Download Print this page

SonicWALL OS 2.x Quick Start Manual

Sonicwall quick start guide network device os 2.x

Advertisement

Quick Links

SonicWALL
SonicOS 2.x Enhanced

Quick Start Guide

Rev 1.1
February 2004

Advertisement

loading

Summary of Contents for SonicWALL OS 2.x

  • Page 1: Quick Start Guide

    SonicWALL SonicOS 2.x Enhanced Quick Start Guide Rev 1.1 February 2004...
  • Page 2 This guide walks you through the steps required to configure a typical customer network using the new SonicOS 2.x Enhanced firmware. If you are familiar with Sonicwall’s existing products and firmware, this guide will help you make the transition from those products to the next generation of Sonicwall firmware.
  • Page 3 Basic WAN & LAN Configuration Refer to the Sonicwall Quick Start Guide included on the product CD. Security Zones and Objects There are several new concepts introduced with SonicOS 2.x Enhanced firmware. In this section, we’ll discuss the Security Zones and Objects. When configuring the new products, you will need to define your Security Zones early in the setup process so that your rules, NAT entries, and objects will be easier to work with.
  • Page 4 8. Click OK to save your settings. The new custom Zone is displayed in the Zones window. Sonic OS 2.x Quick Start Guide...
  • Page 5 DNS Servers’ and enter the values. Select th e Ethernet tab. NOTE – Even though the Sonicwall auto-negotiates the Ethernet settings, you should make it a habit to force the settings to match the connected network equipment. 0. Select the ‘Force’ checkbox and enter the appropriate values for the DSL modem connected to the X2 interface.
  • Page 6 IP address object or group also works for Users and Services. ed to the X3 interface. Enter the network mask assigned to the ent and User Logins on this interface. of Objects to your security policy. Objects are either Sonic OS 2.x Quick Start Guide quipment to be...
  • Page 7 7. Click OK to save your entries. Repeat the st services, defining all IP addresses and netw Address Objects displayed. Sonic OS 2.x Quick Start Guide ting objects and groups. We will use the eps above for the other Instant Messenger...
  • Page 8 -> button to move them into your grou When they are all sele cted, click OK to save your selections. That’s it! Later, we’ll make use of this group in a rule to block IM access. Sonic OS 2.x Quick Start Guide...
  • Page 9 Interfaces, Zones, NAT Policies, Network Address Objects, Service Objects, and Schedules. Now that we’ve covered Interfaces, Zones, and Address Objects, let’s compare rule creation on SonicOS Enhanced to Sonicwall 6.x firmware. “Public LAN Server” The most common access rule created in 6.x firmware is the...
  • Page 10 Since this rule will apply to traffic coming in from the WAN zone and destined for the LAN zone, we’ll need to edit the appropriate rules as follows: Sonic OS 2.x Quick Start Guide...
  • Page 11 7. For Users Allowed, select all. You should not restrict E-Mail by using User Level Authentication. 8. For Schedule, select Always On. We want to always allow incoming E-Mail. 9. Add your own comments as desired. 10. Click OK to add the new firewall rule. Sonic OS 2.x Quick Start Guide...
  • Page 12 NOTE – Before creating the rule, you must first ensure that the user and/or group exist. User level authentication can be accomplished with either the built-in, internal User database of the Sonicwall, or via a Radius server. Create User(s) & Group(s): You can use the following steps to create additional Users and Groups for other purposes, such as VPN Client access.
  • Page 13 * For interoperability, the ability to define whether to use an IP Address, Domain Name, E- Mail Address, or the Sonicwall Identifier as a means of authenticating IKE negotiations. * The ability to specify both the local protected network and the remote network, allowing a level of granularity that wasn’t before available.
  • Page 14 X0 IP Subnet to the remote TZ170. For Destination Networks, sel previously defined address object for the network located behind the TZ170 equired. oose the will ect the (192.168.1.0/24) Sonic OS 2.x Quick Start Guide...
  • Page 15 IP as the IPSe Secondary Gateway. For Shared Secret, enter the 7. For the Local IKE ID, select Sonicwall Identifier and enter the serial nu g the Enhanced software. Define the TZ170 SA as e X2 same value as the Pro 4060 Shared Secret.
  • Page 16 Alive option. This will keep the tunnel active and will renegotiate the tunnel if the WAN IP of the TZ170 changes. 17. Click OK. 18. You should now be able to communicate between the two Sonicwalls via the VPN. Sonic OS 2.x Quick Start Guide...
  • Page 17: Wan Failover

    1. From the GUI, select the NETWORK button and then WAN Failover & LB. 2. To enable outbound load balancing, click the enable checkbox. With only this checkbox enabled, the Sonicwall only tests the physical link status. Sonic OS 2.x Quick Start Guide...
  • Page 18 3. Customize the probing interval, deactivate, and reactivate values as required. NOTE – Be careful with the values you set. Making them too small may cause the Sonicwall to identify a link as down even if connectivity was only b interrupted.
  • Page 19: Wan Load Balancing

    Primary WAN before traffic is sent via the Secondary WAN. Percentage The Sonicwall balances the outgoing traffic on a percentage basis of the total bandwidth available on the two WAN links. You must specify the percentage of bandwidth for the Primary WAN link and the Sonicwall automatically allocates the remaining percentage to the Secondary link.
  • Page 20 14. Click OK to add the NAT policy. With the addition of the new NAT rule, any load balanced traffic going out through the X2 Secondary WAN link is NAT’ed to its IP address. Sonic OS 2.x Quick Start Guide...

This manual is also suitable for:

Sonicos 2 series