Manuel d'utilisation / d'entretien du produit RV320 du fabricant Cisco Systems
Aller à la page of 125
Cis c o R V320/R V325 Gigabit Dual W AN VPN Router ADMINISTR A TION GUIDE.
First Published in A ugust 2014 Last Update in Mar 2015.
Cisco RV320/RV325 Ad ministration Guid e 3 Con te n ts Chapter 1: Getting Started 7 Using the Getting Started Window 7 Features of the User Interface 8 Chapter 2: Wizard 11 Basic Setup 11 Access Rule .
Cisco RV320/RV325 Ad ministration Guid e 4 Con te n ts Adding or Editing a Servic e Name 39 Setting Up One-to-One NAT 39 MAC Address Cloning 40 Assigning Dynamic DNS to a WAN Interface 41 Advanced Rou.
Cisco RV320/RV325 Ad ministration Guid e 5 Con te n ts Backup and Restore 68 Chapter 7: Port Management 71 Port Setup 71 Port Status 72 Traffic Statistics 73 VLAN Membership 73 Map DSCP to queue 74 Map CoS to DSCP 74 802.
Cisco RV320/RV325 Ad ministration Guid e 6 Con te n ts Advanced Setting 105 Chapter 10: Certificate Management 107 My Certificate 107 Trusted SSL Certificate 109 Trusted IPsec Certificate 109 Certific.
1 Cisco RV320/RV325 Ad ministration Guid e 7 Get ting St ar te d Thank you f or choo sing a Cisco RV320. This chapter includes inf ormation t o help you get started using your device. Using the Get ting St ar te d Window The default settings are sufficient f or many small busines ses .
Getting Started Fea ture s o f the User In terface 8 Cisco RV320/RV325 Administration Guide 1 STEP 7 T o configure other settings , use the links in the navigation tr ee. Troubleshooting Tips If you ha ve tr ouble connecting to the Int ernet or the web-b ased web int er face: • V erif y that your web browser is not set to W ork Of fline.
Get ting Star ted F ea tur es of the User In terface Cisco RV320/RV325 Ad ministration Guid e 9 1 Help T o view inf ormation about the se lect ed configuration page, click Help near the t op right corner of the web int erface. If your web browser displays a warning mes sage about the pop-up window , allow the blocked content .
Getting Started Fea ture s o f the User In terface 10 Cisco RV320/RV325 Administration Guide 1.
2 Cisco RV320/RV325 Ad ministration Guid e 11 Wizar d From the W i zar d page, y ou can launch the Basic Setup wizard that guides you through the pr oces s of initial configuratio n of the devic e. The Acces s Rule wizar d guides you through the pr oces s of configuring the se curity policy f or the network .
Wizard Acces s R u l e Se tu p 12 Cisco RV320/RV325 Administration Guide 2.
3 Cisco RV320/RV325 Ad ministration Guid e 13 System Summ ar y The Syst em Summar y displa ys inf ormation about the current status of the device connections , status, s ettings , and logs . System Informa tion Syst em inf ormation descriptions : • Ser ia l N um be r — Serial numb er of the device.
System Summary Configur a tion (W iz ar d) 14 Cisco RV320/RV325 Administration Guide 3 C onfigura tion ( Wizard) T o acce ss the Internet connection setup wizard and be prompt e d through the pr ocess, cl ic k Se t u p W i z a r d to launch the Wizard .
System S ummary IPv4 and I Pv6 Cisco RV320/RV325 Ad ministration Guid e 15 3 • VL AN— VL AN ID of this port . Ther e ar e two predefined VLANs : 25 and 100 . VLAN 25 can b e used f or gue st VLAN acce ss and VL AN 100 can be used f o r V oice traf fic.
System Summary Sec u r i ty S t a tu s 16 Cisco RV320/RV325 Administration Guide 3 S e curit y Status This se ction displa ys the status of the security featur e s: • SPI (Stateful Pack et Inspe ction) —Status of the fir ewall: On (green) or Of f (red).
System S ummary SSL VP N St a tus Cisco RV320/RV325 Ad ministration Guid e 17 3 • PPTP T unnel(s) Use d— Point -t o-P oint T unneling Prot ocol (PPTP) tunnels in use.
System Summary Log Setting Status 18 Cisco RV320/RV325 Administration Guide 3.
4 Cisco RV320/RV325 Ad ministration Guid e 19 Se t u p Use the Setup > Net work page t o set up your LAN, W AN (Internet), DMZ, and so fo r t h . Se t u p N etwo rk T o op en the Network page, click Setup > Network . Some IS Ps r equire that you assign a hostname and domain name to identify your dev ice .
Setup Se t up N e twor k 20 Cisco RV320/RV325 Administration Guide 4 Adding or Editing an IPv4 Network By default one IPv 4 LAN subnet work is configur ed, 192.
Setup Se t up N e twor k Cisco RV320/RV325 Ad ministration Guid e 21 4 T o c onfigur e WA N C o n n e c t i o n S e t t i n g s , s elect a W AN interface and click Edit .
Setup Se t up N e twor k 22 Cisco RV320/RV325 Administration Guide 4 - Configure t o R A and DHCP v6 automatically—Provide Stat eless an d Stateful IPv6 address es f or LAN-side P Cs. Static IP Choos e this option if y our ISP as signed a permanent IP address to your account .
Setup Se t up N e twor k Cisco RV320/RV325 Ad ministration Guid e 23 4 PPPoE Choo se this option if y our ISP use s PPP oE (P oint -to-P oint Pr ot ocol over Ethernet) t o establish Internet connections (typical f or DS L lines).
Setup Se t up N e twor k 24 Cisco RV320/RV325 Administration Guide 4 T o configure the IPv6 parameters, che ck Enable . The DHCP v6 client proces s and requests f or pr efix delegation through the selected interface are enabled. Use this option when your ISP is capable of sendin g LAN prefixes by using DHCP v6.
Setup Se t up N e twor k Cisco RV320/RV325 Ad ministration Guid e 25 4 - Co nnec t on De mand — When this f eature is enabled, the device automatically establishes your connection. If you enabled this f eatu r e, ent er the Max Idle Time , the number of minutes that the connection can be inactive bef ore the connection is terminat ed.
Setup Se t up N e twor k 26 Cisco RV320/RV325 Administration Guide 4 T o specif y a DNS ser ver , enter the IP addr ess of DNS S er ver 1 . Optionally , you can enter a second DNS ser ver . The first available DNS ser ver is use d. T o set the maximum transmis sion unit ( MTU ) size aut omatically , sele ct Auto .
Setup Se t up N e twor k Cisco RV320/RV325 Ad ministration Guid e 27 4 • LA N I Pv6 Ad d r es s — Global IP v6 prefix that was assigned by your IS P f or your LAN device s, if applicable.
Setup Se t up N e twor k 28 Cisco RV320/RV325 Administration Guide 4 - Without any action —Doe s not pr ovide Stat eles s or Stat eful IP v6 address f or LAN-side PCs . - Configure to R A automatically —Provides Sta te l ess IPv6 address f or LAN -si de PC s.
Setup Se t up N e twor k Cisco RV320/RV325 Ad ministration Guid e 29 4 - Configure to R A automatically —Provides Sta t e l ess IPv6 addres s f or LAN - s id e PCs. - Configure to DHCP v 6 automatically —Provides St a t e f u l IPv6 address fo r L A N - s i d e P C s .
Setup Se t up N e twor k 30 Cisco RV320/RV325 Administration Guide 4 Se tting Failover and Rec over y While both an Ethernet and mobile net work link might be available, only one conne ction at a time can be used to establish a W AN link .
Setup Se t up N e twor k Cisco RV320/RV325 Ad ministration Guid e 31 4 - Ex tra Charge —C ost in do ll ar s i f a gi v en pe riod of t im e i s e xceed ed. - Stop c onnec tion ...—Check to enable dr opping the connection when the time ex cee ds the given time.
Setup DMZ Enabl e 32 Cisco RV320/RV325 Administration Guide 4 DMZ Enable A DMZ is a subnet work that is open t o the public but behind the firewall. A DMZ allows you t o r edirect packets coming int o y our W AN p ort to a specific IP addres s in your LAN.
Setup Passw or d Cisco RV320/RV325 Ad ministration Guid e 33 4 ! CAU TI O N Th e pa s s wo rd c ann o t b e re c ov ere d i f i t i s l o st or f orgot t en. If the password is lost or f orgotten, the device must be reset to the f actory default set tings, removing all configuration changes .
Setup Ti m e 34 Cisco RV320/RV325 Administration Guide 4 When Minimum P assword Complexit y - Enable is check ed, the Pas sword Strength Meter indicat es the pas swor d str ength, base d on the complexity rule s. The scale range s fr om r ed (unacc eptable) to y ellow (acc eptable) to gr een (str ong).
Setup DMZ Ho st Cisco RV320/RV325 Ad ministration Guid e 35 4 • Day light Savings Time —Enable or disable the adjustment f or daylight savings time. Ent er the start date in the Fro m fields and ent er the st op dat e in the To fields. • Set Date and Time — Auto enables the NTP ser ver .
