ePO managed deployments:
Reapply the policies after the upgrade (immediately after the new version takes effect).
Non-ePO-managed deployments:
- If you upgraded from version 5.1.2 to 6.1.4, add the following rules using the Solidcore command line:
- Only if VirusScan Enterprise for Linux (VSEL) is installed - Attr rules - Application Control and Change Control
sadmin attr add -p "/opt/NAI/LinuxShield/libexec/nailslogd"
sadmin attr add -p "/opt/NAI/LinuxShield/libexec/nailsd"
sadmin attr add -p "/opt/NAI/LinuxShield/libexec/logepo"
sadmin attr add -p "/opt/NAI/LinuxShield/libexec/ods"
- Only if VirusScan Enterprise for Linux (VSEL) is installed - Updater rules - Application Control only
sadmin updaters -t VSEL1 /opt/NAI/LinuxShield/libexec/scanner
- Only if McAfee Agent (MA) 5.x is installed - AEF rules - Change Control only
sadmin aef add file begins "/var/McAfee/agent/AgentEvents" and process ends "macompatsvc"
sadmin aef add file begins "/var/McAfee/agent/AgentEvents" and process ends "scevtgen"
admin aef add file equals "/etc/cma.d/lpc.conf" and process ends "macompatsvc"
- If you upgraded from version 6.1.0 to 6.1.4, add the following rules using the Solidcore command line:
- Only if McAfee Agent (MA) 5.x is installed - AEF rules - Change Control only
sadmin aef add file begins "/var/McAfee/agent/AgentEvents" and process ends "macompatsvc"
sadmin aef add file begins "/var/McAfee/agent/AgentEvents" and process ends "scevtgen"
admin aef add file equals "/etc/cma.d/lpc.conf" and process ends "macompatsvc"