This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

AV console removing Autoupdate password

I am logging this call here as not really getting anywhere with sophos support.

I have migrated my sophos enterprise console from Server 2003 to a Server 2008 R2 box. That all went fine.

When i try to re-protect the endpoint the AutoUpdate password is being blanked out when the endpoint talks back to the server.

This is my process (AV2 is the new Enterprise console server)

I ran \\av2\SophosUpdate\CIDs\S094\SAVSCFXP\setup.exe from the endpoint

entered the credentials

The Sophos software installs.

Confirmed before the reboot that the auto update credentials had the password are configured correctly

After the reboot the password was blank and failing to update.

there is something strange going on but not getting anywhere with this.

In addition, if I protect the device from the enterprise console using the "protect computer wizard" I can see that the scheduled task Sophos_inst is created on the endpoint but the password is not set in the arguements properly.

\\AV2\SophosUpdate\CIDs\S094\SAVSCFXP\setup.exe 

arguments: -ouser "BwgGkSSmz4hOUrFxU96TsRJHuk+pzriUdEK72VWTS3+EKkhUTAJJjJmB" -opwd "" -mng yes -s -xp "\\AV2\SophosUpdate\CIDs\S094\SAVSCFXP" -crt R

 I would appreciate any help on this one.

Karl Forster

:55680


This thread was automatically locked due to age.
  • Hello Karl,

    so you know the password and have set it properly in the policy (just to make sure put it in again - you won't "see" that the password is empty, SEC always displays the fat dots) ? If so there's perhaps a problem with the obfuscation routine. Do you get an output from bfuscationUtil.exe?

    Christian

    :55698
  • I suspect that during the migration the private store data was not moved (exported/imported) correctly.

    The private store is essentially the registry keys that hold the passwords to the updating and SUM poicies.  Re-entering the password as QC mentions will write the values back to the registry and you should be OK.  

    I would suggest re-entering the passwords for all SUM configurations and all updating policies.  If you had ADSync points I would also check that the properties show correctly as there maybe some work to do there also.

    Regards,

    Jak

    :55724
  • I have fixed the issue now.

    Cross referenced the registry on both servers to find the differences. 

    Thanks for your help.

    Karl 

    :55744