Page 2
NetScreen-Global PRO, NetScreen-Global PRO Express, NetScreen-Remote Security Client, NetScreen-Remote VPN Client, NetScreen-IDP 10, NetScreen-IDP 100, NetScreen-IDP 500, GigaScreen ASIC, GigaScreen-II ASIC, and NetScreen ScreenOS are trademarks of Juniper Networks, Inc. All other trademarks and registered trademarks are the property of their respective companies.
Page 5
Chapter 3, Configuring the Device details how to connect the NetScreen-25 device to your network, establish a Console session, set an IP address for the NetScreen-25 device, and access the device using the WebUI. Chapter 4, Replacing the Fuse provides procedures on how to replace components on the device.
Page 6
To obtain the latest software version, visit: www.netscreen.com/services/download_soft. Select a category of software product from the dropdown list, then follow the displayed instructions. (You must be a registered user to download Juniper Networks Netscreen software.) If you find any errors or omissions in the following content, please contact us at the e-mail address below: techpubs@netscreen.com...
Page 7
8uhr à 2YHUYLHZ This chapter provides detailed descriptions of the NetScreen-25 chassis. Topics explained in this chapter include: • “The Front Panel” on page 2 – “Power and Status LEDs” on page 2 – “Asset Recovery Pinhole” on page 4 –...
A Compact Flash card slot, for storage of system images, configuration files, keys, and logs. • Four Ethernet ports, for connecting the NetScreen-25 device to your LAN or local workstations and to the Internet. Ethernet Ports Power and Status LEDs...
Page 9
Session utilization is between 70% and 90%. Utilization Session utilization is greater than 90%. Normal operation. Flash Compact Flash green The card is installed. (CF) Card Status blinking green Read-write activity is detected. Compact Flash slot is empty. NetScreen-25...
Page 10
Chapter 1 Overview $VVHW 5HFRYHU\ 3LQKROH The asset recovery pinhole is a switch that resets the device to its original default settings. To use this switch, insert a stiff wire (such as a straightened paper clip) into the pinhole. Warning: Because resetting the device restores it to the original default configuration, any new configuration settings are lost, and the firewall and all VPN services become inoperative.
Page 11
LED indicates network traffic activity and the right LED indicates if the link is up (the port is connected to an active device). $1(/ The rear panel of the NetScreen-25 device contains the power outlet and ON/OFF switch. Power Outlet ON/OFF Switch You can order the NetScreen-25 device with either an AC or DC power supply.
Page 13
8uhr Ã! ,QVWDOOLQJ WKH 'HYLFH This chapter describes how to install a NetScreen-25 device in an equipment rack or on a desktop. Topics in this chapter include: • “General Installation Guidelines” on page 8 • “Equipment Rack Mounting” on page 8 •...
NetScreen-25 device in a locked-room environment. 48,30(17 $&. 2817,1* The NetScreen-25 device comes with accessories for mounting the device in a standard 19–inch equipment rack. (TXLSPHQW 5DFN ,QVWDOODWLRQ *XLGHOLQHV The location of the chassis, the layout of the equipment rack, and the security of your wiring room are crucial for proper system operation.
Page 15
1 Phillips-head screwdriver (not required) • 4 screws to match the rack (if the thread size of the screws provided in the NetScreen-25 product package do not fit the thread size of the rack) • The included rack mount bracket kit.
Page 16
Chapter 2 Installing the Device User’s Guide...
Page 17
8uhr Ã" &RQILJXULQJ WKH 'HYLFH This chapter describes how to connect a NetScreen-25 device to your network and perform initial configuration on the device. Topics in this chapter include: • “Operational Modes” on page 12 – “Transparent Mode” on page 12 –...
VPN, and traffic management according to configured security policies. 5RXWH 0RGH In Route mode, the NetScreen-25 device operates at Layer 3. Because you can configure each interface using an IP address and subnet mask, you can configure individual interfaces to perform NAT.
Page 19
The NetScreen-25 Interfaces , &5((1 17(5)$&(6 Each NetScreen-25 device provides Ethernet interfaces for access and connectivity. In addition, there are logical (non-physical) interfaces that perform special Layer-2 or management functions. The configurable interfaces available on a NetScreen-25 device are as follows:...
