Sophos Firewall Group Policy
Give it a name like sophos connect installation via gpo and click ok.
Sophos firewall group policy. The sophos connect provisioning file pro allows you to provision an ssl connection with xg firewall. Devices will report their firewall status to sophos central. To detach a firewall rule from a rule group click and click detach. Things we had to accomplish add the user to a local group sophos administrator giving the ability to uninstall which sophos locked to the group shutdown sophos av uninstall the firewall start sophos av and ensure windows firewall took over.
Under add to group select the rule group to move the firewall rule to. Under the summary tab scroll down to the windows firewall status section. In sophos central access. To edit an existing firewall rule group click edit the information and then click update.
These will make your life vastly easier dramatically reducing the time it takes to roll out changes across multiple firewalls. Open group policy management to create a gpo in the domain in which the end users computers shall receive the sophosconnect msi file. We recommend creating a new group policy object as this keeps the changes made for sophos deployment separate from any existing policies. Open the policy s settings tab and configure it as described below.
Create a windows firewall policy. If you re managing multiple firewalls you will love the new group firewall management features in sophos central. Click on a computer or server. The following should be allowed through your windows firewall.
Endpoint protection computers. You can edit the name description rule type source or destination zone. To add a firewall rule to an existing rule group click. The firewall supports l2tp as defined in rfc 3931.
Make sure the policy is enabled. File and printer sharing smb in remote scheduled tasks management rpc. This is the default option. L2tp remote access the layer two tunneling protocol l2tp enables you to provide connections to your network through private tunnels over the internet.
To determine if a windows endpoint or server has a windows firewall managed by group policy. In the group policy management editor page add a new software installation package. Server protection servers. This article explains the correct setup for microsoft windows server radius authentication and the sophos firewall.
See create or edit a policy.