At IU, after installing Windows XP SP2, how do I configure the Windows Firewall to allow Symantec AntiVirus to be controlled through the Symantec System Center?
Note: The following information is intended for
registered local support providers (LSPs) at Indiana
University. If you are an LSP and have questions regarding the
information in this document, contact LSP Services at
lsps@iu.edu ; otherwise, contact your campus
Support Center.
Windows XP Service Pack 2 (SP2) enables the Windows Firewall by default, which only allows communication that originates from the local computer. At Indiana University, as a result, you cannot control Symantec/Norton AntiVirus (SAV/NAV) through the Symantec System Center. The IT Security Office (UISO) recommends that you leave the Windows Firewall enabled and create an exception in it that allows control of SAV/NAV from the Symantec System Center.
To create an exception for Symantec System Center:
- From the
StartMenu, selectSettings, and thenControl Panel. Double-clickNetwork Connections.Note: If this doesn't match what you see, refer to About navigation settings in Windows.
- You will need to run the Windows Firewall applet as a local
administrator. To do so, press and hold the
Shiftkey while right-clickingWindows Firewall. SelectRun As..., and in the resulting dialog box, selectThe following userradio button, and then supply the username and password of an account with local administrator privileges. (For more, see In Windows, how can I run an administrator task from a non-admin account?)
- In the
Windows Firewalldialog box, on theGeneraltab, make sure theOn (recommended)radio button is selected and theDon't allow exceptionscheckbox is not selected.
- From the
Exceptionstab, clickAdd Port....
- In the
Edit a Portdialog box, for "Name:", enterSymantec System Center, and for "Port number:", enter2967. Then, for versions of Symantec AntiVirus up to version 9, select theUDPradio button. For versions 10 and later, select theTCPradio button.
- Click
Change Scope, and in the resulting dialog box, select theCustom Listradio button, and provide the IP address of your SAV server. If you have more than one console, you can enter a list of IP addresses or subnet/netmask entries separated by commas.
- To close all dialog boxes, click
OKthree times.
Last modified on May 13, 2009.







