Table of ContentsPreviousNextIndex

SonicWALL, Inc.


Table of Contents

SonicOS Enhanced 3.2

What's New in SonicOS Enhanced 3.2

What's New in SonicOS Enhanced 3.1

SonicWALL Management Interface

Navigating the Management Interface

Status Bar

Applying Changes

Navigating Tables

Common Icons in the Management Interface

Getting Help

Logging Out

System > Status

Wizards

System Messages

System Information

Latest Alerts

Security Services

Registering Your SonicWALL Security Appliance

Network Interfaces

System > Licenses

Node License Status

Security Services Summary

Manage Security Services Online

Manual Upgrade

Manual Upgrade for Closed Environments

System > Administration

Firewall Name

Administrator Name & Password

Login Security

Web Management Settings

SSH Management Settings

Advanced Management

Enabling SNMP Management

Enable GMS Management

Download URL

Digital Certificates Overview

System > Certificates

Certificates and Certificate Requests

Certificate Details

Importing Certificates

Deleting a Certificate

Certificate Revocation List (CRL)

Generating a Certificate Signing Request

System > Time

System Time

NTP Settings

System > Schedules

Adding a Schedule

Deleting Schedules

System > Settings

Settings

Firmware Management

SafeMode - Rebooting the SonicWALL Security Appliance

FIPS

System > Diagnostics

Tech Support Report

Diagnostic Tools

Active Connections Monitor

CPU Monitor

DNS Name Lookup

Find Network Path

Packet Trace

Ping

Process Monitor

Real-Time Black List Lookup

Reverse Name Resolution

Trace Route

Web Server Monitor

System > Restart

Network > Interfaces

Setup Wizard

Physical Interfaces

Virtual Interfaces (VLAN)

SonicOS Enhanced Secure Objects

Transparent Mode

Interface Settings

Interface Traffic Statistics

Configuring the F0, F1, X0 - X9, LAN and OPT Interfaces (Static)

Configuring Interfaces in Transparent Mode

Configuring Wireless Interfaces

Configuring the WLAN Interface

Configuring a WAN Interface

Configuring the Advanced Settings for the WAN Interface

Configuring Modem Settings

Connecting the Modem

Configuring SonicWALL PortShieldtm Interfaces (PRO 1260)

Configuring VLAN Sub-Interfaces (PRO 2040, PRO 3060, PRO 4060, PRO 4100, PRO 5060)

Deploying VLANs

VLAN Integration

SonicWALL PortShieldTM Interfaces

Security Services with PortShield

Network > SwitchPorts

Overview

Using Different Approaches to Configuration

Creating a PortShield Interface from the Interfaces Area

Creating a New Zone for the PortShield Interface

Refining the PortShield Interface

Creating Transparent Mode PortShield Interfaces

Mapping Ports from the Switch Ports Window

PortShield Deployment Scenarios

Hospitality

Small Business

Network > WAN Failover & Load Balancing

WAN Failover Caveats

Setting Up WAN Failover and Load Balancing

WAN Probe Monitoring

WAN Load Balancing Statistics

Network > Zones

How Zones Work

Predefined Zones

Security Types

Allow Interface Trust

Enabling SonicWALL Security Services on Zones

The Zone Settings Table

Adding a New Zone

Deleting a Zone

Configuring the WLAN Zone

Network > DNS

Network > Address Objects

Types of Address Objects

Address Object Groups

Creating and Managing Address Objects

Default Address Objects and Groups

Adding an Address Object

Editing or Deleting an Address Object

Creating Group Address Objects

Public Server Wizard

Network > Routing

Route Advertisement

Route Policies

Policy Based Routing

Route Policies Table

A Route Policy Example

Advanced Routing Services

Advanced Routing Services (OSPF and RIP)

