SonicOS Enhanced Administrator's Guide

3y ago
16 Views
2 Downloads
5.12 MB
183 Pages
Last View : 28d ago
Last Download : 3m ago
Upload by : Milena Petrie
Transcription

COMPREHENSIVE INTERNET SECURITY SonicWALL Internet Security AppliancesSonicOS EnhancedAdministrator's Guide

ContentsContents . 1Copyright Notice . 5LIMITED WARRANTY . 5About this Guide . 6SonicWALL Technical Support . 7Product Information . 7Firmware Version . 71 Introduction . 9Your SonicWALL Internet Security Appliance . 9SonicWALL Internet Security Appliance Features . 92 Registering at mySonicWALL.com . 13Creating a New User Account . 13Problems Creating a User Account? . 19User Name and Password Functions . 19Registering Your SonicWALL Internet Security Appliance . 19Click Here Registration . 20Quick Registration . 20Status and Options . 22Managing Your SonicWALL . 23Renaming Your SonicWALL . 23Transferring a SonicWALL Product . 24Delete Product . 25Managing Services for Your SonicWALL . 26Activating Services Using mySonicWALL.com . 273 System . 29System Status . 29System Messages . 29System Information . 30Security Services . 30Latest Alerts . 30Network Interfaces . 30System Licenses . 31System Administration . 32Login Security . 33Web Management Server . 33Advanced Management . 34Enable Management Using SonicWALL GMS . 35System Time . 36System Settings . 38FIPS . 40System Diagnostics . 42System Restart . 45Page 1

4 Network . 47Network Interfaces . 48Physical Interfaces . 48Interface Settings . 48Network WAN Failover and Load Balancing . 50WAN Failover and Load Balancing Settings . 51Outbound Load Balancing Method . 51Primary WAN Probe Settings . 52Secondary WAN Probe Settings . 52Network Zones . 53Adding a New Zone . 54Modifying a Zone . 55Network DNS . 55Network Address Objects . 56Predefined Address Objects and Groups . 57Adding an Address Object . 57Creating Group Address Objects . 58Network Routing . 59Static Routes . 59Static Route Configuration Example . 60Route Advertisement . 61Routing Table . 62Network NAT Policies . 63The Default Many-to-One Outbound NAT Policy . 65Configuring an Inbound Many-to-One NAT Policy . 66Configuring a One-to-One NAT Policy . 67Network ARP . 69Network DHCP Server . 70DHCP Settings . 71Configuring DHCP Server . 72Configuring Static DHCP Entries . 74Current DHCP Leases . 76Network IP Helper . 77IP Helper Settings . 77IP Helper Policies . 78Network Web Proxy . 79Configuring Automatic Proxy Forwarding (Web Only) . 79Bypass Proxy Servers Upon Proxy Failure . 80Page 2 SonicWALL SonicOS Enhanced Administrator’s Guide

5 Firewall . 81Firewall Access Rules . 82Adding Rules . 83Adding New Rule Examples . 85Firewall Advanced . 86Advanced Rule Option . 86Source Routed Packets . 87Firewall Schedules . 87Firewall Services . 89Custom Services . 90Custom Services Groups . 906 SonicWALL VPN . 93Before You Start Configuring VPN Tunnels . 93Site to Site VPN Configurations . 93VPN Planning Sheet for Site-to-Site VPN Policies . 94VPN Settings . 95Global Settings . 95VPN Policies . 95Currently Active SAs . 96Adding VPN SAs to the SonicWALL . 96Configuring a VPN SA using Manual Key . 100Configuring a VPN SA with IKE using Preshared Secret . 107DHCP over VPN . 112DHCP Relay Mode . 112Configuring DHCP over VPN Remote Gateway . 114Device Configuration . 115Current DHCP over VPN Leases . 116VPN L2TP Server . 116General . 116SonicWALL Third Party Digital Certificate Support . 118Overview of Third Party Digital Certificate Support . 119Importing Certificate with private key . 119Creating a Certificate Signing Request . 122VPN CA Certificates . 1227 Users . 123Users Status . 123User Settings . 124RADIUS Servers . 125User Local Users . 129VPN Access . 130Users Local Groups . 131Page 3

