GTA GB-200 Product Manual

Firewall appliance

Advertisement

Quick Links

GB-200
Firewall
APPLIANCE
Product
Guide
������
powered by
GNAT
Box
����������
����������������
SystemSoftware

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the GB-200 and is the answer not in the manual?

Questions and answers

Summary of Contents for GTA GB-200

  • Page 1 GB-200 Firewall APPLIANCE Product Guide ������ powered by GNAT ���������� ���������������� SystemSoftware...
  • Page 2 GTA assumes no responsibility with regard to the performance or use of these products. Every effort has been made to ensure that the information in this manual is accurate. GTA is not responsible for printing or clerical errors.
  • Page 3: Table Of Contents

    Preinstallation ………………………………………………………………………… 13 Utilities & Documentation ………………………………………………………… 13 Temporary Workstation Configuration ………………………………………… 13 LAN Using the Default IP Network …………………………………………… 14 Connect the GB-200 ………………………………………………………………… 14 3 SET UP DEFAULT CONFIGURATION Basic Configuration using Web Interface ……………………………………… 15 Network Information ……………………………………………………………… 17 Re-configure Workstation …………………………………………………………...
  • Page 4 FCC Compliance Information Product Name: GB-200 Firewall Appliance Model Number: GB-200 FCC RULES: TESTED TO COMPLY WITH FCC PART 15 CLASS A OPERAT- ING ENVIRONMENT. FCC COMPLIANCE STATEMENT: This device complies with part 15 of the FCC Rules. Operation is subject to the...
  • Page 5: Introduction

    Introduction 5 1 Introduction GNAT Box Basics Global Technology Associates, Inc., has been designing and building Internet firewalls since 1994. In 1996, GTA developed the first truly affordable commercial-grade firewall, the GNAT Box . Since then, ICSA- ® certified GNAT Box System Software has become the engine that drives all GTA firewall systems.
  • Page 6: Registration

    GB-200 Firewall Appliance Product Guide Registration To register, go to www.gta.com. Click on Support and then the GTA Support Center link. If you do not have an account, click New Account, and enter the profile information. Once you have completed the form, click Add to save the profile.Return to the login screen.
  • Page 7: Support Options

    Caution Back up your configuration before upgrading! About This Guide This Product Guide shows how to set up and install the GB-200 and change the factory settings to your network’s default configuration. The GNAT B includes configuration functions, descrip- YSTEM...
  • Page 8: Additional Documentation

    Documents on the website are either in plain text (*.txt) or Portable Docu- ment Format (PDF) which requires Adobe Acrobat Reader version 5.0. A free copy of the reader can be obtained at www.adobe.com. Documents received from GTA Support may also be in email or Microsoft Word format (*.doc). Documentation Map Products and Options GNAT Box System Software ..GNAT Box System Software User‘s Guide...
  • Page 9: About Gb-200

    Introduction 9 About GB-200 The GB-200 Firewall Appliance is a self-contained desktop unit with the system software pre-installed. This guide describes and explains how to install and initially configure the GB-200. For configuration options and field descriptions see the GNAT B ’...
  • Page 10: Software Specifications

    • VPN Objects Hardware Design The GB-200 Firewall Appliance is a small desktop unit designed to mini- mize heat generation without cooling fans. It has three high speed 10/100 Ethernet interfaces to ensure high performance and network design flex- ibility, and one multifunction DB-9 serial interface to provide access for a serial console or a dial-up modem/ISDN TA.
  • Page 11: Led Indicators

    ������� ����� Introduction 11 ����� �������� ����� ��������������� Global Technology Associates, Inc. GB-200 Front Panel ������� ����� GB-200 Back Panel ����� �������� ����� LED Indicators �������������� Global Technology Associates, Inc. Front Panel Power LED When the firewall is powered up, the green Power LED on the left side of the front panel will be lit.
  • Page 12: Hardware Specifications

    GB-200 Firewall Appliance Product Guide Hardware Specifications Physical Specifications Chassis 1” h x 6” d x 6.25” w (2.54 cm x 15.24 cm x 15.875 cm) Weight 1.25 lbs (0.568kg) Power Specifications MTBF (Mean Time Between Failure) Minimum–300,000 /H/rs Input...
  • Page 13: Installation

