When the Active Directory connection updates its index, in Symantec Data Loss Prevention (DLP), the following error occurs on the "Index and Replication Status" page ( System > Settings > Directory Connections > Configure Directory Connection ).
"Unexpected exception while creating exact data profile".
The tomcat log shows the following error:
14 Sep 2021 02:03:53,087- Thread: 84 SEVERE [com.vontu.profiles.manager.directoryconnection.DirectoryConnectionSourceIndexCreator] Unexpected exception while creating exact data profile "DC: User Groups" version 288
Cause:
java.security.AccessControlException: access denied ("java.io.FilePermission" "C:\ProgramData\Symantec\DataLossPrevention\EnforceServer\15.8.00000\..\..\ServerPlatformCommon\15.8.00000\index\DC: User Groups.err" "write")java.security.AccessControlException: access denied ("java.io.FilePermission" "C:\ProgramData\Symantec\DataLossPrevention\EnforceServer\15.8.00000\..\..\ServerPlatformCommon\15.8.00000\index\DC: User Groups.err" "write")
at java.security.AccessControlContext.checkPermission(AccessControlContext.java:472)
at java.security.AccessController.checkPermission(AccessController.java:886)
at java.lang.SecurityManager.checkPermission(SecurityManager.java:549)
Release : Data Loss Prevention 15.8+
The directory connection name in the Enforce console contained a special character, a colon ":".
Remove the special character and re-run the index.