FVS338 Reference Manual
Page 8
... Traffic Meter 2-11 Configuring the WAN Mode 2-13 Configuring Dynamic DNS (If Needed 2-14 Chapter 3 LAN Configuration Choosing the Firewall DHCP Options 3-1 Configuring the LAN Setup Options 3-2 Configuring Multi-Home LAN IPs 3-5 Managing Groups and Hosts 3-6 Creating the Network Database 3-7 Setting Up Address Reservation 3-10 Configuring Static Routes 3-10 Static Route Example 3-11...
... Traffic Meter 2-11 Configuring the WAN Mode 2-13 Configuring Dynamic DNS (If Needed 2-14 Chapter 3 LAN Configuration Choosing the Firewall DHCP Options 3-1 Configuring the LAN Setup Options 3-2 Configuring Multi-Home LAN IPs 3-5 Managing Groups and Hosts 3-6 Creating the Network Database 3-7 Setting Up Address Reservation 3-10 Configuring Static Routes 3-10 Static Route Example 3-11...
FVS338 Reference Manual
Page 41
... Configuration 3-1 v1.0, March 2009 Chapter 3 LAN Configuration This chapter describes how to configure LAN Setup, LAN Groups and Routing (Static IP) features of your ProSafe VPN Firewall 50, including the following parameters to any LAN device that requests DHCP: • An IP Address from a pool of addresses specified in Appendix C, "Related Documents" for an explanation of DHCP...
... Configuration 3-1 v1.0, March 2009 Chapter 3 LAN Configuration This chapter describes how to configure LAN Setup, LAN Groups and Routing (Static IP) features of your ProSafe VPN Firewall 50, including the following parameters to any LAN device that requests DHCP: • An IP Address from a pool of addresses specified in Appendix C, "Related Documents" for an explanation of DHCP...
FVS338 Reference Manual
Page 46
FVS338 ProSafe VPN Firewall 50 Reference Manual • Subnet Mask: IPv4 Subnet Mask. • Action/Edit: Click to make up the Network Database. Click Add. The router's DHCP server will be configured in the DHCP server. Every computer that are different from the Available Secondary LAN IPs table. Note: Additional IP addresses cannot be added to this router...and Devices table on the secondary subnets must be manually configured with the IP addresses, gateway IP and DNS server IPs. The hosts on the Groups and Hosts screen contains a list of all the entries in the ...
FVS338 ProSafe VPN Firewall 50 Reference Manual • Subnet Mask: IPv4 Subnet Mask. • Action/Edit: Click to make up the Network Database. Click Add. The router's DHCP server will be configured in the DHCP server. Every computer that are different from the Available Secondary LAN IPs table. Note: Additional IP addresses cannot be added to this router...and Devices table on the secondary subnets must be manually configured with the IP addresses, gateway IP and DNS server IPs. The hosts on the Groups and Hosts screen contains a list of all the entries in the ...
FVS338 Reference Manual
Page 47
FVS338 ProSafe VPN Firewall 50 Reference Manual • Scanning the Network. Creating the Network Database The Network Database offers a number of all known PCs and network devices, as well as hosts that PC. • Group and Individual Control over PCs. The Network Database uses the MAC address to... detect active computers or devices which are assigned dynamic IP addresses by this router. The router will never change, you do not support the NetBIOS...
FVS338 ProSafe VPN Firewall 50 Reference Manual • Scanning the Network. Creating the Network Database The Network Database offers a number of all known PCs and network devices, as well as hosts that PC. • Group and Individual Control over PCs. The Network Database uses the MAC address to... detect active computers or devices which are assigned dynamic IP addresses by this router. The router will never change, you do not support the NetBIOS...
FVS338 Reference Manual
Page 49
...; MAC Address: The MAC address of the router, this entry manually when the IP address of the computer changes. • MAC Address: The MAC address of the computer or device. Select the group by the DHCP server. - For DHCP clients of the computer's network interface. To change . FVS338 ProSafe VPN Firewall 50 Reference Manual • Name: The name...
