Instruction/ maintenance manual of the product RVS4000 Cisco
Go to page of 195
Cis c o Small Busine s s RVS4000 4-P or t Gigabit S ecurit y Rout er with VPN ADMINISTR A TION GUIDE.
© 2011 Cisco Syst ems, Inc. All rights reser ved. OL -22605- 02 Cisco and the Cisco Logo are trademarks of Cisco Systems, Inc. an d/or its affiliates in the U.S. and other countries. A listing of Cisco's trademarks can be found at www . ci sco .
Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 3 Con t e n ts Chapter 1: Introduction 8 Chapter 2: Networking and Security Basics 9 An Introduction to LANs 9 The Use of IP Addresses 10 .
Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 4 Con t e n ts Setup > DMZ 40 Setup > MAC Address Clone 41 Setup > Advanced Routing 42 Setup > Time 44 Setup > IP Mode 45 F.
Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 5 Con t e n ts IPS 82 IPS > Configuration 82 IPS > P2P/IM 83 IPS > Report 84 IPS > Information 86 L2 Switch 86 L2 Switch > .
Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 6 Con t e n ts Downloading and Installing from the Internet 137 Using the Cisco QuickVPN Software 137 Distributing Certificate s to QuickV.
Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 7 Con t e n ts Setup/Config 190 Management 191 Security Features 191 QoS 191 Network 192 VPN 192 Routing 192 Layer 2 192 Environmental 193.
1 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 8 In tr o duc tion Thank you f or choosing the Cis co RVS4000 4-P or t Gigabit Se curity Router with VP N. T he 4- Po r t Gi ga bi t S e c ur i t y Ro u ter wi t h V PN is an a dv an c e d I nte rn e t-s ha ri n g network s olution f or your small busines s needs .
2 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 9 Net working and S e curit y B asic s This chapter describes net working and secu rit y basics .
Net working and S ecurit y B asics The Use of IP Addr e ss es Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 10 2 The Us e of IP Addre s s es IP stands f or Internet Pr otocol.
Net working and S ecurit y B asics The In trusion Pr evention Sys tem (IPS) Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 11 2 NOTE Since the router is a device that connects t wo networks , it needs t wo IP addr es ses—one f or the L AN, and one f or the Int ernet .
Net working and S ecurit y B asics The In trusion Pr evention Sys tem (IPS) Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 12 2 IPS Sc enario s.
3 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 13 Planning Y our Vir tual Priva te Net work ( VPN) This chapter pr ovide s inf ormation for pl anning y our VPN.
Planning Y our Vir tual Priva te Net work ( VPN) W hy do I need a V PN? Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 14 3 1 ) MA C Ad dr ess S poof in g Pack ets transmit t ed over a network , either your local network or the Internet, are pr ec eded by a packet header .
Planning Y our Vir tual Priva te Net work ( VPN) Wh at is a VP N? Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 15 3 Wha t is a VPN? A VPN, or V ir tual Privat e Network , is a connect.
Planning Y our Vir tual Priva te Net work ( VPN) Wh at is a VP N? Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 16 3 VPN Router to VPN Router W ith a VPN-rout er-t o- VPN-rout er VPN, a telecommuter uses his VPN rout er f or his always-on Int ernet c onnection.
Planning Y our Vir tual Priva te Net work ( VPN) Wh at is a VP N? Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 17 3 C omputer (using the Cisc o QuickVPN Client sof t ware) to VPN Router In this illustration, you se e an e xample of a comput er -to- VPN rout er VPN.
4 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 18 Get ting St ar te d with the R VS 4000 Router This chapter describe s the physical f eatures of the RVS4000 r out er and ex plains how t o install the rout er .
Get ting Star ted with the R VS 4000 Router Back P ane l Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 19 4 B ack Panel The Ethernet por ts , Int ernet por t , Reset but ton, and P ower por t are on the back panel of the rout er .
Get ting Star ted with the R VS 4000 Router Placement Options Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 20 4 Plac ement Options Y ou can place the router horiz ontally on th e rubber f eet , mount it in the stand, or mount it on the wall.
Get ting Star ted with the R VS 4000 Router Placement Options Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 21 4 T o place the r outer v er tically , f ollow these steps.
Get ting Star ted with the R VS 4000 Router Ins talling the Router Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 22 4 Installing the Router T o prepar e the rout er f or i nstallation .
Get ting Star ted with the R VS 4000 Router Configuring the R outer Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 23 4 STEP 4 P ower on the cable or DS L modem. STEP 5 Connect the power adapter t o the rout er ’ s Power por t and plug the other end int o an electrical outl et .
Get ting Star ted with the R VS 4000 Router Configuring the R outer Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 24 4 STEP 4 Click OK . F or adde d securit y , you should lat er set a new password on the Administration > Man a g em e nt page of the configuration utility .
