Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Am I the only person who likes this new XG product?

Wow - reading the comments here...... sounds like I'm the only one outside of Sophos Corporate who likes this product.

And no - I'm not a Sophos employee _OR_ a Sophos plant.

In fact, I came to the firewalls grudgingly through their other products.  I am (or was) a Watchguard/pfSense/Cisco/Several Others kind of guy. I started with SGN (encryption) and SMC (the server-based mobile control) and then started looking at the firewalls because of a few integrated features.  I decided to go through the engineer cert training for both UTM and XG.  In fact, I think I went through the XG training the day - or the day after - the training itself was released.

After all that - I don't see why everyone is so down on this product.

Sophos has been exceeding clear on the fact that 1) NO SG is not going away any time soon. 2) if you like your SG or CR product, you can KEEP your SG/CR product and 3) YES there are missing features, expect new ones soon.

Are there limitations and weaknesses - YES. It's a VERSION 1 product! (they can call it version 15 all they want.  It's a v1 product)

Is it still a pretty cool damned product? YES. 

Will it improve drastically? Likely, YES.

Seriously guys - give it a few months.  It is brand new, needs a few tweaks, and change always sucks - but the compelling new features they've put in - heartbeat, cloud management, etc - are, or are going to be, excellent.

As of now, our NFR of the XG230 is happily running down in our server room, humming away, and acting as our primary gateway to the internet.  Working like champ so far. 



This thread was automatically locked due to age.
Parents
  • I too have done both the UTM and XG training and certification cources and while I will be somewhat bias toways the SG/UTM platform as i know it well here are my issues with the XG.

    Support

    Loggin a ticket with Sophos arround a simple feature issues i had to guide the tech arround via WebEx as they could not find the menue they needed. I know this may improve but extreamly fustrating and very unassuring considering they ar ment to be the experts. 

    No it wasnt a level 1 either.

    Deployment


    No more offline deployment, you litterally have to configure WAN connectivity before you can even start the config in a device, rather then the UTM where you could do a 30 day trial. Build everything & then ativate it later. Seems like a small issue but it's a massive pain when you are trying to prestage systems or have delays in orders.

    Reliability


    We have now had 3 instances where Sophos has returned the XG devices under RMA and replaced them with the SG devices. In once instance a randon rule was passive traffic intermittantly. Also traffic from rule 1 was flowing over rule 7, even when both were disabeled. 

    We spent about 6-8Hrs on the phone as a P1 case untill we concluded it was a bug. By this stage we had a few unhappy customer who refused to touch the XG again, it was replaced with an SG, no issues.

    Another instance was a VPN to a SonicWALL device was flapping up and down as well as intermittantly dropping voice traffic. Swapped out with an SG and all was well.

Reply
  • I too have done both the UTM and XG training and certification cources and while I will be somewhat bias toways the SG/UTM platform as i know it well here are my issues with the XG.

    Support

    Loggin a ticket with Sophos arround a simple feature issues i had to guide the tech arround via WebEx as they could not find the menue they needed. I know this may improve but extreamly fustrating and very unassuring considering they ar ment to be the experts. 

    No it wasnt a level 1 either.

    Deployment


    No more offline deployment, you litterally have to configure WAN connectivity before you can even start the config in a device, rather then the UTM where you could do a 30 day trial. Build everything & then ativate it later. Seems like a small issue but it's a massive pain when you are trying to prestage systems or have delays in orders.

    Reliability


    We have now had 3 instances where Sophos has returned the XG devices under RMA and replaced them with the SG devices. In once instance a randon rule was passive traffic intermittantly. Also traffic from rule 1 was flowing over rule 7, even when both were disabeled. 

    We spent about 6-8Hrs on the phone as a P1 case untill we concluded it was a bug. By this stage we had a few unhappy customer who refused to touch the XG again, it was replaced with an SG, no issues.

    Another instance was a VPN to a SonicWALL device was flapping up and down as well as intermittantly dropping voice traffic. Swapped out with an SG and all was well.

Children
No Data