Hi All,
I have installed and configured the Sophos Anti-virus into AMAZON OS machine. but in Sophos Enterprise console , its showing the warnings "differs from policy" and on-access is "inactive"
Tried to reinstall the sophos and found gcc and kernel headers packages were missing in machine. installed gcc package and kernel header packages was already installed in machine.
Still on-access is failing.
checked the logs and found "unable to load talpa module"
sav-protect.log
Wed Jul 26 05:55:17 CDT 2017
Unable to load Talpa, and fanotify disabled - no on-access
About to send email
intermediate process started pid=29576
sendEmail: Opening log at log/smtp.log-2017-07-26
Starting sendEmail.py pid=29579
Saving email:
saved email to 2017-07-26.05-55-26.iYO3lo
Emailing root@localhost via localhost:25
05:55:26.162 Start listening on unix://root@tmp/namedscansprocessor.0
SMTP server HELO error
Failed to process 2017-07-26.05-55-26.iYO3lo - 1
About to send email
intermediate process started pid=29586
sendEmail: Opening log at log/smtp.log-2017-07-26
Starting sendEmail.py pid=29588
Retrying unsent emails via localhost:25 on 29588
Examining 2017-07-26.05-55-26.iYO3lo (on 29588)
Retrying 2017-07-26.05-55-26.iYO3lo (on 29588)
Emailing root@localhost via localhost:25
SMTP server HELO error
05:55:52.083 Stop listening on unix://root@tmp/namedscansprocessor.0
Unable to load Talpa, and fanotify disabled - no on-access
05:55:53.849 Start listening on unix://root@tmp/namedscansprocessor.1
Forking savfeedback intermediate
savfeedback intermediate process started pid=30537
talpaselect.log
[Talpa-select]
Copyright 1989-2017 Sophos Limited. All rights reserved.
2017-07-26 05:54:51 CDT /opt/sophos-av/engine/_/talpa_select selectexisting /opt/sophos-av
[Talpa-select]
Copyright 1989-2017 Sophos Limited. All rights reserved.
2017-07-26 05:55:18 CDT /opt/sophos-av/engine/_/talpa_select load --hook talpa_vfshook --wait 10
Linux distribution: [amazon]
Product: [Amazon Linux AMI release 2016.09]
Kernel: [4.4.41-36.55.amzn1.x86_64]
Multiprocessor support enabled.
Searching for source pack...
Searching for suitable binary pack...
No suitable binary pack available.
Preparing for build...
Extracting sources...
Configuring build of version 1.22.7...
configuring checking for a BSD-compatible install... /usr/bin/install -c
checking whether build environment is sane... yes
checking for gawk... gawk
checking whether make sets $(MAKE)... yes
checking how to create a ustar tar archive... gnutar
checking whether to enable maintainer-specific portions of Makefiles... no
checking for gcc... gcc
checking for C compiler default output file name... a.out
checking whether the C compiler works... yes
checking whether we are cross compiling... no
checking for suffix of executables...
checking for suffix of object files... o
checking whether we are using the GNU C compiler... yes
checking whether gcc accepts -g... yes
checking for gcc option to accept ANSI C... none needed
checking for style of include used by make... GNU
checking dependency style of gcc... none
checking whether gcc and cc understand -c and -o together... yes
checking for ld... ld
checking for egrep... grep -E
checking whether ln -s works... yes
checking for cat... /bin/cat
checking for cut... /bin/cut
checking for sed... /bin/sed
checking for uname... /bin/uname
checking for rm... /bin/rm
checking for xargs... /usr/bin/xargs
checking for Talpa version... 1.22.7
checking for operating system... Linux
checking for kernel headers layout... /lib/modules/4.4.41-36.55.amzn1.x86_64/build/include
checking for linux/version.h... configure: error: cannot proceed without the required header file
Traceback (most recent call last):
File "talpa_select.py", line 2176, in _action
File "talpa_select.py", line 1074, in load
File "talpa_select.py", line 841, in select
File "talpa_select.py", line 1696, in select
File "talpa_select.py", line 1780, in build
File "talpa_select.py", line 1910, in __try_build
File "talpa_select.py", line 1769, in checkConfigureErrors
SelectException: exc-configure-failed-no-kernel-headers
Can you please help me resolve this issue.
Thanks
This thread was automatically locked due to age.