Questions tagged [sophos]

48 questions
0
votes
1 answer

Use nxlog to parse a sophos text file and send to a syslog server

I have a windows server 2012 r2 machine with sophos. Each day there is a scan from sophos and the information is appended to the log "sav.txt". Output example (Some info changed): 20150710 205446 Using detection data version 5.16 (detection…
Patrick
  • 401
  • 3
  • 5
  • 15
0
votes
1 answer

Trouble Switching From non-VLAN to VLAN-Enabled Network with Sophos Gateway

Nasty conundrum here. Some background: I have a Sophos UTM ASG220 serving as gateway device for a number of networks, with a Cisco 2960 network switch, and a raft of Red Hat 6.6 servers running KVM and hosting multiple guests, with the guests being…
Unpossible
  • 249
  • 1
  • 7
  • 20
0
votes
0 answers

Overactive SQL Injection Attack Firewall Rules

We have a web app that our client's employees use to submit signatures from customers using HTML5 canvas to create PNG images. The signature pad is converted to base64 encoded HTTP POST data. Our legitimate traffic is flagged as SQL Injection by…
MaKR
  • 111
  • 6
0
votes
1 answer

Reverse DNS to match Sophos name, or mail server name

I think this is a simple question with a simple answer. Our domain, cory.co.uk, reports a DNS mismatch when you do and SMTP test on mxtoolbox.com. I think this is causing issues sending to some addresses/companies. We have a PTR: record set for…
0
votes
2 answers

Mac Encryption and Reporting

We have a requirement at my company to support Macs. The machines need to be encrypted and have some sort of way to check in with a management system to verify the encryption status. This can be summarized to encryption and reporting. Filevault,…
jsmickey
  • 101
0
votes
2 answers

Lotus Dominoes SameTime problem

A colleague is having problems with the Lotus SameTime server. It crashes periodically and each time the actual server ST resides on has to be restarted. When you attempt to restart the main service you get a "Lotus Notes Error 0x143" and it doesn't…
Dustin
  • 465
  • 1
  • 4
  • 12
0
votes
1 answer

Sophos Enterprise Console 4.5, Mac Client 7 Not Auto-Populating SEC Info

I have Sophos Endpoint Security and Control, which includes Sophos Enterprise Console (SEC). I'm currently running version 4.5 of SEC, which is an older version. I subscribe to Mac updates, and SEC generates a binary Mac installer for me to use on…
user65712
  • 387
  • 1
  • 8
  • 17
0
votes
1 answer

Sophos what is the current client definition?

I'm unfamiliar with Sophos Endpoint Security and have taken over a client who is using version 9.5. The Sophos server appears to be updating without issues, but the clients are unable to receive the new updates from the server. I'd like to know when…
Kieran Walsh
  • 905
  • 7
  • 15
  • 31
0
votes
1 answer

Need to Serve .Config files as text from IIS 6.0 for Sophos Updates

This seems like one of those questions that has a simple answer I am not seeing. We have an IIS server hosting multiple websites, each site on a separate IP. Some of these sites are running ASP and ASP.NET applications. I have one site whose primary…
Johnnie Odom
  • 1,199
  • 7
  • 10
0
votes
1 answer

wget/curl from internal network (web server) to external ip address (web server) connection failed

for some monitoring purposes on my own software i want to call wget with the "external" UR of the webserver, so my call will look like wget https://www.mydomain.de/path But this call fails with the error message: Connection failed. When i make the…
Opa114
  • 113
  • 1
  • 6
0
votes
0 answers

Static Route on IPSEC tunnel

I have a IPSEC tunnel configured as follows. Site A (Sophos XG) 192.168.40.0/22 to Site B (pfsense) 10.1.1.0/22 At site B i have a Zabbix instance installed at 10.3.1.2 on a separate VLAN. I want this Zabbix instance to access the XG (over the…
Nathan
  • 165
  • 8
0
votes
1 answer

How to block git push to github

My organisation is trying to block 'git push' to repositories on sites like Github, Gitlab etc. Currently they have blocked the website, however users are still able to clone and push code via git. Git protocol uses port 9418, however the URL to…
Birla
  • 130
  • 5
0
votes
1 answer

Exclude Service with spaces in name in NRPE arguments

exclude=edgeupdate = working fine exclude=Sophos Clean Service = not working what syntax do I have to use here?
BBQtrout
  • 1
  • 1
0
votes
1 answer

Connect multiple azure resource groups via route-based vpn to same on-site firewall

We are developing an app in Azure, made dev/test/prod ressource groups and want to connect these via Site-to-Site VPN to our On-Prem environment. Connecting one of these ressource groups isn't a problem, connecting all of them is unfortunately. We…
sz1337
  • 1
0
votes
1 answer

Sophos Endpoint Defence + Gold Image = Error 'Windows could not finish configuring the system'

When I install Sophos Endpoint Defence on an Amazon provided AMI; and then create a custom AMI from it; why do EC2 instances display an error dialog on boot 'Windows could not finish configuring the system'? In my case I used EC2 Image Builder to…