Planet CS-1000 Manual do Utilizador Página 1

Consulte online ou descarregue Manual do Utilizador para Comunicação Planet CS-1000. PLANET CS-1000 User Manual Manual do Utilizador

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
  • Página
    / 226
  • Índice
  • MARCADORES
  • Avaliado. / 5. Com base em avaliações de clientes

Resumo do Conteúdo

Página 1 - CS-1000

Multi-Homing Security Gateway User’s Manual Multi-Homing Security Gateway CS-1000 User’s Manual

Página 2

Multi-Homing Security Gateway User’s Manual Network Connection Transparent mode (WAN to DMZ), NAT, Multi-NAT Routing Mode Static Route, RIPv2 Concu

Página 3 - Part No. EM-CS1000v1

Multi-Homing Security Gateway User’s Manual Step 1. Select VPN→PPTP Server. Click New Entry. Step 2. Enter appropriate settings in the following

Página 4 - Table of Contents

Multi-Homing Security Gateway User’s Manual Step 4. Click OK to save modifications or click Cancel to cancel modifications Removing PPTP Server Step

Página 5

Multi-Homing Security Gateway User’s Manual  User Name:Displays the PPTP Client user’s name for authentication.  Server IP or Domain Name:Displays

Página 6

Multi-Homing Security Gateway User’s Manual Step 4. Click OK to save modifications or click Cancel to cancel modifications Removing PPTP Client Step

Página 7 - Chapter 1: Introduction

Multi-Homing Security Gateway User’s Manual Step 2. Configure the parameters  Name: Specify the Trunk name. This should be unique and can not be

Página 8 - 1.2 Package Contents

Multi-Homing Security Gateway User’s Manual  From Source: Specify the VPN source to LAN or DMZ site.  From Source Subnet / Mask: Specify the sourc

Página 9

Multi-Homing Security Gateway User’s Manual Click OK to remove the Trunk or click Cancel to exit without removal. Pausing a Trunk Step 1. Select VPN

Página 10

Multi-Homing Security Gateway User’s Manual Example 5. Create a VPN connection between Multi-Homing Security Gateway and PLANET VRT-311 VPN Router. E

Página 11 - Chapter 2: Getting Started

Multi-Homing Security Gateway User’s Manual Step 6. In IPSec Algorithm Table, choose Data Encryption + Authentication. We choose 3DES for ENC Algori

Página 12 - 2.2 Configure WAN1 interface

Multi-Homing Security Gateway User’s Manual Step 12. In To Destination table, fill company B’s subnet IP and mask, 192.168.20.0 and 255.255.255.0 resp

Página 13 - 2.4 Configure DMZ interface

Multi-Homing Security Gateway User’s Manual Chapter 2: Getting Started 2.1 Web Configuration STEP 1: Connect both the Administrator’s PC and the LAN p

Página 14 - 2.5 Configure Policy

Multi-Homing Security Gateway User’s Manual Outgoing Policy: Incoming Policy: The Gateway of Company B is 192.168.20.1. The settings of company B a

Página 15 - STEP 4:

Multi-Homing Security Gateway User’s Manual Step 4. In Authentication Method Table enters the Preshared Key. Step 5. In Encapsulation or Authentic

Página 16 - Chapter 3: Web Configuration

Multi-Homing Security Gateway User’s Manual Step 10. Click Trunk and press New Entry to configure the further setting. Step 11. Enter Site_B as the

Página 17 - 3.1.1 Admin

Multi-Homing Security Gateway User’s Manual Step 16. If you want to configure bi-direction VPN connection, you should enable Trunk setting in Outgoin

Página 18

Multi-Homing Security Gateway User’s Manual Step 4. In Authentication Method Table enters the Preshared Key. Step 5. In Encapsulation or Authentic

Página 19 - 3.1.2 Permitted IPs

Multi-Homing Security Gateway User’s Manual Step 10. Click Trunk and press New Entry to configure the further setting. Step 11. Enter Site_A as the

Página 20

Multi-Homing Security Gateway User’s Manual Step 16. Click OK to finish the Policy setting of Company A. Configuration of WinXP The IP of remote u

Página 21 - 3.1.4 Setting

Multi-Homing Security Gateway User’s Manual Step 2. In the Execute window, enter the command, mmc in Open. Step 3. Enter the Console window,

Página 22

Multi-Homing Security Gateway User’s Manual Step 4. Enter Add/Remove Embedded Management Option window and click Add. In Add/ Remove Embedded Manage

Página 23

Multi-Homing Security Gateway User’s Manual Step 6. Finish the setting of Add. Step 7. Click the right button of mouse in IP Security Policies

Página 24

Multi-Homing Security Gateway User’s Manual 2.2 Configure WAN1 interface After entering the username and password, the Multi-Homing Security Gateway W

Página 25

Multi-Homing Security Gateway User’s Manual Security Policy(C) option. Step 8. Click Next. Step 9. Enter the Name of this VPN and optional

Página 26 - 3.1.5 Date/Time

Multi-Homing Security Gateway User’s Manual Step 10. Disable Activate the default response rule. And click Next. Step 11. Completing the IP Se

Página 27 - 3.1.6 Multiple Subnet

Multi-Homing Security Gateway User’s Manual Step 12. In window, click Add and click Use Add Wizard. Step 13. Click next. - 116 -

Página 28

Multi-Homing Security Gateway User’s Manual Step 14. Enter the WAN IP of Remote user, 210.66.155.91. Step 15. click all network connections.

