This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos blocking wireless

Have issues with Sophos blocking access to wireless networks. Peripheral control is enabled and wireless is allowed. The actual wireless card is not disabled by Sophos, but no wireless networks show in the connect to list.

The fix seems to be to switch to a monitor only policy or to disable Peripheral control within the endpoint software. The wireless card is then detected and can be added to the allow list manually.

It may be triggered by a recent windows update – KB4462919. It seems to affect multiple makes of wireless cards. 



This thread was automatically locked due to age.
Parents
  • Has your issued been resolved? This is the work around Sophos gave me.

     

    Here are the steps I'd like to test on one of the affected devices.

    Open "Windows Defender Security Centre"
    Go to "App & Browser control"
    Scroll down and click on "Exploit protection settings"
    Click on "Program Settings".
    Wait for the list of applications to populate - this can take some time
    Scroll down until you find "svchost.exe"
    Press "Edit"
    Check if "Code Integrity Guard" is enabled in "Audit only" mode. If it is enabled, turn it off (uncheck "Override system settings").
    It might help to also disable "Arbitrary code guard" (if it is in "Audit only" mode), but it shouldn't be strictly necessary.
    Click on "apply" to save the changes.
    Reboot the machine

Reply
  • Has your issued been resolved? This is the work around Sophos gave me.

     

    Here are the steps I'd like to test on one of the affected devices.

    Open "Windows Defender Security Centre"
    Go to "App & Browser control"
    Scroll down and click on "Exploit protection settings"
    Click on "Program Settings".
    Wait for the list of applications to populate - this can take some time
    Scroll down until you find "svchost.exe"
    Press "Edit"
    Check if "Code Integrity Guard" is enabled in "Audit only" mode. If it is enabled, turn it off (uncheck "Override system settings").
    It might help to also disable "Arbitrary code guard" (if it is in "Audit only" mode), but it shouldn't be strictly necessary.
    Click on "apply" to save the changes.
    Reboot the machine

Children
No Data