{"id":2062,"date":"2020-10-13T05:37:36","date_gmt":"2020-10-13T05:37:36","guid":{"rendered":"https:\/\/partnernews.sophos.com\/en-us\/?p=2062"},"modified":"2020-10-15T11:31:55","modified_gmt":"2020-10-15T11:31:55","slug":"xg-firewall-v18-mr3-is-now-available","status":"publish","type":"post","link":"https:\/\/partnernews.sophos.com\/it-it\/2020\/10\/products\/xg-firewall-v18-mr3-is-now-available\/","title":{"rendered":"XG Firewall v18 MR3 is Now Available"},"content":{"rendered":"<p>The product team is pleased to announce a major new update for XG Firewall v18 with several great new enhancements.<\/p>\n<h2><strong>Security Emphasis<\/strong><\/h2>\n<p>Given how much working environments have changed this year, we have accelerated our product security investments, taking a more proactive approach.\u00a0 As a result, this new maintenance release for XG Firewall v18 includes several security and hardening enhancements to better protect your firewall and your data stored within including SSMK (Secure Storage Master Key) for the encryption of your sensitive data.<\/p>\n<p>There\u2019s also a new CLI option to disable captcha authentication that was previously introduced as a security hardening measure:<\/p>\n<ul>\n<li>console&gt; system captcha-authentication-global enable\/disable\/show for userportal\/webadminconsole<\/li>\n<\/ul>\n<h2><strong>Remote Access VPN:<\/strong><\/h2>\n<p>With working from home and remote access VPN being a vital tool for all organizations these days, there are important enhancements to remote access VPN in this release:<\/p>\n<ul>\n<li>Increased SSL VPN connection capacity across our entire firewall line up. The capacity increase depends on your Firewall model: desktop models can expect a modest increase, while rack mount units will see a 3-6x improvement in SSL VPN connection capacity. <a href=\"https:\/\/support.sophos.com\/support\/s\/article\/KB-000039345?language=en_US\" target=\"_blank\" rel=\"noopener noreferrer\">Check the latest numbers for your XG Series model<\/a>.\u00a0 Remember that Sophos XG Firewall is the only firewall that provides remote access VPN up to the capacity of your device \u2013 at no extra charge.<\/li>\n<li>Group support for our Sophos Connect VPN client which now enables group imports from AD\/LDAP\/etc. for easy setup of group access policy.<\/li>\n<\/ul>\n<figure id=\"attachment_2070\" aria-describedby=\"caption-attachment-2070\" style=\"width: 600px\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-2070 size-full\" src=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2020\/10\/xg-firewall-v18-mr3-1.png\" alt=\"\" width=\"600\" height=\"341\" \/><figcaption id=\"caption-attachment-2070\" class=\"wp-caption-text\">Sophos Connect v2 makes SSL remote access VPN easy to deploy and use<\/figcaption><\/figure>\n<p>&nbsp;<\/p>\n<h2><strong>Cloud (AWS\/Nutanix) Enhancements:\u00a0 <\/strong><\/h2>\n<p>Cloud and hybrid network infrastructure continues to grow in importance and we are also investing heavily in public cloud support.<\/p>\n<ul>\n<li>Support for newer AWS instances &#8211; C5\/ M5 and T3 (#)<\/li>\n<li>Support for CloudFormation Templates removing the need to run the installation wizard in some cases (#)<\/li>\n<li>Virtual WAN Zone support on custom gateways for post deployment single arm usage<\/li>\n<li>Single-arm deployments are now possible on AWS deployments thanks to an option to assign a zone to your custom gateway objects. This allows you to create access and security rules for traffic going into those zones.<\/li>\n<li>XG Firewall is now Nutanix AHV and Nutanix Flow Ready. XG Firewall has been validated to provide two modes of operation within Nutanix AHV infrastructure. <a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/09\/products\/sophos-xg-firewall-is-nutanix-ahv-and-nutanix-flow-ready\/\" target=\"_blank\" rel=\"noopener noreferrer\">Learn More<\/a>.