This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos Endpoint protection on Exchange - questions

I'll be reading the documentation where I may very well find the answers to all or some of the questions below, but some seem important enough to ask here directly.

1. Does Sophos Endpoint Protection, when installed on an Exchange server (2007 SP2 - to be upgraded to SP3), automatically detect certain files that should be excluded from a file-level virus scan, the Exchange .edb database for example?

Other products that I've worked with supposedly did this.

2. When used in conjunction with PureMessage, should Endpoint protection be installed first and then PureMessage second?

I was going to ask a couple questions specifically about PureMessage - but there may be a specific forum for them so I'll look for that first.

Many thanks in advance!

:29091


This thread was automatically locked due to age.
Parents
  • Hello D_M,

    like your second post this one should have been placed on the Gateway board.

    I've no experience with PureMessage but with reading docs :smileywink:), so this is just how I understand it. The Release Notes say (under Additional Information): When you install PureMessage, Sophos Anti-Virus is also installed (if not already present) and on-access virus scanning starts automatically. However, PureMessage excludes certain Microsoft Exchange and IIS folders from virus scanning as recommended by Microsoft. (later in the paragraph there's a link to a detailed article - which is apparently missing).

    Thus no need to install Endpoint first. There's an intricacy though which is IMO not very clearly addressed: If you install Endpoint first, which you'll only do if you have SEC, not only won't the exclusions be set (see PureMessage for Microsoft Exchange: no exclusions are applied if the PureMessage computer is managed by Enterprise Console) - as the AV policy from SEC is applied - but you'd also have to configure the updating policy accordingly (Installing Enterprise Console and PureMessage for Microsoft Exchange on same network). So I'd go with the first sentence of the first article which says: Typically PureMessage is installed on a computer which is not managed by Enterprise Console

    HTH

    Christian

    :29143
Reply
  • Hello D_M,

    like your second post this one should have been placed on the Gateway board.

    I've no experience with PureMessage but with reading docs :smileywink:), so this is just how I understand it. The Release Notes say (under Additional Information): When you install PureMessage, Sophos Anti-Virus is also installed (if not already present) and on-access virus scanning starts automatically. However, PureMessage excludes certain Microsoft Exchange and IIS folders from virus scanning as recommended by Microsoft. (later in the paragraph there's a link to a detailed article - which is apparently missing).

    Thus no need to install Endpoint first. There's an intricacy though which is IMO not very clearly addressed: If you install Endpoint first, which you'll only do if you have SEC, not only won't the exclusions be set (see PureMessage for Microsoft Exchange: no exclusions are applied if the PureMessage computer is managed by Enterprise Console) - as the AV policy from SEC is applied - but you'd also have to configure the updating policy accordingly (Installing Enterprise Console and PureMessage for Microsoft Exchange on same network). So I'd go with the first sentence of the first article which says: Typically PureMessage is installed on a computer which is not managed by Enterprise Console

    HTH

    Christian

    :29143
Children
No Data