Troubleshoot Arctic Wolf Agent Containment Driver
This information provides solutions for common Arctic Wolf® Agent Driver issues.
To provide additional log information to Arctic Wolf for troubleshooting, based on your installation method, do one of these actions:
Send log information to Arctic Wolf for your Agent Containment Driver installed using Arctic Wolf Unified Portal
- Create a copy of C:\Program Files (x86)\Arctic Wolf Networks\Agent\scout-client-manager.log.
- Edit the name of the copied file to be
customername-scout-client-manager.log. - Contact your Concierge Security® Team (CST) at security@arcticwolf.com, and include the log file.
Send log information to Arctic Wolf for your Agent Containment Driver installed using an MSI file
Agent does not communicate with Arctic Wolf services after containment
After Agent containment, a full VPN tunnel prevents Agent uncontainment requests.
Agent endpoints that are behind a full VPN tunnel can't reach the Arctic Wolf backend service after the endpoint is isolated.
Some applications might prevent Agent communication
Some applications that intercept network traffic, for example Content Keeper or Cisco Secure client, can interfere with Arctic Wolf Agent communications while under containment.
Some applications utilizing WFP to perform traffic interception and redirection, for example ContentKeeper or Cisco Secure client, might alter network packets that Agent Containment Driver blocks, preventing communication between Agent and the Arctic Wolf servers.