{"id":6607,"date":"2021-11-15T18:34:55","date_gmt":"2021-11-15T16:34:55","guid":{"rendered":"https:\/\/www.cytomic.ai\/?p=6607"},"modified":"2024-06-11T10:41:35","modified_gmt":"2024-06-11T08:41:35","slug":"id-700121","status":"publish","type":"post","link":"https:\/\/www.cytomic.ai\/es\/soporte\/id-700121\/","title":{"rendered":"Instalaci\u00f3n del cliente Advanced EPDR\/EDR en plataformas Linux con Secure Boot"},"content":{"rendered":"[vc_row type=&#8221;full_width_background&#8221; full_screen_row_position=&#8221;middle&#8221; column_margin=&#8221;default&#8221; equal_height=&#8221;yes&#8221; content_placement=&#8221;middle&#8221; column_direction=&#8221;default&#8221; column_direction_tablet=&#8221;default&#8221; column_direction_phone=&#8221;default&#8221; bg_color=&#8221;#7e5994&#8243; scene_position=&#8221;center&#8221; top_padding=&#8221;12&#8243; bottom_padding=&#8221;12&#8243; text_color=&#8221;light&#8221; text_align=&#8221;left&#8221; row_border_radius=&#8221;none&#8221; row_border_radius_applies=&#8221;bg&#8221; overlay_strength=&#8221;0.3&#8243; gradient_direction=&#8221;left_to_right&#8221; shape_divider_position=&#8221;bottom&#8221; bg_image_animation=&#8221;none&#8221; shape_type=&#8221;&#8221;][vc_column column_padding=&#8221;no-extra-padding&#8221; column_padding_tablet=&#8221;inherit&#8221; column_padding_phone=&#8221;inherit&#8221; column_padding_position=&#8221;all&#8221; background_color_opacity=&#8221;1&#8243; background_hover_color_opacity=&#8221;1&#8243; column_shadow=&#8221;none&#8221; column_border_radius=&#8221;none&#8221; column_link_target=&#8221;_self&#8221; gradient_direction=&#8221;left_to_right&#8221; overlay_strength=&#8221;0.3&#8243; width=&#8221;3\/5&#8243; tablet_width_inherit=&#8221;default&#8221; tablet_text_alignment=&#8221;default&#8221; phone_text_alignment=&#8221;default&#8221; column_border_width=&#8221;none&#8221; column_border_style=&#8221;solid&#8221; bg_image_animation=&#8221;none&#8221;][\/vc_column][vc_column column_padding=&#8221;no-extra-padding&#8221; column_padding_tablet=&#8221;inherit&#8221; column_padding_phone=&#8221;inherit&#8221; column_padding_position=&#8221;all&#8221; background_color_opacity=&#8221;1&#8243; background_hover_color_opacity=&#8221;1&#8243; column_shadow=&#8221;none&#8221; column_border_radius=&#8221;none&#8221; column_link_target=&#8221;_self&#8221; gradient_direction=&#8221;left_to_right&#8221; overlay_strength=&#8221;0.3&#8243; width=&#8221;1\/5&#8243; tablet_width_inherit=&#8221;default&#8221; tablet_text_alignment=&#8221;default&#8221; phone_text_alignment=&#8221;default&#8221; column_border_width=&#8221;none&#8221; column_border_style=&#8221;solid&#8221; bg_image_animation=&#8221;none&#8221;]<div class=\"iwithtext\"><div class=\"iwt-icon\"> <img decoding=\"async\" src=\"https:\/\/www.cytomic.ai\/src\/uploads\/2020\/03\/support-tiny.svg\" alt=\"\" \/> <\/div><div class=\"iwt-text\"> +34 900 840 407 <\/div><div class=\"clear\"><\/div><\/div>[\/vc_column][vc_column column_padding=&#8221;no-extra-padding&#8221; column_padding_tablet=&#8221;inherit&#8221; column_padding_phone=&#8221;inherit&#8221; column_padding_position=&#8221;all&#8221; background_color_opacity=&#8221;1&#8243; background_hover_color_opacity=&#8221;1&#8243; column_shadow=&#8221;none&#8221; column_border_radius=&#8221;none&#8221; column_link_target=&#8221;_self&#8221; gradient_direction=&#8221;left_to_right&#8221; overlay_strength=&#8221;0.3&#8243; width=&#8221;1\/5&#8243; tablet_width_inherit=&#8221;default&#8221; tablet_text_alignment=&#8221;default&#8221; phone_text_alignment=&#8221;default&#8221; column_border_width=&#8221;none&#8221; column_border_style=&#8221;solid&#8221; bg_image_animation=&#8221;none&#8221;]<div