<\/li>\n<li>Also be sure to check out <a href=\"https:\/\/www.sophos.com\/en-us\/products\/cloud-optix.aspx\" target=\"_blank\" rel=\"noopener noreferrer\">Sophos Cloud Optix<\/a> to enhance your security and optimize costs for your cloud environments.<\/li>\n<\/ul>\n<h2><strong>Central Management and Reporting:<\/strong><\/h2>\n<p>We are seeing rapid adoption of Sophos Central Management and Reporting for XG Firewall thanks to its rich features that make managing all your XG Firewalls easy.\u00a0 It\u2019s important to note that legacy central management and reporting platforms including CFM\/SFM and iView are <a href=\"https:\/\/support.sophos.com\/support\/s\/article\/KB-000035279?language=en_US#Other\" target=\"_blank\" rel=\"noopener noreferrer\">coming to end of life soon<\/a>.<\/p>\n<p>Now is the time to <a href=\"https:\/\/www.sophos.com\/en-us\/products\/next-gen-firewall\/ecosystem-central.aspx\" target=\"_blank\" rel=\"noopener noreferrer\">move to Sophos Central<\/a> for your central management and reporting needs as it offers a modern scalable, secure platform with a great feature set and an aggressive roadmap.<\/p>\n<p>What\u2019s New:<\/p>\n<ul>\n<li>XG Firewalls running in an HA configuration (either A-A or A-P) can now be fully managed within Firewall Group Management<\/li>\n<li>An Audit Trail feature is now available within the Task Queue<\/li>\n<li>Central Firewall Reporting has recently added the option to save, schedule and export reports. <a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/09\/products\/new-enhancements-to-central-firewall-reporting\/\" target=\"_blank\" rel=\"noopener noreferrer\">Learn More<\/a>.<\/li>\n<\/ul>\n<p>Coming soon:\u00a0 Next month a couple of other great enhancements are coming to Sophos Central including Group Firewall Management from the Partner Dashboard that greatly simplifies multi-customer firewall management, and cross-firewall reporting for better insights into activity across your entire multi-firewall protected network.<\/p>\n<figure id=\"attachment_2072\" aria-describedby=\"caption-attachment-2072\" style=\"width: 758px\" class=\"wp-caption alignnone\"><img loading=\"lazy\" decoding=\"async\" class=\"wp-image-2072 \" src=\"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2020\/10\/xg-firewall-v18-mr3-2.png?w=640\" alt=\"\" width=\"758\" height=\"314\" \/><figcaption id=\"caption-attachment-2072\" class=\"wp-caption-text\">Central Firewall Reporting now includes the option to save, schedule and export reports<\/figcaption><\/figure>\n<p>&nbsp;<\/p>\n<h2><strong>HA and Other Enhancements<\/strong><\/h2>\n<p>XG Firewall v18 MR3 also addresses a number of reported issues with High Availability deployments, SD-RED devices support, and other areas.\u00a0 See the <a href=\"https:\/\/community.sophos.com\/xg-firewall\/b\/blog\/posts\/xg-firewall-v18-mr3\" target=\"_blank\" rel=\"noopener noreferrer\">release notes<\/a> for a full list of fixes.<\/p>\n<h2><strong>Upgrade As Soon As Possible:<\/strong><\/h2>\n<p>While we always encourage you to keep your firewalls up to date with the latest firmware, over the next few months we are recommending you rapidly apply maintenance releases to ensure you have all the important security, performance, and feature enhancements applied as soon as possible.<\/p>\n<p>Also ensure you have <a href=\"https:\/\/docs.sophos.com\/nsg\/sophos-firewall\/18.0\/Help\/en-us\/webhelp\/onlinehelp\/nsg\/sfos\/concepts\/PatternManage.html\" target=\"_blank\" rel=\"noopener noreferrer\">automatic pattern updates<\/a> enabled so that you can be assured you have the latest protection updates.<\/p>\n<p>XG Firewall v18 MR3 is an easy upgrade from XG Firewall v17 (MR6+) but be sure to check <a href=\"https:\/\/docs.sophos.com\/nsg\/sophos-firewall\/18.0\/releasenotes\/en-us\/nsg\/sfos\/releasenotes\/rn_HardwareSupport.html\" target=\"_blank\" rel=\"noopener noreferrer\">supported platforms<\/a>.<\/p>\n<p><strong>How To Get it:<\/strong><\/p>\n<p>As usual, this firmware update is no charge for all licensed XG Firewall customers. The firmware will be rolled-out automatically to all systems over the coming weeks but you can access the firmware anytime to do a manual update through the <a href=\"http:\/\/www.sophos.com\/MySophos?cmp=26058\" target=\"_blank\" rel=\"noopener noreferrer\">Licensing Portal<\/a>. You can refer to this article for more information on <a href=\"https:\/\/community.sophos.com\/kb\/en-us\/123285\" target=\"_blank\" rel=\"noopener noreferrer\">How to upgrade the firmware<\/a>.<\/p>\n<p><strong>Learning More about Upgrading to XG Firewall v18:<\/strong><\/p>\n<p>And if you still haven\u2019t upgraded to v18, or are still exploring many of the new features, be sure to take advantage of all the resources available including the recent \u201cMaking the Most of XG Firewall v18\u201d article series that cover all the great new capabilities in XG Firewall v18:<\/p>\n<ul>\n<li><a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/07\/products\/making-the-most-of-xg-firewall-v18\/\" target=\"_blank\" rel=\"noopener noreferrer\">Xstream architecture, DPI engine, and TLS inspection<\/a><\/li>\n<li><a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/07\/products\/making-the-most-of-xg-firewall-v18-part-2\/\" target=\"_blank\" rel=\"noopener noreferrer\">Xstream TLS Inspection for a modern encrypted Internet<\/a><\/li>\n<li><a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/08\/products\/making-the-most-of-xg-firewall-v18-part-3\/\" target=\"_blank\" rel=\"noopener noreferrer\">FastPath Application Acceleration and SD-WAN Routing<\/a><\/li>\n<li><a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/08\/products\/making-the-most-of-xg-firewall-v18-part-4\/\" target=\"_blank\" rel=\"noopener noreferrer\">Zero-day threat and ransomware protection<\/a><\/li>\n<li><a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/08\/products\/making-the-most-of-xg-firewall-v18-part-5\/\" target=\"_blank\" rel=\"noopener noreferrer\">Network address translation (NAT)<\/a><\/li>\n<li><a href=\"https:\/\/partnernews.sophos.com\/en-us\/2020\/08\/products\/making-the-most-of-xg-firewall-v18-part-6\/\" target=\"_blank\" rel=\"noopener noreferrer\">Route-based IPsec site-to-site VPN<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>The product team is pleased to announce a major new update for XG Firewall v18 with several great new enhancements. Security Emphasis Given how much working environments have changed this year, we have accelerated our product security investments, taking a [&hellip;]<\/p>\n","protected":false},"author":19,"featured_media":3000001634,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"advanced_seo_description":"","jetpack_seo_html_title":"","jetpack_seo_noindex":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[70],"tags":[25],"coauthors":[44],"class_list":["post-2062","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-products","tag-xg-firewall"],"jetpack_featured_media_url":"https:\/\/partnernews.sophos.com\/en-us\/wp-content\/uploads\/sites\/3\/2020\/07\/featured-image-xg-firewall-v18-1600x-960-horizontal.jpg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/posts\/2062","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/users\/19"}],"replies":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/comments?post=2062"}],"version-history":[{"count":1,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/posts\/2062\/revisions"}],"predecessor-version":[{"id":2091,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/posts\/2062\/revisions\/2091"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/"}],"wp:attachment":[{"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/media?parent=2062"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/categories?post=2062"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/tags?post=2062"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/partnernews.sophos.com\/it-it\/wp-json\/wp\/v2\/coauthors?post=2062"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}