Comments
-
Glad I could help. Have a good one!
-
That is right. There are ways that this can be pushed via a group policy etc. Please take a look at this KB for more details. Thanks!
-
Yes, TZ 300 and TZ 400 are Gen 6 appliances. SOHO is a Gen 5 appliance.
-
@AIT, In that case, you can activate the DPI SSL license on the mysonicwall account. It is made available for free on all Gen 6 appliances. Without it, the firewall can only check the unencrypted traffic. Thanks!
-
Hello @AIT, We can check the headers but most of the time, the malware is hidden in the payload, due to which DPI SSL is essential for encrypted sessions. For all Gen 6devices, DPI SSL can be enabled from the mysonicwall account. Which device are you using? Thanks!
-
Hello @skunkworks , You can mention the second IP on the remote end as the secondary peer IP address. This can be set in the VPN policy itself on the other end. Thanks!
-
Hello @needinfos, Welcome to the SonicWall community. Yes, you should be able to directly upgrade to 6.5.4.7 without any intermediate version. Thanks!
-
Sure. Let us know how it goes 😀
-
Hello @DisaRicks, Welcome to the SonicWall community. There is an option called Preemption under MANAGE | High Availability | Settings. If this is disabled, even when the primary is back up and operational the failover does not take place. We usually suggest it be turned OFF as the hardware, settings, firmware, etc is…
-
@Jagadeesh, Honestly, I haven't dealt with something like this myself, but I can see the only option that could be used is multipath routing. Are you using route-based VPN? If yes, I think we can select the first interface as VPN and the other as MPLS or vice versa as per your requirement and test this out. Thanks!
-
@MartinMP, While testing from LAN, please make sure that the toggle switch is enabled for the LAN zone too. If this is occurring for multiple users, I would suggest doing a packet capture on the firewall and checking if TCP 4433 traffic is reaching the firewall or not. Otherwise, you can try to use 444 as the SSLVPN port…
-
Hello @Jagadeesh, We can certainly set up failover for the VPN and MPLS connection using Network Monitoring. Please take a look at the KB below. Thanks!
-
Hello @MartinMP, Welcome to the SonicWall community. Have you tested this with multiple users or just from one location? On the firewall, is the public IP directly configured on the WAN interface, or you have it on DHCP? Please take a look at the following KB. Thanks!
-
@AndyLam, Sure. Yes, if the NSa 2650 is already installed on site then the admin guides will be more useful. 😀
-
Hello @AndyLam, Welcome to the SonicWall community. You can use the link for the getting started guide from this KB. Also, for more technical docs or KB articles, you can visit the following link. Thanks!