No more typing reviews! Try our Samantha, our new voice AI agent.
it_user1359756 - PeerSpot reviewer
Owner/President at TeamLogic IT of Oklahoma City
MSP
Jun 17, 2020
Easy to manage, performs well, and the pricing is good
Pros and Cons
  • "The cloud-based interface makes it easy to manage."
  • "I would highly encourage others to evaluate Sophos and adopt it."
  • "The weakest point is the technical support because they are difficult to get into contact with."

What is our primary use case?

We are a managed service provider and the primary firewall that we sell and maintain is Sophos XG. It is also used in the company.

What is most valuable?

The most valuable feature is that it is a next-generation firewall.

The fact that it is integrated between endpoints and the firewall, and then the firewall and a central Sophos operation center, is very good.

The cloud-based interface makes it easy to manage.

The integration with the Intercept X approach means that Sophos XG can do things that none of the others are doing.

What needs improvement?

The main area that needs improvement is the documentation.

Sophos needs to be a little better at communicating with partners about changes, issues, patches, and so forth. 

The weakest point is the technical support because they are difficult to get into contact with.

For how long have I used the solution?

We have been using the Sophos XG series for three years.

Buyer's Guide
Sophos Firewall
August 2026
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
913,924 professionals have used our research since 2012.

What do I think about the stability of the solution?

This solution has been very stable and it's a good product, otherwise, I wouldn't be using it.

How are customer service and support?

The technical support team is knowledgeable and they are good, although it is very hard to get a hold of them. You sometimes have to wait in queue for over an hour to speak with somebody. To me, that is the most frustrating thing about Sophos.

Which solution did I use previously and why did I switch?

We did not use another similar solution prior to Sophos XG. Since the MSP business started, it has been our primary firewall product because of the pricing and support.

How was the initial setup?

The initial setup is complex, as is setting up any next-generation firewall today. You have to know what you're doing with firewalls in general, although beyond that, it isn't as bad as some of the firewalls that I have seen.

The deployment typically doesn't take longer than a few hours or a day, depending on the type of client and what it is that we have to do.

What's my experience with pricing, setup cost, and licensing?

The Sophos pricing, in general, is better than SonicWall, Fortinet, WatchGuard, or anybody else. Because of the partner program, the pricing I get is extremely good compared to what I would get from any of the others.

Which other solutions did I evaluate?

I have evaluated several firewall products and I think that Sophos is better in terms of ease of use, performance, and pricing.

What other advice do I have?

I would highly encourage others to evaluate Sophos and adopt it. I've discovered that compared to other products, it is easier to manage and I think that it operates better.

Overall, I think that they've got a pretty complete set of features and they seem to be on a really good path. My only complaints are about the documentation and the availability of technical support. 

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
PeerSpot user
it_user1363380 - PeerSpot reviewer
Manager IT at QPS Bioserve Pvt Ltd.
Real User
Jun 16, 2020
Easy to use, robust, and the default templates are helpful
Pros and Cons
  • "This solution is very user-friendly and even a non-professional can configure the policies."
  • "Sophos XG is a firewall that I would recommend for people who are looking for good security in a medium-scale organization."
  • "The cloud support needs to be improved."

What is our primary use case?

I was using the Sophos XG firewall in my last job, where it was part of our security solution.

We had multiple locations with the internet being provided from a central location. Each of our locations was connected point-to-point using MPLS lines. Using Sophos meant that we didn't need to have a router.

What is most valuable?

The default templates are helpful because if you want to create new policies, they make it easy to do anything you want.

Sophos XG is a very robust technology.

This solution is very user-friendly and even a non-professional can configure the policies.

There are unlimited SSL VPN clients and it is free with Sophos.

What needs improvement?

The cloud support needs to be improved. As it is, they only have support for Microsoft Azure. They should expand it to include providers like Amazon and Alibaba.

What do I think about the stability of the solution?

I have not heard complaints of bugs or glitches occurring.

What do I think about the scalability of the solution?

Sophos is a scalable technology that is being regularly updated.

How are customer service and technical support?

I have been in contact with technical support many times and they are very good.

Which solution did I use previously and why did I switch?

Currently, in my new company, I am using Fortinet. This is a very basic firewall and ultimately, I would like to update them.

How was the initial setup?

The initial setup is not complicated. For somebody with an intermediate level of knowledge, it will take between three and four hours to deploy. For a more experienced person, it may take two or three.

Which other solutions did I evaluate?

I am currently in the process of evaluating the different firewalls that are available in India.  One of the options is Sophos, and I am also considering others such as SonicWall and Palo Alto.

With Fortinet and SonicWall, there is a limit of 10 people who can simultaneously connect using the VPN.

What other advice do I have?

Sophos XG is a firewall that I would recommend for people who are looking for good security in a medium-scale organization.

I would rate this solution a nine out of ten.

Which deployment model are you using for this solution?

Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Sophos Firewall
August 2026
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: August 2026.
913,924 professionals have used our research since 2012.
Senior System Administrator at a financial services firm with 201-500 employees
Real User
Apr 16, 2020
Has a simple setup and has good stability
Pros and Cons
  • "The simplicity of the setup is the most valuable feature."
  • "They seem pretty stable."
  • "Their technical support needs improvement. I've been on hold with them for hours waiting for their support."

What is most valuable?

The simplicity of the setup is the most valuable feature.

What needs improvement?

Their technical support needs improvement. I've been on hold with them for hours waiting for their support.

For how long have I used the solution?

I have been using Sophos XG for five years. 

What do I think about the stability of the solution?

They seem pretty stable. They're pretty good devices when they're up and running. Once you get them up and running they seem to work quite well. It runs 24/7.

What do I think about the scalability of the solution?

They're very scalable.

How was the initial setup?

The setup is easy. We did the deployment ourselves. 

What other advice do I have?

If you pay for the premium support, you'll get better support from Sophos.

I would rate Sophos XG an eight out of ten. 

The integration with their Sophos Central isn't great. That needs some work. If they could work on the integration with Sophos Central, that would be great.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Administrator IT at Shopfront Limited
Real User
Dec 21, 2019
Synchronized security centrally monitors endpoints in real-time
Pros and Cons
  • "This kind of strategic technology makes it much easier to remove malware and address vulnerabilities quickly."
  • "It would be great if the user can have a portal to check on activities related to their account."

What is our primary use case?

We primarily use this solution for bandwidth control, intrusion prevention, and network security.

How has it helped my organization?

We now have visibility into our network.

What is most valuable?

Sophos operates using a Synchronized Security in its XG platform. It is facilitated by an active connection with all of the network endpoints. This connection operates like a heartbeat, notifying the firewall instinctively when an endpoint has been infected or compromised. The firewall then quarantines the problem area and provides detailed information on how the endpoint was compromised. This kind of strategic technology makes it much easier to remove malware and address vulnerabilities quickly.

What needs improvement?

It would be great if the user can have a portal to check on activities related to their account.

For how long have I used the solution?

We have been using Sophos SG for two years.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
PeerSpot user
Technical & Pre-Sales Manager at GateLock
Real User
Sep 17, 2019
Multifaceted security protection to protect us and our customers
Pros and Cons
  • "All of the features are amazing, especially Sandstorm, which prevents bad traffic or downloaded files from reaching our customers' and partners' networks."
  • "Network security is in need of improvement."

What is our primary use case?

This solution is implemented for medium and large enterprises to protect their network from attacks and to filter the web traffic through web protection and application protection modules.

This solution includes Email protection, IPS, Antivirus gateway, ATP, Reporting, VPN, Sophos Wireless controller, load balancer, WAF, and traffic shaping.

How has it helped my organization?

  1. It's protecting our networks from threats.
  2. Block URLs and web applications based on business needs.
  3. Not expensive when compared to other vendors, with a great added value.
  4. Impressive synchronized security with its endpoint solution.

What is most valuable?

All of the features are amazing, especially Sandstorm, which prevents bad traffic or downloaded files from reaching our customers' and partners' networks.

What needs improvement?

Network security is in need of improvement.

For how long have I used the solution?

I have been using this solution for five years.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
it_user633438 - PeerSpot reviewer
Information security specialist at a non-tech company with 201-500 employees
Real User
Sep 2, 2019
Enables us to trace any user and pinpoint any vulnerability or malicious software
Pros and Cons
  • "We are able to trace any user and pinpoint any vulnerability or any malicious software. We are able to synchronize between the local and active directories so we can catch users easily through their login names and IDs."
  • "There needs to be a way that we can distinguish between educational institutions on Youtube and other Youtube videos. You can do this on Fortinet. Basically, they can block all other Youtube videos besides those that are from educational institutions. With Sophos, you either allow for all Youtube videos or none at all. They need to allow for more specification on different websites."
  • "The solution's technical support is not the best."

What is our primary use case?

We use the solution for application control and web filtering. We also use it as a VPN point, and we use it on other occasions for tracing and reporting about usage and high application rates.

How has it helped my organization?

We are able to trace any user and pinpoint any vulnerability or any malicious software. We are able to synchronize between the local and active directories so we can catch users easily through their login names and IDs.

What is most valuable?

The reporting on the solution is excellent.

What needs improvement?

There needs to be a way that we can distinguish between educational institutions on Youtube and other Youtube videos. You can do this on Fortinet. Basically, they can block all other Youtube videos besides those that are from educational institutions. With Sophos, you either allow for all Youtube videos or none at all. They need to allow for more specification on different websites.

They only have one single location for training videos. They must offer them elsewhere as well. When the site goes down, everything stops, and you can't access the videos when you need them, so they need to diversify that. It's limiting.  

For how long have I used the solution?

I've been using the solution for two years.

What do I think about the stability of the solution?

The stability of the solution is excellent.

What do I think about the scalability of the solution?

The scalability is good. We could only handle around 5,000 users but even when we reached 3,000 users, Sophos only consumed around 24% and 40% of Prime usage. 

How are customer service and technical support?

The solution's technical support is not the best. When I take a step to open a case with Sophos support I can't understand them at all; I can't understand their accent. I always appreciate if they can communicate with me through e-mail instead, which makes it much easier. 

Many cases take a long time to be resolved. Some cases they seem to ignore or don't reply to for a long time so I have to remind them that the case is still open before they will respond. 

How was the initial setup?

The initial setup was straightforward. The implementation took about a day. There were only two people needed for deployment.

What about the implementation team?

We had a consultant assist with the setup. They were very good.

What other advice do I have?

We use the on-premises deployment model.

I would rate the solution nine out of ten. It's a very good firewall. It helps a lot with protection, and every organization needs a firewall to ensure they are protected.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
‎Chief Operating Officer at Al Manar
Real User
Aug 29, 2019
An excellent firewall solution with reasonable licensing rates and a straightforward setup
Pros and Cons
  • "Price-wise the solution offers acceptable rates. You can find cheaper solutions on the market but when you go cheaper you have fewer features. Today, based on iQuate market the price is very reasonable and affordable, and it's good if you get a good discount. Discounts can be offered by the vendor. If it's a competitive upgrade which means the customer is upgrading from another vendor, Sophos provides extra discount so they can win the deal. In general, it is a good price."
  • "For the past seven years, we haven't had any issues with the hardware or software."
  • "They should expand their DDoS feature. It's basic. They need to enhance it."

What is our primary use case?

We primarily use the solution internally in our company and we also deploy it for our customers.

What is most valuable?

We have many Sophos solutions that we use together. We use Sophos UPM and Sophos XG. Next, there are just firewalls. The Sophos UPM is the basic firewall; Sophos XG is a mix of Cyberoam and Surface (Sophos acquired Cyberoam three years ago). We use all the features within these solutions and we have a full set of licenses. They offer IPS, IBS, BPM, web publishing, web protection, etc. We're using everything. 

What needs improvement?

They should expand their DDoS feature. It's basic. They need to enhance it.

Technical support needs to be improved.

The solution needs a mobile application for the administrator. Today, as an administrator, you cannot manage the solution from your tablet or from your mobile. You can only go through a web console. Other vendors have mobile apps. Some vendors also have the ability to manage and check the chart report and change some settings from a mobile application. This would be an excellent add-on for administrators who are traveling. It could help a lot. 

For how long have I used the solution?

I've been using the solution for seven years.

What do I think about the stability of the solution?

For the past seven years, we haven't had any issues with the hardware or software. It's stable. If a customer misconfigured it, they might face issues. Out of the box, however, it's stable; it is an appliance that customers can depend on.

What do I think about the scalability of the solution?

The solution is scalable. Sophos has plans for customers who want to upgrade or add another appliance in the same environment. As a customer, I've deployed to as many as 300 users or as few as 30.

How are customer service and technical support?

Technical support isn't as good as it needs to be. In most cases, these days, the partner has to work hard to support the customer. The response time and the experience of the support team are not as expected. As a partner, we've never opened a case. Our customers, however, have told us they have had issues.

How was the initial setup?

The solution is straightforward. Deployment took about 30 minutes.

What's my experience with pricing, setup cost, and licensing?

Price-wise the solution offers acceptable rates. You can find cheaper solutions on the market, but when you go cheaper you have fewer features. Today, based on iQuate market the price is very reasonable and affordable, and it's good if you get a good discount. Discounts can be offered by the vendor. If it's a competitive upgrade which means the customer is upgrading from another vendor, Sophos provides extra discounts so they can win the deal. In general, it is a good price.

What other advice do I have?

We are a Sophos partner. We both use the solution and recommend it to clients.

Compared to other competitors, I'd rate the solution nine out of ten. However, for very large enterprises, the largest firewall appliance from Sophos might not be enough for thousands of users. If I was rating the solution for enterprises, I would rate it eight out of ten because of this. 

I would recommend the solution, however. We often recommend the solution to our clients and it works very well for them.

Disclosure: My company has a business relationship with this vendor other than being a customer. Partner.
PeerSpot user
Chairman at BASL
Real User
Aug 28, 2019
Excellent integration with the Sophos firewall and has a user-friendly interface
Pros and Cons
  • "I like the fact that it can self remove malware and do updates on the cloud via Sophos Central."
  • "With Sophos Central, I think it's a good solution for any IT department."
  • "On reports, they sometimes give a summary, but it lists different users as unknown. There are times that I really want to know which user or which IP is causing a problem."
  • "I don't want to have to restart my device to have the internet service improved."

What is our primary use case?

I use the solution as my endpoint firewall and at the same time, I use it for load balancing and spillover.

What is most valuable?

What I like the most is the reporting. 

The integration with the Sophos firewall is brilliant. I don't need to be physically present in the office. I can monitor everything from Sophos Central. That is a great feature and it's one thing that I really appreciate about the solution.

I like the fact that it can self remove malware and do updates on the cloud via Sophos Central.

The interface is good.

What needs improvement?

Although I enjoy the reporting elements of the solution, it can still be improved. I still can't drill down. There is some information that I would really, really like to see, but I still can't access it.

On reports, they sometimes give a summary, but it lists different users as unknown. There are times that I really want to know which user or which IP is causing a problem. 

For how long have I used the solution?

I've been using the solution for ten months.

What do I think about the stability of the solution?

There is something that have observed and I don't know what exactly the problem is. Right now, from my ISP I'm supposed to have unlimited bandwidth, but I observed behind the firewall my bandwidth seems low. I'm not exhausting what I have from my ISP. I've checked the TOS and there's no limit. When I spoke with one of the resellers they said that they too had experienced it before and that probably I should restart the device.

That they observed that the clients that restarted had their internet service improve. I don't think that is a good solution. I don't want to have to restart my device to have the internet service improved.

I've checked the setup. I even checked with the reseller, who told me everything is okay. I've gone for XG training. Even after the XG training, I've gone back to look at my setup. I can't see anywhere the bandwidth is being shared. I'm not sure if it's the device itself, but I've checked everything.

What do I think about the scalability of the solution?

The scalability is okay. We have about 200-250 users.

How are customer service and technical support?

Technical support can be improved upon. There are times that I've had some issues that I've tried escalating in technical support and it takes a while before we really get it resolved. 

Once I was getting a particular malware from an unknown source on one of my servers which was behind the firewall. I asked their support why. Later they advised that I should install Intercept X for servers on that particular device. I was confused about how it was behind a firewall; the firewall should be able to detect which system is getting infected. The system doesn't really go to the internet and nobody browses on it. The only thing I could imagine that could cause it was a Windows update. If it was from an update they least it should have been able to say, "Okay, it was from this particular update that this malware was filtered in."

Out of ten, I would give their service a five.

Which solution did I use previously and why did I switch?

The solution we were using previously was Cyberoam.

The Cyberoam device was about five years old and had started malfunctioning. It wasn't giving us the output it had previously provided. At that time, Sophos had already bought Cyberoam. We had the option to either upgrade the OS to a Sophos OS or to a Sophos device.

We decided to go for a Sophos device since the Cyberoam device was already problematic.

How was the initial setup?

The initial setup is straightforward.

What about the implementation team?

I used a reseller to assist with implementation.

What's my experience with pricing, setup cost, and licensing?

We pay on a yearly basis. 

We have Sophos XG, but we also have Intercept X for our endpoint and recently we just deployed Intercept X for the servers. I've not done a calculation of the costs of all three to know what my yearly maintenance costs would be.

What other advice do I have?

Once you have basic networking skills and firewall management it's easy to set up. With Sophos Central, I think it's a good solution for any IT department.

I would rate the solution eight out of ten.

As it is now, the solution is good, but I believe that there's still room for more improvement. I still believe the reporting could be improved. Sophos, from my experience, seems to affect my bandwidth. I didn't set any limit, so I don't know where that is coming from, but it's something that we've noticed with the XG.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Support Services Manager at a wholesaler/distributor with 51-200 employees
Real User
Aug 27, 2019
An easy to use firewall solution that improves our security
Pros and Cons
  • "The solution seems pretty stable. We've had no issues so far."
  • "The solution is easy to implement, however, if you do decide on this solution, I would make sure that you have someone that has experience with this kind of solution or to hire someone to implement the solution properly."
  • "It's easy to use, but it's harder to configure when you want detailed settings. They need to make it easier to access advanced features."

What is our primary use case?

We use the solution mainly as a firewall.

What is most valuable?

The solution improves security.

What needs improvement?

It's easy to use, but it's harder to configure when you want detailed settings. They need to make it easier to access advanced features.

For how long have I used the solution?

I've been using the solution for three years.

What do I think about the stability of the solution?

The solution seems pretty stable. We've had no issues so far.

What do I think about the scalability of the solution?

We haven't had to scale anything so far, so I'm unsure about the scalability of the solution.

How are customer service and technical support?

I've never had to deal directly with technical support.

Which solution did I use previously and why did I switch?

We did not previously use a different solution.

How was the initial setup?

Implementation is straightforward. The only thing that was difficult was that we had some special cases and we had to dig in a lot to find the information for accessing very specific features. Deployment took about a week, however, we did about 6 months of research beforehand. You can deploy the solution with maybe one or two people, but we used five. We only need one person for ongoing maintenance.

What about the implementation team?

We handled the implementation ourselves.

What's my experience with pricing, setup cost, and licensing?

We don't have any costs above the licensing of the solution itself.

What other advice do I have?

We are using the on-premises deployment model.

The solution is easy to implement, however, if you do decide on this solution, I would make sure that you have someone that has experience with this kind of solution or to hire someone to implement the solution properly. It will make everything much easier in the long run.

I would rate the solution 9.5 out of ten.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Lead Advance Engineer at IHCC
Real User
Aug 26, 2019
Very easy to use but bugs find their way through their security
Pros and Cons
  • "What I like about his program, is that it is easy to use and easy to manage."
  • "We only use Sophos because it can integrate with other product like FortiGate and we can easily connect the two programs."
  • "The program is rather expensive."
  • "Sometimes we experience difficulties with our server and that is usually due to a bug."

What is our primary use case?

Our primary use case of this program is for antivirus and security purposes.  

What is most valuable?

What I like about this program is that it is easy to use and easy to manage.

What needs improvement?

Sometimes we experience difficulties with our server and that is usually due to a bug. Somehow bugs seem to find their way through Sophos' security. The issue is usually resolved when we contact technical support. In the next version, I would like to see an improvement in this. The developers should test everything after any update to ensure that bugs don't come though with the update.

For how long have I used the solution?

We have been using Sophos XG for three years now.

What do I think about the stability of the solution?

I've used FortiGate before and I would say that Sophos is just as stable, both being around 70% as stable as other products on the market.

What do I think about the scalability of the solution?

The scalability is good. We have 300 to 400 antivirus end users, and our company has around 1,000 users. We do have plans to increase usage because we are growing our projects around the world to countries like the US, Germany, Pakistan, India, UAE (Dubai) and Egypt.

How are customer service and technical support?

The technical support is okay. Whenever we call them with an issue, they come to us and resolve the issue. Sometimes they take time, but I still think it's good. I will rate the technical support eight out of ten.

Which solution did I use previously and why did I switch?

We only use Sophos because it can integrate with other product like FortiGate and we can easily connect the two programs. This makes the program scalable and easy to use. Many other products on the market are not compatible with each other and that is why we chose Sophos. 

How was the initial setup?

The initial setup was rather complex but we had no issues with the deployment.

What's my experience with pricing, setup cost, and licensing?

We bought a license for three years and we will renew it but I think the price is too high. If it could be less expensive, more end-users or partners will be able to afford it.

What other advice do I have?

It is a good product and I will definitely recommend it. I rate this product a seven out of ten. In the next version I would like to see an advanced level and not only a basic level. Nowadays it is a very useful feature to be able to upgrade.

Disclosure: My company does not have a business relationship with this vendor other than being a customer.
PeerSpot user
Buyer's Guide
Download our free Sophos Firewall Report and get advice and tips from experienced pros sharing their opinions.
Updated: August 2026
Product Categories
Firewalls
Buyer's Guide
Download our free Sophos Firewall Report and get advice and tips from experienced pros sharing their opinions.