Page 2
This publication may not otherwise be copied or reproduced, in whole or in part, by any other person or entity without the express prior written consent of Internet Security Systems, Inc. Patent pending.
Preface Overview Introduction This guide is designed to assist you with the initial setup process. Scope This guide covers basic appliance setup only. It does not cover advanced appliance configuration and management topics such as high availability, virtual private networking, network address translation, and SiteProtector management.
ISS provides technical support through its Web site and by email or telephone. http:// The ISS Web site The Internet Security Systems (ISS) Resource Center Web site ( www.iss.net/support/ ) provides direct access to online user documentation, current versions listings, detailed product literature, white papers, and the Technical Support Knowledgebase.
Page 7
Getting Technical Support Contact information The following table provides electronic support information and telephone numbers for technical support requests: Regional Electronic Support Telephone Number Office Standard: North America Connect to the MYISS section of our Web site: (1) (888) 447-4861 (toll free) www.iss.net (1) (404) 236-2700 Select and Premium:...
Chapter 1 Getting Started Overview Introduction Before you access the Proventia Setup Assistant and complete the initial setup, you should review the contents of the packet and familiarize yourself with the appliance hardware. Related This chapter does not provide instructions for rack mounting the documentation appliance.
Package Contents Introduction Use the following checklist to verify the contents of the box. M10 contents The package includes the following items: Item 1 appliance 1 AC power cord 1 Proventia Appliance Recovery CD 1 serial cable 1 Ethernet cable (CAT-5, cross-over)
Hardware Descriptions Introduction This topic describes the front and back panels of the appliance hardware. M10 front panel The M10 front panel is shown below: Figure 1: M10 front panel M10 back panel The M10 back panel is shown below: Figure 2: M10 back panel Proventia®...
Chapter 2 Initial Setup Overview Introduction The first stage in setting up the appliance is the Initial Setup stage. In this stage, you connect a computer directly to the appliance and run the Proventia Setup wizard, which assist you in performing the following initial setup tasks: Set the operation mode for the appliance.
Page 14
Topic Page Initial Setup for Routing Mode Initial Setup for Transparent Mode Connecting Appliances to the Network Accessing Proventia Manager...
Connecting to the Appliance for Initial Setup Connecting to the Appliance for Initial Setup Introduction Before you can access the Proventia Setup Assistant and complete the initial setup, you must connect a computer directly to the appliance and establish a connection between the devices. This connection is for initial setup only.
Page 16
If you choose the... Then... Serial null modem cable 1. Plug the cable into the port labeled Console, and then connect it your computer. 2. Configure the connection between the devices. Table 5: Connecting the devices (Continued) Configuring To configure an Ethernet connection between the devices: Ethernet connections The steps for configuring an Ethernet connection vary depending...
Page 17
Connecting to the Appliance for Initial Setup 3. Click Properties on the Local Area Connection Properties window. 4. On the General tab, select Internet Protocol (TCP/IP), and then click Properties. Proventia® Network Multi-Function Security Appliance User Guide...
Page 18
5. Select Use the following IP address, and configure the settings as shown: You do not need to configure the DNS server addresses for Note: initial setup. 6. Click OK, and then click OK again. 7. Click Close, and then close Network Connections.
Page 19
Connecting to the Appliance for Initial Setup Configuring serial To configure a serial connection: connections The procedures for creating a terminal connection vary depending Note: on the program you use. The procedures shown are for HyperTerminal. 1. On your computer, select Start Programs Accessories Communications...
Page 20
3. In the Connect using list, select COM1, and then click OK.
Page 21
Connecting to the Appliance for Initial Setup 4. Configure the settings as shown: 5. Click Apply, and then click OK. Proventia® Network Multi-Function Security Appliance User Guide...
Initial Setup for Routing Mode Introduction In routing mode, the appliance can perform complex routing functions and provide full security protection for your network. The routing functions include the following: determining the IP addresses on the networks connected to it ●...
Page 23
Initial Setup for Routing Mode Firewall, including network address translation and virtual private ■ network capability Intrustion Prevention ■ Web Filter ■ Routing Features ● Dynamic Host Configuration Protocol (DHCP) Server and Relay ■ Network address translation ■ Open Shortest Path Routing Protocol (OSPF) ■...
