Global Technology GB-750 Manuel utilisateur

GB-750
Firewall
APPLIANCE
Product
Guide
powered by
GNAT Box
System Software

Table of Contents iii
Copyright
© 1996-2003, Global Technology Associates, Incorporated (GTA). All rights reserved.
Except as permitted under copyright law, no part of this manual may be reproduced or distrib-
uted in any form or by any means without the prior permission of Global Technology Associates,
Incorporated.
GB-750 Product Guide 2/11/04 (rev.) July 2003
Technical Support
GTA includes 30 days installation support from the day you receive the initial shipment. GTA’s
direct customers in the USA should call or email GTA using the telephone and email address
below. International customers should contact a local GTA authorized channel partner.
Disclaimer
Neither GTA, nor its distributors and dealers, make any warranties or representations, either
expressed or implied, as to the software and documentation, including without limitation, the
condition of software and implied warranties of its merchantability or fitness for a particular
purpose. GTA shall not be liable for any lost profits or for any direct, indirect, incidental, conse-
quential or other damages suffered by licensee or others resulting from the use of the program
or arising out of any breach of warranty. GTA further reserves the right to make changes to the
specifications of the program and contents of the manual without obligation to notify any person
or organization of such changes.
Mention of third-party products is for informational purposes only and constitutes neither an
endorsement nor a recommendation for their use. GTA assumes no responsibility with regard to
the performance or use of these products.
Every effort has been made to ensure that the information in this manual is accurate. GTA is not
responsible for printing or clerical errors.
Trademarks
GNAT Box is a registered trademark of Global Technology Associates, Incorporated. RoBoX and
Surf Sentinel are trademarks of Global Technology Associates, Incorporated.
GTA acknowledges all trademarks appearing in this document. This product includes software
developed by the University of California, Berkeley and its contributors. Netscape Navigator
is a trademark of Netscape Communications Corporation. Internet Explorer is a trademark of
Microsoft Corporation. WELF and WebTrends are trademarks of NetIQ. All other products are
trademarks of their respective companies.
Global Technology Associates, Inc.
3505 Lake Lynda Drive, Suite 109 • Orlando, FL 32817 USA
Tel: +1.407.380.0220 • Fax: +1.407.380.6080 • Web: http://www.gta.com • Email: [email protected]
Lead Development Team: Larry Baird, Richard Briley, Jim Silas, Brad Plank.
Technical Consulting: David Brooks. Documentation: Mary Swanson.

Table of Contents iii
Contents
1 INTRODUCTION 1
GNAT Box Basics ………………………………………………………………………… 1
Requirements …………………………………………………………………………… 1
Registration ………………………………………………………………………………… 2
Activation Codes ………………………………………………………………………… 2
Support ……………………………………………………………………………………… 2
Support Options ……………………………………………………………………… 3
Upgrades ………………………………………………………………………………… 3
About This Guide ………………………………………………………………………… 3
Additional Documentation ……………………………………………………………… 4
About GB-750 ……………………………………………………………………………… 5
Features …………………………………………………………………………………… 5
Optional Features ……………………………………………………………………… 5
Additional Software Products ………………………………………………………… 6
Software Specifications ………………………………………………………………… 6
Hardware Design ………………………………………………………………………… 6
Status Displays ………………………………………………………………………… 7
Hardware Specifications ……………………………………………………………… 8
Mounting………………………………………………………………………………… 9
2 INSTALLATION 11
Preinstallation ……………………………………………………………………………… 11
Install Utilities and Documentation……………………………………………………… 11
Temporarily Configure Workstation …………………………………………………… 11
LAN Using the Default IP Network…………………………………………………… 12
Connect the GB-750 ……………………………………………………………………… 12
3 SET UP DEFAULT CONFIGURATION 13
Basic Configuration using Web Interface ………………………………………… 13
Network Information ……………………………………………………………………… 15
Re-configure Workstation ……………………………………………………………… 16
Access the GB-750 ……………………………………………………………………… 16
Basic Configuration using GBAdmin ……………………………………………… 16
Network Information ……………………………………………………………………… 17
Re-configure Workstation ……………………………………………………………… 18
Access the GB-750 ……………………………………………………………………… 18
4 TROUBLESHOOTING 19
Guidelines …………………………………………………………………………………… 19
Troubleshooting Q & A ………………………………………………………………… 20
INDEX 23

