Sophos XG Update v18.0 GA - Build 339 released
Sophos has released version 18.0 GA Build 339 for Sophos Firewall OS (SFOS). You can now download the new firmware from the MySophos portal.
All new features in v18 have already been presented in detail in a separate article: Sophos SFOS v18: New features at a glance
This update is particularly relevant for environments that want to upgrade from version 17.5 MR10 to v18.0 GA Build 339.
Enable/disable SSL/TLS inspection
The new build introduces a toggle that lets you explicitly enable or disable SSL/TLS inspection rules. This small but important switch is especially relevant for environments upgrading from SFOS version 17.5. By default, the new function is disabled to avoid issues during the upgrade. If you want to use the new DPI engine, you have to actively turn on SSL/TLS inspection.

When you enable SSL/TLS inspection, the following behaviour applies:
- All traffic is inspected to determine whether it is SSL/TLS traffic.
- The configured SSL/TLS rules are applied.
- Traffic is decrypted by the DPI engine so that web policies also take effect.
- The corresponding widget on the dashboard is enabled and its values are updated.
Bug fixes
- NNC-54339 [Config Migration Framework] v17.5 MR-10 to v18.0 GA migration support
- NC-56550 [Policy Routing] SD-WAN policy routing screen smudge with blue strip
- NC-56201 [RED] Backup/Restore failed from v17.5 MR to v18 with specific RED configuration
- NC-56397 [Web] User getting certificate error
