Watchguard Wireless Router Betriebsanweisung

Stöbern Sie online oder laden Sie Betriebsanweisung nach Vernetzung Watchguard Wireless Router herunter. Watchguard Wireless Router User guide Benutzerhandbuch

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 254
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen

Inhaltsverzeichnis

Seite 1 - User Guide

WatchGuard® Firebox® X Edge User GuideFirebox X Edge - Firmware Version 7.2 All Firebox X Edge Standard and Wireless Models

Seite 2 - End-User License Agreement

x WatchGuard Firebox X EdgeConfiguring Incoming Services ...89Configuring common services for incoming tr

Seite 3 - User Guide iii

Firebox X Edge Wireless Setup86 WatchGuard Firebox X Edge

Seite 4

User Guide 87CHAPTER 6 Configuring Firewall SettingsThe Firebox® X Edge uses services and other firewall options to control the traffic between the tr

Seite 5 - Guide Version: 7.2

Configuring Firewall Settings88 WatchGuard Firebox X EdgeIncoming and outgoing trafficTraffic that does not start in your trusted or optional network

Seite 6

Configuring Incoming ServicesUser Guide 89the trusted network. This section also has examples of how to use the optional network.Other sections show h

Seite 7 - Contents

Configuring Firewall Settings90 WatchGuard Firebox X EdgeConfiguring common services for incoming trafficThe Firebox X Edge includes standard service

Seite 8

Configuring Incoming ServicesUser Guide 91drop-down list adjacent to the service name, select Allow or Deny.In its default configuration, the Firebox

Seite 9 - User Guide ix

Configuring Firewall Settings92 WatchGuard Firebox X EdgeWelcomeThe first screen tells you about the wizard and the information you must have to comp

Seite 10

Configuring Incoming ServicesUser Guide 935 In the Service Name text box, type the name for your service.6 From the Protocol drop-down list, click TCP

Seite 11 - User Guide xi

Configuring Firewall Settings94 WatchGuard Firebox X Edge8 Click Add.Repeat the last three steps until you have a list of all the ports and protocols

Seite 12

Configuring Outgoing ServicesUser Guide 95Configuring Outgoing ServicesYou control traffic that starts in the trusted or optional network and goes to

Seite 13 - User Guide xiii

User Guide xiManaged VPN: With a Firebox III or Firebox X and WatchGuard System Manager 8.0 ...131S

Seite 14

Configuring Firewall Settings96 WatchGuard Firebox X Edge2 From the navigation bar, select Firewall > Outgoing.The Filter Outgoing Traffic page ap

Seite 15 - Network Security

Configuring Outgoing ServicesUser Guide 97• To allow only specified traffic from the trusted and optional network to get to the external network: - Se

Seite 16 - Connecting to the Internet

Configuring Firewall Settings98 WatchGuard Firebox X EdgeProtocols and PortsSet the protocol and ports to assign to this traffic rule.Traffic Directi

Seite 17 - Protocols

Configuring Outgoing ServicesUser Guide 995 In the Service Name text box, type the name for your service.6 From the Protocol drop-down list, click TCP

Seite 18 - Data packet

Configuring Firewall Settings100 WatchGuard Firebox X Edge9 Repeat the last three steps until you have a list of all the ports and protocols that thi

Seite 19 - IP Addresses

Services for the Optional NetworkUser Guide 1018 Click Add. The To box shows the IP addresses you added.Repeat the last three steps until all of the a

Seite 20 - Services

Configuring Firewall Settings102 WatchGuard Firebox X EdgeControlling traffic from the trusted to optional networkYou can restrict the traffic that s

Seite 21 - User Guide 7

Services for the Optional NetworkUser Guide 103Disabling traffic filtersTo allow traffic to flow from the optional network to the trusted network, you

Seite 22 - Firewalls

Configuring Firewall Settings104 WatchGuard Firebox X EdgeBlocking External SitesThe Blocked Sites feature helps prevent traffic from hostile sites f

Seite 23 - User Guide 9

Configuring Firewall OptionsUser Guide 105Configuring Firewall OptionsYou can use the Firewall Options page to configure rules that increase your netw

Seite 24 - 10 WatchGuard Firebox X Edge

xii WatchGuard Firebox X EdgeAllowing traffic through ZoneAlarm ...174Shutting down ZoneAlarm ...

Seite 25 - Installing the

Configuring Firewall Settings106 WatchGuard Firebox X EdgeDenying FTP access to the trusted network interfaceYou can configure the Firebox X Edge to

Seite 26 - Installation Requirements

Configuring Firewall OptionsUser Guide 107Configuring your SOCKS applicationConfigure the software using SOCKS on trusted network computers to connect

Seite 27 - About network addressing

Configuring Firewall Settings108 WatchGuard Firebox X EdgeLogging all allowed outgoing trafficIf you use the standard property settings, the Firebox

Seite 28 - 14 WatchGuard Firebox X Edge

Configuring Firewall OptionsUser Guide 109To change the MAC address of the external interface:1 Select the Enable override MAC address for the Externa

Seite 29 - Your TCP/IP Properties Table

Configuring Firewall Settings110 WatchGuard Firebox X Edge

Seite 30 - Macintosh OS 9

User Guide 111CHAPTER 7 Configuring Logging and System TimeA log file is a list of all the events that occur on the Firebox® X Edge. An event is one a

Seite 31 - Macintosh OS 10

Configuring Logging and System Time112 WatchGuard Firebox X EdgeCategoryThe type of message. For example, if the message came from an IP address or f

Seite 32 - 18 WatchGuard Firebox X Edge

Logging to a Syslog HostUser Guide 1132 From the navigation bar, click Logging > WSEP Logging.The WatchGuard Security Event Processor Logging page

Seite 33 - Connecting the Firebox X Edge

Configuring Logging and System Time114 WatchGuard Firebox X EdgeConfigure a Syslog host:1 To connect to the System Status page, type https:// in the

Seite 34 - 20 WatchGuard Firebox X Edge

Setting the System TimeUser Guide 115Setting the System TimeFor each log message, the Firebox® X Edge records the time from its system clock. The Edge

Seite 35 - User Guide 21

User Guide xiiiSide panels ...211About IEEE 802.11g/b Wireless ...

