I like the web filter, application filter, and VBA. There are so many good features. The most powerful thing is clearly the software. I can easily do whatever I want.
IT Manager at a energy/utilities company with 1,001-5,000 employees
A firewall solution with many good features
Pros and Cons
- "I like the web filter, application filter, and VBA."
- "Their updates can be faster and more regular."
What is most valuable?
What needs improvement?
Their updates can be faster and more regular. Right now, it's updated monthly. When I need to update the firmware, I want it done within weeks, not months. There are also some changes in version 18, like rules, that aren't needed.
What do I think about the stability of the solution?
Sophos XG is a very powerful and stable solution. It's more stable than Cyberoam.
What do I think about the scalability of the solution?
Sophos XG is scalable.
Buyer's Guide
Sophos Firewall
December 2025
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
880,511 professionals have used our research since 2012.
How are customer service and support?
Technical support is good and easy to deal with. If I have a problem, I open the ticket, and I call, and the problem's solved automatically by them.
Which solution did I use previously and why did I switch?
We used Cyberoam ten years ago and then transferred to Sophos. We switched because it was the latest technology.
How was the initial setup?
The initial setup was very easy because you can follow the manuals, follow your past experiences, and so on. We also need about three to six people a day to maintain this solution.
What's my experience with pricing, setup cost, and licensing?
At first, I thought the price was very high. But when I read about the machine's features, we decided to go with it. Now I think the price is reasonable.
What other advice do I have?
On a scale from one to ten, I would give Sophos XG a nine.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
System Engineer at a tech services company with 51-200 employees
Stable with good web-filtering and the application control
Pros and Cons
- "We've had good experiences with technical support."
- "The solution could be improved if it offered more documentation or at least provided more information about the products themselves."
What is our primary use case?
Most of our clients are primarily using the solution for the network protection it offers them.
What is most valuable?
The most valuable aspects of the solution are the web-filtering and the application control.
The solution is stable.
We've had good experiences with technical support.
The product is scalable.
What needs improvement?
The solution could be improved if it offered more documentation or at least provided more information about the products themselves. If there was a virtual assistant of some kind that would help clients familiarize themselves with everything, that would be very helpful.
It would be helpful to get some insights into new features so that we are able to relay information to clients effectively.
For how long have I used the solution?
I've been using the solution technically since 2019, however, I haven't really been able to focus on it too much. Right now, I am refreshing my knowledge on Sophos XG.
What do I think about the stability of the solution?
The solution is very stable. There aren't bugs or glitches. It doesn't crash or freeze. It's very reliable overall.
What do I think about the scalability of the solution?
We have clients from various sized companies, and the solution works well with all of them.
There seems to be pretty good scalability potential, at least up to a point.
How are customer service and technical support?
We've been in touch with technical support and found them to be very accommodating. We are very satisfied with eh level of support they provide to us.
Which solution did I use previously and why did I switch?
While I may have other colleagues on different solutions, my main focus is Sophos at the moment.
How was the initial setup?
When we're talking about the initial setup for the Sophos XG it can either be simple or complex. It will depend mostly on the infrastructure of the client.
Deployment times also vary, according to the complexity.
Typically, the client handles the maintenance process themselves.
What about the implementation team?
We handle the implementation process for our clients.
What's my experience with pricing, setup cost, and licensing?
We have a platinum partnership with Sophos at this time.
I'm more on the technical side. I don't really have any insights into licensing and pricing as it's not an aspect of the solution I directly deal with on a regular basis.
I'd advise those considering any solution to really take the time to study the product and understand different aspects of it. Every solution is different, and therefore it's important to be able to navigate them. Doing some extra research at the outset will ensure you don't purchase the wrong firewall, which can be a waste of time and money.
I would rate the solution at a nine out of ten. We're quite happy with the product so far.
What other advice do I have?
We're using the latest version of the solution at this time.
