{"id":2748,"date":"2021-02-18T16:58:52","date_gmt":"2021-02-18T16:58:52","guid":{"rendered":"https:\/\/partnernews.sophos.com\/en-us\/?p=2748"},"modified":"2021-02-23T05:19:07","modified_gmt":"2021-02-23T05:19:07","slug":"xg-firewall-v17-5-mr15-and-xg-firewall-v18-mr4-are-live","status":"publish","type":"post","link":"https:\/\/partnernews.sophos.com\/es-es\/2021\/02\/products\/xg-firewall-v17-5-mr15-and-xg-firewall-v18-mr4-are-live\/","title":{"rendered":"XG Firewall V17.5 MR15 and XG Firewall V18 MR4 are live!"},"content":{"rendered":"<p><span data-contrast=\"none\">We are pleased to announce the availability of new firmware for you<\/span><span data-contrast=\"none\">r<\/span><span data-contrast=\"none\">\u00a0XG installations. XG 17.5 gets a new maintenance release<\/span><span data-contrast=\"none\">\u00a0&#8211;<\/span><span data-contrast=\"none\">\u00a0XG17.5 MR15. As well as several bug fixes, this also brings enhanced security to the administrative and sensitive data store areas of the appliance. The biggest change is the introduction of a secure storage master key or SSMK. This key provides extra protection for the account details stored on the XG Firewall and encrypts sensitive information, such as passwords, secrets, and keys, preventing unauthorized access. The accounts have access to services, such as directory services, email servers, FTP servers, and proxies. They also include user accounts stored on the XG Firewall. As part of this change, we are introducing secure encryption for storing admin password hash. The admin (default administration account) will be asked to change their password, and whilst this is optional, it is highly recommended. Also, password complexity rules have been enabled for all passwords.<\/span><span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559740&quot;:240}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"none\">XG V18 benefits from\u00a0<\/span><span data-contrast=\"none\">all<\/span><span data-contrast=\"none\">\u00a0these enhancements but also receives extra attention with X18 MR4. This release brings enhancements to performance, security, reliability and the management experience. XG Firewall MR4 also enables great new Sophos Central Management capabilities, which is where we\u2019ll begin:<\/span><span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559740&quot;:240}\">\u00a0<\/span><\/p>\n<h2><b><span data-contrast=\"none\">New Sophos Central Enhancements:<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559740&quot;:240}\">\u00a0<\/span><\/h2>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"9\" data-aria-posinset=\"1\" data-aria-level=\"1\"><b><span data-contrast=\"none\">New Partner Dashboard<\/span><\/b><span data-contrast=\"none\">\u202ffacilitating group policy management across the customer base \u2013 make a change once and have it automatically replicated across multiple firewalls<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"9\" data-aria-posinset=\"1\" data-aria-level=\"1\"><b><span data-contrast=\"none\">New Group Policy Import<\/span><\/b><span data-contrast=\"none\">\u202fenables one firewall to define the group policy during group set up making it easy to migrate from legacy CFM or SFM platforms<\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"9\" data-aria-posinset=\"1\" data-aria-level=\"1\"><b><span data-contrast=\"none\">Scheduled Firmware Updates<\/span><\/b><span data-contrast=\"none\">\u202fenables MR4 to be the first firmware you schedule using this new option\u202f<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"9\" data-aria-posinset=\"1\" data-aria-level=\"1\"><b><span data-contrast=\"none\">Full HA Support<\/span><\/b><span data-contrast=\"none\">\u202fenabling easier management and improved fail-over support<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<\/ul>\n<h2><b><span data-contrast=\"none\">General Enhancements in XG Firewall v18 MR4:<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559740&quot;:240}\">\u00a0<\/span><span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559740&quot;:240}\">\u00a0<\/span><\/h2>\n<p><b><span data-contrast=\"none\">High Availability<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559740&quot;:240}\">\u00a0<\/span><\/p>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"10\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Improved\u00a0<\/span><span data-contrast=\"none\">FastPath<\/span><span data-contrast=\"none\">\u00a0performance for Active-Passive pairs<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"10\" data-aria-posinset=\"2\" data-aria-level=\"1\"><span data-contrast=\"none\">Full HA support in Amazon Web Services using the AWS Transit Gateway\u202f<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"10\" data-aria-posinset=\"3\" data-aria-level=\"1\"><span data-contrast=\"none\">Improved high availability setup wizard and streamlined upgrade process<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<\/ul>\n<p><b><span data-contrast=\"none\">VPN Enhancements<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559740&quot;:240}\">\u00a0<\/span><\/p>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"11\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">New