We are using a basic model for its security features. We are in the hospitality industry and it has all of the features that we need.
IT Manager at a hospitality company with 51-200 employees
User-friendly, easy to configure, and stable
Pros and Cons
- "The interface is user-friendly and the product is easy to configure."
- "In summary, this is a good product and other than the support, I don't think that there is anything else that will improve it for us."
- "Support for this product is something that is really important, and it needs to improve."
- "Support for this product is something that is really important, and it needs to improve."
What is our primary use case?
What is most valuable?
The interface is user-friendly and the product is easy to configure.
What needs improvement?
Support for this product is something that is really important, and it needs to improve.
For how long have I used the solution?
I have been using Sophos XG for almost eight years.
Buyer's Guide
Sophos Firewall
April 2026
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,311 professionals have used our research since 2012.
What do I think about the stability of the solution?
This solution has been stable so far.
What do I think about the scalability of the solution?
This is a scalable product and we have about 45 people using it.
Only one person is required for maintenance.
How are customer service and support?
Before the current pandemic, technical support was good, but it is becoming worse.
Which solution did I use previously and why did I switch?
In the past, I have worked with SonicWall and Fortinet products.
I prefer Sophos because of the user-friendly configuration and stability.
How was the initial setup?
The initial setup is easy.
What's my experience with pricing, setup cost, and licensing?
This is a budget-friendly product with reasonable pricing.
What other advice do I have?
In summary, this is a good product and other than the support, I don't think that there is anything else that will improve it for us.
I would rate this solution an eight out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Co-Founder at Multitechservers
A reliable product that provides remote VPN capability and multifactor authentication
Pros and Cons
- "The multifactor authentication is helpful because whenever the user wants to connect to the firewall, they have to use the authenticator before they can access it."
- "The most valuable feature is the remote VPN, and the multifactor authentication is helpful because whenever the user wants to connect to the firewall, they have to use the authenticator before they can access it."
- "Technical support can be slow to respond, which is something that should be improved."
- "Technical support can be slow to respond, which is something that should be improved."
What is our primary use case?
We are using Sophos XG for remote two-factor authentication. We manage the web and application access, as well as the traffic. We also used it for remote, site-to-site VPNs.
What is most valuable?
The most valuable feature is the remote VPN.
The multifactor authentication is helpful because whenever the user wants to connect to the firewall, they have to use the authenticator before they can access it.
The LAN traffic management features such as implicit denial are very good.
What needs improvement?
Technical support can be slow to respond, which is something that should be improved.
In the future, I would like to see the addition of artificial intelligence for identifying and controlling traffic.
For how long have I used the solution?
We have been using Sophos XG for the past year.
What do I think about the stability of the solution?
This is a reliable solution.
What do I think about the scalability of the solution?
This product is scalable. We have approximately 400 users, spread across different departments. As our production increases and we onboard more users, we will extend the use of Sophos XG.
How are customer service and technical support?
The technical support team is good but sometimes, there is a large delay in answering the phones.
How was the initial setup?
The initial setup is straightforward.
What about the implementation team?
We had assistance from the vendor during the onboarding process when the system was being set up. They spotted a lot of things during the implementation, which helped.
What was our ROI?
We get a return on this investment because the inbuilt two-factor authentication means that we don't need to purchase a third-party tool for this security feature.
What's my experience with pricing, setup cost, and licensing?
The price is good and licensing fees are billed on a yearly basis.
Which other solutions did I evaluate?
We evaluated Cisco Firepower but we found that Sophos XG was more efficient in terms of cost. As such, we implemented XG.
What other advice do I have?
This is a product that I can recommend for organizations with a medium-level or large-level infrastructure.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Implementer
Buyer's Guide
Sophos Firewall
April 2026
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: April 2026.
893,311 professionals have used our research since 2012.
Entrepreneur at Carmel Infotech Solutions
Good reporting, stable, with local support available
Pros and Cons
- "It is feature-rich, I like the server authentication, and the reports are good."
- "It is feature-rich, I like the server authentication, and the reports are good."
- "In the next release, I would like to see improvements made to the policy and simplify the policy-making, as the complexity of it makes it really tough."
- "The recent changes of the policy compared to Cyberoam are a little bit less user-friendly and complicated; Cyberoam is much easier to use."
What is our primary use case?
I am a reseller.
What is most valuable?
It is feature-rich, I like the server authentication, and the reports are good.
What needs improvement?
The recent changes of the policy compared to Cyberoam are a little bit less user-friendly and complicated. Cyberoam is much easier to use.
Security could be better.
In the next release, I would like to see improvements made to the policy and simplify the policy-making, as the complexity of it makes it really tough.
For how long have I used the solution?
I have been working with Sophos XG for more than six years.
What do I think about the stability of the solution?
It's a stable product.
What do I think about the scalability of the solution?
It's more scalable than most, but like other products, a Sandbox cannot be scalable.
Our clients are small and medium-sized companies.
How are customer service and technical support?
We get a local-level team for support. There is less support with Cyberoam.
Which solution did I use previously and why did I switch?
Cyberoam is the first product I started selling. We sell Fortinet also. Customers prefer Fortinet.
There is not a lot of difference between Sophos and Fortinet, they are very similar but in a large environment, Fortinet is better.
How was the initial setup?
The initial setup is really not a problem, but the policy-making is a bit complex.
What's my experience with pricing, setup cost, and licensing?
The price is not reasonable. The price is a bit higher.
Cyberoam is better in terms of cost.
What other advice do I have?
I always recommend Sophos but there is a Enterprise security concern so I prefer Palo Alto.
I would rate Sophos XG an eight out of ten.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Disclosure: My company has a business relationship with this vendor other than being a customer. reseller
Senior Manager, Information Technology at a university with 201-500 employees
Reliable and easy to install, but the policies should be upgraded
Pros and Cons
- "It is simple to use."
- "Its high availability is fine, it's good."
- "In the next release, I would like to see improvements to simplify the interface and more policy deployments."
- "The interface should be changed; it should be more user-friendly, and they should also update the policies and statistics because Fortinet is better, but Sophos could grow."
What is our primary use case?
We use this solution as a firewall for everyone to connect to the internet.
We protect ourself and we use it as a VPN to connect to the internal network.
How has it helped my organization?
It is improved significantly.
What is most valuable?
It is simple to use.
What needs improvement?
The interface should be changed. It should be more user-friendly.
They should also update the policies and statistics because Fortinet is better, but Sophos could grow.
In the next release, I would like to see improvements to simplify the interface and more policy deployments.
For how long have I used the solution?
It was Cyberoam and we upgraded to Sophos XG. We have been using Cyberoam for more than 10 years and more than one year with Sophos XG.
We were on version 17 and have just upgraded to version 18.
What do I think about the stability of the solution?
It's stable. We have no problem at all with stability or with Sophos XG.
What do I think about the scalability of the solution?
Its high availability is fine, it's good. It's scalable as well.
We have approximately 500 employees using this solution.
We will continue and increase our usage of this product.
How are customer service and technical support?
We had one issue with Cyberoam, but it was upgraded with Sophos. They helped us, but it takes a bit of time to resolve it but it's fine.
Which solution did I use previously and why did I switch?
We also use Fortinet FortiGate for large locations. The Fortinet usage is completely different than Sophos. Sophos is simple, but I prefer Fortinet.
How was the initial setup?
It's easy to install.
It takes the team one hour to launch it.
We have a team of 15 people to deploy and maintain this solution.
What about the implementation team?
We completed the installation ourselves.
What's my experience with pricing, setup cost, and licensing?
We purchased the technical appliances for on-premises.
We have our license for three years.
Which other solutions did I evaluate?
Yes. Fortinet. However the price is much better to Fortinet.
What other advice do I have?
I would recommend Sophos XG to others, but it would depend on their capacity.
I would rate Sophos XG a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Consultant at Wavednet Group
Enhanced security features, easy to use for all users, and has informative reports
Pros and Cons
- "The solution has very good security features, is easy to use for administrators and users, and has informative reports."
- "The solution has very good security features, is easy to use for administrators and users, and has informative reports."
- "I would like to see in future releases a tool to scan for malicious packets and give the location of where they are coming from."
- "I would like to see in future releases a tool to scan for malicious packets and give the location of where they are coming from."
What is our primary use case?
We are an IT solution company and we provide network security. This solution is used for securing your network.
What is most valuable?
The solution has very good security features, is easy to use for administrators and users, and has informative reports.
What needs improvement?
I would like to see in future releases a tool to scan for malicious packets and give the location of where they are coming from. Nowadays all over the world is suffering from ransomware threats. If they could map where those packets are coming from and make the packet monitoring more efficient it will be helpful to prevent more of these kinds of threats.
For how long have I used the solution?
I have been using the solution for approximately five years.
What do I think about the stability of the solution?
The solution has been highly stable.
Which solution did I use previously and why did I switch?
We have used SonicWall and Fortinet in the past.
How was the initial setup?
The installation is very easy for anyone. The configuration is straightforward, all the information is available through a quick Google search.
What's my experience with pricing, setup cost, and licensing?
The price can be a bit steep but for the number of features, it is worth it. Additionally, the enterprise version of this solution is priced well for all the features that you receive.
If you are thinking about implementing Fortinet, SonicWall, or any other product you will pay extra for additional security features and might need to purchase additional licenses. If they just spend a little more on this solution they will get the extra features for the same amount.
Which other solutions did I evaluate?
This solution has security features that in other solution you have to purchase them as add-ons, such as malware and email filters. Comparing this solution overall to competitors it is by far the best.
What other advice do I have?
I rate Sophos XG an eight out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer. partner
Sales Manager at INFOSEC
Stable with a good cloud-based console and great for enterprise-level organizations
Pros and Cons
- "The product has a console that is based in the cloud for all their products. In this console, they have email security, firewall security, endpoint security, et cetera. All of the products on offer in the console are very useful for us."
- "The product has a console that is based in the cloud for all their products, and in this console, they have email security, firewall security, endpoint security, et cetera, and all of the products on offer in the console are very useful for us."
- "The manuals or guides we are given are too simple. When we are implementing the product, it is difficult for us as we don't have more detailed information."
- "The manuals or guides we are given are too simple. When we are implementing the product, it is difficult for us as we don't have more detailed information."
What is most valuable?
The product has a console that is based in the cloud for all their products. In this console, they have email security, firewall security, endpoint security, et cetera. All of the products on offer in the console are very useful for us.
The solution is stable.
The solution works well for enterprises and large-scale organizations.
What needs improvement?
The manuals or guides we are given are too simple. When we are implementing the product, it is difficult for us as we don't have more detailed information.
The technical support on offer is slow. When I have questions, they answer me very slowly. Sometimes within 24 hours, I have a response. However, it can be longer. In Mexico, Sophos doesn't have technical support locally. It's in Argentina or in other countries. It would be nice if support was available in the country.
What do I think about the stability of the solution?
The stability is okay. That said, as an enterprise solution, it can be a bit unstable during the initial implementation.
What do I think about the scalability of the solution?
The solution works well for enterprise-level organizations.
How are customer service and technical support?
We're not overly satisfied with technical support. We'd like to see local support, from within our country. Due to the fact that it is coming from outside, the response is very slow. We'd like it to be faster. We aren't completely satisfied with the level of service we get.
How was the initial setup?
The initial setup is difficult in that there isn't enough documentation available to walk a user through the process. It can cause some issues. It's not exactly straightforward.
What about the implementation team?
Sometimes we need to work with other resellers. We don't always implement the solution by ourselves.
What other advice do I have?
We are partners with Sophos.
We are using the 130-type of solution.
We take a hybrid approach to deployment. Some servers are on-premise and some servers are in-cloud.
I'd rate the solution at an eight out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Senior Technical Consultant at Hash 1 IP services llp
Good content filtering and intrusion prevention, but needs better quality checks for firmware upgrades and better support
Pros and Cons
- "Content filtering and intrusion prevention are most valuable. Our customers are fully satisfied with the performance of Sophos. It has all the features that they require in a firewall."
- "Content filtering and intrusion prevention are most valuable, our customers are fully satisfied with the performance of Sophos, and it has all the features that they require in a firewall."
- "They need to do more quality checks before they release firmware upgrades. Currently, a few Cyberoam firewall customers are facing some issues while upgrading the Cyberoam firmware to Sophos. After the new firmware is installed, they are seeing some performance issues, which require some bug fixes. The performance is fine after getting the required support. Customers who are already using Sophos hardware are quite satisfied with this solution. Their support should also be improved. We are facing difficulties getting support on time through email or phone."
- "They need to do more quality checks before they release firmware upgrades. Currently, a few Cyberoam firewall customers are facing some issues while upgrading the Cyberoam firmware to Sophos."
What is our primary use case?
I'm providing services to my customers. They are using Sophos firewalls, and a few of them are also using antivirus.
What is most valuable?
Content filtering and intrusion prevention are most valuable. Our customers are fully satisfied with the performance of Sophos. It has all the features that they require in a firewall.
What needs improvement?
They need to do more quality checks before they release firmware upgrades. Currently, a few Cyberoam firewall customers are facing some issues while upgrading the Cyberoam firmware to Sophos. After the new firmware is installed, they are seeing some performance issues, which require some bug fixes. The performance is fine after getting the required support. Customers who are already using Sophos hardware are quite satisfied with this solution.
Their support should also be improved. We are facing difficulties getting support on time through email or phone.
For how long have I used the solution?
I have been using this solution for three to four years.
How are customer service and technical support?
I regularly contact them. Connecting Sophos support is quite a difficult task during the pandemic. We are facing difficulties getting support on time through email or phone. Sometimes when a problem comes, it has to be sorted for the customer quickly, but it is taking time. One of the customers has just upgraded a firewall from Cyberoam firmware to Sophos, and it took them around ten days to get that firewall upgraded from Sophos.
Which other solutions did I evaluate?
Most of the customers compare Sophos with Fortinet. In comparison to Fortinet, people are more satisfied with Sophos. Sophos has a big customer base in India. Therefore, they are good in terms of performance and customer satisfaction.
What other advice do I have?
I would rate Sophos XG a seven out of ten. We are satisfied with its performance.
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
IT Manager for Network and Security at a religious institution with 51-200 employees
Good reporting and scalability with great anti-spam capabilities
Pros and Cons
- "They really work scalability into the solution at the outset."
- "The Multi-Link, or the Multi-Wan, SD-WAN, is extremely valuable to our organization."
- "The SD-WAN could be improved."
- "The SD-WAN could be improved. It is not yet full-blown; it's only basic, really."
What is our primary use case?
We are primarily using Sophos XG for the identity base, policies, load balancing, and SD-WAN. Right now we have separate, different branches, therefore, we need to integrate it with SD-WAN. Of course, with SD-WAN, we need to do the load balancing, the VPN failovers, and also watch the connectivity. We are more particular on the link, and also the implementation of user policies.
What is most valuable?
The Multi-Link, or the Multi-Wan, SD-WAN, is extremely valuable to our organization.
The Anti-Spam and the Gateway Anti-Virus capabilities have been very useful.
The solution offers a very good Network Ring, QRS, and landing management.
We've found that the reporting is very good overall.
They really work scalability into the solution at the outset.
What needs improvement?
The SD-WAN could be improved. It is not yet full-blown; it's only basic, really. They need to move on with the algorithm on how the SD-WAN works, and how it works in comparison to other brands of SD-WAN. Sophos should study those algorithms on how they do the SD-WAN to learn a few things that may help them build out their own solution.
For how long have I used the solution?
I've been using the solution and various other Sophos solutions for a while.
What do I think about the scalability of the solution?
If you do the right planning, most of the time Sophos is good for five years. It depends on the recommendations as well. Sometimes the Sophos team or supplier will show you the number of users or number of networks and they'll illustrate to you a plan most suited to what you have and what you might have. They assess everything and give you a five-year plan. That way, if you need to expand, they've already taken that into consideration at the outset and there's room to scale.
We have about 100 users.
Due to the pandemic, we don't really have any plans to expand. We may be downsizing a bit. We'll see.
How are customer service and technical support?
We've been satisfied with Sophos' technical support. They are very helpful and responsive. Their staff is quite knowledgeable.
How was the initial setup?
I've worked with Sophos previously and we had a different setup. In terms of implementation, sometimes there are complex setups and sometimes the setup s are more basic. Right now, we have a complex setup. We need to ensure interconnectivity between our branches. We'll have different networks, different sites, and a lot of complexity.
It doesn't really take too long to deploy, however. The support from the supplier is good. They're always available to assist. They are well-trained and they are already familiar with the setups and configuration so they're doing a pretty good job in terms of helping us.
What about the implementation team?
The supplier, the reseller, the partner of Sophos, is doing the change for the end-users. Most of the basic configuration has already been already done by us, however, for more complex areas, we could ask them, and they could come to us to configure it for us.
What's my experience with pricing, setup cost, and licensing?
The pricing is based on the acquisition cost.
Which other solutions did I evaluate?
We have evaluated a few different solutions. We've looked at Palo Alto and FortiGate products. In terms of our end-point security, we've also looked at Trend Micro and a few others.
What other advice do I have?
We are just a customer and an end-user.
We are using the latest version of the solution.
ON a scale from one to ten, I would rate this solution at an eight.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Sophos Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Updated: April 2026
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
OPNsense
Cisco Secure Firewall
Palo Alto Networks NG Firewalls
WatchGuard Firebox
Check Point Quantum Force (NGFW)
Cisco Meraki MX
Azure Firewall
Check Point Cloud Firewall (formerly CloudGuard Network Security)
SonicWall TZ
Fortinet FortiGate-VM
Palo Alto Networks VM-Series
Juniper SRX Series Firewall
KerioControl
Buyer's Guide
Download our free Sophos Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Sophos XG 210 vs Fortigate FG 100E
- What Is The Biggest Difference Between Sophos UTM and Sophos XG?
- What is the biggest difference between Sophos XG and FortiGate?
- Which firewall is better and why: Sophos XG 210 or Fortinet FortiGate 100E?
- Which solution do you prefer: Fortinet FortiGate or Sophos XG?
- What are the main differences in features between Sophos XG and FortiGate 80F?
- Which product do you prefer: Sophos XGS 2100 or Fortinet FortiGate 100F?
- Fortinet FortiGate or Sophos XG?
- How does Meraki MX compare with Sophos XG?
- Which firewall to choose for an SMB to prevent malware damage: Cisco Firepower or Sophos XG?













Sophos XG Firewall is one of the best firewalls we have used till date. 2FA, Remote VPN also a number of features it has.