Netgear FVX538v1 Network Planning Guide for FVX538

Netgear FVX538v1 - ProSafe VPN Firewall Dual WAN Manual

Netgear FVX538v1 manual content summary:

  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 1
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 NETGEAR, Inc. 4500 Great America Parkway Santa Clara, CA 95054 USA 202-10066-01 (Beta Draft) October 2004 October 2004
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 2
    due to the use or application of the product(s) or circuit layout(s) described herein. Export Restrictions The NETGEAR VPN Client (the "software") is subject to United States Export Controls. The software may not be exported or transmitted 1) into (or to a national or resident of) Cuba, Iran, Iraq
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 3
    Contents Chapter 1 Introducing the FVX538 The Router's Front Panel 1-1 The Router's Rear Panel 1-3 Rack Mounting the Router 1-3 The Router's IP Address, Login Name, and Password 1-4 Default Factory Settings 1-4 Chapter 2 Network
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 4
    iv Contents October 2004
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 5
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 Chapter 1 Introducing the FVX538 This chapter introduces the FVX538 ProSafe VPN Firewall Router. The Router's Front Panel The FVX538 ProSafe VPN Firewall Router front panel shown below contains the port connections, status LEDs, and the
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 6
    ProSafe VPN Firewall Router FVX538 Table 1-1. Object Descriptions (continued) Object Activity Description WAN Ports and LEDs Two RJ-45 WAN ports N-way automatic speed negotiation, Auto MDI/MDIX. Link/Act LED On (Green) Blinking (Green) Off The WAN port has detected a link with a connected
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 7
    Planning Guide for ProSafe VPN Firewall Router FVX538 The Router's Rear Panel The rear panel of the FVX538 ProSafe VPN Firewall Router (Figure 1-2) contains the On/Off switch and AC power connection. 100-240 VAC, 50-60Hz, 0.7A max. Figure 1-2: FVX538 Rear Panel AC Power On/Off Connection Switch
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 8
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 The Router's IP Address, Login Name, and Password Check the label on the bottom of the FVX538's enclosure if you forget the following factory default information: • IP Address: http://192.168.1.1 to reach the Web-based GUI from the LAN •
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 9
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 Table 1-2. Factory Default Settings Feature User Name (case sensitive) Password (case sensitive) Built-in Address: 192.168.1.1 Subnet Mask: 255.255.255.0 Gateway: 0.0.0.0 GMT Disabled Disabled Introducing the FVX538 1-5 October 2004
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 10
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 1-6 Introducing the FVX538 October 2004
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 11
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 Chapter 2 Network Planning This chapter describes the as DMZ hosts. Unlike hardware-based DMZ ports, however, exposed hosts are implemented in software and do not enjoy the same level of firewall protection that hardware-based DMZ ports
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 12
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 Virtual Private Networks (VPNs) A virtual private network Dual WAN ports before and after failover Features such as multiple exposed hosts are not supported when using dual WAN port failover because the IP addresses of each WAN port must
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 13
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 Dual WAN unless the traffic is a response to one of your local computers or a service that you have configured in the Inbound Rules menu. Instead of discarding this traffic is supported and enabled. Network Planning 2-3 October 2004
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 14
    Planning Guide for ProSafe VPN Firewall Router FVX538 Single Exposed Host: Single WAN Port (Reference Case) In the single WAN case (Figure 2-3), the WAN's Internet address is either fixed IP or a fully-qualified domain name if the IP address is dynamic. Router exposed host WAN IP netgear.dyndns
