Sophos Wireless Features

Feature Matrix

Quick and Easy Management and Configuration

Quickly set up and configure all of your wireless networks via Sophos Central or your AP6 Series access point’s local user interface. Whether you manage a large environment with many corporate users or a small retail outlet with guest access only, our pragmatic approach to Wi-Fi management makes it easy to set up and secure your wireless network, regardless of your skill level.

 

Access Point SeriesSophos CentralLocal User InterfaceSophos FirewallSophos UTM
AP6 Series
(Wi-Fi 6/6E)

 

On-site/remote management of any number of AP6 access points, all models
Scheduled firmware upgrades

 

Manage a single AP6 on site

 

Not supported and not planned

 

Not supported and not planned

 

Note for Wi-Fi 5 APX Series customers:

Some settings may be unavailable when managing APX Series access points*. For wireless feature availability when managing the APX Series from a Sophos Firewall or Sophos UTM, please refer to the information in the relevant product documentation or check the APX Series Feature Matrix.

* We have announced an end-of-life date for our APX Series hardware of December 31, 2027. Customers who own APX access points can continue to use them on a supported platform until the EOL date.

AP6 Series Feature Availability Update

We regularly enhance the feature set for Sophos AP6 Series access points. Please contact your local Sophos partner or representative for further information about the features in the table below and their expected availability date.

FEATUREAVAILABILITY FOR AP6 SERIES
Guest Network, NAT Mode

Expected soon. Date will be confirmed.

Guest Network, Bridge Mode was released in April 2024 (MR4).

Dynamic VLAN and RADIUSDate for feature availability on AP6 to be confirmed.
Web CategorizationDate for feature availability on AP6 to be confirmed.
Application VisibilityDate for feature availability on AP6 to be confirmed.

Synchronized Security

This feature is currently available for our end-of-sale APX Series access points managed from Sophos Central only.

Date for feature availability on AP6 to be confirmed.

Please check the Sophos Wireless overview page for information on Active Threat Response, which is now supported on the AP6 Series.

Sophos Wireless Features 

The features below are supported on Sophos AP6 Series access points unless otherwise indicated.

GENERAL WIRELESS FEATURESAP6 SERIES AVAILABILITYSOPHOS CENTRALLOCAL USER INTERFACE
Multiple SSIDs

AP6 420, 420E, 420X: 8 SSIDs per radio

AP6 840, 840E: 16 SSIDs per radio

 

 

Time-Based SSIDs (by time of day, day of week)All models

 

 

Client Load BalancingAll models

 

 

Auto Channel SelectionAll models

 

 

Channel Width SelectionAll models

 

 

Band SteeringAll models

 

 

Airtime FairnessAll models

 

 

Keep Broadcasting SSIDAll models

 

 

Roaming Assistant (802.11r)All models

 

 

Fast Transition (802.11r)All models

 

 

Captive Portal: Splash Page CustomizationAll models (e.g., logo, name, welcome message, terms)

 

 

Captive Portal: Seamless Roaming

All models (when managed in Sophos Central only)

Not available in combination with mesh

 

 

Auto PowerAll models

 

 

ADVANCED 802.11 FEATURESAP6 SERIES AVAILABILITY

SOPHOS CENTRAL

LOCAL USER INTERFACE

Single-User MIMO (SU-MIMO) and Multi-User MIMO (MU-MIMO)AP6 420, 420E, 420X: SU-MIMO 
AP6 840, 840E: MU-MIMO

 

 

Basic Service Set (BSS) ColoringAll modelsNot configurable
Uplink/Downlink OFDMAAll models

 

 

Target Wake Time (TWT)All models802.11ax feature – not configurable
LOGGING AND MONITORING FEATURESAP6 SERIES AVAILABILITY

SOPHOS CENTRAL

LOCAL USER INTERFACE

Packet CaptureAll models

 

 

Syslog Audit LogsAll models

 

 

SNMP (Simple Network Management Protocol)All models

 

 

Event Logging and Reports (Syslog Reporting)AP6 840E only

 

 

Remote DebuggingAll models (when managed in Sophos Central only)

 

 

Connected Client ReportingAll modelsNot configurable
Device Vendor VisibilityAll modelsNot configurable
User Identity (User-Based Authentication)All models

 

 

Rogue AP DetectionAll models

 

 

USER/DEVICE AUTHENTICATION FEATURESAP6 SERIES AVAILABILITY

SOPHOS CENTRAL

LOCAL USER INTERFACE

WPA3-Personal SAEAll models

 

 

WPA3 Enterprise and Enhanced Open (OWE)All models

 

 

Enterprise Authentication (RADIUS)All models

 

 

MAC FilteringAll models

 

 

RADIUS AccountingAll models

 

 

RADIUS Server (Internal RADIUS)All models

 

 

Secondary RADIUS ServerAll models

 

 

Daily, Weekly, Monthly PasswordAll models

 

 

Backend AuthenticationAll models

 

 

Time-Based VoucherAll models

 

 

(Data) Quota-Based VoucherAll models

 

 

Social LoginAll models

 

 

Client IsolationAll models

 

 

Captive Portal: Walled GardenAll models

 

 

Guest Network – Bridge ModeAll models

 

 

Active Threat Response
Integration with Sophos MDR/XDR
All models
(requires a valid support subscription)

 

 

NETWORKING FEATURESAP6 SERIES AVAILABILITYSOPHOS CENTRALLOCAL USER INTERFACE
Proxy ARPAll models

 

 

VLAN SupportAll models

 

 

Multicast-to-Unicast ConversionAll models

 

 

Link Aggregation Group (LAG) InterfaceAP6 840E only

 

 

Link Layer Discovery Protocol (LLDP)All models