Optimize SonicWall SOHO

Optimize SonicWall SOHO

Optimize Dell SonicWALL SOHO Router

NOTE: Based on available ISP bandwidth of 10Mbps/10Mbps (download/upload); accounting for 10 concurrent calls, adjust your numbers accordingly. One call requires approximately 90Kbps download/upload. 100Kbps was used in the example below for ease of calculation.

Access the firewall's interface

  1. Enter the firewall's IP address in the address bar of your web browser.
  2. Enter the firewall's username and password. Click OK. NOTE:  The default username and password is admin.

Access the VoIP Settings

  1. Go to VoIP > Settings.
  2. Put a check on Enable Consistent NAT.
  3. Disable/uncheck Sip Transformations. This will disable SIP ALG.
  4. Click Accept to save the settings.

Access the Firewall Settings 

  1. Go to Firewall Settings > BWM.
  2. Under Bandwidth Management Type, select Global.
  3. Under Priority, disable EVERY category, except Medium.
             
                Set Medium values to:
                Guaranteed: 30%
                Maximum / Burst: 50% 
                
    Enable Realtime and set values to: Guaranteed: 70% Maximum / Burst: 100%
  4. Click Accept to save the settings.

Access the Network Settings

  1. Go to Network > Interfaces > X1 (WAN)
  2. Under the General tab, click the Configure icon (on far right).
  3. Go to Advance > Link Speed, and then set to Auto Negotiate (UNLESS there's a need to set it to something specific).
  4. Under Bandwidth Management set the following:
    1. Check the checkbox next to Enable Egress and set Interface Egress Bandwidth to match the available bandwidth.
    2. Check the checkbox next to Enable Ingress and set Interface Ingress Bandwidth to match the available bandwidth.
  5. Click OK to save the settings.

Under Network on the left side of the page, go to Address Objects.

  1. Click Add under Address Objects and then use the addresses from OneCloud Network Addresses to create the required Network Objects.
                Name: OneCloud1      
                Zone Assignment: WAN      
                Type: Network      
                Network: 1.1.1.10    
                Netmask: 255.255.252.0      
                Click Add      

  2. Click Add Group. Name the group OneCloudIPsAll and then add OneCloudIPs1, OneCloudIPs2, OneCloudIPs3, OneCloudIPs4, and OneCloudIPs5 to the Group. Use the arrows in the box to move the highlighted information from left to right, then click OK.
  3. Still under Network on the left side of the page, go to Services.
  4. Click Add under Services, and then add the following:
    Name: OneCloudPorts1
    Protocol:  UDP
    Port Range: 20000-49999
    Sub type: none
    Click Add
    
    Name: OneCloudPorts2
    Protocol:  TCP
    Port Range: 5060-6000
    Sub type: none
    Click Add
    
    Name: OneCloudPorts3
    Protocol:  TCP
    Port Range: 80-80
    Sub type: none
    Click Add
    
    Name: OneCloudPorts4
    Protocol:  TCP
    Port Range: 443-443
    Sub type: none
    Click Add
    
    Name: OneCloudPorts5
    Protocol: UDP
    Port Range: 9002-9002
    Sub type: none
    Click Add
    
    Name: OneCloudPorts6
    Protocol: UDP
    Port Range: 5060-5065
    Sub type: none
    Click Add
    
    Name: OneCloudPorts7
    Protocol: TCP
    Port Range: 8001
    Sub type: none
    Click Add

    Access Rules

  1. On the left side of the page, go to Firewall > Access Rules.
  2. Click Add to add the rule for LAN-to-WAN and WAN-to-LAN.
  3. WAN > LAN

    LAN > WAN

    • General tab

    • General tab


    Action: Allow
    From Zone: WAN
    To Zone: LAN
    Service: OneCloud
    Source: OneCloudIPsAll
    Destination: Any
    Users Allowed: All
    Schedule: Always on
    Check Enable Logging
    Check Allow Fragmented Packets
    Click Add
     


    Action: Allow
    From Zone: LAN
    To Zone: WAN
    Service: OneCloud
    Source: Any
    Destination: OneCloudIPsAll
    Users Allowed: All
    Schedule: Always on
    Check Enable Logging
    Check Allow Fragmented Packets
    Click Add
     

  4. Click the edit button User-added image on both the LAN-to-WAN and WAN-to-LAN settings for OneCloudIPsAll, and go to the Ethernet BWM tab.
  5. Ethernet Bandwidth Management
    1. Check the box next to Enable Outbound Bandwidth Management, and set the Bandwidth Priority to Realtime. 
    2. Check the box next to Enable Inbound Bandwidth Management, and set the Bandwidth Priority to Realtime.
  6. Go to the QoS tab. DSCP Marking Settings
    1. DSCP Marking Action: Explicit
    2. Explicit DSCP Value: 46 - Expedited Forwarding (EF)
  7. Click OK to save.

    • Related Articles

    • Disabling SIP-ALG in your Router or Firewall

      Overview SIP ALG (Application-Level Gateway) is a feature in which the network device (router, access point, or any Layer 2 or Layer 3 device) manipulates the payload section of a SIP Packet to change the Private address to be Public address. As the ...