Page 2
CONTENTS 1 Out of the Box 2 How-To Guides 3 References...
Page 3
Security Gateway Manual XG-1537 This Quick Start Guide covers the first time connection procedures for the Netgate® 1537 1U Firewall Appliance will provide the information needed to keep the appliance up and running. Tip: Before getting started, we recommend downloading the...
Page 4
Netgate appliance. Connect the other end to the network connection on the computer. In order to access the webConfigurator, the PC network interface must be set to use DHCP, or have a static IP set in the 192.168.1.x subnet with a subnet mask of 255.255.255.0.
Page 5
Security Gateway Manual XG-1537 1.1.2 Logging Into the Web Interface Browse to https://192.168.1.1 to access the web interface. In some instances, the browser may respond with a message indicating a problem with website security. Below is a typical example in Google Chrome. If this message or similar message is encountered, it is safe to proceed.
Page 6
Security Gateway Manual XG-1537 1.1.3 Wizard Upon successful login, the following is displayed. 1.1.4 Configuring Hostname, Domain Name and DNS Servers 1.1.5 Hostname For Hostname, any desired name can be entered as it does not affect functionality of the firewall. Assigning a hostname to the firewall will allow the GUI to be accessed by hostname as well as IP address.
Page 7
Security Gateway Manual XG-1537 1.1.7 DNS Servers The DNS server fields can be left blank if the DNS Resolver is used in non- forwarding mode, which is the default behavior. The settings may also be left blank if the WAN connection is using DHCP, PPTP or PPPoE types of Internet connections and the ISP automatically assigns DNS server IP addresses.
Page 8
Security Gateway Manual XG-1537 This depicts the four possible WAN interface types. Static, DHCP, PPPoE and PPTP. One must be selected from the drop-down list. Further information from the ISP is required to proceed when selecting Static, PPPoE and PPTP such as login name and password or as with static addresses, an IP address, subnet mask and gateway address.
Page 9
Security Gateway Manual XG-1537 1.1.14 Configuring DHCP Hostname Some ISPs specifically require a DHCP Hostname entry. Unless the ISP requires the setting, leave it blank. 1.1.15 Configuring PPPoE and PPTP Interfaces Information added in these sections is assigned by the ISP. Configure these settings as directed by the ISP...
Page 10
Security Gateway Manual XG-1537 1.1.16 Block Private Networks and Bogons When enabled, all private network traffic originating on the internet is blocked. Private addresses are reserved for use on internal LANs and blocked from outside traffic so these address ranges may be reused by all private networks.
Page 11
Security Gateway Manual XG-1537 A static IP address of 192.168.1.1 and a subnet mask (CIDR) of 24 was chosen for this installation. If there are no plans to connect this network to any other network via VPN, the 192.168.1.x default is sufficient.
Page 12
Security Gateway Manual XG-1537 1.1.20 Basic Firewall Configured To proceed to the webConfigurator, make the selection as highlighted. The Dashboard display will follow. 1.1.21 Backing Up and Restoring At this point, basic LAN and WAN interface configuration is complete. Before proceeding, backup the firewall con- figuration.
Page 14
Warning: If your DSL or Cable Modem has a default IP Address of 192.168.1.1, please disconnect the Ethernet cable from the WAN port on your Netgate 1537 1U Security Gateway before proceeding. You will need to change the default IP Address of the device during a later step in the configuration.
Page 15
1. Click Next to start the Setup Wizard. 2. Click Next after you have read the information on Netgate Global Support. 3. On the General Information page, use the following as a guide to configure the firewall.
Page 18
Tip: If your DSL or Cable Modem has a default IP Address of 192.168.1.1, change the IP Address of your Netgate 1537 1U Security Gateway to a different subnet, such as 192.168.2.1 with a subnet mask of 24 to avoid an IP Address conflict.
Page 19
firewall. ® Fig. 8: The pfSense Plus Dashboard Section 1 shows important system information such as the model, Serial Number, and Netgate Device ID for this Netgate firewall. ® Section 2 identifies what version of pfSense Plus software is installed, and if an update is available.
Page 20
Click Download configuration as XML and save a copy of the firewall configuration to the computer con- nected to the Netgate firewall. This backup (or any backup) can be restored from the same screen by choosing the backed up file under Restore Configuration.
Page 22
SFP+ 10 Gbps Note: Both the WAN and LAN ports of the Netgate® appliance support auto-MDIX and are capable of utilizing either straight-through or crossover ethernet cables. Warning: The ix(4) driver used for ports IX0-IX1 does not support ALTQ traffic shaping directly. Limiters may be used instead, or use tagged VLAN interfaces which can be used with ALTQ traffic shaping.
Page 23
Security Gateway Manual XG-1537 Optional Quad Port Expansion Cards Default port configuration for 4-port expansion cards. • 4-port 1GbE Supermicro AOC-SGP-i4 • 4-port 10GbE Intel X710BM2 Port Interface Name Port Name Port Type Port Speed SGP-i4 X710 SGP-i4 X710 SGP-i4...
Page 24
Security Gateway Manual XG-1537 Port Interface Name Port Name Port Type Port Speed T520 X710 T520 X710 T520/X710 T520/X710 Unassigned cxl0 ixl0 SFP+ 10 Gbps Unassigned cxl1 ixl1 SFP+ 10 Gbps OPT1 igb0 igb0 RJ-45 1 Gbps OPT3 igb1 igb1...