We're integrators and resellers.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Buyer's Guide
Sophos Firewall
December 2025
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: December 2025.
880,511 professionals have used our research since 2012.
Owner at a comms service provider with 11-50 employees
A firewall solution with a valuable VPN feature
Pros and Cons
- "Because of the pandemic, the VPN is the most valuable feature."
- "I used to work with Fortinet, and sometimes I see that the SD-WAN feature could be better because it's much easier in Fortinet."
What is our primary use case?
We use Sophos XG for a central firewall, with some branches making a VPN, but that's the normal deployment. Some clients use it as a proxy, but most of my clients use it as a gateway. We use Sophos to configure policies, work filters, application filters, and the SSL VPN and IPSec VPNs.
What is most valuable?
Because of the pandemic, the VPN is the most valuable feature. In Bolivia, the clients normally asked for an appliance with a web protection license or network protection and web protection license. These are the most common features demanded by our customers.
Some clients are also using the wireless solution and using XG firewall as a wireless controller. For those clients, this feature is a very important.
What needs improvement?
I used to work with Fortinet, and sometimes I see that the SD-WAN feature could be better because it's much easier in Fortinet. That area could be improved in Sophos XG as it's too complicated right now.
For example, I remember a case where the routers had to be configured by commands. It's not hard, but you have to read and investigate how to do that. The XG firewall works fine, but you have to read, and it takes some time to do it.
Sophos XG could also improve the floating area. I have more features in Fortinet, more visibility of the networking table, and the networking area. But in Sophos, you have to enter the CLA and display it. It'll also help if they offered more toll booths for VPN like Fortinet.
For how long have I used the solution?
I've been working with Sophos XG for around five years.
What do I think about the stability of the solution?
I have no issues with the stability. No reboots are needed, and there hasn't been a problem with that.
What do I think about the scalability of the solution?
The new enterprise models are scalable, and we don't have problems. I think it's fine.
How are customer service and technical support?
I like their technical support. With Cyberoam, I remember the technical support used to work closely with us. They used to configure some features for us and help us resolve problems, but not just by email. They used to work with us and show us how to do it. I think that was nice, but in Sophos, they give us instructions and help us, but by email.
How was the initial setup?
The initial setup and configuration was very easy for us. I think it's easier than the other options in the marketplace. The deployment time is relative. For example, if you're deploying for a client who has another firewall and have to integrate it, it'll take around two or three days. But if it's a new environment, you can deploy the firewall within two hours.
Which other solutions did I evaluate?
Normally, my clients look at Fortinet. Both have similar features, and sometimes Sophos is more expensive, or FortiGate is more expensive. It depends. But normally, I have clients that migrate from Fortinet to Sophos. They are used to working with FortiGate without a problem, but the main difference in our case is the support. Because as a company, SUPERNOVATEL, has more experience with Sophos to help our clients immediately. That makes the difference.
What other advice do I have?
On a scale from one to ten, I would give Sophos XG a nine.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Network Engineer at a security firm with 11-50 employees
Stable, scalable, with a good central dashboard, and good technical support
Pros and Cons
- "The most valuable feature is the central dashboard"
- "I would like to see the performance improved."
What is our primary use case?
We are integrators. We integrate solutions for other our client's companies.
What is most valuable?
The most valuable feature is the central dashboard. It provides us with good performance.
What needs improvement?
When you utilize the processors, the device hangs. Many firewalls hang because of the high volume of loads.
If we are using the HP policy and the user policy at the same time, the firewall gets hung and it means that we cannot get clear reports.
We have mitigated the firewall with Palo Alto because Palo Alto is working on multiple environments.
I would like to see the performance improved.
For how long have I used the solution?
I have been working with Sophos XG for three years.
Currently, we are using the MR4 v18.
What do I think about the stability of the solution?
It's a stable solution.
What do I think about the scalability of the solution?
This product is scalable. I would rate the scalability an eight out of ten.
So far we use this solution for SMB and enterprise companies.
