Hello. Sorry if this question has already been answered and sorry for my English.
[Context] We manage our endpoints with on premise Sophos Enterprise Console. Users are now working from home and their computers are not physically on the LAN. They connect to the company’s IT through VPN. The update server policy is configured to use SEC as primary and Sophos as secondary. When the VPN is not connected, SEC cannot be joined. I know Sophos Central exists but we are not ready to move to this Cloud solution yet.
[Question] Is there a way to tune the failover process from primary update server to secondary (i.e. reduce the time so that endpoints decide to download updates from the Internet if the company’s server is unreachable) ?
[More Context] I do not find any documentation about how it works technically to determine if primary source cannot be contacted and then switch to secondary source. Our VPN has an “host checking” procedure and admits the host depending on signature age, which can be an issue after an absence.
Best Regards
Christophe
This thread was automatically locked due to age.