Protect your network

Next-generation firewall

Your internet connection is a door that's open all day. Put something on it that can see what's coming through and stop what shouldn't be.

The risk

Every office connection to the internet is a way in. The router your broadband provider supplied keeps out unsolicited traffic, but it doesn't look inside the traffic it lets through, and it's rarely kept up to date.

Most web traffic is now encrypted, so a firewall that can't inspect encrypted traffic can't see the threats hidden in it.

What it does
  • Intrusion prevention and deep packet inspection to stop attacks at the edge of your network
  • Inspects encrypted traffic without slowing it down, so threats can't hide in it
  • Web filtering and application control for everyone on the network
  • Sends suspicious files to a sandbox to see what they do before letting them through
  • Remote access and site-to-site VPN, plus a built-in zero trust access gateway
  • SD-WAN to make the most of several internet connections, with automatic failover if one goes down
  • Works with our device protection to isolate an infected computer automatically, so the attack cannot spread
Who it's for

Any business with an office, shop or site where several people share a network, and especially one with more than one site or with staff who connect in remotely.

How we supply it

A firewall is a hardware appliance plus a subscription for its protection features, and we supply both. Because everything passes through it, we recommend letting us configure and install it at our standard day rate, but your own IT provider can do it if you'd rather.

What's under the hood

Sophos Firewall — XGS series hardware appliances, or virtual and cloud versions, managed from Sophos Fusion alongside your switches, Wi-Fi and device protection.

Questions
It does a basic job of keeping unsolicited traffic out. It doesn't inspect the traffic you do allow, filter websites, detect intrusions or provide secure remote access, and it's rarely kept up to date.
Firewalls are sized to your connection and number of users. We'll size it with you so the security checks don't become a bottleneck.
Yes. It works with standard network equipment. Sophos switches and access points add extras such as isolating an infected device automatically, but they aren't required.

Not sure what you need?

Tell us a little about your business and we'll recommend the controls that matter most for it — no obligation, and no jargon.

Talk to us → or see every security area →