Sophos Cloud Flashcards

(51 cards)

1
Q

What is Sophos Cloud?

A

Cloud-based management console, can manage devices located anywhere, offers protection, multiplatform, policies and reporting

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What does HIPS offer. Host Intrusion Protection System and web control for which platforms?

A

Windows (Computer, Server), Mac and Mobile (iOS and Android)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Describe the management console

A

It is browser based showing a dashboard and users and devices, servers, reports, global settings and downloads. It can be accessed from anywhere. run reports

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What does HIPS do?

A

It protects against malicious behaviour

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does WEB control do

A

protects users who are browsing on the internet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How are users protected against malicious websites even if they are not connect to your network>?

A

The Web Control policy is managed via the cloud but enforced on the device, so it will always be applied.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the steps for deployment?

A

Registration, Activation, Deployment.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Where do you register?

A

Sign up for a trial at www.sophos.com/cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

How many days is the trial limited to?

A

30 days - Account >> Administration

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

what 2 ways can you protect devices?

A

email (computers and mobiles) or install manually

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

how to do a bulk deployment?

A

AD scripts, SCCM. check KBA 120611

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

how do you enable deployment for iOS?

A

You need to upload a APNS Certificate to your sophos account. Which allows trusted communication between iOS and Sophos Cloud. Click enable iOS button on users

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Describe the process of enabling iOS in Sophos Cloud

A
  1. download certificate signing request from sophos account 2. login to the apple push certificate portal with an apple ID and creat a nano certificate. It is recommended that you create a new apple id for your sophos apple account. 3. make a note of the apple login details as required for future certificate updates 4. Upload the newly created cert into your cloud account 5. Confirm your cert uploaded successfully, it will be valid for one year
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

System requirements for pc’s and servers

A

Windows : XP, Vista, 7,8,8.1 Server 2003/R2, 2008/R2, 2012/R2 1GB RAM, 1GB free disk Mac OS X 10.7, 10.8, 10.9, 10.10 1GB RAM, 1GB free disk

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

System requirements for iOS and Android

A

iOS 7 and higher (iPhone and iPad) Android 4.0 and higher

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

which browsers are supported?

A

IE 10 & 11, Mozilla Firefox, Safari and Google Chrome, you will be redirected to a page if browser not supported.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

What inf does the QR code in the mobile devices e-mail contain?

A

A link to Android and iOS apps,and the config info to link them to your sophos cloud account.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

what is covered in module 3

A

Dashboard, Users, Devices, Policies, Servers, Tamper Protection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

what is the first thing you see when you login to sophos cloud?

A

The dashboard

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

what is the dashboard made out of?

A

The action center, the account summary and the event summary. Users&Devices, Servers, Reports,Global Settings and Downloads

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

What does the Action center entail?

A

Alert levels: High Medium and Informational

22
Q

What is in Dashboard accounts?

A

Computer Summary, User Summary, Server Summary and Mobile Summary. Split by Active, Inactive 2+ weeks, Inactive 2+ months and not protected fo Computers/Servers. Mobile split into Managed and Unmanaged. Each has a go to report button

23
Q

Dashboard Events

A

Global activity, you can change data by moving slider. Estimation of threat level. overall malware detection worldwide Resolved Malware Detections and Web statistics

24
Q

what other ways can you add users?

A

synchronise with AD. Download the Active Directory Sync Service, use an AD account for synchronisation. Recommended to run daily. open ldap and e-directory not supported

25
where can you see list of computers registered to your account?
In the devices page, listing its name, when it was last active, management status, device model, Operating System, user and enrollment date. You can wipe, unlock, force check in and lock. you can chnge the display name. for computers it updat now or scan now
26
what happens if you delete the device?
it will stop sychronising, but the client software will still be installed.
27
Policies
Remote workers, office workers, Base policy. The base policy is the best practice setting. You can create additional policies with different settings and apply to specific user and groups. You can clone an existing policy
28
can base policy be disabled?
no.
29
how are policies applied?
from top to bottom. more specific policies at the top of list and more general policies further down, base policy is applied last of all.
30
Policies - General Settings
Scanning exclusions, to exempt file or website from scanning. Policies split into 3 sections, Choose a name, protection from malware, risky files and sites, control access to removable media and other peripherals,manage web control settings, control policy for mobile devices.
31
more policy general settings
no users or groups selected, malware scan performed real time, policy configured to monitor peripherals, define mobile device preferences, define web control preferences, policy is active and does not expire.
32
what does Policies Malware section do?
Up to date protection, enable or disable real time scanning. Enable scheduled scans and scan inside archive files. virus and pua's. you can exclude certain apps/tools.
33
what peripherals can you block or allow?
Bluetooth, secure removable storage, floppy drive,infrared, modem,optical drive, removable storage and wireless network adapter. Wireless device can be block from being used in bridged mode. check the events column for any changes in peripherals,
34
mobile device policy
password policy, which features are available. login attempts, max pw age and max auto lock. if you use number of login attempts, if it is exceeded device will be wiped.
35
more mobile device policy
you can disable certain features on the phone such as: app store , camera, taking screenshots, backup to cloud etc sharing docs
36
email and wifi policy
exchange server settings can be configured in the policy, wi-fi can also be configured
37
compliance
compliance rules can be set. eg jail broken or rooted, ios/android version, if the ios app did not sync. you can trigger all wifi settings to be removed from device
38
policies web control
more sec and filter options, risky files and adverts, active x and pdf, which website can be visited. block risky downloads, advertisments , uncategorised, risky file download, block by file type. active x controls. keep it clean, gentle guidance and confirm bandwidth, ALLOW, BLOCK and WARN. Block data sharing and data loss. logging and timed access.
39
servers
last active, ip address, malware policy, events and exclusions. UPDATE NOW, SCAN NOW DELETE. automatic exclusions
40
Tamper protection
users kept from tampering, enable or disable tamper protection
41
Which types of devices can web control policies be applied to?
Windows and Mac Computers
42
What determines policy priority in Sophos Cloud,and how are the individual settings within policies prioritized.
the order of the policies in the list, those at the top are processed first, if a setting is not defined in the first policy, then the next one down is examined, right through to the base policy.
43
What is the main difference between policies for computers and servers in Sophos Cloud?
policies for computers are user based, wheras policies for servers are machine based.
44
reports
run reports, perform administration tasks, access the cloud accounts of your customers. via partner portal.
45
types of reports
summary,events,users and devices and web usage
46
reports -events
time range slider to view events, see the type and count of event, see a bar chart over time period
47
can you export?
yes, to pdf and csv as well as print.
48
account management
license status, login details and administrator accounts, review licencese and current usage, change user logon e-mail address, change password, add and modify administrator accounts. change sophos support settings. enable remote assistance, enable partner assistance.
49
Partner portal access
enable in sophos cloud account, manager customers accounts, single sign on. login manage cloud from partner portal. you can create trials for customers.
50
Which report would yo use to see all resolved malware detections on your devices?
The Events report, filtered to show cleaned up malware.
51
what needs to be done before you can manage your customers cloud accounts?
Enable Partner Assistance has to be turned on in their Sophos Cloud account.