This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos for home use

So i was reading the KB's and EULA for providing Sophos for employees to use at home. Basically what I got out of it was that we need to provide a packaged version of Sophos that uses an update server that we host. I understand this and like it because if the employee leaves the company the AV will stop updating, and if they dont have the EM credentials they cant update directly from Sophos.

My question is what is the best practice for a global pressence? I'd rather not have public web servers all over the globe with different packges for each. for example, Im in Boston, and we have an office in Australia. I'd rather not have the home user in Australia updating against a server here in Boston.

:20153


This thread was automatically locked due to age.
Parents
  • A WebCID is just an update location accessible with the HTTP protocol. An installation package is similar to the standalone version and more or less a convenience - you can pre-define quite a lot or almost nothing at all. If you configure your WebCIDs so that they can only be accessed with a valid employee account you could build a "Boston" and an "Australia" package with the respective nearest location predefined. Users would have to enter their credentials (thus the preconfigured policy would have to allow local configuration). This assumes your webservers/WebCIDs are more or less public. VPN is one way not to expose the webservers, using a proxy is another.
    It depends on numbers of users, the ressources you have available and the level of service and security you want to achieve.

    Christian
    :20161
Reply
  • A WebCID is just an update location accessible with the HTTP protocol. An installation package is similar to the standalone version and more or less a convenience - you can pre-define quite a lot or almost nothing at all. If you configure your WebCIDs so that they can only be accessed with a valid employee account you could build a "Boston" and an "Australia" package with the respective nearest location predefined. Users would have to enter their credentials (thus the preconfigured policy would have to allow local configuration). This assumes your webservers/WebCIDs are more or less public. VPN is one way not to expose the webservers, using a proxy is another.
    It depends on numbers of users, the ressources you have available and the level of service and security you want to achieve.

    Christian
    :20161
Children
No Data