Monday, April 3, 2023

Sonic route-based vpn 0.0.0.0/0

 I was working in my day job with a customer that has a sonicwall and they need to change from specific  proxy-ids for src/dst to 0.0.0.0/0:0 


In order to do this you need to change the VPN from site2site to tunnel. Check out the screenshots of the two modes and take notice of how the "network" option disappears when you do tunnel mode




You still need to apply a route-policy for the destination to ensure that traffic is routed over the VPN . This is an option in sonicwalls that is commonly missed





NSE ( network security expert) and Route/Switching Engineer
kfelix  -----a----t---- socpuppets ---dot---com
     ^      ^
=(  @  @ )=
         o

        /  \


No comments:

Post a Comment