Completed (Minor Issue)

KB-000038424 - Clarify feature for Servers and Mac.

Hi,

The section "Allow computers to isolate themselves on red health" says:

"Note: This is available for all customers with a Sophos Endpoint Protection license and is not available for Server Protection."

The section "Configuring isolation exclusions" says:

"in the Exclusion Type drop-down list, select Computer isolation (Windows) or Server isolation (Windows)"

Does self-isolation exist for Server license or not? If yes, fix the section "Allow computers to isolate themselves on red health"

Also, does self-isolation exist for MacOS machines, or not? If no, it is best to specify that self-isolation is only for Windows.

  • Hi Steve, 

    The section "Allow computers to isolate themselves on red health" says:
    "Note: This is available for all customers with a Sophos Endpoint Protection license and is not available for Server Protection."

    -- Following that note, the article also states:
    This provides a policy option that allows computers to isolate themselves from the network when the computer reports a red health status. This option is available in the Threat Protection policy under Device Isolation:

    This means that only the Threat protection policies on Endpoint Protection have the Device Isolation option. Only endpoints auto-isolate.
    The minimum license to have to get this option is available is Sophos Endpoint Protection.


    The section "Configuring isolation exclusions" says:
    "in the Exclusion Type drop-down list, select Computer isolation (Windows) or Server isolation (Windows)"
    Does self-isolation exist for Server license or not? If yes, fix the section "Allow computers to isolate themselves on red health"

    -- Servers can be isolated manually. Administrators need to decide if a server needs to be isolated.

    Also, does self-isolation exist for MacOS machines, or not? If no, it is best to specify that self-isolation is only for Windows.

    -- The following note at the beginning of the article states this:
    Note: The device isolation feature on Central is not currently supported for Linux or Mac endpoint clients.