Try our new research platform with insights from 80,000+ expert users
Network & System Administrator at a tech services company with 201-500 employees
Real User
Easy to set up, monitor, and block traffic, but the stability could be better
Pros and Cons
  • "The most valuable features are the central management, the user VPN, and communications."
  • "I need to open the email to see what it contains and the value of it before I know whether to access it or not."

What is our primary use case?

We are using this product to monitor traffic, payments, and VPN access to our branches. Some are using VPN with hooks, Sophos XG 210, and the main one they are using in the data center is Sophos XG 310.

What is most valuable?

The most valuable features are the central management, the user VPN, and communications.

You can monitor and block traffic.

What needs improvement?

In regards to email as an example, if you experience any malware, it is contained in the container but doesn't give you any information about the email, or what is contained in the email. You only have the option to reject it or to release it.

I need to open the email to see what it contains and the value of it before I know whether to access it or not.

Stability needs improvements.

For how long have I used the solution?

We started with Sophos SG UTM 9, then we upgraded to XG. We have been using the latest version of XG for two years.

Buyer's Guide
Sophos XG
June 2025
Learn what your peers think about Sophos XG. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
860,168 professionals have used our research since 2012.

What do I think about the stability of the solution?

The stability could be better.

What do I think about the scalability of the solution?

It's scalable and good for small businesses.

We have approximately 120 users.

How are customer service and support?

I have contacted technical support three to five times per year.

It's good, but I don't have many questions to ask.

Which solution did I use previously and why did I switch?

Previously, I was using Sophos SG. We were not using any other software from any other vendor. We have only dealt with Sophos.

How was the initial setup?

The initial setup was simple. It was not complicated.

If you are familiar with the technology, the implementation will not be difficult.

It also depends on the business needs.

From testing and switching from SG to XG, it took approximately one week to deploy.

What about the implementation team?

We had help from the vendor. The maintenance and the VPN connection is done in-house.

What's my experience with pricing, setup cost, and licensing?

It is not expensive, it's a reasonable price.

There are some additional fees for additional tools.

What other advice do I have?

I can recommend Sophos XG to others who are interested in using this solution.

I would rate this solution a seven out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
System Administrator Server and Networks at a manufacturing company with 201-500 employees
Real User
Good filtering capability, but the interface is slow and it is difficult for beginners to understand
Pros and Cons
  • "The most valuable feature is web filtering."
  • "The reaction time of the GUI is terrible when compared to other manufacturers."

What is our primary use case?

We use this product to protect all of the connections to our sites and for web filtering.

What is most valuable?

The most valuable feature is web filtering.

What needs improvement?

The behavior with the zones was a little bit tricky to understand and the beginning of the project.

Sophos XG is difficult to manage and it is difficult to understand when you first begin.

The reaction time of the GUI is terrible when compared to other manufacturers. 

For how long have I used the solution?

We have been using Sophos XG for about a year and a half.

What do I think about the stability of the solution?

This is a stable product, although the web GUI is slow. We plan to use it for another couple of years.

What do I think about the scalability of the solution?

This is a small site, and we have 15 users.

How was the initial setup?

The initial setup for Sophos XG was not straightforward. We already had experience with Sophos UTM, but they are completely different systems. The deployment took us one week to complete.

What about the implementation team?

We deployed this solution in-house.

Which other solutions did I evaluate?

I now have a proof of concept with a FortiGate firewall and we are trying some test cases on it.

What other advice do I have?

For now, this is not a product that I can recommend.

I would rate this solution a six out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Sophos XG
June 2025
Learn what your peers think about Sophos XG. Get advice and tips from experienced pros sharing their opinions. Updated: June 2025.
860,168 professionals have used our research since 2012.
reviewer1190469 - PeerSpot reviewer
Manager IT at a retailer with 201-500 employees
Real User
Stable IPS features and good technical support, but the reporting needs to be improved
Pros and Cons
  • "The most valuable feature is the intrusion prevention system."
  • "The two main areas where this product needs improvement are routing and reporting."

What is our primary use case?

We use this firewall as part of our security solution.

What is most valuable?

The most valuable feature is the intrusion prevention system.

What needs improvement?

The two main areas where this product needs improvement are routing and reporting.

The security can be improved, as well.

For how long have I used the solution?

I have been using Sophos XG for more than two or three years.

What do I think about the stability of the solution?

Stability has not been a problem for us.

What do I think about the scalability of the solution?

I am satisfied with the scalability.

How are customer service and technical support?

The technical support from Sophos is excellent.

Which solution did I use previously and why did I switch?

I previously used the Microsoft Firewall. It is easy to use but it doesn't the IPS and malware detection capabilities that Sophos has.

How was the initial setup?

