Sophos XG is used as a firewall to manage our WiFi connections.
Business Development Manager at Computer Learning centre
Secure, highly reliable, and good online support
Pros and Cons
- "The security of Sophos XG is very good."
- "Sophos XG could improve by coming out with more innovative feature developments."
What is our primary use case?
What is most valuable?
The security of Sophos XG is very good.
What needs improvement?
Sophos XG could improve by coming out with more innovative feature developments.
The solution is secure, but security could always be better, they should work on perfecting the security of Sophos XG.
For how long have I used the solution?
I have been using Sophos XG for approximately a few years.
Buyer's Guide
Sophos Firewall
February 2026
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: February 2026.
884,976 professionals have used our research since 2012.
What do I think about the stability of the solution?
I have found Sophos XG to be very stable.
What do I think about the scalability of the solution?
The scalability of Sophos XG is great.
As our business grows we will increase the users using this solution.
How are customer service and support?
I have not connected the technical support from Sophos XG. I have only used online support from websites which was good.
How was the initial setup?
The initial setup is very easy, it took less than one hour.
What about the implementation team?
We used an integrator for the implementation of the solution.
We have two engineers for the deployment and maintenance of Sophos XG.
What's my experience with pricing, setup cost, and licensing?
The price of the Sophos XG is very good. There are not any licensing costs, it is a one-time purchase price.
What other advice do I have?
I would recommend Sophos XG to others. It is a good solution and I am satisfied.
I rate Sophos XG an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Founder and Managing Partner at a tech services company with 1-10 employees
Powerful, simple implementation, useful update scheduling
Pros and Cons
- "What I have found most valuable with the Sophos XG is it's a key component of the Intercept X EDR environment. You have to have it to receive the full benefit. If you've you are using Sophos SG firewalls, they're great firewalls and in many ways, I prefer them to the Sophos XG. Since I have set them up, programmed them, and manipulate firewall rules, et cetera, the Sophos SG's a better interface. However, the Sophos XG's very powerful. I prefer it over other solutions I have used, such as Cisco Meraki and SupportNet, I don't like them. They're not very friendly to people who have to set them up and implement them."
- "The interface of Sophos XG could be improved. I would prefer the Sophos XG to have an interface for the technician who is setting it up similar to the Sophos SG. I felt the Sophos SG user interface was superior. however, in terms of the functionality of the product, Sophos XG is in many ways more powerful than the Sophos SG. I have no complaints about the quality of the product or the end result. For someone who has used both, I preferred the old interface to the new one."
What is our primary use case?
I use Sophos XG as a network firewall.
What is most valuable?
What I have found most valuable with the Sophos XG is it's a key component of the Intercept X EDR environment. You have to have it to receive the full benefit. If you've you are using Sophos SG firewalls, they're great firewalls and in many ways, I prefer them to the Sophos XG. Since I have set them up, programmed them, and manipulate firewall rules, et cetera, the Sophos SG's a better interface. However, the Sophos XG's very powerful. I prefer it over other solutions I have used, such as Cisco Meraki and SupportNet, I don't like them. They're not very friendly to people who have to set them up and implement them.
What needs improvement?
The interface of Sophos XG could be improved. I would prefer the Sophos XG to have an interface for the technician who is setting it up similar to the Sophos SG. I felt the Sophos SG user interface was superior. however, in terms of the functionality of the product, Sophos XG is in many ways more powerful than the Sophos SG. I have no complaints about the quality of the product or the end result. For someone who has used both, I preferred the old interface to the new one.
For how long have I used the solution?
I have used Sophos XG within the last 12 months.
What do I think about the stability of the solution?
The stability is what I have found attractive with the whole Sophos product line. You can have a client that starts with a three-person office and grow it to a 10,000 person operation and you keep moving the configuration to the next level of power.
Which solution did I use previously and why did I switch?
I have used Cisco Meraki and SupportNet solutions previously.
How was the initial setup?
