• Sophos Web Control : Message when a Category is blocked

    skyisbluescreen
    skyisbluescreen
    We have blocked Peer to Peer \ Chat Tools in the WEB CATEAGORY. This works well but Sophos does not display a standard message as seen below. The error below confuses our users and they report it as a issue on their PC, would have been good if Sophos…
    • over 3 years ago
    • Sophos Endpoint
    • Discussions
  • macOS C2/Generic-A Detections

    rfrutiger
    rfrutiger
    Today I have been receiving detections for C2/Generic-A on my mac clients the offending process is /usr/libexec/trustd and it is reaching out to IP 104.18.21.226. This IP is owned by cloud flare and hosts alphassl.com so it seems to make sense that the…
    • over 3 years ago
    • Sophos Endpoint
    • Discussions
  • Cannot start HitmanPro.Alert service on Intercept X

    mh3000
    mh3000
    Hello everyone, I have two Windows Servers that report the HitmanPro.Alert service as Stopped. Once I open windows services and try to manually start it I get this message: "Windows coul not start the HitmanPro.Alert service service on Local…
    • over 3 years ago
    • Sophos Endpoint
    • Discussions
  • Unmanaged devices tab

    Obaida Thunibat
    Obaida Thunibat
    Hello, I've noticed that a new tab has been added recently for 'Unmanaged devices' in computers and servers, but the page doesn't get anything and loading keeps on with no items were found.
    • over 3 years ago
    • Sophos Endpoint
    • Discussions
  • Intercept X - Multiple Threat Cases for Singular Detection

    alars15
    alars15
    Does anyone else get 10+ threat cases created for a single detection? For example, Sophos picked up some phishing from Outlook and generated 10+ threat cases: I don't think the user would try 10 times to open this email attachment. Anyone have…
    • over 3 years ago
    • Sophos Endpoint
    • Discussions
  • Endpoint stopped recieving updates after trial expiration

    Motaz SOUID
    Motaz SOUID
    Hello, we have the license for Intercept X advanced which 600+ users are using, a month ago a started the trial for the Intercept X advanced with EDR on the same central account, all the machines switched to the trial license, now that the trial ended…
    • Answered
    • over 3 years ago
    • Sophos Endpoint
    • Discussions
  • Ich sehe bei den vielen Sophos Endpoint Produkten nicht mehr durch, kann mir das jemand erklären?

    Robert Müller
    Robert Müller
    Hallo Leute, ich habe mal eine Frage zu den Sophos Endpoint Produkten. Wir nutzen in der Firma Sophos Central dort gibt es im Punkt Endpoints die Unterscheidung zwischen Clients und Servern. Was ist jedoch nicht verstehe ist folgendes: Bei den Servern…
    • over 3 years ago
    • Sophos Endpoint
    • Discussions
  • Server Offline in Live Discover

    ErikB
    ErikB
    Just starting with InterceptX for Server. Installation is complete, my Servers are communicating with the cloud. When I go to Live Discover I notice that some Servers are Offline, but in my Server overview I can see activity a few minutes ago. How can…
    • Answered
    • over 3 years ago
    • Sophos Endpoint
    • Discussions
  • Is there a centralized place to manage all my Sophos Central Policies (Endpoints/Users/Servers)?

    JordiPa
    JordiPa
    All of our users (AD) can work with any endpoint server or computer, through remnote desktop or Citrix, all of them are protected throught Sophos Intercept X. But I don't know if there is a centralized place to manage all my Sophos Central policies without…
    • over 3 years ago
    • Sophos Endpoint
    • Discussions
  • Questions regarding Sophos Central computer groups

    mh3000
    mh3000
    Hello everyone, I have some questions regarding Sophos Central Computer groups: - Is it possible for a computer or server be part on 2 or more groups at the same time? - Is it possible to create some kind of automatic group assignation rule…
    • Answered
    • over 3 years ago
    • Sophos Endpoint
    • Discussions
  • Intercept X Endpoint Users in User Portal

    Steven Barnes
    Steven Barnes
    Hello! We're installing Intercept X Endpoint on machines that are not part of a domain. Unfortunately, this means users are appearing in Sophos Central as [Machine Name]\[User], for example MACHINE001\Employee1 MACHINE002\Employee1 While its the…
    • Answered
    • over 3 years ago
    • Sophos Endpoint
    • Discussions
  • Cant install Kali Linux WSL, Sophos blocking it

    StevenPowell
    StevenPowell
    Hi all, I am trying to install Kali Linux from the Microsoft Store on Windows 10 20H2 but it is being blocked by Sophos as a PUA (due to the nature of the apps it uses). is there a way to allow install and use of this without Sophos scanning it? can…
    • over 4 years ago
    • Sophos Endpoint
    • Discussions
  • one client: almost 1000 PUA detected - how to automatically delete?

