BWC

Cybersecurity Overlord ✭✭✭
Avatar

Join the Conversation

To sign in, use your existing MySonicWall account. To create a free MySonicWall account click "Register".

BWC Cybersecurity Overlord ✭✭✭

Badges (27)

5 Year Anniversary250 Answers4 Year Anniversary3 Year Anniversary250 Likes100 Answers100 Helpfuls2 Year Anniversary1,000 Comments50 Answers1 Year Anniversary500 Comments25 Answers100 Likes25 Helpfuls100 CommentsWork Out Loud5 Answers25 LikesFirst Answer10 Comments5 HelpfulsFirst Comment5 LikesPhotogenicName DropperEarly Adopter

Comments

  • Hi @mws92 this should cover your scenario: Just select the proper action and you're good to go. --Michael@BWC
  • Hi @Ankur I gave it a short try and no loop for me, looks good. --Michael@BWC
  • Hi @badgenes there a couple of options provided by SonicWall, like GMS (near end of life) or NSM for that matter. You should give them a try to see if it fits your needs. On the other hand you can use any syslog or netflow/ipfix based solution for long term logging, but this requires a lot of customization but probably…
  • Hi @badgenes depending from which NSA you're coming from, but Gen6 (TZ 300-600, NSA x600) do not have some kind of storage. It's AFAIK just a 32KB ring-buffer which will not hold for long. Gen 6.5 (NSA x650) and Gen 7 do provide onboard storage for local logs. It was one of the weak points in the past for appliances not…
  • Hi @RedNet I don't know what the GeoIP source for SNWL is using, maybe someone from SNWL can disclose this. My example above was directly out of the RIPE database, maybe ipwhois does have more accurate information. iplocation.net for example showed UK as country. But if you just block Europe on the SNWL then your addresses…
  • Hi @RedNet as mentioned before, my best guess is that the GeoIP-Filter just reflects whats provided in the IP registry database. So no grouping at this point. Or did I got it wrong and you blocked Europe and Ireland was blocked? --Michael@BWC
  • Hi guys, I guess it depends how the GeoIP provider (MaxMind, etc.) which is used by SNWL classified it. Or relying on the IP registry (RIPE etc.) whois information. I checked 92.123.212.56 a minute ago, it was classified as EU and the whois information shows EU as country as well. So EU is no group for that matter.…
  • Hi @Sliderhome with SonicOS 7 based on linux there would be chance, but I wouldn't bet on it. Depending on the scenario I'am more than happy to have my Mikrotiks behind the SonicWall, knowing that it just works. --Michael@BWC
  • Hi all, it seems that the removal and reassignment into CSC-MA worked. Here the complete list of necessary steps, or at least the steps I did with the help from the post above @Brian . 1) on MSW go to product details for the unit on mysonicwall.com account and disable the ZT option for that unit while on the product…
  • Hi @LTAdmin that's an interessting question, but in my opinion I would not touch the SIP transformation. I honestly cannot tell you if this works on LAN-LAN. If both interfaces are in the same Zone (LAN) you don't need any helpers or NAT rules. If the access rules allow ANY-ANY-ANY you're good to go. You should just make…
  • Hi @Brian thanks for the quick summary of the steps. 1+2) done, 3) GMS checked, was disabled. But the VPN connection to the Cloud and the GMSFlow/GMSServer Objects still exists. Need to be removed manually I guess. --Michael@BWC
  • Hi guys, no word about ES-5382, is this already covered somehow in 10.0.8? Without a fix for that any release of ES renders useless for Zimbra users and I strongly advice NOT to install 10.0.8. --Michael@BWC
  • Hi @ThK I tried the above url and the rewritten request went through just fine. Did you used an URL before the fix or a fresh one? --Michael@BWC
  • Hi guys, I have to bring this old thread up again because the logs of different deployments with 10.2.0.1 and 10.2.0.2 are showing the following messages: OPSWAT: update avaliable with timestamp(20200428141232) OPSWAT: Package not found on the backend server. OPSWAT: Unable to verify the new package. Installed version is…
  • Hi @Micah you sure about this? Or is that just already rewritten URLs are no longer working? UPDATE: It seems that rewritten URLs before the fix are not working. I've tested a moment ago with a new URL and it worked. --Michael@BWC