Learn about and download the Symantec Diagnostic Tool (SymDiag), which helps identify common issues, gathers data for support-assisted troubleshooting, and links to additional support resources.
sudo chmod +x ./symdiag.run
sudo ./symdiag.runSymDiag for macOS is not available. Instead, download the GatherSymantecInfo tool.
The Symantec Diagnostic Tool (SymDiag) is a multi-product, multi-language diagnostic, and security analysis utility. SymDiag is provides self-help support for Symantec product technical issues, zero-day threat analysis, best practice recommendations, and proactive services to customers.
If you require further assistance, SymDiag lowers the level of effort and increases efficiency by automating data gathering and support case submission.
With this release we have completed a DLP product support refresh. This includes...
Support for DLP 15.5 on Windows and Linux
Additional data grabs required by support
Added support for the following products
Data Insight
Information Center Analytics
Optical Character Recognition
SymDiag supports the following Symantec products:
*SymDiag includes reporting on license status for this product. See About the Licensing Dashboard in SymDiag.
SymDiag runs on the same Windows operating systems that Symantec products that function with SymDiag support.
On Windows 2008 R2 Server Core, run SymDiag with the following command-line switch:
-net2
The following x86 and x64 Linux distributions are supported.
| Distribution | Minimum Version |
|---|---|
| RedHat Enterprise Linux | 6.5 |
| CentOS | 6.5 |
| Fedora | 16 |
| Oracle Linux | 6.5 |
| Debian | 6.0.5 |
| Ubuntu | 11.10 |
| SUSE | 11.0 |
| Novell Open Enterprise Server | 11.0 |
SymDiag for macOS is not available. Instead, download the GatherSymantecInfo tool.
SymDiag comes with many command-line parameters, and you can remotely deploy SymDiag.
Before contacting Support, you can identify Symantec product issues, licensing status and identify best-practice configurations of your Symantec product. You can also attempt to identify suspicious files and start an investigation into whether they are zero-day threats.
You can run SymDiag on computers to produce self-help solutions, as well as collect data for support cases with Symantec.
You should use SymDiag to gather data on relevant computers for support cases with Symantec. SymDiag lets you deliver that data directly into a new or existing support case.
The Symantec Diagnostic Tool (SymDiag) has been developed by Symantec over many years and has had a number of different names. The following support utilities have been a part of that history and are all now no longer used by support in favor of the improved and inclusive features maintained in SymDiag:
Build 2.1.268 (8/26/2019)
4113910 [14.1] Detect entitlement to Application Hardening
4123826 [14.1] Detect if HID is active on SEP client
4123829 [14.1] Determine if SEP client is using low bandwidth mode for definition updates
4123834 [14.1] Determine if MEM policy is enabled
4222696 Examine additional registry value for IE Enhanced Security self-help report
4224812 Update Linux support for .Net 4.0
4228804 Display both SEP SBE and SEP C when neither installed
4240822 [SEP 14.2 RU1a] Update latest version report
4240947 Create ica product
4240948 Create DLP OCR product
4240949 DataInsight product integration into SymDiag
4241058 Add DataInsight product DLL
4241254 DataInsight product Reports
4241575 Create ica product DLL
4241576 Create ica product reports
4242016 ICA product installation detection and version detection
4242018 ICA product - collect Database logs
4242732 Create ica product information page
4243188 [ICA] Database impersonation support
4243461 Add DLP OCR product DLL
4243472 [DLP OCR] Add reports - System Requirement, services, latest version
4243525 [DLP OCR] collect log files
4243839 Update latest version of SEP 15 (client only)
4244966 [SEP Cloud] Update latest version
4246224 SEPM CR Appendix C is listing all groups, even those with no clients
4246226 SEP Debug Wpp Provider Id list needs to have a vertical scroll bar
4246672 Add SYMSA1487 to EPClient and SEP SBE (EPMP)
4246828 [SEP Cloud] Update latest version
4246951 [KB Updates] Remove link to TECH105894 in EP communications self-help reports
4247159 SEP Intrusion Prevention status report can lock and not complete
4243713 Unable to stop WPP debug logging
Includes data collection improvements
Build 2.1.264 (6/4/2019)
4014911 Clarify debug logging issue reproduction text: Click 'Next' to stop debug logging and start data collection
4066938 [Cloud] Add WPP reboot logging to SEP Cloud and SEP SBE
4077645 Disabling sylink debug logging causes timed debug logging to prompt to continue
4088399 [SEP] Test connectivity to Reputation Server
4103635 Collect Event Logging for MDM
4134929 Parsed log month-day are reversed
4181989 SEPM Service Permissions report is missing
4212313 Change SEP Cloud latest version report to show Warning status when beyond latest version
4217735 Reversal of sub-folder exclusion inclusion in Configuration Review
4234972 Update SEP Cloud latest version report