    LHerzog
    LHerzog
    Hello, beginning yesterday one MAC client managed in Central reported 792 PUA. This is massive mail spam, I can tell! The problem was, the PUA were not detected at one, they were detected over some time - so the mail flood never stopped. Even today…
    • over 4 years ago
    • Sophos Endpoint
    • Discussions
  • SspEdrProcess.log only errors: feedassembler.cpp: 156 Cannot convert unrecognised threat type to string

    LHerzog_Central
    LHerzog_Central
    Hi, while looking for logs for malfunction of FujitsuDeskupdate because of Sophos Intercept X Client, I found a log called SspEdrProcess.log which does only contain errors and a new log entry is created every few seconds all day long. What is the use…
    • over 4 years ago
    • Sophos Endpoint
    • Discussions
  • [Sophos Notification] Advisory: Sophos Central Managed Servers consume Intercept X Advanced for Server licenses

    Gowtham Mani
    Gowtham Mani
    Hi Everyone, [Update 1 - 08/11/18 @ 11:20 GMT] Changes have been made in Sophos Central to mitigate this issue. Customers should no longer find that disabling Intercept X Advanced on server consumes advanced licenses. ----------------------------…
    • over 6 years ago
    • Sophos Endpoint
    • Discussions
  • Downgrade a server license from advanced to standard

    Tom Stacey
    Tom Stacey
    We've managed to install "Intercept X Advanced for server" on a few servers instead of the standard protection. I can't find how to downgrade this. There used to be a way by selecting the server itself but this option seems to have been removed. The…
    • over 6 years ago
    • Sophos Endpoint
    • Discussions
  • Intercept X Advanced for Server and Sophos SafeGuard 8

    S1P
    S1P
    Hello I need a bit of guidance please. I had "Central Server Protection Advanced" on our Servers with "Sophos SafeGuard 8" throughout the company. All working together perfectly. I've enabled the new "Intercept X Advanced for Server" features in…
    • over 6 years ago
    • Sophos Endpoint
    • Discussions
  • [Sophos Advisory] Internet Explorer 11 crashes with Sophos Central Endpoint and Intercept X installed

    FloSupport
    FloSupport
    Hey Community, This KB article describes a problem where Sophos Central Endpoint and Intercept X causes Internet Explorer 11 to crash when browsing a Flash page. The fix is currently in development and will be pushed out to Central customers by the…
    • over 6 years ago
    • Sophos Endpoint
    • Discussions
  • Can Sophos cloud detect/protect CrossRAT trojan - by the group Dark Caracal?

    Jackson Singh
    Jackson Singh
    Hi, Can Sophos cloud detect/protect CrossRAT trojan - by the group Dark Caracal? Have came across with an article and it says the below. "CrossRAT a cross-platform remote access Trojan that can target all four popular desktop operating systems,…
    • over 6 years ago
    • Sophos Endpoint
    • Discussions
  • How to install intercept X without Endpoint protection advanced?

    Harry1929
    Harry1929
    We have more Intercept-X licensing than we do Sophos Endpoint Protection Advanced licensing. I understand how to manage the endpoints in the cloud with EPA installed on them- to activate I-X What I don't understand is how to install I-X by itself…
    • Answered
    • over 6 years ago
    • Sophos Endpoint
    • Discussions
  • CAPITA SIMS upgrade fails when running with Central Intercept X/Exploit Prevention

    Karlos
    Karlos
    We've received reports from customers regarding software CAPITA SIMS not being able to upgrade successfully when Intercept X/Exploit Prevention feature is running. CAPITA SIMS is a software primarily used by UK Schools. Our Development team is investigating…
    • over 7 years ago
    • Sophos Endpoint
    • Discussions
  • Central managed endpoints are showing Policy Compliance issues after release of Intercept X/Exploit Prevention 3.6.9

    Karlos
    Karlos
    Some users may have experienced their endpoints reporting a status of "Policy non-compliance: Exploit prevention" after the release of Exploit Prevention 3.6.9 This issue has now been resolved. Sophos Central customers using 'Controlled Updates' may…
    • over 7 years ago
    • Sophos Endpoint
    • Discussions
  • Mitigation SelfPreservation?

    Keith Russell
    Keith Russell
    I'm getting the following log entry from Intercept X. The event does not appear in Sophos Central in the Root Cause Analysis so I do not have further information on it. I'm just wondering if this is something I should be concerned about. 11/9…
    • over 7 years ago
    • Sophos Endpoint
    • Discussions
  • Protect Devices: Where is MacOS Installer?

    Will B
    Will B
    Just received my license for Sophos Central. Wanted to begin deploying MacOS Installer to some endpoints. - While in the Overview pane I click "Protect Devices". - This brings up all the downloadable install files, but I only see: - Endpoint Protection…
    • over 7 years ago
    • Sophos Endpoint
    • Discussions
  • Increase of Exploit ROP being caught in Microsoft Surface Pros

    Rick DeFilippo
    Rick DeFilippo
    I am noticing a trend in the Root Cause Analysis on Sophos Central. Several of end user Surface Pros are getting flagged with Exploit ROP. When I checked with one user he said he was getting the warning message right after log in. This has been happening…
    • over 7 years ago
    • Sophos Endpoint
    • Discussions
  • View related content throughout Sophos Endpoint
  • More
  • Cancel
<>