Hello,
some days back, a good friend offered me a used Sophos UTM 110/120 (without HDD / License).
Meanwhile the system is running at home with a new hdd and a home license.
Since the system reports that "Endpoint Antivirus" is licensed for 10 users I'm now trying to install it on one client.
The installation succeeds, but the update always fails with the following excerpt from SophosUpdate.log:
2017-11-26T19:01:09.034Z [ 1056] INFO SDDSDownloader::SyncInternal No manually configured proxy.
2017-11-26T19:01:09.034Z [ 1056] INFO WindowsProxyDiscoveryWrapper::GetDefaultProxyConfiguration WinHttp default proxy not set
2017-11-26T19:01:09.037Z [ 1056] WARN WindowsProxyDiscoveryWrapper::GetProxyForUrl Failed to get the automatic proxy configuration. The error code was 12167.
2017-11-26T19:01:30.136Z [ 1056] INFO SUL-Log [I96736] Looking for package cd2a5386-f08c-42b1-8d98-40240059e361 RECOMMENDED 1
2017-11-26T19:01:30.136Z [ 1056] ERROR SUL-Log [E59264] Cannot locate server for dci.sophosupd.com/.../f638c3f5dfbda955804e4189d290c4b1.xml
2017-11-26T19:01:30.136Z [ 1056] INFO SUL-Log [I23144] No proxy was used.
2017-11-26T19:01:30.136Z [ 1056] INFO SUL-Log [I96736] Looking for package cd2a5386-f08c-42b1-8d98-40240059e361 RECOMMENDED 1
2017-11-26T19:01:30.136Z [ 1056] ERROR SUL-Log [E35364] Out of update sources
2017-11-26T19:01:30.137Z [ 1056] ERROR SDDSDownloader::ReportSyncFailure Failed to synchronise
Accoding to the UTMs Web-Protection log, it really tries to access that file, but really can't find it:
2017:11:26-20:13:25 utm httpproxy[4447]: id="0001" severity="info" sys="SecureWeb"
sub="http" action="pass" method="GET" srcip="192.168.5.22" dstip="178.79.242.217"
statuscode="404" cached="0"
url="dci.sophosupd.com/.../f638c3f5dfbda955804e4189d290c4b1.xml"
What I tried so far:
o Endpoint Protection
- Installed the Package multiple times on the client.
Each time with a restart in between removal and reinstallation.
- Disabled "Endpoint Protection" on the UTM, enabled it again,
reset the registration token and downloaded the package
each time again from scratch.
- Tried the slim and the full package.
o Web-Protection (in transparent mode)
- Excluded all Sophos Servers (LiveConnect and Update-Servers) from transparency-mode
- Excluded the Client from transparency-mode
- Enabled and disabled caching
- Enabled and disabled the option to force caching of Sophos Endpoint Updates
- Cleared the cache multiple times
- (Alway kept default exclusions for "Sophos LiveConnect" and "Sophos Services" enabled)
o Tried to access some Sophos URLs manually:
- "http://dci.sophosupd.com" reports: "Sophos dci Site" and "Connection Successful"
- "dci.sophosupd.com/.../" reports: 404
What can I do to get it working?
Best regards, Uwe
This thread was automatically locked due to age.