Page 196 / 218 Scroll up to view Page 191 - 195
ProSafe Wireless-N VPN Firewall SRXN3205 Reference Manual
12-6
Troubleshooting
v1.0, October 2008
Wrong physical connections
Make sure the LAN port LED is on. If the LED is off, follow the instructions in
“LAN
or WAN Port LEDs Not On” on page 12-2
.
Check that the corresponding Link LEDs are on for your network interface card and
for the hub ports (if any) that are connected to your workstation and firewall.
Wrong network configuration
Verify that the Ethernet card driver software and TCP/IP software are both installed
and configured on your PC or workstation.
Verify that the IP address for your firewall and your workstation are correct and that
the addresses are on the same subnet.
Testing the Path from Your PC to a Remote Device
After verifying the LAN path works correctly, test the path from your PC to a remote device. From
the Windows run menu, type:
PING -n 10
<
IP address
>
where <
IP address
> is the IP address of a remote device such as your ISP’s DNS server.
If the path is functioning correctly, replies as in the previous section are displayed. If you do not
receive replies:
Verify your PC has the IP address of your firewall listed as the default gateway. If the IP
configuration of your PC is assigned by DHCP, this information will not be visible in your
PC’s Network Control Panel.
Verify the network address of your PC (the portion of the IP address specified by the
netmask) is different from the network address of the remote device.
Verify your cable or DSL modem is connected and functioning.
If your ISP assigned a host name to your PC, enter that host name as the Account Name in
the Basic Settings menu.
Your ISP could be rejecting the Ethernet MAC addresses of all but one of your PCs. Many
broadband ISPs restrict access by only allowing traffic from the MAC address of your
broadband modem, but some ISPs additionally restrict access to the MAC address of a
single PC connected to that modem. If this is the case, you must configure your firewall to
“clone” or “spoof” the MAC address from the authorized PC. Refer to
“Manually
Configuring the Internet Connection” on page 2-6
.
Page 197 / 218
ProSafe Wireless-N VPN Firewall SRXN3205 Reference Manual
Troubleshooting
12-7
v1.0, October 2008
Restoring the Default Configuration and Password
This section explains how to restore the factory default configuration settings, changing the VPN
firewall’s administration password to
password
and the IP address to
192.168.1.1
. You can erase
the current configuration and restore factory defaults in two ways:
Use the Erase function of the VPN firewall (see
“Settings Backup and Firmware Upgrade” on
page 9-13
).
Use the reset button (Factory Defaults) on the front panel of the VPN firewall. Use this method
for cases when the administration password or IP address is not known.
To restore the factory default configuration settings without knowing the administration password
or IP address, you must use the reset button on the rear panel of the VPN firewall.
To restore the factory defaults:
1.
Press and hold the Factory Defaults (reset button) until the Test LED turns on and begins to
blink (about 10 seconds).
Use a slender pointed object, such as an ink pen or paper clip, to press and hold the reset
button (Factory Defaults).
2.
Release the reset button (Factory Defaults) and wait for the VPN firewall to reboot.
Problems with Date and Time
The Administration > Time Zone menu displays the current date and time of day. The VPN
firewall uses the Network Time Protocol (NTP) to obtain the current time from one of several
Network Time Servers on the Internet. Each entry in the log is stamped with the date and time of
day. Problems with the date and time function can include:
Date shown is January 1, 2000. Cause: The VPN firewall has not yet successfully reached a
Network Time Server. Verify your Internet access settings are configured correctly. If you
have just completed configuring the VPN firewall, wait at least five minutes and check the
date and time again.
Time is off by one hour. Cause: The VPN firewall does not automatically sense Daylight
Savings Time. Check the Time Zone menu, and check or uncheck the box marked “Adjust for
Daylight Savings Time”.
Page 198 / 218
ProSafe Wireless-N VPN Firewall SRXN3205 Reference Manual
12-8
Troubleshooting
v1.0, October 2008
Diagnostics Functions
You can perform diagnostics such as pinging an IP address, performing a DNS lookup, displaying
the routing table, rebooting the VPN firewall, and capturing packets.
1.
Select
Monitoring > Diagnostics
from the main/submenu.
The Diagnostics
screen displays.
2.
View the selections available in the Diagnostic screen and browse the descriptions listed in
Table 12-1., “Diagnostics”
.
Note:
For normal operation, diagnostics are not required.
Figure 12-1
Table 12-1. Diagnostics
Item
Description
Ping or trace an IP
address
Ping – Used to send a ping packet request to a specified IP address—most often, to
test a connection. If the request times out (no reply is received), it usually means that
the destination is unreachable. However, some network devices can be configured
not to respond to a ping. The ping results will be displayed in a new screen; click
“Back” on the Windows menu bar to return to the Diagnostics screen.
If the specified address is intended to be reached through a VPN tunnel, check
Ping
through VPN tunnel
.
Traceroute – Lists all routers between the source (this device) and the destination IP
address. The traceroute results will be displayed in a new screen; click “Back” on the
Windows menu bar to return to the Diagnostics screen.
Page 199 / 218
ProSafe Wireless-N VPN Firewall SRXN3205 Reference Manual
Troubleshooting
12-9
v1.0, October 2008
Perform a DNS
lookup
A DNS (Domain Name Server) converts the Internet name (for example,
www.netgear.com) to an IP address. If you need the IP address of a Web, FTP, Mail
or other Server on the Internet, you can request a DNS lookup to find the IP address.
Display the routing
table
This operation will display the internal routing table, which can be used by Technical
Support to diagnose routing problems.
Reboot the firewall
Used to perform a remote reboot (restart). You can use this if the firewall seems to
have become unstable or is not operating normally.
Note
: Rebooting will break any existing connections either to the firewall (such as
your management session) or through the firewall (for example, LAN users
accessing the Internet). However, connections to the Internet will automatically be re-
established when possible.
Packet trace
Packet Trace selects the interface and starts the packet capture on that interface.
Table 12-1. Diagnostics
(continued)
Item
Description
Page 200 / 218
ProSafe Wireless-N VPN Firewall SRXN3205 Reference Manual
12-10
Troubleshooting
v1.0, October 2008

Rate

3.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top