Setup (Por t) F orwarding 36 Cisco RV320/RV325 Administration Guide 4 T o add or e dit a servic e t o the table: STEP 1 T o add a ser vice, click Add in the Port Range Forwarding table. T o edi t a service , se lec t t he r ow an d c li ck Edit . The fields ar e open f or modification.
Setup (Port) Forwarding Cisco RV320/RV325 Ad ministration Guid e 37 4 STEP 4 Click Sav e . Configuring Port Triggering Po r t triggering allows the device to monit or outgoing data f or sp ecific por t numbers . The IP addr es s of the client that sent the matching data is r emembered by the device.
Setup Port Address T ransla tion 38 Cisco RV320/RV325 Administration Guide 4 Por t A ddr e s s T ransla tion Port Address T ranslation (P A T ) is an e xtension of Network Address T ranslation (NA T ) that permits multiple device s on a LAN to be mapped to a single public IP address to conser ve IP addr ess es .
Setup Se tt i ng U p On e -t o-On e NA T Cisco RV320/RV325 Ad ministration Guid e 39 4 Adding or Editing a S er vic e Name T o add or edit an entr y on the Ser vice list : STEP 1 Click Servi ce M a na g em en t . If the web browser displays a warning about the pop-up window , allow the blocked content.
Setup MAC Address Cloning 40 Cisco RV320/RV325 Administration Guide 4 T o enable this f eatur e, check Enable . T o add an entr y to the list, click Add and enter the f ollowing information: • Private Range Be gin— Starting IP addres s of the int ernal IP addr es s range that you want t o map t o the public range.
Setup Assigning Dynamic DNS to a W AN In ter f ace Cisco RV320/RV325 Ad ministration Guid e 41 4 A s signing D ynamic DNS to a W AN Inter face Dynamic Domain Name Syst em (DDNS) ser vice as signs a fix e d domain name t o a dynamic W AN IP address , so you can host your own web, FTP , or another t ype of T C P /IP ser ver on your LAN.
Setup Advanc ed Routing 42 Cisco RV320/RV325 Administration Guide 4 Advanc e d Routing This f eatur e enables dynamic routing and adds static r out es to the r outing table f or IP v 4 and IP v6. T o view the r outing table, click View Routing T able .
Setup Advance d Routing Cisco RV320/RV325 Ad ministration Guid e 43 4 ( VLSM). RIP v 1 als o lacks support f or rout er authentication, making it vulnerable to attacks .
Setup Inbound L oad Balance 44 Cisco RV320/RV325 Administration Guide 4 T o delet e an entr y from the list, click the entr y that you want to delet e, and then click Del e te . T o view current data, click View Routing T able . The Routing T able Entr y List appears .
Setup USB Devic e Update Cisco RV320/RV325 Ad ministration Guid e 45 4 STEP 6 Click SPF S et tings t o add SPF te xt . S PF (Sender Policy Framework) is an email validation syst em that pr events email spam by det ecting email spoofing (a common vulnerabilit y) by verifying sender IP ad dr es ses .
Setup USB Devic e Update 46 Cisco RV320/RV325 Administration Guide 4.
5 Cisco RV320/RV325 Ad ministration Guid e 47 DHCP Dynamic Host C onfiguration Pr otocol (DHCP) is a network protocol that is used to configure network device s t o communicate on an IP network .
DHCP DHCP Setup 48 Cisco RV320/RV325 Administration Guide 5 DHCP S etup DHCP Setup configures DHCP f or IP v 4 or IPv6. It als o allows some devices to download their configuration from a TFTP se r ver .
DHCP DHCP S etup Cisco RV320/RV325 Ad ministration Guid e 49 5 • Client Lease Time —Amount of time in minute s that a network user is allowed to connect to the rout er with the curr ent IP addr es s. V alid values are 5 t o 43200 minut es . The def ault is 1440 minut es (equal to 24 hours ).
DHCP V iewing the DHCP Sta tus 50 Cisco RV320/RV325 Administration Guide 5 • DHCP Rela y —Pa s s es D HC P re qu es t s a nd rep lie s fro m a no th er DH CP ser ver through the device. • Client Le ase Time —Amount of time that a net work user is allowe d t o connect to the rout er with the curr ent IP addr es s.
DHCP Option 82 Cisco RV320/RV325 Ad ministration Guid e 51 5 • To t a l — T otal number of dynamic IP addres ses manage d by the DHCP ser ver . The Client T able shows the DHCP client inf ormation: • Client Host Name— Name assigned to a client host .
