then turn on and boot from PXE Ma
86. he filter description Windows Computers without Application Metering Plug in All Windows client computers that do not have the Application Metering Plug in installed Windows Computers Requiring Application Metering Plug in Upgrade All Windows client computers that have a version of the Application Metering Plug in that is older than the version available on the Altiris Notification Server Windows Computers with Application Metering Plug in All Windows client computers that have the Application Metering Plug in installed Chapter Inventory for Network Devices This chapter includes the following topics a Known issues a Fixed issues a Other things to know Known issues The following are the known issues for this release For the most up to date information latest workarounds and other technical support information about this solution see the Technical Support knowledge base Table 4 1 Known issues Separate licenses for Inventory for Network Devices should share licenses with Inventory Solution Currently Inventory for Network Devices the licenses for these two products are separately listed in the Symantec Management are displayed in the Console Symantec Management c i However the licenses are shared and Inventory Solution license is consumed for onsole every device that is inventoried by Inventory for Network Devices Custom SNMP data mapping Custom SNMP data mapping tables migr
87. hey are inside of a DMG file Detection rules for Solaris pkg HP UX depot and AIX rpm packages have been added The possibility to compose ULM specific operating system based and software based detection rules has been added Symantec Management Agent for UNIX Linux Mac supports NTLMv2 protocol Inventory Solution Table 1 3 New features of Client Management Suite solutions The following enhancements are added to Inventory Solution In the Cloud enabled Management environment you can use the following methods for gathering inventory data a Basic inventory a Standard inventory on target computers a Custom inventory a Server inventory a Application metering Inventory Solution for Network Devices is now part of Inventory Solution There is no longer a separate licence for Inventory for Network Devices When agentless inventory is used to collect information from an SNMP enabled device and the information is posted to the server then a license of Inventory Solution will be consumed by that device Client Management Suite 17 What s new in this release Table 1 3 New features of Client Management Suite solutions continued The following enhancements are added to IT Analytics IT Analytics Multi CMDB cube inclusion Lets you select which CMDBs must be processed for each cube This addresses the duplicate data problem by letting you effectively exclude the parent CMDB from all inventory specific cubes
88. ication Schedule TECH210370 Table 9 4 Software updates installation issues Installation of some updates Some updates do not support silent installation Some dialog or progress N A cannot be performed silently windows may be visible to the user of the managed computer This issue does not affect the installation and can be ignored Patch Management Solution for Windows Table 9 4 Software updates installation issues continued Installation of some software updates may fail Some updates may fail to install in certain conditions The following updates are known to have issues a Flash Player All Mozilla Firefox browser windows and all instances of Flash Player must be closed before installation Symantec recommends that you update Flash Player 7 x 8 x and 9 x to the latest version a Real Player Installation may fail if a limited user is logged in to the system a Mozilla Firefox version 1 5 2 0 and 3 0 All Mozilla Firefox browser windows must be closed before installation Opera Silent installation may fail on Windows XP a Adobe Reader version 7 and 8 All instances of Adobe Reader including those opened inside of a browser must be closed before installing updates Symantec recommends that you install Adobe Reader updates shortly after a computer restart a ISA Server 2000 Security Patch for Web Proxy Service and H 323 ASN DLL MS01 045 Installation of this hot fix requires user interaction
89. idents ServiceDesk incident or an existing ServiceDesk incident without breaking the global sessions Additionally the EnsembleMenuSelect component is not disabled across the environment Table 12 3 Workflow Solution Fixed issues in this release continued Fixed issues HTML editor is removed from The HTML editor is removed from the comment editor in the Process N A the comment editor of the View page Additionally if you enter any script tag in HTML view or Process View page Design view then the following error message is displayed A potentially dangerous Request QueryString value was detected from the client SQL SymQ had bad queries SQL SymQ had bad queries that used BINARY_CHECKSUM which N A that used resulted in the processes that had tasks belonging to other processes BINARY _ CHECKSUM The issue is resolved with creation of newly computed columns that apply SQL collation for case sensitivity Email template information The email that is sent now gets updated with the modified template N A did get updated after updating information and modified rule set information the rule sets Could not log on large The issue is resolved after the SYMQ N A number of users with longer local ensemble credentials which maintains cache information session time to the Workflow for LBME ProcessManagerSessions has the Init Procedure setting portal that is configured to DoNotLoad value by default
90. iguration a From the Windows Task Scheduler update the package server distribution points by updating the NS Package Refresh task a Check that the packages are updated on all the package servers a After you ensure that the packages are updated on the package servers Settings gt All Settings gt Deployment and Migration and enable the automation folder upgrade policy The Copy File task fails and displays an error message when you copy a file on the client computer that is booted in the automation environment The Copy File task fails when you copy a file of size that is equal to or greater than half the size of the RAM disk of the client computer that is booted in the automation environment when enough space is available on the X drive and displays the following error message Not enough space available on the destination drive Following is the workaround for the issue Use the Run Script task to map the drive on which the file is located and then use the file when the client computer is booted in the preboot environment The Erase Disk task status displays as failed in the console even when the task is executed successfully The Erase Disk task displays the status as failed even when the task is executed successfully This issue occurs when you execute the task to erase a disk of a client computer that has multiple disks and different operating systems installed on the disks 29 You cannot recreate the P
91. in using TECH192192 a different user the remote session became inactive After you connected to a pcAnywhere host from a remote computer and used the print screen option TECH180404 the drag and drop file option stopped working on the host computer On Mac OS X 10 7 or OS X 10 6 client computer every time the pcAnywhere thin host was started TECH177045 the Mac OS firewall gave a prompt to allow or reject the connection Chapter Patch Management Solution for Linux This chapter includes the following topics a What s new in this release Known issues a Fixed issues a Other things to know What s new in this release In Patch Management Solution for Linux 7 5 the following new features are introduced Table 7 1 List of new features New option Delete data for A new Delete data for excluded software channels check box was added to make Excluded software the behavior of the import tasks consistent with Windows import task channels added to Red Hat and Novell import pages Known issues The following are the known issues for this release If additional information about an issue is available the issue has a corresponding article link Patch Management Solution for Linux 58 Known issues For the most up to date information latest workarounds and other technical support information about this solution see the Technical Support knowledge base The known issues are separated into the follow
92. ing Patch data import This is working as designed Chapter Patch Management Solution for Mac This chapter includes the following topics a What s new in this release Known issues a Fixed issues a Other things to know What s new in this release In Patch Management Solution for Mac 7 5 the following new features are introduced Table 8 1 List of new features Enhance reporting for Mac In 7 5 relese the following new reports have been added OS Patehing a Mac System Assessment Scan Summary a Mac Compliance by Computer a Available Mac Software Updates for computers managed by this server a Not Installed Updates a Mac Software Update Delivery Summary a Mac Software Update Delivery Details a No Scan Data Reported Patch Management Solution for Mac 68 Known issues Known issues The following are the known issues for this release If additional information about an issue is available the issue has a corresponding article link Table 8 2 Other known issues The updates that require user Patch Management Solution for Mac does not support installing updates N A interaction cannot be that require user interaction installed Some firmware updates for The Mac Software Update Helper Tool might not detect some firmware N A Mac computers might not be displayed automatically in Patch Management Solution for Mac updates for Mac computers Therefore those updates do not appear in
93. ing groups Installation and upgrade issues See Table 7 2 on page 58 Hierarchy and replication issues See Table 7 3 on page 59 Other known issues See Table 7 4 on page 60 Table 7 2 Installation and upgrade issues Steps to do after migrating from 7 0 a Type the Novell Mirror Credentials on the Novell Patch Remediation Settings page Starting from version 7 1 Patch Management Solution for Linux uses Novell Mirror Credentials to manage SUSE Linux updates a Because of the changes in the architecture it is not possible to migrate the selected software channels from 7 0 to 7 5 After you migrate the solution from 7 0 to 7 5 import the channels list and select the channels for which you want to download updates a For Red Hat after you upgrade the product on the Import Patch Data for Red Hat page select and import the same channels as you had in the 7 0 version of the product If you do not import these channels it is not possible to distribute migrated Red Hat packages For more information see the Symantec IT Management Suite Powered by Altiris technology Migration Guide version 7 0 to 7 5 at the following URL http Awww symantec com docs DOC5669 DOC4743 Steps to do after upgrading from 7 1 and 7 1 SP1 Run the Import Patch Data for Novell and Import Patch Data for Red Hat tasks N A Breaking hierarchy before migrating to 7 1 SP2 You must break the hierarchy if you are performing a migration
