Suggested tips when allowing access to SonicWall web management
07/28/2023 76 People found this article helpful 474,494 Views
Description
To enhance the security of administrative sessions, SonicWall recommends administrators to limit SonicOS management access to trusted management sources by modifying the existing SonicOS Web management rules (HTTPS/HTTP Management) to allow management access only from trusted IP addresses. Administrators with firewalls under GMS management should push these rule updates to the firewalls through the GMS interface.
Resolution
Resolution for SonicOS 7.X
This release includes significant user interface changes and many new features that are different from the SonicOS 6.5 and earlier firmware. The below resolution is for customers using SonicOS 7.X firmware.
- Login to the SonicWall management GUI.
- Navigate to Objects | Match Objects | Address objects.
- Create address objects of trusted IP addresses. The following screen captures are only examples.
- Create an address group containing the newly created address objects. In the example below it is named as Trusted Management Sources.
- Navigate to Policy | Rules and Policies | Access rules. By default we see all rules.
- Edit each rule with Service as HTTP Management or HTTPS management and change the source to the newly created address group Trusted Management sources.
NOTE: By default we cannot edit default access rules. Refer to the following KB article to enable editing default access rules. How To Enable the Ability To Remove and Fully Edit Auto-added Access Rules.
Resolution for SonicOS 6.5
This release includes significant user interface changes and many new features that are different from the SonicOS 6.2 and earlier firmware. The below resolution is for customers using SonicOS 6.5 firmware.
- Login to the SonicWall management GUI
- Navigate to MANAGE|Objects|Address Objects.
- Create address objects of trusted IP addresses. The following screen captures are only examples.
- Create an address group containing the newly created address objects. In the example below it is named as Trusted Management Sources.
- Navigate to MANAGE|Rules|Access Rules. By default we see ALL Rules.
- Edit each rule with Service as HTTP Management or HTTPS Management and change the source to the newly created address group Trusted Management Sources.
Related Articles
Categories
Was This Article Helpful?
YESNO