CUMULATIVE POST ITMS 8.7.3 POINT FIXES
search cancel

CUMULATIVE POST ITMS 8.7.3 POINT FIXES

book

Article ID: 382575

calendar_today

Updated On: 05-07-2025

Products

IT Management Suite Server Management Suite Client Management Suite

Issue/Introduction

This cumulative point fix article contains fixes for SMP (Symantec Management Platform) and other Solutions for issues resolved for customers with ITMS 8.7.3 until the next ITMS version is released/installed.

Environment

ITMS 8.7.3

Resolution

SMP/SMA (Symantec Management Platform/Symantec Management Agent) Fixes:

Patch Reports using not expected parameters for drill-down sub-reports

 

Adding Windows Server 2025 Client Support

 Windows Server 2025 Support Statement

ITMS 8.7.2 SWM plugin not upgrading to 8.7.3 version.

Plugin install/uninstall/upgrade rules updated to check registry content (same way as basic inventory).
Affected solutions: Patch, DS, SWM, Monitor, Inventory.

"Remote PS logs warning 'Failed to set security ...'"

warning messages like:

"11/26/2024 9:53:36 AM","Failed to set security for 'C:\SMA custom location\Altiris Agent\Package Delivery
{DC39252F-20FF-45D7-A82C-372FE42D0017}\cache\Windows 11 24H2 US OS iso Upgrade\sourceseplacementmanifests\microsoft-windows-appx-deployment-server\windows.miracastview_6.3.0.0_neutral_neutral_cw5n1h2txyewy.xml', error: The system cannot find the path specified (0x00000003)","Package Server Agent","AeXNSCPackageServer.dll","2120","Warnings"


"11/26/2024 9:53:28 AM","Failed to set security for 'C:\SMA custom location\Altiris Agent\Package Delivery
{18BF151E-E673-4A48-9930-449ACB468300}\cache\Windows 11 24H2 German iso\sourceseplacementmanifests\microsoft-windows-appx-deployment-server\microsoft.windows.secondarytileexperience_10.0.0.0_neutral__cw5n1h2txyewy.xml', error: The system cannot find the path specified (0x00000003)","Package Server Agent","AeXNSCPackageServer.dll","2120","Warnings"

 

Fixed issue for paths longer than 255 characters - security configuration fails for those.

When running an ADImport import on User tasks, the numbers sometimes change in large values in the RM_ResourceUser table

Change added: After AD Import using custom resource keys check box in AD Import rule, now imported domain users shown as domain\username instead of previous display name.
See KB 385966 "Controlling how local AD imported users or Azure AD imported users names are be stored in “Symantec_CMDB” database or merged by directoryid resource key"

Hierachy Replication: some dataclasses not replicated if exceed ReplicationMaxDataRows core setting max value

 

Importing Microsoft Entra groups creates additional users

More information on these issues with Importing Microsoft Entra groups creates additional users:

KB 384426

KB 385966

KB 388125


To avoid duplicate "Accounts" appearing after AD import and Azure AD import rule execution when there are on-Premise accounts synchronized from local AD to Azure AD.

1. SMP Console > Settings > Notification Server > Core Settings > click on "Active Settings" > click "+" add new core setting
Add these core settings with values:
ShowHiddenResourceTypes = 1
KeepSingleCredentialForAccount = False

2. SMP Console > Settings > All Settings > expand "Notification Server" folder > expand "Resource and Data Class Settings" folder > expand "Resource Types" folder > expand "Customization" folder > click on "Custom Resource Keys" item and add there a new "Account" resource key rules for AD and Azure (AZ)
Both AD and Azure (AZ) must be added!
For local AD
“Resource type”: Account
“Key name”: directoryId
“Source Name”: AD
“Properties”: objectGUID

For Azure AD
“Resource type”: Account
“Key name”: directoryId
“Source Name”: AZ
“Properties”: onPremisesImmutableId


 
3. Make sure that AD Import rule and Azure AD Import rule has enabled option to use custom resource keys names 

 

 









Due to transport level errors with SQL event queue stucks in limbo

KB 393885

Slowness processing incoming events

Fixed an issue around "spAssignResourcesToTypedScopeCollection" stored procedure been slow during delete / merge processes. Updated "spAssign.." procedures and updated triggers for ScopeMembership insert/delete has been provided.

User unable to run MDP when not maintenance window is inactive

Fixed an issue when MDP (managed delivery policy) policy has Job index > 0 policy cannot run by user.

Steps to reproduce:

  • Create MDP with specific compliance schedule to run at exact time (before MW)
  • Set remediation to run At next maintenance window
  • Configure Maintenance window to happen in some time in future

At compliance time MDP runs pre-download detection check and reschedules execution to next MW

nextJobIndex changes to 9 and user no longer able to trigger policy execution.

