I'd like to kindly ask for your help to check on our issue starting the capim agent VeRsIoN: 14.10-0 (1603) on OEL 7.9 with os patch 4.1.12-124.51.2.el7uek.x86_64.
I am thinking that this is a compatibility issue and wondering if we have a patch or new agent package to address this.
[email protected] production: /opt/CA/AccessControl/bin] ./issec
CA Privileged Access Manager Server Control version 14.1 installed in /opt/CA/AccessControl
VeRsIoN: 14.10-0 (1603) Compiled On:Mar 28 2021 18:37:38 x86_64
CA Privileged Access Manager Server Control kernel extension is not loaded.
CA Privileged Access Manager Server Control daemons are not running.
CA Privileged Access Manager Server Control security daemon is not running.
CA Privileged Access Manager Server Control watchdog daemon is not running.
CA Privileged Access Manager Server Control agent daemon is not running.
CA Privileged Access Manager Server Control serevu daemon is not running.
CA Privileged Access Manager Server Control selogrd daemon is not running.
CA Privileged Access Manager Server Control selogrcd daemon is not running.
CA Privileged Access Manager Server Control eacws daemon is not running.
CA Privileged Access Manager Server Control ReportAgent daemon is not running.
CA Privileged Access Manager Server Control AgentManager daemon is not running.
CA Privileged Access Manager Server Control policyfetcher daemon is not running.
CA Privileged Access Manager Server Control KBLAudMgr daemon is not running.
CA Privileged Access Manager Server Control auxiliary daemon is not running.
CA Privileged Access Manager Server Control uxauthd daemon is not running.
CA Privileged Access Manager Server Control sepmdd daemon is not running.
CA Privileged Access Manager Server Control sersvd daemon is not running.
[[email protected] production: /opt/CA/AccessControl/bin] ./seload
CA Privileged Access Manager Server Control seload v14.10.0.1603 - Loader Utility
Copyright (c) 2018 CA. All rights reserved.
SEOS_load: Executing un/load exit file, /opt/CA/AccessControl/exits/LOAD/SEOS_load_int.always -pre
CA Privileged Access Manager Server Control seversion v14.10.0.1603 - Display module's version
Copyright (c) 2018 CA. All rights reserved.
Running under: Linux
/opt/CA/AccessControl/bin/SEOS_load: line 259: echo: write error: Invalid argument
/opt/CA/AccessControl/bin/SEOS_load: line 259: echo: write error: Device or resource busy
seos_1410_0_1603; resolved symbols:
Symbol Value Status
----------------------------------------------------
sys_call_table 0xffffffff81b5ac20 done
do_execve 0xffffffff81229fa0 done
do_fork 0xffffffff8108c7d0 done
getname_kernel 0xffffffff81232620 done
lookup_address 0xffffffff810765d0 done
randomize_va_space 0xffffffff81cc05d0 done
sys_ni_syscall 0xffffffff810b02c0 done
int_ret_from_sys_call 0xffffffff8175fd82 done
ia32_sys_call_table 0xffffffff81b5bb00 done
tasklist_lock 0xffffffff81b490c0 done
clflush_cache_range 0xffffffff81075560 done
cpa_lock 0xffffffff81f79660 done
find_task_by_pid_ns 0xffffffff810ad830 done
flush_tlb_all 0xffffffff8107bac0 done
stub_fork 0xffffffff8175ffa0 done
stub_vfork 0xffffffff8175ffb0 done
stub_clone 0xffffffff8175ff90 done
stub_execve 0xffffffff8175ffc0 done
stub_execveat 0xffffffff8175fff0 done
stub32_execveat 0xffffffff81760000 done
getname_flags 0xffffffff812327d0 done
do_execveat 0xffffffff81229fd0 done
do_execveat_common.isra.25 0x0 init
stub32_fork 0xffffffff817672b0 done
stub32_vfork 0xffffffff817672c0 done
stub32_execve 0xffffffff8175fff8 done
stub32_clone 0xffffffff817672d0 done
init_pid_ns 0xffffffff81b8ba40 done
SEOS_load: Executing un/load exit file, /opt/CA/AccessControl/exits/LOAD/SEOS_load_int.always -post
SEOS_load: SEOS_syscall WASN'T loaded
[[email protected] production: /opt/CA/AccessControl/bin] df -h /opt/CA/
Filesystem Size Used Avail Use% Mounted on
/dev/mapper/rootvg-opt 10G 2.5G 7.5G 25% /opt
[[email protected] production: /opt/CA/AccessControl/bin] uname -a
Linux xxxxxxxxxxx 4.1.12-124.51.2.el7uek.x86_64 #2 SMP Tue May 11 15:12:13 PDT 2021 x86_64 x86_64 x86_64 GNU/Linux
Release : 14.1
Component : Endpoints
Patches applied on top of a base release in Linux may cause seos kernel modules to fail to load.
We do support OEL 7.9 but we tested it with a much later kernel version than what you are reporting here. . You will need to send in the full support.tar so we can confirm and update seos
lsb_release -r
ls /boot
cat /boot/grub2/grub.cfg
/opt/CA/AccessControl/lbin/getvar.sh -env OSTAR OSVER OS OSMAJ OSMIN MACHINE OSMD OSMP OSMIC OSMAJMIN OSNAME
(check /tmp/pre_install/)
ls -la /opt/CA/AccessControl/bin/SEOS_syscall