Manuale Di RiferimentoSommarioModel FVS328 ProSafe VPN Firewall with Dial Back-up Reference Manual1Trademarks2Statement of Conditions2EN 55 022 Declaration of Conformance2Certificate of the Manufacturer/Importer2Bestätigung des Herstellers/Importeurs3Voluntary Control Council for Interference (VCCI) Statement3Technical Support3World Wide Web3Contents5Chapter 1 About This Manual13Audience13Scope13Typographical Conventions14Special Message Formats14How to Use this Manual15How to Print this Manual16Chapter 2 Introduction17About the FVS32817Key Features17Full Routing on Both the Broadband and Serial Ports17Virtual Private Networking18A Powerful, True Firewall18Content Filtering19Configurable Auto Uplink™ Ethernet Connection19Protocol Support19Easy Installation and Management20What’s in the Box?21The Firewall’s Front Panel21The Firewall’s Rear Panel23Chapter 3 Connecting the FVS328 to the Internet25What You Will Need Before You Begin25LAN Hardware Requirements25LAN Configuration Requirements25Internet Configuration Requirements26Where Do I Get the Internet Configuration Parameters?26Worksheet for Recording Your Internet Connection Information27Connecting the FVS328 to Your LAN28How to Connect the FVS328 to Your LAN28Configuring a Wizard-Detected Login Account32Configuring a Wizard-Detected Dynamic IP Account33Configuring a Wizard-Detected Fixed IP (Static) Account34How to Configure the Serial Port for an Internet Connection34Testing Your Internet Connection37Manually Configuring Your Internet Connection38How to Manually Configure the Primary Internet Connection39Chapter 4 Serial Port Configuration41Configuring a Serial Port Modem42Basic Requirements for Serial Port Modem Configuration42How to Configure a Serial Port Modem42Configuring Auto-Rollover43Basic Requirements for Auto-Rollover43How to Configure Auto-Rollover43Configuring Dial-in on the Serial Port44Basic Requirements for Dial-in45How to Configure Dial-in45Configuring LAN-to-LAN Settings46Basic Requirements for LAN-to-LAN Connections46How to Configure LAN-to-LAN Connections46Chapter 5 WAN and LAN Configuration49Configuring LAN IP Settings49Using the Router as a DHCP Server50How to Configure LAN TCP/IP Setup Settings51How to Configure Reserved IP Addresses52Configuring WAN Settings52Connecting Automatically, as Required53Setting Up a Default DMZ Server53How to Assign a Default DMZ Server53Responding to Ping on Internet WAN Port54How to Set the MTU Size54Configuring Dynamic DNS54How to Configure Dynamic DNS55Using Static Routes55Static Route Example55How to Configure Static Routes56Chapter 6 Protecting Your Network59Protecting Access to Your FVS328 Firewall59How to Change the Built-In Password59How to Change the Administrator Login Timeout60Configuring Basic Firewall Services60Using the Block Sites Menu to Screen Content61Services and Rules Regulate Inbound and Outbound Traffic62Defining a Service63Using Inbound/Outbound Rules to Block or Allow Services64Examples of Using Services and Rules to Regulate Traffic66Inbound Rules (Port Forwarding)66Example: Port Forwarding to a Local Public Web Server67Example: Port Forwarding for Videoconferencing67Example: Port Forwarding for VPN Tunnels when NAT is Off68Outbound Rules (Service Blocking or Port Filtering)69Outbound Rule Example: Blocking Instant Messaging70Other Rules Considerations70Order of Precedence for Rules70Rules Menu Options71Setting Times and Scheduling Firewall Services71How to Set Your Time Zone72How to Schedule Firewall Services73Chapter 7 Virtual Private Networking75Overview of FVS328 Policy-Based VPN Configuration75Using Policies to Manage VPN Traffic75Using Automatic Key Management76IKE Policies’ Automatic Key and Authentication Management77VPN Policy Configuration for Auto Key Negotiation80VPN Policy Configuration for Manual Key Exchange83Using Digital Certificates for IKE Auto-Policy Authentication88Certificate Revocation List (CRL)88How to Use the VPN Wizard to Configure a VPN Tunnel89Walk-Through of Configuration Scenarios91VPNC Scenario 1: Gateway-to-Gateway with Preshared Secrets92FVS328 Scenario 1: How to Configure the IKE and VPN Policies94How to Check VPN Connections98FVS328 Scenario 2: Authenticating with RSA Certificates99Chapter 8 Managing Your Network107Network Management107How to Configure Remote Management107Viewing Router Status and Usage Statistics109Viewing