XG Firewall

Suggest, discuss, and vote on new ideas for Sophos XG Firewall. The next thing in next-gen.

XG Firewall

Suggest, discuss, and vote on new ideas for Sophos XG Firewall. The next thing in next-gen.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. CRONjob

    Keep the XG flexible by starting cronjobs. Crontab would be great!

    28 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  2. Allow remote session and denied file transfer over Team-viewer application

    Requirement is Allow remote session and denied file transfer over Team-viewer application.

    Refer the case id : 7486601

    6 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Application Control  ·  Flag idea as inappropriate…  ·  Admin →
  3. Sexually Explicit Category

    The web category "Sexually Explicit" contains alot of mis-categorizations. The system admin generally uses this category to block sites. It would be better if there was a category named "" itself, with the all the websites that are absolutely **** oriented rather than vaguely explicit contents.

    3 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Web Protection  ·  Flag idea as inappropriate…  ·  Admin →
  4. Ultrasurf Proxy; False Log

    The ultrasurf proxy restriction in XG firewall gives false response. The log viewer indicates that the application is being denied while the user is bypassing all the policies with a simple extension in chrome browser. It would be better if it rather said allowed than give false information.

    8 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Application Detection Requests  ·  Flag idea as inappropriate…  ·  Admin →
  5. UTM Smart Installer for Sophos Firewall OS (XG)

    Please add Support for SFOS-Images to the UTM Smart Installer.

    Thank you very much.

    4 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    Declined  ·  0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  6. AD authenticated user stays logged in forever

    I have configured user authentication from AD to access the internet. In present firewall is automatically logged out the user if the user is inactive for some time (same told by Cyberoam technician). So remove this feature or make an option for this for users to logged in continuously.

    5 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Application Control  ·  Flag idea as inappropriate…  ·  Admin →
  7. Policy Checker, Time Schedule customization, and Total number of user per AP

    I would like to include this on XG Firewall the Policy Checker, Time Schedule customization, and Total number of user per AP

    9 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Web Protection  ·  Flag idea as inappropriate…  ·  Admin →
  8. Select 2 or more external ips (isp links) on a business rule

    Option to select 2 or more wan ip in a business rule

    8 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  9. Use McAfee database for Webfiltering

    Please use McAfee website databases from UTM again!
    Please vote this feature!

    22 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Web Protection  ·  Flag idea as inappropriate…  ·  Admin →
  10. Current activity should have CTA option in authenticated users filter

    Current activity should have CTA option in authenticated users filter

    As we are able to see login method as CTA which are logged in through STAS(Client less SSO),
    Also current activity showing users method as SSO for CTA auth. user(its an issue as showing different types) and if we apply filter to check SSO user is not working

    SO best Idea is for you to have a option as CTA in filter to check

    Regards.
    HARDIK PANCHAL
    960166 1424

    4 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  11. Rewrite dynamic URL for a VPN bookmark

    I want to add a https bookmark that will take the user to my internal vmware horizon html access landing page.

    The clientless access bookmark is a dynamic url and currently the XG is unable to intercept the request and rewrite.

    I am requesting that development create a regular expression to capture these types of requests.

    4 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  12. Make Changes in sophos like Cyberom

    Need to make change in sophos group policy , In that i need option for making policy for group.

    When i select match group option by default that policy should be apply for group.

    3 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Network Protection  ·  Flag idea as inappropriate…  ·  Admin →

    In XG we have chosen to move to a more straightforward method of making security decisions. Rather than having decisions spread across several sections of the product, all are handled directly from within firewall rules. This is largely an improvement over Cyberoam, and we will work instead to improve the current implementation, rather than moving to a more spread out model.

  13. Scan files without size limit

    Please make us able to deactivate size Limit in Realtime scanning mode.
    Please vote it!

    18 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    Declined  ·  1 comment  ·  Web Protection  ·  Flag idea as inappropriate…  ·  Admin →
  14. sandstorm for home users for free

    Please unlock Sandstorm for XG home but please let sophos xg be a free software!

    41 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    5 comments  ·  Web Protection  ·  Flag idea as inappropriate…  ·  Admin →
  15. SIM card slot on smaller end appliance for connecting to internet.

    Few remote locations does not have neither ILL ISP nor Broadband ISP. Customer asks for SIM Slots in hardware appliances, which as of now not available.

    7 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  16. safe search exclude devices (ios,android,windows,linux etc.)

    Safe Search runs on the windos devices seamlessly. And some customers want to exclude android or ios devices. They dont want to install the certificate on their personal or mobile .
    IP/MAC host associated can be problem for the customer who has lots devices.
    And some of them do not want their IPs to leave in another rule

    So I think It would be nice to have a setting so that it can be applied separately for devices

    ( for more info >> https://community.sophos.com/products/xg-firewall/f/web-protection/89648/safe-serach )

    5 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Web Protection  ·  Flag idea as inappropriate…  ·  Admin →

    It is no longer necessary to use HTTPS decryption in order to enforce SafeSearch, so the problem of mobile devices without an organizations CA certificate should not be an issue any longer.

    Furthermore, in v17.5 we have moved SafeSearch configuration into Web Policy.

    If you still want to support device-specific policy configurations, there are other existing idea requests on this forum you should consider supporting.

  17. Support for Realtek RTL8811AU Wireless LAN USB Network Adapter

    It would be amazing if Sophos added support for this WLAN USB NIC.

    9 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  18. Allow text for WhatsApp but not images, video or audio

    Customer would like to allow Text for Whats App but blocks the block download & Upload of Images,video & audio

    8 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Application Detection Requests  ·  Flag idea as inappropriate…  ·  Admin →
  19. File extension cause some URLs to get blocked

    There is an issue blocking .dll extensions causes problems with websites that use ISAPI.dll on their URL. Sample scenario web policy containing a block for System files which include dll on file type when enable is blocking the URL for ebay http://my.ebay.com.au/ws/eBayISAPI.dll?MyEbay&gbh=1

    3 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Web Protection  ·  Flag idea as inappropriate…  ·  Admin →
  20. Download/upload report for Web

    Ability to report on downloaded and uploaded executables (.exe, .bat, .ps1) for each user, which website.

    6 votes
    Sign in Sign in with Log in with your Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Reporting  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.