Allied Telesis AlliedWare NetScreen Routers manuel d'utilisation

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31

Aller à la page of

Un bon manuel d’utilisation

Les règles imposent au revendeur l'obligation de fournir à l'acheteur, avec des marchandises, le manuel d’utilisation Allied Telesis AlliedWare NetScreen Routers. Le manque du manuel d’utilisation ou les informations incorrectes fournies au consommateur sont à la base d'une plainte pour non-conformité du dispositif avec le contrat. Conformément à la loi, l’inclusion du manuel d’utilisation sous une forme autre que le papier est autorisée, ce qui est souvent utilisé récemment, en incluant la forme graphique ou électronique du manuel Allied Telesis AlliedWare NetScreen Routers ou les vidéos d'instruction pour les utilisateurs. La condition est son caractère lisible et compréhensible.

Qu'est ce que le manuel d’utilisation?

Le mot vient du latin "Instructio", à savoir organiser. Ainsi, le manuel d’utilisation Allied Telesis AlliedWare NetScreen Routers décrit les étapes de la procédure. Le but du manuel d’utilisation est d’instruire, de faciliter le démarrage, l'utilisation de l'équipement ou l'exécution des actions spécifiques. Le manuel d’utilisation est une collection d'informations sur l'objet/service, une indice.

Malheureusement, peu d'utilisateurs prennent le temps de lire le manuel d’utilisation, et un bon manuel permet non seulement d’apprendre à connaître un certain nombre de fonctionnalités supplémentaires du dispositif acheté, mais aussi éviter la majorité des défaillances.

Donc, ce qui devrait contenir le manuel parfait?

Tout d'abord, le manuel d’utilisation Allied Telesis AlliedWare NetScreen Routers devrait contenir:
- informations sur les caractéristiques techniques du dispositif Allied Telesis AlliedWare NetScreen Routers
- nom du fabricant et année de fabrication Allied Telesis AlliedWare NetScreen Routers
- instructions d'utilisation, de réglage et d’entretien de l'équipement Allied Telesis AlliedWare NetScreen Routers
- signes de sécurité et attestations confirmant la conformité avec les normes pertinentes

Pourquoi nous ne lisons pas les manuels d’utilisation?

Habituellement, cela est dû au manque de temps et de certitude quant à la fonctionnalité spécifique de l'équipement acheté. Malheureusement, la connexion et le démarrage Allied Telesis AlliedWare NetScreen Routers ne suffisent pas. Le manuel d’utilisation contient un certain nombre de lignes directrices concernant les fonctionnalités spécifiques, la sécurité, les méthodes d'entretien (même les moyens qui doivent être utilisés), les défauts possibles Allied Telesis AlliedWare NetScreen Routers et les moyens de résoudre des problèmes communs lors de l'utilisation. Enfin, le manuel contient les coordonnées du service Allied Telesis en l'absence de l'efficacité des solutions proposées. Actuellement, les manuels d’utilisation sous la forme d'animations intéressantes et de vidéos pédagogiques qui sont meilleurs que la brochure, sont très populaires. Ce type de manuel permet à l'utilisateur de voir toute la vidéo d'instruction sans sauter les spécifications et les descriptions techniques compliquées Allied Telesis AlliedWare NetScreen Routers, comme c’est le cas pour la version papier.

Pourquoi lire le manuel d’utilisation?

Tout d'abord, il contient la réponse sur la structure, les possibilités du dispositif Allied Telesis AlliedWare NetScreen Routers, l'utilisation de divers accessoires et une gamme d'informations pour profiter pleinement de toutes les fonctionnalités et commodités.

Après un achat réussi de l’équipement/dispositif, prenez un moment pour vous familiariser avec toutes les parties du manuel d'utilisation Allied Telesis AlliedWare NetScreen Routers. À l'heure actuelle, ils sont soigneusement préparés et traduits pour qu'ils soient non seulement compréhensibles pour les utilisateurs, mais pour qu’ils remplissent leur fonction de base de l'information et d’aide.

Table des matières du manuel d’utilisation

  • Page 1

    C613-16098-00 REV E www .alliedtelesis.co m AlliedW ar e TM OS How T o | T oda y’ s netw ork managers often need to incorporate other vendors’ eq uipment into their networks, as companies change and gr ow . T o supp or t this challenge, Allied T elesis routers ar e designed to inter -operate with a wide range of equipment. This How T o Note det[...]

  • Page 2

    Page 2 | AlliedW are™ OS Ho w T o Note: VPNs with S onicW ALL r outers What information will y ou find in this document? This How T o Note begins with the following information: z "Related How T o Notes" on page 2 z "Which pr oducts and softwar e version does it apply to?" on page 2 Then it describes the configuration, in the [...]

