BWC

Cybersecurity Overlord ✭✭✭
Avatar

Join the Conversation

To sign in, use your existing MySonicWall account. To create a free MySonicWall account click "Register".

BWC Cybersecurity Overlord ✭✭✭

Badges (27)

5 Year Anniversary250 Answers4 Year Anniversary3 Year Anniversary250 Likes100 Answers100 Helpfuls2 Year Anniversary1,000 Comments50 Answers1 Year Anniversary500 Comments25 Answers100 Likes25 Helpfuls100 CommentsWork Out Loud5 Answers25 LikesFirst Answer10 Comments5 HelpfulsFirst Comment5 LikesPhotogenicName DropperEarly Adopter

Comments

  • Hi @John_Lasersohn totally agree on that and I probably end up in a supoort call anyways. 1) I always create a TSR and I wasn't able to find any crash information, but Support maybe can 2) In most of the cases I had in the past, I was under the impression this was never looked at (goes for 1) as well) 3) empty 4) Hmm, the…
  • Hi @SuroopMC thanks as always and hopefully the thread creator can have his issue resolved. I don't wanna hijack this topic, but "The good news is that there aren't many significant protection updates with the version drift." isn't something I would sign and probably S1 gets d'accord. But I'll leave it there to avoid…
  • Hi @SuroopMC having a new version with fixes is always the preferred way to go, I agreee on that. While you brought this up, where is this new S1 client you're talking about, latest offering through CC is 4.1.5.97, which is roughly 24 releases behind S1 native (latest GA 4.6.2.144)? In all fairness, that means no new…
  • Hi guys, I probably should not chime into this discussion, cause I'am somewhat of a Windows noob. The S1 Support Portal lists something that might be related: The SentinelOne Agent uses Windows VSS infrastructure as part of the rollback mitigation flow. This might cause interoperability issues with other backup solutions…
  • Hi @Larry GeoIP is a dilemma of its own and due to Routing, Anycast or what not wizardry the accuracy can be sometimes not so good. I can't tell which database SNWL is using, opening a ticket for each "misplaced" Geo Location could be one option, but not sure how SNWL handles these requests. Excluding wrongful categorized…
  • Hi Guys, I have to dig out this old thread again, but it's still current considering the fact that there is no new firmware. I'am struggling with one deployment of a TZ 400 at the moment, that the appliance is crashing occasionally, resulting in being completely unresponsive. It cannot be accessed from WAN or LAN, even a…
  • Hi @VaFrance ContentFilter is for Client communication only, from LAN to WAN for example and not covered by DPI-SSL Server to be inspectable by CFS. Maybe you can work it out somehow with App Rules, I highly recommend to do this on the Web-Server itself or having some form of Offload in front of your Web-Server. Like a…
  • Hi guys, I've got a 10.0.10 private build which failed for some reason on my ESA 5000 and after that a 10.0.9.5627 for adressing the OpenLDAP issue (finally after 6+ months). I can't tell if this build does cover any more enhancements but SPF is still a no no, showing No SPF Record for webex.com for example, which clearly…
  • Hi @Nick374 when you cannot access the system via HTTPS, is it still accessible via SSH or serial console? You could login and crank up the following commands, not 100% but you can see where I'am heading to. configure administration no admin one-time-password commit --Michael@BWC
  • Hi @Gentia you could either use a dedicated interface on the TZ for the DMZ (or a new SMA zone which I prefer) or via VirtualInterface. Connect it to your switch and the VM Interface should just point into the same VLAN. It's pretty straight forward. I would go with a DHCP on the TZ for NetExtender/MobileConnect. You…
  • Hi all, I've got word from Support that this will be addressed in 10.2.0.4 for the 100-series, no ETA at the moment. --Michael@BWC
  • Hi @Phil1aap yes they count as two, which is unfortunate because it's very common to have a persistent connection from the mobile phone to the Exchange Server via ActiveSync offload and a NetExtender/Portal session at the same time. --Michael@BWC
    in Licenses Comment by BWC January 2021
  • Hi @DMoody007 sorry to hear that my approach did not worked for you, I'am using it on several deployments, probably some minor thing that was missed here. If you ever feel the need to give it another shot just lemme know. Stay safe. --Michael@BWC
  • Hi @Gailand that's interessting, what's the LDAP usermap frequency than used for? In my experience Refresh Users & Groups do not always work as expected, but maybe it's related to OpenLDAP which is an ongoing struggle for months. --Michael@BWC
  • Hi @samaj or if you wanna spare you all the openssl options just give XCA a try, my swiss army knife for Key/Cert handling. Just my € .02 --Michael@BWC