- SSL VPN
- HTML5 VPN portal
- Application control
- Reverse proxy
- Web filtering
Senior Expert for Microsoft infrastructure at a computer software company with 51-200 employees
It provides firewall, proxy, and VPN in one solution, but be prepared to follow the Zeroeth Rule during implementation.
What is most valuable?
How has it helped my organization?
We used several vendor products before UTM, and now it is all in one box - firewall, proxy, and VPN. Sophos is much easier to manage and configure.
What needs improvement?
Every product has room for improvement.
For how long have I used the solution?
I have used it for three years actively with several projects utilizing UTM.
Buyer's Guide
Sophos UTM
November 2024
Learn what your peers think about Sophos UTM. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
816,660 professionals have used our research since 2012.
What was my experience with deployment of the solution?
No issues encountered.
What do I think about the stability of the solution?
No issues encountered.
What do I think about the scalability of the solution?
No issues encountered.
How are customer service and support?
We don't have direct contact with Sophos support so I can’t rate the level of customer service and technical support properly.
Which solution did I use previously and why did I switch?
I did. Sophos UTM is far more easier to configure and it is very intuitive with configuration.
How was the initial setup?
Setup is easy and straightforward. It is a browser based tool, so you can access it from every location, and with different operating systems.
What about the implementation team?
We did it in-house.
What other advice do I have?
I have some technical advice, but generally, always prepare steps to implement Sophos UTM and test your implementation before using it in production environment.
The Zeroeth Rule:
Start with a hostname that is an FQDN resolvable in public DNS to your public IP. If you didn't do that, start over with a factory reset; it will save you hours of frustration.
- Whenever something seems strange, always check the Intrusion Prevention, Application Control and Firewall logs
- In general, a packet arriving at an interface is handled only by one of the following, in order, DNATs first, then VPNs and proxies and, finally, manual routes and manual Firewall rules, which are considered only if the automatic Routes and rules coming before hadn't already handled the traffic
- Never create a Host/Network definition bound to a specific interface. Always leave all definitions with 'Interface
- When creating DNATs for traffic arriving from the internet, in "Going to:" always use the "(Address)" object created by WebAdmin when the interface or the Additional Address was defined. Using a regular Host object will cause the DNAT to fail as the packets won't qualify for the traffic selector.
- In NAT rules, it is a good habit to leave a field blank when not making a change. In the case of a service with a single destination port, this makes no difference. In the case of a service with multiple ports, or a Group, repeating the service makes the NAT rule ineffective.
- There are only four reasons to sync users from AD to the ASG/UTM:
- The user should be able to log on to a Remote Access VPN that uses certificates to authenticate the user
- Email Protection is enabled and the user should receive Quarantine Reports and be able to manage personal black/whitelists and/or use Email Encryption/Signing
- You want to do Reporting by Department for Web Protection (and I consider it a bug to require this when doing AD-SSO)
- You want to use the Authentication Agent to populate "username (User Network)" objects
- There's no other reason to sync users to WebAdmin - certainly not with AD-SSO
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Systems Engineer at Base-2 ICT Services Ltd
The reliability of the equipment makes it possible to provide stable connections but IPSEC site-to-site VPN connectivity needs to be improved.
What is most valuable?
- Reliability
- Usability
- Number of features that fully cover goals
- Perfect support
- Possibility to get “under the hood”
How has it helped my organization?
The Sophos solution provides a branch to head office distributed network for a construction company across New Zealand, and the reliability of the equipment makes it possible to provide stable connections and is easy to implement and support.
What needs improvement?
Would be great if it would be possible to improve IPSEC site-to-site VPN connectivity over slow/unstable internet connections.
For how long have I used the solution?
This particular configuration has been in use for about two and a half years.
What was my experience with deployment of the solution?
No issues encountered.
What do I think about the stability of the solution?
Very rare cases of appliance lost admin password or web-service hangs.
What do I think about the scalability of the solution?
No issues encountered.
How are customer service and technical support?
Customer Service:
Since I’m an engineer, I probably cannot evaluate this aspect, however as far as I know equipment order and upgrade was always fine
Technical Support:4.99 out of 5 – support is very helpful, only once there were misunderstanding about licensing and number of supported Sophos WAPs and that was resolved promptly and fully.
Which solution did I use previously and why did I switch?
For this project, the Sophos infrastructure has been planned and deployed from the start and there has been no need to change it
How was the initial setup?
It's logically straightforward and the transparent interface made possible a quick deployment. However, a little time was needed to get familiarized with the interface.
What about the implementation team?
It was implemented in house.
What other advice do I have?
Nothing is perfect, but with Sophos those are really small – sometimes it is incorrect firmware upgrade paths, or rare log in problems (device forgetting admin password). All those though can be fixed, there is plenty information in the Internet and support is usually awesome. Also, you need to plan the solution and costs involved, while having in mind potential growth of users/connections; e.g. creating virtual appliances and allocating resources (RAM, CPU, NICs) minding potential workload.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Sophos UTM
November 2024
Learn what your peers think about Sophos UTM. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
816,660 professionals have used our research since 2012.