Attached Devices112Viewing, Selecting, and Saving Logged Information113Changing the Include in Log Settings115Enabling the Syslog Feature115Enabling Security Event E-mail Notification116Backing Up, Restoring, or Erasing Your Settings117How to Back Up the FVS328 Configuration to a File117How to Restore a Configuration from a File118How to Erase the Configuration119Running Diagnostic Utilities and Rebooting the Router119Upgrading the Router’s Firmware120How to Upgrade the Router121Chapter 9 Troubleshooting123Basic Functions123Power LED Not On124Test LED Never Turns On or Test LED Stays On124Local or Internet Port Link LEDs Not On125Troubleshooting the Web Configuration Interface125Troubleshooting the ISP Connection126Troubleshooting a TCP/IP Network Using a Ping Utility127How to Test the LAN Path to Your Firewall128How to Test the Path from Your PC to a Remote Device128Restoring the Default Configuration and Password129How to Use the Default Reset Button129Problems with Date and Time130Appendix A Technical Specifications131Appendix B Firewall Log Formats133Action List133Field List133Outbound Log133Inbound Log134Other IP Traffic134Router Operation135Other Connections and Traffic to this Router136DoS Attack/Scan136Access Block Site138All Web Sites and News Groups Visited138System Admin Sessions138Policy Administration LOG139Appendix C Networks, Routing, and Firewall Basics141Related Publications141Basic Router Concepts141What is a Router?141Routing Information Protocol142IP Addresses and the Internet142Netmask144Subnet Addressing144Private IP Addresses147Single IP Address Operation Using NAT147MAC Addresses and Address Resolution Protocol149Related Documents149Domain Name Server149IP Configuration by DHCP150Internet Security and Firewalls150What is a Firewall?151Stateful Packet Inspection151Denial of Service Attack151Ethernet Cabling152Uplink Switches and Crossover Cables152Cable Quality153Appendix D Preparing Your Network155Preparing Your Computers for TCP/IP Networking155Configuring Windows 95, 98, and Me for TCP/IP Networking156Install or Verify Windows Networking Components156Enabling DHCP to Automatically Configure TCP/IP Settings158Selecting Windows’ Internet Access Method158Verifying TCP/IP Properties159Configuring Windows NT, 2000 or XP for IP Networking159Installing or Verifying Windows Networking Components159Verifying TCP/IP Properties160Configuring the Macintosh for TCP/IP Networking160MacOS 8.6 or 9.x160MacOS X161Verifying TCP/IP Properties for Macintosh Computers162Verifying the Readiness of Your Internet Account163Are Login Protocols Used?163What Is Your Configuration Information?163Obtaining ISP Configuration Information for Windows Computers164Obtaining ISP Configuration Information for Macintosh Computers165Restarting the Network166Appendix E Virtual Private Networking167What is a VPN?167What is IPSec and How Does It Work?168IPSec Security Features168IPSec Components168Encapsulating Security Payload (ESP)169Authentication Header (AH)170IKE Security Association170Mode171Key Management172Understand the Process Before You Begin172VPN Process Overview173Network Interfaces and Addresses173Interface Addressing173Firewalls174Setting Up a VPN Tunnel Between Gateways174VPNC IKE Security Parameters176VPNC IKE Phase I Parameters176VPNC IKE Phase II Parameters177Testing and Troubleshooting177Additional Reading177Appendix F NETGEAR VPN Configuration FVS318 or FVM318 to FVS328179Configuration Profile179Step-By-Step Configuration of FVS318 or FVM318 Gateway A180Step-By-Step Configuration of FVS328 Gateway B183Test the VPN Connection187Appendix G NETGEAR VPN Configuration FVS318 or FVM318 with FQDN to FVS328189Configuration Profile189Using DDNS and Fully Qualified Domain Names (FQDN)190Step-By-Step Configuration of FVS318 or FVM318 Gateway A191Step-By-Step Configuration of FVS328 Gateway B195Test the VPN Connection199Appendix H NETGEAR VPN Client to NETGEAR the FVS328201Profile: Traveling User or Telecommuter at Home201Step-By-Step Configuration of FVS328 Gateway202Step-By-Step Configuration of the Netgear VPN Client B207Testing the VPN Connection214From the Client PC to the FVS328214From the FVS328 to the Client PC215Monitoring the PC VPN Connection215Viewing the FVS328 VPN Status and Log Information216Glossary219Index225Dimensioni: 5,4 MBPagine: 228Language: EnglishApri il manuale