This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SEC - Awaiting policy transfer

Hello,

 

I have seen many items about this but I haven't found a solution yet.
Recently I changed a existing policy to allow GoogleUpdater.exe on our workstations (mostly laptops).

Since then a few laptops show status "Same as policy" but most of the laptops show status "Awaiting policy transfer".


I've read https://community.sophos.com/products/endpoint-security-control/f/sophos-endpoint-software/71/updating-policy-stuck-at-awaiting-policy-transfer but this suggests to delete Sophos from the laptops etc. but this is not really an option for us.

What can be the problem and more importantly, what is the solution?

 

Kind regards,

Cris



This thread was automatically locked due to age.
  • Hello Cris,

    a few laptops show status "Same as policy"
    looking at your screenshot, which might show a particular group, not all you computers, I'd say that many (most) don't communicate with the management server.

    The red cross  indicates a disconnected (i.e. one whose RMS component hasn't established communication with the management server) endpoint. Furthermore the Up to date column suggests that many haven't connected for quite some time. In line 5 there's a disconnected one that complies with the policy - apparently it has communicated yesterday. Farther down there's one connected  and as expected it also shows Same as policy.

    It's always the endpoint that initiates communication - it tries to connect to the server's port 8192, normally gets directed to port 8194 and establishes the connection. Could it be that the endpoints are most of the time in locations where the can't reach (these ports on) the management server?

    Christian

  • Hello Christian,

     

    Thank you for your reply!
    Our supplier checked for quite a while and it seemed that some registry items were changed (no idea why and how this happened).

    He changed the settings back and now the machines are slowly being updated with the latest policies.

     

    Kind regards,

    Cris