FVS338 Reference Manual
Page 16
... WAN ports, including: • Internet access via either the serial or broadband port. • Auto rollover connectivity (fail-over) through an analog modem connected to access objectionable Internet sites. 1-2 Introduction v1.0, March 2009 FVS338 ProSafe VPN Firewall 50 Reference Manual • Built in 8-port 10/100 Mbps switch. • Extensive Protocol Support. • Login capability. • SNMP for manageability. • Front panel LEDs for easy monitoring of routing options on the firewall. A Powerful, True Firewall with Content Filtering Unlike simple Internet sharing NAT...
... WAN ports, including: • Internet access via either the serial or broadband port. • Auto rollover connectivity (fail-over) through an analog modem connected to access objectionable Internet sites. 1-2 Introduction v1.0, March 2009 FVS338 ProSafe VPN Firewall 50 Reference Manual • Built in 8-port 10/100 Mbps switch. • Extensive Protocol Support. • Login capability. • SNMP for manageability. • Front panel LEDs for easy monitoring of routing options on the firewall. A Powerful, True Firewall with Content Filtering Unlike simple Internet sharing NAT...
FVS338 Reference Manual
Page 18
...March 2009 FVS338 ProSafe VPN Firewall 50 Reference Manual • Automatic Configuration of Attached PCs by simulating a dial-up connection. The VPN firewall dynamically assigns network configuration information, including IP, gateway, and domain name server (DNS) addresses, to the network. The VPN firewall automatically senses the type of Internet connection, asking you can limit remote management access to the attached PCs. The VPN firewall supports the Simple Network Management Protocol (SNMP) to the Internet over Ethernet (PPPoE). When DHCP is enabled and no DNS addresses are...
...March 2009 FVS338 ProSafe VPN Firewall 50 Reference Manual • Automatic Configuration of Attached PCs by simulating a dial-up connection. The VPN firewall dynamically assigns network configuration information, including IP, gateway, and domain name server (DNS) addresses, to the network. The VPN firewall automatically senses the type of Internet connection, asking you can limit remote management access to the attached PCs. The VPN firewall supports the Simple Network Management Protocol (SNMP) to the Internet over Ethernet (PPPoE). When DHCP is enabled and no DNS addresses are...
FVS338 Reference Manual
Page 30
... time of your serial port Internet connection will be done unless required by your phone line supports touch tone dialing; Check the radio box for pulse mode dialing. Some ISPs may also change the default MTU Size and Port Speed for dial strings). This is either : a. FVS338 ProSafe VPN Firewall 50 Reference Manual c. Set up Type: Check the Tone radio box if your ISP. 2-6 Connecting the FVS338 to configure additional options such as the computer's MAC (Media Access Control) address. The standard MTU...
... time of your serial port Internet connection will be done unless required by your phone line supports touch tone dialing; Check the radio box for pulse mode dialing. Some ISPs may also change the default MTU Size and Port Speed for dial strings). This is either : a. FVS338 ProSafe VPN Firewall 50 Reference Manual c. Set up Type: Check the Tone radio box if your ISP. 2-6 Connecting the FVS338 to configure additional options such as the computer's MAC (Media Access Control) address. The standard MTU...
FVS338 Reference Manual
Page 34
... the NETGEAR Web site. To logout after the connection is PPPoE. IP Address: Static IP address assigned to the Internet v1.0, March 2009 The ISP will result in the timeout field. 3. FVS338 ProSafe VPN Firewall 50 Reference Manual - b. If your ISP has assigned one. Note: Domain name servers (DNS) convert Internet names such as WinPoET or Enternet, then your connection type is idle for the PPPoE connection - Click Apply to save the settings...
... the NETGEAR Web site. To logout after the connection is PPPoE. IP Address: Static IP address assigned to the Internet v1.0, March 2009 The ISP will result in the timeout field. 3. FVS338 ProSafe VPN Firewall 50 Reference Manual - b. If your ISP has assigned one. Note: Domain name servers (DNS) convert Internet names such as WinPoET or Enternet, then your connection type is idle for the PPPoE connection - Click Apply to save the settings...
