FVS336G Reference Manual
Page 7
... Panel Features ...1-7 Default IP Address, Login Name, and Password Location 1-8 Qualified Web Browsers 1-8 Chapter 2 Connecting the FVS336G to the Internet Understanding the Connection Steps 2-1 Logging into the VPN Firewall Router 2-2 Navigating the Menus ...2-3 Configuring the Internet Connections 2-4 Automatically Detecting and Connecting 2-5 Manually Configuring the Internet Connection 2-7 Configuring the WAN Mode (Required for Dual WAN 2-10 Network Address...
... Panel Features ...1-7 Default IP Address, Login Name, and Password Location 1-8 Qualified Web Browsers 1-8 Chapter 2 Connecting the FVS336G to the Internet Understanding the Connection Steps 2-1 Logging into the VPN Firewall Router 2-2 Navigating the Menus ...2-3 Configuring the Internet Connections 2-4 Automatically Detecting and Connecting 2-5 Manually Configuring the Internet Connection 2-7 Configuring the WAN Mode (Required for Dual WAN 2-10 Network Address...
FVS336G Reference Manual
Page 11
ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual Changing Passwords and Administrator Settings 8-8 Enabling Remote Management Access 8-10 Using the Command Line Interface 8-12 Using an SNMP Manager 8-13 Configuration File ... WAN Port LEDs Not On 10-2 Troubleshooting the Web Configuration Interface 10-3 Troubleshooting the ISP Connection 10-4 Troubleshooting a TCP/IP Network Using a Ping Utility 10-5 Testing the LAN Path to Your VPN Firewall 10-5 Testing the Path from Your PC to a Remote Device 10-6 Restoring the Default Configuration and Password ...
ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual Changing Passwords and Administrator Settings 8-8 Enabling Remote Management Access 8-10 Using the Command Line Interface 8-12 Using an SNMP Manager 8-13 Configuration File ... WAN Port LEDs Not On 10-2 Troubleshooting the Web Configuration Interface 10-3 Troubleshooting the ISP Connection 10-4 Troubleshooting a TCP/IP Network Using a Ping Utility 10-5 Testing the LAN Path to Your VPN Firewall 10-5 Testing the Path from Your PC to a Remote Device 10-6 Restoring the Default Configuration and Password ...
FVS336G Reference Manual
Page 15
..." on page 1-7 • "Default IP Address, Login Name, and Password Location" on page 1-8 • "Qualified Web Browsers" on page 1-8 Key Features The VPN firewall provides the following key features: • Dual 10/100/1000 Mbps Gigabit Ethernet WAN ports for load balancing or failover protection of your primary Internet connection. Chapter 1 Introduction The ProSafe Dual WAN Gigabit Firewall with SSL & IPsec...
..." on page 1-7 • "Default IP Address, Login Name, and Password Location" on page 1-8 • "Qualified Web Browsers" on page 1-8 Key Features The VPN firewall provides the following key features: • Dual 10/100/1000 Mbps Gigabit Ethernet WAN ports for load balancing or failover protection of your primary Internet connection. Chapter 1 Introduction The ProSafe Dual WAN Gigabit Firewall with SSL & IPsec...
FVS336G Reference Manual
Page 21
... Description The LAN port is operating at 1,000 Mbps. The WAN port has detected a link with RJ-45 connectors. 4. Figure 1-2 Viewed from left to factory default settings. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual Table 1-1. All configuration settings will be lost and the default password will be restored. 2. Introduction 1-7 v1.0, March 2009 The LAN port...
... Description The LAN port is operating at 1,000 Mbps. The WAN port has detected a link with RJ-45 connectors. 4. Figure 1-2 Viewed from left to factory default settings. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual Table 1-1. All configuration settings will be lost and the default password will be restored. 2. Introduction 1-7 v1.0, March 2009 The LAN port...
FVS336G Reference Manual
Page 22
... the full suite of the following factory default information: IP Address User Name Password Figure 1-3 Qualified Web Browsers To configure the ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN, an administrator must use with JavaScript, cookies, and SSL enabled. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual Default IP Address, Login Name, and Password Location Check the label on the...
... the full suite of the following factory default information: IP Address User Name Password Figure 1-3 Qualified Web Browsers To configure the ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN, an administrator must use with JavaScript, cookies, and SSL enabled. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual Default IP Address, Login Name, and Password Location Check the label on the...
