TKWITS Community Legend ✭✭✭✭✭
Reactions
Comments
-
Change the default HTTPS Management rule from allowing Source 'Any' to the IP address you want to allow.
-
Resolve the conflict by changing the SSLVPN Client IP range.
-
You havent provided much information. Are the local printers networked, and if so is there a subnet overlap with the SSLVPN client?
-
You might want to ask a Palo Alto community about configuring those. BUT standards are standards and if your Palo Alto isn't configured for VLANs than it's not going to 'see' all the traffic from your switch.
-
You might want to read Splashtops' documentation. https://support-splashtopbusiness.splashtop.com/hc/en-us/articles/115001811966-What-are-the-Firewall-Exceptions-and-IP-addresses-of-Splashtop-servers-Services- Also, having all your requirements BEFORE starting something usually helps.
-
Why not just use an Access Rule to deny traffic to HTTP, HTTPS, and TCP 8080 ports from those devices?
-
That was my thought when I first was playing with Gen7 GEOIP, was that it was sorting the list by ISO Country Code.
-
For clarity, you want the syslog 'Web Site Hit' messages to show allowed traffic. Not sure if that's a thing, you might get it from another setting. Have you tried setting the logging level to debug for Syslog \ Syslog Website Accessed? Or enabling Syslog on Network \ Network Access \ Packet Allowed?
-
I would just create a new tenant with the proper name and move the appropriate things to it. The fact that designers are including MANUAL REFRESH BUTTONS is infuriating as it is, but waiting for support to fix something might take a while... Don't forget to hit that refresh button after creating the new tenant...
-
A screenshot will do along with a brief description / diagram of the network.
-
You haven't shown us your access rules...
-
You can do all kinds of things with them including what I posted about PortShields. Im going to kick myself for asking, but why are you trying to do this? What does this accomplish that having a switch on X0 and the servers on said switch doesnt? Or having a different Subnet and Zone on interface X10?!? You can do what you…
-
Please provide an example of the syslog message, and show what your logging settings are for entries under Network \ Network Access.
-
I dont use CSC, but my guess would be like you said. If you aren't using tenant groups you won't get that view. Also for organizational purposes tenant groups are key.
-
It sounds more like the poster is trying to 'extend' the LAN to second interface, but ya know, details. As BWC said you cannot have two interfaces in the same subnet. Thats not how IPv4 routing works. To get around this Sonicwall has a feature called PortShield, which allows you to set a second (or third, fourth, etc.)…