Problem: Users logging on to an Active Directory domain across a relatively slow VPN link will unreliably apply group policies. This article deals with user policies specifically, not computer policies. Solution: Although the ultimate solution to this problem would be to cure the root cause of the group policies not being applied, my reason for …
May
17
SSL-VPN: MAC NetExtender Client on Snow Leopard Will Not Connect
Symptom: Upon trying to connect to a SonicWall SSL VPN with the NetExtender client for Mac OS X, the software immediately reports that the user is disconnected. The log file on the client will contain the line: FATAL: Pppd is not setuid-root and the invoking user is not root. Problem: The latest version of Mac …
Feb
18
Allowing Wireless Clients Access to SonicWall VPN
There are two basic steps to this process: Adjusting the VPN policies. Adjusting the firewall rules. Adjusting the VPN Policies To allow wireless users access to a VPN tunnel, it is necessary to add the subnet of the wireless network to the VPN policy on both sides of the tunnel. SonicWall sets this subnet as …
Feb
18
Allowing Wireless Clients Access to LAN in SonicWall SonicOS Enhanced
Situation: On wireless-capable SonicWall devices running SonicOS Enhanced, devices connected to the WLAN interface are not able to connect to any devices connected to the LAN interface. Problem: This is by design. There is a firewall rule that prevents this type of traffic as a security measure. Solution: Log in to the web interface of …
Feb
17
Setting Up Site-to-Site VPN With SonicWall Appliance Running SonicOS Enhanced
Situation: You need to setup a site to site VPN tunnel between two SonicWall routers running SonicOS Enhanced. Background: The first thing you need to decide about your VPN tunnel is whether to use Main Mode or Aggressive Mode. Main Mode is the most secure mode but requires that both endpoints have static IP addresses. The only …
Dec
11
A Range of local IP Addresses Are Inaccessible from LAN
Today I ran across an interesting issue. Everything was normal on the network except that no users could print to ANY of the network printers. They could not be pinged or accessed in any way. The network consisted of a single subnet, single server, and single switch. I moved some of the printers to other …
Aug
20
Linksys Router Will Not Obtain IP Address From DSL Modem
Symptoms: Your Linksys (or potentially any other consumer-grade router) will not obtain an IP address via DHCP from your ISP’s DSL gateway/router. The status of the WAN interface shows 0.0.0.0 as the IP address or you receive an error message while trying to renew the address. Problem: Both devices are likely on the same subnet. …
Aug
18
Setting Up Your Static IPs With AT&T DSL
Setting up a range of static IP addresses from AT&T DSL can be a daunting task if you are used to Cox or other ISPs that simply supply you with an IP address to punch into the WAN settings of your router. AT&T* (Bellsouth, Yahoo!, SBC), on the other hand, will provide you with an …
Aug
16
AT&T DSL Intermittent Loss of Sync
Symptoms: A business has AT&T DSL and has intermittent problems with their internet randomly going down. Usually it is fixed by unplugging/plugging in the modem, but the problem happens again in a week or so. You call AT&T and there appear to be no problems with the line or profile. Problem (at least the way …