Sophos Central

Suggest, discuss, and vote on new ideas for Sophos Central. The unified console for managing your Sophos products.
Please raise all product releated feature requests in the respective product forum

Sophos Central

Suggest, discuss, and vote on new ideas for Sophos Central. The unified console for managing your Sophos products.
Please raise all product releated feature requests in the respective product forum

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Ausschlüsse bei Produkt RA-Micro

    Sehr geehrte Damen und Herren,
    wir haben einen Kunden im Rchtsanwaltsbereich der das Produkt RA-Micro im Einsatz hat. Gibt es hier Erfahrungswerte über Ausschlüsse, da es beim einen oder anderen PC vorkommt, dass Winword in Kombination RA-Micro mit einen "Lockdown" blockiert wird. Geholfen hat nur der Ausschluss des gesamten RA-Micro Netzwerklaufwerkes. Danke vorab für eine Rückmeldung. Mit freundlichen Grüßen
    Gerry Vanek

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  2. Remove Entrys from detected Exploit List

    The List could be too long, so the ability to remove some entrys would be great

    7 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  3. Exclusion Testing

    Hi, I would like a way to test exclusions. Specifically when you use wildcards to create a path exclusions for an application/file, have a way to enter the exclusion, then enter a set of paths to test what the exclusions catch or not.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  4. Add "Details" link in macOS events

    Please add a link to view event details for macOS machines. This feature exists for Windows machines, but not macOS.

    When responding to alerts in Sophos Central, the first thing I do is gather as much information as possible from the alert itself. Whether the endpoint is Windows or macOS, I need to be able to view details such as the file hash, raw detection data, file publisher, etc. in order to properly triage the alert.

    After reviewing an alert, I go directly to the events tab of the device in question. On a Windows machine I am able to…

    10 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  5. Add "Exploit Mitigation" as a policy exclusion type

    Brief: Currently there are only 7/9 Exclusion Types (compared to the 9 Exclusion Types in Global Settings/ Global Exclusions) available when adding an exclusion to a threat protection policy. We need the ability to create "Exploit Mitigation" exclusions at a threat policy level, not just as a global exclusion.

    Discussion: In an enterprise environment with many users filling a variety of job requirements, the inability to create granular Exploit Mitigation exclusions makes for a cumbersome exclusion process. Yes, this option is available in Global Exclusions, however we may only want to exclude a certain Exploit Mitigation (i.e. Lockdown exploit) from…

    7 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  6. Disable Tamperprotection via API

    In order to allow for automatic & silent rollback / removal of Sophos Central Endpoint using a generic software deployment system it would be helpfull to have API access to Tamperprotection of individual clients.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  7. Hinzufügen von Ausnahmen für Peripheriegeräte

    Guten Tag,

    folgenden Verbesserungsvorschlag habe ich, um Ausnahmen für Peripheriegeräte hinzuzufügen:

    1 . Bitte das Fenster vergrößern, da ich bei „Lezter Benutzer“ nur
    die Domäne sehe, aber nicht den Benutzernamen (Fenster ist zu
    klein). (Habe verschiedene Browser ausprobiert.)
    2 . Ich hätte gerne die Möglichkeit Peripheriegeräte aus der Liste zu
    löschen, damit die Liste nicht unnötig voll wird.
    3 . In der Ausnahmeliste sehe ich nicht mehr den letzten Benutzer,
    dies wäre für mich aber wichtig.

    Ich würde mich über eine Umsetzung freuen.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  8. Sophos Cloud Licence expired notifications

    Hi All,

    Are we able to tidy up the licence renewals process for customers?

    Customers are unhappy with the way licence renewals are processed and are finding the notifications around this to be quite confusing, please see the following feedback from a customer below:

    "Thanks for keeping on at Sophos about this, it's just a bit alarmist and
    doesn't really paint Sophos in the best light. It suggests that at a
    minimal they don't know what licenses you have and at a worst it feels like
    scare tactics to dupe the unwary into paying for their licenses over again!
    Especially…

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  9. Add option to temporarily remove device from Self Isoatied status in console.

    In certain situations, you may need to temporarily approve a device be removed from Self Isolated status due to health to allow a user to continue working until the issue can be resolved.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  10. Windows Firewall disable alert

    Hello,
    I am able to see if a device has its local windows firewall disabled by running a report, but I am unable to have be a event that I am emailed on. I have spent hours on the phone with multiple support individuals trying to understand why this is not happening and have not gotten much help. I would love to be alerted when a local firewall is disabled. This is a huge security risk to have the local windows firewall disabled, and I feel to hove Sophos send me an email when this event happens would be extremely…

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  11. yara

    Could Sophos central take a yara ruleset and check it across sets of devices ?

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  12. pop up quittieren

    Hallo Sophos Team,

    Ich habe einen kleinen Verbesserungsvorschlag:
    Wenn eine Malware PUA etc erkannt wird, welche automatisch entfernt wird.
    Kommt ja ein Popup für wenige Sekunden.
    Ich habe keine Einstellung gefunden den User zu zwingen diese Meldung zu quittieren.(pop up offen lassen bis "der User zumindest die Meldung wahrgenommen hat")
    Es kommt häufig vor, dass Meldungen nicht wahrgenommen werden besonders bei einem false positive ist das sehr ärgerlich (Beispiel Programmier Entwicklungsumgebungen - wenn da was fälschlicher weise gelöscht wird artet dies in stundenlange Fehlersuche aus)

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  13. Sophos server protection support- rdp has been blocked for server

    Support s v.v.v.....poor
    i have been waiting for sophos technical support fast 4 days

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  14. Central to report total number of devices protected at the enterprise level

    Total number of protected devices to be listed at the enterprise and partner dashboard level

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  15. Scan Option for Archive Filetypes - Threat Protection Policy option

    There needs to be an option to enable/disable,if archives were are scanned in Real-time scans.
    This option should be seperated by the kind of archive.
    Right now it is not possible to scan tgz-files.

    14 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  16. Support team needs to be more interactive and supportive. ref request#9125264

    Support ticket #9125264- I had requested to call back after 3pm SYD time on 29/08/2019.
    Some one called earlier at 2:30pm couldn't pickup because I was in a 2-3Pm meeting then no call at all. Right after the meeting, I have email back to support team requesting to call back , still no hearing from Support team. Not happy with the support experience, issue is still on. I hope this feedback would get heard and expecting call back on above open support request. :(

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  17. Application Control Policy block windows10 ssh client

    Can we please have an Endpoint Protection Application Control rule for the ssh client in Windows10 ssh.exe

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  18. Allow email notification of virus/malware detected

    Migrated from Sophos UTM to cloud and lost ability to be notified when a virus has been detected. Support said this is as designed. Did not expect to lose functionality in migration. Would like to know if same computer is repeatedly infected so can find the attack vector and stop reinfection.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  19. Central Workstation Alerts - Should link DIRECTLY to the resource noted

    Email alerts should contain links directly to the workstation or server resource that is generating the alert rather than the dashboard. This would make it easier for faster remediation for our Technicians.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
  20. Block Specific File/process

    Could not able to block specific file or process from sophos central [for example - temp.exe/m.vbs/x.bat] we are blocking those kind of specific files through other way. please provide this option in Sophos central.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
← Previous 1 3 4 5 39 40
  • Don't see your idea?

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.