


Verify that SEPFL supports the kernel used.

Unzip SymantecEndpointProtection.zip -d sep Place the installer in the tmp folder and unzip it. Run the following command to move to the tmp folder. Sudo apt-get install unzip bzip2 gcc libc6:i386 libncurses5:i386 libstdc++6:i386 lib32ncurses5 lib32z1 linux-headers-$(uname -r) build-essential -y Run the following command to install dependencies required for SEPFL. Reboot the system via the command "sudo reboot". Verify that the system is updated before you install SEP via "sudo apt-get update & sudo apt-get upgrade –y".

I didn't dig deeper about that functionality at the time.Here is my guide that i created after some trial and error when installing SEPFL.ġ.1.1 Install Symantec Endpoint Protection for Linuxġ. More than once compliance checklist weasel-words this by saying "antivirus software is required.on all operating systems where anti-virus software is normally used".Ī recent experience with ClamAV scanning non-executable data files is that it turned up a lot of positives on PDFs that would generally go into the class of "false positives" because they were detecting some kind of macro functionality that's been used by hostile malware in the past. Compliance is all about proving that you're thorough and proving it in writing for the record, not about jumping through hoops that don't apply to your situation. Remember that for all compliance, there are always ways to document that you've handled the needs with an exception to the guidelines. 5% of the time it's about scanning non-Linux fileshares or file repositories. I haven't run SEP on anything, but my inclination is to strenuously avoid "beyond" ClamAV out of your distro repos.ĩ5% of the time, antivirus on Linux is about unthinking compliance check-off.
