Improve company productivity with a Business Account.Sign Up

x
?
Solved

Traffic is only allowed to secured peers

Posted on 2013-05-30
5
Medium Priority
?
2,020 Views
Last Modified: 2013-05-31
I try to connect to the network from outside the office to a Sonicwall NSA 3500 using the Sonicwall Global VPN Client (v4.2.0305). I get a connection waring saying "Traffic is only allowed to secured peers". If I hit yes it connects me to the network and I am able to get to my network drives and devices. The problem is that internet stops working such as webpages, emails, etc. If I hit "no" I am disconnected.
connection-warning.JPG
0
Comment
Question by:bmtservicedesk
5 Comments
 
LVL 40

Assisted Solution

by:Aaron Tomosky
Aaron Tomosky earned 664 total points
ID: 39209869
Yep. It's requiring all traffic to go through the sonicwall so you can't get to local resources. Sometimes called default/forced remote gateway.

So there are two ways to go about this. One: allow traffic from the VPN zone to the wan so you can talk to the Internet through the VPN. Two: don't force remote gateway so you can access local resources and direct access to the Internet. Only vpn traffic goes through the VPN.
0
 
LVL 17

Assisted Solution

by:surbabu140977
surbabu140977 earned 1336 total points
ID: 39209879
This comes for normal sonicwall vpn client when the VPN connection policy allows
only traffic to the gateway. The problem is the network administrator who configured the Sonicwall NSA 3500, he did it in a not so correct way.  You cannot do anything here.

Ask your network admin to enable/configure split tunneling in the gateway. It will be solved.
Should be a less than 5 min job. : )

Best,
0
 
LVL 17

Accepted Solution

by:
surbabu140977 earned 1336 total points
ID: 39209882
FYI, the settings is in WAN GroupVPN Policy-->advance-->set default gateway to 0.0.0.0--> Client tab---> Set Allow Connections to - Split Tunnels--->Set Default Route as this Gateway--->click ok.

If you are running sonicOS enhanced, the settings are different.

That's it.

Best,
0
 
LVL 66

Expert Comment

by:btan
ID: 39210094
0
 

Author Closing Comment

by:bmtservicedesk
ID: 39210854
thanks for the help, easier than we thought.
0

Featured Post

Free Tool: Site Down Detector

Helpful to verify reports of your own downtime, or to double check a downed website you are trying to access.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
Software-defined infrastructure is the buzz these days gaining a lot of importance. With software-defined infrastructure companies can be more agile and proficient. Nonetheless, a complete re-engineering of IT procedures is required to gain agility…
Windows 10 is mostly good. However the one thing that annoys me is how many clicks you have to do to dial a VPN connection. You have to go to settings from the start menu, (2 clicks), Network and Internet (1 click), Click VPN (another click) then fi…
In this video we outline the Physical Segments view of NetCrunch network monitor. By following this brief how-to video, you will be able to learn how NetCrunch visualizes your network, how granular is the information collected, as well as where to f…

595 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question