Page 351 / 469 Scroll up to view Page 346 - 350
Network and System Management
351
ProSAFE Gigabit Quad WAN SSL VPN Firewall SRX5308
The newly installed firmware is the active firmware. The previously installed firmware has
become the secondary firmware.
8.
Select
Monitoring
. The Router Status screen displays, showing the new firmware
version in the System Info section of the screen.
Note:
In some cases, such as a major upgrade, it might be necessary to
erase the configuration and manually reconfigure your VPN firewall
after upgrading it. See the firmware release notes that NETGEAR
makes available.
Select the Firmware and Reboot the VPN Firewall
After you have upgraded the firmware, the newly installed firmware is the active firmware,
and the previously installed firmware has become the secondary firmware. However, you can
still revert to the secondary firmware.
On the Settings Backup and Firmware Upgrade screen (see
Figure
225
on page
348), the
Firmware Reboot section shows the following information fields for both the active and
secondary (that is, nonactive) firmware:
Type
. Active or secondary firmware.
Version
. The firmware version.
Status
. The status of the firmware (
OK
or
Corrupted
).
To reboot the VPN firewall with a different firmware version:
1.
On the Settings Backup and Firmware Upgrade screen (see
Figure
225
on page
348), in
the Firmware Reboot section, select the Activation radio button to the left of the firmware
type (Active or Secondary) that you want to load onto the VPN firewall.
2.
Click
Reboot
.
The VPN firewall reboots. During the reboot process, the Settings Backup and Firmware
Upgrade screen might remain visible, or a status message with a counter might show the
number of seconds left until the reboot process is complete. The reboot process takes about
160 seconds. (If you can see the unit: The reboot process is complete when the Test LED on
the front panel goes off.)
WARNING:
After you have started the firmware installation process, do
not
interrupt the process. Do not try to go online, turn off the VPN
firewall, or do anything else to the VPN firewall until the settings
have been fully restored.
3.
When the reboot process is complete, log in to the VPN firewall again. (If you can see the
unit: The reboot process is complete when the Test LED on the front panel goes off.)
Page 352 / 469
Network and System Management
352
ProSAFE Gigabit Quad WAN SSL VPN Firewall SRX5308
4.
Select
Monitoring
. The Router Status screen displays, showing the selected firmware
version in the System Info section of the screen.
Configure Date and Time Service
Configure date, time, and NTP server designations on the System Date & Time screen.
Network Time Protocol (NTP) is a protocol that is used to synchronize computer clock times
in a network of computers. Setting the correct system time and time zone ensures that the
date and time recorded in the VPN firewall logs and reports are accurate.
To set time, date, and NTP servers:
1.
Select
Administration > Time Zone
. The Time Zone screen displays:
Figure 226.
The bottom of the screen display the current weekday, date, time, time zone, and year (in
the example in the previous figure: Current Time: Wednesday, June 20, 2012, 16:48:47
(GMT -0800).
2.
Enter the settings as described in the following table:
Table 87.
Time Zone screen settings
Setting
Description
Date/Time
From the drop-down list, select the local time zone in which the VPN firewall
operates. The correct time zone is required in order for scheduling to work
correctly.
Automatically Adjust for
Daylight Savings Time
If daylight saving time is supported in your region, select the
Automatically
Adjust for Daylight Savings Time
check box. By default, the check box is
disabled.
Page 353 / 469
Network and System Management
353
ProSAFE Gigabit Quad WAN SSL VPN Firewall SRX5308
Resolve IPv6 address
for servers
Select this check box to force the use of IPv6 addresses and FQDN (domain
name) resolution in the Server 1 Name / IP Address and Server 2 Name / IP
Address fields when you have selected the Use Custom NTP Servers radio
button.
Select NTP Mode
In all three NTP modes, the VPN firewall functions both as a client and a server.
The VPN firewall synchronizes its clock with the specified NTP server or
servers and provides time service to clients. From the drop-down list, select the
NTP mode:
Authoritative Mode
. The VPN firewall synchronizes its clock with the
specified NTP server or servers on the Internet. If external servers are
unreachable, the VPN firewall’s RTC provides time service to clients. In
authoritative mode, you can enter a stratum value and set the date and
time manually.
Sync to NTP Servers on Internet
. The VPN firewall synchronizes its clock
with the specified NTP server or servers on the Internet. If external servers
are unreachable, the VPN firewall does
not
use its RTC.
Sync to NTP Servers on VPN
. The VPN firewall synchronizes its clock
with the specified NTP server on the VPN. If the server is unreachable, the
VPN firewall does
not
use its RTC. You need to select a VPN policy that
enables the VPN firewall to contact the NTP server on the VPN.
Select Stratum
In authoritative mode, enter a stratum value,
which indicates the distance from a reference
clock. The default value is 10, which specifies an
unsynchronized local clock and causes NTP to
use the VPN firewall’s RTC when the specified
NTP server is not available.
Set date and time manually
This is an optional setting that is available in
authoritative mode. Select the check box to
unmask the time (hour, minute, second), Day,
Month, and Year fields. Enter the date and time.
Select VPN Policy
When the VPN firewall is configured to
synchronize to an NTP server on the VPN,
select the VPN policy from the drop-down list.
For information about configuring VPN policies,
see
Manage VPN Policies
on page
238.
Table 87.
Time Zone screen settings (continued)
Setting
Description
Page 354 / 469
Network and System Management
354
ProSAFE Gigabit Quad WAN SSL VPN Firewall SRX5308
3.
Click
Apply
to save your settings.
Note:
If you select the default NTP servers or if you enter a custom server
FQDN, the VPN firewall determines the IP address of the NTP
server by performing a DNS lookup. Before the VPN firewall can
perform this lookup, you need to configure a DNS server address on
the WAN IPv4 ISP Settings screen (see
Manually Configure an IPv4
Internet Connection
on page
34.)
NTP Servers (default or
custom)
Select one of the following radio buttons to specify the NTP servers:
Use Default NTP Servers
. The VPN firewall regularly updates its RTC by
contacting a default NETGEAR NTP server on the Internet.
Use Custom NTP Servers
. The VPN firewall regularly updates its RTC by
contacting one of two custom NTP servers (primary and backup), both of
which you need to specify in the fields that become available with this
selection.
Note:
If you select the Use Custom NTP Servers option but leave either the
Server 1 or Server 2 field blank, both fields are set to the default NETGEAR
NTP servers.
Note:
A list of public NTP servers is available at
.
NTP Servers (custom)
Server 1 Name / IP Address
Enter the IP address or host name of the primary
NTP server.
Server 2 Name / IP Address
Enter the IP address or host name of the backup
NTP server.
Table 87.
Time Zone screen settings (continued)
Setting
Description
Page 355 / 469
355
9
9.
Monitor System Access and
Performance
This chapter describes the system-monitoring features of the VPN firewall. You can be alerted to
important events such WAN traffic limits reached, login failures, and attacks. You can also view
status information about the firewall, WAN ports, LAN ports, active VPN users and tunnels, and
more. In addition, the diagnostics utilities are described. The chapter contains the following
sections:
Configure and Enable the WAN Traffic Meter
Configure and Enable the LAN Traffic Meter
Configure Logging, Alerts, and Event Notifications
View Status Screens
Diagnostics Utilities
Note:
All log and report functions that are part of the Firewall Logs &
E-mail screen and some of the functions that are part of the
Diagnostics screen require that you configure the email notification
server—see
Configure Logging, Alerts, and Event Notifications
on
page
362.

Rate

3.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top