Advertisement

Quick Links

N
S
-5XT
ET
CREEN
User's Guide
Version 5.0
093-1323-000
Rev. B

Advertisement

Table of Contents
loading

Summary of Contents for Juniper NETSCREEN-5XT

  • Page 1 -5XT CREEN User’s Guide Version 5.0 093-1323-000 Rev. B...
  • Page 2 NetScreen-Global PRO, NetScreen-Global PRO Express, NetScreen-Remote Security Client, NetScreen-Remote VPN Client, NetScreen-IDP 10, NetScreen-IDP 100, NetScreen-IDP 500, GigaScreen ASIC, GigaScreen-II ASIC, and NetScreen ScreenOS are trademarks of Juniper Networks, Inc. All other trademarks and registered trademarks are the property of their respective companies.
  • Page 3: Table Of Contents

    Establishing a Console Session ..............12 Changing Your Admin Name and Password ..........12 Setting an IP Address for Managing NetScreen-5XT ......... 13 Accessing the NetScreen-5XT Using the WebUI ........13 Using the WebUI Wizards to Configure the Device ........14 Asset Recovery ..................
  • Page 4 Contents Connectors ....................A-II Index........................IX-I User’s Guide...
  • Page 5: Preface

    Preface The Juniper Networks NetScreen-5XT provides IPSec VPN and firewall services for a broadband telecommuter, a branch office, or a retail outlet. While at the entry level of the NetScreen appliance product line, the NetScreen-5XT uses the same firewall, VPN, and traffic management technology as NetScreen’s high-end central site products.
  • Page 6 UNIPER ETWORKS CREEN UBLICATIONS To obtain technical documentation for any Juniper Networks NetScreen product, visit www.juniper.net/techpubs/. For technical support, open a support case using the Case Manager link at http:// www.juniper.net/support/ or call 1-888-314-JTAC (within the United States) or 1-408-745- 9500 (outside the United States).
  • Page 7: Chapter 1 Overview

    Chapter 1 Overview This chapter provides detailed descriptions of the NetScreen-5XT chassis. Topics explained in this chapter include: • “Port and Power Connectors” on page 2 • “Status LEDs” on page 3 Note: For safety warnings and instructions, please refer to the NetScreen Safety Guide.
  • Page 8: Port And Power Connectors

    Ethernet modem. The NetScreen-5XT runs at 100-240 VAC +/- 10% (AC volts) and 12 watts. When properly connected to an AC power source, the power LED on the faceplate glows solid green. When power fails, the power LED turns off.
  • Page 9: Status Leds

    Status LEDs TATUS The front panel of the NetScreen-5XT has power and status LEDs for the device, and port status LEDs for the Trusted and Untrusted interfaces. Reset Button Power LED Status LED Port Status LEDs Interpreting Status LEDs for the Device The status LEDs indicate whether the device is operating properly.
  • Page 10 Chapter 1 Overview User’s Guide...
  • Page 11: Chapter 2 Installing The Device

    Chapter 2 Installing the Device This chapter describes how to install a NetScreen-5XT on a desktop, connect the power, and connect the NetScreen-5XT to your network. Topics explained in this chapter include: • “Desktop Installation Guidelines” on page 6 •...
  • Page 12: Desktop Installation Guidelines

    Room temperature might not be sufficient to keep equipment at acceptable temperatures without an additional circulation system. Ensure that the room in which you operate the NetScreen-5XT has adequate air circulation. • Do not work alone if potentially hazardous conditions exist.
  • Page 13: Connecting The Netscreen-5Xt To Your Network

    You can use either cross-over or straight-through cables to connect NetScreen-5XT ports to other devices. Obtain a cable for each device you are connecting to the NetScreen-5XT Trusted interface ports. NetScreen-5XT...
  • Page 14 Chapter 2 Installing the Device User’s Guide...
  • Page 15: Chapter 3 Configuring The Device

    Chapter 3 Configuring the Device This chapter describes how to configure a NetScreen-5XT after you have installed it on a desktop, connected it to a power source, and plugged in the necessary cables. Topics explained in this chapter include: •...
  • Page 16: Operational Modes

    NetScreen-5XT invisible to the network. However, it can still perform firewall, VPN, and traffic management according to configured security policies. Route Mode In Route mode, the NetScreen-5XT operates at Layer 3. Because you can configure each interface using an IP address and subnet mask, you can configure individual interfaces to perform NAT.
  • Page 17: The Netscreen-5Xt Interfaces

    The NetScreen-5XT Interfaces -5XT I CREEN NTERFACES Each NetScreen-5XT provides ethernet interfaces for access and connectivity. In addition, there are logical (non-physical) interfaces that perform special Layer-2 or management functions. The configurable interfaces available on a NetScreen-5XT are as follows:...
  • Page 18: Establishing A Console Session

    STABLISHING A ONSOLE ESSION The NetScreen-5XT has a serial port (called the Console port) that enables you to establish a console session with NetScreen ScreenOS, the device operating system. Note: For the console connection, you will need to obtain a serial cable with a male DB-9 connector on one end and female DB-9 connector on the other wired straight-through cable.
  • Page 19: Setting An Ip Address For Managing Netscreen-5Xt

    ANAGING CREEN The default IP address of the Trusted interface on the NetScreen-5XT is 192.168.1.1. This is the IP address that you use to manage it through a Telnet session or with the WebUI management application. If you do not want to use this default IP address, you need to assign a new one.
  • Page 20: Using The Webui Wizards To Configure The Device

    Initial Configuration wizard appears. • The Outgoing Policy wizard allows you to configure rules that tell your NetScreen-5XT what kind of services users on your network (the Trust zone) are allowed to access on outside computers (the Untrust zone). •...
  • Page 21: Using Cli Commands To Reset The Netscreen-5Xt

    To perform this operation, you need to make a console connection, as described in “Establishing a Console Session” on page Note: By default, the NetScreen-5XT recovery feature is enabled. You can disable it by entering the following CLI command: unset admin device-reset. At the login prompt, type the serial number of the NetScreen-5XT.
  • Page 22 Release the button. The NetScreen-5XT now erases the configuration and restarts. If you do not follow the complete sequence, the reset process cancels without any configuration change and the serial console message states, “Configuration Erasure Process aborted.”...
  • Page 23 Appendix A Specifications This appendix provides general system specifications for the NetScreen-5XT. • “NetScreen-5XT Attributes” on page A-II • “Electrical Specification” on page A-II • “Environmental” on page A-II • “Safety Certifications” on page A-II • “EMI Certifications” on page A-II •...
  • Page 24: Appendix A Specifications

    The RJ-45 twisted-pair ports are compatible with the IEEE 802.3 Type 10/100 Base-T standard. The following table media type and distance for these connectors. Standard Media Type Mhz/Km Rating Maximum Distance 100Base-TX Category 5 and higher Unshielded 100 m Twisted Pair (UTP) Cable A-II NetScreen-5XT...
  • Page 25 14 IP address, system 13 status 3 status LED 3 LED 3 system IP address 13 link status LED 3 system status LEDs 3 login, changing 12 transparent mode 10 NetScreen publications vi NetScreen-5XT NetScreen-5XT IX-I...
  • Page 26 Index IX-II User’s Guide...

Table of Contents