Data Protection

Suggest, discuss, and vote on new ideas for Sophos Data Protection products. Protecting your data, wherever it goes.

Data Protection

Suggest, discuss, and vote on new ideas for Sophos Data Protection products. Protecting your data, wherever it goes.

Suggest an Idea...

You've used all your votes and won't be able to post a new idea, but you can still search and comment on existing ideas.

There are two ways to get more votes:

  • When an admin closes an idea you've voted on, you'll get your votes back from that idea.
  • You can remove your votes from an open idea you support.
  • To see ideas you have already voted on, select the "My feedback" filter and select "My open ideas".
(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Data Control option to scan only when uploading not while downloading

    Data Control scans files both when downloading and uploading files to the web which is crazy...

    Well it's fair enough to have the option.

    Data Control can take ages to scan files...

    I think there should be a setting within the policies to only scan in one direction up, down of both.

    We use it as data loss prevention software to log sensitive going out the building, it grinds on our process when scanning every downloaded file.

    Thanks.

    1 vote
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  New Data Protection Ideas  ·  Flag idea as inappropriate…  ·  Admin →
  2. SGN Installer should always log with extended msi-logging

    The SafeGuard client installers should log every installation and uninstallation with the paramter /L*vx to a documented folder.
    In case of error and/or compatibility issues the behaviour would be logged.

    0 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  New Data Protection Ideas  ·  Flag idea as inappropriate…  ·  Admin →
  3. SGN Installer should always log with extended msi-logging

    The SafeGuard client installers should log every installation and uninstallation with the paramter /L*vx to a documented folder.
    In case of error and/or compatibility issues the behaviour would be logged.

    3 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  New Data Protection Ideas  ·  Flag idea as inappropriate…  ·  Admin →
  4. Filestream Google

    Although Google Drive Encryption files is supported by Sophos, FileStream it is not. It would liberate resources from computer as it is not mandatory to have files downloaded. As Safe Guard 8.1 encrypts files in local it doesn't work with this cloud resource.
    Dropbox has a similar resource.

    23 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  SafeGuard Enterprise File Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  5. encrypt zip file

    Sophos DLP can not block .zip files with password.
    Blocking works only for passwords placed directly on files, such as .xls or .doc, but if the file is without a password and the password is put into compression, the tool can not recognize and lock the file.
    With this it is possible to leak information, causing a large breach in data security.

    2 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  New Data Protection Ideas  ·  Flag idea as inappropriate…  ·  Admin →
  6. Microsoft Edge

    Support Microsoft Edge as a Browser Destination for DLP. This is the default browser for Windows 10, and it cannot be removed.

    The browser destination features of DLP are severely limited without this.

    2 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  New Data Protection Ideas  ·  Flag idea as inappropriate…  ·  Admin →
  7. DLP for Mac

    According to support, DPL policies do not work on Macs. I tested it and unfortunately, they are correct. This is a great feature and needs to be rolled out to Macs.

    9 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    6 comments  ·  New Data Protection Ideas  ·  Flag idea as inappropriate…  ·  Admin →
  8. Move Recovery Button

    Please move the recovery button a bit further from the OK button. UX principles would suggest that such a radically different function should not be close enough to the OK button such that an accidental click renders the system in a temporarily unusable state. OK/Clear/Recovery/Restart or something like that would be better to give a buffer for those of us with fat fingers and itchy mouse triggers.

    1 vote
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  9. URGENT - Prevent SGN to Change AD Password

    When a network user logon to a computer with SGN installed and the user´s password is expired, SGN requests a password change.

    SGN must have a way to disable this feature, preventing request a new password to network users when company uses a external Password Manager.

