XGS' most valuable feature is ransomware protection.
Director at INDSYS Infotech Services
A perfect product for small and medium businesses
Pros and Cons
- "XGS' most valuable feature is ransomware protection."
- "Sophos' technical support has degraded in the last couple of years. They seem to need to ask a lot of questions, even with simple problems, and take a long time to provide solutions."
What is most valuable?
What needs improvement?
In the next release, XGS should include mobile features like two-factor authorization.
For how long have I used the solution?
I've been using XGS for seven years.
What do I think about the stability of the solution?
XGS is stable.
Buyer's Guide
Sophos XGS
March 2025

Learn what your peers think about Sophos XGS. Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
845,406 professionals have used our research since 2012.
What do I think about the scalability of the solution?
XGS is scalable.
How are customer service and support?
Sophos' technical support has degraded in the last couple of years. They seem to need to ask a lot of questions, even with simple problems, and take a long time to provide solutions.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup is simple.
What's my experience with pricing, setup cost, and licensing?
XGS' price could be lower, though it's moderately priced in the market.
Which other solutions did I evaluate?
I also evaluated SonicWall and FortiGate.
What other advice do I have?
XGS is a perfect product for small and medium businesses. I would rate it as eight out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer:

IT Administrator at a outsourcing company with 1-10 employees
Very up-to-date with helpful support and offers good detection
Pros and Cons
- "The solution is scalable."
- "The configurations can be a bit complex."
What is our primary use case?
In terms of the firewall, I'm using Sophos X on everything, including the VPN, firewall, and endpoints.
What is most valuable?
Everything about the product is okay.
I cannot single out anything specifically, as the firewall is working perfectly. The endpoint is helping me greatly and people have been able to work from home using the VPN. It has been great.
The pricing has been fine so far.
It has a pretty straightforward initial setup.
The solution's quite stable.
The solution is scalable.
Technical support has always been very helpful.
In terms of updates with the current technologies and current trends, which we're always exposed to, they update their databases frequently.
It quickly detects issues.
It is a plug-and-play system.
Mainly, it's a cloud-based firewall for cloud-based endpoint protection. I can be able to manage my devices from anywhere without configuring all these VLANs and whatnot.
What needs improvement?
If I could host my emails using an email transfer agent, hosting it, it would be ideal.
The configurations can be a bit complex. It may be a while before you understand the configuration process.
If you do not have any experience with the product, you may struggle to set it up.
I'd like to see more integrated services from Sophos so I can handle everything from one place without a third-party. I would like to have email hosting and management integrated into Sophos XGS.
For how long have I used the solution?
I've been using the solution for more than five years now.
What do I think about the stability of the solution?
It is very stable. There are no bugs or glitches. It doesn't crash or freeze.
What do I think about the scalability of the solution?
The solution can scale. It just depends on the model we are using. For example, on an XG transit, I can add as many users as I want. On XG 105, I can only have limited users. It depends on the package.
We have more than 80 general users on the solution. We use it intermittently.
How are customer service and support?
I've dealt with support several times. They were awesome. We found them to be helpful and responsive. They are quite knowledgable.
How would you rate customer service and support?
Positive
How was the initial setup?
The setup process is perfectly okay. I'm an IT administrator. It's not very difficult for me to get everything up and running. I also need to check the integration.
I'd rate the initial setup a four out of five in terms of ease of execution.
What's my experience with pricing, setup cost, and licensing?
In terms of pricing, it's good. They've been giving us some promotions where we would pay for two years and get an extra year free. We appreciate that level of savings.
We paid for a three-year license a while ago. I can't recall the exact amount that was paid. It was likely around $12,000 or less - around $4,000 a year.
It's one of the best pricing strategies they have used. Initially, if I were paying for a year, I would pay around $5,000 or $6,000.
It is very affordable for a small enterprise. It is very competitive.
Which other solutions did I evaluate?
I am looking into Sophos NAC.
What other advice do I have?
We are a customer of Sophos.
I'd rate the solution eight out of ten.
Which deployment model are you using for this solution?
Public Cloud
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Buyer's Guide
Sophos XGS
March 2025

Learn what your peers think about Sophos XGS. Get advice and tips from experienced pros sharing their opinions. Updated: March 2025.
845,406 professionals have used our research since 2012.
Head Of Information Technology at Zambia National Building Society
Reliable and great for firewall purposes but a bit complex
Pros and Cons
- "The solution is scalable."
