Downloading SEDR diagnostics from the appliance web interface
book
Article ID: 179389
calendar_today
Updated On:
Products
Endpoint Detection and Response
Issue/Introduction
After the migration to Broadcom, the Symantec Endpoint Detection and Response (SEDR) appliance does not have the ability to upload diagnostic data to a server. In order to gather logs, you will need to download them from the SEDR web interface.
Environment
Symantec Endpoint Detection and Response 4.2 and later. For SEDR version 4.1 and older, contact Broadcom Technical Support.
Resolution
In order to download the diagnostics file, follow the steps below:
Log in to the SEDR Command Line Interface (CLI) as admin
Generate the logs using the following command: gather_logs --to-transfers
Verify the name of the diagnostics using the following (Note: The diagnostics will be stored in /home/admin/transfers) list --home | grep SGS-TD
Log in to the SEDR Graphical User Interface (GUI)
Navigate to Settings -> Global -> File Transfer
Click "Download"
Type in the diagnostics file name from step 3, being sure to use the same capitalization. (Example: SGS-TD_Wed_Sep...)