BWC Cybersecurity Overlord ✭✭✭
Reactions
Comments
-
@Peter_R in general Gen6 to Gen7 works just fine, did you compared the Local and Remote Networks defined in your configuration on both sides thoroughly? I'am sure the Address Objects do not match, maybe the Subnet size differs or the IP Range. What kind of objects are you using for the VPN Tunnel networks, Subnets, Ranges…
-
@oldtechie you can only have one Load Balancing & Failover Group, I would consider using this for Network 1. Because you asked for "simple" Failover, Internet access for Network 2 could be accomplished with PBR (policy based routing). SRC: Network 2 DST: Any GW: Starklink GW IP IF: X1 (or whatever Interface Starlink is…
-
@MustafaA the title of this thread gives it away :) ...its 7.0.1-5111 ... but the Cookie is something I looked already into because Wireshark showed it's Cookie related. Hopefully the custome is able to test shortly and I'll report back. I already informed another customer with the same exact problem to give it a try.…
-
This is a question for SNWL itself, they'll probably answer it. My task is done with answering "looking for visio stencils for nsa series firewalls." 😉 Green ports are usually the ports with an active link, don't know why this needs to be in a stencil. --Michael@BWC
-
Noone is using Google these days anymore? Let me search for "sonicwall visio stencils" on https://google.com for you --Michael@BWC
-
@Simon_Weel I joined the club today, against my conviction I migrated a NSa 2650 to a NSa 2700 and was plagued with the \u0009 myself, it seems that this is not an isolated incident. @MustafaA the migration tool should be fixed to strip out these characters if they cannot be handled properly in the UI. --Michael@BWC
-
@Simon_Weel I'am not sure what the command caused, but if you don't commited the change a reboot should fix it. Isn't the websocket used for the SSL-VPN Portal Bookmarks RDP? The command @preston mentioned looked good to me. address-object fqdn "test \tcrystalmark.info" name "test \tcrystalmark.info" uuid…
-
@Simon_Weel could you please post the whole block like address-object fqdn EXT_F_sonicwall.com name EXT_F_sonicwall.com uuid 00000000-0000-0034-0100-18b169905d80 zone WAN domain *.sonicwall.com no dns-ttl exit --Michael@BWC
-
@Jung you might check the TSR for that kind of information, I couldn't see any statistics in the Web UI. Search for something like this, it's from a NSa 2700 as example. #Blade_1_SDWAN_START #SDWAN : Interface Groups_START --Interface Groups Summary-- SDWAN Interface Groups Runtime Settings SDWAN Interface Groups…
-
@Simon_Weel can you post the portion of your config shown by "show address-object" for that fqdn? --Michael@BWC
-
@Halon5 great to see you around here again. Sadly SNWL missed the opportunity to clear things up. I would assume they have the right sources to gather detailed information from. My educated guess for now is, that it might have no impact to DPI-SSL because of this paragraph: Even after the change, in addition to trusting…
-
@partha06 this topic is discussed a few times here, a simple search resulted in this: If the device got decomissioned because of a Secure Upgrade I doubt that Customer Support will transfer it into your account. --Michael@BWC
-
@Simon_Weel did you checked on the CLI how this Object looks in the configuration? Web UI seems to have some trouble with it. show address-object fqdn <hit tab for list of objects> or for all FQDN objects show address-objects fqdn --Michael@BWC
-
@katsogiannis depending on your WAN Interfaces you might experience a drop of a few packets. Stateful-HA needs to be licensed to have a smooth transition. If you're running something like PPPoE on your WAN interface it might take a while to reconnect, these connections are not synced.. --Michael@BWC
-
@rcolving there is a KB article for that: --Michael@BWC


