    1 – Installation 13 2 Installation Preinstallation Installing the GB-200 requires that the system be connected to your local area network (LAN). This allows the administrator to connect to the GB- 200, configure the network settings to match the local network address scheme and perform connectivity tests.
  • Page 14: Lan Using The Default Ip Network

    0). A yellow crossover cable is included with hardware appliances. Connect the GB-200 Connect the GB-200 to a hub or switch on your local area network using the Protected Network interface, (the first interface port 0, see illustration GB-200 Rear Panel) and a standard (straight-through) network cable. By default, 0 is assigned the IP address 192.168.71.254.
  • Page 15: Set Up Default Configuration

    3 – Set Up Default Configurationo 15 3 Set Up Default Configuration The following sections will describe how to set up your GB-200 in the default configuration, in which all internal users are allowed outbound and no unsolicited inbound connections are allowed.
  • Page 16 Opera (www.opera.com) to administer your firewall, that allows you to use SSL encryption, or using a compatible browser, GBAdmin or Console to install GB-200, disable SSL, then use Internet Explorer 5 with SSL encryption disabled. See Technical Documents on the CD and on www.gta.com for information about installing the GTA...
  • Page 17: Network Information

    Set the Host Name to that given to the firewall in your DNS server. Once you have completed Network Information, apply the changes by clicking on the Save. The GB-200 will now be on a different logical network (assuming you’ve changed the default IP address for the Protected Network) and you will not be able to access the GTA Firewall from your workstation, since the firewall will now be on a different network.
  • Page 18: Re-Configure Workstation

    After re-configuring your workstation, you can access the GB-200 using the new IP address assigned to the Protected Network interface. The GB-200 should now be active and functioning in default security mode, (all internal users are allowed outbound and no unsolicited inbound connec- tions are allowed).
  • Page 19: Network Information

    Once you have completed the Network Information form, apply the changes to the GB-200 by clicking on the single diskette icon on the tool bar to save the data. The GB-200 will now be on a different logical network (assuming...
  • Page 20: Re-Configure Workstation

    GB-200 Firewall Appliance Product Guide The GB-200 has three network interfaces; two are used for Protected and External Networks. The other network interfaces can be defined as any of the three network types: Protected, External or PSN (Private Service Network, GTA's DMZ). Only External and Protected Network interfaces are required to initially configure and test the GTA Firewall.
  • Page 21: Troubleshooting

    4 – Troubleshooting 21 4 Troubleshooting Guidelines GTA Support recommends the following guidelines as a starting point when troubleshooting network problems: 1. Start with the simplest case of locally attached hosts. 2. Use IP numbers, not names. Your problem could be DNS.
  • Page 22: Troubleshooting Q & A

    • Have you added a static route to the GB-200 to tell it which router is used to reach the problem network? Have you set the router’s default route to be the GB-200? Have you set the default route for hosts on the problem network to be the router? •...
  • Page 23 6. Why can't I see or ping the Protected Network interface? You may have the wrong cable for your connection. • For a direct connection (GB-200 to host or router) you need a crossover cable. • For a connection to a hub or switch you need a straight-through cable.
  • Page 24 8. How do I revert to my previous configuration after a version upgrade? The GB-200’s flash memory is in two sections; one contains the current soft- ware version plus any saved configuration, the other contains the previous software version and configuration.
  • Page 25 24 GBAdmin 8, 13, 16 Caution 7 errors 22 Certificate, security 15 GBAdmin interface 8 CIDR notation 5, 17, 19 GTA Support 2 Clearance 10 Code, activation 6 COM port 23 help 2 Configuration High Availability 8 default 7, 15...
  • Page 26 GB-200 Firewall Appliance Product Guide Macintosh 13 TCP/IP 5 Technical Support 2 Temperature 12 Netmask 5, 17, 19 terminal emulation 23 Network Terms 7 connection 10 testing a configuration 24 isolated 14 Traceroute 21 Protected, External, PSN 14 Troubleshooting 21...

Table of Contents