Manual De ReferenciaTabla de contenidosModel FVL328 ProSafe High-Speed VPN Firewall Reference Manual Revision 21Trademarks2Statement of Conditions2EN 55 022 Declaration of Conformance2Certificate of the Manufacturer/Importer2Bestätigung des Herstellers/Importeurs3Voluntary Control Council for Interference (VCCI) Statement3Technical Support3World Wide Web3Contents5Chapter 1 About This Manual13Audience13Scope13Typographical Conventions14Special Message Formats14How to Use this Manual15How to Print this Manual16Chapter 2 Introduction17About the FVL32817Summary of New Features in the FVL32817Key Features18Virtual Private Networking18A Powerful, True Firewall19Content Filtering19Configurable Auto Uplink™ Ethernet Connection19Protocol Support20Easy Installation and Management21What’s in the Box?22The Firewall’s Front Panel22The Firewall’s Rear Panel23Chapter 3 Connecting the FVL328 to the Internet25Connecting the FVL328 to Your LAN25How to Connect the FVL328 to Your LAN25Configuring for a Wizard-Detected Login Account30Configuring for a Wizard-Detected Dynamic IP Account32Configuring for a Wizard-Detected Fixed IP (Static) Account32Testing Your Internet Connection33Manually Configuring Your Internet Connection34How to Complete a Manual Configuration35Chapter 4 WAN and LAN Configuration37Configuring LAN IP Settings37Using the Router as a DHCP Server38How to Configure LAN TCP/IP Settings and View the DHCP Log39How to Configure Reserved IP Addresses40Configuring WAN Settings41Connect Automatically, as Required42Setting Up a Default DMZ Server43How to Assign a Default DMZ Server43Multi-DMZ Servers43Responding to Ping on Internet WAN Port44MTU Size44Port Speed44Port Triggering45Port Triggering Rules46Adding a new Rule46Checking Operation and Status47Configuring Dynamic DNS47How to Configure Dynamic DNS48Using Static Routes48Static Route Example48How to Configure Static Routes49Chapter 5 Protecting Your Network51Firewall Protection and Content Filtering Overview51Using the Block Sites Menu to Screen Content51Apply Keyword Blocking to Groups53Services and Rules Regulate Inbound and Outbound Traffic53Defining a Service54Using Inbound/Outbound Rules to Block or Allow Services55Examples of Using Services and Rules to Regulate Traffic57Inbound Rules (Port Forwarding)57Example: Port Forwarding to a Local Public Web Server58Example: Port Forwarding for Videoconferencing58Example: Port Forwarding for VPN Tunnels when NAT is Off59Outbound Rules (Service Blocking or Port Filtering)60Outbound Rule Example: Blocking Instant Messaging60Other Rules Considerations61Order of Precedence for Rules61Rules Menu Options62Using a Schedule to Block or Allow Content or Traffic63Setting the Time Zone64Set Clock64Enable NTP (Network Time Protocol)64User-defined NTP Server65Getting E-Mail Notifications of Event Logs and Alerts65Viewing Logs of Web Access or Attempted Web Access67What to Include in the Event Log69Chapter 6 Virtual Private Networking71Overview of FVL328 Policy-Based VPN Configuration71Using Policies to Manage VPN Traffic71Using Automatic Key Management72IKE Policies’ Automatic Key and Authentication Management73VPN Policy Configuration for Auto Key Negotiation76VPN Policy Configuration for Manual Key Exchange79Using Digital Certificates for IKE Auto-Policy Authentication84Certificate Revocation List (CRL)85How to Use the VPN Wizard to Configure a VPN Tunnel85Walk-Through of Configuration Scenarios88VPNC Scenario 1: Gateway-to-Gateway with Preshared Secrets89FVL328 Scenario 1: How to Configure the IKE and VPN Policies91How to Check VPN Connections96FVL328 Scenario 2: Authenticating with RSA Certificates97Chapter 7 Managing Your Network105Protecting Access to Your FVL328 Firewall105How to Change the Built-In Password105How to Change the Administrator Login Timeout106Internet Traffic107Internet Traffic Limit107Enable Monthly Limit108Internet Traffic Statistics108Traffic by Protocol109Network Database109Advantages of the Network Database110Known PCs and Devices111Operations111Network Management112How to Configure Remote Management112Viewing Router Status and Usage Statistics113Viewing Attached Devices116Viewing, Selecting, and Saving Logged Information117Changing the Include in Log Settings118Enabling the Syslog Feature119Enabling