-
Security Cloud Client is not connected on Server Security / Client Security
Issue: Security Cloud Client is not connected on Server Security / Client Security Resolution: You need to ensure that the affected F-Secure host is allowed to connect to the URL: * * https://a.karma.sc2.fsapi.com * * https://api.doorman.fsapi.com You can try to open https://a.karma.sc2.fsapi.com/healthcheck and…
-
Does Policy Manager Console have activity logging (audit trail / auditing)?
Issue: Does Policy Manager create and maintain an audit log for user and admin activity? For example for these events: * User login / logoff * Host deletion / add / rename events * Policy sub-domain deletion / add / rename events * Change of policy settings Resolution: The Policy Manager Server logs can be found in the…
-
How to block an application using Application Control ?
Issue: * How to create an Application control rule in WithSecure Policy Manager Console which blocks an application? * What 'condition' should be used for example to block Microsoft Office using Application Control? Resolution: The WithSecure Application Control feature is included in WithSecure Client Security 15 Premium…
-
Unable to release items from quarantine using Email and Server Security web console
Issue: 1) Unable to release items from quarantine using WithSecure Email and Server Security web console. When user selects the item from quarantine and clicks release, nothing happens and the item remains in quarantine. No visible error notification is shown. 2) Unable to release quarantine emails with error reported to…
-
Client Security is not receiving updates from Policy Manager via proxy (PMP or http) or direct connection
Issue: Via proxy or direct connection, Client Security is not receiving updates from Policy Manager. The following errors are visible in C:\ProgramData\F-Secure\Log\AUA\AUA.log: Connecting to http://<Policy Manager IP address>/guts2/ via http proxy <Proxy IP address> Update check failed. There was an error connecting…
-
How to replace the default self-signed Policy Manager certificate with a trusted certificate authority (CA) created certificate?
Issue: How can I replace the default self-signed Policy Manager certificate with a trusted certificate authority (CA) created certificate? Resolution: Assume that you have: * The signed or maybe self-signed certificate (with full chain of intermediate CA) and private key for it inside PKCS12 Keystore. * It is protected…
-
After upgrade to Policy Manager 15.00 or 15.01, Client Security or Email and Server Security hosts show disconnected status or are missing in console (error 12175)
Issue: After upgrading to Policy Manager 15.x, Client Security or Server Security hosts show disconnected status or are missing in the Policy Manager Console. AsyncSendRequest SSL fail: 12175 is logged in the pmpselectorplugin.log or nrb.log: I: UpdatablePmCertVerifier::RenewCertificates: Renewing certificates from…
-
Should I disable or uninstall Windows Defender on Windows Server 2016/2019/2022 after installing Server Security or Email and Server Security or Elements Endpoint Protection for Servers?
Issue: I've installed Server Security or Email and Server Security or Elements Endpoint Protection on a Windows Server 2016/2019/2022 server, but Windows Defender real-time protection is still on. Should I deactivate it when I'm using the WithSecure product? Resolution: Yes, Windows Defender should be deactivated when…
-
Host unable to connect to WithSecure Policy Manager Server after upgrading or installing WithSecure Client Security 14.x (or later)
Issue: After upgrading or installing WithSecure Client Security/Server Security 14.x or newer, you encounter issues with communication. Symptoms include: * the host is unable to connect to WithSecure Policy Manager Server * the host is not visible on the "Import host" list in WithSecure Policy Manager Console. However, the…
-
Email and Server Security Web Console login prerequisites
Issue: I am unable to log in to the F-Secure Email and Server Security Web Console after product installation Resolution: You can check that the server supports 'Windows Authentication: * On the taskbar, click Server Manager. * In Server Manager, click the Manage menu, and then click Add Roles and Features. * In the Add…