Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos Central - (client firewall?)

I have just purchased the "Sophos Central - Endpoint Advanced" and cannot see an option to configure a software firewall;

Has this been dropped from Sophos Central?
And how is everyone else managing client firewalls?

tia ..



This thread was automatically locked due to age.
  • Hi,

    It certainly isn't available via Central at this time.

    I would suspect the most obvious thing would be to use GPO to manage the Windows firewall.  At the time Sophos Client Firewall was introduced, the Windows firewall wasn't very good. I think we're talking XP pre SP2.

    I would expect that it would be more likely we would see a way to configure the Windows firewall through Central (in the same way as you can manage Bitlocker) but then that's a lot of front end to manage the settings that Group Policy provides.

    Regards,

    Jak

  • Thanks Jak, I did get confirmation form Sophos that the firewall has been dropped, I think that it would be a great idea if Sophos were to implement some type of management for the windows firewall, at least so that you are aware of the status and that it is active on the client machines, GPO can sometimes be unreliable..

    Regards,

  • We did a POC of Sophos with SEC and Endpoint Advanced. We saw a lot of value in the Firewall and when we decided to try out Central we were saddened to see that they dropped the firewall from Central. It really helped us to see what traffic the device generated. I wonder if they entrust the Windows 10 firewall to be on par.

  • How do you uninstall Sophos Client Firewall??

  • new feature: Sophos Central - Windows Firewall Control connection types

    I was wondering if anyone has tried this out yet with roaming vpn users. For example if the user is on a public network such as cellular internet with a laptop connected to a corporate vpn via Cisco AnyConnect or the Sophos VPN client does the sophos windows firewall management behave well and still permit management traffic over the vpn subnet while blocking inbound public traffic?

  • Hi Everyone,

    • Windows Endpoint Firewall Control feature is available for Endpoint Standard/Advanced and Server Standard/Advanced licenses from 05th June 2018.
    • It can be used to monitor and can manage the state of Windows Firewall on most Windows desktops and servers.
    • In central dashboard Under Endpoint Protection > Policies and Server Protection > Policies, a new policy for the Windows Firewall is added.
    • The following additional ‘Setting’ can be found in the local Sophos Endpoint interface.

          

    More details can be found in the KBA Windows Firewall Control connection types and Sophos Central - Windows GPO settings

  • Hi Gowtham

     

    With Sophos Central Endpoint it is possible to view all the connections of the Windows Firewall?, also, I have a computer with no GPO firewall policy activated, when a have selected on Windows Firewall Policy on Sophos Central, the option " Block all", It is not work, all the connectiones are allowed anyway.

     

    Can U help to undertand the Block All and Block All With Exceptions please?

  • Hi  

    You can monitor and configure Windows Firewall (and monitor other registered firewalls) on your computers and servers using a Windows Firewall policy. For more details on block all connection types, please check this article, it should help.