CUMULATIVE POST ITMS 8.7.3 POINT FIXES
search cancel

CUMULATIVE POST ITMS 8.7.3 POINT FIXES

book

Article ID: 382575

calendar_today

Updated On:

Products

IT Management Suite Server Management Suite Client Management Suite

Issue/Introduction

This cumulative point fix article contains fixes for SMP (Symantec Management Platform) and other Solutions for issues resolved for customers with ITMS 8.7.3 until the next ITMS version is released/installed.

Environment

ITMS 8.7.3

Resolution

SMP/SMA (Symantec Management Platform/Symantec Management Agent) Fixes:

Patch Reports using not expected parameters for drill-down sub-reports

 

Adding Windows Server 2025 Client Support

 Windows Server 2025 Support Statement

ITMS 8.7.2 SWM plugin not upgrading to 8.7.3 version.

Plugin install/uninstall/upgrade rules updated to check registry content (same way as basic inventory).
Affected solutions: Patch, DS, SWM, Monitor, Inventory.

"Remote PS logs warning 'Failed to set security ...'"

warning messages like:

"11/26/2024 9:53:36 AM","Failed to set security for 'C:\SMA custom location\Altiris Agent\Package Delivery
{DC39252F-20FF-45D7-A82C-372FE42D0017}\cache\Windows 11 24H2 US OS iso Upgrade\sourceseplacementmanifests\microsoft-windows-appx-deployment-server\windows.miracastview_6.3.0.0_neutral_neutral_cw5n1h2txyewy.xml', error: The system cannot find the path specified (0x00000003)","Package Server Agent","AeXNSCPackageServer.dll","2120","Warnings"


"11/26/2024 9:53:28 AM","Failed to set security for 'C:\SMA custom location\Altiris Agent\Package Delivery
{18BF151E-E673-4A48-9930-449ACB468300}\cache\Windows 11 24H2 German iso\sourceseplacementmanifests\microsoft-windows-appx-deployment-server\microsoft.windows.secondarytileexperience_10.0.0.0_neutral__cw5n1h2txyewy.xml', error: The system cannot find the path specified (0x00000003)","Package Server Agent","AeXNSCPackageServer.dll","2120","Warnings"

 

Fixed issue for paths longer than 255 characters - security configuration fails for those.

When running an ADImport import on User tasks, the numbers sometimes change in large values in the RM_ResourceUser table

Change added: After AD Import using custom resource keys check box in AD Import rule, now imported domain users shown as domain\username instead of previous display name.
See KB 385966 "Controlling how local AD imported users or Azure AD imported users names are be stored in “Symantec_CMDB” database or merged by directoryid resource key"

Hierachy Replication: some dataclasses not replicated if exceed ReplicationMaxDataRows core setting max value

 

Importing Microsoft Entra groups creates additional users

More information on these issues with Importing Microsoft Entra groups creates additional users:

KB 384426

KB 385966

KB 388125


To avoid duplicate "Accounts" appearing after AD import and Azure AD import rule execution when there are on-Premise accounts synchronized from local AD to Azure AD.

1. SMP Console > Settings > Notification Server > Core Settings > click on "Active Settings" > click "+" add new core setting
Add these core settings with values:
ShowHiddenResourceTypes = 1
KeepSingleCredentialForAccount = False

2. SMP Console > Settings > All Settings > expand "Notification Server" folder > expand "Resource and Data Class Settings" folder > expand "Resource Types" folder > expand "Customization" folder > click on "Custom Resource Keys" item and add there a new "Account" resource key rules for AD and Azure (AZ)
Both AD and Azure (AZ) must be added!
For local AD
“Resource type”: Account
“Key name”: directoryId
“Source Name”: AD
“Properties”: objectGUID

For Azure AD
“Resource type”: Account
“Key name”: directoryId
“Source Name”: AZ
“Properties”: onPremisesImmutableId


 
3. Make sure that AD Import rule and Azure AD Import rule has enabled option to use custom resource keys names 

 

 









Due to transport level errors with SQL event queue stucks in limbo

KB 393885

Slowness processing incoming events

Fixed an issue around "spAssignResourcesToTypedScopeCollection" stored procedure been slow during delete / merge processes. Updated "spAssign.." procedures and updated triggers for ScopeMembership insert/delete has been provided.

User unable to run MDP when not maintenance window is inactive

Fixed an issue when MDP (managed delivery policy) policy has Job index > 0 policy cannot run by user.

Steps to reproduce:

  • Create MDP with specific compliance schedule to run at exact time (before MW)
  • Set remediation to run At next maintenance window
  • Configure Maintenance window to happen in some time in future

At compliance time MDP runs pre-download detection check and reschedules execution to next MW

nextJobIndex changes to 9 and user no longer able to trigger policy execution.

 

Now if policy has started up , but the current policy task is in "Not started" state (no download/execution/rule check /client task) at the moment) , then external trigger of the policy (user or COM API) may RE-RUN the policy from the beginning.

If there is some "running" task like above, then user WILL NOT be able to kick-off the policy as there is no sense to interrupt something that is already running. 

 

Client not receiving CEM policy while its in correct Target

KB 400051


Download file: "SMA_SMP_8_7_3_PF_v6_17Jun2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.

 

TS (Task Server) Fixes:

N/A  
   



SMF (Software Management Framework) Fixes:

Job within Quick Delivery task is failing or targeted client machines are not running tasks that contains a package.
Error: Legacy encryption is not supported

Task failure result on SMP server side:

An unknown exception was thrown on server side.

