The ISOs for the latest versions of both UTMs are very similar in size with the Sophos ISO for 9.304 being around 100MB larger than the Untangle 11 ISO.įor starters the management differences and similarities between the two – Untangle can be managed from the actual console of your physical appliance or your virtual appliance, while Sophos requires that you have another machine that can connect to the WebUI management interface in order to manage. Untangle much like the GUI interface looks more polished in the install environment while the Sophos installer looks like the “blue background” linux installers that we are used to seeing for the most part. The install time for both appliances on my older VMware environment seemed to be on par with one another. ![]() Let me detail a few of the comparisons and my thoughts between the two firewalls/UTMs.īoth Untangle and Sophos have pretty rock solid installers, both being 64-bit capable and both can run well inside of a VM environment. I have to say I wasn’t expecting a whole lot as far as being close to Untangle’s free offering, but I was really blown away at the functionality of the Sophos UTM appliance and have since swapped out my Untangle box in favor of the Sophos UTM appliance in my home network. The home use license includes almost all of the full blown functionality with the limit of 50 IP addresses as well as Sophos Endpoint Protection for up to 10 computers. Recently I was turned onto the Sophos UTM appliance that is a free download from Sophos for home use. ![]() However with more companies offering really good free firewalls and UTM’s I have been on a hunt and compare between Untangle and others out there. I have long been a fan of Untangle as a UTM and now as its branding as NGFW or Next generation firewall which in most senses is just a different way to brand UTM. Hackers and attacks have become more sophisticated and the attack vector has broadened with the ever increasing “connected” state of most individuals these days with mobile and other devices. This makes NAT less than ideal.UTM or Unified Threat Management devices are becoming more and more popular as businesses and corporations have realized in the past couple of years that a simple tradition firewall of allows and denies is not adequate any longer. I'd like to minimize overhead in Sophos UTM, such that firewalls in the hypervisors can "pick" their own public IP addresses. I'm trying to reduce the noise from the public internet (provided by a data center) and restrict access to those should there be an "incident." One thing I'd like to do is minimize NAT'ing as it interferes with the automation in the lab. I can't access the hypervisors or any virtual machines, or the management interfaces of the virtual firewalls via the internet. The hypervisors are running virtual firewalls from different vendors. The data center provides a single ethernet cable to the cage. The Sophos SG device has a flexi port which should cover all the hypervisors in the lab. I want to get rid of the internet Switch and use the Sophos SG to be a transparent firewall for the hypervisors while still providing S2S VPN, DNS, DHCP, and NAT services for the "management network," amongst others. I have a Sophos SG 210 appliance running Sophos UTM within a lab, currently configured as follows: r/talesfromtechsupport - Support stories from the trenches r/sysadmin - General Sysadmin topics and rants r/aww - For your support-related relief needs Sophos XG - Official How-to videos for the XGĭavid Okeyode - XG/UTM Cloud How-to videos Naked Security - Award-winning computer security news Posts from your own blog are welcome, as long as disclosure is made, they are relevant to the sub, and follow Reddit rules regarding self-promotion ![]() Posts should be related to Sophos as a company or its productsģ. Members are expected to follow the basic rules of ReddiquetteĢ. Community members shall conduct themselves with professionalism
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |