Netgear Netgar VPN FIrewall FVS336Gv2 Reference Manual
Have a look at the manual Netgear Netgar VPN FIrewall FVS336Gv2 Reference Manual online for free. It’s possible to download the document as PDF or print. UserManuals.tech offer 137 Netgear manuals and user’s guides for free. Share the user manual or guide on Facebook, Twitter or Google+.
Monitor System Access and Performance 589 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 WAN Configuration WAN Mode The WAN mode can be Single Port, Load Balancing, or Auto Rollover. For information about configuring the WAN mode, see Manage the IPv4 WAN Routing Mode on page 30. WAN State The WAN state can be either UP or DOWN, depending on whether the port is connected to the Internet. NAT The NAT state for IPv4 can be either Enabled or Disabled, depending on whether NAT is enabled (see Network Address Translation Overview on page 30) or classical routing is enabled (see Classical Routing on page 31). IPv4 Connection Type The connection type can be Static IP, DHCP, PPPoE, or PPTP, depending on whether the WAN address is obtained dynamically through a DHCP server or assigned statically by you. For information about connection types, see Configure the IPv4 Internet Connection and WAN Settings on page 30. IPv6 Connection Type The connection type can be Static IPv6, PPPoE, or Dynamic IP (DHCPv6), depending on whether the WAN address is obtained dynamically through a DHCP server or ISP or assigned statically by you. For information about connection types, see Configure the IPv6 Internet Connection and WAN Settings on page 87. IPv4 Connection State The IPv4 connection state can be either Connected or Not Yet Connected, depending on whether the WAN interface is connected to the Internet over an IPv4 address. For information about configuring the IPv4 address of the WAN port, see Configure the IPv4 Internet Connection and WAN Settings on page 30. IPv6 Connection State The IPv6 connection state can be either Connected or Not Yet Connected, depending on whether the WAN interface is connected to the Internet over an IPv6 address. For information about configuring the IPv6 address of the WAN port, see Configure the IPv6 Internet Connection and WAN Settings on page 87. WAN Connection Type The detected type of Internet connection that is used on this port. The WAN connection type can be DSL, ADSL, T1, T3, or Other. For information about configuring the WAN connection type, upload speed, and download speed, see Managing Advanced WAN Options on page 66. Upload Connection SpeedThe maximum upload speed that is provided by your ISP. Download Connection SpeedThe maximum download speed that is provided by your ISP. IP Address The IPv4 address of the WAN port. For information about configuring the IPv4 address of the WAN port, see Configure the IPv4 Internet Connection and WAN Settings on page 30. ItemDescription
Monitor System Access and Performance 590 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 View the VLAN Status You can view information about the VLANs that are enabled. Disabled VLANs are not displayed. For information about enabling and disabling VLANs, see Assign VLAN Profiles on page 11 6. To view the status of the IPv4 VLANs: 1. On your computer, launch an Internet browser. 2. In the address field of your browser, enter 10.0.0.2 if you log in from the WAN or enter 192.168.20.0 if you log in from the LAN. The NETGEAR Configuration Manager Login screen displays. 3. In the Username field, type your user name and in the Password / Passcode field, type your password. For the default administrative account, the default user name is admin and the default password is password. 4. If you changed the default domain or were assigned a domain, from the Domain menu, select the domain. IPv6 Address The IPv6 address and prefix length of the WAN port. For information about configuring the IPv6 address and prefix length of the WAN port, see Configure the IPv6 Internet Connection and WAN Settings on page 87. Subnet Mask The IPv4 subnet mask of the WAN port. For information about configuring the subnet mask of the WAN port, see Configure the IPv4 Internet Connection and WAN Settings on page 30. Gateway The IPv4 address of the gateway. The gateway and DNS IPv4 settings are either obtained dynamically from your ISP or specified by you (see Configure the IPv4 Internet Connection and WAN Settings on page 30). Primary DNS The IPv4 address of the primary DNS server. Secondary DNS The IPv4 address of the secondary DNS server. MAC Address The default MAC address for the port or the MAC address that you specified (see Managing Advanced WAN Options on page 66). Gateway (IPv6) The IPv6 address of the gateway. The gateway and DNS IPv6 settings are either obtained dynamically from your ISP or specified by you (see Manually Configure a Static IPv6 Internet Connection on page 94 or Manually Configure a PPPoE IPv6 Internet Connection on page 97). Primary DNS (IPv6) The IPv6 address of the primary DNS server. Secondary DNS (IPv6) The IPv6 address of the secondary DNS server. ItemDescription
Monitor System Access and Performance 591 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 If you did not change the domain or were not assigned a domain, leave the menu selection at geardomain. 5. Click the Login button. The Router Status screen displays. 6. Select Monitoring > Router Status > VLAN Status. The VLAN Status screen displays. Note:For information about configuring VLANs, see Manage VLAN Profiles on page 119 The following table explains the fields of the VLAN Status screen. View the IPv6 Tunnel Status The following procedure describes how to view the status of all active 6to4 and ISATAP tunnels and their IPv6 addresses. To view the status of the tunnels and associated IPv6 addresses: 1. On your computer, launch an Internet browser. 2. In the address field of your browser, enter 10.0.0.2 if you log in from the WAN or enter 192.168.20.0 if you log in from the LAN. The NETGEAR Configuration Manager Login screen displays. ItemDescription Profile Name The unique name that you assigned for the VLAN. VLAN ID The identifier that you assigned for the VLAN. MAC Address VLANs can have the same MAC address as the associated LAN port or can be assigned a unique MAC address, depending on the VLAN MAC settings that you specified (see Configure Unique VLAN MAC Addresses on page 126). Subnet IP The IP address and subnet mask that you assigned. DHCP Status The DHCP status for the VLAN, which can be either DHCP Enabled or DHCP Disabled, depending on the DHCP configuration that you specified. Port Membership The ports that you have associated with the VLAN.