5 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 25 S et ting Up and C onfiguring the Router This chapter e xplains how to configure these rout er fun ctions: • Setup, p age 26 • Fi.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 26 5 Lo gin Window After you log in, the configuration utility star ts . The menus appear as links in the na vigation pane on the left side of the screen.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 27 5 Setup > Summar y System Information Fir mw ar e v er si on Displays the r outer ’ s current firmw are v ersion. CPU Displays the r outer ’ s CPU typ e.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 28 5 Net work S et ting Status LA N I P The IP addres s of the r outer ’ s LAN inter face. WA N I P The IP addr es s of the r outer ’ s W AN inter f ace.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 29 5 Se tu p > W A N Internet Conne ction Typ e The r outer suppor ts six type s of connections . Each Se tup > W A N window and a vailable f eatures differ , depending on the sele ct ed conne ction typ e.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 30 5 Sta ti c I P If your connection use s a permanent IP address to connect to the Int ernet , then select Static IP . Static IP Internet IP Address The router ’ s IP addres s, when se en fr om the W AN, or the Int ernet .
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 31 5 PPPoE Some DS L -b ased IS Ps use PPP oE (Point -to-P oint Prot ocol over Ethernet) t o establish Internet connections . If you conne ct t o the Internet thr ough a D SL line, check with your ISP to see if they use PPPoE.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 32 5 Ke e p A l iv e : R e d i al p e r io d If you select this option, the rout er perio dically checks your Int ernet c onnection. If you ar e disc o nnect ed, then the r out er aut omatically re- establishes your conne ction.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 33 5 Conne ct on Dem and: Max Idle Time Y ou can configure the r outer to cut the Int ernet .
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 34 5 Conne ct on Dem and: Max Idle Time Y ou can configure the r outer to cut the Int ernet .
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 35 5 Gatewa y Y our IS P will pr ovide you with the Default Gat ewa y Address . L2TP S er ver Enter the IP addr es s of the L2TP ser ver . Us er Name and Pas sword Enter the User Name and P as sword pro vided by your ISP .
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 36 5 Optional S et tings (Required by s ome ISPs) Y our IS P may r equ ir e some of the se set tings. V erif y with your ISP bef ore making any changes.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 37 5 DDNS Ser vic e DDNS Ser vice is disabled by def ault . T o enable D DNS Ser vice, f ollow thes e instructions: Co nnec t The Co nnec t button is displa yed when DDNS is enabled.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 38 5 Se tu p > L AN The Se tu p > L A N window allows you t o change the r o ut er ’ s local net work settings.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 39 5 VL AN Select the VL AN f or the DHCP ser ver from the dr op- down menu. NOTE This option appears only if you ha ve creat e d at least one VL AN fro m the L2 S witch > Create VL AN window .
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 40 5 Static IP Mapping Static IP Mapping is us ed to bind a specific IP addres s to a specific MAC address . This helps external (W AN) us ers to acces s LAN s er vers that are adv er tised through NAPT por t f or warding.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 41 5 Setup > DMZ DMZ Hosting This f eature allows one local P C t o b e e xpos ed to the Int e rnet f or use of a special-purp ose ser vic e such as Int ernet gaming and vide oconfe rencing.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 42 5 S etup > Advanc ed Routing Setup > Ad vance d Routing Operating Mode Operation Mode Sele ct the Operating mode f or this rout er : • Gatewa y The normal mode of operation.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 43 5 RIP S end Pack et V ersion Cho ose the TX prot oc ol to use to transmit data on the network : RIP v1 or RIP v2 . This sett ing should mat ch the version suppor ted by other r outers on y our LAN.
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 44 5 Click Sa ve t o save y our changes , or click Canc el to undo your changes .
Set ting Up and Configuring the Router Se tup Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 45 5 Setup > IP Mo de Set up > I P Mod e IP v4 Only Sele ct this option t o us e IPv4 on the Int ernet and local net work . Dual-Stack IP Select this option to use IPv 4 on the Int ernet and IPv4 and IPv6 on the local net work .
Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 46 5 F irewall Use the Fir ewall menu to configure the r outer t o deny or allow specific int ernal users fr om acce ssing the Internet .
Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 47 5 HT TP S This option limits acces s t o the configuration utilit y fr om the W AN t o http s ses sions only . An http s ses sion use s SS L encr yption, which provides bet t er pr otection f or your re mote session than do es ht tp.
Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 48 5 F irewall > IP B ase d ACL The IP -B ased ACL window allows you to creat e an Ac ces s Control List (ACL ) with up t o 50 rules .
Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 49 5 T o add a new rule t o the ACL rule table, click Add New Rule and the Ed it IP ACL Rule window appears . F ollow the instructions in the section b elow t o cr eate a new ACL rule.
Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 50 5 Sourc e Interfac e Select the s our c e int er face, WAN , LA N , or ANY , fr om the drop- down menu.
Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 51 5 F irewall > In ternet Ac c es s Polic y Fir ewall > Internet Acc e ss Policy Y ou can manage acc es s t o your net work by configuring a policy .
Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 52 5 • View all p olicies : Click Summ ar y to d is pl ay t he I nternet Po licy Summary window , which lists all of the Internet acces s policie s and includes this inf ormation: No.
Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 53 5 On the List of P Cs p opup, you can define PCs by MAC Addr e ss or IP Addres s. Y ou can also ente r a range of IP Addr e sse s if yo u want this policy to a ffect a gr oup of PC s.
Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 54 5 F irewall > Single Por t For warding F i r e wa ll > Si n g le P o rt F o rw a r d in g Applic a ti on Ent er the name of the application you wish t o configure.
Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 55 5 Enable d Click the Enable d checkbo oks t o enable por t f or war ding f or the r elevant application. Click Sa ve t o save y our changes , or click Canc el to undo your changes .
Set ting Up and Configuring the Router Fi rew a ll Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 56 5 F irewall > Port Range Triggering Fir ewall > Por t Range Triggering Applic a ti on Name Ent er the name of the application you wish t o c onfigur e.
Set ting Up and Configuring the Router Pro te ctLink Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 57 5 Protec tLink Protec tLink > Protec tLink Purc has e Prote ctLink > Protec tLink Purchas e The optional Cisco Prot e ctLink W eb ser vic e pr ovide s securit y f or your network .
Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 58 5 VPN VPN > Summar y VPN > Summar y Tu n ne l s U s e d Displa ys the number of tunnels used. Tu n ne l ( s ) Ava i l a bl e Displays the number of available tunnels.
Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 59 5 Con fi g Click Edit t o change the tunnel’ s set tings . Click Tr as h to delet e all of the tunnel’ s se ttings. Tu n ne l ( s ) En a bl e d Displa ys the total number of curr ently enabled tunnels .
Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 60 5 VPN > IPS ec VPN Use the VPN > IP Se c VPN window t o creat e and configure a V ir tual Private Network ( VPN) tunnel.
Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 61 5 Sele ct Tunnel Entr y T o cr eate a new tunnel, select new . T o configure an e xisting tunnel, sele ct it fr om the drop-down menu. Del ete Click this but ton t o delete all set tings f or the sele ct ed tunnel.
Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 62 5 domain name in the Domain Name field. Then select either IP A ddr es s or IP by DNS Res olved from the drop-down menu, and fill in the IP Addre s s field or Domain Na me field.
Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 63 5 • Encr yption The Encr yption method determines the length of the ke y used t o encr ypt / decr ypt ES P packets. Only 3DES is suppor ted. Not e that both sides must us e the same Encr yption method.
Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 64 5 Aggr e ssiv e Mode Specifie s the type of Phase 1 e xchange, Main mode or Aggr es sive mode. Check the box t o select Aggres sive Mode or leave the bo x unchecked (default) t o select Main mode.
Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 65 5 Re-enter to Confirm Retype the pas swor d to ensur e it has been enter e d corr ectly . Allow User to Change Pas sword This option det ermine s whether a user can change his or her own pass wor d.
Set ting Up and Configuring the Router VPN Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 66 5 VPN > VPN Pas sthrough VPN > VPN Pass thr ough IPS ec Pas sThr ough Inte rnet Prot oc ol Securit y (IPSe c ) is a suite of prot o cols used t o implement secure e xchange of pack ets at the IP layer .
Set ting Up and Configuring the Router QoS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 67 5 Qo S Y ou can us e QoS (Quality of S er vice) to perform Bandwidth Management , by either Rate Control or Priorit y . Y ou can also configure QoS T rust Mo de and the DSCP sett ing s.
Set ting Up and Configuring the Router QoS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 68 5 Ba nd wi d th This section lets you spe cify the maximum b andwidth provided by the ISP on the W AN interface, for both the upstream and downstr eam directions .
Set ting Up and Configuring the Router QoS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 69 5 Priorit y QoS > Ban dwi dth Ma na ge men t - P rio ri t y Servi ce Select the s er vice from the dr op- down menu. If it does not c ontain the ser vice you nee d, click Se r vi ce M an a g em en t t o add the ser vice.
Set ting Up and Configuring the Router QoS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 70 5 Qo S > Qo S Se tu p Use the QoS Set up window to configure QoS T rust Mo de f or each LAN por t . QoS > QoS Set up Por t ID The number of the L AN por t .
Set ting Up and Configuring the Router QoS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 71 5 Q oS > DSCP S etup QoS > DS CP S etup DSCP The Dif f erentiat e d Ser vice s Code Point value in the incoming packet . Queue Sele ct the traffic f or warding queue, 1 to 4 , to which the DS CP priority is mapped.
Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 72 5 Administra tion Use the Administration men u t o c onfigure the syst em administration set tings and to o ls .
Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 73 5 System Con t act Ent er contact information f or the syst em. System L oc a tion Enter the location of the system. Read C ommunit y Enter the SNMP c ommunity name f or SNMP “Get ” commands .
Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 74 5 Admini stra tion > Log Administration > Log Log S et ting Lo g Level S elect the log level(s ) that the rout er shoul d r ecord.
Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 75 5 Outgoing Lo g Select Enable to cause all outgoing pack ets to be logge d.
Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 76 5 Email Lo g Now Pr e ss this but ton t o cause the lo g t o be emailed imme diat ely . Sys log Enable Syslo g Check the b o x if you want t o us e this f eature.
Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 77 5 Ping T e st Parameters Ping T arget IP Ent er the IP addres s or URL that y ou want t o ping. Ping Size Enter the size of the pack et you want t o use.
Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 78 5 Administration > Backup & Re stor e Administration > Backup & Rest ore T o download a copy of the curr ent configuration and sto re the file on your PC, click Ba c k up to star t the download.
Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 79 5 Administration > F ac tor y D efault Administration > F ac tor y De fault Restore F actor y D efaults Click this button t o reset all configuration set tings t o their fact or y default values.
Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 80 5 Adminis tra tion > R ebo ot Administration > Rebo ot Rebo ot Click this but t on t o reboot the rout er . This operation doe s not cause the r outer t o lo se an y of its st or ed se ttings.
Set ting Up and Configuring the Router Administr ation Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 81 5 STEP 1 Check the hardwar e version of the rout er by ref erring to the label on the bot tom panel. The PID VID number include s the charact ers V01 ( V ersion 1 ) or V02 (V e r si o n 2 ).
Set ting Up and Configuring the Router IPS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 82 5 IPS IPS > C onfigura tion IPS > Configuration IPS Function Sel ect Enable to enable or Disable t o dis able the IPS Function. Anomaly D etec tion HT TP W eb attack signature is mat ched.
Set ting Up and Configuring the Router IPS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 83 5 IPS > P2P /IM Peer T o Peer Pe er to Peer Peer -t o-peer file sharing applications can be blo ck ed ( Block ) or allowed ( Non- Blo ck ).
Set ting Up and Configuring the Router IPS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 84 5 IPS > Rep or t Provides a graphical r epresentation of the level of net work traffic and at tacks during the last twent y f our hours .
Set ting Up and Configuring the Router IPS Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 85 5 IPS > Repor t.
Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 86 5 IPS > Informa tion IPS > Information Signature V ers ion Displa ys the version of the signatur e pat t erns in the r oute r that pr otects against malicious threats.
Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 87 5 VLANs function at layer 2. Since VLANs is olate tra f fic within the VLAN, a Layer 3 r outer is needed to allow traffic flow bet ween VL ANs.
Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 88 5 L2 Switch > VL AN Por t S et ting L2 Switch > VL AN Por t S et ting Por t ID Displa ys the por t number from 1 to 4 . Mode Sele ct the mode of the po rt , either Tr u n k , Untagged , or T agge d .
Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 89 5 L2 Switch > VL AN Membership L2 Switch > VL AN Memb ership VL AN ID Sele ct the VLAN whos e membership you want t o c onfigur e.
Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 90 5 L2 Switch > R ADIUS L2 Switch > R ADIUS Mode Select Enable d or Dis abled from the dr op- down menu to enable or disable RA D I U S.
Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 91 5 L2 Switch > Por t S et ting L2 Switch > Por t S et ting Por t Displa ys the physical por t number . Link Displays the por t duplex mode and spe ed.
Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 92 5 L2 Switch > St a tistic s L2 Switch > St a tistic s Statistics O ver view Tx By te s Displa ys the number of By tes transmit ted fr om the sele ct ed por t .
Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 93 5 L2 Switch > Por t Mirroring L2 Switch > Por t Mirroring Mirror So urce Use this t o enable or disable source por t mirr oring f or each por t on the r outer .
Set ting Up and Configuring the Router L2 S wi tch Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 94 5 L2 Switch > R STP L2 Switch > R STP The RS TP (Rapid Spanning T ree Pr otocol) prot oc ol pr events loops in the network and dynamically reconfigures which physical links in a swit ch should f o rward frames .
Set ting Up and Configuring the Router Sta tus Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 95 5 Path Co st The RSTP path cost f or the designated por ts . Ent er a number from 1 to 200000000 , or typ e the wor d auto (autogenerated path cost) .
Set ting Up and Configuring the Router Sta tus Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 96 5 DNS 1 -2 Displa ys the DNS (Domain Name Syst em) IP addr es ses currently used by this Gat e wa y . IP Conntrack Click th is button t o display the IP Conn track window .
Set ting Up and Configuring the Router Sta tus Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 97 5 Status > Lo c al Net wo rk Status > Loc al Net work Current IP addres s System This shows the current syst em. MA C Addres s The r outer MAC Addr e ss , as seen on your local, Ethernet net work .
6 Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 98 Using the VPN S etup Wizard This chapter explains how t o us e the VPN Setup W izard.