Sophos XG is a better solution for implementers, once you learn it. You have to learn the interface and once you do, it's straightforward. Additionally, you don't have to know the CLI as you do with Cisco, where you have to get into the command-line interface to do any powerful operations.
What about the implementation team?
Maintenance for Sophos XG it's pretty straightforward. I will receive an email if there's a firmware update that needs to be applied and any one of my team, or I will apply the update at our next convenience. You can schedule it to allow it to take place at a non-production time. For example, if I want the firmware update to apply it at 2:00 am in the morning I can schedule it. Additionally, it automatically applies pattern updates.
What other advice do I have?
I rate Sophos XG an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Buyer's Guide
Sophos Firewall
February 2026
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: February 2026.
884,976 professionals have used our research since 2012.
Network Administrator at Alsafy
It protects against attacks, is simple to install, and has good technical support, but it could be more secure
Pros and Cons
- "Sophos XG is very useful, it does many things."
- "While it is a secure solution, I believe it could be improved."
What is our primary use case?
Sophos XG is used to handle my network and traffic.
It can control our employees' network behavior and prevent many attacks and other threats from outside of our company.
What is most valuable?
Sophos XG is very useful, it does many things.
It is secure.
What needs improvement?
While it is a secure solution, I believe it could be improved.
For how long have I used the solution?
I have been using Sophos XG for almost one year.
We received the latest update one or two months back and it was great.
What do I think about the stability of the solution?
The stability is good.
What do I think about the scalability of the solution?
Sophos XG is scalable.
We have 1,000 internal employees and nearly 4,000 external employees. However, Sophos Firewall only operates within an internal network or within a single company, so is used for nearly 1,000.
We plan to increase the usage in the future.
How are customer service and support?
We communicate with support frequently. Many times, we encountered hardware technical issues in the previous version, and they replaced the device for us. We have contacted them numerous times for this purpose. They resolved this issue for us.
How was the initial setup?
The initial setup is straightforward.
We have IT teams and managers, to help maintain this solution.
What's my experience with pricing, setup cost, and licensing?
Licensing fees are paid monthly.
What other advice do I have?
I would recommend this solution to others who are interested in using it.
I would rate Sophos XG a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
IT Architect at a consultancy with 11-50 employees
Lacking security, poor search tool, but stable
Pros and Cons
- "The performance of Sophos XG is generally good and it is stable."
- "The security of Sophos XG could be improved."
What is our primary use case?
Sophos XG is a firewall and we use it to create networking rules.
What needs improvement?
The security of Sophos XG could be improved.
Sophos wants to move all things to the cloud, including access to the end-user PCs and data from the cloud. What will be easier to hack for a customer with an outdated firewall, or the Sophos cloud could get hacked which has all the access and information from customers. With my experience, it's not a question of if they will hack it, but a question of when they will do it. I'm not happy with the direction Sophos is going on.
We have problems with the use of the user interface. You have a poor search engine for objects via which you can write new rules. You have to start at the beginning of the whole object name. With the Sophos UTM, you can start with a pattern, with part of the whole word. In Sophos UTM it will list you all the hits with parts of what you type, and that does not happen on the Sophos XG.
For how long have I used the solution?
I have been using Sophos XG for approximately 10 years.
What do I think about the stability of the solution?
The performance of Sophos XG is generally good and it is stable.
What do I think about the scalability of the solution?
I have found the scalability of Sophos XG the same as Sophos XG.
We have approximately 10 clients using this solution.
How are customer service and support?
Since Sophos XG moved the support from London to somewhere in the world, such as India, it's a little bit longer to receive a fast response. They are knowledgeable but they are slow to make decisions. For example, we had a firewall and the hardware was defect. It was really clear, but we had to have a long discussion for them to be able to send us the new firewall. It took one or two weeks until the supporter was able to talk to someone who can make the decision. This is too long, this process could be streamlined.
How was the initial setup?
