This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Citrix XenApp 5 and Sophos "attacking"

I have Sophos 9.0.5 installed on a XenApp 5 (server 2008 sp2 32 bit) farm and am seeing more than a few instances where Sophos is detecing suspicious behavior "HIPS/ProcInj-001" on applications. Office 2007 apps seem to have particularly started getting nailed after I put office sp2 on.

My Sophos administrator tells me that if we turn off the suspicious behavior scanning, we'll be essentually running without virus protection. She also says there is no way to turn off detection of this one behavior (HIPS/ProcInj-001).

Anyone here running Sophos on Citrix XenApp?

:4613


This thread was automatically locked due to age.
  • What you can do Ken is create a seperate Anti Virus and Hips policy for your Xenapp servers where you can 'Authorise' the legitimate files that are being picked up by Sophos.  This way you don't have to turn off suspicious behavior scanning.

    :4679