Netgear Netgar VPN FIrewall FVS336Gv2 Reference Manual
Have a look at the manual Netgear Netgar VPN FIrewall FVS336Gv2 Reference Manual online for free. It’s possible to download the document as PDF or print. UserManuals.tech offer 137 Netgear manuals and user’s guides for free. Share the user manual or guide on Facebook, Twitter or Google+.
Configure the IPv4 Internet and WAN Settings 31 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 Note the following about NAT: •The VPN firewall uses NAT to select the correct computer (on your LAN) to receive any incoming data. •If you have only a single public Internet IP address, you must use NAT (the default setting). •If your ISP has provided you with multiple public IP addresses, you can use one address as the primary shared address for Internet access by your computers, and you can map incoming traffic on the other public IP addresses to specific computers on your LAN. This one-to-one inbound mapping is configured using an inbound firewall rule. Classical Routing In classical routing mode, the VPN firewall performs routing, but without NAT. To gain Internet access, each computer on your LAN must have a valid static Internet IP address. If your ISP has allocated a number of static IP addresses to you and you have assigned one of these addresses to each computer, you can choose classical routing. Or you can use classical routing to route private IP addresses within a campus environment. Change the IPv4 WAN Routing Mode The following procedure describes how to change the IPv4 routing mode. By default, the VPN firewall functions in NAT mode. To change the IPv4 routing mode: 1. On your computer, launch an Internet browser. 2. In the address field of your browser, enter the IP address that was assigned to the VPN firewall during the installation process. The VPN firewall factory default IP address is 192.168.1.1. The NETGEAR Configuration Manager Login screen displays. 3. In the Username field, type your user name and in the Password / Passcode field, type your password. For the default administrative account, the default user name is admin and the default password is password. 4. If you changed the default domain or were assigned a domain, from the Domain menu, select the domain. If you did not change the domain or were not assigned a domain, leave the menu selection at geardomain. 5. Click the Login button. The Router Status screen displays. 6. Select Network Configuration > WAN Settings > WAN Mode. The WAN Mode screen displays.
Configure the IPv4 Internet and WAN Settings 32 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 7. In the NAT (Network Address Translation) section, select the NAT radio button or the Classical Routing radio button. WARNING: Changing the WAN mode causes all LAN WAN and DMZ WAN inbound rules to revert to default settings. 8. Click the Apply button. Your settings are saved. The settings apply to all WAN ports. Let the VPN Firewall Automatically Detect and Configure an IPv4 Internet Connection The following procedure describes how you can let your ISP automatically configure the IPv4 WAN addresses of the VPN firewall through a DHCP server. If your ISP does not support automatic configuration through a DHCP server, you must obtain configuration parameters from your ISP to be able to establish an Internet connection manually. For information about manually configuring the IPv4 WAN addresses, see the following sections: •Manually Configure a Static IPv4 Internet Connection •Manually Configure a PPPoE IPv4 Internet Connection •Manually Configure a PPTP IPv4 Internet Connection
Configure the IPv4 Internet and WAN Settings 33 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 Note:If your ISP requires MAC authentication and another MAC address was previously registered with your ISP, you must configure that MAC address on the VPN firewall (see Change the Advertised MAC Address of the VPN Firewall on page 70) before you begin the following procedure. To automatically configure a WAN port for an IPv4 Internet connection: 1. On your computer, launch an Internet browser. 2. In the address field of your browser, enter the IP address that was assigned to the VPN firewall during the installation process. The VPN firewall factory default IP address is 192.168.1.1. The NETGEAR Configuration Manager Login screen displays. 3. In the Username field, type your user name and in the Password / Passcode field, type your password. For the default administrative account, the default user name is admin and the default password is password. 4. If you changed the default domain or were assigned a domain, from the Domain menu, select the domain. If you did not change the domain or were not assigned a domain, leave the menu selection at geardomain. 5. Click the Login button. The Router Status screen displays. 6. Select Network Configuration > WAN Settings > WAN Setup. The WAN Setup screen displays the IPv4 settings. The IPv4 WAN Settings table displays the following fields: •WA N. The WAN interface (WAN1 or WAN2). •Status. The status of the WAN interface (UP or DOWN). •WAN IP. The IPv4 address of the WAN interface.
