This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos Data Protection - Encryption from Enterprise Console

Hi all,

I'm assuming this is the correct forum to post this (and not the Safeguard one) since I'm using the full disk encryption option available in Enterprise Console...  I have two (hopefully) short questions regarding this that I couldn't find the answer to anywhere, although it's possible I just amn't looking hard enough.

1. Is there any way to configure the number of failed login attempts allowed before POA completely locks everything out?  Currently it seems to do this after one failed attempt, which is proving more hassle than it's worth.  In Safeguard Easy this was available under an authentication policy, but I can't see it anywhere in Enterprise Console.

2. After unlocking a machine that had the issue above, it rebooted and locked itself again.  I'm now stuck in a state where POA appears to have not only locked itself, but also cleared every available setting.  When the machine starts up there are no available logon options on the lock screen as shown here: http://imgur.com/ICX2Mrc - when I click the Recovery button, that's also blank: http://imgur.com/5aMug97 .  Does anyone have any idea how I can get this laptop back up and running again?  I have looked through manuals and knowledgebase articles, but possibly not in the correct place.

Many thanks for any advice!

:48010


This thread was automatically locked due to age.
  • Hello RBGE,

    I'm assuming this is the correct forum

    yes and no ... You can't define the number of failed logon attempts (if there is a limit I haven't hit it during testing). It should definitely not lock itself after one attempt, instead it should increase the delay with every failed attempt.

    it rebooted and locked itself again ... POA appears to have not only locked itself

    I'm not an expert, to me this sounds like a cache corruption (are there any events for this client in SEC?) - at least  I find some similarities in HELP! Challenge/Response buttons grayed out and Workstation is locked, no challenge code. Doesn't look like the machine can be recovered in this case, only the data (and with some effort: Recovering data from a Sophos Disk Encryption 5.61 Client ...).

    This is just a guess though - maybe it's better to repost to the SafeGuard board (or call Support).

    Christian

    :48014
  • Thanks QC - your suggestion of a corrupt cache does appear to be correct (although I'm not sure what suddenly caused this).  I'm no stranger to the recovery process as I've had to use it quite a bit in Safeguard Easy, but it certainly isn't the easiest or most enjoyable way to spend an afternoon!

    Looks like I may just have to go for the restore data then factory reset option.  I'm not sure what caused the 'locking after 1 failed logon attempt' issue either, as other machines seem to be fine.  This is the first fresh install though - the others have been migrated from SGE, so may well have imported the config.

    :48020