
However, staff/students should remove the software from their personal computers if they are no longer regular staff/students of CityU. Current staff/students can install the Sophos Home Premium on up to 10 PCs free of charge. Sophos enhances the security of computer devices for staff/students who need to work from home and provides better protection on their personal devices. For staff / students personal devices - Sophos Home Premium.for more information about Sophos Intercept X Endpoint. Users may submit a CSC Work Request for installing it locally on the standalone University-owned PCs (Windows/Mac). To provide a safe and secure working environment for staff, Sophos Intercept X Endpoint will be installed automatically on all Staff LAN PCs. For CityU managed devices - Sophos Intercept X Endpoint.Two types of licenses are available for members of the CityU community: It also provides added benefits such as Home Use & multiple personal devices support. Sophos provides a comprehensive endpoint protection software solution including anti-virus, anti-malware & ransomware protection.


I as assuming the server is a Windows file share.Sophos Endpoint Protection has been selected to provide better protection/security in your working environment and also for your personal devices. If the above doesn't narrow it down you might need a PML log from the server at the same time to see what the System process is doing. Maybe submit in a sample file if you have one you can send.Īs an initial test I would add the "Duration" column to Process Monitor, can you see savservice.exe for example taking a long time to read/write the file? The Wireshark log with a filter for "smb or smb2" would be good at the same time to see what's going on at the network layer. PML) and Wireshark running to gather a pcap, that would be all Support should need.

PML (don't exclude any events when saving as. The other thing to toggle is to disable just realtime scanning on the server and leave remote scanning on the client.īeyond that, I would suggest using Process Monitor ( /./bb795533.aspx) and Wireshark in combination. I would suggest testing that initially to prove that is the sole option that makes the difference here. In either case there is the option to exclude scanning of remote files. I'm not sure what management platform you have, i.e.
