Detection servers fail to connect to the Enforce Server following a disaster recovery (DR) failover or restart. The Enforce console displays an "Unknown" status, and detection logs show the message: SEVERE: Continue waiting for resource. This occurs even if the Enforce Connector service indicates a successful connection.
Monitor controller logs also show missing such as keystore files:
WARNING: Failed to get keystore data for provision id
The Enforce Monitor Controller must build a replication cache in memory for all detection servers upon startup. If any files are missing between Enforces such as a keystore (.jks) file associated with detection server are missing from the Enforce Server file system, the Monitor Controller cannot build this cache. As a result, an empty configuration is sent to the detection servers, causing them to hang indefinitely while waiting for basic settings.
In DR environments, this typically happens when the database is replicated, but the physical files located in the Enforce installation directory are not manually copied to the standby node.
Restore the missing keystore files to the DR Enforce Server to allow the replication cache to build correctly.
MonitorController logs on the Enforce Server for WARNING or SEVERE errors indicating a failure to get provisioned data. Note the specific file names and paths (e.g., ...\keystore\*.jks).\ProgramData\Symantec\DataLossPrevention\EnforceServer\[Version]\keystore\.