Endpoint Protection
Suggest, discuss, and vote on new ideas for Sophos Endpoint Protection. Comprehensive security for users and data
-
SOPHOS Feature Request
Good Day,
Is it possible that a feature gets added to the update management policy where you can also add & send a message to the user.
Best Regards
5 votes -
Controlled Updates in Sophos Central-I work in an environment which needs 4 levels to deploy updates. First would be the "test" group, then
Controlled Updates in Sophos Central-I work in an environment which needs 4 levels to deploy updates. First would be the "test" group, then Dev, QA, and finally Prod. Currently Sophos only offers one group, but Enterprise environments require/demand a greater level of control over updates. Please seriously consider expanding our ability to have a more granular control set.
3 votes -
Sophos Enterprise Console Cloud Primary Update location
In a highly secure environment, servers in the DMZ are not allowed access to the internal servers (including Sophos management). This hinders the updates, since the primary update server must be configured to the internal management server, and only the secondary server can be configured to update from the Sophos cloud servers directly. In turn, this generates false alerts that download of updates failed due to update server not being reachable.
My idea is to allows Sophos cloud to be the primary update server for these cases.
1 vote -
Reboot Required Updates
We have been seeing alot of reboot required on our systems/servers in the environment, with a message that computer is not protected. I understand that updates do require an update from time to time to update the software on the systems, but confused about why we are seeing these so frequently? Is there a way to set groups to have the software schedule a reboot at a certain time for a group of computers and then prompt (with popup), or reboot on logoff for the others by default action (with the exception of servers). This is just making me worried…
8 votes -
Update Sophos Version/Agent Manually to make up for lack of Control in Controlled Updates
Currently in Sophos Central we can add servers to a Test Group and prevent all other servers from having their agent update.
This is completely inadequate. Need to be able to create more Server Groups and be able to update to the new version by server group.Should be able to download a manual install for the new version and apply it to the servers while Controlled Updates is turned on.
This would allow us to update critical servers at a time of our choosing.
Right now, the option is Update All Servers - This is equivalent to pushing the…
10 votes -
Excessive requests to reboot endpoint clients in the Sophos Enterprise Console.
It seems that the higher up the ladder that the user is, the harder it is to get them to reboot. The disruption that closing their many, many, multi-tasking windows left open as project or task placards, makes it extremely difficult for them to pick up where they left off.
Then a week after I had convinced all of my users to reboot for an update, I had another warning in the console to reboot all of the clients again.
And now two weeks later, I have a new warning to reboot the endpoint users for Hitman.
If we keep…
19 votes -
Sophos Central - Scheduled Scanning
In Sophos central console, Threat Protection>Scheduled Scanning it shows the only option for weekly scanning but we can not schedule scans on a weekly basis as Sophos utilize lots of primary memory and thus machine gets slow. I would like to get an updated version which provides monthly schedule scanning. It would be very helpful if we get this option on Sophos EP.
9 votes -
Indication on the Sophos Icon by the time if a computer requires a reboot to complete update
When Sophos requires a restart of the computer to complete an update it would be really good if the sophos icon by the time changed to a yellow exclamation mark or something so the end user would know to notifiy system administrator that Sophos needed attention. Or they could just restart the computer.
10 votes -
The ability to utilize subordinate update caches to have a distributed update structure internally
The Sophos Central Update Cache equivalent of a Child SUM. This will allow organisations to save internet link bandwidth by allowing Update Caches to pull updates from other caches over LAN/private WAN links.
4 votes -
Force cold boot instead of FastBoot after next shutdown when Sophos needs to install drivers
We get a lot of medium warnings "Reboot required" after Sophos Endpoint updates on Windows10 machines.
Users do shut down tehir machines every night. But Standard Power up seems to be insufficient as FastBoot does not install the Sophos drivers after some updates.
Manual Reboot "Neu Starten" is required from the users. But users do not notice any Sophos "Reboot required" notices and the do not understand that Manual reboot is different from Power down / Power up procedure.
It would be better if Sophos Endpint Updater can set a Windows boot parameter after update so that after next shutdown…
2 votes -
Alert / Prompt user for reboot when Intercept X gets updated and reboot is required
Whenever the endpoint updates are installed that require a reboot to complete the installation - please prompt the user to reboot their computer at least 1 or 2 times a day. Currently, there will only be a red X on the Sophos Icon on the system tray stating that the update failed. The only way they can see that a reboot is required, is by looking in the update logs. When a reboot is required it should show that to the user and not just show an error. This goes for the console as well. When a reboot is needed…
35 votes -
Add Update Location to View Updating Status
The current configuration for "View Updating Status" does tell where the endpoint is updating from.
1 vote -
error 401
When an object is deleted from the Sophos Cloud console and Sophos isn't removed from the endpoint beforehand, the endpoint stops being able to update.
MCS Communication reports in Endpoint Self Help that the updating failed due to Error 401: Unauthorized.
The Sophos Client doesn't reflect an error or problem with updating and doesn't alert the end user to the fact that the Sophos Client is compromised. This causes the possibility of "lost endpoints" with no obvious indications of a need for repair.
Please modify the behavior of the endpoint to raise an alert on the local system so the…
13 votes -
Sophos Website To Check Whether Malware Is Known By Sophos
For Sophos to provide a site where subscribers can check for malware keyword names and provide information of the IDE that detects the malware and the date of introduction/update for the detection
6 votes -
clear alerts automatically
It would be good if the endpoint could automatically clear restart alerts once the endpoint has been updated sucessfully. just now these need to be manually cleared.
13 votes -
Bulk Updates on Central
The ability to highlight multiple machines that are "out of date", so that the “Update Now” tab appears at the top
This is needed for bulk updates otherwise you would need to go in each computer and drill down to update. The only option you get is to reinstall which isn’t really feasible.
12 votes -
Sophos Central installer auto update
When deploying Sophos central via scripts using the downloaded installer file these fail when the file is out of data and you have to re download the installer file there needs to be an automated way of keeping this updated, we have > 400 clients and keeping each of there install location up to date isn't practical
6 votes -
Ability to temp suspend updates on slow/expensive connections
We have reports of users on slow or expensive network connections (ie: Airplane, Hotel, Train, Cellular) that they would like to temporarily suspend updates until they are on an unmetered connection.
We are requesting that a 'suspend updates' toggle switch be enabled in the client. We have found the cancel updates option is not totally reliable. Sometimes it will cancel the download after it has used the network (possibly at great expense).
This affects our MacOS users mostly, but it would also apply to windows also. Windows has an API for handling network interface metering, so this is less pressing…
6 votes -
Notify customers of new endpoint releases
We recently discovered initial installs of Sophos endpoint on Windows servers can cause a brief network outage since the installer runs Windows "Restart Manager" which can affect the networking stack.
I asked support if endpoint software updates could cause the same behavior and was told yes this can happen, but it should rarely occur on updates.
I also asked if it would be possible to be alerted when new releases are available so we can plan for potential issues on our servers and the answer was no.
It would be great to be notified a head of time for new…
6 votes -
Speed up download time
The Sophos Anti-Virus updates on a MacBook Air are incredibly slow. This happens at least once/day when the computer is awakened. So downloading email messages is delayed 5 or 10 minutes while Sophos works. Very frustrating. Is there another way?!!
2 votes
- Don't see your idea?