Solved

sonicwall pro 100 - Block a port on VPN to remote office

Posted on 2007-03-19
2
740 Views
Last Modified: 2012-06-27
Basic VPN and port blocking question. I'm doing it on a Sonicwall pro 100.

What I want to do (or know if it's possible) is block a port on my VPN between my remote offices. The idea being, a certain virus may use port xxx, so i want to block it. I talked to sonicwall support, and they said it was impossible to do with the sonicwall box. I don't believe them. Am i crazY?

I guess if i had to, i could block the port via a rule in the cisco router (assuming i have a version that has some firewall options). Whatcha think?
0
Comment
Question by:cajx
2 Comments
 
LVL 16

Accepted Solution

by:
AdamRobinson earned 250 total points
ID: 18752524
I believe the only way on the Sonicwall would be to add an access rule FROM the IP address of the remote office TO your IP with DENY on the chosen port.  Assuming your intersite traffic passes through your Sonicwall.
0
 
LVL 77

Assisted Solution

by:Rob Williams
Rob Williams earned 250 total points
ID: 18753491
Basic purpose of a VPN is to allow all traffic through the tunnel. It's often easier to enable and configure software firewalls on the PC's such as the windows firewall to block specific port traffic. If you have a Win2003 server you could manage that with group policy to enable the firewall and then allow the appropriate exceptions.
0

Featured Post

Comprehensive Backup Solutions for Microsoft

Acronis protects the complete Microsoft technology stack: Windows Server, Windows PC, laptop and Surface data; Microsoft business applications; Microsoft Hyper-V; Azure VMs; Microsoft Windows Server 2016; Microsoft Exchange 2016 and SQL Server 2016.

Join & Write a Comment

If you get continual lockouts after changing your Active Directory password, there are several possible reasons.  Two of the most common are using other devices to access your email and stored passwords in the credential manager of windows.
If you're not part of the solution, you're part of the problem.   Tips on how to secure IoT devices, even the dumbest ones, so they can't be used as part of a DDoS botnet.  Use PRTG Network Monitor as one of the building blocks, to detect unusual…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Sending a Secure fax is easy with eFax Corporate (http://www.enterprise.efax.com). First, Just open a new email message.  In the To field, type your recipient's fax number @efaxsend.com. You can even send a secure international fax — just include t…

758 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

23 Experts available now in Live!

Get 1:1 Help Now