Sonicwall TZ170/180 Access Rules Question

Posted on 2009-05-15
Medium Priority
Last Modified: 2013-11-16
How do I write the access rules to force all http/https traffic thru a VPN tunnel on a TZ170 or TZ180?

We have remote locations that use TZ170/180's to connect to our Corporate office with a point to point VPN tunnel for data access.  What I'd like to do is force them to also route thru the VPN tunnel for Internet traffic so that we can monitor where they go on the Internet with our Websense box.  Currently I can deny LAN to WAN traffic for the Web but I can't turn around and enable a LAN to VPN rule for Web traffic because there is no VPN destination choice on the TZ 170/180 like there is on my Pro2040.  Is there another way to accomplish this task?
Question by:keithmendez
  • 2
LVL 17

Expert Comment

ID: 24450610
Do you have Enchanced OS?

If so, you can achieve what you want, I'm pretty sure, using Policy Route. Make the target gateway for teh rule the Internet gate way at the FAR END of the VPN.

I don't think you can do it with Standard OS.

LVL 17

Accepted Solution

ccomley earned 2000 total points
ID: 24450642
Unless you want ALL internet traffic diverted through the tunnel so only VPN traffic goes to the router.

Edit the VPN config on the "remote" end
Go into the "Network" tab
In the Destination networks section, select "Use This Tunnel as Default for All Internet Traffic"


Featured Post

Firewall Management 201 with Professor Wool

In this whiteboard video, Professor Wool highlights the challenges, benefits and trade-offs of utilizing zero-touch automation for security policy change management. Watch and Learn!

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Secure VPN Connection terminated locally by the Client.  Reason 442: Failed to enable Virtual Adapter. If you receive this error on Windows 8 or Windows 8.1 while trying to connect with the Cisco VPN Client then the solution is a simple registry f…
Will you be ready when the clock on GDPR compliance runs out? Is GDPR even something you need to worry about? Find out more about the upcoming regulation changes and download our comprehensive GDPR checklist today !
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…
When cloud platforms entered the scene, users and companies jumped on board to take advantage of the many benefits, like the ability to work and connect with company information from various locations. What many didn't foresee was the increased risk…

627 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question