FVM318 Reference Manual
Page 11
... a Remote PC to Network VPN 5-8 Procedure 5-3: Deleting a Security Association 5-19 Procedure 5-4: Using Manual Keying as an Alternative to IKE 5-19 Procedure 6-1: Backup the Configuration to a File 6-9 Procedure 6-2: Restore a Configuration from a File 6-10 Procedure 6-3: Erase the Configuration 6-10 Procedure 6-4: Configure Remote Management 6-12 Procedure 6-5: Router Upgrade 6-14 Procedure 7-1: Using Reserved IP Addresses 7-5 Procedure 7-2: Configuring LAN TCP...
... a Remote PC to Network VPN 5-8 Procedure 5-3: Deleting a Security Association 5-19 Procedure 5-4: Using Manual Keying as an Alternative to IKE 5-19 Procedure 6-1: Backup the Configuration to a File 6-9 Procedure 6-2: Restore a Configuration from a File 6-10 Procedure 6-3: Erase the Configuration 6-10 Procedure 6-4: Configure Remote Management 6-12 Procedure 6-5: Router Upgrade 6-14 Procedure 7-1: Using Reserved IP Addresses 7-5 Procedure 7-2: Configuring LAN TCP...
FVM318 Reference Manual
Page 17
... need to worry about crossover cables, as Auto Uplink will accommodate either type of PCs on TCP/IP. • IP Address Sharing by NAT The FVM318 allows several networked PCs to make the right connection. That port will automatically sense whether the Ethernet...PC. • PPTP login support for European ISPs, and BigPond login for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall The firewall incorporates Auto UplinkTM technology. The firewall obtains actual DNS addresses from the ISP during connection setup and forwards DNS requests from the LAN. • ...
... need to worry about crossover cables, as Auto Uplink will accommodate either type of PCs on TCP/IP. • IP Address Sharing by NAT The FVM318 allows several networked PCs to make the right connection. That port will automatically sense whether the Ethernet...PC. • PPTP login support for European ISPs, and BigPond login for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall The firewall incorporates Auto UplinkTM technology. The firewall obtains actual DNS addresses from the ISP during connection setup and forwards DNS requests from the LAN. • ...
FVM318 Reference Manual
Page 18
... firewall from the FVM318 when your dynamic IP address. For security, you can limit remote management access to a specified remote IP address or range of addresses, and you can install, configure, and operate the FVM318 within minutes after connecting it to the network. The firewall incorporates..., DNS lookup, and remote reboot. Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Dynamic DNS services allow you to test Internet connectivity and reboot the firewall. The firewall automatically senses the type of Internet connection, asking you only for ...
... firewall from the FVM318 when your dynamic IP address. For security, you can limit remote management access to a specified remote IP address or range of addresses, and you can install, configure, and operate the FVM318 within minutes after connecting it to the network. The firewall incorporates..., DNS lookup, and remote reboot. Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Dynamic DNS services allow you to test Internet connectivity and reboot the firewall. The firewall automatically senses the type of Internet connection, asking you only for ...
FVM318 Reference Manual
Page 24
...Names. • ISP Login Name and Password. • ISP Domain Name Server (DNS) Addresses. • Fixed IP Address which provides Internet connection information for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall The cable or DSL modem broadband access device must provide a standard 10 Mbps (10BASE-T) Ethernet...If you have a computer already connected using the active Internet access account, you locate your firewall to the NETGEAR Router ISP Guide on the FVM318 Resource CD which is also known as Static IP Address. Where Do I Get the Internet Configuration Parameters?
...Names. • ISP Login Name and Password. • ISP Domain Name Server (DNS) Addresses. • Fixed IP Address which provides Internet connection information for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall The cable or DSL modem broadband access device must provide a standard 10 Mbps (10BASE-T) Ethernet...If you have a computer already connected using the active Internet access account, you locate your firewall to the NETGEAR Router ISP Guide on the FVM318 Resource CD which is also known as Static IP Address. Where Do I Get the Internet Configuration Parameters?
FVM318 Reference Manual
Page 25
... IP Address Host and Domain Names: Some ISPs use aaa as your host name. ISP Host Name ISP Domain Name For Wireless Access: For configuration of the wireless network, record the following examples as a guide: • If your main e-mail account with your Internet Service Provider (ISP). Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall...
