This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

UTM Endpoint vs Enterprise Console

Before Sophos bought Astaro, we were using both products.  Astaro for the Firewall and also Sophos for our Virus Protection.  Our Enterprise Console /Antivirus license is about to expire and I am wondering about the advantages or disadvantages of just using the endpoint feature of the UTM

I believe it is cheaper to upgrade our UTM to allow endpoint than to renew our current Enterprise Antivirus.   We are a smaller company and we do not use many of the Enterprise Console features like Patch, Encryption and Application Control.

Has anyone else had to make the same decision?

Is the UTM endpoint stable?

Any thoughts or insights on UTM's endpoint would be helpful.

Thanks

David


This thread was automatically locked due to age.
  • We were in the same position a couple of months ago. We have now moved to endpoint protection in UTM.
    This product is still in heavy development (it basically works, but it's in no way the same as EC yet).
    Biggest drawbacks for us were:
    1) UTM install of Sophos Anti-Virus cannot auto uninstall previously installed Sophos Anti Virus
    2) We had EC configured to automatically install to every PC in the domain, now we have to install semi-manual. It's more work for every new PC now (however I think I will go figure a way to do it by GPO's in the future).

    Other than that we're pretty positive and will be even more so if UTM 9.2 comes out. It will have (among other things)
    Release 9.2
    •Improved Endpoint Protection
    •App.Ctrl (client/GW comm.)
    •Device & Media Encr.
    •VPN client
    •UTM Mobile Control
    •Remote Lock & Wipe
    •Central App. Mgmnt.
    •Email Access Mgmnt.

    Managing several Sophos firewalls both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

  • The SEC feature is more robust, especially around deployment.  The UTM feature is basic but if that is all you need then it is good.

    Just to note that 9.2 will also have some increased ability to use SEC and UTM together.  You can have your EPs managed by SEC but get your Web Control policy from the UTM.
  • I know this is an old thread but I find myself in the same position now. UTM 9.3 has a relatively simple endpoint protection that seems to work although might be a bit unwieldy with 500+ clients.

    But it does look at though it could do the job. We've bought the standalone endpoint protection and I'm just about to install it.
    I'm wondering if we've made the right decision here for our network 30 sites, 2 central sites 500+ fixed and remote clients (windows tablets & laptops, android & iphones)

    We baiscally need an easy way to control our endpoints and control them from a central console. It would be good if the endpoint web access control linked into the UTM rather than have to set different policies for web control if the endpoints are not within the UTM's network.

    Has anybody had experience of the Endpoint protection and can they offer their thoughts on it?

  • If you have yet to fire that up, Louis, you might want to consider Cloud Endpoint.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA