Symantec Endpoint Protection Manager (SEPM) Uses Web Browsing Traffic on Destination Port 8014

Symantec Endpoint Protection Manager (SEPM) Uses Web Browsing Traffic on Destination Port 8014

25706
Created On 09/26/18 13:51 PM - Last Modified 06/13/23 04:18 AM


Resolution


Issue

In the Palo Alto Networks application database, Symantec Endpoint Protection Manager (SEPM) application depends on SSL and web-browsing. Some traffic can be seen by SEPM is regular, such as http / web-browsing traffic, except for the traffic on destination port 8014.

Screen Shot 2014-07-15 at 13.26.14.png

Cause

If there is an application default configured as a service on the Security Policy that allows the endpoint traffic, the Palo Alto Networks firewall will deny web browsing traffic on destination port 8014.

Screen Shot 2014-07-15 at 13.34.33.png

This traffic can only be recognized as web browsing because there is no specific indication that this traffic is SEPM.

Resolution

There are two possible resolutions:

  1. Allow any service in the Security Policy
  2. Allow web browsing traffic on destination port 8014

owner: rvanderveken



Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000CltFCAS&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language