ETIC SIG Manual do Utilizador

Consulte online ou descarregue Manual do Utilizador para Servidores ETIC SIG. SIG - Etic Telecom Manual do Utilizador

  • Descarregar
  • Adicionar aos meus manuais
  • Imprimir
  • Página
    / 83
  • Índice
  • MARCADORES
  • Avaliado. / 5. Com base em avaliações de clientes
Vista de página 0
SIG
TLS or IPSec VPN server
_________________
User manual
Document reference : 9017409-01
_________________
Vista de página 0
1 2 3 4 5 6 ... 82 83

Resumo do Conteúdo

Página 1 - User manual

SIG TLS or IPSec VPN server _________________ User manual Document reference : 9017409-01 _________________

Página 2 - ETIC TELECOM

INSTALLATION 1 Product description SIG router Interface Led Function Ethernet 1 DATA Blinking quickly : Data activity LINK Lit : Interf

Página 3

INSTALLATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 11 Ethernet RJ45 connector Ethernet 10/100 BT Pin Nr Signal Function 1

Página 5

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 13 1 Configuring the SIG router 1.1 Overview Administration server a

Página 6

CONFIGURATION 1.2 First configuration Step 1 : Create or modify the PC’s IP connection. Assign to the PC an IP @ in accordance with the SIG IP add

Página 7 - 1 Technical data

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 15 1.3 Modifying the configuration Modifications from the LAN (Interf

Página 8 - INSTALLATION

CONFIGURATION Page 16 User’s guide ref 9017409-01 SIG Router & VPN server 2 Rebooting the router after parameters changes • After the param

Página 9 - 2 Overview

CONFIGURATION 5 Restricting access to the administration server The access to the administration server can be protected by a login and password. T

Página 10 - 1 Product description

CONFIGURATION Page 18 User’s guide ref 9017409-01 SIG Router & VPN server 6 Assigning IP addresses to the LAN and the WAN interfaces 6.1 Pr

Página 11 - 2 Installation

CONFIGURATION Moreover The LAN IP address must be different from any of the remote LAN IP address. 6.2 LAN interface parameters 6.2.1 IP addres

Página 12

The SIG router & VPN server is manufactured by ETIC TELECOM 13 Chemin du vieux chêne 38240 MEYLAN FRANCE TEL : + (33) (0)4-76-04-

Página 13 - 1.1 Overview

CONFIGURATION Page 20 User’s guide ref 9017409-01 SIG Router & VPN server 6.2.2 DHCP server configuration Over the LAN interface, the SIG ro

Página 14 - 1.2 First configuration

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 21 6.3 WAN interface parameters The « Ethernet 4 » RJ45 connector i

Página 15 - Page 15

CONFIGURATION 7 Creating VPN connections between routers 7.1 Principles A VPN tunnel is a safe link set between two end-points routers over an I

Página 16

CONFIGURATION To create VPN connections between routers, • select the « Set up» menu and then « Network» and then “VPN connections”. SIG Rout

Página 17 - Page 17

CONFIGURATION 7.2 IPSec VPN connections 7.2.1 Configuring the IPSec protocol • Select the “Set up” menu, the “network” menu and then ‘VPN conn

Página 18

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 25 “Authentication & encryption key” parameters : Authentication

Página 19 - Page 19

CONFIGURATION 7.2.2 Setting up an outgoing IPSec connection IP networkVPNRouter Outgoingconnection Incomingconnection Remote LANIP addressRemot

Página 20

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 27 ‘Remote WAN IP address’ parameter : Enter the IP network address a

Página 21 - Page 21

CONFIGURATION 7.2.3 Configuring an ingoing IPSec connection VPNRouter Remote LANIP addressLANIP addressIncomingconnection Outgoingconnection Remo

Página 22 - 7.1 Principles

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 29 Give a name to the connection and select the “ingoing” connection di

Página 23 - Page 23

CONTENT SIG Router & VPN server User’s guide ref. 9017409-01 Page 3 PRESENTATION 1 TECHNICAL DATA...

