Try our new research platform with insights from 80,000+ expert users
CEO at a tech services company with 1-10 employees
Real User
Migration from pfSense or Astaro is easy
Pros and Cons
  • "The two most valuable feature of Sophos XG is, one the option to filter according to different applications and two, the integration with the Active Directory."
  • "Integration with Active Directory is not reliable."
  • "Over the last six months, we have noticed that the hardware is slow, especially the VPN connections."

What is our primary use case?

We are using Sophos XG, but not the latest version. The solution works as the main gateway. We are a small company of 250 employees so we also use the solution as a router.

The hardware and VPN connections are slow so we are planning on upgrading the solution. Next month we will be replacing the Sophos XG we have as it is reaching the end of life next year. We will be purchasing the XG 3000 to gain more options in the VPN tunnels.

What is most valuable?

The two most valuable feature of Sophos XG is, one the option to filter according to different applications and two, the integration with the Active Directory.

What needs improvement?

Over the last six months, we have noticed that the hardware is slow, especially the VPN connections.

Sophos would benefit if they could improve the integration with Active Directory. It does not function consistently and we have to reconfigure it to make it function again. 

Integration with IPA, which is like Active Directory for Linux servers, would be a nice feature to include.

For how long have I used the solution?

I have been using Sophos XG for three years.

Buyer's Guide
Sophos XG
January 2025
Learn what your peers think about Sophos XG. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
832,138 professionals have used our research since 2012.

What do I think about the stability of the solution?

This solution is very stable. We have not had any problems in the three years we have been using Sophos XG. We did have one infection that gained access to one server in the DMZ but it was because the rules were not well configured and not because of the product.

What do I think about the scalability of the solution?

We haven't had to scale the solution. 

How are customer service and support?

Support from Sophos XG has been fine for what we have required.

Which solution did I use previously and why did I switch?

We had been using Astaro. We selected Sophos XG because we knew it would be easy to set up and configure as the two solutions are similar.

How was the initial setup?

Previously we were working with Astaro, so the setup and configuration of Sophos XG was easy. The implementation took less than a month.

What about the implementation team?

The company that sold the firewall solution provided support hours while we were migrating the rules of our old firewall. They provided us with advice on some of the rules, especially on the routing to connect to a branch office.

What's my experience with pricing, setup cost, and licensing?

We purchase an annual standard license.

What other advice do I have?

I recommend Sophos XG if you are coming from pfSense or Astaro as the migration will be really easy. The learning path will also be easy. If you are coming from Barracuda or Cisco it will be more difficult especially the web interface of the firewall is not intuitive.

I would rate Sophos XG an 8 out of 10.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1621608 - PeerSpot reviewer
Information Security Manager at a recruiting/HR firm with 201-500 employees
Real User
Easy to use, scalable, and provides good security
Pros and Cons
  • "The solution is stable. I've had very few problems with it."
  • "I do prefer when updates come out a bit quicker."

What is our primary use case?

We primarily use the solution for a firewall. We use it as a security device.

What is most valuable?

The product is very easy to use. We enjoy the ability for it to fit into our high-level security framework. 

It gives us some separation from being on Microsoft tasks. We've got multiple levels of security. We're government contractors. It's great that it's been a separate product that gives us the ability to do the security to a high level without having to resort to needing a big team.

The solution is stable. I've had very few problems with it.

We have found the solution to be scalable. 

What needs improvement?

We're always looking for the best products and the best pricing. Pricing is always a concern for us.

When they do updates, they could handle them a little bit better. We've only had one problem, however, I do prefer when updates come out a bit quicker. We do the patching and updates and different things, however, in terms of the patch and timing and the criticality of it, it could always be better.

For how long have I used the solution?

We've been using the solution for five or more years at this point. We've used it for a while. 

What do I think about the stability of the solution?

The product is reliable and stable. There are no bugs or glitches. It doesn't crash or freeze. 

What do I think about the scalability of the solution?

The product has proven to be scalable. If a company needs to expand it, it can do so.

