SG UTM
Suggest, discuss, and vote on new ideas for SG UTM. The ultimate network security package.
-
Detailed logging on which DataCentre the Sandstorm samples are sent to
I have a customer that is based in the Channel islands and if traffic needs to leave the EU they need to know exactly where this goes. However currently Sandstorm samples are load balanced across all Sandstorm datacentres. The customer would like logging added to the logs/reports that shows which Datacentre their samples were sent to.
5 votesPlanned ·AdminJan Weber (Product Manager, Network Security Group, Sophos Features & Ideas Laboratory) responded
It is planned to add a feature that will allow to select the data center. Currently the datacenter location is chosen based on latency based routing, between US and EU. There is no load balancing between these datacenters. Customers within the EU will be redirected to the EU datacenter with this setup.
-
UTM - SG to XG RED Tunnel
Can we please have the ability to setup a RED tunnel between an XG UTM and an SG UTM? I am NOT talking about a RED device itself, rather a RED tunnel between 2 UTM's. I know I can do IPSEC but RED tunnels would be handy.
2 votesHi Ashley,
Thanks for sharing youtr idea with us. This capability is currently being worked on, and will be added in the next version of XG
-
Attachment, link, and file emulation
Email is a huge vector for malware. Not all of it comes in as an attachment. Links in email often lead to NEW malware. NEW versions of malware are attached or embedded into Office documents. Files users download may have NEW undetected malware in them.
Palo Alto has Wildfire. FireEye has a similar service/appliance. Each service takes URLs, Office documents and unknown files and detonates them in a sandbox to determine if they are malware. Previously unseen downloaded files are uploaded to the same service. When NEW malware or malware links are discovered, an update is pushed to all subscribing…
15 votesPlanned ·AdminRich Baldry (Senior Product Manager, Network Security Group, Sophos Features & Ideas Laboratory) responded
We are looking at adding this kind of functionality to UTM v9.4. Watch this space…
-
SPX Reply Portal Attachments
The built in "Reply Portal" for SPX should allow the recipient to attach files with their reply.
46 votesWe are planning to include this in next upcoming release 9.3 later in 2014
-
STAS Integration
Add STAS capability as per Sophos XG. Agent on domain controllers that detect logins/logouts of users is perfect.
Many thanks
3 votesPlanned ·AdminJan Weber (Product Manager, Network Security Group, Sophos Features & Ideas Laboratory) responded
This is planned for the next release of Sophos UTM.
-
WAF - Authentication profile to apply to multiple site path routes
To allow for greater flexibility and usability of the reverse proxy we should implement the ability for authentication to be applied to multiple site path routes.
Example issue: The WAF exchange config guide recommends 2x site path routes for /owa and /ecp. Once authenticated with owa, when you browse to the control panel you need to authenticate a second time which is not good user experience.
The only way round this is to add the site path route for / and then implement a re-direct on the default IIS screen to /owa. This is less than ideal and also authenticates…
2 votesHi Jonathan,
such a feature is under development currently for the next releases of both UTM9 and Xg firewall. Thanks for your feedback!
-
RED: Uplink and UMTS/3G Signal Status
It would be great to know the status of the internet connection uplink(s) in use on our RED sites. Especially with the 3G/UMTS option, perhaps a way could be found to display the signal strength as well for extra benefits?
29 votesGreat idea. This feature will be part of UTM 9.2 which will enter public beta in October. You will be able to test it out at that time. Stay tuned!
-
Wireless: SMS Passcode for HotSpot
Add a fourth variant for hotspot type "SMS Passcode". User enters his mobile phone number into captive portal, and will obtain a passcode via SMS. Just got this requirement today from a partner, who wants to set up a free public wifi hotspot this way for a customer...
188 votesAs part of the Sophos UTM V9.3 release.
-
RED device with integrated wifi
Why not integrate wifi into the RED? Just adds to its simplicity.
11 votesPlanned ·AdminJan Weber (Product Manager, Network Security Group, Sophos Features & Ideas Laboratory) responded
We are working on launching a RED device with integrated Wifi with a future release of UTM.
-
Web Security: Enforce YouTube Safe Search
Add YouTube as a Safe Search option like Google, Bing, and Yahoo.
48 votes -
Reverse Proxy: Authentication Offloading like TMG
will there be a feature like Authentication / captive portal (e.g. the proxy settings"transparent with authentication" ) for enabling a reverse proxy?
This would be so usfull for small installations with no frontend exchange / DMZ.
(juniper calls this "webauth" )179 votesWe are hard at work on this feature and will deliver the first implementation of front end authentication as part of our Web Server protection (reverse proxy) in UTM 9.2. The public beta will begin in October. Stay Tuned!
-
Logging: Enhanced log searching tools (Better search & filter)
I would like to see better and more granular search options/filters for log searching.
What if I'm interesting in a host only when it's a source and only when it goes to port 25 on another host. Today I can only give a simple search term and get way to much data back for it to be useful fast without spending too much time looking through the result.
25 votesThis feature will be part of the UTM 9.2 release which will enter public beta in September 2013 for GA release in November. Stay tuned!
-
Logging: Global Search of Log Files
Add the ability to globally search all logs for matching strings from a single entry box for a specified date/time range.
51 votesThis feature is planned for the UTM 9.2 release later in 2013. Stay tuned.
-
Reporting: Allow filtering on web reports for all fields/columns
It would be nice to filter reports to allow searchs for, e.g, blocked sites by users.
If we select the "User" report, neither "action" or the "URL" can be used for filtering. If we select the "URL", we can filter by "action" (blocked) but it misses the source/user.
I realy like the way the new reporting works, but it seems to enable the filtering only on the columns fixed in the "available reports" drop-down menu.
31 votesThis feature will be part of the UTM 9.2 release which will enter public beta in September 2013 for GA release in November. Stay tuned!
-
Web Security: Redirect instead of displaying block page
I am Astaro Hong Kong Support, for SMEs, they would like to Astaro provides redirecting page insteads of blocking page e.g) web security blocking page. SMEs can type their company webpage and don't want to display any blocking message.
23 votesThis feature is planned for UTM 9.1 which is targeted to begin beta in late 2012/early 2013 for release in Q1 2013.
-
Add License info to Daily Report
Add the license info (type of licenses) and or the amount of time left for the licenses on the daily report
11 votesThis feature was re-prioritized and will now be targeted for UTM 9.2 later in 2013.
- Don't see your idea?