94. ings to know You can use the First Time If you want you can use the wizard on the Home gt Notification Server N A Setup portal to configure Management gt First Time Setup page to configure Patch Management Patch Management Solution Solution for the first use for the firsttime Perform the following steps in order 1 Onthe portal page under Step 5 Schedule Patch Management click Schedule Patch 2 Inthe wizard configure the schedules for the patch metadata import tasks If you want to enable more than one task make sure the schedules are staggered to prevent the server from overloading When you turn on the Linux tasks you must type the Novell Mirror Credentials and the Red Hat Network access credentials By default all vendors and all channels are enabled You can customize the settings later on the appropriate Import Patch Data pages 3 Optional Configure the notification options If you enable administrator notifications you must also configure the SMTP server Settings You can configure SMTP settings on the Settings gt Notification Server gt Notification Server Settings page 4 On the next panel configure the assessment scan and update installation schedules or leave the default ones 5 Click Schedule patch Updates download URLs for The software updates metadata is downloaded from the following URLs N A Wavell arid Red Hat a Red Hat http xmirpc rhn redhat com a Novell https nu novell com
95. ion 7 5 software N A components are not merged with newly discovered software components if those components have separate 32 bit and 64 bit versions component duplicates appear in Software Catalog after running Software Discovery for those components which have 32 bit and 64 bit separate versions Table 11 9 Other issues Software resource conflicts with association is lost after detailed export import procedure If you run a Detailed Export for a software resource which has a conflicts with association then this association is not displayed after importing the resource from the XML file N A Fixed issues The following are the fixed issues for this release If additional information about an issue is available the issue has a corresponding article link Table 11 10 Software Management Solution Fixed issues 102 Fixed issues The emergency policy update The emergency policy update launched from a task you added in the N A launched from a task you Managed Delivery policy does not get replicated on child level added in the Managed Notification Server computers An exception occurs in Notification Server Delivery policy does not get logs stating does not have any package items associated with it replicated on child level Notification Server computers Agent does not load user s Task fails when running software delivery in Mac UI under currently N A environment variab
96. ion issues continued 60 Known issues An issue with Allow Package The Allow Package Server Distribution with Manual Prestaging N A Server Distribution with settings are replicated but displayed incorrectly in the Symantec Manual Prestaging setting Management Console of the child Notification Server computer The functionality is not affected you can ignore this user interface issue Reports do not display any With the exception of the Compliance Summary report Patch N A data from hierarchy Management Solution reports do not display any data from the child Notification Server computers Only the data for the current Notification Server computer is displayed in patch reports Packages are not replicated Child Notification Server computers download packages from Novell N A to child and Red Hat servers after the Patch metadata is replicated down the hierarchy Replicating data between Although some items may replicate between different versions of Patch N A different versions of Patch Management Solution is not supported Management Solution that are installed on parent and child Notification Server computers Symantec does not recommend this If you want to use hierarchy and replication Patch Management Solution versions must be the same on the parent and child Table 7 4 Other known issues Relocating packages from an If on the Core Services page you change the To Location value from N A UN
97. ks simultaneously on UNIX Linux and Mac computers Running three software inventory tasks at the same time results in the system overload and long execution time because CPU usage increases to 100 As a workaround you can schedule the tasks to avoid running them simultaneously 36 Table 3 5 Inventory Solution 37 Known issues Other known issues for UNIX Linux and Mac platforms continued On UNIX Linux and Mac computers inventory data is not sent after Inventory Plug in is redirected to another Notification Server computer and delta inventory is enabled in an inventory task After you run some inventory task with delta inventory enabled on one Notification Server computer redirect Inventory Plug in to another Notification Server computer and run another inventory task with delta inventory enabled along with some other types of inventory only delta inventory data is sent On UNIX Linux and Mac computers OS_NFSShare gets incorrect results if etc exports contains invalid records According to the logic of script nfstat lets you figure out active calls and etc exports provides you with share points If etc exports contains an incorrect entry the OS_NFSShare output gets incorrect results The system utility exportfs controls incorrect entries and filters them when share points are created and listed The UG_UserUsage script does not detect local login on Solaris platforms The UG_User
98. les when logged in user The user was logged as tester not root and Run software delivery jobs are Task button was pressed under Utilities gt Altiris Agent gt Software executed under non root Delivery use Command line was used as whoami gt gt HOME task1 log The result was not written in appropriate directory and history showed an error Running aex swdapm from command line did not reproduce this error Command was run successfully and result written to HOME task1 log file This also applies for Run as option in advanced option of software delivery policy Software resource names The changes that are made to the Known As mapping of the software N A mapping is discarded during the IT Management Suite upgrade resource are discarded during the upgrade from IT Management Suite 7 1 to IT Management Suite 7 1 SP2 Chapter Workflow Solution This chapter includes the following topics a What s new in this release Known issues a Fixed issues a Other things to know What s new in this release In Workflow Solution 7 5 the following new features are introduced Table 12 1 List of new features in Workflow Solution 7 5 Web Application project type Web Application project type feature lets you use multiple models in the same project Following are the uses of Web Application project type a You can use Workflow Dialog and Service Models in the same project a You can use multiple entry point
99. lity The Technical Support group also creates content for our online Knowledge Base The Technical Support group works collaboratively with the other functional areas within Symantec to answer your questions in a timely fashion For example the Technical Support group works with Product Engineering and Symantec Security Response to provide alerting services and virus definition updates Symantec s support offerings include the following a A range of support options that give you the flexibility to select the right amount of service for any size organization a Telephone and or Web based support that provides rapid response and up to the minute information a Upgrade assurance that delivers software upgrades a Global support purchased on a regional business hours or 24 hours a day 7 days a week basis a Premium service offerings that include Account Management Services For information about Symantec s support offerings you can visit our website at the following URL www symantec com business support All support services will be delivered in accordance with your support agreement and the then current enterprise technical support policy Contacting Technical Support Customers with a current support agreement may access Technical Support information at the following URL www symantec com business support Before contacting Technical Support make sure you have satisfied the system requirements that are listed in your product do
100. lter gt Click Edit Pencil icon a Click Update results a Right click on the Package server which is expected to be in the Non CEM environment gt Click Exclude gt Click OK a Click Save Changes After the non CEM package servers are removed from the CEM policy the status on the package server changes to CEM disabled The non CEM client computers can then communicate with the non CEM Package Server If Package Server is in HTTPS mode then Install Windows OS task fails with error The following error message is displayed and the Install Windows OS task fails if the package server is launched in HTTPS mode Package Path is Null New drivers do not replicate on package server computer if exception is thrown during addition of drivers During addition of drivers through the Driver Database Management dialog box if an exception is thrown then the new drivers are not replicated on the package server computer The workaround to this issue is that after you get an exception on the driver management console import only a single driver which displays the result of the addition of driver in the console Later you can find the other drivers replicate on the Package server For a Linux predefined computer deployment of non Sysprep image does not retain the predefined name For a Linux predefined computer deployment of a non Sysprep image does not retain the name of the predefined computer If image creation oper
