We use the solution for the firewall.
Sophos Cloud Firewall (PAYG)
SophosExternal reviews
External reviews are not included in the AWS star rating for the product.
Sophos Firewall
Easy to Use. Integration with LDAP is easy for authentication. Additional feature as it has 2FA and role based administration.
Sophos Firewall - Best NextGen Solution
Reporting is very advanced and detailed.
The configuration is fantastic, highly efficient, and robust
What is our primary use case?
What is most valuable?
The configuration is fantastic, highly efficient, and robust. We don’t have to spend more considering the organization’s size. It's easy to configure what you want to do. The response time is very good. VPN connections have been stable.
What needs improvement?
The payment plan could be improved.
Sophos XGS comes with mostly eight ports, excluding the five ports. It would be better if they could increase the eight ports to ten. Most times, we don't want to use two. I will need to get another switch if I have five ISPs. Sophos engineer should look into that.
There were issues while switching the firmware to an upgraded version.
For how long have I used the solution?
I have been using Sophos XGS for five years.
What do I think about the stability of the solution?
The product is stable.
What do I think about the scalability of the solution?
The solution's scalability is good. It depends on what you have and the advanced structures from purchasing a particular version.
We have 80 users and 30 servers in our organization.
How was the initial setup?
The initial setup is straightforward but a bit complex on production. You will need to configure the IP addresses of each device. We have scheduled downtime to safeguard stakeholder data periodically. We anticipate smooth transitions during these times. However, there may be instances where complexity arises, particularly regarding backups. For instance, when transitioning from firmware version 19.0 to 20.0, you must first downgrade the new device to version 19.04 before restoring the backup. This process requires a good understanding of the techniques involved. While we aim for simplicity, complexities may still arise. The migration takes two hours to complete.
We terminated one cable and continued the conversion using the backup from production. We quickly transferred it and pushed it into the new one. When we noticed it was running, we didn't even remove the whole one. We pushed it to the top and started to unplug the cable, then plugged it in again, repeating the process while waiting for the new box to learn the IP addresses of all the devices.
What's my experience with pricing, setup cost, and licensing?
The solution’s pricing is good.
What other advice do I have?
The first thing to consider is the size of the organization. When evaluating pricing, consider your current needs and what the device offers. You may not need all the features immediately. For smaller enterprises like mortgage institutions and microfinance, we recommend Sophos. It's suitable for them. However, larger organizations can also integrate it, perhaps for specific functions. The configuration, efficiency, and scalability are excellent.
Overall, I rate the solution a nine out of ten.
A programmable, dual processor architecture with enterprise-grade acceleration for trusted traffic and applications
What is our primary use case?
For network security and filtering through our infrastructure, we rely on Sophos Firewall, specifically using Connect Sophos Cloud in our branches.
Endpoint protection is crucial, so we integrate with DuoSet, and the system allows for VPN connections with various devices like SaaS, Alibaba, Fortinet, and Cisco, supporting encryption detection and more.
How has it helped my organization?
It's crucial for our company, as well as other companies and customers. When our customer licenses expire, they request to renew or make changes to their Sophos XGS boxes. This process is significant and managed by our technical team or engineers.
What is most valuable?
The Sophos XGS product is highly versatile and well-suited for various companies, including small, medium, and large enterprises. Its effectiveness lies in its inspection firewall capabilities, making it a commonly chosen option in our country due to its reasonable pricing. Sophos Firewall's support for VPN encryption and thorough inspection makes it a suitable choice for many companies, and I recommend it accordingly.
At the moment, I can't propose any new features. The primary concern is traffic stability, which needs improvement. Although the traffic stability is generally good, it has been noted that it can impact RAM and CPU, affecting workflow and inspection.
What needs improvement?
In my view, Sophos operates effectively in a reactive mode, focusing on static detection and forwarding traffic. However, Fortinet takes a more proactive approach, blocking both connection and route connections. While Sophos forwards any connection in both inbound and outbound traffic, I believe this is a positive aspect, especially in a country with various sizing considerations. This is my perspective, emphasizing the significance of Sophos XGS in software work.
For how long have I used the solution?
