background image

Security Gateway Manual

SG-2100

22. Click

Delete

beside Member(s)

4

. This will remove LAN4 from this VLAN group.

23. Click

Save

.

24. Go to the

Ports

sub-menu.

25. Click on

Port VID 1

beside

LAN4

. Backspace through

1

and insert

4084

, the new VLAN ID.

26. Click

Save

.

This completes the configuration of a discrete port on the Netgate SG-2100.

You will need to create the appropriate

firewall rules

because by default, all traffic is blocked. Go to

Firewall > Rules

and then the

OPT1

sub-menu (in this example) to configure the firewall rules.

You should also enable DHCP if necessary, by going to

Services > DHCP Server > OPT1

(for the example above).

© Copyright 2020 Rubicon Communications LLC

46

Содержание Netgate SG-2100

Страница 1: ...Security Gateway Manual SG 2100 Copyright 2020 Rubicon Communications LLC Oct 06 2020...

Страница 2: ...4 Input and Output Ports 13 5 Safety and Legal 16 6 Netgate SG 2100 Wall Mount 24 7 Connecting to the Console Port 27 8 Reinstalling pfSense Software 33 9 Optional M 2 SATA Installation 37 10 Configu...

Страница 3: ...all Appliance with pfSense software It will provide the information needed to keep the appliance up and running Tip Before getting started we recommend downloading the PDF version of the Product Manua...

Страница 4: ...WAN port shown in the Input and Output Ports section of the Netgate appliance The other end of the same cable should be inserted into a port of the Cable or DSL modem The modem provided by the ISP sho...

Страница 5: ...68 1 1 24 The same subnet cannot be used on both WAN and LAN so if the default IP address on the ISP supplied modem is also 192 168 1 1 24 disconnect the WAN interface until the LAN interface on the f...

Страница 6: ...and type in 192 168 1 1 on the address bar Press Enter Fig 1 Enter the Default LAN IP Address 2 A warning message may appear If this message or similar message is encountered it is safe to proceed Cli...

Страница 7: ...Security Gateway Manual SG 2100 Fig 2 Click Advanced and then Proceed to 192 168 1 1 unsafe Fig 3 Click Next Copyright 2020 Rubicon Communications LLC 5...

Страница 8: ...set to America Chicago for US Central time 5 The WAN interface is the Public IP address the network will use to communicate with the Internet Use the following information for the WAN configuration pa...

Страница 9: ...Security Gateway Manual SG 2100 Fig 5 Change the Timezone and Click Next Fig 6 Default Settings Should be Acceptable Click Next Copyright 2020 Rubicon Communications LLC 7...

Страница 10: ...notification screen will appear stating that NO COMMERCIAL DISTRIBUTION Click Accept to continue to the pfSense dashboard Fig 7 Read and Click Accept If you unplugged the Ethernet cable at the beginn...

Страница 11: ...l console 3 1 The Dashboard pfSense software is highly configurable all of which can be done through the dashboard This orientation will help to navigate and further configure the firewall Fig 1 The p...

Страница 12: ...n changes From the menu at the top of the page browse to Diagnostics Backup Restore Click Download configuration as XML and save a copy of the firewall configuration to the computer con nected to the...

Страница 13: ...Security Gateway Manual SG 2100 Fig 3 Backup Restore Fig 4 Click Download configuration as XML Copyright 2020 Rubicon Communications LLC 11...

Страница 14: ...ess has been locked out or the password has been lost or forgotten See also Connecting to the Console Port Connect to the console Cable is required Tip To learn more about getting the most out of your...

Страница 15: ...n an RJ 45 port and an SFP port Only one port can be used Interface Name Port Name WAN mvneta0 LED Pattern Description Left LED only green Flashes with 1Gb traffic solid with link Both LEDs green Both...

Страница 16: ...o another Layer 2 switch or connected to 2 or more different interconnected switches could create a flooding loop between the switches This can cause the router to stop functioning until the loop is r...

Страница 17: ...Pattern Description Boot Process The sequence circle square diamond quickly flashes blue Boot Completed The diamond slowly flashes blue Update is Available The square slowly flashes orange Copyright...

Страница 18: ...alified service technician 3 This equipment is provided with a detachable power cord which has an integral safety ground wire intended for connection to a grounded safety outlet a Do not substitute th...

Страница 19: ...B Canada 5 5 Australia and New Zealand This is a AMC Compliance level 2 product This product is suitable for domestic environments 5 6 CE Marking CE marking on this product represents the product is...

Страница 20: ...ida y eliminaci n de residuos de su zona o pregunte en la tienda donde adquiri el producto 5 7 4 Fran ais La directive europ enne 2002 96 CE exige que l quipement sur lequel est appos ce symbole sur l...

Страница 21: ...declares that this NETGATE device is in compliance with the essential requirements and other relevant provisions of Directive 1999 5 EC 5 8 5 Eesti Estonian K esolevaga kinnitab NETGATE seadme NETGATE...

Страница 22: ...ni pertinenti stabilite dalla direttiva 1999 5 CE 5 8 12 Latviski Latvian Ar o NETGATE deklar ka NETGATE device atbilst Direkt vas 1999 5 EK b tiskaj m pras b m un citiem ar to saist tajiem noteikumie...

