This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Why doesn't Sophos ship its own software firewall rather than relying on Windows Firewall and GPOs?

I've recently evaluated and bought Sophos Central with Intercept-X with EDR along with device encryption.  Very impressed so far. 

However, what I feel the package lacks is the complete ability to control the firewall.  I'd have preferred, like some other AV/security vendors, that Sophos deploys its own local software firewall on the device rather than relying on Windows Firewall and Group Policies.  And that firewall could have been partly controlled through the app control to ensure that apps that need network resources can be configured to do so on the local Sophos firewall rather, again, then having to configure the rules separately as a GPO.

One the reasons we went with Sophos Central was to be able to control as much as possible remotely without having endpoint server software installed locally (up until this point we were using ESET Remote Administrator).

Additionally, having the ability for Sophos to figure out what network it's on (domain, public, private) and change policies accordingly would also be a big bonus - especially for those machines that are BYOD and want to allow for better "freedom" (for lack of a better word) when an employee's own device is not connected to our network.



This thread was automatically locked due to age.
Parents Reply
  • That's why I don't use SPF. Came across too much wrong SPF entires even from companies you would expect to have it configured right.

    Regards, Jelle

    Sophos XG210-HA (SFOS 18.0.4) on SG210 appliances with Sandstorm and 1x AP55
    Sophos Central with Intercept X Advanced, Device Encryption, Phish Threat, Mobile Control Advanced

    If a post solves your question use the 'This helped me' link.

Children
No Data