System.Exception: Unable to get item {fe1a0967-952b-4b5d-a0cd-aed07a4dbe1a} ---> Altiris.NS.Exceptions.NSComException: Legacy encryption is not supported.

Fixed issue with Job within Quick Delivery task is failing running under specific user in "Run As".

 

   

Download file: "SMF_8_7_3_PF_v1_30Jan2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.


INV (Inventory Solution) Fixes:

Printer Windows collection is failing: Inv_HW_Printer_Windows KB 394026
Unable to collect user-dependent data for Windows Printers Fixed issue where after moving VBS scripts to InvApi, it appeared that we lost functionality to collect data under specific user for some data classes that may have user depended data.

I.e. different printers may be installed to different users, and when inventory is running under specific users we should return printer for this user.

It needed to allow InvAPI to run inventory under specific user if task is configured so.

Download file: "INV_8_7_3_PF_v2_02May2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.


SWM (Software Management Solution) Fixes:

'Software Portal must be accessed via the desktop link' message in Software Portal for logged in Domain user Fixed issue that denied the following:

It MUST be possible (by design limitation ) for the same user to copy and use software portal link on another machine as well (to rollout software to the same machine) for 1 hour 

Child SMP is publishing different Command Line than Parent SMP has published to the Software Portal Fixed an issue related to the presence /absence of default install commandline.
Before the current fix in the case of replication (or detailed SW Import as well - any operation involving IMPORT of publishing item) for SW Component publishing case, without availability of "default install" published commandline,  the commandline would be selected among OTHER install commandlines. That choice is done randomly - that's why it is not always reproducible.
Manually replicated SW publication from Parent NS doesn't appear on Child NS Fixed an issue related to Publishing item was not taking SW Component as dependency.
While being replicated with commandline there was no SW Component on child so the publication did not appear in the UI.
Same problem existed for MDP publishing case - MDP was not replicated.

Download file: "SWM_8_7_3_PF_v2_11Jun2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.

 

Patch (Patch Management Solution) Fixes:

PatchWorkflowSvc RunTask method error.

It just returns the following error: 
 
{{Exception calling "RunTask" with "2" argument(s): "System.Web.Services.Protocols.SoapException: General exception occured on server ---> Altiris.Database.DatabaseContextRetryFailureException: Creating new task execution instance: failed all retries (1)
---> System.Data.SqlClient.SqlException: Cannot insert the value NULL into column 'ExecutedBy', table 'Symantec_CMDB.dbo.TaskInstanceExecutionInfo'; column does not allow nulls. INSERT fails.
The statement has been terminated.}}
KB 395746
VLC-240610 downloads invalid file.
Patch Management solution doesn't support VLC Player updates download.
Fixed issue related to handling download URL pointing to a download portal with redirect to some mirror location.
RHEL 10 Support  


Download file: "Patch_8_7_3_PF_v3_13Jun2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.



DS (Deployment Solution) Fixes:

   
   



 

ULM (Unix/Linux/Mac) Fixes:

Installing Palo Alto Global Protect on Ubuntu client - halts SMA to communication Altiris Agent on Ubuntu stops working when GlobalProtect is installed. KB 383027
RHEL 10 Support (ULM) Note!
This ULM pointfix doesn't provide full RHEL10 support by ITMS Solutions (DS, Patch, Monitor Solution). You will need to install "Patch_8_7_3_PF_v3_13Jun2025.zip" or later and "Monitor_8_7_3_PF_v1_13Jun2025.zip" or later
We are continuing to work for a full support statement.


Download file:
 "ULM_8.7.3_PF_v2_10Jun2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.


MONITOR (Monitor Solution) Fixes:

RHEL 10 Support  


Download file:
 "Monitor_8_7_3_PF_v1_13Jun2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.

 

WF (Workflow Solution) Fixes:

Unable to install standalone workflow using custom web site  
   

Download file: "WF_8_7_3_PF_v1_02May2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.



Asset
(Asset Management Solution) Fixes:

Failure while creating resource item when using Receive Items From Purchase Order KB 396683
   

Download file: "Asset_8_7_3_PF_v1_07May2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.

Additional Information

400510 "CUMULATIVE POST ITMS 8.8 RTM (GA) POINT FIXES"
366939 "CUMULATIVE POST ITMS 8.7.2 POINT FIXES"
273903 "CUMULATIVE POST ITMS 8.7.1 POINT FIXES"
261271 "CUMULATIVE POST ITMS 8.7 RTM POINT FIXES"  
249427 "CUMULATIVE POST ITMS 8.6 RU3 POINT FIXES"
198337 "CUMULATIVE POST ITMS 8.5 RU4 POINT FIXES"

 

Attachments

SMA_SMP_8_7_3_PF_v6_17Jun2025.zip get_app
Patch_8_7_3_PF_v3_13Jun2025.zip get_app
Monitor_8_7_3_PF_v1_13Jun2025.zip get_app
SWM_8_7_3_PF_v2_11Jun2025.zip get_app
ULM_8.7.3_PF_v2_10Jun2025.zip get_app
Asset_8_7_3_PF_v1_07May2025.zip get_app
INV_8_7_3_PF_v2_02May2025.zip get_app
SMF_8_7_3_PF_v1_30Jan2025.zip get_app