We have 430 end-users on the product.

How are customer service and technical support?

We're mostly happy with the technical support. It's better than Microsoft. Any issues we have may simply come down to the SLA. 

How was the initial setup?

The initial setup is pretty straightforward, and, over the last six years, it's gotten simpler, especially when it comes to cloud products.  A company shouldn't have any issues with the process. 

The deployment was very quick. It does not take long. 

My team is quite small internally. I have five to seven IT staff.  I have many service providers that I outsource a lot of the day-to-day management of the infrastructure to.

What about the implementation team?

Sophos assisted us with training at the outset, which we really appreciated. 

What's my experience with pricing, setup cost, and licensing?

We pay annually for the licensing for the overall on-prem solution, however, we also have some Sophos access points at permanent IT sites and different things. I have different Sophos products I may pay a monthly fee for.

What other advice do I have?

We're just customers and end-users.

While this deployment is on-premises, for the cloud, we use Sophos Central.

I'd rate the solution at an eight out of ten. We're pretty pleased with its protection capabilities. 

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Alexandre RASTELLO - PeerSpot reviewer
Alexandre RASTELLOSenior IT Consultant - Sophos Architect at ARENTIA S.A.
Real User

Well done! Happy to see it was easy.


Next step is Synchronize Security with Sophos Endpoint (formely Sophos Central), to block "lateral movement"!


https://www.sophos.com/en-us/l...


https://techvids.sophos.com/wa...


Regards,

Buyer's Guide
Sophos XG
January 2025
Learn what your peers think about Sophos XG. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
832,138 professionals have used our research since 2012.
Senior Consultant at Wavednet Group
Consultant
Enhanced security features, easy to use for all users, and has informative reports
Pros and Cons
  • "The solution has very good security features, is easy to use for administrators and users, and has informative reports."
  • "I would like to see in future releases a tool to scan for malicious packets and give the location of where they are coming from."

What is our primary use case?

We are an IT solution company and we provide network security. This solution is used for securing your network.

What is most valuable?

The solution has very good security features, is easy to use for administrators and users, and has informative reports.

What needs improvement?

I would like to see in future releases a tool to scan for malicious packets and give the location of where they are coming from. Nowadays all over the world is suffering from ransomware threats. If they could map where those packets are coming from and make the packet monitoring more efficient it will be helpful to prevent more of these kinds of threats.

For how long have I used the solution?

I have been using the solution for approximately five years.

What do I think about the stability of the solution?

The solution has been highly stable.

Which solution did I use previously and why did I switch?

We have used SonicWall and Fortinet in the past.

How was the initial setup?

The installation is very easy for anyone. The configuration is straightforward, all the information is available through a quick Google search.

What's my experience with pricing, setup cost, and licensing?

The price can be a bit steep but for the number of features, it is worth it. Additionally, the enterprise version of this solution is priced well for all the features that you receive.

If you are thinking about implementing Fortinet, SonicWall, or any other product you will pay extra for additional security features and might need to purchase additional licenses. If they just spend a little more on this solution they will get the extra features for the same amount.

Which other solutions did I evaluate?

This solution has security features that in other solution you have to purchase them as add-ons, such as malware and email filters. Comparing this solution overall to competitors it is by far the best.

What other advice do I have?

I rate Sophos XG an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: partner
PeerSpot user
Dipl. Ing. at a tech services company with 11-50 employees
Reseller
Easy to manage and lots of functionality
Pros and Cons
  • "The user interface is very good. It's already quite simple and easy to use."
  • "Recently, I've had a problem with updating things."

What is our primary use case?

The solution is primarily used as a firewall with all the "next Generation" functionality. We sell this solution to our clients.

What is most valuable?

I prefer the solution to other Firewalls as it is very intuitive to manage.  

The product offers a more complete set of security functionality at one price . It differentiates more in objects to protect like web server protection or email protection.

Troubleshooting is easy with XG Firewall because of clear arrangement of troubleshooting features in GUI.  I like the ease of use.

