XG Firewall

Suggest, discuss, and vote on new ideas for Sophos XG Firewall. The next thing in next-gen.

XG Firewall

Suggest, discuss, and vote on new ideas for Sophos XG Firewall. The next thing in next-gen.

Suggest an Idea...

(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Sophos SSL client login before windows login

    I would like to auto login sophos ssl vpn before windows login like cisco anyconnect to enable remote user get connectivity AD for password resat..

    1 vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  2. Sophos Connect Client - AD password reset

    It would save a lot of client frustration if there was a mechanism built into the Sophos Connect client that allowed users to securely reset their AD account password in the event that it has expired.

    8 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  3. VPN folders

    We're now able to group firewall rules into folders, which is quite useful. Would be nice to be able to do this for VPN connections too.

    1 vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  4. SSL VPN report

    I would like to have a report for the use of ssl vpn with duration and time.

    13 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  5. VPN access to Guest users

    Hi,

    I would like to request you to that enable VPN policy for Guest users. We had successfully given vpn policy to guest users but in sophos XG. We need to give vpn to guest for clients or candidates for screentesting so please look into this.

    1 vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  6. Sophos Connect - Integrate Sophos Admin into XG

    It would be ideal to expand Sophos Connect to have the firewall push the policies dynamically as users login or allow for profiles (like SSL-VPN).

    This will allow for an always updated policy rather than futzing with .scx files and trying to get changes imported onto road warriors.

    3 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  7. Clientless VPN Bookmarks need more settings and ones that are there need to work.

    Please fix the HTTPS and RDP clientless VPN options, as they are now they seem either broken of half-heartedly implemented (I was being kind when I meant to say half something else). Also, it would be nice if you could add some more options, especially to the VNC/RDP module, things like color depth, resolution, encoding, etc. would be greatly appreciated.

    4 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  8. Bookmarks should appear or disappear based on connectivity

    Would be great if you could make bookmarks aware of connectivity and appear only when that bookmark will actually do something. If the destination of the bookmark cannot be reached (tunnel down perhaps?) then the bookmark should either disappear or show up greyed out and not allow it to be selected.

    1 vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  9. On-demand RED Tunnels

    Would be nice if you could add an option to activate a RED tunnel only when traffic is destined for a network on the other side of the tunnel. In this way we could have RED devices behind cellular modems and not use massive amounts of data just to maintain a tunnel that isn't being used. The overhead to maintain a RED is about 2K/s which doesn't seem like much but over the course of 30 days will add up to over 500MB which is a lot on a limited cell plan.

    1 vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  10. OpenSSL

    Can we please update OpenSSL to a newer version and also maybe compile it to use the AES extensions in the CPU for those of us that have processors that support it? 50 road warrior vpn users and 12 red devices, and 5 site to site tunnels can crush a 310.

    5 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  11. VPN PSK retrieval

    Provide a mechanism by which a site to site VPN pre shared key could be retrieved.

    5 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  12. Clientless VPN Bookmark Groups should show up as folders

    Bookmark groups should be shown on the userportal as a folder rather than just showing the contents of the group on the main page. This would help a lot where users are members of multiple bookmark groups which are organized by type/location/department/etc.

    1 vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  13. Printer, clipboard, and file redirection for clientless rdp along with fullscreen and multimonitor support.

    The clientless VPN for RDP is extremely limited in its abilities.
    The standard RDP client can allow the server on the inside of the network to redirect the printers of the client PC so print jobs can be sent to the client PC. It also allows for drives on the client PC to be made available to the server and seamless use of the clipboard. The Cisco variant (using internet explorer) allows for these with no issues and supports a full screen mode. While neither supports Multi monitor, a lot of power users want to use both screens. While we…

    1 vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  14. Netbios over VPN

    When i connect through Connect VPN. I am not able to access my internal servers with their host name, kindly add this Netbios name feature in Upcoming patch as well as inform me when it is available.

    2 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  15. PCI Compliance failed due to site-to-site IPSec VPN connection

    XG Firewall should have options to make it PCI complaint. We are failing PCI compliance because our store is connected to main office via IPSec site-to-site VPN and it's easy to just disable VPN service than justify the need of site-to-site VPN.

    3 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  16. Sophos Connect Client auto connect.

    The Sophos Connect Client should have an auto connect feature, so that when a computer or laptop is rebooted, the Client connect automatically so that the users don't have to connect himself

    3 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  17. Sophos Connect Client - SSLVPN support

    Sophos Connect VPN client, should support SSL VPN also, so there can be both a IPSEC profile and a SSLVPN profile, because some networks does not allow IPSEC and vice versa, then there is no need for two clients, just one ;)

    5 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  18. Sophos Connect - Add groups to "allowed users"

    In the current implementation we are unable to select groups in the "Allowed users" field. Selecting groups would vastly improve time spent rolling Sophos Connect out for our pilot users.

    I bet a lot of other customers also use LDAP against their domain to fetch users from there. Having to maintain pilot users two places makes this a headache.

    Thanks

    20 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  19. Fix feature SSL VPN Clientless Web Access

    The feature SSL VPN Clientless Web Access that cannot access the remote web page when link is contain dynamic javascript content. This happen on the web page that have a link when the click show the pop up windows and web page that generated dynamically with javascrpt.

    2 votes
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    2 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
  20. IPSEC Tunnel - IP Host Group for Remote Networks

    Ability to create IP Host Groups for Remote Networks within an ipsec tunnel

    1 vote
    Sign in
    (thinking…)
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
← Previous 1 3 4 5
  • Don't see your idea?

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.