Skip to Content
Company: Banner with Media - Background

Sophos Switch software features

Sophos Switch software features

Sophos Switch Series: Features and configuration options

All Sophos switches offer a broad feature set and extensive configuration options. The following is a non-exhaustive list of key features and capabilities that are available via Sophos Central, the Local User Interface, or both.

 

Management and configurationFeature availability by model
Active Threat Response
Integration with Sophos MDR/XDR
All models (requires a valid Sophos support subscription)
Sophos Central switch stackingAll models (requires a valid Sophos support subscription)
Switch auto-discoveryAll models
Dynamic VLAN configurationAll models (GVRP)
Switch auto-discoveryAll models
Dynamic VLAN configurationAll models (GVRP)
IEEE 802.1D MAC Bridging/STP (RSTP-compatible)All models
Link Aggregation Groups (LAGs), # of ports supportedAll models, up to 8
LAG sizeAll models, 8
IGMP snoopingAll models
802.1x AuthenticationAll models
802.1x MAC Authentication Bypass (MAB): host, port, and fallbackAll models
Syslog collectionAll models
IP/MAC ACLAll models
Jumbo framesYes,
CS101-8/8FP: Size 9K, per system setting,
Other models: Size 10K, per port setting
Auto-negotiation for port speed and duplexAll models
MDI/MDIX auto-crossoverAll models
IEEE 802.1D MAC Bridging/Spanning Tree Protocol (STP)All models
IEEE 802.1w Rapid Spanning Tree Protocol (RSTP)All models
IEEE 802.1s Multiple Spanning Tree Protocol (MSTP)All models
Edge port/port fastAll models
IEEE 802.1Q VLAN TaggingAll models
Guest VLAN and voice VLANAll models
IEEE 802.3ad Link Aggregation Control Protocol (LACP)All models
Unicast/multicast traffic balance over trunk portAll models
IEEE 802.1AX Link AggregationAll models
Spanning Tree Instances (MSTP/CST)All models
IEEE 802.3x Flow Control and Back PressureAll models
IEEE 802.3 10Base-TSophos Switch 100 Series only
IEEE 802.3u 100Base-TXAll models
IEEE 802.3z 1000Base-SX/LXAll models
IEEE 802.3ab 1000Base-TAll models
IEEE 802.3bz Multi-Gigabit EthernetAll models that support 2.5 GE and above
IEEE 802.3 CSMA/CD access method and physical layer specificationsAll models
Storm controlAll models
Port mirroringAll models
DHCP relayAll models
Security and visibilityFeature availability by model
Max. ACL groups128 for all models
Max. ACL entries per group2 for CS101-8/8FP; 8 for all other models
IP Source GuardAll models (Uses 1 ACL group if enabled)
IEEE 802.1x Authentication Port-BasedAll models
IEEE 802.1x Guest VLANAll models
IEEE 802.1ab Link Layer Discovery Protocol (LLDP)All models
IEEE 802.1ab LLDP-MEDLLDP MED PoE models only
DHCP snoopingAll models
Cisco Discovery Protocol (CDP) complianceAll models
MAC address filteringAll models
Priority tag - packet ingress filteringAll models
Quality of serviceFeature availability by model
IEEE 802.1p Priority QueuingAll models
IP TOS/DSCP Priority QueuingAll models
Continuous Power over Ethernet (PoE)All models with PoE except CS101-8FP
ManagementFeature availability by model
IPv4 and IPv6 Management
IP Assignment Supports DHCP or Static Address
All models
SSHAll models
HTTPSAll models
SNMP v1/v2c/v3All models
SSH, Web Interface, and REST APIAll models
Sophos CentralAll models
RFC and MIB supportFeature availability by model
DHCP ClientAll models
RFC 854 Telnet ServerAll models
RFC 2865 RADIUS (for 802.1x Authentication)All models
RFC 1643 Ethernet MIBAll models
RFC 1213 MIB-IIAll models
RFC 1157 SNMPv1/v2cAll models
RFC 2618 RADIUS Authentication Client MIBAll models
RFC 1493 Bridge MIBAll models