CUMULATIVE POST ITMS 8.7.3 POINT FIXES
search cancel

CUMULATIVE POST ITMS 8.7.3 POINT FIXES

book

Article ID: 382575

calendar_today

Updated On:

Products

IT Management Suite Server Management Suite Client Management Suite Deployment Solution

Issue/Introduction

This article provides a cumulative set of pointfixes for the Symantec Management Platform (SMP) and related ITMS 8.7.3 solutions. These updates address known customer issues and can be applied until the next version of ITMS is released and installed.

Environment

ITMS 8.7.3

Resolution

Note:
The Point Fix version column indicates how many iterations of the point fix have been released for that component (e.g., v5 means this is the 5th cumulative revision). KB attachments always contain only the single, most recent rollup version available for each component.

Important: Install the latest pointfix for upgrading or repairing

Customers must always install the latest available Pointfix (PF) for their current product version immediately after any new installation, upgrade, or repair. PFs released after a newer version’s GA may contain database schema and code changes not included in that GA release; if older-version PFs are applied and the system is later upgraded, this can result in irreversible schema mismatches, processing issues, or system instability. Previously installed PFs are not sufficient—customers must reapply or update to the latest PF for the target version. Because there is no automatic notification for new PF releases, customers should proactively monitor KB articles or community announcements to ensure compliance with this requirement. 

 

SMP/SMA (Symantec Management Platform/Symantec Management Agent) Fixes:

Cumulative Point fix version in which each issue was initially addressedIssue

KB Reference/Description

Included in pointfix v1 releasePatch Reports using not expected parameters for drill-down sub-reports

 

Included in pointfix v1 releaseAdding Windows Server 2025 Client Support

 Windows Server 2025 Support Statement

Included in pointfix v2 releaseITMS 8.7.2 SWM plugin not upgrading to 8.7.3 version.

Plugin install/uninstall/upgrade rules updated to check registry content (same way as basic inventory).
Affected solutions: Patch, DS, SWM, Monitor, Inventory.

Included in pointfix v2 release"Remote PS logs warning 'Failed to set security ...'"

warning messages like:

"11/26/2024 9:53:36 AM","Failed to set security for 'C:\SMA custom location\Altiris Agent\Package Delivery
{DC39252F-20FF-45D7-A82C-372FE42D0017}\cache\Windows 11 24H2 US OS iso Upgrade\sourceseplacementmanifests\microsoft-windows-appx-deployment-server\windows.miracastview_6.3.0.0_neutral_neutral_cw5n1h2txyewy.xml', error: The system cannot find the path specified (0x00000003)","Package Server Agent","AeXNSCPackageServer.dll","2120","Warnings"


"11/26/2024 9:53:28 AM","Failed to set security for 'C:\SMA custom location\Altiris Agent\Package Delivery
{18BF151E-E673-4A48-9930-449ACB468300}\cache\Windows 11 24H2 German iso\sourceseplacementmanifests\microsoft-windows-appx-deployment-server\microsoft.windows.secondarytileexperience_10.0.0.0_neutral__cw5n1h2txyewy.xml', error: The system cannot find the path specified (0x00000003)","Package Server Agent","AeXNSCPackageServer.dll","2120","Warnings"

 

Fixed issue for paths longer than 255 characters - security configuration fails for those.

Included in pointfix v2 releaseWhen running an ADImport import on User tasks, the numbers sometimes change in large values in the RM_ResourceUser table

Change added: After AD Import using custom resource keys check box in AD Import rule, now imported domain users shown as domain\username instead of previous display name.
See KB 385966 "Controlling how local AD imported users or Azure AD imported users names are be stored in "Symantec_CMDB" database or merged by directoryid resource key"

Included in pointfix v2 releaseHierachy Replication: some dataclasses not replicated if exceed ReplicationMaxDataRows core setting max value

 

Included in pointfix v2 releaseImporting Microsoft Entra groups creates additional users

More information on these issues with Importing Microsoft Entra groups creates additional users:

KB 384426

KB 385966

KB 388125


To avoid duplicate "Accounts" appearing after AD import and Azure AD import rule execution when there are on-Premise accounts synchronized from local AD to Azure AD.

