This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Web Filtering for Sophos Endpoint Setup (Sophos Setup.exe)

We have sometimes the Issue, that we can't install Sophos Endpoint Setup (Sophos Setup.exe). The Error message displayed: Ca't connect to the internet.

We use Sophos Firewall with Proxy Filter.

What Domains must be whitelisted for the "Sophos Setup" so it can download the Sophos Endpoint?

We use a up-to-date "Sophos Setup.exe" from Sophos Cloud.


The Log from the setup Log:

 

2022-11-15T08:50:07.3324581Z INFO : Running C:\\Users\\ADMINI~1\\AppData\\Local\\Temp\\SophosSetup-2016701832\\Setup.exe
2022-11-15T08:50:07.3334500Z INFO : Stage 1 command-line options:
2022-11-15T08:50:07.3334500Z INFO : ---
2022-11-15T08:50:07.3344507Z INFO : Quiet mode on: 1
2022-11-15T08:50:07.3344507Z INFO : Automatic Proxy detection disabled: 0
2022-11-15T08:50:07.3354512Z INFO : No feedback mode on: 0
2022-11-15T08:50:07.3364582Z INFO : Dump feedback enabled: 0
2022-11-15T08:50:07.3364582Z INFO : Bypass competitor removal: 0
2022-11-15T08:50:07.3372824Z INFO : Using CRT catalog file path: --
2022-11-15T08:50:07.3372824Z INFO : Only register endpoint with Central: 0
2022-11-15T08:50:07.3382868Z INFO : Log messages between endpoint and Central: 0
2022-11-15T08:50:07.3382868Z INFO : Log command-line passed to executables: 0
2022-11-15T08:50:07.3382868Z INFO : Using custom server that hosts the installer stage2 filename: --
2022-11-15T08:50:07.3382868Z INFO : Using cloud group: --
2022-11-15T08:50:07.3393036Z INFO : Overriding computer name: --
2022-11-15T08:50:07.3393036Z INFO : Overriding computer description: --
2022-11-15T08:50:07.3393036Z INFO : Overriding domain name: --
2022-11-15T08:50:07.3402999Z INFO : Language will be set to: --
2022-11-15T08:50:07.3402999Z INFO : Using message relays: --
2022-11-15T08:50:07.3402999Z INFO : Proxy address: --
2022-11-15T08:50:07.3402999Z INFO : Proxy user name: --
2022-11-15T08:50:07.3412883Z INFO : Using custom customer token: --
2022-11-15T08:50:07.3412883Z INFO : Using specified products: --
2022-11-15T08:50:07.3412883Z INFO : Using certificates from the program data folder: 0
2022-11-15T08:50:07.3412883Z INFO : Setting non-persistent image: 0
2022-11-15T08:50:07.3422940Z INFO : Setting gold image: 0
2022-11-15T08:50:07.3422940Z INFO : MCS registration timeout for golden image: --
2022-11-15T08:50:07.3427902Z INFO : Using custom customer ID: --
2022-11-15T08:50:07.3427902Z INFO : Using specified user ID: --
2022-11-15T08:50:07.3427902Z INFO : Using local install source: --
2022-11-15T08:50:07.3427902Z INFO : Invoked as part of SEC migration: 0
2022-11-15T08:50:07.3437930Z INFO : ---
2022-11-15T08:50:07.3457927Z INFO : Detected architecture: 2
2022-11-15T08:50:07.3457927Z INFO : Using x86 program files for stage 2
2022-11-15T08:50:07.3457927Z INFO : Target path: C:\\Program Files (x86)\\Sophos\\CloudInstaller
2022-11-15T08:50:07.3928187Z INFO : About to delete: C:\\Program Files (x86)\\Sophos\\CloudInstaller
2022-11-15T08:50:07.3928187Z INFO : Folder not present, nothing to delete
2022-11-15T08:50:07.3958151Z INFO : Running on x64, requesting x86 Stage2
2022-11-15T08:50:07.3958151Z INFO : Sending HTTP 'POST' request to: api/download/stage2-details/.........changed.............
2022-11-15T08:50:07.3995163Z INFO : Did not discover an URL for a PAC file
2022-11-15T08:50:07.4005404Z INFO : Attempting to connect using proxy '' of type 'Empty Proxy'.
2022-11-15T08:50:07.4005404Z INFO : Set security protocol: 00000800
2022-11-15T08:50:07.4015380Z INFO : Opening connection to dzr-api-amzn-eu-west-1-9af7.api-upe.p.hmr.sophos.com
2022-11-15T08:50:07.4015380Z INFO : Request content size: 30
2022-11-15T08:51:10.5569730Z ERROR : WinHttpSendRequest failed with error 12002
2022-11-15T08:51:10.5579973Z INFO : Failed to connect using proxy '' with error: WinHttpSendRequest failed
2022-11-15T08:51:10.5589790Z INFO : Cleaning up extracted files
2022-11-15T08:51:10.5599789Z ERROR : Exception: Failed to get stage-2 info: Failed to connect with any proxy



This thread was automatically locked due to age.
  • dzr-api-amzn-eu-west-1-9af7.api-upe.p.hmr.sophos.com

    The 12002 error is a timeout error with your proxy in place.  The URL quoted is where the traffic is trying to go. 

    OPNSense 64-bit | Intel Xeon 4-core v3 1225 3.20Ghz
    16GB Memory | 500GB SSD HDD | ATT Fiber 1GB
    (Former Sophos UTM Veteran, Former XG Rookie)

  • Hallo Lukas and welcome to the UTM Community!

    You said that you have a "Sophos Firewall" in place.  Do you mean that you have an XG, not an SG UTM?  If so, one of us will move your thread to that community.

    We would need to see relevant lines from your Web proxy logs.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA