This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

where to find signature date/version on Sophos site?

Apologhies for a newbie question but my search criteria do not return success :-(

We have version 9.5 of Endpoint Security and Control.   Updates are collected from the official Sophos site.   The enterprise console tells me that updates are happening without errors.

However, as of January 13th the detection version / date is 4.61G, 3/1/2011

I would have thought there would be extra threats in the ten days between 3/1/2011 and 13/1/2011 which would merit a new detectuion release?

Where do I confiirm, on the Sophios site, the supposed latest sigs?

Kind regards,

Denis

:7787


This thread was automatically locked due to age.
Parents
  • Hi,

    Glad that was useful.

    That version number is the monthly version given to the virus data.  You continue to get ide files which supplement the detection throughout the month.  On average I would suggest 10 ide files a day, each of which has detection for multiple malware.  Plus as a lot of the identities detect whole families of malware generically so it's hard to say for sure how many pieces of malware would be caught by the identity.  So as the month goes by you might end up with 300+ ide files which suppliment the 4.60 virus data.  The next time the virus data is changed, it essentially incorporates all what has gone before and the cycle repeats.

    This level of protection is just one aspect, in 9.5 there are live lookups performed against Sophos again to supplement protection (if enabled).

    Regards,

    Jak

    :7807
Reply
  • Hi,

    Glad that was useful.

    That version number is the monthly version given to the virus data.  You continue to get ide files which supplement the detection throughout the month.  On average I would suggest 10 ide files a day, each of which has detection for multiple malware.  Plus as a lot of the identities detect whole families of malware generically so it's hard to say for sure how many pieces of malware would be caught by the identity.  So as the month goes by you might end up with 300+ ide files which suppliment the 4.60 virus data.  The next time the virus data is changed, it essentially incorporates all what has gone before and the cycle repeats.

    This level of protection is just one aspect, in 9.5 there are live lookups performed against Sophos again to supplement protection (if enabled).

    Regards,

    Jak

    :7807
Children
No Data