Seite 36 - 22 WatchGuard Firebox X Edge

Configuring Logging and System Time116 WatchGuard Firebox X Edge

Seite 37 - 255.255.255.0

User Guide 117CHAPTER 8 Configuring WebBlockerWebBlocker is an option for the Firebox X Edge that gives you control of the Web sites that are availabl

Seite 38 - 24 WatchGuard Firebox X Edge

Configuring WebBlocker118 WatchGuard Firebox X EdgeConfiguring Global WebBlocker SettingsThe first WebBlocker page in the Firebox® X Edge Web pages i

Seite 39 - User Guide 25

Configuring Global WebBlocker SettingsUser Guide 119To configure WebBlocker:1 To connect to the System Status page, type https:// in the browser addre

Seite 40 - JavaScript enabled

Configuring WebBlocker120 WatchGuard Firebox X Edge7 To make users authenticate for WebBlocker, select Require Web users to authenticate.If you use o

Seite 41 - Management Basics

Creating WebBlocker ProfilesUser Guide 121Creating WebBlocker ProfilesA WebBlocker profile is a set of restrictions you apply to groups of users on yo

Seite 42 - 28 WatchGuard Firebox X Edge

Configuring WebBlocker122 WatchGuard Firebox X Edge4 In the Profile Name field, type a familiar name.You use this name to identify the profile during

Seite 43 - Using the navigation bar

WebBlocker CategoriesUser Guide 123Drug CulturePictures or text advocating the illegal use of drugs for entertainment. This category includes substanc

Seite 44 - Configuration Overview

Configuring WebBlocker124 WatchGuard Firebox X Edgedevoted to conversations with partners about sexually transmitted diseases, pregnancy, and sexual

Seite 45 - Network Page

Allowing Certain Sites to Bypass WebBlockerUser Guide 125Allowing Certain Sites to Bypass WebBlockerWebBlocker can deny a Web site that is necessary f

Seite 46 - 32 WatchGuard Firebox X Edge

xiv WatchGuard Firebox X Edge

Seite 47 - Firebox Users Page

Configuring WebBlocker126 WatchGuard Firebox X Edge4 Do step 3 again for other Web sites. When you have no more Web sites to add, click Submit.To rem

Seite 48 - Administration Page

Allowing Internal Hosts to Bypass WebBlockerUser Guide 127Allowing Internal Hosts to Bypass WebBlockerYou can make a list of internal hosts that bypas

Seite 49 - Firewall Page

Configuring WebBlocker128 WatchGuard Firebox X Edge

Seite 50 - Logging Page

User Guide 129CHAPTER 9 Configuring Virtual Private NetworksYou use a virtual private network (VPN) to create secure connections between computers or

Seite 51 - WebBlocker Page

Configuring Virtual Private Networks130 WatchGuard Firebox X EdgeThe last part of this chapter includes Frequently Asked Questions and information on

Seite 52 - VPN Page

Managed VPN: With a Firebox III or Firebox X and WatchGuard System Manager 8.0User Guide 131your Edge to make more VPN tunnels, as described in “Enabl

Seite 53 - Wizards Page

Configuring Virtual Private Networks132 WatchGuard Firebox X Edgeuses DVCP to keep the VPN tunnel configuration. You use the name Managed VPN because

Seite 54 - Factory Default Settings

Managed VPN: With a Firebox III or Firebox X and WatchGuard System Manager 8.0User Guide 1333 Select the Enable VPN Manager Access check box.4 Type an

Seite 55 - User Guide 41

Configuring Virtual Private Networks134 WatchGuard Firebox X Edge10 Type the Shared Key.This is the shared key used to encrypt the connection between

Seite 56 - Using the Web browser

Managed VPN: With a Firebox III or Firebox X and WatchGuard System Manager 7.3User Guide 1355 Click Submit.Managed VPN: With a Firebox III or Firebox

Seite 57 - Remote restart

User Guide 1CHAPTER 1 Introduction to Network SecurityThank you for your purchase of the WatchGuard® Firebox® X Edge. This security device helps prote

Seite 58 - 44 WatchGuard Firebox X Edge

Configuring Virtual Private Networks136 WatchGuard Firebox X EdgeGetting information about the DVCP ServerYou must get this information from the admi

Seite 59 - Network Settings

Managed VPN: With a Firebox III or Firebox X and WatchGuard System Manager 7.3User Guide 137Setting up the Edge for Basic DVCPUse this procedure to ma

Seite 60 - 46 WatchGuard Firebox X Edge

Configuring Virtual Private Networks138 WatchGuard Firebox X EdgeSetting up VPN Manager on an Edge with dynamic external IP addressIf the IP address

Seite 61 - If your ISP uses DHCP

Managed VPN: With a Firebox III or Firebox X and WatchGuard System Manager 7.3User Guide 1397 From the navigation bar select VPN > Managed VPN.The

Seite 62 - 48 WatchGuard Firebox X Edge

Configuring Virtual Private Networks140 WatchGuard Firebox X Edge3 Select the Enable VPN Manager Access check box.4 Type the status passphrase and ty

Seite 63 - If your ISP uses PPPoE

Manual VPN: Setting Up Manual VPN TunnelsUser Guide 141• You must know the shared key (passphrase) for the tunnel. The same shared key must be used by

