Sophos Community
Sophos Community
  • User
  • Site
  • Search
  • User
  • Community & Product Forums
  • Community Blogs
  • Partners
  • Support Portal
  • Get started
  • Blogs
    • Sophos Community Blog
    • Sophos Endpoint
    • Sophos Firewall
    • Zero Trust Network Access
    • Sophos Switch
    • UTM Firewall
    • Sophos Wireless
    • Sophos Central
    • Sophos Cloud Optix
    • Sophos Central API
    • Sophos Factory
    • Sophos Email
  •  
    • Phish Threat
    • Sophos XDR
    • Sophos Mobile
    • On-Premise Endpoint
    • Encryption
    • Sophos Partners
    • Support Portal Feedback
    • Product Documentation Blog
    • SophosLabs
    • Free Tools
    • Sophos Integrations
  • Products
    • Endpoint Security
      • Endpoint protection - next-gen antivirus
      • Endpoint detection and response (XDR)
      • Mobile security
    • Email Security
      • Sophos Email
      • Phish Threat
    • Network Security
      • Sophos Firewall
      • UTM firewall
      • Zero trust network access (ZTNA)
      • Network detection and response (NDR)
      • Sophos Switch
      • Sophos Wireless
    • Cloud Security
      • Sophos Central
      • Sophos Cloud Optix
    • Sophos Home Premium
      • Sophos Home portal
    • Support Tools
      • Sophos integrations
      • Free tools
  • Services
    • Management platform
      • Sophos Central - sign in
      • Support portal - sign in
      • Community - sign in
  • Sophos Partners
    • Partners Corner
    • Partner blogs
    • Websinars and Events
  • Member Recognition
    • Community Leaderboards
    • Sophos Central login
    • Partner care
  • Become a partner
    • Join our program
  • Sophos Community: Getting started
    • How to get started
    • Frequently Asked Questions (FAQs)
    • SophosID Registration
    • How to contribute and participate
    • How to set up your profile
  •  
    • How to manage friends
    • How to manage private messages
    • How to manage digests, subscriptions, and notifications
    • Terms and Conditions of Use
  • Products and Services
    • Products
      • Endpoint Security
        • Endpoint protection - next-gen antivirus
        • Endpoint detection and response (XDR)
        • Mobile security
      • Email Security
        • Sophos Email
        • Phish Threat
      • Network Security
        • Sophos Firewall
        • UTM firewall
        • Zero trust network access (ZTNA)
        • Network detection and response (NDR)
        • Sophos Switch
        • Sophos Wireless
      • Cloud Security
        • Sophos Central
        • Sophos Cloud Optix
      • Sophos Home Premium
        • Sophos Home portal
      • Support Tools
        • Sophos integrations
        • Free tools
    • Services
      • Management platform
        • Sophos Central - sign in
        • Support portal - sign in
        • Community - sign in
  • Community Blogs
    • Blogs List 1
      • Sophos Community Blog
      • Sophos Endpoint
      • Sophos Firewall
      • Zero Trust Network Access
      • Sophos Switch
      • UTM Firewall
      • Sophos Wireless
      • Sophos Central
      • Sophos Cloud Optix
      • Sophos Central API
      • Sophos Factory
      • Sophos Email
    • Blogs List 2
      • Phish Threat
      • Sophos XDR
      • Sophos Mobile
      • On-Premise Endpoint
      • Encryption
      • Sophos Partners
      • Support Portal Feedback
      • Product Documentation Blog
      • SophosLabs
      • Free Tools
      • Sophos Integrations
  • Partners
    • Sophos Partners
      • Partners Corner
      • Partner blogs
      • Websinars and Events
    • Member Recognition
      • Community Leaderboards
      • Sophos Central login
      • Partner care
    • Become a partner
      • Join our program
  • Support Portal
  • Get started
    • Sophos Community: Getting started
      • How to get started
      • Frequently Asked Questions (FAQs)
      • SophosID Registration
      • How to contribute and participate
      • How to set up your profile
      • How to manage friends
      • How to manage private messages
      • How to manage digests, subscriptions, and notifications
      • Terms and Conditions of Use
Windows Endpoint EAP
  • Sophos Endpoint
  • More

Windows Endpoint EAP

  • Announcements
  • Recommended Reads
  • Feedback & Issues
  • Live Discover Query Forum
  • Files
  • More
  • Cancel
  • New
Windows Endpoint EAP requires membership for participation - click to join
Quick Links
⁃ Back to Intercept X Main Group
⁃ EAP Files
⁃ Member List
Getting Started
⁃ Recommended Reads
⁃ Live Discover Queries
Subscribe to Sophos Notifications Follow us on Twitter Connect with us on Facebook Join us on Reddit
Announcements
  • KingMiner non-deterministic indicators of compromise

