Sophos Wireless Features
Quick and Easy Management and Configuration
Quickly set up and configure all of your wireless networks via Sophos Central or your AP6 Series access point’s local user interface. Whether you manage a large environment with many corporate users or a small retail outlet with guest access only, our pragmatic approach to Wi-Fi management makes it easy to set up and secure your wireless network, regardless of your skill level.
Access Point Series | Sophos Central | Local User Interface | Sophos Firewall | Sophos UTM |
---|---|---|---|---|
AP6 Series (Wi-Fi 6/6E) | On-site/remote management of any number of AP6 access points, all models | Manage a single AP6 on site |
Not supported and not planned |
Not supported and not planned |
Note for Wi-Fi 5 APX Series customers:
Some settings may be unavailable when managing APX Series access points*. For wireless feature availability when managing the APX Series from a Sophos Firewall or Sophos UTM, please refer to the information in the relevant product documentation or check the APX Series Feature Matrix.
* We have announced an end-of-life date for our APX Series hardware of December 31, 2027. Customers who own APX access points can continue to use them on a supported platform until the EOL date.
AP6 Series Feature Availability Update
We regularly enhance the feature set for Sophos AP6 Series access points. Please contact your local Sophos partner or representative for further information about the features in the table below and their expected availability date.
FEATURE | AVAILABILITY FOR AP6 SERIES |
Guest Network, NAT Mode | Expected soon. Date will be confirmed. Guest Network, Bridge Mode was released in April 2024 (MR4). |
Dynamic VLAN and RADIUS | Date for feature availability on AP6 to be confirmed. |
Web Categorization | Date for feature availability on AP6 to be confirmed. |
Application Visibility | Date for feature availability on AP6 to be confirmed. |
Synchronized Security This feature is currently available for our end-of-sale APX Series access points managed from Sophos Central only. | Date for feature availability on AP6 to be confirmed. Please check the Sophos Wireless overview page for information on Active Threat Response, which is now supported on the AP6 Series. |
Sophos Wireless Features
The features below are supported on Sophos AP6 Series access points unless otherwise indicated.
GENERAL WIRELESS FEATURES | AP6 SERIES AVAILABILITY | SOPHOS CENTRAL | LOCAL USER INTERFACE |
Multiple SSIDs | AP6 420, 420E, 420X: 8 SSIDs per radio AP6 840, 840E: 16 SSIDs per radio | ||
Time-Based SSIDs (by time of day, day of week) | All models | ||
Client Load Balancing | All models |
| |
Auto Channel Selection | All models | ||
Channel Width Selection | All models | ||
Band Steering | All models | ||
Airtime Fairness | All models | ||
Keep Broadcasting SSID | All models |
| |
Roaming Assistant (802.11r) | All models | ||
Fast Transition (802.11r) | All models | ||
Captive Portal: Splash Page Customization | All models (e.g., logo, name, welcome message, terms) | ||
Captive Portal: Seamless Roaming | All models (when managed in Sophos Central only) Not available in combination with mesh |
| |
Auto Power | All models |
ADVANCED 802.11 FEATURES | AP6 SERIES AVAILABILITY | SOPHOS CENTRAL | LOCAL USER INTERFACE |
Single-User MIMO (SU-MIMO) and Multi-User MIMO (MU-MIMO) | AP6 420, 420E, 420X: SU-MIMO AP6 840, 840E: MU-MIMO | ||
Basic Service Set (BSS) Coloring | All models | Not configurable | |
Uplink/Downlink OFDMA | All models | ||
Target Wake Time (TWT) | All models | 802.11ax feature – not configurable |
LOGGING AND MONITORING FEATURES | AP6 SERIES AVAILABILITY | SOPHOS CENTRAL | LOCAL USER INTERFACE |
Packet Capture | All models | ||
Syslog Audit Logs | All models | ||
SNMP (Simple Network Management Protocol) | All models |
| |
Event Logging and Reports (Syslog Reporting) | AP6 840E only | ||
Remote Debugging | All models (when managed in Sophos Central only) |
| |
Connected Client Reporting | All models | Not configurable | |
Device Vendor Visibility | All models | Not configurable | |
User Identity (User-Based Authentication) | All models | ||
Rogue AP Detection | All models |
USER/DEVICE AUTHENTICATION FEATURES | AP6 SERIES AVAILABILITY | SOPHOS CENTRAL | LOCAL USER INTERFACE |
WPA3-Personal SAE | All models | ||
WPA3 Enterprise and Enhanced Open (OWE) | All models | ||
Enterprise Authentication (RADIUS) | All models | ||
MAC Filtering | All models | ||
RADIUS Accounting | All models |
| |
RADIUS Server (Internal RADIUS) | All models |
| |
Secondary RADIUS Server | All models |
| |
Daily, Weekly, Monthly Password | All models | ||
Backend Authentication | All models | ||
Time-Based Voucher | All models | ||
(Data) Quota-Based Voucher | All models |
| |
Social Login | All models | ||
Client Isolation | All models | ||
Captive Portal: Walled Garden | All models | ||
Guest Network – Bridge Mode | All models | ||
Active Threat Response Integration with Sophos MDR/XDR | All models (requires a valid support subscription) |
|
NETWORKING FEATURES | AP6 SERIES AVAILABILITY | SOPHOS CENTRAL | LOCAL USER INTERFACE |
Proxy ARP | All models | ||
VLAN Support | All models | ||
Multicast-to-Unicast Conversion | All models | ||
Link Aggregation Group (LAG) Interface | AP6 840E only | ||
Link Layer Discovery Protocol (LLDP) | All models |
|