101. lution Plug in upgrade the Symantec Management Agent SMA service can sometimes crash on the client computers with the Application Metering Plug in installed On the client computer the following error message is displayed Agent Altiris AppMeteringAgent has not stopped Stop time limit is 10 sec Also a fatal error occurs in modules AMAgent dll and AeXNSAgent exe To work around this issue do the following a On the client computer open the Run dialog box type the Notification Server computer name and then go to NSCap a 2 Copy the AMAgentSetup MSI from the following location NSCap bin Win32 X86 Inventory Application Metering Agent Package a 3 Double click the AMAgentSetup or in the command prompt run the following command msiexec i lt path of msi gt skipaim 1 The SMA will start functioning properly after the Application Metering Plug in is upgraded to 7 5 During the upgrade from 7 0 MR4 Altiris AppMeteringAgent and Altiris lnvAgent cannot stop in 10 seconds When you upgrade from 7 0 MR4 to 7 5 during the solution plug in upgrade the Altiris AppMeteringAgent and Altiris InvAgent cannot stop in 10 seconds and the errors appear in the log To work around this issue do the following a Onthe client computer in the Run box type the Notification Server computer name and then go to NSCap Copy the AMAgentSetup msi from the following location NSCap bin Win32 X86 Inventory Application M
102. mport Patch Data for Windows page you change the N A location from default to package location from default to Alternative Location with custom Alternative Location with credentials and then back to default you will not be able to perform custom credentials and then Vendors and Software update back to default you will not To complete the update you need to select Default Location and be able to perform Vendors complete the Vendors and Software update You can then switch back and Software update 5 to the Alternative Location When you deploy Microsoft When you deploy Microsoft updates through Patch Management with N A updates through Patch Management with the restart settings disabled the operating system still forces the client computers to restart the restart settings disabled after the installation is complete the operating system still forces the client computers to restart This does not happen if you have the Windows Update turned off To turn off the Windows Updates on the client computer you need to enable the Never check for updates not recommended option Warning Do not disable Windows Update service because it is required for successful patching via MSU files Table 9 5 Other known issues An issue when using FTP as patch data alternative download location If you want to use an FTP location as the alternative download location on the Import Patch Data page on the Notification Serve
103. mputer pcAnywhere Plug in for Windows Upgrade Host Only Upgrades pcAnywhere Solution to the latest host only version The host only version of pcAnywhere Solution does not have the pcAnywhere Quick Connect option installed on the computer Host Only parameter in the pcAnywhere Hosts by Version report Displays whether pcAnywhere Solution is available as host only that is without the pcAnywhere Quick Connect option on the host computer Client Management Suite 18 What s new in this release Table 1 3 New features of Client Management Suite solutions continued Software Management The following enhancements are added to Software Management Solution Support for Cloud enabled Management a Support for ASDK Lets you create custom scripts to automate and simplify complex procedures in IT Management Suite components a OS Platform awareness in Software catalog Lets you filter software resources by platform Windows UNIX Linux Mac to which these software resources are applicable Support for E10 You can now access the Software Portal on the client computers using Internet Explorer 10 which is a default browser for Windows 8 operating system Deployment Solution Deployment Solution contains the following enhancements Support for imaging Macintosh computers a Support for imaging Windows 8 computers and Windows Server 2012 computers Support for SUSE Linux ES 11 SP1 Support for ESX 4 0 4 1 and ESXi 4 1 5
104. n 60 min 10 hrs Power off 30 mins The results of the tests for multiple vPro scenarios are as follows Table 13 6 Testing results for multiple vPro scenarios Power Sensitive Malware Scan Select Both technologies vPro and Wake On LAN and execute a job on multiple computers WOL and vPro keeping one or more vPro computers unplugged Success Job continues in other plugged computers Power Sensitive Malware Scan Select Both technologies and execute a job on multiple computers WOL and vPro keeping one or more WOL computers unplugged Success Job continues in other plugged computers Power Sensitive Malware Scan Select Both technologies and execute a job on multiple computers vPro only keeping one or more vPro computers unplugged Success Job continues in other plugged computers Power Sensitive Malware Scan Select Both technologies and execute a job on multiple computers WOL only keeping one or more WOL computers unplugged Success Job continues in other plugged computers Remote SERT Boot Task Execute a task on Multiple vPro computers IDER task does not work on multiple vPro computer It is designed for single vPro computer 117 Table 13 6 Symantec Endpoint Protection Integration Component Other things to know 118 Testing results for multiple vPro scenarios continued Remote SERT Boot Task Execute a task on Multiple v
105. n that is installed on a client computer N A associations of a software by a specific user A Collect Full Inventory is then run for that client component to file are not after a different user logs in to this computer In this situation the present if an application is resource associations of the software component to file is lost for this installed on a client computer software resource for a specific user The problem occurs because Software Discovery tries to load values from a user specific registry However it is unable to load those values because the specific user is not logged on Files in the File Inventory tab Files in the File Inventory tab are overwritten if a software resource is N A are overwritten if a software moved to Managed Software and metering is turned on for this software resource is moved to resource Managed Software and metering is turned on for this software resource Quick Delivery tasks fail to If you create a Quick Delivery task and the task times out before the N A execute by timeout when maintenance window is activated on the client the task fails By default maintenance window is set a task times out after 300 minutes Up GH GENS On the Task options tab of the Advanced settings you can change when a task ends Problems with the If a Managed Software Delivery policy delivers two software resources N A applicability check in a and the second software resource is dependent on the first software Managed
106. naged Service Provider Both one to one and one to many tasks in the Real Time System N A configurations are not Manager software require a direct connection to the target computer supported that you want to manage It is not possible to manage computers located behind NAT enabled routers Graceful shutdown or restart A Graceful reboot or power off is not possible error can appear when N A returns an error on Microsoft you check Allow user to save data before power operation and try Windows Vista and Windows to Reboot or Power off a Microsoft Windows Vista or Windows 7 7 computer This occurs because one of the following a The specified computer does not support a shutdown interface a The caller does not have the required privilege to perform this operation a The specified computer does not exist or is not accessible a An invalid set of parameters was passed a A shutdown has already been started on the specified computer a A system shutdown has already been scheduled a The system shutdown cannot be initiated because there are other users logged on to the computer a The format of the specified computer name is invalid You can uncheck Allow user to save data before power operation and try to perform a hard reset of the target computer losing all unsaved data Not possible to update It is not possible to update properties on the Operating System page N A operating system properties in the Real Time view if the target
107. nagement Solution for Windows Other things to know Table 9 7 Other things to know continued CPU usage highly increased during PMImport task if the SQL database is not installed on a separate server Multiple code optimizations for Import operations are designed to utilize all CPU resources If you want to reduce the increased CPU usage on Notification Servers which also hold the SQL database you can utilize the following workarounds Use SQL software performance settings to limit CPU usage Schedule task to run during non business hours Use registry settings to set the WindowsMaxWorkerThreads count used by task equal to the number of processor cores or lower as follows WindowsMaxWorkerThreads dword 00000001 change to count of processor s cores TECH210369 83 Chapter Real Time System Management This chapter includes the following topics Known issues Known issues The following are the known issues for this release The known issues are separated into the following groups a SOL IDE R issues See Table 10 1 on page 84 a RTCI known issues See Table 10 2 on page 86 a Other known issues See Table 10 3 on page 87 Table 10 1 SOL IDE R issues Non Latin characters are not SOL terminal window does not support double byte characters Japanese Chinese supported Intel AMT Serial over LAN The following options must be configured in the ME BIOS advanced settings for Intel doe
108. nagement Suite 7 5 Server Management Suite 7 5 Symantec Management Platform 7 5 For more information about the changes in the release notes see the following link http www symantec com docs DOC5702 Components of Client Management Suite 7 5 Client Management Suite is a collection of solutions that run on the Symantec Management Platform The following table lists all the solutions in Client Management Suite and also provides a short description of each See About Client Management Suite on page 10 Table 1 1 Client Management Suite 12 What s new in this release Components of Client Management Suite Symantec Management DOC5330 Platform Deployment Solution DOC5678 Inventory Solution DOC5719 Inventory for Network Devices DOC5717 IT Analytics a Client Server Management content pack DOC5658 a Symantec Endpoint Protection content pack DOC5638 a ServiceDesk content pack DOC6546 a Data Loss Prevention content pack D0C6141 a Critical System Protection content pack DOC6140 Patch Management Solution a Patch Management Solution for Linux DOC5772 a Patch Management Solution for Mac DOC5776 a Patch Management Solution for Windows DOC5768 pcAnywhere Solution 12 6 7 DOC5394 Real Time System Manager DOC5709 Software Management DOC5446 Solution Symantec Endpoint DOC5671 Protection Integration Component Workflow Solution DOC5941 What s new in this release The
