I am facing a problem with OAS exclusion list. The OAS policy with exclusion list that i specified on cloud ePO is not reflected on my linux machine. The agent version is 5.6.1 and Endpoint Security for Linux Threat Prevention version is 10.6.4. Did anyone ever have this problem before? and how to resolve this?
Are you seeing updated communication time from the Linux box in your System Tree?
As long as Extensions are up to date policy enforcement should not be problem. Can you please share the information what exclusion you have in EPO and what reflected locally?
Interesting. We would need to look at the configuration and logs once to take it further. Nothing conclusive I can say but there is known issue Issue where Policy enforcement from ePO fails after restarting McAfee Agent 5.6.0. This has been found with 10.6.0 version. In case you are using the same version of ENSLTP and Agent then thats where we should start looking into. Otherwise I will need to look at the ENSLTP and MA debug log. Would suggest to open a SR with support so that we can investigate it further.
There can be many reasons a policy isn't being applied so a general solution recommendation is hard in this situation.
A few things to check:
* Does the issue persist if you assign all "McAfee Default" policies for ENS to the client?
* Does the policy status within ePO say "enforcing"?
* When you press "Check for new policies" on the Agent Status Monitor, do you see an entry for ENDP_AM?