Sophos XGS 107

Sophos XGS 107 Next-Gen Firewall User Manual

Model: XGS 107 (JA1Z1CSUS)

1. Introduction

This manual provides essential information for the installation, operation, maintenance, and troubleshooting of your Sophos XGS 107 Next-Gen Firewall. The Sophos XGS 107 is designed to deliver robust network security with advanced threat protection capabilities for small to medium businesses and branch offices.

2. What's in the Box

Verify that all components are present in your Sophos XGS 107 package:

  • Sophos XGS 107 Next-Gen Firewall Appliance
  • US Power Cord
  • Base License (pre-activated for 1 year)
  • Network Protection (1-year subscription)
  • Web Protection (1-year subscription)
  • Enhanced Support (1-year subscription)
  • Xstream TLS and DPI engine
  • Security Heartbeat functionality
  • SD-RED VPN capabilities
  • Reporting features

3. Setup

3.1 Physical Installation

Place the Sophos XGS 107 on a stable, flat surface in a well-ventilated area. Ensure adequate space around the device for proper airflow. Connect the power cord to the appliance and a suitable power outlet.

3.2 Port Identification

Familiarize yourself with the ports on the rear panel of the Sophos XGS 107:

Rear view of Sophos XGS 107 Firewall showing power inputs, COM port, USB, SFP, and multiple LAN/WAN ports.
Figure 1: Rear panel of the Sophos XGS 107, featuring dual DC power inputs, a COM port, USB ports, an SFP port, and eight RJ45 LAN/WAN ports. A reset button is also visible.

The front panel includes status LEDs and additional USB ports:

Front view of Sophos XGS 107 Firewall showing status LEDs and USB ports.
Figure 2: Front panel of the Sophos XGS 107, displaying the Sophos logo, XGS 107 model designation, status LEDs for various functions (Link/Activity, Speed, Status), and USB ports.

3.3 Initial Network Connection

  1. Connect your internet service provider's modem or router to the WAN port (typically Port 2) on the Sophos XGS 107.
  2. Connect a computer to one of the LAN ports (e.g., Port 1) using an Ethernet cable for initial configuration.
  3. Power on the device. Wait for the system status LED to indicate readiness.

3.4 Initial Configuration Access

Access the Sophos Firewall web administration interface by opening a web browser on the connected computer and navigating to the default IP address (e.g., https://172.16.16.16). Follow the on-screen wizard for initial setup, including setting up administrator credentials and basic network parameters.

4. Operating Instructions

The Sophos XGS 107 operates on Sophos proprietary OS, offering a comprehensive suite of security features. The device is designed for ease of management through its web-based interface.

4.1 Xstream Protection Bundle

The XGS 107 comes with the Xstream Protection bundle, providing advanced security features. This bundle includes:

Diagram illustrating the components of the Xstream Protection bundle: Base Firewall Features, Network Protection, Web Protection, Zero-Day Protection, Sophos Central Management, Sophos Central Orchestration, and Enhanced Support.
Figure 3: Overview of the Xstream Protection bundle features.
  • Base Firewall Features: Networking, Wireless, SD-WAN, Application Aware Routing, Traffic Shaping, FastPath, TLS 1.3 Inspection, Deep-Packet Inspection, VPN (IPsec/SSL Site-to-Site and Remote Access VPN), and Reporting.
  • Network Protection: Xstream TLS Inspection, Xstream DPI engine, IPS (Intrusion Prevention System), Advanced Threat Protection, Synchronized Security Heartbeat, SD-RED VPN.
  • Web Protection: Xstream TLS Inspection, Web Control, Web Threat Protection, Application Control, Synchronized App Control.
  • Zero-Day Protection: Xstream TLS Inspection, Xstream DPI engine, Zero-Day Threat Protection, Powered by SophosLabs Intelix, Cloud Sandbox.
  • Sophos Central Management & Orchestration: Group Firewall Management, backup/firmware updates, SD-WAN Orchestration, Cloud Reporting, XDR and MTR Ready.
  • Enhanced Support: 24/7 support, feature updates, advanced replacement hardware warranty.

4.2 Detailed Protection Modules

For a comprehensive understanding of each protection module and its capabilities, refer to the detailed descriptions provided:

Detailed descriptions of Sophos Firewall protection modules including Base Firewall, Network Protection, Web Protection, Zero-Day Protection, Central Orchestration, Email Protection, and Web Server Protection.
Figure 4: Detailed breakdown of Sophos Firewall protection modules.

This image provides information on Base Firewall, Network Protection, Web Protection, Zero-Day Protection, Central Orchestration, Email Protection, and Web Server Protection, outlining their respective features and benefits.

5. Maintenance

5.1 Software Updates

Regularly check for and apply firmware updates through the Sophos Firewall web administration interface. Updates provide new features, security patches, and performance improvements. Ensure a stable internet connection during the update process.