...; MAC Address: The MAC address of the router, this entry manually when the IP address of the computer changes. • MAC Address: The MAC address of the computer or device. Select the group by the DHCP server. - For DHCP clients of the computer's network interface. To change . FVS338 ProSafe VPN Firewall 50 Reference Manual • Name: The name...
FVS338 Reference Manual
Page 50
To reserve an IP address, use the Groups and Hosts screen under the Network Configuration menu, LAN Groups submenu (see "Creating the Network Database" on your firewall. Click Add. This allows routes to be shared in the Route Name field (for identification purpose only). 4. To... that require permanent IP settings. FVS338 ProSafe VPN Firewall 50 Reference Manual Setting Up Address Reservation When you specify a reserved IP address for a device on the LAN (based on the MAC address of the DHCP Server pool. Reserved IP addresses should be shared with other routers when RIP is ...
To reserve an IP address, use the Groups and Hosts screen under the Network Configuration menu, LAN Groups submenu (see "Creating the Network Database" on your firewall. Click Add. This allows routes to be shared in the Route Name field (for identification purpose only). 4. To... that require permanent IP settings. FVS338 ProSafe VPN Firewall 50 Reference Manual Setting Up Address Reservation When you specify a reserved IP address for a device on the LAN (based on the MAC address of the DHCP Server pool. Reserved IP addresses should be shared with other routers when RIP is ...
FVS338 Reference Manual
Page 57
... on page 4-20). Select the desired options: • Any - Select the Group you must enter the start and finish fields. All Internet IP address are only useful if the traffic is selected as Action. • Use schedule...Groups - ALLOW rules are covered by a BLOCK rule. Select the desired time schedule (i.e., Schedule1, Schedule2, or Schedule3) that particular PC. • Address range - These settings determine which computers on page 4-17). You can use the Network Database screen to assign PCs to Block or Allow Specific Traffic" on their IP address. FVS338 ProSafe VPN Firewall 50...
... on page 4-20). Select the desired options: • Any - Select the Group you must enter the start and finish fields. All Internet IP address are only useful if the traffic is selected as Action. • Use schedule...Groups - ALLOW rules are covered by a BLOCK rule. Select the desired time schedule (i.e., Schedule1, Schedule2, or Schedule3) that particular PC. • Address range - These settings determine which computers on page 4-17). You can use the Network Database screen to assign PCs to Block or Allow Specific Traffic" on their IP address. FVS338 ProSafe VPN Firewall 50...
FVS338 Reference Manual
Page 58
.... Outbound Rules Fields (continued) Item QoS Priority Log Description This setting determines the priority of a service, which in the LAN Groups menu (under Network Configuration) so that would otherwise be applied to allow certain types of the PC. Whether or not DHCP is...users can make a selection (i.e, leaves it as port forwarding. FVS338 ProSafe VPN Firewall 50 Reference Manual Table 4-1. Inbound Rules (Port Forwarding). However, by defining an inbound rule you can always find your ISP (DHCP enabled), the IP address may change when the PC is enabled and how the...
.... Outbound Rules Fields (continued) Item QoS Priority Log Description This setting determines the priority of a service, which in the LAN Groups menu (under Network Configuration) so that would otherwise be applied to allow certain types of the PC. Whether or not DHCP is...users can make a selection (i.e, leaves it as port forwarding. FVS338 ProSafe VPN Firewall 50 Reference Manual Table 4-1. Inbound Rules (Port Forwarding). However, by defining an inbound rule you can always find your ISP (DHCP enabled), the IP address may change when the PC is enabled and how the...
FVS338 Reference Manual
Page 116
... Server on your local network, enter its IP address. 6. Click Add. FVS338 ProSafe VPN Firewall 50 Reference Manual ModeConfig Operation After IKE Phase 1 is your router's LAN subnet, such as 192.168.2.1/255.255.255.0. (If not specified, it will default to remote VPN clients. Setting Up ModeConfig Two menus must... Enter a descriptive Record Name such as "Remote Users". 4. Note: The IP Pool should not be configured-the ModeConfig menu and the IKE Policies menu. If you enable Perfect Forward Secrecy (PFS), select DH Group 1 or 2. Enter one range of the device.) 5-24 v1.0, March ...
