Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

[9.0044-33] Endpoint broken when importing backup

Hi All 

I have recently received my UTM 120 Rev 5 with version 9.044-33 pre installed. So i just imported my config from my existing 9.044-33. However, Endpoint isn't quite working.Initially the endpoint functionality was disabled and I couldn't enable it via GUI. So I forced enabled it via cc. Now everything is ok and the clients have been correctly identified (correct IPs/ Show online etc) BUT the following sections either haven't been properly enabled or have been broken somehow

1)Antivirus
2)Device Control

Pics attached 

As a result, device are compliant but antivirus is disabled [[:)]]

I have also tried to disable it (using "keep the data" option) and re enable it again but I am not able to enable it via GUI  and I am getting the following error (conf.log)

2012:11:23-22:44:22 ****** confd[11567]: >=========================================================================
2012:11:23-22:44:22 ****** confd[11567]: E id="3100" severity="crit" sys="System" sub="confd" name="unknown" user="wingman" srcip="192.168.2.15" facility="webadmin" client="webadmin.plx" call="epp_register_asg" msg="No proper response from SSS."
2012:11:23-22:44:22 ****** confd[11567]: 
2012:11:23-22:44:22 ****** confd[11567]:  1. Node::epp::epp_register_asg:86() /Node/epp.pm
2012:11:23-22:44:22 ****** confd[11567]:  2. (eval):1() (eval 1646)
2012:11:23-22:44:22 ****** confd[11567]:  3. sys::AUTOLOAD:353() /sys.pm
2012:11:23-22:44:22 ****** confd[11567]:  4. (eval):1() (eval 1644)
2012:11:23-22:44:22 ****** confd[11567]:  5. Astaro::RPC::server_loop:198() /rpc.pm
2012:11:23-22:44:22 ****** confd[11567]:  6. rpc::launch:50() /rpc.pm
2012:11:23-22:44:22 ****** confd[11567]:  7. main::_rpc:2160() confd.pl
2012:11:23-22:44:22 ****** confd[11567]:  8. main::top-level:394() confd.pl


Once I have re enabled it via cc I am still seeing the same issue
My subscription inc endpoint with antivirus etc [[:)]]

Any thoughts?

Thanks


This thread was automatically locked due to age.
Parents
  • Since I don't have supported for my UTM, I have decided to try my luck using cc

    I've managed to fix the issue by enabling the antivirus and DC option

    *****:/root # cc
    Confd command-line client.  Maintainer: 

    Connected to 127.0.0.1:4472, SID = DQwhRrhaiaaIXinbodGi.
    Available modes: MAIN OBJS RAW WIZARD.
    Type mode name to switch mode.
    Typing 'help' will always give some help.
    127.0.0.1 MAIN > epp                                                                                                                                     
    allowed_networks@
    certificate$
    city$
    country$
    default_endpoints_group$
    devices@
    email$
    endpoints@
    endpoints_groups@
    exceptions
    magnet_password$
    magnet_username$
    organization$
    policies
    port$
    private_key$
    registration_token$
    status
    tamper_password$
    version$
    127.0.0.1 MAIN epp > policies                                                                                                                            
    av@
    dc@
    127.0.0.1 MAIN epp/policies > dc@                                                                                                                        
       0 'REF_EppDcpAllow' [Full Access]
       1 'REF_EppDcpDeny' [Blocked All]  
       
       *****:/root # cc
    Confd command-line client.  Maintainer: 

    Connected to 127.0.0.1:4472, SID = LukZJBcrgKXGjLeJzwaW.
    Available modes: MAIN OBJS RAW WIZARD.
    Type mode name to switch mode.
    Typing 'help' will always give some help.
    127.0.0.1 MAIN > epp                                                                                                                                     
    allowed_networks@
    certificate$
    city$
    country$
    default_endpoints_group$
    devices@
    email$
    endpoints@
    endpoints_groups@
    exceptions
    magnet_password$
    magnet_username$
    organization$
    policies
    port$
    private_key$
    registration_token$
    status
    tamper_password$
    version$
    127.0.0.1 MAIN epp > status                                                                                                                              
    av$
    broker$
    dc$
    epp$
    127.0.0.1 MAIN epp/status > av$                                                                                                                          
    0     =1                                                                                                                 
    result: 1
    1
       


    127.0.0.1 MAIN epp/status/av (BOOL) > quit     
                                                                                                          
    eppConfd command-line client.  Maintainer: 

