Need to download the DCS Linux Antimalware definitions via LUA.
DCS Linux Agents have an antimalware driver which requires the liveupdate definitions to be downloaded at least daily. By default, the Linux machines connect to the Symantec liveupdate servers (liveupdate.symantec.com, liveupdate.symantecliveupdate.com) however, in some cases where the Linux serves do not have access to the internet, the Live update Administrator is required to provide the definitions to these servers.
In this window, we need to first update the product catalog and then select all products we wish to download the definitions. In our case, we will be downloading definition files for DCS 6.9.3 Linux Agent which fall under the Endpoint Protection 14.3 RU5:
Second click on add new product:
Select Symantec Endpoint Protection. Look for Endpoint Protection 14.3 RU5
(You can select multiple products here, for our demonstration we will be using just 14.3 RU5)
Go under Configure> Distribution Centers
Select the Default Production Distribution Center and click on Edit:
Add Product List and Select Endpoint Protection 14.3 RU5, and then save settings
Note: By default the LUA uses port 7070 over HTTP for the definitions connection. If you wish to change this please contact Broadcom Support as there will need to be a different set of steps to change this.
After the product details have been selected, we need to add them on the download schedule so the definition are downloaded on the local machine, that way the Linux agents can grab them from the LUA server directly:
Click on Add Distribution:
We will add the following Details:
Name: Any name that is easy to recognize
Status: Enabled
Select Product: Select all the products you wish to download, in our case we will only do SEP 14.3 RU5 Definitions
Test Status: Skip Test
Select Schedule: After Download Schedule (this way the distribution will run as soon as the download schedule is finished)
Click OK
Now we click on Add Download and add the following settings:
Name: Any name that is easy to recognize
Status: Enabled
Select Product: Select all the products, in our case we will only do SEP 14.3 RU5 Definitions
Test Status: Skip Test
Select Schedule: Daily at midnight (or as frequent as you’d like, we advise at least once a day at minimum)
Select the Box that says: “Run selected Distribution Schedules automatically after this download completes”
Select your Distribution Schedule, click on add, which will move it to the right box.
Press OK to save the changes.
We need to ensure the Distribution Schedule shows the Download Schedule. To do this, select your Distribution list> Click on Edit.
Scroll to the bottom of the page and ensure the Mapped Download Schedule is listed:
If it is, save the changes and proceed to the next step.
Select the Download Schedule, and click on Run now:
This will take you to the download status, wait for this to finish, and then run the Distribution schedule as well
Download Schedule:
Distribution Schedule:
A Final check on the Home Screen and we’ll see the tasks completed and 3 green checks on the distribution center, download schedule and distribution schedules:
For any questions or troubleshooting assistance, please contact Broadcom Support.
For more information on configuring the agent to use LUA server, follow the instructions provided in the following article: Configuring your local Live Update Administrator for use with your Linux Agent
Alternatively, to install the agent using the LUA settings, use instructions provided in the following article: Antimalware options available when installing the Linux agent
To download and install the Live Update Administrator (LUA) please see the following KB: https://knowledge.broadcom.com/external/article/152608/download-liveupdate-administrator.html