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Administrat or Guide 99 6 STEP 1 Click Fire wall > B asic S ettings . STEP 2 Enable R emote Management and ent er 80 80 in the P or t field. Please note that you cannot enter an y other value if you want to use the VPN Wizar d.
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 100 6 Welcome Window.
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 101 6 STEP 4 Read the inf ormation about the wizar d, and then click Next to pro c ee d .
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 102 6 STEP 5 Choose one metho d t o build the VPN c onnection: • If your P.
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 103 6 STEP 6 Enter the r e quir e d data in the Configure VPN T unnel window and click Nex t to continue. Configure VPN Tunnel • Router 1 User Name : Ent er the user name of the Rout er 1 .
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 104 6 The rout er configuration is checked.
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 105 6 STEP 7 When the Summar y window appears , use the Click button t o view the VPNC Summar y window . Summar y Window STEP 8 R evi ew t he setti ngs, as needed.
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 106 6 STEP 9 In the Summary window , if all your entries appear corr e ct , click Go . Other wis e click Ba c k t o go back and make an y c orrections.
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 107 6 T est the Conne ction STEP 11 When t esting is done, click Exit to e nd th e Wi za rd .
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 108 6 Exit the Wizard Congratulations! Se tup is now complete. Y ou may now log int o the W eb Ad mi ni st ra tor In ter fa c e a nd se e th e re s ult s .
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 109 6 Building Y our VPN C onne ction Remotely This pr oc edure continues from Step 5 on page 102 . Us e this pr o cedure to build your VPN connection from a remot e P C.
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 110 6 Configure VPN Tunnel Window • Router 1 User Name : Ent er the user name of the Rout er 1 . • Router 1 Pas sword : Ent er the password of the Rout er 1 .
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 111 6 STEP 3 The r outer configuration is checked. Check Router Configuration STEP 4 The Summar y window appears. Us e the Click box t o view the VPNC Summar y window .
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 112 6 Summar y Window STEP 5 The VPNC Summar y window appears showing the s ettings that were made to industr y standards. Click Clos e when y ou are r eady to continue.
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 113 6 Configure the Router STEP 7 Click Te s t i n g to make sur e the conne ction is succe ssfully e stablished.
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 114 6 T est the Conne ction STEP 8 When t e sting is done, click Exit to e nd t he Wiz ard .
Using the VPN S etup Wiz ard Running the VP N Setup W izar d Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 115 6 Congratulations! Se tup is now complete. Y ou may now log int o the W eb Ad mi ni st ra tor In ter fa c e a nd se e th e re s ult s .
A Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 116 T rouble sho oting This appendix provides solutions to pr oblems that may occur during the installation and operation of the rout er . Re ad the descriptions below to help solve your pr oblems.
T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 117 A STEP 8 Click OK in the Internet Protocol ( TCP /IP) Proper t ies window , and click OK in the L ocal Area Connect ion Proper t ies window . STEP 9 Restar t the computer if asked.
T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 118 A I want to test my Internet conne c tion. STEP 1 Check your T CP / IP set tings. Windows 2000 a. Click Star t , Setti ngs , and Co nt r ol P an e l . Double-click Net work and Dial-Up Co nnec tions .
T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 119 A STEP 3 At the command prompt, t ype ping 192. 168. 1 . 1 and press Enter .
T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 120 A STEP 5 Make sure the cable conne cting fr om your cable or DS L modem is c onnected t o the r outer ’ s Internet por t . V erify that the Status page of the rout er ’ s c onfiguration utility shows a valid IP addres s fr om your ISP .
T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 121 A assigne d a static IP addr e ss to any computer or network devic e on the network , you need to change its IP address ac cor dingly to 19 2. 168.2. Y ( Y re pre s e n ts a ny number from 1 t o 254) .
T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 122 A STEP 4 Configure as man y entries as you lik e . STEP 5 When you hav e completed the configuration, click Sav e . I ne ed to s et up online game hostin g or use other Internet applic ations.
T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 123 A I c an ’t get an Internet game, s er ver , or application to work. If you ha ve dif ficulties getting any Int ernet game, ser ver , or application to function pr operly , c onsider e xpo sing one PC to th e Internet by using DeMilitarized Z one (DMZ) hosting.
T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 124 A STEP 6 Click Sav e . I am a PPPoE us er and I nee d to remo ve the proxy s et tings or the dial- up po p-up window . If you ha ve pro x y set tings, you need t o dis able these on your co mput er .
T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 125 A STEP 4 In the Se ar ch Results, click the Downlo ad Sof t ware link f o r your r outer (usually the first link) . STEP 5 Click the Router Firmwar e Res cue Utilit y link .
T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 126 A I c an ’t ac c es s my email, web, or VPN, or I am get ting c orrupte d data from the In ternet . Y ou may need to adjust the Maximum T ransmis sion Unit (MTU) sett ing.
