Installing Sophos XG Firewall Home Edition

As an IT professional who values robust IT security at work and at home, I’m glad to see Sophos offering powerful solutions like the XG Firewall at no cost for home use.

In addition to this, you can also explore Sophos Home, a free antivirus solution that allows centralized management of up to three computers via a convenient management console.

Moreover, Sophos has long supported home users by offering its firewall solutions for free, including the Sophos UTM and Sophos XG Firewall. These tools provide enterprise-grade security features tailored for home environments, making them an excellent choice for tech-savvy individuals focused on securing their networks.

Here, we start First,

  • Click on the boot Button for the boot menu and select USB to install the Firewall on the PC
  • Before installing the firewall beware that the installation will completely erase the disk in the machine.
  • After starting the installer, you will receive a warning that the disk will be erased and the opportunity to stop the installation.
  • Press ‘y’ to continue. The installation will start, and after a short wait, it will tell you that it has finished. Remove the installer disk and press ‘y’ again to reboot the machine. After restarting, the system greets you with a password prompt.
  • Enter the default password: admin and press enter; next the End User License Agreement will show.
  • If you agree with the EULA, then press A, and the main menu will show.
  • The firewall is now ready to be set up from a web browser. It may however be convenient to first configure the IP address of the LAN interface. The default IP address is 172.16.16.16 which may not be reachable from the computer you use to configure the firewall. To change the IP address press 1 in the Main Menu for Network Configuration, then 1 for Interface Configuration. The system will show the currently configured and/or assigned IP addresses for the LAN and WAN interface. First, it will show the LAN interface (172.16.16.16/255.255.255.0), and then after continuing it will show details of the WAN interface.
  • After showing both interfaces the system asks if you want to set the IPv4 Address. Choose ‘y’ and Enter to do so and fill in the correct values for your own network.
  • After entering the correct values for use in your own network it will show the configuration is Done. The WAN port cannot be set from here at this time. After confirming the system will ask if you want to also set the IPv6 Address. If necessary then do so, otherwise just hit Enter for no.

The Network configuration menu will show again. Press 0 to exit to the main menu and 0 again to exit from the menu and log out.

  • After setting up and preparing the IP address of the firewall it’s time to start a browser on your management computer and browse to: https://<ipaddress>:4444 where <ipaddress>, of course, is the IP address you have given the firewall’s LAN port.

You will see a certificate warning when you open the page. This is because of a self-signed certificate on the firewall.

  • It is safe to skip this specific warning, so by clicking on Advanced, you can continue loading the website (different web browsers may show the warning somewhat differently).
  • After clicking on ‘Click to begin’ you first need to change the default admin password. Also if the WAN port is already connected correctly (DHCP address from modem or router) then you can leave the checkbox to install the latest firmware automatically during setup enabled. Also, you need to once more accept the EULA and acknowledge Sophos’ Privacy Policy to continue.
  • After continuing, you’ll need to set up the firewall’s name and time zone.
  • The next step is to register the firewall (you can skip this step for the first thirty days, but after this time you must register to keep the firewall up and running. You will have received the serial number by email after step 1 of this instruction.
  • After entering the serial number your firewall should be registered. For this, you need to create a Sophos ID or log in to it if you already have one. From your Sophos I, D you will always have access to your serial number and downloads at a later time.
  • After registering the license can immediately be synchronized with your firewall
  • After continuing the next step is to configure the LAN settings. Your IP address is most likely already configured correctly, but you can also enable a DHCP server on the LAN if you need it or just disable it if you don’t.

Then the setup will ask you if and which network protection features you would like to need.

  • The first three options are valid for Home Use, the last one about Sandstorm will not work for the home use version.

The explanation under each of the features should be enough explanation.
The next step is to configure whether or not you would like to receive weekly backups by email automatically.

  • If you do want to receive the weekly backups, you also need to enter a password that is used to protect the configuration backup files. Do not lose this password, otherwise, you will not be able to restore the backup at a later moment.

Next, the system will show you a summary of all the selected options during the installation, and after clicking on Finish the system will apply all the settings and restart automatically after it finishes.

You can now just wait, the page will refresh once the firewall has restarted and it will show you the login screen.

Leave A Comment

Your email address will not be published. Required fields are marked *