Client is receiving the policy updates, however the Application Control feature fails to initialize correctly and endpoints are displaying a status of Disabled/Malfunctioning (Application Control) on Symantec Endpoint Security Console (SESC).
14.3 RU9 Symantec Endpoint Security (SES)
The issue is typically caused by an outdated or incompatible ASR (Attack Surface Reduction) engine component. In specific scenarios.
The existing AppHardening.dll version 1.5.12 fails to initialize correctly within the protected environment, leading to the "Disabled / malfunctioning" status despite successful policy updates.
To resolve this issue, the ASR engine must be updated to a supported, functional version.