Configure the IPv4 Internet and WAN Settings 34 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 •Failure Detection Method. The failure detection method that is active for the WAN interface (see Configure the Auto-Rollover Mode and Failure Detection Method for IPv4 Interfaces on page 56). Any of the following methods can be displayed: None, DNS Lookup (WAN DNS Servers), DNS Lookup (the configured IP address is displayed), or PING (the configured IP address is displayed). •Action. The Edit button provides access to the WAN IPv4 ISP Settings screen (see Step 7) for the corresponding WAN interface; the Status button provides access to the Connection Status screen (see Step 9) for the corresponding WAN interface. 7. In the IPv4 WAN Settings table, click the Edit button for the WAN interface for which you want to let the VPN firewall automatically configure the connection to the Internet. The WAN IPv4 ISP Settings screen displays. The following figure shows the WAN2 IPv4 ISP Settings screen as an example.
Configure the IPv4 Internet and WAN Settings 35 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 8. Click the Auto Detect button. The autodetect process probes the WAN port for a range of connection methods and suggests one that your ISP is most likely to support. The autodetect process returns one of the following results: •If the autodetect process is successful, a status bar at the top of the screen displays the results (for example, DHCP service detected). •If the autodetect process senses a dynamic DHCP, PPPoE, or PPTP connection that requires input from you, it prompts you for the information. With auto detection, it can detect if it is a static line. Then the user needs to enter a static IP address. The following table lists the settings that you might have to enter: •If the autodetect process does not find a connection, you are prompted either to check the physical connection between your VPN firewall and the cable, DSL line, or satellite or wireless Internet dish, or to check your VPN firewall’s MAC address (see Managing Advanced WAN Options on page 66). 9. Verify the connection: a.Select Network Configuration > WAN Settings > WAN Setup. The WAN Setup screen displays the IPv4 settings (see the figure that is shown in Step 6). b. In the IPv4 WAN Settings table, click the Status button for the WAN interface for which you want to display the connection status. The Connection Status pop-up screen displays. The following figure shows a static IP address configuration. Connection MethodData You Might Have to Enter Manually Dynamic DHCP• Client Identifier. If your ISP requires client identifier information to assign an IP address using DHCP, select the Client Identifier check box and enter the client identifier information in the field. • Vendor Class Identifier. If your ISP requires the vendor class identifier information to assign an IP address using DHCP, select the Vendor Class Identifier check box. PPPoE• Login • Password • Account Name • Domain Name PPTP• Login • Password • Account Name • Domain Name • My IP Address • Server IP Address
Configure the IPv4 Internet and WAN Settings 36 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 The Connection Status screen shows a valid IP address and gateway. You are connected to the Internet. For more information about the connection status, see View the WAN Port Status and Terminate or Establish the Internet Connection on page 594. If the configuration was not successful, try to manually configure the connection. For more information, see the following sections: •Manually Configure a Static IPv4 Internet Connection on page 36 •Manually Configure a PPPoE IPv4 Internet Connection on page 39 •Manually Configure a PPTP IPv4 Internet Connection on page 44 Manually Configure a Static IPv4 Internet Connection To configure a static IPv4 Internet connection, enter the IPv4 address information that your IPv4 ISP gave you. If you do not have this information, contact your IPv4 ISP. For each WAN interface, you need the following information: IP address, IP subnet mask, and IP addresses of the gateway, primary DNS server, and secondary DNS server. Note:If your ISP requires MAC authentication and another MAC address was previously registered with your ISP, you must configure that MAC address on the VPN firewall (see Change the Advertised MAC Address of the VPN Firewall) before you begin the following procedure. To manually configure and verify a static IPv4 Internet connection for a WAN interface: 1. On your computer, launch an Internet browser. 2. In the address field of your browser, enter the IP address that was assigned to the VPN firewall during the installation process. The VPN firewall factory default IP address is 192.168.1.1. The NETGEAR Configuration Manager Login screen displays.