IT/Telecom Specialist at Prewest
The web application firewall is a good feature, despite it limiting you to only using ports 80 and 443.
What is most valuable?
The web application firewall and web filtering. We are using the UTM to be the gateway for the private cloud solutions we offer.
How has it helped my organization?
Easy management of the firewall, with one URL to control the firewall/web filters for our entire cloud.
What needs improvement?
HA needs to be improved for the software appliance because if Sophos is deployed in ESXI/Hyper-V then the HA is unstable. Also, the web application firewall only allows the use of ports 80 and 443, and if we could use others ports than that would be a welcome addition.
For how long have I used the solution?
For two years now in our datacenter, and also several deployments at some of our customers.
What was my experience with deployment of the solution?
Setting up the link aggregation group (NIC teaming) gave us some problems with the ethernet VLAN option for WAN, but after a firmware update, the issue was resolved.
What do I think about the stability of the solution?
If you enable the intrusion prevention option in the firewall any Wordpress deployments on a Plesk server behind the firewall slows down to a crawl, and there is no fix yet. The current workaround is disabling the intrusion prevention option at the moment.
What do I think about the scalability of the solution?
No issues yet.
How are customer service and technical support?
Customer Service:
7/10. Getting a new license for the SG220 sometimes takes a long time, but they will give you a 30 day demo license to compensate for it.
Technical Support:9/10. Any question or issue is solved within minutes after calling technical support.
Which solution did I use previously and why did I switch?
SonicWALL was our previous product, and we switched to Sophos because of its ease of use.
How was the initial setup?
When you start the initial setup you`re helped with wizards, but if you use the software appliance and make a mistake by selection wrong interfaces in the wizard it can result in the firewall becoming unreachable.nThe hardware appliance is (almost) plug & play.
What about the implementation team?
We implemented it in-house.
What was our ROI?
It's around six to nine months.
Which other solutions did I evaluate?
We looked at several open-source firewall options whose names I will not mention, and the reason we did not use them was because of the ease of use, and what our support desk could do.
What other advice do I have?
If you want an easy to manage, and powerful firewall then take look at Sophos UTM.
Disclosure: My company has a business relationship with this vendor other than being a customer: We are a reseller of the Sophos UTM and or other product of Sophos.
Senior Network Engineer at Dejpaad
Reliable with good mail security and good scaling abilities
Pros and Cons
- "The solution can scale."
- "It needs a better user interface. The one they have is not so good."
What is our primary use case?
This is a next-generation firewall. I use it for mail security for clients.
What is most valuable?
The mail security is very good.
It's quite stable.
The solution can scale.
What needs improvement?
The sanctions make it difficult for us in Iran to take full advantage of this product, like many others.
It needs a better user interface. The one they have is not so good.
For how long have I used the solution?
I've used the solution for a while.
What do I think about the stability of the solution?
The solution is stable and reliable. There are no bugs or glitches, and it doesn't crash or freeze.
What do I think about the scalability of the solution?
It is very scalable. The solution is very easy to expand as needed. That's not a problem.
We have 500 or 600 clients on the solution.
How are customer service and support?
I do not use technical support. Having never dealt with them, I cannot speak to the level of service they provide.
What other advice do I have?
For sharing and mail security, the solution is very good. I'd recommend it to other users.
I'd rate the solution seven out of ten. If they offered a better user interface, I would rate them higher.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Director with 11-50 employees
Secure and stable with an easy initial setup
Pros and Cons
- "With Sophos, we have not had any incidents this year. The security provided has been good. It has proven to be okay for our needs."
- "The solution needs to do better at covering mobile devices, although they may have an integrated solution for that purpose."
What is most valuable?
During the pandemic, telework grew, however, so did attacks. There was a higher degree of ransomware and so on. With Sophos, we have not had any incidents this year. The security provided has been good. It has proven to be okay for our needs.
The initial setup is very simple.
The solution is stable.
the scalability is good.
What needs improvement?
The solution needs to do better at covering mobile devices, although they may have an integrated solution for that purpose.
I don't really know how it behaves when it comes to web server protection. We have no web servers of our own. I don't know how it behaves if we open our servers to the outside. My sense is that the degree of protection must be higher.
For how long have I used the solution?
We haven't used the solution for very long. We've been using it for less than a year at this point.
What do I think about the stability of the solution?
The stability has been good. There are no bugs or glitches. It doesn't crash or freeze. It's reliable.
What do I think about the scalability of the solution?
The scalability on offer is quite good. If a company needs to expand, it can do so.
We are not a big company. We have about 70 or so people.
How are customer service and support?
Technical support is okay. It is provided by a local company, not Sophos directly.
Which solution did I use previously and why did I switch?
Previously we did not have any integrated solutions. We had an antivirus of one kind, and a firewall of another. It was a good step for us to integrate all these features into one solution.
