Download Print this page

Advertisement

Quick Links

Security Gateway Manual
SG-1100
© Copyright 2021 Rubicon Communications LLC
Mar 29, 2021

Advertisement

loading
Need help?

Need help?

Do you have a question about the netgate SG-1100 and is the answer not in the manual?

Questions and answers

Summary of Contents for Rubicon netgate SG-1100

  • Page 1 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC Mar 29, 2021...
  • Page 2 CONTENTS 1 Out of the Box 2 How-To Guides 3 References...
  • Page 3 Tip: Before getting started, we recommend downloading the PDF version of the Product Manual and the PDF version of the pfSense Documentation in case you lose Internet access. © Copyright 2021 Rubicon Communications LLC...
  • Page 4 CHAPTER OUT OF THE BOX 1.1 Getting Started The basic firewall configuration begins with connecting the Netgate® appliance to the Internet. The Netgate appliance should be unplugged at this time. Connect one end of an Ethernet cable to the WAN port (shown in the Input and Output Ports section) of the Netgate appliance.
  • Page 5 Note: Ignore the warning to reset the ‘admin’ account password. One of the steps in the Setup Wizard is to change the default password. 1. Click Next to start the Setup Wizard. 2. Click Next after you have read the information on Netgate Global Support. © Copyright 2021 Rubicon Communications LLC...
  • Page 6 Security Gateway Manual SG-1100 Fig. 2: Click Advanced and then Proceed to 192.168.1.1 (unsafe) Fig. 3: Click Next © Copyright 2021 Rubicon Communications LLC...
  • Page 7 Tip: If your DSL or Cable Modem has a default IP Address of 192.168.1.1, change the IP Address of your SG-1100 Netgate Security Gateway to a different subnet, such as 192.168.2.1 with a subnet mask of 24 to avoid an IP Address conflict. © Copyright 2021 Rubicon Communications LLC...
  • Page 8 Security Gateway Manual SG-1100 Fig. 5: Change the Timezone and Click Next Fig. 6: Default Settings Should be Acceptable. Click Next © Copyright 2021 Rubicon Communications LLC...
  • Page 9 Fig. 7: Read and Click Accept If you unplugged the Ethernet cable at the beginning of this configuration, reconnect it to the WAN port now. This completes the basic configuration for the Netgate appliance. © Copyright 2021 Rubicon Communications LLC...
  • Page 10 Plus software is installed, and if an update is available. Section 3 describes Netgate Service and Support. Section 4 shows the various menu headings. Each menu heading has drop-down options for a wide range of configu- ration choices. © Copyright 2021 Rubicon Communications LLC...
  • Page 11 Note: Auto Config Backup is a built-in service located at Services -> Auto Config Backup. This service will save up to 100 encrypted backup files automatically, any time a change to the configuration has been made. Visit the Auto Config Backup page for more information. © Copyright 2021 Rubicon Communications LLC...
  • Page 12 Security Gateway Manual SG-1100 Fig. 10: Backup & Restore Fig. 11: Click Download configuration as XML © Copyright 2021 Rubicon Communications LLC...
  • Page 13 Note: The ethernet ports are switched and configured by default on their own VLAN, see the Switch Overview more information. Other Front Ports • 1x USB 2.0 (left side) • 1x USB 3.0 (right side) © Copyright 2021 Rubicon Communications LLC...
  • Page 14 1.5.1 Safety Notices 1. Read, follow, and keep these instructions. 2. Heed all warnings. 3. Only use attachments/accessories specified by the manufacturer Warning: Do not use this product in location that can be submerged by water. © Copyright 2021 Rubicon Communications LLC...
  • Page 15 1.5.4 Industry Canada This Class B digital apparatus complies with Canadian ICES-3(B). Cet appareil numérique de la classe B est conforme à la norme NMB-3(B) Canada. © Copyright 2021 Rubicon Communications LLC...
  • Page 16 Pour plus d’informations sur le mode d’élimination de votre ancien équipement, veuillez prendre contact avec les pouvoirs publics locaux, le service de traitement des déchets, ou l’endroit où vous avez acheté le produit. © Copyright 2021 Rubicon Communications LLC...