How are customer service and technical support?
Technical support is very good.
Which solution did I use previously and why did I switch?
We are also working with Fortinet FortiGate and Palo Alto Networks NG Firewalls.
Palo Alto is the best product from a compliance point of view, and security. Fortinet is the second and the last is Sophos XG.
How was the initial setup?
I have installed Sophos XG in multiple organizations.
The initial setup is very easy.
It took less than 10 minutes to deploy.
What's my experience with pricing, setup cost, and licensing?
Sophos is very good for small companies because of the cost of the product compared to other solutions.
The price is reasonable.
What other advice do I have?
I prefer Palo Alto Networks NG Firewalls to Sophos. Palo Alto is very good and the customers are happy. The hardware is customizable with multiple firewalls. I think that it is the best.
I would rate Sophos XG an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. partner
Information Technology Security Officer at a government with 51-200 employees
Quick to install and configure with proactive support, but updates often cause problems
Pros and Cons
- "Definitely, its usability is very good, and it's a very robust firewall."
- "I think that the main area for improvement is the quality assurance of the updates."
What is our primary use case?
This product serves as our current firewall solution, which is a network protection gateway.
What is most valuable?
This is a very simple solution.
It integrates well with Sophos Endpoint Protection, and we use the two of them to form a holistic security perimeter control.
What needs improvement?
Software updates always come with issues. For example, I just upgraded to the next version, 80.5, and it came with VPN issues. It started dropping my VPN users. So, I had to roll back to before the software update. I think that the main area for improvement is the quality assurance of the updates.
The management console is a little bit rigid.
Scalability can be improved.
I think that it performs a little bit slow when it comes to connectivity, and having the speed increased would be better.
For how long have I used the solution?
We have been using Sophos XG for the past four years.
What do I think about the stability of the solution?
This is a very stable platform. In the four years that we have had it, it's never gone down.
What do I think about the scalability of the solution?
It is not a very scalable product. I would rate the scalability a seven out of ten because where you order it, it comes with prefixed ports. You will only have perhaps two for the WAN, and then maybe four LAN ports, and one console. In this regard, it's not scalable.
When you buy it, you can't change the port configuration. In order to get more ports, you may have to upgrade to a bigger firewall.
We have about 130 accounts for approximately 80 employees.
How are customer service and technical support?
Technical support for Sophos is very good and they have a big presence in South Africa. It uses something called Sophos Central, where support can fix the problem before you, as the user, actually finds it.
How was the initial setup?
It is a very simple and very quick initial setup and configuration. Because it is a next-generation firewall, it does most of the rule development in the background. You just need to set up the basics and start it up.
What was our ROI?
For what you are buying, it's good value for the money.
What's my experience with pricing, setup cost, and licensing?
Sophos is very good when it comes to pricing. A firewall has a lot of things to look for when you're buying it, including throughput and its features. When we purchased this product, Sophos was the best on the market.
Which other solutions did I evaluate?
In addition to Sophos, we looked at FortiGate, SonicWall, and Cisco. We were looking for a next-generation firewall, and Cisco was out of range because it was too expensive. We settled on Sophos because we already had the endpoint solution in our environment, and the price was very good as well.
What other advice do I have?
Sophos XG is a firewall that I recommend because it's a very simple firewall. It's not complicated, and a LAN expert can just start using it and learn very quickly. Definitely, its usability is very good, and it's a very robust firewall.
I would rate this solution a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
CTO at a healthcare company with 201-500 employees
A great UI with very intuitive features; comprehensive documentation ensuring issues are easily resolved
Pros and Cons
- "Great interface and in-built help is very intuitive."
- "Lacking network access control, user profiling and analytics dashboards."
What is our primary use case?
Our primary use case of this solution is for protection and to have better governance for our LAN usage. I've got a lot of people working from outside on the corporate infra and all policy based decisions happen there. The solution is basically a firewall that protects us from various internet threats, but other than that provides controlled and properly managed access using various rules of VPN and other fingerprints of people logging in. I'm the CTO of the company and we are customers of Sophos.