Página 29

Multi-Homing Security Gateway User’s Manual Step 16. Choose Use this string to protect the key exchange (Preshared Key). And enter the key, 12345678

Página 30

Multi-Homing Security Gateway User’s Manual Step 18. Enter the name of IP filter and click “Add..”. Step 19. Click next. - 119 -

Página 31

Multi-Homing Security Gateway User’s Manual Step 20. In Source address, click down the arrow to select the specific IP Subnet and fill Company A’s

Página 32 - 3.1.7 Route Table

Multi-Homing Security Gateway User’s Manual Step 22. Click next. Step 23. Please enable edit properties, and click finish. - 121 -

Página 33 - 3.1.8 DHCP

Multi-Homing Security Gateway User’s Manual Step 24. Please don’t enable Mirrored, and click OK. Step 25. Click OK. - 122 -

Página 34

Multi-Homing Security Gateway User’s Manual Step 26. Select Traffic-in and click next. Step 27. Enable User Add Wizard and click add. - 123

Página 35 - 3.1.9 Dynamic DNS

Multi-Homing Security Gateway User’s Manual For Dynamic IP Address (Cable Modem User): This option is for users who are automatically assigned an IP a

Página 36

Multi-Homing Security Gateway User’s Manual Step 28. Click next. Step 29. Enter the name of filter action and click next. - 124 -

Página 37 - 3.1.10 Host Table

Multi-Homing Security Gateway User’s Manual Step 30. Select Negotiate security and click next. Step 31. Click next. - 125 -

Página 38

Multi-Homing Security Gateway User’s Manual Step 32. Select Custom and click settings. Step 33. Click Data Integrity and Encapsulation and choose M

Página 39 - 3.1.11 Language

Multi-Homing Security Gateway User’s Manual Step 34. Click finish. Step 35. Select security and click next. - 127 -

Página 40 - 3.2.1 LAN

Multi-Homing Security Gateway User’s Manual Step 36. Click finish. Step 37. Click Add. - 128 -

Página 41 - 3.2.2 WAN

Multi-Homing Security Gateway User’s Manual Step 38. Click next. Step 39. Enter the WAN IP of company A, 210.66.155.90. - 129 -

Página 42

Multi-Homing Security Gateway User’s Manual Step 40. Select All network connections and click next. Step 41. Choose Use this string to protect th

Página 43

Multi-Homing Security Gateway User’s Manual Step 42. Click Add. Step 43. Enter the name of IP filter and click “Add…”. - 131 -

Página 44

Multi-Homing Security Gateway User’s Manual Step 44. Click next Step 45. In Source address, click down the arrow to select the My IP Address.

Página 45 - 3.2.3 DMZ

Multi-Homing Security Gateway User’s Manual Step 46. In Destination address, click down the arrow to select the specific IP Subnet and fill Company

Página 46 - 3.3.1.1 LAN

Multi-Homing Security Gateway User’s Manual 2.5 Configure Policy STEP 1: Click on the Policy tab from the main function menu, and then click on Ou

Página 47

Multi-Homing Security Gateway User’s Manual Step 48. Please enable Edit properties and click finish. Step 49. Please don’t enable Mirrored and c

Página 48 - 3.3.1.2 LAN Group

Multi-Homing Security Gateway User’s Manual Step 50. Click ok. Step 51. Select Traffic-out and click next. - 135 -

Página 49

Multi-Homing Security Gateway User’s Manual Step 52. Select Security and click edit. Step 53. Enable Session key perfect forward secrecy (PFS) a

Página 50

Multi-Homing Security Gateway User’s Manual Step 54. Select Security and click next. Step 55. Please don’t enable Edit properties and click finis

Página 51 - 3.3.1.3 WAN

Multi-Homing Security Gateway User’s Manual Step 56. Click apply first and then click ok. Step 57 Click the right button of mouse in IPSec choose

Página 52

Multi-Homing Security Gateway User’s Manual Step 58. Ping the remote gateway of Company A, the VPN tunnel is created successfully. Example 3. Cre

Página 53 - 3.3.1.4 WAN Group

Multi-Homing Security Gateway User’s Manual Company B External IP is 211.22.22.22 Internal IP is 192.168.20.X To Allow Company A,