    KingMiner non-deterministic indicators of compromise

    Karl_Ackerman
    Karl_Ackerman

    For query assistance, please see the following Best Practices guide

    See the story from SophosLabs Uncut…

    • 10 Jun 2020
  • New Sophos Table - Sophos_process_activity

    New Sophos Table - Sophos_process_activity

    Karl_Ackerman
    Karl_Ackerman

    For query assistance, please see the following Best Practices guide

    We have added a new table to the sophos…

    • 26 May 2020
  • Live Discover Queries - Review Process

    Live Discover Queries - Review Process

    Karl_Ackerman
    Karl_Ackerman

    Posting a query to the Live Discover Queries board will now include a review process.  This will allow…

    • 23 May 2020
<>
Latest Endpoint EAP Recommended Reads
  • Discussion

    December EAP Update, Updated Known Issues List

    1732 views
    0 replies
    Started over 5 years ago
    by Vincent Vanbiervliet
  • Discussion

    Updated Known Issues List 29 October 2019 / IPS causes issues with wireless network adapters

    12345 views
    11 replies
    Latest over 5 years ago
    by Vincent Vanbiervliet
  • Discussion

    IPS Wi-Fi issues: Affected Wi-Fi adapters

    2605 views
    0 replies
    Started over 5 years ago
    by Vincent Vanbiervliet
  • Discussion

    How to test IPS

    6193 views
    0 replies
    Started over 5 years ago
    by Vincent Vanbiervliet
  • Discussion

    [Sophos Notification] Sophos Snort service may not be running after joining EAP

    4334 views
    0 replies
    Started over 5 years ago
    by FloSupport
<>
Latest Community Questions in Endpoint EAP
  • Answered

    problem using the "Microsoft Global Secure Access" +1

    2153 views
    1 reply
    Latest 9 months ago
    by Qoosh
  • Not Answered

    Sophos generating a lot of 5038 Errors in the Security Log +3

    5919 views
    5 replies
    Latest over 1 year ago
    by Sophos ITSAdministrator
  • Not Answered

    Unable to download from the Internet as Sophos warning page is not displayed in some scenarios EAP 0

    11084 views
    1 reply
    Latest over 1 year ago
    by Josh Rogalski
  • Not Answered

    MFA cookie protection triggers zoom integration in windows desktop app. 0

    795 views
    0 replies
    Started over 1 year ago
    by RaveNet
  • Suggested Answer

    Sophos Central Federation with Okta 0

    7846 views
    5 replies
    Latest over 1 year ago
    by Tom Clarke
  • Suggested Answer

    SEC_ERROR_REUSED_ISSUER_AND_SERIAL error when using Decrypt HTTPS websites using SSL/TLS in EAP using Firefox +6

    17894 views
    30 replies
    Latest over 2 years ago
    by Francisco Caballero
  • Not Answered

    how can i block windows hotspot by Sophos antivirus 0

    3270 views
    1 reply
    Latest over 2 years ago
    by Hemant Singh
  • Suggested Answer

    Trouble with google based websites using Firefox 0

    13317 views
    9 replies
    Latest over 2 years ago
    by LuCar Toni
  • Suggested Answer

    Mozilla Firefox Trouble with Google Gmail web based access +3

    22694 views
    49 replies
    Latest over 2 years ago
    by Curt Salada
  • Not Answered

    Intercept X EAP issues with SAML Authentication +1

    5440 views
    13 replies
    Latest over 2 years ago
    by Keith Hartung
  • Not Answered

    Issues with blocking on https decryption 0

    2608 views
    1 reply
    Latest over 2 years ago
    by Chris Harland
  • Not Answered

    Slow browsing issue after enabling [Decrypt HTTPS websites using SSL/TLS] in EAP +1

    3159 views
    1 reply
    Latest over 2 years ago
    by Travis_Dadmin
  • Not Answered

    EAP SSL-TLS Scanning: Category Exclusions and Firewallmanagement not working 0

    4696 views
    7 replies
    Latest over 2 years ago
    by Travis_Dadmin
  • Not Answered

    Feedback - on Detection's and Investigations 0

    2173 views
    1 reply
    Latest over 2 years ago
    by Jack L
  • Not Answered

    Server included in EAP unable to update Sophos Agent via Sophos Central 0

    4209 views
    3 replies
    Latest over 2 years ago
    by GlennSen
>
Files
  • RSS
  • More
  • Cancel

XDR - Detection and Investigation EAP Known Issues

SS Polyfilms Private Limited

Live Session Beta it is not responding

Live Discover Schema

4min video on query building

Building an advanced query 20 min

Live Response

Live Discover Tested with Caldera

Forensics Investigation with Live Discover

Threat Hunting with Live Discover

Live Discover IT operations

Device Selection for Live Discover

Joining the Early Access Program

Overview of Live Discover and Live Response

Enhanced Protection - Known Issues List 20 January 2020

Known Issues List for AMSI and IPS EAP - 2019-12-03.pdf

How to Join the Early Access Program

Related Tags
No tags have been created or used yet.
Unfiltered HTML
  • Getting started
  • Legal
  • Privacy
  • Cookies

© 1997 - 2024 Sophos Ltd. All rights reserved.