This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Web Protection in Sophos Endpoint Protection 10

Hello,

I am having a considerable problem.

I just upgraded our Sophos Enterprise Console to v10 and everything went smoothly. I also noticed the Patch Assessment and Web Protection under Policies, so once I changed the SUM to use v10 for the client machines, I went to enable both the Patch Assessment and Web Protection.

Long story short, it didn't work. Eventually I checked the 'Detail' button and the licenses did not appear for Patch Assessment or Web Protection. This confused me: why even present the option to configure patch and web at all if you don't even have the ability to use it?

So I went back and disabled them both, did a 'comply with all group policies' update and moved on.

I then went to check my email (we use Google Apps) and it kept giving me an SSL error. Then my users started complaining of the same thing. Since I essentially troubleshoot things for a living, I turned off the web protection on my local Sophos configuration because it was the last thing I changed - this then allowed me into gmail. There were no error logs for this.

Problem is, it didn't care what options I set on the Enterprise Console. Even though I disabled web protection, is refused to let go of its settings and it remained on despite restarts, updating Sophos again and even deleting the computer from the console, re-adding and re-installing. Nothing worked.

Eventually I just disabled and stopped the Sophos Web Intelligence Service, that worked. That is far from ideal though. I need to be able to manage Sophos from the console as intended. My users cannot change the setting on their local Sophos (despite tamper protection being disabled at the console policy) and I don't want to have to have a disabled service to fix this; for all I know it affects other anti-virus processes!

Sorry for the long windedness but I wanted to try and answer as many questions as possible rigth off the bat.

Any assistance??

:19817


This thread was automatically locked due to age.
Parents
  • We've had the same issues once we upgraded the clients to version 10.  With version 9.x, we don't have a problem with the Web Intelligence Service even with the Web Protection set to off and the download scanning set to As with On Access.

    Once we upgraded the clients to version 10, our end users couldn't access certain sites that used secured login.  The particular pages didn't give an error nor reported they were blocked, they just didn't load.  The end users would sit looking at a blank web page that looked like it was loading for up to 20 minutes.  Once the Web Intelligence Service was stopped, it worked perfectly fine.

    We do have access to the Web Control but it was not enabled.  And nothing changed in the AV / HIPS policy at all (which is the Web Protection).  I was told by Sophos that the Web Intelligence Service hosts the Sophos Web Protection feature in the AV / HIPS policy and not Web Control.  So I wonder what changed in the service that is causing this problem for so many people, even without the Web Control functionality available.

    They asked me to test out changing both the Web Protection and Download Scanning to OFF.  I did and it made no difference.

    :20191
Reply
  • We've had the same issues once we upgraded the clients to version 10.  With version 9.x, we don't have a problem with the Web Intelligence Service even with the Web Protection set to off and the download scanning set to As with On Access.

    Once we upgraded the clients to version 10, our end users couldn't access certain sites that used secured login.  The particular pages didn't give an error nor reported they were blocked, they just didn't load.  The end users would sit looking at a blank web page that looked like it was loading for up to 20 minutes.  Once the Web Intelligence Service was stopped, it worked perfectly fine.

    We do have access to the Web Control but it was not enabled.  And nothing changed in the AV / HIPS policy at all (which is the Web Protection).  I was told by Sophos that the Web Intelligence Service hosts the Sophos Web Protection feature in the AV / HIPS policy and not Web Control.  So I wonder what changed in the service that is causing this problem for so many people, even without the Web Control functionality available.

    They asked me to test out changing both the Web Protection and Download Scanning to OFF.  I did and it made no difference.

    :20191
Children
No Data