Security Event E-mail Notification119Backing Up, Restoring, or Erasing Your Settings121How to Back Up the FVL328 Configuration to a File121How to Restore a Configuration from a File122How to Erase the Configuration122Running Diagnostic Utilities and Rebooting the Router123Upgrading the Router’s Firmware124How to Upgrade the Router124Chapter 8 Troubleshooting127Basic Functions127Power LED Not On128Test LED Never Turns On or Test LED Stays On128Local or Internet Port Link LEDs Not On129Troubleshooting the Web Configuration Interface129Troubleshooting the ISP Connection130Troubleshooting a TCP/IP Network Using a Ping Utility131How to Test the LAN Path to Your Firewall132How to Test the Path from Your PC to a Remote Device132Restoring the Default Configuration and Password133How to Use the Default Reset Button133Problems with Date and Time134Appendix A Technical Specifications135Appendix B Networks, Routing, and Firewall Basics137Related Publications137Basic Router Concepts137What is a Router?137Routing Information Protocol138IP Addresses and the Internet138Netmask140Subnet Addressing140Private IP Addresses143Single IP Address Operation Using NAT143MAC Addresses and Address Resolution Protocol144Related Documents145Domain Name Server145IP Configuration by DHCP145Internet Security and Firewalls146What is a Firewall?146Stateful Packet Inspection146Denial of Service Attack147Ethernet Cabling147Category 5 Cable Quality147Inside Twisted Pair Cables148Uplink Switches, Crossover Cables, and MDI/MDIX Switching149Appendix C Preparing Your Network151What You Will Need Before You Begin151LAN Hardware Requirements151LAN Configuration Requirements152Internet Configuration Requirements152Where Do I Get the Internet Configuration Parameters?152Worksheet for Recording Your Internet Connection Information153Preparing Your Computers for TCP/IP Networking154Configuring Windows 95, 98, and Me for TCP/IP Networking155Install or Verify Windows Networking Components155Enabling DHCP to Automatically Configure TCP/IP Settings156Selecting Windows’ Internet Access Method157Verifying TCP/IP Properties157Configuring Windows NT, 2000 or XP for IP Networking158Installing or Verifying Windows Networking Components158Verifying TCP/IP Properties158Configuring the Macintosh for TCP/IP Networking159MacOS 8.6 or 9.x159MacOS X160Verifying TCP/IP Properties for Macintosh Computers160Restarting the Network161Appendix D Firewall Log Formats163Action List163Field List163Outbound Log163Inbound Log164Other IP Traffic164Router Operation165Other Connections and Traffic to this Router166DoS Attack/Scan166Access Block Site168All Web Sites and News Groups Visited168System Admin Sessions168Policy Administration LOG169Appendix E Virtual Private Networking171What is a VPN?171What is IPSec and How Does It Work?172IPSec Security Features172IPSec Components172Encapsulating Security Payload (ESP)173Authentication Header (AH)174IKE Security Association174Mode175Key Management176Understand the Process Before You Begin176VPN Process Overview177Network Interfaces and Addresses177Interface Addressing177Firewalls178Setting Up a VPN Tunnel Between Gateways178VPNC IKE Security Parameters180VPNC IKE Phase I Parameters180VPNC IKE Phase II Parameters181Testing and Troubleshooting181Additional Reading181Appendix F NETGEAR VPN Configuration FVS318 or FVM318 to FVL328183Configuration Template183Step-By-Step Configuration of FVS318 or FVM318 Gateway A184Step-By-Step Configuration of FVL328 Gateway B187Test the VPN Connection192Appendix G NETGEAR VPN Client to NETGEAR FVL328 or FWAG114 VPN Router195Configuration Profile195Step-By-Step Configuration of FVL328 or FWAG114 Gateway196Step-By-Step Configuration of the FVL328 Firewall B201Testing the VPN Connection208From the Client PC to the FVL328208From the FVL328 to the Client PC209Monitoring the PC VPN Connection209Viewing the FVL328 VPN Status and Log Information211Appendix H NETGEAR VPN Configuration FVS318 or FVM318 with FQDN to FVL328213Configuration Template213Using DDNS and Fully Qualified Domain Names (FQDN)214Step-By-Step Configuration of FVS318 or FVM318 Gateway A215Step-By-Step Configuration of FVL328 Gateway B219Test the VPN Connection224Glossary225Index231Tamaño: 6 MBPáginas: 234Language: EnglishManuales abiertas