Manage an HA pair in Sophos Fusion
Note
Sophos Fusion was previously known as Sophos Central.
Your firewalls can be set up in either of the following ways:
- You are managing your firewalls in Sophos Fusion but they aren't in a high availability (HA) pair.
- Your firewalls are in an HA pair but you aren't managing them in Sophos Fusion.
Note
You can only manage firewalls with Sophos Fusion if they connect to the internet using IPv4 addresses.
Create an HA pair from your centrally-managed firewalls
You have two standalone firewalls managed from Sophos Fusion. You want to import the configuration from one of them and manage them as an HA pair.
On your Sophos Firewall, create the HA pair.
Note
Both firewalls must be of the same firmware version. For more information, see High availability.
You can form an Active-Active or Active-Passive HA pair.
Once the HA pair is created, a single HA pair is displayed in Sophos Fusion.
You can now manage the firewalls as an HA pair in Sophos Fusion.
Manage your HA pair in Sophos Fusion
You have two Sophos Firewall devices in an HA pair. You want to manage them as an HA pair in Sophos Fusion.
The image below shows an active-passive HA pair.
-
On the primary Sophos Firewall, go to Central synchronization and click Register both HA devices to register the HA pair.
The registration information is updated, as shown below.
-
Once registration is complete, enable central management.
For more information, see Use the super admin credentials to register with Sophos Fusion.
-
In Sophos Fusion, next to the primary firewall, click the Approval Pending icon
, then click accept-services.After a few minutes, the firewalls are displayed as a single HA pair. You'll see the HA icon
next to the firewall name.
You can now manage the HA pair in Sophos Fusion. Any configuration changes you make in Sophos Fusion apply to both firewalls.




