Whenever I install Veeam Agent for Windows on a server I always have to disable a part of the SentinelOne EDR AntiTamper protection with this command:
sentinelctl config antiTamperingConfig.allowSignedKnownAndVerifiedToSafeBoot true -k "passphrase", which reduces protection and re-enables itself sometimes, failing backups, after that I have to disable anti-tamper all together for it to work, which is something i'd like not to do.
This has been going on for a while, i know there was some work in progress last year but i haven't found any updates anywhere, do you happen to know something?
I'm conscious this is most likely something the SentinelOne team should do rather than you but maybe you have news