T rouble shooting Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 127 A STEP 6 Enter the Start and End Ports of the Forw ar ded Range. Check with your Int ernet application provider f or more inf ormatio n on which incoming por t ser vic es ar e r equired by the Internet application.
T rouble shooting F requently Asked Questions Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 128 A STEP 3 Click To o l s . Click Internet Options . Click the Secu ri t y tab. Click the Defa ult lev el button. Mak e sure the security level is Medium or lower .
T rouble shooting F requently Asked Questions Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 129 A What is Network Address Translat ion and what is it used for? Netw ork Address T ranslati on (NA T ) translates multiple IP addr e s ses on the priv at e LAN to one public addr es s that is sent out to the Int ernet .
T rouble shooting F requently Asked Questions Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 130 A far as hosting games , the HL ser ver does not ne ed to be in the DMZ. Just f or war d por t 27015 t o the local IP addres s of the ser ver comput er .
T rouble shooting F requently Asked Questions Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 131 A using the configuration utilit y (see Administration > F irmware Upgrade, pag e 80 ) .
T rouble shooting F requently Asked Questions Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 132 A Does the router replace a modem? Is there a cable or DSL modem in the router? No, this v ersion of the r outer must work in c onjunction with a cable or DS L modem.
B Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 133 Using Cis c o QuickVPN for Windows 2000, XP , or Vist a O ver view This appendix explains how t o install and use the Cisco QuickVPN s oft war e that can be download ed fr om www . ci sc o .
Using Cisc o QuickVPN for Windows 2000, XP , or Vista Be fo r e Y ou B egi n Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 134 B STEP 4 Click Add/ S a ve .
Using Cisc o QuickVPN for Windows 2000, XP , or Vista Ins talling the Cis co QuickVPN Soft war e Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 135 B Installing the Cis c o QuickVPN S .
Using Cisc o QuickVPN for Windows 2000, XP , or Vista Ins talling the Cis co QuickVPN Soft war e Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 136 B C opying Files Finished Inst alling Files STEP 3 Click Fi ni s he d to complet e the installation.
Using Cisc o QuickVPN for Windows 2000, XP , or Vista Using the Cisc o QuickVPN Soft war e Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 137 B D ownloading and Inst alling fr om the Internet STEP 1 Go to firm ware downlo ad link in Appendix G, “ Wher e to Go Fr om Here.
Using Cisc o QuickVPN for Windows 2000, XP , or Vista Using the Cisc o QuickVPN Soft war e Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 138 B The QuickVPN L o gin window appears . STEP 2 Enter the f ollowing inf ormation: • Profile Name : Enter a name f or your pr ofile.
Using Cisc o QuickVPN for Windows 2000, XP , or Vista Using the Cisc o QuickVPN Soft war e Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 139 B QuickVPN Status T o te rminate the VPN tunnel, click Dis conne ct . T o change your password, click Change Password .
Using Cisc o QuickVPN for Windows 2000, XP , or Vista Distributing Cer tifica tes to QuickVPN Users Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 140 B Conne ct Vir tual Private C onnec tion NOTE Y o u can change your password only if you ha ve b een granted that privile ge by your syst em administrator .
Using Cisc o QuickVPN for Windows 2000, XP , or Vista Distributing Cer tifica tes to QuickVPN Users Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 141 B STEP 3 Each QuickVPN us er must then install the cer tificate as f ollows : a. Sav e the cer tificate int o the director y wher e the QuickVPN Client is installed.
C Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 142 C onfiguring IPS e c with a Windows 2000 or XP C omputer This appendix explains how t o configur e IPSe c with a computer that is using Windows 200 0 or Windows XP .
Configuring IPS ec with a Windows 2000 or XP C omputer Env iro nm en t Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 143 C Envir o nmen t The IP addr es ses and other spe cifics mentioned in this appendix ar e f or illustration purpo ses only .
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 144 C Establishing a S e cure IPS ec T unnel STEP 1 Creat e an IPSec p olicy . a. Click Star t , sele ct Run , and t ype secpo l.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 145 C F ilter List 1 : win -> router a. In the new policy ’ s proper ties window , verify that the Rules tab is s elected.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 146 C IP Filter L ist T ab c.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 147 C d. The F ilter s Proper ties window will appear . S elect the Addr e ssing tab.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 148 C F ilter List 2: router -> win g. The Ne w Rule Proper ties window will appear .
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 149 C i. The Filters Proper ties window will appear . S elect the Addr e ssing tab. In the Sou rce add ress field, s elect A sp ecific IP Subnet , and enter the IP Address 192.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 150 C The N ew Rule Proper ties window appears with the IP Filter List tab selected.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 151 C T unnel 1 : win->Router a. On the IP Fi lter List tab, sele ct filt er list win->Router .
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 152 C Filter Action T ab c.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 153 C Se curit y Metho ds T ab d. Select the Authentication Methods tab, and click Edit .