1. SMP Console > Settings > Notification Server > Core Settings > click on "Active Settings" > click "+" add new core setting
Add these core settings with values:
ShowHiddenResourceTypes = 1
KeepSingleCredentialForAccount = False

2. SMP Console > Settings > All Settings > expand "Notification Server" folder > expand "Resource and Data Class Settings" folder > expand "Resource Types" folder > expand "Customization" folder > click on "Custom Resource Keys" item and add there a new "Account" resource key rules for AD and Azure (AZ)
Both AD and Azure (AZ) must be added!
For local AD
"Resource type": Account
"Key name": directoryId
"Source Name": AD
"Properties": objectGUID

For Azure AD
"Resource type": Account
"Key name": directoryId
"Source Name": AZ
"Properties": onPremisesImmutableId


 
3. Make sure that AD Import rule and Azure AD Import rule has enabled option to use custom resource keys names 

 

 









Included in pointfix v4 releaseDue to transport level errors with SQL event queue stucks in limbo

KB 393885

Included in pointfix v5 releaseSlowness processing incoming events

Fixed an issue around "spAssignResourcesToTypedScopeCollection" stored procedure been slow during delete / merge processes. Updated "spAssign.." procedures and updated triggers for ScopeMembership insert/delete has been provided.

Included in pointfix v5 releaseUser unable to run MDP when not maintenance window is inactive

Fixed an issue when MDP (managed delivery policy) policy has Job index > 0 policy cannot run by user.

Steps to reproduce:

  • Create MDP with specific compliance schedule to run at exact time (before MW)
  • Set remediation to run At next maintenance window
  • Configure Maintenance window to happen in some time in future

At compliance time MDP runs pre-download detection check and reschedules execution to next MW

nextJobIndex changes to 9 and user no longer able to trigger policy execution.

 

Now if policy has started up , but the current policy task is in "Not started" state (no download/execution/rule check /client task) at the moment) , then external trigger of the policy (user or COM API) may RE-RUN the policy from the beginning.

If there is some "running" task like above, then user WILL NOT be able to kick-off the policy as there is no sense to interrupt something that is already running. 

 

Included in pointfix v6 releaseClient not receiving CEM policy while its in correct TargetKB 400051
Included in pointfix v7 releaseIssue with CEM gateway certificate replacement

Fixed an issue related to:

Gateway certificate thumbprint is not updated properly on client machines when updating/replacing Internet Gateway certificates.

Included in pointfix v8 releaseIRM - Update SQLite to the latest version with security fixes

Updated SQLite from 3.49.1 to 3.50.4

Included in pointfix v8 releaseSVM25-013 ITMS: Elevation of Privileges Vulnerability

 

Included in pointfix v9 releaseManage Software Delivery's schedule Start date decrements when Saved if TimeZone is set to Coordinate using UTC

Fixed an issue related to:
When creating a Managed Software Delivery Policy and setting a schedule for Compliance, if using Timezone="Coordinate using UTC", then going into the Advanced option, and selecting a Start date that is a past date or a future date, once you select OK and Save Changes the date decrements by one day as seen by going back into the Advanced option.  If you set the date to today's date this does not occur. 

Included in pointfix v9 release"Limit maximum deferral time by" can't be saved in Maintenance Window policy for Power Action.

 

Included in pointfix v9 release
End User notifications do not pop up on top of other windows

KB 411960

Included in pointfix v10 release
ITMS SMA Site info goes to N/A

Fixed an issue where:
Client machines occasionally lose "Site Info" in the SMA UI, which then randomly reappears after 4-7 days. The Site Info displaying as "N/A" in the SMA UI.

Included in pointfix v11 release
Error when updating LDAP connector: Failed to load list of classes. Unknown error (0x80005000)

419384

Included in pointfix v11 release
Check Software Update Package Integrity task fails with There is already an object named 'PK_AdvResTargetsAndFilters' in the database

419392

Included in pointfix v11 release
Token authentication fails during package download

419402

Included in pointfix v12 release
Identification is not displayed in Symantec Management Agent setting

427225

Included in pointfix v12 release
Fatal error occurred in module 'AeXNetComms.dll' in 'AeXNSAgent.exe'

433172

Included in pointfix v13 release
Redirecting agent fails and takes days to finally complete process

Fixed an issue related to an scenario where the missing <server> sub-folder in "Altiris Agent\Queue" folder was causing issues in sending basic inventory. 

Included in pointfix v14 release
Patch clients are able to run assessment and appear in compliance reports. But distribution of policies does not work

437198

Included in pointfix v14 release
Process Stuck NSE Files

438367

Included in pointfix v15 release
NSEs stuck in queue and process only after dispatcher service restart

Further improvements have been added to NSE queue processing.  

Included in pointfix v15 release
Patch clients are able to run assessments and appear in compliance reports; however, the distribution of policies is not functioning as expected. Client does not received any patch update policy

Further fixes implemented as part of the issue originally mentioned under 437198

Included in pointfix v16 release
Security Fixes

 

Included in pointfix v16 release
Task Service crashing apparently after enabling persistent connection

452887


Download file: "SMA_SMP_8_7_3_PF_v16_24Aug2026.zip"
Install instructions are included in the Readme.pdf inside this attachment.

