WelcomeEnterpriseSmall BusinessHome & Home OfficePartnersAbout Symantec
5 July, 2001
Enterprise Security Manager Security Update 8

File(s)
The files below have been obsoleted by a newer Security Update.

Download Security Update 8 Release Notes (PDF)

Download Security Update 8 for Windows 2000
Download Security Update 8 for Windows NT 4.0 x86
Download Security Update 8 for HP-UX
Download Security Update 8 for AIX RS/6000
Download Security Update 8 for IRIX
Download Security Update 8 for Digital UNIX
Download Security Update 8 for Sequent x86
Download Security Update 8 for Solaris SPARC
Download Security Update 8 for RedHat Linux 6.2 and 7.0

Download Security Update 8 User Guide for Windows 2000 (PDF)
Download Security Update 8 User Guide for Windows NT 4.0 x86 (PDF)
Download Security Update 8 User Guide for UNIX (PDF)

Download ESM Operating Requirements Document (PDF)
Download ICE Module Training Guide (PDF)

Checksums

Note: If you are planning on upgrading to ESM 5.1 in the near future, we recommend that you install ESM 5.1 before applying SU8. ESM 5.1 contains SU4. If SU8 is installed to an older version of ESM it will need to be reapplied after ESM 5.1 is installed.

Description

Install Security Update 8 to upgrade the Windows 2000, Windows NT, and UNIX security modules on ESM 4.4, 4.5, and 5.x Agents. For detailed descriptions of new features and enhancements, download the ESM Security Update 8 Release Notes.

New features and enhancements for Agents running on Windows and UNIX systems include:

  • Enhanced File Watch module:

    • New Signature Type values in the Signature sublist of the Malicious File Watch template let you search for case-insensitive and case-sensitive file names.
    • Malicious File Watch templates are now editable. Step-by-step editing instructions are provided in Chapter 6 of all Security Update 8 User Guides.
    • Six new default Malicious File Watch templates are provided to enable searches for Windows vulnerabilities described in NIPC advisories; searches for Windows files commonly used for hacking purposes; and searches for files associated with the Hide rootkit, the Adore worm, the Lion worm, and the t0rn rootkit on UNIX and Linux operating systems.

  • Template Updates - Patch templates have been updated to include all vendor-released patches through May 31, 2001, for Windows 2000, Window NT, Solaris, HP-UX, AIX, RedHat Linux, and Digital UNIX operating systems. New default ntnipc Patch and Registry templates are also provided to check Windows NT systems for vulnerabilities discussed in NIPC advisory 01-003.

New features and enhancements for Agents running on UNIX systems include:

  • Support added for RedHat Linux Version 7.0 - Modules that were added for RedHat Linux Verson 6.2 in Security Update 6 now run on RedHat Linux 7.0 systems that are installed as ESM 5.1 Agents.

  • File Content Search check added to UNIX File Find module - This new template-driven check lets you search ASCII text files for text strings or text patterns that you define as Required or Prohibited. Text searches can be defined by lines or text blocks to examine security settings in system configuration files that are not examined by other ESM security checks.


Last modified on: Friday, 24-Oct-03 22:53:29