  • Page 3

    Page 3 | AlliedW are™ OS Ho w T o Note: VPNs with S onicW ALL r outers The netw ork This example illustrates a NA T -T solution, which you need when one or both of the r outers are behind a NA T de vice such as some xDSL and cable modems. In this example , an Allied Te l e s i s A R 4 1 5S r outer is behind a NA T device. The follo wing diagram s[...]

  • Page 4

    Page 4 | AlliedW are™ OS Ho w T o Note: VPNs with S onicW ALL r outers Ho w to configur e the Allied T elesis r outer Befor e you start 1. Install and configure the NA T de vice . 2. Access the r outer via its GUI. 3. Customise the router and set up vlan 1 as the LAN i nterface. Th e site-to-site VPN wizard alwa ys uses vlan 1 as the local LAN fo[...]

  • Page 5

    Page 5 | AlliedW are™ OS Ho w T o Note: VPNs with S onicW ALL r outers Create the VPN tunnel Log in as either the manager or the security officer . If you log in as the manager , the r outer changes to secure mode when y ou finish the VPN wizard and at that stage pr ompts you to log in again as the security officer . The Site-T o-Site VPN wizard [...]

  • Page 6

    Page 6 | AlliedW are™ OS Ho w T o Note: VPNs with S onicW ALL r outers Click on the Site-t o-Site VPN button. The wizard starts by displa ying a wel c o me me s s ag e . Click the Next button. Enter an appr opriate VPN connection name. Click the Next button. If you ha v e multiple possible W AN interfaces configured on the router , the wizard nex[...]

  • Page 7

    Page 7 | AlliedW are™ OS Ho w T o Note: VPNs with S onicW ALL r outers Enter the public IP addr ess of the other end of the tunnel. In this example, this is 200.200.200. 1 , which is the IP addr ess of the SonicW ALL W AN interface . Note that you can use the T ab k ey to mov e between fields when entering the addr ess, but should not use the . k[...]

  • Page 8

    Page 8 | AlliedW are™ OS Ho w T o Note: VPNs with S onicW ALL r outers Enter the secret k e y , which is an alphanumeric string between 2 and 64 characters long. Both r outers must u se the same secret k e y . On the SonicW ALL ro uter , this is the Site-to- Site Policy’ s presh ared k e y . Click the Next button. Check the sum mar y . If neces[...]

  • Page 9

    Page 9 | AlliedW are™ OS Ho w T o Note: VPNs with S onicW ALL r outers Pee r IDs enable the routers to identify each other when they exchange secret k ey information. By default, the P eer IDs are the r outer IP addresses. This does not work when one (or both) r outers are behind a separate NA T device, because the NA T device changes the IP addr[...]

  • Page 10

    Page 10 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Check the sum mar y . It now includes the P eer ID settings. If necessary , corr ect any settings y ou want to change. When all the settings are cor rect, click the Apply button. Security officer If you ar e logged in as the security officer , the GUI displa ys a completion m[...]

  • Page 11

    Page 11 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Manag er If you ar e logged in as manager , the GUI displa ys a message to warn you that you will need to close y our br owser and r e-login as a security officer (see below) once you ha v e finished the wizard. Click the Finish button to finish the Wizard and sa v e the VPN [...]

  • Page 12

    Page 12 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Ho w to configur e the SonicW ALL r outer T o configure the SonicW ALL r outer , perform the steps in the following sections: 1. "Access the Router" on page 12 2. "Customise the router and se t up the netw ork" on page 15 3. "Define the LAN subnet of [...]

  • Page 13

    Page 13 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Bro wse to 1 92. 1 68. 1 68. 1 68. If y ou are using a pop-u p block er , disable it for this addr ess. If yo u access the Internet thr ough a pro xy server , se t your br owser to b ypass the pro xy for this addr ess. The login dialog box opens. The defaults are username: ad[...]

  • Page 14

    Page 14 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers The first time yo u configur e your r outer , the GUI opens at the Configuration Wizard page. After initial configuration, when you br owse to the SonicW ALL it ma y open at the System > Status page instead of the C onfiguration Wizard page . Click on the Wizards button in[...]

  • Page 15

    Page 15 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Customise the r outer and set up the netw ork The follo wing steps use the Setup wizar d to begin configuring y our r outer . The first action in the Setup wizard is to enter a suitable passwor d for access to the GUI. Click the Next button. Select yo ur time zone , and set t[...]

  • Page 16

    Page 16 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers In this example, the SonicW ALL r outer has a permanent fix ed IP addr ess, so select the Static IP option. Then click the Next button. Enter the W AN interface’ s IP address and mask. For Gate wa y , enter the ISP’ s addre ss (see "The network" on page 3 ). For[...]

