So my Sophos Management Server updated last night. As part of the update, there is now a Sophos Policy Evaluation service that gets installed. Set to run automatically. However the service doesn't start up. The log in the event viewer is
Service cannot be started. System.InvalidOperationException: This access control list is not in canonical form and therefore cannot be modified. at System.Security.AccessControl.CommonAcl.ThrowIfNotCanonical() at System.Security.AccessControl.CommonAcl.RemoveInheritedAces() at System.Security.AccessControl.CommonSecurityDescriptor.SetDiscretionaryAclProtection(Boolean isProtected, Boolean preserveInheritance) at System.Security.AccessControl.ObjectSecurity.SetAccessRuleProtection(Boolean isProtected, Boolean preserveInheritance) at Sophos.PolicyEvaluation.Service.AclManager.SetFolderAcls() at Sophos.PolicyEvaluation.Service.PETService.OnStart(String[] args) at System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)
Anyone else seeing this? Server is 2008r2, SQL databases are on another 2008r2 sql 2104 box. Everything else works, and I can manually run the tool from the command line as per the Sophos documentation. It's just the service that doesn't want to run.
This thread was automatically locked due to age.