FVS336G Reference Manual
Page 24
...the FVS336G to the VPN firewall, your fully qualified domain names during this chapter. Figure 2-1 3. In the User field, type admin 4. See "Configuring the Advanced WAN Options (Optional)" on page 2-16. 6. To connect and log in the browser. In the Password field, type password ...of firewall and VPN features is described in this phase (if required). ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual 5. The configuration of these tasks is not usually required. The Manager login features appear in to a ping, and you can change the factory default ...
...the FVS336G to the VPN firewall, your fully qualified domain names during this chapter. Figure 2-1 3. In the User field, type admin 4. See "Configuring the Advanced WAN Options (Optional)" on page 2-16. 6. To connect and log in the browser. In the Password field, type password ...of firewall and VPN features is described in this phase (if required). ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual 5. The configuration of these tasks is not usually required. The Manager login features appear in to a ping, and you can change the factory default ...
FVS336G Reference Manual
Page 29
... v1.0, March 2009 Connecting the FVS336G to automatically detect and configure the WAN2 Internet connection. 6. If you intend to use the dual WAN capabilities of these options: Figure 2-6 • If your WAN ISP configuration was not successful, ...Password fields. Note: If the configuration process was successful, you can attempt a manual configuration as described in the following : 2. Select Network Configuration > WAN Settings > WAN1 ISP Settings and enter the following section, or see "Troubleshooting the ISP Connection" on page 10-4. ProSafe Dual WAN Gigabit Firewall...
... v1.0, March 2009 Connecting the FVS336G to automatically detect and configure the WAN2 Internet connection. 6. If you intend to use the dual WAN capabilities of these options: Figure 2-6 • If your WAN ISP configuration was not successful, ...Password fields. Note: If the configuration process was successful, you can attempt a manual configuration as described in the following : 2. Select Network Configuration > WAN Settings > WAN1 ISP Settings and enter the following section, or see "Troubleshooting the ISP Connection" on page 10-4. ProSafe Dual WAN Gigabit Firewall...
FVS336G Reference Manual
Page 30
If you use from the three listed options. (By default, "Other (PPPoE)" is idle for the PPPoE connection • Domain Name. Configure the following fields: • Account Name. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual 3. Valid account name for a period of time, click Idle ... type is PPPoE or PPTP, your ISP has assigned one. In most cases, you clicked Yes, enter the ISP-provided Login and Password information. 4. If you may leave this field blank. • Idle Timeout. Select Keep Connected, to the Internet v1.0, March 2009...
If you use from the three listed options. (By default, "Other (PPPoE)" is idle for the PPPoE connection • Domain Name. Configure the following fields: • Account Name. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual 3. Valid account name for a period of time, click Idle ... type is PPPoE or PPTP, your ISP has assigned one. In most cases, you clicked Yes, enter the ISP-provided Login and Password information. 4. If you may leave this field blank. • Idle Timeout. Select Keep Connected, to the Internet v1.0, March 2009...
FVS336G Reference Manual
Page 112
...default. Check the Connect using radio button and choose Secure Gateway Tunnel from the pull down menu, choose IP Subnet. ProSafe Dual WAN Gigabit Firewall with the IKE policy. To enable XAUTH, choose one of the remote VPN gateways.) • IPsec Host if you must be associated with SSL & IPsec VPN FVS336G...From a client PC running NETGEAR ProSafe VPN Client software, configure the remote VPN client connection. Right-click the VPN client icon in the IKE Policies Table. c. Enter a Pre-Shared Key that will need to specify the user name and password to verify account information: ...
...default. Check the Connect using radio button and choose Secure Gateway Tunnel from the pull down menu, choose IP Subnet. ProSafe Dual WAN Gigabit Firewall with the IKE policy. To enable XAUTH, choose one of the remote VPN gateways.) • IPsec Host if you must be associated with SSL & IPsec VPN FVS336G...From a client PC running NETGEAR ProSafe VPN Client software, configure the remote VPN client connection. Right-click the VPN client icon in the IKE Policies Table. c. Enter a Pre-Shared Key that will need to specify the user name and password to verify account information: ...
FVS336G Reference Manual
Page 139
...the VPN firewall must be authenticated before being allowed to the user requires three items: a User Name, a Password, and a Domain selection. When you create a group, you should create any needed if you must specify a group. Note: IPsec VPN users will always belong to the default domain (...geardomain) and are only needed domains first, then groups, then user accounts. Creating a Domain The domain determines the authentication method to be used and, for all users who will connect to the VPN firewall. Accounts for associated users....