- "Sophos configurations are a bit complex."
What is our primary use case?
We primarily use the solution as a firewall.
What is most valuable?
Sophos XGS is okay. It’s excellent for firewall purposes.
For me, the platform is stable. It's very stable. It works when it's configured. Also, when you're checking, the logs, the graph, and the graphs are easy to read.
I can also use it for other purposes. For example, it's got a DSCP from there. It can be a distribution. I can have other functions work there, so I can do a lot more than just the firewall components.
It gets easier and easier to set up.
What needs improvement?
It works. However, Sophos configurations are a bit complex. It's not very user-friendly. I don't find it user-friendly when it comes to setting up the firewalls.
The user interface for the technical admin can be better. It should be set forward to configure a firewall. if a firewall has complexities. I don't know why they did that. However, you should be able to quickly set up a rule to minimize the mistakes that a security administrator or a firewall administrator can make and configure. If not, that becomes an issue. One mistake on a firewall could result in a bridge.
It should be more straightforward. If you compare it with GFI Carrier Control Firewall, which is very straightforward, you can see why it’s helpful when it's easier.
For how long have I used the solution?
I’ve used the solution for about three years now.
What do I think about the stability of the solution?
The solution is stable. There are no bugs or glitches. It doesn’t crash or freeze. It’s reliable and the performance is good.
What do I think about the scalability of the solution?
The solution is scalable. However, it depends on the model of the physical appliance. There are virtual and physical appliances, so it depends on which one you use. Obviously, there could be a limitation on the number of interfaces you need to use since you may want to have additional services plugged in. Then, the number of ports available may only be two, and yet you actually need to have 10. Maybe you need to buy a module that plugs in; however, there could be a challenge there.
In our organization, we have three to four security administrators.
How are customer service and support?
I've never spoken to technical support directly the way I've been talking to the Fortinet team. I was working with a local partner to get it set up.
How was the initial setup?
In our case, since we were doing it for the first time, we took about a week to complete everything. We were doing a lot of other things and learning as we went. If I had to redo it now, it wouldn't take me a week as I know exactly what I need to do after learning over a period of time. Also, I have backups that allow me to back up and restore, so I just restore the configuration. It’s much more manageable. The first time there’s a learning curve.
What about the implementation team?
We work with a partner and distributor. We are working with the sales party since it was the first time we used them. They offer us professional services.
What's my experience with pricing, setup cost, and licensing?
I found the solution to be expensive. I pay close to $10,000 per year, which I find to be expensive compared to the other similar solution or equivalent solutions.
It's just that one cost, and it's an annual license. As long as my appliance is working okay, I don't need to replace it. However, it's just that. Of course, within that, there are also support services. You might have technical support costs depending on which one of the tiers you pick.
What other advice do I have?
I'm a customer of Sophos.
We’re using the most up-to-date version of the solution. It’s around version 18.
A new user needs to get trained on the appliance to understand how to implement rules and fully appreciate how to work with it. It's not that straightforward. You need to understand what the different areas are. It's complex in the way the rules are set up. My colleagues in the industry have similar comments about Sophos. It’s more complicated than it looks.
I’d rate the solution a seven out of ten, mainly due to the complexity. If I make a mistake, then that firewall is of no use. It needs to be easier to set up so that it provides me or guarantees me that what I want to set up is what I've set up to secure my environment.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Technical architect at boldbytesng
Stable firewall that has prevented ransomware from encrypting one of the systems
Pros and Cons
- "It is very stable. I have not heard of any issue where clients would have to replace hardware. It's been really stable for a long while."
- "The support team are helpful when you eventually get hold of them which takes a long time. They can improve how quickly you get technical support."
What is our primary use case?
It is a firewall appliance that is used to provide security for network infrastructures. We have it deployed at the edge of our network and we also sell it to other clients to protect their network infrastructure.
What is most valuable?
This solution is really easy to use and deploy. It has a dashboard where you can see everything going on within your network. There is also a cloud component so if you need to secure your computers or servers, this can be done using Central Intercept X Advances. Everything is connected to their cloud platform where you can manage either your end point solution or your firewalls.
For how long have I used the solution?
I have been using this solution for five years.
What do I think about the stability of the solution?
It is very stable. I have not heard of any issue where clients would have to replace hardware. It's been really stable for a long while.
What do I think about the scalability of the solution?
This is a scalable solution. This does depend on the are different categories of the XGS. The license you buy would be determined by the number of users intended to use it.
How are customer service and support?
The support team are helpful when you eventually get hold of them which takes a long time. They can improve how quickly you get technical support.
How would you rate customer service and support?
Neutral
How was the initial setup?
The initial setup is straightforward and takes 15 minutes. The time it takes to setup depends on what you're trying to achieve and how complex you want your configuration to be.
What about the implementation team?
We completed the implementation in-house for our business and for some of our clients.
What was our ROI?
We have started seeing ROI using this solution because one of their products helps you to prevent ransomware. It has helped to prevent ransomware from encrypting one of the systems of one of our staff. That is a huge return on investment
What's my experience with pricing, setup cost, and licensing?
The cost is $10,000 for an annual subscription.
What other advice do I have?
This is a good product for small and medium enterprises. I can't say how it performs in a large environment. It is a very stable solution. Just like every other product, you need to have someone that has the necessary skill set to manage it. Somebody needs to learn how to set it up and configure it depending on the environment.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
Information Technology Department at Sunflag Iron and Steel Co Ltd
Easy to use and offers excellent support
Pros and Cons
- "It's easy to use, and the service is good. If anything goes wrong, their support system is very reliable."
- "In future releases, this solution could have more graphical elements on the dashboard to make it easier to understand."
What is our primary use case?
We are using it as a firewall to protect and control Internet access, as well as control other access like SAP. Some of our employees connect from remote locations, and our server is on-premises. We use this firewall for access control and also for VPN connections.
What is most valuable?
It's easy to use, and the service is good. If anything goes wrong, their support system is very reliable.
What needs improvement?
The renewal process for this box is too frequent. We purchased it five years ago, and it's expiring in 2025. So, I feel they expire it too quickly.
In future releases, this solution could have more graphical elements on the dashboard to make it easier to understand. While there are graphics and a good dashboard, there's always room for improvement.
For how long have I used the solution?
We have been using Sophos XGS for ten years. At that time, it was new. So somebody recommended us to take this. Our service provider recommended it, and that's why we have taken it.
What do I think about the stability of the solution?
It is a stable solution.
What do I think about the scalability of the solution?
It is a scalable solution. We have around 300 end users in our organization.
How are customer service and support?
The customer service and support has been excellent.
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
We have worked with Cisco and Fortinet Firewalls. It's hard to compare.
Installation and understanding are a bit challenging with Cisco, whereas Sophos is easier to install and use.
We have a FortiGate firewall at another location. We recently purchased it.
How was the initial setup?
The initial setup is very, very easy.
What about the implementation team?
The deployment process took me more than two to three hours, including all the checks. I had a backup of the earlier Sophos firewall, so I just restored it and verified everything.
One person for support and checking, so two in total are enough for deployment and maintenance of the solution.
What other advice do I have?
I would definitely advise to use Sophos. Overall, I would rate the solution a nine out of ten.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Technical Presale Engineer at a tech services company with 51-200 employees
Straightforward to set up and covers most company needs but needs better support
Pros and Cons
- "The initial setup is straightforward."
- "They should customers who are facing issues with their product reviews; they found bots in it. If they can do their proper research and use the user analysis and testing, that would greatly help the clients."
What is our primary use case?
We primarily use the solution as a firewall.
We have multiple clients. The use case is based on their requirements, for example, as a site-to-site VPN or maybe as an FSL VPN for end users to promote the network access of company systems. Apart from that, it is used for web filtering and URL blocking. Apart from that, it's on a regular day-to-day basis used as a firewall.
What is most valuable?
It covers most areas that are needed.
The initial setup is straightforward.
The solution is scalable.
It's stable.
What needs improvement?
We've had issues with support. If they improved on the support part, that would be great.
They should customers who are facing issues with their product reviews; they found bots in it. If they can do their proper research and use the user analysis and testing, that would greatly help the clients.
The software release has been giving us problems.
Other firewalls provide better reporting. We need admin and activity logs to be populated for the firewall.
For how long have I used the solution?
For the Sophos XGS, I've been working with it for the last four years. Overall, for firewalls in general, I've been working with solutions for more than ten years.
What do I think about the stability of the solution?
The solution is stable. We haven't really had any issues until a bug hits the firewall.
What do I think about the scalability of the solution?