Page 20
“Equipment Rack Mounting” on page Make sure that the power switch on the device is turned OFF. Connect the power cable, included in the product package, to the NetScreen-25 power outlet at the rear of the device and to a power source.
Page 21
Interfaces” on page & &/, (5)250,1* 1,7,$/ 21),*85$7,21 6,1* 7+( There are two ways to establish a console session with the NetScreen-25 device: ® ® • Using a vt100 terminal emulator, such as Hilgraeve Hyperterminal hrough an RJ-45 serial cable connected to the console port.
Page 22
To establish a Telnet session with the NetScreen-25 device: Connect an RJ-45 cross-over cable from the Trust zone interface (Ethernet port 1) on the NetScreen-25 device to the internal switch, router, or hub in your LAN (see “Connecting the Device to a Network” on page 14).
Page 23
To prevent automatic termination, specify a value of 0. $OORZLQJ 2XWERXQG 7UDIILF By default, the NetScreen-25 device does not allow inbound or outbound traffic, nor does it allow traffic to or from the DMZ. You need to create access policies to permit specified kinds of traffic in the directions you want.
Page 24
&&(66,1* 7+( (9,&( ,7+ 7+( To access the NetScreen-25 device with the WebUI management application: Connect your computer (or your LAN hub) to the Trust zone interface (Ethernet port 1), as described in “Connecting the Device to a Network” on page Launch your browser, enter the IP address of the Trust zone interface in the URL field, and then press Enter.
Page 25
At the password prompt, type the serial number again. The following message appears: !!! Lost Password Reset !!! You have initiated a command to reset the device to factory defaults, clearing all current configuration and settings. Would you like to continue? y/[n] NetScreen-25...
Page 26
Chapter 3 Configuring the Device Press the y key. The following message appears: !! Reconfirm Lost Password Reset !! If you continue, the entire configuration of the device will be erased. In addition, a permanent counter will be incremented to signify that this device has been reset.
Page 27
If you do not follow the complete sequence, the reset process cancels without any configuration change and the serial console message states, “Configuration Erasure Process aborted.” The status LED returns to blinking green. If the unit did not reset, an SNMP alert is sent to confirm the failure. NetScreen-25...
Page 28
Chapter 3 Configuring the Device User’s Guide...
Page 29
8uhr Ã# 5HSODFLQJ WKH )XVH The NetScreen-25 device uses a 2.5 Amp slow-blow fuse rated for 250 Volts. To replace a failed fuse on the NetScreen-25 device: Take the device off-line, turn the power switch OFF, and disconnect the power cable.
Page 31
6rqvÃ6 6SHFLILFDWLRQV This appendix provides general system specifications for the NetScreen-25 device. • “NetScreen-25 Attributes” on page A-II • “Electrical Specification” on page A-II • “Environmental” on page A-II • “Safety Certifications” on page A-II • “EMI Certifications” on page A-II •...
Appendix A Specifications $ &5((1 775,%87(6 Height: 1.73 inches (4.4 cm) Depth: 10.8 inches (27.4 cm) Width: 17.5 inches (44.5 cm) Weight: 8 pounds (36 hg) /(&75,&$/ 3(&,),&$7,21 AC voltage: 100-240 VAC +/- 10% DC voltage: -36 to -60 VDC Maximum AC Watts: 45 Watts Maximum DC Watts: 50 Watts Fuse Rating: 2.5 Amps / 250 Volts...
Page 33
The RJ-45 twisted-pair ports are compatible with the IEEE 802.3 Type 10/100 Base-T standard. The following table displays the media type and distance for this connector. Standard Media Type Mhz/Km Maximum Rating Distance 100Base-TX Category 5 and higher Unshielded Twisted Pair 100 m (UTP) Cable NetScreen-25 A-III...
Page 34
Appendix A Specifications A-IV User’s Guide...
Page 35
14, connecting power console password changing timeout 16, changing initiating a session resetting console port ports, console guide organization rack installation guidelines mounting installation guidelines reset LEDs transparent mode Alarm Flash Power ventilation Session Status-1 NetScreen-25 IX-I...
Need help?
Do you have a question about the NetScreen-25 and is the answer not in the manual?
Questions and answers