TKWITS Community Legend ✭✭✭✭✭
Reactions
Comments
-
You haven't provided any information on the model and firmware version of your device...
-
So you've read this? It is quite common for companies to require VPN traffic be NATd. To answer the only identifiable questions I could find: Yes it is possible to use a Public IP address as the encryption domain. I personally have never done it with a single public IP (always had blocks to use) but there shouldn't be any…
-
First of all, upgrade your TZ370 to the latest available firmware. Secondly is your is your second ISP giving you a public IP to use or are you assigning a private IP to your Sonicwall interface and NATing to a public ip? Sounds like what was discussed here.…
-
Back to basics. What IP subnet is the Sonicwall LAN using? Are you using the same subnet for SSLVPN, if not what is it? What model and firmware version of the Sonicwall?
-
With regards to priority: There is no relevance to the 'priority' setting in your instance. From the linked article "When multiple traffic classes compete for shared bandwidth, classes with the highest priority are given precedence." 99% of the time I do not have overlapping of allocated bandwidth between priorities. There…
-
let me search for you... or do you have a specific question?
-
Seems like its going to take quite a bit Larry.
-
"Does the fact that the firewall is looking at NAT traffic reduce the functionality of the firewall features (Anti-Virus, Anti-Spyware and intrusion prevention)?" Antivirus, antispyware, etc. are functions of the 'UTM' features of the platform, not the 'firewall' features. Either way, since you are double NATd and double…
-
No.
-
The message you are receiving is a warning not an error, and generally isn't much to worry about. Yes, you should have flood protection on, but it shouldn't be a knee jerk reaction just because of some warnings in the log. These days clients and servers pump out traffic so fast for all kinds of reasons (poor programming,…
-
"Everything has been smooth sailing so no need to change." this type of response is why places get ransomwared... Glad you got it worked out.
-
You'll likely have to open a ticket with support to get hotfix details.
-
If it was a license issue your user wouldn't be able to login and would receive a notice. I know I had a few problems with SSLVPN on Gen6 devices pre-6.5.4.8, any reason you're not on it? What happened two weeks ago? What does your sslvpn config look like (tunnel-all)?
-
Does the NSA4600 have an IPv6 WAN address? Not sure what 'lite DSL' is, but is it IPv6 only?
-
The VPNs should be pointed to the address that is configured on the WAN interface, not an ARPd address.