Cisco Systems RVS4000RF manual

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195

Ir a la página of

Buen manual de instrucciones

Las leyes obligan al vendedor a entregarle al comprador, junto con el producto, el manual de instrucciones Cisco Systems RVS4000RF. La falta del manual o facilitar información incorrecta al consumidor constituyen una base de reclamación por no estar de acuerdo el producto con el contrato. Según la ley, está permitido adjuntar un manual de otra forma que no sea en papel, lo cual últimamente es bastante común y los fabricantes nos facilitan un manual gráfico, su versión electrónica Cisco Systems RVS4000RF o vídeos de instrucciones para usuarios. La condición es que tenga una forma legible y entendible.

¿Qué es un manual de instrucciones?

El nombre proviene de la palabra latina “instructio”, es decir, ordenar. Por lo tanto, en un manual Cisco Systems RVS4000RF se puede encontrar la descripción de las etapas de actuación. El propósito de un manual es enseñar, facilitar el encendido o el uso de un dispositivo o la realización de acciones concretas. Un manual de instrucciones también es una fuente de información acerca de un objeto o un servicio, es una pista.

Desafortunadamente pocos usuarios destinan su tiempo a leer manuales Cisco Systems RVS4000RF, sin embargo, un buen manual nos permite, no solo conocer una cantidad de funcionalidades adicionales del dispositivo comprado, sino también evitar la mayoría de fallos.

Entonces, ¿qué debe contener el manual de instrucciones perfecto?

Sobre todo, un manual de instrucciones Cisco Systems RVS4000RF debe contener:
- información acerca de las especificaciones técnicas del dispositivo Cisco Systems RVS4000RF
- nombre de fabricante y año de fabricación del dispositivo Cisco Systems RVS4000RF
- condiciones de uso, configuración y mantenimiento del dispositivo Cisco Systems RVS4000RF
- marcas de seguridad y certificados que confirmen su concordancia con determinadas normativas

¿Por qué no leemos los manuales de instrucciones?

Normalmente es por la falta de tiempo y seguridad acerca de las funcionalidades determinadas de los dispositivos comprados. Desafortunadamente la conexión y el encendido de Cisco Systems RVS4000RF no es suficiente. El manual de instrucciones siempre contiene una serie de indicaciones acerca de determinadas funcionalidades, normas de seguridad, consejos de mantenimiento (incluso qué productos usar), fallos eventuales de Cisco Systems RVS4000RF y maneras de solucionar los problemas que puedan ocurrir durante su uso. Al final, en un manual se pueden encontrar los detalles de servicio técnico Cisco Systems en caso de que las soluciones propuestas no hayan funcionado. Actualmente gozan de éxito manuales de instrucciones en forma de animaciones interesantes o vídeo manuales que llegan al usuario mucho mejor que en forma de un folleto. Este tipo de manual ayuda a que el usuario vea el vídeo entero sin saltarse las especificaciones y las descripciones técnicas complicadas de Cisco Systems RVS4000RF, como se suele hacer teniendo una versión en papel.

¿Por qué vale la pena leer los manuales de instrucciones?

Sobre todo es en ellos donde encontraremos las respuestas acerca de la construcción, las posibilidades del dispositivo Cisco Systems RVS4000RF, el uso de determinados accesorios y una serie de informaciones que permiten aprovechar completamente sus funciones y comodidades.

Tras una compra exitosa de un equipo o un dispositivo, vale la pena dedicar un momento para familiarizarse con cada parte del manual Cisco Systems RVS4000RF. Actualmente se preparan y traducen con dedicación, para que no solo sean comprensibles para los usuarios, sino que también cumplan su función básica de información y ayuda.

Índice de manuales de instrucciones

  • Página 1

    Cis c o Small Busine s s RVS4000 4-P or t Gigabit S ecurit y Rout er with VPN ADMINISTR A TION GUIDE[...]

  • Página 2

    © 2011 Cisco Syst ems, Inc. All rights reser ved. OL -22605- 02 Cisco and the Cisco Logo are trademarks of Cisco Systems, Inc. an d/or its affiliates in the U.S. and other countries. A listing of Cisco's trademarks can be found at www . ci sco .c om / g o / tr ad em a r k s . Third party trademar ks mentioned are the property of their respect[...]

  • Página 3

    Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 3 Con t e n ts Chapter 1: Introduction 8 Chapter 2: Networking and Security Basics 9 An Introduction to LANs 9 The Use of IP Addresses 10 The Intrusion Prevention System (IPS) 11 Chapter 3: Planning Your Vi rtual Private Network (VPN) 13 Why do I need a VPN? 13 1) MAC Address Spoofing 14[...]

  • Página 4

    Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 4 Con t e n ts Setup > DMZ 40 Setup > MAC Address Clone 41 Setup > Advanced Routing 42 Setup > Time 44 Setup > IP Mode 45 Firewall 46 Firewall > Basic Settings 46 Firewall > IP Based ACL 48 Firewall > Internet Access Policy 51 Firewall > Single Port Forwarding [...]

  • Página 5

    Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 5 Con t e n ts IPS 82 IPS > Configuration 82 IPS > P2P/IM 83 IPS > Report 84 IPS > Information 86 L2 Switch 86 L2 Switch > Create VLAN 86 L2 Switch > VLAN Port Setting 88 L2 Switch > VLAN Membership 89 L2 Switch > RADIUS 90 L2 Switch > Port Setting 91 L2 Switch[...]

  • Página 6

    Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 6 Con t e n ts Downloading and Installing from the Internet 137 Using the Cisco QuickVPN Software 137 Distributing Certificate s to QuickVPN Users 140 Appendix C: Configuring IPSec with a Windows 2000 or XP Computer 142 Introduction 142 Environment 143 Windows 2000 or Windows XP 143 RVS4[...]

  • Página 7

    Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 7 Con t e n ts Setup/Config 190 Management 191 Security Features 191 QoS 191 Network 192 VPN 192 Routing 192 Layer 2 192 Environmental 193 Appendix G: Where to Go From Here 194 Product Resources 194 Related Documentation 195[...]

  • Página 8

    1 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 8 In tr o duc tion Thank you f or choosing the Cis co RVS4000 4-P or t Gigabit Se curity Router with VP N. T he 4- Po r t Gi ga bi t S e c ur i t y Ro u ter wi t h V PN is an a dv an c e d I nte rn e t-s ha ri n g network s olution f or your small busines s needs . Like an y rout er , [...]

  • Página 9

    2 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 9 Net working and S e curit y B asic s This chapter describes net working and secu rit y basics . It includes these se ctions: • An Intr o duc tion to L ANs, page 9 • The Use of IP Addre ss es, p age 10 • The Intrusion Pre vention System (IPS), page 11 An Intr o duc tion to L ANs[...]

  • Página 10

    Net working and S ecurit y B asics The Use of IP Addr e ss e s Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 10 2 The Us e of IP Addre s s es IP stands f or Int ernet Pr otocol. E ver y device in an IP -base d network , including P Cs, print ser vers, and rout ers , requir es an IP address to identify its location, or addr es s, on [...]

  • Página 11

    Net working and S ecurit y B asics The In trusion Pr evention Sys tem (IPS) Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 11 2 NOTE Since the r outer is a device that connects t wo networks , it nee ds t wo IP addr ess es—one f or the LAN, and one f or the Internet. In this Administration Guide, you’ll see ref erences to the “[...]

