Back when Chromium first released it's 'special' version 100, we found that Sophos blocks all attachments going to and from any website, even addresses that have been White-listed. Not only does it blocks it- it will also completely freeze up the web browser and the only way out is to task manager and force-close.
To fix this issue, we first had everyone move to Firefox which worked-until it also upgraded to 3 digits versions. Now attaching anything on all web browsers is now blocked by Sophos and still freezes the browser.
Has anyone else run into this issue? I created a ticket with Sophos back in early May when it first started, and it's still on-going. Just wondering if anyone else has seen the same thing.
Thanks so much!
- View 1 other comment
Jun 1, 2022 at 16:13 UTC
We use a little bit of everything web-browser wise, and Sophos products: Core Agent ver 2.20.13, Endpoint Advanced ver 108.11.4, & Intercept X ver 2021.3.1.12
Jun 1, 2022 at 18:50 UTC
That definitely sounds like a weird edge case. I'd first confirm that it's really a Sophos problem causing it, and if so, escalate your support case to figure out the cause.
We've just released SG UTM version 9.711. This release follows very quickly after 9.710 as it contains some important vulnerability fixes. We recommend that even if you only recently upgraded to 9.710, you should apply this fix as soon as possible.
See https://community.sophos.com/utm-firewall/b/blog/posts/utm-up2date-9-711-released for more information.
We're pleased to announce the release of Sophos Firewall OS (SFOS) v19. This new release brings some exciting new capabilities:
- Xstream SD-WAN utilizing the powerful performance of the Xstream Flow Processors in all XGS Series appliances to put IPsec traffic on the FastPath, resulting in up to a 5x VPN performance improvement
- Performance-based link selection ensures your most important traffic is routed over your best performing WAN connection, based upon latency, jitter, or packet loss
- Zero-impact transitions between WAN links ensures end-user applications are not impacted by ISP outages or disruption
- SD-WAN orchestration in Sophos Central enables you to quickly and easily set up complex site-to-site VPN overlay networks with just a few clicks
- VPN enhancements make it much easier and more intuitive to manage your site-to-site and remote-access VPN connections, including a new AWS VPC import tool
- New search capabilities allow you to quickly find exactly what you’re looking for, both in the product and in your networking objects when building rules
Current SFOS users will see v19 become available within Sophos Central and on-box management on a rolling basis over the next few weeks. If you want to get it right away, you can download it from the Licensing Portal.
Check out the video tour and read all the details over at https://news.sophos.com/en-us/2022/04/21/sophos-firewall-os-v19-is-now-available/.
On Feb. 8th, 2022, we wrote about Sophos ZTNA. We explained what ZTNA is and what specifically our Sophos ZTNA service can offer. And now, we would like to introduce to you the Sophos ZTNA Masterclass.
What is ZTNA Masterclass?
ZTNA Masterclass is a two-part webinar series. Session 1 will be
held on March 8th and Session 2 on March 9th. Below we have listed just a few
things included in these webinars:
- Introduction to zero trust concepts
- The changing mindset in IT
- Demo from the user’s point of view
- Comparison of ZTNA vs. web application firewall vs. remote access VPN
- How Sophos ZTNA works
For those interested in Sophos ZTNA Masterclass, please register here. We are looking forward to seeing you at these webinars.Edited Mar 1, 2022 at 17:26 UTC
Firewall technology is one of those ever-improving, ever-changing technologies. And now, Sophos is previewing its latest firewall innovations in OS v19, via early access.
During early access you will have the opportunity to: “provide feedback through your Sophos Firewall's feedback mechanism (top right of every screen on your Firewall).” So, help us make it better by registering here.
Here are just a few of the features which come with Sophos Firewall OS v19:
- Platform enhancements to object search, web protection, authentication
- New feature: Xstream SD-WAN profiles supporting multiple gateways
- Xstream FastPath Acceleration for IPsec
- New SD-WAN monitoring and logging tools
Here’s a visual to help us understand the new Xstream SD-WAN capabilities:
Find out more about v19 at Sophos News.
Are you participating in Sophos v19 Early Access?
Questions about Sophos Firewall OS v19?
Ask any questions and discuss below.
Hello Sophos. I hope you can help me here where our others have been unable to do so concisely.
Because we have to deal with and sell to non-technical customers we have to try and describe in simple terms what product differences are. Customers will not pay for features they do not understand and I will not sell them these products unless they are educated first.
Our yardstick for simplicity is this: will a small business owner who has no interest in or knowledge of IT systems know what they are spending their money on, provided we can explain it to them in terms they will understand?
