Join the Conversation

To sign in, use your existing MySonicWall account. To create a free MySonicWall account click "Register".

Firewalled subnets

Sorting through our Sonicwall and learning a great deal. I've come across a group called "Firewalled subnets". It's a default group however it includes custom names inside the group. I have the feeling this is a very simple answer. What determines what gets included in this group? It appears to include all the zones. So if a new zone is created, is it automatically included in firewalled subnets?

Category: High End Firewalls
Reply

Best Answer

Answers

  • SaravananSaravanan Moderator

    Hello @DJHURT1,

    Firewalled Subnets address group by default contains the address objects meant for the Zones that are configured on the firewall interfaces. The firewall interface(s) may be active or inactive. The Zones can be of default zones such as LAN, WAN, DMZ, WLAN, etc,., or any custom zones.

    Hope this helps.

    Regards

    Saravanan V

    Technical Support Advisor - Premier Services

    Professional Services

  • BWCBWC Cybersecurity Overlord ✭✭✭

    Hi @djhurt1

    I wouldn't rely on that Address Group if you have internally routed networks in your LAN zone behind a Core Switch etc., these will not be part of the group.

    I personally avoid any firewall generated address objects (except Interface IP) to avoid any situations beyond my control, your mileage may vary.

    --Michael@BWC

  • shiprasahu93shiprasahu93 Moderator

    Excellent point Michael@BWC. I forgot to add that earlier. The Firewalled subnets only include the subnets configured on the firewall (Physical and VLAN sub-interfaces) and not the routed networks.

    So, in scenarios where those networks are also required, they need to be manually added to a group along with Firewalled Subnets.

    Thanks!

    Shipra Sahu

    Technical Support Advisor, Premier Services

  • djhurt1djhurt1 Newbie ✭

    @BWC

    That is exactly what led me to ask the question. I wanted to know what gets added to this group since it appeared to be auto generated. Thank you.

  • SaravananSaravanan Moderator

    Hi @DJHURT1,

    We have a KB on this now.

    Thanks for your feedback. Your feedback gave us a chance to present the KB. 🙂

    Regards

    Saravanan V

    Technical Support Advisor - Premier Services

    Professional Services

  • Poorni_5Poorni_5 SonicWall Employee

    @Saravanan , that was pretty quick. Thank You for the article.

    Thanks & Regards,

    Poornima.T.R

Sign In or Register to comment.