109. ng URL http www symantec com docs DOC5670 For any additional solution and components system requirements see the chapters for individual solutions in this document For information about the supported operating systems in Symantec Management Platform 7 5 and the IT Management Suite 7 5 solutions see the article in the following URL http www symantec com docs HOWTO9965 General installation and upgrade information You install the Symantec Management Platform SMP 7 5 and the Client Management Suite CMS 7 5 solutions using Symantec Installation Manager Installation of Symantec Management Platform 7 5 and the Client Management Suite 7 5 solutions You can download the installation files directly to your server or you can create offline installation packages For more information on how to install and configure the product see the nstalling the IT Management Suite solutions chapter in the IT Management Suite 7 5 Installation and Upgrade Guide at the following URL http www symantec com docs DOC5697 Before you install or upgrade to Server Management Suite Symantec Management Platform or IT Management Suite ensure that you have reviewed the latest changes to the Symantec Management Platform of this release For more information on what s new in Symantec Management Platform 7 5 see the Symantec Management Platform 7 5 Release Notes at http www symantec com docs DOC6713 Upgrade to Symantec Management Platform
110. not fix all issues merge the software resources manually N A Software Path Update task fails for a software which is installed for a specific user Software Path Update task fails to update source path for an installed software if the task is run under currently logged on user or specific user accounts N A Source Path Update execution requires Symantec User credentials Source Path Update will only work under Symantec User Credentials N A Table 11 3 Managed software delivery issues Managed Software Delivery policies stay in the detection check state after upgrade If Managed Software Delivery policies stay in the detection check state on the client computer for a long time after upgrade then they may not get executed Workaround To fix this issue restart the affected client computer or the corresponding Symantec Management Agent N A Managed Software Delivery policies cannot be run from servers on client computers running Windows Vista or Windows 7 If the Run from server if bandwidth is above some speed advanced option is checked for a Managed Software Delivery download settings the policy will fail with a 1619 error code on the client computers running Windows Vista or Windows 7 operating systems N A Table 11 3 Software Management Solution Managed software delivery issues continued 95 Known issues Dependent software installation issue If Manag
111. nother client computer the connection is not successful However the computer prompts you first to install the pcARemote exe that is not required on the Host Only client computer and then restart the client computer Even if pcARemote exe runs the remote functionality is not installed N A Fixed issues The following are the previous issues that were fixed in pcAnywhere 12 6 7 HF 1 If additional information about an issue is available the issue has a corresponding Article link For the fixed issues in pcAnywhere Solution 12 6 7 see the pcAnywhere Solution 12 6 7 release notes at the following link http www symantec com docs DOC5350 pcAnywhere Solution 12 6 7 Table 6 3 Fixed issues 55 Fixed issues The pcAnywhere host service failed at startup and either of the following error messages was displayed The pcAnywhere host you are attempting to run is configured for caller authentication but no caller items could be found You must define at least one caller before you can use this host item Or File is not a valid pcAnywhere file Documents and Settings All Users Application Data Symantec pcAnywhere Hosts pcANSHost BHE Or File is not a valid pcAnywhere file ProgramData Symantec pcAnywhere pcANSHost BHE TECH187737 The following error message was displayed when pcAnywhere Quick Connect was used to connect to the host computer pcAQuickConnect chf file is not a valid pcAnywhere
112. nsive inventory of all hardware and software on your client systems The collected inventory data helps you optimize software Client Management Suite 11 What has changed in the release notes licenses and reduce the costs that are associated with operating system deployments and software rollouts Imaging and deployment The suite lets you deploy standardized and hardware independent images on your managed computers You can migrate to the latest operating system or hardware with fewer interruptions to users Software distribution and patch management The suite lets you control the software configurations of your client systems The automated policies for software and patch management help you distribute the latest software and operating system updates Software management capabilities let you ensure that the required software remains installed is ina working state and is correctly configured on the client systems Remote Management The suite lets you troubleshoot and remediate client computers remotely You can remote control your client systems with pcAnywhere technology or use Real Time System Manager techniques to fix the problems of users What has changed in the release notes In the IT Management Suite 7 5 release to make the release information easier to find and access the release notes information of most solutions are now part of the following release notes IT Management Suite 7 5 Asset Management Suite 7 5 Client Ma
113. of editing the configuration settings you can type fake credentials Sometimes policies with When you set a custom installation schedule for a policy other policies N A custom schedules can trigger other policies with default schedules can also be triggered on the client computers and software updates will be installed Other policies that have a custom schedule set are not affected by this issue They will run on their scheduled time 63 Patch Management Solution for Linux Other things to know Table 7 5 continued 64 The Software Bulletin In the Software Bulletin Details report Applies To column the number N A Details report shows the of all applicable computers is shown including those for which the computers that are out of current console user has access and those for which access is disabled scope of the current console user Software update installations The Linux Software Update Delivery Summary report shows software N A that require a computer restart are shown as complete update installations that require computer restart as complete You can use the Restart Status report to view if any computers are pending restart Other things to know The following are the things to know about this release If additional information about an issue is available the issue has a corresponding article link Patch Management Solution for Linux Other things to know Table 7 6 Other th
114. oftware resource to The uninstall string from Add Remove programs for a software resource N A of the Symantec Management Agent After the upgrade delta inventory does not gather this information Workaround To fix this issue run the Collect Full Inventory task Table 11 2 Software Management Solution General issues continued 94 Known issues Compliance reports still display computers after they are removed from the policy target If a computer to which a specific Managed Software Delivery policy is applied is displayed in any of the corresponding compliance reports it will still be displayed in these reports after it is removed from the policy target N A Unable to generate a command line for a package from a Software Library If the Software Library is specified as a source for a package containing large files while editing an existing software resource the command lines are not generated for this software resource N A Software discovery creates second software resource for software resource imported from MSI If after running the Software Discovery task or gathering software inventory Software Catalog duplicates previously imported software resources as newly discovered software resources this means that the corresponding imported MSI files contained different software keys Workaround To fix the issue run the Merge Duplicate Resources scheduled task If this task does
115. onment with hierarchy to execute Managed Software Delivery policies and Quick Software Delivery tasks Table 11 7 Non Windows specific issues A false positive status fora If a user of a Mac client computer cancels a Quick Delivery task ora N A software package on a Mac Managed Delivery task which has an interactive install the success client computer may be execution event is sent to the Notification Server leading to a reported if the user cancels false positive status for this installation At the same time the software the software interactive scan for the Quick Delivery task and the detection check for the installation Managed Delivery task provides the correct information Prerequisite checks are If a single item is specified from an MPKG file for installation on a Mac N A skipped during the installation of a single item from the MPKG files OS client computer then the prerequisite checks are ignored during the installation on the client computer Table 11 8 Software Management Solution Software Management Framework issues 98 Known issues Incorrect association results Consider two Notification Servers in a hierarchy This problem occurs TECH176457 for two Notification Servers in if the parent and child have the same software resource imported but a hierarchy in a certain have different software products associated with the resource eon When you perform replication
116. ories must be excluded from a software inventory scan by default when you run the scan on Mac UNIX or Linux computers Other known issues for UNIX Linux and Mac platforms If an application is deleted it is moved to the lt userhome gt Trash directory Trash directories must be excluded from a software scan by default however currently they are presented in the software scan results When you run a software inventory scan you have to manually exclude the Trash and Spotlight v100 folders on the Mac platform and the Trash folder if it exists on UNIX or Linux platforms On UNIX and Linux computers an inventory task keeps running permanently during the software inventory scan on a directory with a large number of items When you run software inventory using the filescan rule file on a directory with an extraordinary large number of items the swscan bin gets completed but the inventory task keeps running permanently and no NSE file is generated As a workaround you can use folder or file scanning limitations to reduce the number of scanned items The SoftwareScanner does not scan home directory The SoftwareScanner does not process the home directory by the rule lt folder status include scanSubFolders true gt lt folder gt lt folderLimits gt Inventory task execution on UNIX Linux and Mac computers When you run software inventory it is possible to run three inventory tas
