This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Apple MAC active directory users not registering on XGS firewall

A customer has a major number of Apple MAC OS computers.
The Devices are Active Directory joined, all have Sophos Endpoint Protection installed, the users log onte the computers with active directory credentials.

All the customer's locations have Sophos XGS firewalls with full Sophos Central connection activated.

All the Windows Clients/Users are beeing correctly registered as active users on the firewalls.

From the Apple MAC OS computers/users we cannot even see any log-on process on the firewalls logs.

The customer wants to implement user-based firewall rules
We need therfore to have the Apple MAC OS users register consistently on the firewall as active users.

How can we do this?



This thread was automatically locked due to age.
Parents
  • FormerMember
    0 FormerMember

    Hi ,

    Thank you for reaching out to Sophos Community.

    Do you see health status events in heartbeat.log for endpoint installed on MAC OS? This event indicated that the endpoint has sent health status to XG.

    Example log snippet:

    a 2019-10-23T18:39:41.780Z [4616:5628] - Sending login status.

    a 2019-10-23T18:39:51.211Z [4616:5628] - Sending health status: {"admin":1, "health":1, "service":1, "threat":1}

  • I've also checked on the customer's firewall.
    There's a MAC OS client there, whose IP I know and that is registered and active in Sophos Central.
    But I cannot find its IP adress in the "heartbeatd.log" file on the corresponding firewall.

    Alexander Poettinger

    Sophos Certified Architect - XG
    Sophos Certified Technician - XG
    Sophos Certified Engineer - UTM

    xame gmbh
    Sophos Gold Partner

Reply
  • I've also checked on the customer's firewall.
    There's a MAC OS client there, whose IP I know and that is registered and active in Sophos Central.
    But I cannot find its IP adress in the "heartbeatd.log" file on the corresponding firewall.

    Alexander Poettinger

    Sophos Certified Architect - XG
    Sophos Certified Technician - XG
    Sophos Certified Engineer - UTM

    xame gmbh
    Sophos Gold Partner

Children
No Data