class=\"iwithtext\"><div class=\"iwt-icon\"> <img decoding=\"async\" src=\"https:\/\/www.cytomic.ai\/src\/uploads\/2020\/03\/contact-tiny.svg\" alt=\"\" \/> <\/div><div class=\"iwt-text\"> support@cytomic.ai <\/div><div class=\"clear\"><\/div><\/div>[\/vc_column][\/vc_row][vc_row type=&#8221;full_width_content&#8221; full_screen_row_position=&#8221;middle&#8221; column_margin=&#8221;default&#8221; equal_height=&#8221;yes&#8221; content_placement=&#8221;top&#8221; column_direction=&#8221;default&#8221; column_direction_tablet=&#8221;default&#8221; column_direction_phone=&#8221;default&#8221; scene_position=&#8221;center&#8221; text_color=&#8221;dark&#8221; text_align=&#8221;left&#8221; row_border_radius=&#8221;none&#8221; row_border_radius_applies=&#8221;bg&#8221; overlay_strength=&#8221;0.3&#8243; gradient_direction=&#8221;left_to_right&#8221; shape_divider_position=&#8221;bottom&#8221; bg_image_animation=&#8221;none&#8221; shape_type=&#8221;&#8221;][vc_column column_padding=&#8221;padding-5-percent&#8221; column_padding_tablet=&#8221;inherit&#8221; column_padding_phone=&#8221;inherit&#8221; column_padding_position=&#8221;all&#8221; background_color=&#8221;#f3f3f3&#8243; background_color_opacity=&#8221;1&#8243; background_hover_color_opacity=&#8221;1&#8243; column_shadow=&#8221;none&#8221; column_border_radius=&#8221;none&#8221; column_link_target=&#8221;_self&#8221; gradient_direction=&#8221;left_to_right&#8221; overlay_strength=&#8221;0.3&#8243; width=&#8221;1\/3&#8243; tablet_width_inherit=&#8221;default&#8221; tablet_text_alignment=&#8221;default&#8221; phone_text_alignment=&#8221;default&#8221; column_border_width=&#8221;none&#8221; column_border_style=&#8221;solid&#8221; bg_image_animation=&#8221;none&#8221;][split_line_heading animation_type=&#8221;default&#8221;]<a href=\"#title1\">Productos Relacionados_<\/a><br \/>\n<a href=\"#title2\">Situaci\u00f3n_<\/a><br \/>\n<a href=\"#title3\">Soluci\u00f3n_<\/a>[\/split_line_heading][\/vc_column][vc_column column_padding=&#8221;padding-5-percent&#8221; column_padding_tablet=&#8221;inherit&#8221; column_padding_phone=&#8221;inherit&#8221; column_padding_position=&#8221;all&#8221; background_color_opacity=&#8221;1&#8243; background_hover_color_opacity=&#8221;1&#8243; column_shadow=&#8221;none&#8221; column_border_radius=&#8221;none&#8221; column_link_target=&#8221;_self&#8221; gradient_direction=&#8221;left_to_right&#8221; overlay_strength=&#8221;0.3&#8243; width=&#8221;2\/3&#8243; tablet_width_inherit=&#8221;default&#8221; tablet_text_alignment=&#8221;default&#8221; phone_text_alignment=&#8221;default&#8221; column_border_width=&#8221;none&#8221; column_border_style=&#8221;solid&#8221; bg_image_animation=&#8221;none&#8221;][vc_column_text]\n<h3>Instalaci\u00f3n del software cliente de Advanced EPDR\/EDR en plataformas Linux con Secure Boot<\/h3>\n[\/vc_column_text][vc_column_text css=&#8221;.vc_custom_1637058272783{padding-top: 40px !important;padding-bottom: 20px !important;}&#8221;]\n<h6 id=\"title1\">Productos Relacionados_<\/h6>\n[\/vc_column_text][vc_column_text]\n<ul>\n<li>Advanced EPDR<\/li>\n<li>Advanced EDR<\/li>\n<\/ul>\n[\/vc_column_text][vc_column_text css=&#8221;.vc_custom_1637058566747{padding-top: 40px !important;padding-bottom: 20px !important;}&#8221;]\n<h6 id=\"title2\">Situaci\u00f3n_<\/h6>\n[\/vc_column_text][vc_column_text]En algunas distribuciones de Linux, aparecen errores en la protecci\u00f3n en el detalle del equipo, al intentar instalar la protecci\u00f3n con Secure Boot activado o bien al intentar activar Secure Boot con la protecci\u00f3n instalada.