How was the initial setup?
The initial setup was simple and straightforward. The deployment was fast. It only took about a week or so, maybe less.
What's my experience with pricing, setup cost, and licensing?
The pricing is reasonable. Of course, the customer would always like it to be lower, however, the quality to price ratio is positive.
Which other solutions did I evaluate?
I'm also aware of Fortinet options, however, they are more expensive if you look at Fortinet vs Sophos.
What other advice do I have?
We are customers and end-users. We came into the pandemic situation needing a VPN and the one offered by the Sophos behaves quite well. From the point of view of our users, it has been a positive experience.
I don't quite know by heart the version of the solution, however, it's quite recent. It's not the newest one. I saw that the brand new one which came out this year and we don't have that.
I'd rate the solution at an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Technical Manager at Digital World
Easy to install, scalable, and stable
Pros and Cons
- "It's a stable solution."
- "We need to speed up the support."
What is our primary use case?
We use this solution as a firewall, for DCP filtering, applications, and training.
What needs improvement?
We need to speed up the support.
For how long have I used the solution?
We have been using this solution for three years.
What do I think about the stability of the solution?
It's a stable solution.
What do I think about the scalability of the solution?
It is a scalable solution but the only disadvantage is that when we use a proxy, we can bypass Sophos.
We have 50 customers. The maximum number of users in one device is approximately 4,000. It's a large network.
How are customer service and technical support?
The support is okay, but it takes time to connect to the support team.
How was the initial setup?
It is easy to install.
We only require one engineer to deploy and maintain this solution.
What's my experience with pricing, setup cost, and licensing?
The appliance should be purchased and there is a fee for the license.
There is an option for a yearly licensing fee or for three years.
What other advice do I have?
We recommend this solution. We complete between 20 and 30 installations per month.
I would rate Sophos UTM a nine out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
IT Specialist at Arnett Carbis Toothman LLP
Sophos SUM allows us to manage over 50 devices from a central management console
What is our primary use case?
- Network border protection for clients and internal company
- It is used for small to medium-sized businesses and networks.
How has it helped my organization?
Sophos SG has provided us with the tools to protect our networks, detect malicious activity, and customize security to our clients' needs.
What is most valuable?
- Sophos UTM Manager (SUM): It allows us to manage over 50 Sophos UTM devices from a central management console.
- Creating rules, exceptions, and managing most features from SUM, and pushing to all or a section of devices as needed.
What needs improvement?
- SUM cannot manage app control
- Improve app control system as a whole
- Extend support for SG until XG has improved significantly.
For how long have I used the solution?
Three to five years.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Senior Solutions Specialist at centerprise international
It has ease-of-use and fits the purpose of our firewall protection needs.
Pros and Cons
- "The most valuable feature is that it is easy to administer."
- "The pricing is an issue."
What is our primary use case?
The primary use case for using this product is as a firewall.
How has it helped my organization?
It has ease-of-use and it fits the purpose of our firewall protection needs.
What is most valuable?
The most valuable feature is that it is easy to administer.
What needs improvement?
The price is an issue to consider for improvement.
For how long have I used the solution?
One to three years.
What do I think about the stability of the solution?
The stability of the product is good.
What do I think about the scalability of the solution?
We are not a very big organization, so we do not see any issues going into the future. We feel that it will continue to scale appropriately for our organization's needs.
Which solution did I use previously and why did I switch?
We have experience with Sophus, as well.
What's my experience with pricing, setup cost, and licensing?
The price is something that one will need to consider.
Disclosure: My company has a business relationship with this vendor other than being a customer: I am a reseller.
Buyer's Guide
Download our free Sophos UTM Report and get advice and tips from experienced pros
sharing their opinions.
Updated: November 2024
Product Categories
Unified Threat Management (UTM)Popular Comparisons
Meraki MX
Check Point NGFW
WatchGuard Firebox
Juniper SRX Series Firewall
Untangle NG Firewall
KerioControl
Zyxel Unified Security Gateway
Stormshield Network Security
Huawei NGFW
Check Point CloudGuard Network Security
Sophos Cyberoam UTM
LANCOM R&S Unified Firewalls
Seqrite UTM
Buyer's Guide
Download our free Sophos UTM Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- What Is The Biggest Difference Between Sophos UTM and Sophos XG?
- What are the biggest technical differences between Sophos UTM and Fortinet FortiGate?
- What Is The Biggest Difference Between Sophos and pfSense?
- Who provides a better antivirus solution: Bitdefender or Sophos?
- What are the biggest differences between Meraki and Sophos? Which one is good for security and SD-WAN?
- What is the biggest difference between Fortinet FortiGate and Sophos UTM?
- When evaluating Unified Threat Management (UTM), what aspect do you think is the most important to look for?
- What UTM solution do you recommend?
- Why is a UTM solution important?
- Which tool is better for internet protection: Meraki MX or Fortinet?
Hi PatrikS, it was ASG120, had to reset it connecting via com port and using monitor connected to the unit.