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 15
    Guide for ProSafe VPN Firewall Router FVX538 incoming traffic to the multiple exposed hosts when this feature is supported and enabled. Multiple Exposed Hosts: Single WAN Port (Reference Single WAN Port Router WAN IPs exposed hosts 22.23.24.25 22.23.24.26 ... IP addresses of WAN port must be a
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 16
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 Note: Load balancing is implemented for outgoing traffic and in order to maintain better control of WAN port traffic. Dual WAN Ports Router WAN1 IP Addresses 22.23.24.25, 22.23.24.26, . . . 14.15.16.17, 14,15,16,18, . . . WAN2 IP
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 17
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 For the single gateway WAN port case, the mechanism WAN2 port inactive WAN2 IP (N/A) Gateway VPN Router WAN1 IP (N/A) WAN1 port inactive X X netgear.dyndns.org WAN2 IP IP address of active WAN port changes after a failover (use of
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 18
    Guide for ProSafe VPN Firewall Router FVX538 . The gateway WAN port must act as the responder. 10.5.6.0/24 Road Warrior Example (Single WAN Port) Client B LAN IP 10 for Dynamic IP addresses WAN IP 0.0.0.0 Remote PC (running NETGEAR ProSafe VPN Client) Figure 2-10: Single gateway WAN port case
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 19
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 10.5.6.0/24 Road Warrior Example (Dual WAN Ports, Before - required for Dynamic IP addresses WAN IP 0.0.0.0 Client B Remote PC (running NETGEAR ProSafe VPN Client) Figure 2-11: Dual gateway WAN ports, before failover, for VPN
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 20
    Guide for ProSafe VPN Firewall Router FVX538 The chosen gateway WAN port must act as the responder. 10.5.6.0/24 Road Warrior Example (Dual WAN Ports, Load Balancing) LAN IP IP addresses WAN IP 0.0.0.0 Client B Remote PC (running NETGEAR ProSafe VPN Client) Figure 2-13: Dual gateway WAN ports (
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 21
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 10.5.6.0/24 Gateway-to-Gateway Example (Single WAN Ports) 172.23.9.0/24 LAN IP 10.5.6.1 Gateway A VPN Router (at office A) WAN IP FQDN netgear.dyndns.org WAN IP 22.23.24.25 Fully-Qualified Domain Names (FQDN) - optional for Fixed
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 22
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 The IP addresses of the gateway WAN ports Failover) 172.23.9.0/24 LAN IP 10.5.6.1 Gateway A VPN Router (at office A) WAN_A1 IP (N/A) WAN_A1 port inactive X X WAN_B1 IP netgearB.dyndns.org Gateway B netgear.dyndns.org WAN_A2 IP
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 23
    Guide for ProSafe VPN Firewall Router FVX538 10.5.6.0/24 Gateway-to-Gateway Example (Dual WAN Ports, Load Balancing) 172.23.9.0/24 LAN IP 10.5.6.1 Gateway A VPN Router (at office A) WAN_A1 IP netgear1.dyndns.org WAN_B1 IP 22.23.24.25 netgear2.dyndns.org WAN_A2 IP 22.23.24 client connected to
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 24
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 10.5.6.0/24 Telecommuter Example (Single WAN Port) LAN IP 2-18: Single gateway WAN port case for VPN telecommuter Client B Remote PC (running NETGEAR ProSafe VPN Client) The IP address of the gateway WAN port can be either fixed or
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 25
    Guide for ProSafe VPN Firewall Router FVX538 tunnel after a failover Client B Remote PC (running NETGEAR ProSafe VPN Client) Figure 2-20: Dual gateway WAN ports, The chosen gateway WAN port must act as the responder. 10.5.6.0/24 Telecommuter Example (Dual WAN Ports, Load Balancing) Gateway A LAN
  • Netgear FVX538v1 | Network Planning Guide for FVX538 - Page 26
    Network Planning Guide for ProSafe VPN Firewall Router FVX538 The IP addresses of the gateway WAN ports can be either fixed or dynamic. If an IP address is dynamic, a fully-qualified domain name must
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26

October 2004
202-10066-01 (Beta Draft)
October 2004
NETGEAR
, Inc.
4500 Great America Parkway
Santa Clara, CA 95054 USA
Network Planning Guide
for ProSafe VPN Firewall
Router FVX538