XG Series Hardware Appliances 210 rev.3 /230/310/330/430/450 rev.2. Sophos Firewall ensures the passive device has a copy of those subscriptions. XG 210 can only connect to another XG 210 in HA. An XG 230 or even an SG 210 can. Download Sophos XG Firewall Brochures and Documentation. Call us at (818) 528-5600. For information on the Sophos XG 210 Firewall Appliance. StillPoint Systems. If there is multiple firewall rules from VPN to LAN zones, then put the above firewall rule at the top of the list as described in Sophos XG Firewall: How to change firewall rule order. It is possible for the remote host to access the internet via the XG Firewall. Hello everyone, Over the past year I have been having issues with our current Juniper firewall, and looking for a replacement. Basically it is boiling to replacing with either the Sophos XG 210 or equivalent Cisco 55xx series with Firepower.
Answers to the most frequently asked questions covering licensing, Flexi port modules, feature, and hard support.
Xg 210 Datasheet
Which licenses do I need when I have two devices in high-availability mode?
For active-active mode:
Sophos Xg 86 Datasheet
- Each device requires its own subscriptions, and the active subscriptions must match on both devices.
- Zero-day protection doesn't affect the HA setup regardless of the expiry date on each device.
For active-passive mode:
- Only the active device requires a license subscription. Sophos Firewall ensures the passive device has a copy of those subscriptions, so it can take on processing if the active device fails.
It’s therefore vital that the subscriptions are activated on the intended active device. You must ensure that HA is turned on only from the device which has a valid subscription.
- If a software or virtual device is used, you need to purchase only one base license, and once that serial number is registered, Sophos Firewall will manage the creation of the passive device. There’s no need to purchase a separate base firewall license for the passive device or a separate serial number.
- The firewall that carries the license subscription must be configured as the primary node in the HA initial setup.
Is the synchronized application control feature supported in active-active mode?
No.
Is it possible to establish an HA pair between XG 210 and an SG 210?
No. XG 210 can only connect to another XG 210 in HA. An XG 230 or even an SG 210 can't be used.
What happens if I manually synchronize the HA?
If you manually synchronize any of the HA cluster devices, the firewall drops all the masqueraded connections.
Sophos Xg 210 Firewall Features
What happens if I restore a backup without HA configuration after enabling HA?
If a backup without HA configuration is restored after configuring HA, then HA is disabled. The primary device is accessible according to the backup configuration. The auxiliary device is accessible with the auxiliary admin IP address.
Sophos Xg 135 User Guide
Topics about Sophos XG 210
- Firewalls
I just wanted to follow up, both on where we went and to comment on how it's gone.
We switched from our Foritgate 100D to a Sophos - Firewalls
Hi All,
I do IT work for a small non-profit with ~40 employees at two separate sites. We've been using a Fortigate 100D for a while - Sophos
Hello, my network is hoping to implement at least 8 and up to possibly 13 SOPHOS 15w Remote Ethernet Devices at various offices
Projects that include Sophos XG 210
- Our SonicWall firewall was reaching end of life and needed to be replaced.
- Upgrading building networks and cleaning up cabling.
- Replace branch office firewalls with hardware VPN devices and replace all WAPs with managed units