'Losing the Will to Live'
Finally admitting defeat and asking for HELP! I think I've tried everything but still can't get Endpoint to install.
We are moving from Sophos Endpoint Security and Control V10.7 (via server based Sophos Enterprise Console) to Central Endpoint Advanced 11.5.11 on to Windows 7 (x64) pc's.
Still suspect this might end up as being Firewall related but can't spot where it's going wrong.
I have tried :-
- Adding all the sophos exclusions to the firewall (Smoothwall) as per https://community.sophos.com/kb/en-us/121936 including cloud.sophos.com/api and ports.
- Uninstalling the current version as described in https://community.sophos.com/kb/en-us/109668
- Running netsh winhttp set proxy proxy-server= to make sure it was picking up the right proxy settings
- Running SophosSetup.exe with and without the --proxyaddress command line.
Fails with the same "Cannot connect error" each time.
Log below which seems to be getting through the proxy firewall until it errors with
WinHttpSendRequest failed with certificate check failure and error 12017.....
Any help with this would be greatly appreciated.
Started C:\Users\ADMINI~1.HOL\AppData\Local\Temp\sfl-29ee4000\Setup.exe 2018-02-05T15:45:42.5052076Z INFO : SophosInstall command line: "C:\\Users\\ADMINI~1.HOL\\AppData\\Local\\Temp\\sfl-29ee4000\\Setup.exe" 2018-02-05T15:45:42.5052076Z INFO : Command line: Quiet mode on: 0 2018-02-05T15:45:42.5052076Z INFO : Command line: Automatic Proxy detection disabled: 0 2018-02-05T15:45:42.5062070Z INFO : Command line: No feedback mode on: 0 2018-02-05T15:45:42.5062070Z INFO : Command line: Dump feedback enabled: 0 2018-02-05T15:45:42.5062070Z INFO : Command line: Bypass competitor removal: 0 2018-02-05T15:45:42.5062070Z INFO : Command line: Using CRT catalog file path: -- 2018-02-05T15:45:42.5062070Z INFO : Command line: Only register endpoint with Central: 0 2018-02-05T15:45:42.5062070Z INFO : Command line: Using custom server: -- 2018-02-05T15:45:42.5062070Z INFO : Command line: Using custom stage 2 filename: -- 2018-02-05T15:45:42.5062070Z INFO : Command line: Using cloud user: -- 2018-02-05T15:45:42.5062070Z INFO : Command line: Using cloud group: -- 2018-02-05T15:45:42.5062070Z INFO : Command line: Overriding computer name: -- 2018-02-05T15:45:42.5062070Z INFO : Command line: Overriding computer description: -- 2018-02-05T15:45:42.5062070Z INFO : Command line: Overriding domain name: -- 2018-02-05T15:45:42.5072064Z INFO : Command line: Language will be set to: -- 2018-02-05T15:45:42.5072064Z INFO : Command line: Using message relays: -- 2018-02-05T15:45:42.5072064Z INFO : Command line: Proxy address: -- 2018-02-05T15:45:42.5072064Z INFO : Command line: Proxy user name: -- 2018-02-05T15:45:42.5072064Z INFO : Command line: Using custom customer token: -- 2018-02-05T15:45:42.5072064Z INFO : Command line: Using specified products: -- 2018-02-05T15:45:42.5072064Z INFO : Command line: Using certificates from the MCS app data folder: 0 2018-02-05T15:45:43.2567564Z INFO : Sending HTTP 'GET' request to: full/central/windows/business/installer/latest.tar.gz 2018-02-05T15:45:43.2947336Z WARNING : WinHttpGetProxyForUrl returned: 12180 2018-02-05T15:45:43.2947336Z INFO : Discovered the system proxy http=10.109.32.1:8080;https=10.109.32.1:8080 2018-02-05T15:45:43.2947336Z INFO : Attempting to connect using proxy 'http=10.109.32.1:8080;https=10.109.32.1:8080' of type 'System'. 