DHCP IP and MAC Binding 52 Cisco RV320/RV325 Administration Guide 5 IP and MA C Binding When the device is configured as a DHCP ser ver or f or DHCP r ela y , you can bind static IP ad dr es ses to up to 100 netwo rk device s, such as a web ser ver or an F TP server .
DHCP DNS Local Databas e Cisco RV320/RV325 Ad ministration Guid e 53 5 Edit or Delete Bound Entries To Edit the set tings , select an entr y in the list and click Edi t . The inf ormation appears in the te xt fields . Make the changes, and click Sa ve .
DHCP Rout er Adver tisement (IPv6) 54 Cisco RV320/RV325 Administration Guide 5 T o change the T CP /IP connection settings , f or e xample, on a P C running W indows, go to the L ocal Area Connection Proper tie s > I n ternet Protocol > TCP /IP Proper tie s window .
DHCP Rout er Adver tisement (IPv6) Cisco RV320/RV325 Ad ministration Guid e 55 5 ent er the Adver tis ement In ter val ; the int er val at which Rout er Advertisement mes sages are sent. Enter an y value between 10 and 1800 seconds . The default is 30 seconds .
DHCP Rout er Adver tisement (IPv6) 56 Cisco RV320/RV325 Administration Guide 5.
6 Cisco RV320/RV325 Ad ministration Guid e 57 System Man agement Syst em Management configures advanced set tings, such as diagno stic t ools, and per f orms tasks such as firmware upgr ades , backup s, and device rebo ots.
System Management Dual W AN Conne c tions 58 Cisco RV320/RV325 Administration Guide 6 • Dow ns t r ea m — Ma ximum downstr eam bandwidth pr ovided by your ISP .
Syste m Mana gem en t Band wid th M ana gem en t Cisco RV320/RV325 Ad ministration Guid e 59 6 T o enable the prot ocol binding, check the box to enable this rule, or uncheck the box to di sable it . To Edit the set tings, s elect an entr y in the list .
System Management Ban dw i dt h M a na ge me n t 60 Cisco RV320/RV325 Administration Guide 6 T o open b andwidth management , select Syste m M ana ge me nt > Ba n dw id th Management in the na vigation tree.
Syste m Mana gem en t SNMP Cisco RV320/RV325 Ad ministration Guid e 61 6 • Direc tion— Sel ect Upstream for outbound traffic. S elect Do w n s t r ea m fo r inbound traffic. • Priorit y— Cho ose the priorit y f or this ser vice : High or Low .
System Management SNMP 62 Cisco RV320/RV325 Administration Guide 6 • Tr a p C o m m u ni t y N a m e — P assword sent with each trap t o the SNMP manager . The string can be up to 64 alphanumeric charact ers. The default is public . • Enable SNMP v1 /v2c— Enable s SNMP v 1 /v2c.
Syste m Mana gem en t Disc over y -Bonjour Cisco RV320/RV325 Ad ministration Guid e 63 6 STEP 5 Click Sav e . T o ad d or edit a user : STEP 1 Click Add or select a user and click Edit in the Us er T able. STEP 2 Enter the User Name . STEP 3 Select the Group fr om the drop-down menu.
System Management LLDP Proper ties 64 Cisco RV320/RV325 Administration Guide 6 LLDP Proper tie s Link Lay er Discover y Pro tocol (LLDP) is a vendor -neutral prot ocol in the Internet Pr otocol Suit e.
Syste m Mana gem en t Using D iagno s tic s Cisco RV320/RV325 Ad ministration Guid e 65 6 Using Diagno stic s The Diagnostic pag e acces se s two built-in t ools , DNS Name L ookup and Ping. If you suspect a problem with connectivity , you can use these tools to in vestigate the cause.
System Management Fir mw are Up gr ad e 66 Cisco RV320/RV325 Administration Guide 6 F irm ware Upgrade This f eatur e downloads the firmwar e f or your device from a PC or a US B Flash drive and installs it . The window displays the F irmwar e V ersion curr ently running on the device.
Syste m Mana gem en t Re sta r t Cisco RV320/RV325 Ad ministration Guid e 67 6 Alt ernatively , you can choose a language in the f ollowing wa ys: • On the L ogin page, choos e a language fr om the La ngu ag e dr op-down list . • On all configuration p ages, cho ose a lang uage from the dr op-down list at the t op right- hand corner .
System Management Bac ku p an d R est o r e 68 Cisco RV320/RV325 Administration Guide 6 B ackup and Re store Configuration files can be impor t ed, expor t ed, and copied .
Syste m Mana gem en t Back up a nd R e s t or e Cisco RV320/RV325 Ad ministration Guid e 69 6 STEP 3 Click Sav e and choose a file location. Optionally , enter a filename and click Sa ve . TIP The default filenames are St a r tu p .c o n f i g and Mi rr or .
System Management Bac ku p an d R est o r e 70 Cisco RV320/RV325 Administration Guide 6.
7 Cisco RV320/RV325 Ad ministration Guid e 71 Por t Man agemen t Use Port Management to configure port s ettings and view the status of the por t . Y ou can enable por t mirroring, disable a por t , or set the priorit y , spe ed, duple x mode, and auto-negotiation.
Port Management Por t S tatu s 72 Cisco RV320/RV325 Administration Guide 7 Ent er the f ollowing sett ings: • Dis able— Check this box to disable a por t . By default, all por ts are enabled. • EEE —Check this box to enable Energy-Efficient Ethernet that r educe s the consumption of power during pe rio ds of low data activity .
Por t Management T r af f ic S t at is ti c s Cisco RV320/RV325 Ad ministration Guid e 73 7 Traf f i c St at i s t i c s T o op en this page, select Por t Management > T ra f fic Statistics in the navigation tree. F or the selected por t , the Statistic s table displays the f ollowing : • Por t ID —Location of the por t .
Port Management Map DSCP to queue 74 Cisco RV320/RV325 Administration Guide 7 Map DS CP to queue This option gr oups traffic by clas ses of s er vice (CoS) , ensuring bandwidth and higher priorit y f or the sp ecifie d ser vic es. All traf fic that is not added to the IP Gr oup uses Int elligent Balancer mode.
Por t Management 802. 1 X C onfigur ation Cisco RV320/RV325 Ad ministration Guid e 75 7 802. 1 X C onfiguration Po r t -based network ac cess c ontr ol uses the physical access characteristics of IEEE.
Port Management 802. 1 X Configur a tion 76 Cisco RV320/RV325 Administration Guide 7.
8 Cisco RV320/RV325 Ad ministration Guid e 77 F irewall The primar y objective of a firewall is t o control the incoming and outgoing network traffic by analy zing the data pack ets and det ermining whether it should be allowed through or not , base d on a pr edet ermined rule s et .
Firewall Se ssion T ime out 78 Cisco RV320/RV325 Administration Guide 8 • Remote Management —Allows r emot e management of the device when enabled.
Fi re wa l l Acc ess Rule s Cisco RV320/RV325 Ad ministration Guid e 79 8 UDP timeout —Input the timeout value of UDP s essions . The default f or UDP timeout is 30 seconds .
Firewall Acc ess Rules 80 Cisco RV320/RV325 Administration Guide 8 STEP 11 Click Sa ve . Adding an Access Rule to the IPv6 Access Rule Table T o add (or edit) an IP v6 acce ss rule : STEP 1 Click the IP v6 tab. STEP 2 Click Add (or select the row and click Edit ).
9 Cisco RV320/RV325 Ad ministration Guid e 81 VPN A VPN is a connection b etwe en two endpoints in dif f erent networks that allows private data t o be sent se cur ely over a shar ed or public net work , such as the Internet.
VPN Summar y 82 Cisco RV320/RV325 Administration Guide 9 • Dom a i n N a m e 1 thr ough 4 —If this r out er has a static IP addr ess and a regist er ed domain name, such as MyS er ver .MyDomain.com , ent er the Dom a i n N a m e t o use f or authentication.
VPN Gateway to Ga teway Cisco RV320/RV325 Ad ministration Guid e 83 9 • Remote Client —IP addr es s and subnet mask of the Remot e Client . • De tails — IP add re s s o f t he R em ote Gate way . • Tu n ne l T e s t — Status of the VPN tunnel.
VPN Gateway to Gateway 84 Cisco RV320/RV325 Administration Guide 9 • Enable— Check this b o x t o enable the VPN tunnel, or uncheck it to disable the tunnel. By default , the tunnel is enabled. Lo cal Group S etup Ent er the settings f or the L ocal Gr oup Setup f or this rout er .
VPN Gateway to Ga teway Cisco RV320/RV325 Ad ministration Guid e 85 9 If both rout ers ha ve dynamic IP addr ess es (as with PPPoE connections), do not choos e Dynamic IP + Email A ddr . for b o t h g a t e w a y s . Fo r t h e rem ote ga tew ay , c ho o s e IP A ddress and IP Ad d r ess b y D N S R eso lv ed .