Страница 23: ...s da Directiva 1999 5 CE 5 8 21 Rom na Romanian Prin prezenta NETGATE declara ca acest dispozitiv NETGATE este n conformitate cu cerint ele esent iale s i alte prevederi relevante ale Directivei 1999...

Страница 24: ...tor may be enforced by the courts located in Austin Texas or any other court having jurisdiction over you 5 11 Site Policies Modification and Severability Please review our other policies such as our...

Страница 25: ...ITNESS FOR A PAR TICULAR PURPOSE RCL AND ESF DO NOT WARRANT THAT THE PRODUCTS SERVICES INFORMA TION CONTENT MATERIALS PRODUCTS INCLUDING SOFTWARE OR OTHER SERVICES INCLUDED ON OR OTHERWISE MADE AVAILA...

Страница 26: ...R SIX NETGATE SG 2100 WALL MOUNT The Netgate SG 2100 has built in wall mount keyholes on the bottom of the appliance This page provides an overview and a PDF template for attaching the system to the w...

Страница 27: ...he cables on the ports Click on the button below to download the Wall Mount Template Once the PDF template is downloaded print it out at 100 Scale for it to be accurate Note The 100 Scale setting vari...

Страница 28: ...Security Gateway Manual SG 2100 Follow the pictured instructions on the PDF to complete the wall mount installation Copyright 2020 Rubicon Communications LLC 26...

Страница 29: ...re drivers available for Mac OSX available for download For Mac choose the Macintosh OSX download Linux There are drivers available for Linux available for download FreeBSD Recent versions of FreeBSD...

Страница 30: ...h a title such as Silicon Labs CP210x USB to UART Bridge If there is a label in the name that contains COMX where X is a decimal digit e g COM3 that value is what would be used as the port in the term...

Страница 31: ...d to run screen PuTTY in Linux minicom or dterm An example of how to configure Putty and screen is below FreeBSD For FreeBSD it is recommended to run screen or cu An example of how to configure screen...

Страница 32: ...Security Gateway Manual SG 2100 Fig 1 An example of using PuTTY in Windows Copyright 2020 Rubicon Communications LLC 30...

Страница 33: ...be properly formatted the most likely culprit is a character encoding mismatch in the terminal Adding the U parameter to the screen command line arguments forces it to use UTF 8 for character encoding...

Страница 34: ...ow Translation Handling of line drawing characters Use font in both ANSI and OEM modes or Use Unicode line drawing code points Window Colours Indicate bolded text by changing The colour 7 5 3 Garbled...

Страница 35: ...USB memstick Locating the image and writing it to a USB memstick is covered in detail under Writing Flash Drives 3 Connect to the console port of the pfSense device 4 Insert the memstick into the USB...

Страница 36: ...Security Gateway Manual SG 2100 Copyright 2020 Rubicon Communications LLC 34...

Страница 37: ...Security Gateway Manual SG 2100 Copyright 2020 Rubicon Communications LLC 35...

Страница 38: ...Security Gateway Manual SG 2100 Copyright 2020 Rubicon Communications LLC 36...

Страница 39: ...re 4 Any hardware damage incurred during this procedure is not covered by the hardware warranty Note pfSense software must be reinstalled on the M 2 SATA drive By default the M 2 SATA drive will then...

Страница 40: ...t scratched Identify where the M 2 SATA drive slot is located and remove the screw from the standoff Note If the standoff turns as you try to remove the screw hold the standoff with a fine pair of nee...

Страница 41: ...n the M 2 SATA card and replace the screw into the standoff 5 Place the cover back on and turn the SG 2100 over Replace the four T10 Torx case screws Be careful not to crossthread the screws or overti...

Страница 42: ...Security Gateway Manual SG 2100 Fig 4 The M 2 SATA Drive Installed Copyright 2020 Rubicon Communications LLC 40...

Страница 43: ...ur particular requirements SG 2100 Ethernet Port LAN4 IP Address Assignment 192 168 100 1 24 VLAN Tag 4084 VLAN tags should be 4081 4084 for LAN Ports 1 4 Note When connecting to the webConfigurator b...

Страница 44: ...scription Click Save Note 4084 in is used as an example in this guide The value for the tags must be unique for each VLAN and must be between 1 and 4094 Avoid using values that are already in use Best...

Страница 45: ...Interface that matches the new VLAN being created 10 Check the Enable Interface check box 11 Change the IPv4 Configuration Type from None to Static IPv4 12 Scroll down and make the IPv4 Address 192 1...

Страница 46: ...e 14 Click Apply Changes 15 Go to Interfaces Switches 16 Go to the VLANs sub menu Click in the Enable 802 1q VLAN mode check box and click Save 17 You will notice that the table changes Click Add Tag...

Страница 47: ...N Tag and 4 for Member s This represents LAN4 port 4 and tagged should be unchecked 19 Click Add Member to add the LAN Uplink 5 This member should be tagged as shown 20 Click Save 21 Click on beside V...

Страница 48: ...N ID 26 Click Save This completes the configuration of a discrete port on the Netgate SG 2100 You will need to create the appropriate firewall rules because by default all traffic is blocked Go to Fir...

Страница 49: ...d for other helpful resources make sure to browse our Resource Library https www netgate com resources 11 3 Professional Services Support does not cover more complex tasks such as CARP configuration f...

Страница 50: ...Netgate for warranty information or view our Product Lifecycle page All Specifications subject to change without notice For support information view our support plans See also For more information on...

Отзывы: