Advertisement

Quick Links

SonicWALL Secure Remote Access Appliances
SECURE REMOTE ACCESS
SRA 1200/4200 Getting Started Guide
Getting Started Guide

Advertisement

Table of Contents
loading

Summary of Contents for SonicWALL SRA 1200

  • Page 1 SonicWALL Secure Remote Access Appliances SECURE REMOTE ACCESS SRA 1200/4200 Getting Started Guide Getting Started Guide...
  • Page 2 Getting Started Guide This Getting Started Guide contains installation procedures and configuration guidelines for deploying a SonicWALL SRA 1200/4200 appliance into an existing or new network. This document addresses the most common use-case scenarios and network topologies in which the SonicWALL SRA 1200/4200 appliance can be deployed.
  • Page 3 Page 2 Document Contents...
  • Page 4 Setting Up Your Network In this Section: This section provides pre-configuration information. Review this section before setting up your SonicWALL SRA 1200/4200 appliance. • SRA 1200 System Requirements - page 4 • SRA 4200 System Requirements - page 5 •...
  • Page 5 Package Contents for the SonicWALL SRA 1200 SRA 1200 System Requirements Before you begin the setup process, verify that your package contains the following parts: CONSOLE Secure Remote Access 1200 PWR TEST ALARM • One SonicWALL SRA 1200 appliance •...
  • Page 6 Before you begin the setup process, verify that your package contains the following parts: Secure Remote Access SRA 4200 • One SonicWALL SRA 4200 appliance • One SonicWALL SRA 1200/4200 Getting Started Guide • One straight-through Ethernet cable • One serial CLI cable • One rack-mount kit...
  • Page 7 (See previous pages for supported Web browsers) Authentication Code: Record the authentication code found on • An Internet connection the bottom panel of your SonicWALL appliance. Administrator Information Admin Name: Select an administrator account name. (default is admin) Admin Password: Select an administrator password.
  • Page 8 PWR TEST ALARM 1200 SRA Appliance The primary interface (X0) on the SonicWALL SRA connects to an available segment on the gateway device. The encrypted user session is passed through the gateway to the SonicWALL SRA appliance. The SonicWALL SRA appliance decrypts the session and determines the requested resource.
  • Page 9 Scenario B: SRA on an Existing DMZ SonicWALL SRA 1200/4200 Deployment Scenarios SonicWALL UTM Appliance Gateway Deployment Conditions or Network Security Appliance E7500 Device Scenario Requirements OPT, X2, etc SonicOS Enhanced SRA on a New DMZ • OPT or unused interface 3.1 or higher:...
  • Page 10 Set the computer you use to manage the The 'Pwr' LED on the front panel lights up blue when the SonicWALL SRA 1200/4200 to have a static IP address in appliance is turned on. The 'Test' LED lights up yellow and may the 192.168.200.x/24 subnet, such as 192.168.200.20.
  • Page 11 The ‘SonicWALL SRA Management Interface Login’ Troubleshooting displays and prompts you to enter your user name and If you cannot connect to the SonicWALL SRA 1200/4200, verify password. Enter “admin” in the User Name field, “password” in the Password field, select “LocalDomain”...
  • Page 12 Connecting Your Appliance In this Section: This section provides procedures for connecting your SonicWALL SRA 1200/4200 appliance. • Configuring Your SRA 1200/4200 - page 12 • Connecting Your SRA 1200/4200 - page 18 SonicWALL SRA 1200/4200 Getting Started Guide Page 11...
  • Page 13 Configuring Your SRA 1200/4200 field. Re-enter the password in the Confirm Password field. Once your SonicWALL SRA 1200/4200 is connected to a computer through the management port (X0), it can be configured through the Web-based management interface. Setting Your Administrator Password From the management interface, select the Users >...
  • Page 14 Click Accept to save changes to the time settings. Note: Setting the correct time is essential to operations of the SonicWALL SRA 1200/4200. Be sure to set the time zone correctly. Automatic synchronization with an NTP server (default setting) is encouraged for accuracy.
  • Page 15 Configuring SRA Network Settings (Optional) Enter your DNS Domain. (Optional) Enter your WINS servers in the Primary WINS You will now configure your SRA 1200/4200 network settings. Server and Secondary WINS Server fields. Refer to the notes you took in the “Recording Configuration...
  • Page 16 X0 interface, for example, 10.1.1.20 or 192.168.200.20. Log into the SRA management interface again, using the IP address you just configured for the X0 interface. For example, point your browser to http://192.168.168.200. Click Accept. SonicWALL SRA 1200/4200 Getting Started Guide Page 15...
  • Page 17 Navigate to the NetExtender > Client Routes page. Click Add to finish adding this client route. To force all SRA client traffic to pass through the NetExtender tunnel, select Enabled from the Tunnel All Mode drop-down list. Click Add Client Route. Page 16 Configuring Your SRA 1200/4200...
  • Page 18 Scenario C An unused range within your LAN subnet SonicWALL SRA appliance, it must not overlap or collide with If you do not have enough available addresses to support your any assigned addresses. You can determine the correct subnet...
  • Page 19 SonicWALL security appliance. Connect the other end of the Ethernet cable to the X0 port on the front of your SonicWALL SRA 1200/4200. The X0 Port LED lights up green indicating an active connection.
  • Page 20 Connect the other end of the Ethernet cable to the X0 switch on your DMZ. port on the front of your SonicWALL SRA 1200/4200. The X0 Port LED lights up green indicating an active Connect the other end of the Ethernet cable to the X0 connection.
  • Page 21 Page 20 Connecting Your SRA 1200/4200...
  • Page 22 Services and Licensing - page 23 Note: Registration is an important part of the setup process and is necessary to receive the benefits of SonicWALL services, user-licensing, firmware updates, and technical support. SonicWALL SRA 1200/4200 Getting Started Guide Page 21...
  • Page 23 In the login screen, click the Not a registered user? link. SonicWALL SRA 1200/4200 are correct before you register your appliance. To verify or configure these settings, navigate to the ‘System > Time’, ‘Network > DNS’, or ‘Network > Routes’...
  • Page 24 If you purchased an appliance that is pre-licensed, you may be required to enter your activation key here unless current licenses are already indicated in the Status column with either a license key or an expiration date. SonicWALL SRA 1200/4200 Getting Started Guide Page 23...
  • Page 25 • Software and Firmware Updates Flexible Per-User Licensing Your SonicWALL SRA comes standard with a set number of user licenses. However, as the needs of your organization In the 'Activate Service' page, type or paste your key into change, SonicWALL offers flexible options when it comes to the Activation Key field and then click Submit.
  • Page 26 When activation is complete, MySonicWALL displays an activation screen with service status and expiration information. The service management screen also displays the product you licensed. You have successfully registered your SonicWALL appliance. SonicWALL SRA 1200/4200 Getting Started Guide Page 25...
  • Page 27 Page 26 Services and Licensing...
  • Page 28 Network Configuration In this Section: This section provides detailed overviews of deployment scenarios, as well as configuration instructions for connecting your SonicWALL SRA to various network devices, including gateway appliances. • Scenario A: SRA on a New DMZ - page 28 •...
  • Page 29: Table Of Contents