VPN Gateway to Gateway 86 Cisco RV320/RV325 Administration Guide 9 VPN r outer , choos e IP Addres s , and ent er the address . If you do not know the IP address of the remot e VPN r out er , sele ct IP by DNS Res olve d , and ent er the domain name of the r out er .
VPN Gateway to Ga teway Cisco RV320/RV325 Ad ministration Guid e 87 9 IPSec Setup F or encr yption to be succes sful, the t wo ends of a VPN tunnel must agree on the methods of encr yption, de cr yption, and authentication. Enter e xactly the same sett ings on both r outers.
VPN Gateway to Gateway 88 Cisco RV320/RV325 Administration Guide 9 • Preshared Key— Pre sh are d ke y to us e to a ut he nt ic ate th e re mo te I K E p e er . Y ou can enter up to 30 k eyboard chara ct ers or hexadecimal values, such as My_@ 123 or 4d795f 40313233 (' ' " ar e not suppor t ed).
VPN Gateway to Ga teway Cisco RV320/RV325 Ad ministration Guid e 89 9 • AH Hash Algorithm— Au thentication Header (AH) pr otocol describ es the pack et f ormat and default standar ds f o r packet structur e.
VPN Cli ent to Gateway 90 Cisco RV320/RV325 Administration Guide 9 - Remote B ackup IP Address— Alternative IP addr ess f or the r emot e peer , or r eenter the W AN IP addr ess that was alre ady set f or the remot e gat eway . - Loc al Inter face— W AN interface to use to r eestablish the connection.
VPN Clie nt to Gateway Cisco RV320/RV325 Ad ministration Guid e 91 9 • Group VPN— Cr eat es a tunnel f or a group of users, eliminating the nee d t o configure individual users. All of the remote users can use the same Preshar ed Ke y to connect to the device, up to the maximum number of suppor ted tunnels.
VPN Cli ent to Gateway 92 Cisco RV320/RV325 Administration Guide 9 - IKE with Cer tificate— Use a cer tificat e to authenticat e a r emot e IKE peer . • Enable— Check to enable this VPN. Configurin g Easy VPN Enter the f o llowing inf ormation: • Name— Name t o describ e the tunnel.
VPN Clie nt to Gateway Cisco RV320/RV325 Ad ministration Guid e 93 9 • Ex tended Authentic a tion —Uses an IPs ec host username and pas sword t o authenticat e the VPN clients or it us es the user databas e f ound in User Management . T o use the IPse c Host , click the radio but ton and ente r the Us er Name and Pas sword .
VPN Cli ent to Gateway 94 Cisco RV320/RV325 Administration Guide 9 hostname. Enter an Email Addres s t o use f or authentication. If both rout ers ha ve dynamic I P addr es ses (as with PPPoE connections), do not choos e Dynamic IP + Email Address f or both gat ewa ys.
VPN Clie nt to Gateway Cisco RV320/RV325 Ad ministration Guid e 95 9 If you know the IP addr es s of the r emot e VPN client , choos e IP Address , and then ent er the addr es s. If you do not know the IP addr ess of the remot e VPN client , select IP by DNS Re solve d , and then ent er the r eal domain name of the client on the Int ernet .
VPN Cli ent to Gateway 96 Cisco RV320/RV325 Administration Guide 9 IPSec Setup F or encr yption t o be succe ssful, the t wo ends of a VPN tunnel must agr ee on the methods of encr yption, de cr yption, and authentication. Ente r exactly the same set tings on both rout ers .
VPN Clie nt to Gateway Cisco RV320/RV325 Ad ministration Guid e 97 9 • Pres hared Key— Preshared k ey t o use t o authenticate the r emot e IKE peer . Y ou can enter up t o 30 k eyboard charact ers or he xadecimal values , such as My_@ 123 or 4d795f 40313233.
VPN Cli ent to Gateway 98 Cisco RV320/RV325 Administration Guide 9 • AH Hash Algorithm— Authentication Header (AH) pr ot ocol describ es the pack et f o rmat and def ault standar ds f o r packet structur e.
VPN VPN Passthrough Cisco RV320/RV325 Ad ministration Guid e 99 9 VPN Pas sthrough VPN Passthrough allows VPN clients t o pass through this r outer and connect to a VPN endpoint and is enable d by def ault . T o op en this page, select VPN > VPN Pas sthrough in the na vigation tr ee.
VPN SSL VP N 100 Cisco RV320/RV325 Administration Guide 9 S SL VPN A SS L VPN (Se cur e Sockets La yer virtual private network) allows users to establish a se cur e, r emote-acces s VPN tunnel t o this device by using a web browser . Users do not ne ed a soft ware or har dwar e client pr einstalled on their computers.
