Sophos v16 HTTPS unnecessary inspection due to microapp scanning issue

From Notes_Wiki

Home > Enterprise security devices or applications > Sophos Firewall or IPS > Sophos v16 HTTPS unnecessary inspection due to microapp scanning issue

Sophos v16 firewall or IPS does unnecessary HTTPS inspection even if explicitly configured to not scan any traffic. This is due to a bug. To resolve the bug use following steps:

  1. Disable the HTTPS malware scanning in firewall rules
  2. Disable Micro - App scanning in application filters
  3. Run the following command in console
    system application_classification microapp-discovery off
  4. Verify that microapp-discovery has indeed been turned off using:
    system application_classification microapp-discovery show


Refer:



Home > Enterprise security devices or applications > Sophos Firewall or IPS > Sophos v16 HTTPS unnecessary inspection due to microapp scanning issue