Monday, July 22, 2019

Sonicwall Blocking VPN traffic from firewall due to unknown Ether type.

I am currently facing an issue were a sonicwall device is blocking traffic that is coming into the network through an anyconnect VPN session to a Cisco Firepower system. After a bit of digging it looks like the Sonic wall is dropping the Traffic due to it not knowing what to do with the Cisco Metadata Ethernet type (0x8909) but I cant seem to figure out where the rule in the sonicwall would be. If anyone knows where we can set the sonicwalll to allow unknown ethertypes or how to permit this specific type through it would be much appreciated.

Rough visualization of desired topology:

|VPN User | -> | FirePower | -> | SonicWall | -> | Target LAN |



No comments:

Post a Comment