This Getting Started Guide contains installation procedures and configuration guidelines for deploying the SonicWALL Universal Management Appliance EM5000 (SonicWALL UMA EM5000) in your network. The SonicWALL UMA EM5000 runs SonicWALL Global Management System, which is a Web-based application that can configure, manage, and monitor the status of...
Document Contents This document contains the following sections: Before You Begin - page 1 Connecting and Initializing the UMA EM5000 - page 9 Registering Your Appliance - page 19 Configuring the Role of Your Appliance - page 23 Using the SonicWALL GMS Management Interface...
Before You Begin In this Section: This section provides pre-configuration information before setting up your SonicWALL UMA EM5000. • Checking Package Contents - page 2 • Overview of the SonicWALL UMA EM5000 - page 3 • System Requirements - page 5 •...
Page 5
Checking Package Contents Before setting up your SonicWALL UMA EM5000, verify that Any Items Missing? your package contains the following parts: If any items are missing from your package, please contact SonicWALL support. SonicWALL UMA EM5000 Standard Power Cord* Getting Started Guide...
Pressing the reset button for several seconds will result in a reboot of the SonicWALL UMA EM5000. • Do not plug devices into any ports (other than those indicated) unless explicitly instructed to do so by a SonicWALL technical support representative; doing so may void your warranty.
SonicWALL technical support representative For future use Serial Port Ethernet Port 0 (Management/LAN) Provides access to a command line interface (CLI) for SonicWALL technical support use Provides configurable Gigabit-capable Ethernet connection to your local network Page 4 Overview of the SonicWALL UMA EM5000...
System Requirements Browser Requirements The following browser requirements apply to client machines The SonicWALL UMA EM5000 comes with a default license to when accessing the SonicWALL UMA EM5000 or the manage 10 nodes. You can purchase additional licenses on SonicWALL GMS application: MySonicWALL.
Page 9
Tele2, and SonicWALL PRO-VX. SonicWALL SonicWALL Firmware Version Platforms For the most recent platform support and firmware version information, refer to the latest SonicWALL UMA EM5000 Firewall / UTM / VPN Getting Started Guide available at: http://www.sonicwall.com/us/Support.html TZ Series SonicOS Enhanced 3.2 or newer NSA Series SonicOS Standard 3.1or newer...
Page 10
GMS Gateway Recommendations with its managed appliance(s). The following list provides more detail on SonicWALL appliance management methods and A GMS gateway is a SonicWALL UTM appliance that allows for gateway requirements: secure communication between the SonicWALL UMA EM5000 •...
Recording Configuration Information Before deploying the SonicWALL UMA EM5000, record the following configuration information for your reference. The IP address or host name of your Simple Mail Transfer Protocol (SMTP) server. For example, mail.emailprovider.com. SMTP Server Address: The number of your Web server port if customized.
Connecting and Initializing the UMA EM5000 In this Section: This section provides instructions for powering on your SonicWALL UMA EM5000, logging into the appliance management interface, running the Host Configuration Tool, and then connecting the appliance to your local network.
Powering On Your Appliance Powering Off Your Appliance Perform the following steps to turn on your SonicWALL UMA To power off your SonicWALL UMA EM5000 appliance, press EM5000 appliance: and then quickly release the power button on the upper-right corner of the appliance front bezel.
Page 14
The new password must be at least 7 characters. Open a Web browser on your management computer. Enter http://192.168.168.169/appliance/ (the default IP address of the SonicWALL UMA EM5000) in the Location or Address bar. The SonicWALL UMA EM5000 appliance management login screen displays.
Page 15
The Host Configuration Tool is a wizard that takes you through skip to step 2. If you are starting the Host Configuration several basic steps to get your SonicWALL UMA EM5000 Tool manually, click the Wizards button in the top right configured for your network.