[\/vc_column_text][vc_column_text css=&#8221;.vc_custom_1637058586485{padding-top: 40px !important;padding-bottom: 20px !important;}&#8221;]\n<h6 id=\"title3\">Soluci\u00f3n_<\/h6>\n[\/vc_column_text][vc_column_text]Para solucionar estos errores, es necesario actualizar el repositorio de la protecci\u00f3n y a continuaci\u00f3n registrar las claves (keys) de la protecci\u00f3n desde la l\u00ednea de comandos de Linux.<\/p>\n<p><strong>\u00a1IMPORTANTE!<\/strong><\/p>\n<p>Aseg\u00farate de que se cumplen los siguientes requisitos de sistema:<\/p>\n<ul>\n<li>DKMS: se requiere la instalaci\u00f3n de los paquetes mokutil y openssl.<\/li>\n<li>Oracle Linux 7.x\/8.x con kernel UEKR6 requieren tener el repositorio ol7_optional_latest activado y los paquetes openssl, keyutils, mokutil, pesign, kernel-uek-devel-$(uname -r) instalados.<\/li>\n<\/ul>\n<p><strong><span class=\"granate11b\">Soluci\u00f3n<\/span><\/strong><br \/>\nSigue los pasos que se indican a continuaci\u00f3n para resolver los errores en la protecci\u00f3n relacionados con Secure Boot desde el equipo con errores.<\/p>\n<ol>\n<li>Comprueba el estado de Secure Boot:<br \/>\n<strong>$ mokutil &#8211;sb-state<br \/>\n<\/strong><em>Secure Boot enabled<\/em><\/li>\n<li>Verifica que el driver no est\u00e1 cargado:<br \/>\n<strong>$ lsmod | grep prot<\/strong><\/li>\n<li>Importa las claves (keys) de la protecci\u00f3n:<br \/>\n<strong>$ sudo \/usr\/src\/protection-agent-<em>&lt;version-number&gt;<\/em>\/scripts\/sb_import_key.sh<br \/>\n<\/strong><strong>IMPORTANTE<\/strong>: El agente y protecci\u00f3n tienen este formato:<br \/>\nprotection-agent-03.01.00.0001-1.5.0_741_g8e14e52\u00a0(el nombre var\u00eda en funci\u00f3n de la versi\u00f3n y del driver).Se muestra un mensaje informando de las implicaciones de usar Secure Boot.<\/li>\n<li>Pulsa\u00a0<strong>C<\/strong>\u00a0para registrar el certificado utilizado para firmar los m\u00f3dulos.<\/li>\n<li>Crea una contrase\u00f1a de 8 caracteres:<br \/>\n<img decoding=\"async\" src=\"https:\/\/www.pandasecurity.com\/resources\/img\/sop\/faqs\/adaether\/700121\/700121-11.png\" alt=\"\" width=\"400\" \/><\/li>\n<li>Reinicia el equipo y completa el proceso de registro.<br \/>\nSi se trata de una m\u00e1quina virtual, usa el hipervisor.<\/p>\n<ul>\n<li>Presiona cualquier tecla para comenzar el proceso de registro. Esta pantalla aparece durante un tiempo limitado, por lo cual, si no se pulsa ninguna tecla, es necesario realizar el proceso de nuevo.<img decoding=\"async\" src=\"https:\/\/www.pandasecurity.com\/resources\/img\/sop\/faqs\/adaether\/700121\/700121-3.png\" alt=\"\" width=\"400\" \/><\/li>\n<li>Selecciona<strong>\u00a0Enroll MOK\u00a0<\/strong>del men\u00fa.<\/li>\n<li>Pulsa\u00a0<strong>View key<\/strong> para ver las claves que se van a registrar.<\/li>\n<li>Comprueba que las claves son las de la protecci\u00f3n de Cytomic y selecciona <strong>Continue<\/strong> para proseguir con el proceso de registro.<\/li>\n<li>Cuando aparezca la opci\u00f3n\u00a0<strong>Enroll the key<\/strong>, selecciona\u00a0<strong>Yes<\/strong>.<\/li>\n<li>A continuaci\u00f3n, introduce la contrase\u00f1a previamente elegida.<\/li>\n<li>Selecciona<strong>\u00a0Reboot<\/strong> para finalizar el proceso.