Página 24 - 7.2 IPSec VPN connections

CONFIGURATION 7.3 TLS VPN connections 7.3.1 Configuring the TLS-SSL protocol • Select the “Set up” menu, the “network” menu and then the ‘VPN co

Página 25 - Page 25

CONFIGURATION “VPN network address” & “VPN network netmask” parameters : The TLS VPN server router assigns automatically an IP address to the V

Página 26 - Incoming

CONFIGURATION 7.3.2 Configuring an outgoing TLS connection 2 Configuring an outgoing TLS connection IP networkVPNRouter Outgoingconnection Inco

Página 27 - Page 27

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 33 “Login & Password” parameter: Enter the login and password, the

Página 28

CONFIGURATION 7.3.3 Configuring an ingoing TLS connection VPNRouter Remote LANIP addressLANIP addressIncomingconnection Outgoingconnection Remote

Página 29 - Page 29

CONFIGURATION “Remote LAN address” & “Remote LAN netmask” ” parameters : Enter the IP network address and netmask assigned to the remote LAN. “

Página 30 - 7.3 TLS VPN connections

CONFIGURATION 8.2 Static routes However, the router R2 is not able to route frames between a device like L1 belonging to the LAN network and a dev

Página 31 - Page 31

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 37 Remark : It is not necessary to enter in the router R2 the static r

Página 32

CONFIGURATION Page 38 User’s guide ref 9017409-01 SIG Router & VPN server To enable RIP, • select the « Set up» menu, the “Routing” menu and

Página 33 - Page 33

CONFIGURATION PLC1 192.168.0.15TCP : 102PLC2 192.168.0.16TCP : 502PC 192.168.0.17TCP : 8062.10.10.7TCP : 102WAN IP addr. :62.10.10.7WANnetwor

Página 34

CONTENT Page 4 User’s guide ref 9017409-01 SIG Router & VPN server … CONFIGURATION 8 ROUTING FUNCTIONS...

Página 35 - Page 35

CONFIGURATION the SNAT function which consists in replacing the source IP address. Because the DNAT and SNAT functions modify the IP addresses of

Página 36 - 8.2 Static routes

CONFIGURATION 9.2.2 Configuration To set the advanced address translation functions, • select the “Set up” menu, “Network” , and then the “Advan

Página 37 - 8.3 RIP protocol

CONFIGURATION To create a new DNAT rule • Click “Add a DNAT” rule. • Select “Yes” to enable the rule. • Enter the replacement criterion : Sour

Página 38 - 9.1 Port forwarding

CONFIGURATION To replace the source IP address & destination port • Click “Add a SNAT” rule. • Select “Yes” to enable the rule. • Enter th

Página 39 - Page 39

CONFIGURATION Page 44 User’s guide ref 9017409-01 SIG Router & VPN server 10 VRRP redundancy 10.1 Principle VRRP is a protocol designed to

Página 40

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 45 10.2 Configuring VRRP on the LAN interface To enable and configure

Página 41 - Page 41

CONFIGURATION Page 46 User’s guide ref 9017409-01 SIG Router & VPN server 10.3 Configuring VRRP on the WAN interface To enable and configur

Página 42

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 47 11 Remote users connections service The SIG provides a full remote

Página 43 - Page 43

CONFIGURATION 12 Remote users connections 12.1 Principles A remote user connection is a tunnel set between a remote PC and a router providing the

Página 44 - 10 VRRP redundancy

CONFIGURATION 12.2 Configuring a TLS connection The M2Me_Secure software provided by ETIC TELECOM is a Windows TLS client software. Installed on a

Página 45 - Page 45

CONTENT SIG Router & VPN server User’s guide ref. 9017409-01 Page 5 … CONFIGURATION 15 ADVANCED FUNCTIONS...

Página 46

CONFIGURATION • Select the VPN type “ TLS”. • Click the “Properties” button and set the parameters. ”Port number” & “Protocol” : Select t

Página 47 - Page 47

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 51 “Remote Users authentication” parameters : Authentication an encrypt

Página 48 - 12 Remote users connections

CONFIGURATION 12.3 Configuring a PPTP connection We describe hereafter how to configure the router and the PC to set a PPTP remote user connectio

Página 49 - Page 49

CONFIGURATION 13 Users list The user list registers 25 authorised remote users forms. Each user form stores the identity of the user (Login and p

Página 50

CONFIGURATION Attention : Coming from factory, a default user is registered; his login is admin and the password is also admin. After the test p

Página 51 - Page 51

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 55 E-mail : The SIG will send an email to that address in two situatio

Página 52

CONFIGURATION Page 56 User’s guide ref 9017409-01 SIG Router & VPN server 14 Firewall 14.1 Overview The firewall filters IP packets betwe

Página 53 - 13 Users list

CONFIGURATION The firewall of the SIG firewall can thus be represented by the drawing hereafter : VPN between routersWANLANUsers filtersMain filterF

Página 54

CONFIGURATION Page 58 User’s guide ref 9017409-01 SIG Router & VPN server 14.2 Main filter The main filter applies to all the IP packets ex

Página 55 - Page 55

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 59 • Main filter table The main filter is a table, each line being a r

Página 57 - Page 57

CONFIGURATION 14.2.2 Configuring the main filter Select the “Security” menu and then “Firewall” and “Main filter”. The “Main filter” page is di

Página 58 - 14.2.1 Main filter Overview

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 61 Configure successively the WAN traffic rules using the same method.