The initial setup is straightforward . As long as you buy the appliances from Sophos, it works very well. However, in some cases, we have to use our own servers because they have more power and more network bandwidth.
What about the implementation team?
The amount of users needed for the implementation and maintenance depends on the size of the customer's infrastructure.
What's my experience with pricing, setup cost, and licensing?
There is a license required to use this solution and my customers pay for it annually.
What other advice do I have?
I am not amazed by this solution.
I rate Sophos XG a four out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
CIO at a tech services company with 11-50 employees
Useful VPN, helpful vendor implementation, and quick support
Pros and Cons
- "One of the most valuable features is the VPN."
- "Sophos XG should improve on the GDPR features involving data protection and encryption. Security regarding data protection is important."
What is our primary use case?
We use Sophos XG to protect our perimeter network and internet access.
What is most valuable?
One of the most valuable features is the VPN.
What needs improvement?
Sophos XG should improve on the GDPR features involving data protection and encryption. Security regarding data protection is important.
For how long have I used the solution?
I have been using Sophos XG since they bought Astaro, and it has been for approximately 15 years.
What do I think about the stability of the solution?
Sophos XG is stable. We've been using it for a long time. We had a lot of proposals from other vendors, but we decided to stick with Sophos.
What do I think about the scalability of the solution?
We have found Sophos XG to be scalable.
We have approximately 150 people using the solution which includes people that do not know they are using it, collaborators, and administrators that work on it.
How are customer service and support?
We had to use support a few times and the answers we received were straightforward and in a timely manner.
Which solution did I use previously and why did I switch?
We were using other solutions previously. However, Sophos bought the companies that created them. We kept using the same solution but the name has changed.
How was the initial setup?
The implementation of Sophos XG is not as straightforward as we would expect in the latest versions.
What about the implementation team?
We used a company to do the implementation of Sophos XG. The process did not take very long, it took them approximately two weeks. It did not seem that difficult. Our experience with the vendor's support was very good.
We have a team of four that work on the Sophos XG for maintenance. They are not working on it full-time but they are all skilled to intervene if needed, and the first line of support for the solution.
What's my experience with pricing, setup cost, and licensing?
Sophos XG is a very good solution, and it's cheaper than most of the other vendors. It is really affordable.
We are on a three-year license to use the solution.
Which other solutions did I evaluate?
I have evaluated other solutions, such as Check Point.
What other advice do I have?
My advice to those wanting to implement this solution would be training is required for the implementation.
I rate Sophos XG an eight out of ten.
I'm aware that there are other solutions that are probably better than Sophos XG, such as Check Point. However, I still find that it's a very good solution for small to mid-size companies.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Network Engineer at Spectrum Engineering Consortium Ltd.
Reliable and flexible for small and large companies, but has some feature issues to resolve
Pros and Cons
- "Sophos XG Firewall is very usable, very easy to install, and very user friendly."
- "We are facing some problems on this firmware version, version 18, that require improvement. We want to improve the email security because it doesn't give proper security with the data protection. Also, our clients are facing some problems where most of the sites which they're accessing are getting blocked. I want to improve those sites, that email security, and the data protection on the Firmware version 18."
What is our primary use case?
You can use Sophos XG in small or large companies. In a small company we are using it as a router and firewall. In larger company, like in the Bangladesh government, they are using Sophos Firewall in various sites, including the Bangladesh Navy. Many of the sites are using Sophos Firewall as a router and firewall and also for security purposes.
How has it helped my organization?
Sophos XG Firewall is for security purposes and we are also using it as a router. Wherever we are deploying it as a router we are mapping and also port forwarding. More clients take it as a router and also a firewall.
What is most valuable?
Sophos XG Firewall is very usable, very easy to install, and very user friendly.
The features that I have found most valuable are the infiltration prevention and data protection. We provide immune security. There are also many features on the VPN. We provide a social VPN. We deployed so many features.
What needs improvement?