...the VPN firewall must be authenticated before being allowed to the user requires three items: a User Name, a Password, and a Domain selection. When you create a group, you should create any needed if you must specify a group. Note: IPsec VPN users will always belong to the default domain (...geardomain) and are only needed domains first, then groups, then user accounts. Creating a Domain The domain determines the authentication method to be used and, for all users who will connect to the VPN firewall. Accounts for associated users....
FVS336G Reference Manual
Page 143
..., and Certificates 7-5 v1.0, March 2009 The Login Policies screen displays:. The password can log in from certain IP addresses or using particular browsers. To prohibit ...WAN interface, select the Deny Login from the LAN interface. Figure 7-6 2. Setting User Login Policies You can also require or prohibit logging in only from WAN Interface checkbox. To prohibit this is checked by default for admin and guest. 4. You can restrict the ability of Users. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual d. Password/Confirm Password...
..., and Certificates 7-5 v1.0, March 2009 The Login Policies screen displays:. The password can log in from certain IP addresses or using particular browsers. To prohibit ...WAN interface, select the Deny Login from the LAN interface. Figure 7-6 2. Setting User Login Policies You can also require or prohibit logging in only from WAN Interface checkbox. To prohibit this is checked by default for admin and guest. 4. You can restrict the ability of Users. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual d. Password/Confirm Password...
FVS336G Reference Manual
Page 145
... 7-8 2. Repeat these steps to add additional browsers, then click Apply to the Defined Browsers table. 4. The default passwords for the firewall's Web Configuration Manager is read-only. From the Add Defined Browser selection, select a browser from the Client Browser pulldown menu and ... logging in based on the user's browser: 1. To modify User or Admin settings: Managing Users, Authentication, and Certificates 7-7 v1.0, March 2009 ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual To restrict logging in from browsers that you will specify. 3.
... 7-8 2. Repeat these steps to add additional browsers, then click Apply to the Defined Browsers table. 4. The default passwords for the firewall's Web Configuration Manager is read-only. From the Add Defined Browser selection, select a browser from the Client Browser pulldown menu and ... logging in based on the user's browser: 1. To modify User or Admin settings: Managing Users, Authentication, and Certificates 7-7 v1.0, March 2009 ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual To restrict logging in from browsers that you will specify. 3.
FVS336G Reference Manual
Page 146
...on the Main Menu bar to log back into the router if your previous settings. 5. The default is 5 minutes. Select Users from the main menu and Local Authentication from the submenu. Change the password by checking either the Edit Admin Settings or Edit Guest Settings radio box. 3. Select the ...previous login was disrupted (i.e., you require. Click Apply to save your settings or Cancel to return to edit by first entering the old password, and then entering the new password twice. 4. Figure 7-9 2. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual 1.
...on the Main Menu bar to log back into the router if your previous settings. 5. The default is 5 minutes. Select Users from the main menu and Local Authentication from the submenu. Change the password by checking either the Edit Admin Settings or Edit Guest Settings radio box. 3. Select the ...previous login was disrupted (i.e., you require. Click Apply to save your settings or Cancel to return to edit by first entering the old password, and then entering the new password twice. 4. Figure 7-9 2. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual 1.
FVS336G Reference Manual
Page 147
Managing Users, Authentication, and Certificates 7-9 v1.0, March 2009 Figure 7-10 When a user logs in . RADIUS Server External Authentication For authentication to RADIUS or WIKID, you enter will validate with SSL & IPsec VPN FVS336G Reference Manual Note: The password and time-out value you can define the authentication type. ProSafe Dual WAN Gigabit Firewall with the appropriate RADIUS or WIKID server that the user is authorized to log in , the VPN firewall will be changed back to password and 5 minutes, respectively, after a factory defaults reset.
Managing Users, Authentication, and Certificates 7-9 v1.0, March 2009 Figure 7-10 When a user logs in . RADIUS Server External Authentication For authentication to RADIUS or WIKID, you enter will validate with SSL & IPsec VPN FVS336G Reference Manual Note: The password and time-out value you can define the authentication type. ProSafe Dual WAN Gigabit Firewall with the appropriate RADIUS or WIKID server that the user is authorized to log in , the VPN firewall will be changed back to password and 5 minutes, respectively, after a factory defaults reset.
FVS336G Reference Manual
Page 162
... setting. • You can change the mix of traffic they are allowed to have . Changing Passwords and Administrator Settings The default administrator and guest password for the guest account. Tools for Traffic Management The ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual See Chapter 5, "Virtual Private Networking Using IPsec" for the procedure on how to...
