Loading...

Knowledge Center


Policy Auditor 6.x.x Known Issues
Technical Articles ID:   KB79078
Last Modified:  5/14/2019
Rated:


Environment

McAfee Policy Auditor (PA) 6.x.x

For details of PA 6.x.x supported environments, see KB72961.

Summary

Recent updates to this article
 
Date Update
May 14, 2019 Added PA 6.4.3 release information and known issues.
November 13, 2018 Added PA 6.4.2 release information and known issues.
August 17, 2018 Added PA 6.4.1 release information.
June 26, 2018 Added Product release information and PA 6.4 Known Issues sections. Moved all critical and non-critical known issues into their respective version section.

To receive email notification when this article is updated, click Subscribe on the right side of the page. You must be logged on to subscribe.


Contents
Click to expand the section you want to view:

PA Version General Availability Release Notes
6.4.3 May 14, 2019 PD28340
6.4.2 November 13, 2018 PD28089
6.4.1 August 7, 2018 PD27884
6.4.0 June 26, 2018 PD27828
6.3.0 October 3, 2017 PD27251
6.2.2 November 18, 2016 PD26754
6.2.0 September 16, 2013 PD24691
6.0.1 March 6, 2012 PD23653
6.0.0 September 23, 2011 PD23399

Issue resolutions in updates and major releases are cumulative; Technical Support recommends that you install the latest version. To find the most recent release for your product, visit the Product Downloads site at http://www.mcafee.com/us/downloads/downloads.aspx.
CRITICAL
There are currently no critical known issues.

Non-Critical
Reference Number Related Article Found in Version Resolved in Version Issue Description
        Issue: (PA Server Extension) After a Policy Auditor 6.4 server extension upgrade, existing scan data could lead to inaccurate results. 
Workaround: Technical Support recommends that you:
  1. Upgrade to Policy Auditor 6.4.
  2. Run the purge scan data with Delete all scan data.
1267901   6.4.3   Issue:  With McAfee Endpoint Security or VirusScan Enterprise installed, the McAfee Agent updater fails to update Policy Auditor content from the endpoint.
Solution: Update Policy Auditor content on all endpoints by creating an update task in ePolicy Orchestrator.
1259424   6.4.2   Issue: Network interface ID not mapped to corresponding IPs in ARF report (Mac endpoints only).
1259394   6.4.2   Issue: Installed time collected for an application is inaccurate.
1258489   6.4.2   Issue: Safari browser extension is not collected on Mac 10.14.
1256516   6.4.2   Issue: Services collected show same values for Service Name, Display Name and Description columns. (Mac endpoints only)
1243743   6.4.0 6.4.1 Issue: (PA Server Extension) Purge task takes longer to complete when you delete the scans and then run the purge task when there are more than 1000 systems assigned to the scan.
Workaround: The issue occurs due to the expansion of the transaction logs. Technical Support recommends that you do not delete the inventory scans. If you want to delete all inventory scan results, use Delete all scan data while you run the purge scan. 
NOTE: You cannot delete scans results individually. 
1240478   6.4.0   Issue: (PA Server Extension) On McAfee ePO systems that are on US time zone, PA: Scan summary report displays incorrect date. This incorrect date affects the system count results and so the drill-down data.
1238837   6.4.0   Issue: (PA Agent) Phoenix engine crashes or does not respond when application and registered extensions are collected in a single scan.
Workaround: Technical Support recommends that you create two scans - one to collect applications data and the other with all other collections.
1234848   6.4.0   Issue: (PA Server Extension) Internet Explorer does not respond, when you export host inventory data in .csv format from the dashboard.  
Workaround: Technical Support recommends that you use Google Chrome until the issue is resolved.
1231723   6.4.0   Issue: (PA Server Extension) The scan report for Removed Applications includes Installed Applications.
CRITICAL
There are currently no critical known issues.

Non-Critical
Reference Number Related Article Found in Version Resolved in Version Issue Description
  KB89729 6.3.0   Issue: When you remove and reinstall McAfee Agent (MA) on a system, but do not remove the PA agent first, the result is new scan results are not collected.
Solution: Perform one of the following to gather correct scan results and keep the state intact:
  • Uninstall the PA agent and MA. (When the system is added again, the new PA agent installation performs a Complete Scan.)
  • When the client is removed and added back to the System Tree, take note of the new system and perform a full scan on the system by having the Reset Baseline flag set to true.
CRITICAL
There are currently no critical known issues.

