Event Code - 2709 Using built-in certificate
search cancel

Event Code - 2709 Using built-in certificate

book

Article ID: 159689

calendar_today

Updated On:

Products

Data Loss Prevention Enforce

Issue/Introduction

What does this warning event mean? 

Using built-in certificate to secure the communication between Enforce and Detection Servers. The event code is 2709

Cause

Symantec Data Loss Prevention uses system events to indicate whether servers are using the built-in certificate or user-generated certificates to secure communication. If servers use the default, built-in certificate, Symantec Data Loss Prevention generates a warning event. If servers use generated certificates, Symantec Data Loss Prevention generates an info event. Symantec recommends that you use generated certificates, rather than the built-in certificate, for added security.

Certificate server event codes:

■ If servers use the built-in certificate, the Enforce Server shows a warning event with code 2709: Using built-in certificate.

■ If servers use unique, generated certificates, the Enforce Server shows an info event with code 2710: Using user generated certificate.

Resolution

Symantec recommends that you create dedicated certificates for communication with your Symantec Data Loss Prevention servers. When you configure the Enforce Server to use a generated certificate, all detection servers in your installation must also use generated certificates. You cannot use the built-in certificates with some detection servers and generated certificates with other servers.

For details on system events refer to the TechDoc below:

System event codes and messages (broadcom.com)