Don't miss out on new posts! Sign up! Also, visit the VHT Forums!
Security

Sophos XG UTM firewall virtual appliance install and configure

So the other day I received the announcement from Sophos they had released their “next generation” firewall appliance that would be providing the way forward for current 9.x users.  Sophos did mention they are keeping both code branches however and development would continue on 9.x, however, the writing is on the wall that the XG product will be the software in times to come.

Sophos offers a 30 day free trial which is what I am using to play around with the software and get a feel for the completely rewritten interface.  After you sign up on the mysophos portal you can download the product.

Also, I am excited as well that Sophos announced also that there is still a Sophos XG Home Edition Firewall – https://www.sophos.com/en-us/products/free-tools/sophos-xg-firewall-home-edition.aspx which looks to provide most of the feature set as the 9.x version with the new technology and interface.  One thing to note is there is an XG Firewall and an XG UTM, which the free 9.x version for me is the UTM appliance.  Sophos may have restricted access with XG to only pay customers and giving firewall only and various other features to home users.  More on that as it is clarified.

The Appliance itself

When you sign up for the trial product you are taken to a download page to download the appliance file format that you need for your environment – VMware, HyperV, KVM, etc as well as full ISO for hardware Intel appliance.

One thing that I see right from the start that is really great is the OVF zip package you download upon signing up for the trial is only roughly 170MB or so – very small.  When we are talking about a security appliance that is what we want.

Deploying

I won’t go into details about how to deploy the appliance inside VMware via the OVF file as most are familiar with the process on doing this.  Sophos also has a really good getting starting guide on deploying the OVF and particulars therin:  https://www.sophos.com/en-us/medialibrary/PDFs/documentation/Sophos-Firewall-Virtual-Appliance—Getting-Started-Guide.pdf?la=en

After the initial OVF deployment, below are the screenshots of the VM after it had booted and I pointed a web browser to the default 172.16.16.16:4444 IP and port.

Default username and password here is admin/admin

sophos_xg01
sophos_xg02

sophos_xg03
sophos_xg04
sophos_xg05

Below on the next screen we are asked to initiate a license synchronization which basically looks to register your device and sync the license with your install and the portal.


sophos_xg06
sophos_xg07 sophos_xg08

Choose which mode the appliance is installed in:


sophos_xg09

Basic config here:  We setup the LAN interface address:


sophos_xg10
sophos_xg11
sophos_xg12
sophos_xg13
sophos_xg14
sophos_xg15
sophos_xg16

After the review screen, the device starts configuring itself.  This step takes a few minutes at least on my VM.


sophos_xg17
sophos_xg18

The above screenshots take us all the way up to the point of logging into the appliance via a browser.  I will have a follow up post as I have more time to play around with the appliance and have more feedback on what things look like.

 

Brandon Lee

Brandon Lee is the Senior Writer, Engineer and owner at Virtualizationhowto.com and has over two decades of experience in Information Technology. Having worked for numerous Fortune 500 companies as well as in various industries, Brandon has extensive experience in various IT segments and is a strong advocate for open source technologies. Brandon holds many industry certifications, loves the outdoors and spending time with family.

Related Articles

4 Comments

  1. @Brandon Lee

    A few days back when I tried to download this it was showing Software v/s Appliance radio button, but now it wont show me the option to download VM appliance. Thoughts on how/ where to go about it?

      1. Thanks for the link – Will go there- But does this allow me to run a Home/ Free version or will it be a limited time Trial?

        1. XM, their site is kind of a mess when it comes to the XG firewall appliance. They need to clean this up quite a bit to make finding the appliance and what you need easier. I had a tough time recently trying to redownload the appliance. I know that it will at least be the timed trial, however, there should be an option for the free home version also. I believe it only depends on the serial number they send whether or not it is home/free or the trial/pay version. I will post back if I find a more specific link for the OVA and home version.

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.