Monitor System Access and Performance 592 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 3. In the Username field, type your user name and in the Password / Passcode field, type your password. For the default administrative account, the default user name is admin and the default password is password. 4. If you changed the default domain or were assigned a domain, from the Domain menu, select the domain. If you did not change the domain or were not assigned a domain, leave the menu selection at geardomain. 5. Click the Login button. The Router Status screen displays. 6. Select Monitoring > Router Status > Tunnel Status. The Tunnel Status screen displays. Note:For information about configuring IPv6 tunnels, see Manage Tunneling for IPv6 Traffic on page 101. The IPv6 Tunnel Status table shows the following fields: •Tunnel Name. The tunnel name for the 6to4 tunnel is always sit0-WAN1 (SIT stands for Simple Internet Transition); the tunnel name for an ISATAP tunnel is isatapx-LAN, in which x is an integer. •IPv6 Address. The IPv6 address of the local tunnel endpoint. View the VPN Connection Status, L2TP Users, and PPTP Users The following sections provide information about viewing the status of IPSec VPN and SSL VPN connections and PPTP and L2TP users: •View the VPN Firewall IPSec VPN Connection Status and Terminate or Establish Tunnels on page 363 •View the VPN Firewall SSL VPN Connection Status and Disconnect Active Users on page 444 •View the Active PPTP Users and Disconnect Active Users on page 420 •View the Active L2TP Users and Disconnect Active Users on page 423
Monitor System Access and Performance 593 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 View the VPN Logs The following sections provide information about viewing the IPSec VPN and SSL VPN logs: •View the VPN Firewall IPSec VPN Log on page 364 •View the VPN Firewall SSL VPN Log on page 445 View the Port Triggering Status The following procedure describes how to view the status of the ports that were triggered by the port triggering feature. To view the status of the ports that were triggered by the port triggering feature: 1. On your computer, launch an Internet browser. 2. In the address field of your browser, enter the IP address that was assigned to the VPN firewall during the installation process. The VPN firewall factory default IP address is 192.168.1.1. The NETGEAR Configuration Manager Login screen displays. 3. In the Username field, type your user name and in the Password / Passcode field, type your password. For the default administrative account, the default user name is admin and the default password is password. 4. If you changed the default domain or were assigned a domain, from the Domain menu, select the domain. If you did not change the domain or were not assigned a domain, leave the menu selection at geardomain. 5. Click the Login button. The Router Status screen displays. 6. Select Security > Port Triggering. The Port Triggering screen displays. 7. Click the Status option arrow in the upper right. The Port Triggering Status pop-up screen displays.
Monitor System Access and Performance 594 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 The Port Triggering Status screen displays the information that is described in the following table. View the WAN Port Status and Terminate or Establish the Internet Connection You can view the status of the IPv4 and IPv6 WAN connections, the DNS servers, and the DHCP servers, and you can terminate or establish the Internet connection. The following sections provide information about viewing the WAN port status and terminating or establishing the Internet connection: •View the Status of an IPv4 WAN Port and Terminate or Establish the Internet Connection •View the Status of an IPv6 WAN Port and Terminate or Establish the Connection View the Status of an IPv4 WAN Port and Terminate or Establish the Internet Connection If a WAN port is active, you can terminate the Internet connection. If a WAN port is not active, you can establish the Internet connection. To view the IPv4 status of a WAN port and terminate or establish the Internet connection: 1. On your computer, launch an Internet browser. 2. In the address field of your browser, enter the IP address that was assigned to the VPN firewall during the installation process. The VPN firewall factory default IP address is 192.168.1.1. The NETGEAR Configuration Manager Login screen displays. 3. In the Username field, type your user name and in the Password / Passcode field, type your password. For the default administrative account, the default user name is admin and the default password is password. ItemDescription # The sequence number of the rule onscreen. Rule The name of the port triggering rule that is associated with this entry. LAN IP Address The IP address of the computer or device that is using this rule. Open Ports The incoming ports that are associated with this rule. Incoming traffic using one of these ports is sent to the IP address that is listed in the LAN IP Address field. Time Remaining The time remaining before this rule is released and made available for other computers or devices. This timer is restarted when incoming or outgoing traffic is received.