  • Página 12

    Net working and S ecurit y B asics The In trusion Pr evention Sys tem (IPS) Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 12 2 IPS Sc enario s[...]

  • Página 13

    3 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 13 Planning Y our Vir tual Priva te Net work ( VPN) This chapter pr ovide s inf ormation for pl anning y our VPN. It include s the se secti ons: • Why do I nee d a VPN?, page 13 • What is a VPN?, page 15 Why do I ne e d a VPN? Computer networking provides a fle xibil it y not avail[...]

  • Página 14

    Planning Y our Vir tual Priva te Net work ( VPN) W hy do I n eed a V P N? Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 14 3 1 ) MA C Ad dr ess S poof in g Pack ets transmit t ed over a network , either your local network or the Internet, are pr ecede d by a pack et header . Thes e pack et headers contain both the source and destina[...]

  • Página 15

    Planning Y our Vir tual Priva te Net work ( VPN) Wh at is a VP N? Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 15 3 Wha t is a VPN? A VPN, or V irtual Private Network , is a co nnection bet ween t wo endpoints—a VPN r outer , f o r instanc e—in diff erent networks that allows privat e data to be sent securely over a shar ed or [...]

  • Página 16

    Planning Y our Vir tual Priva te Net work ( VPN) Wh at is a VP N? Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 16 3 VPN Router to VPN Router W ith a VPN-rout er-t o- VPN-rout er VPN, a telecommuter uses his VPN rout er f or his always-on Int ernet c onnection. His r outer is c onfigur ed with his office’ s VPN settings . When he [...]

  • Página 17

    Planning Y our Vir tual Priva te Net work ( VPN) Wh at is a VP N? Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 17 3 C omputer (using the Cisc o QuickVPN Client sof t ware) to VPN Router In this illustration, you se e an e xample of a comput er -to- VPN rout er VPN. In her hotel r o om, a traveling businesswoman c onnects to her ISP[...]

  • Página 18

    4 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 18 Get ting St ar te d with the R VS 4000 Router This chapter describe s the physical f eatures of the RVS4000 r out er and ex plains how t o install the rout er . It includes these s e ctions: • Fro nt Pa ne l, p a ge 1 8 • B ack Panel, page 19 • Placement Options, p age 20 • [...]

  • Página 19

    Get ting Star ted with the R VS 4000 Router Back P ane l Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 19 4 B ack Panel The Ethernet por ts , Int ernet por t , Reset but ton, and P ower por t are on the back panel of the rout er . Ba c k P a n e l IPS LED : Steady gr een when the Intrusion Pr evention S ystem (IPS) function is enabl[...]

  • Página 20

    Get ting Star ted with the R VS 4000 Router Placement Options Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 20 4 Plac ement Options Y ou can place the router horiz ontally on th e rubber f eet , mount it in the stand, or mount it on the wall. D esktop Option F or desktop placement , place the Cisc o RVS4000 r outer horizontally on a[...]

  • Página 21

    Get ting Star ted with the R VS 4000 Router Placement Options Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 21 4 T o place the r outer v er tically , f ollow these steps. STEP 1 L o cat e the left side panel of the rout er . STEP 2 W ith the t wo large pr ongs of one of the stands facing outward, inser t the short pr ongs int o the [...]

  • Página 22

    Get ting Star ted with the R VS 4000 Router Ins talling the Router Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 22 4 Installing the Router T o prepar e the rout er f or i nstallation c om plete thes e tasks : • Obtain the setup inf ormation f or your specific t ype of Internet connection fro m your Int ernet Ser vice Pr ovider (I[...]

  • Página 23

    Get ting Star ted with the R VS 4000 Router Configuring the R outer Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 23 4 STEP 4 Po wer on the cable or DS L modem. STEP 5 Connect the p ower adapt er to the r outer ’ s Power por t and plug the other end int o an electrical outl et . STEP 6 The Power and Internet LEDs on the fr ont pan[...]

  • Página 24

    Get ting Star ted with the R VS 4000 Router Configuring the R outer Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 24 4 STEP 4 Click OK . F or adde d securit y , you should lat er set a new password on the Administration > Man a g em e nt page of the configuration utility . STEP 5 The configuration utilit y appears with the Setup [...]

  • Página 25

    5 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 25 S et ting Up and C onfiguring the Router This chapter e xplains how to configure these rout er fun ctions: • Setup, p age 26 • Fir ew al l, p a ge 46 • VPN, page 58 • QoS , pa ge 67 • Admi nis tra tio n, pag e 72 • IPS, page 82 • L2 Switch, p age 86 • Stat us, page 9[...]

  • Página 26

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 26 5 Lo gin Window After you log in, the configuration utility star ts . The menus appear as links in the na vigation pane on the left side of the screen. After y ou select a menu, a list of windows appears . T o per f orm a spe cific functio[...]

  • Página 27

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 27 5 Setup > Summar y System Information Fir mw ar e v er si on Displays the r outer ’ s current firmw are v ersion. CPU Displays the r outer ’ s CPU typ e . System u p t ime Displa ys the length of time that has elapse d since the rou[...]

  • Página 28

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 28 5 Net work S et ting Status LA N I P The IP addres s of the r outer ’ s LAN inter face. WA N I P The IP addr e ss of the rout er ’ s W AN int er face. If this addr es s was assigne d by using DHCP , click DHCP Rele ase to release the a[...]

  • Página 29

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 29 5 Se tu p > W A N Internet Conne ction Typ e The r outer suppor ts six type s of connections . Each Se tup > W A N window and a vailable f eatures differ , depending on the sele ct ed conne ction typ e. Automatic Configuration - DHCP[...]

  • Página 30

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 30 5 Sta ti c I P If your connection use s a p ermanent IP addr es s to conne ct t o the Int ernet , then select Static IP . Static IP Internet IP Address The router ’ s IP addres s, when se en fr om the W AN, or the Int ernet . Y our IS P [...]

  • Página 31

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 31 5 PPPoE Some DS L -b ased IS Ps use PPP oE (Point -to-P oint Prot ocol over Ethernet) t o establish Internet connections . If you conne ct t o the Internet thr ough a D SL line, check with your ISP to see if they use PPPoE. If they do, ena[...]

  • Página 32

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 32 5 Ke e p A l iv e : R e d i al p e r io d If you select this option, the rout er perio dically checks your Int ernet c onnection. If you ar e disc o nnect ed, then the r out er aut omatically re- establishes your conne ction. T o use this [...]

  • Página 33

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 33 5 Conne ct on Dem and: Max Idle Time Y ou can configure the r outer to cut the Int ernet connection after it has been inactive f or a specified period of time (Max Idle T ime), and then automatically re-e stablish the conne ction as soon a[...]

  • Página 34

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 34 5 Conne ct on Dem and: Max Idle Time Y ou can configure the r outer to cut the Int ernet connection after it has been inactive f or a specified period of time (Max Idle T ime), and then automatically re-e stablish the conne ction as soon a[...]

  • Página 35

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 35 5 Gatewa y Y our IS P will provide you with the Default G atewa y Address . L2TP S er ver Enter the IP addr es s of the L2TP ser ver . Us er Name and Pas sword Enter the User Name and P as sword pro vided by your ISP . Conne ct on Dem and:[...]

  • Página 36

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 36 5 Optional S et tings (Required by s ome ISPs) Y our IS P may r equ ir e some of the se set tings. V erif y with your ISP bef ore making any changes. Optional S et tings Ho st Name Some IS Ps, usually cable IS Ps, require a host name as id[...]