Página 54

Multi-Homing Security Gateway User’s Manual Step 6. In IPSec Algorithm Table, choose Data Encryption + Authentication. We choose 3DES for ENC Algori

Página 55

Multi-Homing Security Gateway User’s Manual Step 12. In Tunnel, select VPN_A tunnel Available Tunnel, and click the Add>> button to add it to

Página 56 - 3.3.1.5 DMZ

Multi-Homing Security Gateway User’s Manual Outgoing Policy: Incoming Policy: The Gateway of Company B is 192.168.20.1. The settings of company B a

Página 57

Multi-Homing Security Gateway User’s Manual STEP 4: The configuration is successful when the screen below is displayed. Please make sure that

Página 58 - 3.3.1.6 DMZ Group

Multi-Homing Security Gateway User’s Manual Step 6. In IPSec Algorithm Table, choose Data Encryption + Authentication. We choose 3DES for ENC Algo

Página 59

Multi-Homing Security Gateway User’s Manual Step 11. In To Destination table, fill company A’s subnet IP and mask, 192.168.10.0 and 255.255.255.0 re

Página 60 - 3.3.2 Service

Multi-Homing Security Gateway User’s Manual Example 4. Create a VPN trunk connection between CS-1000 (Company A) and CS-1000 (Company B), using ISA

Página 61 - 3.3.2.1 Pre-defined

Multi-Homing Security Gateway User’s Manual Step 4. In Authentication Method Table, enter the Preshared Key. Step 5. In Encapsulation / ISAKMP Algor

Página 62 - 3.3.2.2 Custom

Multi-Homing Security Gateway User’s Manual Step 10. Follow the previous steps to create WAN 2 VPN rule. Step 11. Enter the VPN name, Site_A_2 in IPS

Página 63

Multi-Homing Security Gateway User’s Manual IP subnet 192.168.10.0 with subnet mask IP 255.255.255.0. Step 19. In To Destination table, fill company

Página 64 - 3.3.2.3 Group

Multi-Homing Security Gateway User’s Manual The Gateway of Company B is 192.168.20.1. The settings of company B are as the following. Step 1. E

Página 65

Multi-Homing Security Gateway User’s Manual Step 7. Choose Perfect Forward Secrecy as GROUP 2, and enter 3600 seconds in ISAKMP Lifetime, 28800 seco

Página 66 - 3.3.3 Schedule

Multi-Homing Security Gateway User’s Manual Step 14. In Authentication Method Table, choose Preshare and enter the Preshared Key. Step 15. Follow St

Página 67

Multi-Homing Security Gateway User’s Manual Step 21. Click OK to finish the Trunk setting of Company B. Step 22. Enable Trunk setting in Outgoing

Página 68 - 3.3.4 QoS

Multi-Homing Security Gateway User’s Manual Chapter 3: Web Configuration 3.1 System The Multi-Homing Security Gateway Administration and monitoring

Página 69

Multi-Homing Security Gateway User’s Manual The Gateway of Company A is 192.168.10.1. The settings of company A are as the following. Step 1. Ent

Página 70

Multi-Homing Security Gateway User’s Manual seconds in IPSec Lifetime and 3600 seconds for ISAKMP Lifetime. Step 8. Select main mode as the algori

Página 71

Multi-Homing Security Gateway User’s Manual Step 14. Fill company B’s gateway IP 192.168.20.1 in Keep alive IP to keep VPN tunnel connecting. Step 1

Página 72 - 3.3.5.1 Auth Setting

Multi-Homing Security Gateway User’s Manual - 157 -

Página 73 - 3.3.5.2 Auth User

Multi-Homing Security Gateway User’s Manual 3.4 Policy This section provides the Administrator with facilities to sent control policies for packets wi

Página 74

Multi-Homing Security Gateway User’s Manual The fields in the Outgoing window are:  Source: Source network addresses that are specified in the LAN

Página 75

Multi-Homing Security Gateway User’s Manual Step 2: Configure all the parameters. Source Address: Select the name of the LAN network from the drop

Página 76 - 3.3.5.3 Auth Group

Multi-Homing Security Gateway User’s Manual certain time and range. Step 3: Click OK to add a new outgoing policy; or click Cancel to cancel adding a

Página 77

Multi-Homing Security Gateway User’s Manual Pausing the Outgoing Policy Step 1. In the Outgoing policy section, locate the name of the policy desir

Página 78

Multi-Homing Security Gateway User’s Manual Step 2: The fields of the Incoming window are:  Source: Source networks which are specified in the W

Página 79 - 3.3.5.4 Radius Serve

Multi-Homing Security Gateway User’s Manual DHCP: Administrator can configure DHCP (Dynamic Host Configuration Protocol) settings for the LAN (LAN) ne

Página 80 - 3.3.5.5 POP3

Multi-Homing Security Gateway User’s Manual Step 2: Configure the parameters Source Address: Select names of the WAN networks from the drop down list.

