Description
Sophos XGS 2300 Firewall Appliances -XG2CTCHAU
+
Sophos Xstream Protection - 39 MOS - XS230039ZZNCAA
XGS Series
Next-Gen Firewall Appliances
- Real-Time Threat Protection
- Easy and Flexible Deployment
- Single Point of Security Management
- Patented Layer-8 Identity control
- Service Length #: 39 months License

XGS Series Next-Gen Firewall Appliances
Distributed Edge: 1U Models

Mid-sized and distributed organizations in need of a versatile solution to power and protect their network will be well-served with our 1U models. These rackmount firewalls offer excellent performance, a diverse range of high-speed interfaces built-in, and a choice of add-on connectivity modules. Whether your priority is ensuring maximum uptime for your SD-WAN links, securely connecting your remote users, or protecting the network in a growing organization, you can tailor them to your dynamic environment.
All models are powered by a high-speed CPU plus a dedicated Xstream Flow Processor for hardware acceleration.
Performance |
|
| Firewall | 39,000 Mbps |
| TLS Inspection | 1,450 Mbps |
| Firewall IMIX | 20,000 Mbps |
| IPS | 7,000 Mbps |
| IPsec VPN | 20,500 Mbps |
| NGFW | 6,300 Mbps |
| Threat Protection | 1,500 Mbps |
| Latency (64 byte UDP) | 4 µs |
Connectivity |
|
| Ethernet Interfaces (Fixed) | 8 x GE copper |
| 2 x SFP Fiber* | |
| Bypass Port Pairs (Fixed) | 1 |
| Max. Port Density (incl. modules) | 18 |
| Management Interfaces | 1 x RJ45 MGMT |
| 1 x COM RJ45 | |
| 1 x COM Micro-USB | |
| Other I/O Interfaces | 2 x USB 3.0 (front) |
| 1 x USB 2.0 (rear) | |
| Max. PoE (using Flexi Port Module) | 1 Module: 4 Ports, 60W max. |
Modularity |
|
| Flexi Port Slots | 1 |
| Other Optional Add-On Modules | SFP VDSL modem |
| Transceivers | |
| Flexi Port Modules (Optional) | 8 port GE copper |
| 8 port GE SFP Fiber* | |
| 4 port 10GE SFP+ Fiber* | |
| 4 port GE copper bypass (2 pairs) | |
| 4 port GE copper PoE + 4 port GE copper | |
| 4 port 2.5 GE copper PoE | |
| 2 port GbE Fiber (LC) bypass + 4 port GbE SFP Fiber | |
Redundancy |
|
| 2nd Power Supply | Optional external |
Performance Test Methodology
| General | Maximum throughput measured under ideal test conditions using industry standard Keysight-Ixia BreakingPoint test tools. Actual performance may vary depending on network conditions and activated services. |
| Firewall | Measured using HTTP traffic and 512 KB response size |
| Firewall IMIX | UDP throughput based on a combination of 66 byte, 570 byte and 1518 byte packet sizes |
| IPS | Measured with IPS with HTTP traffic using default IPS ruleset and 512 KB object size. |
| IPsec VPN | HTTP throughput using multiple tunnels and 512 KB HTTP response size |
| TLS inspection | Performance measured with IPS with HTTPS sessions and different cipher suites. |
| Threat Protection | Measured with Firewall, IPS, Application Control, and malware prevention enabled using HTTP 200 KB response size |