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 154 C Authentication Methods T ab e.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 155 C f . This new Pr e shared k ey will be displayed. Click the Apply bu t ton to c on t in ue , if it appears on your scr een; other wise, proceed to the ne xt step.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 156 C h. S elect the Conn ectio n T ype tab, and click All net work c onnec tions . Then, click the OK or Clo se button t o finish this r ule.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 157 C Proper ties Window j. Go to the IP Filter List tab, and click the filter list Router ->win .
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 158 C always resp ond using IPS e c bo x . Se lect Sess ion k ey Pe rfect Fo rwa rd Secr ecy , and click OK .
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 159 C m. Change the authentication method to Use this string to protec t the k ey exchange (pr eshared key) , and ent er the pr e shar e d k ey string, such as XYZ 12345.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 160 C New Preshare d K ey o.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 161 C p. Click the Conne c tion Type tab, and sele ct All net work conne ctions . Then click OK or Clo se to fi ni sh .
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 162 C Rule s T ab STEP 4 A ssign new IPS ec policy . In the IP Se curit y Policies on L ocal M achine window , right- click the policy named to_Router , and click Assi gn .
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 163 C STEP 5 Creat e a tunnel through the configuration utility . a. Open your web br owser , and enter 192.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 164 C VPN > IPS ec VPN d. Sele ct the tunnel y ou wish to creat e in the S elect T unnel Entr y drop-down box.
Configuring IPS ec with a Windows 2000 or XP C omputer Ho w t o E st abl ish a Secu r e IP Sec T unn el Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 165 C e. Enter the IP Addr es s and Subnet Mask of the local VPN r out er in the Lo c a l Gro u p S e t up fields.
D Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 166 Ga tewa y-to- Ga tewa y VPN T unnel O ver view This appendix explains how t o c onfigur e an IPSec VPN tunnel b etween t wo VPN r outers by e xamp le. T wo computers ar e use d t o t est the livelines s of the tunnel.
Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the Remo te Gat eway Use s a Sta tic IP Address Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 167 D C onfigura tion when the Remote Gatewa y Us e s a Static IP Add res s This e xample assumes the Remote G a t eway is using a static IP address .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the Remo te Gat eway Use s a Sta tic IP Address Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 168 D F or the Local Securit y Group T yp e, select Subnet . Ent er the RVS4000’ s local ne two rk s etti ng s i n t he IP Addres s and Subnet Mask fields .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the Remo te Gat eway Use s a Sta tic IP Address Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 169 D R VS 4000 IPSe c Setup S et tings k . If you need more detailed set tings , click Ad vanced Settings .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the Remo te Gat eway Use s a Sta tic IP Address Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 170 D R V082 VPN Set tings h. For the Remot e Se curity Gatewa y T yp e, select IP address .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the Remo te Gat eway Use s a Sta tic IP Address Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 171 D R V082 IPSe c S etup Set tings 1 . If you nee d mor e detailed set tings , click Adva nce d Settings .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the R emote Ga tewa y Us es a D ynamic IP Addr e ss Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 172 D C onfigura tion when the Remote Gatewa y Us e s a D ynamic IP Add res s This ex ample assum es the Remot e Gatewa y is using a dynamic IP ad dr e ss .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the R emote Ga tewa y Us es a D ynamic IP Addr e ss Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 173 D F or the Local Securit y Group T yp e, select Subnet . Ent er the RVS4000’ s local ne two rk s etti ng s i n t he IP Addres s and Subnet Mask fields .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the R emote Ga tewa y Us es a D ynamic IP Addr e ss Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 174 D R VS 4000 IPSe c Setup S et tings k . If you need more detailed set tings , click Ad vanced Settings .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the R emote Ga tewa y Us es a D ynamic IP Addr e ss Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 175 D R V082 VPN Set tings h. For the Remot e Se curity Gatewa y T yp e, select IP address .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation when the R emote Ga tewa y Us es a D ynamic IP Addr e ss Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 176 D R V082 IPSe c S etup Set tings l. If you need more detailed set tings , click Adv anced Settings .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation W hen Both Ga tewa ys Use D ynamic IP Addr ess es Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 177 D C onfigura tion When B oth Ga tewa ys Us e D yn amic IP Ad d r esses This ex ample as sumes both Gatewa ys are using dynamic IP addr es ses .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation W hen Both Ga tewa ys Use D ynamic IP Addr ess es Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 178 D F or the Local Securit y Group T yp e, select Subnet . Ent er the RVS4000’ s local ne two rk s etti ng s i n t he IP Addres s and Subnet Mask fields .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation W hen Both Ga tewa ys Use D ynamic IP Addr ess es Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 179 D R VS 4000 IPSe c Setup S et tings k . If you need more detailed set tings , click Ad vanced Settings .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation W hen Both Ga tewa ys Use D ynamic IP Addr ess es Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 180 D R V082 VPN Set tings h. For the Remot e Se curity Gatewa y T ype, s elect IP by DNS Re solve d .
