Arkwright Community Legend ✭✭✭✭✭
Reactions
Comments
-
If you have failover & LB configured, with different DNS on different WANs, then the inherited DNS can change.
-
I think this might be a recent Gen 7 bug, where the SSLVPN web interface redirects to the management web interface. One of these you can leave open to the internet, the other, you don't want to do that.
-
Are you and your colleague logging on from the same IP address? SonicOS cannot handle that and will kick the first user out as soon as the second logs in. You won't get a message telling you this, it will just look like the session timed out.
-
You can troubleshoot this yourself by doing a dropped-only capture for packets from the device in question, then create the relevant rules. But best to get the official list of what is required from the provider as MARKD says.
-
What even is "Verizon traffic"? Is this about wifi calling?
-
Only upgraded 2 firewalls [TZ370 and TZ670] to this beta version so far. Just checked both of them, in both the Real Time Monitor is blank.
-
I think mandrillap is Mailchimp's click-tracking domain so almost certainly no upside to allowing this traffic for you. So "correct" in that sense - it's blocking something that isn't necessarily malicious, but is just junk traffic.
-
Not sure I understand the question - if it's not licensed, then surely it's not being triggered?
-
If you tunnel-all through the VPN out of the licensed appliance, you can "use" the UTM licenses there :D
-
I use the Linux client regularly and never experience latency issues that wouldn't otherwise affect the Windows one. IE, it's not great, but tunnelling everything in TCP never is.
-
Test the cabling. If you can't fix the cabling, installing an intermediate switch might work around the issue.
-
will that cause issues for viruses getting through? Mirroring a port should not cause extra viruses to get through. I suggest you mirror the inside, not the outside. a) If you are using NAT like 99.9% of the world is, then mirroring the inside will show you the private IPs, which mirroring on the outside will not b) if you…
-
On access rules, Users Included/Excluded parameters. Your user is already known to the firewall as they have VPNed in. I suggest you test this WOL stuff without authentication first in case it is not usable on L3 networks.
-
Bear in mind that every event type can be configured differently for frequency of logging.
-
Find IP address of one handset. Put it into the filter in the Packet Monitor tool. Tick the "Dropped packets only" box. Start capture, see what gets dropped. Additionally, search the logs for handset IP, see there are any events.