Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Issue: Sophos Central Admin – US-West region - Delays with the enforcement of Central policies on managed endpoints.

**Update 9** Root cause analysis KBA has been published: see knowledge base article for the latest.

**Update 8** As part of a routine database maintenance task customers may notice a few intermittent install and policy rendering failures. Please retry before contacting support. 7/17/2017 8:00 AM PST

**UPDATE 7** Some customers may notice a few intermittent install failures, please retry before contacting Sophos Support. 7/14/2017 2:00 PM PST

**UPDATE 6** Installations are being processed normally, service is restored. Please re-download installer from Central. 7/14/2017 9:00 AM PST

**UPDATE 5** Installations are now working as of July 13, 2017 19:00 UTC-5. See knowledge base article for the latest.

**UPDATE 4** New installs likely to still fail. http://centralstatus.sophos.com/#!/ has latest update. 

**UPDATE 3** System is now processing backlogs. Please see last updates here.

**UPDATE 2** Issue is ongoing, apologies. Impacts all areas within Central that rely on MCS communication between client and Central. 7/13/2017 8:00 AM PST

**UPDATE** Development has identified root cause and is working on a fix. 

Hello,

We are seeing delays with policy changes and enforcement in Sophos Central (US-West region) as well as installation failures due to inability of new endpoint installations to initially register. Our engineers are working to restore latency. Please note your endpoints remain protected. Updates will be provided on this thread.

KBA: https://community.sophos.com/kb/en-us/126477

Thank you,

Bob



This thread was automatically locked due to age.
  • Precisely! Why don't SOPHOS make known the root cause? Is it a DDoS attack on your servers? We are getting the same error here in Singapore! In the midst of a massive deployment here. We deployed just before the issue was reported in SOPHOS central status page. Were there any advance or early warning indicators of server problems?

    It is almost unthinkable of pursing synchronised security heartbeat now. What if the same happens to the heartbeat reporting? Correct me if I'm If wrong but if SOPHOS cloud reports to XG Firewall that endpoint has not reported in for 48hours aren't all our endpoints are going to get blocked by firewall as they will be marked as suspicious???

    This needs to be addressed soonest else the product will be a disaster!

  • Not exactly sure how unable to install equals Performance issues. 

  • Sophos, this is a real problem.  Not only can we NOT get some machines protected at clients' offices but we also noticed that when the updates are not coming through and heartbeat is on, the machines start getting blocked.  We have had to turn heartbeat off for the time being because all machines were being marked Red at one client's location.

    Any ETA on this?  AWS does have failover (used it before).  I am guessing it wasn't configured.

  • I just purchased an upgraded licensing from Kaspersky.  Haven't been able to deploy a single client.  I understand you can have outages, but 3 days?  .. I'm wondering if this was a mistake?

  • Can we expect a fix today? I too am holding up a deployment because of this outage. Is Sophos going to share a post mortem report with its customers? I'm deeply concerned and could use a little reassurance that this product isn't going to be a nightmare. 

  • Ditto for me. I've been entertaining thoughts about switching our organization to Cylance. 

  • Ben, this is pretty bad, but this is the first Sophos Central issue that has affected the client side since our launch in February.  It's still very concerning though.  And I would definitely like to see a detailed outage report explaining how this issue was "fixed" and exactly why we can expect this specific issue to never happen again.

  • Hi Ben,

    I will communicate out as soon as I know the fix release time. We are trying to get the fix out asap. Thank you.

  • If this is your first major issue, then you have been very lucky.  We have had numerous outages that hit our business pretty hard.  Most have been with the Cloud Web Gateway and the fact that we have a lot of cloud-based applications.