Página 81 - 3.3.6.1 URL Blocking

Multi-Homing Security Gateway User’s Manual Removing an Incoming Policy Step 1: In the Incoming window, locate the name of policy desired to be remo

Página 82

Multi-Homing Security Gateway User’s Manual Step 3. When Policy is paused, administrator can modify the Policy Object without removing the Policy.

Página 83 - 3.3.6.2 Scripts

Multi-Homing Security Gateway User’s Manual through the Multi-Homing Security Gateway. Option: Specify the monitoring functions of packets from WAN n

Página 84 - 3.3.6.3 P2P

Multi-Homing Security Gateway User’s Manual Schedule: Select the item listed in the schedule to enable the policy to automatically execute the functio

Página 85 - 3.3.6.5 Download

Multi-Homing Security Gateway User’s Manual Step 1: In the WAN To DMZ window, locate the name of policy desired to be removed and click its correspon

Página 86 - 3.3.6.6 Upload

Multi-Homing Security Gateway User’s Manual Entering the DMZ To WAN window: Click DMZ To WAN under Policy menu and the DMZ To WAN table appears displa

Página 87 - 3.3.7 Virtual Server

Multi-Homing Security Gateway User’s Manual Step 2: Configure the parameters. Source Address: Select the name of the DMZ network from the drop down

Página 88 - 3.3.7.1 Mapped IP

Multi-Homing Security Gateway User’s Manual Content Blocking: Select Enable to enable Content Blocking. Max. Concurrent Sessions: The maximum concurre

Página 89

Multi-Homing Security Gateway User’s Manual Step 2. In the Remove confirmation dialogue box, click OK. Pausing the DMZ to WAN or DMZ to LAN Policy S

Página 90 - 3.3.7.2 Virtual Server

Multi-Homing Security Gateway User’s Manual Settings of the Administration table Admin Name: The username of Administrators for the Multi-Homing Secur

Página 91

Multi-Homing Security Gateway User’s Manual 3.5.1 Configure About the Mail Security Configure function, it means the dealing standard towards mail of

Página 92

Multi-Homing Security Gateway User’s Manual Mail Relay: After scanning the mails that sent to Internal Mail Server by Anti-Spam and Anti-Virus functio

Página 93

Multi-Homing Security Gateway User’s Manual When LAN (172.16.1.0/16) users send mail from the sender account of planet.com.tw mail server to the recip

Página 94

Multi-Homing Security Gateway User’s Manual When the branch office’s users send mail to the external mail server’s recipient account from mail server’

Página 95 - 3.3.8.1 IPSec Autokey

Multi-Homing Security Gateway User’s Manual In this chapter, we will have the detailed illustration about Anti-Spam: 3.5.2.1 Setting The Administrato

Página 96

Multi-Homing Security Gateway User’s Manual Check sender account: Select to allow CS-1000 checking sender’s account when it receives the mail, if the

Página 97

Multi-Homing Security Gateway User’s Manual Below is the information needed for setting up the Rule: • Rule Name: The name of the custom spam mail d

Página 98 - 3.3.8.2 PPTP Server

Multi-Homing Security Gateway User’s Manual Adding a new Rule Step 1: Click on the New Entry button and the Rule window will appear. Step 2: Fi

Página 99

Multi-Homing Security Gateway User’s Manual 3.5.2.3 Whitelist To determine the mail comes from specific mail address that can send to the recipient wi

Página 100

Multi-Homing Security Gateway User’s Manual Removing a Whitelist Step 1: In the Rule window, find the policy to be removed and click the correspond

Página 101 - 3.3.8.3 PPTP Client

Multi-Homing Security Gateway User’s Manual Removing a Sub Admin Step 1. In the Administration table, locate the Admin name you want to edit, and cl

Página 102

Multi-Homing Security Gateway User’s Manual Import Whitelist From Client Step 1: Press Browse to select the file you want to import, then press OK

Página 103 - 3.3.8.4 Trunk

Multi-Homing Security Gateway User’s Manual Step 3: Click OK to save the policy or Cancel to cancel. Modifying a Blacklist Step 1: In the Blackli

Página 104

Multi-Homing Security Gateway User’s Manual Export Blacklist To Client Step 1: Press Download button to save the Blacklist as a file. The file for

Página 105

Multi-Homing Security Gateway User’s Manual 3.5.2.5 Training CS-1000 provides a training system to improve the identify rate of spam, the database can

Página 106

Multi-Homing Security Gateway User’s Manual Example: How to train mail into CS-1000 STEP 1﹒Create a new folder SpamMail in Outlook Express:  Press t

Página 107

Multi-Homing Security Gateway User’s Manual the mouse and move to the folder.  In Move WebUI, select SpamMail Folder and click OK. STEP 3﹒Compre

Página 108

Multi-Homing Security Gateway User’s Manual STEP 4﹒To copy the route of SpamMail File in Outlook Express to convenient to upload the training to CS