The Base License includes already VPN, network protection and web protection functionality and you have a wireless controller on top. The data stream analysis and security features are built-in; these are the main features we need these days.

The user interface is very good. It's already quite simple and easy to use.

What needs improvement?

Recently, I've had a problem with updating firmware. Updates should be more stable . The last update I did was not successful and ended in a unusable device. Also the support case i opened for it could have been more effective.

I don't use all of the features and therefore it would be difficult to evaluate if anything is missing.

For how long have I used the solution?

I've been dealing with the solution for around 12 months or so. It's been about a year at this point.

What do I think about the stability of the solution?

From the update side, the last update didn't run successfully and this is not good for us as the customer needs this device to access the internet. If this device is failing and it has no connection to the internet  it is a great problem for the customer.

It may be possible to implement a second device in a fail-over cluster and this would avoid such a problem as then if one device fails in the updating process, the other device could be take over, and so it would be not such a great problem. That said, in this scenario, you have to sell two devices. That would be the best way to ensure stability, however.

What do I think about the scalability of the solution?

The scalability of the solution is limited according to sizing. You buy one device with specific performance parameters, which should be equivalent to the customer's needs, and this device is not able to customize to a higher level. If you need to grow, you must buy another device with higher parameters.

In our case, the customers we work with have small setups. They aren't large organizations. Sophos told us about a sizing guide in the future.

How are customer service and technical support?

We are a reseller and  our first and only support case was not very effective. It should not be used as a guideline.

Which solution did I use previously and why did I switch?

We also resell Cisco products.

How was the initial setup?

The initial setup is not overly complex.  The process is straightforward. A company shouldn't run into problems but need a understanding of the device and the functions.

The deployment process depends on the requirements. A good planning is beneficial.

What's my experience with pricing, setup cost, and licensing?

The pricing is good due to the fact that you get so much functionality from one overall solution. The base license covers all features you need to protect against threats from internet. Setting up the device basically is intuitive and there are a lot of help from internet community.

What other advice do I have?

We are a reseller of both Cisco and Sophos.

We're using the latest version of the solution for our clients.

I'd rate the solution at an nine out of ten. We've  been satisfied with the product, however, there is still more they could do in testing updates.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
Chief Operational Officer at Merchant Light LLC
Reseller
Easy to set up, keeps extensive logs, and scans all traffic for malware
Pros and Cons
  • "The most valuable feature is that it scans all of the data for any kind of malware."
  • "It would be helpful if they had a set of standard templates because it would assist in the beginning, when you are just getting started."

What is our primary use case?

We are going to be hosting our own website and we are using the Sophos XG because we want to make sure that it is well protected. We also want to make sure that the rest of our LAN is not compromised.

In addition to using this firewall ourselves, we resell the product to our customers. We have a well-trained team that can perform the implementation and deployment.

How has it helped my organization?

Our network is now much better protected than it was. If you don't have your network and your infrastructure secured, as a business, which is about more than just putting a firewall in place, then you're asking for trouble. There is a lot of hunting going on, and it's not just the large corporations. It's the small businesses, too.

What is most valuable?

The most valuable feature is that it scans all of the data for any kind of malware.

It logs everything that goes in or out, and the logs are helpful.

The simplicity of the setup is very good. I can add whatever ports I need and it's pretty easy to set up.

What needs improvement?

It would be helpful if they had a set of standard templates because it would assist in the beginning, when you are just getting started. They do have a template, but I mean specifically for different use cases. For example, an existing template for setting up a web page would suggest what kind of security we need to have in place. They do have help menus and videos, but additional templates would be useful.

For how long have I used the solution?

I have been using Sophos XG for about eight months.

What do I think about the stability of the solution?

The stability has been rock solid and it hasn't gone down once.

What do I think about the scalability of the solution?

For me, there is essentially no limit when it comes to scaling. I have never used all of the connections but the limitation is between 50,000 and 200,000. I would say that scalability is enormous. If we had a bigger network then I would probably get a bigger Sophos.

