Quantcast
Channel: Network Security - Recent Threads
Viewing all 531 articles
Browse latest View live

TZ400 W Can´t connect wifi clients to LAN

$
0
0

Hi:

I have a new TZ400 W, the wifi clients and LAN clients can connect to WAN without problems, but the wifi clients can´t connect to LAN clients.

Both Zones (LAN and WLAN) are trusted zones (Interface Trust)  and Gateway AV, Anti-spyware, IPS and App Control is enabled.

Where´s the problem??

Thanks


Manage SonicPoints Remotely Across MPLS sites?

$
0
0

I plan on purchasing a new 3600 or 4600 NSA along with 6 new SonicPoints. 2 of those 4 will be hosted at a main location where the NSA Appliance will be running. The other 4 will be at 2 other remote locations that operate with MPLS. Am I able to manage them all from the main location so that they all have similar configurations? I want to avoid manually configuring them.. I want to have them all manageable from the main location.

IF not, what is the minimum requirement to manage the SonicPoints at each of those two sites? Another firewall?

Thanks

Two Factor Authentication

$
0
0

Hi Team,

Is it possible to achieve a two factor authentication at Firewall level with Sonicwall without any other thirs party, or is it possible only for SSL-VPN?

APP Control - Request Hotfix 164511.

$
0
0

Hi

This is happening quite often and only way to clear is a reboot. Can you please send the Hotfix and any instructions?

Thanks 

L2TP Split Tunnel in Windows 8 and Android

$
0
0

I am able to connect to the Sonicwall TZ210 just fine.

The issue is that if I am connected to the tunnel then I have no public internet access.  The remote VPN subnet is fine.  For instance, I can ping the VPN remote private subnet but I can't ping yahoo.  If I go into the windows client and change the "Use default gateway on remote network" then I get internet access through the tunnel but can't connect to the VPN remote private subnet.

Secondarily, I need to be able to connect using my Note 4 and L2TP VPN settings on it.  I get IKE negotiation failed regardless of trying IKE PSK Version 1 or 2 in the Android Settings - More Networks - VPN - Basic VPN.

I'm in Eastern Europe and I can't work so this is becoming a real issue.

Sonicwall SOHO VPN Config

$
0
0

I am trying to configure a new Sonicwall SOHO device.

I am setting a site to site VPN to azure.  We normally use tz105 or tz205 devices.  On the advance tab with the old devices you could bind the VPN to the X1/wan interface. That is not an option with the SOHO device.  Only W0 and X0.  I would think this needs to be bound to the X1 interface.  Is this some change in the new OS?

What should this be bound to?

Here is the instructions i follow published by Dell for configuring this.

us-downloads.quest.com/.../Configure_SonicOS_for_MS_Azure_Rev_A.pdf

SOHO Geo-ip not avail in wired?

$
0
0

I had recently purchased a TZ SOHO wireless for one of my customers. I loved the GEO-IP filter and so recommended an upgrade from a 2012 TZS-205 to the same SOHO device for another customer. The only difference is the first customer had wireless and the second did not need it, so we opted for the SOHO without. The wireless SOHO is at firmware 6.2 whereas the wired SOHO is at 5.9.1.4-4o. Same vendor used to purchase both, same total 1 year security license purchased for each.

My question is that the wired SOHO does not have the GEO-IP filtering anywhere..not even an option, however online there is plenty of material on configuring GEO-IP with 5.9 firmware. Am I missing something? Is the GEO-IP only available on the wireless? If not, can I upgrade the 5.9 to 6.2? Finding information on this has exhausted two hours to no avail..thus the forum posting. Appreciate your feedback.

slow file copy- SonicWall NSA 2600 when connected with VPN

$
0
0

I am setting up a new SonicWall NSA 2600 and finding a problem with Sonicwall in regards to performance with a VPN connection.

I have a "test" environment with just my laptop and Voip phone. (80% of employees in company work from home, so I have to ensure VPN works correctly)

When I am behind the SonicWall and make a connection to my VPN (softether). I get a transfer rate of about 182KB/s when transferring a file.

*keep in mind this connection to VPN is physically local, The Sonicwall is in same rack, gigabit connections throughout as "other" network" I VPN into
*when I do a speed test (without) VPN i get 150/150 (what I should get)
*I have turned off every security feature

When I VPN from home (without Sonicwall between) I get a transfer rate of 2.82MB/s.


Any ideas on settings for SonicWall?


DNS

$
0
0

Hi!

Is allowing DNS with HTTP and HTTPS rule better for resolution performance for the users accessing internet through sonicwall or letting the internal DNS Server do the external resolution is better?

Thanks.

Ringcentral's recommended SonicOS BWM settings are too aggressive

$
0
0
The client has a NSA220 (SonicOS Enhanced 5.9.1.0-22o) and is pretty much set up with defaults albiet a few NATs for a handful of typical servers, very basic stuff, and two dozen workstations. The ISP is cablemodem with 100M down and 15M up.

We added about a dozen Avaya handsets to use Ringcentral's "cloud" Voip service. We tried using them without adding any settings to the SonicOS, but of course resulted in your typical Voip problems.

