Comments

  • FYI for future users: I just had same/similar issue. Initially I was just adding a second ISP to a VPN and the second endpoint was showing timeout. VPN diagnostics were showing the same messages: "VPN traffic was detected for this tunnel" "firewall policy is matched" "The incoming traffic for tunnel route is denied by…
  • You're the man. New ACL with DNAT did fix the issue. Thanks. Closing the ticket
  • FYI I had missed adding the new Radius Resource to the Gateway in Watchguard Cloud. After doing that, it works great! 2FA on all my switches. Thanks
  • Curious what happened with this one I had a similar issue with a SIP trunk provider that does 'checks' to make sure they can still reach the 100+ PBXs we have in our datacenter. The datacenter firebox would often (few times a month) block the providers IP as an IP SCAN ATTACK. Adding them to Blocked Site Exceptions list…
  • So you are suggesting I block the entire category that the website falls into? I'm almost certain that will not be an option, but is there a way to query a domain on demand and see which category Watchguard puts it into? Similar to how you can do a LOOK UP IP for Geolocation via FBSM -> Sub Services?