Seite 64 - 50 WatchGuard Firebox X Edge

Configuring Virtual Private Networks142 WatchGuard Firebox X EdgeSample VPN Address Information TableItem Description AssignExternal IP AddressThe IP

Seite 65 - Advanced PPPoE Settings

Manual VPN: Setting Up Manual VPN TunnelsUser Guide 143To create Manual VPN tunnels on your Firebox X Edge1 To connect to the System Status page, type

Seite 66 - 52 WatchGuard Firebox X Edge

Configuring Virtual Private Networks144 WatchGuard Firebox X Edge1 authenticates the two sides and creates a key management security association to p

Seite 67 - User Guide 53

Manual VPN: Setting Up Manual VPN TunnelsUser Guide 145NOTE NOTEIf your Edge’s external interface has a private IP address instead of a public IP

Seite 68 - 54 WatchGuard Firebox X Edge

Introduction to Network Security2 WatchGuard Firebox X EdgeAbout NetworksA network is a group of computers and other devices that are con-nected to e

Seite 69 - User Guide 55

Configuring Virtual Private Networks146 WatchGuard Firebox X Edgehave a public IP address. If that is not possible, use this section for more informa

Seite 70

Manual VPN: Setting Up Manual VPN TunnelsUser Guide 147name, and it must use this same public IP address as the domain name in its Phase 1 setup.Phase

Seite 71 - User Guide 57

Configuring Virtual Private Networks148 WatchGuard Firebox X Edge7 Click Submit.VPN Keep AliveTo keep the VPN tunnel open when there are no connectio

Seite 72 - 58 WatchGuard Firebox X Edge

Viewing VPN StatisticsUser Guide 1492 From the navigation bar, select VPN > Keep Alive.The VPN Keep Alive page appears. 3 Type the IP address of an

Seite 73 - Enabling the optional network

Configuring Virtual Private Networks150 WatchGuard Firebox X Edgethe devices cannot be made unless the two devices know how to find each other. You c

Seite 74 - 60 WatchGuard Firebox X Edge

Frequently Asked QuestionsUser Guide 151Is the Firebox X Edge compatible with WatchGuard System Manager?Yes. The default Firebox X Edge configuration

Seite 75

Configuring Virtual Private Networks152 WatchGuard Firebox X Edge

Seite 76 - 62 WatchGuard Firebox X Edge

User Guide 153CHAPTER 10 Configuring the MUVPN ClientMobile User VPN lets remote users connect to your Firebox® X Edge’s private network through a sec

Seite 77 - Making Static Routes

Configuring the MUVPN Client154 WatchGuard Firebox X Edgeinclude ZoneAlarm. The use of ZoneAlarm is optional. Other than ZoneAlarm, the two packages

Seite 78 - 64 WatchGuard Firebox X Edge

Enabling MUVPN for Edge UsersUser Guide 155Wireless Network” on page 176 for information about how to make the wireless computers use MUVPN on the Edg

Seite 79 - Viewing Network Statistics

ProtocolsUser Guide 3Digital Subscriber Line (DSL) Internet connectivity, unlike cable modem-based service, gives the user dedicated bandwidth. Howeve

Seite 80 - Create a DynDNS.org account

Configuring the MUVPN Client156 WatchGuard Firebox X EdgePreferredIf the virtual adapter is in use or it is not available, the mobile user does not u

Seite 81 - User Guide 67

Enabling MUVPN for Edge UsersUser Guide 1578 Set MUVPN key expiration in kilobytes or hours. The default values are 8192 KB and 24 hours.9 Select Mobi

Seite 82 - 68 WatchGuard Firebox X Edge

Configuring the MUVPN Client158 WatchGuard Firebox X EdgeConfiguring the Firebox for MUVPN clients using a Pocket PCTo create a MUVPN tunnel between

Seite 83 - User Guide 69

Preparing Remote Computers for MUVPNUser Guide 159 - At the prompt, save the .wgx file to your computer.Give these two files to the remote userGive th

Seite 84 - Using the Network page

Configuring the MUVPN Client160 WatchGuard Firebox X Edge• No other IPSec VPN client software can be on the computer. Remove any other software from

Seite 85

Preparing Remote Computers for MUVPNUser Guide 1613 Click the Services tab and click Add.4 Select Remote Access Services and click OK.5 Type the path

Seite 86 - 72 WatchGuard Firebox X Edge

Configuring the MUVPN Client162 WatchGuard Firebox X Edge7 Click the WINS Address tab, type the IP address of your WINS server in the applicable fiel

Seite 87 - DNS settings

Preparing Remote Computers for MUVPNUser Guide 1634 Make sure these components are installed and enabled: - Internet Protocol (TCP/IP) - File and Prin

Seite 88 - Dialup settings

Configuring the MUVPN Client164 WatchGuard Firebox X EdgeFrom the connection window Networking tab:1 Select the Internet Protocol (TCP/IP) component

Seite 89 - Wireless Setup

Preparing Remote Computers for MUVPNUser Guide 1653 Double-click the connection you use to get Internet access.The connection window appears.4 Click P

Seite 90 - How Wireless Networking Works

Introduction to Network Security4 WatchGuard Firebox X EdgeHow Information Travels on the InternetThe data that you send through the Internet is cut

Seite 91 - Wireless Security Options

Configuring the MUVPN Client166 WatchGuard Firebox X EdgeConfiguring the WINS and DNS settingsThe remote computer must be able to connect to the WINS

Seite 92 - 78 WatchGuard Firebox X Edge

Installing and Configuring the MUVPN ClientUser Guide 167Installing and Configuring the MUVPN Client NOTETo install and configure the MUVPN client, y

Seite 93 - Configuring basic settings

Configuring the MUVPN Client168 WatchGuard Firebox X Edge12 The InstallShield wizard looks for a user profile. Use the Browse button to find and sele

