Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

Sophos APX 320

Good morning.

I need to replace a firewall model SG135 with an XGS 2100 (which had SFOS installed a few years ago).

The facility has 20 APX320 access points, which are currently being managed by the firewall itself.

After reviewing the documentation, I’m not quite sure if the new XGS 2100 will still allow the APs to be managed from the firewall, or if it is no longer compatible.

In this link https://docs.sophos.com/nsg/sophos-firewall/18.5/Help/en-us/webhelp/onlinehelp/AdministratorHelp/Wireless/AccessPoints/index.html , it says they can be managed from the firewall since they are "indoor" link to Sophos documentation, but when I check the technical specifications in the link, it states that "on-premise management is only available with Sophos XG Firewall (v17.5.3/v17.5.5) or SG UTM (v9.7)."

In this other link link support.sophos.com/.../KBA-000008807 to Sophos support article, it states that they cannot be managed, but further down it says, "If there is a requirement to continue managing wireless on Sophos Firewall, the APX series Access Points are the only option and will be supported until 31 December 2027."

The APX320 APs don’t appear to be generation 6, so I understand they could still be managed from the XGS 2100 firewall, or would they need to be migrated to Sophos Central?


I’m not entirely sure, so if anyone could clarify this for me, I’d really appreciate it.

Thank you very much!

Parents Reply Children