We typically use Sophos XGS for things like (UTM, acting as a proxy, managing routing, and for point-to-point connections.
Entereprise Architect at Martplus
Stable and affordable
Pros and Cons
- "The most valuable features of Sophos XGS for me are XGS IPS, SD-WAN, VPN setup, email protection, and integration with endpoint security."
- "Areas for improvement in Sophos XGS include better balance when handling high availability configurations, smoother firmware upgrades without the need for turning off devices, and simplified configuration after firmware updates."
What is our primary use case?
What is most valuable?
The most valuable features of Sophos XGS for me are XGS IPS, SD-WAN, VPN setup, email protection, and integration with endpoint security.
What needs improvement?
Areas for improvement in Sophos XGS include better balance when handling high availability configurations, smoother firmware upgrades without the need for turning off devices, and simplified configuration after firmware updates.
In the next release of Sophos XGS, I would like to see improvements in log searching within the interface and more functionality available without needing to go to the command line, especially for troubleshooting purposes.
For how long have I used the solution?
I have been working with Sophos XGS for five years.
Buyer's Guide
Sophos XGS
January 2025
Learn what your peers think about Sophos XGS. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
832,138 professionals have used our research since 2012.
What do I think about the stability of the solution?
Sophos XGS is stable and resilient, even in environments with power fluctuations and instability.
What do I think about the scalability of the solution?
Scalability with Sophos XGS is generally good, but there can be frustrations with switches when setting up VPNs. I would rate the scalability as a four out of ten.
I believe the scalability of Sophos XGS can be improved, especially when compared to competitors like Palo Alto and Check Point. While it is a good product, there is room for enhancement to compete better in scalability challenges.
How are customer service and support?
I would rate the technical support as a seven out of ten.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
Before Sophos XGS, I used Check Point, Palo Alto, and Cisco data solutions. I switched to Sophos because it is more affordable.
How was the initial setup?
The initial setup of Sophos XGS is generally simple, especially for basic internet access with default features, but more complex configurations may have some difficulties. Overall, it is quick and stable.
It took less than an hour and a half to deploy Sophos XGS initially, including setting up internet access and basic firewall rules. However, migrating from older versions to the new setup took longer due to compatibility issues with the old settings.
What's my experience with pricing, setup cost, and licensing?
Sophos XGS is quite affordable.
What other advice do I have?
Overall, I would rate Sophos XGS as a seven out of ten. I would recommend it to others.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: May 24, 2024
Flag as inappropriateHead of Information Technology at ICCS Ltd
It's more affordable than most, and the interface has a more comfortable feel than the competitors.
Pros and Cons
- "I like the Sophos UI. It interface has a more comfortable feel than the competitors."
- "I recommend Sophos increase the user capacity of the firewall by 1.5 times. For example, say the firewall can accommodate 1,000 users now, then it should handle a load of 1,500 users."
What is our primary use case?
Sophos helps us set public restrictions and add category filtering to secure the network. It provides ATS and IPS scanning for further protection.
What is most valuable?
I like the Sophos UI. It interface has a more comfortable feel than the competitors.
What needs improvement?
I recommend Sophos increase the user capacity of the firewall by 1.5 times. For example, say the firewall can accommodate 1,000 users now, then it should handle a load of 1,500 users.
For how long have I used the solution?
We've been using Sophos XGS for seven years.
What do I think about the stability of the solution?
Sophos is a stable product.
What do I think about the scalability of the solution?
Sophos XGS is scalable. My company has almost 6,000 users.
How are customer service and support?
We've contacted Sophos support multiple times for help troubleshooting.
Which solution did I use previously and why did I switch?
We used a Cisco firewall for four years before Sophos. My company has multiple locations, and some had Sophos, but others used Cisco. After we had a good experience with Sophos, we moved the entire company to Sophos.
How was the initial setup?
Installation is pretty straightforward compared to Juniper and Cisco products. The Sophos installation offers better guidance.
What about the implementation team?
We handled the installation and configuration with our in-house team.
What's my experience with pricing, setup cost, and licensing?
Sophos isn't expensive. It's a mid-range solution that's cheap but not too much cheaper than competitors. It's a good price that meets all our compliance requirements.
