Solved

Configuring a Sonicwall 2040 with SSL-VPN200

Posted on 2009-07-10
26
825 Views
Last Modified: 2012-05-07
I have a Sonicwall Pro 2040 Enhanced with 4.0 Firmware and trying to put a Sonicwall SSL-VPN200 on the network. I had no available ports in the 2040 directly, so chose to connect the SSL into the (LAN) Switch instead. Can somone give me step by step instructions for configuring the 2040 and SSL for VPN access?
0
Comment
Question by:tec1912
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 14
  • 12
26 Comments
 
LVL 9

Expert Comment

by:hmare
ID: 24823999
Group VPN or point to point?
0
 

Author Comment

by:tec1912
ID: 24824269
Sorry for the ignorance, but can you elaborate on that?
0
 
LVL 9

Expert Comment

by:hmare
ID: 24824308
The SonicWall VPN is either a Group VPN-- a single point where clients connect from the internet-- or a point to point, where two firewall/ VPN devices connect two remote networks. Example: If you want users to be able to access your network from home, you would use Group VPN. if you are connecting a branch office, you use point to point.
0
What does it mean to be "Always On"?

Is your cloud always on? With an Always On cloud you won't have to worry about downtime for maintenance or software application code updates, ensuring that your bottom line isn't affected.

 

Author Comment

by:tec1912
ID: 24824329
Good expaination! Group VPN.
0
 
LVL 9

Accepted Solution

by:
hmare earned 500 total points
ID: 24824377
Do you currently have an account with mysonicwall? I am not sure you can access the following link without logging in.
http://www.sonicwall.com/downloads/Terminating_the_WAN_GroupVPN_and_using_VPN_Access_in_SonicOS_Enhanced.pdf
0
 

Author Comment

by:tec1912
ID: 24824503
Have it. Let me give it a shot tonight and will follow up with you!
0
 

Author Comment

by:tec1912
ID: 24895772
Tried from home. Status comes back with an error. Looked at log file:
The number of users has exceeded the gateway license. Please try again later. & The phase 1 SA has died.
0
 
LVL 9

Expert Comment

by:hmare
ID: 24895810
Are you licensed for VPN? Its actually an addon for the Sonicwall.
0
 
LVL 9

Expert Comment

by:hmare
ID: 24895821
Aslo, verify that your ISP is not blocking VPN connections.
0
 

Author Comment

by:tec1912
ID: 24896252
just double checked for VPN licenses. Good for 10. How would I check ISP to see if blocking?
0
 
LVL 9

Expert Comment

by:hmare
ID: 24896299
call them and ask.
Are you using the sonicwall client, or Windows VPN?
Do you have DHCP set up from the sonicwall?
0
 

Author Comment

by:tec1912
ID: 24896345
Using the Sonicwall Client and do have DHCP set up from Sonicwall
0
 
LVL 9

Expert Comment

by:hmare
ID: 24897244
Have you verified that the shared secret is identical (is case sensitive)
Have you setup users on the SonicWall?
0
 

Author Comment

by:tec1912
ID: 24897474
I had set myself up with full permissions. only other user is SONICWALL that I set up per instructions.
0
 
LVL 9

Expert Comment

by:hmare
ID: 24897486
Do you get an error message when you try to connect?
0
 

Author Comment

by:tec1912
ID: 24897536
Looked like it was going to go, but then status shows error. Unable to ping any network resources. Cannot try again until tonight from home system
0
 
LVL 9

Expert Comment

by:hmare
ID: 24897634
Are you using SonicOS Enhanced or standard?
0
 

Author Comment

by:tec1912
ID: 24897649
enhanced
0
 
LVL 9

Expert Comment

by:hmare
ID: 24897913
Do you have a static IP?
0
 

Author Comment

by:tec1912
ID: 24897925
For the PC, no. DHCP. Only items with static IP are Servers/Switches/Routers
0
 
LVL 9

Expert Comment

by:hmare
ID: 24897938
I meant for the Wan Port on the sonicwall. Do you have a static IP from your ISP?
0
 

Author Comment

by:tec1912
ID: 24897949
Yes I do.
0
 

Author Comment

by:tec1912
ID: 24904171
OK. Does look like I'm connecting to it now. Only problem that connection was a bit flakey? was able to ping resources then not. couldn't establish a map drive? Do you know of any tweaks that need to be done?
0
 
LVL 9

Expert Comment

by:hmare
ID: 24904234
The log should tell you if it dropped the connection, and why.
Go to VPN > Advanced
 check the attached image for an example that works.

sonicwall.JPG
0
 

Author Comment

by:tec1912
ID: 24904543
I did not have "enable dead peer detection for idle VPN sessions" checked and had 60 sec. instead of 30 for Dead Peer Detection interval. I'll give it another try tonight!
0
 

Author Comment

by:tec1912
ID: 24904567
Accepted the solution with the link attached for further reference.
0

Featured Post

VIDEO: THE CONCERTO CLOUD FOR HEALTHCARE

Modern healthcare requires a modern cloud. View this brief video to understand how the Concerto Cloud for Healthcare can help your organization.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I've written this article to illustrate how we can implement a Dynamic Multipoint VPN (DMVPN) with both hub and spokes having a dynamically assigned non-broadcast multiple-access (NBMA) network IP (public IP). Here is the basic setup of DMVPN Pha…
Tired of waiting for your show or movie to load?  Are buffering issues a constant problem with your internet connection?  Check this article out to see if these simple adjustments are the solution for you.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses
Course of the Month4 days, 17 hours left to enroll

636 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question