Central 2026.29
Released on July 15, 2026
New Features
New Sophos Central features
Sophos Switch ATR query pack
Sophos Central users can use Live Discover to see information about devices connected to Sophos Switches.
You can see details of connected devices, including MAC address, current connection status, and connection history.
Use pre-configured queries to assist with connected device testing, investigation, and troubleshooting.
New local user interface features
There are no new local user interface features in this release.
Resolved issues
There are no resolved issues in this release.
Network Map
Released on July 1, 2026
New features and enhancements
New Sophos Central features
Network Map
The Network Map is now available in Sophos Central at My Environment > Network Map.
Using LLDP-based discovery, it shows a unified view of your connected Sophos Firewall, Switches, and AP6 access points. This helps you to visualize the
topology of your infrastructure, search for devices, and navigate the relationships between the network devices across your entire account.
The map shows searchable key information about connected devices, including name, serial number, MAC address, IP address, online status, and the number of connected devices.
You can arrange the devices on the map, zoom and pan, and download the map as a PNG file.
Devices must be managed in Sophos Central and have the minimum firmware version listed below.
- Sophos Firewall: Version 22.0 GA
- Sophos Switch: 2.1.1986 MR2
- Sophos AP6 access points: 1.9.2854 MR9
For more information, see Network Map.
Resolved issues
There are no resolved issues for this release.
Sophos Switch 2.1.1986 MR2
Released on June 15, 2026
New features and enhancements
New CLI commands
You can now manage the following features using the CLI:
- Cloud agent: Start, stop, and restart the cloud agent for faster troubleshooting and recovery
without the need to restart the device.
- Sophos Central de-registration: De-registers a switch from Sophos Central, simplifying device reprovisioning and decommissioning.
- Port reset: Reset individual ports using the CLI for greater control over network access.
- LACP Interface Speed Query: Query the negotiated speed of LACP interfaces for link aggregation diagnostics and validation.
For a full list of CLI commands, see Sophos Switch command line help.
Port reset
Reset individual ports using the GUI.
Expanded ACL Entries
Increased the maximum number of supported ACL entries for more granular traffic filtering and security policy enforcement.
MAC ACLs have expanded from 16 to 128, IPv4 ACLs have expanded from 16 to 128, and IPv6 ACLs have expanded from 16 to 64 entries.
Admin Password Reset
Another admin account can no longer change the password of the default admin account.
Resolved issues
Resolved issues for this release.
| Issue ID |
Component |
Description |
| NSW-9494 |
Switch |
Fixed an issue causing the switch management IP address to become unreachable after upgrading the switch firmware to 02.1.1837. |
| NSW-8863 |
Switch |
Fixed an issue with Sophos Switch LLDP responses. |
| NSW-8747 |
Switch |
Fixed an issue that changed the VLAN configuration after upgrading the switch firmware to 02.1.1837. |
| NSW-8633 |
Switch |
Fixed an issue that caused the switch to take on the IGMP querier role even though Querier status was turned off. |
| NSW-8346 |
Switch |
Removed SHA1 for SSH connections. |
| NSW-8161 |
Switch |
Fixed an issue causing switches to restart automatically everyday. |
| NSW-8102 |
Switch |
Fixed an issue where SNMP settings in Sophos Central weren't correctly applied to the local switch configuration. |
| NSW-7977 |
Switch |
Fixed an issue preventing DHCP requests from being forwarded if DHCP snooping is turned on. |
Sophos Central 2026.05
Released on February 4, 2026
New features and enhancements
New Sophos Central features
Admin password reset
You can reset the admin password for a switch in Sophos Central on Switch management > System details.
Access control settings
You can manage Access Control Lists (ACLs) and Access Control Entries (ACEs) in Sophos Central on Switch management > Security.
This includes assigning ACEs to ACLs, setting port ranges, and ACL port binding.
Remote network monitoring (RMON)
You can manage RMON settings in Sophos Central on Switch management > System details, including the statistics, event, alarm, and history lists,
event logs, and historical log table.
System statistics
You can see detailed system statistics for your switches in Sophos Central on Switch management > System details.
These details include L2 and L3 traffic, 802.1x security, traffic by port, and RMON.
