Data Protection

Suggest, discuss, and vote on new ideas for Sophos Data Protection products. Protecting your data, wherever it goes.

Data Protection

Suggest, discuss, and vote on new ideas for Sophos Data Protection products. Protecting your data, wherever it goes.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Turn on SGMTrace-Logging via button

    The SGMTrace-Logging could be "acitivated" and "deactivated" (= changing Minimumtracelevel from 5a to 0 and back) via buttons in the about-box of SGN.

    12 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  2. Webhelpdesk new recover type "Bitlocker recovery key ID"

    It is a SGN MC recovery feature and should also be available via Webhelpdesk.

    3 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  SafeGuard Enterprise Full Disk Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  3. Ability to setup reports in the GUI of Safeguard Enterprise

    As far as I've researched there isn't any way of producing reports on Safeguard Enterprise and the client computers outside of using the SQL Management Studio with SQL scripts. Especially if the encryption had failed on a laptop or finding out about suspicious activity with a user having multiple failed logons, I feel having no ability to automatically find out this information can feel like a problem on a security end.

    Therefore, I would like to suggest the ability to set up some granular reporting on the GUI side for reporting events of interest and also setup email on a…

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  SafeGuard Enterprise Full Disk Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  4. Allow Mass Verification of Key Presence in SGN Database

    There should be a process, field, alert, literally ANYTHING that allows us to check, en masse, the presence of a valid recovery key. The only way to make sure that a valid key exists is to check the machines manually.

    We have had issues with Surfaces, where the key becomes corrupted or lost or something, and we don't realize there is a problem until we have to actually do a recovery.

    Other products have an alert or something that says when a client is in a state that isn't optimal. SGN does not. It should be easy to query the…

    11 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  5. windows 10 poa

    Implement Windows 10 POA with Smartcards like in Windows 7. Only the BitLocker PIN is not Enterprise ready in my humble opinion..

    50 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  6. network aware POA

    Ability to have Network Aware POA on machines (especially BitLocker as there is no user-based POA).

    Many customers need the ability to disable POA on devices in the office - for example shared machines. If the device is stolen, then POA should be enabled immediately. We are currently working on a 3,000 user company with Call Centre who love what we can do in Win7 but need a comparable approach for BitLocker managed machines.

    This would apply for Central as well however we have a larger SGN deployment base today so SGN is the most important starting place.

    32 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  7. Ubuntu

    to allow the encryption and management of Ubuntu workstation as part of SafeGuard Enterprise

    13 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  8. Windows Lockscreen Configuration

    At the moment it is not possible to configure the windows 10 locksreen if Safeguad is installed.
    Please make it possible to let the admin choose if it is possible or not.
    Best would be to configure it via Windos GPO. To configure it via Safeguard policy would be an alternative way.

    22 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  9. Move Recovery Button

    Please move the recovery button a bit further from the OK button. UX principles would suggest that such a radically different function should not be close enough to the OK button such that an accidental click renders the system in a temporarily unusable state. OK/Clear/Recovery/Restart or something like that would be better to give a buffer for those of us with fat fingers and itchy mouse triggers.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  SafeGuard Enterprise Full Disk Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  10. URGENT - Prevent SGN to Change AD Password

    When a network user logon to a computer with SGN installed and the user´s password is expired, SGN requests a password change.

    SGN must have a way to disable this feature, preventing request a new password to network users when company uses a external Password Manager.

    9 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  11. Ability to change the Windows 7 lock screen account picture

    Currently in Safeguard Management Center there are options available to change the background and logon image used at the POA, but no options to change the Windows account picture to say something more personalised for a company for example and it the program overrides whatever Windows 7 has it currently set to. It would be a nice touch if it was possible to have this ability added into Safeguard in some way, if possible please.

    7 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  12. password

    Allow SafeGuard Enterprise to use credential providers for Third-party password filter software.

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  SafeGuard Enterprise Full Disk Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  13. Safeguard Policy “access denied if no connection to server (days) (0=no check)” on machine with BitLocker

    The Safeguard Policy “access denied if no connection to server (days) (0=no check)” ability to get the same policy control preventing access on machine encrypted with BitLocker client being managed by Safeguard Enterprise

    8 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  14. 4 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  15. Sophos Enterprise client

    Sophos Enterprise client should display client agent status regards to the disk encryption status. End user should be able to confirm endpoint encryption status.
    I’m fully aware about the SGNState tool.

    Thank you.

    7 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  16. Bitlocker GPO/Policy-RSOP-Tool

    Computer Configuration\Administrative Templates\Windows Components\BitLocker Drive Encryption

    It is possible, that SafeGuard (or Central) Policies collide with Bitlocker GPO without recognizing it.
    It might be confusing to separate SGN local cache values with Bitlocker registry-entries.

    A simple Client tool should match HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\FVE with die LC-Policies and create a *.xml into %ALLUSERSPROFILE%\Utimaco\SafeGuard Enterprise\

    In this folder the log is automatically gathered by the SDU without changing and can be used even on older SG-versions.

    The shortly described values should be matched as a simple "match"/"mismatch"/"not configured" to easily see possible configuration errors.

    The tool is independent from the client itself and can…

    17 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  17. User Groups across DomainTree

    SGN should support Groups with AD-objects from different Domains within a Tree (e.g. Groups with members from userdomainA.company.net and userdomainB.company.net)

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  SafeGuard Enterprise Full Disk Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  18. skylake and newer windows 7 POA

    The POA screen needs to be improved in V8 to fully support tokens (2 factor) and other usb devices.

    According to articale 123749:
    USB devices such as smart cards, tokens, and possibly some external human interface devices (HIDs) do not work on SafeGuard Device Encryption POA. These devices interact with the Extensible Host Controller Interface (XHCI), which is not planned to be supported by Sophos SafeGuard Device Encryption.

    This is simply unacceptable as bitlocker does not support hardware 2 factor either. This needs to be revisited.

    6 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  19. Trigger a PIN reset for a specific machine from the SafeGuard Management Center

    On-premise SafeGuard Enterprise customers have been requesting the ability to remotely trigger a PIN reset for specific machines.

    A context menu item via right-clicking a Machine Object in the Management Center triggering a PIN reset the next time the SafeGuard client syncs would be the best implementation for this feature.

    8 votes
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  20. SGN - Message "old password"

    The Message to enter the old password (usually after resetting the PW by an AD-Admin) often confuses users and admins. The procedure is completly described in KBA 112239, but has to be delivered by the support.

    The message could be improved by directly mentioning or referring to KBA 112239. This could help admins and users to find the solution without calling any support

    1 vote
    Vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  SafeGuard Enterprise Full Disk Encryption  ·  Flag idea as inappropriate…  ·  Admin →
← Previous 1
  • Don't see your idea?

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.