Sophos Community
Sophos Community
  • User
  • Site
  • Search
  • User
  • Community & Product Forums
  • Community Blogs
  • Partners
  • Support Portal
  • Get started
  • Blogs
    • Sophos Community Blog
    • Sophos Endpoint
    • Sophos Firewall
    • Zero Trust Network Access
    • Sophos Switch
    • UTM Firewall
    • Sophos Wireless
    • Sophos Central
    • Sophos Cloud Optix
    • Sophos Central API
    • Sophos Factory
    • Sophos Email
  •  
    • Phish Threat
    • Sophos XDR
    • Sophos Mobile
    • On-Premise Endpoint
    • Encryption
    • Sophos Partners
    • Support Portal Feedback
    • Product Documentation Blog
    • SophosLabs
    • Free Tools
    • Sophos Integrations
  • Products
    • Endpoint Security
      • Endpoint protection - next-gen antivirus
      • Endpoint detection and response (XDR)
      • Mobile security
    • Email Security
      • Sophos Email
      • Phish Threat
    • Network Security
      • Sophos Firewall
      • UTM firewall
      • Zero trust network access (ZTNA)
      • Network detection and response (NDR)
      • Sophos Switch
      • Sophos Wireless
    • Cloud Security
      • Sophos Central
      • Sophos Cloud Optix
    • Sophos Home Premium
      • Sophos Home portal
    • Support Tools
      • Sophos integrations
      • Free tools
  • Services
    • Management platform
      • Sophos Central - sign in
      • Support portal - sign in
      • Community - sign in
  • Sophos Partners
    • Partners Corner
    • Partner blogs
    • Websinars and Events
  • Member Recognition
    • Community Leaderboards
    • Sophos Central login
    • Partner care
  • Become a partner
    • Join our program
  • Sophos Community: Getting started
    • How to get started
    • Frequently Asked Questions (FAQs)
    • SophosID Registration
    • How to contribute and participate
    • How to set up your profile
  •  
    • How to manage friends
    • How to manage private messages
    • How to manage digests, subscriptions, and notifications
    • Terms and Conditions of Use
  • Products and Services
    • Products
      • Endpoint Security
        • Endpoint protection - next-gen antivirus
        • Endpoint detection and response (XDR)
        • Mobile security
      • Email Security
        • Sophos Email
        • Phish Threat
      • Network Security
        • Sophos Firewall
        • UTM firewall
        • Zero trust network access (ZTNA)
        • Network detection and response (NDR)
        • Sophos Switch
        • Sophos Wireless
      • Cloud Security
        • Sophos Central
        • Sophos Cloud Optix
      • Sophos Home Premium
        • Sophos Home portal
      • Support Tools
        • Sophos integrations
        • Free tools
    • Services
      • Management platform
        • Sophos Central - sign in
        • Support portal - sign in
        • Community - sign in
  • Community Blogs
    • Blogs List 1
      • Sophos Community Blog
      • Sophos Endpoint
      • Sophos Firewall
      • Zero Trust Network Access
      • Sophos Switch
      • UTM Firewall
      • Sophos Wireless
      • Sophos Central
      • Sophos Cloud Optix
      • Sophos Central API
      • Sophos Factory
      • Sophos Email
    • Blogs List 2
      • Phish Threat
      • Sophos XDR
      • Sophos Mobile
      • On-Premise Endpoint
      • Encryption
      • Sophos Partners
      • Support Portal Feedback
      • Product Documentation Blog
      • SophosLabs
      • Free Tools
      • Sophos Integrations
  • Partners
    • Sophos Partners
      • Partners Corner
      • Partner blogs
      • Websinars and Events
    • Member Recognition
      • Community Leaderboards
      • Sophos Central login
      • Partner care
    • Become a partner
      • Join our program
  • Support Portal
  • Get started
    • Sophos Community: Getting started
      • How to get started
      • Frequently Asked Questions (FAQs)
      • SophosID Registration
      • How to contribute and participate
      • How to set up your profile
      • How to manage friends
      • How to manage private messages
      • How to manage digests, subscriptions, and notifications
      • Terms and Conditions of Use
Windows Endpoint EAP
  • Sophos Endpoint
  • More

Windows Endpoint EAP

  • Announcements
  • Recommended Reads
  • Feedback & Issues
  • Live Discover Query Forum
  • Files
  • More
  • Cancel
  • New
Windows Endpoint EAP requires membership for participation - click to join
Quick Links
⁃ Back to Intercept X Main Group
⁃ EAP Files
⁃ Member List
Getting Started
⁃ Recommended Reads
⁃ Live Discover Queries
Subscribe to Sophos Notifications Follow us on Twitter Connect with us on Facebook Join us on Reddit
Announcements
  • SSL/TLS decryption of HTTPS websites