... Server on your local network, enter its IP address. 6. Click Add. FVS338 ProSafe VPN Firewall 50 Reference Manual ModeConfig Operation After IKE Phase 1 is your router's LAN subnet, such as 192.168.2.1/255.255.255.0. (If not specified, it will default to remote VPN clients. Setting Up ModeConfig Two menus must... Enter a descriptive Record Name such as "Remote Users". 4. Note: The IP Pool should not be configured-the ModeConfig menu and the IKE Policies menu. If you enable Perfect Forward Secrecy (PFS), select DH Group 1 or 2. Enter one range of the device.) 5-24 v1.0, March ...
FVS338 Reference Manual
Page 121
FVS338 ProSafe VPN Firewall 50 Reference Manual b. e. On the left -side of the menu and select Proposal 1. Enter the Authentication values to Options/ Global Policy Settings, and check the box for example "remote_id.com". c. The Internal Network IP Address should be 0.0.0.0. Virtual Private Networking v1.0, March 2009 5-29 d. a.... Group 2 from the Name pull-down menu, select Domain Name and create an identifier based on the left -side of the IKE policy you created; Note: If no box is displayed for Internal Network IP Address, go to match those in the VPN firewall...
FVS338 ProSafe VPN Firewall 50 Reference Manual b. e. On the left -side of the menu and select Proposal 1. Enter the Authentication values to Options/ Global Policy Settings, and check the box for example "remote_id.com". c. The Internal Network IP Address should be 0.0.0.0. Virtual Private Networking v1.0, March 2009 5-29 d. a.... Group 2 from the Name pull-down menu, select Domain Name and create an identifier based on the left -side of the IKE policy you created; Note: If no box is displayed for Internal Network IP Address, go to match those in the VPN firewall...
FVS338 Reference Manual
Page 130
...3-6). • WAN Users - The Rules menu contains a list of addresses. - Groups: The rule is to be applied on the Schedule 1, Schedule 2, or Schedule ...FVS338 ProSafe VPN Firewall 50 Reference Manual Each rule lets you specify the desired action for the connections covered by the rule: • BLOCK always • BLOCK by schedule, otherwise Allow • ALLOW always • ALLOW by schedule, otherwise Block As you define your firewall rules, you can further refine their IP...affected by this feature. 6-2 Router and Network Management v1.0, March 2009 These settings determine which computers...
...3-6). • WAN Users - The Rules menu contains a list of addresses. - Groups: The rule is to be applied on the Schedule 1, Schedule 2, or Schedule ...FVS338 ProSafe VPN Firewall 50 Reference Manual Each rule lets you specify the desired action for the connections covered by the rule: • BLOCK always • BLOCK by schedule, otherwise Allow • ALLOW always • ALLOW by schedule, otherwise Block As you define your firewall rules, you can further refine their IP...affected by this feature. 6-2 Router and Network Management v1.0, March 2009 These settings determine which computers...
FVS338 Reference Manual
Page 194
... 6-27 Packet Trace 6-29 pinging an IP address 6-27 Reboot the Router 6-29 Diagnostics Fields descriptions of 2-14 E Edge Device XAUTH, use with 5-18 Edit Service screen 4-18 E-mail alerts configuring 4-31 scheduling 4-31 Enable DHCP Server 3-3 Enable DHCP server 3-1 Enable DNS Proxy 3-4 Encapsulating Security Payload. FVS338 ProSafe VPN Firewall 50 Reference Manual D date troubleshooting 7-7 Daylight Savings...
... 6-27 Packet Trace 6-29 pinging an IP address 6-27 Reboot the Router 6-29 Diagnostics Fields descriptions of 2-14 E Edge Device XAUTH, use with 5-18 Edit Service screen 4-18 E-mail alerts configuring 4-31 scheduling 4-31 Enable DHCP Server 3-3 Enable DHCP server 3-1 Enable DNS Proxy 3-4 Encapsulating Security Payload. FVS338 ProSafe VPN Firewall 50 Reference Manual D date troubleshooting 7-7 Daylight Savings...
