Do you recognize a good idea when you see one? We want to hear from you!
Header Image

UTM (Formerly ASG) Feature Requests

Do you have an idea for Sophos UTM? Do you recognize a good idea when you see one? We want to hear from you!

I suggest you ...

You've used all your votes and won't be able to post a new idea, but you can still search and comment on existing ideas.

There are two ways to get more votes:

  • When an admin closes an idea you've voted on, you'll get your votes back from that idea.
  • You can remove your votes from an open idea you support.
  • To see ideas you have already voted on, select the "My feedback" filter and select "My open ideas".
(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. Can I please make a request to add an app to Application Control.

    Altaro Hyper-V Backup Server

    http://www.altaro.com

    It works on the following default ports.

    Control: 35101

    Data: 35109-35111

    1 vote
    Vote
    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • facebook
    • google
      Password icon
      Signed in as (Sign out)
      You have left! (?) (thinking…)
      0 comments  ·  Flag idea as inappropriate…  ·  Admin →
    • Block google inappropiate images

      The Google Safe Search is totally inadequate in a school environment, particularly when searching images. Does Sophos have a solution for controlling inappropriate images on the internet/Google Images. With Google Safe Search on you can go to Google Images and search for anything inappropriate and find it. I Sophos does not have a solution for this are they likely to be implementing something very soon, as I can’t see schools using their UTM if they don’t have a solution for this.

      1 vote
      Vote
      Sign in
      Check!
      (thinking…)
      Reset
      or sign in with
      • facebook
      • google
        Password icon
        Signed in as (Sign out)
        You have left! (?) (thinking…)
        0 comments  ·  Web Protection  ·  Flag idea as inappropriate…  ·  Admin →
      • load balancer

        The server load balancing currently in ASG 9.3 works great on our internal/private network. I attempted to make it publicly accessible and failed. Sophos support just informed me the load balancer can only be used on a private network. They've stated dnat can not be used with the load balancer to load balance publicly accessible servers. I suggest this feature be added to a future release.

        3 votes
        Vote
        Sign in
        Check!
        (thinking…)
        Reset
        or sign in with
        • facebook
        • google
          Password icon
          Signed in as (Sign out)
          You have left! (?) (thinking…)
          0 comments  ·  Network Protection  ·  Flag idea as inappropriate…  ·  Admin →
        • When a virus is detected in memory, there is no information in SEC about process.

          When a virus is detected in memory, there is no information in SEC about process.

          In local log file there is something like
          Process "C:\Windows\SysWOW64\rundll32.exe" belongs to virus/spyware 'Troj/VundoMem-A'.
          where (in this case) complete command line is
          "C:\Windows\System32\rundll32.exe" "C:\Users\<USER>\AppData\Roaming\sfc_os2.dll",NRQOR

          When virus is cleaned in memory there are information about process ID:
          Process "C:\Windows\SysWOW64\rundll32.exe:pid:0000085c" has been cleaned

          With this information we located the process (had get process list before cleaning) and found complete command line.
          That let us to locate sfc_os2.dll file, than sophos doesn't detect as virus at that moment.

          I sugest two items:
          - Log more information about process…

          1 vote
          Vote
          Sign in
          Check!
          (thinking…)
          Reset
          or sign in with
          • facebook
          • google
            Password icon
            Signed in as (Sign out)
            You have left! (?) (thinking…)
            0 comments  ·  HA/Clustering  ·  Flag idea as inappropriate…  ·  Admin →
          • Add support for Dynamic DNS with Google Domains

            Please add support for Dynamic DNS with Google Domains.

            3 votes
            Vote
            Sign in
            Check!
            (thinking…)
            Reset
            or sign in with
            • facebook
            • google
              Password icon
              Signed in as (Sign out)
              You have left! (?) (thinking…)
              0 comments  ·  Networking  ·  Flag idea as inappropriate…  ·  Admin →
            • Flush Rcpt verification cache Button

              Flush Rcpt verification cache Button

              3 votes
              Vote
              Sign in
              Check!
              (thinking…)
              Reset
              or sign in with
              • facebook
              • google
                Password icon
                Signed in as (Sign out)
                You have left! (?) (thinking…)
                0 comments  ·  Mail Protection  ·  Flag idea as inappropriate…  ·  Admin →
              • DS Lite

                Please support DS-Lite, including the option to receive all via DHCPv6 or to configure options such AFTR manually

                3 votes
                Vote
                Sign in
                Check!
                (thinking…)
                Reset
                or sign in with
                • facebook
                • google
                  Password icon
                  Signed in as (Sign out)
                  You have left! (?) (thinking…)
                  0 comments  ·  Networking  ·  Flag idea as inappropriate…  ·  Admin →
                • SUM web excep

                  It would be extremely helpful to create whitelists in the SUM>Configuration>Web Filtering>Exceptions that can be deployed to the UTMs and then assigned to groups. The UTM has the functionality, however since the exception list is pushed from the SUM it isn't editable. If the SUM would import the groups and allow the list to be deployed with the options currently in the UTM this would make life a lot easier in keeping up with whitelists/exceptions across multiple UTMs.

                  1 vote
                  Vote
                  Sign in
                  Check!
                  (thinking…)
                  Reset
                  or sign in with
                  • facebook
                  • google
                    Password icon
                    Signed in as (Sign out)
                    You have left! (?) (thinking…)
                    0 comments  ·  Web Protection  ·  Flag idea as inappropriate…  ·  Admin →
                  • Show date of posts here ...

                    Show date of posts here ...

                    1 vote
                    Vote
                    Sign in
                    Check!
                    (thinking…)
                    Reset
                    or sign in with
                    • facebook
                    • google
                      Password icon
                      Signed in as (Sign out)
                      You have left! (?) (thinking…)
                      0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                    • Changes in Voucher Creation

                      Setting the field "comment" in voucher creation as a required field because it is important to be filled with the guest’s name in order to assign it to. Additionally to hide the field “delete” for all authorized voucher creators except for Sophos administrators.

                      3 votes
                      Vote
                      Sign in
                      Check!
                      (thinking…)
                      Reset
                      or sign in with
                      • facebook
                      • google
                        Password icon
                        Signed in as (Sign out)
                        You have left! (?) (thinking…)
                        0 comments  ·  Wireless Protection  ·  Flag idea as inappropriate…  ·  Admin →
                      • A customer wants to at least 1 line of the mailtext in the quarantine report to decide better what is spam

                        A customer wants to at least 1 line of the mailtext in the quarantine report to decide better what is spam

                        1 vote
                        Vote
                        Sign in
                        Check!
                        (thinking…)
                        Reset
                        or sign in with
                        • facebook
                        • google
                          Password icon
                          Signed in as (Sign out)
                          You have left! (?) (thinking…)
                          0 comments  ·  Mail Protection  ·  Flag idea as inappropriate…  ·  Admin →
                        • Allow notifications to be sent to different recipients.

                          At the moment it is only possible to send all notifications to the same email recipients. It would be good to have the ability to customise each alert with its own set of recipients, then we can filter notifications to the relevant support team.

                          3 votes
                          Vote
                          Sign in
                          Check!
                          (thinking…)
                          Reset
                          or sign in with
                          • facebook
                          • google
                            Password icon
                            Signed in as (Sign out)
                            You have left! (?) (thinking…)
                            0 comments  ·  Notifications  ·  Flag idea as inappropriate…  ·  Admin →
                          • Name field for Firewall Rules

                            Being able to assign a firewall rule a name that can be tracked through the life of the rule is a great tool to help manage your firewall. If the name also shows up in the logs especially live log it is incredibly useful

                            You don't need to try and track a rule by a number that keeps changing as rules are added or deleted, simply track the rule name.

                            This feature is available in other UTM and firewall products. From someone who's used the feature for many year it is definitely something I miss in the UTM

                            48 votes
                            Vote
                            Sign in
                            Check!
                            (thinking…)
                            Reset
                            or sign in with
                            • facebook
                            • google
                              Password icon
                              Signed in as (Sign out)
                              You have left! (?) (thinking…)
                              1 comment  ·  Network Protection  ·  Flag idea as inappropriate…  ·  Admin →
                            • Improve the grid view, in the email security product.

                              The current grid view is 'sortable' but columns are not resizable, nor filterable. In either the Admin view (search results), or the end user view.

                              This should be pretty straightforward these days.

                              1 vote
                              Vote
                              Sign in
                              Check!
                              (thinking…)
                              Reset
                              or sign in with
                              • facebook
                              • google
                                Password icon
                                Signed in as (Sign out)
                                You have left! (?) (thinking…)
                                0 comments  ·  Mail Protection  ·  Flag idea as inappropriate…  ·  Admin →
                              • Add the ability for end users who log in to the portal to have similar search functionality as an admin has.

                                Admin's can search the Quarantine bucket as well as Mail Logs and Queues. End users who pop into their portal view only get a static view of their "Blocked' Messages. This grid is not filterable, resizeable or searchable. It should be.

                                We've only been using the product for about a month and I personally have 142 pages of blocked content. Which makes it difficult to locate a message that was quarantined by mistake. A search would make this 100x easier and more useful.

                                1 vote
                                Vote
                                Sign in
                                Check!
                                (thinking…)
                                Reset
                                or sign in with
                                • facebook
                                • google
                                  Password icon
                                  Signed in as (Sign out)
                                  You have left! (?) (thinking…)
                                  0 comments  ·  Mail Protection  ·  Flag idea as inappropriate…  ·  Admin →
                                • Installation improvements: WebAdmin access informaiton & Shell Access

                                  During the installation of the UTM software, the user should have the option to enable shell access and specify loginuser and root passwords as the UTM can become inaccessible if there are networking/interface issues. Also, the installation process should display the webadmin access information, in the event the interfaces change.

                                  1 vote
                                  Vote
                                  Sign in
                                  Check!
                                  (thinking…)
                                  Reset
                                  or sign in with
                                  • facebook
                                  • google
                                    Password icon
                                    Signed in as (Sign out)
                                    You have left! (?) (thinking…)
                                    0 comments  ·  Usability/GUI  ·  Flag idea as inappropriate…  ·  Admin →
                                  • Add two more entries to the 20-nic.rules file to disable TSO to eliminate NIC hangs and resets

                                    I recently had case #522827 where it was determined I needed to add two entries to the 20-nic.rules file to disable TSO to stop getting NIC hang and reset notifications.
                                    The NIC's in use are

                                    Intel Corporation 82579LM 8086:1502
                                    Intel Corporation 82571EB 8086:105e

                                    # e1000e: disable TSO for Intel 82579LM
                                    SUBSYSTEM=="net", ACTION=="add", ATTRS{vendor}=="0x8086", ATTRS{device}=="0x1502", RUN+="/lib/udev/nic-disable-tso"

                                    # e1000e: disable TSO for 82571EB (errata 7, #34608)
                                    SUBSYSTEM=="net", ACTION=="add", ATTRS{vendor}=="0x8086", ATTRS{device}=="0x105e", RUN+="/lib/udev/nic-disable-tso"

                                    1 vote
                                    Vote
                                    Sign in
                                    Check!
                                    (thinking…)
                                    Reset
                                    or sign in with
                                    • facebook
                                    • google
                                      Password icon
                                      Signed in as (Sign out)
                                      You have left! (?) (thinking…)
                                      0 comments  ·  Operating System  ·  Flag idea as inappropriate…  ·  Admin →
                                    • Scheduled reboot via web GUI when adding NICs in VMware

                                      When adding new NICs for the Sophos UTM if the UTM is a VM in VMware, a reboot is required - please add a scheduled task via the Web GUI to reboot the UTM?

                                      1 vote
                                      Vote
                                      Sign in
                                      Check!
                                      (thinking…)
                                      Reset
                                      or sign in with
                                      • facebook
                                      • google
                                        Password icon
                                        Signed in as (Sign out)
                                        You have left! (?) (thinking…)
                                        0 comments  ·  Management  ·  Flag idea as inappropriate…  ·  Admin →
                                      • UTM's Radius client: need to support PAP protocol

                                        The UTM's radius client supports only PEAP (MS-CHAP). Could you please add PAP?

                                        The use case is a proxy radius server that communicate via a strong authenticated SSL tunnel with a 2fA server in the cloud. The UTM's radius client must use PAP protocol to forward the password in clear-text to the proxy radius server that will forward in a secure way the auth request in the Cloud.

                                        3 votes
                                        Vote
                                        Sign in
                                        Check!
                                        (thinking…)
                                        Reset
                                        or sign in with
                                        • facebook
                                        • google
                                          Password icon
                                          Signed in as (Sign out)
                                          You have left! (?) (thinking…)
                                          0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
                                        • HTML5 VPN Portal : accept to submit auth form without password

                                          The authentication form of the HTML5 VPN portal requires to provide a password to be able to submit, probably checked by a javascript in the authentication page. Please remove or disable this control and accept to submit the auth form with an empty password (no password).

                                          The use case is a 2fA authentication server that accepts PUSH mode. The radius server will forward to the 2fA server the request containing only the username (no password) and PUSH a notification to the user's mobile. The user will unlock his mobile, open the 2fA application and provide his security PIN code. The…

                                          3 votes
                                          Vote
                                          Sign in
                                          Check!
                                          (thinking…)
                                          Reset
                                          or sign in with
                                          • facebook
                                          • google
                                            Password icon
                                            Signed in as (Sign out)
                                            You have left! (?) (thinking…)
                                            0 comments  ·  Authentication  ·  Flag idea as inappropriate…  ·  Admin →
                                          ← Previous 1 3 4 5 112 113
                                          • Don't see your idea?

                                          Feedback and Knowledge Base