We have seen various PDF and web based comparisons but they don't really mean anything or explain the underlying components very well.
I have a number of questions as follows:
This video https://vimeo.com/181232851 suggests that Sophos Intercept X is NOT in itself an antivirus solution (see 01:50) “works alongside central endpoint advanced protection or your own antivirus". So why would my customers want to pay for Sophos Intercept X if it is not an antivirus tool?
This page https://www.sophos.com/en-us/products/endpoint-antivirus/tech-specs suggests that Sophos Intercept X **Advanced** is an endpoint antivirus tool. Great. Where is the comparison between Sophos Intercept X and all the other Sophos Intercept X Advanced flavours?
On the subject of “Central” which is the portal used to manage endpoints, is Central free? Do all products report back to Central or is there an added cost / subscription add on?
This page https://www.sophos.com/en-us/products/endpoint-antivirus mention both EDR and XDR. I can see a product called Intercept X Advanced with XDR but struggling to find any product with the term EDR in the title. Is there one? Which products have EDR and which have XDR? Is there a learn more about EDR page? Is there a feature comparison?
Does Sophos do a software firewall for installing on endpoints or do you only offer hardware or virtualised firewalls?
- View 4 other comments
Feb 7, 2022 at 14:08 UTC
Yes, the Central cloud-based console is included with any product that is managed within it. This includes Intercept X.
We recently renamed Intercept X Advanced w/EDR to Intercept X Advanced w/XDR. This better reflects the product's capabilities and the licensing model. If you have Intercept X Advanced w/XDR, it includes the ability to connect to your Microsoft 365 environment to pull in Azure AD and O365 data. As you add other Sophos products, like Firewall, Cloud Optix, Mobile, or Email, you also gain their telemetry within the XDR platform at no additional cost.
We do not have an endpoint-based firewall. Intercept X Advanced will allow you to ensure the Windows Firewall is enabled and to enforce a few settings. In addition, Intercept X Advanced has IPS to detect and block attacks that use the network. We recommend using this in conjunction with the built-in Windows Firewall.
Hope this helps. Let me know if you have any further questions!
Feb 7, 2022 at 14:13 UTC
Thank you Maxim that is helpful.
Well I guess Sophos is no longer supplying updates for Windows 7 systems.
IT WOULD BE NICE IF SOPHOS CENTRAL MENTIONED THAT SOMEWHERE! In Central's typical brain dead fashion it still shows everything as green except for this showing up in the event log for the Win 7 systems:
"Download of WindowsCloudNextGen failed from server http:∕∕dci.sophosupd.com"
I wasted a couple of hours until I thought to do some internet searches on Windows 7 support with Sophos. I even monitor Naked Security. They could have mentioned it there as well.
- View 1 other comment
Jan 26, 2022 at 21:51 UTC
I'm sorry that you missed the communications about this. As Br@d mentioned, there were announcements within the Central console and sent via email to the account contacts starting quite some time ago. Info was also available on our retirement calendar well in advance. There is Extended support available at additional cost, though of course we strongly recommend retiring or upgrading Win 7 systems due to the OS being unsupported by Microsoft.
Jan 26, 2022 at 22:51 UTC
I am sure there probably was an email notification about this.
This is mainly a rant against Sophos Central not giving a meaningful message in this situation. If this system is no longer being supported then it ought to state that somewhere, not just fail to download the update.
We only have 1 old system that is using this so it is not really that big a deal. But, this is not the first time we have had issues with Sophos Central not giving us any meaningful information.
Hey SpiceHeads - I wanted to introduce you to Justin for Sophos!
Justin will be your new point of contact (along with ) for any and all things Sophos.
It's been a lot of fun, SpiceHeads! I know you'll be in good hands.
- View 1 other comment
Jan 13, 2022 at 10:23 UTC
Jan 13, 2022 at 13:25 UTC
- SE LABS: Named Intercept X Best Endpoint solution in 2021
- Gartner: Named Sophos as a leader in Endpoint Protection
- CRN: Sophos MTR was awarded ‘Best Managed Detection and Response’
Sophos let's try out Intercept X for free, too!
Why have you chosen Sophos for your Endpoint?
If shopping around, what questions do you have about Sophos Endpoint? Ask them below.
Do you remember those days of bulky Endpoint Protection? Dealing with a bulky endpoint right now? Well, Sophos is listening and working on making those days a thing of the past.
