Fireware How To Network Configuration



Similar documents
Fireware How To Logging and Notification

How do I set up a branch office VPN tunnel with the Management Server?

Fireware How To VPN. Introduction. Is there anything I need to know before I start? Configuring a BOVPN Gateway

How do I configure multi-wan in Routing Table mode?

WatchGuard System Manager User Guide. WatchGuard System Manager v8.0

Firebox X550e, Firebox X750e, Firebox X1250e Firebox X5500e, Firebox X6500e, Firebox X8500e, Firebox X8500e-F

Configuring an IPSec Tunnel between a Firebox & a Check Point FireWall-1

Global VPN Client Getting Started Guide

Configure an IPSec Tunnel between a Firebox Vclass & a Check Point FireWall-1

Fireware How To Authentication

Configuring a Check Point FireWall-1 to SOHO IPSec Tunnel

CREATING AN IKE IPSEC TUNNEL BETWEEN AN INTERNET SECURITY ROUTER AND A WINDOWS 2000/XP PC

WatchGuard Mobile User VPN Guide

How To Set Up A Vpn Tunnel Between Winxp And Zwall On A Pc 2 And Winxp On A Windows Xp 2 On A Microsoft Gbk2 (Windows) On A Macbook 2 (Windows 2) On An Ip

Configuration Example

Chapter 2 Preparing Your Network

Configuring Windows 2000/XP IPsec for Site-to-Site VPN

HOWTO: How to configure IPSEC gateway (office) to gateway

For paid computer support call

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Cisco Firewall. Overview

Configuring SSL VPN on the Cisco ISA500 Security Appliance

NETWORK SETUP INSTRUCTIONS

If you have questions or find errors in the guide, please, contact us under the following address:

VPN Tracker for Mac OS X

How To Manage Outgoing Traffic On Fireware Xtm

Chapter 1 Configuring Basic Connectivity

Fireware XTM Traffic Management

VPN L2TP Application. Installation Guide

OvisLink 8000VPN VPN Guide WL/IP-8000VPN. Version 0.6

Chapter 1 Configuring Internet Connectivity

LevelOne. User Manual. FBR-1430 VPN Broadband Router, 1W 4L V1.0

VPN Configuration Guide WatchGuard Fireware XTM

Workflow Guide. Establish Site-to-Site VPN Connection using Digital Certificates. For Customers with Sophos Firewall Document Date: November 2015

Basic IPv6 WAN and LAN Configuration

Defender EAP Agent Installation and Configuration Guide

QUANTIFY INSTALLATION GUIDE

Configuring TheGreenBow VPN Client with a TP-LINK VPN Router

APSCN VPN Instructions for VPN Setup on Windows and MAC OS

MN-700 Base Station Configuration Guide

Use Shrew Soft VPN Client to connect with IPSec VPN Server on RV130 and RV130W

Watchguard Firebox X Edge e-series

DFL-210/260, DFL-800/860, DFL-1600/2500 How to setup IPSec VPN connection

StarMOBILE Network Configuration Guide. A guide to configuring your StarMOBILE system for networking

Multi-Homing Security Gateway

UIP1868P User Interface Guide

Configuring a VPN for Dynamic IP Address Connections

Enable VPN PPTP Server Function

Installing and Setting up Microsoft DNS Server

High Availability Branch Office VPN

Quick Start Guide. RV 120W Wireless-N VPN Firewall. Cisco Small Business

Sophos UTM. Remote Access via PPTP. Configuring UTM and Client

Initial Access and Basic IPv4 Internet Configuration

Configuration Example

Global VPN Client Getting Started Guide

Setting up D-Link VPN Client to VPN Routers

Information Services. Accessing the University Network using a Virtual Private Network Connection (VPN), with Windows XP Professional

Configuration. Windows 98 and Me Configuration

your Gateway Windows network installationguide b wireless series Router model WBR-100 Configuring Installing

VPN PPTP Application. Installation Guide

INTRODUCTION... 2 Windows Windows Mac OS X Ubuntu Advanced routing Windows Mac OS X Ubuntu...

Configuration Example

Workflow Guide. Establish Site-to-Site VPN Connection using RSA Keys. For Customers with Sophos Firewall Document Date: November 2015

TW100-BRV204 VPN Firewall Router

VPN Configuration Guide SonicWALL with SonicWALL Simple Client Provisioning

StoneGate Installation Guide

Windows XP VPN Client Example

Scenario: IPsec Remote-Access VPN Configuration

GNAT Box VPN and VPN Client

Connecting to a Soundweb TM. London Network

Basic ViPNet VPN Deployment Schemes. Supplement to ViPNet Documentation

Check Your Package Contents. CD-ROM containing Manual and Warranty

VPN Configuration Guide SonicWALL with SonicWALL Simple Client Provisioning

VPN Wizard Default Settings and General Information

A Division of Cisco Systems, Inc. 10/ Port VPN Router. User Guide WIRED RV016. Model No.

