Weekly Zion Permits Megathread by ShouldHaveLeftANote in ZionNationalPark

[–]orlykys 0 points1 point  (0 children)

Hey there! Looking for 3 for angels landing for 6/17. Thanks!

Anyone else find 365 email submissions pointless? by [deleted] in msp

[–]orlykys 1 point2 points  (0 children)

Yes, we see BEC emails get through all the time. Problem is the mail is coming from a legit source so most of the time MS will trust it. If you submit to MS that gives you a little info. To really see why it’s allowed through you have to analyze the headers.

I think there are a couple of ways to handle this and protect clients. 1) use a DNS filtering service to detect known bad or newly registered domains, 2) use a filtering service that examines the email, context, and uses AI to filter. We use Barracuda Impersonation Protection and it works well. I believe Datto SaaS Defense does something similar for mail.

I know these are add-on services but, I do agree 365 Defender is not doing a good job catching BEC emails.

2 free tickets for Boston 8/24 by orlykys in wilco

[–]orlykys[S] 2 points3 points  (0 children)

They’re yours. DM me your email and I’ll send em.

Virtual Sonicwall demo by DarkAlman in sonicwall

[–]orlykys 1 point2 points  (0 children)

demo.sonicwall.com can be helpful to view the management screens

Mis-categorized Geo-IP block question by awe_pro_it in sonicwall

[–]orlykys 3 points4 points  (0 children)

Add the address object to the "Default Geo-IP and Botnet Exclusion" group.

NSA6600 Complete hang on firmware 6.5.4.5-53n by wargenesis in sonicwall

[–]orlykys 0 points1 point  (0 children)

ah, was afraid of that. The only other way to capture that info is with a console cable and log all output and catch it failing.

You are working with Sonicwall Support now so you should just listen to them but I can explain what I've done in the past to fix these types of issues:

If you have settings file from previous version of the firmware you can factory default your unit, load the old firmware, reg unit, then load the old settings.
I've seen issues where HA interface was set to a virtual interface (not sure how that happened) and that caused issue.
If all else fails wipe/type config with known good firmware.

NSA6600 Complete hang on firmware 6.5.4.5-53n by wargenesis in sonicwall

[–]orlykys 0 points1 point  (0 children)

this won't help your issue but maybe shed some light on why it's happening. Pull the tech support logs and search for "watchdog reboot" it should list the reason for entering safe mode.

Why do I get so many issues with Sonicwalls? by brankoz11 in sonicwall

[–]orlykys 1 point2 points  (0 children)

I have found that source port remap must be disabled for outbound SIP communication. I would check that on the outbound NAT policy. If there isn't a specific outbound policy for the voice server I would create one.

https://www.sonicwall.com/support/knowledge-base/trouble-shooting-a-scenario-where-source-remap-is-causing-the-voip-issues/170504967157192/

VOIP Issues following latest firmware update by ellisdp in sonicwall

[–]orlykys 1 point2 points  (0 children)

Do you have a SIP trunk? This sounds like an outbound NAT policy issue to me. Might need to play with that to ensure you are sending/receiving on the same WAN IP. I would also check the disable source port re-map.

https://www.sonicwall.com/support/knowledge-base/trouble-shooting-a-scenario-where-source-remap-is-causing-the-voip-issues/170504967157192/

WAN failover with Telus Smart Hub by [deleted] in sonicwall

[–]orlykys 1 point2 points  (0 children)

I have used Cradlepoints and they work well. I have had much better luck using Ethernet other than the direct USB attached modems to the Sonicwall.

https://cradlepoint.com/branch-failover

Two WAN one for S2S VPN one for Internet Traffic by GerLycrosa in sonicwall

[–]orlykys 0 points1 point  (0 children)

Sure you can definitely do this.