The initial setup and configuration are not difficult for somebody with firewall experience. However, for somebody who has not worked on one in the past, it will be complicated.

What about the implementation team?

We had assistance with the deployment.

What's my experience with pricing, setup cost, and licensing?

The price is cheaper than that of some competing vendors.

Which other solutions did I evaluate?

Prior to implementing Sophos, I tried using a solution by Fortinet. However, it was much more expensive.

What other advice do I have?

My advice for anybody who is implementing this solution is to ensure that somebody with firewall experience handles the deployment.

Overall, I find that this is a good product. That said, there are improvements that need to be made in the routing, reporting, and security.

I would rate this solution a seven out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Chief Operational Officer at Merchant Light LLC
Reseller
Easy to set up, keeps extensive logs, and scans all traffic for malware
Pros and Cons
  • "The most valuable feature is that it scans all of the data for any kind of malware."
  • "It would be helpful if they had a set of standard templates because it would assist in the beginning, when you are just getting started."

What is our primary use case?

We are going to be hosting our own website and we are using the Sophos XG because we want to make sure that it is well protected. We also want to make sure that the rest of our LAN is not compromised.

In addition to using this firewall ourselves, we resell the product to our customers. We have a well-trained team that can perform the implementation and deployment.

How has it helped my organization?

Our network is now much better protected than it was. If you don't have your network and your infrastructure secured, as a business, which is about more than just putting a firewall in place, then you're asking for trouble. There is a lot of hunting going on, and it's not just the large corporations. It's the small businesses, too.

What is most valuable?

The most valuable feature is that it scans all of the data for any kind of malware.

It logs everything that goes in or out, and the logs are helpful.

The simplicity of the setup is very good. I can add whatever ports I need and it's pretty easy to set up.

What needs improvement?

It would be helpful if they had a set of standard templates because it would assist in the beginning, when you are just getting started. They do have a template, but I mean specifically for different use cases. For example, an existing template for setting up a web page would suggest what kind of security we need to have in place. They do have help menus and videos, but additional templates would be useful.

For how long have I used the solution?

I have been using Sophos XG for about eight months.

What do I think about the stability of the solution?

The stability has been rock solid and it hasn't gone down once.

What do I think about the scalability of the solution?

For me, there is essentially no limit when it comes to scaling. I have never used all of the connections but the limitation is between 50,000 and 200,000. I would say that scalability is enormous. If we had a bigger network then I would probably get a bigger Sophos.

At this point, we're just starting and only have three or four people who are regularly using it.

How are customer service and technical support?

The technical support is awesome.

Which solution did I use previously and why did I switch?

We did have a Cisco router prior to using Sophos XG, but I don't know much about Cisco or how to get it operational. I also realized that it was getting old, so we switched to a high-end Sophos model. With malware in this day and age, where we have a 6000% increase in the number of malware attacks compared to two years ago, we wanted to be well protected.

How was the initial setup?

The initial setup is straightforward. If I can do it then anyone can do it. The deployment took a couple of hours. Because we are new to this type of solution, our strategy will be to begin by blacklisting everything and then whitelisting only the things that we need.

What about the implementation team?

Our in-house team handled the implementation and deployment. We have more than 200 people that are very well trained, so we can set up pretty much anything. 

What's my experience with pricing, setup cost, and licensing?

We paid for our licensing for three years, upfront, and there are no costs in addition to the standard fees.

Which other solutions did I evaluate?

I evaluated several options and sought out advice before selecting Sophos XG.

What other advice do I have?

I am happy with this solution, which is one of the reasons that we are selling it. I don't like to sell or recommend things that I have not used. I have tried a lot of the features but I would say that there is a lot more potential I haven't even tested at this point.

I would rate this solution a ten out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
PeerSpot user
it_user1359756 - PeerSpot reviewer
Owner/President at TeamLogic IT of Oklahoma City
MSP
Easy to manage, performs well, and the pricing is good
Pros and Cons
  • "The cloud-based interface makes it easy to manage."
  • "The weakest point is the technical support because they are difficult to get into contact with."

What is our primary use case?

We are a managed service provider and the primary firewall that we sell and maintain is Sophos XG. It is also used in the company.

What is most valuable?

The most valuable feature is that it is a next-generation firewall.

The fact that it is integrated between endpoints and the firewall, and then the firewall and a central Sophos operation center, is very good.

The cloud-based interface makes it easy to manage.

The integration with the Intercept X approach means that Sophos XG can do things that none of the others are doing.

What needs improvement?

The main area that needs improvement is the documentation.

Sophos needs to be a little better at communicating with partners about changes, issues, patches, and so forth. 

The weakest point is the technical support because they are difficult to get into contact with.

For how long have I used the solution?

