Solved

How to setup an VPN on a TZ170 to an NSA3500

Posted on 2011-03-24
4
883 Views
Last Modified: 2012-05-11
Site A - Primary Office has an NSA 3500 SonicOS Enhanced 5.6.0.5-46o
NSA has a full DNS resolve & public IP

Site B - Remote Office has a TZ170 SonicOS Standard 3.1.5.0-2s

I want to connect workstations from Site B to Site A's netowrk & serve remote office Site A IPs via the Site A DHCP.

I can connect workstations via the SSLVPN SonicWall Netestender Client but I've never setup a VPN & I can't figure out what gateway goes where & what the networks are.

On both the TZ170 & NSA 3500 I have the IPSec Primary Gateway Name or Address: <Site A NSA IP & Site A "destination" network>

On the NSA Network Tab my LAN is "Firewalled Subnets" & the remote netowrk is the Site B's NSA Network Address Object with the Site B's IP address in that object.

On both "Advanced" Tab both have Enable Keep Alive & Enable Win Networking (NetBIOS) Broadcast.

I'm stuck - help

0
Comment
Question by:spongebobzach
  • 2
4 Comments
 
LVL 20

Expert Comment

by:carlmd
ID: 35216077
Use the wizard on the Sonicwall (upper right hand corner of pages), select other and then site to site tunnel. This will walk you through it.
0
 
LVL 33

Accepted Solution

by:
digitap earned 500 total points
ID: 35217962
also, looking at the logs of the sonicwall appliances, you should get some feedback as to where it's failing in negotiating the tunnel. phase 1 or phase 2. can you post that information?
0
 

Author Closing Comment

by:spongebobzach
ID: 35218009
Yes I checked the logs & it revealed the issue & I spoke with SonicWall & they explained the gateways have be each have the other's IP and their own local network. But I started in the logs so thanks.
0
 
LVL 33

Expert Comment

by:digitap
ID: 35218050
you're welcome. thanks for the points!
0

Featured Post

How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

Join & Write a Comment

Using Windows 2008 RRAS, I was able to successfully VPN into the network, but I was having problems restricting my test user from accessing certain things on the network.  I used Google in order to try to find out how to stop people from accessing c…
For a while, I have wanted to connect my HTC Incredible to my corporate network to take advantage of the phone's powerful capabilities. I searched online and came up with varied answers from "it won't work" to super complicated statements that I did…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

760 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

21 Experts available now in Live!

Get 1:1 Help Now