I set my sophos XG appliance (third part HW, not Sophos) with all services activated, same as SSL, TLS, AV, WEB filter etc....
I set a web filter to block for example Phishing and Fraud.... Today I open the Reports page and I found never before:
-blocked web domains: fls-eu.amazon.com (Phishing and Fraud)
-blocked web applications: Amazon.com
-Amazon website opened in firefox on windows 10 pc anyway worked well (i think)
2 weeks ago after my first install was a pleasure going to download EICAR test files from http and https, all blocked, nothing arrived to clients and so no Norton Internet Security alerts while content blocked, cause it was not necessary.
Passed 2 weeks, no particular changes in the config: Sophos randomly blocks 3 downloads from that site and only from https urls. Forth file from https and all 4 from http always downloaded and blocked by Norton. Yes, I verified, files were completely downloaded and the content viewable (!!! If them were empty could be ok but this is not the case).
And Sophos warns and blocks.....LOL
Latest bug found in the rules and policies section, when editing a single rule in SCAN AND MAIL CONTENT when you clic on any SCAN IMAPS, POPS, no difference what port, you clic and Sophos says for example:
"Common ports missing from Services for IMAPS.Add Ports"
you clic on add ports and in services you can find the ports not already inserted. All well? NO
If you apply this change in the rule/policy the appliance stops ALL internet traffic!!!! WHY?
In the end, terrible log reporting and many information missing, where do you find detailed blocks for SSL/TLS? I researched for days....no way to find what Sophos blocks, solution? SLL/TLS turned OFF when I need to use some not completely supported apps on windows.
And what about the exclusion list? Is enormous plus the list che customer add cause there are many things work bad and you can say the fast way is turning off SSL/TLS inspection.
Ok Sophos, fast decryption with a minor loose of performance cause the simple way is EXCLUSION LIST.
I used Zyxel USG firewalls for ten years, not already tried new ATP series and never tried their SSL/TLS inspection, surely pure in performance but all firewalls I used from them were never unstable and buggy as Sophos!!!!! I tried Sophos for a trial and looking for performance improvements but if Home versions are the same as commercial versions, except for the cloud features.....let me say this is a bad start!
Really disappointed!
I was thinking to buy a xg135v3 with 3 years of total protect....in my area less then 4000 Euro. Surely not after this problems.
This thread was automatically locked due to age.