FVS338 Reference Manual
Page 41
... to save part of the range for both the LAN and DMZ settings. Otherwise, leave it is the LAN address of the firewall. For most applications, the default DHCP and TCP/IP settings of the firewall are available for devices with fixed addresses. See the link to "Preparing a Computer for Network Access" in this menu. Chapter 3 LAN Configuration This chapter describes how to configure LAN Setup, LAN Groups and Routing (Static IP) features of your ProSafe VPN Firewall 50, including...
... to save part of the range for both the LAN and DMZ settings. Otherwise, leave it is the LAN address of the firewall. For most applications, the default DHCP and TCP/IP settings of the firewall are available for devices with fixed addresses. See the link to "Preparing a Computer for Network Access" in this menu. Chapter 3 LAN Configuration This chapter describes how to configure LAN Setup, LAN Groups and Routing (Static IP) features of your ProSafe VPN Firewall 50, including...
FVS338 Reference Manual
Page 115
... addresses. • NETGEAR ProSafe VPN Firewall 50 - WAN IP address: 172.21.4.1 - FVS338 ProSafe VPN Firewall 50 Reference Manual Figure 5-21 Assigning IP Addresses to Remote Users (ModeConfig) To simply the process of the network. LAN IP address/subnet: 192.168.2.1/255.255.255.0 • NETGEAR ProSafe VPN Client software IP address: 192.168.1.2 Virtual Private Networking v1.0, March 2009 5-23 Remote users are given IP addresses available in secured network space so that remote users appear as seamless extensions of connecting remote VPN clients to the FVS338, the ModeConfig module...
... addresses. • NETGEAR ProSafe VPN Firewall 50 - WAN IP address: 172.21.4.1 - FVS338 ProSafe VPN Firewall 50 Reference Manual Figure 5-21 Assigning IP Addresses to Remote Users (ModeConfig) To simply the process of the network. LAN IP address/subnet: 192.168.2.1/255.255.255.0 • NETGEAR ProSafe VPN Client software IP address: 192.168.1.2 Virtual Private Networking v1.0, March 2009 5-23 Remote users are given IP addresses available in secured network space so that remote users appear as seamless extensions of connecting remote VPN clients to the FVS338, the ModeConfig module...
FVS338 Reference Manual
Page 135
... and settings, configure an SNMP manager, backup settings and upgrade firmware, and enable remote management. Administration You can also configure a separate password for Traffic Management The ProSafe VPN Firewall 50 includes several tools that you will not change the mix of traffic through the WAN ports by granting some services a higher priority than others. You can change this feature. See "Viewing Router Configuration and System Status" on how to use this password to have. FVS338 ProSafe VPN Firewall 50 Reference Manual You will change the WAN bandwidth used to...
... and settings, configure an SNMP manager, backup settings and upgrade firmware, and enable remote management. Administration You can also configure a separate password for Traffic Management The ProSafe VPN Firewall 50 includes several tools that you will not change the mix of traffic through the WAN ports by granting some services a higher priority than others. You can change this feature. See "Viewing Router Configuration and System Status" on how to use this password to have. FVS338 ProSafe VPN Firewall 50 Reference Manual You will change the WAN bandwidth used to...
FVS338 Reference Manual
Page 143
.... 2. FVS338 ProSafe VPN Firewall 50 Reference Manual Settings Backup and Firmware Upgrade Once you have installed the VPN firewall and have it working properly, you should back up a copy of your setting so that it finishes restarting! If your browser isn't set up to save the file, specify file name, and click Save. You must manually restart the VPN firewall for the restored settings to save downloaded files automatically, the file will be saved to the router until...
.... 2. FVS338 ProSafe VPN Firewall 50 Reference Manual Settings Backup and Firmware Upgrade Once you have installed the VPN firewall and have it working properly, you should back up a copy of your setting so that it finishes restarting! If your browser isn't set up to save the file, specify file name, and click Save. You must manually restart the VPN firewall for the restored settings to save downloaded files automatically, the file will be saved to the router until...