At this point, we're just starting and only have three or four people who are regularly using it.

How are customer service and technical support?

The technical support is awesome.

Which solution did I use previously and why did I switch?

We did have a Cisco router prior to using Sophos XG, but I don't know much about Cisco or how to get it operational. I also realized that it was getting old, so we switched to a high-end Sophos model. With malware in this day and age, where we have a 6000% increase in the number of malware attacks compared to two years ago, we wanted to be well protected.

How was the initial setup?

The initial setup is straightforward. If I can do it then anyone can do it. The deployment took a couple of hours. Because we are new to this type of solution, our strategy will be to begin by blacklisting everything and then whitelisting only the things that we need.

What about the implementation team?

Our in-house team handled the implementation and deployment. We have more than 200 people that are very well trained, so we can set up pretty much anything. 

What's my experience with pricing, setup cost, and licensing?

We paid for our licensing for three years, upfront, and there are no costs in addition to the standard fees.

Which other solutions did I evaluate?

I evaluated several options and sought out advice before selecting Sophos XG.

What other advice do I have?

I am happy with this solution, which is one of the reasons that we are selling it. I don't like to sell or recommend things that I have not used. I have tried a lot of the features but I would say that there is a lot more potential I haven't even tested at this point.

I would rate this solution a ten out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
Programmer / Analyst at Maridive & Oil Services
Real User
A firewall solution with many good features
Pros and Cons
  • "I like the web filter, application filter, and VBA."
  • "Their updates can be faster and more regular."

What is most valuable?

I like the web filter, application filter, and VBA. There are so many good features. The most powerful thing is clearly the software. I can easily do whatever I want.

What needs improvement?

Their updates can be faster and more regular. Right now, it's updated monthly. When I need to update the firmware, I want it done within weeks, not months. There are also some changes in version 18, like rules, that aren't needed.

What do I think about the stability of the solution?

Sophos XG is a very powerful and stable solution. It's more stable than Cyberoam.

What do I think about the scalability of the solution?

Sophos XG is scalable.

How are customer service and technical support?

Technical support is good and easy to deal with. If I have a problem, I open the ticket, and I call, and the problem's solved automatically by them.

Which solution did I use previously and why did I switch?

We used Cyberoam ten years ago and then transferred to Sophos. We switched because it was the latest technology.

How was the initial setup?

The initial setup was very easy because you can follow the manuals, follow your past experiences, and so on. We also need about three to six people a day to maintain this solution.

What's my experience with pricing, setup cost, and licensing?

At first, I thought the price was very high. But when I read about the machine's features, we decided to go with it. Now I think the price is reasonable.

What other advice do I have?

On a scale from one to ten, I would give Sophos XG a nine.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1166514 - PeerSpot reviewer
Founder and Managing Partner at a tech services company with 1-10 employees
Real User
Powerful, simple implementation, useful update scheduling
Pros and Cons
  • "What I have found most valuable with the Sophos XG is it's a key component of the Intercept X EDR environment. You have to have it to receive the full benefit. If you've you are using Sophos SG firewalls, they're great firewalls and in many ways, I prefer them to the Sophos XG. Since I have set them up, programmed them, and manipulate firewall rules, et cetera, the Sophos SG's a better interface. However, the Sophos XG's very powerful. I prefer it over other solutions I have used, such as Cisco Meraki and SupportNet, I don't like them. They're not very friendly to people who have to set them up and implement them."
  • "The interface of Sophos XG could be improved. I would prefer the Sophos XG to have an interface for the technician who is setting it up similar to the Sophos SG. I felt the Sophos SG user interface was superior. however, in terms of the functionality of the product, Sophos XG is in many ways more powerful than the Sophos SG. I have no complaints about the quality of the product or the end result. For someone who has used both, I preferred the old interface to the new one."

What is our primary use case?

I use Sophos XG as a network firewall.

What is most valuable?

