Page 711 / 944 Scroll up to view Page 706 - 710
Chapter 45 System
ZyWALL USG 50 User’s Guide
711
Enter the password to log in to the ZyWALL. The CLI screen displays next.
45.7.5.2
Example 2: Linux
This section describes how to access the ZyWALL using the OpenSSH client
program that comes with most Linux distributions.
1
Test whether the SSH service is available on the ZyWALL.
Enter “
telnet 192.168.1.1 22
” at a terminal prompt and press
[ENTER]
. The
computer attempts to connect to port 22 on the ZyWALL (using the default IP
address of 192.168.1.1).
A message displays indicating the SSH protocol version supported by the
ZyWALL.
Figure 416
SSH Example 2: Test
2
Enter “
ssh –1 192.168.1.1
”. This command forces your computer to connect to
the ZyWALL using SSH version 1. If this is the first time you are connecting to the
ZyWALL using SSH, a message displays prompting you to save the host
information of the ZyWALL. Type “
yes
” and press
[ENTER]
.
Then enter the password to log in to the ZyWALL.
Figure 417
SSH Example 2: Log in
3
The CLI screen displays next.
45.8
Telnet
You can use Telnet to access the ZyWALL’s command line interface. Specify which
zones allow Telnet access and from which IP address the access can come.
$ telnet 192.168.1.1 22
Trying 192.168.1.1...
Connected to 192.168.1.1.
Escape character is '^]'.
SSH-1.5
-1.0.0
$ ssh –1 192.168.1.1
The authenticity of host '192.168.1.1 (192.168.1.1)' can't be established.
RSA1 key fingerprint is 21:6c:07:25:7e:f4:75:80:ec:af:bd:d4:3d:80:53:d1.
Are you sure you want to continue connecting (yes/no)? yes
Warning: Permanently added '192.168.1.1' (RSA1) to the list of known hosts.
[email protected]'s password:
Page 712 / 944
Chapter 45 System
ZyWALL USG 50 User’s Guide
712
45.8.1
Configuring Telnet
Click
Configuration > System > TELNET
to configure your ZyWALL for remote
Telnet access. Use this screen to specify from which zones Telnet can be used to
manage the ZyWALL. You can also specify from which IP addresses the access can
come.
Figure 418
Configuration > System > TELNET
The following table describes the labels in this screen.
Table 222
Configuration > System > TELNET
LABEL
DESCRIPTION
Enable
Select the check box to allow or disallow the computer with the IP
address that matches the IP address(es) in the
Service Control
table to
access the ZyWALL CLI using this service.
Server Port
You may change the server port number for a service if needed, however
you must use the same port number in order to use that service for
remote management.
Service
Control
This specifies from which computers you can access which ZyWALL
zones.
Add
Click this to create a new entry. Select an entry and click
Add
to create a
new entry after the selected entry. Refer to
Table 219 on page 695
for
details on the screen that opens.
Edit
Double-click an entry or select it and click
Edit
to be able to modify the
entry’s settings.
Remove
To remove an entry, select it and click
Remove
. The ZyWALL confirms
you want to remove it before doing so. Note that subsequent entries
move up by one when you take this action.
Move
To change an entry’s position in the numbered list, select the method and
click
Move
to display a field to type a number for where you want to put
it and press [ENTER] to move the rule to the number that you typed.
Page 713 / 944
Chapter 45 System
ZyWALL USG 50 User’s Guide
713
45.9
FTP
You can upload and download the ZyWALL’s firmware and configuration files using
FTP. To use this feature, your computer must have an FTP client. Please see
Chapter 47 on page 737
for more information about firmware and configuration
files.
45.9.1
Configuring FTP
To change your ZyWALL’s FTP settings, click
Configuration > System > FTP
tab.
The screen appears as shown. Use this screen to specify from which zones FTP can
#
This the index number of the service control rule.
The entry with a hyphen (-) instead of a number is the ZyWALL’s (non-
configurable) default policy. The ZyWALL applies this to traffic that does
not match any other configured rule. It is not an editable rule. To apply
other behavior, configure a rule that traffic will match so the ZyWALL will
not have to use the default policy.
Zone
This is the zone on the ZyWALL the user is allowed or denied to access.
Address
This is the object name of the IP address(es) with which the computer is
allowed or denied to access.
Action
This displays whether the computer with the IP address specified above
can access the ZyWALL zone(s) configured in the
Zone
field (
Accept
) or
not (
Deny
).
Apply
Click
Apply
to save your changes back to the ZyWALL.
Reset
Click
Reset
to return the screen to its last-saved settings.
Table 222
Configuration > System > TELNET (continued)
LABEL
DESCRIPTION
Page 714 / 944
Chapter 45 System
ZyWALL USG 50 User’s Guide
714
be used to access the ZyWALL. You can also specify from which IP addresses the
access can come.
Figure 419
Configuration > System > FTP
The following table describes the labels in this screen.
Table 223
Configuration > System > FTP
LABEL
DESCRIPTION
Enable
Select the check box to allow or disallow the computer with the IP
address that matches the IP address(es) in the
Service Control
table to
access the ZyWALL using this service.
TLS required
Select the check box to use FTP over TLS (Transport Layer Security) to
encrypt communication.
This implements TLS as a security mechanism to secure FTP clients and/
or servers.
Server Port
You may change the server port number for a service if needed, however
you must use the same port number in order to use that service for
remote management.
Server
Certificate
Select the certificate whose corresponding private key is to be used to
identify the ZyWALL for FTP connections. You must have certificates
already configured in the
My Certificates
screen (Click
My Certificates
and see
Chapter 41 on page 633
for details).
Service
Control
This specifies from which computers you can access which ZyWALL
zones.
Add
Click this to create a new entry. Select an entry and click
Add
to create a
new entry after the selected entry. Refer to
Table 219 on page 695
for
details on the screen that opens.
Edit
Double-click an entry or select it and click
Edit
to be able to modify the
entry’s settings.
Remove
To remove an entry, select it and click
Remove
. The ZyWALL confirms
you want to remove it before doing so. Note that subsequent entries
move up by one when you take this action.
Page 715 / 944
Chapter 45 System
ZyWALL USG 50 User’s Guide
715
45.10
SNMP
Simple Network Management Protocol is a protocol used for exchanging
management information between network devices. Your ZyWALL supports SNMP
agent functionality, which allows a manager station to manage and monitor the
ZyWALL through the network. The ZyWALL supports SNMP version one (SNMPv1)
Move
To change an entry’s position in the numbered list, select the method and
click
Move
to display a field to type a number for where you want to put
it and press [ENTER] to move the rule to the number that you typed.
#
This the index number of the service control rule.
The entry with a hyphen (-) instead of a number is the ZyWALL’s (non-
configurable) default policy. The ZyWALL applies this to traffic that does
not match any other configured rule. It is not an editable rule. To apply
other behavior, configure a rule that traffic will match so the ZyWALL will
not have to use the default policy.
Zone
This is the zone on the ZyWALL the user is allowed or denied to access.
Address
This is the object name of the IP address(es) with which the computer is
allowed or denied to access.
Action
This displays whether the computer with the IP address specified above
can access the ZyWALL zone(s) configured in the
Zone
field (
Accept
) or
not (
Deny
).
Apply
Click
Apply
to save your changes back to the ZyWALL.
Reset
Click
Reset
to return the screen to its last-saved settings.
Table 223
Configuration > System > FTP (continued)
LABEL
DESCRIPTION

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top