    Connected to 127.0.0.1:4472, SID = FfrVWLGrqmxorzvajMVL.
    Available modes: MAIN OBJS RAW WIZARD.
    Type mode name to switch mode.
    Typing 'help' will always give some help.
    127.0.0.1 MAIN > epp                                                                                                                                     
    allowed_networks@
    certificate$
    city$
    country$
    default_endpoints_group$
    devices@
    email$
    endpoints@
    endpoints_groups@
    exceptions
    magnet_password$
    magnet_username$
    organization$
    policies
    port$
    private_key$
    registration_token$
    status
    tamper_password$
    version$
    127.0.0.1 MAIN epp > status                                                                                                                              
    av$
    broker$
    dc$
    epp$
    127.0.0.1 MAIN epp/status > dc$                                                                                                                          
    0     =1   
        


    ********:/root # /var/mdw/scripts/epsecc restart
    :: Stopping epsecd                                                                                                                            done
    :: Starting epsecd                                                                                                                            done
    *****:/root # cc



    It seems that enabling epp via cc didn't enable all the relevant modules??

    possibly bug ? [:)]
Reply
  • Since I don't have supported for my UTM, I have decided to try my luck using cc

    I've managed to fix the issue by enabling the antivirus and DC option

    *****:/root # cc
    Confd command-line client.  Maintainer: 

    Connected to 127.0.0.1:4472, SID = DQwhRrhaiaaIXinbodGi.
    Available modes: MAIN OBJS RAW WIZARD.
    Type mode name to switch mode.
    Typing 'help' will always give some help.
    127.0.0.1 MAIN > epp                                                                                                                                     
    allowed_networks@
    certificate$
    city$
    country$
    default_endpoints_group$
    devices@
    email$
    endpoints@
    endpoints_groups@
    exceptions
    magnet_password$
    magnet_username$
    organization$
    policies
    port$
    private_key$
    registration_token$
    status
    tamper_password$
    version$
    127.0.0.1 MAIN epp > policies                                                                                                                            
    av@
    dc@
    127.0.0.1 MAIN epp/policies > dc@                                                                                                                        
       0 'REF_EppDcpAllow' [Full Access]
       1 'REF_EppDcpDeny' [Blocked All]  
       
       *****:/root # cc
    Confd command-line client.  Maintainer: 

    Connected to 127.0.0.1:4472, SID = LukZJBcrgKXGjLeJzwaW.
    Available modes: MAIN OBJS RAW WIZARD.
    Type mode name to switch mode.
    Typing 'help' will always give some help.
    127.0.0.1 MAIN > epp                                                                                                                                     
    allowed_networks@
    certificate$
    city$
    country$
    default_endpoints_group$
    devices@
    email$
    endpoints@
    endpoints_groups@
    exceptions
    magnet_password$
    magnet_username$
    organization$
    policies
    port$
    private_key$
    registration_token$
    status
    tamper_password$
    version$
    127.0.0.1 MAIN epp > status                                                                                                                              
    av$
    broker$
    dc$
    epp$
    127.0.0.1 MAIN epp/status > av$                                                                                                                          
    0     =1                                                                                                                 
    result: 1
    1
       


    127.0.0.1 MAIN epp/status/av (BOOL) > quit     
                                                                                                          
    eppConfd command-line client.  Maintainer: 

    Connected to 127.0.0.1:4472, SID = FfrVWLGrqmxorzvajMVL.
    Available modes: MAIN OBJS RAW WIZARD.
    Type mode name to switch mode.
    Typing 'help' will always give some help.
    127.0.0.1 MAIN > epp                                                                                                                                     
    allowed_networks@
    certificate$
    city$
    country$
    default_endpoints_group$
    devices@
    email$
    endpoints@
    endpoints_groups@
    exceptions
    magnet_password$
    magnet_username$
    organization$
    policies
    port$
    private_key$
    registration_token$
    status
    tamper_password$
    version$
    127.0.0.1 MAIN epp > status                                                                                                                              
    av$
    broker$
    dc$
    epp$
    127.0.0.1 MAIN epp/status > dc$                                                                                                                          
    0     =1   
        


    ********:/root # /var/mdw/scripts/epsecc restart
    :: Stopping epsecd                                                                                                                            done
    :: Starting epsecd                                                                                                                            done
    *****:/root # cc



    It seems that enabling epp via cc didn't enable all the relevant modules??

    possibly bug ? [:)]
Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?