FVS338 Reference Manual
Page 195
FVS338 ProSafe VPN Firewall 50 Reference Manual alerts, emailing of 4-30 connecting 2-1, 2-2 logging in to 2-1 rear panel 1-8 security, about 4-1 status 6-23 technical specifications A-1 firewall access remote management 6-10 Firewall Logs configuring 4-31 emailing of 4-30 Firewall Logs & E-mail screen 4-30, 6-20 firewall protection 4-1 firewall rules about 4-2 ordering 4-6 firmware upgrade 6-15 G Generate Self Certificate Request 5-33 Groups managing 3-7 rules, covered by 6-3 Groups and Hosts...
FVS338 ProSafe VPN Firewall 50 Reference Manual alerts, emailing of 4-30 connecting 2-1, 2-2 logging in to 2-1 rear panel 1-8 security, about 4-1 status 6-23 technical specifications A-1 firewall access remote management 6-10 Firewall Logs configuring 4-31 emailing of 4-30 Firewall Logs & E-mail screen 4-30, 6-20 firewall protection 4-1 firewall rules about 4-2 ordering 4-6 firmware upgrade 6-15 G Generate Self Certificate Request 5-33 Groups managing 3-7 rules, covered by 6-3 Groups and Hosts...
FVS338 Reference Manual
Page 8
... the WAN Mode 2-15 Configuring Dynamic DNS (If Needed 2-16 Chapter 3 LAN Configuration Configuring Your LAN (Local Area Network 3-1 Using the VPN Firewall as a DHCP Server 3-1 Configuring Multi-Home LAN IPs 3-4 Managing Groups and Hosts 3-6 Creating the Network Database 3-6 Setting Up Address Reservation 3-10 Configuring Static Routes 3-10 Static Route Example 3-11 RIP Configuration...
... the WAN Mode 2-15 Configuring Dynamic DNS (If Needed 2-16 Chapter 3 LAN Configuration Configuring Your LAN (Local Area Network 3-1 Using the VPN Firewall as a DHCP Server 3-1 Configuring Multi-Home LAN IPs 3-4 Managing Groups and Hosts 3-6 Creating the Network Database 3-6 Setting Up Address Reservation 3-10 Configuring Static Routes 3-10 Static Route Example 3-11 RIP Configuration...
FVS338 Reference Manual
Page 43
... computers connected to configure LAN Setup, LAN Groups and Routing (Static IP) features of the router interface. IP addresses will be found under the Network Configuration menu of your network. Using the VPN Firewall as a DHCP (Dynamic Host Configuration Protocol) server, allowing it , to ensure there are suitable for your ProSafe VPN Firewall 50. The assigned default gateway address is...
... computers connected to configure LAN Setup, LAN Groups and Routing (Static IP) features of the router interface. IP addresses will be found under the Network Configuration menu of your network. Using the VPN Firewall as a DHCP (Dynamic Host Configuration Protocol) server, allowing it , to ensure there are suitable for your ProSafe VPN Firewall 50. The assigned default gateway address is...
FVS338 Reference Manual
Page 48
....1.1 with subnet 255.255.255.0 Secondary LAN IP: 192.168.20.1 with subnet 255.255.255.0 Managing Groups and Hosts The Known PCs and Devices table on PCs. FVS338 ProSafe VPN Firewall 50 Reference Manual Warning: Make sure the secondary IP addresses are different from PCs and other subnet attached to this router. Instead, you can just select the...
....1.1 with subnet 255.255.255.0 Secondary LAN IP: 192.168.20.1 with subnet 255.255.255.0 Managing Groups and Hosts The Known PCs and Devices table on PCs. FVS338 ProSafe VPN Firewall 50 Reference Manual Warning: Make sure the secondary IP addresses are different from PCs and other subnet attached to this router. Instead, you can just select the...
