Dell SonicWall SRA 4200/1200 Getting Started Manual

Dell SonicWall SRA 4200/1200 Getting Started Manual

Secure remote access appliances

Advertisement

Secure Remote Access Appliances
Secure Remote Access
SRA 4200/1200 Getting Started Guide
Getting Started Guide

Advertisement

Table of Contents
loading

Summary of Contents for Dell SonicWall SRA 4200/1200

  • Page 1 Secure Remote Access Appliances Secure Remote Access SRA 4200/1200 Getting Started Guide Getting Started Guide...
  • Page 2 WARNING: A WARNING indicates a potential for property damage, personal injury, or death. © 2012 Dell Inc. Trademarks: Dell™, the DELL logo, SonicWALL™, SonicWALL GMS™, SonicWALL ViewPoint™, Aventail™, Reassembly-Free Deep Packet Inspection™, Dynamic Security for the Global Network™, SonicWALL Aventail Advanced End Point Control™ (EPC™), SonicWALL Aventail Advanced Reporting™, SonicWALL Aventail Connect Mobile™, SonicWALL Aventail Connect™, SonicWALL...
  • Page 3: Table Of Contents

    SRA 4200/1200 Getting Started Guide This Getting Started Guide contains installation procedures and configuration guidelines for deploying a Dell SonicWALL SRA 1200/4200 appliance into an existing or new network. This document addresses the most common use-case scenarios and network topologies in which the Dell SonicWALL SRA 1200/4200 appliance can be deployed.
  • Page 5 Setting Up Your Network In this Section This section provides pre-configuration information. Review this section before setting up your Dell SonicWALL SRA 1200/4200 appliance. • SRA 1200 Package Contents - page 6 • SRA 4200 Package Contents - page 7 •...
  • Page 6: Sra 1200 Package Contents

    * The included power cord(s) is approved for use only in spe- cific countries or regions. Before using a power cord, verify that it is rated and approved for use in your location. Missing Items? If any items are missing from your package, contact Dell SonicWALL Support: Web: http://www.sonicwall.com/us/Support.html Email: customer_service@sonicwall.com...
  • Page 7: Sra 4200 Package Contents

    * The included power cord(s) is approved for use only in spe- cific countries or regions. Before using a power cord, verify that it is rated and approved for use in your location. Missing Items? If any items are missing from your package, contact Dell SonicWALL Support: Web: http://www.sonicwall.com/us/Support.html Email: customer_service@sonicwall.com...
  • Page 8: What You Need To Begin

    5.0 or higher for Mac OS 10.0 Collect the following information about your current network Chrome 22.0 or higher configuration: Primary DNS: Secondary DNS (optional): DNS Search List (in order): WINS server(s) (optional): Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 9: Selecting A Deployment Scenario

    Network Security Appliance E7500 over the DMZ or Opt interface on an accompanying gateway appliance, such as a Dell SonicWALL NSA E7500. This method OPT, X2, etc of deployment offers additional layers of security control, plus the ability to use Dell SonicWALL’s UTM services, including...
  • Page 10 Existing Gateway Device Dell SonicWALL UTM Appliance or Switch / Hub Network Security Appliance E7500 LAN Port OPT, X2, etc Internet Switch Switch Router Router Remote Users Network Nodes Remote Users SRA Appliance SRA Appliance Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 11: Installing The Sra Appliance

    • No dedicated interface for a performs a series of diagnostic tests. When the 'TEST' LED is no longer lit, the Dell SonicWALL SRA 1200/4200 is SonicOS Standard SRA on a New DMZ •...
  • Page 12: Accessing The Management Interface

    To access the Web-based management interface of the Dell SonicWALL SRA 1200/4200: Set the computer you use to manage the Dell SonicWALL SRA 1200/4200 to have a static IP address in the 192.168.200.x/24 subnet, such as 192.168.200.20. However, do not use 192.168.200.1, as this address will conflict with the appliance.
  • Page 13: Troubleshooting

    Troubleshooting If you cannot connect to the Dell SonicWALL SRA 1200/4200, verify the following configurations: • Did you plug your management workstation into the interface X0 on the SRA appliance? Management can only be performed through X0. • Is the link light illuminated on both the management station and the SRA appliance? •...
  • Page 14 Connecting Your Appliance In this Section This section provides procedures for connecting your Dell SonicWALL SRA 1200/4200 appliance. • Configuring Your SRA 4200/1200 - page 15 • Connecting Your SRA 1200/4200 - page 21 Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 15 Configuring Your SRA 4200/1200 Once your Dell SonicWALL SRA 1200/4200 is connected to a computer through the management port (X0), it can be configured through the Web-based management interface. Setting Your Administrator Password From the management interface, select the Users > Local Users page.
  • Page 16: Adding A Local User