Page 16
In the Network Settings screen, configure the network In the Time Settings screen, select values for the following settings for the SonicWALL UMA EM5000, and then click system settings on the appliance, and click Next: Next. Enter network settings values for the following fields: •...
Page 17
To connect the appliance to your network and access the appliance management interface from a computer on your LAN, see Connecting the SonicWALL UMA EM5000 to Your Network - page 15. Page 14...
Connecting the SonicWALL UMA EM5000 to Your Network To connect the SonicWALL UMA EM5000 to your network and access the appliance management interface from a management computer on your LAN, perform the following steps: If you are using the same management computer that you...
Page 19
The following network diagram illustrates how the SonicWALL UMA EM5000 connects to an example network: X0 X1 X2 X5 X6 X0 X1 X2 X5 X6 X0 X1 X2 X5 X6 link/spd activity TZ 210 Universal Management Appliance UMA EM5000 UMA Appliance / Database...
Type 255.255.255.0 in the Subnet Mask field. Click OK for the settings to take effect. This section is provided for your reference when preparing to log in for the first time to your SonicWALL UMA EM5000. Windows 2000 On the Windows Start menu, select Settings.
Registering Your Appliance In this Section: This section provides instructions for registering your SonicWALL UMA EM5000 appliance. • Creating a MySonicWALL Account - page 20 • Registering Your Appliance - page 20 • Registering as an Associated Component - page 22...
When registration is completed, SonicWALL GMS will be licensed on your appliance. In your browser, navigate to www.mysonicwall.com. When you log in to the SonicWALL UMA EM5000 In the login screen, click the Not a registered user? link. after running the Host Configuration Tool, the Register button is displayed in the top right corner of the page.
Page 24
Friendly Name field and then click Submit. The Serial Number field is automatically populated. Note: If this is the first SonicWALL UMA EM5000 that you have registered, the Friendly Name for this appliance will also be used as the name for the distributed deployment.
SonicWALL GMS deployment. Contact SonicWALL Technical Support to add the node licenses to the deployment. To register a SonicWALL UMA EM5000 as an associated component of an existing SonicWALL GMS deployment, Select the desired deployment for the association from the perform the following steps: drop-down list and then click Submit.
Configuring the Role of Your Appliance In this Section: This section provides information about configuring the role for your SonicWALL UMA EM5000, as well as information about deployment settings and services. • Overview of SonicWALL UMA EM5000 Roles - page 24 •...
Page 27
Agents can perform the configuration tasks and other tasks of the Agent that went down. Your SonicWALL UMA EM5000 can be deployed in any of the following roles: Note: When configuring the role for the first appliance in a •...
Page 28
The initial Deployment > Role page is shown below: The Role Configuration Tool is a wizard that guides you through the process of defining the deployment role for your SonicWALL UMA EM5000 appliance. Your system must be registered and licensed for SonicWALL GMS to run the Role Configuration Tool.
Page 29
• The Wizards button in the top right corner of the page To use the Role Configuration Tool, perform the following steps: provides access to the Role Configuration Tool. Log in to the appliance management interface and navigate to the System > Status page. Click the Click here link at the top of the page.
Page 30
Select No if this appliance is part of a new The list of roles on this page will vary depending on your SonicWALL GMS deployment or is the only system in your previous selections such as whether this system is part of GMS deployment.
Page 31
When these conditions are met, the administrator password is required to create a regular access user account for the SonicWALL GMS application. If you selected a role that does not include the MySQL database, you have the option of configuring the use of a SQL Server database in this screen.
Page 32
Console roles Enter the GMS Gateway IP address and connection password, if you are using a GMS gateway. Leave these fields empty if you are using HTTP/HTTPS to connect to the managed appliances. SonicWALL UMA EM5000 Getting Started Guide Page 29...
Page 33
14. Wait for the settings to be applied. The screen displays a 15. Click Close to exit the Role Configuration Tool. progress bar until it finishes, and then displays the status. This phase can take up to 10 minutes, especially if the database was included in the deployment.
Page 34
Configuring the All In One Role All In One deployments are ideal for managing a small number You can configure the role of the SonicWALL UMA EM5000 of SonicWALL appliances or for test environments. However, appliance without using the Role Configuration Tool.
Page 35
To deploy your SonicWALL UMA EM5000 in the All In One role, Configuring the Database Only Role perform the following steps in the appliance management The Database Only role is used in a multi-server SonicWALL interface: GMS deployment. In this role, the server is configured to run Navigate to the Deployment >...
Page 36
GMS Gateway Password and Confirm GMS Database role is assigned to a separate appliance or server. Gateway Password fields. In the Console role, the SonicWALL UMA EM5000 behaves as If this SonicWALL UMA EM5000 listens for syslog an Agent, and also provides the following functions: messages on a non-standard port, type the port number into the Syslog Server Port field.
Page 37
Monitoring Manager or Microsoft SQL Server database on another system, do not select this checkbox. To deploy your SonicWALL UMA EM5000 in the Agent role, perform the following steps in the appliance management Configure the database settings as described in the Configuring Database Settings section, on page 36.
Page 38
UMA EM5000 in a multi-server deployment of SonicWALL server SonicWALL GMS deployment. The monitoring is based GMS. In this role, the SonicWALL UMA EM5000 is dedicated to on ICMP probes, TCP probes, and SNMP OID retrievals. collecting syslog messages on the configured port (by default, port 514).
Page 39
To deploy your SonicWALL UMA EM5000 in the Syslog Configuring Database Settings Collector role, perform the following steps in the appliance Database settings configuration is largely the same for any role management interface: when you choose to include the database on that appliance.
Page 40
Include role for this appliance. Database (MYSQL) or if the selected role is All In One or To run the MySQL database on this SonicWALL UMA Database Only. EM5000, select the Include Database (MYSQL) To use a different user name when SonicWALL GMS checkbox.
Page 41
SonicWALL UMA EM5000 administrator. To configure the Configuration, to use a different port for HTTP access to the SonicWALL UMA EM5000, type the port number into SMTP settings, perform the following steps: the HTTP Port field. The default port is 80.
Page 42
To change the current state of a service, perform the following steps: You can stop, start, or restart any of the SonicWALL UMS On the Deployment > Services page, select the checkbox services on the Deployment > Services page of the appliance next to the service whose state you want to change and management interface.
Page 43
Page 40 Starting and Stopping Host Services...
Using the SonicWALL GMS Management Interface In this Section: This section provides information about the SonicWALL GMS management interface. The SonicWALL GMS application runs on the SonicWALL UMA EM5000. • Accessing the Correct Management Interface - page 42 • SonicWALL GMS Management Interface Introduction - page 43 •...
Accessing the Correct Management • SonicWALL GMS Management Interface – Used to access the SonicWALL GMS application that runs on the Interface SonicWALL UMA EM5000. This interface is used to configure GMS management of SonicWALL appliances, The SonicWALL UMA EM5000 comes installed with two...
On appliances deployed in the All In One or Console role, you can easily switch between the appliance management interface SonicWALL GMS is a Web-based application that runs on the and the SonicWALL GMS management interface. The login SonicWALL UMA EM5000. SonicWALL GMS is used for...
User ID and Password. After you have registered your SonicWALL UMA EM5000 and it is licensed for SonicWALL GMS, the SonicWALL GMS login screen is the first screen that displays each time you access the SonicWALL GMS management interface using a Web browser on your The six navigation tabs are SonicToday, Firewall, SSL-VPN, management computer.
Left Pane will automatically collapse to present selected in the left pane and System > Status is selected on a larger screen for the rest of the management the Policies tab in the center pane. interface. SonicWALL UMA EM5000 Getting Started Guide Page 45...
This section describes the meaning of icons that appear next to the current selection of navigational tab, left pane and center managed appliances listed in the left pane of the SonicWALL pane options. Configurations performed in the right pane modify GMS management interface.
Page 50
Two red boxes with a lightning flash indicate that one or more appliance in the group is no longer sending Two yellow boxes indicate that one or more heartbeats to SonicWALL GMS and has one or more appliances in the group have been added to tasks pending.
Page 51
Page 48 Description of Managed Appliance States...
Managing SonicWALL Appliances In this Section: SonicWALL appliances must be running supported firmware to be managed using SonicWALL GMS. For information about configuring other SonicWALL appliances for management, see the SonicWALL GMS Administrator’s Guide. This section provides instructions for the following example configurations: •...
Page 53
Log in to your SonicWALL NSA 2400. Navigate to management by SonicWALL GMS must be running SonicOS System > Administration. and scroll down to the Standard or Enhanced 2.0 or later. To configure a SonicWALL Advanced Management section. appliance for SonicWALL GMS management, perform the following steps: •...
Page 54
Type the SonicWALL GMS syslog server port in the GMS From the Management Mode drop-down box, select one Syslog Server Port field. The default port is 514. of the following methods of management: IPSEC Management Tunnel, Existing Tunnel, or HTTPS. For...
Page 55
SonicWALL UMA EM5000 subnet and the appliance. Note: If HTTPS management mode is specified, ensure that the SonicWALL UMA EM5000 can receive syslog data • If the SonicWALL appliance will be managed using from the managed appliance by allowing traffic over HTTPS, select HTTPS.
Page 56
Adding a SonicWALL NSA 2400 to SonicWALL GMS Select the radio button next to the management mode that is the same as the mode you selected in the SonicWALL To add your appliance to SonicWALL GMS, perform the NSA 2400 management interface in...
Page 57
Configuring a SonicWALL SSL-VPN 2000 on page 46. Log in to your SonicWALL SSL-VPN 2000. It may take up to five minutes for SonicWALL GMS to establish Navigate to System > Administration. a management VPN tunnel, set up an HTTPS connection, or...
Page 58
Adding a SonicWALL SSL-VPN 2000 to SonicWALL The radio button next to Using HTTPS is automatically selected. 10. If the SonicWALL UMA EM5000 uses a custom HTTPS To add your appliance to the SonicWALL GMS system, perform port number, type it into the HTTPS Port field.
Page 59
For detailed appliance icon descriptions, refer to the table in the Description of Managed Appliance States section, on page 46. It may take up to five minutes for SonicWALL GMS to establish an HTTPS connection and acquire the appliance for management.
Page 60
Reporting In This Section: This section contains information about SonicWALL Universal Management reporting. • Overview of SonicWALL GMS Reporting - page 58 • Using the SonicWALL GMS Summarize Now Feature - page 61 SonicWALL UMA EM5000 Getting Started Guide Page 57...
Page 61
SonicWALL GMS reporting allows you to review network access, enhance security, and anticipate future bandwidth needs. SonicWALL GMS reporting is available for appliances on the Firewall and SSL-VPN tabs, using the Reports tab in the center pane of the SonicWALL GMS management interface.
Page 62
The SonicWALL GMS reporting feature receives its information Status The number of hours that managed from the stream of syslog data sent by each SonicWALL SonicWALL appliances were online appliance, processes the data, and stores it. SonicWALL GMS and functional during the time Reporting can be enabled or disabled.
Page 63
LAN or DMZ. Virus Attacks The number of virus attacks that were directed at or through the selected appliances. The selected appliances must be licensed for SonicWALL Gateway Anti-Virus. Page 60 Overview of SonicWALL GMS Reporting...
Page 64
This can be done in order to display report data that has not yet been processed. The SonicWALL GMS Summarize Now feature is located in the Console tab under Reports > Summarizer. The SonicWALL GMS Summarizer creates summary reports by default every 8 hours.
