search cancel

Revocation check failed when running LiveUpdate on Endpoint Security clients

book

Article ID: 175002

calendar_today

Updated On:

Products

Endpoint Protection

Issue/Introduction

Revocation check failed when running LiveUpdate on Symantec Endpoint Security (SES) clients 

Failed to connect to HTTPS server
 

Error statement:
Revocation check failed. The revocation server might be unreachable.
Error code 0x00000001, File: minitri.flg
Server selection failed for server HTTPS://liveupdate.symantecliveupdate.com/ on port 443.
Download Error for minitri.flg. SERVER DOES NOT EXIST or some network issue.
Server Selection Failed.
Error downloading files. Error Code: 0x8D04802A

Resolution

1. Verify the following URLs are not being blocked by a proxy or firewall:

http://ocsp.digicert.com
http://crl3.digicert.com/ssca-sha2-g6.crl
http://crl4.digicert.com/ssca-sha2-g6.crl

2. Switch the applied cloud System policy to use HTTP for LiveUpdate, with the setting "Use a specified internal LiveUpdate server" & the URL "http://liveupdate.symantecliveupdate.com". Let the clients get the policy and then run LiveUpdate.  Once complete, change back to using the default HTTPS server and verify LiveUpdate continues to run without issues.