Configure the IPv4 Internet and WAN Settings 37 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 3. In the Username field, type your user name and in the Password / Passcode field, type your password. For the default administrative account, the default user name is admin and the default password is password. 4. If you changed the default domain or were assigned a domain, from the Domain menu, select the domain. If you did not change the domain or were not assigned a domain, leave the menu selection at geardomain. 5. Click the Login button. The Router Status screen displays. 6. Select Network Configuration > WAN Settings > WAN Setup. The WAN Setup screen displays the IPv4 settings. 7. In the IPv4 WAN Settings table, click the Edit button for the WAN interface that you want to configure. The WAN IPv4 ISP Settings screen displays. 8. In the Internet (IP) Address section, select the Use Static IP Address radio button. 9. Configure the IP address settings as described in the following table. SettingDescription IP Address The static IP address assigned to you. This address identifies the VPN firewall to your ISP.
Configure the IPv4 Internet and WAN Settings 38 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 10. Locate the Domain Name Server (DNS) Servers section. Note:When you selected the Use Static IP Address radio button in Step 8, the Use These DNS Servers radio button was selected automatically. 11. Specify the DNS server addresses: •Primary DNS Server. The IP address of the primary DNS server. •Secondary DNS Server. The IP address of the secondary DNS server. 12. Locate the Connection Reset section. 13. To configure an automatic connection reset, specify the settings as described in the following table. 14. Click the Apply button. Your settings are saved. 15. To evaluate your entries, click the Test button. IP Subnet Mask The subnet mask is usually provided by your ISP. Gateway IP Address The IP address of the ISP’s gateway is usually provided by your ISP. SettingDescription Select the Connection Reset check box to specify a time when the WAN connection is reset, that is, the connection is disconnected momentarily and then reestablished. Then specify the disconnect time and delay. Disconnect Time Specify the hour and minutes when the connection must be disconnected. Delay Specify the period in seconds after which the connection must be reestablished. SettingDescription
Configure the IPv4 Internet and WAN Settings 39 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 The VPN firewall attempts to make a connection according to the settings that you entered. 16. Verify the connection: a.Select Network Configuration > WAN Settings > WAN Setup. The WAN Setup screen displays the IPv4 settings. b. In the IPv4 WAN Settings table, click the Status button for the WAN interface for which you want to display the connection status. The Connection Status pop-up screen displays. The Connection Status screen shows a valid IP address and gateway. You are connected to the Internet. Note:If the configuration was not successful, see Troubleshoot the ISP Connection on page 615. Manually Configure a PPPoE IPv4 Internet Connection If you installed login software, your connection type is most likely PPPoE. To configure a PPPoE IPv4 Internet connection, enter the PPPoE IPv4 information that your IPv4 ISP gave you. If you do not have this information, contact your IPv4 ISP. For each WAN interface, you need the following information: login name, login password, and if applicable, account name and domain name. If your ISP assigns you a static IP address, you also need the IP address, IP subnet mask, and IP addresses of the primary DNS server and secondary DNS server.
Configure the IPv4 Internet and WAN Settings 40 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 Note:If your ISP requires MAC authentication and another MAC address was previously registered with your ISP, you must configure that MAC address on the VPN firewall (see Change the Advertised MAC Address of the VPN Firewall on page 70) before you begin the following procedure. To manually configure and verify a PPPoE IPv4 Internet connection for a WAN interface: 1. On your computer, launch an Internet browser. 2. In the address field of your browser, enter the IP address that was assigned to the VPN firewall during the installation process. The VPN firewall factory default IP address is 192.168.1.1. The NETGEAR Configuration Manager Login screen displays. 3. In the Username field, type your user name and in the Password / Passcode field, type your password. For the default administrative account, the default user name is admin and the default password is password. 4. If you changed the default domain or were assigned a domain, from the Domain menu, select the domain. If you did not change the domain or were not assigned a domain, leave the menu selection at geardomain. 5. Click the Login button. The Router Status screen displays. 6. Select Network Configuration > WAN Settings > WAN Setup. The WAN Setup screen displays the IPv4 settings. 7. In the WAN IPv4 Settings table, click the Edit button for the WAN interface that you want to configure. The WAN IPv4 ISP Settings screen displays. 8. In the ISP Login section, select the Ye s radio button.