What does Sophos basic functionality include?

Each Sophos hardware provides the following basic functionality:

Networking and SD-WAN

The network includes wireless connections and SD-WAN (Software-Defined Wide Area Network). It also includes an application-aware routing technology that optimizes network traffic based on the type of application. Additionally, traffic shaping is used to manage bandwidth efficiently and ensure that critical applications are prioritized.

Protection and Performance

The XStream architecture provides both protection and high performance through the Network Flow FastPath, which enables fast network connections. TLS 1.3 inspection ensures the security of encrypted traffic. Deep Packet Inspection deeply analyzes data packets to effectively detect and prevent threats.

SD-WAN and VPN

The Xstream SD-WAN technology optimizes connection quality and speed between different locations. The solution supports unlimited IPsec/SSL site-to-site and remote access VPN connections, enabling secure connections over the internet. With SD-RED (Remote Ethernet Device) site-to-site solutions, remote locations can be securely and cost-effectively integrated.

Reporting

The system offers comprehensive logging and reporting functionality directly on the device, allowing for tracking and analysis of network activities. Additionally, Sophos Central Cloud Reporting provides cloud-based data storage and reporting with a retention period of seven days.

What does the Sophos Standard Protection Bundle include?

The Standard Protection Bundle offers the following features in addition to the basic functionality of each Sophos device:


   
Network Protection

The network protection solutions include the XStream TLS and DPI engine (Deep Packet Inspection), which enable deep analysis and inspection of encrypted traffic. Intrusion Prevention System (IPS) protects against network attacks, and Advanced Threat Protection (ATP) detects and blocks advanced threats. Security Heartbeat integrates security status information from endpoints into network monitoring. The management of SD-RED (Remote Ethernet Device) allows for the integration and management of remote locations. Detailed reporting helps with monitoring and analyzing network security.

Web Protection

The web protection solutions also use the XStream TLS and DPI engine to inspect and secure web traffic. Web Security and Web Control offer protection against web-based threats and allow for the control and filtering of web content. Application Control enables the control and management of applications on the network. Extensive reporting provides detailed reports on web activities.

Enhanced Support

 

Enhanced support includes 24/7 support, which is available around the clock, as well as regular feature updates to ensure that the systems are always up to date. Additionally, the advance replacement of hardware during the term provides a guarantee that ensures quick replacement in the event of hardware failure.

 

What does the Sophos Xstream Protection include?

The Sophos Xstream Protection offers the following features in addition to the Standard Protection:

Zero-Day Protection

Protection against zero-day threats includes the use of machine learning and sandboxing for file analysis. These technologies detect and isolate unknown threats before they can cause damage. Extensive reporting allows for tracking and analysis of analyzed files and detected threats.

/td DNS Protection

The cloud-based DNS service provides web security and ensures compliance. By monitoring and filtering DNS traffic, it protects against malicious websites and prevents access to unauthorized content.

Central Orchestration

 

The central orchestration includes SD-WAN VPN orchestration for optimizing and managing VPN connections between locations. The Central Firewall Advanced Reporting provides detailed reporting with data retention of 30 days. Additionally, the MDR/XDR Connector enables the integration of Managed Detection and Response (MDR) and Extended Detection and Response (XDR) for advanced threat detection and prevention.