What is most valuable?
The interface is great and easy to understand. Any firewall engineer who has medium to moderate experience on bylaws, can easily understand the UI. The language presented on various features and the in-built help, is very intuitive. If you have a problem you can figure it out there and then. As a result, there is less probability that we'll call tech support.
What needs improvement?
The solution really needs some additional features like network access control. If they could incorporate some user profiling and present the analytics of the login user usage patterns, or a typical proper management dashboard to take a decision on the firewall rules, that would be useful. Basically, MI's and the dashboard could be more user friendly. The information is there but the dashboards are not in a graphical format. In short, I'd like to see network access control, user profiling and analytics dashboards. It would make the solution a more competitive product on the market.
For how long have I used the solution?
I've been using this solution for over four years.
What do I think about the stability of the solution?
This is a stable solution. I haven't had any firewall crashes or any non-performing rules for over two years. We are a hospital so all the lights of all the devices should be on 24/7, 365 days a year.
We manage and control around 250-300 internal users. There would probably be another 75-100 logging in externally.
What do I think about the scalability of the solution?
This is definitely a scalable solution. The way we've configured it, if a device goes down, it can be shut off and removed from the network for repairs or updates and our second firewall automatically takes the load.
How are customer service and technical support?
We only used technical support during our initial deployment. After that, we didn't need support because the product was working perfectly well. We trained ourselves on the newer software and we are capable of managing and maintaining our own firewalls. In addition, Sophos provides online documentation which is very user friendly. If you follow the steps you get the result.
Which solution did I use previously and why did I switch?
I previously used Cisco's firewall ASA and it was extensively implemented in my earlier role. The main reason to migrate to Sophos was due to their aggressiveness in terms of pricing but also the fact that they had features that Cisco did not have.
How was the initial setup?
The initial setup was very straightforward. Deployment took somewhere between six and eight hours.
What's my experience with pricing, setup cost, and licensing?
There's no annual licensing fee. When we purchased the product, it was with a five year agreement bundled in with the product price and the recent rollout is not yet five years old. When we renew, we'll renegotiate. I can't differentiate between the product costs and the licensing costs at this point. We're very lucky that we get one of the best deals in the country in terms of pricing. The Sophos-backed pre-sales and implementation team were very cooperative and collaborative which really helped us make the decision to choose Sophos.
What other advice do I have?
I would definitely recommend this solution but it's only suitable if it fits the needs of the company so I would suggest carrying out some research. Why does the company need a firewall? What rules do they want to deploy on the firewall? Based on the answers to those questions the company can make a call.
I would rate this solution a nine out of 10.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Used for website blocking, application blocking, and site-to-site VPN
Pros and Cons
- "Compared to other products, Sophos XGS is a user-friendly solution."
- "It would be useful if Sophos XGS included DDNS-based features."
What is our primary use case?
We use Sophos XGS mostly for website blocking, application blocking, and site-to-site VPN.
What is most valuable?
Compared to other products, Sophos XGS is a user-friendly solution.
What needs improvement?
It would be useful if Sophos XGS included DDNS-based features.
For how long have I used the solution?
I have been using Sophos XGS for four years.
What do I think about the stability of the solution?
I rate the solution an eight out of ten for stability.
What do I think about the scalability of the solution?
Sophos XGS is a scalable solution. We have more than 50 users in our organization.
How are customer service and support?
Sophos XGS provides good technical support. The support team has good knowledge of troubleshooting and fixing our issues.
How was the initial setup?
The solution’s initial setup is complex.
What about the implementation team?
We implemented the solution through an in-house team. The solution’s deployment takes half an hour to one hour.
What's my experience with pricing, setup cost, and licensing?
Sophos XGS is a cost-effective solution.
What other advice do I have?
I would recommend Sophos XGS to other users because it is more cost-effective than other products.
Overall, I rate the solution an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Manager (Network Design) at a tech services company with 51-200 employees
Great for web filtering and load balancing but needs better marketing
Pros and Cons
- "The initial setup is very simple."
- "I would like to see them in third-party evaluation reports like Gartner, Magic Quadrant, or Forrester to make it easier for us to show our customers that Sophos is a leader in the market."
What is our primary use case?
The best use case of Sophos XGS is for customers who use CMGs that manage the gateway of Microsoft, which was made obsolete years ago. Clients want to replace their proxy with some solution, and Sophos is one of the best bets.
How has it helped my organization?
The solution is good for web filtering. It's also possible to use it as a load balancer and a destination firewall and site-to-site channeling. Remote users can gain access via Sophos. It solves for a variety of uses that the client needs.
What is most valuable?
In our market, they offer a web filter SSL VPN and they are very useful for the customer.
The initial setup is very simple.
It's stable and reliable.
We can scale the product.
What needs improvement?
Some firewall names like Palo Alto and FortiGate are very famous for security. People find them very secure. While Sophos is fairly secure, they aren't known for their security, and it's not an obvious selling point. Unfortunately, on Gartner, Magic Quadrant, and Forrester, Sophos doesn't have a good presence. They need to get better at marketing their abilities and expanding what they can do.
I would like to see them in third-party evaluation reports like Gartner, Magic Quadrant, or Forrester to make it easier for us to show our customers that Sophos is a leader in the market. It will be easier for us to sell them. Our market depends on what products are currently in Gartner and Forrester, and these platforms.
For how long have I used the solution?
We've been working with the solution for five to six years.
What do I think about the stability of the solution?
The solution is stable and reliable. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
The product is scalable.
We have more than 100 clients on Sophos.
How are customer service and support?
Technical support is good and above average.
How would you rate customer service and support?
Neutral
How was the initial setup?
It is easy to set up the solution. It's not a complex process.
While it depends on the magnitude of the customer's environment, normally the deployment only takes a day or two.
What about the implementation team?
We do not require any outside assistance. We can handle the setup ourselves.
If the client needs us to, we can deploy the solution for them. Since we sell the solution, we have a good understanding of the process. We have been doing implementations for years.
What's my experience with pricing, setup cost, and licensing?
The pricing is moderate. It's not overly expensive. They offer good licensing.
What other advice do I have?
We are using and selling the solution. We are deploying it for different customers.
When the customer wants to buy an appliance, definitely it's an on-prem solution. However, when it comes to an endpoint or a firewall as a service, they offer cloud solutions as well.
I'd recommend the solution to others.
I would rate the solution seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
Buyer's Guide
Download our free Sophos Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Updated: December 2025
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
OPNsense
Cisco Secure Firewall
Palo Alto Networks NG Firewalls
WatchGuard Firebox
Cisco Meraki MX
Check Point Quantum Force (NGFW)
Azure Firewall
SonicWall TZ
Fortinet FortiGate-VM
Juniper SRX Series Firewall
SonicWall NSa
KerioControl
Buyer's Guide
Download our free Sophos Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Sophos XG 210 vs Fortigate FG 100E
- What Is The Biggest Difference Between Sophos UTM and Sophos XG?
- What is the biggest difference between Sophos XG and FortiGate?
- Which firewall is better and why: Sophos XG 210 or Fortinet FortiGate 100E?
- Which solution do you prefer: Fortinet FortiGate or Sophos XG?
- What are the main differences in features between Sophos XG and FortiGate 80F?
- Which product do you prefer: Sophos XGS 2100 or Fortinet FortiGate 100F?
- Fortinet FortiGate or Sophos XG?
- How does Meraki MX compare with Sophos XG?
- Which firewall to choose for an SMB to prevent malware damage: Cisco Firepower or Sophos XG?
















