Hi everyone!
I have a situation and really need your help as well as your recommendation. We have a few Windows Servers installed McAfee Stand Alone version with necessary modules. Because of security reason and policies of my organization, these servers do not have permission to access Internet (Public Network).
My problem is: how to update signature/content/DAT/... for McAfee Stand Alone on that Windows Server (without connection to Internet)?
Currently, we have McAfee ePO server installed on our system. I tried to config source site to update for these Windows Server via McAfee ePO on address: http://Our_ePO_Address:80/Software, like this:
But when we make the updating, we got the following error:
From %programdata%\Mcafee\Agent\Logs\mcscript.log on client:
2022-01-18 14:53:12 I #8688 network URL(http://Our_ePO_Address:80/Software /SiteStat.xml?hash={Hash-file-ePO}) request submitting
2022-01-18 14:53:12 I #8688 network URL(http://Our_ePO_Address:80/Software /SiteStat.xml?hash={Hash-file-ePO}) request, failed with curl error 0, Response 403, Connect code 0,
2022-01-18 14:53:12 E #8688 downloader Error trace:
2022-01-18 14:53:12 E #8688 Thread [Main thread]->
2022-01-18 14:53:12 E #8688 SessMgr [initializeScript]->
2022-01-18 14:53:12 E #8688 creposi [setNextRepositoryToUse]->
2022-01-18 14:53:12 E #8688 creposi [downloadFile,SiteStat.xml,C:\Windows\TEMP]->
2022-01-18 14:53:12 E #8688 downloader Downloading file from http://Our_ePO_Address:80/Software /SiteStat.xml?hash={Hash-file-ePO} to C:\Windows\TEMP\SiteStat.xml failed.
Rebuild a new repo like HTTP, FTP and replicate data to is too hard for us.
So, are there any ways to offline Update Signature/Content for McAfee Stand Alone (Without Install McAfee Agent) via McAfee ePO Source Sites?
Thank you so much and wait for your help.
Solved! Go to Solution.
Hi @VietDuc19 ,
For Standalone systems, please download V3 Virus Definition Updates from the link below.
https://www.mcafee.com/enterprise/en-us/downloads/security-updates.html
The filename is usually in a format V3_<DATVersion>dat.exe. You can run on the desired system. A CMD shows up when the updates are processed and then disappears. You may check the AmCore version after its done.
Thanks
Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!
Hi @VietDuc19,
An alternate Idea that can work here is use of mirror update task:
https://docs.mcafee.com/bundle/endpoint-security-10.6.0-common-client-product-guide-windows/page/GUI...
Please note that this still involves the use of ePO, but these endpoints don't have to connect with them directly and you can avoid direct internet access to internet for these specific endpoints!
KB Ref: https://kc.mcafee.com/corporate/index?page=content&id=KB92427&locale=en_US
I sincerely hope this helps!
Hi @VietDuc19 ,
For Standalone systems, please download V3 Virus Definition Updates from the link below.
https://www.mcafee.com/enterprise/en-us/downloads/security-updates.html
The filename is usually in a format V3_<DATVersion>dat.exe. You can run on the desired system. A CMD shows up when the updates are processed and then disappears. You may check the AmCore version after its done.
Thanks
Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!
Hi @Pravas
Is it necessary to connect to Internet when running "V3 Virus Definition Updates" .exe file to make updating run successful?
Hi @VietDuc19 ,
Thank you for your response. This is an offline updater package. A new exe file is released every day for each version. Running this exe does not require Internet connection as this exe contains the required updates within itself!
Thank you so much for your information.
I still have a question that need your confirmation: Is it possible to offline update signature/content/DATs/... for McAfee Stand Alone (without McAfee Agent & Internet connection) via McAfee ePO Source Sites (http://ePO_Address:80/Software), like configuration for Source Sites on managed systems (installed McAfee Agent and managed via ePO) ?
Hi @VietDuc19,
I am afraid that is not quite possible. However, what is possible is that you can create a scheduled task with a batch script that can download and run the new content for you every day.
From the product configuration end, I am afraid that is not quite possible.
Thank you so much @AdithyanT for your information. I am very appreciate!
Hi @VietDuc19,
An alternate Idea that can work here is use of mirror update task:
https://docs.mcafee.com/bundle/endpoint-security-10.6.0-common-client-product-guide-windows/page/GUI...
Please note that this still involves the use of ePO, but these endpoints don't have to connect with them directly and you can avoid direct internet access to internet for these specific endpoints!
KB Ref: https://kc.mcafee.com/corporate/index?page=content&id=KB92427&locale=en_US
I sincerely hope this helps!
Thank you so much for your idea. Let's me read and study on it.
Hi @VietDuc19,
Thank you, Glad we could be of assistance.
Corporate Headquarters
6220 America Center Drive
San Jose, CA 95002 USA