... setting. • You can change the mix of traffic they are allowed to have . Changing Passwords and Administrator Settings The default administrator and guest password for the guest account. Tools for Traffic Management The ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual See Chapter 5, "Virtual Private Networking Using IPsec" for the procedure on how to...
FVS336G Reference Manual
Page 164
... Network Management To configure your previous settings. Enabling Remote Management Access Using the Remote Management page, you are able to log back into the VPN Firewall Router" on how to do this. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual 5. (Optional) To change the default configuration password of the firewall to a very secure...
... Network Management To configure your previous settings. Enabling Remote Management Access Using the Remote Management page, you are able to log back into the VPN Firewall Router" on how to do this. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual 5. (Optional) To change the default configuration password of the firewall to a very secure...
FVS336G Reference Manual
Page 165
...the external IP addresses that will be allowed to use strong passwords. 4. For accessing your browser. To enable remote management by default). 3. To allow access from any IP address on the ...Internet, select IP address range. c. To allow access from a single IP address on restricting administrator access. You will be enabled. b. See "Setting User Login Policies" on page 7-5 for instructions on the Internet, select Only this PC. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G...
...the external IP addresses that will be allowed to use strong passwords. 4. For accessing your browser. To enable remote management by default). 3. To allow access from any IP address on the ...Internet, select IP address range. c. To allow access from a single IP address on restricting administrator access. You will be enabled. b. See "Setting User Login Policies" on page 7-5 for instructions on the Internet, select Only this PC. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G...
FVS336G Reference Manual
Page 234
... addresses 5-2 v1.0, March 2009 DoS about 2-16 configuration of 2-17 providers of 2-16 Dead Peer Detection 5-29 default configuration restoring 10-7 default password 2-2 denial of service attack 4-17, 4-18 Denial of Service. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual CLI management by Telnet 8-11 command line interface 8-12, 8-13 configuration automatic by DHCP 1-4 connecting...
... addresses 5-2 v1.0, March 2009 DoS about 2-16 configuration of 2-17 providers of 2-16 Dead Peer Detection 5-29 default configuration restoring 10-7 default password 2-2 denial of service attack 4-17, 4-18 Denial of Service. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual CLI management by Telnet 8-11 command line interface 8-12, 8-13 configuration automatic by DHCP 1-4 connecting...
FVS336G Reference Manual
Page 23
... WAN port. Figure 1-2 Viewed from left to factory default settings. The WAN port has no link. The WAN port has no link. All configuration settings will be lost and the default password will be restored. 2. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN includes Gigabit Ethernet LAN and WAN.... The LAN port is being transmitted or received by the WAN port. Data is operating at 1,000 Mbps. Rear Panel Features The rear panel of the ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual Table 1-1. Introduction 1-7 v1.2, June 2008 LAN ...
... WAN port. Figure 1-2 Viewed from left to factory default settings. The WAN port has no link. The WAN port has no link. All configuration settings will be lost and the default password will be restored. 2. ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN includes Gigabit Ethernet LAN and WAN.... The LAN port is being transmitted or received by the WAN port. Data is operating at 1,000 Mbps. Rear Panel Features The rear panel of the ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual Table 1-1. Introduction 1-7 v1.2, June 2008 LAN ...
FVS336G Reference Manual
Page 238
...DNS. See DoS. DoS about protection 1-3 Dual 1-2 Dual WAN configuration of 4-13 DNS 6-2 ISP server addresses 2-11 lookup for 8-19 DDNS about 2-17 configuration of 2-18 providers of 2-17 Dead Peer Detection 5-30 default configuration restoring 10-7 default password 2-2 denial of service attack 4-19, ...IKE Policy 5-14 Disable DHCP Server 3-1 Disable DNS Proxy 4-20 DMZ WAN Rule example of 2-11 Dual WAN Port systems VPN Tunnel addresses 5-1 v1.2, June 2008 ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual by Telnet 8-11 command line interface 8-12, 8-13 ...
...DNS. See DoS. DoS about protection 1-3 Dual 1-2 Dual WAN configuration of 4-13 DNS 6-2 ISP server addresses 2-11 lookup for 8-19 DDNS about 2-17 configuration of 2-18 providers of 2-17 Dead Peer Detection 5-30 default configuration restoring 10-7 default password 2-2 denial of service attack 4-19, ...IKE Policy 5-14 Disable DHCP Server 3-1 Disable DNS Proxy 4-20 DMZ WAN Rule example of 2-11 Dual WAN Port systems VPN Tunnel addresses 5-1 v1.2, June 2008 ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual by Telnet 8-11 command line interface 8-12, 8-13 ...