
Learn to install, configure, manage, and support Sophos Firewall version 18 with hands-on labs, covering licenses, interfaces, policies, web control, application control, load balancing, ssl, and threat configurations.
Trace the Sophos firewall OS history from v15 (2015) through v18.5 (2021), highlighting Copernicus, central management, ssl inspection, stream architecture, and passport offload for performance.
Explore the Xtream architecture v18, with a deep packet inspection engine, a single-pass proxy layer, and hardware acceleration to optimize streaming traffic and security.
Explore sophos firewall models in the XGS series, compare ports, throughput, and wireless options, and understand swappable components and deployment scales from small offices to enterprises.
Navigate Sophos XG Firewall licensing options, including extreme, stream, and standard protection bundles. Learn how protection components like network, sandbox, threat, endpoint protections, and central orchestration integrate with advanced reporting.
Download the Sophos Firewall virtual appliance, sign up for a free trial or online demo, and obtain a serial number by email before downloading the VMware option.
Install Sophos Firewall 18.5 on VMware Workstation by importing the virtual appliance, configure network adapters for the LAN and internet, and access the web UI to perform the initial setup.
Learn to install Sophos firewall in Eve-NG via VMware workstation, importing the virtual appliance and setting up bridged networking. Configure lab access with Windows Server, IP addresses, and management steps.
Configure the basic Sophos Firewall v18 setup across internal, server, and WAN networks, assign IPs (DHCP and static), choose firewall mode, and verify internet connectivity.
Register your Sophos firewall by logging into the control center, linking a serial number, and syncing licenses to activate a 30-day trial before purchasing a full license.
Configure interfaces, zones, and DNS on Sophos XG Firewall, demonstrating LAN, DMZ, VPN concepts, and interface types like bridge, alias, and link aggregation for redundancy.
Configure and test firewall rules to permit bidirectional traffic between land and service zones in Sophos XG, creating custom rule groups and networks from scratch.
NAT in Sophos XG v18, including masquerading, port forwarding, and linking net rules with firewall rules for enterprise net design and auto upgrade of net rules.
Learn to configure destination NAT rules in Sophos XG Firewall v18, using DMZ and port forwarding across dual ISP links to expose an internal server safely from the internet.
Learn to create and manage Sophos XG firewall rules and policies, including user-based and network rules, zones, user groups, SSL inspection, web filtering, application control, and rule ordering.
Describe creating and applying web control and application control policies on Sophos XG using groups, categories, and top-down rules, including SSL inspection and certificate setup for blocked sites.
Apply application control policies using the application list and categories to block or permit cloud, P2P, and VPN apps, with top-to-bottom rule order and synchronous endpoint integration.
Learn how ssl/tls inspection on the sophos xg firewall intercepts, decrypts, and re encrypts encrypted traffic with a firewall certificate, enabling scanning across ports and tls versions.
Configure ssl/tls inspection on the sophos firewall by installing a certificate authority, importing your cert, enabling inspection, and selecting decryption profiles such as maximum compatibility or strict compliance.
Diagnose SSL inspection errors in the Sophos XG firewall, identify failing domains via the control center, and apply exclusions to prevent decryption issues.
Learn to configure wan load balancing in sophos xg v18 by adding multiple isp gateways, enabling active and backup modes, and applying weighted round-robin with link manager.
Configure VLAN on Sophos firewall, create sub-interfaces and trunks, assign VLAN interfaces, and implement inter-island routing with firewall policies to control inter-network traffic.
Leverage sd-red, software-defined remote edge devices, to build secure tunnels between remote branches and the head office, enabling plug-and-play deployment, cloud-provisioned configuration, and cost-effective internet-based interconnect.
Configure a red device for a branch by enabling red service, setting uplink and network settings, adding the red tunnel IP, and establishing branch firewall rules and ECB configuration.
Set up a Sophos XG SD-RED site-to-site VPN between head office and branch, including tunnel provisioning, routing, and firewall rules, with configuration file import.
Explore how a proxy firewall intercepts connections on behalf of users, inspects traffic, caches content to improve performance, and enforces security policies and content filtering in large organizations.
Configure a Sophos XG firewall as a single-arm proxy, block direct internet access, and route all traffic through the proxy with LAN IP translation to the proxy IP.
Deploy a Sophos XG firewall in Azure via the marketplace, create a resource group and virtual network, choose BYOL or pay-as-you-go, and configure licensing, public IPs, and DNS name access.
Learn to deploy a Windows Server VM in Azure, configure RDP access through a Sophos firewall, and set up a route table and security groups for controlled traffic.
Configure IPsec site-to-site VPN between on-premises network and Azure using Sophos firewall, including IP tunnels, objects, VPN gateways, and firewall rules to enable cross-site traffic.
Configure ssl vpn in Azure firewall with sleeping tunnels, open required ports, create policy, assign users, and download configurations to connect remote clients to Azure resources.
Learn how Sophos synchronized security enables firewall, endpoint protection, and other products to share threat intelligence and automatically isolate infected devices, stopping lateral movement.
Demonstrates configuring Sophos synchronized security in a lab, linking firewalls and endpoints via Sophos Central, installing cloud endpoint protection, and enforcing heartbeat and isolation.
Sophos Firewall provides comprehensive next-generation firewall protection that exposes hidden risks, blocks unknown threats, and automatically responds to incidents. The all-new Xstream Architecture delivering extreme new levels of visibility, protection and performance.
XG Firewall v18 Highlights:
Xstream SSL Inspection. Get unprecedented visibility into your encrypted traffic flows, support for TLS 1.3 without downgrading, powerful policy tools, and extreme performance.
AI-powered Threat Intelligence. Extend your protection against zero-day threats and emerging ransomware variants with multiple best-in-class machine learning models and unmatched insights into suspicious files entering your network
Application Acceleration. Optimize network performance by putting your important application traffic on the fast path through the firewall and routing it reliably out your preferred WAN connection
Synchronized SD-WAN brings the power of Synchronized Security to reliably and accurately route application and user-based traffic over your preferred WAN links.
Firewall, NAT, and SSL Inspection rules and policies are now more powerful, flexible and easier to work with than ever before.
Plug-and-play high-availability (HA) makes it easy to enable business continuity and adds peace-of-mind – simply connect two XG Series appliances together and you’ll be up and running in no time.
Real-time flow monitoring provides at-a-glance insights into active bandwidth consuming hosts, applications, and users
Expanded notifications and alerts ensure you never miss an important network security event whether it’s related to a threat, service, or important performance metric.
In this courses, feature lecture and hands-on labs, you will learn to install, configure, manage and Sophos Firewall v18 & Advanced Use cases. You will gaining the skills and expertise needed to protect your organization from security threats. The student will get hands-on experience of Sophos Firewall v18 in a lab environment.
This course dives deeper into Sophos Firewall Advanced Configuration to give the students a clear understanding on several topics. Topics covered include Sophos Firewall Models & Licensing, Sophos Firewall v18 Basic Configuration, Network Zones & Interface Configuration, Firewall Polices, Web Control & Application Control, WAN Load Balancing, SSL TLS Configuration VLAN Configuration, Sophos Firewall as single arm proxy, Synchronized Security, Sophos RED Configuration, SNAT & DNAT, Sophos firewall in Azure more.