Summary of the content on the page No. 1
FR328S ProSafe Firewall
with Dial Back-Up
Reference Manual v2
NETGEAR, Inc.
4500 Great America Parkway
Santa Clara, CA 95054 USA
Phone 1-888-NETGEAR
M-10207-01, Reference Manual v2
October 2003
Summary of the content on the page No. 2
© 2003 by NETGEAR, Inc. Full Manual. All rights reserved. Trademarks NETGEAR and Auto Uplink are trademarks or registered trademarks of Netgear, Inc. Microsoft, Windows, and Windows NT are registered trademarks of Microsoft Corporation. Other brand and product names are registered trademarks or trademarks of their respective holders. Statement of Conditions In the interest of improving internal design, operational function, and/or reliability, NETGEAR reserves the right to make changes to the
Summary of the content on the page No. 3
Bestätigung des Herstellers/Importeurs Es wird hiermit bestätigt, daß dasFR328S ProSafe Firewall with Dial Back-Up gemäß der im BMPT-AmtsblVfg 243/ 1991 und Vfg 46/1992 aufgeführten Bestimmungen entstört ist. Das vorschriftsmäßige Betreiben einiger Geräte (z.B. Testsender) kann jedoch gewissen Beschränkungen unterliegen. Lesen Sie dazu bitte die Anmerkungen in der Betriebsanleitung. Das Bundesamt für Zulassungen in der Telekommunikation wurde davon unterrichtet, daß dieses Gerät auf den Markt
Summary of the content on the page No. 4
iv M-10207-01, Reference Manual v2
Summary of the content on the page No. 5
Contents Chapter 1 About This Manual Audience, Versions, Conventions ...................................................................................1-1 How to Use this Manual ..................................................................................................1-2 How to Print this Manual .................................................................................................1-3 Chapter 2 Introduction Key Features .....................................................
Summary of the content on the page No. 6
How to Complete the Wizard-Detected Dynamic IP Account Setup ...................... 3-11 How to Complete Wizard-Detected Fixed IP Account Setup .................................3-12 Configuring a Serial Port as the Primary Internet Connection ......................................3-13 How to Configure the Serial Port for an Internet Connection .................................3-13 Testing Your Internet Connection ..................................................................................3
Summary of the content on the page No. 7
Considerations for Inbound Rules ...................................................................5-10 Outbound Rules (Service Blocking) ....................................................................... 5-11 Outbound Rule Example: Blocking Instant Messenger ................................... 5-11 Order of Precedence for Rules ..............................................................................5-13 Setting Times and Scheduling Firewall Services .................................
Summary of the content on the page No. 8
MTU Size .................................................................................................................7-3 DHCP .......................................................................................................................7-4 Use router as DHCP server ...............................................................................7-4 Reserved IP addresses .....................................................................................7-5 How to Configure LAN TCP/I
Summary of the content on the page No. 9
Private IP Addresses ............................................................................................... B-7 Single IP Address Operation Using NAT ....................................................................... B-8 MAC Addresses and Address Resolution Protocol ................................................. B-9 Related Documents ................................................................................................. B-9 Domain Name Server ..........................
Summary of the content on the page No. 10
Glossary Index x Contents M-10207-01, Reference Manual v2
Summary of the content on the page No. 11
Chapter 1 About This Manual ™ Thank your for purchasing the NETGEAR FR328S ProSafe Firewall with Dial Back-Up. This chapter describes the target audience, versions, conventions, and features of this manual. Audience, Versions, Conventions This reference manual assumes that the reader has basic to intermediate computer and Internet skills. However, basic computer network, Internet, and firewall technologies tutorial information is provided in the Appendices and on the Netgear website. This gu
Summary of the content on the page No. 12
FR328S ProSafe Firewall with Dial Back-Up Reference Manual v2 How to Use this Manual The HTML version of this manual includes a variety of navigation features as well as links to PDF versions of the full manual and individual chapters. 2 1 3 Figure Preface -2: HTML version of this manual 1. Left pane. Use the left pane to view the Contents, Index, Search, and Favorites tabs. To view the HTML version of the manual, you must have a version 4 or later browser with JavaScript enabled. 2. Toolba
Summary of the content on the page No. 13
FR328S ProSafe Firewall with Dial Back-Up Reference Manual v2 How to Print this Manual To print this manual you man choose one of the following several options, according to your needs. • Printing a “How To” Sequence of Steps in the HTML View. Use the Print button on the upper right of the toolbar to print the currently displayed topic. Using this button when a step-by-step procedure is displayed will send the entire procedure to your printer--you do not have to worry about specifying the co
Summary of the content on the page No. 14
Summary of the content on the page No. 15
Chapter 2 Introduction This chapter describes the features of the NETGEAR FR328S ProSafe Firewall with Dial Back-Up. The FR328S is a complete security solution that protects your network from attacks and intrusions. Unlike simple Internet sharing routers that rely on Network Address Translation (NAT) for security, the FR328S uses Stateful Packet Inspection for Denial of Service (DoS) attack protection and intrusion detection. The 8-port FR328S with auto fail-over connectivity through the ser
Summary of the content on the page No. 16
FR328S ProSafe Firewall with Dial Back-Up Reference Manual v2 • Remote Access Server (RAS) allows you to log in remotely through the serial port to access a server on your LAN, other LAN resources, or the Internet based on a user name and password you define. • LAN-to-LAN access between two FR328S firewalls through the serial port with the option of enabling auto-failover Internet access across the serial LAN-to-LAN connection. A Powerful, True Firewall with Comprehensive Content Filtering Un
Summary of the content on the page No. 17
FR328S ProSafe Firewall with Dial Back-Up Reference Manual v2 • Automatic Configuration of Attached PCs by DHCP The FR328S dynamically assigns network configuration information, including IP, gateway, and domain name server (DNS) addresses, to attached PCs on the LAN using the Dynamic Host Configuration Protocol (DHCP). This feature greatly simplifies configuration of PCs on your local network. • DNS Proxy When DHCP is enabled and no DNS addresses are specified, the firewall provides its ow
Summary of the content on the page No. 18
FR328S ProSafe Firewall with Dial Back-Up Reference Manual v2 • Browser-based management Browser-based configuration allows you to easily configure your firewall from almost any type of personal computer, such as Windows, Macintosh, or Linux. A user-friendly Setup Wizard is provided and online help documentation is built into the browser-based interface. • Remote management The firewall allows you to log in to the browser-based management interface from a remote location via the Internet us
Summary of the content on the page No. 19
FR328S ProSafe Firewall with Dial Back-Up Reference Manual v2 The Firewall’s Front Panel The front panel of the FR328S (Figure 2-1) contains status LEDs. Figure 2-1: FR328S Front Panel You can use some of the LEDs to verify connections. Table 2-1 lists and describes each LED on the front panel of the firewall. These LEDs are green when lit, except for the TEST LED, which is amber. Table 2-1: LED Descriptions Label Activity Description POWER On Power is supplied to the firewall. TEST On The s
Summary of the content on the page No. 20
FR328S ProSafe Firewall with Dial Back-Up Reference Manual v2 The Firewall’s Rear Panel The rear panel of the FR328S (Figure 2-2) contains the connections identified below. LO CAL 10/100M 12VDC O.5A MODEM IN TERN ET 87654321 Figure 2-2: FR328S Rear Panel Viewed from left to right, the rear panel contains the following elements: • DB-9 serial port for modem connection • Factory Default Reset push button • Eight Local Ethernet RJ-45 ports for connecting the firewall to the local computers • Inter