  • Página 37

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 37 5 DDNS Ser vic e DDNS Ser vice is disabled by def ault . T o enable D DNS Ser vice, f ollow thes e instructions: Co nnec t The Co nnec t button is displa yed when DDNS is enabled. Y ou can click this button to contact the DDNS ser ver to m[...]

  • Página 38

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 38 5 Se tu p > L AN The Se t up > L A N window allows you t o change the r outer ’ s lo cal network settings. Setup > L AN[...]

  • Página 39

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 39 5 VL AN Select the VL AN f or the DHCP ser ver from the dr op- down menu. NOTE This option appears only if you hav e creat ed at least one VLAN from the L2 S witch > Create VL AN window . IP v4 The rout er ’ s Local IP Addr es s and S[...]

  • Página 40

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 40 5 Static IP Mapping Static IP Mapping is us ed to bind a specific IP addres s to a specific MAC address . This helps external (W AN) us ers to acces s LAN s er vers that are adv er tised through NAPT por t f or warding. Y ou can define up [...]

  • Página 41

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 41 5 Setup > DMZ DMZ Hosting This f eature allows one local P C to be expose d to the Int ernet f or use of a special-purp ose ser vic e such as Int ernet gaming and vide oconfe rencing. T o use this f eature, select En able . T o dis able[...]

  • Página 42

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 42 5 S etup > Advanc ed Routing Setup > Ad vance d Routing Operating Mode Operation Mode Sele ct the Operating mode f or this rout er : • Gatewa y The normal mode of operation. This allows all devic es on your LAN to share the same W [...]

  • Página 43

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 43 5 RIP S end Packet V ersion Choos e the TX pr otocol to use t o transmit data on the network : RIP v1 or RIP v2 . This sett ing should mat ch the version suppor ted by other r outers on y our LAN. RIP Re cv Pack et V ersion Choose the RX p[...]

  • Página 44

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 44 5 Click Sa ve t o save y our changes , or click Canc el to undo your changes . Se tu p > Ti m e Set up > Tim e Set the lo cal time Manually If you wish to ent er the time and dat e manually , select this option, then select the Dat e[...]

  • Página 45

    Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 45 5 Setup > IP Mo de Set up > I P Mod e IP v4 Only Sele ct this option to use IP v 4 on the Internet and local network . Dual-Stack IP Select this option to use IPv 4 on the Int ernet and IPv4 and IPv6 on the local net work . IP v6 hos[...]

  • Página 46

    Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 46 5 F irewall Use the Fir ewall menu to configure the r outer t o deny or allow specific int ernal users fr om acce ssing the Internet . Y ou can als o c onfigur e the rout er to den y or allow specific Internet users from acces sing th[...]

  • Página 47

    Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 47 5 HT TP S This option limits acces s t o the configuration utilit y fr om the W AN t o http s ses sions only . An http s ses sion use s SS L encr yption, which provides bet ter pr otection f or your re mote session than do es ht tp. T[...]

  • Página 48

    Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 48 5 F irewall > IP B ase d ACL The IP -B ased ACL window allows you to creat e an Ac ces s Control List (ACL ) with up t o 50 rules . Each ACL rule denies or allows acc e ss to the network base d on various criteria including priorit[...]

  • Página 49

    Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 49 5 T o add a new rule t o the ACL rule table, click Add New Rule and the Ed it IP ACL Rule window appears . F ollow the instructions in the section b elow t o cr eate a new ACL rule. T o disable all the rule s without deleting them, cl[...]

  • Página 50

    Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 50 5 Sourc e Interfac e Select the s ource interface, WA N , LA N , or ANY , from the drop- down menu. Sou rce IP T o app ly t he r ule to o ne s ourc e IP addre s s, se lec t Single from the dr op- down menu, then ente r the addr es s i[...]

  • Página 51

    Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 51 5 F irewall > In ternet Ac c es s Polic y Fir ewall > Internet Acc e s s Policy Y ou can manage acc es s t o your net work by configuring a policy . Use the set tings on this window t o establish an acce ss policy . Sele ct a po[...]

  • Página 52

    Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 52 5 • View all p olicie s : Click Summ ar y to d is pl ay t he I nterne t Policy Summary window , which lists all of the Internet acces s policie s and includes this inf ormation: No., Policy Name, Days, T ime, and a check box t o del[...]

  • Página 53

    Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 53 5 On the List of P Cs p opup, you can define PCs by MAC Addr es s or IP Address . Y ou can also ente r a range of IP Addr e s se s if yo u want this policy to aff e ct a gr oup of PC s. T o cr eate an Int ernet Acce ss p olicy: STEP 1[...]

  • Página 54

    Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 54 5 F irewall > Single Por t For warding F i r e wa ll > Si n g le P o rt F o rw a r d in g Applic a ti on Ent er the name of the application you wish t o configure. Ex ternal Por t The por t number use d by the ser ver or Interne[...]

  • Página 55

    Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 55 5 Enable d Click the Enable d checkbo oks t o enable port f or warding f or the r elevant application. Click Sa ve t o save y our changes , or click Canc el to undo your changes . F irewall > Por t Range For warding Fir ewall > [...]

  • Página 56

    Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 56 5 F irewall > Port Range Triggering Fir ewall > Por t Range Triggering Applic ation Name Enter the name of the application you wish t o configure. T riggere d Range F or each application, list the triggered por t number range. T[...]

  • Página 57

    Set ting Up and Configuring the Router Pro te ctLink Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 57 5 Protec tLink Protec tLink > Protec tLink Purc has e Prote ctLink > Protec tLink Purchas e The optional Cisco Prot e ctLink W eb ser vic e pr ovide s securit y f or your network . F or m or e information, see Appendix E, “C[...]

  • Página 58

    Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 58 5 VPN VPN > Summar y VPN > Summar y Tu n n e l s U s e d Displays the number of tunnels used. Tu n n e l ( s ) Av a i l ab l e Displays the number of available tunnels. Det ail but ton Click Deta il to displa y more tunnel inf ormation.[...]

  • Página 59

    Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 59 5 Con fi g Click Edit t o change the tunnel’ s set tings . Click Tr as h to delet e all of the tunnel’ s se t tings. Tu n n e l ( s ) E n a b l e d Displays the t otal number of currently enabled tunnels . T unnel(s) De fine d Displa ys t[...]

  • Página 60

    Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 60 5 VPN > IPS ec VPN Use the VPN > IP Se c VPN window t o creat e and configure a V ir tual Private Network ( VPN) tunnel. VPN > IPS e c VPN[...]

  • Página 61

    Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 61 5 Sele ct Tunnel Entr y T o cr eate a new tunnel, select new . T o configure an e xisting tunnel, sele ct it fr om the drop-down menu. Del ete Click this but ton t o delete all set tings f or the sele ct ed tunnel. Summar y Clicking this butt[...]

  • Página 62

    Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 62 5 domain name in the Domain Name field. Then select either IP A ddr es s or IP by DNS Res olved from the drop-down menu, and fill in the IP Addre s s field or Domain Na me field. Remote S ecurit y Group Type Select the remote LAN user(s) behi[...]

  • Página 63

    Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 63 5 • Encr yption The Encr yption method determines the length of the ke y used t o encr ypt / decr ypt ES P packets. Only 3DES is suppor ted. Not e that both sides must us e the s ame Encr yption method. • Authentication Authentication det[...]

