Hey AlanT,
Hope you can update us on the future of v17 and future of v18?
Since v17 is released i'm sure alot of new improvements are in the pipeline.
This thread was automatically locked due to age.
Hey AlanT,
Hope you can update us on the future of v17 and future of v18?
Since v17 is released i'm sure alot of new improvements are in the pipeline.
Hey tom greene
Make sure to keep an eye out on our Release Notes & News and Sub-groups for new updates and upcoming betas for future releases.
I'll also tag AlanT and talex in case they wanted to chime in with any further information.
Regards,
FloSupport | Sophos Community Engineer
For what it’s worth, I too have installed it on 210 and 105 hardware appliances.
Flawlessly.
Backups before and after, both local and via emails were also done flawlessly. In minutes.
But I believe this update was that quick because it did not have to play much with local database and had not much conversion to perform from 17.5.x
Paul Jr
Big_Buck said:2017 and 2018 were dedicated to bug fixes and stability almost exclusively. Seems to me the real improvement this year was the MTA.
Apart from the bits they've now broken. DKIM message body hashes for example - workaround is to bypass outbound scanning of internal mail servers that perform DKIM signing.
I did not know DKIM was busted on Sophos.
But that said for $900 a year, I have the much much more powerful and flawless Symantec Brigthmail MTA appliance. With every functions you can imagine.
If you toast a single day debugging Sophos Mail Gateway, or Sophos MTA, you already blew up that amount of money. It is pointless to persist with mail on any Sophos products. Unless you have more than 500 Users I would say.
Paul Jr
Well the MTA in XG 17.5 doesn't do DKIM, but it's modifying messages beyond just whitespace changes such that the message body hashes are broken.
This is probably why others are also seeing MIME message headers in their mail clients - the MTA is modifying the messages sufficiently that the mail client is no longer capable of displaying them as intended.
Will be looking at options this year for better mail filtering and IPv6 support - the current and expected feature set just isn't there.
What I wished was a single yearly renewal. But whatever I wish, there is no such thing as a UTM. Because there is no such thing as unified thread management. Soon or later, a component on the suite fails to bring the minimum. That is true with Sophos, Sonic Wall, or whatever else.
So, since I am stuck with two renewals, I will also move to Symantec EndPoint Protection. Flawless set it and forget it solution. One reason I moved away from it was the disappearance of their Enterprise suite. But I hear it is back. Sophos SEC requires the same maintenance as anything else from Sophos. Chronophagus.
Not set for the firewall yet, but very basic features I require are not even on the radar. I cannot live without a full DHCP or NTP anymore. I hate to maintain a VM per subnet (DMZ, Production, et.c.) just for those roles. And I cannot live without a workable log.
As for IPv6, I won't even try to implement this on XG since it REALLY means maintaining TWO firewalls. As you now, rules, objects, and everything in IPv4 are totally separated with IPv6.
I do not save times with Sophos. Everything is much longer and much harder to the Symantec/Checkpoint combination I had before.
By the way, the published set of new features for the next XG 17.5.x, probably in April 2019 since it is schedule in March 2019, is "better centralized Backups" ...
Other than that, I see nothing of any interest this year mentioned anywhere.
Paul Jr
By the way, the published set of new features for the next XG 17.5.x, probably in April 2019 since it is schedule in March 2019, is "better centralized Backups" ...
Other than that, I see nothing of any interest this year mentioned anywhere.
Paul Jr