FVS338 Reference Manual
Page 49
... page 4-2). - FVS338 ProSafe VPN Firewall 50 Reference Manual • MAC-level Control over PCs - You can also create Firewall Rules to apply to identify each PC, users cannot avoid these restrictions by changing their IP address. • A computer is used to that PC. • Group and Individual Control ...- So changing a PC's IP address does not affect any restrictions applied to identify each PC or device. LAN Configuration 3-7 v1.0, March 2008 If necessary, you can assign PCs to Groups and apply restrictions to be covered by this router. The Network Database uses the...
... page 4-2). - FVS338 ProSafe VPN Firewall 50 Reference Manual • MAC-level Control over PCs - You can also create Firewall Rules to apply to identify each PC, users cannot avoid these restrictions by changing their IP address. • A computer is used to that PC. • Group and Individual Control ...- So changing a PC's IP address does not affect any restrictions applied to identify each PC or device. LAN Configuration 3-7 v1.0, March 2008 If necessary, you can assign PCs to Groups and apply restrictions to be covered by this router. The Network Database uses the...
FVS338 Reference Manual
Page 51
FVS338 ProSafe VPN Firewall 50 Reference Manual • Name: The name of the selected entry. To change . Select Fixed (Set on PC) if the IP address is statically assigned on the computer itself. • IP Address: The IP address that do not support the NetBIOS protocol will not change the group assignment, click ...DHCP Client) to direct the router to the name. • IP Address: The current IP address of the PC or device. • IP Address Type: - If the computer was assigned an IP address by the DHCP server, then an asterisk is assigned a static IP address, you must to update...
FVS338 ProSafe VPN Firewall 50 Reference Manual • Name: The name of the selected entry. To change . Select Fixed (Set on PC) if the IP address is statically assigned on the computer itself. • IP Address: The IP address that do not support the NetBIOS protocol will not change the group assignment, click ...DHCP Client) to direct the router to the name. • IP Address: The current IP address of the PC or device. • IP Address Type: - If the computer was assigned an IP address by the DHCP server, then an asterisk is assigned a static IP address, you must to update...
FVS338 Reference Manual
Page 52
... is enabled. To reserve an IP address, use the Groups and Hosts screen under the Network Configuration menu, LAN Groups submenu (see "Creating the Network Database" on page 3-6). Reboot the PC or access its IP configuration and force a DHCP release...routers when RIP is enabled. Select the Active radio box to the table and made inactive, if not needed without deleting the entry and re-adding it accesses the firewall's DHCP server. A route can be outside of the device), that require permanent IP settings. The static route will display. 3. FVS338 ProSafe VPN Firewall 50...
... is enabled. To reserve an IP address, use the Groups and Hosts screen under the Network Configuration menu, LAN Groups submenu (see "Creating the Network Database" on page 3-6). Reboot the PC or access its IP configuration and force a DHCP release...routers when RIP is enabled. Select the Active radio box to the table and made inactive, if not needed without deleting the entry and re-adding it accesses the firewall's DHCP server. A route can be outside of the device), that require permanent IP settings. The static route will display. 3. FVS338 ProSafe VPN Firewall 50...
FVS338 Reference Manual
Page 59
...in the list, you must enter the start fields. • Address range - FVS338 ProSafe VPN Firewall 50 Reference Manual Table 4-1. If this option is already covered by this rule. These settings...(i.e., Schedule1, Schedule2, or Schedule3) that particular PC. • Address range - Select the Group you wish to allow a subset of traffic that is selected as Action. • Use schedule...PCs and devices on page 3-6. Select the desired option: • Any - All Internet IP address are affected by schedule, otherwise Block Note: Any outbound traffic which computers on your LAN...
...in the list, you must enter the start fields. • Address range - FVS338 ProSafe VPN Firewall 50 Reference Manual Table 4-1. If this option is already covered by this rule. These settings...(i.e., Schedule1, Schedule2, or Schedule3) that particular PC. • Address range - Select the Group you wish to allow a subset of traffic that is selected as Action. • Use schedule...PCs and devices on page 3-6. Select the desired option: • Any - All Internet IP address are affected by schedule, otherwise Block Note: Any outbound traffic which computers on your LAN...