  • Página 64

    Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 64 5 Aggr e s siv e Mode Sp ecifies the t ype of Phase 1 e xchange, Main mode or Aggr es sive mode. Check the box t o select Aggres sive Mode or leave the bo x unchecked (default) t o s elect Main mode. Aggres sive mode r e quires half of the ma[...]

  • Página 65

    Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 65 5 Re-enter to Confirm Retype the pas swor d to ensur e it has been enter e d corr ectly . Allow User to Change Pas sword This option det ermine s whether a us er can change his or her own pass word. VPN Client List T able No. Displays the use[...]

  • Página 66

    Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 66 5 VPN > VPN Pas sthrough VPN > VPN Pass through IPS ec Pas sThr ough Int ernet Pr ot ocol Se curity (IPS ec) is a suit e of pr ot ocols use d t o implement secure e xchange of pack ets at the IP layer . IPSec Passthrough is enabled by d[...]

  • Página 67

    Set ting Up and Configuring the Router QoS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 67 5 Qo S Y ou can us e QoS (Quality of S er vice) to perform Bandwidth Management , by either Rate Control or Priorit y . Y ou can also configure QoS T rust Mo de and the DSCP sett ing s. Q oS > B andwidth Management Q oS > B a ndwi dth M[...]

  • Página 68

    Set ting Up and Configuring the Router QoS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 68 5 Ba nd wi d th This section lets you spe cify the maximum b andwidth provided by the ISP on the W AN interface, for both the upstream and downstr eam directions . B andwidth Management Type Type The de sired type of b andwidth management , e[...]

  • Página 69

    Set ting Up and Configuring the Router QoS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 69 5 Priorit y QoS > Ban dwi dth Ma na ge men t - P rio ri t y Servi ce Select the s er vice from the dr op- down menu. If it does not c ontain the ser vice you nee d, click Se r vi ce M an a g em en t t o add the ser vice. Direc tion Sel ect[...]

  • Página 70

    Set ting Up and Configuring the Router QoS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 70 5 Qo S > Qo S Se tu p Use the QoS Set up window to configure QoS T rust Mo de f or each LAN por t . QoS > QoS Set up Por t ID The number of the L AN por t . Tr u s t M o d e Select either Por t , Co S , or DSCP . The default is Por t . [...]

  • Página 71

    Set ting Up and Configuring the Router QoS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 71 5 Q oS > DSCP S etup QoS > DS CP S etup DSCP The Dif f erentiat e d Ser vice s Code Point value in the incoming packet . Queue Sele ct the traffic f or warding queue, 1 to 4 , to which the DS CP priority is mapped. Queue 4 has the highe[...]

  • Página 72

    Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 72 5 Administra tion Use the Administration men u to configure the syst em administration set t ings and to o ls . Administration > Management Admin istra tion > Ma nagem ent Router Ac c es s Router Userlist S elect the desired[...]

  • Página 73

    Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 73 5 System Con t act Ent er contact information f or the system. System L oc a tion Enter the location of the system. Read C ommunit y Enter the SNMP c o mm unity name f or SNMP “Get” c ommands . Write Commun it y Ent er the S N[...]

  • Página 74

    Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 74 5 Admini stra tion > Log Administration > Log Log S et ting Lo g Level S elect the log level(s ) that the r outer should record. L o g levels and their meanings are: Lo g Levels Level Se ve ri t y Na me Descr ip t io n 7 L O[...]

  • Página 75

    Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 75 5 Outgoing Lo g Select Enable to cause all outgoing pack ets to be logged. Y ou can then click View Outgoing T able to displa y inf ormation on the outgoing pack ets including Source IP , Destination IP , and Ser vic e/P or t numb[...]

  • Página 76

    Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 76 5 Email Lo g Now Pr e ss this but ton t o cause the lo g t o be emailed imme diat ely . Sys log Enable Syslo g Check the b o x if you want t o us e this f eature. Syslog Ser ver Ent er the IP Address in this field when Enable Sysl[...]

  • Página 77

    Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 77 5 Ping T e st Parameters Ping T arget IP Ent er the IP addres s or URL that you want to ping. Ping Size Enter the size of the pack et you want t o use. Numb er of Pings Enter the number of time s you wi sh to ping the target devic[...]

  • Página 78

    Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 78 5 Administration > Backup & Re stor e Administration > Backup & Rest ore T o download a copy of the curr ent configuration and sto re the file on your PC, click Ba c k up to star t the download. Restore C onfigura ti[...]

  • Página 79

    Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 79 5 Administration > F ac tor y D efault Administration > F ac tor y De fault Restore F actor y D efaults Click this button t o reset all configuration set tings t o their fact or y default values. Any previously sa ved set ti[...]

  • Página 80

    Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 80 5 Adminis tra tion > R ebo ot Administration > Rebo ot Rebo ot Click this but t on t o reboot the rout er . This operation doe s not cause the r outer t o lo s e an y of its stor ed set tings. Administration > F irmware U[...]

  • Página 81

    Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 81 5 STEP 1 Check the hardwar e version of the rout er by ref erring to the label on the bot tom panel. The PID VID number include s the characters V01 ( V ersion 1 ) or V02 (V e r si o n 2 ). STEP 2 T o find the lat est firmware f o[...]

  • Página 82

    Set ting Up and Configuring the Router IPS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 82 5 IPS IPS > C onfigura tion IPS > Configuration IPS Function Sel ect Enable to enable or Disable t o dis able the IPS Function. Anomaly D etec tion HT TP W eb attack signature is mat ched. HT TP r equ est dec oder deco des UTF-8 ( 1 , 2[...]

  • Página 83

    Set ting Up and Configuring the Router IPS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 83 5 IPS > P2P /IM Peer T o Peer Pe er to Peer Peer -t o-peer file sharing applications can be blo ck ed ( Block ) or allowed ( Non- Blo ck ). The preconfigured file sharing networks ar e GNUTELLA (EZPEER) , F ASTTR ACK , KURO, EDONKE Y2000 ,[...]

  • Página 84

    Set ting Up and Configuring the Router IPS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 84 5 IPS > Rep or t Provides a graphical r epresentation of the level of net work traffic and at tacks during the last twent y f our hours . At t a c ker Displays the IP Address of at tackers and the fr e quency (number of times ) of the atta[...]

  • Página 85

    Set ting Up and Configuring the Router IPS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 85 5 IPS > Repor t[...]

  • Página 86

    Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 86 5 IPS > Informa tion IPS > Information Signature V ers ion Displays the version of the signatur e patterns in the r outer that pr otects against malicious threats. Las t Ti me U ploa d This displays when the signatur e pat t ern[...]

  • Página 87

    Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 87 5 VLANs function at layer 2. Since VLANs is olate tra f fic within the VLAN, a Layer 3 r outer is needed to allow traffic flow bet ween VL ANs. Lay er 3 rout ers identif y segments and c oordinat e with VL ANs . VLANs are broadcast an[...]

  • Página 88

    Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 88 5 L2 Switch > VL AN Por t S et ting L2 Switch > VL AN Por t S et ting Por t ID Displa ys the por t number from 1 to 4 . Mode Sele ct the mode of the po r t , either Tr u n k , Untagged , or T agge d . The default is Untagged . I[...]

  • Página 89

    Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 89 5 L2 Switch > VL AN Membership L2 Switch > VL AN Memb ership VL AN ID Sele ct the VL AN whos e membership you want t o c onfigur e. Descr ipt ion Enter a VLAN group name of up t o 50 characters. Fu nction/Por t table The top hal[...]