Página 109

Multi-Homing Security Gateway User’s Manual STEP 5﹒Paste the route of copied from SpamMail file to the Spam Mail for Training field in Training func

Página 110

Multi-Homing Security Gateway User’s Manual Note: 1. The training file that uploads to CS-1000 can be any data file and not restricted in its sub-n

Página 111

Multi-Homing Security Gateway User’s Manual 3.5.2.6 Spam Mail This item will show the top chart that represents the received and sent spam mail from

Página 112

Multi-Homing Security Gateway User’s Manual Copyright Copyright (C) 2006 PLANET Technology Corp. All rights reserved. The products and programs desc

Página 113 - Configuration of CS-1000

Multi-Homing Security Gateway User’s Manual Step 2. In IP Address field, enter the LAN IP address or WAN IP address.  Name: Enter the host name for

Página 114

Multi-Homing Security Gateway User’s Manual Definition: Virus Scan Engine: Select Clam to enable Anti-virus function or Select Disable to disable it

Página 115

Multi-Homing Security Gateway User’s Manual External Mail Server. It also can sort the mail according to Recipient, Total Virus and Total Mail. 3.6

Página 116 - Configuration of WinXP

Multi-Homing Security Gateway User’s Manual 6. Click OK. 7. Enable IDP function in policy.  When the attack behavior matches the signature, CS-1000

Página 117

Multi-Homing Security Gateway User’s Manual the packets. Log: Check Log function to record the log in IDP Report. Pre-defined: Pre-defined signature

Página 118

Multi-Homing Security Gateway User’s Manual Source Port: Configure the port number that is used to attack the PC. (The range can be from 0 to 65535).

Página 119

Multi-Homing Security Gateway User’s Manual  Content: Enter cracks. Click OK to finish the IDP setting. STEP 3. Enter the following settings in

Página 120

Multi-Homing Security Gateway User’s Manual the network security status for the overall network. STEP 1. In Log of IDP Report function, it will displa

Página 121

Multi-Homing Security Gateway User’s Manual connection for user-drefined blocking time.  Enable E-mail Alert Notification: When Anomaly Flow IP at

Página 122

Multi-Homing Security Gateway User’s Manual ÍÍ Traffic Log Table The table in the Traffic Log window displays current System statuses: Definition: 

Página 123

Multi-Homing Security Gateway User’s Manual Step 2. In the Clear Logs pop-up box, click Ok to clear the logs or click Cancel to cancel it. 3.8.1.2 E

Página 124

Multi-Homing Security Gateway User’s Manual 3.1.3 Software Update Under Software Update, the admin may update the device’s software with newer softw

Página 125

Multi-Homing Security Gateway User’s Manual ÍÍ Step 2. The table in the Event Log window displays the time and description of the events.  Time:

Página 126

Multi-Homing Security Gateway User’s Manual 3.8.1.3 Connection Click Log in the menu bar on the left hand side, and then select the sub-selection Con

Página 127

Multi-Homing Security Gateway User’s Manual Definition: Time: The start and end time of connection. Connection Log: Event description during connecti

Página 128

Multi-Homing Security Gateway User’s Manual ÍÍ Log Mail Configuration: When the Log Mail files accumulated up to 300Kbytes, router will notify admin

Página 129

Multi-Homing Security Gateway User’s Manual Disable Log Mail Support & Syslog Message Step 1. Go to LOG ÆLog Backup. Uncheck to disable Log Mail

Página 130

Multi-Homing Security Gateway User’s Manual 3.8.2.2 Outbound Click the Accounting Report function, and then select Outbound. There are three options

Página 131

Multi-Homing Security Gateway User’s Manual When LAN users connect to WAN service server through CS-1000, all of the Downstream / Upstream / First Pac

Página 132

Multi-Homing Security Gateway User’s Manual First Packet: The time record of the first packet that was sent to LAN user from WAN service server. Last

Página 133

Multi-Homing Security Gateway User’s Manual 3.8.2.3 Inbound Click the Accounting Report function, and then select Inbound. There are three options for

Página 134

Multi-Homing Security Gateway User’s Manual Duration: The time statistic record that started from the first packet and end to the last packet. Total T

Página 135

Multi-Homing Security Gateway User’s Manual Exporting Multi-Homing Security Gateway settings Step 1. Under Backup/Restore Configuration, click on the

Página 136

Multi-Homing Security Gateway User’s Manual When WAN host connect to LAN host through CS-1000, all of the Downstream/Upstream/First Packet/Last Pack

Página 137

Multi-Homing Security Gateway User’s Manual setup by the Administrator. How to use Statistics The Administrator can get the current network status fro

Página 138

Multi-Homing Security Gateway User’s Manual 3.8.3.2 Policy Statistics Entering the Statistics window The Statistics window displays the statistics of

Página 139

Multi-Homing Security Gateway User’s Manual 3.8.4 Status In this section, the device displays the status information about the Multi-Homing Security