Seite 94 - Firebox X Edge Wireless

Connecting and Disconnecting the MUVPN ClientUser Guide 1699 Click Yes to delete the security policy.The InstallShield Wizard window appears.10 Select

Seite 95 - Security Settings

Configuring the MUVPN Client170 WatchGuard Firebox X EdgeThe MUVPN Security Policy is not active. This icon can appear if the Windows operating syste

Seite 96 - Open system authentication

Connecting and Disconnecting the MUVPN ClientUser Guide 171The MUVPN client started one or more secure MUVPN tunnels. The green bar on the right of th

Seite 97 - WPA-PSK authentication

Configuring the MUVPN Client172 WatchGuard Firebox X Edge3 Right-click the ZoneAlarm icon shown at right.4 Select Shutdown ZoneAlarm.The ZoneAlarm wi

Seite 98 - Configuring the wireless mode

The ZoneAlarm Personal FirewallUser Guide 173tion. The monitor records the information that appears in this win-dow during the phase 1 IKE negotiation

Seite 99 - User Guide 85

Configuring the MUVPN Client174 WatchGuard Firebox X EdgeAllowing traffic through ZoneAlarmWhen a software application tries to get access through th

Seite 100 - 86 WatchGuard Firebox X Edge

The ZoneAlarm Personal FirewallUser Guide 175Here is a list of some programs that must go through the ZoneAlarm personal firewall when you use their a

Seite 101 - Settings

IP AddressesUser Guide 5IP AddressesTo send mail to a person, you must first know the person’s street address. When a computer connects to the Interne

Seite 102 - About This Chapter

Configuring the MUVPN Client176 WatchGuard Firebox X Edge NOTEThe Remove Shared Component window can appear. During the initial installation of Zone

Seite 103 - Configuring Incoming Services

Tips for Configuring the Pocket PCUser Guide 177The wireless MUVPN client cannot connect to the Internet, the computers on the optional network, or an

Seite 104 - Configuring Firewall Settings

Configuring the MUVPN Client178 WatchGuard Firebox X EdgeHere are some configuration tips for the Pocket PC.Phase 1 configuration of the Pocket PC’s

Seite 105 - User Guide 91

Troubleshooting TipsUser Guide 179• The remote user’s virtual IP address is configured in the Firebox User account settings, on the MUVPN tab. The vir

Seite 106 - 92 WatchGuard Firebox X Edge

Configuring the MUVPN Client180 WatchGuard Firebox X Edge4 Select Shutdown ZoneAlarm.The ZoneAlarm dialog box appears.5 Click Yes.I must enter my net

Seite 107 - User Guide 93

Troubleshooting TipsUser Guide 181How do I map a network drive?Because of a Windows operating system limitation, mapped network drives must be mapped

Seite 108 - 94 WatchGuard Firebox X Edge

Configuring the MUVPN Client182 WatchGuard Firebox X Edge

Seite 109 - Configuring Outgoing Services

User Guide 183CHAPTER 11 Managing the Firebox and User AccountsThe Firebox® X Edge includes tools you can use to manage your net-work and your users.

Seite 110 - 96 WatchGuard Firebox X Edge

Managing the Firebox and User Accounts184 WatchGuard Firebox X Edge NOTEOnly sessions from computers on the Edge’s trusted or optional network to co

Seite 111 - User Guide 97

Seeing Current Sessions and UsersUser Guide 185• The time between the last packet and the session expiration is known as the idle time. If you set the

Seite 112 - 98 WatchGuard Firebox X Edge

ii WatchGuard Firebox X EdgeNotice to UsersInformation in this guide is subject to change without notice. Companies, names, and data used in examples

Seite 113 - User Guide 99

Introduction to Network Security6 WatchGuard Firebox X EdgeAbout PPPoESome ISPs assign their IP addresses through Point-to-Point Protocol over Ethern

Seite 114

Managing the Firebox and User Accounts186 WatchGuard Firebox X Edge• Admin Level -- You can set the user permissions to Full, None, or Read-only. For

Seite 115 - 10 Click Submit

About User AuthenticationUser Guide 187About User AuthenticationThe Firebox® X Edge uses advanced authentication options to increase network security.

Seite 116

Managing the Firebox and User Accounts188 WatchGuard Firebox X EdgeThis includes dialog boxes used by wizards, and the dialog box used to log in to t

Seite 117 - Disabling traffic filters

About User AuthenticationUser Guide 189• Require User Authentication – You must select this check box to use the authentication options.• External Net

Seite 118 - Blocking External Sites

Managing the Firebox and User Accounts190 WatchGuard Firebox X EdgeConfiguring MUVPN client settingsThe MUVPN client settings apply to all MUVPN conn

Seite 119 - Configuring Firewall Options

Adding or Editing a User AccountUser Guide 191time limits on this access. You can also apply a WebBlocker profile to the user account and configure th

Seite 120

Managing the Firebox and User Accounts192 WatchGuard Firebox X Edge7 In the Password field, type a password with a minimum of eight characters.Mix ei

Seite 121 - Disabling SOCKS on the Edge

Adding or Editing a User AccountUser Guide 193Creating a read-only administrative accountYou can create a local user account with access to view Fireb

Seite 122 - 2 Click Submit

Managing the Firebox and User Accounts194 WatchGuard Firebox X EdgeMake sure you keep the administrator name and password in a safe location. You mus

Seite 123 - 3 Click Submit

Adding or Editing a User AccountUser Guide 1953 Find the session in Active Sessions list. Click the Close button. To end all sessions, click the Close

Seite 124

PortsUser Guide 7Some services are necessary, but each service you add to your secu-rity policy can also add a security risk. To send and receive data