Configuring Advanced Routing Services

Network > NAT Policies

NAT Policies Table

NAT Policy Settings Explained

NAT Policies Q&A

Creating NAT Policies

Network > ARP

Static ARP Entries

Secondary Subnets with Static ARP

Prohibit Dynamic ARP Entries

Navigating and Sorting the ARP Cache Table

Navigating and Sorting the ARP Cache Table Entries

Flushing the ARP Cache

Network > DHCP Server

Enabling the DHCP Server

DHCP Server Lease Scopes

Configuring DHCP Server for Dynamic Ranges

Configuring Static DHCP Entries

Current DHCP Leases

Network > Web Proxy

Configuring Automatic Proxy Forwarding (Web Only)

Bypass Proxy Servers Upon Proxy Failure

Network > IP Helper

IP Helper Settings

IP Helper Policies

Adding an IP Helper Policy

Editing an IP Helper Policy

Deleting IP Helper Policies

Dynamic DNS Overview

Supported DDNS Providers

Configuring Dynamic DNS

Dynamic DNS Settings Table

Modem > Status

Modem Status

Modem > Settings

Modem Settings

Dial on Data Categories

Management/User Login

Profile Settings

Modem > Advanced

How Does Remotely Triggered Dial-Out Work?

Configuring Remotely Triggered Dial-Out

Modem > Dialup Profiles

Dial-Up Profiles

Configuring a Dialup Profile

Chat Scripts

Considerations for Using Wireless Connections

Recommendations for Optimal Wireless Performance

Adjusting the Antennas

Wireless Node Count Enforcement

MAC Filter List

WiFiSec Enforcement

Wireless > Status

WLAN Settings

WLAN Statistics

Station Status

Wireless > Settings

Wireless Radio Mode

Wireless Settings

Secure Wireless Bridging

Configuring a Secure Wireless Bridge

Wireless > WEP/WPA Encryption

WEP Encryption Settings

WEP Encryption Keys

WPA Encryption Settings

Wireless > Advanced

Beaconing & SSID Controls

Advanced Radio Settings

Wireless > MAC Filter List

Wireless > IDS

SonicPoint > SonicPoints

Before Managing SonicPoints

SonicPoint Provisioning Profiles

Configuring a SonicPoint Profile

Updating SonicPoint Settings

Updating SonicPoint Firmware

Automatic Provisioning (SDP & SSPP)

SonicPoint States

SonicPoint > Station Status

Event and Statistics Reporting

SonicPoint > IDS

Detecting SonicPoint Access Points

Wireless Intrusion Detection Services

Firewall > Access Rules

Stateful Packet Inspection Default Access Rules Overview

Using Bandwidth Management with Access Rules Overview

Configuration Task List

Displaying Access Rules with View Styles

Configuring Access Rules for a Zone

Adding Access Rules

Editing an Access Rule

Deleting an Access Rule

Enabling and Disabling an Access Rule

Displaying Access Rule Traffic Statistics

Connection Limiting Overview

Access Rule Configuration Examples

Enabling Ping

Blocking LAN Access for Specific Services

Enabling Bandwidth Management on an Access Rule

Firewall > Advanced

Detection Prevention

Dynamic Ports

Source Routed Packets

Connections

Access Rule Service Options

IP and UDP Checksum Enforcement

UDP

Firewall > TCP Settings

TCP Traffic Statistics

TCP Settings

Working with SYN/RST/FIN Flood Protection

Understanding a TCP Handshake

SYN Flood Protection Methods

Working with SYN Flood Protection Features

Working with SYN Flood Protection Modes

Working with SYN Proxy Options

Working with SYN/RST/FIN Blacklisting

SYN, RST, and FIN Flood Statistics

Firewall > Services

Default Services Overview

Custom Services Configuration Task List

Supported Protocols

Adding Custom Services

Adding a Custom Services Group

Firewall > Multicast

Multicast Snooping

Multicast Policies

IGMP State Table

Enabling Multicast on LAN-dedicated Interfaces

Enabling Multicast Through a VPN

Firewall > Connections Monitor

Viewing Connections

Filtering Connections Viewed

Firewall > QoS Mapping

Classification

Marking

Conditioning

802.1p and DSCP QoS

Enabling 802.1p

DSCP Marking

Bandwidth Management

Outbound Bandwidth Management

Algorithm for Outbound Bandwidth Management

Example of Outbound BWM

Inbound Bandwidth Management

Algorithm for Inbound Bandwidth Management

Credit Based Processing

Example of Inbound Bandwidth Management

BWM with WAN load balancing

Glossary

VoIP Overview

What is VoIP?

