Endpoint Protection

 View Only
  • 1.  SEP 12.x and SSL: What is Best Practice

    Posted Nov 10, 2013 10:16 PM

    Hello,

    Can someone tell me if it is best practice to use SSL with SEP 12.x?

    Cheers,

    Cameron Mottus



  • 2.  RE: SEP 12.x and SSL: What is Best Practice

    Posted Nov 10, 2013 10:19 PM

    It depends on your company policy. There is no best practice. If you want to encrypt communication between client/server and reporting than you can use it.

    Configuring SSL between Symantec Endpoint Protection Manager and the clients

    Article:HOWTO81056  |  Created: 2012-10-24  |  Updated: 2013-10-07  |  Article URL http://www.symantec.com/docs/HOWTO81056

     



  • 3.  RE: SEP 12.x and SSL: What is Best Practice

    Broadcom Employee
    Posted Nov 10, 2013 10:23 PM

    if you do not want anyone to see the traffic between client and SEPM then you can enable the SSL.

    Basically if the SEPM is internet facing then it might be enabled.



  • 4.  RE: SEP 12.x and SSL: What is Best Practice

    Posted Nov 10, 2013 10:36 PM

    Thanks guys.

    I am curious because with EV you can also enable SSL but I have never seen anyone do it.

    Is there a good reason why you would not enable SSL?



  • 5.  RE: SEP 12.x and SSL: What is Best Practice

    Broadcom Employee
    Posted Nov 10, 2013 10:46 PM

    if the traffic is not on internet, then the possiblity of attack is less hence SSL may not be needed in LAN/VPN



  • 6.  RE: SEP 12.x and SSL: What is Best Practice

    Trusted Advisor
    Posted Nov 11, 2013 06:07 AM

    Hello,

    The communications used when accessing the SEPM's web console are encrypted.  This traffic is encrypted using the SEPM's own self-signed certificate (and therefore untrusted by your machines by default), which is the reason behind the certificate warnings you receive.

    You don't need to do anything to add SSL encryption for console access, it is already there.

    However, check these Articles:

    Configuring SSL between Symantec Endpoint Protection Manager and the clients

    http://www.symantec.com/docs/HOWTO55351

    Symantec Endpoint Protection 12.1: Enabling SSL Between the Manager and Clients

    http://www.symantec.com/docs/TECH162326

    Enabling SSL Between the Symantec Endpoint Protection Manager and Client

    https://www-secure.symantec.com/connect/articles/enabling-ssl-between-symantec-endpoint-protection-manager-and-client

    Moreover, incase you are thinking using the SEPM 12.1 webconsole over SSL, check this Thread:

    https://www-secure.symantec.com/connect/forums/how-install-proper-ssl-certificate-sepm-server

    Hope that helps!!



  • 7.  RE: SEP 12.x and SSL: What is Best Practice

    Posted Nov 11, 2013 06:08 AM

    Probably not so much for internal, unless you work for gov't or a nuke plant.

    As Pete suggested, if in DMZ, it is a godo idea.