What other advice do I have?
I rate Sophos XGS eight out of 10.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Sophos XGS
January 2025
Learn what your peers think about Sophos XGS. Get advice and tips from experienced pros sharing their opinions. Updated: January 2025.
832,138 professionals have used our research since 2012.
Senior Network Engineer at Prospecta Technologies
Sophos XG firewall is the Best protection and security Management, authentication, hashing, and encryption; unfortunately updating policies can create a lag meshing with administrators' environment,
Pros and Cons
- "There are good KCL rules and policies as well as NATing rules."
- "There can be lag time when updating an operating policy."
What is our primary use case?
We use Sophos XGS for web security and web policies, it's our primary solution. authentication VPN site to site, SSL VPNs installations. Sophos Firewall designed its extreme protection IT Rules and policies security level Authentication is good sometimes it's tricky and very helpful. Sophos Firewall delivers advanced threat protection to instantly identify bots and other advanced threats while defending your network from today's sophisticated attacks. current live user activities diagnostics to generate logs and objectionable site restrictions, daily reports are a great solution for the work environment.
How has it helped my organization?
With the increase in cybersecurity threats, this solution has helped us at an organizational level. We have always been hit by someone at the end of our desk or hidden somewhere ex:- spoofing attacks, a man in the middle attacks, and ransomware new era of cybersecurity pain full concept, Mail spoof attacks, all these have to improve DMZ and secure the firewall policies and server-client Antivirus solutions. Daily monitoring manually or trusted third-party vendors monitoring tools. finally, we are worried about how strong we are at the cybersecurity level.
What is most valuable?
This is a great solution for security, authentication, hashing, and encryption level. Sophos is good at ACL rules, Port forwarding, SDWAN route policies, IT Rules and policies as well as Natting rules. It's a reliable product to secure web securities. whenever we want we switch to the ports securely Heartbeat monitoring live user activities is great to execute on a production level. Bandwidth control sometimes referred to as traffic shaping is one of the best firewall features. Link aggregation and SD-WAN (Software-defined Wide Area Network) are great features for businesses that need multiple links to the internet. thank you
What needs improvement?
There are occasional issues when we update an operating firmware there's some lag time. Updating requires us to reboot the firewall, in this scenario 24/7 organization will be the most effective. In addition, I'd like to see more focus on customer support calls we were waiting for hours to connect with them. In some cases, Sophos's team is extraordinarily helpful to solve any issues in the firewall. Sophos needs to focus on customer support through a chatbot or call management quickly so we can find some help on the client side. Thank you
For how long have I used the solution?
I've been using this solution for five years.
What do I think about the stability of the solution?
The solution is stable despite having to restart when we update.
What do I think about the scalability of the solution?
The solution is very scalable and we're able to handle all the pressure in our organization. We have over 100 VPNs and it all works well, Authentications, port forwarding, and all kind of security levels are much appreciated.
How are customer service and support?
Customer support needs to be improved. They're very helpful once you get them on the line but sometimes take up to an hour before we can speak to someone who can fix a problem. when a problem occurs at the production level we freeze and everything goes blank so a faster customer support call is much more appreciated.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is complex. Sophos has some features like rules and policies, NATing, and PATing so deployment might take more time than if we were using an alternate solution. Deployment can take up to two weeks because every policy and VPN requires checking and that takes time. I've been working for the past 10+ years experience in network engineering and firewall configuration so we deployed in-house but we contacted Sophos for assistance when we needed it.
What's my experience with pricing, setup cost, and licensing?
The Sophos or any kind of firewall is worthy to buy when we have dedicated servers and switches to implementation.
What other advice do I have?
There are some very good features in this firewall and also some areas that need improving. I rate this product seven out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
RSSI at a energy/utilities company with 10,001+ employees
Stable, simple initial setup, but lacking features
Pros and Cons
- "The initial setup is straightforward."
- "Sophos XGS could improve by having a Network Access Control(NAC). This feature is a basic function in other firewalls and should be added, such as Palo Alto."
What is our primary use case?
I use Sophos XGS as an alternative gateway and we are using all the new generation firewall functionalities, such as EPS and antivirus.