    SSL/TLS decryption of HTTPS websites

    StephenMcKay
    StephenMcKay
    Hi all, HTTPS inspection is being enabled by default for devices in the EAP now that the roll out has…
    • 15 Oct 2021
  • XDR - Detection and Investigation Early Access Program

    XDR - Detection and Investigation Early Access Program

    Kevin Kingston
    Kevin Kingston
    We are excited to announce the opening of the Detections and Investigations Early Access Program (EAP…
    • 10 Oct 2021
  • Important Changes to the Endpoint/Server Protection and EDR Features Early Access Program

    Important Changes to the Endpoint/Server Protection and EDR Features Early Access Program

    StephenMcKay
    StephenMcKay
    Hi all, We have some exciting changes coming to the Endpoint/Server Protection and EDR Features Early…
    • 11 Jun 2021
<>
Latest Endpoint EAP Recommended Reads
  • Discussion

    EAP August Update Locked

    1667 views
    0 replies
    Started over 4 years ago
    by StephenMcKay
  • Discussion

    Server Protection and EDR Features - IPS Locked

    6617 views
    0 replies
    Started over 4 years ago
    by StephenMcKay
  • Discussion

    Useful Tools for Malware Investigation and Remediation

    13683 views
    3 replies
    Latest over 3 years ago
    by john_kenny
  • Discussion

    Device and Group Discovery (DGD) FAQ

    7084 views
    4 replies
    Latest over 3 years ago
    by FlyNavy
  • Discussion

    Sophos Server Protection for Linux - AV Plugin

    13419 views
    6 replies
    Latest over 3 years ago
    by RaveNet
<>
Latest Community Questions in Endpoint EAP
  • Not Answered

    Live Response not showing 0

    3873 views
    1 reply
    Latest over 4 years ago
    by Kevin Kingston
  • Discussion

    Sophos Behavioral Rules - New release!

    3653 views
    1 reply
    Latest over 4 years ago
    by Maxim-Sophos
  • Discussion

    EAP August Update Locked

    1667 views
    0 replies
    Started over 4 years ago
    by StephenMcKay
  • Discussion

    Server Protection and EDR Features - IPS Locked

    6617 views
    0 replies
    Started over 4 years ago
    by StephenMcKay
  • Not Answered

    Automate (Labtech) Issues +2

    10983 views
    9 replies
    Latest over 4 years ago
    by RonanTheAccuser
  • Discussion

    Useful Tools for Malware Investigation and Remediation

    13683 views
    3 replies
    Latest over 3 years ago
    by john_kenny
  • Discussion

    Device and Group Discovery (DGD) FAQ

    7084 views
    4 replies
    Latest over 3 years ago
    by FlyNavy
  • Answered

    Linux - EDR Client - Will it be able to work alongside AV? 0

    5675 views
    4 replies
    Latest over 3 years ago
    by StephenMcKay
  • Not Answered

    EAP clarifications and what to do in a "set & forget" approach? 0

    601 views
    0 replies
    Started over 3 years ago
    by Franco Fassio
  • Discussion

    Sophos Server Protection for Linux - AV Plugin

    13419 views
    6 replies
    Latest over 3 years ago
    by RaveNet
  • Suggested Answer

    New Sophos EDR Linux SLES 15.1/15.2 OS unknown +1

    6554 views
    4 replies
    Latest over 3 years ago
    by RaveNet
  • Not Answered

    HTTPS Decryption 0

    840 views
    0 replies
    Started over 3 years ago
    by StephenMcKay
  • Answered

    XDR - Detection and Investigation Early Access Program 0

    3692 views
    1 reply
    Latest over 3 years ago
    by Kevin Kingston
  • Not Answered

    XDR Detections -is EQL-WIN-EXE-PRC-DIAVOL-ARGS-1 broken 0

    6844 views
    5 replies
    Latest over 3 years ago
    by Karl_Ackerman
  • Discussion

    New HMPA version 3.8.3 release to EAP today

    2120 views
    0 replies
    Started over 3 years ago
    by DarrenTeagles
<>
Files
  • RSS
  • More
  • Cancel

XDR - Detection and Investigation EAP Known Issues

SS Polyfilms Private Limited

Live Session Beta it is not responding

Live Discover Schema

4min video on query building

Building an advanced query 20 min

Live Response

Live Discover Tested with Caldera

Forensics Investigation with Live Discover

Threat Hunting with Live Discover

Live Discover IT operations

Device Selection for Live Discover

Joining the Early Access Program

Overview of Live Discover and Live Response

Enhanced Protection - Known Issues List 20 January 2020

Known Issues List for AMSI and IPS EAP - 2019-12-03.pdf

How to Join the Early Access Program

Related Tags
No tags have been created or used yet.
Unfiltered HTML
  • Getting started
  • Legal
  • Privacy
  • Cookies

© 1997 - 2024 Sophos Ltd. All rights reserved.