Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

Sophos Firewall: v21.0 GA: Feedback and experiences

Release Post:  Sophos Firewall v21 is Now Available 

Release Notes: docs.sophos.com/.../sf_210_rn.html

Early Access EAP Thread:  Sophos Firewall: v21.0 EAP1: Feedback and experiences (EAP Thread) 

To make the tracking of issues / feedback easier: Please post a potential Sophos Support Case ID within your initial post, so we can track your feedback/issue.   

Only XGS Hardware is supported - Not XG/SG Hardware. Sophos Home is excluded, as it uses Software, which is supported. 

Firmware update from the CM will be available after the firmware is available to all. Please refer to the standard update process.

Firmware update on Sophos firewall requires a valid support subscription (of any type - paid or trial) after the first 3 free firmware updates.

Parents
  • Just noticed today looking for dependcies on my interfaces to plan upcoming changes: Object usage does not show depended firewall-rules using "#Port2"-Definition.
    As all "#PortX" ip-host-objects are automatically created/updated i'd expect those to show up in unterface object usage as well.
    So when i try to find all settings related to this interface, e.g. firewallrules containing host-definition should be listed there as well:

    Sure, you might use new port-migration assistant during restore (with downtime) to handle interface changes, but sometimes smaller changes might benefit here.
    Anything on the roadmap to change interface - hardware mapping? Like move only sinlge vlan-interface to other hardware-port with one click like on utm/sg?

Reply
  • Just noticed today looking for dependcies on my interfaces to plan upcoming changes: Object usage does not show depended firewall-rules using "#Port2"-Definition.
    As all "#PortX" ip-host-objects are automatically created/updated i'd expect those to show up in unterface object usage as well.
    So when i try to find all settings related to this interface, e.g. firewallrules containing host-definition should be listed there as well:

    Sure, you might use new port-migration assistant during restore (with downtime) to handle interface changes, but sometimes smaller changes might benefit here.
    Anything on the roadmap to change interface - hardware mapping? Like move only sinlge vlan-interface to other hardware-port with one click like on utm/sg?

Children
No Data