Transparent mode and NAT?

robbyp

Junior Member
Dec 2, 2003
24
0
0
I have always used my Sonicwall with NAT. However, we recently purchased some new Voice over IP phones and were told to program public IP addresses into the phone. These phones will plug into the network behind the firewall, but will not work with NAT. So they told me the Sonicwall had to be changed to Transparent mode.

I'm not sure what Transparent mode is, but when I did it the firewall appeared to have lost its LAN IP address and I was no longer able to connect to the Internet. Probably because I didn't configure it all the way.

So is there anyone that can tell me the big difference between Transparent mode and NAT? I was able to ping the firewall publicly in Transparent mode which makes me think it's a security risk. Thank you.
 

robbyp

Junior Member
Dec 2, 2003
24
0
0
I have about 40 computers on the network. I only want to map 7 VOIP phones and leave the rest of the PC's with DHCP and NAT. Thanks for the link.
 

Reel

Diamond Member
Jul 14, 2001
4,484
0
76
If I understood transparent mode correctly, it seems like an all or nothing procedure. You would need to either find some mixed mode or put a second NAT router in serial with one of the public IPs.
 

robbyp

Junior Member
Dec 2, 2003
24
0
0
I have the Sonicwall TZ170 and those instructions are not the same. I'm wondering if I can create a DMZ in OPT like it is saying.
 

robbyp

Junior Member
Dec 2, 2003
24
0
0
I have LAN, WAN, and OPT. I can run OPT in Transparent mode with a public IP, but I don't really know what that does or mean, so I need to find out what OPT even is.
 

JackMDS

Elite Member
Super Moderator
Oct 25, 1999
29,487
392
126
This is really a very long shot since I am not familiar with the sonicwall and your network, and I am sure the solution is compatible with the VOIP.

SMC makes a little Cable/DSL Router call 7004vbr. It acts like a regular Entry level Router, but can accomodate up to 10 computers on the DMZ provided that each one has it own public external IP.

May be you can use it for the VOIP, and Internet for these computers. Then find a way to bridge them into the LAN for local use. Naturally there are important security issues that must be attended to by using such a solution.

Wait for Spidey or Garion to appear. I think they have experience with this matter.

:sun:
 

InlineFive

Diamond Member
Sep 20, 2003
9,599
2
0
I'm not real firm on if this would work or not as I have never needed to use this feature of my TZ-170. But here is what I would to do.

1. Update to SonicOS Enhanced so you can make use of the OPT/DMZ port.
2. Connect the VoIP units to the OPT/DMZ port.
3. Specify the OPT/DMZ zone to use a different IP range then the LAN zone.
4. Modify the firewall rules so that the LAN and OPT/DMZ zone cannot communicate with each other.
5. Create another firewall rule allowing all traffic between the WAN zone and the OPT/DMZ zone.
6. Use One-to-One NAT to map WAN IPs to the OPT/DMZ IPs of the VoIP phone units.

Using the OPT/DMZ port is not necessary but then it allows you to keep the VoIP units open to the internet but still protect the LAN. And I'm not sure if step 6 is necessary if your ISP will provide IPs to each VoIP unit if they are open to the WAN zone.

My two cents...
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |