3 SET UP DEFAULT CONFIGURATION Basic Configuration using Web Interface ………………………………………… 13 Network Information ……………………………………………………………………… 15 Re-configure Workstation ……………………………………………………………… 16 Access the GB-750 ……………………………………………………………………… 16 Basic Configuration using GBAdmin ……………………………………………… 16 Network Information ……………………………………………………………………… 17 Re-configure Workstation ……………………………………………………………… 18 Access the GB-750 ……………………………………………………………………… 18...
1 – Introduction 1 1 Introduction GNAT Box Basics Global Technology Associates, Inc., has been designing and building Internet firewalls since 1994. In 1996, GTA developed the first truly affordable commercial-grade firewall, the GNAT Box . Since then, ICSA-certified ®...
GB-750 Firewall Appliance Product Guide Registration To register, go to www.gta.com, click on Support and then the GTA Support Center link. If you already have an account, enter your user ID and password in the login screen; if not, click New Account, enter the profile information.
Caution Back up your configuration before upgrading! About This Guide This Product Guide shows how to set up and install the GB-750 and change the factory settings to your network’s default configuration. The GNAT B includes configuration functions, descrip- YSTEM...
GB-750 Firewall Appliance Product Guide Additional Documentation For instructions on installation, registration and setup of a GTA Firewall in default configuration, see your GTA Firewall’s product guide; for optional features, see the appropriate Feature Guide. User’s Guides, Product Guides and Feature Guides are delivered with new GTA products; these manuals and other documentation for registered products can also be found on the GTA website, www.gta.com.
1 – Introduction 5 About GB-750 The GB-750 Firewall Appliance is a self-contained unit with the system software pre-installed. This guide describes and explains how to install and initially configure the GB-750. For configuration options and field descrip- tions see the GNAT B ’...
• VPN Objects Hardware Design The GB-750 Firewall Appliance is a 1RU appliance with one cooling fan. The system has three high speed 10/100 Ethernet interfaces to ensure high performance and network design flexibility and two multifunction DB-9 serial interfaces to provide access for a serial console and a dial-up modem/ISDN TA.
When the red GTA logo on the front panel of the GB-500 is lit, the GB-750 is powered on. Two groups of three LEDs labeled 0, 1 and 2 correspond to the network interfaces; the amber LEDs blink whenever activity at any speed is detected by the firewall, while the green LEDs will be lit whenever the network interface is connected.
GB-750 Firewall Appliance Product Guide Hardware Specifications Physical Specifications Chassis 1.75” h x 9” d x 19” w ( 4.45 cm x 22.7 cm x 48.25 cm) Weight 8 lbs (3.63 kg) Power Specifications MTBF (Mean Time Between Failure) Minimum–150,000 Hours...
1 – Introduction 9 VPN Acceleration Chip Hi/fn 7951 security accelerator chip Memory 128 KB high speed buffer Throughput 64 Mbps Compression LZS and MPPC at 43 to 99 Mbps Encryption DES, Triple-DES and RC4 at 70 to 188 Mbps Authentication SHA-1 and MD5 at 66 to 79 Mbps Public Key, RSA and DH, 2 to 8 connections/sec using...
2 – Installation 11 2 Installation Preinstallation Installing the GB-750 requires that the system be connected to your local area network (LAN). This allows the administrator to connect to the GB-750, configure the network settings to match the local network address scheme and perform connectivity tests.
A yellow crossover cable is included with hardware appliances. Connect the GB-750 Connect the GB-750 to a hub or switch on your local area network using the Protected Network interface, (the first interface port 0, see illustration GB-750 Rear Panel) and a standard (straight-through) network cable. By default, 0 is assigned the IP address 192.168.71.254.
3 – Set Up Default Configuration 13 3 Set Up Default Configuration The following sections will describe how to set up your GB-750 in the default configuration, in which all internal users are allowed outbound and no unsolic- ited inbound connections are allowed.
Page 18
GNAT Box System Software is known to be incompatible with Internet Explorer 5 for Macintosh. If your browser does not allow you to continue past the Security Alert screen in order to set up your new GB-750, GTA recommends using another compatible browser such as Mozilla (www.mozilla.org), Netscape (www.netscape.com) or Opera...
Set the Host Name to that given to the firewall in your DNS server. Once you have completed Network Information, apply the changes by clicking on the Save. The GB-750 will now be on a different logical network (assuming you’ve changed the default IP address for the Protected Network) and you will not be able to access the GTA Firewall from your workstation, since the firewall will now be on a different network.
After re-configuring your workstation, you can access the GB-750 using the new IP address assigned to the Protected Network interface. The GB-750 should now be active and functioning in default security mode, (all internal users are allowed outbound and no unsolicited inbound connec- tions are allowed).
Once you have completed the Network Information form, apply the changes to the GB-750 by clicking on the single diskette icon on the tool bar to save the data. The GB-750 will now be on a different logical network (assuming...
Network Information Once you click Save on the Network Information screen you will not be able to access the GB-750 from your workstation, since the firewall will now be on a different network. Re-configure Workstation Re-configure your workstation back to its original IP address, now on the same network as the GTA Firewall.
6. Make sure the network cabling is connected to the correct network interface. Some useful guidelines are: • In a GB-750, the port/NIC numbers, MAC addresses and logical names are listed on the Network Information screen and in the Configuration Report.
• Have you added a static route to the GB-750 to tell it which router is used to reach the problem network? Have you set the router’s default route to be the GB-750? Have you set the default route for hosts on the problem network to be the router? •...
Page 25
6. Why can't I see or ping the Protected Network interface? You may have the wrong cable for your connection. • For a direct connection (GB-750 to host or router) you need a cross- over cable. • For a connection to a hub or switch you need a straight-through cable.
Page 26
A new GB-750 has two identical slices. When the GB-750 is upgraded to a new runtime, the upgrade process auto- matically overwrites the memory slice not in use with the new software version and the existing configuration, leaving the production firewall version and configuration intact.
Index 23 Drivers 4 Index email address support ii Symbols Ethernet 6 100Base-TX 8 10Base-T 8 factory defaults 21, 22 Factory settings 3, 11, 15, 17 Addresses, MAC 19 AUTO connection type 20 Alert, Security 13 Fast Ethernet 8 amber LED Filter, Remote Access 20 back panel 7, 20 flow control 21...
Need help?
Do you have a question about the GB-750 and is the answer not in the manual?
Questions and answers