Seite 125 - Configuring Logging

Managing the Firebox and User Accounts196 WatchGuard Firebox X EdgeAbout Seat LicensesThe Firebox® X Edge is enabled with a specified number, or “poo

Seite 126

Selecting HTTP or HTTPS for ManagementUser Guide 197puter tries to connect to the external network without authenticating, the Edge does not allow the

Seite 127 - Logging to a Syslog Host

Managing the Firebox and User Accounts198 WatchGuard Firebox X EdgeIf you select this check box, you must use http:// in the browser's address b

Seite 128

Updating the FirmwareUser Guide 1992 From the navigation bar, select Administration > VPN Manager Access.The VPN Manager Access page appears.3 Sele

Seite 129 - Setting the System Time

Managing the Firebox and User Accounts200 WatchGuard Firebox X Edgeupdate on the Firebox X Edge automatically when you start it on a Windows computer

Seite 130

Activating Upgrade OptionsUser Guide 201You must first download the Software Update file, which is a small Zip file.1 Extract the “wgrd” file from the

Seite 131 - WebBlocker

Managing the Firebox and User Accounts202 WatchGuard Firebox X Edge2 Type your LiveSecurity Service user name and password in the fields provided.3 C

Seite 132 - Configuring WebBlocker

Enabling the Model Upgrade OptionUser Guide 203Upgrade optionsUser licensesA seat license upgrade allows more connections between the trusted network

Seite 133 - User Guide 119

Managing the Firebox and User Accounts204 WatchGuard Firebox X EdgeConfiguring Additional OptionsSome Firebox® X Edge options are included with your

Seite 134 - 9 Click Submit

Viewing the Configuration FileUser Guide 205

Seite 135 - Creating WebBlocker Profiles

Introduction to Network Security8 WatchGuard Firebox X EdgeFirewallsA firewall divides your internal network from the Internet to decrease risk from

Seite 136 - WebBlocker Categories

Managing the Firebox and User Accounts206 WatchGuard Firebox X Edge

Seite 137 - User Guide 123

User Guide 207APPENDIX A Firebox X Edge HardwareThe WatchGuard® Firebox® X Edge is a firewall for small organizations and branch offices. The WatchGua

Seite 138

208 WatchGuard Firebox X Edge• LiveSecurity® Service activation card• Hardware Warranty Card• AC adapter (12 V)• Power cable clip, to attach to the c

Seite 139 - Web server

Hardware DescriptionUser Guide 209Hardware DescriptionThe Firebox® X Edge has a simple hardware architecture. All indicator lights appear on the front

Seite 140 - Blocking Additional Web Sites

210 WatchGuard Firebox X EdgeF/OShows a WAN failover. The indicator light is green when there is a WAN failover from WAN1 to WAN2. The indicator ligh

Seite 141 - User Guide 127

Hardware DescriptionUser Guide 211Rear viewSerial port (DB9)Use the serial port to connect an external modem to the Edge.Ethernet interfaces 0 through

Seite 142

212 WatchGuard Firebox X EdgeAbout IEEE 802.11g/b WirelessIn general, RF power and signal bandwidth create a maximum limit on the rate that data can

Seite 143 - Private Networks

About IEEE 802.11g/b WirelessUser Guide 213Signal strength (Watts)The signal strength is set by these factors:• Power of the RF signal that is sent an

Seite 144 - What You Need to Create a VPN

214 WatchGuard Firebox X EdgeThe signal attenuation caused by multi-path reflections is the result of how you adjust the antenna. When the receiver i

Seite 145 - WatchGuard System Manager 8.0

About IEEE 802.11g/b WirelessUser Guide 215cent. When a different modulation scheme is selected, the data rate changes.

Seite 146

Firebox® X Edge and Your NetworkUser Guide 9 Firewalls can be in the form of hardware or software. They can prevent unauthorized Internet users from a

Seite 147 - The Managed VPN page appears

216 WatchGuard Firebox X Edge

Seite 148

User Guide 217APPENDIX B Legal NotificationsCopyright, Trademark, and Patent InformationCopyright© 1998 - 2005 WatchGuard Technologies, Inc. All right

Seite 149 - 5 Click Submit

218 WatchGuard Firebox X Edge 3. All advertising materials mentioning features or use of this software must display the following acknowledgment: &qu

Seite 150

Copyright, Trademark, and Patent InformationUser Guide 2194. If you include any Windows specific code (or a derivative thereof) from the apps director

Seite 151 - User Guide 137

220 WatchGuard Firebox X EdgeCertifications and NoticesFCC CertificationThis appliance has been tested and found to comply with limits for a Class A

Seite 152

Certifications and NoticesUser Guide 221CANADA RSS-210The term “IC:” before the radio certification number only signifies that Industry of Canada tech

Seite 153

222 WatchGuard Firebox X EdgeTaiwanese Notices

Seite 154 - What you need for Manual VPN

Declaration of ConformityUser Guide 223Declaration of Conformity

Seite 155 - User Guide 141

224 WatchGuard Firebox X EdgeLimited Hardware WarrantyThis Limited Hardware Warranty (the "Warranty") applies to the enclosed Firebox hardw

Seite 156

Limited Hardware WarrantyUser Guide 225THE USE OF OR INABILITY TO USE THE PRODUCT, EVEN IF WATCHGUARD HAS BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMA

Seite 157 - Phase 1 settings

Introduction to Network Security10 WatchGuard Firebox X Edgework. The Edge connects to a cable modem, DSL modem, or ISDN router. The Web-based user i

Seite 158

226 WatchGuard Firebox X Edge

Seite 159 - User Guide 145

User Guide 227Symbols.wgx filesdescribed 154distributing 158viewing available 33AAdd Gateway page 143Add Route page 64Administration pagedescribed 34s

Seite 160

228 WatchGuard Firebox X EdgeCIDR notation 64, 94, 100, 147Classless Inter Domain Routing 64, 94, 100, 147Client for Microsoft Networks, installing 1

Seite 161 - Phase 2 settings

User Guide 229DVCP Server, getting information on 136DVCP, described 131, 135Dynamic DNS client page 67dynamic DNS service, registering with 66–67Dyna

Seite 162 - VPN Keep Alive

230 WatchGuard Firebox X Edgeadministrator account 193and SOCKS 106authenticating to 187back panel 211cabling 19configuring as DHCP server 54describe

Seite 163 - Frequently Asked Questions

User Guide 231Iincoming service, creating custom 91, 92, 97indicator lights 209installationdetermining TCP/IP settings 13disabling TCP/IP proxy settin

Seite 164 - VPNs on my Firebox X Edge?