  • Page 17 NETGATE vakuuttaa täten että NETGATE device, tyyppinen laite on direktiivin 1999/5/EY oleellisten vaatimusten ja sitä koskevien direktiivin muiden ehtojen mukainen. Français [French] Par la présente NETGATE déclare que l’appareil Netgate, device est conforme aux exigences essentielles et aux autres dispositions pertinentes de la directive 1999/5/CE. © Copyright 2021 Rubicon Communications LLC...
  • Page 18 NETGATE deklaruoja, kad šis NETGATE ı ˛ renginys atitinka esminius reikalavimus ir kitas 1999/5/EB Direktyvos nuostatas. Malti [Maltese] Hawnhekk, Netgate, jiddikjara li dan NETGATE device, jikkonforma mal- ti ijiet essenzjali u ma provvedimenti o rajn relevanti li hemm fid-Dirrettiva 1999/5/EC. © Copyright 2021 Rubicon Communications LLC...
  • Page 19 TORY DAMAGES), AND MUST FOLLOW THE TERMS OF THESE TERMS AND CONDITIONS OF USE AS A COURT WOULD. To begin an arbitration proceeding, you must send a letter requesting arbitration and describing your claim to the following: © Copyright 2021 Rubicon Communications LLC...
  • Page 20 © Copyright 2021 Rubicon Communications LLC...
  • Page 21 LESS OTHERWISE SPECIFIED IN WRITING. YOU EXPRESSLY AGREE THAT YOUR USE OF THE PROD- UCTS/SERVICES IS AT YOUR SOLE RISK. TO THE FULL EXTENT PERMISSIBLE BY APPLICABLE LAW, RUBICON COMMUNICATIONS, LLC (RCL) AND ELECTRIC SHEEP FENCING (ESF) DISCLAIM ALL WARRANTIES, EXPRESS OR IMPLIED, INCLUD- ING, BUT NOT LIMITED TO, IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PAR- TICULAR PURPOSE.
  • Page 22 CHAPTER HOW-TO GUIDES 2.1 Connecting to the Console Port There are times when directly accessing the console is required. Perhaps webGUI or SSH access has been locked out, or the password has been lost or forgotten. This guide shows how to regain access directly through the console. 2.1.1 Install the Driver A Prolific PL2303 USB-to-UART Bridge driver is used to provide access to the console, which is exposed via the Micro-USB B port on the appliance.
  • Page 23 FreeBSD The device associated with the system console is likely to show up as /dev/cuaU0. Look for messages about the device attaching in the system log files or by running dmesg. © Copyright 2021 Rubicon Communications LLC...
  • Page 24 If portions of the text are unreadable but appear to be properly formatted, the most likely culprit is a character encoding mismatch in the terminal. Adding the -U parameter to the screen command line arguments forces it to use UTF-8 for character encoding: sudo screen -U <console-port> 115200 © Copyright 2021 Rubicon Communications LLC...
  • Page 25 Security Gateway Manual SG-1100 Fig. 1: An example of using PuTTY in Windows. © Copyright 2021 Rubicon Communications LLC...
  • Page 26 9600 or 38400. • Ensure the operating system is configured for the proper console (e.g. ttyS1 in Linux). Consult the various operating install guides on this site for further information. © Copyright 2021 Rubicon Communications LLC...
  • Page 27 1. Please open a support ticket General Problem and then select Netgate SG-1100 for the platform. Make sure to include the serial number in the ticket to expedite access. Once the ticket is processed, the latest stable version of the firmware will be attached to the ticket, with a name such as: pfSense-plus-SG-1100-recovery-21.02-RELEASE-aarch64.img.gz...
  • Page 28 9. Once the install has completed, remove the memstick, and cycle the power (unplug the SG-1100 and plug it back in) to reboot the SG-1100. Note: For information on restoring from a previously saved configuration, go to Backup and Restore. © Copyright 2021 Rubicon Communications LLC...
  • Page 29 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 30 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 31 3. Go to the VLANs tab. button for VLAN group 3. 4. Click on the Warning: VLAN group 0 must remain in place and VLAN groups 1-3 must include 0t as a member, in order to function properly. © Copyright 2021 Rubicon Communications LLC...
