Summary of the content on the page No. 1
ProSafe Gigabit 8 Port
VPN Firewall FVS318G
Reference Manual
NETGEAR, Inc.
350 East Plumeria Drive
San Jose, CA 95134
202-10521-02
v1.1
August 2010
Summary of the content on the page No. 2
© 2009–2010 by NETGEAR, Inc. All rights reserved. Technical Support Please refer to the support information card that shipped with your product. By registering your product at http://www.netgear.com/register, we can provide you with faster expert technical support and timely notices of product and software upgrades. NETGEAR, INC. Support Information Phone: 1-888-NETGEAR, for US & Canada only. For other countries, see your Support information card. Email: support@netgear.com North American NETG
Summary of the content on the page No. 3
Bestätigung des Herstellers/Importeurs Es wird hiermit bestätigt, daß das ProSafe Gigabit 8 Port VPN Firewall FVS318G gemäß der im BMPT-AmtsblVfg 243/ 1991 und Vfg 46/1992 aufgeführten Bestimmungen entstört ist. Das vorschriftsmäßige Betreiben einiger Geräte (z.B. Testsender) kann jedoch gewissen Beschränkungen unterliegen. Lesen Sie dazu bitte die Anmerkungen in der Betriebsanleitung. Das Bundesamt für Zulassungen in der Telekommunikation wurde davon unterrichtet, daß dieses Gerät auf den Mar
Summary of the content on the page No. 4
Open SSL Copyright (c) 1998–2000 The OpenSSL Project. All rights reserved. Redistribution and use in source and binary forms, with or without modification, are permitted provided that the following conditions are met: 1. Redistributions of source code must retain the above copyright notice, this list of conditions, and the following disclaimer. 2. Redistributions in binary form must reproduce the above copyright notice, this list of conditions, and the following disclaimer in the documentati
Summary of the content on the page No. 5
PPP Copyright (c) 1989 Carnegie Mellon University. All rights reserved. Redistribution and use in source and binary forms are permitted provided that the above copyright notice and this paragraph are duplicated in all such forms and that any documentation, advertising materials, and other materials related to such distribution and use acknowledge that the software was developed by Carnegie Mellon University. The name of the University may not be used to endorse or promote products derived fr
Summary of the content on the page No. 6
vi v1.1, August 2010
Summary of the content on the page No. 7
Contents ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual About This Manual Conventions, Formats and Scope ...................................................................................xiii How to Print This Manual ............................................................................................... xiv Chapter 1 Introduction Key Features ..................................................................................................................1-1 Advanced VPN
Summary of the content on the page No. 8
ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual Chapter 3 LAN Configuration Choosing the VPN Firewall DHCP Options ....................................................................3-1 Configuring the LAN Setup Options ...............................................................................3-2 Managing Groups and Hosts (LAN Groups) ...................................................................3-5 Creating the Network Database ..........................................
Summary of the content on the page No. 9
ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual Blocking Internet Sites (Content Filtering) ....................................................................4-30 Configuring Source MAC Filtering ................................................................................4-33 Configuring IP/MAC Address Binding ...........................................................................4-35 Configuring Port Triggering .............................................................
Summary of the content on the page No. 10
ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual Configuring NetBIOS Bridging with VPN ......................................................................5-55 Chapter 6 VPN Firewall and Network Management Performance Management .............................................................................................6-1 Bandwidth Capacity .................................................................................................6-1 VPN Firewall Features That Reduce Traff
Summary of the content on the page No. 11
ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual Troubleshooting the Web Configuration Interface ..........................................................7-3 Troubleshooting the ISP Connection ..............................................................................7-4 Troubleshooting a TCP/IP Network Using a Ping Utility .................................................7-5 Testing the LAN Path to Your VPN Firewall .............................................................7-
Summary of the content on the page No. 12
ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual xii Contents v1.1, August 2010
Summary of the content on the page No. 13
About This Manual ® The NETGEAR ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual describes how to install, configure and troubleshoot the ProSafe Gigabit 8 Port VPN Firewall FVS318G. The information in this manual is intended for readers with intermediate computer and Internet skills. Conventions, Formats and Scope The conventions, formats, and scope of this manual are described in the following paragraphs. • Typographical Conventions. This manual uses the following typographical
Summary of the content on the page No. 14
ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual • Scope. This manual is written for the VPN firewall according to these specifications. Product Version ProSafe Gigabit 8 Port VPN Firewall FVS318G Manual Publication Date August 2010 For more information about network, Internet, firewall, and VPN technologies, see the links to the NETGEAR website in Appendix C, “Related Documents.” Note: Product updates are available on the NETGEAR, Inc. website at http://kb.netgear.com/app/home. How
Summary of the content on the page No. 15
ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual 202-10521-02 1.0 April 2010 Added the following new features for the April 2010 firmware maintenance release: • Connection reset and delay options on the Broadband ISP Settings screen (see “Manually Configuring Your Internet Connection”). • Support for an address range for inbound LAN rules on the Add LAN WAN Inbound Service screen (see “Inbound Rules (Port Forwarding)” and “Inbound Rules Examples”). • Support for new log options
Summary of the content on the page No. 16
ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual xvi About This Manual v1.1, August 2010
Summary of the content on the page No. 17
Chapter 1 Introduction The ProSafe Gigabit 8 Port VPN Firewall FVS318G with eight 10/100/1000 Mbps Gigabit Ethernet LAN ports and one 10/100/1000 Mbps Gigabit Ethernet WAN port connects your local area network (LAN) to the Internet through an external access device such as a cable modem or DSL modem. The FVS318G is a complete security solution that protects your network from attacks and intrusions. For example, the FVX538 provides support for Stateful Packet Inspection, Denial of Service (D
Summary of the content on the page No. 18
ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual • SNMP Manageable, optimized for the NETGEAR ProSafe Network Management Software (NMS100). • Easy, Web-based setup for installation and management. • Advanced SPI Firewall and Multi-NAT support. • Extensive Protocol Support. • Login capability. • One console port for local management. • Front panel LEDs for easy monitoring of status and activity. • Flash memory for firmware upgrade. Advanced VPN Support for IPsec The VPN firewall supp
Summary of the content on the page No. 19
ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual • Keyword Filtering. With its URL keyword filtering feature, the FVS318G prevents objectionable content from reaching your PCs. The VPN firewall allows you to control access to Internet content by screening for keywords within Web addresses. You can configure the VPN firewall to log and report attempts to access objectionable Internet sites. Security Features The FVS318G is equipped with several features designed to maintain securit
Summary of the content on the page No. 20
ProSafe Gigabit 8 Port VPN Firewall FVS318G Reference Manual Extensive Protocol Support The FVS318G supports the Transmission Control Protocol/Internet Protocol (TCP/IP) and Routing Information Protocol (RIP). For further information about TCP/IP, see the “TCP/IP Networking Basics” document that you can access from the link in “Related Documents” in Appendix C. • IP Address Sharing by NAT. The VPN firewall allows several networked PCs to share an Internet account using only a single IP addre