2018-02-05T15:45:43.2957330Z INFO : Set security protocol: 00000800 2018-02-05T15:45:43.2957330Z INFO : Opening connection to downloads.sophos.com 2018-02-05T15:45:43.2977318Z INFO : Opened connection to downloads.sophos.com 2018-02-05T15:45:43.2977318Z INFO : Request content size: 0 2018-02-05T15:45:43.3027288Z INFO : Request sent 2018-02-05T15:45:43.3087252Z INFO : Request sent 2018-02-05T15:45:43.3147216Z INFO : Request sent 2018-02-05T15:45:43.3946736Z INFO : Sending request 2018-02-05T15:45:43.3956730Z INFO : Request sent 2018-02-05T15:45:44.3770838Z INFO : Response status code: 200 2018-02-05T15:45:44.3790826Z INFO : Response data size: 1639646 2018-02-05T15:45:44.3790826Z INFO : trySendRequestThroughPotentialProxy returning response with status code: 200 2018-02-05T15:45:44.3810814Z INFO : Extracting files: 2018-02-05T15:45:44.3810814Z INFO : integrity.dat 2018-02-05T15:45:44.3880772Z INFO : manifest.dat 2018-02-05T15:45:44.3890766Z INFO : rootca.crl 2018-02-05T15:45:44.3890766Z INFO : rootca.crt 2018-02-05T15:45:44.3890766Z INFO : scf.dat 2018-02-05T15:45:44.3900760Z INFO : sof.dat 2018-02-05T15:45:44.3900760Z INFO : SophosSetup_Stage2.exe 2018-02-05T15:45:44.4190586Z INFO : sul.dll 2018-02-05T15:45:44.4410454Z INFO : Management Certs/sophosca1.crl 2018-02-05T15:45:44.4420448Z INFO : Management Certs/sophosca1.crt 2018-02-05T15:45:44.4420448Z INFO : Management Certs/sophosca2.crl 2018-02-05T15:45:44.4420448Z INFO : Management Certs/sophosca2.crt 2018-02-05T15:45:44.4430442Z INFO : Management Certs/Sophos_SHA256_MCS_Root_CA3_exp20380504.crl 2018-02-05T15:45:44.4430442Z INFO : Management Certs/Sophos_SHA256_MCS_Root_CA3_exp20380504.crt 2018-02-05T15:45:44.4430442Z INFO : Management Certs/Sophos_SHA256_MCS_Root_CA4_exp20390504.crl 2018-02-05T15:45:44.4430442Z INFO : Management Certs/Sophos_SHA256_MCS_Root_CA4_exp20390504.crt 2018-02-05T15:45:44.5070058Z INFO : Running setup. Started C:\Program Files (x86)\Sophos\CloudInstaller\SophosSetup_Stage2.exe 2018-02-05T15:45:44.9257544Z INFO : Setup command line: --mgmtserver="mcs-cloudstation-us-east-2.prod.hydra.sophos.com" --logfile="C:\\ProgramData\\Sophos\\CloudInstaller\\Logs\\SophosCloudInstaller_20180205_154542.log" --parentpid="1320" --products="all" --customertoken="c928e75d-28b7-42e1-b531-591101168427" --pipewritehandle="1208" --mcscustomerid="8626b2fa-7f09-b463-88f5-504a702c3a03" 2018-02-05T15:45:44.9337496Z INFO : Model::server value changed to: mcs-cloudstation-us-east-2.prod.hydra.sophos.com 2018-02-05T15:45:44.9347490Z INFO : Model::messageRelays value changed to be size: 0 2018-02-05T15:45:44.9347490Z INFO : Model::user value changed to: 2018-02-05T15:45:44.9347490Z INFO : Model::group value changed to: 2018-02-05T15:45:44.9347490Z INFO : Model::parentPid value changed to: 1320 2018-02-05T15:45:44.9357484Z INFO : Model::products changed to: all 2018-02-05T15:45:44.9357484Z INFO : Model::customer token value changed to: c928e75d-28b7-42e1-b531-591101168427 2018-02-05T15:45:44.9367478Z INFO : MCS Crts: C:\\Program Files (x86)\\Sophos\\CloudInstaller\\Management