To troubleshoot, stop the service through the Windows Services.msc console. Navigate to C:\Program Files (x86)\Symantec\Symantec Endpoint Protection Manager\Tomcat\etc and locate the conf.properties file. Due to permissions, it is recommended to copy this file to a different location for editing before replacing it. Edit the file, changing the line scm.log.loglevel=WARNING to scm.log.loglevel=FINEST . Add a new line at the bottom: scm.mail.troubleshoot=1 . Save the file, restart the SEPM service, and request the password reset email again. The password link will now be written to the stdout-0.log file, located in the tomcat\logs directory. Once you have regained access, remember to revert the changes to the conf.properties file and restart the service again.
tool is typically included in your local installation files rather than needing a separate "free download" from the internet. Locating resetpass.bat on your server
Downloading files named resetpass.bat from untrusted internet sources poses a massive security risk to your network. Malicious actors frequently disguise malware, trojans, or ransomware as administrative tools to compromise corporate endpoints. If your SEPM server is running, the correct and safe file is already sitting on your hard drive. Where to Find the Official resetpass.bat File
The script automatically resets the password for the default username to the word admin . To troubleshoot, stop the service through the Windows
Many websites claim to offer a "free download" of the resetpass.bat file.
: Select the Forgot your password? link underneath the login fields.
Open services.msc and the Symantec Endpoint Protection Manager service. Edit the file, changing the line scm
Log into the Windows Server hosting SEPM as an Administrator.
: Open the Symantec Endpoint Protection Manager login portal.
The tool is located in the subfolder of your SEPM installation directory. Common paths include: The password link will now be written to the stdout-0
Follow these exact steps to safely reset your admin credentials using the local utility: Step 1: Open an Elevated Command Prompt Click the on your SEPM server. Type cmd into the search bar. Right-click Command Prompt and select Run as administrator . Step 2: Navigate to the Tools Directory
Forgetting the administrator password for can be a stressful scenario, hindering your ability to manage security policies, update definitions, or add new clients. While early versions of Symantec provided a resetpass.bat script, newer versions of SEPM 14 have evolved, changing how password recovery is handled.
for the lockout period to expire before the reset takes effect. Security Risk:
Once the wizard completes, restart the SEPM services, open your console, and log in using your username and the brand-new password you just created. Best Practices for SEPM Account Management