Sophos XG 230 (XG23T2HEUK)

Sophos XG 230 (XG23T2HEUK)

Regular price
Rp 44.090.200,00
Sale price
Rp 34.395.000,00
Tax included.

*Price includes 10% VAT with Tax Invoice
*Official Warranty From Our Distributors
*Stock Conditions Must Be Confirmed First
*We Only Sell New Items
*Secure shopping without fraud
*For Other Types Not In Our House, You Can Be Asked By Contacting WA. 085330497440

Sophos XG Firewall

XG 230 rev.2 HW Appliance with 6 GE ports, 2 SFP ports, 1 expansion bay for optional FleXi Port module, SSD + Base License (incl. FW, VPN & Wireless) for unlimited users + power cable


  • Purpose-built user interface with interactive control center utilizing traffic-light indicators (red, yellow, green) to instantly identify what needs attention at-a-glance.
  • The Control Center offers instant insights into endpoint health, unidentified Mac and Windows applications, cloud applications and Shadow IT, suspicious payloads, risky users, advanced threats, network attacks, objectionable websites, and much more.
  • Optimized two-clicks-to-anywhere navigation
  • Policy Control Center Widget monitors policy activity for business, user and network policies and tracks unused, disabled, changed and new policies
  • New unified policy model combines all business, user and network firewall rules onto a single screen with grouping, filtering and search options
  • Streamlined firewall rule management for large rule sets with custom auto and manual grouping with at-aglance mouse-over feature and enforcement indicators
  • All firewall rules provide an at-a-glance summary of the applied security and control for AV, Sandboxing, SSL, IPS, Web, App, Traffic Shapping (QoS), routing, and Heartbeat
  • Pre-defined IPS, Web, App, and Traffic Shaping (QoS) policies enable quick setup and easy customization for common deployment scenarios (e.g. CIPA, typical workplace policies, and more)
  • IPS, Web, App, and Traffic Shaping (QoS) policies snap-into firewall rules and can be edited inplace providing a powerful but intuitive model for configuring and managing security and control
  • Policy Templates for common business applications including Microsoft Exchange, SharePoint, Lync, and much more defined in XML enabling customization and sharing.
  • Sophos Security Heartbeat connecting Sophos endpoints with the Firewall to share health status and telemetry to enable instant identification of unhealty or compromised endpoints
  • Dynamic firewall rule support for endpoint health (Sophos Security Heartbeat) to automatically isolate or limit network access to compromised endpoints
  • Synchronized Application Control to automatically, identify, classify and control all unknown Mac/ Windows applications on the network
  • Cloud Application Visibility enables Shadow IT discovery instantly and offers one-click traffic shaping
  • Policy test simulator tool to enable firewall rule and web policy simulation and testing by user, IP and time of day
  • User Threat Quotient for identifying risky users based on recent browsing behavior and ATP triggers
  • Application Risk Meter provides and overall risk factor based on the risk level of applications on the network
  • Configuration API for all features for RMM/PSA integration
  • Discover Mode (TAP mode) for seamless integration for trials and PoCs with support for Synchronized Security
  • Full-featured centralized management of multiple firewalls with Sophos Firewall Manager available as a hardware, software, or virtual appliance
  • Central management of multiple firewalls from Sophos Central providing one management console for all your Sophos IT security products.
  • Easy streamlined setup wizard to enable quick outof-the box deployment in just a few minutes
  • Zero-touch setup and configuration in Sophos Central for new firewalls that remote staff can utilize during the initial startup to configure the device

Base Firewall

General Management

  • Purpose-built streamlined user interface and firewall rule management for large rule sets with grouping with at-a-glance rule feature and enforcement indicators
  • Two-factor authentication (One-time-password) support for administrator access, user portal, IPSec and SSL VPN
  • Advanced trouble-shooting tools in

XG Firewall Features

GUI (e.g., Packet Capture)

  • High Availability (HA) support clustering two devices in active-active or active-passive mode.
  • Full command-line-interface (CLI) accessible from GUI
  • Role-based administration
  • Automated firmware update notification with easy automated update process and roll-back features
  • Reusable system object definitions for networks, services, hosts, time periods, users and groups, clients and servers
  • Self-service user portal
  • Configuration change tracking
  • Flexible device access control for services by zones
  • Email or SNMP trap notification options
  • SNMP and Netflow support
  • Central managment support from Sophos Firewall Manager or Sophos Cloud Firewall Manager
  • Backup and restore configurations: locally, via FTP or email; on-demand, daily, weekly or monthly
  • API for third party integration
  • Remote access option for Sophos Support
  • Cloud-based license management via MySophos