FVS338 Reference Manual
Page 156
... Server on the Windows menu bar to return to a specified IP address-most often, by Technical Support. 6-28 v1.0, March 2009 Router and Network Management Lists all Routers between the source (this device) and the destination IP address. The Trace Route results will display the internal routing table. Used to send a ping packet request to the Diagnostics screen. FVS338 ProSafe VPN Firewall 50 Reference Manual Figure 6-16 Table 6-5. Traceroute (often called Trace Route) - Display the Routing Table...
... Server on the Windows menu bar to return to a specified IP address-most often, by Technical Support. 6-28 v1.0, March 2009 Router and Network Management Lists all Routers between the source (this device) and the destination IP address. The Trace Route results will display the internal routing table. Used to send a ping packet request to the Diagnostics screen. FVS338 ProSafe VPN Firewall 50 Reference Manual Figure 6-16 Table 6-5. Traceroute (often called Trace Route) - Display the Routing Table...
FVS338 Reference Manual
Page 162
... ISP may check for the WAN Port If 0.0.0.0 is able to obtain a WAN IP address from the ISP. You can determine whether the request was successful using the Web Configuration Manager. or 7-4 Troubleshooting v1.0, March 2009 FVS338 ProSafe VPN Firewall 50 Reference Manual Troubleshooting the ISP Connection If your firewall is unable to access the Internet, you should first determine whether the firewall is shown, your firewall has not obtained an IP address from your...
... ISP may check for the WAN Port If 0.0.0.0 is able to obtain a WAN IP address from the ISP. You can determine whether the request was successful using the Web Configuration Manager. or 7-4 Troubleshooting v1.0, March 2009 FVS338 ProSafe VPN Firewall 50 Reference Manual Troubleshooting the ISP Connection If your firewall is unable to access the Internet, you should first determine whether the firewall is shown, your firewall has not obtained an IP address from your...
FVS338 Reference Manual
Page 167
... to reset all settings to their factory defaults. FVS338 Default Settings Feature Router Login User Login URL User Name (case sensitive) Login Password (case sensitive) Internet Connection WAN MAC Address WAN MTU Size Port Speed Local Network (LAN) Lan IP Subnet Mask RIP Direction RIP Version RIP Authentication DHCP Server DHCP Starting IP Address DHCP Ending IP Address Default Behavior http://192.168.1.1 admin password Use Default address 1500 AutoSense 192.168.1.1 255.255.255.0 None Disabled Disabled Enabled 192.168.1.2 192.168.1.100 Default Settings and Technical Specifications...
... to reset all settings to their factory defaults. FVS338 Default Settings Feature Router Login User Login URL User Name (case sensitive) Login Password (case sensitive) Internet Connection WAN MAC Address WAN MTU Size Port Speed Local Network (LAN) Lan IP Subnet Mask RIP Direction RIP Version RIP Authentication DHCP Server DHCP Starting IP Address DHCP Ending IP Address Default Behavior http://192.168.1.1 admin password Use Default address 1500 AutoSense 192.168.1.1 255.255.255.0 None Disabled Disabled Enabled 192.168.1.2 192.168.1.100 Default Settings and Technical Specifications...
FVS338 Reference Manual
Page 196
...20 Logs screen 4-33 M MAC address 7-6 spoofing 7-5 Manual VPN Policies creating 5-16 Mode Config screen 5-24 ModeConfig about 5-23, 5-24 configuration example 5-23 guidelines 5-24 VPN Client configuration, example 5-28 modem 1-2 monitoring devices by DHCP Client Requests 3-8 by Scanning the Network 3-8 multicasting guidelines 3-14 N NAS Identifier use with RADIUS 5-22 NAT 4-1, 4-4 NetBIOS 3-7 Network 4-1 Network Access Server 5-22 Network Address Translation 1-3 Network Address Translation. FVS338 ProSafe VPN Firewall 50 Reference Manual L L2TP VPN Tunnel 4-11 LAN configuration 3-1 ports and...
