I'm trying to setup a route where a specific website's traffic is sent over CSE to use the sonicwall's WAN IP as it is locked down to only allow the WAN IP to access. I'm running into some issues with FQDN and I'de like to make sure my settings are correct.
1) Enable Public IPs in sonicwall CSE settings
2) Configure connector > Domains > Add wildcard for website(eg. *.website.com) > add domain controller as IPV4 DNS server, Local Interface: X0
3) Create NAT rule for CSE_Access_Tier_AIPs > set outbound interface and translated source to X1
4) confirm on CSE cloud platform connector shows the FQDN(won't show * wildcard in name)
I've been told not to add it to the CSE cloud platform Private Access > global edge > public include info as this will use the CSE's IPs to route, so you only want it on the connector so it goes to the sonicwall for routing. confirmed access policy is set to allow "any".
We've tested with this configuration, but we still get an access issue. Is there a step I'm missing?
Source: r/sonicwall · by /u/Ready-Lychee-6484