117. otection Integration Component using Symantec Installation Manager the Symantec Management Platform is installed automatically a Symantec Real Time Console Infrastructure 7 5 The operating systems that are supported by the Symantec Management Platform are also supported by Endpoint Protection Integration Component For more information see the product support matrix at the following URL http www symantec com docs HOWTO9965 Known issues Symantec Endpoint Protection Integration Component 112 Known issues The following are the known issues for this release Table 13 1 Known issues Collecting Antivirus Inventory for F Secure Anti Virus 2012 The Antivirus inventory task is unable to collect inventory for F Secure Anti Virus 2012 Support for McAfee 2011 v10 5 227 in JP CS CH KN languages Endpoint Protection Integration Component does not support McAfee 2011 in the following languages a Chinese Simplified a Japanese a Korean a Chinese Traditional Endpoint Protection Integration Component task issues with Symantec Endpoint Protection 12 1 Endpoint Protection Integration Component scan tasks such as full scan and Quick Scan fail on Symantec Endpoint Protection 12 1 Endpoint Protection Integration Component repair task execution Endpoint Protection Integration Component repair task does not execute for the supported Symantec Endpoint Protection versions except Symantec Endpoint Protection 1
118. other user or the maintenance window has not started yet the computer will then restart unexpectedly for the first user when the snooze period specified by another user expires or the maintenance windows starts Known issues N A Table 11 4 The support of Run from server if bandwidth is above some speed setting is limited in CEM mode Cloud enabled Management issues The usage of this setting on Internet managed client computers is limited as follows If the setting is enabled for a Quick Delivery task or a Package Delivery task these tasks will fail with timeout error unless the client computer connects remotely or locally with corresponding bandwidth to the Notification Server computer or Package Server to which it is assigned before the task timeout period is reached If the setting is enabled for a Managed Delivery policy the policy will not run until the client computer connects remotely or locally with corresponding bandwidth to the Notification Server computer or Package Server to which it is assigned before the task timeout period is reached N A Computers in CEM mode cannot be turned on if necessary The Power on computers if necessary compliance setting is not supported for Internet managed client computers due to limitations of remote power management technology N A 96 Table 11 5 Software Management Solution Software Portal issues 97 Known issues Software
119. ou ccc 67 What s new in this release ccc cece cece cece edinir ta ainat ios 67 KNOWN ISSUES yiee eana cee ie vin oc caua a a A vedevbas coedevan ou cudubdeeraeaiearcs 68 FIXECISSUCS 1 3 eeraa vaadetebaracdedeusapodoteume catevaad yiakanedeadsbaperss 68 Other things to KNOW esn sick dees aa we ein eee ten 68 Patch Management Solution for Windows 70 What s new in this release c ccc c eee ec cece ee ceeeeeeeeeatecenaeesenaeeeenaes 70 KNOWN ISSUES rra a erara d ataseraniehetnscutariietivne eroaa ota 71 Fix d ISSUES nioen ee e E T N a dant iE E T A E 80 Other things to KNOW seision oien a ai A a etaa a 81 Real Time System Management ccnn 84 KMOWNMISSUCS lt 3 E E cctv sc EEA AE TEA 84 Software Management Solution cci 91 What s new in this release cece cece cece cece eeeeeeeeatesenaeesenaeneeeaes 91 KMOWN ISSUCS E E E EAE RE EE N E wenden dicen ened 93 E A E AET A E EEE A E 101 Workflow 5 OLIGO Macs oe iota ca eters tin Spottt tone ete 103 What s new in this release cece ce ccc cc eee ec eee e eee eeeeeaeeeeaeeneeaeeas 103 KNOWN ISSUES sah cab ccsecdenine tickiatetdas chaadvandainaaaesdoivnedetatiad o aaa 104 Fixed ISSUCS a e cedauedvcnetuvsveusudueveusab d va vadaie vevetusaudeutded concent 105 Other things to KNOW isrener Cetevens totana teiue eotea inie sid ioie 107 8 Chapter 13 Contents Symantec Endpoint Protection Integration Component big W
120. ownloaded when the update install schedule fires or when the next maintenance window opens When you click Save When you edit a Software Update policy the screen is updated with N A Changes in a policy a the text Saved Changes even though the task that saves the changes confirmation message made to the policy and underlying advertisements may still be running displays Saved Changes If the changes that you made do not appear on the screen immediately even though the policy is still refresh the screen after a few seconds Your changes should appear being saved after the refresh The Software Update Plug in Occasionally clicking Install Now on the Software Update Installation N A stays in the Update Pending dialog box or waiting for the dialog box to close itself does not result in state after the dialog box the immediate installation of a software update The installation starts closes five minutes after the dialog box has closed when the Software Update Plug in wakes up and checks its state The Software Bulletin In the Software Bulletin Details report in the Applies To column the N A Details report shows the computers that are out of the scope of the current console user number of all applicable computers is shown including those for which the current console user has access and those for which access is disabled 78 Table 9 5 Patch Management Solution for Windows Other known issues continued 79
121. pe HorizontalResolution VerticalResolution HP UX OS_OperatingSystem CountryCode NumberOfLicensedUsers RegisteredUser SerialNumber HP UX IA64 HW_SCs IController MaxTransferRate MaxDataWidth As a workaround you can run custom inventory to collect required data on HP UX and HP UX IA64 platforms Inventory Solution 41 Known issues Table 3 5 Other known issues for UNIX Linux and Mac platforms continued Not all inventory data is reported correctly on Linux Mac and UNIX platforms The inventory for the following data class fields is not correctly collected Platform Data class Field RHEL3 HW_DesktopMonitor all fields for Linux with kernel 2 4 Linux HW_Keyboard Linux Manufacturer Linux HW_PhysicalMemory Model Manufacturer Linux HW_DesktopMonitor VideolnputMode SerialNumber ManufacturingDate FeatureSupport Mac HW_PointingDevice Type Mac OS_OperatingSystem OSArchitecture InstallDate RegisteredUser Linux Mac HW_Chassis AudibleAlarm PartNumber Model Linux Mac HW_SCS Controller Index MaxDataWidth MaxTransferRate Linux Mac HW_DisplayController MaxRefreshRate VideoProcessor Linux Mac OS_OperatingSystem CountryCode NumberOfLicensedUsers RegisteredUser SerialNumber Linux Mac UNIX HW_DesktopMonitor MonitorType As a workaround you can run custom inventory to collect required data on Linux Mac and UNIX platforms Inventory Solution
122. policies settings are not Upgrade policies are not migrated from 7 x to this version of Patch migrated Management Solution for Linux Software Update policy The targets in the Applied to section are reset after migration The N A targets are not migrated from targets are reset to the target value that is indicated in the Default 7 0 Software Update Plug in Settings policy Software update policies on Software update policies that were created on child are not revised N A the child are not revised when you run the Import Patch Data for Windows task with the Automatically revise Software Update policies after importing patch data option checked on the parent Notification Server computer Workaround After the patch management import data replication is complete recreate the policies on child using the same bulletins Table 7 5 Patch Management Solution for Linux continued Fixed issues Sometimes policy schedules Sometimes when you create a schedule for a policy and select either N A work incorrectly across Use Agent time or Use Server time the policy does not run as planned timezones on the endpoints that are located in a different time zone Workaround Use the Coordinate using UTC option The Terminate after setting On the Programs tab on the Novell and Red Hat pages when you set N A on the Novell and Red Hat a value in Terminate after the setting does not work The default value
123. r computer add the C Program Files Altiris Notification Server Bin AeXsvc exe service to the firewall Exception List N A Table 9 5 Patch Management Solution for Windows Other known issues continued Known issues An issue occurs when A non administrator cannot navigate to the AexPatchuUtil exe utility N A accessing the using the command prompt because of access restrictions to the AexPatchutil exe utility C Program Files Altiris folder This issue occurs only on the Notification Server computer Workaround cd_ straight to the C Program Files Altiris Altiris Agent Agents directory An issue with re imaged An issue occurs when you re image or reinstall an operating system N A endpoints on an endpoint Software update plug in is not able to process the policies and install software updates Workaround Restart the Symantec Management Agent service or restart the computer Patching of software thatis Patches that you apply to the software in a virtual layer might not be N A installed into a virtual layer is applied correctly and can corrupt the system not supported Packages are not always Occasionally software update packages may not be downloaded N A downloaded to managed immediately to managed computers This is due to a timing issue where computers at the correct time the initial download is not triggered by Software Management and the status of the package is not updated The packages will be d
