I mainly use Sophos XG for network firewall protection and VPN access. It helps secure our internet connection and allows us to manage our network traffic efficiently. Additionally, we use it for monitoring our local network.

Sophos Cloud Firewall (PAYG)
SophosExternal reviews
External reviews are not included in the AWS star rating for the product.
Sophos Firewall - A One Point Solution for Network Security!!!
Easy to implement, use and manage for optimum performance.
Excellent Customer support.
Expertise and security
A powerful, reliable and secure Firewall with excellent integration with other products and services
The firewall has been far more reliable than our previous provider (we moved from Smoothwall) which is essential for a product that is in use constantly and it also integrates well with our Sophos Endpoint software.
We use the dashboard frequently as it provides a great overview of security with a threat quotient for our user base and the advanced security features highlight and block any malicious traffic such as access to botnets.
Updates are regular and the Firewall has continued to support the latest standards and protocols evailable for web access (such as TLS 1.3, Google QUIC and various VPN protocols).
As most web traffic is now encrypted the ability to decrypt and inspect as much traffic as possible was an essential feature that the Sophos Firewall range caters for too.
Also the builtin report functionality is not the easiest to configure/use and there are no instant alert features. As we work in a school we see instant alerts particularly as a safeguarding essential so had to purchase FastVue which integrates nicely with the Sophos Firewall logs and has improved reporting features.
Effectively safeguards our information systems and data and is easy to configure
What is our primary use case?
How has it helped my organization?
Sophos XG has significantly improved our remote workforce security. It effectively safeguards our information systems and data, while also enabling us to restrict access to unauthorized websites. This has been particularly valuable for ensuring productivity and security across all our branches nationwide.
What is most valuable?
The most valuable features of Sophos XG for our use cases are its firewall capabilities, its ability to connect to wide area and local networks, and its VPN functionality. It effectively protects our information systems while simplifying VPN setup across branches, eliminating the need for additional VPN services from our internet service provider.
What needs improvement?
One area where Sophos XG could improve is in its patch management system. I encountered an issue where installing a new patch resulted in being locked out of the firewall, which was quite inconvenient. This suggests a vulnerability that needs addressing to ensure administrators can update patches without losing access. Such incidents shouldn't require a complete reconfiguration, so there is definitely room for improvement in this aspect.
One piece of advice I would offer is for Sophos XG to consistently incorporate the latest technologies to stay competitive with other vendors. Ensuring that new features are regularly updated and integrated into future products will enhance the platform's effectiveness and appeal to users.
For how long have I used the solution?
I have been working with Sophos XG for seven years.
What do I think about the stability of the solution?
I would rate the stability of the solution as a ten out of ten.
What do I think about the scalability of the solution?
I would rate the scalability of the solution as an eight out of ten. It is highly scalable and capable of covering a growing number of end users. Whether managing a small or large user base, its scalability makes it adaptable to varying network sizes and user demands. In my organization, we have approximately two thousand users across various branches using Sophos XG daily.
How was the initial setup?
I would rate the initial setup of Sophos XG as a solid ten out of ten in terms of ease. With a clear understanding of the process and step-by-step guidance, setting it up was straightforward and hassle-free.
It took me around 30 minutes to deploy Sophos XG. The deployment process involved configuring the LAN, WAN, and VPN settings at each branch. Once connected to the switch and router, it was ready to use, making it a straightforward and quick setup process.
Maintaining Sophos XG typically requires only one or two people, depending on the size and complexity of the network deployment.
What other advice do I have?
The most effective feature of Sophos XG for threat prevention is its regular patch management system. By consistently updating software and firmware with new patches, it helps prevent attacks by addressing vulnerabilities and staying ahead of emerging threats.
The web filtering capability of Sophos XG has benefited our organization by effectively blocking users from accessing specific websites during office hours and even restricting access to certain sites altogether. This feature has been instrumental in enforcing our web usage policies and ensuring a secure browsing environment.
The performance of Sophos XG's firewall has met our expectations perfectly.
We have integrated Sophos XG with other security equipment such as routers and switches. While we primarily use it as a standalone product, in some branches, we have connected it with other security solutions for enhanced protection.
I would recommend implementing Sophos XG for its effectiveness as a firewall. Before installing it, consider factors like your current network equipment, intended use, user compliance with security controls, and whether your technical staff may need training if they're unfamiliar with Sophos firewall.
Overall, I would rate Sophos XG as a ten out of ten.
Which deployment model are you using for this solution?
ROI Guaranteed
trust - protection
Sophos is user friendly to all of us & with very good protections with
Ease to configurations & implementations
Common issues and consideration with a NextGen firewall
Overall Sophos firewalls are good and easy to manage
1. Active threat response
2. Advanced threat protection
3. Application control
4. Web Protection
5. Privacy preference center