DNS error brings Sophos antivirus updates to a halt

Optus, Internode and Equinix affected among others.

Sophos AV update failed

Sophos AV update failed

UPDATE Sophos has resolved the outage as of 13.30

A sporadic domain name server (DNS) error has blocked Sophos anti-virus updates around the world.

Sophos chief of technology Paul Ducklin said the cause of the error is as yet unknown.

“The update is still working in areas, but there are some dud ISP DNS entries that have Sophos.com listed as off the air which haven't fixed their caches yet,” Ducklin said.

“There was some 'not there' data published by Sophos's ISP in the United Kingdom. Bigpond and Exetel, for example, are working fine.

Experts say the error could be caused by DNS caches which have stored a dodgy update of the Sophos servers, and are feeding them to customers.

The caches collect and store server data for a minimum time, dubbed the Minimum Cache Time to Live (MCTTL), as specified by the sever owners. The data, which could be between 12 and 24 hours old depending on the MCTTL, is fed to ISP customers who request access to the servers. Users can be fed corrupt data during the MCTTL if the caches downloaded errors in the updates.

“It is a transient DNS problem that has been cached and once [the cache] expires, it will start working again it,” Ducklin said

Ducklin also said affected users can still update their software by subscribing to an alternative DNS.

Internode network engineer Mark Newton said the errors could clear once the minimum cache refresh times expire, but added Sophos cannot force an update once the data has been downloaded.

“Caches will nuke the data when the MCTTL expires [but] they will retain the records until the time expires,” Newton said.

“ISPs can manually refresh their DNSes if Sophos wants it to happen.”

Tests conducted by IDG suggest affected DNS servers include those hosted by Optus, Internode and Equinix, among others.

Join the newsletter!

Error: Please check your email address.
Rocket to Success - Your 10 Tips for Smarter ERP System Selection

Tags sophosDNSantivirus

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Darren Pauli

Show Comments


James Cook University - Master of Data Science Online Course

Learn more >


Sansai 6-Outlet Power Board + 4-Port USB Charging Station

Learn more >



Back To Business Guide

Click for more ›

Brand Post

Most Popular Reviews

Latest Articles


PCW Evaluation Team

Louise Coady

Brother MFC-L9570CDW Multifunction Printer

The printer was convenient, produced clear and vibrant images and was very easy to use

Edwina Hargreaves

WD My Cloud Home

I would recommend this device for families and small businesses who want one safe place to store all their important digital content and a way to easily share it with friends, family, business partners, or customers.

Walid Mikhael

Brother QL-820NWB Professional Label Printer

It’s easy to set up, it’s compact and quiet when printing and to top if off, the print quality is excellent. This is hands down the best printer I’ve used for printing labels.

Ben Ramsden

Sharp PN-40TC1 Huddle Board

Brainstorming, innovation, problem solving, and negotiation have all become much more productive and valuable if people can easily collaborate in real time with minimal friction.

Sarah Ieroianni

Brother QL-820NWB Professional Label Printer

The print quality also does not disappoint, it’s clear, bold, doesn’t smudge and the text is perfectly sized.

Ratchada Dunn

Sharp PN-40TC1 Huddle Board

The Huddle Board’s built in program; Sharp Touch Viewing software allows us to easily manipulate and edit our documents (jpegs and PDFs) all at the same time on the dashboard.

Featured Content

Product Launch Showcase

Latest Jobs

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?