Hi all, I need to monitor the status of Symantec Antivirus SEP 14. How can I do that without a given sensor ? Any hints ? b/r Günter


Article Comments

Hello Günter,

As the data that SEP14 is exposing is very limited the best way to monitor the function of it would be to monitor it's processes or services.

The Windows Services can be monitored with our WMI Service Sensor or SNMP Windows Service Sensor.
The specific processes with our Windows Process Sensor.

To monitor the API of SEP14 as described on their documentation here: https:apidocs.securitycloud.symantec.com/#/doc?id=stats
You can use our REST Custom Sensor to query and parse the results from here.


Kind regards,
Johannes Beyerlein, Technical Support Team


Nov, 2022 - Permalink