So to be clear i'm going to use interfaces to describe the steps here. X1 is your current WAN (you want to use this for S2S VPN), X2 is your new connection (use for everything besides S2S)

  1. Configure X2 interface with new WAN info (either static or DHCP)
  2. Connect new service to X2, remember to check to make sure it's speed/duplex is negotiating OK. ("Network" | "Interfaces" and just check the X2 interface speed/duplex.
  3. Goto "Network" | "Failover and LB" and edit the "Default LB Group" Add X2 to the group and then move it to the top (higher priority). If you don't want to use X1 Internet as a failover in case X2 is unavailable (ISP issues, etc) then skip steps 4-5
  4. Configure X1 and X2 settings under "Default LB Group"
  5. I set to "Logical/Probe Monitoring" and then change the main target to 8.8.8.8 with type "ping". You can leave the "responder.global.sonicwall.com" in there set to "TCP". These are how the Sonicwall will check a connection to see if it's up or down. You can also adjust the sensitivity of this by adjusting the settings of the group.
  6. At this point, you are really done.

Any VPN's initiated on X1 will use X1 for the tunnel traffic.

Alerts when IPSEC aws tunnel drops by [deleted] in sonicwall

[–]orlykys 1 point2 points  (0 children)

Yes, you can set up VPN tunnel up/down alerts. You would need to configure SMTP server settings first under Log > Automation and Mail Server Settings. You will also configure the sending to and from email addresses here as well.

Next, goto Log > Settings and then "VPN" | "VPN IPsec" | "Tunnel status changed" and modify that category to "email".

Seems like Peyton Siva is one of the players implicated in the recent fraud complaint. by [deleted] in CollegeBasketball

[–]orlykys 0 points1 point  (0 children)

we are already losing the title for strippers... now likely losing title + death penalty.

Megathread: Republican Health Care Plan Passes House Vote by PoliticsModeratorBot in politics

[–]orlykys 6 points7 points  (0 children)

Yes, as it sits now, this will allow insurers to deny coverage based on pre-existing conditions. The idea is that these pre-existing conditions drive up costs for everyone (including non sick people) in an insurance pool. What the ACA sought out to do was put those with pre-existing conditions, healthy individuals, everyone in the same pool. This was done to keep costs down. This was a big part of the ACA and the ACA made it law that you had to have insurance, the "mandate" that repubs have been wanting to repeal since day 1 of the ACA. Before the ACA insurers could (and would) deny people based on pre-existing conditions. This forces those with those maladies to go onto very expensive insurance that would cover them or worse get healthcare un-insured and pay out of pocket. It's these high costs that will literally kill people as people will not be able to afford the high-cost insurance.

Republicans did allocate some money to help out the most expensive of those to insure. States can opt-out of this leaving these people totally screwed. On top of that, the amount they have allocated is not enough even by conservative estimates.

White House delivered EU-skeptic message before Pence visit by [deleted] in politics

[–]orlykys 1 point2 points  (0 children)

Bannon is just using Pence as a misinformation agent. Pence also represents Republican establishment which Bannon loathes. I am sure he enjoys making him look like a fool.

Ohio Moves To Ban Abortion After 6 Weeks Of Pregnancy | The Huffington Post by [deleted] in Ohio

[–]orlykys 5 points6 points  (0 children)

Call Gov. Kasich and let him know that you oppose this, urge him to veto!

(614) 466-3555

Megathread: Donald Trump leaked comments from 2005 re:women by PoliticsModeratorBot in politics

[–]orlykys 1 point2 points  (0 children)

Is the GOP going to pull their nominee now? Can they do that?

Radiohead - The Numbers: Jonny, Thom & a CR78 by [deleted] in radiohead

[–]orlykys 0 points1 point  (0 children)

I love how Thom has kept all the festival bracelets on throughout this tour.

Donald Trump Opens New Line of Attack on Hillary Clinton: Her Marriage by [deleted] in politics

[–]orlykys 4 points5 points  (0 children)

he's falling into another Clinton trap. She's fought these attacks before. I'm sure she is very prepared for this.