How has it helped my organization?
We are using the WAF functionalities of Sophos XGS which has helped the organization.
What needs improvement?
Sophos XGS could improve by having a Network Access Control(NAC). This feature is a basic function in other firewalls and should be added, such as Palo Alto.
The SD-WAN functionality should be reviewed because there are some devices that don't work well. For example, in Palo Alto, the SD-WAN functionality is more efficient.
For how long have I used the solution?
I have been using Sophos XGS for approximately four years.
What do I think about the stability of the solution?
Sophos XGS is a stable solution.
How are customer service and support?
The technical support from Sophos XGS is good. We reach out to them if there is a serious problem. We have opened approximately four tickets with them.
I rate the support for Sophos XGS a two out of five.
Which solution did I use previously and why did I switch?
I have used many other solutions, such as Palo Alto, Fortinet, and Cisco. Sophos XGS rates are at the bottom of the list compared to many solutions.
How was the initial setup?
The initial setup is straightforward.
I would rate the initial setup of Sophos XGS three out of five.
What about the implementation team?
We have a team of three or four people who administer Sophos XGS.
What's my experience with pricing, setup cost, and licensing?
Once you pay for the Sophos XGS hardware there is no license required. There are additional costs if you want the support. We have purchased support for three years.
What other advice do I have?
I rate Sophos XGS a six out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Technical Presale Engineer at Bridge
Straightforward to set up and covers most company needs but needs better support
Pros and Cons
- "The initial setup is straightforward."
- "They should customers who are facing issues with their product reviews; they found bots in it. If they can do their proper research and use the user analysis and testing, that would greatly help the clients."
What is our primary use case?
We primarily use the solution as a firewall.
We have multiple clients. The use case is based on their requirements, for example, as a site-to-site VPN or maybe as an FSL VPN for end users to promote the network access of company systems. Apart from that, it is used for web filtering and URL blocking. Apart from that, it's on a regular day-to-day basis used as a firewall.
What is most valuable?
It covers most areas that are needed.
The initial setup is straightforward.
The solution is scalable.
It's stable.
What needs improvement?
We've had issues with support. If they improved on the support part, that would be great.
They should customers who are facing issues with their product reviews; they found bots in it. If they can do their proper research and use the user analysis and testing, that would greatly help the clients.
The software release has been giving us problems.
Other firewalls provide better reporting. We need admin and activity logs to be populated for the firewall.
For how long have I used the solution?
For the Sophos XGS, I've been working with it for the last four years. Overall, for firewalls in general, I've been working with solutions for more than ten years.
What do I think about the stability of the solution?
The solution is stable. We haven't really had any issues until a bug hits the firewall.
What do I think about the scalability of the solution?
We are the service provider to the client, so we have a total of 28 people, excluding the team lead and the presale technical support or maybe a presale technical person. They are working directly on Sophos XGS. e tend to deal with enterprise-level customers. We don't have small-scale organizations under our portfolio. This solution is best suited for mid-range companies and larger.
The solution is pretty scalable. I'd rate it a three out of five in terms of ease of scalability.
How are customer service and support?
Support has been very poor.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We have three major products, which we offer to clients. They are Palo Alto, Cisco ACI, and Sophos XGS.
There are many major differences between Sophos and Palo Alto. This product is not comparable to Palo Alto right now. Maybe the basic models of the Palo Alto can be compared with the Sophos XGS firewall, however, not the higher-end ones. Palo Alto is much more advanced.
How was the initial setup?
The solution is straightforward to set up. It is not overly complex.
How long it takes to deploy depends on how the implementation is requested. It won't take more than one hour if it is a basic implementation like setting up the firewall with ISP connections and all those things. However, if it is a complete setup with implementations, other tests, and all those things, it takes around six to seven hours.
After the installation, we do the software updates periodically along with the model which the client has purchased Apart from that, we also do the maintenance of the various policies and other configurations. We do make changes to the firewalls based on changing industry standards, et cetera.
I'd rate the ease of implementation a four out of five.
What about the implementation team?
If the customer requests assistance with the initial setup, however, we will provide an engineer to them. They'll come to the implementation site and assist.
What's my experience with pricing, setup cost, and licensing?