VPN SSL VP N Cisco RV320/RV325 Ad ministration Guid e 101 9 STEP 4 Click on Vi rtu a l P assa g e page. Choose C onnec t using Vir tual Pass age . A warning mes sage window pop s out . Click on Install button (install Xtunnel_W OW 64.cab ) t o establish a tunnel.
VPN SSL VP N 102 Cisco RV320/RV325 Administration Guide 9 • Res ource —Sy st em r esou r ces the g r o up is al lo wed t o access. Cli ck De ta il s to d is p lay . • Status —Group status. Delete a Group T o delet e a gr oup, click the name of the group that y ou want t o r emove in the SS L Status table and click De l e te .
VPN SSL VP N Cisco RV320/RV325 Ad ministration Guid e 103 9 • My De sktop —Enables RDP5 and VNC. Remo te Deskt op Pr ot ocol Client Enhancements ( RDP5 ) ActiveX bookmarks now suppor t advanced W indows options f or r esource mapping, with options to r edirect drives, r edirect printers, redirect por ts, and redirect smar tCar ds.
VPN SSL VP N 104 Cisco RV320/RV325 Administration Guide 9 Re source Man agement SS L VPN suppor ts common Microsoft terminal ser vices including W ord, Ex cel, PowerP oint , Acces s, Outlo ok , Int ernet Explorer , Fr ontP age, and ERP .
VPN SSL VP N Cisco RV320/RV325 Ad ministration Guid e 105 9 Advan ce d Setting Advance d SS L VPN set tings limit the range of IP addr es s that can acces s ser vices , change the ser vice p ort , or modify the ba nners. T o op en this page, select SSL V P N > Adv anced Setting in the na vigation tree.
VPN SSL VP N 106 Cisco RV320/RV325 Administration Guide 9.
10 Cisco RV320/RV325 Ad ministration Guid e 107 C er tific a te Management A digital c ertifi cat e cer tifie s the ownershi p of a public ke y by the named subject of the cer tificate. This allows othe rs (r elying par ties) to r ely up on signatures or ass er tions made by the private k ey that corresponds to the public k e y that is cer tified.
Certificate Management My Cer tificat e 108 Cisco RV320/RV325 Administration Guide 10 Exporting or Displaying a Certificate or Private Key The client cer tificate enables the client t o conne ct t o the VPN.
Cer tificate Management T rust ed S SL Cer tificat e Cisco RV320/RV325 Ad ministration Guid e 109 10 T ruste d S SL C er tific ate Secure Sockets La yer (SS L ) is the standard securit y technology f or cr eating an encr ypted link bet ween a web ser ver and a browser .
Certificate Management Certifi ca te Ge ne r a tor 110 Cisco RV320/RV325 Administration Guide 10 T o ex por t or display a certificate, click the Expor t Cer tificate icon. A pop-up window displa ys where y ou can Open the c er tificate f or insp ection or Sa v e the cer tificate t o a PC .
Cer tificate Management CSR Authoriza tion Cisco RV320/RV325 Ad ministration Guid e 111 10 • K ey Encr yption Length —L ength of the k ey . • V alid Duration —Number of da ys the cer tificat e is valid. STEP 2 Click Sav e . The My Cer tifica te window appears.
Certificate Management C S R A ut h or i zati on 112 Cisco RV320/RV325 Administration Guide 10.
11 Cisco RV320/RV325 Ad ministration Guid e 113 Lo g L ogs document the status of the syst em, either by using traps or periodically . Sys te m L og Configure Short Me ss age Ser vice (S MS) logs and aler ts . T o op en this page, select Log > System Log in the navigation tr ee.
Log Sys te m L og 114 Cisco RV320/RV325 Administration Guide 11 Configure ema il Notification T o configure E-mail notification, check En able and complete the f ollowing : • Mail S er ver —Name or IP address of the mail s er ver . • Authentication —Mail ser ver login authentication typ e.
Lo g Syst em L og Cisco RV320/RV325 Ad ministration Guid e 115 11 Configure the Logs T o trigger log entrie s, sele ct the events: • Syn Flo oding — T CP connections requests are being receive d f aster than the device can proces s them.
Log Syst em Sta tis tics 116 Cisco RV320/RV325 Administration Guide 11 Additional Information (Log Buttons) If the web browser displa ys a warning about the p op-up window , allow the blocked content .