124. re available in SMP 7 5 and CMS 7 5 Different versions of the SMA and plug ins are not supported in SMP 7 5 Different versions of the SMA and plug ins are not supported in 7 5 release To upgrade to Symantec Management Agent 7 5 you can execute any one of the following tasks a Inthe Symantec Management Console click Actions gt Agents Plug ins gt Rollout Agents Plug ins Then in the left pane under Symantec Management Agent locate and turn on the upgrade policies for the Symantec Management Agent a Inthe Symantec Management Console click Settings gt All Settings In the left pane expand Notification Server gt Site Server Settings and then locate and turn on the upgrade policies for various site server plug ins a Inthe Symantec Management Console click Actions gt Agents Plug ins gt Rollout Agents Plug ins Then in the left pane locate and turn on the upgrade policies for various plug ins Symantec recommends that you configure a schedule for these policies the default Run once ASAP option may not trigger the policy if this is not the first time you perform an upgrade Also to speed up the upgrade process consider temporarily 20 Client Management Suite 21 General installation and upgrade information changing the Download new configuration every setting on the Targeted Agent Settings page to a lower value For detailed instructions on migrating from 6 x or 7 0 to 7 5 see the following documentation resour
125. rmissions Workaround Execute the Windows Explorer using Run as Administrator privilege Then start the Workflow Designer tool using the Windows Explorer instance that has full administrative privileges N A Fixed issues The following are the issues from the previous releases that are fixed in this release If additional information about an issue is available the issue has a corresponding article link Table 12 3 Fixed issues in this release Enhanced Grid Component The updated web form Grid Control lets end users edit data in the grid N A without the need for constant post backs This change provides a better user experience Menu Select Component The Menu Select component now has the Open On Click property N A Additionally the issue of retrieval of previous category items and sub items when the user has moved to a different category item is resolved lt style gt tag in Process Improved handling of lt style gt tags in the Process History Web Part N A History entry Creation of a new group from You can now create a new group from an existing group document N A an existing group crashes the along with copying category permissions from the existing group to the group creation process new group Using the ServiceDesk You can now log on as an administrative user and classify a new N A classification as an administrative user breaks the global sessions and does not let you classify or reclassify inc
126. rom Workflow Solution 7 5 and therefore any Workflow Integration projects using MySQL would be affected You can rebuild these projects using the ODBC driver N A Cannot use reserved names to create components names or property names in the A few words are reserved or protected and must not be used to create component names or property names in the Workflow Web Service Generator Errors can occur For a complete list of the reserved names see the following knowledge base Workflow Web Service if you use the reserved names in the component names article Generator or property names HOWTO85069 Cube reporting Cube reporting has been deprecated N A Workflow Installation and Configuration Guide The Workflow Installation and Configuration Guide has been deprecated The installation and the configuration instructions that were in this guide are now in the Workflow User Guide See the Symantec Workflow 7 5 User Guide Table 12 4 Things to know continued Workflow Component Guide The Workflow Component Guide has been deprecated All component information is now stored on Symantec Connect in the collaborative component pages Workflow Solution 110 Other things to know See the Viewing the component help wiki pages topic at the following URL http Awww symantec com connect blogs contributing workflow s collaborative component pages Library Project Type The Library Project T
127. s dependencies manually 61 Table 7 4 Patch Management Solution for Linux Other known issues continued 62 Fixed issues Duplicates are created if the MetaData Import task is run after software inventory is collected from Linux client computers Duplicates are created during the execution of the Red Hat or Suse Linux Patch Management Import task if Linux client computers have already sent in their first time software inventory before the MetaData Import task was run TECH210368 The Delete data for excluded software channels may fail to delete the corresponding data Checking the Delete data for excluded software channels does not delete the data that has already been downloaded for the previously selected channels Workaround To resolve this issue uncheck all the channels associated with corresponding operating system wait until the data will be deleted and then check the required channels again N A Fixed issues The following are the fixed issues for this release If additional information about an issue is available the issue has a corresponding article link Table 7 5 Old server name is displayed After the migration from 7 0 the old Notification Server computer s N A in the Compliance summary name is displayed in the Compliance summary report report after the upgrade Software Update Plug in The settings in the Software Update Plug in Install Uninstall and N A
128. s not work correctly with AMT Serial over LAN to work correctly with HP computers PIE computers a SOL Terminal Emulation Mode ANSI a Disabled echo char ON Table 10 1 IDE Redirection to floppy does not work on Dell client computers Real Time System Management Known issues SOL IDE R issues continued When the SOL IDE R session is used to remotely boot a Dell client computer from a physical floppy diskette that is inserted into a floppy drive on the Notification Server computer or from a binary floppy image file the client computer performs a restart but does not load the operating system On the client computer s monitor the message Attempting remote IDE boot appears but the Real Time System Manager s terminal window remains blank until the session is terminated This is a known issue with Dell computers tested on Dell OptiPlex 745c The workaround is to start the client from other media physical CD ROM DVD ROM or ISO image file SOL session terminated error message appears when establishing a remote SOL connection to a computer If a SOL session window is already opened for a computer you must close it before establishing a new remote SOL connection to the computer Otherwise you may get an SOL session terminated error message SOL and IDE R disabled in the target computer s BIOS When SOL and IDE R are disabled in the target computer s BIOS the controls for these options on the Intel A
129. s to control how the Web Application project type is consumed a You can use the Start Workflow component to invoke a Workflow Model from another Model Type Workflow Solution Center The Workflow Solution Center is an online repository that contains the following items a Prebuilt Workflow templates and updated Workflow component packs for you to download a Videos and documentation on how to implement the templates and the component packs Workflow Solution 104 Known issues Table 12 1 List of new features in Workflow Solution 7 5 continued Collaborative component wiki Symantec Connect has created a wiki page for each component that is included with the default installation of Workflow This new component wiki model makes structured community based content available at its point of use Following are the features of the component wiki pages a All component information is now stored on Symantec Connect in the collaborative component pages a Each component has its own wiki page a The collaborative component pages are community based a You can also access the component wiki pages from the Workflow Designer Active Directory Active Directory auto authentication is supported in Google Chrome and Mozilla Firefox auto authentication is in addition to Internet Explorer supported in Google Chrome f For any additional configurations that may be required see the knowledge base article and Mozilla Firefox
130. se of which the TECH191515 pcAnywhere host service failed After upgrading pcAnywhere the Symantec pcAnywhere host service failed to run or a host item BHF did not launch Also any attempts to open the host properties and view the caller items CIF within the host properties resulted in a file read error pcAnywhere Manager or the default pcAnywhere host did not launch from a Windows computer TECH190695 When you changed the network or the IP address of a computer you could not connect to the TECH198533 pcAnywhere host and the system tray icon of pcAnywhere host had the wrong IP address Black or gray screen was displayed during the new installation of pcAnywhere or during authentication TECH197172 while connecting a remote system to a host computer after the new installation The file transfer option could not be used on the pcAnywhere host HOWT082334 TECH190503 After connecting to the pcAnywhere plug in the following error message was displayed pcAnywhere HOWTO082334 has encountered a problem and needs to close TECH190503 Using Symantec Management Console the pcAnywhere plug in could not be deployed without N A installing pcAnywhere Quick Connect After you modified the regional language settings of the host computer and opened pcAnywhere TECH202787 using the system tray icon the host window did not display the updated language After you connected to a pcAnywhere thin host and logged off the current user and logged
131. t s new in this release a Known issues a Fixed issues What s new in this release In Software Management Solution 7 5 the following new features are introduced Table 11 1 List of new features Support of Cloud enabled Support of Cloud enabled Management is added for Managed Software Delivery Quick Management Delivery not real time and Software Inventory There is no support for Software Portal Note Cloud enabled Management is supported only for Windows clients Software Management Solution 92 What s new in this release Table 11 1 List of new features continued ASDK update The Administrator Software Development Kit ASDK is updated to include support for Software Management Solution and Software Management Framework ASDK includes new Application Programming Interfaces APIs that access the functionality of Software Management Framework and Software Management Solution These improvements let you import packages into the Software Catalog in a programmatic manner In addition you can create detection rules modify command lines and create and modify Managed Software Delivery policies Symantec Administrator SDK documentation contains information of how to use ASDK and a complete list of available methods can be accessed To find the Symantec Administrator SDK Help on the Start menu click All Programs gt Symantec gt ASDK gt ASDK Help Support for creating Mac packages in Software Catalo