... IP Address Host and Domain Names: Some ISPs use aaa as your host name. ISP Host Name ISP Domain Name For Wireless Access: For configuration of the wireless network, record the following examples as a guide: • If your main e-mail account with your Internet Service Provider (ISP). Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall...
FVM318 Reference Manual
Page 28
...and wait about crossover cables, as Auto Uplink will accommodate either type of cable to the firewall at its default address of http://192.168.0.1 using a browser like Internet Explorer or Netscape® Navigator. ...firewall. 2-6 Connecting the Firewall to Appendix C, "Preparing Your Network" for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Note: The FVM318 firewall incorporates Auto UplinkTM technology. Please refer to the Internet g. h. Reference Manual for instructions on your computer. Each LAN Ethernet port will then configure itself to obtain an IP address...
...and wait about crossover cables, as Auto Uplink will accommodate either type of cable to the firewall at its default address of http://192.168.0.1 using a browser like Internet Explorer or Netscape® Navigator. ...firewall. 2-6 Connecting the Firewall to Appendix C, "Preparing Your Network" for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Note: The FVM318 firewall incorporates Auto UplinkTM technology. Please refer to the Internet g. h. Reference Manual for instructions on your computer. Each LAN Ethernet port will then configure itself to obtain an IP address...
FVM318 Reference Manual
Page 30
... via DHCP, you recorded them previously in the Setup Wizard for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall a. Click Next and follow below. 2-8 Connecting the Firewall to the Internet. The Smart Wizard will not detect these options. • Connections which use dynamic IP address assignment. • Connections which require login will need the configuration parameters from...
... via DHCP, you recorded them previously in the Setup Wizard for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall a. Click Next and follow below. 2-8 Connecting the Firewall to the Internet. The Smart Wizard will not detect these options. • Connections which use dynamic IP address assignment. • Connections which require login will need the configuration parameters from...
FVM318 Reference Manual
Page 31
... ProSafe Wireless VPN Security Firewall PPPoE Wizard-Detected Option If the Setup Wizard discovers that your ISP uses PPPoE, you will see this menu: Figure 2-7: Setup Wizard menu for PPPoE accounts • Enter the Account Name, Domain Name, Login, and password as provided by your Internet connection works. These fields are case sensitive. If the NETGEAR...
... ProSafe Wireless VPN Security Firewall PPPoE Wizard-Detected Option If the Setup Wizard discovers that your ISP uses PPPoE, you will see this menu: Figure 2-7: Setup Wizard menu for PPPoE accounts • Enter the Account Name, Domain Name, Login, and password as provided by your Internet connection works. These fields are case sensitive. If the NETGEAR...
FVM318 Reference Manual
Page 32
..., the firewall try to the Internet Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Dynamic IP Wizard-Detected Option If the Setup Wizard discovers that your ISP uses Dynamic IP assignment, you will see this menu: Figure 2-8: Setup Wizard menu for Dynamic IP address accounts ...If a Secondary DNS Server address is available, enter it manually. • If you may be called Host Name) and Domain Name. If the NETGEAR website does not appear within one minute, refer to Chapter 8, Troubleshooting. 2-10 Connecting the Firewall to discover the domain....
..., the firewall try to the Internet Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Dynamic IP Wizard-Detected Option If the Setup Wizard discovers that your ISP uses Dynamic IP assignment, you will see this menu: Figure 2-8: Setup Wizard menu for Dynamic IP address accounts ...If a Secondary DNS Server address is available, enter it manually. • If you may be called Host Name) and Domain Name. If the NETGEAR website does not appear within one minute, refer to Chapter 8, Troubleshooting. 2-10 Connecting the Firewall to discover the domain....
FVM318 Reference Manual
Page 33
... menu for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Fixed IP Account Wizard-Detected Option If the Setup Wizard discovers that these settings take effect. • Click Apply to save the settings. • Click Test to Chapter 8, Troubleshooting." Connecting the Firewall to you recorded in ... to the Internet 2-11 Enter your assigned IP Address, Subnet Mask, and the IP Address of your ISP's gateway router. If the NETGEAR website does not appear within one minute, refer to test your ISP uses Fixed IP assignment, you will need the configuration parameters ...
