Solved

Sophos UTM Endpoint VPN

Posted on 2016-10-25
2
79 Views
Last Modified: 2016-10-31
We use Sophos to secure our network via VPN, firewall, and Anti-virus.

We need to allow contractors to connect to our network.  We have already set policy that the contractor must have Sophos antivirus client installed on their computer (they can spin up a virtual machine if they need to) and we have set policy that all clients must be Windows 7 or higher and they must use the Sophos VPN client to connect.

Question:  When a contractor connects via Sophos VPN client, how can we determine that their computer has the antivirus installed and is up-to-date?  Also, how about patches?  

Note:  Contractor computers are NOT domain members.  They are stand-alone.

JamesNT
0
Comment
Question by:JamesNT
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 24

Accepted Solution

by:
Dirk Kotte earned 500 total points
ID: 41866692
there is no option for endpoint comliance-scan within sophos VPN (IPSec or SSL).
if contractor don't need full filesystem/database access you should restrict rights for VPN-Users strongly.
we use controlled "jumphosts" to allow access for external contractors.
If only RDP or Citrix is necessary you have only 1-2 ports and nearly no risk.
1
 

Author Closing Comment

by:JamesNT
ID: 41866821
That's what I was thinking.  I'm going to attempt to push for a Remote Desktop Services Gateway this week.

James
0

Featured Post

Now Available: Firebox Cloud for AWS and FireboxV

Firebox Cloud brings the protection of WatchGuard’s leading Firebox UTM appliances to public cloud environments. It enables organizations to extend their security perimeter to protect business-critical assets in Amazon Web Services (AWS).

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

New Windows 7 Installations take days for Windows-Updates to show up and install. This can easily be fixed. I have finally decided to write an article because this seems to get asked several times a day lately. This Article and the Links apply to…
When you start your Windows 10 PC and got an "Operating system not found" error or just saw  "Auto repair for startup" or a blinking cursor with black screen. A loop for Auto repair will start but fix nothing.  You will be panic as there are no back…
In this Micro Tutorial viewers will learn how to use Boot Corrector from Paragon Rescue Kit Free to identify and fix the boot problems of Windows 7/8/2012R2 etc. As an example is used Windows 2012R2 which lost its active partition flag (often happen…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

749 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question