What is most valuable?
Sophos is a comprehensive solution which allows me to configure all the attendant products, such as Sophos' firewall, Endpoint and Encryption features.
A nice feature of Sophos is that it offers in sync and heartbeat security. When my clients have a perimeter involving Sophos firewall and endpoints with Sophos Endpoint, they can communicate with each other.
Heartbeat security is a great feature.
What needs improvement?
In light of all the firmware upgrades, maintenance, feature and general releases of firmware, I really appreciate the support offered by Sophos. It is really good.
However, the response time could stand improvement, as I do not benefit from immediate support. There is a delay involved. This can be problematic when I need urgent support, such as when my device is in a production environment.
How are customer service and support?
The support is really good. With all the firmware upgrades, maintenance, feature and general firmware releases which occur nowadays, I really appreciate Sophos support. It is really good.
This said, it could be faster, as it is not immediate. This can be problematic when I require urgent support, such as when my device is in a production environment.
How was the initial setup?
When it comes to the firewall, everything hinges on the configuration. Every firewall is good, but one can see the importance of the configuration in the firewalls of Sophos and SonicWall. This is the most important thing, since users occcasionally disable the app control, IPS or anti-spyware features. They do this out of a lack of familiarity with the security, something which allows attacks to occur. Therefore, the configuration is key. I configure every firewall I employ, be it Sophos, SonicWall or Fortinet.
I have not encountered any issues when it comes to the configuration.
What's my experience with pricing, setup cost, and licensing?
I was a gold partner with Sophos XG. As such, I make suggestions about the appropriate model in line with my customer's requirements. Essentially, over the last two years of the COVID-19 crises, most users required an SSL VPN license, something for which SonicWall charges but which Sophos offers for free.
SSL VPN involves two factor authentication. This is free of charge. Both email and key OTP are options. While SonicWall also offers SSL VPN capabilities, it is problematic. When I needed a license, I purchased an additional perpetual SSL VPN license.
Which other solutions did I evaluate?
SonicWall makes available all the different models, such as TZ and NSA. I am familiar with all the models. Sophos only has an entry-level model, which is actually 87, 107 and 116.
Fortinet offers the Forti ATF model.
What other advice do I have?
I recommend the solution to other clients, but make certain to first understand their individual needs. I would be doing them a disservice were it otherwise.
I really like Sophos.
In the past, when Sophos employed XG firewall, I was forced to deal with a slow GUI. This is because its back-end kernel is Linux. Now that XGS is provided, many changes can be seen in the hardware appliance. The hardware has been upgraded. The XGS firewall is faster than the XG series, so the problem has been resolved.
While I rate Fortinet as a nine out of ten, I give Sophos XG a rating of eight.
Disclosure: My company has a business relationship with this vendor other than being a customer: partner