  • Página 90

    Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 90 5 L2 Switch > R ADIUS L2 Switch > R ADIUS Mode Select Enable d or Dis abled from the dr op-down menu to enable or disable RA D I U S. RA D I US I P Enter the Ser ver IP addr e ss . R ADIUS UDP Port Enter the UDP port . The UDP p[...]

  • Página 91

    Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 91 5 L2 Switch > Por t S et ting L2 Switch > Por t S et ting Por t Displa ys the physical por t number . Link Displays the por t duplex mode and spe ed. Ful l D up l ex indicat e s that the interface supp orts transmis sion bet wee[...]

  • Página 92

    Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 92 5 L2 Switch > St a tistic s L2 Switch > St a tistic s Statistics O ver view Tx By te s Displa ys the number of By tes transmit ted fr om the sele ct ed por t . Tx Frames Display s the number of Frame s transmit ted fr om the sel[...]

  • Página 93

    Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 93 5 L2 Switch > Por t Mirroring L2 Switch > Por t Mirroring Mirror So urce Use this t o enable or disable sour ce por t mirroring f or each por t on the r outer . T o enable source por t mirr oring on a por t , check the box ne xt[...]

  • Página 94

    Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 94 5 L2 Switch > R STP L2 Switch > R STP The RS TP (Rapid Spanning T ree Pr otocol) prot oc ol pr events loops in the network and dynamically reconfigures which physical links in a swit ch should f o r ward frames . System Pri orit[...]

  • Página 95

    Set ting Up and Configuring the Router Sta tus Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 95 5 Path Co st The RSTP path cost f or the designated por ts . Ent er a number from 1 to 200000000 , or typ e the wor d auto (autogenerated path cost) . The default is aut o. The default is auto . Status Status > Gatewa y Status > Ga [...]

  • Página 96

    Set ting Up and Configuring the Router Sta tus Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 96 5 DNS 1 -2 Displa ys the DNS (Domain Name Syst em) IP addr es ses currently used by this Gat e way . IP Conntrack Click th is but ton t o di splay the IP Conn t rack window . IP C onntrack The IP Conn track (Connection T ra cking) window [...]

  • Página 97

    Set ting Up and Configuring the Router Sta tus Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 97 5 Status > Lo c al Net wo rk Status > Loc al Net work Current IP addres s S ystem This shows the curr ent system. MA C Addr es s The r outer MA C Addr e ss , as seen on your local, Ethernet net work . IP Addres s The Int ernet IP Ad[...]

  • Página 98

    6 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 98 Using the VPN S etup Wizard This chapter explains how t o use the VPN Setup W izard. It includes these se ctions: • VPN S etup Wizard, page 98 • Be f or e Y o u Be gi n, pa g e 98 • Running the VPN Setup Wizard, p age 99 VPN S etup Wizar d Now you can configure a gat eway-to-g[...]

  • Página 99

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 99 6 STEP 1 Click Fire wall > Basic S et tings . STEP 2 Enable Remot e Management and ent er 8080 in the P or t field. Please note that you cannot enter an y other value if you want to use the VPN Wizar d. Also, make sure t[...]

  • Página 100

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 100 6 Welcome Window[...]

  • Página 101

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 101 6 STEP 4 Read the inf ormation about the wizar d, and then click Next to pro c ee d . Informational Window[...]

  • Página 102

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 102 6 STEP 5 Choo s e one method to build the VPN conne ction: • If your PC is local to one of the two r outers, choos e Build VPN connec tion from Loc al L AN p ort of one router , click Next , and continue wi th these ins[...]

  • Página 103

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 103 6 STEP 6 Enter the r e quired data in the Configure VPN T unnel window and click Nex t to continue. Configure VPN Tunnel • Router 1 User Name : Ent er the user name of the Rout er 1 . • Router 1 Pas sword : Ent er the[...]

  • Página 104

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 104 6 The rout er configuration is checked. Check Router Configuration[...]

  • Página 105

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 105 6 STEP 7 When the Summar y window appears , use the Click button t o view the VPNC Summar y window . Summar y Window STEP 8 Re view the se t ti ng s, as need ed. Clic k Close when you are r eady to continue. VPNC Summar y[...]

  • Página 106

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 106 6 STEP 9 In the Summar y window , if all your entries appear corr ect , click Go . Other wis e click Ba c k t o go back and make an y c orrections. Configure the Router STEP 10 Click Te s t i n g to mak e sure the connect[...]

  • Página 107

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 107 6 T est the Conne ction STEP 11 When t esting is done, click Exit to e nd th e Wi za rd .[...]

  • Página 108

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 108 6 Exit the Wizard Congratulations! Se tup is now complete. Y ou may now log int o the W eb Ad mi ni st ra tor In ter fa c e a nd se e th e re su lt s . T e st Results[...]

  • Página 109

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 109 6 Building Y our VPN C onne ction Remotely This pr oc edure continues from Step 5 on page 102 . Us e this pr o cedure to build your VPN connection from a remot e P C. STEP 1 Ch oose Build VPN conne ction from Internet r e[...]

  • Página 110

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 110 6 Configure VPN Tunnel Window • Router 1 User Name : Ent er the user name of the Rout er 1 . • Router 1 Pas sword : Ent er the password of the Rout er 1 . • Router 2 User Name : Ent er the user name of the Rout er 2[...]

  • Página 111

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 111 6 STEP 3 The rout er configuration is checked. Check Router Configuration STEP 4 The Summar y window appears . Use the Click box to view the VPNC Summar y window .[...]

  • Página 112

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 112 6 Summar y Window STEP 5 The VPNC Summar y window appea rs showing the sett ings that were made to industr y standards. Click Clos e when y ou are r eady to continue. VPNC Summar y Window STEP 6 In the Summar y window , i[...]

  • Página 113

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 113 6 Configure the Router STEP 7 Click Te s t i n g to mak e sure the connect ion is suc ces sfully establishe d.[...]

  • Página 114

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 114 6 T est the Conne ction STEP 8 When t esting is done, click Exit to e nd th e Wi za rd .[...]

  • Página 115

    Using the VPN S etup Wiz a rd Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 115 6 Congratulations! Se tup is now complete. Y ou may now log int o the W eb Ad mi ni st ra tor In ter fa c e a nd se e th e re su lt s . View T e st Result s[...]

  • Página 116

    A Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 116 T rouble sho oting This appendix provides solutions to pr oblems that may occur during the installation and operation of the rout er . Re ad the descriptions below to help solve your pr oblems. If you can’t find an answer here, check the Cisco web sit e at www . ci sco . co m . [...]

  • Página 117

    T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 117 A STEP 8 Click OK in the In ternet Protocol ( TCP /IP) Proper t ies window , and click OK in the L ocal Area Connect ion Proper t ies window . STEP 9 Restar t the computer if ask e d. Windows XP STEP 1 Click Star t and Con tr ol Pa ne l . STEP 2 Click the Net wor k[...]

  • Página 118

    T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 118 A I want to test my Internet conne c tion. STEP 1 Check your T CP / IP s ettin gs. Windows 2000 a. Click Star t , Setti ngs , and Co nt r ol P an e l . Double-click Net work and Dial-Up Co nnec tions . b. Right -click the Lo cal Are a Conne ction that is as sociate[...]

  • Página 119

    T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 119 A STEP 3 At the command prompt, t ype ping 192. 168. 1 . 1 and press Enter . • If you get a r eply , the co mputer is communicating with the router . • If you do NO T get a reply , check the cable, and mak e sure Obtain an IP address automatically is sele cted [...]