    Click Accept to save changes to the time settings. Note: Setting the correct time is essential to operations of the Dell SonicWALL SRA 1200/4200. Be sure to set the time zone correctly. Automatic synchronization with an NTP server (default setting) is encouraged for accuracy.
  • Page 17 Interfaces table. (Optional) Enter domain suffixes in the DNS Search List: Type each domain suffix and click Add. Use the up and down arrow keys to arrange the DNS suffixes in order of priority. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 18 X0 interface, for example, 10.1.1.20 or 192.168.200.20. Log into the SRA management interface again, using the IP address you just configured for the X0 interface. For example, point your browser to http://192.168.168.200. Click Accept. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 19 Click Accept to finish adding this client route. To force all SRA client traffic to pass through the NetExtender tunnel, select Enabled from the Tunnel All Mode drop-down list. Click Add Client Route. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 20 67.115.118.80, and configure your NetExtender range as use 192.168.168.240 to 192.168.168.249, providing 192.168.10.100 to 192.168.10.200. Then, on your gateway they are not already in use. device, configure a static route to 192.168.10.0/255.255.255.0 using 67.115.118.80. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 21: Connecting Your Sra 1200/4200

    Connecting Your SRA 1200/4200 Scenario A: SRA on a New DMZ Before continuing, reference the diagrams on the following pages to connect the Dell SonicWALL SRA 1200/4200 to your network. Dell SonicWALL UTM Appliance Refer to the options in “Selecting a Deployment Scenario” on...
  • Page 22 SRA appliance, or to a hub or switch on your DMZ. Connect the other end of the Ethernet cable to the X0 port on the front of your Dell SonicWALL SRA 1200/4200. The Connect the other end of the Ethernet cable to the X0 port X0 Port LED lights up green indicating an active on your Dell SonicWALL SRA 1200/4200.
  • Page 23: Registering Your Appliance

    • Services and Licensing - page 26 Note: Registration is an important part of the setup process and is necessary to receive the benefits of Dell SonicWALL services, user licensing, firmware updates, and technical support. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 24: Creating A Mysonicwall Account

    In the screen confirming that your account was created, Perform the following steps to create a MySonicWALL account: click Continue to finish creating your MySonicWALL In your browser, navigate to www.mysonicwall.com. account. In the login screen, click the Register Now link. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 25: Product Registration

    Before You Register Verify that the time, DNS, and default route settings on your Dell SonicWALL SRA 1200/4200 are correct before you register your appliance. To verify or configure these settings, navigate to the ‘System > Time’, ‘Network > DNS’, or ‘Network > Routes’...
  • Page 26: Service Management

    Services and Licensing The following products and services are available for the Dell SonicWALL SRA appliance: This section contains the following subsections: • Gateway Services: • Service Management - page 26 • Node Upgrade • Flexible Per-User Licensing - page 27 •...
  • Page 27: Flexible Per-User Licensing

    Your SRA appliance comes standard with a set number of user licenses. However, as the needs of your organization change, Dell SonicWALL offers flexible options when it comes to adding additional licenses.The ability to purchase a convenient number of additional licenses allows you to plan sensibly for the future, or provide immediate scalability when you need it most.
  • Page 28: Trying Or Purchasing Services

    Management' page to complete your purchase. When activation is complete, MySonicWALL displays an activation screen with service status and expiration information. The service management screen also displays the product you licensed. You have successfully registered your SonicWALL appliance. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 29: Network Configuration

    Network Configuration In this Section This section provides detailed overviews of deployment scenarios, as well as configuration instructions for connecting your Dell SonicWALL SRA appliance to various network devices, including gateway appliances. • Scenario A: SRA on a New DMZ - page 30 •...
  • Page 30: Connecting To A Sra Appliance

    Allowing an SRA -> LAN Connection - page 32 Connecting to a SRA Appliance Using a computer connected to your LAN, launch your Web browser and enter the IP address of your existing Dell SonicWALL security appliance in the Location or Address field.
  • Page 31: Allowing A Wan -> Sra Connection

    Click the Wizards icon in the top right corner of the management interface. Dell SonicWALL security appliance. If you accept this On the 'Welcome' page, select the Public Server Wizard, default, all HTTP and HTTPS traffic to this IP address and then click Next.
  • Page 32: Allowing An Sra -> Lan Connection

    • Enter a name for the group. • In the left column, select the two groups you created and click the right arrow button • Click OK to create the group when both objects are in the right column. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 33 Enable Logging Selected Allow Fragmented Selected Packets 14. Click OK to create the rule. 12. On the resulting 'Firewall > Access Rules' page, click Continue to “Testing Your Remote Connection” on page 40 Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 34: Using A Computer Connected To Your Lan, Launch Your Web

