background image

Security Gateway Manual

Netgate-6100

© Copyright 2022 Rubicon Communications LLC

Jan 03, 2022

Summary of Contents for Netgate-6100

Page 1: ...Security Gateway Manual Netgate 6100 Copyright 2022 Rubicon Communications LLC Jan 03 2022 ...

Page 2: ...CONTENTS 1 Out of the Box 2 2 How To Guides 21 3 References 35 i ...

Page 3: ...100 Desktop Firewall Appliance and will provide the information needed to keep the appliance up and running Tip Before getting started we recommend downloading the PDF version of the Product Manual and the PDF version of the pfSense Documentation in case you lose Internet access Copyright 2022 Rubicon Communications LLC 1 ...

Page 4: ...le to the WAN port shown in the Input and Output Ports section of the Netgate appliance The other end of the same cable should be inserted into a port of the Cable or DSL modem The modem provided by the ISP should have multiple LAN ports Any port should work Next connect one end of a second Ethernet cable to the LAN port shown in the Input and Output Ports section of the Netgate appliance Connect ...

Page 5: ...he Web Interface Open a web browser Google Chrome in this example and type in 192 168 1 1 on the address bar Press Enter Fig 1 Enter the Default LAN IP Address 2 A warning message may appear If this message or similar message is encountered it is safe to proceed Click the Advanced Button and then click Proceed to 192 168 1 1 unsafe to continue 3 At the Sign In page enter the default pfSense Plus u...

Page 6: ...Security Gateway Manual Netgate 6100 Fig 2 Click Advanced and then Proceed to 192 168 1 1 unsafe Fig 3 Click Next Copyright 2022 Rubicon Communications LLC 4 ...

Page 7: ...k will use to communicate with the Internet Use the following information for the WAN configuration page DHCP is the default and is the most common type of interface for home cable modems Default settings for the other items on this page should be acceptable for normal home users 6 Configuring LAN IP Address Subnet Mask The default LAN IP address of 192 168 1 1 and subnet mask of 24 is usually suf...

Page 8: ...Security Gateway Manual Netgate 6100 Fig 5 Change the Timezone and Click Next Fig 6 Default Settings Should be Acceptable Click Next Copyright 2022 Rubicon Communications LLC 6 ...

Page 9: ...final notification screen will appear with the Copyright and Trademark Notices Read and click Accept to continue to the dashboard Fig 7 Read and Click Accept If you unplugged the Ethernet cable at the beginning of this configuration reconnect it to the WAN1 port now This completes the basic configuration for the Netgate appliance Copyright 2022 Rubicon Communications LLC 7 ...

Page 10: ... done through the dashboard This orientation will help to navigate and further configure the firewall Fig 8 The pfSense Plus Dashboard Section 1 shows important system information such as the model Serial Number and Netgate Device ID for this Netgate firewall Section 2 identifies what version of pfSense Plus software is installed and if an update is available Section 3 describes Netgate Service an...

Page 11: ...re Click Download configuration as XML and save a copy of the firewall configuration to the computer con nected to the Netgate firewall This backup or any backup can be restored from the same screen by choosing the backed up file under Restore Configuration Note Auto Config Backup is a built in service located at Services Auto Config Backup This service will save up to 100 encrypted backup files a...

Page 12: ...Security Gateway Manual Netgate 6100 Fig 10 Backup Restore Fig 11 Click Download configuration as XML Copyright 2022 Rubicon Communications LLC 10 ...

Page 13: ...urse or browse our extensive Resource Library 1 4 Input and Output Ports 1 4 1 Networking Ports The WAN1 and WAN2 Combo Ports are shared ports Each has an RJ 45 port and an SFP port Only the RJ 45 or the SFP connector can be used each port Note Each port WAN1 and WAN2 is descrete and individual You can use the RJ 45 connector on one port and the SFP connector on the other Port Interface Name Port ...

Page 14: ... SFF 8472 v10 4 specifications Note Limited to 10G link speed no 1G support SFP AoCs Active optical Cables Note Limited to 10G link speed no 1G support Third party SFP SR LR dual speed 1G 10G optical modules SFP active copper cables 1000BASE SX 1000BASE LX optical modules Specific known working modules include Model Part Number Description Finisar FTLF1318P3BTL 1000BASE LX and 1G Fibre Channel 1GF...

Page 15: ... 20W idle 1 4 3 Front Side LED Pattern Description Boot Process The sequence circle square diamond quickly flashes blue Boot Completed The diamond slowly flashes blue Update is Available The square slowly flashes orange 1 5 Safety and Legal 1 5 1 Safety Notices 1 Read follow and keep these instructions 2 Heed all warnings 3 Only use attachments accessories specified by the manufacturer Warning Do ...

Page 16: ...ous injury or death c Contact a qualified electrician or the manufacturer if there are questions about the installation prior to connecting the equipment d Protective grounding earthing is provided by Listed AC adapter Building installation shall provide appro priate short circuit backup protection e Protective bonding must be installed in accordance with local national wiring rules and regulation...

Page 17: ...shaltmüll getrennt entsorgt werden sollte Es liegt in Ihrer Verantwortung dieses Gerät und andere elektrische und elektronische Geräte über die dafür zuständigen und von der Regierung oder örtlichen Behörden dazu bestimmten Sammelstellen zu entsorgen Ordnungsgemäßes Entsorgen und Recyceln trägt dazu bei potentielle negative Folgen für Umwelt und die menschliche Gesundheit zu vermeiden Wenn Sie wei...

Page 18: ...el proprietario smaltire sia questi prodotti sia le altre apparecchiature elettriche ed elettroniche mediante le specifiche strutture di raccolta indicate dal governo o dagli enti pubblici locali Il corretto smaltimento ed il riciclaggio aiuteranno a prevenire conseguenze potenzialmente negative per l ambiente e per la salute dell essere umano Per ricevere informazioni più dettagliate circa lo sma...

Page 19: ...deren relevanten Vorschriften der Richtlinie 1999 5 EG befindet BMWi ΕλληνικH Greek ΜΕ ΤΗΝ ΠΑΡΟΥΣΑ NETGATE ΔΗΛΩΝΕΙ ΟΤΙ NETGATE device ΣΥΜΜΟΡΦΩΝΕΤΑΙ ΠΡΟΣ ΤΙΣ ΟΥΣΙ ΩΔΕΙΣ ΑΠΑΙΤΗΣΕΙΣ ΚΑΙ ΤΙΣ ΛΟΙΠΕΣ ΣΧΕΤΙΚΕΣ ΔΙΑΤΑΞΕΙΣ ΤΗΣ ΟΔΗΓΙΑΣ 1995 5 ΕΚ Magyar Hungarian Alulírott NETGATE nyilatkozom hogy a NETGATE device megfelel a vonatkozó alapvetõ követelményeknek és az 1999 5 EC irányelv egyéb elõírásainak Íslen...

Page 20: ... etky príslu né ustanovenia Smernice 1999 5 ES Svenska Swedish Härmed intygar NETGATE att denna NETGATE device står I överensstämmelse med de väsentliga egenskapskrav och övriga relevanta bestämmelser som framgår av direktiv 1999 5 EG Español Spanish Por medio de la presente NETGATE declara que el NETGATE device cumple con los requisitos esenciales y cua lesquiera otras disposiciones aplicables o ...

Page 21: ...ion AAA under its rules The AAA s rules are available at www adr org Payment of all filing administration and arbitrator fees will be governed by the AAA s rules We each agree that any dispute resolution proceedings will be conducted only on an individual basis and not in a class consolidated or representative action We also both agree that you or we may bring suit in court to enjoin infringement ...

Page 22: ...RVICES ARE PROVIDED BY US ON AN AS IS AND AS AVAILABLE BA SIS UNLESS OTHERWISE SPECIFIED IN WRITING WE MAKE NO REPRESENTATIONS OR WARRANTIES OF ANY KIND EXPRESS OR IMPLIED AS TO THE OPERATION OF THE PRODUCTS SERVICES OR THE INFORMATION CONTENT MATERIALS PRODUCTS INCLUDING SOFTWARE OR OTHER SERVICES INCLUDED ON OR OTHERWISE MADE AVAILABLE TO YOU THROUGH THE PRODUCTS SERVICES UN LESS OTHERWISE SPECI...

Page 23: ...Netgate 6100 Mounted Vertically The Netgate 6100 can be mounted vertically or horizontally If mounted horizontally the ports and cables should face up to reduce the pull from the weight of the cables on the ports The Netgate 6100 Wall Mount Kit contains all of the components necessary to mount the 6100 The Netgate 6100 Wall Mount can be used in an inboard fashion or an outboard fashion 21 ...

