MitatOnge All-Knowing Sage ✭✭✭✭
Reactions
Comments
-
Hi @Peter_R log say, "Peer's local network does not match VPN Policy's [Destination ]" your both firewall local and remote network address groups does not match each other. please check ip addresses and zone assigment settings. best regardds
-
Hi, Did you check shadowed nat ?
-
Hi @Redes You should check master and secondary device ip addresses on HA\Monitoring Setttings. you can find out device real ip from monitoring menu. Best regards Mitat Önge
-
other hands, You can create tunnel interface for each branch to HQ and route policy or best way OSPF. Tunnel Interface KB: OSFP kb: Other VPN scenario kb: https://www.sonicwall.com/support/knowledge-base/types-of-site-to-site-vpn-scenarios-and-configurations/170505702411896/
-
Hi @Jorabi It seems modem issue. You should check the modem mode? Routin or nat Mode? your service provider should change the modem mode if it possible you can set "bridge mode" on the modem settings and change X1 interface static to bridge mode. what is your connection type on modem from ISP. best regards.
-
Hi, Could you share CPU graphics and task details on diagnostic menu?
-
Basically you should create tunnel interface VPN and creat nat rule for sonicwall side ip block translate new ip block and than send to as a new ip block traffic other site. on the sonicwall side.
-
you should step by step below rules 1) create 2 address groups for WEBPERMIT and POP-SMTP-PERMIT groups 2) enable DPI-SSL service and load certificate to all user pc's 2) Create POP-SMTP-PERMIT-CFS rule for POP-SMTP-PERMIT user group and block everything. 3) create WEBPERMIT-CFS rule and assign to WEBPERMIT and put top of…
-
I didn't find vpn status oid. maybe you can create network monitor and check this probe session failur or successful
-
Glad to hear your problem is solved👍️
-
Could you share Sonicwall LOG? this log screen shot seems to block by spamfilter. add to sonicwall ip address spam filter exclution address group on XR90 router.
-
You should contact to partner of your location. NSA4600 End of Sale device. You can check NSA4700. you can find below partner locater portal.
-
You can read below kbs.
-
What is your firmware version? did you check snmp mib files on mysonicwall.com
-
Hi @Larry Could you share groups member details via group tab