I'm figuring out how to set up Sophos within an air-gapped network: it has no internet connection and the machine with Enterprise Console installed is not part of this network. I've already read community.sophos.com/.../64899 so distribution of updates should be possible in this setup.
The thing is: virus definition updates need to be maintained regularly by the end user's admin, but application upgrades may only be performed by our admins. Also, due to the time testing may take for larger system updates switching from Recommended to Previously Recommended is not an option (PR may switch to the newer version too soon).
My questions:
- If I understood correctly both virus definition updates as well as application upgrades are pushed through the same update procedure. Is that correct?
- Is it possible to block application upgrades on the endpoints while definitions are still updated?
- Is there a way in which our admins can upgrade the endpoint applications themselves (for example with their own Enterprise Console installation)?
Thank you in advance.
This thread was automatically locked due to age.