We recently switched to a Sophos XG Firewall and are having tons of issues with simple "port forwarding" to our ArcGIS Enterprise base deployment. We've worked with Sophos Support - professional services for hours and it's a mystery why users cannot download offline areas using Collector.
Firewall rules are properly configured, all security/packet inspection is disabled, ect. and the download still fails. It appears that the ESRI basemap download does not traverse our firewall, but after authentication, goes directly from ESRI's basemap service to the Collector Client. Something with this download is causing an issue with our XG Firewall.
As soon as we switch to our former firewall platform, pfSense all works as expected, no problems.
I guess I'm just wanting to hear from the GIS community if anyone is using XG Firewall out there.