Emails keep getting quartered in under DLP violation, however the file is not in the policy! Support haven't come back to me in weeks and seem to ignore my emails.
Any ideas ?
Policy:
Base Policy
Rule:
Attachment file types (Inbound…
Hi,
it's been few weeks since our email gateway has changed behavior, and is filtering quite all attachments in the email.
with the DLP active with Sophos List, it starded filtering even doc, xls, docx and xlsx. i did some test using these files containing…
Is there a way to apply the same DLP rule to both inbound and outbound? For example: I would like to block the same attachment types for both inbound and outbound. Would i need to create 2 rules?
Hello!
I was wondering if anyone found a workaround for the 200 entry limit on the Keywords rule within the Data Loss Prevention Policy.
I'm moving my "dictionaries" of spam phrases from another provider and the list has over 3000 entries...
Not…
Hi
We have Sophos Central in our environment.
Peripheral Control is enabled everything works as it should however we are unable to update create or delete files on our peripheral devices.
Is there perhaps a setting that we could change to help solve…
Hi,
If anyone can help here with my query. We have some staff getting random "File Transfer blocked" notifications while they are using their computers. These files have been transferred long time ago but this windows keeps popping up from time to…
Hi,
thanks for helping:
I am currently testing the DLP features of Sophos Endpoint but can't get any rule to work. I have even established a file based rule which I would expect to trigger in any case:
Allow transfer if user confirms
File type…
Our company decided to scan for PII information on our company employee's so , was just wondering if sophos endpoint supported real time pii scanning ?
Hi Team,
How to change Endpoint DLP Severity. Is advanced setup i.e Min and Max Count depends Severity? Because, when i am defanging an action based upon count, its not working as expected.
For Eg:
1. CC: Min - 1 & Max - 4
Action: Allow
2. CC…
Hi guys, SOPHOS Support cannot help me in that case, they always sind me a manual with not really good content inside for this topic. Maybe you can answer my question! We are using DLP by Sophos and want to check if a spec. content is inside of a file…
Dear,
I'd like to set all USB port is read only for external drive for data protection.
*File read to PC from external drive. <= support. Read only.
*File copy from PC to external drive. <= Block.
Would you please advise where & how can I set…
I created a policy and a rule to monitor files being transferred to external storage devices. However, it seems the policy only works after a reboot. Is this normal? I haven't seen this with other polices; just the DLP.
Hello,
We have a SQL Server running SentryOne and the entire time the Sophos File Scanner causes the CPU usage to run at 50-60% making the server stay at 100%. I killed the File Scanner and then SentryOne spiked to 50-60%. After this I started the…
Hello all,
I want to ask if anyone has a solution or work around. I have talked to Sophos support and their answer is "not capable" and "cannot cover all the leaks currently".
Currently, DLP condition for destination is not really destination. It…
We are using Intercept X on all of our workstations and I would like to setup a policy where users cannot upload files to any sites. (webmail, online storage, etc.) But I want them to be able to still download from those same sources. Is this possible…
Dear all,
We have following issues with a couple of users - They not able to open a link in Outlook, it doesnt matter if its link to a local or a network file.Most after hours the link opens, somtimes they not able to upload files in the webbrowser…
Hi,
We started experiencing file attachment issues with web-apps and Outlook 2013. We haven't changed any of our Sophos settings. Dragging and dropping the file into a new email or into the web app does not cause issues, but when using the browser window…
I want to intentionally block a USB Mouse and Keyboard from being plugged in but I don't have the ability to yet. This needs to be a feature that is included in the Peripheral settings of Endpoint Protection