Intercept X Protection Is Getting Even Better. We've announced that the rollout of next-gen scanning architecture has begun: “Starting in the new year we will make a change to devices running Core agent 2.20.6 that will remove the SAV component and migrate to a new updating infrastructure, SDDS3.”
- Reduced footprint
- Smaller updates
- Fewer services including removal of:
- Sophos Anti-Virus Service
- Sophos Anti-Virus Status Reporter
- Sophos Device Control
- Sophos Web Control
- Sophos Web Filter
- Sophos Web Intelligence
New Updating URLs can be found here:
https://sdds3.sophosupd.com/ & https://sdds3.sophosupd.net
How well is your endpoint running? Share your experiences below.
In 2021, AI technologies that were recently considered cutting edge became accessible to non-expert developers, poising them to enter the lexicon of adversary deception tactics.
Here's what 2022 may look like...
More in the Sophos 2022 Threat Report
Sophos has released its new Firewall OS v18.5, which includes improvements as well as new features. We give you a sneak peek below, before you check their official announcement.
- FIPS 140-2 Level 1 Validation
- IPsec VPN Enhancements
- New Sophos Assistant
- Credential-Free Registration for Sophos Central
- Authentication Enhancements
- Certificate Enhancements
- Additional Usability and Feature Enhancements
- Troubleshooting Report Enhancement
- Xstream Flow Processor Driver update
- XGS Series Reimaging Hardware Reset on XGS 87/107
- Hardware Reset on XGS 87/107
Over the coming days, a notification will appear on your local device or Sophos Central management console when the update is available, allowing you to schedule the update at your convenience. Otherwise, you can manually download the latest firmware from MySophos and update anytime.
Have you updated already? Tested the new features so far? Put your thoughts or questions below.
Sophos Named a Gartner Peer Insights™ Customer’s Choice for Endpoint Protection Platforms
Sophos is the highest rated and most reviewed vendor and the only vendor named a Customers’ Choice in all four global deployment regions!
With Feature Highlights such as:
-Endpoint Detection and Response (EDR)
-Extended Detection and Response (XDR)
-Deep Learning Technology
-Managed Threat Response
See our official announcement here!
If you already use Sophos Endpoint products, what has been your favorite and most used feature?
If new to Sophos, what questions do you have and also, what features are you interested in most?
- View 1 other comment
Dec 7, 2021 at 17:03 UTC
I recently retired but had been a long time Sophos customer at our not-for-profit organization. I had previously worked at a manufacturer that employed that other product whose name also started with an "S". We dumped it because it seriously impacted PC performance and went with a different product whose name always reminded me of hamburgers. We promptly got hit by a virus when a salesman plugged in his infected laptop. When I took the manager's job at the NFP I inherited that other "S" product and again could see the performance impact. When the renewal date approached I began shopping around eventually feeling very impressed by the Sophos presentation and evaluation period.
Later I discovered the email filter appliance and then the web filter appliance and we officially counted ourselves as a Sophos shop. Later we found that with the package we had we were also entitled to the disk encryption and Mobile Device Manager promptly incorporating them into our infrastructure.
And finally, when our firewall/VPN network was declared obsolete and vulnerable we went back to Sophos and implemented roughly 20 firewall appliances for the main location and all the satellite locations. A neat benefit of that is almost all of our previous individual licenses could all be rolled into these devices.
Normally I am reluctant to rely on a single vendor for so much of the infrastructure but after years of reliable performance I had no qualms about centralizing it in a convenient single console for management. It surely reduced my workload and I was good with that, too.
Dec 7, 2021 at 17:53 UTC
Thanks for sharing your experiences, & !
What's coming next for network security?
Sophos Firewall OS v19 with Xstream SD-WAN
Watch the detailed video with Chris McCormack and Barbara Hudson to learn more!
Nov 29, 2021 at 15:44 UTC
Multipath and UTM migration available in OS19 ?
Nov 29, 2021 at 15:51 UTC
Yeah, sure, keep holding your breath 😂🤣😅
Multipath and UTM migration available in OS19 ?
I can't fin any link to register on this page.
- View 3 other comments
Nov 24, 2021 at 16:32 UTC
Hmm. If it's giving you a certificate/security warning, perhaps there's a proxy or firewall in play? If you're able to get more info about the security warning (certificate info, etc.), maybe share it so we can get a better idea of what's going on.
Nov 24, 2021 at 18:28 UTC
Sign up using a mobile device
Customize Header Background
Customize Page CSS
This is the CSS that will be included for all tabs for this vendor page.