132. t the pcAnywhere plug in From the Symantec Management Console when the following inventory filters are applied a Windows Computers with no pcAnywhere plug in Installed a Linux Computers with no pcAnywhere plug in Installed a Macintosh Computers with no pcAnywhere Plug in Installed the computers without the pcAnywhere plug in are not displayed Users are not able to send the pcAnywhere plug in automatically to the computer Workaround Use the custom filter or select the managed computers manually TECH210727 Inventory filters do not display the computers that require the pcAnywhere plug in upgrade After you upgrade IT Management Suite to version 7 5 the pcAnywhere Solution plug in does not upgrade From the Symantec Management Console when the following inventory filters are applied a Windows Computers Requiring pcAnywhere plug in Upgrade a Linux Computers Requiring pcAnywhere plug in Upgrade a Macintosh Computers Requiring pcAnywhere plug in Upgrade the computers that require the pcAnywhere plug in upgrade are not displayed and SQL errors are seen in the Symantec Management Platform log file Workaround Use the custom filter or select the managed computers manually TECH210727 pcARemote exe runs when you use Symantec Management Console from a Host Only client computer and connect to another client computer From a Host Only client computer if you use Symantec Management Console to connect to a
133. t values N A descriptions are not migrated after upgrading from Software Management Solution 7 0 when upgrading from Software Management Solution 7 0 Agents and plug ins which After the upgrade to Software Management Solution 7 5 none of the N A versions are before 7 1 SP2 software delivery tasks or policies can be executed on the client cannot execute software computers by the agents and plug ins which versions are before 7 1 delivery policies and tasks on SP2 due to significant security changes introduced in version 7 1 SP2 the client computers after Workaround To fix this issue upgrade agents and plug ins on the client upgrading to Software i computers Management Solution 7 5 Weak ACL for a shared Setting weak ACL such as Everyone for a shared location which is N A location which is used for the used for the Software Library may lead to intentional or unintentional Software Library may lead to loss of Software Library data or lack of storage on the corresponding issues with Software Library server Workaround To prevent the issues set strong ACL for UNC data safety path which leads to the Software Library repository Old AddRemoveProgram If a client computer software for which the data is already gathered by N A data class entries are displayed in the Resource Manager after the corresponding software is upgraded on the client computers the Collect full inventory task is upgraded old entri
134. tec Management Agent and Software Update Plug in to the 7 5 version N A The custom settings in the patch Management Language Alerting dialog box are not migrated When you upgrade from 7 0 Maintenance Release 4 to 7 5 most of the custom settings in the patch Management Language Alertring dialog box are not migrated N A 72 Table 9 2 If any custom severities with the names containing at least 2 words have been created in 6 x and then migrated to 7 5 then when you assign any of the existing custom severities to the bulletin errors occur Patch Management Solution for Windows Installation and upgrade issues continued If any custom severities with the names containing at least 2 words have been created in 6 x and then migrated to 7 5 then when you assign any of the existing custom severities including the ones with the names consisting of only 1 word to the bulletin the following issues will occur When you try to assign the custom severity with the name containing at least 2 words that was migrated from 6 x to the bulletin nothing will be assigned a When you try to assign the custom severity with the name consisting of 1 word to the bulletin one of the custom severities migrated from 6 x with a name containing at least 2 words will be assigned to the bulletin even though you did not select it To work around this issue after you migrate from 7 5 on the Core Services page re save
135. ted task on the child NS computer and click Save changes the changes that you made are not saved Normally the advanced settings on the replicated task page should not be editable and the Save changes and Cancel buttons should not be enabled Table 3 3 Other known issues that are common for all types of platforms Inventory install uninstall and upgrade policies do not run once ASAP in the maintenance window only You can check Run once ASAP on a policy page to run inventory install uninstall and upgrade policies once as soon as possible However you cannot currently run the policies once ASAP in the maintenance window only Incorrect Install Date in inventory reports Inventory reports display incorrect Install Date for installed software products TECH133481 Table 3 3 Inventory Solution 35 Known issues Other known issues that are common for all types of platforms continued File inventory is not collected for some software components As a result you cannot meter the usage of these software components During full inventory scan file inventory is not collected for the software components that are not MSI based You cannot view file inventory data when you right click a non MSI based software component click Actions gt Edit Software Resource and then click the File Inventory tab As a result you cannot automatically meter the usage of this software component as it has no fil
136. the SUSE Linux Enterprise SP1 client computers through the Apply System Configuration task For Mac the Deploy Image task fail that involves deploying image of a non HFS or HFS type of disk partition when the DS Automation volume is located with the target volume on the same disk For Mac the Deploy Image task fails to deploy an image for the following if the DS Automation volume is located with the target volume on the same disk and the client computer is booted in the preboot environment using the DS Automation volume An image of a non HFS type of disk partition is deployed on a disk that has HFS type of partition a An image of an HFS type of disk partition is deployed on a disk that has non HFS type of partition The Install Linux ESX OS task is not supported for RHEL6 2 and RHEL 6 3 version The Install Linux ESX OS task is not supported for RHEL 6 2 and RHEL 6 3 version The Deploy Image task cannot be stopped by using the stop option of the task status page of the Symantec Management Console You cannot stop the execution of the Deploy Image task on the client computer from the task status page of the Symantec Management Console Table 2 2 Deployment Solution 28 Known Issues Known Issues of Deployment Solution 7 5 continued Incorrect help opens when you click on the help icon of the Partition Disk task The help icon that is present on the Partition Disk task does not open rele
137. the child Notification Servers independently from the parent Notification Server Increased performance for Patch Data import operations Multiple code optimizations and multithreading are implemented to speed up Patch Data Import operations Patch Management Solution for Windows 71 Known issues The following are the known issues for this release If additional information about an issue is available the issue has a corresponding article link The known issues are separated into the following groups Installation and upgrade issues See Table 9 2 on page 71 Hierarchy and replication issues See Table 9 3 on page 73 Software updates installation issues See Table 9 4 on page 74 Other known issues See Table 9 5 on page 77 Table 9 2 Installation and upgrade issues Known issues Invalid custom severities are Invalid custom severities are cleaned up during upgrade However N A not removed from the bulletins keep the invalid severities assigned to them To remove an bulletins invalid severity from a bulletin change its severity by using the right click menu An issue when breaking the You must break the hierarchy if you are performing a migration from N A hierarchy before migrating to 7 0 to 7 5 After you break the hierarchy on the parent Notification Server 7 5 computer sometimes the child Notification Server computer retains its association with the parent server Workaround Also break
138. the list of severities Known issues N A Table 9 3 Hierarchy and replication issues Only two level hierarchy is Although Symantec Management Platform lets you create multi level HOWTO44217 supported hierarchies Patch Management Solution supports only two level hierarchy A child Notification Server computer cannot be a parent to another Notification Server computer An issue with the Allow The Allow Package Server Distribution with Manual Prestaging N A Package Server Distribution settings are replicated but displayed incorrectly in the Symantec with Manual Prestaging Management Console of the child Notification Server computer setting The functionality is not affected you can ignore this user interface issue The Check Software Update The New schedule button on the Check Software Update Package N A Package Integrity Task Integrity Task page is disabled on the child Notification Server cannot be run on the child computer Workaround Schedule the task on the parent Notification Server computer Then edit the schedule on the child Replicating data between Although some items may replicate between different versions of Patch N A different versions of Patch Management Solution is not supported Management Solution that are installed on parent and child Notification Server computers Symantec does not recommend this If you want to use hierarchy and replication Patch Management Solution versions must
139. ts that have IDE disks the Manufacturer field of the Storage data class may be empty Some fields of the HW Chassis data class may be empty on Mac OS X platform The fields may be empty for the following reasons Information for the fields PartNumber and AudibleAlarm is not available on Mac OS X platform a The availability of the fields PartNumber and SecurityBreach depends on the current model HW_DiskPartition data class cannot be populated on AIX platforms On AIX platforms the logical volume manager LVM is used by default and the current inventory data model is not capable of representing it The Partition and Volume concept of AIX does not directly match with the fields of the HW_DiskPartition data class Inventory Solution 39 Known issues Table 3 5 Other known issues for UNIX Linux and Mac platforms continued Not all inventory data is reported correctly on AIX platforms The inventory for the following data class fields is not correctly collected Platform Data class Field AIX DB_DatabaseStorageArea FileSystemType for Oracle AIX DB_Database Vendor for MySQL AIX HW_PhysicalMemory DataWidth and TotalWidth AIX HW_PhysicalMemory Speed AIX HW_PhysicalMemoryArray MaxCapacity AIX HW_Chassis AudibleAlarm LockPresent PartNumber SecurityBreach SecurityStatus AIX HW_Chassis ChassisPackageType AIX OS_OperatingSystem MaxProcessMemorySize
140. ugh VPN This functionality helps to improve software and patch deployment coverage of your mobile workforce and telecommuting employees CEM allows for fully secure communication between roaming endpoints and Notification Server s on the internal network CEM is supported on Windows computers only The following solutions and functionality is supported over CEM a Task Management Task Management lets you run any task types in CEM mode However tickle connection to the Task Server is not established in CEM mode and immediate task execution is not available The tasks can run with up to 60 minutes delay according to the default settings Running a Task Server on a Cloud enabled Internet managed client computer is not supported and can lead to undesirable behavior a Inventory Solution Hardware inventory software inventory custom inventory server inventory and application metering features are supported a Software Management Solution a Patch Management Solution Client Management Suite What s new in this release Table 1 2 List of general enhancements continued Agent registration Along with the Cloud enabled Management feature that lets you manage the devices that are outside the firewall the agent registration feature was added in IT Management Suite 7 5 to ensure that only trusted endpoints can communicate with Notification Server The agent registration feature requires an endpoint to be allowed to communicate with Notific
141. upported or install patches for RHEL3 RHEL4 and SLES9 after the migration The system_id for RHEL After you upgrade the Patch Management Solution from 7 0 SP2 MR4 N A Server 5 x64 channel is not migrated after upgrade to 7 5 to 7 5 the system_id for RHEL Server 5 x64 channel is not migrated After the upgrade you need to check the Import tasks with at least the same channels to get the new System ID Table 7 3 Hierarchy and replication issues Only two level hierarchy is Although Symantec Management Platform lets you create multi level HOWTO44217 supported hierarchies Patch Management Solution supports only two level hierarchy A child Notification Server computer cannot be a parent to another Notification Server computer Scheduled client tasks are not When you create a schedule for a client task for example Run System N A replicated to child Assessment Scan on Linux Computers and include managed immediately computers from a child into the target the schedule does not replicate to the child Notification Server computers immediately Workaround Use the Run now option Exporting software update Do not attempt to export a software update policy on the parent N A policies from parent to child is not supported Notification Server computer and import it on the child Instead use the built in replication functionality Table 7 3 Patch Management Solution for Linux Hierarchy and replicat
142. ution version 6 x reports must be converted for TECH210366 version 6 x reports cannot be usage in Patch Management Solution 7 5 automatically saved in the version 7 5 format Only UNC paths can be used Only UNC paths can be used as an alternate download location ona N A as an alternate download location on a non lIS Windows package server non llS Windows package server If you specify a local path on the server as the alternate download location the software updates are not downloaded from a package server that does not have IIS installed Fixed issues The following are the fixed issues for this release If additional information about an issue is available the issue has a corresponding article link Table 9 6 Fixed issues Software update policies that Software update policies that were created on child are not revised N A were created on child are not when you run the Import Patch Data for Windows task with the revised when you run the Automatically revise Software Update policies after importing Import Patch Data for patch data option checked on the parent Notification Server computer Windows task The schedule for a client task When you create a schedule for a client task for example Run System N A that includes managed Assessment Scan on Windows Computers and include managed computers from a child into computers from a child into the target the schedule does not replicate the target do
143. vant help when you use the Internet Explorer 9 browser to browse the console The 32 bit virtual machine or the ESX client computers cannot boot into preboot environment using WinPE4 0 You cannot boot a 32 bit virtual machine or an ESX client computer into preboot environment using WinPE4 0 For more information on this issue refer to the following a VMWare Community a Microsoft TechNet For Mac OS X 10 6 version the running application icons are not displayed in the dock of the client computer that is booted into the automation environment For Mac OS X 10 6 version the running applications are not captured during automation partition creation When the client computer is booted in the automation environment using the automation folder the running application icons are not displayed For Mac the Automation folder install policy fails to download the automation folder on the client computer when the thumbs db file is present in the Automation folder or the Agent folder For Mac the Automation folder install policy fails to download the automation folder on the client computer if the thumbs db file is present as hidden in the Automation folder or the Agent folder A thumbs db file is generated when you access the Automation folder or the Agent folder from the lt Install_dir gt Program Files Notification Server NSCapBin UNIX Deployment Mac universal path and change the view of the folder content to Thumbnails view
144. ve Malware Scanning and Remote Machine Repair via IDER and SERT tasks are not supported on CEM environment The Power Sensitive Malware Scanning and Remote Machine Repair via IDER and SERT tasks do not work in CEM environment as the Power On task is not supported on the CEM environment Support for uninstallation of Kaspersky Antivirus The Symantec Endpoint Protection Integration Component 7 5 does not support the uninstallation of Kaspersky antivirus Fixed issues The following are the fixed issues for this release Table 13 2 Symantec Endpoint Protection Integration Component 114 Fixed issues Fixed Issues The pie chart legend summary displayed incorrect client computer numbers The pie chart legend summary of the managed unmanaged unprotected and managed protected computers displayed incorrect client computer numbers This issue has been fixed The SEPIC migration job succeeded when the CA Antivirus Plus v2 0 0 265 and the CA Internet Security Suit 6 0 0 285 were installed on the client computer The SEPIC migration job succeeded when the CA Antivirus Plus v2 0 0 265 and CA Internet Security Suit 6 0 0 285 were installed on the client computer This issue has been fixed SEPIC used all resources instead of all computers as resource targets The Endpoint Protection Integration used all resources instead of all computers as resource target This issue has been fixed Notifi
145. w continued Workflow Solution 108 Other things to know Support for Workflow and The knowledge base article lists the guidelines for HOWT0O92270 ServiceDesk support of Workflow and ServiceDesk and the Symantec supportability statement for these solutions Obsolete exchanges that are Following is the list of obsolete exchanges that were N A displayed in SymQ removed from the SymQ Configurations tab in the Configurations tab Workflow Explorer a WebServiceExchange a TransactionalFileexchange a ThreadLocalMemoryExchange a SynchronizedExchange a SecuredInMemoryExchange a RemoteServerexchange m RemoteSecureServerExchange a RedundantBranchQueueExchange a MailTargetExchange a DualTransactionalExchange The session timeout setting The session timeout for Process Manager is changed N A for Process Manager is from number of days to number of minutes Additionally changed from days to the default session timeout is changed from 90 days to minutes 90 minutes After the configured session timeout in minutes the user needs to log on to access Process Manager The functionality of remotely The remote installation of Workflow Server from N A installing of Workflow Server from Symantec Management Platform is removed in Workflow Solution 7 5 Symantec Management Platform is removed from Workflow 7 5 for security reasons Therefore you cannot install Workflow Server using the Workflow Enterprise Management p
146. ype is no longer an available in N A Project Types tab in the New Project dialog box Encrypted Process Manager The Process Manager connection string is encrypted HOWTO80684 connection string To change the encrypted Process Manager connection string you use the Ibutil exe tool Note that in previous versions of Workflow you changed the Process Manager connection string in the web config file You can no longer change the connection string in the web config file For more information about using the Ibutil exe tool see the article Using the Ibutil exe tool to update connection strings MySQL database connector The MySQL database provider that is used in the SQL components generator has been deprecated in Workflow 7 5 If you use MySQL components a message is displayed to inform you that the MySQL database connector can no longer be implemented You can continue to integrate the Workflow SQL generator to a MySQL database by using the ODCB provider See the About the query script generator topic See the Symantec Workflow 7 5 User Guide Chapter Symantec Endpoint Protection Integration Component This chapter includes the following topics a System requirements Known issues a Fixed issues a Other things to know System requirements Endpoint Protection Integration Component requires the following software to be installed Symantec Management Platform 7 5 When you install Endpoint Pr
Download Pdf Manuals
Related Search
Related Contents
取扱説明書/2MB Alligator 3093 MANUAL DEL OPERADOR MA軸H,MA Clipsal C-Bus C-5000CT2 Spectrum colour LCD Touch Screen Assembly instructions Circuit Breaker and Surge Protective Device 戸別受信機 簡単取扱説明書 一 SH=B^し『^ Copyright © All rights reserved.
Failed to retrieve file