2024-05-15 07:15 AM
Dears,
I have observed that EPLH agent is not able to get memory image if Device Guard Virtualization based security policy is enabled. When i check in detail came to know that mentioned policy is automatically update after some update. if Device Guard Virtualization based security is disabled then there is no issue with memory dump.
Following is the error description.
"Full system memory dump is not supported when Device Guard Virtualization based security is enabled".
I hope to find any workaround for this issue other wise during any critical situation where memory forensics is required we will have no choice to get memory dump and process it.