Page 141 / 203 Scroll up to view Page 136 - 140
Chapter 8:
VPN Firewall and Network Management
|
141
ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336Gv2 Reference Manual
Tip:
If you are using a dynamic DNS service such as TZO, you can identify
the WAN IP address of your VPN firewall by running
tracert
from the
Windows Run menu option. Trace the route to your registered FQDN.
For example, enter
tracert FVS336Gv2.mynetgear.net
,
and the
WAN IP address that your ISP assigned to the VPN firewall is displayed.
Using the Command Line Interface
You can access the command line interface (CLI) using Telnet from the LAN or, if enabled on
the Remote Management screen, from the WAN.
To access the CLI from a communications terminal when the VPN firewall is still set to its
factory defaults (or use your own settings if you have changed them), do the following:
1.
From your computer’s command line prompt, enter the following command:
2.
Enter
admin
and
password
when prompted for the login and password information (or
enter
guest
and
password
to log in as a read-only guest).
3.
Enter
exit
to end the CLI session.
Any configuration changes made via the CLI are not preserved after a reboot or power cycle
unless the user issues the CLI
save
command after making the changes.
Using an SNMP Manager
Simple Network Management Protocol (SNMP) lets you monitor and manage your VPN
firewall from an SNMP Manager. It provides a remote means to monitor and control network
devices, and to manage configurations, statistics collection, performance, and security.
The SNMP Configuration table lists the SNMP configurations by:
IP Address
. The IP address of the SNMP manager.
Port
. The trap port of the configuration.
Community
. The trap community string of the configuration.
Page 142 / 203
142
|
Chapter 8:
VPN Firewall and Network Management
ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336Gv2 Reference Manual
To create a new SNMP configuration entry:
1.
Select Administration > SNMP from the menu. The SNMP screen is displayed.
2.
Configure the following fields in the
Create New SNMP Configuration Entry
section:
a.
Enter the IP address of the SNMP manager in the
IP Address
field and the subnet
mask in the
Subnet Mask
field.
-
To allow only the host address to access the VPN firewall and receive traps, enter an
IP Address of, for example, 192.168.1.101 with a subnet mask of 255.255.255.255.
-
To allow a subnet access to the VPN firewall through SNMP, enter an IP address of,
for example, 192.168.1.101 with a subnet mask of 255.255.255.0. The traps will still
be received on 192.168.1.101, but the entire subnet will have access through the
community string.
-
To make the VPN firewall globally accessible using the community string, but still
receive traps on the host, enter 0.0.0.0 as the subnet mask and an IP address for
where the traps will be received.
b.
Enter the trap port number of the configuration in the
Port
field. The default is 162.
c.
Enter the trap community string of the configuration in the
Community
field.
3.
Click
Add
to create the new configuration. The entry is displayed in the
SNMP
Configuration
table.
To modify an SNMP configuration, click
Edit
in the Action column adjacent to the entry that
you wish to modify.
Page 143 / 203
Chapter 8:
VPN Firewall and Network Management
|
143
ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336Gv2 Reference Manual
To modify the SNMP identification information:
1.
The
SNMP System Info
option arrow at the top of the tab opens the
SNMP
SysConfiguration
screen that displays the SNMP system contact information available
to the SNMP manager.
2.
Modify any of the information that you want the SNMP Manager to use. You can edit the
system contact, system location, and system name.
3.
Click
Apply
to save your settings.
Managing the Configuration File
The configuration settings of the VPN firewall are stored within the firewall in a configuration
file. This file can be saved (backed up) to a user’s PC, retrieved (restored) from the user’s
PC, or cleared to factory default settings.
Once you have installed the VPN firewall and have it working properly, you should back up a
copy of your settings to a file on your computer. If necessary, you can later restore the VPN
firewall settings from this file. The Settings Backup and Firmware Upgrade screen allows you
to:
Back up and save a copy of your current settings
Restore saved settings from the backed-up file.
Revert to the factory default settings.
Upgrade the VPN firewall firmware from a saved file on your hard disk to use a different
firmware version.
Page 144 / 203
144
|
Chapter 8:
VPN Firewall and Network Management
ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336Gv2 Reference Manual
To back up settings:
1.
Select Administration > Settings Backup and Firmware Upgrade
from the menu. The
Settings Backup and Firmware Upgrade screen is displayed.
2.
Click
Backup
to save a copy of your current settings.
If your browser is not set up to save downloaded files automatically, locate where you
want to save the file, specify file name, and click
Save
.
If you have your browser set up to save downloaded files automatically, the file will be
saved to your browser’s download location on the hard disk.
WARNING!
Once you start restoring settings or erasing the VPN firewall, do
NOT interrupt the process. Do not try to go online, turn off the VPN
firewall, shut down the computer or do anything else to the VPN
firewall until it finishes restarting!
To restore settings from a backup file:
1.
Next to
Restore save settings from file
, click
Browse
.
2.
Locate and select the previously saved backup file (by default, netgear.cfg).
3.
When you have located the file, click
restore
.
An Alert page will appear indicating the status of the restore operation. You must
manually restart the VPN firewall for the restored settings to take effect.
Page 145 / 203
Chapter 8:
VPN Firewall and Network Management
|
145
ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336Gv2 Reference Manual
Reverting to Factory Default Settings
To reset the VPN firewall to the original factory default settings:
1.
Click
default
.
2.
Manually restart the VPN firewall in order for the default settings to take effect. After
rebooting, the VPN firewall’s password will be
password
and the LAN IP address will be
192.168.1.1.
The VPN firewall will act as a DHCP server on the LAN and act as a DHCP
client to the Internet.
WARNING!
When you click default, your VPN firewall settings will be erased.
All firewall rules, VPN policies, LAN/WAN settings and other
settings will be lost. Backup your settings if you intend on using
them!
Upgrading the Firmware
You can install a different version of the VPN firewall firmware from the Settings Backup and
Firmware Upgrade screen. To view the current version of the firmware that your VPN firewall
is running, choose
Monitoring
from the main menu.
In the displayed Router Status screen, the System Info section shows the firmware version.
When you upgrade your firmware, this section of the screen will change to reflect the new
version.
To download a firmware version:
1.
Go to the NETGEAR website at
and click
Downloads
.
2.
From the
Product Selection
drop-down list, choose the FVS336Gv2.
3.
Click on the desired firmware version to reach the download page. Be sure to read the
release notes on the download page before upgrading the VPN firewall’s software.
To upgrade the firmware:
1.
Select Administration > Settings Backup and Firmware Upgrade from the menu.
2.
Click
Browse
in the Router Upgrade section.
3.
Locate the downloaded file and click
upload.
This will start the software upgrade to your
VPN firewall. The software upgrade process might take some time. At the conclusion of
the upgrade, your VPN firewall will reboot.

Rate

4 / 5 based on 1 vote.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top