...20 Logs screen 4-33 M MAC address 7-6 spoofing 7-5 Manual VPN Policies creating 5-16 Mode Config screen 5-24 ModeConfig about 5-23, 5-24 configuration example 5-23 guidelines 5-24 VPN Client configuration, example 5-28 modem 1-2 monitoring devices by DHCP Client Requests 3-8 by Scanning the Network 3-8 multicasting guidelines 3-14 N NAS Identifier use with RADIUS 5-22 NAT 4-1, 4-4 NetBIOS 3-7 Network 4-1 Network Access Server 5-22 Network Address Translation 1-3 Network Address Translation. FVS338 ProSafe VPN Firewall 50 Reference Manual L L2TP VPN Tunnel 4-11 LAN configuration 3-1 ports and...
FVS338 Reference Manual
Page 17
... Mbps port for an Ethernet connection to 400 internal LAN users (and 50K connections). • Easy, web-based setup for installation and management. • URL keyword Content Filtering and Site Blocking Security. • Quality of Service (QoS) support for traffic prioritization. • Built in 8-port 10/100 Mbps switch. • Extensive Protocol Support. • Login capability. • SNMP for manageability. • Front panel LEDs for easy monitoring of Service (DoS) attack protection and multi-NAT support.The VPN firewall supports multiple Web content filtering options...
... Mbps port for an Ethernet connection to 400 internal LAN users (and 50K connections). • Easy, web-based setup for installation and management. • URL keyword Content Filtering and Site Blocking Security. • Quality of Service (QoS) support for traffic prioritization. • Built in 8-port 10/100 Mbps switch. • Extensive Protocol Support. • Login capability. • SNMP for manageability. • Front panel LEDs for easy monitoring of Service (DoS) attack protection and multi-NAT support.The VPN firewall supports multiple Web content filtering options...
FVS338 Reference Manual
Page 19
FVS338 ProSafe VPN Firewall 50 Reference Manual • Port Forwarding with Auto Uplink With its own address as a DNS server to worry about crossover cables, as NAT, allows the use of an inexpensive single-user ISP account. • Automatic Configuration of full-duplex or half-duplex operation. Although NAT prevents Internet locations from directly accessing the PCs on the LAN, the firewall allows you to direct incoming traffic to specific PCs based on the service port number of your...
FVS338 ProSafe VPN Firewall 50 Reference Manual • Port Forwarding with Auto Uplink With its own address as a DNS server to worry about crossover cables, as NAT, allows the use of an inexpensive single-user ISP account. • Automatic Configuration of full-duplex or half-duplex operation. Although NAT prevents Internet locations from directly accessing the PCs on the LAN, the firewall allows you to direct incoming traffic to specific PCs based on the service port number of your...
FVS338 Reference Manual
Page 20
... A user-friendly Setup Wizard is provided and online help you can install, configure, and operate the ProSafe VPN Firewall 50 within minutes after connecting it to the recommendations of addresses, and you maximize your type of the VPN firewall: • Flash memory for your use of ISP account. • VPN Wizard. FVS338 ProSafe VPN Firewall 50 Reference Manual Easy Installation and Management You can choose a nonstandard port number. • Visual monitoring. The VPN firewall automatically senses the type of Internet connection, asking...
... A user-friendly Setup Wizard is provided and online help you can install, configure, and operate the ProSafe VPN Firewall 50 within minutes after connecting it to the recommendations of addresses, and you maximize your type of the VPN firewall: • Flash memory for your use of ISP account. • VPN Wizard. FVS338 ProSafe VPN Firewall 50 Reference Manual Easy Installation and Management You can choose a nonstandard port number. • Visual monitoring. The VPN firewall automatically senses the type of Internet connection, asking...
FVS338 Reference Manual
Page 119
...then configured a PC running ProSafe VPN Client software using these IP addresses. • NETGEAR ProSafe VPN Firewall 50 - Remote users are given IP addresses available in secured network space so that remote users appear as seamless extensions of connecting remote VPN clients to the FVS338, the ModeConfig module can be used to assign IP addresses to Remote Users (ModeConfig) To simply the process of the network. FVS338 ProSafe VPN Firewall 50 Reference Manual Figure 5-18 Manually Assigning IP Addresses to remote users, including a network access IP address, subnet mask, and name server...