Gatewa y-to- Gatewa y VPN Tunnel Configur ation W hen Both Ga tewa ys Use D ynamic IP Addr ess es Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 181 D R V082 IPSe c S etup Set tings l. If you need more detailed set tings , click Adv anced Settings .
E Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 182 Cis c o Prote c tLink W eb S er vic e O ver view The optional Cisco Pr otectLink W eb s er vice provides se curity f o r your network . It filt ers website addr e ss es (URLs), and blocks potentially malicious websites.
Cisc o Protec tLink W eb S er vic e How to Pur chas e, R egister , or Acti va te the Ser vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 183 E Lo gin Window How to Purchase, Re gister , or A ctivate the Ser vic e Y ou can purchase, regist er , or activate the ser vic e using the ProtectLin k window .
Cisc o Protec tLink W eb S er vic e How to Pur chas e, R egister , or Acti va te the Ser vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 184 E Prote ctLink (Inac tive) F ollow the instructions f or the appropriat e option: • L earm more about and request Free T rial f or Cis co Pr otectLink .
Cisc o Protec tLink W eb S er vic e How to Use the S er vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 185 E After you activa te Pr otectLink , this window appears when you click Protec tLink > Prote ctLink Purchas e fr om the menu.
Cisc o Protec tLink W eb S er vic e How to Use the S er vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 186 E Prote ctLink > Web Protection.
Cisc o Protec tLink W eb S er vic e How to Use the S er vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 187 E We b Protection Enable URL Filterin g T o filter we bsite addr es ses (URLs), sele ct this option. Enable Web Reputation T o block potentially malicious websites, s elect this option.
Cisc o Protec tLink W eb S er vic e How to Use the S er vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 188 E Approved URLs Y ou can de signate up t o 20 trusted URLs that will always be acce ssible. Enable Approved URL list T o set up a list of alwa ys acces sible URLs, s elect this option.
Cisc o Protec tLink W eb S er vic e How to Use the S er vice Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 189 E Protec tLink > Lic ense The license f or the Cisc o Pr otectLink W eb ser vic eis valid f or one year fr om the time the activa tion code is generated.
F Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 190 Sp e cific a tions The Cisco RVS4000 4-P or t Gigabit Security Rout er with VPN specifications ar e des cribed in this app endix. Sp ecific a tions Per formanc e Set up / Co n f i g Model RVS4000 Standards IEEE802.
Spe cifications Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 191 F Management Secu ri t y F ea tu r es Qo S SNMP V ersion SNM P v er si on 1 , 2 c Event Logging L ocal, Syslog , Emai.
Spe cifications Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 192 F Net work VPN Routing La ye r 2 DHCP DHCP Ser ver , DHCP Client , DHCP Relay Agent DNS DNS Rela y , D ynamic DNS (Dy.
Spe cifications Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 193 F Envir onmental Specifications are subject to change without notice. Por t Mirroring One of the five W AN /LAN ports can be mirrored to a selected LAN por t RSTP Suppor ts Rapid Spanning Tr ee Pr otocol for loop detection and faster reconfiguration Dimensions 6.
G Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 194 Wher e to Go F rom Her e Cisco provides a wide range of r esources to help you and y our cust omer obtain the full benefits of the Cisc o RV S4000 4-Port Gigabit Se curity Router with VPN.
Where to Go F rom Her e Rel ate d D o c um en tati o n Cisco RVS4000 Securit y Rout er with VPN Admini strat or Guide 195 G Rela te d D o cumen tation F or hardwar e s etup f or the Cisc o RVS4000 r outer , se e the Cisco Small Busine ss Model RVS4000 4-P or t Gigabit Securit y Rout er with VPN Quick Star t Guide .
An important point after buying a device Cisco RVS4000 (or even before the purchase) is to read its user manual. We should do this for several simple reasons:
If you have not bought Cisco RVS4000 yet, this is a good time to familiarize yourself with the basic data on the product. First of all view first pages of the manual, you can find above. You should find there the most important technical data Cisco RVS4000 - thus you can check whether the hardware meets your expectations. When delving into next pages of the user manual, Cisco RVS4000 you will learn all the available features of the product, as well as information on its operation. The information that you get Cisco RVS4000 will certainly help you make a decision on the purchase.
If you already are a holder of Cisco RVS4000, but have not read the manual yet, you should do it for the reasons described above. You will learn then if you properly used the available features, and whether you have not made any mistakes, which can shorten the lifetime Cisco RVS4000.
However, one of the most important roles played by the user manual is to help in solving problems with Cisco RVS4000. Almost always you will find there Troubleshooting, which are the most frequently occurring failures and malfunctions of the device Cisco RVS4000 along with tips on how to solve them. Even if you fail to solve the problem, the manual will show you a further procedure – contact to the customer service center or the nearest service center