8 Hardware Failover . 133Before Configuring Hardware Failover . 133Configuring Hardware Failover on the Primary SonicWALL . 134Hardware Failover Settings . 134Configuration Changes . 138Hardware Failover Status . 139Configuration Notes . 1409 Security Services . 141Security Services Summary . 141Security Services Summary . 141Security Services Settings . 141Security Services Content Filtering . 143Content Filter . 144Message to Display when Blocking . 145Configuring SonicWALL CFS . 145CFS . 146Policy . 147Custom List . 149Consent . 150Security Services Anti-Vius . 152System Requirements for SonicWALL Anti-Virus on Clients . 153Configuring SonicWALL Anti-Virus . 154Activating Your Subscription . 155Settings . 155Anti-Virus Administration . 156Anti-Virus License Sharing . 158Configuring Anti-Virus Policies . 159Network Anti-Virus E-Mail Filter . 16110 Log . 163Log View . 163SonicWALL Log Messages . 163Log Categories . 165Log Automation . 167Log Reports . 169Data Collection . 169Log ViewPoint . 170SonicWALL ViewPoint . 170Page 4 SonicWALL SonicOS Enhanced Administr

Appendix B, Configuring TCP/IP Settings - provides instructions for configuring your Management Station's IP address. Appendix C, Configuring RADIUS and ACE Servers - provides vendor-specific

Related Documents:

SonicOS 6.5.4 Log Events Reference Guide Introduction to SonicOS Log Events 1 3 Introduction to SonicOS Log Events This reference guide lists and describes the SonicWall SonicOS log event messages for the SonicOS 6.5.4 release on SonicWall SuperMassive , NSa, NSA, TZ, SOHO 250/250W, and SOHO W appliances.The Log Event Message

SonicWall GMS 8.4 and higher versions are supported for management of SonicWall NSv Series virtual appliances. The SonicOS 6.5 NSv Series About SonicOS book contains the list of features not supported on NSv. The Feature Support List table lists key SonicOS features and whether or not they are supported in deployments of the NSv Series

SonicWall Switches and SonicWave Access Points. It allows tight integration with Capture Client for seamless endpoint security. SonicOS and Security Services The SonicOS architecture is at the core of TZ NGFWs. TZ670 is powered by the feature rich SonicOS 7.0 operating system with new mo

We created this exampl e with a SonicWALL TZ 170, running SonicOS Enhanced 2.5. 1.1-65e. SonicOS Standard does not support N

SonicWall SonicOS NSv Series Upgrade Guide 2 4 Click the Firmware icon. 5 Optionally, click the Browse All Firmware button to display all available firmware versions. Depending on your NSv platform, the following file types are available: SWI - Upgrade image file for an existing deployment on any platform. If not displayed, a fresh installation may be required for this release.

Directory and Resource Administrator, Directory Security Administrator, Domain Migration Administrator, Exchange Administrator, File Security Administrator, Group Policy Administrator, Group Policy Guardian, Group Policy Suite, IntelliPolic y, . Example Script: Populating Active Directory from a Data Source .143 Using Data Modeling .

Apr 21, 2017 · SonicWall SonicOS 5.9 5.9 Upgrade Guide 1 . NSA E6500 TZ 200/200W NSA E5500 TZ 105/105W NSA 5000 SOHO NSA 4500 NSA 3500 NSA 2400 NSA 250M/250MW NSA 240 NSA 220/220W TZ 215/215W NOTE: When advanced routing is configured and OSPF is enabled on an unnumbered tunnel in

SonicWall X-Series: a Unified Approach Critical network elements, such as a firewall and switch, need to be managed, usually individually. The SonicWall SonicOS 6.5 X-Series Solution allows unified management of the firewall and a Dell X-Series swi