Página 59 - Page 59

CONFIGURATION Page 62 User’s guide ref 9017409-01 SIG Router & VPN server ”Destination IP address” & “destination port” parameters : Ente

Página 60

CONFIGURATION Step 2 : Enter the list of devices of the LAN network • Select the «System» menu, then «Devices list». The list of the devices of the

Página 61 - Page 61

CONFIGURATION Step 3 : Build a remote user filter • Select the « security» menu, then « firewall» and then «Filter list» The users filters list is

Página 62 - 14.3 Remote users filters

CONFIGURATION • Click « add a new filter ». • Assign a name to the new filter. • Choose the policy ; « All is forbidden except what we specify

Página 63 - Page 63

CONFIGURATION Page 66 User’s guide ref 9017409-01 SIG Router & VPN server Step 4 : Assign a filter to each user • Select the « Remote user»

Página 64

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 67 15 Advanced functions 15.1 Adding a certificate Coming from the

Página 65 - Page 65

CONFIGURATION 15.3 Configuring the web portal The web portal in an html page; it displays a list of devices connected to the LAN. Each line of the

Página 66

CONFIGURATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 69 15.4 Configuring the DNS server For domain names resolution, the S

Página 67 - 15 Advanced functions

INSTALLATION SIG Router & VPN server User’s guide ref. 9017409-01 Page 7 1 Technical data General characteristics Dimensions 137 x 48 x 1

Página 69 - Page 69

MAINTENANCE SIG Router & VPN server User’s guide ref. 9017409-01 Page 71 1 Diagnostic The html server provides extended diagnostic functions.

Página 70

MAINTENANCE Page 72 User’s guide ref 9017409-01 SIG Router & VPN server 2 Saving the parameters to a file Once a product has been configured

Página 71 - 1 Diagnostic

MAINTENANCE SIG Router & VPN server User’s guide ref. 9017409-01 Page 73 Step 4 : Update the firmware Launch the web browser Enter the IP addr

Página 72 - 3 Updating the firmware

MAINTENANCE Page 74 User’s guide ref 9017409-01 SIG Router & VPN server

Página 73 - Page 73

APPENDIX 1 HTML administration server SIG Router & VPN server User’s guide ref. 9017409-01 Page 75 1/ Set up menu Remote users To assign an

Página 74

APPENDIX 1 HTML administration server Page 76 User’s guide ref 9017409-01 SIG Router & VPN server 2/ Diagnostic menu Log To display the event

Página 75 - 1/ Set up menu

APPENDIX 2 VPN basic mechanisms 1 Overview VPN is the acronym for « virtual private network » ; it is a mechanism which allows to connect safely 2

Página 76 - 2/ Diagnostic menu

APPENDIX2 VPN basic mechanisms Page 78 User’s guide ref 9017409-01 SIG Router & VPN server 2 Functions A VPN provides the functions describe

Página 77 - 1 Overview

APPENDIX 2 VPN basic mechanisms SIG Router & VPN server User’s guide ref. 9017409-01 Page 79 VPN clearing Periodically, each router (or at le

Página 78 - 3 Operation

INSTALLATION Page 8 User’s guide ref 9017409-01 SIG Router & VPN server VPN and firewall VPN • 128 VPN • IPSec - Client or server - PSK or

Página 79 - Page 79

APPENDIX2 VPN basic mechanisms Page 80 User’s guide ref 9017409-01 SIG Router & VPN server

Página 82

13, Chemin du Vieux Chêne 38240 Meylan - France Tel : 33 4 76 04 20 00 Fax : 33 4 76 04 20 01 E-mail : contact@eticteleco

Página 83

INSTALLATION 2 Overview The SIG is designed to build safe and reliable remote control system through the internet or private extended networks.

Comentários a estes Manuais

Sem comentários