Summary of the content on the page No. 1
ProSecure Unified Threat
Management (UTM)
Appliance Reference Manual
NETGEAR, Inc.
350 East Plumeria Drive
San Jose, CA 95134
202-10482-02
January 2010
v1.0
Summary of the content on the page No. 2
© 2009–2010 by NETGEAR, Inc. All rights reserved. Trademarks NETGEAR and the NETGEAR logo are registered trademarks and ProSecure and ProSafe are trademarks of NETGEAR, Inc. Microsoft, Windows, and Windows NT are registered trademarks of Microsoft Corporation. Other brand and product names are registered trademarks or trademarks of their respective holders. Statement of Conditions In the interest of improving internal design, operational function, and/or reliability, NETGEAR reserves the right
Summary of the content on the page No. 3
Federal Office for Telecommunications Approvals has been notified of the placing of this equipment on the market and has been granted the right to test the series for compliance with the regulations. Voluntary Control Council for Interference (VCCI) Statement This equipment is in the second category (information equipment to be used in a residential area or an adjacent area thereto) and conforms to the standards set by the Voluntary Control Council for Interference by Data Processing Equipme
Summary of the content on the page No. 4
Open SSL Copyright (c) 1998–2000 The OpenSSL Project. All rights reserved. Redistribution and use in source and binary forms, with or without modification, are permitted provided that the following conditions are met: 1. Redistributions of source code must retain the above copyright notice, this list of conditions, and the following disclaimer. 2. Redistributions in binary form must reproduce the above copyright notice, this list of conditions, and the following disclaimer in the documentati
Summary of the content on the page No. 5
PPP Copyright (c) 1989 Carnegie Mellon University. All rights reserved. Redistribution and use in source and binary forms are permitted provided that the above copyright notice and this paragraph are duplicated in all such forms and that any documentation, advertising materials, and other materials related to such distribution and use acknowledge that the software was developed by Carnegie Mellon University. The name of the University may not be used to endorse or promote products derived fr
Summary of the content on the page No. 6
vi v1.0, January 2010
Summary of the content on the page No. 7
Contents ProSecure Unified Threat Management (UTM) Appliance Reference Manual About This Manual Conventions, Formats, and Scope .................................................................................xvii How to Print This Manual ..............................................................................................xviii Revision History .............................................................................................................xviii Chapter 1 Introduction What
Summary of the content on the page No. 8
ProSecure Unified Threat Management (UTM) Appliance Reference Manual Chapter 2 Using the Setup Wizard to Provision the UTM in Your Network Understanding the Steps for Initial Connection ..............................................................2-1 Qualified Web Browsers ...........................................................................................2-2 Logging In to the UTM ....................................................................................................2-2 Und
Summary of the content on the page No. 9
ProSecure Unified Threat Management (UTM) Appliance Reference Manual Configuring Secondary WAN Addresses ......................................................................3-17 Configuring Dynamic DNS ............................................................................................3-19 Configuring Advanced WAN Options ............................................................................3-22 Additional WAN-Related Configuration Tasks ..........................................
Summary of the content on the page No. 10
ProSecure Unified Threat Management (UTM) Appliance Reference Manual Managing the Application Level Gateway for SIP Sessions ..................................5-31 Creating Services, QoS Profiles, and Bandwidth Profiles ............................................5-32 Adding Customized Services .................................................................................5-32 Creating Quality of Service (QoS) Profiles .............................................................5-35 Creating
Summary of the content on the page No. 11
ProSecure Unified Threat Management (UTM) Appliance Reference Manual Creating Gateway-to-Gateway VPN Tunnels with the Wizard .................................7-4 Creating a Client to Gateway VPN Tunnel ...............................................................7-9 Testing the Connections and Viewing Status Information .............................................7-17 Testing the VPN Connection ..................................................................................7-17 NETGEAR VPN
Summary of the content on the page No. 12
ProSecure Unified Threat Management (UTM) Appliance Reference Manual Viewing the UTM SSL VPN Connection Status .....................................................8-16 Viewing the UTM SSL VPN Log .............................................................................8-16 Manually Configuring and Editing SSL Connections ....................................................8-17 Creating the Portal Layout .....................................................................................8-1
Summary of the content on the page No. 13
ProSecure Unified Threat Management (UTM) Appliance Reference Manual Updating the Scan Signatures and Scan Engine Firmware .................................10-21 Configuring Date and Time Service .....................................................................10-24 Chapter 11 Monitoring System Access and Performance Enabling the WAN Traffic Meter ................................................................................... 11-1 Configuring Logging, Alerts, and Event Notifications ...
Summary of the content on the page No. 14
ProSecure Unified Threat Management (UTM) Appliance Reference Manual Troubleshooting the ISP Connection ............................................................................12-5 Troubleshooting a TCP/IP Network Using a Ping Utility ...............................................12-7 Testing the LAN Path to Your UTM ........................................................................12-7 Testing the Path from Your PC to a Remote Device ..............................................12-8
Summary of the content on the page No. 15
ProSecure Unified Threat Management (UTM) Appliance Reference Manual Firewall Restart ....................................................................................................... C-4 IPsec Restart ........................................................................................................... C-4 WAN Status ............................................................................................................. C-5 Traffic Metering Logs .................................
Summary of the content on the page No. 16
ProSecure Unified Threat Management (UTM) Appliance Reference Manual xvi v1.0, January 2010
Summary of the content on the page No. 17
About This Manual ® The NETGEAR ProSecure™ Unified Threat Management (UTM) Appliance Reference Manual describes how to install, configure, and troubleshoot a ProSecure Unified Threat Management (UTM) Appliance. The information in this manual is intended for readers with intermediate computer and networking skills. Conventions, Formats, and Scope The conventions, formats, and scope of this manual are described in the following paragraphs: • Typographical conventions. This manual uses the foll
Summary of the content on the page No. 18
ProSecure Unified Threat Management (UTM) Appliance Reference Manual • Scope. This manual is written for the UTM according to these specifications: Product Version ProSecure Unified Threat Management (UTM) Appliance Manual Publication Date January 2010 For more information about network, Internet, firewall, and VPN technologies, click the links to the NETGEAR Website in Appendix E, “Related Documents.” Note: Product updates are available on the NETGEAR website at http://prosecure.netgear.com o
Summary of the content on the page No. 19
Chapter 1 Introduction This chapter provides an overview of the features and capabilities of the ProSecure Unified Threat Management (UTM) Appliance. This chapter contains the following sections: • “What Is the ProSecure Unified Threat Management (UTM) Appliance?” on this page. • “Key Features and Capabilities” on page 1-2. • “Service Registration Card with License Keys” on page 1-8. • “Package Contents” on page 1-9. • “Hardware Features” on page 1-10. • “Choosing a Location for the UTM” on pag
Summary of the content on the page No. 20
ProSecure Unified Threat Management (UTM) Appliance Reference Manual Key Features and Capabilities The UTM provides the following key features and capabilities: • For the single-WAN port models, a single 10/100/1000 Mbps Gigabit Ethernet WAN port. For the dual-WAN port models, dual 10/100/1000 Mbps Gigabit Ethernet WAN ports for load balancing or failover protection of your Internet connection, providing increased system reliability or increased throughput. • Built-in four-port 10/100/1000 Mb