This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Blocking uploads and downloads of files

Hey all, below is what we are trying to do within Sophos Central (we have web control, web gateway, endpoint, interceptx, dlp, etc.)

 

1 - Block users from installing applications unless they are approved by IT

2 - Block users from having the ability to upload or download attachments to and from any website unless the website is whitelisted (example: I don't want users to be able to download or upload files to their personal email).....and a notification of this attempt would be nice too.  This obviously shouldn't block corporate Outlook from being able to do this.

3 - Block dropbox/one drive, etc.

4 - Be able to read/user cdrom / thunb drive but not copy to them.



This thread was automatically locked due to age.
Parents
  • Hi  
     
    Please find below the answers for your queries:
     
    1. You have to create a policy under GPO in order to block the users from installing an application, as the security software can only block the access and not the installation of the application.
    2. Blocking the downloads can be accomplished by configuring the web control policy, please refer to Sophos Central Web Control Frequently Asked Questions (FAQ).
    3. Blocking the Dropbox/one drive can be configured under the application control policy, please refer to Sophos Central - Application Control Frequently Asked Questions (FAQ)
    4. To set the read only access on external drives, please configure the Peripheral control policy. From Sophos Central console, click on Endpoint Protection| Policies | Peripheral Control Policy | Settings | select Control access by peripheral type and add exemptions , and configure the policy as per your requirement.
     
    The links (provided earlier) should be helpful in how to configure the policies. In case you need further assistance in walk through, please contact Sophos Technical Support through the web form or Sophserv.
     
    Haridoss S
     

    Haridoss Sreenivasan
    Technical Support Engineer | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

Reply
  • Hi  
     
    Please find below the answers for your queries:
     
    1. You have to create a policy under GPO in order to block the users from installing an application, as the security software can only block the access and not the installation of the application.
    2. Blocking the downloads can be accomplished by configuring the web control policy, please refer to Sophos Central Web Control Frequently Asked Questions (FAQ).
    3. Blocking the Dropbox/one drive can be configured under the application control policy, please refer to Sophos Central - Application Control Frequently Asked Questions (FAQ)
    4. To set the read only access on external drives, please configure the Peripheral control policy. From Sophos Central console, click on Endpoint Protection| Policies | Peripheral Control Policy | Settings | select Control access by peripheral type and add exemptions , and configure the policy as per your requirement.
     
    The links (provided earlier) should be helpful in how to configure the policies. In case you need further assistance in walk through, please contact Sophos Technical Support through the web form or Sophserv.
     
    Haridoss S
     

    Haridoss Sreenivasan
    Technical Support Engineer | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

Children