This is a security update for Sophos Connect for MacOS, and a maintenance update for Sophos Connect for Windows

Issues Resolved in v1.4 MR1

  • NCL-1720 - Fixed security issue allowing arbitrary access to client logs from browser

Issues Resolved in v2.3 MR2

  • NCL-2048 - Resolved issue affecting SCC v2.3 MR1 preventing admins from disabling WAN access to the SFOS VPN portal when not needed by clients

Download Links

  • Public download site - may take time after this article publishes to be available
  • Or from your firewall WebAdmin UI under Remote Access > Download Client

OS Compatibility

V1.4 MR1 for MacOS Expected to work

  • Supported OS Versions: MacOS v11.x to v15.x (Big Sur, Monterey, Ventura, Sonoma, Sequoia)
  • Supported Architectures: x86/x64 CPU Mas, ARM CPU Macs when using Rosetta

v2.3 MR2 for Windows

  • Supported - Windows 11 on x86/x64 Architecture on x86/x64 CPUs 
  • Supported- Windows 10 on x86/x64 Architecture on x86/x64 CPUs 
  • Supported Architectures: x86/x64 CPUs
  • Unsupported Architectures: ARM CPUs - Neither native support, or when using Prism 
  • Untested on Server OS versions
  • Untested on older Windows version

Admins may consider the open-source client OpenVPN Connect for SSL VPN compatibility on Windows ARM, MacOS, Linux or Mobile.

Parents
  • When will bugs fixed that are known for years?

    -> SSL VPN with OTP code when provisioning -> connect is direct connecting with the OTP code already used for provisioning login -> error because OTP code can not used 2x

    -> NCL-1845?

  • Hi Quallensaft, thanks for asking! I have two updates for you on coming fixes. 

    1) I The IPv6 issue you referenced didn't make it into this set of releases but IS almost ready for release. I expect it to be included in the next client update. 
    2) I hope it's noticeable that there's been an increase in client releases recently. Development on the client has ramped up a bit, and you should expect to see issues fixed much faster, but also look out for some new features on EntraID support, SSL VPN for MacOS, and others in coming months. 

Comment
  • Hi Quallensaft, thanks for asking! I have two updates for you on coming fixes. 

    1) I The IPv6 issue you referenced didn't make it into this set of releases but IS almost ready for release. I expect it to be included in the next client update. 
    2) I hope it's noticeable that there's been an increase in client releases recently. Development on the client has ramped up a bit, and you should expect to see issues fixed much faster, but also look out for some new features on EntraID support, SSL VPN for MacOS, and others in coming months. 

Children