GB-750 Firewall Appliance Product Guideiv 1 – Introduction 1

GB-750 Firewall Appliance Product Guideiv 1 – Introduction 1
1 Introduction
GNAT Box Basics
Global Technology Associates, Inc., has been designing and building Internet
rewalls since 1994. In 1996, GTA developed the rst truly affordable
commercial-grade rewall, the GNAT Box®. Since then, ICSA-certied
GNAT Box System Software has become the engine that drives all GTA
rewall systems.
Powered by GNAT Box System Software, GTA's rewall systems currently
include the small-to-medium enterprise (SME) rewalls, GB-1500 and GB-
1200; the RoBoX line, for remote ofce/branch ofce applications, including
GB-750, GB-500, and GB-200; and GTA’s powerful software-based products.
Requirements
To connect the GB-750 Firewall Appliance, you will need:
• A power cord.
• Two Ethernet cables, one for each required network.
• A crossover cable to connect to a host or router, or a straight-through
cable to connect to a hub or switch.
A power cord, a yellow crossover cable and a grey straight-through cable,
as well as a null modem cable for the Console interface, are included with
rewall appliances.
In addition, to use GNAT Box System Software, you will need:
• An understanding of TCP/IP networking.
• Network IP addresses for all network interfaces used.
• Netmasks for each attached network.
• Default route for External Network.
• Which services to allow inbound (if any).
• Which services to restrict outbound (if any).

GB-750 Firewall Appliance Product Guide2
1 – Introduction 3
Registration
To register, go to www.gta.com, click on Support and then the GTA Support
Center link. If you already have an account, enter your user ID and password
in the login screen; if not, click New Account, enter the prole information.
Once you have completed the form, click Add to save the prole.
Return to the login screen and enter your user ID and password. Click on the
Support Center link, then click on Product Registration in the Account Home
screen for your support information. Enter your serial number and activation
(unlock) code, then click Submit. Your new product will now appear in the
View Registered Products screen, accessible from the Account Home page.
In addition to qualifying you for installation support, your product registration
will allow GTA to inform you about upgrades and special offers.
Note
If you cannot retrieve your registration code, or a code does not appear
under Registered Products, please email support with a brief description
of your problem in the body of the email. Include the product serial
number and your Support Center User ID in the message subject.
Activation Codes
All commercial GTA Firewalls use activation codes to protect software. For
rewall appliances, the required code is pre-installed. Additional features
require separate feature activation codes. Serial numbers and activation codes
are printed on packaging and are also available under View Registered Products
on the GTA Support site, www.gta.com. GNAT Box System Software can be
copied for backup purposes.
Support
Installation ("up and running") support is available to registered users. If you
have registered your product and need installation assistance during the rst
30 days, contact the GTA Support team by email at [email protected]. Include
your product name, serial number, registration number, feature activation code
numbers for your optional products, and a System or Hardware Conguration
Report, if possible.
Installation support covers only the aspects of conguration related to instal-
lation and default setup of the rewall. For further assistance, contact GTA
Sales staff for information about support offerings.

GB-750 Firewall Appliance Product Guide2
1 – Introduction 3
Support Options
If you need support after installation and conguration to defaults, a variety of
support contracts are available. Contact GTA Sales staff for more information.
Contracts range from support by the incident to full coverage for a year.
Other avenues for assistance are available through the GNAT Box Mailing
List, on the GTA website, found at www.gta.com, or through an authorized
GTA Channel Partner.
Upgrades
Once registered, you can view available upgrades in the GTA Support Center.
If the Action eld in the Registered Products section indicates that there is an
upgrade for your product, click on the Free Upgrade link. When you return
to the Registered Product List, click the product’s serial number and see the
Product Details section to obtain the new activation code. The section will
also display previous activation codes. Upgrades are also available in Support
Center Downloads. Only downloads for your version will be shown.
Caution
Back up your conguration before upgrading!
About This Guide
This Product Guide shows how to set up and install the GB-750 and change
the factory settings to your network’s default conguration. The GNAT BOX
SYSTEM SOFTWARE USER'S GUIDE includes conguration functions, descrip-
tions of GBAdmin and the Web interface, administrative tools and GNAT
Box-specic terms.
A few conventions are used in this guide to help you recognize specic
elements of the text. If you are viewing this in a PDF, color variations are also
used to emphasize notes, warnings and new sections.
Documentation Conventions
SMALL CAPS FIELD NAMES IN BODY TEXT.
BOLD SMALL CAPS NAMES OF PUBLICATIONS.
Bold Italics Emphasis.
Courier Screen text.
Condensed Bold Menus, menu items, buttons.

