?
Solved

Sophos UTM Endpoint VPN

Posted on 2016-10-25
2
Medium Priority
?
122 Views
Last Modified: 2016-10-31
We use Sophos to secure our network via VPN, firewall, and Anti-virus.

We need to allow contractors to connect to our network.  We have already set policy that the contractor must have Sophos antivirus client installed on their computer (they can spin up a virtual machine if they need to) and we have set policy that all clients must be Windows 7 or higher and they must use the Sophos VPN client to connect.

Question:  When a contractor connects via Sophos VPN client, how can we determine that their computer has the antivirus installed and is up-to-date?  Also, how about patches?  

Note:  Contractor computers are NOT domain members.  They are stand-alone.

JamesNT
0
Comment
Question by:JamesNT
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 24

Accepted Solution

by:
Dirk Kotte earned 2000 total points
ID: 41866692
there is no option for endpoint comliance-scan within sophos VPN (IPSec or SSL).
if contractor don't need full filesystem/database access you should restrict rights for VPN-Users strongly.
we use controlled "jumphosts" to allow access for external contractors.
If only RDP or Citrix is necessary you have only 1-2 ports and nearly no risk.
1
 

Author Closing Comment

by:JamesNT
ID: 41866821
That's what I was thinking.  I'm going to attempt to push for a Remote Desktop Services Gateway this week.

James
0

Featured Post

Building an interactive eFuture classroom

Watch and learn how ATEN provided a total control system solution including seamless switching matrix switch, HDBaseT extenders, PDU, lighting control to build an interactive eFuture classroom.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Let’s list some of the technologies that enable smooth teleworking. 
When you start your Windows 10 PC and got an "Operating system not found" error or just saw  "Auto repair for startup" or a blinking cursor with black screen. A loop for Auto repair will start but fix nothing.  You will be panic as there are no back…
Windows 8 comes with a dramatically different user interface known as Metro. Notably missing from the new interface is a Start button and Start Menu. Many users do not like it, much preferring the interface of earlier versions — Windows 7, Windows X…
This Micro Tutorial will go in depth within Systems and Security in Windows 7 and will go into detail regarding Action Center, Windows Firewall, System, etc. This will be demonstrated using Windows 7 operating system.
Suggested Courses
Course of the Month11 days, 20 hours left to enroll

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question