We've been moving Sophos Enterprise Console 5.5.1 from a W2008R2 over to a W2016, using the Sophos server to server migration guide. All seemed to be well until we tried to redirect the endpoints to the new SUM. In the SEC all clients looks like offline, means they do not report their status.
Comparing the old and the new SEC551 installation we find out, that the old server has more services running than the new one.
e.g. a port scan shows:
new SEC
Host is up (0.00036s latency).
Not shown: 992 filtered ports
PORT STATE SERVICE
135/tcp open msrpc
139/tcp open netbios-ssn
445/tcp open microsoft-ds
1801/tcp open msmq
2103/tcp open zephyr-clt
2105/tcp open eklogin
2107/tcp open msmq-mgmt
3389/tcp open ms-wbt-server
MAC Address: 00:50:56:8D:91:12 (VMware)
old SEC:
Host is up (0.00065s latency).
Not shown: 984 filtered ports
PORT STATE SERVICE
80/tcp open http
135/tcp open msrpc
139/tcp open netbios-ssn
445/tcp open microsoft-ds
631/tcp open ipp
1801/tcp open msmq
2103/tcp open zephyr-clt
2105/tcp open eklogin
2107/tcp open msmq-mgmt
3389/tcp open ms-wbt-server
5666/tcp open nrpe
8192/tcp open sophos
8193/tcp open sophos
8194/tcp open sophos
10000/tcp open snet-sensor-mgmt
49155/tcp open unknown
So what is the reason for this difference and how can we solve the problem?
This thread was automatically locked due to age.