Jump to content

Oracle Linux : ESET Real-time file system protection is non-functional


Recommended Posts

During the deployment of the Eset security product on an Oracle Linux system, I encountered a persistent red alert. The alert advises me to attempt a system restart or a reinstallation of the Eset security product, but neither of these actions has resolved the issue.

image.thumb.png.618bba9746777c20982b724855cabbaf.png

I conducted research on the web to identify the cause of the problem. It appears to be related to the system's Secure Boot status, which ideally should be inactive. However, I couldn't find any settings related to Secure Boot in my system. When I run the command :

mokutil --sb-state

It outputs the following message: 

EFI variables are not supported on this system

This red alert seems to appear consistently on all Oracle Linux systems.

I'm seeking guidance on how to address and resolve this issue. Has anyone encountered a similar problem or can offer insights into potential solutions?

Your assistance would be greatly appreciated...

 

Link to comment
Share on other sites

  • ESET Staff

HI TTN,

could you please specify version of Oracle Linux and also version of Linux Server Security? Also it would be great to check event log in Server Security, not everything is send to Protect Console. 

Basically there are two main issue related with non-functional RTP:

- Oracle Linux doesn't contain latest updates and therefore our RTP module could not be compiled
- Secure boot is enabled and our RTP module needs to be signed after compilation in order to be allowed to be loaded into kernel. 

Regards,
Kurco

Link to comment
Share on other sites

Oracle Linux Server 7.9 and 9.2 updated with ESET Server security 10.0.328.0.

Secure boot is not enabled.

 

Link to comment
Share on other sites

  • ESET Staff

Have you checked online help of Server Security? maybe this could help: https://help.eset.com/essl/10.0/en-US/realtime_protection_cannot_start.html#s-method-3-os-with-unbreakable-enterprise-kernel

Oracle is using special kernel and sources for our RTP module needs to be installed manually. 

Regards,
Kurco

Edited by kurco
Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...