VoIP Security

VoIP Protocols

SonicWALL's VoIP Capabilities

VoIP Security

VoIP Network

VoIP Network Interoperability

Supported VoIP Protocols

How SonicOS Handles VoIP Calls

Configuring SonicWALL VoIP Features

Supported Interfaces

Configuration Tasks

General VoIP Configuration

Configuring BWM and QoS

Configuring VoIP Logging

VoIP Deployment Scenarios

Generic Deployment Scenario

Deployment Scenario 1: Point-to-Point VoIP Service

Deployment Scenario 2: Public VoIP Service

Deployment Scenario 3: Trusted VoIP Service

VPN > Settings

VPN Overview

VPN Types

VPN Security

Configuring VPNs in SonicOS Enhanced

Planning Your VPN

VPN Policy Wizard

VPN Global Settings

VPN Policies

Currently Active VPN Tunnels

Configuring GroupVPN Policies

Configuring GroupVPN with IKE using Preshared Secret on the WAN Zone

Configuring GroupVPN with IKE using 3rd Party Certificates

Exporting a VPN Client Policy

Site-to-Site VPN Configurations

Creating Site-to-Site VPN Policies

Configuring a VPN Policy with IKE using Preshared Secret

Configuring a VPN Policy using Manual Key

Configuring a VPN Policy with IKE using a Third Party Certificate

VPN Auto-Added Access Rule Control

VPN > Advanced

Advanced VPN Settings

VPN > DHCP over VPN

DHCP Relay Mode

Configuring the Central Gateway for DHCP Over VPN

Configuring DHCP over VPN Remote Gateway

Current DHCP over VPN Leases

VPN > L2TP Server

Configuring the L2TP Server

Users > Status

User > Settings

User Login Settings

Configuring RADIUS Authentication

Configuring LDAP / Active Directory / eDirectory Authentication

Configuring LDAP integration in SonicOS Enhanced

Configuring the SonicWALL Appliance for LDAP

RADIUS with LDAP for user groups

User Session Settings

Other Global User Settings

Acceptable Use Policy

User > Local Users

Viewing Local Users

Adding Local Users

Editing Local Users

Users > Local Groups

Creating a Local Group

Users > Guest Services

Global Guest Settings

Guest Profiles

Users > Guest Accounts

Viewing Guest Account Statistics

Adding Guest Accounts

Enabling Guest Accounts

Enabling Auto-prune for Guest Accounts

Printing Account Details.

Users > Guest Status

Logging Accounts off the Appliance

Hardware Failover > Settings

How Hardware Failover Works

Before Configuring Hardware Failover

Configuring Hardware Failover

Synchronizing Firmware

Monitoring Links

Hardware Failover Status

SonicWALL Security Services

Security Services Summary

Managing Security Services Online

Security Services Settings

Security Services Information

Update Signature Manually

Activating Security Services

Security Services > Content Filter

SonicWALL Content Filtering Service

Content Filter Status

Content Filter Type

Restrict Web Features

Trusted Domains

CFS Exclusion List

Message to Display when Blocking

Configuring SonicWALL Filter Properties

Custom List

Consent

Configuring N2H2 Internet Filtering

N2H2 Properties

Configuring SonicWALL Blocking Features

Configuring Websense Enterprise Content Filtering

Websense Properties

Configuring SonicWALL Blocking Features

Security Services > Anti-Virus

Activating SonicWALL Network Anti-Virus

Activating a SonicWALL Network Anti-Virus FREE TRIAL

Configuring Network Anti-Virus Service

Security Services > E-mail Filter

SonicWALL's Unified Threat Management Solution

SonicWALL Gateway Anti-Virus, Anti-Spyware, and Intrusion Prevention Service Features

