Solved

sonicwall pro 100 - Block a port on VPN to remote office

Posted on 2007-03-19
2
744 Views
Last Modified: 2012-06-27
Basic VPN and port blocking question. I'm doing it on a Sonicwall pro 100.

What I want to do (or know if it's possible) is block a port on my VPN between my remote offices. The idea being, a certain virus may use port xxx, so i want to block it. I talked to sonicwall support, and they said it was impossible to do with the sonicwall box. I don't believe them. Am i crazY?

I guess if i had to, i could block the port via a rule in the cisco router (assuming i have a version that has some firewall options). Whatcha think?
0
Comment
Question by:cajx
2 Comments
 
LVL 16

Accepted Solution

by:
AdamRobinson earned 250 total points
ID: 18752524
I believe the only way on the Sonicwall would be to add an access rule FROM the IP address of the remote office TO your IP with DENY on the chosen port.  Assuming your intersite traffic passes through your Sonicwall.
0
 
LVL 77

Assisted Solution

by:Rob Williams
Rob Williams earned 250 total points
ID: 18753491
Basic purpose of a VPN is to allow all traffic through the tunnel. It's often easier to enable and configure software firewalls on the PC's such as the windows firewall to block specific port traffic. If you have a Win2003 server you could manage that with group policy to enable the firewall and then allow the appropriate exceptions.
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

One of the biggest threats facing all high-value targets are APT's.  These threats include sophisticated tactics that "often starts with mapping human organization and collecting intelligence on employees, who are nowadays a weaker link than network…
Knowing where your website is hosted is as important as the features you receive, the monthly fee, and the support you receive. Due diligence should be done when choosing your next hosting provider.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Email security requires an ever evolving service that stays up to date with counter-evolving threats. The Email Laundry perform Research and Development to ensure their email security service evolves faster than cyber criminals. We apply our Threat…

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question