Software Secure Workload
Activity Configure

Verify That Enforced Policies Are Being Pushed to Agents

For enforcement to occur, policies specific to each workload must be successfully pushed to the agent installed on that workload. Status is also shown for policy enforcement that is managed by cloud connectors even if agents are not installed.

Before you begin

Enforce policies for at least one scope.

Procedure

1

Click Defend > Enforcement Status.

2

To view only the enforcement status for a specific scope, toggle the Filter by Scope control and select a scope.

3

Look at the Agent Concrete Policies chart.

If the chart shows that any are Skipped, continue with this procedure.

Otherwise, skip the rest of this procedure.

4

To display the list of workloads affected by this issue, click the red Skipped slice of the chart.

The affected workloads are listed in the table below the charts.

5

To see the reasons for this issue:

For each workload in the search results, click the (i) button beside Skipped in the Concrete Policies column.

Error Message

More Information

Agent doesn't have Windows OS

At least one policy that is applicable only to Windows workloads includes consumers and/or providers that are not running Windows OS.

Remove those workloads from those policies.

Maximum number of policies has been reached

See If There Are Too Many Policies for the Agent.

What to do next

(Optional) Configure an alert so you are notified if this situation occurs in future. See Configure Alerts.