XG Firewall

Suggest, discuss, and vote on new ideas for Sophos XG Firewall. The next thing in next-gen.

XG Firewall

Suggest, discuss, and vote on new ideas for Sophos XG Firewall. The next thing in next-gen.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Sophos Client Connect auto connect user when on insecure wifi or away from office

    A cool function of the new Sophos Client thats available for 17.5 would be if it could be configured on the firewall to auto connect on insecure wifi or away from office. (Both should be options) I have users who would not want this at their house, but I would want to force it if they were connected to hilton wifi or starbucks wifi.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  2. IPSec over LAN zone interface

    With SG you can configure IPSec site to site using LAN interfaces but with XG you only can configure IPSec site to site over a WAN zone interface. Please allow to do it also over LAN zone interfaces. Thanks

    18 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  3. SSL VPN users must have the timing access for LAN resource

    Almost every Firewallsystem offers an option to enable VPN Access for an user just for some time. In Example : klick on the user -> Enable VPN Access for next 8h.

    So VPN Access ends with 8h of use and there is no need to deactivate it manually.

    Please provide this function.

    5 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  4. IPSEC tunnel in transport mode

    I need to enable ipsec tunnel in transport mode and also tunnel interface feature

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  5. IPSec Connect Client Token field

    Hi,
    can you please add a token field that users don´t need to write Password+Token in one field.

    It´s better when it´s seperated, like the CheckPoint Client.

    1. Username
    2. Password
    3. Token

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  6. need to vpn connect with corp network before user login to their system where using xg

    need to vpn connect with corp network before user login to their system where using xg

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  7. VPN Bandwidth report

    Hello Team,

    We have customer here requesting to check if possible to generate report for bandwidth utilization for ipsec vpn tunnel. Customer would like to see what application or traffic activity is eating up the bandwidth for ipsec vpn tunnel. For your assistance please. Thank You

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  8. Multiple Users on a HTML5 Object

    I've just come across the restriction that HTML5 bookmarks can only be used for one user at a time, meaning you have to create 20 odd bookmarks so you can have concurrent users accessing the same resource, even with the extra bookmarks the users have to click on each one to find one that's not in use. It's naff to say the least. Having a single object with multiple connections would make this go away.

    5 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  9. ssl vpn udp

    I am using CR OS Version 10.6.5 MR-1. SSL vpn support UDP and TCP both protocol. in upcoming CR OS version/latest CR OS Version 10.6.6 MR-3; SSL Vpn with UDP protocol not working. I have many time talk regarding same with CR Cust Care Support team, they said cr os developer not allow to support udp in ssl vpn. I Suggest you SSL Vpn with UDP works 6X fast than TCP. Due to this lack of gap I would not recommend to upgrade CR OS, as costumer IT will be helpful if cr os in latest version work SSL Vpn…

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  10. Created user should receive a email from firewall

    If the administrator creates a user in the firewall,
    then the user should receive an email like "your user account is created and credentials for login"
    if you add this option in Sophos XG Firewall it will be very easy to the administrators or else admin wants to share the credentials to the user.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  11. Configless SSL Client

    I would like to see a SSl VPN client that does not require reinstalling the application after every config change. The SSL VPN client config should be updating when it connects after a modification is made.

    35 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  12. 3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  13. IPSec Email notification

    In Sophos XG330, Is it possible to add a function where we can modify or customised the IPSec Email Notification wording from the current default notification?

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  14. Required Domain authantication for L2TP VPN

    Required Domain authantication for L2TP VPN.

    only local users are able to connect through L2TP but not domain users

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  15. Ability to add or update SSL VPN profile without dropping all tunnels

    Whenever you make a change to a SSL VPN Server connection in XG(Even the description!) it drops all connected sessions temporarily when you save the changes. I should be able to change the name or description on a server connection profile without dropping a session!

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  16. ADVPN

    Please add ADVPN feature. It is very useful and requested option by the client.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  17. esp dump

    offer the same ESP DUMP Feature like in UTM 9.X on shell to have a deep view in VPN traffic and tunnel enviroment

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  18. IPSEC connection multiple endpoint IP

    When configuring an IPSEC connection to a remote site that has two ISP access it would be useful to have the option to add multiple remote IP address in the connection settings .
    Otherwise we are forced to create two IPSEC connections and one will always be down , until the remote site would failover to the second IP , and reported in the dashboard

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  19. Wake on Lan with RED

    Please implement the possibility to send a Wake On LAN (WOL) to computers behind RED devices.

    We have networked our branch offices with RED devices. In order to be able to service these computers during a maintenance window (e.g. for the installation of updates) they must be able to be started via Wake On LAN. Unfortunately this is not possible at the moment!

    11 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  20. Lease specific IP to remote system connected via SSL VPN

    Lease specific IP to remote system connected via SSL VPN

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.