Página 140

Multi-Homing Security Gateway User’s Manual 3.8.4.2 Authentication Entering the Auth Status window Click on Status in the menu bar, then click Authe

Página 141

Multi-Homing Security Gateway User’s Manual 3.8.4.3 ARP Table Entering the ARP Table window Click on Status in the menu bar, then click ARP Table bel

Página 142

Multi-Homing Security Gateway User’s Manual IP Address: the IP address of the LAN host computer MAC Address: MAC address of the LAN host comput

Página 143

Multi-Homing Security Gateway User’s Manual Importing Multi-Homing Security Gateway settings Under Backup/Restore Configuration, click on the Browse

Página 144

Multi-Homing Security Gateway User’s Manual Email Setting Step 1. Select Enable E-mail Alert Notification under E-Mail Setting. This function will ena

Página 145

Multi-Homing Security Gateway User’s Manual Dynamic Routing (RIPv2) Enable Dynamic Routing (RIPv2), CS-1000 will advertise an IP address pool to the

Página 146

Multi-Homing Security Gateway User’s Manual 3.1.5 Date/Time Synchronizing the Multi-Homing Security Gateway with the System Clock Administrator can

Página 147

Multi-Homing Security Gateway User’s Manual ÍÍ 3.1.6 Multiple Subnet NAT mode Multiple Subnet allows local port to set multiple subnet works and con

Página 148

Multi-Homing Security Gateway User’s Manual ÍÍ Multiple Subnet functions WAN Interface IP / Forwarding Mode: Display WAN Port IP address and Forward

Página 149

Multi-Homing Security Gateway User’s Manual Removing a Multiple Subnet Step 1: Find the IP address you want to delete and click Delete. Step 2: A co

Página 150

Multi-Homing Security Gateway User’s Manual Rev: 1.0 (April, 2006) Part No. EM-CS1000v1

Página 151

Multi-Homing Security Gateway User’s Manual Click System on the left side menu bar, then click Multiple Subnet below Configure menu. Enter Multiple Su

Página 152

Multi-Homing Security Gateway User’s Manual Modify a Multiple Subnet Routing Mode Step 1: Find the IP address you want to modify in Multiple Subnet

Página 153

Multi-Homing Security Gateway User’s Manual 3.1.7 Route Table In this section, the Administrator can add static routes for the networks. Entering the

Página 154

Multi-Homing Security Gateway User’s Manual Configure field. Step 2. In the Modify Static Route window, modify the necessary routing addresses. Step

Página 155

Multi-Homing Security Gateway User’s Manual ÍÍ Dynamic IP Address functions  Subnet: LAN network’s subnet  Netmask: LAN network’s netmask  Gat

Página 156

Multi-Homing Security Gateway User’s Manual Client IP Address Range 1: Enter the starting and the ending IP address dynamically assigning to DHCP clie

Página 157

Multi-Homing Security Gateway User’s Manual Click to link to the website selected on the left. Add Dynamic DNS settings Step 1. Click Add button. St

Página 158

Multi-Homing Security Gateway User’s Manual Remove Dynamic DNS Step 1. Find the item you want to change and click Remove. Step 2. A confirmation po

Página 159

Multi-Homing Security Gateway User’s Manual This odd situation occurs when there are servers in the DMZ network and they are bound to real IP addresse

Página 160

Multi-Homing Security Gateway User’s Manual Modifying a Host Table Step 1: In the Host Table window, find the policy to be modified and click the co

Página 161

Multi-Homing Security Gateway User’s Manual Table of Contents CHAPTER 1: INTRODUCTION ...

Página 162

Multi-Homing Security Gateway User’s Manual 3.1.12 Logout Step 1. Select this option to the device’s Logout the Multi-Homing Security Gateway. This

Página 163

Multi-Homing Security Gateway User’s Manual Configuring the Interface Settings Using the LAN Interface, the Administrator sets up the LAN network. The

Página 164 - 3.4.1 Outgoing

Multi-Homing Security Gateway User’s Manual WAN No: WAN port 1 or 2. Connect Mode: Display the current connection mode: PPPoE, Dynamic IP Address (C

Página 165

Multi-Homing Security Gateway User’s Manual For Dynamic IP Address (Cable Modem User): This option is for users who are automatically assigned an IP

Página 166

Multi-Homing Security Gateway User’s Manual For Static IP Address: This option is for users who are assigned a static IP Address from their ISP. Your

Página 167

Multi-Homing Security Gateway User’s Manual 3.2.3 DMZ The Administrator uses the DMZ Interface to set up the DMZ network. The DMZ network consists

Página 168 - 3.4.2 Incoming

Multi-Homing Security Gateway User’s Manual to be configured from a user on the Internet. Keep in mind that the device always requires a username and

Página 169

Multi-Homing Security Gateway User’s Manual ÍÍ Definition Name: Name of LAN network address. IP / Netmask: IP address and subnet mask of LAN network

Página 170

Multi-Homing Security Gateway User’s Manual Step 1. In the LAN window, locate the name of the network to be modified. Click the Modify option in its

Página 171

Multi-Homing Security Gateway User’s Manual information for the LAN network group appears on the screen. ÍÍ Definitions Name: Name of the LAN group.

