Friday, July 19, 2013

How to Configure VPN on Sonicwall TZ 200 and TZ 215

1. Login to sonicwall 
2. Click on Network and select WAN (by default X1) configure


3. Next, navigate to SSL VPN > server settings. 


Click on WAN interface link to change the red dot to green. This enables the SSL VPN feature.  



SSL VPN Server Settings :


In the SSL Server VPN settings, you may want to change the default port to 443 if the VPN users travel frequently and find themselves behind highly restrictive firewalls that block outbound access by port. Port 443 is usually not blocked by even the most restrictive firewalls. 

If you decide to do this, keep in mind that you will need to change the Sonicwall management port to something other than the default port 443. Do this under the system > administration menu. You will also need to double check that port 443 is not being used for other services such as an Exchange/OWA HTTPS connection. 

In SSL VPN > Portal Settings you can customize the message that appears to VPN users. Just edit the HTML text to create custom messages or to link custom logos. 

Under Client Settings, follow these instructions: 



Interface: Select your LAN Interface, by default X0 

NetExtender IP: SSL VPN will not use the DHCP address pool from either the firewall or from a server on your network . For this reason, you must specify a range of usable IP addresses for the VPN client. Make sure the address pool is outside the scope of your DHCP server's pool. 

DNS Server: Configure your internal DNS server IP address 

Domain: Configure the internal domain 

WINS: If you use WINS, enter the IP address of your WINS server. 

Default Session Timeout: I like to increase it from the default to avoid constant disconnects. 

Enable Web/SSH Management over VPN: Enabled if you want VPN access to manage the Sonicwall device. 

Exit Client after Disconnect: Enabled will shut down the NetExtender client program. 

Uninstall Client after Exit: If enabled will uninstall client software after disconnect (not recommended in most cases). 

Lastly, in the Client Routes, click on Add Client Routes and select LAN Subnet to allow the VPN client access to the LAN subnet. 



Now that you have completed the SSL VPN setup, the two remaining things to do are:
  1. Add SSL VPN users
  2. Install NetExtender and connect to the VPN
Once you have finished, log in using using HTTPS and either the IP address and port or URL and port to access the Virtual Office VPN connect site.








3 comments:

  1. This is a great article, Thanks for giving me this information. Keep posting. navigare in anonimo

    ReplyDelete
  2. This is a great inspiring article.I am pretty much pleased with your good work.You put really very helpful information. Keep it up. Keep blogging. Looking to reading your next post. surfshark free trial

    ReplyDelete
  3. This is my first time i visit here and I found so many interesting stuff in your blog especially it's discussion, thank you. vpn for torrenting

    ReplyDelete