SophosFirewall.ActiveThreatResponse

1.4.1

PowerShell module for managing Active Threat Response on Sophos XGS / SFOS 22.0 firewalls: ATP (Sophos X-Ops threat feeds) settings, third-party threat feeds, NDR intrusion detection settings and MDR threat feed settings.

Minimum PowerShell version

5.1

Installation Options

Copy and Paste the following command to install this package using PowerShellGet More Info

Install-Module -Name SophosFirewall.ActiveThreatResponse

Copy and Paste the following command to install this package using Microsoft.PowerShell.PSResourceGet More Info

Install-PSResource -Name SophosFirewall.ActiveThreatResponse

You can deploy this package directly to Azure Automation. Note that deploying packages with dependencies will deploy all the dependencies to Azure Automation. Learn More

Manually download the .nupkg file to your system's default download location. Note that the file won't be unpacked, and won't include any dependencies. Learn More

Owners

Package Details

Author(s)

  • Jan Weis

Tags

Sophos Firewall API XGS SFOS ActiveThreatResponse ATP ThreatFeed

Functions

Add-SfosATPHostException Add-SfosATPThreatException Get-SfosATPSettings Get-SfosMDRThreatFeed Get-SfosNDRSettings Get-SfosThirdPartyFeed New-SfosThirdPartyFeed Remove-SfosATPHostException Remove-SfosATPThreatException Remove-SfosThirdPartyFeed Set-SfosATPSettings Set-SfosMDRThreatFeed Set-SfosNDRSettings Set-SfosThirdPartyFeed Sync-SfosThirdPartyFeed

PSEditions

Desktop Core

Dependencies

Release Notes

1.4.1: Get-SfosNDRSettings and Set-SfosNDRSettings read and change NDR intrusion detection; Get-SfosMDRThreatFeed and Set-SfosMDRThreatFeed do the same for the MDR threat feed. Both screens have no XML API equivalent and are reached through the JSON REST path of the web admin interface. Sync-SfosThirdPartyFeed triggers an immediate poll of a third-party threat feed instead of waiting for its schedule; the XML API can configure feeds but cannot trigger one.

FileList

Version History

Version Downloads Last updated
1.4.1 (current version) 8 8/27/2026
1.4.0 13 8/22/2026
1.3.5 10 8/18/2026
1.1.0 8 8/13/2026
1.0.0 7 8/12/2026