GB-750 Firewall Appliance Product Guide4
1 – Introduction 5
Additional Documentation
For instructions on installation, registration and setup of a GTA Firewall in
default conguration, see your GTA Firewall’s product guide; for optional
features, see the appropriate Feature Guide. User’s Guides, Product Guides
and Feature Guides are delivered with new GTA products; these manuals and
other documentation for registered products can also be found on the GTA
website, www.gta.com.
Documents on the website are either in plain text (*.txt) or Portable Document
Format (PDF) which requires Adobe Acrobat Reader version 5.0. A free copy
of the reader can be obtained at www.adobe.com. Documents received from
GTA Support may also be in email or Microsoft Word format (*.doc).
Documentation Map
Products and Options
GNAT Box System Software ............GNAT Box System Software User‘s Guide
GTA Firewall Installation .............................................................Product Guides
Firewall Management......................................GB-Commanader User’s Guide
Reporting...................................................... GTA Reporting Suite User’s Guide
Content Filtering ..........................Surf Sentinel Content Filtering Feature Guide
High Availability ...........................................H2A High Availability Feature Guide
Virtual Private Networking ................................. GNAT Box VPN Feature Guide
VPN Examples ............................................ GNAT Box VPN to VPN Tech Docs
Utilities & Information
Logging Utilities .......... GNAT Box System Software User’s Guide & Addendum
Database Maintenance.............GB-Commander, GTA Reporting Suite Guides
Troubleshooting .................................................... Product and Feature Guides
Ports & Services............................................................................. Product CDs
Drivers & NICs (GNAT Box Pro, Flash) ........................................ www.gta.com
Frequently Asked Questions .......................................... FAQs on www.gta.com
Web Interface, GBAdmin..................GNAT Box System Software User’s Guide
Console interface ..............................................Console Interface User’s Guide

GB-750 Firewall Appliance Product Guide4
1 – Introduction 5
About GB-750
The GB-750 Firewall Appliance is a self-contained unit with the system
software pre-installed. This guide describes and explains how to install and
initially congure the GB-750. For conguration options and eld descrip-
tions see the GNAT BOX SYSTEM SOFTWARE USER’S GUIDE.
Features
• 20,000 concurrent sessions
• Two versions available: 50 concurrent outbound users, or
Unrestricted concurrent outbound users
• DNS, DHCP Servers
• Three 10/100 Ethernet ports
• ICSA-certied GNAT Box System Software
• IPSec VPN with 1 mobile user license
• Hardware VPN Acceleration
• Local Content List (LCL) ltering
• PPP/PPPoE/PPTP
• Secure Email Proxy (SMTP)
• Secure remote management
• Stateful Packet Inspection
• Time-based lters
• Transparent NAT (Network Address Translation)
• Two DB-9 serial interfaces
• USB interface
• User authentication
Optional Features
• H2A High Availability
• Surf Sentinel
• Support Contracts
• Additional VPN mobile user licenses
Additional Software Products
• GTA Reporting Suite
• GB-Commander

GB-750 Firewall Appliance Product Guide6
1 – Introduction 7
Software Specifications
• Address Objects 150
• Concurrent Connections 20,000
• Maximum Concurrent Mobile VPNs 45
• DNS Domains 5
• DNS Hosts 255
• DNS Networks 80
• IP Aliases 50
• IP Pass Through Filters 100
• PPPs 5
• Outbound Filters 200
• Protocols 255
• Remote Access Filters 200
• Security Associations 90
• Static Maps 100
• Static Routes 100
• Time Groups 100
• Tunnels 100
• URL Access Lists 100
• Local Content Lists 75
• User Authentication 300
• VPN Objects 25
Hardware Design
The GB-750 Firewall Appliance is a 1RU appliance with one cooling fan.
The system has three high speed 10/100 Ethernet interfaces to ensure high
performance and network design exibility and two multifunction DB-9 serial
interfaces to provide access for a serial console and a dial-up modem/ISDN
TA. Flash memory stores and runs the pre-installed system software.
Caution
At least six (6) inches of clearance should be provided at the rear of
the system to allow efcient cooling. Blocking fans or inadequate
clearance for the exhaust vents can cause the system to overheat.
Table des matières
Autres manuels Global Technology Pare-feu


















