Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

18.1 ready?

Hey funsters,

 

I am running two XG Firewalls (XG230 and 450) and still on v17.5.10

I have been watching V18 and as these two XGs are in Production and used heavily I have been reluctant to load the V18 until at least MR1 - today I see MR1 but many users rolling back as WAF  / IPS broken and other issues.

What is the general consensus  - should I risk it and load v18.1?

I do a heap of Filtering and many FW rules etc so plenty to break....



This thread was automatically locked due to age.
Parents Reply Children
  • Haha so the exact opposite.  Also interesting to hear.  What exactly bothers you about the V18?

    Intrusus
    Sophos Certified Engineer | Sophos Certified Technician

    private lab:
    XG firewall with SFOS 20.X running on Proxmox

    If a post solves your question use the 'Verify Answer' link

  • Its lack of QA mainly. Had issues with a new customer that nearly led to me losing them as quick as I got them.

    It seems apparent that having 3 updates to v18 in a matter of 5 weeks is testament to general issues wouldn't you say. 

  • So far SFOS 18.0.0 GA-Build 354 seems stable.

    What bothers me most is the lack of basic crucial features.  A real log viewer.  A full features DHCP.  A NTP server/relay et.c.

    Paul Jr

  • Okay, I have to agree with you about those updates. Instead of new features, Sophos is currently (unfortunately) fixing an extremely large number of bugs - some bugs are so critical that they can even affect customers' business. But the next bigger releases will come, it's just a matter of time.

    On the other hand, as  has written, the v18-GA is actually running quite smoothly. 

    But the Logviewer does have enormous delays indeed, I'm also missing a Responsive Design and an improved DNS server with dynamic entries and Let's encrypt as well. There are several feature requests about these things, but unfortunately they are not really updated or the community is often left in the dark - which is a pity.

    Update: Sophos has pulled back the MR1-Release: community.sophos.com/.../xg-firewall-v18-mr1-is-now-available

    Intrusus
    Sophos Certified Engineer | Sophos Certified Technician

    private lab:
    XG firewall with SFOS 20.X running on Proxmox

    If a post solves your question use the 'Verify Answer' link

  • Hi Paul,

     Sophos have advised not that long ago that they will not be adding an NTP server/relay function to the XG in the foreseeable future, a very sad approach. They did however provide a KBA on hoe to setup a firewall rule and NAT to ensure that the admin has control over NTP server access.

    Ian

    XG115W - v20.0.2 MR-2 - Home

    XG on VM 8 - v21 GA

    If a post solves your question please use the 'Verify Answer' button.