  • Página 120

    T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 120 A STEP 5 Make sur e the cable c onnecting from your cable or DS L mo dem is conne ct e d to the r outer ’ s Internet por t . V erify that the Status page of the rout er ’ s c onfiguration utility shows a valid IP addres s fr om your ISP . STEP 6 T urn of f the [...]

  • Página 121

    T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 121 A assigne d a static IP addr e ss to any computer or network devic e on the network , you need to change its IP address ac c or dingly to 19 2. 168.2 . Y ( Y re pre s e n ts a ny number from 1 t o 254) . Not e that each IP addres s must be unique within the network[...]

  • Página 122

    T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 122 A STEP 4 Configure as man y entries as you like. STEP 5 When you ha ve completed the configuration, click Sa ve . I ne ed to s et up online game hostin g or use other Internet applic ations. If you want t o play online games or us e Internet applications, mo st wil[...]

  • Página 123

    T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 123 A I c an ’t get an Internet game, s er ver , or application to work. If you ha ve dif ficulties getting any Int ernet game, ser ver , or application t o function pr operly , c onsider e xpo sing one PC to th e Internet by using DeMilitarized Z one (DMZ) hosting. [...]

  • Página 124

    T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 124 A STEP 6 Click Sa ve . I am a PPPoE us er and I nee d to remo ve the proxy s et tings or the dial- up po p-up window . If you ha ve pro x y set tings, you need t o dis able these on your co mputer . Because the r outer is the gat eway f or the Int ernet connection,[...]

  • Página 125

    T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 125 A STEP 4 In the Search Results, click the Downlo ad Sof t ware link f or your r outer (usually the first link) . STEP 5 Click the Router Firm ware Res cue Utilit y link . STEP 6 Click the link f o r the lat e st r elease. STEP 7 Click the Dow nl oad N ow button. ST[...]

  • Página 126

    T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 126 A I c an ’t ac c es s my email, web, or VPN, or I am get ting c orrupte d data from the In ternet . Y ou may need to adjust the Maximum T ransmis sion Unit (MTU) sett ing . By def ault , the MTU is set at 1500. F or most DS L users , it is strongly r ec ommended [...]

  • Página 127

    T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 127 A STEP 6 Ent er the Star t and End P or ts of the F or w ar ded Range. Check with your Inte rnet application provider f or more inf ormatio n on which incoming por t ser vic es ar e r equired by the Internet application. STEP 7 Check the Enable d bo x f or the entr[...]

  • Página 128

    T rouble shooting F requently Asked Questions Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 128 A STEP 3 Click To o l s . C lick Internet Options . Click the Secu ri t y tab. Click the Def au l t le vel button. Mak e sure the security level is Medium or lower . Then click the OK button. I ha ve QuickVPN tunnel conne c ted to my R V[...]

  • Página 129

    T rouble shooting F requently Asked Questions Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 129 A What is Network Address Translat ion and what is it used for? Netw ork Address T ranslation (NA T ) tr anslat es multi ple IP addresse s on the private LAN to one public addr es s that is sent out to the Int ernet . This adds a level o[...]

  • Página 130

    T rouble shooting F requently Asked Questions Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 130 A far as hosting games , the HL ser ver does not ne ed to be in the DMZ. Just f or war d por t 27015 t o the local IP addres s of the ser ver comput er . How can I block corrupted FTP downloads? If you e xp erience corrupted files when y[...]

  • Página 131

    T rouble shooting F requently Asked Questions Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 131 A using the configuration utilit y (see Administration > F irmware Upgrade, pag e 80 ). If the rout er ’ s Internet connection is working well, there is no need to download a newer firmwar e version, unles s that version contains ne[...]

  • Página 132

    T rouble shooting F requently Asked Questions Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 132 A Does the router replace a modem? Is there a cable or DSL modem in the router? No, this v ersio n of the r out er must work in conjunction with a cable or DS L modem. Which modems are compatible with the router? The rout er is compatibl[...]

  • Página 133

    B Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 133 Using Cis c o QuickVPN for Windows 2000, XP , or Vist a O ver view This appendix explains how t o install and us e the Cisco QuickVPN s oftware that can be download ed fr om www . ci sc o . co m . QuickVPN works with computers running Windows 2000 , XP , V ista, or Windows 7 . (C [...]

  • Página 134

    Using Cisc o QuickVPN for Windows 2000, XP , or Vista Be fo r e Y ou Begi n Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 134 B STEP 4 Click Add/ S a ve . STEP 5 Check the Active box f o r VPN Client No. 1 . STEP 6 Click Sa ve . VPN Client Acc ounts Window[...]

  • Página 135

    Using Cisc o QuickVPN for Windows 2000, XP , or Vista Ins talling the Cis c o QuickVPN Soft war e Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 135 B Installing the Cis c o QuickVPN S of t ware Y ou can install the sof tware by using one of the f ollowing methods: • Installing from the CD-R OM, page 135 • Downlo ading and Insta[...]

  • Página 136

    Using Cisc o QuickVPN for Windows 2000, XP , or Vista Ins talling the Cis c o QuickVPN Soft war e Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 136 B C o pying Files Finished Inst alling Files STEP 3 Click Fi ni sh e d t o complet e the installation. Pr o ceed to “Using the Cisc o Q ui ck VP N So ft w ar e, ” on pa g e 13 7 .[...]

  • Página 137

    Using Cisc o QuickVPN for Windows 2000, XP , or Vista Using the Cisc o QuickVPN Soft war e Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 137 B D ownloading and Inst alling fr om the In ternet STEP 1 Go to firm ware downlo ad link in App endix G, “ Where to Go F rom Here.” STEP 2 Fr om the firmwar e downlo ad link , click Downlo[...]

  • Página 138

    Using Cisc o QuickVPN for Windows 2000, XP , or Vista Using the Cisc o QuickVPN Soft war e Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 138 B The QuickVPN L o gin window appears . STEP 2 Enter the f ollowing inf ormation: • Profile Name : Enter a name f or your pr ofile. • Us er Name and Pas sword: Enter the user name and pass[...]

  • Página 139

    Using Cisc o QuickVPN for Windows 2000, XP , or Vista Using the Cisc o QuickVPN Soft war e Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 139 B QuickVPN Status T o te rminate the VPN tunnel, click Dis conne ct . T o change your password, click Change Password . For inf ormation, click Help . STEP 6 If you click ed Change Pas sword a[...]

  • Página 140

    Using Cisc o QuickVPN for Windows 2000, XP , or Vista Distributing Cer tifica tes to QuickVPN Users Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 140 B Conne ct Vir tual Private C onnec tion NOTE Y ou can change your pas swor d only if you ha ve been granted that pr ivilege by your syst em administrator . Distributing C er tific at[...]

  • Página 141

    Using Cisc o QuickVPN for Windows 2000, XP , or Vista Distributing Cer tifica tes to QuickVPN Users Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 141 B STEP 3 Each QuickVPN user must then install the cer tificate as f ollows: a. Sav e the cer tificate int o the direct or y wher e the QuickVPN Client is installed. Fo r ex a m p l e [...]

  • Página 142

    C Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 142 C onfiguring IPS e c with a Windows 2000 or XP C omputer This appendix explains how t o c onfigur e IPSe c with a c omputer that is using Windows 200 0 or Windows XP . R ef er to these topics: • Introduction, p age 142 • Enviro nment, p age 143 • How to Establish a S ecure I[...]