Microsoft XP Professional Remote Desktop Connection

This guide is intended to help you troubleshoot problems connecting a wireless device to the Gogo Biz network.

TE100-P21/TEW-P21G Windows 7 Installation Instruction

Protecting the Home Network (Firewall)

How to setup a VPN on Windows XP in Safari.

Configuring IPsec VPN with a FortiGate and a Cisco ASA

Outlook Profile Setup Guide Exchange 2010 Quick Start and Detailed Instructions

How to Setup PPTP VPN Between a Windows PPTP Client and the DIR-130.

Broadband Router ALL1294B

Installing and Configuring vcloud Connector

Configure IPSec VPN Tunnels With the Wizard

How To - Setup Cyberoam VPN Client to connect to a Cyberoam for the remote access using preshared key

User Manual. Onsight Management Suite Version 5.1. Another Innovation by Librestream

Network Configuration Settings

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Fortinet Firewall. Overview

nappliance misa Server 2006 Standard Edition Users Guide For use with misa Appliances 2006 nappliance Networks, Inc.

VoIP CONFIGURATION GUIDE FOR MULTI-LOCATION NETWORKS

Global VPN Client Getting Started Guide

Step-by-Step Guide for Creating and Testing Connection Manager Profiles in a Test Lab

ZyWALL 5. Internet Security Appliance. Quick Start Guide Version 3.62 (XD.0) May 2004

Astaro Security Gateway V8. Remote Access via L2TP over IPSec Configuring ASG and Client

TW100-BRF114 Firewall Router. User's Guide. Cable/DSL Internet Access. 4-Port Switching Hub

Configuration Example

Downloaded from manuals search engine

VPN Configuration Guide LANCOM

VPN Configuration Guide. Dell SonicWALL

Transcription:

Fireware How To Network Configuration How do I configure the external interface of my Firebox? Introduction Most users configure the Firebox interfaces when they use the Quick Setup Wizard to create a basic configuration file. You can also use Policy Manager to set or change the configuration you created with the Quick Setup Wizard. You can configure a maximum of four external Firebox interfaces, with IP addresses assigned by one of these procedures: Static IP address You can give the external interface of the Firebox a static IP address. DHCP The Firebox can use a DHCP (Dynamic Host Configuration Protocol) server, usually controlled by your ISP, to get an IP address, gateway, and netmask. PPPoE The Firebox can make a PPPoE Point-to-Point Protocol over Ethernet) connection to the PPPoE server of your ISP. The Firebox supports unnumbered and static PPPoe. This connection automatically configures your IP address, gateway, and netmask. Is there anything I need to know before I start? If you configure more than one interface as an external interface, only the lowest-order external interface can serve as an IKE gateway or an IPSec tunnel endpoint. If this interface is down, all IPSec tunnels to and from the Firebox will not operate. For example, if you have configured eth0 and eth1 as external interfaces, only eth0 can be the IPSec tunnel endpoint. If you configure more than one external interface on a Firebox, map the Fully Qualified Domain Name(FQDN) to the external interface IP address of the lowest order. For example, if you have configured eth0 and eth1 as external interfaces, map the FQDN to the IP address assigned to eth0. The Quick Setup Wizard uses a device discovery procedure to find the Firebox X model you are configuring. This procedure uses a UDP broadcast. Software firewalls, including the firewall in Microsoft Windows XP SP2, can cause problems with device discovery. Using the Quick Setup Wizard If you have already have a Firebox configured, it is a good idea to make a backup of your previous configuration before you use the Quick Setup Wizard. The Quick Setup Wizard makes a new, basic configuration file. The Firebox uses the basic configuration file when it starts. This enables the Firebox to operate as a basic firewall. You can start the Quick Setup Wizard from the Windows desktop or from System Manager. From the desktop, select Start > All Programs > WatchGuard System Manager 8.2 > Quick Setup Wizard. From System Manager, select Tools > Quick Setup Wizard. After the Firebox is configured with this basic configuration, you can use Policy Manager to expand or change the Firebox configuration. Caution In the Quick Setup Wizard, you must set a status and configuration passphrase for the Firebox. When you are ready to configure a Log Server to collect log messages from the Firebox, use the status passphrase you set in the Quick Setup Wizard as your default log encryption key. After your Log Server is configured, you can change your log encryption key if you want. 1