  • Page 17

    Page 17 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Enter the IP addr ess and mask of the SonicW ALL ’ s interface to the LAN. Then click the Next button. In this step , you can set up the DHCP ser ver on this r outer to ser vice the office LAN you intend to connect to . Check that the wizar d has chosen an appr opriate rang[...]

  • Page 18

    Page 18 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Check the summar y . If necessar y , use the Back button to return and corr ect any settings y ou want to change. When all the settings ar e corr ect, click the Apply button. The wizar d displa ys a message of congratulations. Click the Close button. 7. Check the settings[...]

  • Page 19

    Page 19 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers If you changed the r outer’ s LAN IP addr ess, yo u need to change the PC’ s address. If y ou turned on the r outer’ s DHCP ser ver , set th e PC to obtain its addr ess automatically . Otherwise, give the PC an address in the new subnet. Y ou ma y need to restart the So[...]

  • Page 20

    Page 20 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Define the LAN subnet of the peer Befor e you can configure the VPN, y ou need to create an ad dress “object”. The ad dress object defines the LAN subnet of the VPN peer router—in this example, the Allied T elesis r outer . There is no wizar d for creating the ad dress [...]

  • Page 21

    Page 21 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Select the “Custom Address Objects” vie w style , which displays lists of Addr ess Gr oups and Addr ess Objects. There will be no custom ad dress objects defi ned yet, so both the Ad dress Gr oups and Address Objects lists ar e empty . In Addr ess Objects (the bottom sect[...]

  • Page 22

    Page 22 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Check that the object is correct. If y ou need to change the object, click on the icon of a note and pencil at the right of the object’ s entr y . 4. Check the settings[...]

  • Page 23

    Page 23 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Cr eate the VPN The following steps use the VPN w izard to cr eate the SonicW ALL end of the VPN. Click on the Wizards button in the left-hand menu to open the Configuration Wizard page, then select the VPN wizard. Click the Next button. Select the Site-to-Site option. Click [...]

  • Page 24

    Page 24 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Name the policy . Enter the pre-shared k ey , which must be the same as the Allied T elesis rou t e r ’ s secr et k ey . Enter the remote peer addr ess, which is the SonicW ALL-facing side of the NA T device in this example (see "The network" on page 3 ). Click th[...]

  • Page 25

    Page 25 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Y ou do not need to modify the default security settings. Click the Next button. Check the summar y . If necessar y , use the Back button to return and corr ect any settings y ou want to change. When all the settings ar e corr ect, click the Apply button. 5. Specify security [...]

  • Page 26

    Page 26 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers The wizard dis pla ys a message of congratulations. Click the Close button. The GUI displa ys the VPN > Settings page.[...]

  • Page 27

    Page 27 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Set the VPN IKE IDs and use Main Mode Solutions with a NA T device in the tunnel path need to ha v e IKE IDs specified. For all solutions, we r ecommend using Main mode instead of the default Aggressiv e mode . This section describes how to set both of these. On the VPN > [...]

  • Page 28

    Page 28 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Click on the Proposals tab. Set Exchange to Main Mode. This is the pref erred mode because it is more secur e. W e also recommend that you change the lif etime for the IPsec (Phase2) Pr oposal to 3600 seconds, to match the Allied T elesis rou t e r . Click OK. Y ou ma y find [...]

  • Page 29

    Page 29 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Ho w to test the tunnel There ar e sev eral options for testing the tunnel. If these checks sho w that you r tunnel is not working, see the Ho w T o Note H o w To Tr o u b l e s h o o t A V i r t ual Private Network (VPN) . On the SonicW ALL r outer’ s VPN > Settings p a[...]

  • Page 30

    Page 30 | AlliedW are™ OS Ho w T o Note: VPNs with Sonic W ALL r outers Ho w to use the CLI instead of the GUI This section gives an example of the Allied T elesis CLI commands that y ou need to enter for the IP , fire wall, IPsec and ISAKMP aspects of this configuration. # IP configuration enable ip add ip int=vlan1 ip=192.168.1.1 add ip int=eth[...]

  • Page 31

    USA Headq u ar ters | 19800 Nor th Cr eek Parkwa y | S u ite 100 | Bothell | WA 98011 | USA | T: +1 800 424 4284 | F: +1 425 481 3895 E u r opea n Headq u ar ters | Via Motta 24 | 6830 Chiasso | Switzerla n d | T: +41 91 69769.00 | F: +41 91 69769.11 Asia-Paci f ic Headq u ar ters | 11 T ai Se ng Li n k | Si ng apor e | 534182 | T : +65 6383 3832 |[...]