Endpoint Protection

Suggest, discuss, and vote on new ideas for Sophos Endpoint Protection. Comprehensive security for users and data

Endpoint Protection

Suggest, discuss, and vote on new ideas for Sophos Endpoint Protection. Comprehensive security for users and data

Suggest an Idea...

(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Add More Enterprise Console Displayed Filters

    A Platinum customer would like further filters available within the Enterprise Console such as:

    1. Connected computers that differ from policy
    2. Connected computers with errors
    3. Connected computers with outstanding malware alerts.

    Basically, they would like the Console to display only the machines that are not currently connected that have issues so they do not flood RMS with messages.

    Thanks,

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  2. Backup and Restore the SUM configuration

    **On the behalf of a Platinum customer**

    The administrator has created a single instance of SUM on separate server and would now like the ability to backup the SUM configuration (a use example could be if the OS is about to be upgraded). Currently the only option for the admin is to backup and restore the complete database along with creating a brand new installation from the SUM share. As Sophos supports the creating of new installation of SUM they should also support a method to only backup the SUM configuration, as the database may reside on a different box.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  3. Being able to set different exclusions per plannified scanning

    Would be nice to be able to set exclusions on a per-planified scanning way. That way we can create a quick scan daily and a full scan on the weekends.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  4. Scheduler for Sophos SAVXP installation

    Feature to schedule Sophos Software (SAVXP) installation, enabling admins to schedule SAVXP installations out of hours.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  5. Allow easy export of all endpoints from SEC to Excel

    1. Easy export of All Computers in console to a spreadsheet
    a. (we routinely do this and it takes 30 minutes to select all and copy to clipboard and paste 38,000 objects to a spreadsheet. If you forget your computer is copying the data to the clipboard and copy something else then you have to start all over. I installed an app called Ditto on my machine for this very reason to have multiple clipboards)
    2. Include the connected status in the data copy – a yes/no column for “Currently Connected?”
    3. A way to automate a dump of the…

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  6. When writing to a device that uses the MTP/PTP/WPD drivers, the data control event gets logged to the local PC, but does not get submitted t

    When writing to a device that uses the MTP/PTP/WPD drivers, the data control event gets logged to the local PC, but does not get submitted to the console. On later versions of Windows, the MTP driver seems to be used by default, so that even flash drives, which traditionally used the mass storage driver, are instead using MTP and data control events are only accessible from the local PC. Our only solution at this time is to block PCs with later versions of Windows from writing altogether, which will be unfeasible as these newer versions become more prevalent. When can…

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  7. Smooth scrolling of endpoints in SEC

    Please somehow allow buffering or something that allows one to smoothly scroll through a long list of endpoints in the SEC. With 30K + endpoints, we see that Page Up / Page Down helps some, but if you click the scroll bar it will pause and then scroll too far forward or backward. It's really annoying if you're looking for a certain IP range or name, for example.

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  8. Add ability to configure Message Relays to the SEC GUI

    Currently we have to find and edit mrinit.conf. It's not terrible, but a bit tedious to remember exactly where to do it and when to change MRParentAddress vs ParentRouterAddress, so it would be great if a sub-pane was added to the CID configuration window that lets you edit the values there at least. (Update Managers, Configure, Distribution tab, Update To list, click Configure. This window.)
    Bonus points if we can edit a particular endpoint in the Endpoints view and opt to make it a message relay, then the configure window above would list endpoints that have this designation.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  9. Re-protect computers automatically

    Although with AD sync SEC can install endpoint protection automatically to the computers, it tries only once to protect the machines. Sometimes if there was a netowork error SEC should try the installtion again, moreover this feature can be very useful if the security software was uninstalled from a machine. When there are a plenty of machines on the network it is difficullt to check if the automated installation was fine and/or re-protect the machines manually.
    SEC should try to install the protection several time in a week or something like this...

    9 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  10. Use Fully Qualified Names in Enterprise Management Console

    Instead of using the NetBIOS Name for computers in the SEC, use the Fully Qualified Domain Name (FQDN). This would allow administrators to use the Protect Computers Wizard more easily, ensure proper identification of machines in the console, and allow for additional ways to filter computers in the list.

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  11. Launching the console as a user who inherits membership of the Sophos Full Administrators group via nested groups

    There is a known issue where launching the console as a user who inherits membership of the Sophos Full Administrators group via nested groups.
    It would be great if this was resolved and nested groups work. This is a compliance breakdown.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  12. Sophos Deployment Packager - Allow Secondary Location on "Full, Managed Packages"

    When you choose to make a "Full, Managed" package using the deployment Packager tool. The options for primary and secondary after grayed out as it assumes that the machine will soon get its policy for updating from the management server. I suggest we allow for a secondary location to be set for machines that will not be communicating with the management server for some months but will have sporadic internet access.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  13. Include total # of licensed endpoints in SEC dashboard

    SEC does not list total # of licenses related to a customers instance. Instead, support has recommended we go by "managed endpoints." When purchasing additional licenses or installing to new machines, it would be nice to see exactly how many agents we have left to push out.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  14. Ability to copy rules and exceptions between primary and secondary locations in client firewall

    The ability to copy rules and exceptions between the primary and secondary location in the client firewall settings.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  15. Want to have the specific revomavable device that was used (thumb drive, cellphone, HDD, etc) and the device ID on the Data Control Log

    Removed personal/company/partner information

    Sophos Product Information

    Sophos Product: Sophos Enterprise Console

    Version in Production: version 5.2.1.197

    Feature Request Summary

    How will this new feature address your business requirements?:
    This will mainly help in our security reviews to provide relevant information about data/file transfer here in our company.

    How would you rate the importance of this feature?; 1 = Critical, 5 = Nice-to-have:
    1 (Critical)

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  16. Linux endpoint pass AD domain to SEC

    Allow linux endpoint to pass or detect the AD domain so that it doesn't have the issue described below.

    This will allow the use of AD sync and linux machines in an enviroment where the agent can be re-installed or the OS re-imaged.

    https://community.sophos.com/products/endpoint-security-control/f/3/p/9843/30725
    https://community.sophos.com/products/endpoint-security-control/f/16/t/9845

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  17. Sophos Services preventing to stop in administrator User

    Sophos AV can prevent stopping on their services as you log on as Administrator account to prevent disabling the features of sophos.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    Under Review  ·  0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  18. Separate Policy for Alerting

    When working in large environments with several sub-estates it would very useful having a separate policy for the alerting via E-Mail or SNMP

    Typically components of the AV+HIPS policy (e.g. Exclusions) can be reused in the sub-estates but in scenarios where have to alert different groups of administrators it would improve the usability when we could provide a separate alerting policies.

    So we would have a much smaller count of AV+HIPS policies and only one alerting policy per sub-estate.

    13 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  19. ARP Spoofing detection in Sophos Anti virus manage by SEC

    On be half of our client we will request this features to have on your Sophos AV Manage by SEC Server to prevent in ARP spoofing/poisoning.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  20. The migration (server to server) guide could be more verbose about user accounts.

    For example explaining which users are required when migrating from older servers. How the EMLibUser no longer exists and thus is not needed. What a SophosSAU0 account is, or a link to the kb explaining it. (https://www.sophos.com/en-us/support/knowledgebase/58627.aspx)

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Sophos Enterprise Console (SEC)  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.