Mac clients do not forward Device Control events to Endpoint Protection Manager
search cancel

Mac clients do not forward Device Control events to Endpoint Protection Manager

book

Article ID: 173127

calendar_today

Updated On:

Products

Endpoint Protection

Issue/Introduction

Symantec Endpoint Protection (SEP) for Mac clients are not forwarding Device Control events to the Endpoint Protection Manager (SEPM).

Normally, Mac clients should forward any events for devices that are listed in "Blocked Devices" or "Devices Excluded From Blocking" in Mac Settings of  the Application and Device Control (ADC) Policy in the SEPM. All events should forward if "Log detected devices" is checked.

Even though these conditions are met, Device Control event forwarding may not work in SEP for Mac versions later than SEP 14.0 RU1; events will be logged locally at the client, but do not appear in the SEPM.

Environment

  • SEP for Mac 14.0 RU1 and later
  • OS X, macOS, Mac

Resolution

{KNOWN_ISSUE.EN_US}