background image

GB-

Ware

S

OFTWARE

Firewall

Product Guide

GBWA200501-01

powered by

GNAT Box

System Software

Summary of Contents for GB-Ware

Page 1: ...GB Ware SOFTWARE Firewall Product Guide GBWA200501 01 powered by GNAT Box System Software...

Page 2: ...gard to the performance or use of these products Every effort has been made to ensure that the information in this manual is accurate GTA is not responsible for printing or clerical errors Trademarks...

Page 3: ...Hardware 10 Requirements 10 Setup for GB Ware Installation 11 Setting the Boot Sequence 11 Installing the Compact Flash Card Reader or IDE Adapter 11 Selecting a GB Ware Runtime 13 Selecting an Insta...

Page 4: ...ation 33 Using the Setup Wizard 33 Accessing Your GTA Firewall 37 4 TROUBLESHOOTING 39 Troubleshooting Basics 39 Frequently Asked Questions FAQ 39 APPENDIX 47 Installing the Compact Flash Card 47 Requ...

Page 5: ...software installation GB Ware must be con gured for local network requirements using either the setup wizard video console or manually serial console GBAdmin or browser Features 10 100 1000 Mbps Ethe...

Page 6: ...onal Software Products GTA Reporting Suite rewall log reporting GB Commander rewall management Optional Features VPN hardware acceleration Additional mobile VPN clients Surf Sentinel content ltering M...

Page 7: ...raf c shaping objects 5 50 Static outbound maps 25 300 Static routes 10 300 Time groups 75 100 Tunnels 25 300 Protocols 255 255 URL access lists 10 300 Local content lists 25 250 DNS domains Optional...

Page 8: ...rk interface cards and drivers System Requirements x86 architecture processor Intel 486 Pentium or Xeon compatible AMD or Cyrix CPUs Pentium class or faster CPU recommended 64 MB RAM 128 MB if using M...

Page 9: ...optimum performance Note Some GB Ware options may require additional RAM PPP Hardware GNAT Box System Software supports the use of a PPP network connection in place of a network interface card for the...

Page 10: ...modems and DSL ADSL etc con gurations utilize a passive inter connection device cable modem xDSL box that is typically connected to an Ethernet network interface card via a special network patch cable...

Page 11: ...on scheme The GNAT Box System Software User s Guide includes con guration functions descriptions of GBAdmin and the web interface administrative tools and GNAT Box speci c terms User s guides product...

Page 12: ...Reader can be obtained from www adobe com Document Topics GNAT Box System Software User s Guide GNAT Box system software features web user interface GBAdmin Console Interface User s Guide console inte...

Page 13: ...DUCTS link In addition to qualifying you for installation support your product regis tration will allow GTA to inform you about software updates and special offers Note If you cannot retrieve your act...

Page 14: ...86 Intel compatible computer with 64 MB RAM USB or parallel port on the motherboard only ATAPI IDE CD ROM drive video card monitor and keyboard video console only ATA IDE compliant hard disk drive or...

Page 15: ...like Windows boots 2 Change the boot sequence so that a CD ROM drive attempts to boot rst before other CD ROM or hard drives in the IDE controller This will enable the GNAT Box System installation CD...

Page 16: ...ence is correctly set to boot from CD ROM the system will boot from the GNAT Box System installation CD Using GB Ware s GNAT Box Installer After setting the BIOS inserting the installation CD and rest...

Page 17: ...nclude the GB Ware video console runtime the BootManager SIO which allows the user to change console output from video to serial during boot and BootManager video which allows the user to change conso...

Page 18: ...re Note The Compact Flash card once mounted using an adapter or USB card reader is considered a disk drive by the system Press the SPACE BAR to cycle through available options or use the F2 key to dis...

Page 19: ...BAR or ENTER to continue Caution Carefully select the correct storage device especially when using a USB Compact Flash reader writer to install GB Ware on a separate system Installing GB Ware on the...

Page 20: ...the computer and install it as the boot disk on the intended rewall Note See theAppendix for instructions on installing a Compact Flash card and Compact Flash IDE adapter on your intended rewall If yo...

Page 21: ...2 Installation 17 attach the hardware key block to a prospective GB Ware rewall and boot the GB Ware disk...

Page 22: ...GB Ware Firewall Product Guide 18...

Page 23: ...ave your settings and exit the BIOS 4 Restart the computer using a cold reboot In a cold reboot shut down power off and then power your computer back on Note GTA recommends disconnecting or disabling...

Page 24: ...other way Note If you installed the serial console version of the GB Ware runtime the video console connection mode may not be available Conversely if you installed the video console version of GB Wa...

Page 25: ...h a serial port Making a Temporary Peer Network Connection If you want to initially con gure your rewall using GBAdmin or a browser you will need to construct a temporary peer Ethernet network Note Th...

Page 26: ...ard Alternately use straight through cables to connect your computer and the rewall s rst network interface to a hub or switch 2 Note or back up your computer s network con gurations Tempo rarily chan...

Page 27: ...want to initially con gure your rewall using the serial console use a null modem serial cable to connect a computer s COM port to the COM port of your rewall Wiring diagrams and further information ar...

Page 28: ...nal emulation software such as TeraTerm or Microsoft HyperTerminal a serial connection between the rewall and a computer If using the video console you will need a monitor and keyboard directly attach...

