Endpoint Protection

 View Only
  • 1.  AD OU Advantage & Disadvantage with SEPM

    Posted Jan 19, 2012 09:22 AM

    Hi,

    Can someone explain me the advantage & the disadvantage of integrating AD OU with SEPM???



  • 2.  RE: AD OU Advantage & Disadvantage with SEPM

    Posted Jan 19, 2012 09:26 AM

    http://www.symantec.com/business/support/index?page=content&id=TECH102546

     

    I have gone through the above doc. So anything apart from that would be much helpful



  • 3.  RE: AD OU Advantage & Disadvantage with SEPM

    Trusted Advisor
    Posted Jan 19, 2012 09:28 AM

    Hello,

    Did you check this Aricle:

    Organizational Units from Active Directory in Symantec Endpoint Protection 11.0

    http://www.symantec.com/docs/TECH102546

    and the Thread Below:

    https://www-secure.symantec.com/connect/forums/sep-11-active-directory-integration-advantagesdisadvantages

    Hope that helps!!



  • 4.  RE: AD OU Advantage & Disadvantage with SEPM

    Posted Jan 19, 2012 09:35 AM

    Can Find if the client is installed with SEP
    Cannot move a client. However can copy to a new group. If copied the client will be available as per the OU structure in the existing group but will be copied to the new group where policy from new group will be applied.
    Cannot switch the mode manually(Use of move client utility can be done)

    Anything apart from this???

    Both advantage & disadvantage.



  • 5.  RE: AD OU Advantage & Disadvantage with SEPM

    Trusted Advisor
    Posted Jan 19, 2012 09:38 AM


  • 6.  RE: AD OU Advantage & Disadvantage with SEPM

    Posted Jan 19, 2012 09:40 AM

    Thanks for the update. I have gone through both the links. The thread has the main info of AD sync with SEP deployment. However would like to know few more info as the above points which I have added.

    Do let me know please as the information is required for some presentation.



  • 7.  RE: AD OU Advantage & Disadvantage with SEPM
    Best Answer

    Posted Jan 19, 2012 01:00 PM

    Hi Shiva,

    Here are some information:

    You may delete clients only from AD & not from SEPM.

    User mode configuration works best with AD Sync.

    AD sync will be apt for a network with more than 10k clients to manage the groups.

    Disadvantage: Its convenient for testing purpose.

    Advantage & Disadvantage is based on how your AD structure is based on.



  • 8.  RE: AD OU Advantage & Disadvantage with SEPM

    Posted Jan 20, 2012 12:17 AM

    http://www.symantec.com/business/support/index?page=content&id=TECH102546

     

     

    AD Integration with SEPM only helps to retain your AD structure so that you can apply policies accordingly.OU import has nothing to do with deployment.

    However once you have imported OU's and deploy SEP using Group Policy Software Deployment..all the client will go to their respective containers in SEPM. 

    Find Unmanaged Computers--You can scan a whole range of IP address..which will find your computers..no need to specify any name leave that blank..You can deploy as many clients you want.

    Migration and Deployment wiz--Click ok Domain click Add--Supply Domain admin credentials--s,-Skip the offline client it will add all your machines ( except the ones which cannot be contacted ) then you can start the deployment on all of them at once.



  • 9.  RE: AD OU Advantage & Disadvantage with SEPM

    Posted Jan 27, 2012 10:57 AM

    I believe its inconvenient for testing purpose ;-)