4236166 SONAR Low Risk Detection finding report is displayed when it is OK
4236941 Add new commands to help file
4237780 [SYMSA1479] Update security advisory report for EPClient and EPConsole
4237781 [SYMSA1479] Add security advisory report to EP SBE and EP Cloud
4238526 Cmdline: -ps -prod epconsole -s is not capturing config review
4238904 Remove WI from public as current releases do not support
4240477 Update latest version of EP SBE
4240791 Collect additional files for dlp enforce
4240941 Collect additional files for dlp detection
4240943 Collect additional files for ict
4240944 Collect additional files for endpoint agent
4241312 Add Endpoint Vulnerability Remediation to feature list
Build 2.1.260 (4/1/2019)
4002717 Add CVSS score or severity to vulnerability report
4077975 IndexOutOfRangeException at System.Data.RBTree'1.GetNodeByIndex
4127494 Exception when running on Win7 tablet and collecting data
4207335 [Reduce Run Time] Run Proactive Services report as Advanced Option for data collection for Support scan
4216289 Finding 'Application Learning is enabled' shows the top 5 groups based on client count
4218308 Increase Customer Information viewable space
4219060 Add Windows Server 2019
4219667 Did not detect WSS SSL Intercept Certificate
4221315 SEPM_VulnerableClientVersions table is missing when running SE Value Reports
4222600 Update SEP Cloud to latest version
4224809 The minimum .Net Framework is now v3.5
4224843 Add missing builds of SEP
4225341 If run self help on sepm, Protect Overview tab is displayed
4225495 Failed to stop WPP Logger when finishing WPP reboot debug logging
4228810 Update latest version of SEPC
4229750 Allow user to deselect the ScGroupPolicy command
4231748 The Appendix “Groups to Number of Clients” does not show groups with no clients
4232673 Enable Web Isolation
4233705 AV Defs out of date finding includes clients that have not checked in
Build 2.1.254 (12/5/2018)
4211827 Add refresh of 14.2 MP1 to SEP
4212179 Update latest version of SEP Cloud
4214935 On SEPM 14 CR, SONAR status is incorrect
4214945 SEPM CR: Linux client does not support Network Threat Protection, Proactive Threat Protection
4215172 Add new version to Unified Agent
4215761 Unable to connect to DLP database as ipcClient.jar did not run
4216574 Add Advisory SYMSA1468
4216945 Update latest version 22.16.2.22
Build 2.1.250 (10/15/2018)
4153489 [14.1] Add Cloud status text for unenrolled and pre-cloud versions of SEPM
4194398 Update for SEE 11.2.0
4198977 Intrusion Protection state is not correctly reported in Endpoint Protection Client Features report
4203920 [14.2] Update UI for CVE debug logging
4204218 Update SEP Cloud to 22.15.0.88
4204380 Full EP Client Information report missing from Threat Analysis Scan
4204896 Update latest version report for SEP 14.2 MP1
4205720 [AuthConnector & BCAAA] add Advanced debug logging options
4205823 [Information Centric tagging] change Data Collection type to ALL Data by default
4206747 [DLP] DLP 15.1 version is not detected and also services
4208054 OK Findings are shown in Protection Overview Detailed Findings as errors
4209493 Update SEP Cloud to 22.15.1.8
4209866 Update SEP SBE to latest version
Build 2.1.248 (9/7/2018)
4101596 Sometimes the database file is corrupted by Ionic.zip
4127115 Sybase timeout collecting sepm_client data
4128271 Add section to Protection Overview for describing Application & Device Control installation and configuration
4141961 IPS Network Filter Driver drivers and services report false positive
4147541 [SEPM CR] Add the Windows OS directory to exception analysis
4184759 DLP 15.1 GA 6/25, but is more than a version change
4188934 [SymDiag] Move the “Cancel and Save Locally” option to just be another radio button
4189363 Updated for DLP 15.1 - Windows platform changes
4190870 Update SMG version to 10.6.5
4190879 Update SMSMSE to latest version(v7.9)
4192548 Updated for DLP 15.1 - Linux platform changes
4194792 [SEP] Add file description column at Engine Files on Information page of SEP client
4199525 jdbc is not able to connect for some users
4199981 Create brief SEP Client Information report for non-SEP Client focused data collection
4199990 SEPM_VirusTable is empty when it should have entries
4200137 Failure to detect SEP SBE 22.14
4200190 Update latest version for SEP SBE
4200205 [Auth Connector] Add Latest version report and service running report
4200489 Update latest version of SEP Cloud
4200919 Add ability to cancel a single data collection command if it takes too long
4201140 [Auth Connector] Add System Requirements report
4201192 [Unified Agent & WSS Agent] Add System requirement report, Latest version report and service running report
4202803 Older versions do not merge data into SEPM Config review.
4202845 The config review Detections by Scan Type does not count Heuristic Scans
Related terms: symhelp, symhelpexe,symantec help
Subscribing will provide email updates when this Article is updated. Login is required.
This will clear the history and restart the chat.
Thanks for your feedback. Let us know if you have additional comments below. (requires login)