12 Cisco RV320/RV325 Ad ministration Guid e 117 Us er Man agement User management c ontr ols domain and user acc ess , primarily use d f or PPTP , Cisco VPN Client (als o known as EasyVPN), and S SL VPN. T o op en this page, select User Management in the navigation tr ee.
User Manageme nt 118 Cisco RV320/RV325 Administration Guide 12 - Dom a i n —Domain name users sele ct t o log into the SS L VPN por tal. - LDAP Ser ver Addre ss —IP v 4 addr ess of the LDAP ser ver . - LDAP Bas e DN —Sear ch b ase f or LD AP queries.
13 Cisco RV320/RV325 Ad ministration Guid e 119 W eb F iltering W eb filt ering can pr ovide y ou with the pr ot ection against acc ess t o the inappropriat e websites bas ed on the below working mecha nism. This f eat ur e is only a vailable on the RV320- WB and RV325- WB models.
Web Filtering Cisc o Small Business W eb Fil tering Ser vic e Supplemen tal E nd User Lic ense Agreement 120 Cisco RV320/RV325 Administration Guide 13 • Click Ad d and input the value of the fields. - Name: The name of the sche dule. - Desc r ip t i o n : Desc ribe th e sc hed ul e.
Web Fi lt er i ng Cisc o Small Business W eb F ilt ering Ser vic e Supplemen tal End User Lic ense Agreement Cisco RV320/RV325 Ad ministration Guid e 121 13 1 .1 Thes e T erms des cribe the terms and co nditions of your use of the Ser vice. 1 .2 Service C han ges.
Web Filtering Cisc o Small Business W eb Fil tering Ser vic e Supplemen tal E nd User Lic ense Agreement 122 Cisco RV320/RV325 Administration Guide 13 4.2 License. Subject to the t erms and conditions of these T erms , Cisco grants to End User a limited, non-e x clusive, non-tr ansf erable license to use the Ser vic e on the Cisc o device.
Web Fi lt er i ng Cisc o Small Business W eb F ilt ering Ser vic e Supplemen tal End User Lic ense Agreement Cisco RV320/RV325 Ad ministration Guid e 123 13 T O THE GRE A TES T EX TENT ALL OWED BY APPLICABLE LA W .
Web Filtering Cisc o Small Business W eb Fil tering Ser vic e Supplemen tal E nd User Lic ense Agreement 124 Cisco RV320/RV325 Administration Guide 13 7 .3 For c e Majeure. Cisco shall not be liable for an y dela y or failure in per f ormanc e whatsoever resulting from acts beyond its r easonable control.
14 Cisco RV320/RV325 Ad ministration Guid e 125 Wher e to Go F rom Here Cisco and the Cisco logo are trademarks or registered t rademarks of Cisco and/or i ts affiliates in the U.S. and other countries . To view a lis t of Cisco tradema rks, go to th is URL: www .
Un point important après l'achat de l'appareil (ou même avant l'achat) est de lire le manuel d'utilisation. Nous devons le faire pour quelques raisons simples:
Si vous n'avez pas encore acheté Cisco Systems RV320 c'est un bon moment pour vous familiariser avec les données de base sur le produit. Consulter d'abord les pages initiales du manuel d'utilisation, que vous trouverez ci-dessus. Vous devriez y trouver les données techniques les plus importants du Cisco Systems RV320 - de cette manière, vous pouvez vérifier si l'équipement répond à vos besoins. Explorant les pages suivantes du manuel d'utilisation Cisco Systems RV320, vous apprendrez toutes les caractéristiques du produit et des informations sur son fonctionnement. Les informations sur le Cisco Systems RV320 va certainement vous aider à prendre une décision concernant l'achat.
Dans une situation où vous avez déjà le Cisco Systems RV320, mais vous avez pas encore lu le manuel d'utilisation, vous devez le faire pour les raisons décrites ci-dessus,. Vous saurez alors si vous avez correctement utilisé les fonctions disponibles, et si vous avez commis des erreurs qui peuvent réduire la durée de vie du Cisco Systems RV320.
Cependant, l'un des rôles les plus importants pour l'utilisateur joués par les manuels d'utilisateur est d'aider à résoudre les problèmes concernant le Cisco Systems RV320. Presque toujours, vous y trouverez Troubleshooting, soit les pannes et les défaillances les plus fréquentes de l'apparei Cisco Systems RV320 ainsi que les instructions sur la façon de les résoudre. Même si vous ne parvenez pas à résoudre le problème, le manuel d‘utilisation va vous montrer le chemin d'une nouvelle procédure – le contact avec le centre de service à la clientèle ou le service le plus proche.