TKWITS Community Legend ✭✭✭✭✭
Reactions
Comments
-
Look at the laptops, its not likely caused by settings on the firewall.
-
My sarcasm is frequently lost in translation. Well at least they have a ticket open for it. I'd refer them to this post if they want a detailed explanation. What if you just use the auto-created 'Default GEOIP and BOTNET Exclusion Group', not your custom one?
-
You want to put a group inside of a group! You're crazy Larry! Does it work if you put the contents of the sub-group as individual entries in the GEOIP and BOTNET Exclusion Group?
-
As a follow up, apparently DS-LITE is supported through the CLI. Under the interface configuration your can set the 'type' to DS-LITE. https://www.sonicwall.com/techdocs/pdf/sonicosx-7-command-line-interface-reference-guide.pdf フォローアップとして、DS-LITE は CLI 経由でサポートされているようです。 インターフェイス構成の下で、「タイプ」を DS-LITE に設定できます。
-
I have never seen a loopback interface on a Sonicwall in my many years of experience. Is that the best way to accomplish your goal?
-
Upgrade your firmware version, that one is ancient. You cannot add a second tunnel to the same subnet. Do you have control over the other S2S VPN gateway? You'll need to add the new second ISP WAN interface static IP as a secondary gateway for the tunnel. IKE ID doesn't matter as long as it matches both ends, BUT you'd…
-
So what is the question?
-
@Arkwright had the right question: are the AP's doing client isolation? The wording in your original post seemed to me to imply you wanted LAN to DMZ connectivity, thus my question.
-
What do your DMZ to LAN access rules look like? Hard to help troubleshoot when we don't know the config...
-
I'm going to go out on a limb and provide this link.
-
Mobile Connect is no longer supported on Windows. Use NetExtender.
-
It doesn't sound like a configuration issue on your side, but on the side you don't manage. Getting on a call with the other IT team to review all VPN settings might reveal the problem. Have a form for VPN tunnel configurations. If someone says 'it's configured correctly' and you point them to the form to review, you'll…
-
I second @Larry 's approach as that's what I do. A Tenant per client, with all their devices underneath it. Simple and effective.
-
No problem. Most of us have been around a while and generally ignore the 'rant' posts, even if we are guilty of it sometimes too. I only joined in because BWC did. I didn't like the licensing aspect of it when I started with them years ago but have grown accustomed to it. Most 'business-level' firewalls have some sort of…
-
Zone WAN is the default and is appropriate when using more than one ISP. @Arkwright 's question is still valid: "Have you got both of the public IPs configured on the tunnel at the other end?" E.g. on the VPN Settings \ General tab you can enter a secondary gateway address(which would be the second ISP address of the…