This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos server now a Domain Controller

Hi,

I have promoted one of my servers to a domain controllers which also is my Sophos Enterprise, then demoted it again because I could not get Sophos to run.

I've got the Sophos running again by creating the below local groups, and adding myself in them:

Sophos Full Administrators

Sophos Console Administrators

The problem is no PC's are updating(error - Could not contact server), do I need to create more local groups and add domain users into it?

:13681


This thread was automatically locked due to age.
Parents
  • Hello damexi,

    while you can run Sophos on a DC I'd avoid it if there are other servers available. Anyway - by default on a member server the account used in the updating policies is the local user SERVER\SophosUpdateMgr which is no longer accessible after promotion. The required actions depend on your plans with this server - whether you really want/need to run SEC on a DC (BTW: where is your SQL database?) or stick with a member server.

    Christian

    :13889
Reply
  • Hello damexi,

    while you can run Sophos on a DC I'd avoid it if there are other servers available. Anyway - by default on a member server the account used in the updating policies is the local user SERVER\SophosUpdateMgr which is no longer accessible after promotion. The required actions depend on your plans with this server - whether you really want/need to run SEC on a DC (BTW: where is your SQL database?) or stick with a member server.

    Christian

    :13889
Children
No Data