Partition /var/log is full (100% usage) in Symantec Endpoint Detection and Response (EDR).
SEDR 4.8, 4.9.x, 4.10, 4.12
Log file getting filled with excessive statements causing the issue of partition /var/log getting full.
This issue is fixed in EDR 4.11.
On EDR builds 4.8 to 4.10, the patch can be installed as follows:
patch list or patch list -v atp-patch-generic-4.8_4.9_4.10-1patch download atp-patch-generic-4.8_4.9_4.10-1patch install atp-patch-generic-4.8_4.9_4.10-1Note: If you are getting this issue on EDR 4.12, contact Broadcom Technical Support for further review and apply a potential fix.
How to install patches for SEDR
If "patch list" command times out, refer : Failed to apply patch in Endpoint Detection and Response