We applied Ringcentral's recommended SonicOS settings: http://success.ringcentral.com/articles/RC_Knowledge_Article/7773

After we did this, the phones work fine, but at the cost of our internet. We're getting terrible ping times, a sharp decrease in bandwidth.

I believe the Ringcentral settings may have been for an older SonicOS, what modifications to Ringcentral's workflow could be done to make things "better"? I am hoping that someone with experience can see what they did and say "Why on earth did they do that?".

sonicwall vpn corrupting Microsoft office files on a mac

$
0
0

Hello,

A user connecting to a sonicwall appliance is receiving corrupted Microsoft office files on a mac.

This is not happening when the user connects to the lan onsite (either via wi-fi or cable), and is not

happening on windows clients.

Have you got any ideas of how can I begin troubleshooting or why is this happening?

Thanks

using an usb LTE device as primary connection

$
0
0

Hi All,

Does anyone know if I can use something like a At&t Laptop Beam (USB) device as the sonicwall's primary connection?

Here is the link - www.att.com/.../beam.html

if so what is the minimum sonicwall device I can us it on?


Sorry if this has been answered before, I searched and couldnt find anything.


Regards,

Matt

New Network Configuration Question

$
0
0

Out of my element here, have a new building we are moving to and wish to verify the correct way to setup our network. Pieces include 1 - TZ-200, 1 - DSL + Wireless Modem, 1 - 2824 dell switch (Data),1 - 2824 dell switch (Voice), 1 - Security DVR. If I configure the TZ-200 to dhcp server, remove dhcp from dsl modem, plug it into wan port will the sonicwall pick up the wireless and serve out the ip address for those wireless address, plus configure the remaining ports on TZ-200 to be LAN will all the devices be on the same nat table/subnet for easy access? can provide simple diagram if that helps.

Connect to SonicWALL from Linux

$
0
0

Hello!

Our customer has NSA-3500.
They use Windows Server 2012 server in AWS as Remote Desktop. The server connects to the customers network by SonicWALL Global VPN Client.
Now they need to add the second server with Linux.

I tried to setup IPsec using Openswan like described here
but has an error: 

022 "vpn": We cannot identify ourselves with either end of this connection.

The difficulty is that we can't change settings at the customer's appliance.

Is it possible to establish connection from Linux in this case?

SoniWall NSA 5600 sereis

$
0
0

hi,

i have new implementation for tow NSA 5600 sonicwall with HA.

is it recommended to implement them without router or should i get router and is the new router will affect controlling the sonicwall features like (wan Failover or load balancing) ?

 and what is the best practice design , connect them to router or no ?


Windows update being blocked by content filter #59

$
0
0

I was unable to run windows update on a new install and found that the content filter was blocking access. Category 59 (malware) was checked. Unchecking it allowed me access again.

Here's the log entry.

Category:59 - MAC address: .....- ds.download.windowsupdate.com/v11/3/windowsupdate/selfupdate/WSUS3/x86/Win7SP1/wsus3setup.cab?1

510201936

Sonicwall TZ105W and Site-to-Site VPN

$
0
0

I have an office with a TZ105W in which I have bridged the wireless to the LAN. I then created a VPN to another office. The VPN was active but no traffic was passing through. On the TZ105W (VPN) local Network was set to LAN subnet. I was assuming that the bridged WLAN and LAN would allow traffic through the VPN connection...it did not. Once I change the local network to W0 subnet, traffic was allowed through the VPN. All devices on the TZ105W are wireless, but I would like to make sure that the LAN devices would also have access to the VPN. Please let me know what I may have missed. Thank you.

SonicWall NSA 4500 blocking access to SurveyMonkey.com - says SYN Flood?

$
0
0

Yesterday evening one of our staff sent out a Surveymonkey.com link to our staff. Everyone who is trying to connect to it through the SonicWall is getting a Connection Timed Out. When checking the Sonicwall log, I see this error:

Possible SYN Flood on IF X0 - src: 192.168.35.91:51775 dst: 75.98.93.51:443

That's the client I'm trying to connect from, and the 75. address is SurveyMonkey's webserver. I see this error on any client that tries to connect. 

This is the only site I'm aware of showing this behavior. Any thoughts?

SonicWall Firmware update tips

$
0
0

This SonicWall has been neglected for quite some time and I was looking at doing firmware updates on it. I took a look at the firmware releases and made note of all updates needed. Can anyone offer tips to keep in mind if I go and update this old thing? Does each update need to be installed or do I just need to go to the most recent?

Thanks in advance for any help!

Updates needed

5.8.1.8-42o

5.8.1.10-44o

5.8.1.12-46o

5.8.1.13-1o

5.8.1.14-48o

5.8.1.15-51o

5.8.4.0-7o

5.9.0.0-91o

5.9.0.1-100o

5.9.0.2-107o

5.9.0.4-127o

5.9.0.6-3o

5.9.0.7-17o

5.9.1.0-22o

5.9.1.1-39o

Enable ping on static arp entry

$
0
0

How can I enable PING on a static arp entry? Thanks!

Viewing all 531 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>