  • Page 32 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 33 DHCP lease (unless DHCP Server on LAN has been disabled). You will also be able to access the WebGUI (unless the default Anti-Lockout Rule has been disabled) and internet (unless the Default allow LAN to any rule has been disabled). © Copyright 2021 Rubicon Communications LLC...
  • Page 34 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 35 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 36 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 37 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 38 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 39 SG-1100 to the wall. Hang the wall mount with the cables hanging down. Secure the cables to the holes on the wall mount with cable ties to relieve the weight from the ports. © Copyright 2021 Rubicon Communications LLC...
  • Page 40 Security Gateway Manual SG-1100 Fig. 4: Stretch the Silicone Band to the opposite side of the wall mount © Copyright 2021 Rubicon Communications LLC...
  • Page 41 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 42 Security Gateway Manual SG-1100 Fig. 5: Loop the silicone band under the opposite side of the wall mount © Copyright 2021 Rubicon Communications LLC...
  • Page 43 Security Gateway Manual SG-1100 Fig. 6: The silicone band should look like this © Copyright 2021 Rubicon Communications LLC...
  • Page 44 Security Gateway Manual SG-1100 Fig. 7: Tuck both sides of the silicone band under the wall mount © Copyright 2021 Rubicon Communications LLC...
  • Page 45 Security Gateway Manual SG-1100 Fig. 8: Place the SG-1100 over the silver aluminum standoffs on the wall mount and pull one side of the silicone band over the SG-1100, then the other © Copyright 2021 Rubicon Communications LLC...
  • Page 46 Security Gateway Manual SG-1100 Fig. 9: When mounted properly, the SG-1100 should look like this © Copyright 2021 Rubicon Communications LLC...
  • Page 47 Security Gateway Manual SG-1100 Fig. 10: Note the silicone band under the SG-1100 when installed correctly © Copyright 2021 Rubicon Communications LLC...
  • Page 48 Security Gateway Manual SG-1100 Fig. 11: An SG-1100 wall mount kit correctly installed © Copyright 2021 Rubicon Communications LLC...
  • Page 49 4. Click on the Port VID for OPT. Change the default value from 4092 to 4091. In the lower right-hand corner click Save. At this point Interfaces > Switches > Ports should look like the following: 5. Click on the VLANs tab. 6. Click on the button for VLAN group 3. © Copyright 2021 Rubicon Communications LLC...
  • Page 50 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 51 Note: Unlike software bridging, traffic between ports 1 and 2 will never leave the switch chip so it will perform at ® switching speed. You also cannot filter traffic between the two ports as pfSense Plus will never see it, just like with any other (external) switch. © Copyright 2021 Rubicon Communications LLC...
  • Page 52 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 53 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 54 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 55 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 56 Security Gateway Manual SG-1100 © Copyright 2021 Rubicon Communications LLC...
  • Page 57 CHAPTER THREE REFERENCES 3.1 Additional Resources 3.1.1 Netgate Training ® Netgate training offers training courses for increasing your knowledge of pfSense Plus products and services. Whether you need to maintain or improve the security skills of your staff or offer highly specialized support and improve your customer satisfaction;...
  • Page 58 • All Specifications subject to change without notice For support information, view our support plans. See also: ® For more information on how to use pfSense Plus software, see the pfSense Documentation Resource Library. © Copyright 2021 Rubicon Communications LLC...