This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Endpoints show as disconnected in Enterprise Console

Hi,

My setup is as follows:

  • 10 servers on a domain
  • 1 standalone server, not on the domain
  • Enterprise Console installed on the server not in the domain, all servers protected
  • I installed Sophos on all servers by manually browsing to x.x.x.x\SophosUpdate\CIDs\S000\SAVSCFXP and running the setup file.
  • All servers show up and are arranged into their respective policy groups in Enterprise Console and all can update fine.

My issue is that after a couple of days the servers eventually show as if they're disconnected and have a red X through them. They can still update fine but they show as disconnected.  If i re-run the setup file this will keep them connected in the Console for another couple of days, until they eventually drop off again.

I am not sure where to troubleshoot? I was told that installing SEC on a non-member server would not be an issue, so i am not too sure what is causing the endpoints to drop off. Any ideas would be appreciated?

:48214


This thread was automatically locked due to age.
Parents
  • Hi,

    That setup should work fine, the communication only relies on a TCP/IP connection between the endpoints and the server.

    Does this apply:

    http://www.sophos.com/en-us/support/knowledgebase/113293.aspx

    Essentially are the computers sending in either a status or entityevent message within 24 hours to prevent the management service setting them as offline due to a stale last message time..  The last message time column in SEC should reveal if that's the case.

    Otherwise, ensure that the clients can access port 8192 TCP and 8194 TCP of the management server and the server can access TCP 8194 of the clients.

    Regards,

    Jak

    :48218
Reply
  • Hi,

    That setup should work fine, the communication only relies on a TCP/IP connection between the endpoints and the server.

    Does this apply:

    http://www.sophos.com/en-us/support/knowledgebase/113293.aspx

    Essentially are the computers sending in either a status or entityevent message within 24 hours to prevent the management service setting them as offline due to a stale last message time..  The last message time column in SEC should reveal if that's the case.

    Otherwise, ensure that the clients can access port 8192 TCP and 8194 TCP of the management server and the server can access TCP 8194 of the clients.

    Regards,

    Jak

    :48218
Children
No Data