Stonesoft StoneGate FW-310 Appliance Installation Manual

Advertisement

Quick Links

FW-310
Appliance Installation Guide

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the StoneGate FW-310 and is the answer not in the manual?

Questions and answers

Summary of Contents for Stonesoft StoneGate FW-310

  • Page 1 FW-310 Appliance Installation Guide...
  • Page 2 European Council Regulation (EC) N:o 1334/2000 of 22 June 2000 setting up a Community regime for the control of exports of dual-use items and technology (as amended). Thus, the export of this Stonesoft software in any manner is restricted and requires a license by the relevant authorities.
  • Page 3: Table Of Contents

    (page 5) for information on other available documentation. The use of the appliance is subject to the acceptance of the End User License Agreement, which can be found at the Stonesoft website. You must have a working Management Center on a separate server to bring the appliance(s) operational.
  • Page 4: Getting Started

    StoneGate appliance). 5. Licenses for each component except the Management Client(s). Generate appliance licenses at the Stonesoft website with the POS (proof-of-serial-number) code attached to the appliance. The Web Portal Server is an optional component that is available on separate order.
  • Page 5 Press F1 while in any Management Client window to view the Online Help. All PDF guides are available: • On the Management Center CD-ROM (in the Documentation folder) • At the Stonesoft Website at http://www.stonesoft.com/en/support/ technical_support_and_documents/manuals/. Install the free Adobe Reader program to view the PDF documents (available at www.adobe.com/reader/).
  • Page 6: Safety Precautions

    S a f e t y P r e c a u t i o n s The following safety information and procedures must be followed whenever working with the StoneGate Appliance. However, please be advised that StoneGate Appliances are not end-user serviceable, and you must never open the appliance covers for any reason.
  • Page 7 ESD Precautions Electrostatic discharge (ESD) is generated by two objects with different electrical charges coming into contact with each other. An electrical discharge is created to neutralize this difference, which can damage electronic components and printed circuit boards. Use a grounded wrist strap designed to prevent static discharge.
  • Page 8: Front Panel

    F r o n t P a n e l Network activity and link indicator for each interface Indicators for power and disk activity The indicators in the front panel provide you with critical information related to different parts of the system. The front panel indicator lights are explained below.
  • Page 9 Table 2 Network Activity and Link Indicator Status Indicator Explanation 0 to 3 Unlit No link. 0 to 3 Green Link ok. Front Panel...
  • Page 10: Back Panel

    B a c k P a n e l Port Indicator Power Button The back panel indicator lights and the colors of the Power button light are explained below. The connectors on the back panel are explained in detail in Connecting the Cables (page 11).
  • Page 11: Connecting The Cables

    C o n n e c t i n g t h e C a b l e s Serial Port Ports Ethernet Ports (RJ-45) Power Cable Connecting Network Cables To connect network cables Connect network cables to the ethernet ports. •...
  • Page 12 Connecting the Appliance to the Power Supply To connect the appliance to the power supply Connect the power cable to the power connector on the back of the appliance. Plug the power cord into a grounded, high-quality power strip that offers protection from electrical noise and power surges.
  • Page 13: Initial Configuration

    I n i t i a l C o n f i g u r a t i o n To start using the appliance, you must activate the network interfaces and establish a secure connection to the Management Server as outlined in the sections below.
  • Page 14 • If the connection is successful, the appliance automatically reboots itself and the engine configuration is finished. If you configure the engine with a USB stick, you must set a password for the root account in the Management Client to enable command line access to the engine.
  • Page 15 To select the configuration method Do one of the following: • To import a saved configuration, highlight Import using the arrow keys and press E NTER • To skip the import, highlight Next and press E NTER If you selected the Import option, select the configuration file. To set the keyboard layout Highlight the entry field for Keyboard Layout using the arrow keys and press E...
  • Page 16 To set the engine’s timezone Highlight the entry field for Local Timezone using the arrow keys and press E NTER Select the correct timezone in the dialog that opens. Note – The timezone setting affects only the way the time is displayed on the engine command line.
  • Page 17 (Optional) Highlight Enable SSH Daemon and press the spacebar on your keyboard to select the option and allow remote access to engine command line using SSH. Note – It is not necessary to enable the SSH daemon now for ongoing management, as this option can also be set through the Management Client.
  • Page 18 Highlight the Mgmt column and press the spacebar on your keyboard to select the correct interface for contact with the Management Server. Note – The Management interface must be the same that you configured as the Primary Control Interface for the corresponding Firewall element in the Management Center.
  • Page 19 In the second part of the configuration, you define the information needed for establishing a trust relationship between the engine and the Management Server. To fill in the Management Server information Highlight Contact Management Server and press spacebar to activate. Fill in the Management Server IP address and the one-time password that was created for this engine when you saved the initial configuration.
  • Page 20: Turning Off The Appliance

    After Successful Management Server Contact After you see a notification that Management Server contact has succeeded or the appliance has rebooted itself after automatic configuration with a USB stick, the firewall engine installation is complete and the firewall is ready to receive a policy. In a while, the firewall’s status changes in the Management Client from Unknown to No Policy Installed, and the connection state is Connected indicating that the Management Server can connect to the node.
  • Page 21: Maintenance Operations

    M a i n t e n a n c e O p e r a t i o n s Connecting to the Engine Command Line You may need to connect to the engine command line, for example, to undo a software upgrade.
  • Page 22 Switch Firewall Node to Initial Configuration option. Note – Perform a factory reset only if you have a specific need to do so. Consult Stonesoft Support before performing this operation if you are unsure of whether this operation is necessary or not.
  • Page 23: Disposal Instructions

    To use the appliance after a factory reset, you must configure it as explained in Initial Configuration (page 13). D i s p o s a l I n s t r u c t i o n s Dispose of the appliance separately from household waste at an appropriate waste disposal facility at the end of its useful service life.
  • Page 24 Itälahdenkatu 22 A 1050 Crown Pointe Parkway Fl-0021O Helsinki, Finland Suite 900 tel. +358 9 4767 11 Atlanta, GA 30338, USA fax. +358 9 4767 1349 tel. +1 866 869 4075 www.stonesoft.com fax. +1 770 668 1131 Copyright 2010 Stonesoft Corporation.

Table of Contents