Sophos Unveils Firewall to Boost Threat Detection and Management Capabilities

Sophos, a global leader in cybersecurity, has announced the release of Sophos Firewall v21.5, a major software update that enhances both protection and incident response across its firewall platform.

The update introduces Sophos Network Detection and Response (NDR) Essential, along with a suite of upgrades designed to simplify administration and boost performance.

Advanced Threat Detection with AI

At the heart of the update is the integration of Sophos NDR Essential, now available at no additional cost to all customers with an XStream Protection license.

This enhancement empowers Sophos Firewall with two dedicated artificial intelligence engines capable of detecting malware communications, including those using algorithmically generated domain names (DGAs)—even if they’ve never been seen before.

“NDR traffic analysis requires substantial processing power,” said Chris McCormack, Senior Product Marketing Manager at Sophos.

“To address this, we’ve deployed the NDR solution in Sophos Cloud, offloading heavy tasks from the firewall itself while maintaining rapid detection capabilities.”

This integration builds upon Sophos’s Active Threat Response system, offering organizations stronger defenses against advanced and unknown threats.

Enhanced VPN and Identity Integration

Sophos Connect, the company’s VPN client, now supports Microsoft Entra ID (formerly Azure AD) for single sign-on (SSO) and multi-factor authentication (MFA). This improvement applies to both SSL and IPsec VPN connections, streamlining secure access for remote users.

Other VPN enhancements include:

  • Simplified interface terminology: “Site-to-site” VPNs are now labeled “policy-based,” while “tunnel interfaces” are termed “route-based” for clarity.
  • Dynamic IP pool validation: Reduces conflicts in IP assignments across various VPN types.
  • Stricter IPsec profile enforcement: Ensures algorithm compatibility, preventing connection issues.
  • Improved scalability: Now supports 3,000 VPN tunnels, 1,000 SD-RED site-to-site tunnels, and up to 650 concurrent SD-RED devices.

Streamlined Administration

Sophos Firewall v21.5 introduces a range of quality-of-life improvements for administrators:

  • Flexible DHCP-PD (IPv6): Expanded support for /48 to /64 prefixes.
  • Default activation of RA and DHCPv6 servers.
  • Resizable columns and a more responsive web admin interface for ultra-wide screens.
  • Smarter object search: Broader criteria for SD-WAN routing and ACL rule configuration.
  • Simplified default setup: Fewer preconfigured firewall rules for a cleaner initial configuration.

Secure by Design

Sophos reaffirms its commitment to a secure-by-design architecture. The firewall now uses containerization to isolate critical functions and implements integrity checks using mathematical checksums. If a checksum mismatch is detected, it triggers an alert, enabling security teams to respond rapidly to potential compromises of the operating system.

Availability

Sophos Firewall v21.5 is now available for manual download to all customers with a valid license. The update reflects Sophos’s ongoing mission to deliver proactive, AI-powered cybersecurity solutions tailored to modern enterprise challenges.

Leave a Reply

Your email address will not be published. Required fields are marked *

Next Post

Ashok Shah named CEO of the Year Award at 2025 African Insurance Awards

Fri Jun 6 , 2025
Share on Facebook Tweet it Share on Reddit Pin it Share it Email Ashok Shah, Group CEO of APA Apollo Group, has been honoured with the prestigious CEO of the Year award at the 10th African Insurance Awards hosted by Africa Re in Addis Ababa, Ethiopia. The awards ceremony, which has become a benchmark of excellence […]

You May Also Like

Chief Editor

Jacktone Lawi

Meet Jacktone Lawi, a seasoned technology journalist with years of experience in the industry. I have developed my passion for technology during my formative years, which has been instrumental in shaping my career trajectory. My expertise lies in reporting on emerging technologies and their impact on businesses and consumers worldwide. Through my experience I’m well-versed in covering topics such as artificial intelligence, blockchain, cybersecurity, cloud computing, and digital transformation, among others. Throughout my career, I have has demonstrated an exceptional ability to distill complex technical information into accessible and engaging content that resonates with my readers. My writing style is clear, concise, and informative, allowing me to communicate even the most technical concepts to a broad audience. Beyond my writing skills, I have also become known for extensive network of industry contacts and ability to secure exclusive interviews with high-profile figures in the technology world. These connections have enabled me to gain unique insights into the latest trends and developments in the field, giving me a competitive edge in my reporting. In addition to my work as a journalist, I’m also actively engaged in the broader technology community. Where I regularly attend conferences and events, share insights and stays up-to-date on the latest innovations in the industry. Overall, my wealth of experience as a technology journalist have given me a deep understanding of the industry and its impact on society.

Quick Links