background image

Working with the QuickSetup Wizard

8

WatchGuard Firebox System

Characteristics of a drop-in configuration:

• A single IP network not subdivided into smaller IP networks.

• The Firebox performs proxy ARP.

• All trusted computers must have their ARP caches flushed or timed out.

• All three Firebox interfaces are assigned the same IP address.

• The IP addresses of secondary networks are listed in the configuration file.

Routed mode

A routed network configuration is for situations where the Firebox is put in place 
with separate logical networks on its interfaces. It assigns separate network addresses 
to at least two of the three Firebox interfaces.

Characteristics of a routed configuration:

• There is more than one network recognized by the Firebox.

• You can relate different networks to different interfaces. Those networks then 

come under the protection and access rules set up for that interface.

• Each interface must be on a separate logical network.

• If there are more than three networks, additional networks are added as 

secondary networks.

• If there are only two networks behind the Firebox and you want to use the 

routed configuration, use only the External and Trusted interfaces (do not use 
the Optional interface).

Entering the Firebox IP address

On the wizard’s next screen, you enter the IP address for each Firebox interface and 
specify whether you have an additional network on each interface.

Firebox Interface

: In a drop-in configuration, because all three interfaces share the 

same IP address, you need to enter only one address. In a routed configuration, 
however, each of the three Firebox interfaces has a different IP address. You need to 
enter the IP address for each interface. 

Unused IP:

 If you have a secondary network on the Trusted interface, enable the 

checkbox labeled 

I have an additional non-routed network behind my Firebox

Enter an unused IP address on the secondary network. 

Entering IP addresses

To type in your IP address, type the digits and periods in sequence. Do not use the 
TAB key to jump past the periods. 
If your address has a network mask, use slash notation to enter it. For information on 
using slask notation, click the Help button on this screen.

Entering the Firebox default gateway

On the wizard’s next screen, enter the IP address of the default gateway to the 
Firebox. This must be the IP address of your Internet router. Also, this IP address 

Содержание Firebox X1000

Страница 1: ...WatchGuard Firebox System Install Guide Firebox System 4 6...

Страница 2: ...Inc Hi fn Inc 1993 including one or more U S Patents 4701745 5016009 5126739 and 5146221 and other patents pending 1995 1998 Eric Young eay cryptsoft All rights reserved 1998 1999 The OpenSSL Project...

Страница 3: ...e official CE symbol indicates compliance of this WatchGuard Technologies Inc product to the EMC directive of the European Community The CE symbol found here or elsewhere indi cates that this WatchGua...

Страница 4: ...lass A digital apparatus meets all requirements of the Canadian Interference Causing Equipment Regulations Cet appareil numerique de la classe A respecte toutes les exigences du Reglement sur le mater...

Страница 5: ...at receives and stores log messages and issues notifications The Management Station can also serve as the Event Processor This guide walks you through the installation process step by step to ensure a...

Страница 6: ...nstallation from the CD The following HTML based browsers are recommended to view WatchGuard Online Help Netscape Communicator 4 7 or later Microsoft Internet Explorer 5 01 or later Hardware requireme...

Страница 7: ...Windows 2000 disabling the Event Processor does not stop the service Stop the service first either from the Event Processor interface or using one of the following procedures If you are running Windo...

Страница 8: ...on This process uses TCP IP to connect and initialize a new Firebox The Firebox will automatically obtain its IP address 1 Place the Firebox on a desktop or in a rack in a location convenient to the e...

Страница 9: ...onnect the Firebox console port with the Management Station COM port Use the red crossover cable to connect the Trusted interface to the Management Station Ethernet port 3 Install the power cord from...

Страница 10: ..._____ _____ _____ _____ Secondary Network _____ _____ _____ _____ _____ SMTP Server _____ _____ _____ _____ HTTP Server Routed Only _____ _____ _____ _____ FTP Server Routed Only _____ _____ _____ ___...

Страница 11: ...e required information in the QuickSetup wizard The QuickSetup wizard creates a basic configuration file and saves it to the primary area of the Firebox flash disk The Firebox loads this primary confi...

Страница 12: ...and you want to use the routed configuration use only the External and Trusted interfaces do not use the Optional interface Entering the Firebox IP address On the wizard s next screen you enter the I...

Страница 13: ...wizard s next screen you create passwords for the Firebox Passwords must be at least seven characters long They can be any combination of numbers letters and special characters You must create two pa...

Страница 14: ...pts to contact the Firebox 2 If using hands free TCP IP installation enter the factory installed configuration password wg 3 If using serial cable installation turn the Firebox off and then on The Qui...

Страница 15: ...ement Station as the primary event processor the LiveSecurity Event Processor starts Begin configuring your security system After installation the next steps are delineating your network and applying...

Страница 16: ...After You Install 12 WatchGuard Firebox System...

Отзывы: