Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

starting now with V18?

Hi Sophos-Community,

 

will be perhaps a stupid question but: When now starting new installations/setups for XGs (in productive environment surely): Use V17 or in every case goto V18?

Didn't find any hint to that.

 

 



This thread was automatically locked due to age.
  • Hello Gernot,

    if you don't necessarily need a feature that was implemented in XG v18 (and that works reliably) then I'd recommend you wait for the XG v18.5 that is scheduled for fall this year.
    I don't think v18 is a good and reliable version, I think it has a lot of bugs that hopefully will be fixed in the next few months.
    The implementation of NAT and especially DNAT rules is really very bad, but Sophos marketing still tells us that it is right.

    Regards

    alda

  • hello

    Following our first beta test, v18 seems stable for basics usages (nat, vpn, satc...) but i advise you to wait the first MR to try it in a production environnement.

    I agree, new nat.dnat.firewall menus are a shity thing !

  • New Installations should start with V18. Thats my take away. There are quite a few migrations between V17.5 and V18. I would expect to configure something in V18 rather than start in V17.5 and get this configuration migrated to V18 to again take a look. 

    __________________________________________________________________________________________________________________

  • Thank you guys for answer.

    Actually 2 - 1 for V17.

    I expected an "official" message from Sophos. But OK. I will decide by myself.

  • Hi,

    LuCar Toni is about as close as you will get to an official Sophos statement, though he is here in his own time.

    If you want an official statement you will need to contact your reseller/partner.

    Ian

    XG115W - v20.0.2 MR-2 - Home

    XG on VM 8 - v21 GA

    If a post solves your question please use the 'Verify Answer' button.

  • OK. Thanks for that.

    Because we need to start now (and we are familar with 17.5) we do not start using V18.

    Next larger setup in the future will be with V18.

    Regards from Berlin

    Gernot

  • For small installations I've being going v18 - apart from the certificate error bug which was cleared up fairly quickly it's works fine and gives Us some real world experience in handling the new way rules and NAT's are handled as well as the DPI engine.

    On anything large and/or complicated then I use 17.5.

     

    Regards

  • My take, it depends.  I'm in the camp that new installs are being pushed to v18 because migrating from v17 to v18 is another hassle in itself.

    So smaller setups are going straight to v18 so we can get more field experience.  Larger setups or existing, we are waiting on migrations until we have more practical experience with v18.

    YMMV