XG Firewall

Suggest, discuss, and vote on new ideas for Sophos XG Firewall. The next thing in next-gen.

XG Firewall

Suggest, discuss, and vote on new ideas for Sophos XG Firewall. The next thing in next-gen.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. IPSEC tunnel bandwidth

    Reporting on data transferred over IPSEC tunnels, broken down per-tunnel, showing application usage and other breakdowns to see how the bandwidth is being consumed.

    24 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    5 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  2. Export Logs to a .txt, .csv or .xls file

    We need the ability to EXPORT LOGS in EVENT VIEWER (all options) to a txt, csv or xls format.
    And not just the first page, but all the pages or option for x # logs pages. When trouble shooting its so much easier to export all the data to excel and then filter out the garbage and just look into the relevant data.
    I do this in WatchGuard right now and it makes finding needles in hay stacks a lot easier.

    The reports are their, just add the functionality to EXPORT.

    23 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    4 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  3. Add Reports for Intrusion Attack Detected and Blocked

    Customer requesting to show reports as well for Intrusion Attack Detected and Blocked or Drop

    13 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  4. Logs show NATed IP instead of private IP when the rule is set to drop the traffic.

    When the rule is set to drop the traffic, we are getting NATed IP on Syslog server's logs. All dropped traffic is showing public IP instead of private so we can't differentiate between logs based on private IP. We were informed that the Cyberoam firewall has such architecture. And if we want the private IP we need to set the action and allow and drop the traffic using utm features.

    This should not happen.

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  5. Report on User Bandwidth for Both Download and Upload

    Can we get XG on box reporting for user bandwidth usage for both download and upload. This will allow us to report on both how much a user has downloaded and uploaded. The uploaded data is important to see if users are uploading large amounts of data for dropbox or google drive.

    21 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  6. User Threat Quotient for safeguarding vulnerable users

    The User Threat Quotient (UTQ) is an excellent tool for identifying high risk users, based on security risks. I think this could be improved further to include categories such as Extremism/Radicalisation, and Self Harm/Pro Suicide. This will be of great use for education customers to help instantly identify high risk/vulnerable users in relation to the Prevent duty and Safeguarding guidelines.

    22 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    2 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  7. Failed connection attempts in wireless reports.

    In the Sophos UTM there is an overview on failed connection attempts of wireless clients. This is missing from XG reporting.

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
    senthilraj.s responded

    Thank you for reaching out . We have added the request to the Backlog and will keep you posted once we identify a Release Vehicle.

  8. Management Pack for MS Operations Manager

    It would be great to have a management pack for SCOM for the XG line!

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  9. Accurate and Instantaneous reporting of connection throughput

    We've had some users and services saturate our internet connection. Presently it is very difficult to determine in real time who is using how much internet. Bandwidth on the dashboard is inaccurate when reported per user or IP. usually very understated. Diagnostics > connection list is unsortable, and doesnt show traffic in Kbit/sec instead it's total bytes or total packets. Network > wan link manager > graphs are only updated once every 2 hours. Current activities > live connections is delayed and understated.

    No where can we get a list of traffic that adds up to teh bandwidth graph of…

    51 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    4 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  10. Report on bandwidth consumption over time per WAN connection

    Appreciate if you could provide solution the each Interface Internet Service Provider bandwidth Utilization Report. I need to pull the report of Utilization of bandwidth for every month (Example: WAN Utilization of each Service Provider, how much upload and download utilization).

    31 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    8 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  11. Option to change the host ip address into a name under reports

    Option to change the host ip address into a name under reports for easier identification

    18 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    2 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  12. Sophos XG weekly backup email notification subject

    Hi Sophos ,

    For the XG model weekly backup email notification can't change subject name.

    Because during the email backup we received multiple device with serial number. We hope can change the subject from Serial number to company name.

    thank you
    Ray
    I hope future be improve

    17 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    3 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  13. Report traffic by firewall rule ID

    We need the traffic SYSTEM GRAPH based on RULE ID, because based on rule id (policy) we can easy to identify where the bandwidth consumes easily,
    because we purchased this firewall before two months. in old firewall we had that option, so please add this feature

    30 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  14. Allow changes to syslog format for easier reporting in 3rd party logging tools

    The "syslog" format is not very sysloggy.for example some fields are quoted, some are not, blank values are included but not quoted making it unnecessarily difficult to parse. permitted. Be nice to be able to specify custom formats to avoid messing about with, for example, logstash filters.

    18 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    2 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  15. Specify time of day in report begin/end time

    I would like to see time based (not by dates alone but by time - like 7:00pm to 7:00am)

    A major use case for this is web usage reporting sorted by nodes, network or firewall rules.

    I'd like to see this as a drill down of the web usage activity reports.

    58 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    8 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  16. Field Mapping Between Firewall & Active Directory

    For all the users fetched from active directory on to the firewall, the firewall admin should be able to mapping active directory field to the username fields on the firewall.

    Please check this thread from Sophos Community for more Information.

    https://community.sophos.com/products/xg-firewall/f/logging-and-reporting/86524/override-username-field-on-the-firewall-with-some-other-field-on-active-directory---report-shows-emp-id-instead-of-username-xg-sso/320495#320495

    Hope to see it soon in SFOS

    7 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    2 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  17. User report showing only primary URL visited

    Currently the system cannot report on specific domains - urls that users have entered to a search engine.

    Need a report that can do this without reporting on ALL the urls required to make a page work - dont want to see multiples of the same urls or the extra urls required to make a page display - only want a list of what users are trying to access

    11 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  18. Add customizable log notifications so we can be emailed with an intrusion is detected

    Every other firewall i have used has had the ability to email alerts and log files based on customized thresholds. This feature is lacking from the XG. The only thing it allows you to do is setup notification settings for when IPSEC tunnel drops and comes up.

    28 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  19. Guest WiFi: Log by MAC address

    In France, we need to have 1 year of log on Guest Wifi.

    Actually, the logs are by IP address but we don't have logs which associate MAC address and IP address.

    Maybe you can add a new feature by the possibility to configure logs by MAC address and not by IP address.

    10 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  20. Reporting by MAC Address.

    Ability to generate reports based off MAC Address.

    36 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    8 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.