Switch local user interface features
There are no new local user interface features for this release.
Resolved issues
There are no resolved issues for this release.
Sophos Central 2025.51
Released on December 13, 2025
New features and enhancements
New Sophos Central features
Switch stacking resiliency
Individual switches in a stack now have a resiliency score based on Sophos Central connectivity and firmware availability status.
The overall stack resiliency score is based on the connections within the stack, including the use of LAG interfaces, the topology
of the connections, such as network loops and WAN reachability, and the minimum resiliency score for switches in the stack.
Switch local user interface features
There are no new local user interface features for this release.
Resolved issues
There are no resolved issues for this release.
Sophos Central 2025.51
Released on December 10, 2025
New features and enhancements
New Sophos Central features
Security settings support
You can now configure the following security settings for Switches in Sophos Central.
- 802.1x Port settings: Turn 802.1x authentication on or off and set the authentication server.
- Port security: Limit the number of MAC addresses a port can learn.
- RADIUS server: Configure RADIUS servers for external authentication.
- TACACS+ server: Configure TACACS+ servers for external authentication.
Switch local user interface features
There are no new local user interface features for this release.
Resolved issues
There are no resolved issues for this release.
Sophos Central 2025.44
Released on October 13, 2025
New features and enhancements
New Sophos Central features
Stacking connection resiliency
The System details page in Sophos Central now shows an icon indicating the resiliency of the
connections between switches within a stack.
The icon color changes based on the link speed, Rx and Tx transfer rates, and port utilization of the connection.
- Green: The connection is below 75% of its maximum capacity.
- Orange: The connection is between 75% and 90% of its maximum capacity.
- Red: The connection is over 90% capacity.
Switch local user interface features
There are no new local user interface features for this release.
Resolved issues
There are no resolved issues for this release.
Sophos Central 2025.35
Released on September 17, 2025
New features and enhancements
New Sophos Central features
System information
You can now change the name of the switch on the System details page in Sophos Central.
You can also add location and contact details for a switch.
Time settings
You can configure SNTP settings for Sophos Switch at the site, stack, and individual switch levels.
Switch local user interface features
There are no new local user interface features for this release.
Resolved issues
There are no resolved issues for this release.
Sophos Central 2025.29
Released on July 21, 2025
New features and enhancements
New Sophos Central features
Spanning Tree Protocol (STP) updates
You can configure STP settings for Sophos Switch at the site, stack, and individual switch levels.
Sophos Central Global STP configuration supports Rapid Spanning Tree Protocol (RSTP) and Multiple Spanning Tree Protocol (MSTP).
You can create MST instances and configure RSTP, Common and Internal Spanning Tree (CIST), and MST settings for individual ports.
Switch local user interface features
There are no new local user interface features for this release.
Resolved issues
There are no resolved issues for this release.
Sophos Switch 2.1.1837
Released on July 21, 2025
New features and enhancements
Switch local user interface features
There are no new local user interface features for this release.
New Sophos Central features
There are no new Sophos Central features for this release.
Resolved issues
Resolved issues for this release.
| Issue ID |
Component |
Description |
| NSW-8087 |
Switch |
Fixed an issue that allowed browsing the UI resources without authentication by adding `/static` in the URL. |
| NSW-7758 |
Switch |
Fixed an issue where MAB fallback didn't trigger in hybrid mode for devices that didn't use 802.1X authentication. |
| NSW-7197 |
Switch |
Fixed an issue where MSTP wasn't available on switches connected to a Sophos Firewall HA cluster in bridge mode. |
| NSW-7095 |
Switch |
Fixed an issue where Sophos Switch responded to ICMP timestamp requests - CVE-1999-0524. |
| NSW-7093 |
Switch |
Fixed an issue where the DHCP relay blocked DHCP requests between hosts. |
| NSW-7112 |
Switch |
Fixed the vulnerability CVE-2024-47685. |
| NSW-7111 |
Switch |
Fixed the vulnerability CVE-2024-49997. |
Sophos Central 2025.25
Released on June 25, 2025
New features and enhancements
New Sophos Central features
Switch stacking
Switch stacking simplifies switch management by letting you logically group together switches that are physically
wired or share identical configurations.
The Stack management page lets you visualize the connections in your stack by showing you the port configuration
and connections for all switches in the stack.
Sophos Central stack management includes port settings, VLANs, PoE, QoS, and L3 protocols. All other Sophos Central
switch management features are also available.
Switch local user interface features
There are no new local user interface features for this release.
Resolved issues
There are no resolved issues for this release.
Sophos Switch 2.1.1791
Released on January 29, 2025
New features and enhancements
Switch local user interface features
MAC address blocking
You can block traffic from specific MAC addresses across all VLANs on Monitor > MAC address table >
MAC blocking.
You can view the list of blocked MAC addresses on the new Blocking list tab.
New Sophos Central features
There are no new Sophos Central features for this release.
Resolved issues
Resolved issues for this release.
| Issue ID |
Component |
Description |
| NSW-6894 |
Switch |
Fixed an issue that caused backups to fail. |
| NSW-6313 |
Switch |
Fixed an issue that stopped switches from sending NTP traffic when an FQDN was used. |
| NSW-6238 |
Switch |
Fixed an issue that caused RADIUS configuration on the local Sophos Switch UI and CLI to be out of sync. |
| NSW-5982 |
Switch |
Fixed an issue where multiple switches lost connectivity to Sophos Central and had to be restarted to restore HTTP or SSH
access. |
| NSW-5836 |
Switch |
Fixed an issue where pings from the switch to a PC weren't working. |
| NSW-5474 |
Switch |
Fixed an issue where Port 5 couldn't be configured for untagged VLAN traffic. |
| NSW-5461 |
Switch |
Fixed an issue where there was no traffic after client reboot and no MAC addressed were learned. |
Sophos Central 2025.02
Released on January 16, 2025
New features and enhancements
Switch local user interface features
There are no local switch features for this release.
New Sophos Central features
PoE support in Sophos Central
You can configure PoE settings in Sophos Central at both the site and switch levels.
You can set the global PoE power budget or adjust individual settings for each port.
You can turn PoE keepalive on and off and configure it for each port.
Resolved issues
There are no resolved issues included in this release.
Sophos Central 2024.51
Released on December 4, 2024
New features and enhancements
Switch local user interface features
There are no local switch features for this release.
New Sophos Central features
Loopback detection
You can configure loopback detection in Sophos Central on Switch management > Port Settings.
To prevent loops, the switch sends loopback packets and shuts down any ports that receive a loopback packet from itself.
DoS
DoS configuration is now available in Sophos Central on Switch management > Security. This
lets you configure your switches to protect from common denial-of-service attacks.
Log settings
You can configure the log settings for RAM logs flash logs in Sophos Central. This lets you choose the severity level
of messages that appear in the logs.
Pagination updates
- If there are more than 10 switches or sites in Sophos Central, the switch overview is separated into pages. You
can view your switches and sites 10, 25, or 50 at a time. You can also switch between Tree view and Flat view.
- The Task queue is also separated into pages. You can view 10, 25, or 50 tasks at a time.
Resolved issues
There are no resolved issues included in this release.
Sophos Central 2024.36
Released on September 18, 2024
New features and enhancements
Switch local user interface features
There are no local switch features for this release.
New Sophos Central features
Smart logging
Smart logging is now available in Sophos Central under Switch management > Diagnostics >
Sophos error reporting. This feature sends agent logs to Sophos Central in the event of any of the following failures:
- Firmware upgrade failure
- Backup failure
- Switch disconnect and reconnect
- Any task synchronization failure
Smart log forwarding is turned on by default. The logging information sent to Sophos Central only contains
communication events between switches and Sophos Central. They don't include configuration or network-related data.
Resolved issues
There are no resolved issues included in this release.
Sophos Central 2024.36
Released on September 11, 2024
New features and enhancements
Switch local user interface features
There are no local switch features for this release.
New Sophos Central features
Fast Station Creation (FSC) region support
Sophos Central FSC regions (Australia, Brazil, Canada, India, and Japan) now support Sophos Switch.
Resolved issues
There are no resolved issues included in this release.
Sophos Central 2024.24
Released on June 20, 2024
New features and enhancements
Switch local user interface features
There are no local switch features for this release.
New Sophos Central features
MAC filter support
You can now add MAC filtering entries from Sophos Central and view synchronized entries.
ARP enhancements
You can now view Address Resolution Protocol (ARP) statistics from Sophos Central.
Resolved issues
Resolved issues for this release.
| Issue ID |
Component |
Description |
| NSW-5967 |
Central |
Backups can now be paused and resumed. |
| NSW-5945 |
Central |
The first full sync now succeeds even if a switch is moved to a different site while it's registering. |
| NSW-5574 |
Central |
A QoS policy created at the site level can now be successfully deleted at the switch level. |
| NSW-5558 |
Central |
An error no longer appears in the changelog when modifying or deleting an access list from switch level that was
created at the site level. |
| NSW-5457 |
Central |
The correct Static ports appear in MLD Snooping when selecting ports used in LAG. |
Sophos Central 2024.21
Released on June 3, 2024
New features and enhancements
Switch Local user interface features
There are no local switch features for this release.
New Sophos Central features
Active Threat Response on Sophos Central
Sophos Switches registered with Sophos Central with a valid support services license can access
the Active Threat Response (ATR) feature. The ATR API ingests threat feed data allowing MDR analysts and
network administrators to quickly isolate malicious hosts across the network.
From Sophos Central, an administrator can view an Active Threat Response page and turn the Active Threat
Response on or off for Sophos Switches. The ATR page also lists the isolated hosts across all Sophos switches and
AP6 access points managed in Sophos Central.
Active Threat Response API
The Active Threat Response APIs are available on Sophos Central. For information on how to access and use
APIs from Sophos Central, see Sophos Central APIs. The APIs can enable third-party integrations
and workflows to swiftly isolate malicious activity at the network access layer. We're always interested in how
third-party integrations are deployed, so please send us feedback regarding your custom integrations.
To view the Switch Management APIs, see Switch Management API.
Diagnostics updates
Sophos Switch diagnostics in Sophos Central have been enhanced with the following new features:
- Take a switch snapshot: Lets you analyze switch details like memory and CPU usage by running a series
of system commands that you can view in the task queue.
- Restart Sophos Central agent: Helps quickly resolve temporary runtime issues by restarting the Sophos Central
agent processes on the switch.
- Clear core files: Recovers disk space by clearing core files generated from process crash events.
Log tabs
You can now view the RAM and flash logs from the Sophos Switch on the RAM logs and Flash logs tabs on the
Diagnostics page.
Resolved issues
There are no resolved issues included in this release.
Sophos Central 2024.12
Released on March 12, 2024
New features and enhancements
Switch Local user interface features
There are no local switch features for this release.
Sophos Central features
ARP table
You can now view the ARP table and create entries from Sophos Central. See ARP.
MAC table
You can now view the MAC table and create entries from Sophos Central. See MAC.
Neighbour table
You can now view the Neighbour table from Sophos Central. See Neighbor discovery.
Resolved issues
There are no resolved issues included in this release.
Sophos Switch 01.4.1466 MR4
Released on January 24, 2024
New features and enhancements
Switch Local user interface features
TACACS+ server
You can now configure a TACACS+ server for authentication. See TACACS+ server.
TACACS+ authentication for 802.1X
You can now use a configured TACACS+ server for 802.1X authentication. See 802.1x.
STP Root and BDU Guard
You can now use Root and BDU guards with STP. See STP.
Realtime meters port statistics
You can now view per-port statistics using the realtime meters. See Realtime meters.
Sophos Central features
There are no new Sophos Central features in this release.
Resolved issues
Resolved issues for this release.
| Issue ID |
Component |
Description |
| NSW-2457 |
Switch |
Removed the default SNMP user and communities from SNMP configuration. |
Central Switch 2023.49
Released on December 14, 2023
New features and enhancements
Switch Local user interface features
There are no local switch features for this release.
Sophos Central features
SNMP
You can now configure SNMP settings from Sophos Central. See SNMP.
Discovery
You can now configure Cisco Discovery Protocol (CDP) and Link Layer Discovery Protocol (LLDP) from Sophos Central. See Discovery.
Resolved issues
There are no resolved issues included in this version.
Central Switch 2023.40
Released on October 26, 2023
New features and enhancements
Switch Local user interface features
There are no local switch features for this release.
Sophos Central features
Advanced port settings
You can now configure advanced port settings from Sophos Central. See Port settings.
Voice VLAN
You can now configure your voice VLAN from Sophos Central. See VLANs.
Resolved issues
No resolved issues: There are no resolved issues included in this version.
Central Switch 2023.37
Released on September 21, 2023
New features and enhancements
Switch Local user interface features
There are no local switch features for this release.
Sophos Central features
Backup and restore from Sophos Central
You can now take and restore configuration backups from Sophos Central. See Backup.
Resolved issues
No resolved issues: There are no resolved issues included in this version.
Central Switch 2023.27
Released on July 10, 2023
New features and enhancements
Switch Local user interface features
There are no local switch features for this release.
Sophos Central features
Quality of service (QoS) management from Sophos Central
You can now fully manage QoS settings per switch or per site from Sophos Central. See Quality of service (QoS).
Resolved issues
No resolved issues: There are no resolved issues included in this version.
Sophos Switch Firmware 01.03.1268 MR3
Released on April 13, 2023
New features and enhancements
Switch Local user interface features
MAC Address Bypass (MAB)
The key addition in this release is MAC Address Bypass (MAB). This feature extends the existing 802.1x functionality by allowing 802.1x MAC-based authentication bypass (MAB). With this Sophos Switch can authenticate one or more connected hosts using the host MAC address as the account information for authentication. Each host connected to a Sophos switch port with MAB enabled is authenticated individually based on the host's MAC address. Any traffic from hosts that aren't authorized is dropped.
Switch Support and Services Subscription
For customers who purchased Support and Services subscription for Sophos Switch, the support activation was not yet integrated into Sophos Central. We are now beginning the process to fully integrate and enforce Support and Services, allowing you to seamlessly manage your switch support subscriptions alongside your other Sophos products.
Sophos Central features
There are no Sophos Central features added in this release.
Resolved issues
Resolved issues for this release.
| Issue ID |
Component |
Description |
| NSW-25143 |
Switch |
Special characters are now supported within the SNMP password field. |
| NSW-2513 |
Switch |
From the terminal administrators can now upload an SSL certificate and private key. |
| NSW-2512 |
Switch |
Removed support for weak encryption ciphers (3DES-CBC, AES128-CBC, AES256-CBC) for SSH access. |
| NSW-2032 |
Switch |
The VLAN name can now include special characters that include “- “, “_”, and spaces. For example, you can configure the VLAN as follows, "vlan-100.” |
| NSW-3476 |
Switch |
An issue was addressed that prevented 802.1X authentication from working properly when certificates were used as part of the authentication. |
| NSW-3410 |
Switch |
Doing an SNMP walk request causes the Sophos switch to go into a reboot loop. |
| NSW-2843 |
Switch |
The error message displayed when adding more than the supported number of VLANs was updated to now display “System networks (IPv4): Max limit reached. A maximum of 3 VLANs are allowed with IP address.” |
| NSW-2815 |
Switch |
An issue was seen where creating a LAG between Sophos switches was not working correctly. |
| NSW-2694 |
Switch |
In the local switch GUI the CDP neighbor details display an incorrect firmware version. |
| NSW-2675 |
Switch |
The TFTP backup restore fails when executed from the local GUI. |
| NSW-2445 |
Switch |
An intermittent issue has been seen where the Sophos switch stops forwarding traffic. |
| NSW-2230 |
Switch |
CDP v2 does not work properly between a Sophos switch and a Cisco switch. |
| NSW-1832 |
Switch |
Added description information to the CLI to explain the password configuration rules. |
| NSW-1790 |
Switch |
The power budget is displayed as 0w when the power budget is configured using a decimal value from the local switch GUI. |
| NSW-1569 |
Switch |
The local switch GUI did not display VLAN names correctly when a dash or underscore was used in the name. |
| NSW-1301 |
Switch |
From Central the Sophos switch redirect links are not navigating to the specific page in the local switch GUI. |
| NSW-810 |
Switch |
SSH without the -c option does not work properly. |
Central Switch 2022.48
Released on November 28, 2022
New features and enhancements
Switch Local user interface features
There are no local switch features present in this release.
