SonicWall
This guide will show you how to connect your SonicWall device to the GoodAccess Gateway via a site-to-site connection using the IPSec protocol.
Last updated
Was this helpful?
This guide will show you how to connect your SonicWall device to the GoodAccess Gateway via a site-to-site connection using the IPSec protocol.
Last updated
Was this helpful?
Click + Add new, enter the Branch name and subnet, and select Gateway.
Choose IPSec Protocol, fill out the Settings configuration form, and click Save.
Log in to your SonicWall device, and go to Object > Match Objects > Addresses > Address Objects. Click + Add.
Name - Give the object a name
Zone Assignment - VPN
Type - Host
IP Address - IP of your GoodAccess Gateway
Click Save.
Name - Give the object a name
Zone Assignment - VPN
Type - Network
Network - Subnet of your GoodAccess Gateway
Netmask / Prefix Length - Subnet Mask of your GoodAccess Gateway
Click Save.
Go to Network > IPSec VPN > Rules and Settings > Policies > IPv4, and click + Add.
Policy Type - Site to Site
Authentication Method - IKE Using Preshared Secret
Name - Give the connection a name
IPsec Primary Gateway Name or Address - IP of your GoodAccess Gateway
Local IKE ID - IPv4 Address + IP of your SonicWall
Peer IKE ID - IPv4 Address + IP of your GoodAccess Gateway
Choose local network from list - Select local network you want to access with GoodAccess
Exchange - IKEv2 Mode
DH Group - Group 14
Encryption - AES-256
Authentication - SHA256
Life Time (seconds) - IKE Lifetime (Phase 1)
Protocol - ESP
Encryption - AES-256
Authentication - SHA256
Enable Perfect Forward Secrecy
DH Group - Group 14
Life Time (seconds) - Tunnel Lifetime (Phase 2)
Enable Keep Alive
Click Save.
You have now successfully connected your device to GoodAccess.
Firewall rules
Make sure that your device allows incoming connections from your GoodAccess Gateway private subnet on the following ports:
UDP 500
UDP 4500
Shared Secret / Confirm Shared Secret - Shared Secret
Choose destination network from list - Select your
Must match configuration from GoodAccess .