We are the service provider to the client, so we have a total of 28 people, excluding the team lead and the presale technical support or maybe a presale technical person. They are working directly on Sophos XGS. e tend to deal with enterprise-level customers. We don't have small-scale organizations under our portfolio. This solution is best suited for mid-range companies and larger.
The solution is pretty scalable. I'd rate it a three out of five in terms of ease of scalability.
How are customer service and support?
Support has been very poor.
How would you rate customer service and support?
Neutral
Which solution did I use previously and why did I switch?
We have three major products, which we offer to clients. They are Palo Alto, Cisco ACI, and Sophos XGS.
There are many major differences between Sophos and Palo Alto. This product is not comparable to Palo Alto right now. Maybe the basic models of the Palo Alto can be compared with the Sophos XGS firewall, however, not the higher-end ones. Palo Alto is much more advanced.
How was the initial setup?
The solution is straightforward to set up. It is not overly complex.
How long it takes to deploy depends on how the implementation is requested. It won't take more than one hour if it is a basic implementation like setting up the firewall with ISP connections and all those things. However, if it is a complete setup with implementations, other tests, and all those things, it takes around six to seven hours.
After the installation, we do the software updates periodically along with the model which the client has purchased Apart from that, we also do the maintenance of the various policies and other configurations. We do make changes to the firewalls based on changing industry standards, et cetera.
I'd rate the ease of implementation a four out of five.
What about the implementation team?
If the customer requests assistance with the initial setup, however, we will provide an engineer to them. They'll come to the implementation site and assist.
What's my experience with pricing, setup cost, and licensing?
I don't take care of the licensing part. There is a separate team.
What other advice do I have?
We are a Sophos Gold partner.
We have multiple firewalls on multiple OS versions. Basically, we do have two major pieces of software installed in the firewall, which are 1854 MR4 and the latest release, 1801.
There are multiple criteria when making a decision about whether to go with Sophos or maybe another firewall. It depends on the client's requirements as well as their budget.
I'd rate the solution five out of ten.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
Information Technology Manager at OPLOG
Easy to use with a good interface but has been crashing
Pros and Cons
- "The product was easy for us to install."
- "It has recently started to suddenly block and crash."
What is most valuable?
The interface is great.
It's a very easy-to-use product.
The product was easy for us to install.
The pricing is okay.
What needs improvement?
We've had many problems lately. We're having issues with its firmware, now, and we are trying to fix it with the supplier, the Sophos supplier in Turkey.
It has recently started to suddenly block and crash. We don't know what will happen. We're not sure if it is the device or something else. We're trying to fix the problem with Sophos.
It's not extremely scalable.
For how long have I used the solution?
I've been using the solution for six months.
What do I think about the stability of the solution?
I'm not sure what the issue is, however, it has been crashing and we're trying to find a fix or a solution.
What do I think about the scalability of the solution?
I don't find the solution to be very scalable.
We have 300 people using it right now.
How are customer service and support?
We're working with a Sophos supplier in Turkey. When we run into issues, we reach out to them. We're dealing with them right now.
How was the initial setup?
The installation process was very simple and straightforward. It wasn't overly complex or difficult. For us, the deployment took about two days.
You only need two people to maintain the product. It's not labor-intensive.
What's my experience with pricing, setup cost, and licensing?
I'm not sure of the exact amount we paid, however, compared to other firewalls, the pricing isn't too bad.
What other advice do I have?
I'm a customer and an end-user.
We bought three devices from Sophos. We're just dealing with some issues with crashing right now.
I'd rate the solution five out of ten.
Potential new users should clearly investigate other firewall models. They need to be sure of what they pick before they pay for any solution.
Which deployment model are you using for this solution?
On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
Network and Security Engineer at Datafox OÜ
Easy to set up, easy to manage, and easy to scale firewall solution
Pros and Cons
- "Easy to set up firewall product, that's also easy to manage and scale."
- "What could be improved in Sophos XGS is its connectivity with Azure AD. It's best if it could work directly without using any servers locally, or in the data center, and this functionality should be made available in this product."
What is our primary use case?
We normally use physical appliances for office and virtual appliances for datacenter.
How has it helped my organization?
XGS is similar to XG series but adds new Xstream Flow processors that are used to accelerate various functionalities that are normally done in x86 CPU.
Sophos will soon release SFOS v19 software which will utilize Xstream for even more functionalities like IPsec, SSLVPN, SDWAN and etc.
What is most valuable?
What I found most valuable in Sophos XGS is that it's very easy to manage.
