Deploy a Sophos Firewall on Antyxsoft Cloud
Next-generation firewall in front of your cloud estate — IPS, web and application control, VPN and TLS inspection, managed from one console.
- By
- Sophos
- OS
- Sophos Firewall OS
- Version
- 22
- Licence
- Sophos licence required (own or via Antyxsoft)
Create an instance, pick Marketplace App at the template step, and choose it from the list. You pay for the instance.
What Sophos Firewall gives you
Sophos Firewall is a next-generation firewall: as well as filtering by address and port it inspects traffic for intrusion attempts, identifies applications regardless of port, filters web categories and terminates VPNs — all administered from a single console with reporting attached.
Deployed as an instance in your Antyxsoft environment it becomes the controlled edge for everything behind it, so workloads sit on private networks rather than on public IPs.
Key features
- Intrusion prevention. Signature and behaviour-based detection on traffic in both directions.
- Application control. Identify and police applications independently of the port they use.
- Web filtering. Category and reputation filtering with per-group policy.
- VPN. Site-to-site and remote-access tunnels terminated at the firewall.
- Central reporting. Traffic, threat and policy reporting from one console.
What is in the image
| Operating system | Sophos Firewall OS 22 |
|---|---|
| Application | Preconfigured Sophos Firewall image |
| Access | Web administration console; licence applied at first boot |
| Suggested size | From 4 vCPU / 8 GB RAM; scale with inspected throughput |
Good fit for
- Regulated environments A documented, inspected perimeter for an audit.
- Hybrid networks One policy across office and cloud, joined by site-to-site VPN.
- Estate consolidation Replace scattered per-instance rules with a managed edge.
Getting started
Four steps from sign-in to a running application. The full walkthrough, with screenshots, is in the knowledge base.
-
01
Log in to the Cloud Portal
Sign in at portal.antyxsoft.io and start creating an instance, choosing the region closest to your users.
-
02
At Select Template, open Marketplace App
In the instance creation flow, switch from operating-system images to the Marketplace App tab.
-
03
Pick the template and deploy
Select the ready-to-go template, confirm the plan and region, then review and deploy. The instance boots with the application installed.
-
04
Finish the application setup
Open the administration console, apply your licence, then define zones, interfaces and the first policy set before moving workloads behind it.
Before it carries real traffic
- Attach a Cloud Firewall that opens only the ports this application needs, with management access limited to your own addresses.
- Schedule backups covering both the database and the application's data directory.
- Add a Block Storage volume for data that will outgrow the instance disk.
- Put it inside a VPC when it needs private access to other services.
Support
Antyxsoft supports the image and the infrastructure it runs on. Application-level questions are also covered by the upstream project's own documentation and community.
What is covered
Antyxsoft covers
The image itself, deployment problems, the instance, storage, network and platform availability.
You control
Configuration, add-ons, content, application updates and anything you change inside the guest.
Need it managed?
Ask about managed operations — updates, monitoring and backup handled for you.
Frequently asked questions
Do I need a Sophos licence?
What size instance does it need?
Can it join our office network?
More in this category
FortiGate Firewall
Next-generation firewall capabilities in the cloud: IPS, VPN and application-aware traffic inspection.
Learn more → SecurityHaltdos WAF
Put a web application firewall in front of your sites and APIs, with OWASP rules, bot control and DDoS mitigation.
Learn more → SecurityKeycloak
Add single sign-on, MFA and user federation to your applications without handing identity to a third party.
Learn more → SecurityPasswordLab
Give the team a shared password vault that lives on your own instance, not in someone else's cloud.
Learn more → SecurityPritunl
Run a VPN server your team can actually administer — users, MFA and routes from a web console.
Learn more → SecurityWazuh
Monitor your estate for intrusions, configuration drift and compliance gaps with an open-source SIEM you host yourself.
Learn more → SecurityWireGuard
Stand up a private VPN gateway in minutes and reach your infrastructure without exposing it to the internet.
Learn more →A perimeter you can show an auditor
Deploy Sophos Firewall in your region and put inspection, filtering and VPN under one policy.