When a user attempts to visit an invalid URL (does not resolve in DNS) and the Uncategorized category is set to Block on the WS, the user will incorrectly be shown a “Blocked due to category” error page. While the URL is likely ‘Uncategorized’, it would be more correct to show the user a splash screen for “Server Error Page” that explains “The web address you entered could not be found.” The “Blocked due to category” error page allows the user to submit a request for access to a URL that doesn’t exist, creates additional IT work orders, and wastes time.
When a user attempts to visit an invalid URL (does not resolve in DNS) and the Uncategorized category is set to Block on the WS, the user will incorrectly be shown a “Blocked due to category” error page. While the URL is likely ‘Uncategorized’, it would be more correct to show the user a splash screen for “Server Error Page” that explains “The web address you entered could not be found.” The “Blocked due to category” error page allows the user to submit a request for access to a URL that doesn’t exist, creates additional IT work orders, and wastes…3 votes
If possible, delete a specific user's proxy logs without deleting the logs of the others2 votes
It would be very useful to have a tool to download and view the configuration fo the web appllainces, mainly the policy configuration.
Right now it seems the only way to get the policy configuration is to extract the policy.xml file from a backup but it's nearly unreadable2 votes
I'd suggest removing the Web Gateway logs readability and search from the Help Desk and Read-only Roles. I need help desk folks to be able to troubleshoot the end-point by disabling the tamper protection, call into support, etc. What I don't want is the ability for all the help desk personnel to see and search the browsing history of any user, especially VIPs. Is there already a way to do this?1 vote
Audit/System configuration log in order to determine when changes are made by a user. The log should be able to identify time of access to the web appliance, who accessed it, and what changes to the appliance, policies, and other configurations were made by that user. The report/log should also would be useful if the Administrator could export the log (i.e PDF, CSV, etc)1 vote
Currently if a user has a problem with a certain site because a file type is blocked it is not displayed in the reports.
So have to investigate this in the syslog if you have set it up or call Sophos support which takes too much time.
Can the reason for the file type block be added in the reports?5 votes
Product "Email Appliance" is not available so posting it hear instead.
Sometimes we receive e-mails which have the headers "Disposition-Notification-To: " and "Return-Receipt-To: " set.
I would like to remove those 2 headers (only for certain recipients) and sent the mail through.2 votes
There are various problems in terms of performance of Sophos Virtual Web Appliance hardware version vmx4.
Its always better to be on latest version for better efficiency and performance.
Our environment recommended to upgrade the Sophos Web Appliance hardware version from vmx4 to VMX10 but Unfortunately the vmx10 officially you have not tested the hardware version 10 with the Sophos Web Appliance.
and its not recommended as of now. could you please test the vmx10 version and make it officially supported
I am not able to connect with some of the sites like moneycontrol.com, karvyonline.com. these sites are only for stock trading nothing else. And I am investor in share market and I want to watch those sites regularly as it is my field of studying and also I am having financial interests in them. kindly remove the blockage to access them, so could I use them.
thanking you1 vote
at the moment it is only possible to block ALL encrypted and unscannable files under Filtering Options -> Misc
It would be great to get an option in the Exceptions to deactivate the blocking for encrypted files by URL.3 votes
The standard Web Gateway install exhibits the following behaviour that really should be fixed.
Revoked leaf certificate - treats as trusted.
Bad HPKP pin - treats as trusted.
SHA-1 signed certificate - treats as trusted.
Invalid SCT - treats as trusted.
I mean come on, not checking for revoked certificates is pathetic in what's meant to be a security product.4 votes
Set the maximum Downlaod-Size of File in Rules.
We want to set a Rule for Users or IPs that control the max. Size of a Download-File. e. g. is not allowed to Download a File with over 25MB.
In SiteKiosk we can set this Option, but when the Sophos Web Appliance is used as Proxy, the Download starts and get the hole File (e. g. 100MB) and then SiteKiosk can say: No, Download is to large ...3 votes
Generic Block for local site list.
This came up when trying to block a website for all our sites except for one.
Additional policy was created to allow the site, but to block other sites we changed the Category to something that was blocked. This does not indicate the correct reason.
Unable to use global block tag as it has higher precedence.3 votes
The ability to modify the syslog output would be a great feature so that we can tailor that output to a format that works best with our SIEM.3 votes
Currently, only the username is included in the syslog output. Please add in the source ip as well.1 vote
Being able to run reports on individual users for total browse time during a day, or other period of time, is a pretty standard report on most any other web filter and is painfully lacking in the Cloud Web Gateway. This is a pretty common request from HR departments to get an idea if someone is not managing their time appropriately. The report should be based on activity to get an idea of how long someone was actively browsing web pages.1 vote
Adding the ability to add a stamp to email above the text as a warning example "Warning Do not open attachment or click on links from people you do not know or untrusted sources"2 votes
Reports improvements such as:
Internal Mail Hosts - the amount of mail coming from each internal host
Mail Delivery Servers - amount of mail through these
Trusted Relays - amount of mail through these1 vote
Hi everyone, I have enabled Sophos Live Connect on the management server but I have the problem that the list of enabled and then removed clients is not updated, it always stays with the old rumbling entries. Is there a chance to remove these old rumors?
It would be very useful for testing custom URL tagging if we were able to audit, in addition to allowing and blocking, clicks through to URLs we have tagged. This would allow us to deploy large changes at a large scale with no impact while we observe the potential impact.2 votes
- Don't see your idea?