 

TS (Task Server) Fixes:

N/A 



SMF (Software Management Framework) Fixes:

Cumulative Point fix version in which each issue was initially addressed

Issue

KB Reference/Description

Included in pointfix v1 release

Job within Quick Delivery task is failing or targeted client machines are not running tasks that contains a package.
Error: Legacy encryption is not supported

Task failure result on SMP server side:

An unknown exception was thrown on server side.

System.Exception: Unable to get item {fe1a0967-952b-4b5d-a0cd-aed07a4dbe1a} ---> Altiris.NS.Exceptions.NSComException: Legacy encryption is not supported.

Fixed issue with Job within Quick Delivery task is failing running under specific user in "Run As".

 

Download file: "SMF_8_7_3_PF_v1_30Jan2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.


INV (Inventory Solution) Fixes:

Cumulative Point fix version in which each issue was initially addressedIssueKB Reference/Description
Included in pointfix v1 releasePrinter Windows collection is failing: Inv_HW_Printer_WindowsKB 394026
Included in pointfix v2 releaseUnable to collect user-dependent data for Windows PrintersFixed issue where after moving VBS scripts to InvApi, it appeared that we lost functionality to collect data under specific user for some data classes that may have user depended data.

I.e. different printers may be installed to different users, and when inventory is running under specific users we should return printer for this user.

It needed to allow InvAPI to run inventory under specific user if task is configured so.

Included in pointfix v3 releaseInventory Agent - Update SQLite to the latest version with security fixesUpdated SQLite from 3.46.1 to 3.50.4

Included in pointfix v4 release

Inventory Agent - Update SQLite to the latest version with security fixes

SAMDriver signed by new Microsoft certificates

Updated Application Metering Agent (Windows 11 24H2 Compatibility)
This Pointfix (PF) updates the Application Metering Agent with a Microsoft-signed 64-bit SAMDriver. This ensures continued functionality following Microsoft's driver security changes introduced in Windows 11 version 24H2 and later (see Microsoft Tech Community Announcement).

  • Deployment Note: Upon applying this PF and updating the agent, the new driver will target affected 64-bit machines only. Windows versions older than 11 24H2 (Build 26100) will unaffected and will continue using the legacy driver.

Download file: "Inventory_8_7_3_PF_v4_10July2026.zip"
Install instructions are included in the Readme.pdf inside this attachment.


SWM (Software Management Solution) Fixes:

Cumulative Point fix version in which each issue was initially addressedIssueKB Reference/Description
Included in pointfix v1 release'Software Portal must be accessed via the desktop link' message in Software Portal for logged in Domain userFixed issue that denied the following:

It MUST be possible (by design limitation ) for the same user to copy and use software portal link on another machine as well (to rollout software to the same machine) for 1 hour 

Included in pointfix v2 releaseChild SMP is publishing different Command Line than Parent SMP has published to the Software PortalFixed an issue related to the presence /absence of default install commandline.
Before the current fix in the case of replication (or detailed SW Import as well - any operation involving IMPORT of publishing item) for SW Component publishing case, without availability of "default install" published commandline,  the commandline would be selected among OTHER install commandlines. That choice is done randomly - that's why it is not always reproducible.
Included in pointfix v2 releaseManually replicated SW publication from Parent NS doesn't appear on Child NSFixed an issue related to Publishing item was not taking SW Component as dependency.
While being replicated with commandline there was no SW Component on child so the publication did not appear in the UI.
Same problem existed for MDP publishing case - MDP was not replicated.

Download file: "SWM_8_7_3_PF_v2_11Jun2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.

 

Patch (Patch Management Solution) Fixes:

Cumulative Point fix version in which each issue was initially addressedIssueKB Reference/Description
Included in pointfix v1 releasePatchWorkflowSvc RunTask method error.

It just returns the following error: 
 
{{Exception calling "RunTask" with "2" argument(s): "System.Web.Services.Protocols.SoapException: General exception occured on server ---> Altiris.Database.DatabaseContextRetryFailureException: Creating new task execution instance: failed all retries (1)
---> System.Data.SqlClient.SqlException: Cannot insert the value NULL into column 'ExecutedBy', table 'Symantec_CMDB.dbo.TaskInstanceExecutionInfo'; column does not allow nulls. INSERT fails.
The statement has been terminated.}}
KB 395746
Included in pointfix v2 releaseVLC-240610 downloads invalid file.
Patch Management solution doesn't support VLC Player updates download.
Fixed issue related to handling download URL pointing to a download portal with redirect to some mirror location.
Included in pointfix v3 releaseRHEL 10 Support 
Included in pointfix v4 releaseSUSE 15 SP7 Support 


Download file: "Patch_8_7_3_PF_v4_18Jul2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.



