Revocation check failed when running LiveUpdate on Endpoint Security clients
search cancel

Revocation check failed when running LiveUpdate on Endpoint Security clients

book

Article ID: 175002

calendar_today

Updated On:

Products

Endpoint Protection

Issue/Introduction

Revocation check failed when running Live Update on Symantec Endpoint Security (SES) clients 

Failed to connect to HTTPS server
 

Error statement:
Revocation check failed. The revocation server might be unreachable.
Error code 0x00000001, File: minitri.flg
Server selection failed for server HTTPS://liveupdate.symantecliveupdate.com/ on port 443.
Download Error for minitri.flg. SERVER DOES NOT EXIST or some network issue.
Server Selection Failed.
Error downloading files. Error Code: 0x8D04802A

Resolution

1. Verify the following URLs are not being blocked by a proxy or firewall:

http://ocsp.digicert.com
http://cacerts.digicert.com
http://crl3.digicert.com/ssca-sha2-g6.crl
http://crl4.digicert.com/ssca-sha2-g6.crl
http://s2.symcb.com
http://sv.symcd.com

2. Switch the applied cloud System policy to use HTTP for Live Update, with the setting "Use a specified internal Live Update server" & the URL "http://liveupdate.symantecliveupdate.com". Let the clients get the policy and then run Live Update.  Once complete, change back to using the default HTTPS server and verify Live Update continues to run without issues.

Additional Information