I don't take care of the licensing part. There is a separate team.
What other advice do I have?
We are a Sophos Gold partner.
We have multiple firewalls on multiple OS versions. Basically, we do have two major pieces of software installed in the firewall, which are 1854 MR4 and the latest release, 1801.
There are multiple criteria when making a decision about whether to go with Sophos or maybe another firewall. It depends on the client's requirements as well as their budget.
I'd rate the solution five out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Technical & Pre-Sales Manager at GateLock
Provides a good dashboard and reporting for small to medium sized companies
Pros and Cons
- "The most valuable feature of Sophos XGS is the application control."
- "Sophos XGS would benefit from further development in the SD-WAN area."
What is our primary use case?
I am a cyber professional. I support customers with this solution. Sophos XGS is primarily a firewall. The product allows my customers to manage their internet access for their employees while protecting their environment from things like malware.
The solution requires one administrator as it does not require much maintenance. It depends on the usage and the environment. For example, in some account configurations, the environment has only four or five rules, other times there are over 100 rules. More rules will require more maintenance.
What is most valuable?
The most valuable feature of Sophos XGS is the application control. I also enjoy the dashboard and reporting that it provides to my customers.
Sophos helps my customers manage applications from accessing the internet, not only websites. We can ensure there is limited access to applications like Facebook. For example, Facebook is not accessible, but Facebook Messenger for chatting is. This prevents posting and sharing. We make restrictions without prevention.
What needs improvement?
Sophos XGS would benefit from further development in the SD-WAN area. It would be great if they could give technical people access to all the WAN links that we are connecting to, including inside the SD-WAN.
They should make available or round robin inside the SD-WAN. This would allow us to move to another link if one goes down.
For how long have I used the solution?
I have been using Sophos XGS for six years.
What do I think about the stability of the solution?
There have been issues with the stability of this product. Sometimes it requires restarting. We have looked into the client environment and this is not causing the instability. The problem is common.
What do I think about the scalability of the solution?
Sophos XGS is not scalable. It is a hardware appliance and we should migrate the settings if we need to. In order for it to scale, you require additional hardware.
How are customer service and support?
Sophos' technical support is responsive. There are times we need to push them to accelerate the process because there is a delay in replying. Sometimes, the first stage of first-line support does not have enough knowledge.
Overall, I would rate their technical support a three out of five.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup of Sophos XGS is straightforward. I would rate it five out of five for ease of setup.
What's my experience with pricing, setup cost, and licensing?
The cost of Sophos XGS is based on per unit, per appliance, and capacity. The capacity depends on the environment. Based on the size, we choose the model. The model selected dictates the pricing.
When comparing the pricing of Sophos to the competition, I give them a five out of five. It is competitively priced.
Which other solutions did I evaluate?
I have worked with Fortinet and WatchGuard. Other solutions have better performance and security value than Sophos XGS.
Sophos has most of the features. If they don't have the features one year, they are added the next. At one point they did not have SGON, but now they do. It is not performing like Fortinet or Watch Guard, they need to do some enhancements.
Sophos has the upper hand on reporting on the firewall itself. For small to medium-sized businesses Sophos is better than the competition.
What other advice do I have?
If the organization is small or medium-sized I would recommend this solution. I would give it a nine out of 10 in this case. If the company is enterprise level, I would rate the solution a five out of 10.
Overall, I rate the Sophos XGS a seven out of 10.
Disclosure: My company has a business relationship with this vendor other than being a customer: System Integrator
Presales Consultant Information Security Services at Team Computers
A good VPN solution that has valuable threat management, IPS and IDS features
Pros and Cons
- "The most valuable feature of Sophos is the VPN solution. I also value their threat management, IPS IDS features and login features with single sign-on."
- "Sophos XGS needs improvement with the threshold values. Other solutions have the capacity to handle more users."
What is our primary use case?
We use Sophos XGS in 15 locations with 15 firewalls for the XG. We dedicate one person to maintain the solution.
What is most valuable?
The most valuable feature of Sophos is the VPN solution. I also value their threat management, IPS, IDS, and login features with single sign-on.
What needs improvement?
