WatchGuard Firebox System 4.6 User Guide

WatchGuard Firebox System 4.6 User Guide WatchGuard Firebox System 4.6 User Guide

watchguard.com
from watchguard.com More from this publisher
13.07.2015 Views

pull-down menus 32services arena 32Status Bar 32toolbar 32Policy orderchanging IPSec 129Polling ratechanging 30Port address translation. See also Dynamic NATPort numbers, protecting 43Port space probes 43Portsblocked 19Ethernet 22for WatchGuard VPN 130permanently blocked 45viewing on HostWatch 100PPP 81PPTPlogging 137running with RUVPN 147starting remote user 146using for remote user 146with RUVPN 133, 141pptp_users 134Precedenceservice 56Preferencessetting in LogViewer 103Primary event processor 69Prioritysetting for Event Processors 72Privilegessetting in WebBlocker 61Probesaddress space 43port space 43Procedureauthenticationconfiguring with CRYPTOCard server 90using SecureID on the RADIUS server 90BOVPNchanging IPSec policy order 129changing remote network entries 131configuring a gateway 125configuring a tunnel with dynamicsecurity 127configuring a tunnel with ManualSecurity 126configuring Branch Office VPN withIPSec 124configuring WatchGuard VPN 130creating an IP sec policy 128using authenticated headers 127using encapsulated security protocol(ESP) 126changing Control Center display size 27changing the Control Center polling rate 30configuring debugging options 147connecting to a Firebox 30Historical ReportsApplying a filter 114creating new filter 113Deleting a filter 114Editing a filter 114Scheduling a report 114host aliasadding 86Loggingcontrolling notification 76Setting interval for log roll over 75Setting logging and notification for aservice 78Synchronizing NT event processors 72LogViewerconsolodating logs 106copying log files 107displaying and hiding fields 105forcing log file roll over 107opening a log file 103searching for entries 104setting preferences 103Monitorconnecting HostWatch 99connecting to a Firebox 93controlling HostWatch display 100modifying view properties on HostWatch 101replaying a log file 99setting Firebox monitor view properties 94starting Firebox monitors 93viewing authenticated users onHostWatch 100viewing hosts on HostWatch 100viewing HostWatch ports 100NATadding dynamic NAT entries 64adding static NAT external IP addresses 66configuring service-based NAT exceptions 65enabling service-based NAT 65enabling simple dynamic NAT 64reordering dynamic NAT entries 64setting static NAT on a service 66networkadding a secondary network 38changing an interface IP address 39defining a host route 39defining a network route 38running the QuickSetup Wizard 36setting the default gateway 39opening Firebox monitors 32opening HostWatch 33opening LogViewer 32opening the LiveSecurity Event Processor 33Out-of-bandconfigure 80configuring Firebox 81Install the modem 80preparing an NT management station 80preparing Windows 95/98 management stationfor out-of-band 80out-of-bandpreparing Windows 95/98 management stationfor out-of-band 80ReportsConsolidated sections 111Creating a new report 109Editing an existing report 110Specifying Report Time Span 111RUVPN Fireboxactivating remote user PPTP 136adding member to built-in RUVPN usergroups 134configuring the Firebox for remote userIPSec 137entering IP address for remote usersessions 137entering license keys 138entering WINS & DNS addresses 40RUVPN Host156

