When a computer is reported as having - for example - a PUA, this is passed to the event store . The Sophos Central Admim gives me the option to allow the PUA or mark it as cleared, but is there an option to clean it on the endpoint reporting the PUA ? Am I missing something in the Settings tab ? ( For info, in this trial, tamper protection is not enabled)
This thread was automatically locked due to age.