Jump to content

Recommended Posts

Posted (edited)
So are the clients set to do local and network scanning?

 

Client setup....for my PC

 

[ATTACH=CONFIG]40495[/ATTACH]Image2.jpg

Image1.jpg

Edited by kennysarmy
  • Thanks 2
Posted

Thanks for the help so far.

 

I think I might approach this slightly differently. I would like an automatic weekly scan of both my clients and servers. If I was to have local and network scanning enabled on my clients then each week all the clients would scan themselves and the network drives all at about the same time which is probably not great, so for the moment I will disable network scanning and let each system (client / server) monitor itself, unless anyone thinks that is a bad idea?

  • 2 weeks later...
Posted

Howdy,

 

I have been reading through your thread for the Sophos deployment hoping to get some guidance. We too have recently been forced to move from McAfee to Sophos. Did you find a way to deploy the client efficiently? I am new to this type of IT as my network manager has left, leaving me to pick up from where he left off and there are huge knowledge gaps.

 

Any help would be appreciated as county aren't willing to help me sort it.

 

Thank you

Posted

Not sure if it works with the Cloud version (as we are on the on-premises Enterprise Console) but you can create a pre-configured EXE which has the update server etc pre-set, we run this at the end of our MDT task sequences (but you could also just run it by a startup script or something). as we found that while the AD sync usually took care of new machines (apart from when it tried to install at the same time as windows updates and failed), we usually ended up forgetting to install on PCs we had just imaged where the AD account already existed.

 

Otherwise if you are using the Enterprise Console and just want to push it out to existing clients, let it sync with AD to load in all the computers then just manually select -> right click -> Protect at a time you know the PCs aren't busy doing other actions that tie up Windows Installer service.

 

It's called the Sophos Deployment Packager Tool: https://community.sophos.com/kb/pl-pl/67504

Posted
Thank you Katy. We have the cloud version and clearly i'm missing something (probably something really obvious). There is an AD sync tool that can be downloaded which when run brings across all the users accounts, security groups etc but no computers. With McAfee you were able to run an ad sync and it mirrored all of your pcs from AD. That's ultimately what i'm looking for.
Posted
Hm no idea then, on the on-site version the AD sync only brings across computers (as it doesn't need to know users/groups). Best bet would be contact Sophos as they are usually really good with support.
  • Thanks 1
Posted

I just use the enterprise console, sync with AD, auto install.

 

Make sure you configure the sophos firewall product to be disabled. Have enough distribution shares if it's a very large/multi site school. Configure teacher laptops to also get updates from sophos website when at home.

Posted
I just use the enterprise console, sync with AD, auto install.

 

Make sure you configure the sophos firewall product to be disabled. Have enough distribution shares if it's a very large/multi site school. Configure teacher laptops to also get updates from sophos website when at home.

 

+1 for that

Posted
Configure teacher laptops to also get updates from sophos website when at home.

 

You can also create your own update source hosted via IIS, then configure it as the secondary update source - useful if you are in a trust with centralised Sophos licensing and for some reason can't pre-set the sophos update credentials.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...