Slow web site access or crashes when Endpoint Protection's Generic Exploit Mitigation feature is enabled
Last Updated November 10, 2017
While accessing a site through Internet Explorer, Firefox, or Chrome, Symantec Endpoint Protection (SEP) users face a delay of at least a minute and/or crashes. You find that disabling Endpoint Protection's Generic Exploit Mitigation (GEM) feature resolves the issue.
SEP 12.1, 14 (any version)
This issue has been resolved in the November 1, 2017 IPS definitions.
If the November 1, 2017 or later IPS definitions are installed and you continue to experience this issue, exclude Internet Explorer, Firefox and/or Chrome from the GEM application coverage, then contact us for further support:
In the Symantec Endpoint Protection Manager (SEPM) console, open the Policies page.
Under Policies, click Intrusion Prevention.
Under Intrusion Prevention Policies, right-click your Intrusion Prevention policy and select the Edit... menu option.
In the Intrusion Prevention Policy window, click Generic Exploit Mitigation.
Under Generic Exploit Mitigation Application Coverage, untick the iexplore.exe, firefox.exe and/or chrome.exe options, then click the OK button.
Repeat steps 3 through 5 for any other Intrusion Prevention policy you may have.
This will allow to have GEM cover all but the excluded applications, ensuring maximum protection.
Symantec will update this article once more information is available. Click the Subscribe to this Article button to be notified of future updates through email.
Subscribing will provide email updates when this Article is updated. Login is required to Subscribe