Page 24: ...Security Gateway Manual Netgate 6100 Fig 2 The Netgate 6100 Wall Mount Kit Fig 3 The Netgate 6100 Inboard Wall Mount Orientation Copyright 2022 Rubicon Communications LLC 22 ...

Page 25: ...he button below to download the Wall Mount Template Once the PDF template is downloaded you must print it out at 100 Scale for it to be accurate Note The 100 Scale setting varies by printer manufacturer and model Follow the pictured instructions on the PDF to complete the wall mount installation Copyright 2022 Rubicon Communications LLC 23 ...

Page 26: ...ptions to use it Print out the first page at 100 Scale on 8 5 x 17 paper for it to be accurate Alternatively you can print off pages 2 and 3 at 100 scale on 8 5 x 11 paper Each page has a dotted line Cut along the lines and verify the dimensions before using it Note You can also use use the mounting brackets themselves to make the wall markings Copyright 2022 Rubicon Communications LLC 24 ...

Page 27: ...Security Gateway Manual Netgate 6100 Fig 5 Using the Netgate 6100 Wall Mount Bracket to Mark the Screw Locations Copyright 2022 Rubicon Communications LLC 25 ...

Page 28: ... webGUI or SSH access has been locked out or the password has been lost or forgotten This guide shows how to regain access directly through the console 2 2 1 Install the Driver A Silicon Labs CP210x USB to UART Bridge driver is used to provide access to the console which is exposed via the USB Mini b 5 pin port on the appliance If needed install an appropriate Silicon Labs CP210x USB to UART Bridg...

Page 29: ...t on the workstation Tip Be certain to gently push in the USB Mini b 5 pin connector on the system side completely With most cables there will be a tangible click snap or similar indication when the cable is fully engaged 2 2 3 Locate the Console Port Device The appropriate console port device that the workstation assigned as the serial port must be located before attempting to connect to the cons...

Page 30: ...ages about the device attaching in the system log files or by running dmesg Note If the device does not appear in dev see the note above in the driver section about manually loading the Linux driver and then try again FreeBSD The device associated with the system console is likely to show up as dev cuaU0 Look for messages about the device attaching in the system log files or by running dmesg Copyr...

Page 31: ...the Connection type to Serial Then set Serial line to the console port that was located above in Locate the Console Port Device and the Speed to 115200 bits per second Click the Open button and the console screen will be displayed PuTTY in Linux Open PuTTY from a terminal by typing sudo putty Next set the Connection type to Serial Then set Serial line to dev ttyUSB0 and the Speed to 115200 bits pe...

Page 32: ...Security Gateway Manual Netgate 6100 Fig 6 An example of using PuTTY in Windows Copyright 2022 Rubicon Communications LLC 30 ...

Page 33: ... items Ensure the cable is correctly attached and fully inserted Ensure the terminal program is using the correct port Ensure the terminal program is configured for the correct speed The default BIOS speed is 115200 and many other modern operating systems use that speed as well Some older operating systems or custom configurations may use slower speeds such as 9600 or 38400 Ensure the operating sy...

Page 34: ...d for the correct speed for the installed operating system See No Serial Output Ensure the installed operating system is configured to activate the serial console Ensure the installed operating system is configured for the proper console e g ttyS1 in Linux Consult the various operating install guides on this site for further information If booting from a USB flash drive ensure that the drive was w...

Page 35: ...work but using cons25w on the Netgate 7100 will be easier to read 7 The installer will automatically launch and several options will be presented On Netgate firewalls choosing Enter for the default options will complete the installation process Note Options such as the type of disk partition can be modified through this installation if required 8 The installer will then prompt to choose the type o...

Page 36: ...me 5m43s umass0 detached 11 Remove the USB drive from the USB port pfSense Plus will restart automatically If the USB drive remains attached the system will boot into the installer again because by default the system firmware is configured so that a device plugged into the USB port will be booted with a higher priority Note For information on restoring from a previously saved configuration go to B...

Page 37: ...iance and for other helpful resources make sure to browse our Resource Library https www netgate com resources 3 1 3 Professional Services Support does not cover more complex tasks such as CARP configuration for redundancy on multiple firewalls or circuits network design and conversion from other firewalls to pfSense Plus software These items are offered as professional services and can be purchas...

Page 38: ...for warranty information or view our Product Lifecycle page All Specifications subject to change without notice For support information view our support plans See also For more information on how to use pfSense Plus software see the pfSense Documentation and Resource Library Copyright 2022 Rubicon Communications LLC 36 ...

Reviews: