Error "Failed to start Twistlock Defender service" while Installing Prisma Cloud Defender 31.00.129 on AWS Windows 2019 Server

Error "Failed to start Twistlock Defender service" while Installing Prisma Cloud Defender 31.00.129 on AWS Windows 2019 Server

2852
Created On 09/08/23 08:37 AM - Last Modified 10/26/23 06:03 AM


Symptom


  • Error "Failed to start Twistlock Defender service" seen while Installing Prisma Cloud Defender 31.00.129 on AWS Windows 2019 Server
    09/08/2023 09:46:15: Runtime protection is not supported for Host Defender Windows
    09/08/2023 09:46:15: Installing Defender
    09/08/2023 09:46:15: Downloading Defender files
    09/08/2023 09:47:55: Unpacking files
    09/08/2023 09:47:58: Generating certificates for hostname: xxxxx IP:xx.xx.xxx.xx 
    09/08/2023 09:47:58: Deploying Twistlock Defender service
    09/08/2023 09:47:59: Starting Twistlock Defender service
    09/08/2023 09:48:05: Failed to start Twistlock Defender service


Environment


  • Prisma Cloud Compute Edition (Self-hosted)
  • Prisma Cloud Enterprise Edition (SaaS)
  • AWS


Cause


  • The Environment Variable stores the execution environment for the current task: Ec2 or Fargate
  • Value of Environment Variable "AWS_EXECUTION_ENV" is "EC2" and not "AWS_ECS_EC2" (as in Linux)


Resolution


Workaround

  • Change the Environment Variable value temporarily, re-install the Defender and set the Environment Variable back to the original value:
SETX AWS_EXECUTION_ENV AWS_ECS_EC2 /m
install defender
SETX AWS_EXECUTION_ENV EC2 /m

Solution

  • The permanent fix is rolled out in Newton Update 1


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u000000g2AzCAI&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail