• Client Firewall fails to install with "Log reader error: could not format string."

    I have Sophos Endpoint Security and Control V10.8 on Windows 10. It is updated directly from Sophos, not from any management centre. On Monday 11 Oct at 15:56 an update tried to install a new version of the Sophos Client Firewall and failed with the error…
  • Are there any service or system accounts required on AD On-Prem for Sophos Cloud?

    Reason I ask is because we has Sophos Enterprise server on-prem and the server was deleted but a lot of Sophos accounts are still showing up on On-Prem AD. If no AD On-Prem accounts are required for Sophos Cloud then I can safely disable then delete…
  • Changing Updating Policy on Sophos Enterprise Console

    Hello, We are using Sophos Enterprise Console 5.5.1 and Sophos Endpoint Security and Control Version 10.8. On near future we will migrate our domain control and I have concern regarding migrating domain controller server will affect sophos AutoUpdate…
  • Device control failed a configuration read operation: errorCode=0x8007000e

    Hi, We have a virtual domain controller server in our environment where device control should be enabled, however we received an error 8 days ago (13/08) which said, 'Device control failed a configuration read operation: errorCode=0x8007000e' and after…
  • Problem installing Sophos on server 2016 Endpoint

    Hi We are trying to install Sophos endpoint security and control 10.8 on server 2016 Datacentre edition 1607 using enterprise console 5.50 when we tri to protect a 2016 server from the console we receive error code 80070057 along with the message "installation…
  • Update files location of Air Gaped network in Standalone Version

    Hi, I installed Standalone Version Endpoint Security and Control on my air gapped network. I used this URL and second step to install. https://community.sophos.com/kb/en-us/64899 After installing its getting update and last updated is up to date…
  • SAV 10.7.6 Engine 3.70.2 for Preview Subscription released

    The new SAV 10.7.6 Engine 3.70.2 for Preview Subscription is released since this afternoon. It was announced for October. https://community.sophos.com/kb/en-us/120189 So far the first tests are without problems. Best regards, André Peterhans
  • Sophos Client AV Blocking all connection of workstations

    today morning several users report can't login systems and apps, after we discover the allow all traffic option in Sophos firewall tab in client side removed automatically. then we put the traffic allow tick again, then the all blocking process stopped…
  • Sophos AV not affected by AVGator Vulnerability

    The new AVGator Vulnerability exploits local, non-admin privileges to run malicious code as SYSTEM. An important pre-condition for an Anti-virus product to be vulnerable is that it must allow a non-admin user to restore from quarantine. Sophos products…
  • Windows XP/2003 Extended Support update has just been released to Sophos On-Premise - 10.7.2.4 VE3.69.2 for XP/2003

    Hey All, The next XP/2003 Extended Support update has just been released to On Premise customers. Headline new releases, retirements and significant resubs Metadata update to provide better Sophos Deployment Packager tool support. This updates…
  • After Sophos Endpoint Version Update Error "Failed To Install Sophos Hitman Pro Alert: A Reboot was Required [0x00000067]"

    We had a Sophos Version Upgrade Over This Weekend. Due to Which Around 5K systems Shows Up as Errors in SEC Dashboard In System Tray For Users, It Shows Sophos is Not Updated Clients Have Below Message On Console Tried - https://community…
  • Nearly half of our endpoints unable to update and present "The security health cannot be reported at the moment" WHY?!!!

    Hi All, Over the last few months more and more of our endpoint clients are failing to update with "Download of WindowsCloudNextGen failed from server http:∕∕dci.sophosupd.com∕update." along with "The security health cannot be reported at the moment" under…
  • MICROSOFTONLINE.com Blocked? WHY

    Boom.. This Morning Our Intranet Page was blocked by Sophos, Means Office 365 SharePoint Page was Down and We had a Chaos. Any One Any Thoughts Why Would Sophos Block a Microsoft Page?
  • SCE Mac deployment

    Hi I need to deploy SCE to approximately 120 Macs. Each machine is bound to an AD with all users with standard permissions. For this reason email deployment is obviously not an option. How is this best achieved? Thanks Paul
  • A Windows API call returned error 1909 [0x00000070]

    Hi Experts :) , I am facing an issue with the following ESC. We have Windows 7 and 10 OS installed in our environment. Below is the error I am getting. Actually the Update is failing with the below error, and sometimes it updates successfully but…
  • On access scanning disable itself random on windows client

    Good morning, we have a sophos centralized installation. Sophos endopint security and control, version 10.7, is installed on the workstations. Regardless of the operating system (Windows 7 or 10 or server), it happens that I often find disabled access…
  • Help I cannot upgrade

    Okay I am a Domain Admin I am trying to upgrade to 5.5.0 first I didn't have permission fixed that issue ...sorta then the db needed upgraded... fine updated mssql ... no more updates found ran the installer DB needs upgraded ok so I scour the web…
  • Endpoint not reporting blocked DVD drive, so cannot create exemption

    Hi, I have setup a new Win10 desktop with DVD-RW drive. I need to create a Device Control exemption, but there is no entry in the "add exmption" screen for optical drive to enable me to create it. I also note there is no pop-up alert from Sophos to…
  • Sophos Enterprise console show manged computer need to restart

    hi i am using SEC 5.4.0 since last thurday it shows me that about half of my managed computer need to restart 0x0000006d. i further dig out so found that new update for sophos need Endpoint to restrart. and the list of Mnaged PC who are showing this…
  • Decoding AutoUpdate Status In Console Errors Table

    I want to do some SQL reporting on success and errors for updates to the clients managed by the console as seen here: Note there is a Code which here varies between 0x00000000 and 0x0000006d. In decimal that's 0 and 109. You can find those code values…
  • Sophos Endpoint Protection. on-prem vs Cloud

    Help - So we currently have cloud.sophos.com endpoint access and have been using the cloud-based for a while with mixed results. We are considering moving this to an on-premises server for stability and speed. We have about 3000 endpoints and about 1600…
  • Application Control suddenly quarantining Windows 10 "Modern"/"Metro" apps

    Starting yesterday, our Application Control policy is blocking the following Windows 10 applications: Microsoft Store App Microsoft MSN Weather Microsoft MSN News Microsoft Calculator Has anyone else encountered this? Before I simply authorize…
  • Sophos Endpoint and Cyberoam Firewall Internet Connection Issue

    Hello All, I am currently deploying Sophos Endpoint Protection at a customer's site whilst the customer has already deployed Cyberoam UTM Firewall. Now what i discovered is that users usually loose connection to the internet since the time we deployed…
  • SEC connections problem

    There are 1 SEC server , 1 DB server and 3 SUM &RMS servers provide sophos endpoint service for about 30000 clients(these clients are all in 1 network range) in my company. Maybe the system performance bottlenecks of the servers , only 10000 clients…
  • SUM fail to connect on 8194

    I have a SUM server connected several thousands of clients, in command netstat -an , I can see lots of clients have established the connection to this server on port 8194 C:\Users\winsvruser>netstat -an | findstr :8194 TCP 0.0.0.0:8194 0.0.0.0:0 LISTENING…