    Next. On the 'Public Server Type' page, select: Using a computer connected to your LAN, launch your Web browser, and enter the IP address of your existing Dell Server Type Other SonicWALL security appliance in the Location or Address field.
  • Page 35 Note: The default IP address is the WAN IP address of your Dell SonicWALL firewall. If you accept this default, all the NetExtender range. HTTP and HTTPS traffic to this IP address will be In the 'Add Object' dialog box, create an address object routed to your SRA appliance.
  • Page 36 On the 'Firewall > Access Rules' page in the matrix view, Continue to “Testing Your Remote Connection” on page 40 click the DMZ > LAN icon. 10. On the resulting 'Firewall > Access Rules' page, click Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 37 Click OK to create the object. Click again to create an address object for Note: Remember that you are logging into your Dell the NetExtender range. SonicWALL security appliance, not the SRA appliance. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 38 In the 'Add Address Object Group' dialog box, create a group for the X0 interface IP address of your SRA and the 10. On the resulting 'Firewall > Access Rules' page, click NetExtender IP range, then click OK. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 39 Verify the Public Server field contains the correct IP Schedule Always on address and click Next. Click Apply to finish setting public server access. Enable Logging Selected Allow Fragmented Selected Packets 12. Click OK to finish creating the rule. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 40 Testing Your Remote Connection You have now configured your Dell SonicWALL security Click NetExtender to start the NetExtender client installation. appliance and SRA appliance for secure SSL-VPN remote access.This section provides instructions to verify your If prompted, click Install to complete the client installation.
  • Page 41: Upgrading Your Appliance

    Upgrading Your Appliance In this Section This section provides procedures for upgrading an existing SRA image on a Dell SonicWALL SRA 1200 or 4200 to a newer version. • Obtaining the Latest SRA Image - page 42 • Exporting Configuration Settings - page 42 •...
  • Page 42: Obtaining The Latest Sra Image

    Note: If you have already registered your Dell SonicWALL SRA appliance, and you selected Notify me when new firmware is available on the System > Settings page,...
  • Page 43: Uploading A New Sra Image

    After successfully uploading the image to your SRA appliance, the login screen is displayed. The updated On a Dell SonicWALL SRA 1200/4200, you are ready to reboot image information is displayed on the System > Settings your SRA appliance with the new SRA image. Do one of the page.
  • Page 44: Resetting The Appliance In Safemode

    The reset button is on the front panel in a small hole to the right of the USB connectors. The TEST light starts blinking when the SRA appliance has rebooted into SafeMode. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 45: Support And Training Options

    Support and Training Options In this Section This section provides overviews of customer support and training options for Dell SonicWALL SRA appliances. • Customer Support - page 46 • Warranty Support Policy - page 46 • Knowledge Base - page 47 •...
  • Page 46: Customer Support

    Customer Support Warranty Support Policy Dell SonicWALL’s customer support Web site is where you will All Dell SonicWALL appliances come with a 1-year Limited find featured support topics, tutorials, and more. For answers to Hardware Warranty which provides delivery of critical support questions, visit: replacement parts for defective parts under warranty.
  • Page 47: Knowledge Base

    User Forums The Knowledge Base allows users to search for Dell The Dell SonicWALL User Forums is a resource that provides SonicWALL documents based on the following types of search users the ability to communicate and discuss a variety of tools: security and appliance subject matters.
  • Page 48: Training

    Training Dell SonicWALL offers an extensive sales and technical training curriculum for Network Administrators, Security Experts and Dell SonicWALL Medallion Partners who need to enhance their knowledge and maximize their investment in Dell SonicWALL Products and Security Applications. Dell SonicWALL Training provides the following resources for its customers: •...
  • Page 49: Related Documentation

    • Dell SonicOS SSL-VPN Feature Modules • Dell SonicOS Administrator’s Guide • Dell SonicOS Feature Modules • Dell SonicWALL GMS Administrator’s Guide • Dell SonicWALL Analyzer Administrator’s Guide For further information, visit: http://www.sonicwall.com/us/support/289.html Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 50: Live Product Demos

    Live Product Demos Get the most out of your appliance with the complete line of Dell SonicWALL products. The Dell SonicWALL Live Demo Site provides free test drives of Dell SonicWALL security products and services through interactive live product installations: •...
  • Page 51: Safety And Regulatory Information

    Safety and Regulatory Information In this Section This section provides safety and regulatory information for the SRA 1200/4200 appliances. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 52 The Lithium Battery used in the Dell SonicWALL Internet security used and hand tightened to ensure secure installation. Choose a appliance may not be replaced by the user. The Dell SonicWALL must mounting location where all four mounting holes line up with those be returned to a Dell SonicWALL authorized service center for of the mounting bars of the 19-inch rack mount cabinet.
  • Page 53 Nordamerikas Vorgesehen. Für Kunden in der Europaïschen Lithiumbatterie darf nicht vom Benutzer ausgetauscht werden. Zum Union (EU) ist ein Netzkabel nicht im Lieferumfang enthalten.. Austauschen der Batterie muss die Dell SonicWALL in ein von Dell • Stellen Sie sicher, dass das Gerät vor Wasser und höher SonicWALL autorisiertes Service-Center gebracht werden.
  • Page 54 Caution: Modifying this equipment or using this equipment for purposes not shown in this manual without the written consent of Dell SonicWALL, Inc. could void the user's authority to operate this equipment. Dell SonicWALL SRA 4200/1200 Getting Started Guide...
  • Page 55 USA. All products with country code “B” are made in China. All products with country code “C” or “D” are made in Taiwan R.O.C. All certificates held by Secuwide, Corp. Dell SonicWALL SRA 4200/1200 Getting Started Guide...

This manual is also suitable for:

Sonicwall sra 1600Sonicwall sra 4600

Table of Contents