SafeGuard Enterprise Management Center: 'Show User Password' is not available when performing a Challenge Response using a Master Security Officer account

  • Article ID: 113016
  • Updated: 09 May 2016


A Challenge Response has been carried out with the Master Security Officer (i.e. a Security Officer which is allowed to carry out the C/R process with Show user password). However, when selecting the action, it is not possible to choose "Boot SGN Client with user logon" and/or "Show user password" function.

Known to apply to the following Sophos product(s) and version(s)
As of SafeGuard Enterprise version

What To Do

Go to Recovery Wizard | Logon recovery, and check the options. The option "Show user password" is only available when the "Action for response" is "Boot SGN Client with user logon".

If the "Boot SGN Client with user logon" option is not available, check to see if a policy denies this option:  

To configure this setting, go to the SafeGuard Enterprise "General Settings" Policy (General Settings | Challenge / Response (C/R) | Allow automatic logon to Windows) This has to be applied to the respective SafeGuard Enterprise Client machine.

The option is allowed by default and has to be explicitly denied if you don not want to enable this feature.

Note: To use this feature, the SafeGuard Enterprise User must already be initialized on the SafeGuard Enterprise Client and ensure that the user has entered their username at POA when performing a Challenge

If you need more information or guidance, then please contact technical support.

