Compatible Systems A00-1869 manual Basic Configuration Guide, Ethernet Interface Configuration

Page 28

Chapter 6 - Basic Configuration Guide

22

Chapter 6 - Basic Configuration Guide

This chapter briefly discusses the major parameters that must be set in order to use the

IntraPort Enterprise-8 VPN Access Server.

Detailed information on the meaning of the server’s parameters is provided in the Compati- View Management Software Reference Guide and the Text-Based Configuration and Command Line Management Reference Guide. You should use this list as a starting point to look up more specific information in the other documents.

There are a number of parameter settings which are optional, in the sense that they are not required for all installations. These settings are not covered in this chapter.

In this chapter:

CV = CompatiView

TB = Text-Based Configuration

ϖNote: This Basic Configuration Guide does not include information on setting up packet

filters. See the CompatiView Management Software Reference Guide or Text-Based Config- uration and Command Line Management Reference Guide regarding IP, IPX and AppleTalk packet filters for more information.

Ethernet Interface Configuration

As shown in Figure 11: Detail of RIOP Cards, the IntraPort Enterprise-8’s RIOP cards have specialized functions. The even-numbered slots (0, 2, 4 and 6) feature full IP, IPX and Apple- Talk router ports, while the odd-numbered slots (1, 3, 5 and 7) feature IPSec-only interfaces. These ports can only send and receive IPSec packets. All other traffic is dropped. Thus, Ethernet 0:0, 2:0, 4:0, and 6:0 can be thought of as internal/private ports and Ethernet 1:0, 3:0, 5:0 and 7:0 can be thought of as external/public ports.

If you have physically installed your IntraPort Enterprise-8 using both types of ports, then you should follow the IP Settings for Setups in Parallel with a Firewall.

If you have physically installed your IntraPort Enterprise-8 behind your firewall using the Ethernet interfaces on slots 0, 2, 4, and 6 only, then you should follow the IP Settings for Setups Behind a Firewall. Remember that you will also have to set up your firewall to allow IPSec traffic through.

IP Protocol

IP Settings for Setups in Parallel with a Firewall

If setting up the IntraPort-8 in parallel with a firewall, you need to set some basic IP parame- ters for each of the Ethernet interfaces.

IP address (default = 198.41.12.1)

IP subnet mask (default = 255.255.255.0)

IP broadcast address (default = 198.41.12.255)

RIP 1, RIP 2 or OSPF (Open Shortest Path First) for Ethernet 0:0, 2:0, 4:0, and 6:0 only

IPSec Gateway which is the equivalent of a default gateway for the IPSec interfaces (Ethernet 1:0, 3:0, 5:0 and 7:0)

CV: Use the TCP/IP Routing: Ethernet Dialog Box to set the IP address, subnet mask, broad- cast address and IP routing protocol for Ethernet 0:0, 2:0, 4:0 and 6:0. OSPF can only be configured using text-based configuration.

Image 28
Contents IntraPort Enterprise-8 VPN Access Server Installation Guide Page Network Installation CompatiView Software InstallationCommand Line Management Introduction to the IntraPort Enterprise-8Basic Configuration Guide Shipping DefaultsLED Patterns and Test Switch Settings Appendix a Connector and Cable Pin OutsAppendix F Terms and Conditions IiiLocation of Voltage Switch on the Power Supply IntraPort Enterprise-8 Installation Overview Introduction to the IntraPort Enterprise-8IntraPort Enterprise-8 Manual Overview Warranty and Service Getting StartedFew Notes Please Read the ManualsWhat You Will Need to Get Started Additional Items Needed for InstallationSupplied with the IntraPort Enterprise-8 Safety Guidelines Placement ConsiderationsMounting Instructions Changing the Power Supply Voltage Settings Parts and ToolsInstalling Mounting Ears and Handles Installing Mounting Ears for a Telco RackRack-Mount Brackets Rack-Mount BracketsRight Bracket Installation Fastening the Right Bracket to the RackLeft Bracket Installation Fastening the Left Bracket to the RackSecuring the Shelf Lowering the ShelfMoving the Unit into the Rack Moving the Unit into a Standard Equipment RackPlacing the Unit in an Equipment Rack Placing the Unit in a Standard Equipment RackSecuring the Unit to the Rack Securing the Unit to the RackNetwork Installation Physical Connection RequirementsConnecting the Server to the Ethernet Detail of Riop CardsPowering Up the Server Connecting a Management ConsolePower Alarm Information CompatiView Software Installation Installation and OperationCompatiView for Windows System RequirementsTransport Protocols and CompatiView Command Line Management Out-of-Band Command Line ManagementSetting Up Telnet Operation Basic Configuration Guide Ethernet Interface ConfigurationIP Settings for Setups in Parallel with a Firewall IP ProtocolIP Settings for Setups Behind a Firewall IPX Protocol Configuring the Server for LAN-to-LAN TunnelsAppleTalk Protocol Configuring the Server for IP and IPX Client Tunnels Required for Client Tunnel ConfigurationsSuggested for Client Tunnel Configurations VPN User DatabaseSetting the IntraPort Enterprise-8 for a Radius Server Setting up Radius AuthenticationRadius Server User Authentication Settings Setting the IntraPort Enterprise-8 for an ACE/Server Setting up SecurID AuthenticationACE/Server Settings Saving a Configuration File to Flash ROM Default Password Shipping DefaultsEthernet Interfaces IntraPort Enterprise-8 LED Patterns IntraPort Enterprise-8 Switch Settings Appendix a Connector and Cable Pin Outs Pin Outs for DB-25 Male to DB-25 Female Console CableAppendix B Downloading Software From Compatible Systems Appendix C Security Dynamics ACE/Server Information Appendix D Adding or Replacing Riop Cards Removing and Replacing an Riop Card or Cover PlateAppendix E When the Over Temp Light Comes On Replacing or Cleaning the Intraport Enterprise-8 Air FilterAppendix F Terms and Conditions Appendix F Terms and Conditions