Página 172

Multi-Homing Security Gateway User’s Manual 3.3.1.3 WAN ...

Página 173

Multi-Homing Security Gateway User’s Manual Step 5. Click OK to add the new group or click Cancel to discard changes. Modifying a LAN Group Step 1. I

Página 174

Multi-Homing Security Gateway User’s Manual Removing a LAN Group Step 1. In the LAN Group window, locate the group to be removed and click its corre

Página 175

Multi-Homing Security Gateway User’s Manual Step 1. Click WAN under the Address menu to enter the WAN window. The current setting information, such

Página 176

Multi-Homing Security Gateway User’s Manual Step 2. The Modify Address window will appear on the screen immediately. In the Modify Address window, fil

Página 177

Multi-Homing Security Gateway User’s Manual settings for the WAN network group(s) will appear on the screen. ÍÍ Definitions: Name: Name of the WAN

Página 178

Multi-Homing Security Gateway User’s Manual Modifying a WAN Group Step 1. In the WAN Group window, locate the network group to be modified and click

Página 179 - 3.5 Mail Security

Multi-Homing Security Gateway User’s Manual Removing a WAN Group Step 1. In the WAN Group window, locate the group to be removed and click its corresp

Página 180 - 3.5.1 Configure

Multi-Homing Security Gateway User’s Manual Step 3. Click OK to add the specified DMZ or click Cancel to discard changes. Modifying a DMZ Address: S

Página 181

Multi-Homing Security Gateway User’s Manual 3.3.1.6 DMZ Group Entering the DMZ Group window Click DMZ Group under the Address menu to enter the D

Página 182

Multi-Homing Security Gateway User’s Manual Step 4. Add members: Select the names to be added from the Available address list, and click the Add>&

Página 183 - 3.5.2 Anti-Spam

Multi-Homing Security Gateway User’s Manual 3.5.2.1 Setting ...

Página 184 - 3.5.2.1 Setting

Multi-Homing Security Gateway User’s Manual Removing a DMZ Group: Step 1. In the DMZ Group window, locate the group to be removed and click its cor

Página 185 - 3.5.2.2 Rule

Multi-Homing Security Gateway User’s Manual the pre-defined service and cannot be modified or removed. In the custom menu, users can define other TCP

Página 186

Multi-Homing Security Gateway User’s Manual 3.3.2.2 Custom Entering the Custom window Step 1. Click Custom under it. A window will appear with a table

Página 187

Multi-Homing Security Gateway User’s Manual Step 1. Click New Entry to add new services. Step 2. Click OK to accept editing, or click Cancel. Modif

Página 188

Multi-Homing Security Gateway User’s Manual 3.3.2.3 Group Accessing the Group window Step 1. Click Group under it. A window will appear with a table

Página 189

Multi-Homing Security Gateway User’s Manual Step 3. Enter the new group name in the group Name field. This will be the name referencing the created

Página 190

Multi-Homing Security Gateway User’s Manual Removing Service Groups In the Remove confirmation pop-up box, click OK to remove the selected service g

Página 191

Multi-Homing Security Gateway User’s Manual The following items are displayed in this window: Name: the name assigned to the schedule Configure:

Página 192

Multi-Homing Security Gateway User’s Manual Step 1. In the Schedule window, find the policy to be modified and click the corresponding Modify option i

Página 193 - 3.5.2.5 Training

Multi-Homing Security Gateway User’s Manual ÍÍ Definitions: Name: The name of the QoS you want to configure. WAN: Display WAN interface. Downstrea

Página 194

Multi-Homing Security Gateway User’s Manual Chapter 1: Introduction Thank you for purchasing new model of Planet’s Security Gateway CS-1000, a special

Página 195

Multi-Homing Security Gateway User’s Manual Step 2. Click the OK button to modify QoS Delete QoS Step 1. In the QoS window, find the QoS you want t

Página 196

Multi-Homing Security Gateway User’s Manual Step 2. Configure the LAN host or WAN host IP address that need to filter with QoS feature. Be aware th

Página 197

Multi-Homing Security Gateway User’s Manual Step 4. Enable the QoS rule in Outgoing or Incoming Policy. 3.3.5 Authentication By configuring the Auth

Página 198

Multi-Homing Security Gateway User’s Manual Authentication Port: The port number used for user login page. Generally, when user wants to access WA

Página 199 - 3.5.3.1 Setting

Multi-Homing Security Gateway User’s Manual Definitions: Name:The name of the Authentication you want to configure. Configure: Modify settings or