Page 29: ...ter and the rewall appliance Configuration Using a Web Browser 1 Start a web browser on your computer and enter the rewall s URL into the browser s location address eld https 192 168 71 254 2 If your...

Page 30: ...and the menu then select Network Information Only one external and one protected network interface is required to initially con gure and test the rewall The other interface can be de ned as any of the...

Page 31: ...join the assigned network Close your browser Caution Failure to close the browser may allow unauthorized access to the rewall To prevent this always log out and close your browser after a rewall admin...

Page 32: ...on would be 24 Using a 255 255 255 240 net mask the binary repre sentation would be 11111111 11111111 11111111 11110000 The notation would be 28 You may also enter a host address that is de ned by not...

Page 33: ...Admin 2 Select File from the tool bar then select Open In the dialog box s SOURCE area select NETWORK In the SERVER eld enter the default IP address for the rewall 192 168 71 254 Make sure that there...

Page 34: ...one external and one protected network are required to initially con gure and test the rewall The other interface can be de ned as any of the three network types protected external or PSN Private Serv...

Page 35: ...should both be members of your network Reboot your computer if necessary to affect the network con guration change Accessing the Firewall Access the rewall using the IP address you assigned to the pro...

Page 36: ...inister it using GBAdmin or a web browser Configuration Using the Video Console Use this user interface only if you have installed the video version of the GB Ware runtime Note The video version of th...

Page 37: ...ntry of routing information and rewall rules Video Console Keystroke Guide Function Keystroke Exit Abort ESC Clear eld F6 Previous eld F7 Next eld F8 or TAB Delete Backspace DEL or BACKSPACE Toggle ch...

Page 38: ...the contact information for your rewall Select NEXT 5 Serial Number and Activation Enter your rewall s serial number and activation code which are retrievable from the GTA Support web site https gta...

Page 39: ...l interface Use F2 or the SPACE BAR to select from the device list Each NIC detected on your system is listed at the bottom of the screen with its MAC address Note All networks or sub networks attache...

Page 40: ...matically fetches gateway information enter a default route for outbound traf c Once the IP address net mask and device assignment have been made the wizard will prompt for the default route The wizar...

Page 41: ...e active and functioning in default security mode all internal users are allowed outgoing connections and no unsolicited connec tions are allowed in After testing connectivity you can now perform any...

Page 42: ...GB Ware Firewall Product Guide 38...

Page 43: ...rify the network interface numbers MAC addresses and logical names listed on the Network Information screen and in the Con guration Report Use the logical elimination method Connect a network cable to...

Page 44: ...must use the IP address of the rewall s network interface for the respective network Hosts that reside behind routers or other gateways on these networks generally use the IP address of the gateway o...

Page 45: ...obstacle you can attach an extension cable to the port then attach the hard ware key block to the cable Use a straight through 25 pin male to female cable If the hardware key block is not recognized o...

Page 46: ...not being recognized by your system See 6 above for more information 8 I selected the video console but now I would like to use the serial interface Always back up your con guration before uploading a...

Page 47: ...To reset your rewall to factory defaults attach either a terminal using a serial console cable or a computer with terminal emulation software using a DB 9 null modem cable Enter these settings for the...

Page 48: ...lt 1 14 How do I use the memory section feature for live con guration testing The memory section slice feature can be used to test a new rewall con guration in production while preserving the current...

Page 49: ...etected on the primary IDE controller port Select SAVE 4 If you have an older system e g Compaq Pentium II 450 686T3 and Desk Pro EN try setting the PIO mode to 0 then retry auto detect 17 When I boot...

Page 50: ...GB Ware Firewall Product Guide 46...

Page 51: ...ash IDE adapter on an installation proxy computer Requirements Required components include clockwise from the left of the illustration mounting posts Compact Flash IDE adapter board IDE cable 512 MB G...

Page 52: ...ting the Mounting Posts into the IDE Adapter Board 2 Holding the Compact Flash card with the label up slide the card into the slot on the adapter board pinholes in until rmly and evenly seated Inserti...

Page 53: ...an easily reach from the adapter board to the primary IDE controller port DO NOT mount the adapter board onto or near other electronic components inside the case Warning The Compact Flash card is NOT...

Page 54: ...r connector on your system s power supply and connect a power cable from it to the 4 pin power port of the adapter board Connecting the Power Supply to the 4 pin Power Port of the IDE Adapter Board Cl...

Page 55: ...he video console s Setup Wizard 3 Access the GB Ware rewall on its protected network interface to test rewall connectivity Note For the upgrade connectivity with the protected network interface is par...

Page 56: ...ME check box File Merge the GB360 GBcfg using GBAdmin 6 Click Browse and nd the directory where you saved the old GNAT Box rewall con guration Select the con guration le and click OK 7 Enter the login...

Page 57: ...select your cards 10 Save the con guration to the rewall by clicking on the SAVE ALL button on the tool bar or by selecting File then Save All This will save the entire con guration and any changes y...

Page 58: ...GB Ware Firewall Product Guide 54...

Page 59: ...cable 6 21 40 D data source See DSNs DB 9 43 Default con guration 19 route 30 default route 40 default settings 47 default user ID 36 Desk Pro 45 dial up connection 5 DSL 34 E email address support i...

Page 60: ...40 PPTP 40 protected 40 R reboot 44 red stripe IDE cable 52 remote access lter 40 reset 43 revert 44 router 40 runtime executable 44 runtime slice 16 43 S serial console 43 Serial Console interface 20...

Reviews: