48 votesAdminJan Weber (Product Manager, Network Security Group, Sophos Features & Ideas Laboratory) commented
We are currently not considering adding wildcard support. The Let's Encrypt Wildcard support uses DNS TXT entries to validate domain ownership, as opposed to the HTTP file based challenge for other certificates, which is something that we can't easily automate and make it as easy to use as with the other certificates.
We do not have any control over the DNS records and hence this would require user/admin interaction for certificate generation as well as renewal.
This feature is considered a high priority, and is under consideration for a future release, though a target version or timeframe is not yet set.AdminJan Weber (Product Manager, Network Security Group, Sophos Features & Ideas Laboratory) commented
Moving to XG Firewall for consideration with the new platform and mobile apps.
11 votesAwaiting reply from Submitter · 2 comments · XG Firewall » Synchronized Security (Heartbeat) · Flag idea as inappropriate… · Admin →AdminJan Weber (Product Manager, Network Security Group, Sophos Features & Ideas Laboratory) commented
thanks for the suggestion. I do have some clarification questions for the request. Are you looking at getting the information on a health state change exported to an RMM system?
Or is there other information, maybe outside of Security Heartbeat, that you would be looking at getting exported?
Thanks for the suggestion Christian, I have opened a corresponding request for Sophos Endpoint (http://feature.astaro.com/forums/285723-sophos-endpoint/suggestions/10991259-using-sophos-home-for-security-heartbeat-with-xg-h) given that we would need this capability in both products.
However it is important to note that Security Heartbeat is not a replacement for the UTM managed endpoints and is following a completely different approach. With Security Heartbeat, Endpoint management will happen in Sophos Cloud, only health information is exchanged between XG Firewall and the Endpoint, no configuration as of now.
So using Sophos Home is the right replacement for the UTM managed endpoints already today.
Please let me know if you have any further comments.
74 votesUnder Review · 10 comments · SG UTM » Remote Ethernet Device (RED) · Flag idea as inappropriate… · Admin →
Moving to correct Category.