This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SEC - "Awaiting Policy Transfer" randomly appearing

SEC Version: 4.7.0.13

Client Version: 9.7

----------------------------------------

Hey,

this has been something on going for sometime now and I was hoping I might be able to find a permanent solution.

Basically what happens is I get random computers that one day decide to report the message "Awaiting Policy Transfer". Rebooting the machines does not correct the message, forcing the machine to do an update does not correct the message either. So far the only thing that seems to work is to push the client back down to the computer. The message is cleared and then sometimes with the same machine it reappears, other times it does not.

It is not specific to any one computer, it just seems to be completely random with no rhyme nor reason to why it appears.

I have done the stopping and starting of the "Sophos Message Router" service test to see if the clients are communicating back to the SEC. When I stop the service, I do receive a "red x" over the client in question and the "x" goes away when I start the service back up.

The message doesn't seem to ever clear itself once it appears, the number of clients that report this message seems to climb unless I push the client back down to the computer.

I am going to continue to monitor to see if the clients eventually do correct themselves, but I suspect they do not.

Does anyone else have this issue or have you run into this issue? If so, how did you correct it?

Any advice would be great!

Thank you

:16273


This thread was automatically locked due to age.
Parents
  • Hi Jak,

    This has been a very informative topic, and I've learn't a great deal.  I also have been getting these messages, and couldn't figure out why, especially since machines had reported in!  Now it all makes sense.  I wish the Sophos Support Team could have explained that, rather than just telling me to comply with the necessary policy each time!

    Sorry to hijack the topic, and slightly change it's direction (I hope you don't mind), though my next question does have similar reference, and you seem very knowledgeable in this area.

    I have certain "IT Staff" on my network, who are part of our Networks Division, and thus are required to be in the local Sophos Administrators group, in order to temporarily disable the firewall, etc, for testing purposes.  Unfortunately they keep forgeting to turn it back on.  As a result, I do occassional checks within SEC to find that their machines differ from policy, and notice the "firewall enable" is set to no.  I naturally tell those machines to comply with policy, and sure enough everything changes as it should.

    I asked Sophos Support, if there was anyway to change the SEC setup, so that if any machine differs from policy, after a set period of time, that machine would recomply.  That way, my Networks Team could make changes for testing purposes, and should they forget to switch back, their machines would do automatically.

    Naturally Sophos Support said there wasn't any feature, however I was wondering if you know of any?

    Kind Regards,

    Jon

    :16313
Reply
  • Hi Jak,

    This has been a very informative topic, and I've learn't a great deal.  I also have been getting these messages, and couldn't figure out why, especially since machines had reported in!  Now it all makes sense.  I wish the Sophos Support Team could have explained that, rather than just telling me to comply with the necessary policy each time!

    Sorry to hijack the topic, and slightly change it's direction (I hope you don't mind), though my next question does have similar reference, and you seem very knowledgeable in this area.

    I have certain "IT Staff" on my network, who are part of our Networks Division, and thus are required to be in the local Sophos Administrators group, in order to temporarily disable the firewall, etc, for testing purposes.  Unfortunately they keep forgeting to turn it back on.  As a result, I do occassional checks within SEC to find that their machines differ from policy, and notice the "firewall enable" is set to no.  I naturally tell those machines to comply with policy, and sure enough everything changes as it should.

    I asked Sophos Support, if there was anyway to change the SEC setup, so that if any machine differs from policy, after a set period of time, that machine would recomply.  That way, my Networks Team could make changes for testing purposes, and should they forget to switch back, their machines would do automatically.

    Naturally Sophos Support said there wasn't any feature, however I was wondering if you know of any?

    Kind Regards,

    Jon

    :16313
Children
No Data