Página 200 - 3.5.3.2 Virus Mail

Multi-Homing Security Gateway User’s Manual Step 4. Create an Outgoing Policy rule to allow DNS protocol pass through first, then to create another O

Página 201 - 3.6.1 Setting

Multi-Homing Security Gateway User’s Manual  Password: show original password.  New Password: enter new password  Confirm Password: enter the ne

Página 202 - 3.6.2 Signature

Multi-Homing Security Gateway User’s Manual A window will appear with a table displaying current Auth Group settings. Adding Auth Group Step 1. I

Página 203

Multi-Homing Security Gateway User’s Manual Modifying Auth Group Step 1. In the Auth Group window, locate the Auth Group to be edited. Click its co

Página 204

Multi-Homing Security Gateway User’s Manual Removing Auth Group Step 1. In the Auth Group window, locate the Auth Group to be removed and click its

Página 205

Multi-Homing Security Gateway User’s Manual ♦ IDP: CS-1000 provides three kinds of the Signature to complete the intrusion detection system, user can

Página 206

Multi-Homing Security Gateway User’s Manual Definition  Enable RADIUS Server: Enable RADIUS Server Authentication.  RADIUS Server IP: Enter RA

Página 207 - 3.8.1.1 Traffic

Multi-Homing Security Gateway User’s Manual  POP3 Server Port: Enter POP3 Server Port. The default port is 110.  3.3.6 Content Blocking Conten

Página 208

Multi-Homing Security Gateway User’s Manual URL String: The domain name that is blocked to enter by Multi-Homing Security Gateway. Configure: To chang

Página 209 - 3.8.1.2 Event

Multi-Homing Security Gateway User’s Manual Removing a URL String policy Step 1. In the URL window, find the policy to be removed and click the corres

Página 210

Multi-Homing Security Gateway User’s Manual ÍÍ Step 4: Configure Outgoing Policy rule to enable Content Blocking Function. When the system detects

Página 211 - 3.8.1.3 Connection

Multi-Homing Security Gateway User’s Manual CS-1000 provides a feature that will auto detect the P2P program version. When it detects a new version P2

Página 212 - 3.8.1.4 Log Backup

Multi-Homing Security Gateway User’s Manual Extensions Block: To block specific extensions name of the files from web page. Step 3: After selecting

Página 213

Multi-Homing Security Gateway User’s Manual Step 4: Configure Outgoing Policy rule to enable Content Blocking Function. 3.3.7 Virtual Server The M

Página 214 - 3.8.2.1 Setting

Multi-Homing Security Gateway User’s Manual 3.3.7.1 Mapped IP Internal private IP addresses are translated through NAT (Network Address Translation).

Página 215 - 3.8.2.2 Outbound

Multi-Homing Security Gateway User’s Manual Modifying a Mapped IP Step 1. In the Mapped IP table, locate the Mapped IP you want to be modified and cl

Página 216

Multi-Homing Security Gateway User’s Manual 1.3 Multi-Homing Security Gateway Front View CS-1000 Front Panel LED Description PWR Power is supplied

Página 217

Multi-Homing Security Gateway User’s Manual 3.3.7.2 Virtual Server Virtual server is a one-to-many mapping technique, which maps a real IP address f

Página 218 - 3.8.2.3 Inbound

Multi-Homing Security Gateway User’s Manual Configure: To change the service configuration, click Configure to change the parameters; click Delete to

Página 219

Multi-Homing Security Gateway User’s Manual Removing a Virtual Server Step 1. Click the virtual server to be removed in the corresponding Virtual Se

Página 220 - 3.8.3 Statistic

Multi-Homing Security Gateway User’s Manual  Virtual Server Real IP: displays the WAN IP address assigned to the Virtual Server  Service (Port

Página 221 - 3.8.3.1 WAN Statistics

Multi-Homing Security Gateway User’s Manual Click OK to execute the change of the virtual server, or click Cancel to discard changes. NOTE: If the

Página 222 - 3.8.3.2 Policy Statistics

Multi-Homing Security Gateway User’s Manual 3.3.8 VPN The CS-1000 adopts VPN to set up safe and private network service, and combine the remote Authen

Página 223 - 3.8.4.1 Interface Status

Multi-Homing Security Gateway User’s Manual The fields in the IPSec Autokey window are:  Name: The VPN name to identify the VPN tunnel definition. Th

Página 224 - 3.8.4.2 Authentication

Multi-Homing Security Gateway User’s Manual WAN interface: Select WAN 1 or WAN 2 to be the WAN port of VPN connection. To Destination:  Remote Gat

Página 225 - 3.8.4.4 DHCP Clients

Multi-Homing Security Gateway User’s Manual  IPSec Lifetime: New keys will be generated whenever the lifetime of the old keys is exceeded. The Admin

Página 226

Multi-Homing Security Gateway User’s Manual  Uptime:Displays the connection time between PPTP Server and Client.  Configure:Click Modify to modify

Comentários a estes Manuais

Sem comentários