SonicWALL Gateway Anti-Virus Overview

SonicWALL GAV Multi-Layered Approach

SonicWALL Gateway Anti-Virus, Anti-Spyware, and Intrusion Prevention Service Activation

Creating a mySonicWALL.com Account

Registering Your SonicWALL Security Appliance

Activating the SonicWALL Gateway Anti-Virus, Anti-Spyware, and Intrusion Prevention Service License

Activating FREE TRIALs

SonicWALL's Unified Threat Management Solution

SonicWALL Gateway Anti-Virus, Anti-Spyware, and Intrusion Prevention Service Features

SonicWALL Intrusion Prevention Service Overview

SonicWALL Deep Packet Inspection

How SonicWALL's Deep Packet Inspection Works

SonicWALL IPS Terminology

SonicWALL Gateway Anti-Virus, Anti-Spyware, and Intrusion Prevention Service Activation

Creating a mySonicWALL.com Account

Registering Your SonicWALL Security Appliance

Activating FREE TRIALs

Activating the SonicWALL Gateway Anti-Virus, Anti-Spyware, and Intrusion Prevention Service License

Setting Up SonicWALL Intrusion Prevention Service Protection

Enabling SonicWALL IPS

Specifying Global Attack Level Protection

Applying SonicWALL IPS Protection on Zones

SonicWALL's Unified Threat Management Solution

SonicWALL Gateway Anti-Virus, Anti-Spyware, and Intrusion Prevention Service Features

SonicWALL Anti-Spyware Service Overview

SonicWALL Gateway Anti-Virus, Anti-Spyware, and Intrusion Prevention Service Activation

Creating a mySonicWALL.com Account

Registering Your SonicWALL Security Appliance

Activating FREE TRIALs

Activating the SonicWALL Gateway Anti-Virus, Anti-Spyware, and Intrusion Prevention Service License

Setting Up SonicWALL Anti-Spyware Service Protection

Applying SonicWALL Anti-Spyware Protection on Zones

SMTP Real-Time Black List Filtering

Security Services > RBL Filter

Adding RBL Services

User-Defined SMTP Server Lists

Security Services > Global Security Client

Global Security Client Features

How SonicWALL Global Security Client Works

Global Security Client Licensing

Activating Global Security Client Licenses on Your SonicWALL

Configuring Security Policies for Global Security Clients

Log > View

Log View Table

Refresh

Clear Log

Export Log

E-mail Log

Filtering Log Records Viewed

Log Event Messages

Log > Categories

Log Priority

Log Categories

Log > Syslog

Syslog Settings

Syslog Servers

Log > Automation

E-mail Log Automation

Mail Server Settings

Log > Name Resolution

Selecting Name Resolution Settings

Specifying the DNS Server

Log > Reports

Data Collection

View Data

Log > ViewPoint

Activating ViewPoint

Enabling ViewPoint Settings

Internet Connectivity Using the Setup Wizard

Using the Setup Wizard

Wireless Deployment Scenarios

Configuring a Static IP Address with NAT Enabled

Configuring DHCP Networking Mode

Configuring NAT Enabled with PPPoE

Configuring PPTP Network Mode

Create a Server with the Public Server Wizard

Configuring GroupVPN using the VPN Policy Wizard

Using the VPN Policy Wizard

Connecting the Global VPN Clients

Configuring a Site-to-Site VPN using the VPN Wizard

Using the VPN Wizard to Configure Preshared Secret

Using the Wireless Wizard

Configuring Additional Wireless Features

Internet Connectivity Using the Setup Wizard

Using the PortShield Wizard

Configuring a Static IP Address with NAT Enabled

Introduction

Overview of Common Criteria Operation

Use of GUI Interface for Local Management

Related Documents

SonicOS Enhanced 3.2 Administrator's Guide

SonicOS Log Events Reference Guide

Copyright Notice

Trademarks

Limited Warranty

SonicWALL Technical Support

More Information on SonicWALL Products


www.SonicWALL.com
SonicWALL, Inc.
http://www.sonicwall.com
1160 Bordeaux Drive
Sunnyvale, CA 94089-1209
Table of ContentsPreviousNextIndex