Solved

Sonicwall  - Web Management Request allowed from unknow IP address

Posted on 2014-04-09
2
2,121 Views
Last Modified: 2014-04-09
Hi,

I have  a sonicwall in a business that I support and I do support to this site via logmein only.

I was having a look at the sonicwall today and I saw an IP I did not know shoing up in the logs as Web Management Request allowed, I was logged onto the sonicwall from the server in the business.

Here is what I saw:
[URL=http://s1370.photobucket.com/user/jamesduaneie/media/Capture_zpse6c31b83.jpg.html][IMG]http://i1370.photobucket.com/albums/ag258/jamesduaneie/Capture_zpse6c31b83.jpg[/IMG][/URL]

I had a look at the rules and it looks like  Any is allowed for HTTPS management - Is this correct and would allow Wan to come in over 443?

Can it be switched off from Wan?
[URL=http://s1370.photobucket.com/user/jamesduaneie/media/Capture2_zpsd4b0bfd3.jpg.html][IMG]http://i1370.photobucket.com/albums/ag258/jamesduaneie/Capture2_zpsd4b0bfd3.jpg[/IMG][/URL]
0
Comment
Question by:MidComp
2 Comments
 
LVL 25

Expert Comment

by:Tony Giangreco
ID: 39989136
Port 443 is a call for DNS.  If you have wireless turned on, make sure it's password protected. I would review the logs carefully and lock things down.

I've been very busy locking down a client's network with a TZ210W.  Check to see what is being logged. You might want to turn it up to provide you a better idea of what's happening. You can also go into Logs/Automation and have the logs send to you by email.

Hope this helps!
0
 
LVL 11

Accepted Solution

by:
Miftaul earned 250 total points
ID: 39989229
Usually on SonicWALL, we change the administering port from 443 to 4443. If you want, you can change that on "System -> Administration" page.

As you manage the SonicWALL on its X0 interface, that is you logon to internal resource via logmein and manage on its LAN interface, you can actually disable management of the device from WAN completely. Go to Network - Interface then Edit the X1 interface and untick whatever management protocol (like https, ssh) is selected.

Is that what you want, or you want the remote management allowed from specific IP addresses.
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Port Forwarding on Juniper SSG 140 Firewall 13 81
How do I modify Ubigate for new ISP? 2 95
Firewall port opening 2 67
mini spy rotating camera 3 72
This Micro Tutorial will teach you how to censor certain areas of your screen. The example in this video will show a little boy's face being blurred. This will be demonstrated using Adobe Premiere Pro CS6.
The Email Laundry PDF encryption service allows companies to send confidential encrypted  emails to anybody. The PDF document can also contain attachments that are embedded in the encrypted PDF. The password is randomly generated by The Email Laundr…

803 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question