5.2 Configuration Backup and Restore

It is recommended to regularly back up your firewall configuration. This allows for quick restoration of settings in case of an issue or during device replacement. Configuration backups can be managed via the web interface.

5.3 Physical Cleaning

Periodically clean the exterior of the appliance with a soft, dry cloth. Ensure ventilation openings are free from dust and obstructions to maintain optimal cooling.

6. Troubleshooting

6.1 Status LED Indicators

Refer to the front panel LEDs (Figure 2) to diagnose basic operational status:

  • System Status LED: Indicates the overall health and operational state of the device.
  • Link/Activity LEDs: Show network link status and data activity for each port.
  • Speed LEDs: Indicate the connection speed of each port.

Consult the Sophos documentation for detailed LED behavior and their corresponding meanings.

6.2 Reset Button

A reset button is located on the rear panel (Figure 1). Pressing this button for a short duration may initiate a soft reboot. Holding it for an extended period (typically 10 seconds or more) may restore the device to factory default settings. Use with caution, as this will erase all configurations.

6.3 Network Connectivity Issues

If you experience network connectivity problems:

  • Verify all network cables are securely connected.
  • Check the status of your internet service provider's equipment.
  • Ensure the Sophos XGS 107 has power and its system status LED is normal.
  • Review your firewall rules and network configuration in the web administration interface.

7. Specifications

The following table outlines the technical specifications for the Sophos XGS 107 Next-Gen Firewall:

Sophos XGS 107 Technical Specifications table, detailing performance, physical specifications, environment, and certifications.
Figure 5: Technical Specifications for Sophos XGS 107.
Sophos XGS 107 Key Specifications
FeatureDetail
BrandSophos
ModelXGS 107
Firewall Throughput7,000 Mbps
VPN Throughput2,030 Mbps
Threat Protection Throughput330 Mbps
LAN Port Bandwidth7 Gbps
Number of Ports13 (including 8x 2.5GE, 1x SFP, 2x USB, 1x COM)
Wireless Communication Standard802.11n (if applicable for XGS 107w variant)
Operating SystemSophos proprietary OS
Item Weight8 Pounds
Included Components1-Year Protection, US Power Cord, Base License, Network Protection, Web Protection, Enhanced Support, Xstream TLS and DPI engine, Security Heartbeat, SD-RED VPN, Reporting

For a comparison of XGS series appliances and their performance metrics, refer to the product matrix:

Sophos XGS Series Appliances Product Matrix, comparing various models by form factor, ports, tech specs, and throughput.
Figure 6: Sophos XGS Series Product Matrix.

8. Warranty and Support

Your Sophos XGS 107 Next-Gen Firewall includes a 1-year Standard Protection bundle, which provides:

  • Base License
  • Network Protection
  • Web Protection
  • Enhanced Support

Enhanced Support includes 24/7 technical assistance and an advanced replacement hardware warranty. For detailed terms and conditions of your warranty and support services, please refer to the official Sophos website or contact your Sophos reseller.

8.1 Contacting Support

For technical assistance, visit the official Sophos support portal or contact Sophos customer service. Ensure you have your product serial number and license information available when seeking support.

Related Documents - XGS 107

Preview Sophos Firewall: Powerful Protection and Performance
Explore the Sophos Firewall Xstream architecture, designed to provide robust network security, high performance, and advanced threat protection for businesses of all sizes. Discover features like TLS 1.3 Inspection, Deep Packet Inspection, Application Acceleration, and SD-WAN capabilities.
Preview Sophos XGS 116(w)/126(w)/136(w) Operating Instructions
Comprehensive operating instructions for Sophos XGS 116(w), 126(w), and 136(w) network security appliances, covering installation, configuration, technical specifications, and safety precautions.
Preview Sophos XGS 87(w)/107(w) Quick Start Guide
A comprehensive guide to quickly set up your Sophos XGS 87(w) or 107(w) firewall, covering unboxing, hardware connections, network configuration, and initial console access for network security.
Preview Sophos XGS 116(w)/126(w)/136(w) Operating Instructions
This document provides operating instructions for the Sophos XGS 116(w), 126(w), and 136(w) network appliances. It covers installation, configuration, hardware details, technical specifications, safety precautions, and connection information.
Preview Sophos XGS 2100/2300/3100/3300 Quick Start Guide
This guide provides essential information for setting up and connecting your Sophos XGS firewall appliance, including unboxing, initial connections, and basic configuration.
Preview Sophos XGS Series Appliances: Operating Instructions for XGS 118(w)/128(w)/138
Comprehensive operating instructions for Sophos XGS Series network security appliances, including models XGS 118(w), XGS 128(w), and XGS 138. Covers installation, regulatory compliance, environmental considerations, technical specifications, interfaces, and operational procedures.