... menu for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Fixed IP Account Wizard-Detected Option If the Setup Wizard discovers that these settings take effect. • Click Apply to save the settings. • Click Test to Chapter 8, Troubleshooting." Connecting the Firewall to you recorded in ... to the Internet 2-11 Enter your assigned IP Address, Subnet Mask, and the IP Address of your ISP's gateway router. If the NETGEAR website does not appear within one minute, refer to test your ISP uses Fixed IP assignment, you will need the configuration parameters ...
FVM318 Reference Manual
Page 35
Enter the IP address that PC. c. Domain Name Server (DNS) Address: If you a permanent, fixed (static) IP address for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Procedure 2-3: Configuring the Internet Connection Manually You can manually configure the firewall using the Basic ...firewall at its MAC address. e. Reference Manual for your PC, select "Use static IP address". Click the Basic Settings link under the Setup section of http://192.168.0.1 using these settings take effect. The Gateway is first opened. If your account is the ISP's router...
Enter the IP address that PC. c. Domain Name Server (DNS) Address: If you a permanent, fixed (static) IP address for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Procedure 2-3: Configuring the Internet Connection Manually You can manually configure the firewall using the Basic ...firewall at its MAC address. e. Reference Manual for your PC, select "Use static IP address". Click the Basic Settings link under the Setup section of http://192.168.0.1 using these settings take effect. The Gateway is first opened. If your account is the ISP's router...
FVM318 Reference Manual
Page 45
... your PCs for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Note: If you are able to obtain an IP address by MAC Address To restrict access based on Apply. Check that you configured in the router. From the Wireless Settings menu, click the Trusted PCs button to match the firewall's new settings. 8. Program the wireless adapter of your PC to...
... your PCs for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Note: If you are able to obtain an IP address by MAC Address To restrict access based on Apply. Check that you configured in the router. From the Wireless Settings menu, click the Trusted PCs button to match the firewall's new settings. 8. Program the wireless adapter of your PC to...
FVM318 Reference Manual
Page 52
...-t 192.168.0.1 , and then click OK. If you can initiate a request from the PC to indicate either the IP Address or the network name of the firewall. Figure 3-18. b. c. Enter the User Name and the Pre-Shared Key value that you can leave the IPSec Gateway... as shown below : a. Run Ping from the PC to the firewall, as your network's default gateway, change IPSec Gateway to the firewall. To check the VPN Connection, you programmed for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall b. e. In the taskbar tray, right-click on the SafeNet icon and...
...-t 192.168.0.1 , and then click OK. If you can initiate a request from the PC to indicate either the IP Address or the network name of the firewall. Figure 3-18. b. c. Enter the User Name and the Pre-Shared Key value that you can leave the IPSec Gateway... as shown below : a. Run Ping from the PC to the firewall, as your network's default gateway, change IPSec Gateway to the firewall. To check the VPN Connection, you programmed for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall b. e. In the taskbar tray, right-click on the SafeNet icon and...
FVM318 Reference Manual
Page 55
... in the box to allow all traffic through the VPN tunnel. Select Gateway IP Address in the Protocol menu to the right of the Security Policy Editor window in the lower right box (usually 192.168.0.1). Wireless Configuration 3-19 Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall You will appear in the ID Type menu below...
... in the box to allow all traffic through the VPN tunnel. Select Gateway IP Address in the Protocol menu to the right of the Security Policy Editor window in the lower right box (usually 192.168.0.1). Wireless Configuration 3-19 Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall You will appear in the ID Type menu below...
FVM318 Reference Manual
Page 63
... Apply. 6. You can block services like Telnet or Instant Messenger. Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall • If the keyword "XXX" is specified, the URL is blocked, as is the newsgroup... alt.pictures.xxx. • If the keyword ".com" is a PC that will be identified by adding Block Services definitions to the Outbound Services table. You may define exceptions to the default outbound settings by an IP address...
... Apply. 6. You can block services like Telnet or Instant Messenger. Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall • If the keyword "XXX" is specified, the URL is blocked, as is the newsgroup... alt.pictures.xxx. • If the keyword ".com" is a PC that will be identified by adding Block Services definitions to the Outbound Services table. You may define exceptions to the default outbound settings by an IP address...
