WithSecure Elements Agent Update Failure

Newbie142303 Lv1Posted 2025-Feb-06 20:35

Im having problems to update WithSecure Elements Agent due to Sangfor Policies.

By solving this question, you may help 836 user(s).

Posting a reply earns you 2 coins. An accepted reply earns you 20 coins and another 10 coins for replying within 10 minutes. (Expired) What is Coin?

Enter your mobile phone number and company name for better service. Go

Enrico Vanzetto Lv4Posted 2025-Feb-07 01:19
  
Hi,
to allow the WithSecure Elements Agent to function properly through your NGAF, you'll need to configure specific ports and FQDNs. Here are the details:

Ports to Allow:
TCP 1723: For PPTP tunnel maintenance traffic.

Protocol 47 (GRE): For PPTP tunneled data.

UDP 500: For Internet Key Exchange (IKE) in IPSec VPN.

UDP 4500: For IPSec NAT-T.

Protocol 50: For Encapsulation Security Payload (ESP) in IPSec VPN.

Protocol 51: For Authentication Header (AH) in IPSec VPN.

UDP 1701: For L2TP traffic.

Protocol 115: For L2TP traffic.

TCP 8080: For Policy Manager Server communication.

TCP 8081: For Policy Manager Web Reporting.

TCP 443: For HTTPS communication.

TCP 80: For HTTP communication (legacy clients).

FQDNs to Allow:
elements.withsecure.com: For communication with WithSecure Elements Endpoint Protection2.

policymanager.withsecure.com: For communication with Policy Manager Server.

Make sure to configure your Sangfor NGAF to allow traffic on these ports and to the specified FQDNs
ZackASSB Lv1Posted 2025-Feb-07 01:38
  
It's not a VPN connection issue. My problem is that I installed the WithSecure Element Agent for endpoint protection, but when I try to validate the key, the laptop with the agent installed cannot reach the WithSecure server, resulting in a validation failure. However, if I use a hotspot, the update is successful.
Zonger Lv5Posted 2025-Feb-07 03:22
  
The issue you're experiencing is likely due to Sangfor's network policies or firewall settings blocking the connection to the WithSecure server and preventing the agent from validating the key. When you switch to a hotspot, the connection bypasses these restrictions allowing the validation to succeed. Please check with your network administrator to identify and whitelist the necessary WithSecure server endpoints or ports in Sangfor's policies.
CLELUQMAN Lv4Posted 2025-Feb-08 08:39
  
you can do troubleshooting.
System>Troubleshooting>Troubleshooting

Turn on global passthrough .
Run withsecure update.
Then u filter by the laptop ip.
see what is blocking. then create a policy to allow it.
Prosi Lv3Posted 2025-Feb-12 11:40
  
WithSecure Elements Agent --> Select Updates --> details of the latest updates under Connection.
To manually check for the latest updates

I Can Help:

Change

Moderator on This Board

4
0
0

Started Topics

Followers

Follow

134
71
23

Started Topics

Followers

Follow

1
142
3

Started Topics

Followers

Follow

Board Leaders