Integrated Cyber Defense Exchange compatibility with Symantec Endpoint Protection 14.3 RU1

book

Article ID: 205440

calendar_today

Updated On:

Products

Integrated Cyber Defense Exchange ICDx

Issue/Introduction

You have seen that the Integrated Cyber Defense Exchange (ICDx) collector for the Symantec Endpoint Protection Manager (SEPM) lists compatibility with 14.0.1 and 14.2, but you want to know about compatibility the new 14.3 release.

Cause

SEPM 14.3 RU1 has recently released.

Environment

ICDx 1.4.0

ICDx 1.4.1

SEPM 14.3 RU1

Resolution

The ICDx versions 1.4.0 and 1.4.1 are the currently supported versions of the product and are not compatible with SEPM 14.3 RU1 by default. The upcoming ICDx 1.4.2 will be compatible with SEPM 14.3 RU1.

Until ICDx 1.4.2 is released, you can follow these steps to install the attached SEPM collector preview file for compatibility between ICDx and SEPM 14.3 RU1. See the attached preview file at the bottom of this page.

  1. To stop any running SEPM collectors, in the ICDx web interface, do the following:
    • On the ICDx navigation bar, click Configuration.
    • Next to any running SEPM collectors, under Options, click More > Stop.
  2. SSH to the ICDx server.
  3. Start a shell as the icdx user that was set during installation.
    • The default user is: icdx
    • For example: sudo -su icdx
  4. Extract the collector archive file to the $SYMC_HOME directory set during installation.
    • The default directory is: /opt/symantec/icdx
    • For example: tar -xzf sepm_col_dx-<version>.tar.gz -C $SYMC_HOME
  5. Install the collector using the ICDx launcher_dx command.
    • For example:
    • $SYMC_HOME/launcher_dx-<version>/bin/launcher_dx -c $SYMC_HOME/sepm_col_dx-<version>/installer.json
  6. To start any SEPM collectors, in the ICDx web interface, do the following:
    • On the ICDx navigation bar, click Configuration.
    • Next to any SEPM collectors, under Options, click More > Start.

Additional Information

The sepm_col_dx-3.7.20-843.tar.gz file is a temporary preview version of the collector that will be released in the next Integrated Cyber Defense Exchange product version release. This file is not meant to take the place of a full product version update when it is available.

Attachments

1608334601413__sepm_col_dx-3.7.20-843.tar.gz get_app