advanced options for\u00a0<\/span><span data-contrast=\"none\">IPSec<\/span><span data-contrast=\"none\">\u00a0remote access (replaces\u00a0<\/span><span data-contrast=\"none\">scadmin<\/span><span data-contrast=\"none\">)<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"11\" data-aria-posinset=\"2\" data-aria-level=\"1\"><span data-contrast=\"none\">Sophos Connect VPN client downloads now available from the user portal (ideal for home workers to self-serve a VPN client)<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"11\" data-aria-posinset=\"3\" data-aria-level=\"1\"><span data-contrast=\"none\">Enforcement of TLS 1.2 for SSL VPN on site-to-site and remote-access connections<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<\/ul>\n<p><b><span data-contrast=\"none\">Other Enhancements<\/span><\/b><span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559740&quot;:240}\">\u00a0<\/span><\/p>\n<ul>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"12\" data-aria-posinset=\"1\" data-aria-level=\"1\"><span data-contrast=\"none\">Web Filtering \u2013 Websites that are identified as containing child sexual abuse content by the Internet Watch Foundation (IWF) will be automatically blocked when any web filtering is enabled. See\u202f<\/span><a href=\"https:\/\/www.iwf.org.uk\/\" target=\"_blank\" rel=\"noopener\"><span data-contrast=\"none\">https:\/\/www.iwf.org.uk\/<\/span><\/a><span data-contrast=\"none\">\u202ffor more information on the IWF.<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"12\" data-aria-posinset=\"2\" data-aria-level=\"1\"><span data-contrast=\"none\">Cloud Optix integration \u2013 Cloud Optix is now XG Firewall aware enabling the two solutions to work better together (<\/span><a href=\"https:\/\/community.sophos.com\/sophos-cloud-optix\/b\/blog\/posts\/identify-sophos-firewalls-and-workload-protection-on-aws\" target=\"_blank\" rel=\"noopener\"><span data-contrast=\"none\">full details<\/span><\/a><span data-contrast=\"none\">).<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<li data-leveltext=\"\uf0b7\" data-font=\"Symbol\" data-listid=\"12\" data-aria-posinset=\"3\" data-aria-level=\"1\"><span data-contrast=\"none\">Synchronized Application Control \u2013 a new option will automatically clean up discovered apps that are over a month old.<\/span><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:240}\">\u00a0<\/span><\/li>\n<\/ul>\n<p><span data-contrast=\"none\">These upgrades are available at no charge for all licensed XG customers and we encourage you to upgrade to the latest firmware as soon as practicable, especially\u00a0<\/span><span data-contrast=\"none\">in light of<\/span><span data-contrast=\"none\">\u00a0the included security enhancements.<\/span><span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559740&quot;:240}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"none\">Please refer to the\u202f<\/span><a href=\"https:\/\/docs.sophos.com\/nsg\/sophos-firewall\/18.0\/releasenotes\/en-us\/nsg\/sfos\/releaseNotes\/rn_UpgradeInformation.html\" target=\"_blank\" rel=\"noopener\"><span data-contrast=\"none\">upgrade matrix<\/span><\/a><span data-contrast=\"none\">\u202ffor more information.\u202f<\/span><span data-ccp-props=\"{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;201341983&quot;:0,&quot;335559740&quot;:240}\">\u00a0<\/span><\/p>\n<p><span data-ccp-props=\"{&quot;201341983&quot;:0,&quot;335559739&quot;:160,&quot;335559740&quot;:259}\">\u00a0<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>This month we bring you exciting news of firmware upgrades. Whether your XG is running on version 18 or version 17.5, this applies to you, so read on!<\/p>\n","protected":false},"author":69,"featured_media":3000001190,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"advanced_seo_description":"","jetpack_seo_html_title":"","jetpack_seo_noindex":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[72],"tags":[102,25],"coauthors":[105],"class_list":["post-2748","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-products","tag-technical-news","tag-xg-firewall"],"jetpack_featured_media_url":"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2020\/04\/featured-image-UKI-tech-update-Partner-app-icon-1600x960-1.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/wp\/v2\/posts\/2748","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/wp\/v2\/users\/69"}],"replies":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/wp\/v2\/comments?post=2748"}],"version-history":[{"count":1,"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/wp\/v2\/posts\/2748\/revisions"}],"predecessor-version":[{"id":2749,"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/wp\/v2\/posts\/2748\/revisions\/2749"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/"}],"wp:attachment":[{"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/wp\/v2\/media?parent=2748"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/wp\/v2\/categories?post=2748"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/wp\/v2\/tags?post=2748"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/es-es\/wp-json\/wp\/v2\/coauthors?post=2748"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}