Arkwright Community Legend ✭✭✭✭✭
Reactions
Comments
-
Is W0 IP inside LAN Subnets, by any chance?
-
https://www.sonicwall.com/support/knowledge-base/how-do-i-schedule-a-reboot-on-my-firewall/180108091908826
-
GVC and NetExtender do not work in the same way. By default with GVC the VPN client will be assigned an IP out of the X0 subnet. NetExtender requires an IP address pool. For that reason, one possibility here is that the machines cannot be reached over NetExtender, but work with GVC, don't have the correct gateway.
-
When you SSH on and schedule a reboot, only the device which you have logged in to, will be rebooted.
-
It turns out that the graceful shutdown doesn't work with the 7.0.1 firmware, but it does with 7.1.1. Does 7.1 add a shutdown option in the web interface?
-
No - not legally, anyway.
-
Fair enough. Did support have you connect the console cable to watch for output whilst attempting to shut down?
-
Where is the documentation that says there is a shutdown procedure? I googled "sonicwall nsa shutdown" and it's not on the first page.
-
Yes, you can change the mask on the Sonicwall, assuming the smaller mask does not overlap other interfaces configured on the Sonicwall. As for different subnets within this range they're not going to be different subnets. You can pretend that you have 4x /24s or 32x /27s but each of those networks will still have to use…
-
I just logged in to a 4700, there is no option to shut it down in the UI. You can "Restart System" and "Restart SonicOS" [the tooltips for which explain nothing]. Why would they give you an option to do it locally but not remotely?
-
What even is a graceful shutdown on a Sonicwall? I didn't even know it was A Thing until I saw this thread.
-
Try iperf2 instead of iperf3 and you might see better results, as iperf3 is single-threaded so you might be hitting your CPU cap before network limits. This seems unlikely to me. iperf uses next to no CPU, the OP would have to be using hardware from a previous millennium to be hitting a CPU limit at <30Mbps. On this 10yo…
-
https://www.sonicwall.com/support/knowledge-base/route-traffic-to-certain-website-s-through-site-to-site-vpn-without-route-all-traffic-vpn-set/170503510565981
-
You can see this for yourself in "SD-WAN Connection Log". The Iface columns do not show actual VPN tunnel interface name, but they do show the physical interface the tunnel is bound to.
-
ok, but it chooses one connection per-flow, yes. One flow can only ever go down one tunnel. But there will always be more than one flow, right?