Do you recognize a good idea when you see one? We want to hear from you!
Header Image

UTM (Formerly ASG) Feature Requests

Do you have an idea for Sophos UTM? Do you recognize a good idea when you see one? We want to hear from you!

I suggest you ...

You've used all your votes and won't be able to post a new idea, but you can still search and comment on existing ideas.

There are two ways to get more votes:

  • When an admin closes an idea you've voted on, you'll get your votes back from that idea.
  • You can remove your votes from an open idea you support.
  • To see ideas you have already voted on, select the "My feedback" filter and select "My open ideas".
(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can vote and comment on it.

If it doesn't exist, you can post your idea so others can vote on it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  1. NAC/Endpoint-Control of remote access users

    Normally you can only check username and password (in extension a certificate ) during remote access authentication. There is no ability for checking the environment of the user, f.e. what device is he using, AV running and up-to-date, Firewall on, not using special applications, etc. .
    There must be a applet used during clientless SSL-VPN access for checking the user environment against important security functions and after checking the user has to match into a security zone. Depending on which zone the user lands, there are different rules working for access the internal site.

    169 votes
    Vote
    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • facebook
    • google
      Password icon
      I agree to the terms of service
      Signed in as (Sign out)
      You have left! (?) (thinking…)
      Under Review  ·  9 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
    • UTM Endpoint: Cache updates for Endpoint clients on UTM

      UTMs do not cache updates for endpoints so every endpoint does it's own fetch from liveconnect. This is very bandwidth inefficient during maintenance releases/updates.

      55 votes
      Vote
      Sign in
      Check!
      (thinking…)
      Reset
      or sign in with
      • facebook
      • google
        Password icon
        I agree to the terms of service
        Signed in as (Sign out)
        You have left! (?) (thinking…)
        0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
      • Endpoint: Push installation to computers

        One thing that would be VERY nice to see is the ability for the UTM to connect to Active Directory / Open Directory / E-Directory and scan to see what computers do & don't have Endpoint Protection on them then allow you to push the endpoint install to the client PC or remove from a client PC directly from the web interface on the UTM

        52 votes
        Vote
        Sign in
        Check!
        (thinking…)
        Reset
        or sign in with
        • facebook
        • google
          Password icon
          I agree to the terms of service
          Signed in as (Sign out)
          You have left! (?) (thinking…)
          0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
        • add the Sophos Mobile Security Products to the Endpoint Security at UTM 9

          Would like to control mobile devices (Encryption/ AV/ Remote-Lockdown) from UTM9 Web Admin

          33 votes
          Vote
          Sign in
          Check!
          (thinking…)
          Reset
          or sign in with
          • facebook
          • google
            Password icon
            I agree to the terms of service
            Signed in as (Sign out)
            You have left! (?) (thinking…)
            0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
          • Endpoint: Patch Management

            I see that Sophos has a Patch Assessment tool that scans PCs on the network and alerts you to outdated Programs. Add this into your UTM Endpoint please.

            26 votes
            Vote
            Sign in
            Check!
            (thinking…)
            Reset
            or sign in with
            • facebook
            • google
              Password icon
              I agree to the terms of service
              Signed in as (Sign out)
              You have left! (?) (thinking…)
              1 comment  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
            • Endpoint Protection: Add Sophos Application Control

              Include sophos endpoint style category application controls in the management features of UTM.
              This will complement network based application detection and control.