We have been using the Sophos XG series for three years.

What do I think about the stability of the solution?

This solution has been very stable and it's a good product, otherwise, I wouldn't be using it.

How are customer service and technical support?

The technical support team is knowledgeable and they are good, although it is very hard to get a hold of them. You sometimes have to wait in queue for over an hour to speak with somebody. To me, that is the most frustrating thing about Sophos.

Which solution did I use previously and why did I switch?

We did not use another similar solution prior to Sophos XG. Since the MSP business started, it has been our primary firewall product because of the pricing and support.

How was the initial setup?

The initial setup is complex, as is setting up any next-generation firewall today. You have to know what you're doing with firewalls in general, although beyond that, it isn't as bad as some of the firewalls that I have seen.

The deployment typically doesn't take longer than a few hours or a day, depending on the type of client and what it is that we have to do.

What's my experience with pricing, setup cost, and licensing?

The Sophos pricing, in general, is better than SonicWall, Fortinet, WatchGuard, or anybody else. Because of the partner program, the pricing I get is extremely good compared to what I would get from any of the others.

Which other solutions did I evaluate?

I have evaluated several firewall products and I think that Sophos is better in terms of ease of use, performance, and pricing.

What other advice do I have?

I would highly encourage others to evaluate Sophos and adopt it. I've discovered that compared to other products, it is easier to manage and I think that it operates better.

Overall, I think that they've got a pretty complete set of features and they seem to be on a really good path. My only complaints are about the documentation and the availability of technical support. 

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
it_user1363380 - PeerSpot reviewer
Manager IT at QPS Bioserve Pvt Ltd.
Real User
Easy to use, robust, and the default templates are helpful
Pros and Cons
  • "This solution is very user-friendly and even a non-professional can configure the policies."
  • "The cloud support needs to be improved."

What is our primary use case?

I was using the Sophos XG firewall in my last job, where it was part of our security solution.

We had multiple locations with the internet being provided from a central location. Each of our locations was connected point-to-point using MPLS lines. Using Sophos meant that we didn't need to have a router.

What is most valuable?

The default templates are helpful because if you want to create new policies, they make it easy to do anything you want.

Sophos XG is a very robust technology.

This solution is very user-friendly and even a non-professional can configure the policies.

There are unlimited SSL VPN clients and it is free with Sophos.

What needs improvement?

The cloud support needs to be improved. As it is, they only have support for Microsoft Azure. They should expand it to include providers like Amazon and Alibaba.

What do I think about the stability of the solution?

I have not heard complaints of bugs or glitches occurring.

What do I think about the scalability of the solution?

Sophos is a scalable technology that is being regularly updated.

How are customer service and technical support?

I have been in contact with technical support many times and they are very good.

Which solution did I use previously and why did I switch?

Currently, in my new company, I am using Fortinet. This is a very basic firewall and ultimately, I would like to update them.

How was the initial setup?

The initial setup is not complicated. For somebody with an intermediate level of knowledge, it will take between three and four hours to deploy. For a more experienced person, it may take two or three.

Which other solutions did I evaluate?

I am currently in the process of evaluating the different firewalls that are available in India.  One of the options is Sophos, and I am also considering others such as SonicWall and Palo Alto.

With Fortinet and SonicWall, there is a limit of 10 people who can simultaneously connect using the VPN.

What other advice do I have?

Sophos XG is a firewall that I would recommend for people who are looking for good security in a medium-scale organization.

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user633438 - PeerSpot reviewer
Information security specialist at a non-tech company with 201-500 employees
Real User
Enables us to trace any user and pinpoint any vulnerability or malicious software
Pros and Cons
  • "We are able to trace any user and pinpoint any vulnerability or any malicious software. We are able to synchronize between the local and active directories so we can catch users easily through their login names and IDs."
  • "There needs to be a way that we can distinguish between educational institutions on Youtube and other Youtube videos. You can do this on Fortinet. Basically, they can block all other Youtube videos besides those that are from educational institutions. With Sophos, you either allow for all Youtube videos or none at all. They need to allow for more specification on different websites."

What is our primary use case?

We use the solution for application control and web filtering. We also use it as a VPN point, and we use it on other occasions for tracing and reporting about usage and high application rates.

How has it helped my organization?

We are able to trace any user and pinpoint any vulnerability or any malicious software. We are able to synchronize between the local and active directories so we can catch users easily through their login names and IDs.

What is most valuable?

The reporting on the solution is excellent.

What needs improvement?

There needs to be a way that we can distinguish between educational institutions on Youtube and other Youtube videos. You can do this on Fortinet. Basically, they can block all other Youtube videos besides those that are from educational institutions. With Sophos, you either allow for all Youtube videos or none at all. They need to allow for more specification on different websites.

