• How do I determine the number of active Antivirus licenses within the Endpoint Protection environment

    Under "Management" and then "Licensing", I can see that we have "Endpoint AntiVirus" enabled and active with a max user count of 105, but I cannot determine what percentage of the 105 licenses are actually utilized today? Does anyone know how to find…
  • Sophos Endpoint kann nicht installiert werden

    Hallo Zusammen, derzeit habe ich auf einem Client das Problem, dass sich der Endpoint Client der UTM nicht installieren lässt. Ich habe schon alle möglichen Tools zum Removal von Dritt-Software durchlaufen lassen, leider ohne Erfolg. Folgender Fehler…
  • Symantec Endpoint Protection and Intercept x

    Hi, We have been a Symantec Endpoint protection shop for a long time and just purchased Sophos Endpoint with Intercept X. The sales rep said that they can coexist on the same machine yet when you install Sophos Endpoint it uninstalls Symantec Endpoint…
  • Deploy Sophos Endpoint Security and Control coming with UTM9 using SCCM

    Hello, I would like to deploy this using SCCM. The issue that i am facing is that the flags mentioned here: https://community.sophos.com/kb/en-us/12570 don't work. Installer is completely ignoring them. I use the setup.exe after extracting it from…
  • Endpoint won't update, register or even delete from the UTM 9.506-2

    I have been fighting with an issue with using Endpoint Protection, and I'm convinced that the issue isn't on my end so I really need some help in resolving this. Almost 2 weeks ago I discovered that the agent's weren't getting updates, so I began…
  • ERROR SDDSDownloader::ReportSyncFailure Failed to read remote metadata.

    Hi folks Posting here as it falls under UTM 9 - Similar issue Endpopint is not updating or connecting. It used to work just fine... I have no idea when it stopped working. I dropped the Endpoint onto my daughters new laptop and discovered all my home…
  • Deep packet inspection UTM and Endpoint protection

    Hi, I know that for deep packet inspection you need a computer to trust your selfmade CA. I know it can be distributed by a GPO, I wonder if this is possible: Enable Deep packet inspection on the UTM and force end point protection to install the CA…
  • UTM blocks Sophos Web Intelligence for Endpoint Protection. What to do?

    Examining the firewall logs, I see that endpoint protection uses swi_service.exe which is attempting to communicate on port 80 to access some European AWS addresses. The UTM blocks the traffic by default. This seems like strange behavior. I would have…
  • Endpoint Protection Wiped Logs on Windows Servers

    All of our Windows Servers suddenly started displaying empty Endpoint Protection logs on the Servers themselves. The UTMs look normal. It happened sometime between 30 July 2017 at 13:00 UTC, and 1 August 2017 at 01:00 UTC. (Local time: between Sunday…
  • Sophos Endpoint Update and UTM 9.4 IPS

    Sophos Antivirus had an update yesterday to Version 10.7.2. While this was occurring the following IPS alert began popping. Intrusion Prevention Alert An intrusion has been detected. The packet has been dropped automatically. You can toggle…
  • Endpointprotection aktualisiert nicht, wenn UTM Cache eingeschaltet ist

    Trotz positiver Meldung im System, aktualisieren Sophos Endpoints die Virensignaturen nicht mehr Seit Anfang November findet keine automatische Aktualisierung der Endpoints mehr statt, wenn diese sich hinter einer UTM befinden. Interessanterweise melden…
  • Installation of Endpoint Protection UTM on Windows 10 1607 (14393.321) not working

    Hello together, I want to install Sophos Endpoint Protection UTM on newly installed Windows 10 1607 (Build 14393.321) machine. I had an very old full installation package (10.3). It installed but it didn't get updates. I had this issue last year with…
  • Webcontrol blocks all websites

    Tonight tonite after upgrading my UTM 9 to the latest version web control is blocking all websites (including the firewall webadmin page) on my endpoints the only thing that allows me to use a web browser again is to authenticate my user and disable web…
  • Endpoints Not Updating

    I am working with Sophos Support to troubleshoot two issues one with web filtering and one with Endpoints not being able to update. I can ping the update server with no problems: Pinging sophos-1.hs.llnwd.net [68.142.102.148] with 32 bytes of…
  • Endpoint protection

    Right now my company has Endpoint protection deployed to its current computers and we are currently in the process of building out a new UTM. My concern is we currently have the old UTM's Endpoint Protection installed on the machines so once we use…
  • RE: Sophos UTM - Sophos LiveConnect is disabled

    Thank you for the response BAlfson. Unfortunately, I have tried resetting the registration token. Because of the protocol error in the logs, I'm leaning toward an incompatibility between Sophos Cloud service & TLS1.1+. I've setup my firewall not to accept…
  • RE: Sophos UTM - Sophos LiveConnect is disabled

    I'm having a similar issue. Can't deploy agents or enable LiveConnect. Firmware version: 9.403-4 Pattern version: 102803 1. The Endpoint Protection Status states LiveConnect is Disabled. Looking at the Endpoint Protection Live Log, there's a protocol…
  • Windows 10 - Sophos Endpoint Protection (UTM) or Windows Defender?

    I just upgraded to Windows 10 Pro 64-bit from a newly created Windows 7 (Ultimate, 64-bit). I am thinking about using this system going forward as my personal, production Windows system. (My previous "production" Windows system was Windows 7 Ultimate…
  • Problems with Endpoint Protection on UTM 9.

    What Problem ??? I don´t know..... EntityAppEvent: Device control failed to process notification of a configuration change: errorCode=0x80070005. Zusammenfassung: - EntityAppEvent: Attempt to access the on-access driver by unprivileged user (NT-AUTORITÄT…
  • Sophos LiveConnect still offline ?!?

    Hi, sophos liveconnect seems to have massive problems since 2 days. my UTM shows no clients online and liveconnect is offline. in the live log it shows: 2016:04:28-08:49:54 vpn-1 epsecd[10157]: W id="424200" severity="warn" sys="System" sub="epsecd…
  • Endpoint Web Protection Logs are not populating

    I've noticed over the past few months that my Endpoint Web Protection logs are not populating on my UTM. This started to happen on version 9.355. I have now cleanly installed 9.400-9 and have refreshed from scratch the Endpoint Protection and I'm still…
  • RE: UTM 9.213-4 - Sophos LiveConnect for EndPoint - no computers are showing online

    Now there is a new error appearing (mixed with the timeout error). 2016:03:10-17:11:36 fw epsecd[5037]: W main::_log:435() => severity="warn" sys="System" sub="eplog" name="Listing [https://c87e5467-f30d-3cb0-893d-25f6c86d208a-wdx-f30d.broker.sophos.com…
  • Can't install Enpoint Protection on Windows 7 machine

    Hello, I'm running UTM 9.355-1, home version. I'm trying to install the Endpoint Antivirus that comes with it the home license on a Windows 7 64 Bit system, which is fully updated. Every time I try to install it, it thinks there is another AV installed…
  • Upgraded UTM hardware but RED endpoints not coming back up

    I upgraded the UTM to a newer bit of hardware and restored the config just using a backup/restore (without License, passwords, certificates/keys, endpoints) when I switch over to the new device everything works fine apart from the RED10 endpoints don…
  • Unable to install Endpoint on new Windows 10 machine

    Hi, I've had to rebuild a working Windows 10 machine due to drive failure but I cannot get Endpoint to update itself. I've tried the "slim" and the "full" deployment links and both end up the same. I have a UTM running 9.354-4 and when I download…