NetIQ Security Manager Module |
Release Notes |
Date Published: December 25, 2008 |
|
Log Manager collects antivirus event information and stores it in secure repositories so you can archive this data, create reports for management or auditing purposes, and analyze critical events to research issues. This document outlines why you should install this module, lists any installation requirements, and identifies any known issues. We assume you are familiar with the previous version of this product. For more information about installing Log Manager for Symantec Endpoint Protection, see the Installation Guide for NetIQ Security Manager. Supported ProductsThis release supports the following products:
Why Install This Module?Log Manager for Symantec Endpoint Protection replaces the Symantec Norton AntiVirus module. This release includes the following important changes: This release also incorporates design changes that will enable NetIQ Corporation to more easily update this module in future. Improvements are made in direct response to suggestions from our customers. We thank you for your time and valuable input. We hope you continue to help us ensure our products meet all your needs. Added Platform SupportThis module adds support for Symantec Endpoint Protection 11.x and continues to support Symantec AntiVirus Corporate Edition versions 10.x and 9.x. However, in the module, all previous references to Symantec AntiVirus have changed to Symantec Endpoint Protection. This release adds the following rules:
Due to changes in the Symantec products, this module no longer monitors Microsoft Exchange Server. Change in Correlated Event RulesCorrelation rules are now included in the Correlation for Security Manager module. Ensure you have the latest version of Correlation for Security Manager. For more information, see the Correlation for NetIQ Security Manager Monitoring Guide. System RequirementsThe following table lists additional requirements for a Windows agent monitoring Symantec Endpoint Protection or Symantec AntiVirus Corporate Edition. For more information about agent requirements, see the Installation Guide for NetIQ Security Manager.
Installing This ModuleYou can install this module using the Module Installer. Log Manager for Symantec Endpoint Protection does not require special configuration. However, Symantec Endpoint Protection 11.x manager must be configured to work with Log Manager. For more information about installing this module and configuring the Symantec products, see the NetIQ Security Manager for Symantec Endpoint Protection Monitoring Guide in the following folder on the user interface computer: installation folder\NetIQ Security Manager\OnePoint\Documentation\Monitoring Guides Where installation folder is the location where you installed Security Manager user interfaces. Known IssuesNetIQ Corporation strives to ensure our products provide quality solutions for your enterprise software needs. The following issues are currently being researched. If you need further assistance with any issue, contact Technical Support.
Obsolete Computer Groups Not Removed after UpgradePlatform support in this version of Security Manager for Symantec Endpoint Protection changed significantly from the previous version, called Security Manager for Symantec Norton AntiVirus. Several items now have new names. If you gathered data with Security Manager for Symantec Norton AntiVirus, Security Manager will not delete the data gathered by that module. Security Manager also will not remove all items associated with the older version, even though Security Manager for Symantec Endpoint Protection does not use the items or information. For example, you might see the Computer Group "NetIQ :: Symantec Antivirus Client 7.0" after you upgrade, but data will not be added to this group. (DOC256530) Configuration Not Preserved after UpgradeIn some environments, Security Manager configuration information is not maintained after you upgrade to this release. After you upgrade, run the configuration wizard and verify all information. (ENG238593) Forensic Reports Do Not RunForensic reports run with a previous version will not return data collected with this release. To run
the forensic reports on data collected with this release, back up, and then delete the forensics configuration
file. By default, the forensics configuration file is
Monitoring Guide in Documentation DirectoryThe Security Manager for Symantec Norton AntiVirus Monitoring Guide remains in the documentation directory after you upgrade the module. Ensure you use the Security Manager for Symantec Endpoint Protection Monitoring Guide. (ENG238600) Contact InformationPlease contact us with your questions and comments. We look forward to hearing from you. For detailed contact information, see the Support Contact Information Web site. Legal NoticeTHIS DOCUMENT AND THE SOFTWARE DESCRIBED IN THIS DOCUMENT ARE FURNISHED UNDER AND ARE SUBJECT TO THE TERMS OF A LICENSE AGREEMENT OR A NON-DISCLOSURE AGREEMENT. EXCEPT AS EXPRESSLY SET FORTH IN SUCH LICENSE AGREEMENT OR NON-DISCLOSURE AGREEMENT, NETIQ CORPORATION PROVIDES THIS DOCUMENT AND THE SOFTWARE DESCRIBED IN THIS DOCUMENT "AS IS" WITHOUT WARRANTY OF ANY KIND, EITHER EXPRESS OR IMPLIED, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE. SOME STATES DO NOT ALLOW DISCLAIMERS OF EXPRESS OR IMPLIED WARRANTIES IN CERTAIN TRANSACTIONS; THEREFORE, THIS STATEMENT MAY NOT APPLY TO YOU. This document and the software described in this document may not be lent, sold, or given away without the prior written permission of NetIQ Corporation, except as otherwise permitted by law. Except as expressly set forth in such license agreement or non-disclosure agreement, no part of this document or the software described in this document may be reproduced, stored in a retrieval system, or transmitted in any form or by any means, electronic, mechanical, or otherwise, without the prior written consent of NetIQ Corporation. Some companies, names, and data in this document are used for illustration purposes and may not represent real companies, individuals, or data. This document could include technical inaccuracies or typographical errors. Changes are periodically made to the information herein. These changes may be incorporated in new editions of this document. NetIQ Corporation may make improvements in or changes to the software described in this document at any time. © 2008 NetIQ Corporation, all rights reserved. U.S. Government Restricted Rights: If the software and documentation are being acquired by or on behalf of the U.S. Government or by a U.S. Government prime contractor or subcontractor (at any tier), in accordance with 48 C.F.R. 227.7202-4 (for Department of Defense (DOD) acquisitions) and 48 C.F.R. 2.101 and 12.212 (for non-DOD acquisitions), the government's rights in the software and documentation, including its rights to use, modify, reproduce, release, perform, display or disclose the software or documentation, will be subject in all respects to the commercial license rights and restrictions provided in the license agreement. Check Point, FireWall-1, VPN-1, Provider-1, and SiteManager-1 are trademarks or registered trademarks of Check Point Software Technologies Ltd. ActiveAgent, ActiveAnalytics, ActiveAudit, ActiveReporting, ADcheck, Aegis, AppAnalyzer, AppManager, the cube logo design, Change Administrator, Change Guardian, Compliance Suite, Directory and Resource Administrator, Directory Security Administrator, Domain Migration Administrator, Exchange Administrator, File Security Administrator, Group Policy Administrator, Group Policy Guardian, Group Policy Suite, IntelliPolicy, Knowing is Everything, Knowledge Scripts, Mission Critical Software for E-Business, MP3check, NetConnect, NetIQ, the NetIQ logo, the NetIQ Partner Network design, Patch Manager, PSAudit, PSDetect, PSPasswordManager, PSSecure, Risk and Compliance Center, Secure Configuration Manager, Security Administration Suite, Security Analyzer, Security Manager, Server Consolidator, VigilEnt, Vivinet, Vulnerability Manager, Work Smarter, and XMP are trademarks or registered trademarks of NetIQ Corporation or its subsidiaries in the United States and other jurisdictions. All other company and product names mentioned are used only for identification purposes and may be trademarks or registered trademarks of their respective companies. |