Jaime

SonicWall Employee
Avatar

Join the Conversation

To sign in, use your existing MySonicWall account. To create a free MySonicWall account click "Register".

Jaime SonicWall Employee

Badges (13)

4 Year Anniversary3 Year Anniversary2 Year Anniversary5 Helpfuls5 Answers10 Comments1 Year AnniversaryName Dropper5 LikesFirst AnswerFirst CommentEarly AdopterPhotogenic

Comments

  • Hello @CTaylor, Even after working with the firewall for a while and subsequently rebooting it, I couldn't get the API response to include the missing details. I was very confident I saw the details previously in the API response as I mentioned yesterday, but now I'm questioning my sanity 😃. I reported the behavior to our…
  • Hi @CTaylor, I’ll take a deeper look tomorrow, but from a quick test on my end using a TZ 400 running 6.5.4.8, I am seeing those items you noted were missing in your firewall’s response data. That was the case until I disabled Geo-IP. From then on, I am missing some of the expected data in the response—even after…
  • Hi @CTaylor, As far as I'm aware, there is no API endpoint for that in SonicOS. The datacenter selection is set on the firewall via mysonicwall.com. It seems this isn't a setting you can apply locally.
  • Hello, Address Groups become ”mixed” type when an object such as an FQDN object, MAC object, or IPv6 object are added to it. Please try referring to the group as a an IPv6 group instead.
  • Hello, Email Security is not my specialization, but I tried to look into it. Unfortunately, I haven't gotten anywhere with it. Your best bet will be to create a support case so that our Email Security specialists can help you. In the meantime, I've passed this to a colleague for his thoughts.
  • Just FYI, the override is also available on Gen6 and doesn't hurt to include it. I usually make it a point to add the override in my scripts.
  • Hi @hbonath, There are a couple of options. You can send {"override": True} in your POST to /auth. This will log you in with config mode. You can extract the message to identify if you were logged in with config mode or non-config mode and send a POST to /config-mode to switch to config mode. HTH. Jaime
  • Hello @G_Hosa_Phat, You didn't overlook this endpoint. The root cause has been reported to Engineering. The 6.5.4.8 API documentation link is redirecting to the SonicOS 7.0.1 API documentation so we were looking at the wrong information. The link I provided in my previous post correctly loads the Gen6 API documentation.
  • Hi @G_Hosa_Phat, The endpoint we've been working with is available on Gen7 only. On Gen6, I got it to work by sending a PUT to /certificates/export/signing-request/name/<NAME>/ftp/<FTPURL>. The same could be done with SCP. Take a look at the link at the bottom of this post. Working example:…
  • Happy to help! Welcome to the SonicWall Community! 🎉
  • I just tested this on both Gen6 and Gen7. On the Gen6 6.5.4.8 firmware release, I am getting the same 400 Bad Request response with the "API endpoint is incomplete" message. I did some research and could not get it to work. On the Gen7 7.0.1 release, I am able to successfully export the CSR. EDIT: I filed a report with…
  • In my experience, the API follows the CLI command structure very closely, so you might find the CLI documentation and CLI help menus and auto-completion/tabbing to be helpful. I haven't actually looked at the CLI documentation for certificates, and it is my first time looking at generating a CSR using the API. Personally,…
  • Hi @G_Hosa_Phat, I tested this out and have a solution for you. Check out the items below and the correct JSON to use. The country name (not abbreviation) is expected. It will fail if the country name isn't in the list of expected names. The API is very similar to the CLI so sometimes the CLI can provide hints where the…
  • Hi, just checking in. Did my responses help?
  • Hi, just checking in. Did my responses help?