SonicWALL OS 2.x quick start Building VPNs

Page 13

Sonic OS 2.x Quick Start Guide

3.Click ADD, to create a new entry in the LAN -> WAN ruleset for our IM users.

4.Select the ALLOW radio button.

5.For Service, select ANY. We want to block all access to the IM registration sites.

6.For Source, select LAN Subnets. This will apply the rule to all networks in the LAN Subnets group.

7.For Destination, select the custom address object group, Instant Messengers. You can add additional IM sites as required.

8.For Users Allowed, select the custom user group, Allowed IMers.

9.For Schedule, select Always On. Or, you can select a predefined schedule, such as After Hours. This limits the user’s access to IM programs to only non-work hours. You can also create your own schedule, if desired.

10.Add your own comments as desired.

11.Click OK to add the new firewall rule.

Note that in the “Users Allowed” field we’ve placed the “Allowed IMers” user group. This means that the rule will only apply to users who have first logged in with the appropriate username and password. To use IM programs, a user would first launch a web browser and point it to the Sonicwall’s LAN IP address (http://192.168.168.168, or whatever that address may be). After supplying the username and password, the user will be authenticated and will then have rights to use this rule – in other words, they can launch those IM clients!

Building VPNs

With Sonic OS Enhanced, you will find all of the VPN capabilities of the previous firmware and more. Some of the new features are:

*The ability to define both a Primary VPN Gateway and a Secondary VPN Gateway for use in the event the primary is unavailable.

*For interoperability, the ability to define whether to use an IP Address, Domain Name, E- Mail Address, or the Sonicwall Identifier as a means of authenticating IKE negotiations.

*The ability to specify both the local protected network and the remote network, allowing a level of granularity that wasn’t before available.

12

Image 13
Contents SonicWALL SonicOS 2.x Enhanced Quick Start Guide PRO IntroductionSecurity Zones and Objects Basic WAN & LAN ConfigurationCreating a Custom Zone Security Zones Configuration Objects/Groups Overview Define the Objects Objects and Groups ConfigurationDefine the Group Public LAN Server Firewall Access RulesMail Server Firewall Policy Mail Server NAT PolicySonic OS 2.x Quick Start Guide Create Users & Groups User Level Authentication and SchedulesCreate Firewall Rule Building VPNs Defining the Security Associations SA Sonic OS 2.x Quick Start Guide Sonic OS 2.x Quick Start Guide WAN Failover WAN-WAN Load Balancing & Fail OverSonic OS 2.x Quick Start Guide WAN Load Balancing WAN IP

OS 2.x specifications

SonicWALL OS 2.x represents a significant step forward in firewall, VPN, and security appliance technology. This operating system is specifically designed to deliver robust security solutions for businesses of all sizes. SonicWALL, a brand known for its high-performance network security products, leverages advanced features in OS 2.x to elevate the capability of its devices, ensuring that organizations can defend against the ever-evolving landscape of cyber threats.

One of the main features of SonicWALL OS 2.x is its Integrated Intrusion Prevention System (IPS). This technology continuously monitors network traffic to detect and block potential threats in real-time. The IPS is crucial for safeguarding sensitive data by preventing unauthorized access and attacks related to vulnerabilities in applications and services.

Another critical characteristic of OS 2.x is its support for deep packet inspection. This functionality allows SonicWALL devices to thoroughly analyze incoming and outgoing packets, ensuring that malicious content is identified and dealt with appropriately. By parsing the packet data beyond simple header information, deep packet inspection enables the detection of sophisticated threats that might evade standard filtering techniques.

Additionally, SonicWALL OS 2.x includes advanced VPN capabilities, making it easier for remote employees to securely connect to the corporate network. With support for SSL VPN and IPSec, this OS ensures that data remains encrypted and protected during transmission. This aspect is particularly essential for organizations with remote workforces, as it allows employees to access necessary resources without compromising security.

The operating system also features an intuitive and user-friendly graphical user interface (GUI). This interface provides administrators with a streamlined approach to managing security policies, monitoring performance, and making real-time adjustments to firewall settings. The ease of use significantly reduces the complexity associated with managing sophisticated security configurations.

Moreover, SonicWALL OS 2.x integrates with a range of networking technologies including VLAN support and dual WAN failover. This ensures that network performance remains optimal, even during hardware failures or unexpected surges in traffic, contributing greatly to overall business continuity.

In summary, SonicWALL OS 2.x combines a suite of advanced security features with an intuitive management interface, making it an essential solution for organizations looking to enhance their cybersecurity posture. The technologies and characteristics embedded within this operating system exemplify SonicWALL’s commitment to providing reliable and effective security solutions in an increasingly complex digital world.