XG Firewall

Suggest, discuss, and vote on new ideas for Sophos XG Firewall. The next thing in next-gen.

XG Firewall

Suggest, discuss, and vote on new ideas for Sophos XG Firewall. The next thing in next-gen.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Increase Radius client limit (16 currently)

    Could you not add the option of adding an ip range in the radius client section instead of limiting it to 16 ip addresses. I see this as an absolute no brainer .

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  2. Firewall Name - Display in Left Navigation Bar

    In the UI the FW name (Admin Settings...Hostname) is NOT shown anywhere.
    Also, the FW Serial number is only shown on the primary pane at the top of screen when you are at the Control Center option.

    Please add the FW name, Serial Number, & Firmware version where it will be available regardless of which panel you are viewing. Perfect place for this would be immediately after the Sohpos logo, XG Firewall text in the navigation bar. That way it will be visible throughout the UI. Many times during FW configuration, for review and comparison, I might have more than…

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  3. Expose mail queue information via SNMP

    We'd love to monitor the SMTP queue via SNMP. We have an issue earlier in the week (#9330679) where we ended not receiving external emails for several hours because the XG 230 was having problems delivering email to our internal exchange servers, resulting in 750+ emails being queued.

    Would have been great to have been alerted via our existing monitoring solution that we had a queue building up.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  4. Azure Accelearted Networking

    It would be great if you could update the XG Firewall for Azure to be able to support Accelerated Networking. See the URL below. It seems this would be a nice selling point.

    https://docs.microsoft.com/en-us/azure/virtual-network/create-vm-accelerated-networking-cli

    It would seem since SFOS is built with RHEL, that it wouldn't be that hard to do.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  5. XG API add functionality

    Note: There is no category "API"...

    Add functionality to retrieve model number, serial number, cpu types, cores and ram via API. We use the API to create automated documentation for our infrastructure...

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  6. Central Registration - improvement

    currently a partner is unable to register the XG under the tenant within the partner portal, this must be completed by the tenant, would it not be prudent for the Partner to be able to register it within the tenant?

    Usually there is no one who is trained for this administration procedure outside of the partner itself.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  7. Next-Server support for XG routers

    Next-Server DHCP option for PXE boot is unsupported as of today on XG routers. This is needed in enterprise environments for imaging or deployment purposes. This needs to be added back to the device, as its only one dhcp option... and preferably add option 66 and 67 to the gui so it doesn't have to be done by console at the same time.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  8. OPT life time

    Please if it is possible to extend the life time of OTP for ever.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  9. VPN Logs from Log Viewer and Not CLI Only

    We should be able to get this right in the log viewer and not have to go through this. The UTM had this and we need to get the feature parity up to speed. This seems so basic to me. See below for Sophos instruction to pull logs via CLI, this isn't cool.

    https://community.sophos.com/kb/en-us/123310

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  10. xg135 has no loose authentication. we cant move AD users in group whitch created on sophos.

    we want loose authentication on xg135 . we cant move AD users in group which created on sophos.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  11. VDSL Module SFP not support PPPoE without username and password

    Many NBN providers in AU do not require a username and password for NBN FTTN. Instead, they use IPoE.

    Please fix the fact you cannot save the PPPoE settings without entering a username and password. Either that, or allow you to enable DSL with connection type DHCP or static selected

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  12. Few dongles not detected as a Modem across Cyberoam 10iNG and 15iNG device.

    Enter Dongle and Jio JMR1040 hotspot is not working on Cyberoam 10iNG and 15iNG device.
    Refer the ticket no- RE: [#9070238] Unable to connect WWAN
    Because as per your list maximum brands not available in India so take the logs from tier3 engineer Amitkumar Patel and modify the firmware and release new firmware. Inform us so that our problem can resolve.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  13. Running Schedule reboot and shutdown of XG 210

    As captioned Can sophos introduce this feature. so that we can shutdown and power-on the appliance by setting cron job or scheduler. We are not required to operate 24/7 and why should we keep the appliance ON unnecessarily during nights or weekends? Please advice as we have other Firewall appliance such as Fortigate, Cisco, Sonicwall and Juniper, all this is supporting. Why not XG sophos ?

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  14. SFM Change Firmware update "Apply" button to "Schedule"

    In Sophos Firewall Manager, when updating the Firmware of an XG Firewall, there is an "Apply" button, which brings up a scheduler when clicked.

    This is confusing, as it seems like this button will apply the firmware immediately without warning. Please change the name of this button to "Schedule" instead of "Apply" so that it's more obvious that the firmware will be scheduled for install and not apply immediately.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  15. Log Viewer: Filter the Firewall log to show entries with no User name

    One of the columns in the Firewall log is User name.
    If I click Add filter and choose User name in the Field box, my only options for Condition are: is, is not, Starts with and Does not start with.
    I need to find all of the log entries that have no User name. If I try to use the filter to see those entries by the Condition box to "is" and leaving the Value box empty, an error appears stating "You must enter a value for User name".

    To allow me to find all of the log entries that…

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  16. Network Alias GUI

    When you have more than three alias ip addresses defined on a network interface the list will expand on mouse-hover to show the scroll bar. At least on Chrome and Firefox this scroll bar will force the edit/delete icons to flow over to another line making it almost impossible to edit the entries. This could be easily fixed by removing the max-height definition in the gui css on the "aliasBlockPort" element and removing the on-hover css change to overflow:auto.

    Addidionally, when deleting an alias entry it will show an confirmation popup for deleting the entry. But the popup does not…

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  17. multiple addresses in dhcp relay on xg firewall

    Describe how 2 addresses in a dhcp relay are processed, please.
    Round-robin?
    Failover?
    Is the second address completely ignored?
    Are both addresses tried, fastest response wins?

    If Round-robin, please add option to choose Failover.

    If Failover, what are the failover conditions?
    Please allow at least a timer condition that can be set.
    If Failover conditions are met, when does the relay revert back to the primary address?

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  18. firewall hard drive maintenance routine

    I recently experienced a firewall freeze/crash and from what I read in the forums, the most common cause is some type of hard drive failure/corruption. I suggest the following:

    Create a maintenance routine and/or structure that allows the firewall to check its hard drive at regular maintenance intervals for file corruptions, bad sectors, etc. in order to promote a continuously healthy hard drive and firewall!

    Perhaps a parallel/mirrored drive system could both facilitate this maintenance routine as well as improve the firmware update process if it is not already existing.

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  19. preventing user to changing password of user account

    When we provide same username for more than 2 person in case of examination or class . means multiple login with same user id, then any one can change the password and other will suffer. if password changing option will be disable then we need not to worry about these conditions

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
  20. Can Cyprus (Greek) and Cyprus (Turkish) be added?

    The Greek part of Cyprus is a member of the EU. An EU country group would need to contain the Greek part of Cyprus, not the whole of Cyprus.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID Test Azure
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
← Previous 1 3 4 5 40 41
  • Don't see your idea?

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.