Solved

Sonicwall and XP

Posted on 2014-04-01
6
240 Views
Last Modified: 2014-04-01
Have a couple of XP machines that we have to have due to software they run that supports nothing newer, and want to allow them on the LAN, but not able to reach internet oubound or inbound. Is there a way to configure a sonicwall NSA240 to block inbound and outbound traffice from a specific internal IP (if i configure each with an internal static)
0
Comment
Question by:columbiaG
  • 4
  • 2
6 Comments
 
LVL 17

Accepted Solution

by:
TimotiSt earned 500 total points
Comment Utility
Sure, just set up an object for the static IPs, and in the LAN->WAN rules, block them.
Incoming should be blocked by default (unless you have a NAT pointing to them).
0
 

Author Comment

by:columbiaG
Comment Utility
Thanks, let me give that a try
0
 

Author Comment

by:columbiaG
Comment Utility
ok, thanks that works...since no one else can change the ip of the machine, should not be a problem in blocking internet traffic to and from the unit...which is the only issue of having an XP unit on the lan.....still connects to lan, just no where else
0
Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

 

Author Closing Comment

by:columbiaG
Comment Utility
Thanks works well
0
 
LVL 17

Expert Comment

by:TimotiSt
Comment Utility
Running XP after April won't be as bad as the hype, we're still running Win2000 boxes and there's no armageddon... :)
Make sure you have some kind of antivirus on it, which is not MS Security Essentials, to prevent surprises from USB and the LAN. Possibly some personal firewall too, if it's okay with your business software.
If you can isolate them on a separate vlan, even better.
0
 

Author Comment

by:columbiaG
Comment Utility
oh yeah, running symantec SEP and have it on a vlan to keep it seperate
0

Featured Post

How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

Join & Write a Comment

Suggested Solutions

Before I go to far, let's explain HA (High Availability) and why you should consider it.  High availability is the mechanism used to provide redundancy to any service at the same site and appears as a single service to the users of that service.  As…
Every server (virtual or physical) needs a console: and the console can be provided through hardware directly connected, software for remote connections, local connections, through a KVM, etc. This document explains the different types of consol…
In this video, we discuss why the need for additional vertical screen space has become more important in recent years, namely, due to the transition in the marketplace of 4x3 computer screens to 16x9 and 16x10 screens (so-called widescreen format). …
With the advent of Windows 10, Microsoft is pushing a Get Windows 10 icon into the notification area (system tray) of qualifying computers. There are many reasons for wanting to remove this icon. This two-part Experts Exchange video Micro Tutorial s…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now