MarkD Cybersecurity Overlord ✭✭✭
Reactions
Comments
-
supermassive - contact support and raise a ticket
-
I can understand the cert invalid on the management interface unless its been changed uses a self signed with cert 192.168.168.168 You get the same on a browser
-
the ICMP timeout has expired On windows use ping -w (wait for a response) ie 4000 - 4 seconds On Linux use ping -W (wait for a response) in seconds
-
neither protocol is supported directly on the firewall, you would need to host a server internally
-
please look at how BM works How can I configure bandwidth management? | SonicWall
-
I would suggest checking that the DHCP is from the comcast router and the GW is the comcast device, if so check your wiring.
-
I've seen issues when running NAT over the VPN with some applications.
-
WLAN is not needed - it adds support for Sonicpoints -
-
There are at least one I know of non standard implementations / extensions of IPSEC over TCP - Barracuda have TINA tunnels - which does have some advantages TINA VPN Tunnels | Barracuda Campus IPsec NAT Traversal should take care of ISAKMP UDP 500 being blocked. SW GEN 7 Network/IPSEC VPN/ Advanced - which I believe is…
-
Does your subnet 192.168.1.0/24 route all traffic via the Firewalls interface or something else (like a L3 switch), if it does, a route to the SSLVPN subnet 192.168.2.0/24 will need to be added
-
good luck , BWC's idea of ruling out some potentially bodged or nobbled management port NAT sounds like an idea.
-
From my notes within Entra you need to create an enterprise single sign on application make sure to have the Entity ID and the Reply URL correct you will need the Cert for the application and load that into the SMA under Certs, there is a specific SAML cert section And the uploaded SAML cert Add a authentication domain…
-
The DHCP - on the WAN side or your machine internally , is it authenticating and running PPPoE or just DHCP on the WAN You can run a debug on the specific WAN interface (X1 usually) and view the timings.
-
If all else fails flatten and start again, there's something in the config you are uploading. check the config on X0 show interface X0 management https management ping management snmp management ssh check the https port show administration https-port XXXX - matches your 8443