Certs\\sophosca1.crt,C:\\Program Files (x86)\\Sophos\\CloudInstaller\\Management Certs\\sophosca2.crt,C:\\Program Files (x86)\\Sophos\\CloudInstaller\\Management Certs\\Sophos_SHA256_MCS_Root_CA3_exp20380504.crt,C:\\Program Files (x86)\\Sophos\\CloudInstaller\\Management Certs\\Sophos_SHA256_MCS_Root_CA4_exp20390504.crt 2018-02-05T15:45:44.9367478Z INFO : MCS CRLs: C:\\Program Files (x86)\\Sophos\\CloudInstaller\\Management Certs\\sophosca1.crl,C:\\Program Files (x86)\\Sophos\\CloudInstaller\\Management Certs\\sophosca2.crl,C:\\Program Files (x86)\\Sophos\\CloudInstaller\\Management Certs\\Sophos_SHA256_MCS_Root_CA3_exp20380504.crl,C:\\Program Files (x86)\\Sophos\\CloudInstaller\\Management Certs\\Sophos_SHA256_MCS_Root_CA4_exp20390504.crl 2018-02-05T15:45:44.9367478Z INFO : Model:: MCS customer id value changed to: 8626b2fa-7f09-b463-88f5-504a702c3a03 2018-02-05T15:45:44.9387466Z INFO : Beginning command definition. 2018-02-05T15:45:44.9397460Z INFO : Adding competitor detection command. 2018-02-05T15:45:44.9397460Z INFO : Adding command to register with Sophos cloud. 2018-02-05T15:45:44.9397460Z INFO : Adding MCS Override Registry keys if applicable; computer name, computer description, working group/domain name. 2018-02-05T15:45:44.9397460Z INFO : Adding command to download product suite. 2018-02-05T15:45:44.9397460Z INFO : Adding command to retrieve policy. 2018-02-05T15:45:44.9397460Z INFO : Adding command to prepare for installation. 2018-02-05T15:45:44.9407454Z INFO : Adding command to install Sophos cloud. 2018-02-05T15:45:44.9407454Z INFO : Adding command to persist installation and download status. 2018-02-05T15:45:44.9407454Z INFO : Command definition complete. 2018-02-05T15:45:44.9437436Z INFO : Stage 1 version:1.1.19.0 2018-02-05T15:45:44.9437436Z INFO : Stage 2 version:1.1.19 2018-02-05T15:45:44.9437436Z INFO : OS version: 6.1.7601. 2018-02-05T15:45:44.9437436Z INFO : Service pack: 1.0. 2018-02-05T15:45:44.9437436Z INFO : System Language: 1033. 2018-02-05T15:45:44.9437436Z INFO : User Language: 1033. 2018-02-05T15:45:44.9437436Z INFO : 64 bit: yes. 2018-02-05T15:45:45.4374472Z INFO : Running System Property Check: VerifyTrust ... 2018-02-05T15:45:45.5333896Z INFO : System Property Check: VerifyTrust - PASSED 2018-02-05T15:45:45.5833596Z INFO : Running System Property Check: HostnameLength ... 2018-02-05T15:45:45.5863578Z INFO : Initialized Winsock subsystem 2018-02-05T15:45:45.5933536Z INFO : Valid hostname length 2018-02-05T15:45:45.5943530Z INFO : System Property Check: HostnameLength - PASSED 2018-02-05T15:45:45.6453224Z INFO : Running System Property Check: GroupNameLength ... 2018-02-05T15:45:45.6453224Z INFO : System Property Check: GroupNameLength - PASSED 2018-02-05T15:45:45.6962918Z INFO : Running System Property Check: IsAdministrator ... 2018-02-05T15:45:45.6962918Z INFO : System Property Check: IsAdministrator - PASSED 2018-02-05T15:45:45.7462618Z INFO : Running System Property Check: PendingReboots ... 2018-02-05T15:45:45.7472612Z INFO : System Property Check: PendingReboots - PASSED 2018-02-05T15:45:45.7982306Z INFO : Running System Property Check: PrimaryDriveSpace ... 2018-02-05T15:45:45.7982306Z INFO : Enough space: 388942 Mb 2018-02-05T15:45:45.7992300Z INFO : System Property Check: PrimaryDriveSpace - PASSED 2018-02-05T15:45:45.8492000Z INFO : Running System Property Check: NotFirewall ... 2018-02-05T15:45:45.8492000Z INFO : System Property Check: NotFirewall - PASSED 2018-02-05T15:45:45.8991700Z INFO : Running System Property Check: NotHitmanProAlertIncompatible ... 2018-02-05T15:45:45.8991700Z INFO : No HitmanPro.Alert Installed 2018-02-05T15:45:45.8991700Z INFO : System Property Check: NotHitmanProAlertIncompatible - PASSED 2018-02-05T15:45:45.9491400Z INFO : Running System Property Check: NotInvincea ... 2018-02-05T15:45:45.9491400Z INFO : System Property Check: NotInvincea - PASSED 2018-02-05T15:45:45.9991100Z INFO : Running System Property Check: NotMessageRelay ... 2018-02-05T15:45:45.9991100Z INFO : RMS is not installed on the endpoint 2018-02-05T15:45:46.0001094Z INFO : System Property Check: NotMessageRelay - PASSED 2018-02-05T15:45:46.0500794Z INFO : Running System Property Check: NotNac ... 2018-02-05T15:45:46.0510788Z INFO : System Property Check: NotNac - PASSED 2018-02-05T15:45:46.1010488Z INFO : Running System Property Check: NotPatch ... 2018-02-05T15:45:46.1010488Z INFO : System Property Check: NotPatch - PASSED 2018-02-05T15:45:46.1510188Z INFO : Running System Property Check: NotPureMessageDomino ... 2018-02-05T15:45:46.1510188Z INFO : System Property Check: NotPureMessageDomino - PASSED 2018-02-05T15:45:46.2009888Z INFO : Running System Property Check: NotPureMessageExchangeWithAntiSpam ... 2018-02-05T15:45:46.2009888Z INFO : System Property Check: NotPureMessageExchangeWithAntiSpam - PASSED 2018-02-05T15:45:46.2509588Z INFO : Running System Property Check: NotSharePoint ... 2018-02-05T15:45:46.2509588Z INFO : System Property Check: NotSharePoint - PASSED 2018-02-05T15:45:46.3009288Z INFO : Running System Property Check: NotSecServer ... 2018-02-05T15:45:46.3009288Z INFO : System Property Check: NotSecServer - PASSED 2018-02-05T15:45:46.3508988Z INFO : Running System Property Check: NotSum ... 2018-02-05T15:45:46.3508988Z INFO : System Property Check: NotSum - PASSED 2018-02-05T15:45:46.4008688Z INFO : Running System Property Check: NotTamperProtected ... 2018-02-05T15:45:46.4008688Z INFO : Sophos Endpoint Defense is installed 2018-02-05T15:45:46.4008688Z INFO : SED Tamper Protection is not in effect 2018-02-05T15:45:46.4018682Z INFO : System Property Check: NotTamperProtected - PASSED 2018-02-05T15:45:46.4528376Z INFO : Running System Property Check: RAMSize ... 2018-02-05T15:45:46.4528376Z INFO : System Property Check: RAMSize - PASSED 2018-02-05T15:45:46.5028076Z INFO : Running System Property Check: SupportedOS ... 2018-02-05T15:45:46.5028076Z INFO : Running on workstation. 2018-02-05T15:45:46.5028076Z INFO : System Property Check: SupportedOS - PASSED 2018-02-05T15:45:46.5527776Z INFO : Running System Property Check: ValidTempDirectory ... 2018-02-05T15:45:46.5527776Z INFO : Temp folder exists. 2018-02-05T15:45:46.5527776Z INFO : System Property Check: ValidTempDirectory - PASSED 2018-02-05T15:45:46.6027476Z INFO : Running System Property Check: ValidServer ... 2018-02-05T15:45:46.6027476Z INFO : System Property Check: ValidServer - PASSED 2018-02-05T15:45:46.6527176Z INFO : Running System Property Check: ValidDeploymentInfo ... 2018-02-05T15:45:46.6527176Z INFO : Current Time: 2018-02-05T15:45:46.652000 2018-02-05T15:45:46.6537170Z INFO : This computer is part of the domain HOLTHOUSE 2018-02-05T15:45:46.6547164Z INFO : Domain Name: HOLTHOUSE 2018-02-05T15:45:46.6547164Z INFO : Computer Name: AIO-OFFICE4 2018-02-05T15:45:46.6547164Z INFO : Computer Description is not available. 2018-02-05T15:45:46.6547164Z INFO : Operating System: WIN7 2018-02-05T15:45:46.6547164Z INFO : ProductType: 48 2018-02-05T15:45:46.6587140Z INFO : Last logged on user was: HOLTHOUSE\\administrator 2018-02-05T15:45:46.6587140Z INFO : Fully Qualified Domain Name: AIO-OFFICE4.holthouse.local 2018-02-05T15:45:46.6597134Z INFO : Processor architecture: x64 2018-02-05T15:45:46.6597134Z INFO : OS Major Version: 6 and OS Minor Version: 1 2018-02-05T15:45:46.6597134Z INFO : Friendly OS Name: WIN7 2018-02-05T15:45:46.6597134Z INFO : Is server?: 0 2018-02-05T15:45:46.6607128Z INFO : Sending HTTP 'POST' request to: sophos/management/ep/install/deployment-info 2018-02-05T15:45:46.6667092Z WARNING : WinHttpGetProxyForUrl returned: 12180 2018-02-05T15:45:46.6667092Z INFO : Discovered the system proxy http=10.109.32.1:8080;https=10.109.32.1:8080 2018-02-05T15:45:46.6667092Z INFO : Attempting to connect using proxy 'http=10.109.32.1:8080;https=10.109.32.1:8080' of type 'System'. 2018-02-05T15:45:46.6667092Z INFO : Set security protocol: 00000800 2018-02-05T15:45:46.6667092Z INFO : Opening connection to mcs-cloudstation-us-east-2.prod.hydra.sophos.com 2018-02-05T15:45:46.6677086Z INFO : Opened connection to mcs-cloudstation-us-east-2.prod.hydra.sophos.com 2018-02-05T15:45:46.6677086Z INFO : Sending request for connection confirmation through potential proxy 2018-02-05T15:45:46.6677086Z INFO : Request content size: 0 2018-02-05T15:45:46.6707068Z INFO : ValidateFileCertificateCheck: Ignore WINHTTP_CALLBACK_STATUS_REQUEST_SENT 2018-02-05T15:45:46.6787020Z INFO : ValidateFileCertificateCheck: Ignore WINHTTP_CALLBACK_STATUS_REQUEST_SENT 2018-02-05T15:45:46.6856978Z INFO : ValidateFileCertificateCheck: Ignore WINHTTP_CALLBACK_STATUS_REQUEST_SENT 2018-02-05T15:45:46.8595934Z INFO : ValidateFileCertificateCheck: Validate certificate against file on WINHTTP_CALLBACK_STATUS_SENDING_REQUEST 2018-02-05T15:45:46.8615922Z INFO : Subject certificate failed validation against root CA: SophosCA1 2018-02-05T15:45:46.8615922Z INFO : Subject certificate failed validation against root CA: SophosCA2 2018-02-05T15:45:46.8635910Z INFO : Subject certificate failed validation against root CA: Sophos SHA256 MCS Root CA3 2018-02-05T15:45:46.8655898Z INFO : Subject certificate failed validation against root CA: Sophos SHA256 MCS Root CA4 2018-02-05T15:45:46.8655898Z ERROR : Terminating http connection. 2018-02-05T15:45:46.8655898Z ERROR : WinHttpSendRequest failed with certificate check failure and error 12017 2018-02-05T15:45:46.8665892Z INFO : Failed to connect using proxy 'http=10.109.32.1:8080;https=10.109.32.1:8080' with error: WinHttpSendRequest failed: certificate check failure 2018-02-05T15:45:46.8665892Z INFO : Attempting to connect using proxy '' of type 'Empty Proxy'. 