I have been using Sophos XGS for two years.
What do I think about the stability of the solution?
It's a stable solution. I would rate it around nine. There is room for improvement, especially in terms of support. As I mentioned earlier, when the CPU and memory reach their maximum capacity, the tool forwards traffic. This is a critical aspect—no inspection, no traffic, and no log.
What do I think about the scalability of the solution?
It is a highly scalable solution. I can't provide an exact count because I work with multiple solutions, including Sophos XGS, Fortinet, and Palo Alto. Counting all the users across these platforms is challenging.
How are customer service and support?
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
In the last two years, I have worked with Sophos Firewall, and it is an excellent firewall. It's easy to set up with encryption and inspection features. In my view, it's well-suited for all.
How was the initial setup?
The initial setup of Sophos XGS has been quite smooth and user-friendly. Unlike my experience with Fortinet and Palo Alto, which posed challenges, Sophos XGS stands out for its ease of use. End users can handle the setup themselves without requiring an engineer to configure the firewall or register the device.
What's my experience with pricing, setup cost, and licensing?
It's highly effective and well-suited for medium and small companies. The pricing is attractive, and our customers find it suitable for regular license renewals.
Provides extreme protection
What is most valuable?
All security solutions are the same. It depends on the size of the network and license. They have the same features. Brands provide extreme protection.
What needs improvement?
The solution is expensive.
For how long have I used the solution?
I have been using Sophos XGS for four years.
What do I think about the stability of the solution?
The product is stable.
What do I think about the scalability of the solution?
The solution is suitable for small and medium businesses.
How are customer service and support?
Customer support is great.
How would you rate customer service and support?
Positive
How was the initial setup?
The initial setup is easy and takes around 30 mins to complete.
What's my experience with pricing, setup cost, and licensing?
The product’s pricing is average compared to other solutions.
What other advice do I have?
Overall, I rate the solution an eight out of ten.
Monitors our network environment properly, creates and manages firewall rules
What is our primary use case?
We used it to create rules to monitor our network environment properly, using the standard.
How has it helped my organization?
It's great because we can create and manage firewall rules, add policies to those rules, and generate detailed reports. It has helped us protect our network and meet compliance requirements.
What is most valuable?
The policies are the greatest feature. They allow us to configure granular control over our network traffic.
What needs improvement?
The speed of report generation could be improved.
For how long have I used the solution?
I have been using it for one year. I used version 16.5, and I also used version 17 of the product.
What do I think about the stability of the solution?
I would rate the stability a ten out of ten.
What do I think about the scalability of the solution?
I would rate it highly for scalability. I would rate the scalability a ten out of ten.
Which solution did I use previously and why did I switch?
I had a little bit of experience with another firewall solution, but not much.
How was the initial setup?
It is easy to deploy and manage.
What's my experience with pricing, setup cost, and licensing?
The pricing is okay.
What other advice do I have?
I would recommend go ahead and use it. It's a great product. I have this product in my house as well.
Overall, I would rate the solution a ten out of ten.
An affordable solution for SD-WAN to connect the branch’s site with antivirus
What is our primary use case?
Users have distributed networks. They use it as an SD-WAN to connect the branch’s site or multiple locations. We are using RED channels or devices for branch-to-branch connectivity.
What is most valuable?
You don't need an additional subscription for IPS or an antivirus. It has an engine of antivirus applications for IPS. You have an email gateway for people who are still using on-prem exchange. Comparatively, other firewalls might need multiple subscriptions separately for each feature.
What needs improvement?
Sophos might discontinue the UTM features, as they've been promoting the newer XGS Series appliances. While the XGS offers great features like detailed logging and audit reports, it currently lacks essential functions in the UTM. For example, the XGS doesn't provide basic audit tracking for configuration changes, which is crucial for understanding who made modifications, what was changed, and when. Sophos claims they'll add this functionality later. Its absence significantly hinders the usability of the new firewall.
Additionally, while XGS offers decent day-to-day management, there's room for improvement. Many users transitioning from UTM find the XGS interface less intuitive, causing a learning curve.
For how long have I used the solution?
I have been using Sophos XGS as a reseller for a long time. We are working with the latest version of the solution.
What do I think about the stability of the solution?
The newer version is stable. Earlier versions, like V8, were quite unstable.
I rate the solution’s stability an eight-point five out of ten.
What do I think about the scalability of the solution?
The solution’s scalability is good. We cater the solution to small, medium, and enterprises.
I rate the solution’s scalability an eight out of ten.
How are customer service and support?
Support is mostly good, but sometimes it takes too long to escalate the solution.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup is very easy. It depends based on the scale of the deployment. There are different use cases according to the customers. Based on the requirements, the deployment can take between one day to a month. We have a small customer with a few hundred users. We can configure that within two to three days and finish the deployment quickly. It requires meticulous planning, and doing it then takes time based on the size of the customer , especially if it's a big customer. A small deployment is very easy. Larger deployments take time based on the customer requirements and different timescopes of the customer and downtime.
What's my experience with pricing, setup cost, and licensing?
Sophos is comparatively cheaper than other products. The total cost of ownership is better in Sophos.
I rate the product’s pricing a five out of ten, where one is cheap and ten is expensive.
What other advice do I have?
Overall, I rate the solution an eight-point five out of ten.
Crucial for safeguarding data, enforcing user access controls, and ensuring secure communication
What is our primary use case?
I use Sophos XG for network security and VPN policies. It is crucial for safeguarding data, enforcing user access controls, and ensuring secure communication. The firewall features, like application control and intrusion prevention, provide a strong defense against cyber threats. With centralized management, setting up and monitoring policies becomes easy, and the VPN capabilities ensure secure remote access for our team.
What is most valuable?
What I like about Sophos XG is its versatility in tailoring security features to our specific needs. In our environment where certain services are only needed part-time, the flexibility to deploy services selectively is valuable. The comprehensive protection, from firewall to market inspection and routing, ensures a robust defense. I particularly like the visibility it provides into network traffic, allowing us to identify and address issues efficiently.
What needs improvement?
While Sophos XG has been reliable for remote troubleshooting sessions, it would be beneficial if the platform provided more flexible support for a variety of devices. The user interface is intuitive for those familiar with it, but improving accessibility and user guidance could be beneficial for newcomers. Additionally, although the features are comprehensive, fair pricing and more flexibility with device compatibility could make it even more appealing in the market.
For how long have I used the solution?
I have been working with Sophos XG for two years.
What do I think about the stability of the solution?
It is quite stable.
What do I think about the scalability of the solution?
I would give it a ten out of ten for scalability. We have approximately 100 users.
How are customer service and support?
Tech support for Sophos XG is great. They are professional, respond quickly, and help resolve issues effectively.
Which solution did I use previously and why did I switch?
Previously, I have used Fortinet and SonicWall.
How was the initial setup?
The initial setup of Sophos XG is not complex, especially with familiarity and experience. As you work with it over time, it becomes more straightforward, and mastery comes with continuous use. Deployment depends on specific organizational needs, but in general, it involves configuring the connection between the internet and the local network, setting up VLANs, and defining firewall rules. For me, as a consultant, the process varies based on different client scenarios. Sophos XG simplifies the deployment process, and once configured, it efficiently manages network access for different user categories.
What about the implementation team?
I have done both in-house deployments and collaborated with integrators based on the client's preference. As a consultant, I assess the needs, design the setup, and can either guide the in-house team through the deployment or handle it myself. The process involves configuring the live site for optimal security, and in some cases, I work remotely on existing setups. Sophos XG's flexibility makes it feasible for both in-house and external experts to manage the deployment effectively.
What's my experience with pricing, setup cost, and licensing?
The payment structure can depend on the reseller or partner. Typically, it involves getting the device first, and then the licensing is managed, often in US dollars, through the partner or reseller. The process ensures proper handling and support through authorized channels.
What other advice do I have?
I would recommend Sophos XG for anyone looking to build robust IT systems. It is ideal if you have a clear vision of your IT infrastructure and want a solution that can seamlessly integrate and enhance security. The flexibility to tailor it to specific needs makes Sophos XG a valuable choice for building a reliable and secure network. Overall, I would rate it as a ten out of ten.