Opening a Configuration File in Policy Manager The first step to start a new configuration file is to connect to a Firebox and open Policy Manager. There are two methods to do this. Caution We recommend that you create a new configuration file only after a fresh install or a safe mode restart. Connecting to the Firebox from WSM 1 From WatchGuard System Manager, select File > Connect To > Device. Or, click the Connect to Device icon on the WatchGuard System Manager toolbar. The Connect to Firebox dialog box appears. 2 Use the drop-down list to select your Firebox, or type the IP address of the Firebox. Type the status passphrase. Click OK. The device appears in the WatchGuard System Manager Device tab. 3 Select the Firebox on the Device tab. Then, select Tools > Policy Manager. Or, Click the Policy Manager icon on the WatchGuard System Manager toolbar. Policy Manager opens, and it opens the configuration file in use on the selected Firebox. Connecting to the Firebox from Policy Manager 1 From WatchGuard System Manager, select Tools > Policy Manager. Or, click the Policy Manager icon on the WatchGuard System Manager toolbar. The Policy Manager dialog box appears. 2 Use the Firebox drop-down list to select the model of Firebox you want to configure. Click OK. The new configuration file contains the default parameters for the specified Firebox model. 2

Using Policy Manager to Set or Change an External Interface IP Address Using Policy Manager to Set or Change an External Interface IP Address 1 From Policy Manager, select Network > Configuration. The Network Configuration dialog box appears. 2 Select the interface you want to configure as an external interface and set the type to External, if necessary, using the drop-down list. Click Configure. Using a static IP address 1 From the Interface Settings dialog box, select Static. 2 Type the IP address and default gateway for the external interface.

3 Click OK. Using PPPoE 1 From the Interface Settings dialog box, select PPPoE. 2 Select one of the two options: - Get an IP address automatically - Use IP address (supplied by your network administrator). 3 If you selected Use IP Address, enter the IP address in the text box to the right. 4 Type the User Name and Password. You must type the password two times. 5 Click Properties to configure PPPoE parameters. The PPPoE parameters dialog box appears. Your ISP can tell you if it is necessary to change the time-out or LCP values. 6 Use the radio buttons to select when the Firebox connects with the PPPoE server. - Always On The Firebox keeps a constant PPPoE connection. It is not necessary that network traffic go through the external interface. - Dial-on-Demand The Firebox connects to the PPPoE server only when it gets a request to send traffic to an IP address on the external interface. If your ISP regularly resets the connection, select Dial-on-Demand. If you do not select Dial-on-Demand, you must manually restart the Firebox each time the connection resets. 7 In the PPPoE initialization time field, use the arrows to set the time allowed to start a PPPoE connection. 8 In the LCP echo failure field, use the arrows to set the number of failed LCP echo requests allowed before the PPPoE connection is closed. 9 In the LCP echo timeout field, use the arrows to set the length of time, in seconds, that the response to each echo time-out must be received. 4

Using DHCP 1 From the Interface Settings dialog box, select DHCP. 2 If your DHCP server makes you use an optional identifier in your DHCP exchange, type this identifier in the Host Name text box. 3 If the IP address is assigned automatically through DHCP, select Obtain an IP address automatically. If the IP address is assigned manually, select the Use IP Address option and type the IP address. 4 To manually set the lease expiration time for an IP address assignment, select the Specify Lease Time check box. Type the number of hours or days in the first field and select the unit of time from the drop-down list. For information about adding a secondary network or using the Advanced Settings, see the Fireware Configuration Guide, Network Setup and Configuration chapter. Frequently Asked Questions About This Procedure Can I define more than one external interface You can configure a Firebox with a maximum of four external interfaces, but VPN tunnels only go through the lowest-order external interface. When you add the Firebox to the Management Server, all of the IP address properties must match the properties of the lowest-order interface. For example, if the interface uses a static IP address, you must configure the Management Server with the same IP address as the lowest-order external interface. The default configuration sets eth0 as the lowest-order external interface. If you change the interface type, a different interface can be the lowest-order external interface. For example, if you change eth0 from an external interface to a trusted or optional interface, the interface you set as external becomes the lowest-order interface. SUPPORT: www.watchguard.com/support U.S. and Canada +877.232.3531 All Other Countries +1.206.613.0456 5 COPYRIGHT 2006 WatchGuard Technologies, Inc. All rights reserved. WatchGuard, the WatchGuard logo, Firebox, and Core are registered trademarks or trademarks of WatchGuard Technologies, Inc. in the United States and/or other countries.

6