Sophos Ideas

Do you have an idea for a Sophos product? Do you recognize a good idea when you see one? We want to hear from you!

Anonymous

My feedback

  1. 170 votes

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)

    We’ll send you updates on this idea

    31 comments  ·  XG Firewall » Base System + General UI  ·  Flag idea as inappropriate…  ·  Admin →
    An error occurred while saving the comment
    Anonymous commented  · 

    Desperately needed as we deploy more clients. It is in the previous firewall, most every thing I need seems to be a "feature request"

  2. 100 votes

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)

    We’ll send you updates on this idea

    13 comments  ·  XG Firewall » VPN and RED  ·  Flag idea as inappropriate…  ·  Admin →
    An error occurred while saving the comment
    Anonymous commented  · 

    I am new to XG and suprised by this.

    Not Enterprise ready:
    • Per user installation only
    o i.e. individualized packages per client installation
    o Stores configuration information in “Program Files (x86)”
     User has no access to change install configuration data
     Tied to machine
    • User configuration stored where it cannot move/float
    • If user changes to a different machine, reinstall is required
    o Our current user base is ~400 for VPN clients
     Users do not have requisite permissions to install software
     ~400 different packages would need to be generated and pushed.
     Huge administrative overhead
    • Other clients (L2TP/PPTP)
    o Do not support split tunneling
    o Do not support pushing routes
    o Other deployment issues
    • AnyConnect
    o Will support requirements
    o Additional cost, i.e. it must be licensed from Cisco to be able to use
    o XG supports AnyConnect, but they have no client. (?!?)
    Have not tested capabilities
    • Supposedly there is an IPSEC client that is being worked on, but there is to ETA

    This is _NOT_ what I would call an Enterprise or even a SMB level device/system.

    To help, if installation was split (system level package for tun/tap) and user configuration that would download into user data directories, would go a long way to help mitigate the issues. Such is not the case. Even if you look at the open source version of OpenVPN for windows, it installs configuration data in userland

  3. 3 votes

    We're glad you're here

    Please sign in to leave feedback

    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  SG UTM » VPN  ·  Flag idea as inappropriate…  ·  Admin →
    Anonymous supported this idea  · 

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.