![symantec endpoint protection 14 logs location symantec endpoint protection 14 logs location](https://www.itprotoday.com/sites/itprotoday.com/files/styles/article_featured_retina/public/uploads/2014/07/sep_0.jpg)
In SEP 14.2 and newer, create empty defutil.log under /opt/Symantec/virusdefs directory first before editting nf. To enable defutil logging, edit or create the following file: /etc/nf, add a section if it does not exist, and add "defutillog_name=defutil.log".
#Symantec endpoint protection 14 logs location update
For example, "Failure in post processing" error seen at the command line when attempting to update definitions. Defutil logging is helpful when the LiveUpdate log indicates a successful session, but definition updates are still not being applied. The log name is specified in configuration below "defutil.log" is used here, but any name may do. You may optionally set "logger.sink=console,file" so that LiveUpdate command line (sav liveupdate -u) will also echo lux debug logging to stdout.ĭefutil logging is saved to /opt/Symantec/virusdefs/defutil.log (for example). Multiple devlux_#.log files will be generated, each suffixed with the PID of the liveupdate process. =/opt/Symantec/LiveUpdate/Logs/devlux.log LiveUpdate logging is saved by default to /opt/Symantec/LiveUpdate/Logs/lux.logĮxtended lux debug logging can be enabled by creating /etc/symantec/ ( NOT /etc/symantec/sep/.) with the following contents: See The default contents of nf in SEP for Linux. LiveUpdate logging is saved by default to /opt/Symantec/LiveUpdate/liveupdt.log and is always on. The default liveupdt.log file path can be changed by editing /etc/nf. WARNING: SEP for Linux vpdebug logging will quickly grow quite large. Restart rtvscand for settings change to take effect: Repeat the command above with an empty -data string to turn vpdebug off. symcfg add -key '\Symantec Endpoint Protection\AV\ProductControl\' -value 'Debug' -data 'ALL' -type REG_SZ To enable vpdebug: cd /opt/Symantec/symantec_antivirus Vpdebug logging is saved to /opt/Symantec/symantec_antivirus/vpdebug.log Then, restart the smc daemon: sudo service smcd restart Vpdebug 1.fileName=/var/symantec/sep/Logs/debug.log # NOTE: change this to /var/symantec/Logs/debug.log in SEP 12.1.x) To enable sylink debug logging, create a new text file named /etc/symantec/sep/log4j.properties ( /etc/symantec/log4j.properties in SEP 12.1.x), with the following contents: 1= In SEP 14 and newer, path is /var/symantec/ sep/Logs/debug.log Sylink logging in SEP 12.1.x is saved to /var/symantec/Logs/debug.log. root/sepui-install.log Sylink/Communication Module Not all logs may be present, depending on version and components chosen for installation: daemon debug logging: rtvscand, smcd, symcfgd - of lesser utility than those above.defutil: antivirus definition update processing (post-download).liveupdate: antivirus definition update downloads.vpdebug: antivirus configuration and scans.These should not be changed, with the exception of JAVA_HOME, when necessary. JAVA_HOME is not used in SEP 14 and newer.
![symantec endpoint protection 14 logs location symantec endpoint protection 14 logs location](https://windows-cdn.softpedia.com/screenshots/symantec-endpoint-protection_5.png)
/etc/nf - BaseDir and JAVA_HOME paths used by SEP./etc/nf - Not present in SEP 14 and newer.