Sophos Central features
IP Networks (Released in 2022.39)
With IP networks, you can assign IP addresses to up to 3 VLANs, configure the management VLAN IP address from Sophos Central, and use the switch as a gateway for selected VLANs.
DHCP Relay (Released in 2022.39)
If you're using your Sophos Switch as a gateway for any VLANs that don't have a DHCP server present, the switch can act as a DHCP relay, sending requests to the DHCP server of your choice.
Static Routes
If you're using your switch as a gateway device, you may prefer to route some traffic to gateways other than the default gateway. Static routes allow you to create more direct routing paths when you need it.
DHCP Snooping
Protect against rogue DHCP servers on your networks by enabling and configuring DHCP snooping.
IGMP and MLD snooping
Optimize multicast traffic flows and protect against packet flooding with IGMP and MLD snooping, to direct multicast flows to only interested listeners.
Resolved issues
Resolved issues for this release.
| Issue ID |
Component |
Description |
| NSW-2509 |
Switch |
Improved error message to be more understandable when firmware updates fail due to connectivity issues. |
Sophos Switch Firmware 01.2.191 MR2
Released on August 29, 2022
New features and enhancements
Switch Local user interface features
Global UI search
Global search in the switch local UI allows an admin to enter keywords in the search field and will then list all matching entries containing that keyword. Clicking on one of the search results will take you directly to the configuration page, making navigation faster and simpler.
MAC address filter
MAC-Address Filtering (MAF) allows you to block traffic from a specific VLAN-MAC combination. Only the unicast MAC address can be configured in a MAF entry. Multicast and broadcast addresses are not supported in this function.
IP source guard filter
The host IP address can restrict access permission via source validation for security issues. IP source guard is a per-interface traffic filter that permits all IP packets, except for DHCP, only when the IP address and MAC address of each packet match one of two sources of IP and MAC address bindings (DHCP snooping table and static IP source entries that you configure).
Cisco-compatible discovery protocol
Cisco Discovery Protocol is a layer 2 protocol developed by Cisco Systems to show device information between Cisco machines. After enabling CDP, devices can view information of connected Cisco/CDP-supported devices, send CDP packets for neighbors to recognize the Sophos switch, and further improve the convenience of management on devices manufactured by different companies.
Priority-Tag Packet Ingress filter
The VLAN 0 priority tagging feature enables 802.1Q Ethernet frames to be transmitted with the VLAN ID set to zero. These frames are called priority-tagged frames. Setting the VLAN ID tag to zero allows the VLAN ID tag to be ignored and the Ethernet frame to be processed according to the priority configured in the 802.1P bits of the 802.1Q Ethernet frame header. The priority-tag ingress filtering function would ignore packets with the priority-tag to defend against attack packets using VLAN 0.
PoE Port Reset
PoE Port Reset is used to manually reset the PoE power supply of a specific port. After PoE power is turned off (CLI CMD: power reset), power will resume after the specified 'power reset interval' has passed. This feature can be used from the CLI mode by setting custom power reset intervals for each port and connected PoE devices will be powered on after specific intervals.
Sophos Central features
Link Aggregation Group (LAG) from Sophos Central
This feature allows you to combine multiple Ethernet/SFP links into a single logical link between two network devices for greater throughput and high availability. Admins will be able to configure LAG groups from Sophos Central at the site level and switch level, along with other port settings in Sophos Central.
Resolved issues
There aren't any bug fixes in this release.
Support
You can find technical support for Sophos products in any of these ways:
Legal notices
Copyright © Sophos Limited. All rights reserved. No part of this publication
may be reproduced, stored in a retrieval system, or transmitted, in any form or by any means,
electronic, mechanical, photocopying, recording or otherwise unless you are either a valid
licensee where the documentation can be reproduced in accordance with the license terms or you
otherwise have the prior permission in writing of the copyright owner.
Sophos and Sophos Anti-Virus are registered trademarks of Sophos Limited and Sophos
Group. All other product and company names mentioned are trademarks or registered trademarks of
their respective owners.