Firewall, Networking, and Routing

  • Stateful deep packet inspection firewall
  • FastPath Packet Optimization
  • User, group, time, or network based policies
  • Access time polices per user/group
  • Enforce policy across zones, networks, or by service type
  • Zone isolation and zone-based policy support.
  • Default zones for LAN, WAN, DMZ, LOCAL, VPN, and WiFi
  • Custom zones on LAN or DMZ
  • Customizable NAT policies with IP masquerading and full object support to redirect or forward multiple services in a single rule
  • Flood protection: DoS, DDoS and portscan blocking
  • Country blocking by geo-IP
  • Routing: static, multicast (PIM-SM) and dynamic (RIP, BGP, OSPF)
  • Upstream proxy support
  • Protocol independent multicast routing with IGMP snooping
  • Bridging with STP support and ARP broadcast forwarding
  • VLAN DHCP support and tagging
  • Multiple bridge support
  • WAN link balancing: multiple Internet connections, auto-link health check, automatic failover, automatic and weighted balancing, and granular multipath rules
  • Wireless WAN support (n/a in virtual deployments)
  • 802.3ad interface link aggregation
  • Full configuration of DNS, DHCP and NTP
  • Dynamic DNS
  • IPv6 Ready Logo Program Approval Certification
  • IPv6 tunnelling support including 6in4, 6to4, 4in6, and IPv6 rapid deployment (6rd) through IPSec

Base Traffic Shaping and Quotas

  • Flexible network or user based traffic shaping (QoS) (enhanced Web and App traffic shaping options are included with the Web Protection Subscription)
  • Set user-based traffic quotas on upload/download or total traffic and cyclical or non-cyclical
  • Real-time VoIP optimization
  • DSCP marking

Secure Wireless

  • Simple plug-and-play deployment of Sophos wireless access points (APs) — automatically appear on the firewall control center
  • Central monitor and manage all APs and wireless clients through the built-in wireless controller
  • Bridge APs to LAN, VLAN, or a separate zone with client isolation options
  • Multiple SSID support per radio including hidden SSIDs
  • Support for the latest security and encryption including WPA2 Personal and Enterprise
  • Channel width seletion option
  • Support for IEEE 802.1X (RADIUS authentication) with primary and secondary server support
  • Support for 802.11r (fast transition)

XG Firewall Features

  • Hotspot support for (custom) vouchers, password of the day, or T&C acceptance
  • Wireless guest Internet access with walled garden options
  • Time-based wireless network access
  • Wireless repeating and bridging meshed network mode with supported APs
  • Automatic channel selection background optimization
  • Support for HTTPS login


  • Synchronized User ID utilizes Synchronized Security to share currently logged in Active Directory user ID between Sophos endpoints and the firewall without an agent on the AD server or client
  • Authentication via: Active Directory, eDirectory, RADIUS, LDAP and TACACS+
  • Server authentication agents for Active Directory SSO, STAS, SATC
  • Single sign-on: Active directory, eDirectory, RADIUS Accounting
  • Client authentication agents for Windows, Mac OS X, Linux 32/64
  • Browser SSO authentication: Transparent, proxy authentication (NTLM)
  • Browser Captive Portal
  • Authentication certificates for iOS and Android
  • Authentication services for IPSec, SSL, L2TP, PPTP
  • Google Chromebook authentication support for environments with Active Directory and Google Gsuite
  • API based authentication

User Self-Serve Portal

  • Download the Sophos Authentication Client
  • Download SSL remote access client (Windows) and configuration files (other OS)
  • Hotspot access information
  • Change user name and password
  • View personal internet usage
  • Access quarantined messages and manage user-based
  • block/allow sender lists (requires Email Protection)

Base VPN Options

  • Site-to-site VPN: SSL, IPSec, 256- bit AES/3DES, PFS, RSA, X.509 certificates, pre-shared key
  • L2TP and PPTP
  • Remote access: SSL, IPsec, iPhone/iPad/ Cisco/Andriod VPN client support
  • IKEv2 Support
  • SSL client for Windows and configuration download via user portal

Sophos Connect IPSec Client

  • Authentication: Pre-Shared Key (PSK), PKI (X.509), Token and XAUTH
  • Enables Synchronized Security and Security Heartbeat for remote connected users
  • Intelligent split-tunneling for optimum traffic routing
  • NAT-traversal support
  • Client-monitor for graphical overview of connection status
  • Mac and Windows Support

    *~Shopping Is Very Fun When With Friendly Services~*