SonicWall UTM appliances running SonicOS Enhanced firmware are capable of discovering and managing Sonicwaves over SSL-VPN
- A SSL VPN connection is established between the Sonicwaves and the managing UTM appliance
- GRE / DTLS (phase II) tunnel is established between the SonicWall UTM appliance and the Sonicwaves to carry management and data traffic(Within the SSLVPN session)
Scenario:
Discovering and managing Sonicwaves using SSLVPN over the Internet / WAN.
Please Note:Â The settings shown in this technote are just an example, you must substitute the settings as per your setup.
Deployment Steps:
Part 1: Configuration on the SonicWall UTM appliance
Part2: Configuration on the Standalone Sonicwave
Detailed configuration steps:
Part 1: Configuration on the SonicWall UTM appliance
Step 1: Creating a WLAN Tunnel Interface
Step 2: Enable SSL VPN and Create a SSLVPN profile for Sonicwave Layer-3 Management
NOTE:Â Â The SSLNEW NW is a range address object having an unused IP range from the X0 subnet (LAN) (the interface to which the WT0 is bound to)
This object must be assigned with the zone SSLVPN

Â


Step 3: Create a user account on the UTM for use on the Sonicwave for SSLVPN login from the Sonicwave into the UTM
Create a local user account on the firewall and ensure that the user is a member of the SSLVPN services group
Â
Also, add X0 subnet and WLAN subnets to the VPN access list.
Â

Â
Part 2: Configuration on the Sonicwave
Step 1: Downloading and uploading the SonicOSÂ 9.*.4.7-7o firmware for Sonicwaves
Method 1: Connecting Sonicwaves to SonicWall UTM appliance running SonicOS 7.0.1 and above
When the Sonicwaves are connected to a SonicWall UTM appliance's WLAN interface/Zone running SonicOS 7.0.1 and above, they will be automatically updated with the latest firmware.
Step 2: Accessing the Sonicwave Management Interface in Standalone Mode:
Â
Troubleshooting Tip: If you are unable to access the Sonicwaveyou may press the Reset Button to access it in SafeMode and then follow the above step

Â
Step 4: Configuring the L3 Management Settings
Â
Please Note: After the reboot the Sonicwave will try to establish a SSLVPN connection with the UTM and a GRE/DTLS tunnel would be setup within this SSLVPN connection to complete the Sonicwave provisioning. Sonicwave might reboot and SSL VPN user logout several times before Sonicwave shows up as operational because of the provisioning process that the Sonicwave goes through.
How to Test
Go to Sonicwave > Network >SSL-VPN page, you must see the client ip from Firewall.