              18 votes
              Vote
              Sign in
              Check!
              (thinking…)
              Reset
              or sign in with
              • facebook
              • google
                Password icon
                I agree to the terms of service
                Signed in as (Sign out)
                You have left! (?) (thinking…)
                2 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
              • Endpoint: Display infected system overview on dashboard

                Dear Astaro team

                We do not have any option which will show the graphical logs of the system which is infected by virus on the UTM dash Board or on Logs

                17 votes
                Vote
                Sign in
                Check!
                (thinking…)
                Reset
                or sign in with
                • facebook
                • google
                  Password icon
                  I agree to the terms of service
                  Signed in as (Sign out)
                  You have left! (?) (thinking…)
                  0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                • Linux Endpoint Protection Client

                  Sophos Antivirus supports multiple Linux distributions. I recommend adding this client to the UTM Endpoint list so we can protect, manage and monitor security on our Linux servers and desktops

                  14 votes
                  Vote
                  Sign in
                  Check!
                  (thinking…)
                  Reset
                  or sign in with
                  • facebook
                  • google
                    Password icon
                    I agree to the terms of service
                    Signed in as (Sign out)
                    You have left! (?) (thinking…)
                    0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                  • Endpoint Tamper Protection Hardening

                    Can endpoint tamper protection be hardened in a way that the user (even administrator) does not have the ability to disable Sophos services, rename the Sophos directory structure, or even delete Sophos registry keys.

                    All this will add optimal protection against tampering by not allowing anyone to uninstall Sophos, even with administrative privileges.

                    13 votes
                    Vote
                    Sign in
                    Check!
                    (thinking…)
                    Reset
                    or sign in with
                    • facebook
                    • google
                      Password icon
                      I agree to the terms of service
                      Signed in as (Sign out)
                      You have left! (?) (thinking…)
                      2 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                    • Mobile devices tracking agent

                      After this weekend my parents HP Laptop and Mac Powerbook got stolen, I thought it would be a nice feature to have some tracking agent installed on these devices (or Android / iOS, Blackberry phones, iPads etc.) to track down the actual position where the device was connected last time to internet (and all other helping informations to find the device). A solution comparable to Preyproject ( http://preyproject.com/ ) which is controlled by ASG would be nice.

                      10 votes
                      Vote
                      Sign in
                      Check!
                      (thinking…)
                      Reset
                      or sign in with
                      • facebook
                      • google
                        Password icon
                        I agree to the terms of service
                        Signed in as (Sign out)
                        You have left! (?) (thinking…)
                        1 comment  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                      • Add Endpoint Protection for Mac

                        Have the ability to have Macintosh Endpoint Protection Clients

                        10 votes
                        Vote
                        Sign in
                        Check!
                        (thinking…)
                        Reset
                        or sign in with
                        • facebook
                        • google
                          Password icon
                          I agree to the terms of service
                          Signed in as (Sign out)
                          You have left! (?) (thinking…)
                          0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                        • Endpoint: Scan USB Dives when plugged in

                          Force scan USB's when first plugged into a machine, not just when first accessed. This is required to meet SOP's

                          10 votes
                          Vote
                          Sign in
                          Check!
                          (thinking…)
                          Reset
                          or sign in with
                          • facebook
                          • google
                            Password icon
                            I agree to the terms of service
                            Signed in as (Sign out)
                            You have left! (?) (thinking…)
                            0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                          • Endpoint Protection: Activity Report

                            Client requesting the ability to create a recurring report (emailed daily/weekly) that lists all the systems by last update, with errors, and/ or those that differ from policy. Should be able to create a report on any tab or policy that exists in the product based on computer name, policy or container name

                            9 votes
                            Vote
                            Sign in
                            Check!
                            (thinking…)
                            Reset
                            or sign in with
                            • facebook
                            • google
                              Password icon
                              I agree to the terms of service
                              Signed in as (Sign out)
                              You have left! (?) (thinking…)
                              1 comment  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                            • SAV on servers: templates for exceptions

                              The customer asked if it is possible to get standard lists with exceptions which they can import into the Anti-Virus and HIPS policy. Like exceptions for Exchange, Sharepoint oder Lync.