232 WatchGuard Firebox X Edgeviewing status of 36Logging page 11 2described 36subpages of 36–37MManaged VPN page 133, 137, 139Managed VPNsand VPN Man

Seite 165 - System Manager?

User Guide 233WINS and DNS servers 160Nnavigation bar 29netmask 14Network Address Translation (NAT), and the Edge 14, 145network addressing, described

Seite 166

234 WatchGuard Firebox X EdgePpackage contents 11packets, described 4pagesAdd Gateway 143Add Route 64Administration 34Allowed Sites 125Blocked Sites

Seite 167 - MUVPN Client

User Guide 235passphrases, described 191, 195path-loss 213Perfect Forward Secrecy 147Phase 1 settings 143, 144Phase 2 settings 147Pocket PCscreating M

Seite 168

User Guide 11CHAPTER 2 Installing the Firebox X EdgeTo install the WatchGuard® Firebox® X Edge in your network, you must complete these steps:• Ident

Seite 169 - Enabling MUVPN for Edge Users

236 WatchGuard Firebox X Edgeresetting to factory default 41Restrict Access by Hardware Address check box 84routesconfiguring static 63viewing 31Rout

Seite 170 - Configuring the MUVPN Client

User Guide 237and VPNs 149described 13obtaining 150static routesmaking 63removing 64subnet mask 14SurfControl 117Syslog host, logging to 113Syslog Log

Seite 171 - 11 Click Submit

238 WatchGuard Firebox X EdgeUUDP (User Datagram Protocol) 3Uniform Resource Locator (URL) 6updating firmware 199updating software 39upgrade options,

Seite 172 - Get the user’s .wgx file

User Guide 239Keep Alive feature 148special considerations for 130troubleshooting connections 150viewing statistics 149what you need to create 130Wwal

Seite 173 - User Guide 159

240 WatchGuard Firebox X EdgeWindows XPinstalling File and Printer Sharing for Microsoft Networks on 165installing Internet Protocol (TCP/IP) Network

Seite 174 - Windows NT setup

Installing the Firebox X Edge12 WatchGuard Firebox X Edge• A power cable clipUse this clip to attach the cable to the side of the Edge. It decreases

Seite 175 - The Network window appears

Identifying Your Network SettingsUser Guide 13• An Internet connection.The external network connection can be a cable or DSL modem with a 10/100BaseT

Seite 176 - Windows 2000 setup

Installing the Firebox X Edge14 WatchGuard Firebox X Edge•DHCP: A dynamic IP address is an IP address that an ISP lets you use (lease). With DHCP, y

Seite 177 - User Guide 163

Identifying Your Network SettingsUser Guide 15Your TCP/IP Properties TableTCP/IP Property ValueIP Address . . .Subnet Mask .

Seite 178 - Windows XP setup

End-User License AgreementUser Guide iiiAGREEMENT. Nothing in this AGREEMENT constitutes a waiver of our rights under U.S. copyright law or any other

Seite 179 - Networks

Installing the Firebox X Edge16 WatchGuard Firebox X EdgeTo find your TCP/IP properties, use the instructions for your com-puter operating system.Mic

Seite 180

Disabling the HTTP Proxy SettingUser Guide 17Macintosh OS 101 Click the Apple menu > System Preferences > Network > TCP/IP.2 Record the valu

Seite 181 - Installing the MUVPN client

Installing the Firebox X Edge18 WatchGuard Firebox X EdgeDisable the HTTP proxy in Netscape or Mozilla1 Open the browser software.2 Click Edit > P

Seite 182 - Uninstalling the MUVPN client

Connecting the Firebox X EdgeUser Guide 19Connecting the Firebox X EdgeUse this procedure to connect your Firebox® X Edge Ethernet and power cables:1

Seite 183 - The MUVPN client icon

Installing the Firebox X Edge20 WatchGuard Firebox X Edge6 Find the AC adapter supplied with your Edge. Connect the AC adapter to the Edge and to a p

Seite 184

Connecting the Firebox X EdgeUser Guide 21For more information, see the FAQ:www.watchguard.com/support/AdvancedFaqs/edge_seatlicense.aspLicense upgrad

Seite 185 - User Guide 171

Installing the Firebox X Edge22 WatchGuard Firebox X EdgeSetting Your Computer to Connect to the Edge Before you can use the Quick Setup Wizard, conf

Seite 186 - Using Connection Monitor

Setting Your Computer to Connect to the EdgeUser Guide 23If your computer has a static IP address This procedure configures a computer with the Window

Seite 187 - 2 Select Connection Monitor

Installing the Firebox X Edge24 WatchGuard Firebox X EdgeRunning the Quick Setup WizardAfter you start your computer and type https://192.168.111.1 i

Seite 188

Registering and Activating LiveSecurity ServiceUser Guide 25The Quick Setup Wizard is completeThe Quick Setup Wizard supplies a link to the WatchGuard

