It is very user friendly and easy to manage from the administrative point of view. It is good, reliable, and easy to implement.
Network Team Lead at a manufacturing company with 5,001-10,000 employees
It is user friendly and reliable, but it needs granular control over the traffic
Pros and Cons
- "It is very user friendly and easy to manage from the administrative point of view. It is good, reliable, and easy to implement."
- "It is a very basic and entry-level firewall. It doesn't give very granular control over the traffic. It should have more granular control over the traffic. This feature should be there similar to Palo Alto and Cisco. It should have such advanced features."
What is most valuable?
What needs improvement?
It is a very basic and entry-level firewall. It doesn't give very granular control over the traffic. It should have more granular control over the traffic. This feature should be there similar to Palo Alto and Cisco. It should have such advanced features.
For how long have I used the solution?
I have been using Sophos XG for the last two years. We are using the latest version.
What do I think about the stability of the solution?
Its stability and reliability are fine.
Buyer's Guide
Sophos Firewall
January 2026
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,757 professionals have used our research since 2012.
What do I think about the scalability of the solution?
If you want to have multiple firewall rules, it has this type of scalability. When I compare it with some other products, such as Palo Alto, I can't find similar scalability in Sophos XG. In Palo Alto, we can have rules based on applications or app IDs, and we can create multiple rules for a single ID. We can create a single user or single IP, but such options are not there in Sophos XG. Granular level scalability should be there in Sophos, and they should do better.
How are customer service and support?
I appreciate their support. Their support is good.
Which solution did I use previously and why did I switch?
I also use Palo Alto. Palo Alto provides application IDs, which is a very powerful feature. Sophos XG is a very normal next-generation firewall with URL filtering, application filtering, and all such features. It is not something extraordinary. It is a very normal next-generation firewall.
How was the initial setup?
The initial setup is straightforward. It is a single day task to do the initial configuration and move the traffic over there. The firewall hardening, of course, will take some time depending upon the traffic, but the initial setup is a single day task.
What other advice do I have?
It is a normal firewall. All the basic features are there. However, it is not as advanced as some of the other solutions, such as Palo Alto. As we have more security threats, we need more granular control, but these features are not available in Sophos XG.
I would rate Sophos XG a five out of ten.
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Networking Engineer at a comms service provider with 1,001-5,000 employees
Easy to set up, good support, and the display of bandwidth usage statistics is interesting. There is a drill down menu showing bandwidth usage for each application. Easy to configure e-mail rules.
Pros and Cons
- "What we found valuable is the way they deal with emails, as well as the way the bandwidth usage is shown."
- "We are having challenges when using Zoom with Sophos XG deployed."
What is our primary use case?
Right now, we are using this product as a perimeter firewall just to deal with emails and to protect servers, as well as other equipment that is on the network.
What is most valuable?
What we found valuable is the way they deal with emails, as well as the way the bandwidth usage is shown. I find this information to be very interesting.
What needs improvement?
We are having challenges with social media because ever since this issue of COVID-19 came into existence, the idea of using online discussions has become relevant. Before this, they were not made the priority because they were not considered to be important. Now, we've discovered that we need to use a lot of these online applications.
We are having challenges when using Zoom with Sophos XG deployed. Our wireless network is not stable through the connection. More work needs to be done there, since the FW is doubling up as a wireless controller.
I would like to see improvements made to the display and visibility. I'm also using Sophos XG firewall as our wireless controller, but as it is now, I can't see my access points on the firewall. My wish is to see the Wireless network and reports also on this firewall cum- controller.
For how long have I used the solution?
We have been using Sophos XG for almost three years.
What do I think about the stability of the solution?
Sophos XG is stable and we have no problems with it.
What do I think about the scalability of the solution?
I think there is a limitation on the issue of scalability, and it is related to the interfaces that we bought. Right now, all of the employees are using it. The traffic that passes through it covers close to 2,000 users.
For us, our bandwidth is growing so we may have to scale further, in terms of the hardware networking components.
How are customer service and technical support?
We are constantly in touch with the distributor in Zimbabwe and they are excellent.
Which solution did I use previously and why did I switch?
Prior to Sophos XG, we were using Cyberoam for our firewall. We switched because Cyberoam was acquired by Sophos.
How was the initial setup?
The initial setup is very simple. It takes perhaps an hour to complete, which included importing rules from Cyberoam.
What about the implementation team?
We completed some certifications for using this product, but for the implementation, we were assisted by IDSS. In some instances, we are doing the maintenance on our own. When we have a challenge, on a case-by-case basis, we might contact the vendor and may require them to come in and assist.
What's my experience with pricing, setup cost, and licensing?
The issue of a recurring license is a hassle because every year, we have to subscribe. It causes us problems in our organization.
What other advice do I have?
We are expanding and setting up a new data center, and I want to put a new firewall in. We have an interest in diversifying, in terms of vendors, so that we do not create a single point of failure in case one product fails. Ideally, we want to have different products.
This is a product that I can recommend for anybody who is looking for a firewall.
I would rate this solution a eight point six out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Sophos Firewall
January 2026
Learn what your peers think about Sophos Firewall. Get advice and tips from experienced pros sharing their opinions. Updated: January 2026.
881,757 professionals have used our research since 2012.
Director, Middle East, East India & SAARC at a tech company with 51-200 employees
Good support, easy to set up, and the VPN helps ensure secure connections for people working remotely
Pros and Cons
- "The feature that we find most valuable is the VPN, which ensures that people working remotely have a secure connection."
- "We feel that the GUI can be improved a bit because it has a lot of information and looks a bit outdated."
What is our primary use case?
We are using this product as the firewall for our head office, so any connections going outside of the office go through it. We are also using VPN clients and especially during the lockdown, it was very helpful.
What is most valuable?
The feature that we find most valuable is the VPN, which ensures that people working remotely have a secure connection.
The email security and other security-related features are useful.
What needs improvement?
We feel that the GUI can be improved a bit because it has a lot of information and looks a bit outdated.
Nowadays, you hear a lot about next-generation firewalls, so some additional features can be added from an EI perspective. Products like FortiGate, for example, have a lot of features apart from the basic firewall.
We would like to see integration with existing IPAM and IDAM products.
In the future, I would like to see new kinds of automations, as well as the inclusion of artificial intelligence-related features. A lot of other firewalls already have these now.
For how long have I used the solution?
I have been using Sophos XG for approximately three years.
What do I think about the stability of the solution?
We have not had many issues, perhaps two or three of them, when using Sophos XG.
What do I think about the scalability of the solution?
Scalability-wise, they have different models. With the requirements that we have, this firewall did a good job. It's still doing a good job in terms of performance. For a larger enterprise with a higher number of users, they can recommend other models.
Currently, we have approximately 100 users.
How are customer service and technical support?
We have received good support. For the small number of issues that we have had, we received help from IT. This included assistance with configuring some additional policies. Whenever we reached out to them, they were very prompt in terms of responding to us.
Which solution did I use previously and why did I switch?
Prior to Sophos XG, we were using a firewall by Palo Alto. The major reason we began looking for a different one was that the support was not very good. The firewall was pretty decent but whenever we wanted some help, it was a bit difficult to reach out to them. To summarize, it was not very prompt.
How was the initial setup?
The initial setup was simple. Within one to two hours, we were done. This was not just the installation, but the complete configuration.
What about the implementation team?
We performed the deployment with the Sophos team guiding us over the phone. It was not complex. There was one person from Sophos who was coordinating it, and it was done by our internal IT manager.
What other advice do I have?
For the most part, I can say that we plan to continue using this product. However, we would like to see if they have come up with new models and what additional features have they been incorporating. With cybersecurity, I know there have been a lot of threats of late, so we would like to see some new technologies or new features being incorporated.
This is a product that I can recommend. My advice for anybody who is implementing it is to first try to understand what the major use cases are. People need to know that there are quite a few options, such as Fortinet, and all of them have different advantages. Sophos fits perfectly for a smaller group of users, with perhaps between a hundred and two hundred people. For larger enterprises, I recommend that they implement Fortinet or Check Point.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Chef IT at a healthcare company with 51-200 employees
Stable, with an intuitive and user-friendly dashboard
Pros and Cons
- "This solution does everything and anything a firewall can do."
- "There is an area that is very specific to our setup, where working tools you cannot easily establish a VPN between two internal networks."
What is our primary use case?
This solution does everything and anything a firewall can do.
What is most valuable?
I am tempted to say that all of the features are valuable.
When you choose a firewall you have to make a strategic decision, much more than a tactical one. We decided that everything we use within it, goes through and it's got protection.
The dashboard is intuitive and user-friendly.
What needs improvement?
Training on the devices is an area that needs improvement. Their training mechanisms are not perfect, and this is where you lose a good appreciation of the product.
The documentation for implementation is not good. For example, when you look up the details on a firewall rule to validate it, the details are not there.
If you click on the help file, they say a zone is an area where you can define specific logical network areas. This is where they stop, with nothing more. If you want to go further into the concept of it, which you know there is, you have nothing. Then you have to revert to the internet and go onto newsgroups to try to see if anybody has had your type of experience. Then you find someone, they explain it to you then say, "Oh, it only makes sense". So, then when you want to implement this, it's much easier at that time. So, that's the best-case scenario that I can explain.
There is an area that is very specific to our setup, where working tools you cannot easily establish a VPN between two internal networks.
When you want to establish a VPN with different wizards, they assume that you're always going through your internet link.
If you want to create, with the zero-trust concept, which is where you don't trust anybody or any device, you want to make sure that everything on your network is segmented and everything is relative, depending on its flexibility, behind its firewall or a firewall segment. At some points, you might want to establish VPNs between certain network segments.
Since you cannot establish VPN tunnels from the Sophos interfaces, plus if you are doing something that's going through the internet, then you lose flexibility.
Currently, let's say we have a factory V-LAN and you don't want anybody within the factory V-LAN to be able to connect to another unless it is to a specific V-LAN, and you want to use VPN technology, you can't do it because you can't establish the connection again between two internal interfaces.
For how long have I used the solution?
I have been working with Sophos XG for six years.
What do I think about the stability of the solution?
It's a stable product.
What do I think about the scalability of the solution?
In regards to scalability, it's difficult to ascertain at this time because we haven't scaled it necessarily.
The use cases that we have are very particular, and we're not in a mode of having scaled it yet. We have approximately 100 users in our organization who are using Sophos XG.
How are customer service and technical support?
Their support, we have a mixed review of it. It's good, but where it's bad, is because they're an international company that relies on many different continents to be able to get the support at different levels.
When we get into the people that are from India, that's where the support becomes not as efficient as we would want it to be. They have different rules of operating under and they don't show themselves to be flexible. Whereas where I am, currently I'm in Canada. When I speak to the support people within Canada, they're much more flexible when it comes to trying to follow us up on what we're trying to do and get the thing working. They're more flexible.
How was the initial setup?
It was a combination of 75 percent straightforward and 25 percent complicated.
What's my experience with pricing, setup cost, and licensing?
It's approximately $6,000 for each device. We have three devices and it was somewhere around $18,000.
What other advice do I have?
I would recommend Sophos XG to others who are interested in using it.
I would rate this solution an eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Information Systems Infrastructure Manager at a comms service provider with 1,001-5,000 employees
Local support and good training, but the wireless controller and scalability can be better
Pros and Cons
- "I like the firewall, inbound, and outbound modules the most. The VPN feature also works well. It is very easy to configure rules in Sophos XG. We have got local service here in Zimbabwe from Sophos, which is something that I like a lot. We have got good local support, and they come on-site when we have any challenges. Sophos provides a lot of good training all around Zimbabwe. They are quite dominant here, similar to other solutions like Fortinet or WatchGuard."
- "When you are using it as a controller for the wireless access points, it doesn't perform well. It is not suitable for the public cloud. It is more suitable for enterprise data. It is not really the equipment for cloud data centers. I am looking for a data center firewall."
What is our primary use case?
I am using it for unified management.
What is most valuable?
I like the firewall, inbound, and outbound modules the most. The VPN feature also works well. It is very easy to configure rules in Sophos XG.
We have got local service here in Zimbabwe from Sophos, which is something that I like a lot. We have got good local support, and they come on-site when we have any challenges.
Sophos provides a lot of good training all around Zimbabwe. They are quite dominant here, similar to other solutions like Fortinet or WatchGuard.
What needs improvement?
When you are using it as a controller for the wireless access points, it doesn't perform well.
It is not suitable for the public cloud. It is more suitable for enterprise data. It is not really the equipment for cloud data centers. I am looking for a data center firewall.
For how long have I used the solution?
I have been using Sophos XG for more than five years. I started with Cyberoam, which was bought by Sophos.
What do I think about the stability of the solution?
It is stable. I have managed to secure my network. It has been good so far.
What do I think about the scalability of the solution?
It is not so scalable. If you want to upgrade, you have to buy another appliance. I don't see so much scalability. You can only change a port from 1 gigabit to 10 gigabits. There are other solutions like Fortinet that are more scalable.
How are customer service and technical support?
Their support is good. We get local support from them.
How was the initial setup?
The initial setup is straightforward. The deployment took two days.
What's my experience with pricing, setup cost, and licensing?
The pricing is flexible. Sophos looks at a country's economy and offers flexible pricing. This is how they have managed to penetrate the market.
What other advice do I have?
I would definitely recommend it. It has good support and training.
I would rate Sophos XG a seven out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Chief Operational Officer at a tech services company with 1-10 employees
Easy to set up, keeps extensive logs, and scans all traffic for malware
Pros and Cons
- "The most valuable feature is that it scans all of the data for any kind of malware."
- "It would be helpful if they had a set of standard templates because it would assist in the beginning, when you are just getting started."
What is our primary use case?
We are going to be hosting our own website and we are using the Sophos XG because we want to make sure that it is well protected. We also want to make sure that the rest of our LAN is not compromised.
In addition to using this firewall ourselves, we resell the product to our customers. We have a well-trained team that can perform the implementation and deployment.
How has it helped my organization?
Our network is now much better protected than it was. If you don't have your network and your infrastructure secured, as a business, which is about more than just putting a firewall in place, then you're asking for trouble. There is a lot of hunting going on, and it's not just the large corporations. It's the small businesses, too.
What is most valuable?
The most valuable feature is that it scans all of the data for any kind of malware.
It logs everything that goes in or out, and the logs are helpful.
The simplicity of the setup is very good. I can add whatever ports I need and it's pretty easy to set up.
What needs improvement?
It would be helpful if they had a set of standard templates because it would assist in the beginning, when you are just getting started. They do have a template, but I mean specifically for different use cases. For example, an existing template for setting up a web page would suggest what kind of security we need to have in place. They do have help menus and videos, but additional templates would be useful.
For how long have I used the solution?
I have been using Sophos XG for about eight months.
What do I think about the stability of the solution?
The stability has been rock solid and it hasn't gone down once.
What do I think about the scalability of the solution?
For me, there is essentially no limit when it comes to scaling. I have never used all of the connections but the limitation is between 50,000 and 200,000. I would say that scalability is enormous. If we had a bigger network then I would probably get a bigger Sophos.
At this point, we're just starting and only have three or four people who are regularly using it.
How are customer service and technical support?
The technical support is awesome.
Which solution did I use previously and why did I switch?
We did have a Cisco router prior to using Sophos XG, but I don't know much about Cisco or how to get it operational. I also realized that it was getting old, so we switched to a high-end Sophos model. With malware in this day and age, where we have a 6000% increase in the number of malware attacks compared to two years ago, we wanted to be well protected.
How was the initial setup?
The initial setup is straightforward. If I can do it then anyone can do it. The deployment took a couple of hours. Because we are new to this type of solution, our strategy will be to begin by blacklisting everything and then whitelisting only the things that we need.
What about the implementation team?
Our in-house team handled the implementation and deployment. We have more than 200 people that are very well trained, so we can set up pretty much anything.
What's my experience with pricing, setup cost, and licensing?
We paid for our licensing for three years, upfront, and there are no costs in addition to the standard fees.
Which other solutions did I evaluate?
I evaluated several options and sought out advice before selecting Sophos XG.
What other advice do I have?
I am happy with this solution, which is one of the reasons that we are selling it. I don't like to sell or recommend things that I have not used. I have tried a lot of the features but I would say that there is a lot more potential I haven't even tested at this point.
I would rate this solution a ten out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Reseller
Owner/President at a tech services company with 1-10 employees
Easy to manage, performs well, and the pricing is good
Pros and Cons
- "The cloud-based interface makes it easy to manage."
- "The weakest point is the technical support because they are difficult to get into contact with."
What is our primary use case?
We are a managed service provider and the primary firewall that we sell and maintain is Sophos XG. It is also used in the company.
What is most valuable?
The most valuable feature is that it is a next-generation firewall.
The fact that it is integrated between endpoints and the firewall, and then the firewall and a central Sophos operation center, is very good.
The cloud-based interface makes it easy to manage.
The integration with the Intercept X approach means that Sophos XG can do things that none of the others are doing.
What needs improvement?
The main area that needs improvement is the documentation.
Sophos needs to be a little better at communicating with partners about changes, issues, patches, and so forth.
The weakest point is the technical support because they are difficult to get into contact with.
For how long have I used the solution?
We have been using the Sophos XG series for three years.
What do I think about the stability of the solution?
This solution has been very stable and it's a good product, otherwise, I wouldn't be using it.
How are customer service and technical support?
The technical support team is knowledgeable and they are good, although it is very hard to get a hold of them. You sometimes have to wait in queue for over an hour to speak with somebody. To me, that is the most frustrating thing about Sophos.
Which solution did I use previously and why did I switch?
We did not use another similar solution prior to Sophos XG. Since the MSP business started, it has been our primary firewall product because of the pricing and support.
How was the initial setup?
The initial setup is complex, as is setting up any next-generation firewall today. You have to know what you're doing with firewalls in general, although beyond that, it isn't as bad as some of the firewalls that I have seen.
The deployment typically doesn't take longer than a few hours or a day, depending on the type of client and what it is that we have to do.
What's my experience with pricing, setup cost, and licensing?
The Sophos pricing, in general, is better than SonicWall, Fortinet, WatchGuard, or anybody else. Because of the partner program, the pricing I get is extremely good compared to what I would get from any of the others.
Which other solutions did I evaluate?
I have evaluated several firewall products and I think that Sophos is better in terms of ease of use, performance, and pricing.
What other advice do I have?
I would highly encourage others to evaluate Sophos and adopt it. I've discovered that compared to other products, it is easier to manage and I think that it operates better.
Overall, I think that they've got a pretty complete set of features and they seem to be on a really good path. My only complaints are about the documentation and the availability of technical support.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer. Partner
Manager IT at a non-profit with 51-200 employees
Easy to use, robust, and the default templates are helpful
Pros and Cons
- "This solution is very user-friendly and even a non-professional can configure the policies."
- "The cloud support needs to be improved."
What is our primary use case?
I was using the Sophos XG firewall in my last job, where it was part of our security solution.
We had multiple locations with the internet being provided from a central location. Each of our locations was connected point-to-point using MPLS lines. Using Sophos meant that we didn't need to have a router.
What is most valuable?
The default templates are helpful because if you want to create new policies, they make it easy to do anything you want.
Sophos XG is a very robust technology.
This solution is very user-friendly and even a non-professional can configure the policies.
There are unlimited SSL VPN clients and it is free with Sophos.
What needs improvement?
The cloud support needs to be improved. As it is, they only have support for Microsoft Azure. They should expand it to include providers like Amazon and Alibaba.
What do I think about the stability of the solution?
I have not heard complaints of bugs or glitches occurring.
What do I think about the scalability of the solution?
Sophos is a scalable technology that is being regularly updated.
How are customer service and technical support?
I have been in contact with technical support many times and they are very good.
Which solution did I use previously and why did I switch?
Currently, in my new company, I am using Fortinet. This is a very basic firewall and ultimately, I would like to update them.
How was the initial setup?
The initial setup is not complicated. For somebody with an intermediate level of knowledge, it will take between three and four hours to deploy. For a more experienced person, it may take two or three.
Which other solutions did I evaluate?
I am currently in the process of evaluating the different firewalls that are available in India. One of the options is Sophos, and I am also considering others such as SonicWall and Palo Alto.
With Fortinet and SonicWall, there is a limit of 10 people who can simultaneously connect using the VPN.
What other advice do I have?
Sophos XG is a firewall that I would recommend for people who are looking for good security in a medium-scale organization.
I would rate this solution a nine out of ten.
Which deployment model are you using for this solution?
Hybrid Cloud
Disclosure: My company does not have a business relationship with this vendor other than being a customer.
Buyer's Guide
Download our free Sophos Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Updated: January 2026
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
OPNsense
Cisco Secure Firewall
Palo Alto Networks NG Firewalls
WatchGuard Firebox
Cisco Meraki MX
Check Point Quantum Force (NGFW)
Azure Firewall
SonicWall TZ
Fortinet FortiGate-VM
Juniper SRX Series Firewall
SonicWall NSa
Check Point CloudGuard Network Security
KerioControl
Buyer's Guide
Download our free Sophos Firewall Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Sophos XG 210 vs Fortigate FG 100E
- What Is The Biggest Difference Between Sophos UTM and Sophos XG?
- What is the biggest difference between Sophos XG and FortiGate?
- Which firewall is better and why: Sophos XG 210 or Fortinet FortiGate 100E?
- Which solution do you prefer: Fortinet FortiGate or Sophos XG?
- What are the main differences in features between Sophos XG and FortiGate 80F?
- Which product do you prefer: Sophos XGS 2100 or Fortinet FortiGate 100F?
- Fortinet FortiGate or Sophos XG?
- How does Meraki MX compare with Sophos XG?
- Which firewall to choose for an SMB to prevent malware damage: Cisco Firepower or Sophos XG?