Page 65
Summary option underneath it. For example, click Bandwidth, then click Summary to review the summarized bandwidth usage data. Navigate to the Summary section of other reports in the center pane to see other summarized data. Page 62 Using the SonicWALL GMS Summarize Now Feature...
Page 66
Monitoring In this Section: This section contains information about SonicWALL Universal Management monitoring. • Overview of SonicWALL GMS Monitoring - page 64 • Monitoring a SonicWALL NSA 2400 Using SNMP - page 65 • Monitoring an FTP Server Using Ping...
Page 67
Monitoring critical network events and activity, such as security threats, inappropriate Web use, and bandwidth levels, is an essential component of network security. SonicWALL GMS can monitor WAN traffic using physical and logical monitoring, enabling it to detect physical issues, for example, if a link is unplugged or disconnected, and higher level traffic, for example, upstream connectivity interruptions.
Page 68
Protocol (SNMP)-capable SonicWALL and non-SonicWALL management deployment, including devices. the GMS database, GMS console, To monitor a SonicWALL NSA 2400 using SNMP, perform the GMS agents, remotely managed following steps: SonicWALL appliances and the Add the appliance to SonicWALL GMS management by...
Page 69
Log in to the SonicWALL NSA 2400. Navigate to System > Administration and select the Enable SNMP checkbox. Type the host name of the SonicWALL security appliance in the System Name field SNMP is now configured. Type the network administrator’s name in the System Contact field.
Page 70
Add this unit to Net Monitor. Alternatively, if an appliance is already added to SonicWALL GMS, you can right click the appliance and select Add to Net Monitor. To add an appliance that will use SNMP monitoring in SonicWALL GMS, perform the following steps: Log in to the SonicWALL GMS management interface.
Page 71
In the All Devices by Views column, select the Sonicwall Click Next. The Add GMS Device Wizard Monitor appliance and click the right arrow to add the device to the Information page displays. Selected GMS Devices column. Page 68 Monitoring a SonicWALL NSA 2400 Using SNMP...
Page 72
Click the Advanced button to configure the following category name, for example, Firewalls. SNMP fields: Select the priority of the SonicWALL appliance(s) from the Category Priority list box, either High, Medium, or Low. From the Monitoring Type drop-down, select SNMP. Enter a Monitor Port.
Page 73
11. Specify how often, in seconds, the appliance will be tested in the Polling interval (in secs.) field. The default polling interval is 60 seconds. Page 70 Monitoring a SonicWALL NSA 2400 Using SNMP...
Page 74
To monitor an FTP server using Ping, add the appliance to Device. The Add Non-GMS Device Wizard displays. SonicWALL GMS, then perform the following tasks: Click the Monitor tab at the top of the screen. In the center pane, navigate to Tools > Net Monitor.
Page 75
Click Next. The Add Non-GMS Device Wizard Monitor Information page displays. Note: Appliances that take between 1 and 1.5 times the ideal response time will be labeled slow, and appliances that take between 1.5 and 2 times the ideal response time will be labeled very slow.
Page 76
Front Panel LCD Controls In this Section: This section provides information about using the LCD controls on the front panel of the SonicWALL UMA EM5000. • Front Panel Control Features - page 74 • Using the Main Menu - page 74 •...
Front Panel Control Features Using the Main Menu The SonicWALL UMA EM5000 appliance is equipped with a Upon booting, the LCD display will initially show the Main Menu. front panel interface that allows an administrator to customize The menu is made up of four options:...
If you choose yes, the screen notifies you that the settings are Note: updated. The Default PIN is 76642. This number spells SONIC on a phone keypad. All numbers are entered using the 4 buttons on the D-pad. SonicWALL UMA EM5000 Getting Started Guide Page 75...
Using the Restart Option When you select Restart from the Main Menu, you are asked to confirm the appliance restart. Press the Right button for yes or the Left button for no. Using the Shutdown Option When you select Shutdown from the Main Menu, you are asked to confirm the appliance shutdown.