    Login. Note: Remember that you are logging into your SonicWALL security appliance, not the SonicWALL SRA. Enter SRA in the Name field. Select Public from the Security Type drop-down menu.
  • Page 30: Allowing A Wan -> Sra Connection

    HTTP and HTTPS: • Enter a name for the service. • Select both HTTP and HTTPS and click • Click OK when both the HTTP and HTTPS are in the right column. SonicWALL SRA 1200/4200 Getting Started Guide Page 29...
  • Page 31: Allowing An Sra -> Lan Connection

    Server Comment Brief description of the server In the 'Add Address Object' dialog box, create an address object for the X0 interface IP address of your SonicWALL On the 'Server Public Information' page, accept the SRA: default IP address, or enter an IP address in your allowed public IP range.
  • Page 32 In the 'Add Address Object' dialog box, create an address 11. On the 'Firewall > Access Rules' page, in the matrix view, object for the X0 interface IP address of the SonicWALL click the SRA > LAN icon. SRA: Name...
  • Page 33: Connecting To A Sonicwall Security Appliance

    Using a computer connected to your LAN, launch your Users Allowed Web browser, and enter the IP address of your existing Schedule Always on SonicWALL security appliance in the Location or Address field. Enable Logging Selected When the management interface displays, enter your...
  • Page 34 HTTP and HTTPS: public server. Click Apply to create the configuration and • Enter a name for the service. allow access from the WAN to the SonicWALL SRA on the DMZ. • Select both HTTP and HTTPS and click •...
  • Page 35 Allowing DMZ -> LAN Connection In the 'Add Object' dialog box, create an address object for the X0 interface IP address of your SonicWALL SRA, When users have connected to the SRA, they need to be able then click OK.
  • Page 36 In the 'Add Address Object Group' dialog box, create a 11. In the 'Add Rule' window, create a rule to allow access to group for the X0 interface IP address of your SonicWALL the LAN for the address group you just created: SRA and the NetExtender IP range, then click OK.
  • Page 37 In the 'Add Object' dialog box, create an address object • Setting Public Server Access - page 38 for the X0 interface IP address of your SonicWALL SRA, then click OK. Connecting to a SonicWALL Security Appliance Using a computer connected to your LAN, launch your...
  • Page 38 In the 'Add Object' dialog box, create an address object Navigate to the Firewall > Access Rules page, set the for the X0 interface IP address of your SonicWALL SRA, page to matrix view, and click the SRA > LAN icon.
  • Page 39 11. In the 'Add Rule' window, create a rule to allow access to Setting Public Server Access the LAN for the address group you just created: Click the Wizards icon in the top right corner of the SonicOS management interface. Action Allow Select the Public Server Wizard option and click Next.
  • Page 40 Verifying a User Connection from the Internet Tip: From a WAN connection outside of your corporate network, It is easier for remote users to access the SonicWALL launch a Web browser and enter the following: SRA appliance using an a fully qualified domain name https://<WAN_IP_address_of_gateway_device>...
  • Page 41 Page 40 Testing Your Remote Connection...
  • Page 42 Support and Training Options In this Section: This section provides overviews of customer support and training options for SonicWALL SRA appliances. • Customer Support - page 42 • Knowledge Base - page 42 • User Forums - page 43 •...
  • Page 43: Customer Support

