Sophos UTM 9.6 is now available

CorporateNetworkSophos UTMUTMUTM 9.6

Sophos UTM 9.6 is out now! Here’s what’s included in the new release.

You know the old saying, “The rich get richer”? Well, our UTM 9 platform is feature rich, but every year we pack more and more features into it. This year is no exception with our UTM 9.6 release.

Here’s what’s included in UTM 9.6

Let’s Encrypt integration

  • Generate and renew Let’s Encrypt certificates from within the UTM
  • Generated certificates can be used in all UTM components

Web Application Firewall (WAF) page customization

  • Custom themes for all error pages that are delivered via the WAF
  • Enables the use of a custom corporate identity on all pages

Manual Sandstorm submission

  • Allows an admin to upload a file for detonation within Sophos Sandstorm
  • Files that have not been received via email or web download can also be analyzed with Sophos Sandstorm

Persistent Sandstorm reports

  • Enhanced reporting for Sandstorm activity over time and with historic information
  • Reporting also covers hash lookup based results from Sophos Sandstorm

Other enhancements

  • Unified RED firmware with improved 3G/4G support
  • Submission port support in SMTP proxy
  • Configurable listen address in SMTP proxy
  • New advanced thread protection library with better performance and protection

The full release notes can be found on the Sophos Community.

How to get it

The release will be rolled out automatically in phases over the coming weeks. For anyone that wants the latest and greatest now, you can download the latest firmware yourself.

If you have any questions, check out the Sophos UTM 9 Community Forums.


No IKEv2?


Hi, adding IKEv2 support would have significantly delayed v9.6. It may be considered for a future release. IKEv2 support is available in XG Firewall.


I am sorry to say that i have evaluated XG but it does not have the VPN capabilities of SG. In order to nat multiple networks to one we have to add static route via CLI towards the ipsec interface. IF you have more than 40 VPN Tunnels is just annoying.
IKEv2 is a ten year feature request for SG, For me, that i use Sophos from Version v.7.xx (Astaro) is very disappointing to see a great product such SG to be overthrown in development by XG.
Please read the forums . XG(a nice version of Cyberoam) has years of development to be like SG in stability and flexibility.Yes XG has Intercept X and a very good filtering, but in everyday use with a complicated environment is where SG shines.
So i am asking you will SG ever receive IKEv2?


Leave a Reply

Fill in your details below or click an icon to log in: Logo

You are commenting using your account. Log Out /  Change )

Google+ photo

You are commenting using your Google+ account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s

This site uses Akismet to reduce spam. Learn how your comment data is processed.