Expedition SonicWall Support?

Showing results for 
Show  only  | Search instead for 
Did you mean: 

Expedition SonicWall Support?

L3 Networker



It appears that SonicWall configs are not supported in the Expedition Migration Tool. Are there any plans to add support for this firewall vendor?




The internal tools did help parse the Sonicwall configuration, however since there is a significant technology/style difference between PAN and Sonciwall, you'll need to do a considerable amount of validation to ensure everything migrated and also a comprehensive SIT / UAT plan. Going from SonicWall's VPN clients to GlobalProtect can also be tricky since they are configured differently on their respective platforms.

Thanks Delvin, Seems like my experiences have been similar to yours.

L2 Linker

We are going through a massive SonicWall to PAN migration with a client currently and I have been trying to find anything to help. I am going to give this a shot and see how it works. Will update if i find anythign out. 

I've done several the old fashioned way, exporting everything to ms excel worksheets and then converting to txt and modifing to cli scripts etc... I was going to test a old migration using the forti converter and then import into expedition. I just need to make sure that the forti converter preserves all of the static routes and objects correctly. The most important part of these sonicwall migrations is to "validate" everything which can be time consuming. Clients who did't want to perform that detailed comparrision failed (had major issues and had to roll back) their migrations.

So here is the latest scoop. My RE onsite was able to have one of the scripting ninjas somewhere in the deep dark reaches of Palo Corporate and was able to generate csv files containing different information groupings like address, services, interfaces... etc etc etc. I was able to import these into Expedition just fine. That is as far as i have gotten so far. Hopefully that update to Expedition to add this functionality isn't far off!

I am starting a sonicwall to PAN migration and I am having issues getting the sonicwall.exp file into a csv file. I open the .exp file in the SonicReader v0.7 and get an error " Could not properly parse configtext; Hashes are empty!" . I still am able to view the raw text. When I try and view the HTML report I just see "Please wait. Processing..." and never get a html file. How to proceed with this? Is there another way to get the .exp or raw text file into a tabled format that could be used as a csv to import into expedition? Any help on this would be greatly appreciated.
PCNSC, PCNSE, Cyber Force Defender

Looks like I am able to get an html output with tables using the SonicReader v0.5. Still looking for any other tips that would help a migration from SonicWall to PAN.
PCNSC, PCNSE, Cyber Force Defender

 for the Sonicwall Config export, please follow the following CLI way:

1) login via SSH
2) no cli pager session

3) show current-config


with this you can work with the existing script to generate a CSV.
EDIT: 20221012

But we are already working on an BETA script, which is not publish yet.




Thank you Sven for the tips. You mention existing scripts. When can I find those? Any chance to test out the beta script as well. Would be happy to report on my experience with it to help with the debug and improvement. Thank you for your time on this matter,
PCNSC, PCNSE, Cyber Force Defender

EDIT: 20221012
as mention the tool is underdevelopment but you can of course ping me via mail and I will send you the installation instructions plus the tool itself.

statement is no longer correct





Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!