This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Connectivity check to Sophos

Sorry if this is a newbie question, but, well, I am a newbie to Sophos. I am running Enterprise Console behind several firewalls, and I am not sure that I am connecting properly to the Sophos anti-virus update servers.

  1. Do I need to be able to ping the sites before I can update properly? (Support told me they were dci.sophosupd.com and dci.sophosupd.net. I get 192.124.233.10 and 192.124.233.17 for the addresses.)
  2. Do I need to be able to traceroute to these sites before I can update properly?
  3. Is there a way that I can check the date and/or version of the virus information that I have to know how up-to-date it is?

Thanks.

:51248


This thread was automatically locked due to age.
  • Hi,

    1. Not especially, it's just HTTP updating so as long as the SophosUpdateMgr.exe process (component of Sophos Update Manager (SUM)) can make a HTTP request to the update locations (or via a proxy, etc.) then it should be fine.  The IP addresses of the addresses will/can change as it's just Akamai hosting.

    2. No. I wouldn't say so.

    3. Other than checking:
    http://www.sophos.com/en-us/support/knowledgebase/11846.aspx
    You could check that the files are being brought down and have a recent time stamp.  

    SUM downloads files to the Warehouse directory (e.g.  C:\ProgramData\Sophos\Update Manager\Update Manager\Warehouse\) as .dat files, and then distributes them to the Update locations (e.g. C:\ProgramData\Sophos\Update Manager\Update Manager\CIDs\ which is shared out for the clients as \\server\sophosupdate\CIDs\

    The Sxxx directories represent the subscriptions.  If you only have the 1 Recommended SUM subscription, then you will just have a S000.  Beneath that is the software packages you subscribe to, i.e. SAV, SCF, Etc...

    Hope it helps.

    Regards,

    Jak

    :51258