Hello,
I'm trying to deploy fleet policy that installs endpoint security on windows server, but the agent keep being unhealthy because of endpoint security install failure.
try to execute .\endpoint-security.exe install --resources endpoint-security-resources.zip --log stdout --log-level trace
to troubleshoot and got this
2022-03-14 16:45:50: info: Internal.cpp:371 Writing installation file C:\Program Files\Elastic\Endpoint\cache\resources\elastic-endpoint-security.png
2022-03-14 16:45:50: info: Internal.cpp:371 Writing installation file C:\Program Files\Elastic\Endpoint\LICENSE.txt
2022-03-14 16:45:50: info: Internal.cpp:371 Writing installation file C:\Program Files\Elastic\Endpoint\NOTICE.txt
2022-03-14 16:45:50: debug: Util.cpp:999 Creating service to start "C:\Program Files\Elastic\Endpoint\elastic-endpoint.exe" run
2022-03-14 16:45:50: info: Util.cpp:484 Endpoint restart settings [ElasticEndpoint] count=15 delay=15 reset=600
2022-03-14 16:45:50: debug: Service.cpp:816 PPL is supported. This process is unprotected. (TrustLevelSid: absent)
2022-03-14 16:45:50: trace: RegistryLib.cpp:269 Function returned error status (Failed to get registry value size)
2022-03-14 16:45:50: trace: RegistryLib.cpp:566 Function returned error status (Failed to get registry value size)
2022-03-14 16:45:50: trace: RegistryLib.cpp:592 Function returned error status (Failed to get registry value size)
2022-03-14 16:45:50: trace: Util.cpp:882 Function returned error status (Failed to get registry value size)
2022-03-14 16:45:50: trace: Util.cpp:937 Function returned error status (Failed to get registry value size)
2022-03-14 16:45:50: trace: Util.cpp:1025 Function returned error status (Failed to get registry value size)
2022-03-14 16:45:50: trace: InstallLib.cpp:202 Function returned error status (Failed to get registry value size)
2022-03-14 16:45:50: debug: File.cpp:479 Removing [C:\Program Files\Elastic\Endpoint\elastic-endpoint.yaml]
2022-03-14 16:45:50: debug: File.cpp:479 Removing [C:\Windows\System32\Drivers\elastic-endpoint-driver.sys]
2022-03-14 16:45:50: debug: File.cpp:479 Removing [C:\Windows\System32\Drivers\ElasticElam.sys]
2022-03-14 16:45:50: debug: File.cpp:479 Removing [C:\Program Files\Elastic\Endpoint\SecurityProductInformation.ini]
2022-03-14 16:45:50: debug: File.cpp:479 Removing [C:\Program Files\Elastic\Endpoint\elastic-endpoint.exe]
2022-03-14 16:45:50: debug: File.cpp:479 Removing [C:\Program Files\Elastic\Endpoint\cache\artifacts\global-artifacts\endpointpe-v4-model]
2022-03-14 16:45:50: debug: File.cpp:479 Removing [C:\Program Files\Elastic\Endpoint\cache\artifacts\global-artifacts\endpointpe-v4-exceptionlist]
2022-03-14 16:45:50: debug: File.cpp:479 Removing [C:\Program Files\Elastic\Endpoint\cache\artifacts\global-artifacts\endpointpe-v4-blocklist]
2022-03-14 16:45:50: deb
Any path to follow ??
Thank you