Page 24
Diagram The following diagram illustrates a routing mode deployment: Internet Proventia M-Series eth0: 192.168.100.1 Router eth1: 10.10.100.2 Internal IP: 10.10.100.1 eth2: 172.16.100 .1 eth3: 172.16.200 .1 eth1 (EXT 1) eth3 (3) eth0 (INT 0) eth2 (2) Corporate 172 .16.200.0/24 192.168.100 .0/24 Web Server Database Server Internal IP: 172.16.200.3...
Page 25
Initial Setup for Routing Mode Procedure To set up the appliance in routing mode: 1. On the computer connected to the appliance, open a browser, and then go to the defautl IP address for the appliance: https://192.168.123.123 For serial connections, start the HyperTerminal connection to Note: the appliance.
Page 26
Information Description External The appliance must know the IP address, subnet mask, Interface IP and default gateway for the external interface before it Address can properly route traffic to and from that network. There are 3 methods for assigning this information to the interface: •...
Page 27
Initial Setup for Routing Mode Information Description Internal The appliance must know the IP address and subnet mask for the internal interface before it can properly route Interface traffic to and from that network. You must provide this Address and information for the interface.
Page 28
Next steps After you complete the initial setup, you can do the following: Review the settings, exit Proventia Setup Assistant, and then close the ● browser. Disconnect the computer from the appliance. ● Reset the computer’s TCP/IP settings so that it can access your ●...
Initial Setup for Transparent Mode Initial Setup for Transparent Mode Introduction In transparent mode, the appliance is a bridging device. It inspects traffic, and then forwards the traffic to the appropriate interface. For example, traffic enters a transparent appliance on one interface, the appliance inspects the traffic, and then the appliance forwards the traffic out another interface.
Page 30
Diagram The following diagram illustrates a transparent mode deployment: Internet External Router Internal IP: 10.10.100.1 Proventia M-Series Management IP : 10.10.100.2 eth1 (EXT 1) eth3 (3) eth0 (INT 0) eth2 (2) Internal Router B Switch External IP: 10.10.100 .4 10.10.100.0/24 Internal IP: 192.168.100.1 Internal Router A External IP: 10.10.100 .3...
Page 31
Initial Setup for Transparent Mode Procedure To set up the appliance in transparent mode: 1. On the computer connected to the appliance, open a browser, and then go to the defautl IP address for the appliance: https://192.168.123.123 For serial connections, start the HyperTerminal connection to Note: the appliance.
Page 32
Information Description Primary, The interface works with its DNS server to translate host Secondary, and names into IP addresses. For example, the interface Tertiary works with its DNS server to translate atlanta.fileserver01 172.16.100.2 Nameservers into locate its DNS server, the interface must know the IP address of the DNS server.
Page 33
Initial Setup for Transparent Mode Reset the computer’s TCP/IP settings so that it can access your ● internal network. Connect the computer to the internal network. ● You can then use this computer to access Proventia Manager Note: from your network. Connect the interfaces on the appliance to the internal and external ●...
Connecting Appliances to the Network Introduction After you complete the initial setup process, you can connect your appliance to the network. When you connect the appliance to the network before you Important: configure the firewall or other protection features, you do not expose your network to vulnerabilities.
Accessing Proventia Manager Accessing Proventia Manager Introduction After the initial setup, you are ready to access Proventia Manager for the first time, and then configure, update, and back up the system and the protection features. This topic provides information about how to access Proventia Manager for the first time.
Page 36
3. Do you want to use the Getting Started procedures? If... Then... Select Yes, and then select Launch Proventia Manager. Select No, and then select Launch Proventia Manager. Working with Use the following procedures to navigate in Proventia Manager: Proventia Manager To...
Page 37
Accessing Proventia Manager Filter Database settings ● High availability changes ● Licensing information ● Network settings (IP addresses for the interfaces, operation modes, ● and routing) SiteProtector management settings ● Update settings ● You can cancel all changes made to all open policies. For example, you change an appliance access policy, a firewall policy, and a network address translation policy.
Index additional interfaces, connecting connecting additional interfaces diagrams M10 appliance back panel M10 appliance front panel Internet Security Systems technical support Web site network cable connections technical support, Internet Security Systems Web site, Internet Security Systems Proventia® Network Multi-Function Security Appliance User Guide...
Need help?
Do you have a question about the M10 and is the answer not in the manual?
Questions and answers