Sophos XGS needs improvement with the threshold values. Other solutions have the capacity to handle more users.
I would like to see virtualization security included in the next release.
For how long have I used the solution?
We have been using Sophos XGS for more than two years.
What do I think about the stability of the solution?
Sophos XGS is stable as long as the capacity is not exceeded, then it becomes slow.
What do I think about the scalability of the solution?
Scalability needs to be improved by increasing the threshold value. The bulk capacity can handle 300 users, if you have more users, it does not work well.
How are customer service and support?
Technical support is okay. They are responsive but limited with knowledge and need to escalate to the upper levels. It takes time to resolve issues.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup of the solution was straightforward. It is easy to use and convenient.
What's my experience with pricing, setup cost, and licensing?
The license for Sophos XGS is for three years, paid on a yearly basis. Everything is included with the license; there are no additional fees.
What other advice do I have?
Sophos SGS is a nice solution. I would rate this solution an 8 out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Manager IT SOLUTIONS DELIVERY at Al Hiba IT Service
Supports integration and has good support
Pros and Cons
- "I think Sophos technical support's immediate response is good compared to Fortinet's. If the technical engineer is good, they get the solution immediately. If not, it might take two days. For improvement, immediate response is required, whether by email, phone call, or WhatsApp. Sometimes, we can't wait three or four days for a solution. In urgent situations, we might use a spare Sophos device while waiting for support."
- "Sophos XGS changes every two years, so we must update our knowledge. We can only test it with real requirements or problems to find scalability and reliability. We can't find these in normal testing. We can see reviews based on Gartner reports, but sometimes, we really feel problems. It can create many issues, even compatibility problems with fiber modules. Only system integrators or installers find these problems."
What needs improvement?
Sophos XGS changes every two years, so we must update our knowledge. We can only test it with real requirements or problems to find scalability and reliability. We can't find these in normal testing. We can see reviews based on Gartner reports, but sometimes, we really feel problems. It can create many issues, even compatibility problems with fiber modules. Only system integrators or installers find these problems.
How are customer service and support?
I think Sophos technical support's immediate response is good compared to Fortinet's. If the technical engineer is good, they get the solution immediately. If not, it might take two days. For improvement, immediate response is required, whether by email, phone call, or WhatsApp. Sometimes, we can't wait three or four days for a solution. In urgent situations, we might use a spare Sophos device while waiting for support.
What other advice do I have?
I recommend what my customer needs and what fulfills their requirements. I suggest products based on price, quality, scalability, and reliability. Customers now ask for specific features at a certain price, not product names. I'm a system integrator and face technical support problems before implementation. I need pre-sales tech reports. If the distributor and support are good, I'll support that product even if the price is high. Urgent deliveries can be a problem if distributors don't cooperate.
I don't blame any product; all are good nowadays. Cisco products have high prices and compatibility issues. Fortinet has easy power replacement, while the tool needs specific adapters. I rate Sophos XGS seven to eight out of ten. Some models are very good, others not so much. It depends on the project, market, price, and features needed.
Nowadays, we have to integrate everything. Most products support this at some level.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Last updated: Sep 3, 2024
Flag as inappropriateBuyer's Guide
Download our free Sophos XGS Report and get advice and tips from experienced pros
sharing their opinions.
Updated: January 2025
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
OPNsense
Sophos XG
Cisco Secure Firewall
Palo Alto Networks NG Firewalls
Check Point NGFW
WatchGuard Firebox
SonicWall TZ
Juniper SRX Series Firewall
Fortinet FortiGate-VM
SonicWall NSa
Untangle NG Firewall
Sangfor NGAF
Huawei NGFW
Buyer's Guide
Download our free Sophos XGS Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Which product do you prefer: Sophos XGS 2100 or Fortinet FortiGate 100F?
- Which firewall to choose for a medium-sized company with 150 users: Sophos XGS 2100 or SonicWall 2700?
- What do you recommend for a corporate firewall implementation?
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Which is the best network firewall for a small retailer?
- When evaluating Firewalls, what aspect do you think is the most important to look for?
- Cyberoam or Fortinet?
- Fortinet, Palo Alto or Check Point?
- If you could go back, would you change your decision to buy that firewall and why?