Support and Training Options In this Section: This section provides SonicWALL support and training information. • Customer Support - page 78 • Knowledge Portal - page 78 • SonicWALL Live Product Demos - page 79 • User Forums - page 80 •...
Support Contract. Please review our Warranty Support Policy • Browse for product coverage. SonicWALL also offers a full range of • Search for keywords consulting services to meet your needs, from our innovative •...
SonicWALL Live Product Demos For further information, visit: http://livedemo.sonicwall.com/ The SonicWALL Live Demo Site provides free test drives of SonicWALL security products and services through interactive live product installations: • SonicWALL GMS and ViewPoint • Unified Threat Management Platform •...
User Forums For further information, visit: https://forum.sonicwall.com/ The SonicWALL User Forums is a resource that provides users the ability to communicate and discuss a variety of security and appliance subject matters. In this forum, the following categories are available for users: •...
Training For further information, visit: http://www.sonicwall.com/us/training.html SonicWALL offers an extensive sales and technical training curriculum for Network Administrators, Security Experts and SonicWALL Medallion Partners who need to enhance their knowledge and maximize their investment in SonicWALL Products and Security Applications. SonicWALL Training provides the following resources for its customers: •...
Related Technical Documentation For more advanced deployment examples or interoperability solutions, refer to SonicWALL deployment technotes. SonicWALL user guide reference documentation is available at the SonicWALL Technical Documentation Online Library: http://www.sonicwall.com/us/Support.html The SonicWALL Universal Management Appliance documentation set includes the following reference guides: •...
SonicWALL Secure Wireless Network This 512 page book is available in hardcopy. Order the book Integrated Solutions Guide directly from Elsevier Publishing at: http://www.sonicwall.com/us/products/resources/11427.html The Official Guide to SonicWALL’s market-leading wireless networking and security devices. SonicWALL UMA EM5000 Getting Started Guide Page 83...
Umgebungstemperatur nicht mehr als 40° C beträgt. • Mount the SonicWALL appliances evenly in the rack in order to prevent a • Bringen Sie die SonicWALL waagerecht im Rack an, um mögliche Gefahren hazardous condition caused by uneven mechanical loading.
SonicWALL • NOT PRESENT UMA EM5000. You can insert the drive while the appliance is You might see a different status than those listed, powered on. depending on the condition of the drive as interpreted by the RAID controller.
Page 91
Array Status will change to REBUILDING within a few EM5000. minutes. You may continue to use your SonicWALL UMA EM5000 while the RAID controller rebuilds the array with the new To view the hard drive array and insert the replacement drive drive.
1RK19-066 UMA EM5000 Unauthorized Ports Do not plug devices into any ports (other than those indicated) unless explicitly instructed to do so by a SonicWALL technical support representative. Doing so may void your warranty. SonicWALL UMA EM5000 Getting Started Guide...
This Class A digital apparatus complies with Canadian equipment for purposes not shown in this manual without ICES-003. the written consent of SonicWALL, Inc. could void the user’s authority to operate this equipment. Cet appareil numérique de la classe A est conforme à la norme NMB-003 du Canada.
Page 94
National Deviations: AR, AT, AU, BE, CA, CH, CN, CZ, DE, DK, FI, FR, GB, GR, HU, IL, IN, IT, JP, KE, KR, MY, NL, NO, PL, SE, SG, SI, SK, US SonicWALL UMA EM5000 Getting Started Guide Page 91...
Gesetzlich und Sicherheits Anweisungen auf Deutsch The Lithium Battery used in the SonicWALL Internet security appliance may not be replaced by the user. The SonicWALL Hinweis zur Lithiumbatterie must be returned to a SonicWALL authorized service center for Die in der Internet Security appliance von SonicWALL...
Need help?
Do you have a question about the UMA EM5000 and is the answer not in the manual?
Questions and answers