I know there have been discussions on this subject in the past, but I would just like to add my voice to the chorus. There needs to be some way of reinstalling Sophos Central, much like you were able to in the past with SEC, without having to boot the computer into safe mode or involve the end-user.
I understand that antivirus needs to difficult to modify and uninstall. But too often, Sophos Central will fail to get an update, or fail to install completely, or services will fail to start, and a good bit of the time disabling tamper protection from the console doesn't work necessitating a trip by a technician to the user's computer to boot it into safe mode in order to manually disable tamper protection. Then reboot normally and reinstall Sophos Central, delete warehouse/update files, or start/restart services, etc. None of which can be done with tamper protection enabled.
We push the installer out with group policy so that any computer that joins our domain gets checked for Sophos, and the installer will run if it's not installed. However, the batch file, as provided by Sophos, only checks for an installed file and doesn't run if it exists. Well, sometimes that file exists and the install is bad for some other reason. It wouldn't matter if it could re-run though, as you can't reinstall over a bad install without disabling tamper protection.
Which, of course, you may not be able to do without a trip to the user's computer. A major hassle when your users and help desk technicians are just on a different floor, but impossible with them geographically scattered.
There just has to be some way going forward to "fix" the installation that doesn't require user intervention.
This thread was automatically locked due to age.