How to edit or delete auto added Access Rule(s) and NAT Policies
05/29/2023 254 People found this article helpful 490,602 Views
Description
The firewall automatically creates the set of access rules as well as NAT policies for certain applications to work for the convenience of administrators. Those entries are not permitted to remove or fully edit by default. If there is an absolute requirement to modify/delete then it can be enabled through the internal settings of the firewall.
Resolution
Resolution for SonicOS 7.X
This release includes significant user interface changes and many new features that are different from the SonicOS 6.5 and earlier firmware. The below resolution is for customers using SonicOS 7.X firmware.
CAUTION: Changing system-generated access rule and NAT policies may cause undesired behavior. Before proceeding it is recommended to export a settings file of the SonicWall firewall. How do I save a backup settings file from a SonicWall firewall?
Step 1 : Log on to the appliance GUI.
Step 2 : Navigate to diag page after login. Do this by changing the URL https://management_IP/Sonicui/7/m/mgmt/settings/diag. Please refer to How can I access the internal settings of the firewall
Step 3 : Click Internal Settings. The configurations are displayed.
Step 4: Navigate to Firewall settings and select the option Enable the ability to remove and fully edit auto-added access rules. You can choose the option Enable the ability to disable auto-added NAT policy to disable default auto-added NAT policies.
Resolution for SonicOS 6.5
This release includes significant user interface changes and many new features that are different from the SonicOS 6.2 and earlier firmware. The below resolution is for customers using SonicOS 6.5 firmware.
CAUTION: Changing system-generated access rules and NAT policies may cause undesired behavior. Before proceeding it is recommended to export a settings file of the SonicWall firewall. How do I save a backup settings file from a SonicWall firewall?
To enable:
- Log on to appliance GUI.
- Go to the diag page after login. Do this by changing the URL http://192.168.168.168/main.html to http://192.168.168.168/diag.html.
- Click Internal Settings. The configuration options are displayed.
- Navigate to Firewall Settings and select the "Enable the ability to remove and fully edit auto-added access rules"
- Below that option you can also select "Enable the ability to disable auto-added NAT policy"
With this option enabled you can edit/remove auto-added Access Rules.
Related Articles
Categories
Was This Article Helpful?
YESNO