"Wanna" ransomware outbreak. Please see this Sophos article sophos.com/kb/126733 for advice on how to protect your organization. Immediate action recommended.
Issue This article describes the differences between the Policy Loopback settings: "Replay Machine Settings", "Ignore User" and "No Loopback".
Known to apply to the following Sophos product(s) and version(s) SafeGuard Management Center / Local Policy Editor
Operating systems All supported Operating Systems
You will find the Police Loopback settings under: Policy Items | General Settings | Loading of settings | Policy loopback
Replay Machine Settings If you select “Replay Machine Settings” in the field Policy Loopback, of a policy of the type General Settings, and the policy affects a computer (“Replay Machine Settings” does not affect user policies), this policy is replayed at the end of the analysis. This action then overrides any user settings and the machine settings apply. All machine settings inherited directly or indirectly by the machine (including policies which have not been applied by the “Replay Machine Settings” policy loopback) are written back.
Ignore User If you select “Ignore User” in the field Policy Loopback, in a policy of the type General Settings, and the policy affects a machine, then only the machine's settings are analyzed. User settings are not analyzed.
No Loopback No Loopback describes the standard behavior. User policies take priority over computer policies.
Analyzing the settings “Ignore User” and “Replay Machine Settings”
Every comment submitted here is read (by a human) but we do not reply to specific technical questions. If you need technical support please post a question to our community. Alternatively for licensed products open a support ticket.