We are facing some problems on this firmware version, version 18, that require improvement. We want to improve the email security because it doesn't give proper security with the data protection. Also, our clients are facing some problems where most of the sites which they're accessing are getting blocked. I want to improve those sites, that email security, and the data protection on the Firmware version 18. Also, sometimes it gets frozen and we cannot access it. After we shut it down and restart, then it's perfect. That's a point that we want to improve.
In the next release, I want them to please improve version 18 so that it has more features and is more user friendly and it should have a VRF option.
For how long have I used the solution?
We are using Sophos XG for five years.
What do I think about the stability of the solution?
Sophos XG is stable.
Maintenance, once it is established on the network, requires about two to three people dedicated to Sophos Firewall. We have to give about two to three days monthly.
What do I think about the scalability of the solution?
Scalability is good.
We have about a thousand or more users and have plans to increase usage of this product.
How are customer service and support?
The Sophos support team is good now.
How was the initial setup?
Initial setup is easy. It took about one hour to do the initial setup.
What about the implementation team?
I am an implementer so I deployed it by myself.
What's my experience with pricing, setup cost, and licensing?
Sophos XG is on a subscription basis. We can take a one year or two year subscription.
What other advice do I have?
On a scale of one to ten, I will give Sophos XG a seven.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Gerente de Atendimento na Introduce at a tech services company with 11-50 employees
Robust and feature-rich solution.
Pros and Cons
- "The features that I have found most valuable are first the Web Filter and the Web Application Firewall SD-Wan on Version 18. Additionally, RED Tunnels allows a Sophos vital to speak to another Sophos vital in headquarters."
- "The main problem with Sophos XG today is that it doesn't have a feature where you actually know the quality of an international link, which would allow us to we know if the link is operational or not. We need more information. It's losing packets on the network. It's high latency. So, we need more information to know if the link is really bad or really good, and today, we will only know if it's working and this just isn't enough."
What is our primary use case?
We use and implement Sophos XG for our customers for border security, just to make sure that nobody gets in and that everybody who tries to get out will have some kind of filter or protection.
How has it helped my organization?
I can say that it has not exactly improved how our the organization functions, but on the security side it makes everything much more secure, especially for the users. They can't surf the web without some kind of protection for safety and control, and we are alerted if somebody is trying to access some strange websites or trying to access something the company does not allow.
What is most valuable?
The features that I have found most valuable are first the Web Filter and the Web Application Firewall SD-Wan on Version 18. Additionally, RED Tunnels allows a Sophos vital to speak to another Sophos vital in headquarters.
What needs improvement?
The main problem with Sophos XG today is that it doesn't have a feature where you actually know the quality of an international link, which would allow us to we know if the link is operational or not. We need more information. It's losing packets on the network. It's high latency. So, we need more information to know if the link is really bad or really good, and today, we only know if it's working and this just isn't enough.
For how long have I used the solution?
I have been using Sophos XG for about six, seven years.
What do I think about the stability of the solution?
Sophos XG is really robust because of all the implementations you currently have active. We don't have problems on the hardware or a bug on the software or anything like that. It's really, really rare. Most of the problems are from requests for our customers asking to make a particular website available for some parts of the company and things like this. Just some little configurations on the web filter.
What do I think about the scalability of the solution?
We actually do studies to already know before implementation which firewall will be able to handle all the operations. It is really rare to need to change the firewall or to miss a configuration and put in equipment that can't handle the network. We have never had a case where we had to replace a hardware because it couldn't handle the network. It has always been easy to make a survey to get the right equipment for the right amount of people, and every time we need to make a new implementation we have the study making scalability easy, because each hardware is for a specific customer.
How are customer service and support?
If I were to rate support from zero to 10, I would say about six or seven. The Portuguese Support is really bad. It's really not good. Every time you have an issue that's a little bit more complex, it's better to speak to the Global Support than the Latin American Support.
How was the initial setup?
Today the initial setup is simple since we have been using it for a long time and have implemented it for several customers. So now it is really easy for us.