  • Página 143

    Configuring IPS ec with a Windows 2000 or XP C omputer Env iro nm en t Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 143 C Envir o nmen t The IP addr es ses and other spe cifics mentioned in this appendix ar e f or illustration purpo ses only . Windows 2000 or Windows XP IP Address : 140 . 111 . 1 .2 <= User ISP provides IP Addr[...]

  • Página 144

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 144 C Establishing a S e cure IPS ec T unnel STEP 1 Creat e an IPSec p olicy . a. Click Star t , sele ct Run , and t ype secpo l. msc in the Open field. The Lo c a l Sec ur ity Se t t[...]

  • Página 145

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 145 C F ilter List 1 : win -> router a. In the new policy ’ s proper ties window , verify that the Rules tab is s elected. Uncheck the Us e Add Wizard bo x , an d clic k Add to c[...]

  • Página 146

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 146 C IP Filter L ist T ab c. The IP F i lter List window should appear . Enter an appr opriate name, such as win-> Rout er , f or the filter list, and unche ck the Use Add Wizard [...]

  • Página 147

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 147 C d. The F ilter s Proper ties window will appear . S elect the Addr e ssing tab. Filters Pr oper tie s In the Sou rce add ress field, select My IP Addre ss . In the Destination a[...]

  • Página 148

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 148 C F ilter List 2: router -> win g. The N e w Rule Proper ties window will appear . Select the IP F ilter List tab, and make sur e that win -> Router is highlighted. Then, cl[...]

  • Página 149

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 149 C i. The Filters Proper ties window will appear . S elect the Addr e ssing tab. In the Sou rce add ress field, s elect A sp ecific IP Subnet , and enter the IP Address 192. 168. 1[...]

  • Página 150

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 150 C The N e w Rule Proper t ies window appears with the IP Filter List tab selected. The window will contain listings f or Router ->win an d win->Router . New Rule Proper tie [...]

  • Página 151

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 151 C T unnel 1 : win->Router a. On the IP Fi lter List tab, sele ct filt er list win->Router . IP Filter L ist T ab b. Click the Fil te r A c ti o n tab, and click the filter a[...]

  • Página 152

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 152 C Filter Action T ab c. On the Secu ri t y Me th od s tab, v erif y that the Negotiate se curit y option is enabled, and unche ck the Acce pt unsec u red comm uni cat ion , bu t a[...]

  • Página 153

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 153 C Se curit y Metho ds T ab d. Select the Authentication Methods tab, and click Edit .[...]

  • Página 154

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 154 C Authentication Methods T ab e. Change the authentication met hod to Use this string to prote ct the key exchange (pr eshared key) , and ent er the pr e shared key string, such a[...]

  • Página 155

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 155 C f . This new Pr eshared k ey will be displa yed. Click the Apply bu t to n to c o nt i nu e , i f it appears on your scr een; other wise, proceed to the ne xt step. New Preshare[...]

  • Página 156

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 156 C h. S elect the Conn ectio n T ype tab, and click All net work c onnec tions . Then, click the OK or Clo se button t o finish this r ule. Conne ct ion Typ e T ab T unnel 2: Route[...]

  • Página 157

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 157 C Proper ties Window j. Go to the IP Filter List tab, and click the filter list Router ->win . IP Filter L ist T ab k. C li c k t he Fi l te r A c ti o n tab, and se le ct the [...]

  • Página 158

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 158 C always resp ond using IPS e c bo x . Se lect Sess ion k ey P erf ect F orwa rd Secr ecy , and click OK . Filter Action T ab l. Click the Authentication Methods tab, and verify t[...]

  • Página 159

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 159 C m. Change the authentication method to Use this string to protec t the k ey exchange (pr eshared key) , and ent er the pr e shared key string, such as XYZ 12345. ( This is a sam[...]

  • Página 160

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 160 C New Preshare d K ey o. Cli ck the T unnel S et ting tab. Click the radio button The tunnel endpoint is sp e cifie d by this IP Addre ss , and enter the W indows 2000/ XP co mput[...]

  • Página 161

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 161 C p. Click the Conne c tion Typ e tab, and sele ct All net work conne ctions . Then click OK or Clo se to fi ni sh . Conne ct ion Typ e T ab q. On the Rules tab, click the OK or C[...]

  • Página 162

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 162 C Rule s T ab STEP 4 As sign new IPSe c policy . In the IP Se curit y Policies on L ocal M achine window , right-click the policy named to_Router , and click Assi gn . A gr een ar[...]

  • Página 163

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 163 C STEP 5 Creat e a tunnel through the configuration utilit y . a. Open your web br owser , and enter 192. 168. 1 . 1 in the Addres s field. Pres s Enter . b. When the Us e r na m [...]

  • Página 164

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 164 C VPN > IPS e c VPN d. Sele ct the tunnel y ou wish t o cr eat e in the Sele ct T unnel Entr y drop-down box. Then click Enable . Enter the name of the tunnel in the T unnel Na[...]

  • Página 165

    Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 165 C e. Enter the IP Addr es s and Subnet Mask of the local VPN r o uter in the Lo c a l Gro u p S e t up fields. T o allow ac ces s t o the entir e IP subnet , ent er 0 fo r t h e l[...]

  • Página 166

    D Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 166 Ga tewa y-to- Ga tewa y VPN T unnel O ver view This appendix explains how t o c onfigur e an IPSec VPN tunnel b etween t wo VPN r outers by e xamp le. T wo computers ar e us ed to t e st the liv elines s of the tunnel. These s ections are included: • Be f or e Y o u Be gi n, pa [...]

  • Página 167

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the Remo te Gat eway Use s a Sta tic IP Address Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 167 D C onfigura tion when the Remote Gatewa y Us e s a Static IP Add res s This e xample assumes the Remote G a t eway is using a static IP address . If the Remot e Gatewa y us es a dyn[...]

  • Página 168

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the Remo te Gat eway Use s a Sta tic IP Address Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 168 D F or the Local Securit y Group T yp e , s elect Subnet . Ent e r the RVS4000’ s lo cal ne two rk s etti ng s i n t he IP Addres s and Subnet Mask fields . R VS 4000 IPSe c VPN Se[...]

  • Página 169

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the Remo te Gat eway Use s a Sta tic IP Address Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 169 D R VS 4000 IPSe c Setup S et tings k . If you need more detailed set tings , click Advanced Set ti ngs . Other wise, click Sa ve and pr o ceed to the next st ep to configur e the RV[...]

  • Página 170

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the Remo te Gat eway Use s a Sta tic IP Address Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 170 D R V082 VPN Set tings h. For the Remot e Se curity Gatewa y T yp e, select IP addre ss . Enter the RVS4000’ s W A N IP addres s in the IP Address field. i. F or the Remot e Securi[...]

  • Página 171

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the Remo te Gat eway Use s a Sta tic IP Address Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 171 D R V082 IPSe c S etup Set tings 1 . If you need more detailed set tings , click Adv a nce d Settings . Other wise, click Sa ve . STEP 3 Configuration of P C 1 and PC 2. V erify that[...]

  • Página 172

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the R emote Ga tewa y Us es a D ynamic IP Addr e ss Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 172 D C onfigura tion when the Remote Gatewa y Us e s a D ynamic IP Add res s This ex ample assum e s the Remot e Gatewa y is using a dynamic IP addres s. If the Remot e Gatewa y use[...]

  • Página 173

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the R emote Ga tewa y Us es a D ynamic IP Addr e ss Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 173 D F or the Local Securit y Group T yp e , s elect Subnet . Ent e r the RVS4000’ s lo cal ne two rk s etti ng s i n t he IP Addres s and Subnet Mask fields . R VS 4000 IPSe c VP[...]