2018-02-05T15:45:46.8665892Z INFO : Set security protocol: 00000800 2018-02-05T15:45:46.8665892Z INFO : Opening connection to mcs-cloudstation-us-east-2.prod.hydra.sophos.com 2018-02-05T15:45:46.8665892Z INFO : Opened connection to mcs-cloudstation-us-east-2.prod.hydra.sophos.com 2018-02-05T15:45:46.8665892Z INFO : Sending request for connection confirmation through potential proxy 2018-02-05T15:45:46.8665892Z INFO : Request content size: 0 2018-02-05T15:45:54.3201144Z INFO : ValidateFileCertificateCheck: Validate certificate against file on WINHTTP_CALLBACK_STATUS_SENDING_REQUEST 2018-02-05T15:45:54.3241120Z INFO : Subject certificate failed validation against root CA: SophosCA1 2018-02-05T15:45:54.3261108Z INFO : Subject certificate failed validation against root CA: SophosCA2 2018-02-05T15:45:54.3321072Z INFO : Subject certificate failed validation against root CA: Sophos SHA256 MCS Root CA3 2018-02-05T15:45:54.3371042Z INFO : Subject certificate failed validation against root CA: Sophos SHA256 MCS Root CA4 2018-02-05T15:45:54.3381036Z ERROR : Terminating http connection. 2018-02-05T15:45:54.3391030Z ERROR : WinHttpSendRequest failed with certificate check failure and error 12017 2018-02-05T15:45:54.3391030Z INFO : Failed to connect using proxy '' with error: WinHttpSendRequest failed: certificate check failure 2018-02-05T15:45:54.3401024Z ERROR : HTTP error: Failed to connect with any proxy: certificate check failure 2018-02-05T15:45:54.3411018Z ERROR : System Property Check: ValidDeploymentInfo - FAILED 2018-02-05T15:45:54.3910718Z INFO : Running System Property Check: InstallationInProgress ... 2018-02-05T15:45:54.3910718Z INFO : System Property Check: InstallationInProgress - PASSED 2018-02-05T15:45:54.4410418Z INFO : Running System Property Check: SafeGuardEncryption ... 2018-02-05T15:45:54.4410418Z INFO : SafeGuard not installed. 2018-02-05T15:45:54.4410418Z INFO : System Property Check: SafeGuardEncryption - PASSED 2018-02-05T15:45:56.7036834Z INFO : Data folder: C:\\ProgramData\\Sophos\\AutoUpdate\\data 2018-02-05T15:45:56.7086804Z INFO : Data folder: C:\\ProgramData\\Sophos\\AutoUpdate\\data 2018-02-05T15:45:56.7086804Z INFO : Sending HTTP 'PUT' request to: prod/2018-02-05T15:45:56Z-2018-02-05T15:45:56Z-e999f0fc-dd8b-5243-a440-e464c1e98490.json 2018-02-05T15:45:56.7216726Z WARNING : WinHttpGetProxyForUrl returned: 12180 2018-02-05T15:45:56.7226720Z INFO : Discovered the system proxy http=10.109.32.1:8080;https=10.109.32.1:8080 2018-02-05T15:45:56.7226720Z INFO : Attempting to connect using proxy 'http=10.109.32.1:8080;https=10.109.32.1:8080' of type 'System'. 2018-02-05T15:45:56.7226720Z INFO : Set security protocol: 00000800 2018-02-05T15:45:56.7226720Z INFO : Opening connection to t1.sophosupd.com 2018-02-05T15:45:56.7236714Z INFO : Opened connection to t1.sophosupd.com 2018-02-05T15:45:56.7236714Z INFO : Request content size: 1584 2018-02-05T15:45:56.9595298Z INFO : Response status code: 200 2018-02-05T15:45:56.9595298Z INFO : Response data size: 0 2018-02-05T15:45:56.9605292Z INFO : trySendRequestThroughPotentialProxy returning response with status code: 200 2018-02-05T15:45:56.9605292Z INFO : Telemetry Response: 2018-02-05T15:45:56.9705232Z INFO : Cleaning up extracted files 2018-02-05T15:45:56.9875130Z ERROR : Exception: Setup program failed with code: 1
This thread was automatically locked due to age.