FVM318 Reference Manual
Page 65
... to block or allow according to the schedule you select a single address, enter it in the Schedule menu. • LAN Users Address. You can select whether the traffic will be made for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall The parameters are: • Service. no log entries will be logged...Choose how you would like the traffic to be restricted by source IP address. The list already displays many common services, but you select a range of traffic to be handled. From this type of addresses, enter the range in the start box. • Log. Use...
... to block or allow according to the schedule you select a single address, enter it in the Schedule menu. • LAN Users Address. You can select whether the traffic will be made for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall The parameters are: • Service. no log entries will be logged...Choose how you would like the traffic to be restricted by source IP address. The list already displays many common services, but you select a range of traffic to be handled. From this type of addresses, enter the range in the start box. • Log. Use...
FVM318 Reference Manual
Page 67
... at its default LAN address of http://192.168.0.1 with its IP address under Use this NTP Server. 5. For example, 10:30 am would be 10 hours and 30 minutes and 10:30 pm would prefer to save your changes. The firewall has a list of the Security menu. 3. Check the... password and LAN address you have chosen for time-stamping log entries. Protecting Your Network 4-9 Select your time zone is currently in the Ports menu, you would be 22 hours and 30 minutes. 4. If you can set up a schedule for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall 3. Reference Manual ...
... at its default LAN address of http://192.168.0.1 with its IP address under Use this NTP Server. 5. For example, 10:30 am would be 10 hours and 30 minutes and 10:30 pm would prefer to save your changes. The firewall has a list of the Security menu. 3. Check the... password and LAN address you have chosen for time-stamping log entries. Protecting Your Network 4-9 Select your time zone is currently in the Ports menu, you would be 22 hours and 30 minutes. 4. If you can set up a schedule for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall 3. Reference Manual ...
FVM318 Reference Manual
Page 70
Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall access to network resources when NAT is not possible for NETGEAR to provide specific technical support for every other interconnection. The FVM318 firewall router on your network is the other VPN products, it is enabled and remote computers have been assigned private IP addresses. The FVM318 firewall router on your network is the other...
Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall access to network resources when NAT is not possible for NETGEAR to provide specific technical support for every other interconnection. The FVM318 firewall router on your network is the other VPN products, it is enabled and remote computers have been assigned private IP addresses. The FVM318 firewall router on your network is the other...
FVM318 Reference Manual
Page 71
... a variable key length. The Data Encryption Standard (DES) processes input data that is an automated method for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall FVM318 VPN Configuration Planning When you set up a VPN connection, you must have a fixed IP address. Advanced Encryption Standard, a symmetric 128-bit block data encryption technique. These topics are discussed below and a blank worksheets...
... a variable key length. The Data Encryption Standard (DES) processes input data that is an automated method for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall FVM318 VPN Configuration Planning When you set up a VPN connection, you must have a fixed IP address. Advanced Encryption Standard, a symmetric 128-bit block data encryption technique. These topics are discussed below and a blank worksheets...
FVM318 Reference Manual
Page 72
Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Procedure 5-1: Configuring a Network to Network VPN Tunnel Follow this procedure. LAN A VPN Tunnel LAN B Cable/DSL ProSafeWirelessVPN Security Firewall PWR TEST IN TER N ET LNK W LA N LO CA L MODEL FVM318 100 ACT Enable LNK/ACT 1 2 3 4 5 6 7 8 192.168.3.1 Cable/DSL ProSafeWirelessVPN Security Firewall PWR TEST IN TER N ET LNK W LA N LO CA...
Reference Manual for the Model FVM318 Cable/DSL ProSafe Wireless VPN Security Firewall Procedure 5-1: Configuring a Network to Network VPN Tunnel Follow this procedure. LAN A VPN Tunnel LAN B Cable/DSL ProSafeWirelessVPN Security Firewall PWR TEST IN TER N ET LNK W LA N LO CA L MODEL FVM318 100 ACT Enable LNK/ACT 1 2 3 4 5 6 7 8 192.168.3.1 Cable/DSL ProSafeWirelessVPN Security Firewall PWR TEST IN TER N ET LNK W LA N LO CA...