  • Página 174

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the R emote Ga tewa y Us es a D ynamic IP Addr e ss Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 174 D R VS 4000 IPSe c Setup S et tings k . If you need more detailed set tings , click Advanced Set ti ngs . Other wise, click Sa ve and proceed to the next st ep, “Configuration [...]

  • Página 175

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the R emote Ga tewa y Us es a D ynamic IP Addr e ss Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 175 D R V082 VPN Set tings h. For the Remot e Se curity Gatewa y T yp e, select IP addre ss . Enter the RVS4000’ s W A N IP addres s in the IP Address field. i. F or the Remot e Se[...]

  • Página 176

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the R emote Ga tewa y Us es a D ynamic IP Addr e ss Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 176 D R V082 IPSe c S etup Set tings l. If you need more detailed set tings , click Adv a nce d Settings . Other wise, click Sa ve . STEP 3 Configuration of P C 1 and PC 2. V erify t[...]

  • Página 177

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation W hen Both Ga tewa ys Use D ynamic IP Addr ess es Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 177 D C onfigura tion When B oth Ga tewa ys Us e D yn amic IP Ad d r esses This ex ample assume s both Gate wa ys are using dynamic IP addr es ses . If only the Remot e Gatewa y us es a dyn[...]

  • Página 178

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation W hen Both Ga tewa ys Use D ynamic IP Addr ess es Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 178 D F or the Local Securit y Group T yp e , s elect Subnet . Ent e r the RVS4000’ s lo cal ne two rk s etti ng s i n t he IP Addres s and Subnet Mask fields . R VS 4000 IPSe c VPN Set t[...]

  • Página 179

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation W hen Both Ga tewa ys Use D ynamic IP Addr ess es Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 179 D R VS 4000 IPSe c Setup S et tings k . If you need more detailed set tings , click Advanced Set ti ngs . Other wise, click Sa ve and proceed to the next st ep, “Configuration of the [...]

  • Página 180

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation W hen Both Ga tewa ys Use D ynamic IP Addr ess es Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 180 D R V082 VPN Set tings h. For the Remot e Securit y Gat eway T ype, s elect IP by DNS Re solve d . Enter the RVS4000’ s domain name in the field provided. i. F or the Remot e Securit [...]

  • Página 181

    Gatewa y-to- Gatewa y VPN Tunnel Configur ation W hen Both Ga tewa ys Use D ynamic IP Addr ess es Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 181 D R V082 IPSe c S etup Set tings l. If you need more detailed set tings , click Adv a nce d Settings . Other wise, click Sa ve . STEP 3 Configuration of P C 1 and PC 2. V erify that P C[...]

  • Página 182

    E Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 182 Cis c o Prote c tLink W eb S er vic e O ver view The optional Cisco Pr ot ectLink W eb ser v ice provides securit y f or your network . It filt ers website addr e ss e s (URLs), and blocks potentially malicious websites. Prot e ctLink is available f or online purchase through onli[...]

  • Página 183

    Cisc o Protec tLink W eb S er vic e How to Pur chas e, R egister , or Acti va te the Ser vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 183 E Lo gin Window How to Purchase, Re gister , or A ctivate the Ser vic e Y ou can purchase, regist er , or activate the ser vic e using the ProtectLin k window . Protec tLink Click the Prote[...]

  • Página 184

    Cisc o Protec tLink W eb S er vic e How to Pur chas e, R egister , or Acti va te the Ser vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 184 E Prote c tLink (Inac tive) F ollow the instructions f or the appropriat e option: • L earm more about and request Free T rial f or Cis co Pr otectLink . • Regist er Pr otectLink ser vi[...]

  • Página 185

    Cisc o Protec tLink W eb S er vic e How to Use the S er vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 185 E After you activa te Pr ot ectLink , this window appears when you click Protec tLink > Prote ctLink Purchas e fr om the menu. Prote c tLink (Acti ve) How to Us e the S er vic e Configure the ser vice to pr otect your n[...]

  • Página 186

    Cisc o Protec tLink W eb S er vic e How to Use the S er vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 186 E Prote c tLink > Web Protection[...]

  • Página 187

    Cisc o Protec tLink W eb S er vic e How to Use the S er vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 187 E We b Protection Enable URL Filterin g T o filter website addr e sse s (URLs ), s elect this option. Enable Web Reputation T o block potentially malicious websites, s ele ct this option. URL F iltering Res et Co unter The[...]

  • Página 188

    Cisc o Protec tLink W eb S er vic e How to Use the S er vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 188 E Approved URLs Y ou can de signate up t o 20 trusted URLs that will always be acce s sible. Enable Approved URL list T o set up a list of alwa ys acces sible URLs, s elect this option. URL(s) to appr ove Ent er the truste[...]

  • Página 189

    Cisc o Protec tLink W eb S er vic e How to Use the S er vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 189 E Protec tLink > Lic ense The license f or the Cisc o Pr otectLink W eb ser vic eis valid f or one year fr om the time the activa ti on code is generat ed. On the Licens e window , lic e ns e inf ormation is display ed.[...]

  • Página 190

    F Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 190 Sp e cific a tions The Cisco RVS4000 4-P or t Gigabit Security Rout er with VPN specifications ar e des cribed in this app endix. Sp ecific a tions Per formanc e Set up / Co n f i g Model RVS4000 Standards IEEE802.3, 802.3u, 802. 1 X , RFC791 (IP Pr otocol) , RFC2460 , IP v 4 (RFC[...]

  • Página 191

    Spe cifications Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 191 F Management Secu ri t y F ea tu r es Qo S SNMP V ersion SNM P v er si on 1 , 2 c Event Logging L ocal, Syslo g, Email Aler ts Fir mw a re Up gr ad e Firm ware a vailable through web br owser Diagno stics Flash, R AM Access Con tr ol Acce ss Control List (ACL ) Capab[...]

  • Página 192

    Spe cifications Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 192 F Net work VPN Routing La ye r 2 DHCP DHCP Ser ver , DHCP Client , DHCP Relay Agent DNS DNS Rela y , D ynamic DNS (DynDNS, T Z O) NA T PAT , N A P T DMZ Soft ware configurable on an y LAN p ort c onfiguration, DHCPv6, ICMP v6 IP v 6 Dual Stack IP v4 and IPv6, 6to4, S[...]

  • Página 193

    Spe cifications Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 193 F Envir onmental Specifications are subject to change without notice. Por t Mirroring One of the five W AN/LAN por ts can be mir rored to a selected LAN por t RSTP Supports Ra pid Spanning T ree Protocol f or loop detection and fa ster reconfiguration Dimensions 6.69[...]

  • Página 194

    G Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 194 Wher e to Go F rom Her e Cisco provides a wide range of r esources to help you and y our cust omer obtain the full benefits of the Cisc o RV S4000 4-Port Gigabit Se curity Router with VPN. Produc t Re s ource s Suppor t Cisco Small Busine ss Suppor t Communit y w w w .cisco.c om/ [...]

  • Página 195

    Where to Go F rom Her e Rel ate d D o c um en tati o n Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 195 G Rela te d D o cumen tation F or hardwar e s etup f or the Cisc o RVS4000 r outer , se e the Cisco Small Busine ss Model RVS4000 4-P or t Gigabit Securit y Rout er with VPN Quick Star t Guide . F or compliance and saf et y inf [...]