This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

When (if ever) will UTM support IKEv2?

Hi all,

We use Sophos UTM V9 for a lot of things and have always been very pleased with the quality and supported features.

In the past, we also used Sophos UTM for a site to site IPSEC-VPN tunnel to a virtual network on Microsoft Azure. Not anymore though. We had to resort to another solution and vendor to get a "route based" tunnel working, which requires IKEv2. Sophos UTM still only supports IKEv1.

There are 2 feature requests related to this on the Sophos Ideas site:

The first one has been "under review" since 2009, without any updates after that. Getting support for IKEv2 in Sophos UTM does not seem to be very high on the agenda of Sophos, even though it looks like a much needed feature if you consider the amount of votes the subject has received.

I read in the news post from the 14th of September that IKEv2 support has been added to IPSEC VPN for the new XG Firewall V17, so there is at least some progress it seems.

Does anybody know if IKEv2 is also on the roadmap for Sophos UTM?



This thread was automatically locked due to age.
Parents
  • Here's a roadmap i got from a webinar earlier this year. There should be some kind of VPN changes for version 9.6 (which i have heard got delayed to next year)... I don't know if it means IKEv2 is implemented, but i sure hope so.. And Openvpn 2.4.X would be a nice welcome as well

    Sophos UTM 9.3 Certified Engineer
    Sophos UTM 9.3 Certified Architect
    Sophos XG v.15 Certified Engineer
    Sophos XG v.17 Certified Engineer
    Sophos XG v.17 Certified Architect

  • Thanks for the image of the roadmap.

    IKEv2 is mentioned specifically for SFOS V17, in addition to VPN improvements later on. But yeah, let's hope that IKEv2 is included in those VPN improvements.

    I really don't want to, but a delay until next year with no certainties of IKEv2 being included is already making me consider other vendors..

  • IKEv2 is now supported on the Sophos XG firewall (not the UTM yet). Have you considered transitioning to the XG firewall?

  • what good is having IKEv2 on XG if nobody/not many want to switch over from UTM?

    If you are asking if the switch to XG was considered i'd reply that the switch to another vendor is beeing considered.

    Full price subscription on UTM means full expectations, unmet expectations means that we are paying too much (right now).

    ---

    Sophos UTM 9.3 Certified Engineer

Reply
  • what good is having IKEv2 on XG if nobody/not many want to switch over from UTM?

    If you are asking if the switch to XG was considered i'd reply that the switch to another vendor is beeing considered.

    Full price subscription on UTM means full expectations, unmet expectations means that we are paying too much (right now).

    ---

    Sophos UTM 9.3 Certified Engineer

Children
No Data