Skip to main content

Sophos XGS Firewall

Sophos XGS Firewall

Plugin: go.d.plugin Module: snmp

Maintained by Netdata

Overview​

Monitor Sophos XGS Firewall (firewall) with Netdata over SNMP. Netdata recognizes the device automatically by its sysObjectID (recognized across 1 device identifiers) and collects the metrics this profile declares — on top of the generic SNMP baseline — with no manual OID configuration.

Netdata's SNMP collector matches the device to the sophos-xgs-firewall.yaml profile via sysObjectID/sysDescr, then polls the OIDs it declares.

This integration is supported on all platforms.

This integration supports multiple instances configured side-by-side.

Default Behavior​

Auto-Detection​

Auto-detected as Sophos XGS Firewall via sysObjectID/sysDescr.

Limits​

The default configuration for this integration does not impose any limits.

Performance Impact​

The default configuration for this integration is not expected to impose a significant performance impact on the system.

Setup​

You can configure the snmp collector in two ways:

MethodBest forHow to
UIFast setup without editing filesGo to Nodes → Configure this node → Collectors → Jobs, search for snmp, then click + to add a job.
FileIf you prefer configuring via file, or need to automate deployments (e.g., with Ansible)Edit go.d/snmp.conf and add a job.
important

UI configuration requires paid Netdata Cloud plan.

Prerequisites​

SNMP access​

SNMP must be enabled on the device and reachable from the Netdata Agent acting as the site's SNMP hub.

Configuration​

Options​

Configure the SNMP collector with the device hostname and SNMP credentials. See the SNMP collector reference for all options.

via UI​

Configure the snmp collector from the Netdata web interface:

  1. Go to Nodes.
  2. Select the node where you want the snmp data-collection job to run and click the ⚙ (Configure this node). That node will run the data collection.
  3. The Collectors → Jobs view opens by default.
  4. In the Search box, type snmp (or scroll the list) to locate the snmp collector.
  5. Click the + next to the snmp collector to add a new job.
  6. Fill in the job fields, then click Test to verify the configuration and Submit to save.
    • Test runs the job with the provided settings and shows whether data can be collected.
    • If it fails, an error message appears with details (for example, connection refused, timeout, or command execution errors), so you can adjust and retest.

via File​

The configuration file name for this integration is go.d/snmp.conf.

The file format is YAML. Generally, the structure is:

update_every: 1
autodetection_retry: 0
jobs:
- name: some_name1
- name: some_name2

You can edit the configuration file using the edit-config script from the Netdata config directory.

cd /etc/netdata 2>/dev/null || cd /opt/netdata/etc/netdata
sudo ./edit-config go.d/snmp.conf
Examples​

There are no configuration examples.

Alerts​

There are no alerts configured by default for this integration.

Metrics​

On top of the generic SNMP baseline (the Generic SNMP Device integration — interfaces, system, IP/TCP/UDP, host resources), this Sophos XGS Firewall profile adds the metrics below. Each is collected only where the device exposes the matching OID — inclusion means the profile requests it; availability depends on the device model and software.

23 metrics in 10 groups; each row is a chart context usable in alerts.

GroupMetrics
Network / Interface4
Network / Protocol5
Network / VPN1
System / Activity2
System / CPU1
System / Disk2
System / Memory4
System / Uptime1
System / User1
Uncategorized2

Network / Interface​

Metric (chart context)UnitScopeDescription
snmp.device_prof_ifAdminStatus{status}per interface, interfaceCurrent administrative state of the interface
snmp.device_prof_ifHighSpeedbit/sper interface, interfaceEstimate of the interface's current bandwidth
snmp.device_prof_ifNumber{interface}deviceNumber of network interfaces regardless of their current state present on this system
snmp.device_prof_ifOperStatus{status}per interface, interfaceCurrent operational state of the interface

Network / Protocol​

Metric (chart context)UnitScopeDescription
snmp.device_prof_sfosFTPHits{request}/sdeviceNumber of FTP hits
snmp.device_prof_sfosHTTPHits{request}/sdeviceNumber of HTTP hits
snmp.device_prof_sfosImapHits{request}/sdeviceNumber of IMAP hits
snmp.device_prof_sfosPOP3Hits{request}/sdeviceNumber of POP3 hits
snmp.device_prof_sfosSmtpHits{request}/sdeviceNumber of SMTP hits

Network / VPN​

Metric (chart context)UnitScopeDescription
snmp.device_prof_sfosIPSecVpnActiveTunnel{tunnel}per sfos_ip_sec_vpn_conn_index, sfos_ip_sec_vpn_conn_nameCount of active tunnel

System / Activity​

Metric (chart context)UnitScopeDescription
snmp.device_prof_hrSystemNumUsers{session}deviceThe number of user sessions for which this host is storing state information. A session is a collection of processes requiring a s…
snmp.device_prof_hrSystemProcesses{process}deviceThe number of process contexts currently loaded or running on this system.

System / CPU​

Metric (chart context)UnitScopeDescription
snmp.device_prof_cpu_usage%per cpu_indexThe current CPU utilization

System / Disk​

Metric (chart context)UnitScopeDescription
snmp.device_prof_sfosDiskCapacityBydeviceDisk capacity in MB
snmp.device_prof_sfosDiskPercentUsage%device% Disk usage

System / Memory​

Metric (chart context)UnitScopeDescription
snmp.device_prof_memory_totalBydeviceMemory capacity in MB
snmp.device_prof_memory_usage%devicePercentage usage of main memory
snmp.device_prof_sfosSwapCapacityMBydeviceSwap Capacity in MB
snmp.device_prof_sfosSwapPercentUsage%device% usage of swap

System / Uptime​

Metric (chart context)UnitScopeDescription
snmp.device_prof_systemUptimesdeviceTime since the system was last rebooted or powered on.

System / User​

Metric (chart context)UnitScopeDescription
snmp.device_prof_sfosLiveUsersCount{session}deviceDisplay live user count login into captive portal

Uncategorized​

Metric (chart context)UnitScopeDescription
snmp.device_prof_hrStorageSizeByper storage_index, rm:storage_type, rm:storage_alloc_unit
snmp.device_prof_hrStorageUsedByper storage_index, rm:storage_type, rm:storage_alloc_unit

Troubleshooting​

Other Problems​

Collect Diagnostics for Netdata Support​

For SNMP metrics, BGP, licensing, or topology issues, follow Collect SNMP troubleshooting data to include built-in diagnostics in a support bundle. SNMP evidence is unsanitized; share the bundle through a restricted Netdata Support ticket.


Do you have any feedback for this page? If so, you can open a new issue on our netdata/learn repository.