What about the implementation team?
We are the resellers.
What other advice do I have?
My advice to anyone considering Sophos XG is that it has a good cost-benefit. Let's just put it that it does the job right.
On a scale of one to ten, I would say Sophos XG is a nine.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior IT Security Engineer at a financial services firm with 5,001-10,000 employees
Good filtering and application control features, but the bandwidth could be more effective
Pros and Cons
- "Some of the most valuable features are filtering and application control. The DDoS detection also shows traffic jamming and traffic shaping."
- "This solution could be improved with more effective bandwidth. I found that when I enable DDoS detection for our clients, bandwidth is reduced. If DDoS detection is disabled, the bandwidth will be high, but it isn't secure. We recommend that customers enable DDoS detection, but if they need high bandwidth, we recommend Palo Alto and FortiGate instead of Sophos."
What is our primary use case?
We provide Sophos XG to customers. We work at deploying this solution from scratch to the customer, from unboxing, racking, or stacking, and doing licensing and upgrades for the box. Then we establish the process and security profiles that the customer requires.
This solution is deployed on-prem.
What is most valuable?
Some of the most valuable features are filtering and application control. The DDoS detection also shows traffic jamming and traffic shaping.
What needs improvement?
This solution could be improved with more effective bandwidth. I found that when I enable DDoS detection for our clients, bandwidth is reduced. If DDoS detection is disabled, the bandwidth will be high, but it isn't secure. We recommend that customers enable DDoS detection, but if they need high bandwidth, we recommend Palo Alto and FortiGate instead of Sophos.
For how long have I used the solution?
I have been using Sophos XG for about six months.
What do I think about the stability of the solution?
This solution is not as stable as other products. In terms of stability, our number one recommendation is Palo Alto, number two is FortiGate, and number three is Sophos.
What do I think about the scalability of the solution?
Sophos is scalable, but not enough.
How are customer service and support?
Sophos technical support is effective.
How was the initial setup?
The installation takes two days. It is easy to deploy, and not as complicated as Palo Alto or FortiGate. We make it in our company labs and, for deployment and maintenance, we recommend one or two people.
What about the implementation team?
We provide and implement this solution for customers.
What's my experience with pricing, setup cost, and licensing?
The licensing for Sophos XG is based on the number of users, so I get the module from the sizing of the customer.
Which other solutions did I evaluate?
We also recommend that customers use FortiGate and Palo Alto, since these solutions are more stable and have more effective bandwidth.
What other advice do I have?
I rate Sophos XG a seven out of ten. I would recommend it to others, based on their needs, but the stability could be better.
We have five to seven customers who are using Sophos XG.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Buyer's Guide
Download our free Sophos Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Updated: February 2026
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
OPNsense
Cisco Secure Firewall
Palo Alto Networks NG Firewalls
WatchGuard Firebox
Check Point Quantum Force (NGFW)
Cisco Meraki MX
Azure Firewall
SonicWall TZ
Fortinet FortiGate-VM
Check Point CloudGuard Network Security
Juniper SRX Series Firewall
Palo Alto Networks VM-Series
SonicWall NSa
Buyer's Guide
Download our free Sophos Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Sophos XG 210 vs Fortigate FG 100E
- What Is The Biggest Difference Between Sophos UTM and Sophos XG?
- What is the biggest difference between Sophos XG and FortiGate?
- Which firewall is better and why: Sophos XG 210 or Fortinet FortiGate 100E?
- Which solution do you prefer: Fortinet FortiGate or Sophos XG?
- What are the main differences in features between Sophos XG and FortiGate 80F?
- Which product do you prefer: Sophos XGS 2100 or Fortinet FortiGate 100F?
- Fortinet FortiGate or Sophos XG?
- How does Meraki MX compare with Sophos XG?
- Which firewall to choose for an SMB to prevent malware damage: Cisco Firepower or Sophos XG?













