Endpoint Protection

Suggest, discuss, and vote on new ideas for Sophos Endpoint Protection. Comprehensive security for users and data

Endpoint Protection

Suggest, discuss, and vote on new ideas for Sophos Endpoint Protection. Comprehensive security for users and data

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Perhipal control SSID management

    Many of user can bypass company firewall via personal hotspot of GSM operator. If we can manage SSID and we may define whitelisted SSID will prevent that issue.
    Could you please add SSID management under perhipal/device control as a new feature.

    7 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    2 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  2. does not block drive.google.com

    Hello,

    We are facing a problem. We have created a Web control filter under "Control sites tagged in Website Management" where we blocked drive.google.com

    Despite of it being clocked, the site is accessible.

    1 vote
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  3. Impedir aplicação a partir de dispositivos móveis

    Possibilitar ao cliente liberar ou não a execução de aplicações a partir de dispositivos de armazenamento móveis, mesmo que o usuário tenha permissão para acesso a dispositivos de armazenamento móvel.

    1 vote
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  4. Application base admin Privilege to end-users System

    We are looking for Application-Based Admin Access features (Enable/Disable) on end-users machine so that Centralized Control can be implemented while providing the admin rights or Application base admin Privilege to end-users System.

    Built-In Feature of Sophos XDR can be useful

    1 vote
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  5. Reregister Device

    The only current way to move ownership of a device such as a PC is to run SophosSetup.exe with the --registeronly switch. This is difficult, especially with physical access to computers limited because of Covid. It would be easier if an administrator could move the device to a different user much as a device can be moved from one device group to another.

    1 vote
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  6. import USB exclusion

    It would be great for the Sophos Central to have a place to import the USB information (e.g., Serial number or brand) to the exclusion list. To make the migration from other brands to Sophos more easily and customers more willing to migrate to Sophos.

    2 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  7. Allow the ability to unblock all printers and webcams

    While Sophos administrators have the ability to exempt a specific printer, webcam, or other usb device on an individual basis it would be great to offer the ability to whitelist or allow all printers and webcams to be added without admin intervention for each user.

    1 vote
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  8. Current feature does not allow the peripherals to be blocked system wise without blocking the peripherals and then whitelisting it.

    It will be of great help if we can have the feature of disabling and allowing of USB drives system wise. Fo example if I need to block a specific USB drive to a specific system only, its not possible without blanket blocking the USB access and then allowing it as exceptions. By this you have to change the statud quo of other systems. This will lead to operational issues one has block all USB access and then allow one by one. So everytime the user has to get IT to allow if the USB device is a fresh one.…

    1 vote
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  9. Bletooth blocking on MacOS

    Please enable Bluetooth blocking on MacOS via Peripheral control policy.

    2 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  10. File type filter for removable storage devices

    We want to allow read only access on floppy and optical drives, (secure) removable storage and MTP/PTP devices but restrict it to certain file types. For example: documents (PDF, DOCX, XLSX ...) and image files (JPG, PNG ...) are allowed but opening/copying executable files (EXE, MSI ...) and script files (CMD, BAT, PS1 etc.) are blocked.

    1 vote
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  11. Device Control - Can define which USB Devices

    Central Endpoint: Can define which USB ID as full ID name because currently show same model and Vendor, can't define which USB when client detected

    6 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  12. Add option to transfer Mail Queue to another appliance in the Cluster in the Email Appliance

    We would like to have a button under Mail queue search where we would be able to re-send the emails but also to transfer these emails to another appliance from the Cluster in case one of the appliance is blacklisted or for load balance.

    2 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  13. Peripheral Control.

    Hello we want to use Peripheral Control.
    Unfortunately it takes a long time until the directive is enforced on the devices.
    It would be better if the policy is enforced when the user logs in. Policy for the user is retrieved. Additionally you should be able to push the policy from Central. This would have the advantage that administrators, for example, if they connect a USB stick, do not have to wait more than 30 minutes until they can do something.

    2 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  14. 1 vote
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  15. add feature to restart endpoint force

    add feature to restart endpoint force like other vendors

    4 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  16. Group per policy

    Hi

    I want to be able to apply an allowed group to users for specifically DVD drives and Mobile devices.

    I have ended up creating 3 separate policies because you can only assign 1 group to a user.

    Can you not make it a feature so if we want to create a dvd allow policy we can just add dvd to the policy for that group without having to block everything else?

    thanks

    2 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  17. Peripheral Control Policy in Sophos Central

    When the Peripheral Control Policy is set to Control access by peripheral type and add exemptions, categories for devices that are set to Allowed should continue to log as events for those computers to know what is still being connected to them, just like it did when Monitor but do not block (all peripherals will be allowed) was defined. When the policy is set to Control, it only logs events for blocked devices which isn't helpful to audit what else might be getting connected to the computer that is being allowed and may want to be blocked after review.

    2 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  18. Recognize Bitlocker Encryption in Peripheral Control

    I would like to be able allow and/or add device exceptions based on whether the removable storage device is encrypted with Bitlocker. These should be considered by Sophos as "Secure removable storage".

    1 vote
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  19. USB Device file lock

    Ability to block certain file types running from a USB device like .bat or .exe files.

    6 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
  20. Sizable Device Control exception Windows

    Make the Device Control "Add Peripheral Exemptions" window sizable to see the ID, username and other valubles in full length. Its really hard to compare a ID with a mouse over.

    Also add filters or search fields to search for a MODEL or ID or a specific username.

    3 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Device Control  ·  Flag idea as inappropriate…  ·  Admin →
← Previous 1 3 4
  • Don't see your idea?

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.