Seite 189 - Uninstalling ZoneAlarm

iv WatchGuard Firebox X EdgeOTHERWISE, WITH RESPECT TO ANY NONCONFORMANCE OR DEFECT IN THE SOFTWARE PRODUCT (INCLUDING, BUT NOT LIMITED TO, ANY IMPLI

Seite 190

Installing the Firebox X Edge26 WatchGuard Firebox X EdgeYou must have a subscription to the LiveSecurity service before you can get license keys for

Seite 191 - User Guide 177

User Guide 27CHAPTER 3 Configuration and Management BasicsWhen you configure a WatchGuard® Firebox® X Edge, you create fire-wall rules to apply the se

Seite 192

Configuration and Management Basics28 WatchGuard Firebox X EdgeNavigating the Configuration PagesYou use the configuration pages for all procedures t

Seite 193 - MUVPN client

Navigating the Configuration PagesUser Guide 29For example, if you use Internet Explorer to configure your Firebox:1 Start Internet Explorer.2 Click F

Seite 194 - 5 Click Yes

Configuration and Management Basics30 WatchGuard Firebox X EdgeConfiguration OverviewYou use the Firebox® X Edge system configuration pages to set up

Seite 195 - 4 Click OK

Configuration OverviewUser Guide 31Network PageThe Network page shows the configuration of each network inter-face. It also shows any configured route

Seite 196

Configuration and Management Basics32 WatchGuard Firebox X Edge• Optional: Use this page to configure the Edge optional network interface. Select the

Seite 197 - Managing the Firebox

Configuration OverviewUser Guide 33Firebox Users PageThe Firebox Users page shows statistics on the active sessions and local user accounts. It also h

Seite 198 - Active Sessions

Configuration and Management Basics34 WatchGuard Firebox X EdgeThe Firebox Users page contains these links to other configuration pages:• Settings: U

Seite 199 - Stopping a session

Configuration OverviewUser Guide 35• View Configuration: Shows the Edge configuration file in a text format.Firewall PageThe Firewall page shows the i

Seite 200 - Deleting a user account

Abbreviations Used in this GuideUser Guide vFirmware Version: 7.2 Part Number: 1776-0000 Guide Version: 7.2Abbreviations Used in this Guide3DES Triple

Seite 201 - About User Authentication

Configuration and Management Basics36 WatchGuard Firebox X Edge• Outgoing: Make one or more security services for outgoing traffic to the external ne

Seite 202 - The Settings page appears

Configuration OverviewUser Guide 37• WSEP Log: Configure the WatchGuard Log Server to accept the log messages from your Edge.• Syslog Log: Configure t

Seite 203 - User Guide 189

Configuration and Management Basics38 WatchGuard Firebox X Edge• Allowed Sites: Make a list of Web sites that you can browse to when WebBlocker prope

Seite 204

Updating Firebox X Edge SoftwareUser Guide 39Wizards PageThe Wizards page shows the wizards you can use to help you set up Firebox X Edge features:• S

Seite 205 - User Guide 191

Configuration and Management Basics40 WatchGuard Firebox X Edgedownload completes, use the procedure below to update your Fire-box software:1 To conn

Seite 206

Factory Default SettingsUser Guide 41give static addresses to computers in the trusted network with IP addresses in the 192.168.111.2–192.168.111.254

Seite 207 - The Administrator account

Configuration and Management Basics42 WatchGuard Firebox X EdgeFollow these steps to set the Firebox to the factory default settings:1 Disconnect the

Seite 208

Restarting the FireboxUser Guide 432 Click Reboot.Disconnecting the power supplyDisconnect the Firebox power supply. After a minimum of 10 sec-onds, c

Seite 209 - User Guide 195

Configuration and Management Basics44 WatchGuard Firebox X Edge

Seite 210 - About Seat Licenses

User Guide 45CHAPTER 4 Changing Your Network SettingsA primary component of WatchGuard® Firebox® X Edge setup is the configuration of the network inte

Seite 211 - 4 Click Submit

vi WatchGuard Firebox X EdgeADDRESS:505 Fifth Avenue SouthSuite 500Seattle, WA 98104SUPPORT: www.watchguard.com/[email protected]. and

Seite 212 - Changing the HTTP Server Port

Changing Your Network Settings46 WatchGuard Firebox X Edge4 Follow the instructions on the screens. The Network Setup Wizard has these steps:WelcomeT

Seite 213 - Updating the Firmware

Configuring the External NetworkUser Guide 47Firebox receives an external IP address each time it connects to the ISP network. It can be the same IP a

Seite 214 - Method 2

Changing Your Network Settings48 WatchGuard Firebox X EdgeIf your ISP uses static IP addressesIf your ISP uses static IP addresses, you must enter th

Seite 215 - Activating Upgrade Options

Configuring the External NetworkUser Guide 492 From the Configuration Mode drop-down list, select Manual Configuration.3 Type the IP address, subnet m

Seite 216 - The Upgrade page appears

Changing Your Network Settings50 WatchGuard Firebox X Edge2 From the Configuration Mode drop-down list, select PPPoE Client.3 Type the name and pass

Seite 217 - Upgrade options

Configuring the External NetworkUser Guide 515 Select the Link Speed to set automatically, or select to assign the link speed statically at 10 Mbps Ha

Seite 218

Changing Your Network Settings52 WatchGuard Firebox X EdgeUse LCP echo request to detect lost PPPoE linkWhen you enable this check box, the Edge send

Seite 219 - User Guide 205

Configuring the Trusted NetworkUser Guide 53Configuring the Trusted NetworkYou must configure your trusted network manually if you do not use the Netw

Seite 220

Changing Your Network Settings54 WatchGuard Firebox X EdgeThen, you must use https://10.0.0.1 in your browser address bar to connect to the Edge’s Sy

Seite 221 - Hardware

Configuring the Trusted NetworkUser Guide 55the computer an IP address. A factory default Firebox has the DHCP Server option for the trusted interface

Seite 222

User Guide viiContentsCHAPTER 1 Introduction to Network Security ...1Network Security ...