What I have found most valuable with the Sophos XG is it's a key component of the Intercept X EDR environment. You have to have it to receive the full benefit. If you've you are using Sophos SG firewalls, they're great firewalls and in many ways, I prefer them to the Sophos XG. Since I have set them up, programmed them, and manipulate firewall rules, et cetera, the Sophos SG's a better interface. However, the Sophos XG's very powerful. I prefer it over other solutions I have used, such as Cisco Meraki and SupportNet, I don't like them. They're not very friendly to people who have to set them up and implement them.

What needs improvement?

The interface of Sophos XG could be improved. I would prefer the Sophos XG to have an interface for the technician who is setting it up similar to the Sophos SG. I felt the Sophos SG user interface was superior. however, in terms of the functionality of the product, Sophos XG is in many ways more powerful than the Sophos SG. I have no complaints about the quality of the product or the end result. For someone who has used both, I preferred the old interface to the new one.

For how long have I used the solution?

I have used Sophos XG within the last 12 months.

What do I think about the stability of the solution?

The stability is what I have found attractive with the whole Sophos product line. You can have a client that starts with a three-person office and grow it to a 10,000 person operation and you keep moving the configuration to the next level of power.

Which solution did I use previously and why did I switch?

I have used Cisco Meraki and SupportNet solutions previously.

How was the initial setup?

Sophos XG is a better solution for implementers, once you learn it. You have to learn the interface and once you do, it's straightforward. Additionally, you don't have to know the CLI as you do with Cisco, where you have to get into the command-line interface to do any powerful operations.

What about the implementation team?

Maintenance for Sophos XG it's pretty straightforward. I will receive an email if there's a firmware update that needs to be applied and any one of my team, or I will apply the update at our next convenience. You can schedule it to allow it to take place at a non-production time. For example, if I want the firmware update to apply it at 2:00 am in the morning I can schedule it. Additionally, it automatically applies pattern updates.

What other advice do I have?

I rate Sophos XG an eight out of ten.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Head of Cybersecurity at mundo credito
Real User
Management centralized, highly scalable, and technical support helpful
Pros and Cons
  • "I have found the feature allowing you to manage everything from a centralized location beneficial."
  • "I am using the Azure Active Directory in my company and it was complicated to integrate this solution with Azure."

What is our primary use case?

We are using the solution as a firewall to protect all the computers in our financial organization, we did not have one before.

What is most valuable?

I have found the feature allowing you to manage everything from a centralized location beneficial.

What needs improvement?

I am using the Azure Active Directory in my company and it was complicated to integrate this solution with Azure. I had to use an internal VPN and had to do many configurations to get it operating. This process should be easier to implement.

For how long have I used the solution?

I have been using the solution for the past six months.

What do I think about the stability of the solution?

The solution has been stable in my experience.

What do I think about the scalability of the solution?

One of the main reason I chose this solution was great scalability. I have approximately 150 people using this solution in my company.

How are customer service and technical support?

The technical support is very good. Two months ago we needed help with implementation and they helped us with the configuration of Azure and this solution. You are able to find everything in the documents for the solution, it comes with easy to follow information with photos.

Which solution did I use previously and why did I switch?

I was using Cisco products before and we decided to switch to this solution because of Sophos Central and it is easier to manage. 

How was the initial setup?

The setup was easy to manage for this solution.

What about the implementation team?

It has taken us six months to implement the solution and I am still deploying my system. We used another company to help us do the deployment and maintenance is done by a team of three.

What's my experience with pricing, setup cost, and licensing?

I paid for a license for the solution for three years costing approximately $11,000. Additionally, I received the Web Appliance fee for paying for the full license. 

What other advice do I have?

All my experience with this solution has been good. I would recommend this to others and already have.

I rate Sophos XG a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free Sophos XG Report and get advice and tips from experienced pros sharing their opinions.
Updated: January 2025
Product Categories
Firewalls
Buyer's Guide
Download our free Sophos XG Report and get advice and tips from experienced pros sharing their opinions.