Symantec Endpoint Protection Arm64 Hot Official
The ecosystem has evolved from an experimental feature in SEP 14.3 RU7 to a production‑ready offering in SEP 16 (ESA) and client‑only patches.
A: No. As of Broadcom’s official statement, ARM support is only for unmanaged (self‑managed) or cloud‑managed (SES) clients. On‑prem SEPM management is not available for ARM64 devices.
Let me know how you'd like to . Symantec Endpoint Protection 14 - Broadcom Inc.
Running Symantec Endpoint Protection on ARM64 architecture provides several benefits, including: symantec endpoint protection arm64 hot
Until this is resolved, administrators should in policies applied to ARM64 endpoints, or rely on cloud‑based integrity checks where available.
: The on-premises Symantec Endpoint Protection Manager (SEPM) does not support managing ARM64 devices. You must use the Symantec Endpoint Security (SES) cloud console to manage the agent on these endpoints.
for on-premises management via Symantec Endpoint Protection Manager (SEPM). You must use the Symantec Endpoint Security (SES) cloud console to manage these devices. Operating System : Supports Windows 11 (21H2, 22H2). Unsupported Features on ARM64 Application Control. Exploit Protection. Threat Defense for AD. Custom Application Behavior. Legacy Internet Explorer/Firefox-based Browser Protection. Broadcom support portal How to Install Cloud-Managed : Select the Windows ARM architecture The ecosystem has evolved from an experimental feature
| Problem | Likely Cause | Suggested Resolution | |---------|--------------|----------------------| | Installation fails on Windows 11 ARM | Missing Microsoft Trusted Signing support | Install the Trusted Signing update from Microsoft. Ref: Broadcom ACS article | | Host Integrity check error (0x00200001) | Known bug in SEP 14.3 RU10 on ARM64 | Disable Host Integrity in policy / wait for hotfix | | SEP client not shown in SEPM console | ARM64 clients cannot be managed by on‑prem SEPM | Use unmanaged mode or SES cloud management | | Certain firewall rules not applying | Exploit Protection / Browser Protection not supported on ARM64 | Adjust policy to avoid unsupported features |
Yes. As of SEP 14.3 , native support is available.
: Native ARM64 devices currently require management through the Symantec Endpoint Security (SES) cloud console , as the on-premises Symantec Endpoint Protection Manager (SEPM) does not yet support managing ARM64 endpoints. System Prerequisites : On‑prem SEPM management is not available for ARM64 devices
(specifically for older Firefox or Internet Explorer-based IPS policies). Exploit Protection . Symantec Endpoint Security (SES) Complete
Broadcom also extended ARM64 support to Linux endpoints through a tool called seplpkg (SEP Linux Packager). Administrators can use this utility to download installers for RHEL 8/9 on ARM64/aarch64 architectures.
: VNC or screen sharing may be lost on ARM-based macOS (11.4/12) if Vulnerability Protections are toggled.
. Securing ARM64 hardware requires migrating from traditional, on-premises management to Broadcom’s cloud-native framework. This technical analysis outlines architectural restrictions, deployment steps, and configuration rules for implementing Symantec security on ARM64 infrastructure. 🏛️ The Architecture Shift: Cloud vs. On-Premises
Navigate to the or Enrolling Devices panel.