Page 26
Security Gateway Manual XG-1537 State Description Continuously on and red An overheat condition has occurred. (This may be caused by cable congestion.) Blinking red (1Hz) Fan failure, check for an inoperative fan. Blinking red (0.25Hz) Power failure, check for a non-operational power supply.
Page 27
Security Gateway Manual XG-1537 Other Ports Port I/O Type IPMI 2x USB 3.0 Reset & Power buttons Status LEDs 1.4.2 Rear Side Other Ports 1. Power port • Power Consumption 20W (idle) 1.5 Safety and Legal 1.5.1 Safety Notices 1. Read, follow, and keep these instructions.
Page 28
Security Gateway Manual XG-1537 c) Contact a qualified electrician or the manufacturer if there are questions about the installation prior to connecting the equipment. d) Protective grounding/earthing is provided by Listed AC adapter. Building installation shall provide appro- priate short-circuit backup protection.
Page 29
Security Gateway Manual XG-1537 Deutsch Die Europäische Richtlinie 2002/96/EC verlangt, dass technische Ausrüstung, die direkt am Gerät und/oder an der Verpackung mit diesem Symbol versehen ist, nicht zusammen mit unsortiertem Gemeindeabfall entsorgt werden darf. Das Symbol weist darauf hin, dass das Produkt von regulärem Haushaltmüll getrennt entsorgt werden sollte. Es liegt in Ihrer Verantwortung, dieses Gerät und andere elektrische und elektronische Geräte über die dafür zuständigen und von...
Page 30
XG-1537 1.5.8 Declaration of Conformity ˇ Cesky[Czech] NETGATE tímto prohla uje, e tento NETGATE device, je ve shod se základními po adavky a dal ími p íslu n mi ustanoveními sm rnice 1999/5/ES. Dansk [Danish] Undertegnede NETGATE erklærer herved, at følgende udstyr NETGATE device, overholder de væsentlige krav og øvrige relevante krav i direktiv 1999/5/EF.
Page 31
Alulírott, NETGATE nyilatkozom, hogy a NETGATE device, megfelel a vonatkozó alapvetõ követelményeknek és az 1999/5/EC irányelv egyéb elõírásainak. Íslenska [Icelandic] Hér me l sir NETGATE yfir ví a NETGATE device, er í samræmi vi grunnkröfur og a rar kröfur, sem ger ar eru í tilskipun 1999/5/EC. Italiano [Italian] Con la presente NETGATE dichiara che questo NETGATE device, è...
Page 32
Security Gateway Manual XG-1537 Slovensky [Slovak] NETGATE t mto vyhlasuje, e NETGATE device, sp a základné po iadavky a v etky príslu né ustanovenia Smernice 1999/5/ES. Svenska [Swedish] Härmed intygar NETGATE att denna NETGATE device, står I överensstämmelse med de väsentliga egenskapskrav och övriga relevanta bestämmelser som framgår av direktiv 1999/5/EG.
Page 33
Security Gateway Manual XG-1537 Austin, Texas 78728 legal@netgate.com The arbitration will be conducted by the American Arbitration Association (AAA) under its rules. The AAA’s rules are available at www.adr.org. Payment of all filing, administration and arbitrator fees will be governed by the AAA’s rules.
Page 34
Security Gateway Manual XG-1537 1.5.13 Limited Warranty DISCLAIMER OF WARRANTIES AND LIMITATION OF LIABILITY THE PRODUCTS/SERVICES AND ALL INFORMATION, CONTENT, MATERIALS, PRODUCTS (INCLUD- ING SOFTWARE) AND OTHER SERVICES INCLUDED ON OR OTHERWISE MADE AVAILABLE TO YOU THROUGH THE PRODUCTS/SERVICES ARE PROVIDED BY US ON AN “AS IS” AND “AS AVAILABLE” BA- SIS, UNLESS OTHERWISE SPECIFIED IN WRITING.
Page 35
2.1 Connecting to the Console Port Connecting to the VGA console is identical to connecting any computer to a monitor. Just connect the VGA cable (DB-15) between the Netgate® system and the monitor. Use USB or PS/2 keyboard and mouse as applicable to your hardware.
Page 37
firmware by selecting Firmware Access as the General Problem and then select Netgate XG-1537 1U for the platform. Make sure to include the serial number in the ticket to expedite access.
Page 40
7. The installer will automatically launch and several options will be presented. On Netgate appliances, choosing Enter for the default options will complete the installation process. Note: Options such as the type of disk partition can be modified through this installation if required.
Page 41
Security Gateway Manual XG-1537 (continued from previous page) Waiting (max 60 seconds) for system process `bufdaemon` to stop... done Waiting (max 60 seconds) for system process `syncer` to stop... Syncing disks, vnodes remaining... 0 0 done All buffers synced. Uptime: 5m43s...
Page 42
Netgate training has got you covered. https://www.netgate.com/training 3.1.2 Resource Library To learn more about how to use your Netgate appliance and for other helpful resources, make sure to browse our Resource Library. https://www.netgate.com/resources 3.1.3 Professional Services Support does not cover more complex tasks such as CARP configuration for redundancy on multiple firewalls or...
Page 43
Security Gateway Manual XG-1537 3.2 Warranty and Support • One year manufacturer’s warranty. • Please contact Netgate for warranty information or view our Product Lifecycle page. • All Specifications subject to change without notice For support information, view our support plans.
Need help?
Do you have a question about the XG-1537 and is the answer not in the manual?
Questions and answers