What needs improvement?
Authentication with Azure AD needs improvement. It would be better if it could work directly without using local AD server. For comparison Fortinet FortiGate allows to use SAML authentication with Azure AD and does not require any local server. It is currently unknown to me, if or when it will be implemented on Sophos.
Local DHCP service also needs improvement. Windows DHCP service offers more functionality and is more flexible and easier to use. SFOS v18.5.3 added DHCP option functionality in the GUI - which previously worked only from CLI.
For how long have I used the solution?
I've been working with Sophos XGS since they came out. I cannot remember exactly the year and date, but it hasn't been so long, e.g. just one year.
What do I think about the stability of the solution?
It is very stable - have not had any issues.
What do I think about the scalability of the solution?
The scalability of Sophos XGS is good. Normally we suggest the clients to use firewall as a service, since it gives more flexibility both for client and us, since usually we manage the client's firewall. There is a virtual version of the firewall which scales even more, since it can be upgraded to a license that offers more RAM and CPU cores. For us, it scales very well, e.g. I'm giving it the maximum score: ten out of ten.
If a client is looking for a new firewall, then we normally need to consider as much information as possible (user count, weight per user, LAN throughput, WAN throughput, functionalities and etc). If a client wants to pick a solution for larger environment, then we also ask recommendation from Sophos to get the most optimal solution.
How are customer service and support?
How would you rate customer service and support?
Positive
Which solution did I use previously and why did I switch?
How was the initial setup?
The initial setup for Sophos XGS is very easy. From cloud it can be deployed even faster, since it allows to create configuration templates.
What's my experience with pricing, setup cost, and licensing?
The ratio of price and functionality is good.
Licensing cost depends on particular model and required functionality:
- It is possible to use the firewall without any license, but then it will work only as port based firewall.
- Normally we suggest to use at least Standard License.
- Licensing cost for single appliance or active/passive HA cluster is the same - only 1 license.
- Active/Active cluster requires 2 licenses and performance gain is very small. It is better to use more powerful appliance.
Which other solutions did I evaluate?
We are Sophos Gold partner and mainly like to use Sophos XGS firewalls.
If it a requirement by client, then we can also offer non-Sophos firewall solutions.
What other advice do I have?
There are multiple models of Sophos XGS that we use, e.g. we use both desktop and 1U sized models.
Sophos XGS can be fully cloud managed, and it's possible to deploy it directly from the cloud, that you installed the hardware, and maybe I have to use an ESB key, though I'm not sure. We haven't tried deploying it that way yet.
The only difference between Sophos XGS and Sophos XG is the software version that is supported on the hardware. The difference will be when the version 19 software comes up, as it will not work on Sophos XG.
I recommend Sophos XGS to others who are thinking of implementing it. I recommend for them to use it. Sophos firewall can be also used without additional firewall, but we strongly suggest using Standard license, which offers application filtering and IDS/IPS.
Which deployment model are you using for this solution?
On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Datafox OÜ is Sophos certified Gold partner.

Buyer's Guide
Download our free Sophos XGS Report and get advice and tips from experienced pros
sharing their opinions.
Updated: March 2025
Product Categories
FirewallsPopular Comparisons
Fortinet FortiGate
Netgate pfSense
OPNsense
Sophos XG
Cisco Secure Firewall
Palo Alto Networks NG Firewalls
Check Point NGFW
WatchGuard Firebox
SonicWall TZ
Juniper SRX Series Firewall
Fortinet FortiGate-VM
SonicWall NSa
Untangle NG Firewall
Sangfor NGAF
IPFire
Buyer's Guide
Download our free Sophos XGS Report and get advice and tips from experienced pros
sharing their opinions.
Quick Links
Learn More: Questions:
- Which product do you prefer: Sophos XGS 2100 or Fortinet FortiGate 100F?
- Which firewall to choose for a medium-sized company with 150 users: Sophos XGS 2100 or SonicWall 2700?
- What do you recommend for a corporate firewall implementation?
- Comparison of Barracuda F800, SonicWall 5600 and Fortinet
- Sophos XG 210 vs Fortigate FG 100E
- Which is the best network firewall for a small retailer?
- When evaluating Firewalls, what aspect do you think is the most important to look for?
- Cyberoam or Fortinet?
- Fortinet, Palo Alto or Check Point?
- If you could go back, would you change your decision to buy that firewall and why?