This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos Firewall blocking antivirus update packages

Hi all,

I've just put Sophos Firewall in place for the first time (I had been using routers inside our network for that until now) with a custom set up with a few particular ports excluded from the block list. And while the policies seem to work (I can still get in to the computers remotely, policy shows updated to the new settings inside the enterprise console), the computers I tested immediately started failing to recieve Sophos Antivirus updates with the message "ERROR: Could not find a source for updates packages" and error code 00000071.

I assume that Sophos firewall is blocking sophos antivirus in some way, but I don't know how or where. Can anyone give advice?

:57236


This thread was automatically locked due to age.
Parents
  • Hello cce27,

    immediately started failing

    how did you deploy the firewall, Protect computers from the console with a reboot afterwards?

    Sophos firewall is blocking sophos antivirus

    [nitpicking] AutoUpdate is the component responsible for updating [/nitpicking] You might have noticed the scf.dat files in the Sophos program folders. SCF has a "hidden" rule Allow Sophos application connection and the scf.dat files identify the respective executables. Thus SCF is supposed not to block AutoUpdate.

    00000071

    You should start with the ALUpdate logs on the endpoints and check for the specific error to determine what caused the download to fail.

    Christian

    :57239
Reply
  • Hello cce27,

    immediately started failing

    how did you deploy the firewall, Protect computers from the console with a reboot afterwards?

    Sophos firewall is blocking sophos antivirus

    [nitpicking] AutoUpdate is the component responsible for updating [/nitpicking] You might have noticed the scf.dat files in the Sophos program folders. SCF has a "hidden" rule Allow Sophos application connection and the scf.dat files identify the respective executables. Thus SCF is supposed not to block AutoUpdate.

    00000071

    You should start with the ALUpdate logs on the endpoints and check for the specific error to determine what caused the download to fail.

    Christian

    :57239
Children
No Data