    Customer Support Knowledge Base SonicWALL’s customer support Web site is where you will find The Knowledge Base allows users to search for SonicWALL featured support topics, tutorials, and more. If you need further documents based on the following types of search tools: assistance, SonicWALL offers telephone, email, and Web- •...
  • Page 44: User Forums

    User Forums The SonicWALL User Forums is a resource that provides users the ability to communicate and discuss a variety of security and appliance subject matters. Categories include: • SSL-VPN topics • VPN Client topics • Continuous Data Protection topics •...
  • Page 45: Training

    Training SonicWALL offers an extensive sales and technical training curriculum for Network Administrators, Security Experts and SonicWALL Medallion Partners who need to enhance their knowledge and maximize their investment in SonicWALL Products and Security Applications. SonicWALL Training provides the following resources for its customers: •...
  • Page 46: Related Documentation

    SonicWALL GAV Administrator’s Guide • SonicWALL IPS Administrator’s Guide • SonicWALL Anti-Spyware Administrator’s Guide • SonicWALL Comprehensive Anti-Spam Services Guide • SonicWALL CFS Administrator’s Guide • SonicWALL GVC Administrator’s Guide For further information, visit: <http://www.sonicwall.com/us/support/289.html> SonicWALL SRA 1200/4200 Getting Started Guide Page 45...
  • Page 47: Sonicwall Live Product Demos

    SonicWALL Live Product Demos Get the most out of your appliance with the complete line of SonicWALL products. The SonicWALL Live Demo Site provides free test drives of SonicWALL security products and services through interactive live product installations: • SSL-VPN Secure Remote Access •...
  • Page 48: Sonicwall Secure Wireless Network Integrated Solutions Guide

    “secure” wireless network? Check out the SonicWALL Secure Wireless Network Integrated Solutions Guide. This book is the official guide to SonicWALL’s market- leading wireless networking and security devices. This title is available in hardcopy at fine book retailers everywhere, or by ordering directly from Elsevier Publishing at: <http://www.elsevier.com>...
  • Page 49 Page 48 SonicWALL Secure Wireless Network Integrated Solutions Guide...
  • Page 50 Safety and Regulatory Information In this Section: This section provides safety and regulatory information for the SonicWALL SRA 1200/4200 appliances. • SonicWALL SRA 1200/4200 Appliance Regulatory Statement and Safety Instructions - page 50 • Copyright Notice - page 54 •...
  • Page 51 The Lithium Battery used in the SonicWALL Internet security appliance of the mounting bars of the 19-inch rack mount cabinet. may not be replaced by the user. The SonicWALL must be returned to a • Mount in a location away from direct sunlight and sources of heat.
  • Page 52 Alle Ethernet- und RS232-C-Kabel eignen sich für die Verbindung von Geräten in Innenräumen. Schließen Sie an die Anschlüsse der einzuhalten. SonicWALL keine Kabel an, die aus dem Gebäude in dem sich das Gerät befindet, herausgeführt werden. SonicWALL SRA 1200/4200 Getting Started Guide...
  • Page 53 Caution: Modifying this equipment or using this equipment for purposes not shown in this manual without the written consent of SonicWALL, Inc. could void the user's authority to operate this equipment. Page 52...
  • Page 54 USA. All products with country code “B” are made in China. All products with country code “C” or “D” are made in Taiwan R.O.C. All certificates held by Secuwide, Corp. SonicWALL SRA 1200/4200 Getting Started Guide Page 53...
  • Page 55 Copyright Notice Trademarks © 2010 SonicWALL, Inc. SonicWALL is a registered trademark of SonicWALL, Inc. All rights reserved. Microsoft Windows Vista, Windows XP, Windows 2000, Windows NT, Windows Server 200, Internet Explorer, and Under the copyright laws, this manual or the software described...
  • Page 56 Notes SonicWALL SRA 1200/4200 Getting Started Guide Page 55...
  • Page 57 Notes Page 56 Notes...
  • Page 58 F +1 408.745.9300 www.sonicwall.com P/N 232-001815-50 Rev A 6/2010 ©2010 SonicWALL, Inc. is a registered trademark of SonicWALL, Inc. Other product names mentioned herein may be trademarks and/or registered trademarks of their respective companies. Specifications and descriptions subject to change without notice.

This manual is also suitable for:

Sra 4200

Table of Contents