We normally use physical appliances for office and virtual appliances for datacenter.
Network and Security Engineer at Datafox OÜ
Easy to set up, easy to manage, and easy to scale firewall solution
Pros and Cons
- "Easy to set up firewall product, that's also easy to manage and scale."
- "What could be improved in Sophos XGS is its connectivity with Azure AD. It's best if it could work directly without using any servers locally, or in the data center, and this functionality should be made available in this product."
What is our primary use case?
How has it helped my organization?
XGS is similar to XG series but adds new Xstream Flow processors that are used to accelerate various functionalities that are normally done in x86 CPU.
Sophos will soon release SFOS v19 software which will utilize Xstream for even more functionalities like IPsec, SSLVPN, SDWAN and etc.
What is most valuable?
What I found most valuable in Sophos XGS is that it's very easy to manage.
What needs improvement?
Authentication with Azure AD needs improvement. It would be better if it could work directly without using local AD server. For comparison Fortinet FortiGate allows to use SAML authentication with Azure AD and does not require any local server. It is currently unknown to me, if or when it will be implemented on Sophos.
Local DHCP service also needs improvement. Windows DHCP service offers more functionality and is more flexible and easier to use. SFOS v18.5.3 added DHCP option functionality in the GUI - which previously worked only from CLI.
Buyer's Guide
Sophos XGS
November 2024
Learn what your peers think about Sophos XGS. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
824,067 professionals have used our research since 2012.
For how long have I used the solution?
I've been working with Sophos XGS since they came out. I cannot remember exactly the year and date, but it hasn't been so long, e.g. just one year.
What do I think about the stability of the solution?
It is very stable - have not had any issues.
What do I think about the scalability of the solution?
The scalability of Sophos XGS is good. Normally we suggest the clients to use firewall as a service, since it gives more flexibility both for client and us, since usually we manage the client's firewall. There is a virtual version of the firewall which scales even more, since it can be upgraded to a license that offers more RAM and CPU cores. For us, it scales very well, e.g. I'm giving it the maximum score: ten out of ten.
If a client is looking for a new firewall, then we normally need to consider as much information as possible (user count, weight per user, LAN throughput, WAN throughput, functionalities and etc). If a client wants to pick a solution for larger environment, then we also ask recommendation from Sophos to get the most optimal solution.
How are customer service and support?
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
How was the initial setup?
The initial setup for Sophos XGS is very easy. From cloud it can be deployed even faster, since it allows to create configuration templates.
What's my experience with pricing, setup cost, and licensing?
The ratio of price and functionality is good.
Licensing cost depends on particular model and required functionality:
- It is possible to use the firewall without any license, but then it will work only as port based firewall.
- Normally we suggest to use at least Standard License.
- Licensing cost for single appliance or active/passive HA cluster is the same - only 1 license.
- Active/Active cluster requires 2 licenses and performance gain is very small. It is better to use more powerful appliance.
Which other solutions did I evaluate?
We are Sophos Gold partner and mainly like to use Sophos XGS firewalls.
If it a requirement by client, then we can also offer non-Sophos firewall solutions.
What other advice do I have?
There are multiple models of Sophos XGS that we use, e.g. we use both desktop and 1U sized models.
Sophos XGS can be fully cloud managed, and it's possible to deploy it directly from the cloud, that you installed the hardware, and maybe I have to use an ESB key, though I'm not sure. We haven't tried deploying it that way yet.
The only difference between Sophos XGS and Sophos XG is the software version that is supported on the hardware. The difference will be when the version 19 software comes up, as it will not work on Sophos XG.
I recommend Sophos XGS to others who are thinking of implementing it. I recommend for them to use it. Sophos firewall can be also used without additional firewall, but we strongly suggest using Standard license, which offers application filtering and IDS/IPS.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Datafox OÜ is Sophos certified Gold partner.
IT Manager at a logistics company with 201-500 employees
Has rules and intelligence to scan all vulnerabilities in our network
Pros and Cons
- "The most effective feature in enhancing our network security is the threat intelligence capability."
- "The technical support could be improved as it is currently not competent and pretty slow."
What is our primary use case?
We use Sophos XGS primarily for VPN and security with clients and supplies.
How has it helped my organization?
Sophos XGS has some rules and intelligence to scan all vulnerabilities in our network.
What is most valuable?
The most effective feature in enhancing our network security is the threat intelligence capability.
What needs improvement?
The technical support could be improved as it is currently not competent and pretty slow.
For how long have I used the solution?
I have been working with Sophos XGS for three years.
How are customer service and support?
The technical support is rated three out of ten, indicating it needs significant improvement.
How would you rate customer service and support?
Negative
What's my experience with pricing, setup cost, and licensing?
The pricing of Sophos XGS is okay. It is approximately two thousand and a half per year.
What other advice do I have?
I would rate it an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: Oct 31, 2024
Flag as inappropriateBuyer's Guide
Sophos XGS
November 2024
Learn what your peers think about Sophos XGS. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
824,067 professionals have used our research since 2012.
Works well with thin client environments but needs to improve technical support
Pros and Cons
- "In this solution, the most valuable feature is that it's a security device. Maintaining security is very valuable for us. The other feature that we did not find in other products is that it works well with thin client environments."
- "Sometimes, we haven't received proper support. They couldn't find the solutions that we required. One thing that we need is an NTP server facility. The Sophos XGS device does not have this capacity or this feature."
What is our primary use case?
Mainly, we use it as our internet gateway firewall for scanning internet traffic that comes to our network from WAN and for internet distribution such as thin client. We have a thin client environment. It also works as a distribution layer for internet users, especially in thin client environments. It scans the traffic that passes from this device.
What is most valuable?
In this solution, the most valuable feature is that it's a security device. Maintaining security is very valuable for us.
The other feature that we did not find in other products is that it works well with thin client environments.
What needs improvement?
Sometimes, we haven't received proper support. They couldn't find the solutions that we required.
One thing that we need is an NTP server facility. The Sophos XGS device does not have this capacity or this feature.
For how long have I used the solution?
We've been using Sophos XGS for almost one year.
What do I think about the stability of the solution?
It's stable. We haven't had any issues with it.
What do I think about the scalability of the solution?
I don't think it's scalable. It's a product that we bought with a specification, and we cannot improve that. We cannot upgrade; we can only upgrade its OS; nothing more.
Only the network administrator uses it, but we might set it up in another business unit next year.
How are customer service and support?
I would rate technical support at six out of ten because we haven't received proper support sometimes.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We worked with Cyberoam, and when it reached the end of life, we replaced it with Sophos.
How was the initial setup?
The initial setup is easy, and I'd give it a two out of five.
What was our ROI?
Because this is a security appliance, we cannot calculate the ROI exactly. However, every time security devices work well and guard us from attacks, it is a good ROI. This device has a good ROI.
What's my experience with pricing, setup cost, and licensing?
The licensing cost is in the normal range and is not very costly.
What other advice do I have?
Overall, we have had a good experience with Sophos XGS and would rate it at six on a scale from one to ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
CEO / Managing Director at Infinity Access Technologies Pvt Ltd
Highly stable, scalable, but performance can improve
Pros and Cons
- "The scalability of Sophos XGS is very good."
- "When it comes to different interfaces there is some speed issue that can be improved in Sophos XGS."
What needs improvement?
When it comes to different interfaces there is some speed issue that can be improved in Sophos XGS.
For how long have I used the solution?
I have been using Sophos XGS for approximately seven years.
What do I think about the stability of the solution?
Sophos XGS is a stable solution. It has a very good operating system.
What do I think about the scalability of the solution?
The scalability of Sophos XGS is very good.
How are customer service and support?
The support of Sophos XGS needs to be improved. Support is very poor. The approach they use needs to improve. We have to call and raise a ticket, but they don't resolve quickly. There are times when their technical support people, are not the right people for the right ticket. It wastes a lot of time. Since this is a business-critical device, there needs to be quicker support. There should be quicker support from the company.
Which solution did I use previously and why did I switch?
I have used Fortinet previously. When you compare Sophos XGS with Fortinet, Fortinet is a better device. However, if their country has good support for Sophos XGS, then it's fine. Sophos XGS is more economical than Fortinet and they have similar features. For a business-critical solution, Fortinet would be much better because of its stability.
What was our ROI?
This solution would not have a return on investment for larger companies. However, for smaller businesses using this solution, it is better and faster.
What's my experience with pricing, setup cost, and licensing?
Sophos XGS is priced lower than some of its competitors, such as Fortinet
What other advice do I have?
I rate Sophos XGS a seven out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Information Technology Network Administrator at abl
Unified threat management system with VPN features
Pros and Cons
- "The threat management system and VPN are most valuable."
- "Reporting could be improved. The structure could be better because most of the reports aren't detailed."
What is our primary use case?
We are using it as a unified threat management system.
We use it on a daily basis. There are about 600 people using this solution in our organization.
The solution is deployed on-prem.
What is most valuable?
The threat management system and VPN are most valuable.
What needs improvement?
Reporting could be improved. The structure could be better because most of the reports aren't detailed.
What do I think about the stability of the solution?
It's stable for now.
What do I think about the scalability of the solution?
It's scalable.
How was the initial setup?
Initial setup was easy. I would rate it 4 out of 5.
What about the implementation team?
Setup was done in-house.
What other advice do I have?
I would rate this solution 9 out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Head Of IT at Misr Cement Qena
A cost-effective solution to control the network and for web browsing
Pros and Cons
- "It increases productivity in our company. Everything is protected."
- "Deployment could be easier."
What is our primary use case?
We use the solution to control the network and for web browsing. It provides threat protection.
What is most valuable?
It increases productivity in our company. Everything is protected.
What needs improvement?
Deployment could be easier.
For how long have I used the solution?
I have been using Sophos XGS for three years.
How are customer service and support?
I have the company we bought from Cisco, which provides technical support. If anything goes wrong, we call them for any help and support.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
With Cisco, You have to buy everything separately and request many options. It's preferable to get a full bundle like Sophos offers. Sophos includes everything in one package, and any additional features are less expensive than Cisco.
It is 20% more expensive than Sophos.
How was the initial setup?
The initial setup is difficult. You need to take a course to learn how to deploy Sophos. With training and hands-on experience, it’s manageable now, but setting up Sophos for the first time was time-consuming. Deploying the security and configuring the network took a lot of effort initially, but the process becomes much easier once that's done.
What other advice do I have?
Overall, I rate the solution an eight out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Last updated: Sep 2, 2024
Flag as inappropriateCIO at a healthcare company with 201-500 employees
Good performance and reporting with a straightforward setup
Pros and Cons
- "It's much faster than the previous firewall, so you can do the work faster."
- "They need intelligent reporting, not just your simple, standard reports."
What is our primary use case?
We are primarily using the product for firewall issues, including protecting the network and so on.
How has it helped my organization?
It's much faster than the previous firewall, so you can do the work faster. There are no delays in the internet and network.
What is most valuable?
The performance is better than the other product that we've had.
Reporting-wise, it's quite good. IPS detection and ATP is getting better and faster.
We have found the initial setup to be quite straightforward.
The solution is stable.
It can scale well.
What needs improvement?
The reporting could always be improved upon. They need intelligent reporting, not just your simple, standard reports.
For how long have I used the solution?
I've used the solution for the past three months.
What do I think about the stability of the solution?
This is a stable, reliable product. The performance is good. It's fast. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
The product can scale very well. It's not a problem if a company needs to expand. There are different sizes of products. It's a good idea to pick a larger size if you expect to scale.
We have around 150 users on the solution at this point. They cover different roles from admins to front and back office.
How are customer service and support?
We have a third-party provider that is giving us support. We don't communicate with Sophos directly.
Which solution did I use previously and why did I switch?
I previously used WatchGuard. That was at a previous company. When I moved here, the organization already had Sophos.
How was the initial setup?
The initial setup is very simple and very straightforward. Since it was also migration in our case, we had to do testing and so on. It took one week to deploy it.
We only need one person to handle the deployment and maintenance process.
What about the implementation team?
We had a third-party assist us during the implementation process.
What's my experience with pricing, setup cost, and licensing?
We renew the license every three years. We get better pricing that way. There are no other expenses beyond the standard pricing. That said, there are additional subscription modules you might need. However, you pick them at the beginning, and it depends if you need them or not.
Which other solutions did I evaluate?
We did not evaluate other options. We already had the setup, and we didn't want to make any big changes.
What other advice do I have?
I'm a customer and end-user.
I've currently using the latest version of the solution.
I'd rate the solution nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Junior Software Developer at TATMETAL
Powerful user-interface, reliable, but log need more detail
Pros and Cons
- "The most valuable features of Sophos XGS are the ease of use and powerful interface."
- "In version 18 of Sophos XGS, the log details are not very good. However, in version 19 they are more detailed. The Fortinet FortiGate has better detail overall compared to Sophos XGS. They provide updates to the solution frequently, but they do not fix the problems that exist."
What is our primary use case?
We are using Sophos XGS for basic purposes, such as the NAT rules it provides.
What is most valuable?
The most valuable features of Sophos XGS are the ease of use and powerful interface.
What needs improvement?
In version 18 of Sophos XGS, the log details are not very good. However, in version 19 they are more detailed. The Fortinet FortiGate has better detail overall compared to Sophos XGS. They provide updates to the solution frequently, but they do not fix the problems that exist.
In the next release, the searching inside of Sophos XGS needs to improve. It is difficult to learn about the functionality and the modules. Additionally, there needs to be more automatic or less manual operations.
For how long have I used the solution?
I have been using Sophos XGS for three years.
What do I think about the stability of the solution?
Sophos XGS is highly stable.
What do I think about the scalability of the solution?
We have a small company therefore I am not sure about the scalability.
We have two people using this solution as administrators. The total number of users that are using the solution is approximately 200.
How are customer service and support?
I have not used the support line directly from Sophos XGS, but I used the online knowledge site they have for support. They have good documentation.
The best support is provided by Cisco, Palo Alto, and Fortinet FortiGate because all the knowledge is available easily.
I rate support from Sophos XGS a four out of five.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup of Sophos XGS is not easy.
What's my experience with pricing, setup cost, and licensing?
The price of Sophos XGS is less than competitors worldwide. However, in Turkey the solution is expensive.
Which other solutions did I evaluate?
I have evaluated other solutions, such as Fortinet, Cisco, and Palo Alto, and the Sophos XGS has a more powerful interface. Fortinet FortiGate has too many options while Palo Alto is over more robust than Sophos XGS. However, if your company does not have a large number of users then Sophos XGS is best.
What other advice do I have?
My advice to others is if you are going to purchase a firewall in Turkey, Sophos XGS is the best choice because of the dealers and support available. The second best in Turkey would be Fortinet FortiGate.
I rate Sophos XGS a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Download our free Sophos XGS Report and get advice and tips from experienced pros
sharing their opinions.
Updated: November 2024
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
OPNsense
Cisco Secure Firewall
Sophos XG
Palo Alto Networks NG Firewalls
Check Point NGFW
WatchGuard Firebox
SonicWall TZ
Juniper SRX Series Firewall
Untangle NG Firewall
Fortinet FortiGate-VM
SonicWall NSa
Sangfor NGAF
Huawei NGFW
Buyer's Guide
Download our free Sophos XGS Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Which product do you prefer: Sophos XGS 2100 or Fortinet FortiGate 100F?
- Which firewall to choose for a medium-sized company with 150 users: Sophos XGS 2100 or SonicWall 2700?
- What do you recommend for a corporate firewall implementation?
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Which is the best network firewall for a small retailer?
- When evaluating Firewalls, what aspect do you think is the most important to look for?
- Cyberoam or Fortinet?
- Fortinet, Palo Alto or Check Point?
- If you could go back, would you change your decision to buy that firewall and why?