Seite 223 - Hardware Description

Changing Your Network Settings56 WatchGuard Firebox X Edge2 Click the DHCP Reservations button.The DHCP Address Reservations page appears.3 Type a st

Seite 224

Configuring the Trusted NetworkUser Guide 57To configure the Firebox as a DHCP Relay Agent for the trusted interface:1 Use your browser to connect to

Seite 225 - Side panels

Changing Your Network Settings58 WatchGuard Firebox X EdgeEthernet hubs or switches with RJ-45 connectors to connect more than seven computers. It is

Seite 226 - About IEEE 802.11g/b Wireless

Configuring the Optional NetworkUser Guide 59Enabling the optional network1 To connect to the System Status page, type https:// in the browser address

Seite 227 - Antenna directional gain

Changing Your Network Settings60 WatchGuard Firebox X Edge2 From the navigation bar, select Network > Optional.The Optional Network Configuration

Seite 228 - Channel bandwidth

Configuring the Optional NetworkUser Guide 612 Click the DHCP Reservations button.The DHCP Address Reservations page appears.3 Type a static IP addres

Seite 229 - User Guide 215

Changing Your Network Settings62 WatchGuard Firebox X EdgeTo configure the Firebox as a DHCP Relay Agent for the optional interface:1 Use your browse

Seite 230

Making Static RoutesUser Guide 63than one computer to the optional interface, use a 10/100 BaseT Ethernet hub or switch with RJ-45 connectors. It is n

Seite 231 - Legal Notifications

Changing Your Network Settings64 WatchGuard Firebox X Edge3 Click Add.The Add Route page appears.4 From the Type drop-down list, select Host or Netwo

Seite 232

Viewing Network StatisticsUser Guide 65Viewing Network StatisticsThe Firebox® X Edge Network Statistics page shows information about performance. Netw

Seite 233 - User Guide 219

viii WatchGuard Firebox X EdgeStatic addresses, DHCP, and PPPoE ...13Finding your TCP/IP properties ...

Seite 234 - Certifications and Notices

Changing Your Network Settings66 WatchGuard Firebox X EdgeRegistering with the Dynamic DNS ServiceYou can register the external IP address of the Fir

Seite 235 - User Guide 221

Registering with the Dynamic DNS ServiceUser Guide 672 From the navigation bar, select Network > Dynamic DNS.The Dynamic DNS client page appears.3

Seite 236 - Taiwanese Notices

Changing Your Network Settings68 WatchGuard Firebox X EdgeNOTE NOTEThe Firebox gets the IP address of members.dyndns.org when it connects to a ti

Seite 237 - Declaration of Conformity

Enabling the WAN Failover OptionUser Guide 69• If the WAN1 interface and the WAN2 interface stop, the Firebox tries the two interfaces until it makes

Seite 238 - Limited Hardware Warranty

Changing Your Network Settings70 WatchGuard Firebox X EdgeIdentify the computers to connectType the IP addresses of computers to which the Edge can c

Seite 239 - User Guide 225

Enabling the WAN Failover OptionUser Guide 716 Type the maximum number of pings before time-out in the related field. If you are using a broadband con

Seite 240

Changing Your Network Settings72 WatchGuard Firebox X EdgeIf you selected PPPoESee “If your ISP uses PPPoE” on page 49 for information on PPPoE setti

Seite 241

Enabling the WAN Failover OptionUser Guide 737 To enable modem and PPP debug trace, select the related check box. DNS settingsIf your dialup ISP does

Seite 242

Changing Your Network Settings74 WatchGuard Firebox X EdgeDialup settings1 In the Dial up time-out field, type the number of seconds before time-out

Seite 243

User Guide 75CHAPTER 5 Firebox X Edge Wireless SetupThe Firebox® X Edge Wireless protects the computers that are con-nected to your network and it pr

Seite 244

User Guide ixSetting trusted network DHCP address reservations ...55Configuring the trusted network for DHCP relay ...56

Seite 245

Firebox X Edge Wireless Setup76 WatchGuard Firebox X Edge• Configure the Wireless Access Point (WAP)• Configure the wireless card on your computerHow

Seite 246

Using the Wireless Network WizardUser Guide 772 Double-click Wireless Network Connection.The Wireless Network Connection dialog box appears.3 Click th

Seite 247

Firebox X Edge Wireless Setup78 WatchGuard Firebox X EdgeArea Network (WLAN) a level of security and privacy that compares well to a wired Local Area

Seite 248

Setting up the Wireless Access PointUser Guide 79Setting up the Wireless Access PointTo make sure that your network is secure, WatchGuard disables the

Seite 249

Firebox X Edge Wireless Setup80 WatchGuard Firebox X EdgeNOTE NOTEWhen you complete the wireless configuration, restart your Firebox X Edge Wirel

Seite 250

Setting up the Wireless Access PointUser Guide 81requirements of wireless clients. The firewall properties control the traffic between these two netwo

Seite 251

Firebox X Edge Wireless Setup82 WatchGuard Firebox X Edgethe default authentication method for some versions of Microsoft windows, it is not recommen

Seite 252

Setting up the Wireless Access PointUser Guide 832 If you typed more than one key, click the key to use as the default key from the Key Index drop-dow

Seite 253

Firebox X Edge Wireless Setup84 WatchGuard Firebox X EdgeConfiguring advanced settingsYou can configure how the Firebox X Edge Wireless transmits dat

Seite 254

Setting up the Wireless Access PointUser Guide 85802.11g onlyThis is the default mode, which allows you to deny access to 802.11b clients so that you

Kommentare zu diesen Handbüchern

Keine Kommentare