If a new machine is added into the network, is it possible to have Sophos automatically deployed to it without human intervention at all via some sort of tasks or something?
This thread was automatically locked due to age.
If a new machine is added into the network, is it possible to have Sophos automatically deployed to it without human intervention at all via some sort of tasks or something?
If you are using AD please take a look at Enterprise Console: using Active Directory to deploy protection automatically and the Enterprise Console Help (4.7). This will though "mirror" your AD structure, i.e. computers in the same OU will use the same policies.
If you're using AD but need a different grouping you can still use a GPO (already discussed here) to automatically deploy Sophos.
Otherwise you will have to manually search for the computers anyway.
NAC would also an option I think but for "just" installing SESC it's an overkill.
Christian
there are two issues on the suggestions you have provided.
1. Will the AD mirroring technique allows the installation of Sophos Endpoint Security even without any human intervention? (no right-click Protect Computer)?
2. Will GPO deployment make the node report to the right AD group after Sophos has been installed?
Thanks!
1. If you use sync with automatic protection the install is automatically pushed to a new computer (note that it is not retried though)
2. You can use the -G parameter with setup.exe. If you don't use it or specify an incorrect value) the computer will apeear in the Unassigned group.
Christian