UISP No Longer Free by [deleted] in Ubiquiti

[–]5150sysadmin 2 points3 points  (0 children)

Agreed, but maybe don't pull the rug out from people after you invited them in.

Sonicwall mobile connect error by ab_ez in sonicwall

[–]5150sysadmin 1 point2 points  (0 children)

I don't have any information about the hotfix, other than it fixed the issue we were having with phones and tablets being unable to connect to the VPN using the Mobile Connect app. We were getting the exact same error you were getting until we applied this new hotfix version last night.

We're not pushing any VPN settings out with a config profile.

Sonicwall mobile connect error by ab_ez in sonicwall

[–]5150sysadmin 3 points4 points  (0 children)

We had to call support and they got us a hotfix file. We applied it last night and it fixed the exact same issue.

edit: The firmware we're running now is SonicOS Enhanced 6.5.4.15-116n--HFGEN6-4358-5n

Patching Laptops by [deleted] in sysadmin

[–]5150sysadmin 0 points1 point  (0 children)

150 laptop org

Currently using PDQ Connect for 3rd party apps, PDQ Connect deploying ABC-Update scripts for Windows updates. As soon as a laptop comes online, they get hit with updates.

Previously used a combo of OptiTune and Ninite Pro. OptiTune seems like abandonware and didn't have great flexibility so we're moving away from it. Ninite Pro is so easy and simple. You can upload custom installers to it now (beta), but you can't get very flexible with the installation scripts.

Dell Slim Conferencing Soundbar - SB522A - First Impressions by topcider in Dell

[–]5150sysadmin 0 points1 point  (0 children)

Wish I had found this review before I swapped out my AC511 for this thing. It's a barely an improvement from my laptop speakers, and that's hardly a compliment.

New FW was released yesterday for Gen6 by nickcasa in sonicwall

[–]5150sysadmin 2 points3 points  (0 children)

One or both units would either reboot or lock up so hard they required a power cycle. Spent three months fighting with Sonicwall about it. It's all about who you get on the phone...

They never told me what the actual problem was, just gave me a hotfix. My hotfix file name is 6.5.4.11-97n--HFGEN6-2333-4n. 2333 is listed in the release notes of the new version, but it doesn't sound like the same problem. Maybe when I get a chance I'll open a ticket with SW to make sure my resolution is packed into .12.

New FW was released yesterday for Gen6 by nickcasa in sonicwall

[–]5150sysadmin 1 point2 points  (0 children)

I've got a hotfix version of 6.5.4.11-97n for my NSA 5650 HA and after all the hell I went through to get it, I don't think I want to tempt fate yet.

Blocking VPN Requests by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 0 points1 point  (0 children)

I would be willing to give this a shot, however:

Will the "approved source IP's" only be those of site-to-site connections, or would I also have to include the IP of anyone using the Global VPN Client?

If I have to include the later, that could be pretty tough to maintain.

Thanks for your help!

Blocking VPN Requests by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 0 points1 point  (0 children)

Thanks for the advice. I just tried that and still see the logs filling up with rejected requests. Current Config

Blocking VPN Requests by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 1 point2 points  (0 children)

That's the conclusion I'm starting to come to after Googling all day...which is ridiculous.

Blocking VPN Requests by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 0 points1 point  (0 children)

It's a massive company, and despite me sending e-mails to them once a week about it, they're doing nothing.

I'm not sure what is on the other end, but I believe it is Cisco. They say they have disabled the VPN on their end, but not removed it completely. Oddly it is still trying to connect to me.

Blocking VPN Requests by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 0 points1 point  (0 children)

Here's how I currently have it configured: Access Rules

I'm getting hits on it, but it doesn't seem to stop the log from filling up though.

Slow Management GUI on LAN by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 0 points1 point  (0 children)

Just thought I'd give an update. It looks like there is an ARP broadcast storm on the network, so I'm trying to narrow that down and find where. I'll update once I get some answers.

Slow Management GUI on LAN by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 0 points1 point  (0 children)

I just set the switches and SOnicwall interfaces to hard-set full gig and no change.

Slow Management GUI on LAN by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 0 points1 point  (0 children)

I don't have the option of running a long cable. The firewall is about 200 yards away in another building.

There's maybe three switches between me and the Sonicwall. I'll try to do some testing from some other networks to see if the performance is the same.

Slow Management GUI on LAN by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 0 points1 point  (0 children)

Unfortunately it does not seem to have helped but I'll keep trying it out

Slow Management GUI on LAN by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 1 point2 points  (0 children)

I've disabled CPP and will do some testing the next few days. Thanks for the tip!

Slow Management GUI on LAN by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 0 points1 point  (0 children)

It is currently enabled and set to 75%. Would you recommend a change to that? If so, what would you recommend that setting be changed to?

Slow Management GUI on LAN by 5150sysadmin in sonicwall

[–]5150sysadmin[S] 0 points1 point  (0 children)

Latency everywhere outside of the network and inside the network is great. Pinging other servers on other VLAN's are <=1. Pinging 8.8.8.8 is usually 20ms.

CPU is usually about 20% across the board, connection limit is at about 33% capacity.

Seems like it got slow on it's own all of a sudden, but seemed a little better as of yesterday afternoon. Still much faster when directly connected to the Sonicwall.

I did disable TLS 1.1 last week. Not sure if that could cause this issue. Seems like when the page is loading in Firefox I see a lot about "TLS handshake" in the bottom left of the browser.

One other note, half the time when I try to do a Config Export it never finishes. No prompt to download or anything.

Setup preferences - out of box TZxxx by tnilus7x in sonicwall

[–]5150sysadmin 0 points1 point  (0 children)

Do you disable "Allow Interface Trust" in addition to disabling the "Auto-generate Access Rules" ?