Security Compliance

System Integrity Protection (SIP) is preventing install of SEM Agent on Mac OS X 10.x and later

You cannot install the Security Event Manager (SEM) Agent because the System Integrity Protection on Mac® OS X version 10.x and later doesn't allow root access. You need root access to copy SEM Agent files to /System/Library/LaunchDaemons/.

First published date

10/17/2018 3:26 PM

Last published date

5/28/2019 6:25 PM

Overview

When you try to install the SEM Agent, System Integrity Protection on Mac® OS X version 10.x and later prevents root access. You need root access to copy SEM Agent files to /System/Library/LaunchDaemons/.

Product section

Security Event Manager

Cause

For security reasons, Apple locked down root access on operating systems after 10.x.

Resolution

  1. Turn your Mac off.
  2. Disable SIP.
    1. Boot into Recovery mode by restarting your Mac while holding down the ‘Command’ and ‘R’ keys.
    2. Release these keys as soon as you see the Apple logo and loading bar.
    3. From the menu bar in Recovery mode, select Utilities > Terminal.
    4. Enter the following command in the Terminal window: csrutil disable.
    5. Press Enter.
    6. Close the Terminal window.
    7. Restart your Mac.
  3. Once the machine is back up, run the csrutil status command to verify the System Integrity Protection (SIP) is disabled.
  4. Install the agent following standard instructions in Mac Agent install instructions.
  5. Re-enable SIP.
    1. Boot into Recovery mode by holding the Command+R keys while restarting your Mac.
    2. Select Utilities > Terminal.
    3. In the Terminal window, enter the following command: csrutil enable
    4. Press Enter.
    5. Exit the Terminal and restart your Mac.

      The agent install is completed.

       

Disclaimer: Please note, any content posted herein is provided as a suggestion or recommendation to you for your internal use. This is not part of the SolarWinds software or documentation that you purchased from SolarWinds, and the information set forth herein may come from third parties. Your organization should internally review and assess to what extent, if any, such custom scripts or recommendations will be incorporated into your environment.  You elect to use third party content at your own risk, and you will be solely responsible for the incorporation of the same, if any.