Firewall Manager

Suggest, discuss, and vote on new ideas for Sophos Firewall Manager. Powerful enterprise and multi-customer management for Sophos XG Firewall.

Firewall Manager

Suggest, discuss, and vote on new ideas for Sophos Firewall Manager. Powerful enterprise and multi-customer management for Sophos XG Firewall.

Suggest an Idea...

(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  1. Monitor License red with expired license fe: sandstorm trial

    The monitor license is displaying red because sandstorm trial expired (migration Cyberoam > Sophos this is auto activated)
    Should be possible with threshold to check / uncheck which licenses you want to be monitorred.

    1 vote
    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • facebook
    • google
      Password icon
      Signed in as (Sign out)

      We’ll send you updates on this idea

      0 comments  ·  Flag idea as inappropriate…  ·  Admin →
    • sms guest user not showing in live user

      i think sms guest user show in live user list so we can view and treck sms guest user data uses like "Start Time,Upload,Download,Data Transfer Rate(bits/sec),Internet Usage Time
      (HH:MM)

      1 vote
      Sign in
      Check!
      (thinking…)
      Reset
      or sign in with
      • facebook
      • google
        Password icon
        Signed in as (Sign out)

        We’ll send you updates on this idea

        0 comments  ·  Flag idea as inappropriate…  ·  Admin →
      • 1 vote
        Sign in
        Check!
        (thinking…)
        Reset
        or sign in with
        • facebook
        • google
          Password icon
          Signed in as (Sign out)

          We’ll send you updates on this idea

          0 comments  ·  Flag idea as inappropriate…  ·  Admin →
        • 1 vote
          Sign in
          Check!
          (thinking…)
          Reset
          or sign in with
          • facebook
          • google
            Password icon
            Signed in as (Sign out)

            We’ll send you updates on this idea

            0 comments  ·  Flag idea as inappropriate…  ·  Admin →
          • how can i create Firewall rule on the basis of Client type

            how can i create Firewall rule on the basis of Client type

            1 vote
            Sign in
            Check!
            (thinking…)
            Reset
            or sign in with
            • facebook
            • google
              Password icon
              Signed in as (Sign out)

              We’ll send you updates on this idea

              0 comments  ·  Flag idea as inappropriate…  ·  Admin →
            • SUM Web Filtering - Filter Action - Antivirus - Add tick box for Sandstorm

              If Sandstorm is licensed on the UTM, the setting "Refer suspicious items to Sophos Sandstorm" can be enabled/disabled on Antivirus Tab on each Filter Action in Web Filtering - Policies - Filter Action.
              The Filter Action can be configured in SUM and distributed to all attached UTMs, but there is no tick box to enable/disable Sandstorm on Antivirus Tab.
              If Sandstorm shall be used SUM can not be used to distribute the Filter Action settings, because the setting will appear on an UTM with Sandstorm license, but it is not ticked and can't be enabled, because it is grayed out. …

              1 vote
              Sign in
              Check!
              (thinking…)
              Reset
              or sign in with
              • facebook
              • google
                Password icon
                Signed in as (Sign out)

                We’ll send you updates on this idea

                0 comments  ·  Flag idea as inappropriate…  ·  Admin →
              • SUM (Sophos UTM Manager) needs a default root password

                The CLI for SUM has a blank root password. If an administrator never goes to the CLI for SUM, he/she has no idea that this is a completely open system. This is incredibly unsafe and alarming for a company that sells security products. You should really hurry up and fix this as it is a vulnerability that is really embarrasing should someone publish it.

                2 votes
                Sign in
                Check!
                (thinking…)
                Reset
                or sign in with
                • facebook
                • google
                  Password icon
                  Signed in as (Sign out)

                  We’ll send you updates on this idea

                  0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                • Interface Down

                  A big downfall of the firewall manager is that there is no way to select what interfaces you want monitored. It makes absolute zero sense to me that this feature does not exist. In 98% of our deployments we use the WAN and the LAN and that's it. Yet my dashboard is always filled with errors due to interfaces being down that aren't even being used. I feel like the SFM has a ton of potential especially for MSPs like myself, but sadly I can't put it into production until little things like this are figured out.

                  7 votes
                  Sign in
                  Check!
                  (thinking…)
                  Reset
                  or sign in with
                  • facebook
                  • google
                    Password icon
                    Signed in as (Sign out)

                    We’ll send you updates on this idea

                    2 comments  ·  Flag idea as inappropriate…  ·  Admin →
                  • unblock this

                    why would you block this link?: http://mobirise.com/

                    1 vote
                    Sign in
                    Check!
                    (thinking…)
                    Reset
                    or sign in with
                    • facebook
                    • google
                      Password icon
                      Signed in as (Sign out)

                      We’ll send you updates on this idea

                      0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                    • Cyberoam CR50iNG IPsec VPN IKE V2 (enable or disable it)

                      There are other remote firewalls such as Forcepoint require the IKEV1&2 to be enabled on Cyberoam CR50iNG

                      1 vote
                      Sign in
                      Check!
                      (thinking…)
                      Reset
                      or sign in with
                      • facebook
                      • google
                        Password icon
                        Signed in as (Sign out)

                        We’ll send you updates on this idea

                        0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                      • "Create New" is missing when "Add(ing) New Item" for Firewall Rule - SFM

                        In the SFM, the "Create New" is missing when "Add(ing) New Item" for Firewall Rule. You can see it if you log into the XG firewall locally, but not when logged into the SFM. It's an extra few steps if we really want to utilize the SFM.