 

Now if policy has started up , but the current policy task is in "Not started" state (no download/execution/rule check /client task) at the moment) , then external trigger of the policy (user or COM API) may RE-RUN the policy from the beginning.

If there is some "running" task like above, then user WILL NOT be able to kick-off the policy as there is no sense to interrupt something that is already running. 

 


Download file: "SMA_SMP_8_7_3_PF_v5_02May2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.

 

TS (Task Server) Fixes:

N/A  
   



SMF (Software Management Framework) Fixes:

Job within Quick Delivery task is failing or targeted client machines are not running tasks that contains a package.
Error: Legacy encryption is not supported

Task failure result on SMP server side:

An unknown exception was thrown on server side.

System.Exception: Unable to get item {fe1a0967-952b-4b5d-a0cd-aed07a4dbe1a} ---> Altiris.NS.Exceptions.NSComException: Legacy encryption is not supported.

Fixed issue with Job within Quick Delivery task is failing running under specific user in "Run As".

 

   

Download file: "SMF_8_7_3_PF_v1_30Jan2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.


INV (Inventory Solution) Fixes:

Printer Windows collection is failing: Inv_HW_Printer_Windows KB 394026
Unable to collect user-dependent data for Windows Printers Fixed issue where after moving VBS scripts to InvApi, it appeared that we lost functionality to collect data under specific user for some data classes that may have user depended data.

I.e. different printers may be installed to different users, and when inventory is running under specific users we should return printer for this user.

It needed to allow InvAPI to run inventory under specific user if task is configured so.

Download file: "INV_8_7_3_PF_v2_02May2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.


SWM (Software Management Solution) Fixes:

'Software Portal must be accessed via the desktop link' message in Software Portal for logged in Domain user Fixed issue that denied the following:

It MUST be possible (by design limitation ) for the same user to copy and use software portal link on another machine as well (to rollout software to the same machine) for 1 hour 

   

Download file: "SWM_8.7.3_PF_v1_11Dec2024.zip"
Install instructions are included in the Readme.pdf inside this attachment.

 

Patch (Patch Management Solution) Fixes:

PatchWorkflowSvc RunTask method error.

It just returns the following error: 
 
{{Exception calling "RunTask" with "2" argument(s): "System.Web.Services.Protocols.SoapException: General exception occured on server ---> Altiris.Database.DatabaseContextRetryFailureException: Creating new task execution instance: failed all retries (1)
---> System.Data.SqlClient.SqlException: Cannot insert the value NULL into column 'ExecutedBy', table 'Symantec_CMDB.dbo.TaskInstanceExecutionInfo'; column does not allow nulls. INSERT fails.
The statement has been terminated.}}
KB 395746
   


Download file: "Patch_8.7.3_PF_v1_22Apr2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.



DS (Deployment Solution) Fixes:

N/A  
   



 

ULM (Unix/Linux/Mac) Fixes:

Installing Palo Alto Global Protect on Ubuntu client - halts SMA to communication Altiris Agent on Ubuntu stops working when GlobalProtect is installed. KB 383027
   


Download file:
 "ULM_8.7.3_PF_v1_09Dec2024.zip"
Install instructions are included in the Readme.pdf inside this attachment.


 

WF (Workflow Solution) Fixes:

Unable to install standalone workflow using custom web site  
   

Download file: "WF_8_7_3_PF_v1_02May2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.



Asset
(Asset Management Solution) Fixes:

Failure while creating resource item when using Receive Items From Purchase Order KB 396683
   

Download file: "Asset_8_7_3_PF_v1_07May2025.zip"
Install instructions are included in the Readme.pdf inside this attachment.

Additional Information

366939 "CUMULATIVE POST ITMS 8.7.2 POINT FIXES"
273903 "CUMULATIVE POST ITMS 8.7.1 POINT FIXES"
261271 "CUMULATIVE POST ITMS 8.7 RTM POINT FIXES"  
249427 "CUMULATIVE POST ITMS 8.6 RU3 POINT FIXES"
198337 "CUMULATIVE POST ITMS 8.5 RU4 POINT FIXES"

 

Attachments

Asset_8_7_3_PF_v1_07May2025.zip get_app
SMA_SMP_8_7_3_PF_v5_02May2025.zip get_app
INV_8_7_3_PF_v2_02May2025.zip get_app
Patch_8_7_3_PF_v1_22Apr2025.zip get_app
SMA_SMP_8_7_3_PF_v3_06Mar2025.zip get_app
SMF_8_7_3_PF_v1_30Jan2025.zip get_app
SWM_8_7_3_PF_v1_11Dec2024.zip get_app
ULM_8.7.3_PF_v1_09Dec2024.zip get_app