Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

Sophos APX 320

Good morning.

I need to replace a firewall model SG135 with an XGS 2100 (which had SFOS installed a few years ago).

The facility has 20 APX320 access points, which are currently being managed by the firewall itself.

After reviewing the documentation, I’m not quite sure if the new XGS 2100 will still allow the APs to be managed from the firewall, or if it is no longer compatible.

In this link https://docs.sophos.com/nsg/sophos-firewall/18.5/Help/en-us/webhelp/onlinehelp/AdministratorHelp/Wireless/AccessPoints/index.html , it says they can be managed from the firewall since they are "indoor" link to Sophos documentation, but when I check the technical specifications in the link, it states that "on-premise management is only available with Sophos XG Firewall (v17.5.3/v17.5.5) or SG UTM (v9.7)."

In this other link link support.sophos.com/.../KBA-000008807 to Sophos support article, it states that they cannot be managed, but further down it says, "If there is a requirement to continue managing wireless on Sophos Firewall, the APX series Access Points are the only option and will be supported until 31 December 2027."

The APX320 APs don’t appear to be generation 6, so I understand they could still be managed from the XGS 2100 firewall, or would they need to be migrated to Sophos Central?


I’m not entirely sure, so if anyone could clarify this for me, I’d really appreciate it.

Thank you very much!



Edited TAGs
[edited by: Erick Jan at 1:41 AM (GMT -7) on 16 Oct 2024]
Parents
  • Are you simply helping them to replace the firewall, or are you involved in ongoing management of the site? The Sophos Central control is better and has more features than the on-firewall controls. It can be a bit of a pain to register the APs with Central, but once done it's quite nice.

    I think Central management is free as long as the XGS has annual XStream. (Forget the details about the older AP... recently switched to AP6 and for that you need AP6 maintenance to manage via Central, I believe.)

Reply
  • Are you simply helping them to replace the firewall, or are you involved in ongoing management of the site? The Sophos Central control is better and has more features than the on-firewall controls. It can be a bit of a pain to register the APs with Central, but once done it's quite nice.

    I think Central management is free as long as the XGS has annual XStream. (Forget the details about the older AP... recently switched to AP6 and for that you need AP6 maintenance to manage via Central, I believe.)

Children
No Data