Non-Critical
Reference Number Related Article Found in Version Resolved in Version Issue Description
- KB87212 6.2   Issue: OVAL checks generated by the Policy Auditor Content Creator (PACC) fail during an import to ePO with schematron validation errors.
Resolution: With the current PACC tool (6.2.1.x), it is best that you not use a Dynamic Value to populate the input values that expect numeric or Boolean values. Instead, use Constant Value to avoid the schematron failure during content import to ePO.
- KB79326 6.2   Issue: Some elements related to the 'rpmverifypackage_test' in OVAL 5.10.1 are not included in Policy Auditor Agent 6.2.
Resolution: The elements at issue have been removed from the PA Agent 6.2 OVAL 5.10.1 schema. See article for details.
903918 KB79323 6.2   Issue: The following Java error is shown in the Orion.log when multiple active extensions in ePolicy Orchestrator run: "Error: "java.lang.OutOfMemoryError: PermGen space".
Resolution: Increase the Java MaxPermSize value in the registry on the ePO application server. See article for details.
899613 KB79324 6.2   Issue: Non-administrator users can access SCAP audit result data stream files generated by Policy Auditor Agent 6.2.
Workaround: Disable the generation of the result data stream files. See article for details.
 - KB79325 6.2   Issue: When processing Policy Auditor audit results generated by McAfee Vulnerability Manager, tomcat5.exe consumes excessive CPU.
Resolution: For agentless auditing when using PA and MVM integration, limit each audit to only a single benchmark.
Workaround: Disable PA 6.x results processing when running the ePO Server Task 'PA: Maintain Foundstone Audits'. See article for details.
901211 KB79327  6.2   Issue: The following error is shown when exporting benchmark or creating an audit: "Check is referenced by benchmark but not found in database".
Workaround: Reimport the deleted checks noted in the error message. See article for details.
1153680   6.2.2   Issue: Query "PCI Req 10.3, 10.5, 11.5: File Integrity Monitoring" is taking 799 seconds to execute.
CRITICAL
There are currently no critical known issues.

Non-Critical
Reference Number Related Article Found in Version Resolved in Version Issue Description
701945       Issue: [Online Help - Localized versions only] File Integrity tab is missing.
Resolution: Fixed in a future release.
702001       Issue: [Online Help - Localized versions only] Audit Benchmark Result Details page does not reflect the current interface.
Resolution: Fixed in a future release.
702005       Issue: [Online Help - Localized versions only] Audit, Results page does not reflect the current interface.
Resolution: Fixed in a future release.
702006       Issue: [Online Help - Localized versions only] Audit Results, System, Rules page does not reflect the current interface.
Resolution: Fixed in a future release.
CRITICAL
Reference Number Related Article Found in Version Resolved in Version Issue Description
724639 KB74773     Issue: After you upgrade to Policy Auditor 6.0, SQL CPU usage runs at 100% for an extended time
Resolution: Upgrade to PA 6.0 Update 1.


Non-Critical
Reference Number Related Article Found in Version Resolved in Version Issue Description
- KB74801     Issue: Errors displayed when importing custom XCCDF benchmark or OVAL check content to PA 6.0.
Resolution: See the article for more information.
726957 KB74772     Issue: Exception occurs during audit results processing
Resolution: Upgrade to PA 6.0 Update 1.
736870 KB74766     Issue: SQL deadlock messages logged in orion.log on the ePO server when running Policy Auditor 6.0 and 5.3 tasks.
Resolution: Upgrade to PA 6.0 Update 1.
703347       Issue: After upgrading to Policy Auditor 6.0, duplicate PA dashboards might be listed.
Resolution: You can safely delete duplicate dashboards and queries.
640297 KB72956     Issue: The McAfee Tray icon might not display an entry for Policy Auditor Agent if the McAfee Agent and Policy Auditor Agent is upgraded.
Resolution: Log off the logged-on user, and then log back on after McAfee Agent has received the updated Policy Auditor Tray policy.
642512       Issue: OVAL checks which use the dnscache_test collector return time-to-live (TTL) values of 0.
Resolution: None. McAfee has determined that the TTL value is not meaningful and can be ignored.
702508      

Issue: Running an OVAL check to test for the existence of foreign ports might return a random port number
Resolution: None. The issue will be fixed in a future release.

 

Rate this document

Glossary of Technical Terms


 Highlight Glossary Terms

Please take a moment to browse our Glossary of Technical Terms.