They only have one single location for training videos. They must offer them elsewhere as well. When the site goes down, everything stops, and you can't access the videos when you need them, so they need to diversify that. It's limiting.  

For how long have I used the solution?

I've been using the solution for two years.

What do I think about the stability of the solution?

The stability of the solution is excellent.

What do I think about the scalability of the solution?

The scalability is good. We could only handle around 5,000 users but even when we reached 3,000 users, Sophos only consumed around 24% and 40% of Prime usage. 

How are customer service and technical support?

The solution's technical support is not the best. When I take a step to open a case with Sophos support I can't understand them at all; I can't understand their accent. I always appreciate if they can communicate with me through e-mail instead, which makes it much easier. 

Many cases take a long time to be resolved. Some cases they seem to ignore or don't reply to for a long time so I have to remind them that the case is still open before they will respond. 

How was the initial setup?

The initial setup was straightforward. The implementation took about a day. There were only two people needed for deployment.

What about the implementation team?

We had a consultant assist with the setup. They were very good.

What other advice do I have?

We use the on-premises deployment model.

I would rate the solution nine out of ten. It's a very good firewall. It helps a lot with protection, and every organization needs a firewall to ensure they are protected.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
‎Chief Operating Officer at Al Manar
Real User
An excellent firewall solution with reasonable licensing rates and a straightforward setup
Pros and Cons
  • "Price-wise the solution offers acceptable rates. You can find cheaper solutions on the market but when you go cheaper you have fewer features. Today, based on iQuate market the price is very reasonable and affordable, and it's good if you get a good discount. Discounts can be offered by the vendor. If it's a competitive upgrade which means the customer is upgrading from another vendor, Sophos provides extra discount so they can win the deal. In general, it is a good price."
  • "They should expand their DDoS feature. It's basic. They need to enhance it."

What is our primary use case?

We primarily use the solution internally in our company and we also deploy it for our customers.

What is most valuable?

We have many Sophos solutions that we use together. We use Sophos UPM and Sophos XG. Next, there are just firewalls. The Sophos UPM is the basic firewall; Sophos XG is a mix of Cyberoam and Surface (Sophos acquired Cyberoam three years ago). We use all the features within these solutions and we have a full set of licenses. They offer IPS, IBS, BPM, web publishing, web protection, etc. We're using everything. 

What needs improvement?

They should expand their DDoS feature. It's basic. They need to enhance it.

Technical support needs to be improved.

The solution needs a mobile application for the administrator. Today, as an administrator, you cannot manage the solution from your tablet or from your mobile. You can only go through a web console. Other vendors have mobile apps. Some vendors also have the ability to manage and check the chart report and change some settings from a mobile application. This would be an excellent add-on for administrators who are traveling. It could help a lot. 

For how long have I used the solution?

I've been using the solution for seven years.

What do I think about the stability of the solution?

For the past seven years, we haven't had any issues with the hardware or software. It's stable. If a customer misconfigured it, they might face issues. Out of the box, however, it's stable; it is an appliance that customers can depend on.

What do I think about the scalability of the solution?

The solution is scalable. Sophos has plans for customers who want to upgrade or add another appliance in the same environment. As a customer, I've deployed to as many as 300 users or as few as 30.

How are customer service and technical support?

Technical support isn't as good as it needs to be. In most cases, these days, the partner has to work hard to support the customer. The response time and the experience of the support team are not as expected. As a partner, we've never opened a case. Our customers, however, have told us they have had issues.

How was the initial setup?

The solution is straightforward. Deployment took about 30 minutes.

What's my experience with pricing, setup cost, and licensing?

Price-wise the solution offers acceptable rates. You can find cheaper solutions on the market, but when you go cheaper you have fewer features. Today, based on iQuate market the price is very reasonable and affordable, and it's good if you get a good discount. Discounts can be offered by the vendor. If it's a competitive upgrade which means the customer is upgrading from another vendor, Sophos provides extra discounts so they can win the deal. In general, it is a good price.

What other advice do I have?

We are a Sophos partner. We both use the solution and recommend it to clients.

Compared to other competitors, I'd rate the solution nine out of ten. However, for very large enterprises, the largest firewall appliance from Sophos might not be enough for thousands of users. If I was rating the solution for enterprises, I would rate it eight out of ten because of this. 

I would recommend the solution, however. We often recommend the solution to our clients and it works very well for them.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner.
PeerSpot user
Buyer's Guide
Download our free Sophos XG Report and get advice and tips from experienced pros sharing their opinions.
Updated: June 2025
Product Categories
Firewalls
Buyer's Guide
Download our free Sophos XG Report and get advice and tips from experienced pros sharing their opinions.