Community in these days seems to be very quiet.
Apart from some users, it seems that few people moved their XG box to v18 but not the production.
Any production feedback?
Thanks
This thread was automatically locked due to age.
I moved one of my XG boxes (a lightly used one) to v18 mostly to test. The migration went ok and everything "worked," enabling Kerberos failed due to a bug that had to be manually corrected (it works now).
I mostly found the migrated NAT rules to be a mess so I set out to clean that up. I've changed over from the web proxy to DPI engine for decryption and beyond discovering some "gotchas" with that, its worked fine. It seems stable and the performance of the hardware is good. The Log Viewer is still mostly useless but I've given up on the idea that Sophos will ever understand this; they believe their log viewer is great while us administrators who have to use it to discover what is wrong, find it to be awful. Irreconcilable differences.
Personally, I do not really like "new" design where we now have 3 different tabs to deal with firewall rules, NAT policies, and TLS rules. I know the power users out there like the new decoupled NAT and I'm sure from a technical standpoint its superior in every way, but I used to be able to do everything I needed from a firewall rule and now its just not that simple anymore. Oh well, probably just a personal preference.
I second you Bill, Sophos Live logs are just useless, as most of the NGFW give dashboard for live logs for analytics and understanding which is not available in sophos and i have raised this issue multiple times with them but still waiting if we get anything like this in near future.
I second you Bill, Sophos Live logs are just useless, as most of the NGFW give dashboard for live logs for analytics and understanding which is not available in sophos and i have raised this issue multiple times with them but still waiting if we get anything like this in near future.