                              7 votes
                              Vote
                              Sign in
                              Check!
                              (thinking…)
                              Reset
                              or sign in with
                              • facebook
                              • google
                                Password icon
                                I agree to the terms of service
                                Signed in as (Sign out)
                                You have left! (?) (thinking…)
                                1 comment  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                              • Temporarily disable On-Access-Scans

                                It would be great to have the ability to disable the On-Access-Scans for a certain amount of time on the client.
                                E.g. via right click on the systray icon:
                                "Disable On-Access-Scans..."
                                "for 1 hour"
                                "until reboot"

                                This should, of course, only be possible for admins, perhaps only after entering the tamper protection password!?

                                7 votes
                                Vote
                                Sign in
                                Check!
                                (thinking…)
                                Reset
                                or sign in with
                                • facebook
                                • google
                                  Password icon
                                  I agree to the terms of service
                                  Signed in as (Sign out)
                                  You have left! (?) (thinking…)
                                  0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                                • Single-File Virus Scanning

                                  i think it would be nice to have a possibility to upload files somewhere and test them with the built-in virus-scanners.
                                  i had the idea to use something like shared folders (dropbox/ubuntu one etc. ) to upload those files.

                                  6 votes
                                  Vote
                                  Sign in
                                  Check!
                                  (thinking…)
                                  Reset
                                  or sign in with
                                  • facebook
                                  • google
                                    Password icon
                                    I agree to the terms of service
                                    Signed in as (Sign out)
                                    You have left! (?) (thinking…)
                                    0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                                  • SAV: scan before files are written to disk

                                    Our customer asked if can implement a scan that scans files before they are written to the disk, so that files are intercepted before they can do any harm.

                                    4 votes
                                    Vote
                                    Sign in
                                    Check!
                                    (thinking…)
                                    Reset
                                    or sign in with
                                    • facebook
                                    • google
                                      Password icon
                                      I agree to the terms of service
                                      Signed in as (Sign out)
                                      You have left! (?) (thinking…)
                                      1 comment  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                                    • Application Control For UTM Endpoint

                                      Would like to see application control protection in the UTM Endpoint. To block certain files and applications form running and be alerted.

                                      4 votes
                                      Vote
                                      Sign in
                                      Check!
                                      (thinking…)
                                      Reset
                                      or sign in with
                                      • facebook
                                      • google
                                        Password icon
                                        I agree to the terms of service
                                        Signed in as (Sign out)
                                        You have left! (?) (thinking…)
                                        0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                                      • Firewall Events : Filter with computer name

                                        ADD the category "Computer name" in Firewall Events in order to filter events with computer name.

                                        3 votes
                                        Vote
                                        Sign in
                                        Check!
                                        (thinking…)
                                        Reset
                                        or sign in with
                                        • facebook
                                        • google
                                          Password icon
                                          I agree to the terms of service
                                          Signed in as (Sign out)
                                          You have left! (?) (thinking…)
                                          0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                                        • Wir machen mit unserer bisherigen Lösung jeden Freitag Mittag einen Komplettscan aller lokalen Laufwerke auf den PC´s und Server. Dieser Sc

                                          We do with our previous solution every Friday afternoon a full scan of all local drives on the PC's and servers.

                                          This scan can be moved by certain definable users up to 3 times on a different day or skipped entirely.

                                          When the scan is skipped 3 times the next time he is done without the user can stop the scan.

                                          The whole thing, the administrator of the configuration settings centrally regulated.

                                          These possibilities we would have liked in the UTM.
                                          Sophos will include that in the Endpoint Protection?

                                          3 votes
                                          Vote
                                          Sign in
                                          Check!
                                          (thinking…)
                                          Reset
                                          or sign in with
                                          • facebook
                                          • google
                                            Password icon
                                            I agree to the terms of service
                                            Signed in as (Sign out)
                                            You have left! (?) (thinking…)
                                            0 comments  ·  UTM Endpoint Protection  ·  Flag idea as inappropriate…  ·  Admin →
                                          ← Previous 1
                                          • Don't see your idea?

                                          Feedback and Knowledge Base