/
Sophos Update Manager (SUM) Problems
Sophos Update Manager (SUM) Problems
One of the most fragile parts of the Sophos Enterprise Console is the Sophos Update Manager (SUM). We've had to work with Sophos about 6 times in the past 4 months to get the SUM working correctly. More often than not, the updates are still occurring to the local systems. It's just they aren't registering in the Management service for some reason. The following are the approaches provided by Sophos Technical Support to try to clear up problems with the SUM. A 2nd level technician did not suggest approach #3, as deleting entire applications was too intrusive:
- telnet loclhost 8192 -- You can check to see whether or not you make a connection to the SUM via telnet
- Modify a Setting in the Registry of the Enterprise Console
- Remote to Sophos0 and login
- Close the Enterprise Console
- Open the registry and navigate to the following location: HKEY_LOCAL_MACHINE\SOFTWARE\Sophos\UpdateManager\Security
- Delete the following key and its data: LogonKey
- Open the Console and select the "Update Managers" tab
- <Right Click> the primary SUM and select "Comply with Configuration"
- <Right Click> the primary SUM and select "Update Now"
- Monitor the console for 20 minutes for the software to finish reporting its status. During this time, you should notice:
- Download Status -- This should change to Downloading Binaries
- Configuration Column -- It should turn to Does Not Match
- It may take up to 20 minutes for the system to update; the time / date stamps in the Last Updated and Download Status columns should update to the current date / time. If nothing changes, move on to #3.
- Check the status of the Sophos Services
- Select Start | Run | type: services.msc
- Scroll down to the Sophos Services
- Stop the following services in this order:
- Sophos Message Router
- Sophos Agent
- Sophos Update Manager
- Sophos Management Service
- Ensure that any process named "SophosUpdateMgr.exe" are no longer running
- Start the above services in the same order
- Stop/Start Services and Delete the Envelopes Folder
- Stop the Sophos Certification Manager Service
- Stop the Sophos Message Router Service
- Delete the Envelopes folder located at this path in Windows Explorer: C:\ProgramData\Sophos\Remote Management System\3\Router
- Stop the Sophos Agent Service
- Stop the Sophos Update Manager Service
- Stop the Sophos Management Service
- Start the Sophos Message Router Service
- Start the Sophos Certification Manager Service
- Start the Sophos Agent Service
- Start the Sophos Update Manager Service
- Start the Sophos Management Service
- Open the Enterprise Console and select the "Update Managers" tab
- <Right Click> the primary SUM and select "Comply with Configuration"
- <Right Click> the primary SUM and select "Update Now"
- Monitor the console for 20 minutes for the software to finish reporting its status. During this time, you should notice:
- Download Status -- Change to Downloading Binaries
- Configuration Column -- It may turn to Does Not Match
- After 20 minutes, the time / date stamps in the Last Updated and Download Status columns should update to the current date / time. If nothing changes, move on to #4.
- Uninstall the SUM and Remote Services Manager and reinstall -- Not recommended by level 2 techs, but is being used by level 1 support.