Monitor System Access and Performance 595 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 4. If you changed the default domain or were assigned a domain, from the Domain menu, select the domain. If you did not change the domain or were not assigned a domain, leave the menu selection at geardomain. 5. Click the Login button. The Router Status screen displays. 6. Select Network Configuration > WAN Settings > WAN Setup. The WAN Setup screen displays the IPv4 settings. 7. Click the Status button that corresponds to the WAN interface for which you want to view the status. The following figure shows a static IP address configuration as an example. The type of connection determines the information that is displayed on the Connection Status screen. The screen can display the information that is described in the following table. ItemDescription Connection Time The period that the VPN firewall is connected through the WAN port. Connection Type The connection type can be either DHCP or Static IP.
Monitor System Access and Performance 596 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 8. To terminate an active connection, click the Disconnect button. 9. To establish a connection, click Connect button. View the Status of an IPv6 WAN Port and Terminate or Establish the Connection If a WAN port is active, you can terminate the connection. If a WAN port is not active, you can establish the connection. To view the IPv6 status of a WAN port and terminate or establish the Internet connection: 1. On your computer, launch an Internet browser. 2. In the address field of your browser, enter the IP address that was assigned to the VPN firewall during the installation process. The VPN firewall factory default IP address is 192.168.1.1. The NETGEAR Configuration Manager Login screen displays. 3. In the Username field, type your user name and in the Password / Passcode field, type your password. For the default administrative account, the default user name is admin and the default password is password. 4. If you changed the default domain or were assigned a domain, from the Domain menu, select the domain. If you did not change the domain or were not assigned a domain, leave the menu selection at geardomain. 5. Click the Login button. The Router Status screen displays. Connection Status The connection status can be either Connected or Disconnected. IP Address The addresses that were automatically detected or that you configured (see Configure the IPv4 Internet Connection and WAN Settings on page 30). Subnet Mask Gateway DNS Server DHCP Server The DHCP server that was automatically detected. This field displays only if your ISP does not require a login and the IP address is acquired dynamically from your ISP (see Configure the IPv4 Internet Connection and WAN Settings on page 30). Lease Obtained The time when the DHCP lease was obtained. Lease Duration The period that the DHCP lease remains in effect. ItemDescription
Monitor System Access and Performance 597 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 6. Select Network Configuration > WAN Settings > WAN Setup. The WAN Setup screen displays the IPv4 settings. 7. In the upper right, select the IPv6 radio button. The WAN Setup screen displays the IPv6 settings: 8. Click the Status button that corresponds to the WAN interface for which you want to view the status. The following figure shows a static IP address configuration as an example. The type of connection determines the information that is displayed on the Connection Status screen. The screen can display the information that is described in the following table. ItemDescription Connection Time The period that the VPN firewall is connected through the WAN port. IPv6 Connection Type The connection type can be either Dynamic IP (DHCP), Static, or PPPoE. IPv6 Connection Status The connection status can be either Connected or Disconnected.
Monitor System Access and Performance 598 ProSAFE Dual WAN Gigabit WAN SSL VPN Firewall FVS336Gv2 9. To terminate an active connection, click the Disconnect button. 10. To establish a connection, click the Connect button. Display Internet Traffic by Type of Traffic If you enabled the WAN traffic meter for an interface (see Configure and Enable the WAN IPv4 Traffic Meter on page 558), you can display the Internet traffic by protocol. To display a report of the Internet traffic by protocol type for a WAN interface: 1. On your computer, launch an Internet browser. 2. In the address field of your browser, enter the IP address that was assigned to the VPN firewall during the installation process. The VPN firewall factory default IP address is 192.168.1.1. The NETGEAR Configuration Manager Login screen displays. 3. In the Username field, type your user name and in the Password / Passcode field, type your password. For the default administrative account, the default user name is admin and the default password is password. 4. If you changed the default domain or were assigned a domain, from the Domain menu, select the domain. If you did not change the domain or were not assigned a domain, leave the menu selection at geardomain. 5. Click the Login button. The Router Status screen displays. 6. Select Monitoring > Traffic Meter. The WAN Traffic Meter tabs display with the WAN1 Traffic Meter screen in view. 7. If you want to display traffic for the WAN2 interface, click the WAN2 Traffic Meter tab. 8. Click the Traffic by Protocol option arrow in the upper right. The Traffic by Protocol pop-up screen displays. IPv6 Address The IPv6 addresses that were automatically detected or that you configured (see Use a DHCPv6 Server to Configure an IPv6 Internet Connection Automatically on page 90 and Manually Configure a Static IPv6 Internet Connection on page 94). Note:The Gateway, Primary DNS Server (IPv6), and Secondary DNS Server (IPv6) fields apply only to static IPv6 and PPPoE IPv6 connections. Gateway Primary DNS Server (IPv6) Secondary DNS Server (IPv6) ItemDescription