    9 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  10. Provide SGPortable without File Encrytpion Modules DX or CS

    Providing SGPortable without Data Exchange or Cloud Storage would enable 3rd Party Users to read encrypted files provided by SGN-Users without using Outlook-Plugin (in addition to the ideas of SyncEnc Appication Wildcards and Keygeneration with passphrase in SGN MC)

    3 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  SafeGuard Enterprise File Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  11. SGN Synchronized Encryption: Enable wildcards for "any application"

    With the ability to user wildcards for "any application" it would be possible to combine
    - Synchronized encryption for the company
    - Full File Encryption for certain paths

    3 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  SafeGuard Enterprise File Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  12. SGN File Encryption: Generate Keys with Passphrase in Management Center

    To generate Keys with passphrase it is necessary to create them on a client an sync them into the management before using them in a policy.
    It would be easier and ore intuitive for admins to create them with passphrase in the management center.

    3 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  SafeGuard Enterprise File Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  13. Support for Central Device Encryption on Server platforms

    Manage BitLocker on Server platforms and also support a cost-effective decommissioning process of drives.

    35 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Sophos Central Full Disk Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  14. Application Based File Encryption: Generic corruption message for encrypted files

    For application based file encryption, if a user manually encrypts a file that is not specified within the policy as a designated file type that is automatically encrypted, the user can not view the encrypted data. Sophos GES informed me that the product is designed to function this way, which makes no sense. I recommend giving the user ability to not only encrypt any file they choose, but also be able to open/read the file. My second complaint is that if the file is encrypted but not a designated file type within the policy, the user will get a generic…

    1 vote
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  SafeGuard Enterprise File Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  15. Sophos Central Disk Encryption: Need to be able to decrypt a drive from Central Management

    Sophos Central Disk Encryption: Need to be able to decrypt a drive from Central Management

    1. It would be really convenient. It could be done as a popup/checkbox choice if we are removing the encryption software from an endpoint (or multiple endpoints with a a set of confirmation steps for decrypting).

    In an MSP environment, MSP customers often leave and MSPs want the ability to put things back into a state where they were before they got there. Another reason to add this feature .

    2 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Sophos Central Full Disk Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  16. Sophos Central Disk Encryption: Need to be able to select which partitions on Windows and Mac get encrypted

    Sophos Central Disk Encryption: Need to be able to select which partitions on Windows and Mac devices alike so that all drives are not always encrypted be default.

    On Windows machines, some come from the factory woth recovery partition software. Encrypting these partitions creates a problem for using the recovery options from a post BIOS boot.

    On Macs, some devices may have multiple partitions for a variety of reasons. Decrypting them is not done automatically when the primary is decrypted and requires it be a manual process.

    Giving the choice adds to the flexibility and benefit of feature flexibility

    2 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Sophos Central Full Disk Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  17. Ability to change the Windows 7 lock screen account picture

    Currently in Safeguard Management Center there are options available to change the background and logon image used at the POA, but no options to change the Windows account picture to say something more personalised for a company for example and it the program overrides whatever Windows 7 has it currently set to. It would be a nice touch if it was possible to have this ability added into Safeguard in some way, if possible please.

    7 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  18. Allow Mass Verification of Key Presence in SGN Database

    There should be a process, field, alert, literally ANYTHING that allows us to check, en masse, the presence of a valid recovery key. The only way to make sure that a valid key exists is to check the machines manually.

    We have had issues with Surfaces, where the key becomes corrupted or lost or something, and we don't realize there is a problem until we have to actually do a recovery.

    Other products have an alert or something that says when a client is in a state that isn't optimal. SGN does not. It should be easy to query the…

    11 votes
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  19. Sophos Central - Manage Endpoint Software: Add ability to remove any/all Sophos software from a computer from the Central Management Console

    Sophos Central - Manage Endpoint Software: Add ability to remove any/all Sophos software from a computer from the Central Management Console.

    This should include just Central Encryption Components as well.

    Many MSPs want the ability to remove their management for their customers and this would include all traces or a managed software solution. This is a very common request among MSPs and their automation facilities and tools that they use to manage and deploy software to customer computers.

    1 vote
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
    0 comments  ·  Sophos Central Full Disk Encryption  ·  Flag idea as inappropriate…  ·  Admin →
  20. password

    Allow SafeGuard Enterprise to use credential providers for Third-party password filter software.

    1 vote
    Vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)
    You have left! (?) (thinking…)
  • Don't see your idea?

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.