This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Installing Sophos XG Home on a fanless PC without Hypervisor

Hello All,

I am running XG Home on an old PC with ESX but my ISP is soon going to upgrade my connection with fiber to 1 Gb/s and I need to upgrade my HW.

I would like to install Sophos XG Home Edition directly into a fanless PC without Hypervisor.

I am looking for the community help to answer several doubts I have.

Any help and answer will be helpful and I guess will help other users. Thanks in advance to anybody willing to contriubute.

My actual situation is the following: 16-20 devices at home between mobile phones, tablets, PC, streaming devices, Access Points and NAS. As an extreme condition I can immagine max 7 devices connected at the same time (1 NAS, 2 mobile phones, 2 PC and a streaming device+1 one device as contingency considered in the dimensioning). Max Internet Speed 1Gb/s, no inspection of streaming traffic, all other securities active. Download of files and emails as per home users at evening or during we. I reperat: I am tryng to describe a max peak condition...

Here my questions:

  1.  I should be positioned, according to the dimensioning guide, to a Sophos XG 115. ad users but not as throughput  Am I right? I want to have full access to all available bandwidth for a computer accessing Internet without being the firewall a boltleneck.
  2. What phisical HW should I choose? An I3, I5 or I7?
  3. Is the Home license limited to cores or threads? Is it better to buy an I3 and take advantage of the threads, an I5 using the phisical cores or should I go for an I7 with 4 cores and 8 threads? Please help...
  4. Have you any example of fanless Intel I3-I5-I7 PC where you already installed XG without hypervisor? At the time I was installing my first XG on ESX, there were serious compatibility problems with the HW, so that virtualization was strongly suggested. Today the situation seems better, but the risk to buy the wrong PC is still high… Colleting in one post HW known as compatible might be very helpful for all the community.

Many thanks to every contributor.

Ciao,

GL



This thread was automatically locked due to age.
  • Hi,

    let us start with the easy part.

    Home licence restrictions

    1/. 4 cores ( if performance try for real cores)

    2/. 6gb of ram.

    That is it.

    Is your internet connection symmetrical?

    You will need to tune your XG IPS settings to get high throughput, if you wish to take advantage the security offered by the XG.

    As far a s CPU goes, the faster the better and I would recommend a E3,rather than an Ix series. Make sure your NICs are intel but not i219 series, they are not compatible.

    You will not achieve 1gb/s download due to network overheads that is before you even hit the XG. Very few sites will allow a 1gb/s download connection. You will be able to achieve very high throughput u when a number of LAN devices  connect.

    Now for hardware choices I suggest you do a search of the XG forums because there are a number of posts on the subject.

    Ian