DS (Deployment Solution) Fixes:

Cumulative Point fix version in which each issue was initially addressedIssue

KB Reference/Description

Included in pointfix v1 releaseUpdated Deployment Web Services

Note

During installation one warning is expected:

Process finished successfully.
Please, review 1 warnings and 0 errors in logs.

1 warning(s) detected:

WARNING:: 'Warning. Web.config will not be installed'
======== Operation succeeded: Install


Download file: "DS_8_7_3_PF_v1_11Sep2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.

 

ULM (Unix/Linux/Mac) Fixes:

Cumulative Point fix version in which each issue was initially addressedIssueKB Reference/Description
Included in pointfix v1 releaseInstalling Palo Alto Global Protect on Ubuntu client - halts SMA to communicationAltiris Agent on Ubuntu stops working when GlobalProtect is installed. KB 383027
Included in pointfix v2 releaseRHEL 10 Support (ULM)Note!
This ULM pointfix doesn't provide full RHEL10 support by ITMS Solutions (DS, Patch, Monitor Solution). You will need to install "Patch_8_7_3_PF_v3_13Jun2025.zip" or later and "Monitor_8_7_3_PF_v1_13Jun2025.zip" or later
We are continuing to work for a full support statement.
Included in pointfix v3 releaseOracle Linux 10 Support (ULM) 
Included in pointfix v3 releaseSUSE 15 SP7 Support (ULM) 
Included in pointfix v4 releaseULM Agent does not report Subnet information 
Included in pointfix v4 releasemacOS 26 (Tahoe) Support (ULM) 
Included in pointfix v4 releaseMacOS client unable to see published SW in SW Portal via CEM Gateway 
Included in pointfix v5 releaseULM Agent can't be installed on the RHEL 9.7 or RHEL 10.1 
Included in pointfix v5 releaseAdding RHEL 9.7 Support 
Included in pointfix v5 releaseAdding RHEL 10.1 Support 
Included in pointfix v5 releaseAdding Oracle Linux 9.7 Support 
Included in pointfix v5 releaseAdding Oracle Linux 10.1 Support 


Download file:
 "ULM_8.7.3_PF_v5_04Dec2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.


MONITOR (Monitor Solution) Fixes:

Cumulative Point fix version in which each issue was initially addressedIssueKB Reference/Description
Included in pointfix v1 releaseRHEL 10 Support 
Included in pointfix v2 releaseOracle Linux 10 Support 


Download file:
 "Monitor_8_7_3_PF_v2_21Jul2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.

 

WF (Workflow Solution) Fixes:

Cumulative Point fix version in which each issue was initially addressedIssueKB Reference/Description
Included in pointfix v1 releaseUnable to install standalone workflow using custom web site 

Download file: "Workflow_8_7_3_PF_v1_02May2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.



Asset
(Asset Management Solution) Fixes:

Cumulative Point fix version in which each issue was initially addressedIssueKB Reference/Description
Included in pointfix v1 releaseFailure while creating resource item when using Receive Items From Purchase OrderKB 396683

Download file: "Asset_8_7_3_PF_v1_07May2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.

Additional Information

433118 "CUMULATIVE POST ITMS 8.8.1 POINT FIXES"
400510 "CUMULATIVE POST ITMS 8.8 RTM (GA) POINT FIXES"
366939 "CUMULATIVE POST ITMS 8.7.2 POINT FIXES"
273903 "CUMULATIVE POST ITMS 8.7.1 POINT FIXES"
261271 "CUMULATIVE POST ITMS 8.7 RTM POINT FIXES"  
249427 "CUMULATIVE POST ITMS 8.6 RU3 POINT FIXES"
198337 "CUMULATIVE POST ITMS 8.5 RU4 POINT FIXES"

Attachments

SMA_SMP_8_7_3_PF_v16_24Aug2026.zip get_app
SMA_SMP_8_7_3_PF_v15_01June2026.zip get_app
Inventory_8_7_3_PF_v4_10July2026.zip get_app
SMF_8_7_3_PF_v1_30Jan2025.zip get_app
ULM_8.7.3_PF_v5_04Dec2025.zip get_app
Workflow_8_7_3_PF_v1_02May2025.zip get_app
DS_8_7_3_PF_v1_11Sep2025.zip get_app
Monitor_8_7_3_PF_v2_21Jul2025.zip get_app
Patch_8_7_3_PF_v4_18Jul2025.zip get_app
SWM_8_7_3_PF_v2_11Jun2025.zip get_app
Asset_8_7_3_PF_v1_07May2025.zip get_app