Arkwright Community Legend ✭✭✭✭✭
Reactions
Comments
-
I suggest you raise a support case, there is a hotfix for this.
-
Try with just the non-working Fortigate IP address in the Primary gateway first, observe the logs. If you cannot get it working by itself, it's never going to be able to fail over to it.
-
What is it ARPing for? The gateway's IP, or for random things on the internet?
-
./install: line 298: /usr/sbin/netExtender: cannot execute binary file: Exec format error You are trying to run the x86 NetExtender binary on an ARM CPU and that won't work[*]. Given that they don't even do a Windows ARM version, then hoping for a Linux ARM version is probably an even longer shot! *It might work with some…
-
AFAIK, you cannot export / import individual pieces of a config (address objects, access rules, etc. You absolutely can do this with the CLI. I use this semi-regularly to create the same address objects on multiple firewalls. It's also handy when making major changes to have a copy of the config I can paste back in if my…
-
10 days running with hotfix, looking better. Previously, SSLVPN service was dying around the 3 day mark.
-
that DOES NOT mean you will lose your SonicWall support if the device is licensed. Yes, your support does not suddenly evaporate, but a downgrade will be used as excuse to tell you to factory it and start again, or factory it, install the older firmware version and restore a backup taken at that older version. We dont do…
-
I did something similar with Net::Expect::SSH to get SSLVPN license usage counts. I really, really wish this information [amongst others] was available with SNMP.
-
You will need to configure the Sonicwall WAN in PPPoE mode. Should be pretty straightforward to get it working, but check this discussion about static IPs from BT, it may be relevant: https://community.sonicwall.com/technology-and-support/discussion/2592/gvpn-client-fails-to-connect-with-pppoe-fixed-ip
-
How would this work with a range as the translated destination? First one to answer wins? Not work at all?
-
This is not that uncommon a scenario, especially with IPv6 where you get a link-local address allocated with IPv6CP, and the provider routes your global network(s) to that. If the issue is that the Sonicwall is not listening on an IP in the routed subnet, you could try something hacky like adding a VLAN subinterface to X2,…
-
SONICWALL-FIREWALL-TRAP-MIB.MIB trapTypeWlbFailover (651), -- WLB Failover in progress trapTypeWlbFailback (652), -- WLB Failback initiated by %s trapTypeWlbResourceAvailable (653), -- WLB Resource is now available trapTypeWlbResourceFailed (654), -- WLB Resource failed trapTypeEnhWfoFailback (10004), -- WLB Failback…
-
Support have confirmed that's what this is. It should really have a different name to avoid confusion.
-
What was the conclusion to this? My guess is that "Europe" is used where an IP is suspected to be in Europe but can't be more specifically located. I can't verify this though, because I've never been able to get an IP to come up as "Europe"!
-
Use the include/exclude options in the DPI-SSL settings to control what gets DPI'd and what does not. Practically speaking, you need to segregate your network first to be able to do this effectively: put the things you manage and can install your cert on in different networks to everything else [eg guest devices go in a…

