                        1 vote
                        Sign in
                        Check!
                        (thinking…)
                        Reset
                        or sign in with
                        • facebook
                        • google
                          Password icon
                          Signed in as (Sign out)

                          We’ll send you updates on this idea

                          0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                        • Mac binding not working with sophos

                          we are using Cyberoam firewall last 6year after upgrading the sophos Mac binding is not working.

                          9 votes
                          Sign in
                          Check!
                          (thinking…)
                          Reset
                          or sign in with
                          • facebook
                          • google
                            Password icon
                            Signed in as (Sign out)

                            We’ll send you updates on this idea

                            0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                          • Enable the SNMP for the Port/Interfaces on Cyberoam Firewall Appliance

                            I would like to request the development team to provide the MIB for the ports and interfaces. I had a monitoring system which is unable to monitor this interfaces. I can monitor the CPU utilization, disk usage, memory, etcetera but cannot monitor the bandwidth and packet going through in and out from the interfaces.

                            0 votes
                            Sign in
                            Check!
                            (thinking…)
                            Reset
                            or sign in with
                            • facebook
                            • google
                              Password icon
                              Signed in as (Sign out)

                              We’ll send you updates on this idea

                              0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                            • Captive portal should be open incase user is not logged in.

                              In sophos Firewal (SFOS) with captive portal enable scenario, when user is not logged in then sophos must prompt for captive portal instead of block error..For this same issue I have 7logged my complain with ticket # 7560455 and after due troubleshoot with support/remote engineer, I came to know that this feture is not available in sophos. Common man, its a common feature, If you go anywhere like Railwaystation, Airport, Hotel and movement you will start browsing that respective captive portal is appear and you have to login/register your name and than you may access internet. This common feature is…

                              1 vote
                              Sign in
                              Check!
                              (thinking…)
                              Reset
                              or sign in with
                              • facebook
                              • google
                                Password icon
                                Signed in as (Sign out)

                                We’ll send you updates on this idea

                                0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                              • VPN BANDWIDTH ALLOCATION

                                Hi, I want to allocate bandwidth for VPN which is connected through ipsec vpn.
                                Suppose I have 10 sites which is connected through vpn, I want site 1 will use 2mbps, site 5 will use 3 mbps and all other site will use 1 mbps of bandwidth. And I want to see the graph and report also.
                                Can we have this feature in model 15ing .
                                Regards
                                Amresh Kumar

                                9871002123

                                1 vote
                                Sign in
                                Check!
                                (thinking…)
                                Reset
                                or sign in with
                                • facebook
                                • google
                                  Password icon
                                  Signed in as (Sign out)

                                  We’ll send you updates on this idea

                                  0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                • High Availability (HA) in virtual SFM

                                  We want the virtual SFM to have HA functionality as Active-Active and Active-Passive, the way XG Firewalls support HA.

                                  The reason we want this is because we must guarantee a 99,9% uptime for all our systems, this includes a critical system like virtual SFM.

                                  Please include HA for virtual SFM.

                                  4 votes
                                  Sign in
                                  Check!
                                  (thinking…)
                                  Reset
                                  or sign in with
                                  • facebook
                                  • google
                                    Password icon
                                    Signed in as (Sign out)

                                    We’ll send you updates on this idea

                                    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                  • detailed firewall report

                                    Would like to have a detailed internet usage report by an id/user in report section.
                                    e.g. for which websites user as accessed and what amount of data has been utilized separately for those url's.

                                    1 vote
                                    Sign in
                                    Check!
                                    (thinking…)
                                    Reset
                                    or sign in with
                                    • facebook
                                    • google
                                      Password icon
                                      Signed in as (Sign out)

                                      We’ll send you updates on this idea

                                      0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                    • Managed Firewall

                                      When will the managed firewall for partners be usable ? It is horribly slow and unusable compared to the meraki product.

                                      1 vote
                                      Sign in
                                      Check!
                                      (thinking…)
                                      Reset
                                      or sign in with
                                      • facebook
                                      • google
                                        Password icon
                                        Signed in as (Sign out)

                                        We’ll send you updates on this idea

                                        0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                      • Support ACME for certificates installed on Firewalls

                                        Cyberoam comes with a self-signed SSL certificate to facilitate accessing it (or DMZ) from WAN. We noticed that we could upload our own trusted certificate to cyberoam using its web user interface.

                                        We were wondering if we could upload the certificate via an API call. As you may be aware, Letsencrypt(ACME compliant) issues free SSL certificates, but these need to be renewed every 90 days and manually uploading renewed certificates to cyberoam every 90 days is cumbersome.

                                        Probably build automation for this.

                                        1 vote
                                        Sign in
                                        Check!
                                        (thinking…)
                                        Reset
                                        or sign in with
                                        • facebook
                                        • google
                                          Password icon
                                          Signed in as (Sign out)

                                          We’ll send you updates on this idea

                                          0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                        • System Backup via FTP with Path configuration

                                          System backup via FTP with Path configuration is not supported unfortunately.

                                          Device Settings > Maintenance > Backup & Restore is supported.

                                          6 votes
                                          Sign in
                                          Check!
                                          (thinking…)
                                          Reset
                                          or sign in with
                                          • facebook
                                          • google
                                            Password icon
                                            Signed in as (Sign out)

                                            We’ll send you updates on this idea

                                            0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                          ← Previous 1
                                          • Don't see your idea?

                                          Firewall Manager

                                          Feedback and Knowledge Base

                                          icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-lightbulbCreated with Sketch.