...then configured a PC running ProSafe VPN Client software using these IP addresses. • NETGEAR ProSafe VPN Firewall 50 - Remote users are given IP addresses available in secured network space so that remote users appear as seamless extensions of connecting remote VPN clients to the FVS338, the ModeConfig module can be used to assign IP addresses to Remote Users (ModeConfig) To simply the process of the network. FVS338 ProSafe VPN Firewall 50 Reference Manual Figure 5-18 Manually Assigning IP Addresses to remote users, including a network access IP address, subnet mask, and name server...
FVS338 Reference Manual
Page 134
... you define your LAN. - Outbound Services lists all outgoing traffic. Single address: The rule will cause serious problems. Each rule lets you specify the desired action for the connections covered by the rule: • BLOCK always • BLOCK by schedule, otherwise Allow • ALLOW always • ALLOW by this rule. FVS338 ProSafe VPN Firewall 50 Reference Manual Service Blocking You can control specific outbound traffic (for example., from LAN to the address of a particular...
... you define your LAN. - Outbound Services lists all outgoing traffic. Single address: The rule will cause serious problems. Each rule lets you specify the desired action for the connections covered by the rule: • BLOCK always • BLOCK by schedule, otherwise Allow • ALLOW always • ALLOW by this rule. FVS338 ProSafe VPN Firewall 50 Reference Manual Service Blocking You can control specific outbound traffic (for example., from LAN to the address of a particular...
FVS338 Reference Manual
Page 139
... traffic conditions of the firewall and control who has access to the Internet and the types of traffic they are allowed to have . Netgear recommends that can also configure a separate password for the firewall's Web Configuration Manager is impacted by not changing its QoS setting. • You can accept the default priority defined by the service itself by its default setting to give the service higher or lower priority than its QoS setting, however. FVS338 ProSafe VPN Firewall 50 Reference Manual Using QoS...
... traffic conditions of the firewall and control who has access to the Internet and the types of traffic they are allowed to have . Netgear recommends that can also configure a separate password for the firewall's Web Configuration Manager is impacted by not changing its QoS setting. • You can accept the default priority defined by the service itself by its default setting to give the service higher or lower priority than its QoS setting, however. FVS338 ProSafe VPN Firewall 50 Reference Manual Using QoS...
FVS338 Reference Manual
Page 146
When you have located the file, click restore. THe Settings Backup and Firmware Upgrade screen will appear indicating the status of the restore operation. You must manually restart the VPN firewall for the restored settings to the original factory default settings, click default 6-14 v1.0, March 2008 Router and Network Management FVS338 ProSafe VPN Firewall 50 Reference Manual Settings Backup and Firmware Upgrade Once you have installed the VPN firewall and have your browser set up to save downloaded files automatically, locate where you want to save a copy...
When you have located the file, click restore. THe Settings Backup and Firmware Upgrade screen will appear indicating the status of the restore operation. You must manually restart the VPN firewall for the restored settings to the original factory default settings, click default 6-14 v1.0, March 2008 Router and Network Management FVS338 ProSafe VPN Firewall 50 Reference Manual Settings Backup and Firmware Upgrade Once you have installed the VPN firewall and have your browser set up to save downloaded files automatically, locate where you want to save a copy...
FVS338 Reference Manual
Page 169
...A Default Settings and Technical Specifications You can use the reset button located on the front of time will simply cause your device to reset all settings to their factory defaults. Table A-1. FVS338 Default Settings Feature Router Login User Login URL User Name (case sensitive) Login Password (case sensitive) Internet Connection WAN MAC Address WAN MTU Size Port Speed Local Network (LAN) Lan IP Subnet Mask RIP Direction RIP Version RIP Authentication DHCP Server DHCP Starting IP Address DHCP Ending IP Address DMZ Default Behavior http://192.168.1.1 admin password Use Default address...
...A Default Settings and Technical Specifications You can use the reset button located on the front of time will simply cause your device to reset all settings to their factory defaults. Table A-1. FVS338 Default Settings Feature Router Login User Login URL User Name (case sensitive) Login Password (case sensitive) Internet Connection WAN MAC Address WAN MTU Size Port Speed Local Network (LAN) Lan IP Subnet Mask RIP Direction RIP Version RIP Authentication DHCP Server DHCP Starting IP Address DHCP Ending IP Address DMZ Default Behavior http://192.168.1.1 admin password Use Default address...