<br \/>\n<img decoding=\"async\" src=\"https:\/\/www.pandasecurity.com\/resources\/img\/sop\/faqs\/adaether\/700121\/700121-10.png\" alt=\"\" width=\"400\" \/><\/li>\n<\/ul>\n<\/li>\n<li>Finalmente, comprueba que el driver est\u00e1 cargado:<br \/>\n<strong>$ lsmod | grep prot<br \/>\n<\/strong><em>protection_agent 184320<\/em><\/li>\n<\/ol>\n<div id=\"noboot\"><strong><span class=\"granate11b\">Oracle Linux 7.x\/8.x con kernel UEKR6<\/span><\/strong><br \/>\nUna vez hayas completado los pasos, y solo en el caso de distribuciones Oracle Linux 7.x\/8.x con UEKR6 kernel, sigue estos pasos adicionales:<\/div>\n<ol>\n<li>Ejecuta nuevamente este comando:<br \/>\n<strong>$ sudo \/usr\/src\/protection-agent-<em>&lt;version-number&gt;<\/em>\/scripts\/sb_import_key.sh<br \/>\n<\/strong>Esta operaci\u00f3n a\u00f1ade el certificado utilizado para firmar los m\u00f3dulos a la lista de certificados confiables para el kernel. El kernel modificado se firma y se a\u00f1ade a la lista de kernels en\u00a0<strong>GRUB<\/strong>.<\/li>\n<li>Reinicia el equipo.<\/li>\n<li>El m\u00f3dulo se carga y se arranca.<\/li>\n<li>Para asegurar que el certificado se ha a\u00f1adido de forma correcta, ejecuta este comando:<br \/>\n<strong>$ sudo \/usr\/src\/protection-agent-<em>&lt;version-number&gt;<\/em>\/scripts\/sb_import_key.sh<\/strong><\/li>\n<\/ol>\n<p>El resultado es:<br \/>\n<em>The signer\u00b4s common name is UA-MOK Driver Signing<\/em><br \/>\n<em>Image \/boot\/vmlinuz-kernel-version-panda-secure-boot already signed<\/em><br \/>\n<em>Kernel module succesfully loaded<\/em>[\/vc_column_text][\/vc_column][\/vc_row]\n","protected":false},"excerpt":{"rendered":"<p>[vc_row type=&#8221;full_width_background&#8221; full_screen_row_position=&#8221;middle&#8221; column_margin=&#8221;default&#8221; equal_height=&#8221;yes&#8221; content_placement=&#8221;middle&#8221; column_direction=&#8221;default&#8221; column_direction_tablet=&#8221;default&#8221; column_direction_phone=&#8221;default&#8221; bg_color=&#8221;#7e5994&#8243; scene_position=&#8221;center&#8221; top_padding=&#8221;12&#8243; bottom_padding=&#8221;12&#8243; text_color=&#8221;light&#8221; text_align=&#8221;left&#8221; row_border_radius=&#8221;none&#8221; row_border_radius_applies=&#8221;bg&#8221; overlay_strength=&#8221;0.3&#8243; gradient_direction=&#8221;left_to_right&#8221; shape_divider_position=&#8221;bottom&#8221; bg_image_animation=&#8221;none&#8221; shape_type=&#8221;&#8221;][vc_column column_padding=&#8221;no-extra-padding&#8221; column_padding_tablet=&#8221;inherit&#8221; column_padding_phone=&#8221;inherit&#8221; column_padding_position=&#8221;all&#8221; background_color_opacity=&#8221;1&#8243; background_hover_color_opacity=&#8221;1&#8243; column_shadow=&#8221;none&#8221; column_border_radius=&#8221;none&#8221;&#8230;<\/p>\n","protected":false},"author":4,"featured_media":414,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[32,33,27],"tags":[],"class_list":{"0":"post-6607","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-edr","8":"category-epdr","9":"category-soporte"},"_links":{"self":[{"href":"https:\/\/www.cytomic.ai\/es\/wp-json\/wp\/v2\/posts\/6607","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.cytomic.ai\/es\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.cytomic.ai\/es\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.cytomic.ai\/es\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cytomic.ai\/es\/wp-json\/wp\/v2\/comments?post=6607"}],"version-history":[{"count":14,"href":"https:\/\/www.cytomic.ai\/es\/wp-json\/wp\/v2\/posts\/6607\/revisions"}],"predecessor-version":[{"id":8373,"href":"https:\/\/www.cytomic.ai\/es\/wp-json\/wp\/v2\/posts\/6607\/revisions\/8373"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.cytomic.ai\/es\/wp-json\/wp\/v2\/media\/414"}],"wp:attachment":[{"href":"https:\/\/www.cytomic.ai\/es\/wp-json\/wp\/v2\/media?parent=6607"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.cytomic.ai\/es\/wp-json\/wp\/v2\/categories?post=6607"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.cytomic.ai\/es\/wp-json\/wp\/v2\/tags?post=6607"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}