adding a domain name to an NTworkstation 144adding new domain for NT workstation 144installing a VPN adaptor for Windows 95/98 145installing a VPN adaptor on Windows NT 146installing client for Microsoft Networks 143installing dial-up adapter #2 for Windows 95/98 143preparing Windows 95/98 for RUVPN 142running remote user VPN with PPTP 147starting Remote User PPTP 146Windows NT platform preparation 143starting online help 15starting the Control Center. 27technical supportgetting Internet technical support 12WebBlockeractivating WebBlocker 60creating WebBlocker exceptions 61Scheduling WebBlocker hours 61setting privileges in WebBlocker 61Process status 96Processor load indicator 22, 28Propertiesediting for SOHO tunnels 123incoming service 49Protecting port numbers 43ProtocolHTTP 55Proxied-HTTP 60service 55Proxy 47, 60ARP 36FTP 54HTTP 59, 112SMTP 52, 54transparent 52proxy ARPenabling 36, 37Proxy summary reportshost summary 116proxy summary 116session summary 116time series 116Purchasing Firebox System options 18QQuickGuide 27QuickSetup Wizard 35running 36RRADIUS 89authentication 87using SecureID authentication 91Rapid Response Team 7RAS, see also Microsoft Remote Access ServerRebooting 72SOHO 124Red exclamation point, in VPN Monitor 29Reinitializing Firebox 25Related network see also Secondary networkRemote UserPPTP,starting 146Remote userusing PPTP 146Removinggateway 126reports 110SOHO tunnel 124Repeat count 77setting 77Replaying a log file 99Report sectionsintroduction 115Reports 83Authentication details 115Consolidated sectionsHTTP summary 118network statistics 117time summary-proxied traffic 118consolidating sections 111, 115creating 109customizing 109detail sections 111editing 110Exceptionsdenied authentication details 117denied incoming/outgoing packet detail 117denied packet summary 117denied service detail 117WebBlocker detail 117exporting 112exporting to HTML 112Firebox Statistics 115FTP proxyFTP detail 116Historical reports 2HTTP proxyHTTP detail 116most popular domains 116introduction to historical reports 33Packet Filteredhost summary 115Service summary 115session summary 116Proxy summaryhost summary 116proxy summary 116sesssion summary 116time series 116removing 110running 114scheduling 76, 114sections in 110SMTP proxySMTP detail 116SMTP summary 116specifying sections for 110summary sections 111time spans for 111using filters 113viewing list of all 109WebTrends 112, 113Requirementsfor Firebox System 4LiveSecurity software 3Roll overforcing in LogViewer 107Route network 37Routed networkUser Guide 157

pull-down menus 32services arena 32Status Bar 32toolbar 32Policy orderchanging IPSec 129Polling ratechanging 30Port address translation. See also Dynamic NATPort numbers, protecting 43Port space probes 43Portsblocked 19Ethernet 22for <strong>WatchGuard</strong> VPN 130permanently blocked 45viewing on HostWatch 100PPP 81PPTPlogging 137running with RUVPN 147starting remote user 146using for remote user 146with RUVPN 133, 141pptp_users 134Precedenceservice 56Preferencessetting in LogViewer 103Primary event processor 69Prioritysetting for Event Processors 72Privilegessetting in WebBlocker 61Probesaddress space 43port space 43Procedureauthenticationconfiguring with CRYPTOCard server 90using SecureID on the RADIUS server 90BOVPNchanging IPSec policy order 129changing remote network entries 131configuring a gateway 125configuring a tunnel with dynamicsecurity 127configuring a tunnel with ManualSecurity 126configuring Branch Office VPN withIPSec 124configuring <strong>WatchGuard</strong> VPN 130creating an IP sec policy 128using authenticated headers 127using encapsulated security protocol(ESP) 126changing Control Center display size 27changing the Control Center polling rate 30configuring debugging options 147connecting to a <strong>Firebox</strong> 30Historical ReportsApplying a filter 114creating new filter 113Deleting a filter 114Editing a filter 114Scheduling a report 114host aliasadding 86Loggingcontrolling notification 76Setting interval for log roll over 75Setting logging and notification for aservice 78Synchronizing NT event processors 72LogViewerconsolodating logs 106copying log files 107displaying and hiding fields 105forcing log file roll over 107opening a log file 103searching for entries 104setting preferences 103Monitorconnecting HostWatch 99connecting to a <strong>Firebox</strong> 93controlling HostWatch display 100modifying view properties on HostWatch 101replaying a log file 99setting <strong>Firebox</strong> monitor view properties 94starting <strong>Firebox</strong> monitors 93viewing authenticated users onHostWatch 100viewing hosts on HostWatch 100viewing HostWatch ports 100NATadding dynamic NAT entries 64adding static NAT external IP addresses 66configuring service-based NAT exceptions 65enabling service-based NAT 65enabling simple dynamic NAT 64reordering dynamic NAT entries 64setting static NAT on a service 66networkadding a secondary network 38changing an interface IP address 39defining a host route 39defining a network route 38running the QuickSetup Wizard 36setting the default gateway 39opening <strong>Firebox</strong> monitors 32opening HostWatch 33opening LogViewer 32opening the LiveSecurity Event Processor 33Out-of-bandconfigure 80configuring <strong>Firebox</strong> 81Install the modem 80preparing an NT management station 80preparing Windows 95/98 management stationfor out-of-band 80out-of-bandpreparing Windows 95/98 management stationfor out-of-band 80ReportsConsolidated sections 111Creating a new report 109Editing an existing report 110Specifying Report Time Span 111RUVPN <strong>Firebox</strong>activating remote user PPTP 136adding member to built-in RUVPN usergroups 134configuring the <strong>Firebox</strong> for remote userIPSec 137entering IP address for remote usersessions 137entering license keys 138entering WINS & DNS addresses 40RUVPN Host156

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!