Try our new research platform with insights from 80,000+ expert users
Sophos Firewall Logo

Sophos Firewall pros and cons

Vendor: Sophos
4.1 out of 5
Badge Leader

Pros & Cons summary

Buyer's Guide

Get pricing advice, tips, use cases and valuable features from real users of this product.
Get the report

Prominent pros & cons

PROS

Sophos Firewall offers exceptional VPN capabilities, which have become invaluable for supporting remote work during the pandemic.
Its centralized management and extensive feature set, including antivirus, firewall, and endpoint security integration, have proven beneficial for comprehensive network protection.
The ease of use and straightforward configuration process are highly appreciated by users, making it accessible for various organizational sizes.
Technical support for Sophos Firewall receives high praise for its responsiveness and efficiency in resolving issues promptly.
Bandwidth management, content filtering, and scalability are frequently highlighted as vital features, satisfying the needs of organizations for effective security solutions.

CONS

Sophos Firewall has challenges with Zoom integration and difficulties in assigning IP addresses to specific MAC addresses.
There are issues with reporting, as diagnostic graphs take a long time to load and do not offer selective graph display to speed up the process.
Quality assurance during updates and firmware releases is inadequate, leading to performance issues for some users.
The SD-WAN capability in Sophos Firewall falls short compared to FortiGate, with users expressing a need for improvement in this area.
Technical support response time is reportedly slow and requires more prompt and competent service.
 

Sophos Firewall Pros review quotes

it_user306159 - PeerSpot reviewer
CEO at Makros SPA
Mar 20, 2016
Mostly it's related to visibility as this platform allows us to see literally everything when it comes to traffic in a very easy and intuitive way.
it_user704991 - PeerSpot reviewer
System Engineer with 51-200 employees
Jul 18, 2017
With its central management console, it implements an intuitive management console with change tracking, so it’s easy to see who has made changes and to keep track of changes.
it_user711609 - PeerSpot reviewer
IT Project Consultant at a tech services company
Jul 29, 2017
With a very intuitive and easy-to-use interface, it made it much easier to setup access and business rules, VPNs and to identify issues like Internet link outages and security issues.
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: February 2026.
884,933 professionals have used our research since 2012.
SG
Lead NOC Engineer at a energy/utilities company with 51-200 employees
Jul 29, 2017
Get the professional support contract; it is well-worth it and those guys know their product very very well.
Vikas-Gupta - PeerSpot reviewer
Director at Eon Networks
Oct 16, 2017
Internet security, where we have one single point of console; where I can manage my endpoint and my gateway, any messages coming in I am getting the intermission immediately, and if my endpoint or file is getting infected I get to know from a single pane point of view.
it_user431136 - PeerSpot reviewer
Consultant Information Technology at a tech company with 51-200 employees
Dec 24, 2017
My clients gain efficiency in protecting against attacks from malware such as ransomware and hacker attacks. It also provides them efficient internet access control, and full visibility of ports, applications, and websites.
HS
IT Infrastructure & Security Manager at a university with 1,001-5,000 employees
Mar 15, 2018
The most valuable feature, according to the setup we have at our work place here, is the flexibility of the system or the firmware that's running the appliance. It's so flexible, performing multiple rules with different configurations. According to the set up here, we need to implement several firewalls with different access levels, because we have a variety of users. For this requirement, it's very flexible and very easy to use.
it_user846270 - PeerSpot reviewer
Senior IT Infrastructure Solutions Engineer at a tech services company with 51-200 employees
Apr 1, 2018
Valuable features include: the ease of setting up the VPN connection; the fact they have the cloud management option, so I can manage the firewall on a cloud platform from anywhere I am; the user interface is very user-friendly, so it's very easy for the administrator to make any policy changes.
Sherif Fouad - PeerSpot reviewer
Group ICT Manager at a mining and metals company with 501-1,000 employees
Jun 21, 2018
It has a very friendly interface like the Cyberoam iNG units, it has customizable policies, it has proper templates that you can even modify, and you can customize the rules, down to each single user.
KS
IT Consultant at Crotus
Apr 18, 2019
We have found that the simplicity of the XG 210 is its most valuable feature.
 

Sophos Firewall Cons review quotes

it_user306159 - PeerSpot reviewer
CEO at Makros SPA
Mar 20, 2016
I would like to see the possibility to add or block some content directly from the log interface or the live view of the interface so that if I see that an IP address is consuming a lot of bandwidth, I can right click on it and set some kind of policy.
it_user704991 - PeerSpot reviewer
System Engineer with 51-200 employees
Jul 18, 2017
Email Protection has room for improvement. It doesn’t have an intuitive rule base.
it_user711609 - PeerSpot reviewer
IT Project Consultant at a tech services company
Jul 29, 2017
Sophos XG lacks link load balancing options like ratio and spill over, both useful in some scenarios.
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: February 2026.
884,933 professionals have used our research since 2012.
SG
Lead NOC Engineer at a energy/utilities company with 51-200 employees
Jul 29, 2017
The IPsec VPNs are a little on the buggy side and you sometimes have to jump through hoops to get it to work.
Vikas-Gupta - PeerSpot reviewer
Director at Eon Networks
Oct 16, 2017
Scalability is one issue with the hardware device and hardware files.
it_user431136 - PeerSpot reviewer
Consultant Information Technology at a tech company with 51-200 employees
Dec 24, 2017
It could offer a DNS Filter for blocking botnet networks.
HS
IT Infrastructure & Security Manager at a university with 1,001-5,000 employees
Mar 15, 2018
It is performing well. However, the only challenges that we are facing are the effectiveness with blocking the proxy and tuneling applications, aside from proxy and similar applications. So the application filter on the product is not really performing 100%. Every now and then there are some updates that are happening on such applications, and it takes time until it gets the appropriate updates and becomes capable of capturing such applications and blocking them. A new feature I would really like to see would be some sort of an enhanced application filter with greater efficiency when it comes to the applications that can bypass firewall policies. These applications are really a nightmare. Once they are on the network and not detected, or the appliance is not really successful in capturing them and unblocking them, the bandwidth gets wasted all the time.
it_user846270 - PeerSpot reviewer
Senior IT Infrastructure Solutions Engineer at a tech services company with 51-200 employees
Apr 1, 2018
I would like the update process to be easier, to update the firmware of the boxes. I think it's much better automatically than having to do it manually: Download the file, do network discovery. I they can make the update process much more automatic that would help.
Sherif Fouad - PeerSpot reviewer
Group ICT Manager at a mining and metals company with 501-1,000 employees
Jun 21, 2018
Let's say I set up a rule to block users from accessing YouTube or Facebook. The rule will only block the HTTP traffic, which is non-secure traffic... The problem comes when you are trying to block, or allow, similar traffic that uses HTTPS. You have to create a certificate and import it into the users' web browsers, whatever they are using... The problem occurs when you're dealing with roaming users who use laptops and have to move between different sites that have different types of policies applied to them. You have to import all sorts of certificates from each site into their browser. Doing so will most probably conflict with something else that is totally irrelevant and cause a problem.
KS
IT Consultant at Crotus
Apr 18, 2019
When I call, I have to wait at least one to two hours to reach them.