1) When trying to configure an agent to sync with the management console, the following message is displayed:
"An unexpected error occurred performing this activity.
If an agent was previously installed on this system, this error is likely due to a conflict with the previously issued certificate. Please contact support for more information." or "error re-syncing with management server contact support"
2). When trying to revoke a certificate on the Snap EDR console, you are prompted for the Certificate Authority passphrase. After supplying the passphrase, you see the following error message:
"The DDS Certificate Authority Service unexpectedly severed the connection"
This information applies to the following Operating System(s):
- This information is not Operating System specific
This can occur if the Certificate Authority no longer recognizes the Snap EDR console's host name as a valid administration host.
To correct the problem,
Uninstall and reinstall EDR on the management console system.
Follow these steps:
Using ssh and the 'admin' user ID, log onto the Snap server hosting the Snap EDR console.
Use the 'su' command to switch to the 'root' user.
Change directory to the Snap EDR 'install' directory.
This is listed in the file /etc/dds.conf on the 'Install Directory is "/path/to/bin/directory"' line.
From this install directory, run the dds_hostnm command.
This will return the name of the Snap server, as the EDR software can determine it.
Stop all EDR services with the following command:
From the install directory, start the Certificate Authority in maintenance mode with the following command:
./dds_ca transparent &
Note: This must be started as a 'background' process.
From the install directory, run the dds_ca_admin command.
The password for this command is 'password' (without quotes).
At the dds_ca_admin command prompt, enter the following command:
addadmin hostname password
hostanme is the full hostname as returned by the dds_hostnm command
password is literally the word password.
Restart all EDR services with the following command:
Exit the dds_ca_admin program using the 'quit' command.
Exit your ssh session.
Log onto the Snap EDR console GUI using the 'snap' user ID.
Revoke the certificate that previously reported the problem. You should not be prompted for the password, and the certificate will be revoked when you confirm the action.,
Uninstall and reinstall EDR on the Agent system