PowerScale:升級 CEE 後 CAVA 服務關閉

Summary: 將 Common Event Enabler (CEE) 軟體升級至 9.0.0.0 或更新版本後,OneFS 中的 Common Anti-Virus Agent (CAVA) 服務會進入故障狀態。這也可能會影響對 Varonis 或其他第三方審計軟體的審計。

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Symptoms

Windows 上的症狀:

Microsoft Windows [Version 10.0.17763.920]
(c) 2018 Microsoft Corporation. All rights reserved.
C:\Windows\system32>netstat -an | find "12228"
C:\Windows\system32>

Windows 事件記錄中的錯誤:

CAVA has detected that the CAVASAV Agent has not been loaded or started. CAVA cannot process AV requests until the CAVASAV Agent is started

CAVA has detected that either there is no third party antivirus software installed or that the resident antivirus software, if any, has not been started. CAVA cannot process AV requests until the appropriate antivirus software is installed and started

Cause

安裝期間未選取 HTTP 服務。

Resolution

從 CEE 9.0.0 開始,安全預設值預設為開啟,因此安裝期間需要兩個額外步驟:

  1. 啟用 HTTP - 在 CEE 9.x 中,HTTP 預設為停用。必須在設定精靈期間使用設定 CEE 安全性設定視窗上的啟用 HTTP 伺服器核取方塊開啟此功能,PowerScale 等 Dell 平台才能連線至 CEE。
  2. 設定或停用 AccessList - AccessList 預設為啟用,但並未設定。您必須將它關閉 (如果不需要 IP 型限制),或使用允許連線至 CEE 之 OneFS 節點的 FQDN/IP 來設定。

在選取這些選項的情況下重新安裝應該會有所緩解。

另一種方法是在 regedit 並重新啟動 Dell 服務。必須調整的兩個金鑰是:

Computer\HKEY_LOCAL_MACHINE\SOFTWARE\EMC\CEE\Configuration\Security\Http

"ServerEnabled" should be set to 1

Computer\HKEY_LOCAL_MACHINE\SOFTWARE\EMC\CEE\Configuration\Security\Access

"AccessListEnabled" should be set to 0 (unless in use)

設定後,請在服務中重新啟動 Dell CAVA 服務。

如果上述步驟無法奏效,請聯絡 Dell 支援以取得協助。 

Affected Products

PowerScale OneFS
Article Properties
Article Number: 000495727
Article Type: Solution
Last Modified: 06 Aug 2026
Version:  1
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.