Questions tagged [sophos]

48 questions
10
votes
3 answers

How to configure "On-Access Anti-Virus" for a faster boot?

I am in the process of trying to optimize the boot process of our 700 Windows XP workstations, we regularly have complaints about the start-up and login times on site workstations. Looking at this in two parts, part one using BootVis to monitor and…
Richard Slater
  • 3,228
  • 2
  • 28
  • 42
4
votes
0 answers

Sophos firewall default settings do not allow HTTPS from Java 6 clients

Our current (default) Sophos firewall (Apache reverse proxy) settings does not allow Java 6 clients to connect over HTTPS. The ssltest result shows that the reason is "Client does not support DH parameters > 1024 bits". ssltest reports with 'A'…
mjn
  • 933
  • 2
  • 12
  • 26
4
votes
1 answer

Application layer firewall for WebSockets?

My team has built an intranet portal in Amazon AWS for a client, and on it, we have used WebSockets to do things like notifications and other minor stuff. We mostly send events from the server, but we also use it so the client can quickly notify the…
Mike Caron
  • 237
  • 2
  • 13
4
votes
1 answer

sophos access https site when user portal is activated

I use a SOPHOS on UTM 9. I have a website behind it on Win Server 2012 R2 / IIS 8 created with a subdomain (e.g. myaccess.mydomain.com). On UTM9 i had do what Stephane say on "serverfault -> sophos access a webserver from the web" and I can acces my…
Alex L
  • 41
  • 1
  • 5
4
votes
1 answer

Which RBL's does sophos use?

Anyone know where I can find the a list of which RBL's Sophos use's? I have checked their website with no luck, and currently awaiting a response from their technical support. Thank You in advance Kevin
Kevin
  • 87
  • 1
  • 7
3
votes
1 answer

Stop Sophos trying to update immediately after login

All of our corporate PCs have Sophos installed, but we're getting complaints about slow network speed and boot times from the users. We've tracked this down to Sophos checking for updates as soon as the user logs in - the checking process eats…
ColinYounger
  • 151
  • 1
  • 4
2
votes
1 answer

How to assign traffic priority with Sophos UTM 9?

I'm trying to assign traffic prioritization with a Linux machine (Debian) running Sophos UTM 9. I can see (and have read) that I can guarantee a service (in this case a specific TCP port) an amount of bandwidth, but this would keep any reserved…
Ryan
  • 282
  • 2
  • 11
2
votes
2 answers

Virtualizing Firewalls/UTM

So Sophos UTM (Astaro Gateway UTM) can be virtualized in Hyper-V, VMWare, vSphere etc. Now I'm new to virtualization, so am wondering how the networking would be configured in this situation. Imagine the following (a very simple setup). A Zyxel…
PnP
  • 1,684
  • 8
  • 37
  • 65
2
votes
1 answer

Sharepoint alert email were blocked by Sophos 10.0 - are they gone forever?

We are running WSS 3.0 SP2 on Windows Server 2003 R2 x64. We had recently upgraded our Sophos Endpoint Protection from version 9.7 to 10.0. Immediately, our alerts stopped working (although it wasn't noticed immediately). When you tried to create a…
Dan
  • 1,278
  • 18
  • 27
2
votes
0 answers

Microsoft Windows 10 Attachment Manager not working

For compliancy reasons we need to demonstrate that users downloading and then running certain file types (namely .exe) are first presented with a warning (for Cyber Essentials). The setup are Windows 10 workstations (build 2004) running Novell…
Rob
  • 131
  • 3
1
vote
1 answer

Suspicious DNS query leads to "Intrusion protection alert" on Sophos UTM

A customer Sophos-UTM reports Intrusion protection alert warnings INDICATOR-COMPROMISE suspicious .null dns query: 2019:01:15-11:54:13 utm-ba snort[31619]: id="2101" severity="warn" sys="SecureNet" sub="ips" name="Intrusion protection alert"…
marsh-wiggle
  • 2,075
  • 4
  • 26
  • 44
1
vote
0 answers

Implement AD and Group policies over VPN

We have multiple sites with each site having 5 to 10 systems. All sites are connected to HQ through VPN configured on firewall. (Each site has their own firewall) What I want is to connect remote location systems to AD and impose group policies on…
1
vote
1 answer

Fuse SSHFS mount gets stuck with Sophos Antivirus

I have a problem with fuse sshfs and the running Sophos Antivirus Scanner for Linux Systems v9.11.0. I am running as OS RHEL7.1 with fuse-sshfs-2.5. The mounting via sshfs works fine when Sophos is disabled, but when the daemon is running the sshfs…
Alexander
  • 11
  • 2
1
vote
1 answer

Can I retrieve email marked as rejected in the SMTP log?

I am using a Sophos UTM 9 SG210 firewall and noticed in the SMTP log that a formerly trusted sender has had 50 legitimate emails rejected. I've since added them to an exemption list, but was wondering if there is any way to retrieve those rejected…
Penanghill
  • 135
  • 5
1
vote
5 answers

How can I set AWS EC2 TimeZone?

I have two EC2 instances operating in the Oregon location (us-west-2c). Each of these when I issue the command date returns a value 7 hours ahead of what I would expect. I have tried adjusting the timezone settings and each one returns a date and…
1
2 3 4