Compatible Systems INTRAPORT 2 Service-Handbuch

IntraPort 2 and IntraPort 2+
VPN Access Server
Administrator’s Guide
Compatible Systems Corporation
4730 Walnut Street
Suite 102
Boulder, Colorado 80301
303-444-9532
800-356-0283
http://www.compatible.com

IntraPort 2 and IntraPort 2+ VPN Access Server Administrator’s Guide,
Version 1.5
Copyright © 1999, Compatible Systems Corporation
All rights reserved. IntraPort, RISC Router, MicroRouter and Compati-
View are trademarks of Compatible Systems Corporation. Other trade-
marks are the property of their respective holders.
Copyright© 1997-1999 by Hi/fn, Inc. Includes one or more U.S. Patent
Nos.: 4,701,745; 5,003,307; 5,016,009; 5,126,739; 5,146,221;
5,414,425; 5,414,850; 5,463,390; 5,506,580; 5,532,694. Other Patents
Pending.
Part number: A00-1619
FCC Notice: This product has been certified to comply with the limits
for a Class A computing device, pursuant to Subpart J of Part 15 of FCC
Rules. It is designed to provide reasonable protection against radio or
television communication interference in a commercial environment.
Operation of this equipment in a residential area could cause interfer-
ence with radio or television communication.

i
Chapter 1 - Introduction 1
ABOUT THE INTRAPORT 2/2+ VPN ACCESS SERVER 1
A NOTE ABOUT REMOTE CLIENT CONNECTIONS 1
INTRAPORT 2/2+ VPN ACCESS SERVER INSTALLATION OVERVIEW 1
Chapter 2 - Getting Started 5
A FEW NOTES 5
Please Read the Manuals 5
Warranty and Service 5
Getting Help withthe IntraPort2/2+ VPN Access Server 5
WHAT YOU WILL NEED TOGET STARTED 6
Supplied with the IntraPort 2/2+ VPNAccess Server 6
Needed for Installation 6
Ethernet Connection Requirements 7
VPN Client Software Requirements 7
Chapter 3 - Network Installation 9
Placing the Server 9
Connecting the Server to the Ethernet 9
Connecting a Management Console 10
Powering Up the Server 10
Chapter 4 - CompatiView Software Installation 11
CompatiView for Windows 11
System Requirements 11
Installation and Operation 12
Transport Protocols and CompatiView 12
Chapter 5 - Command Line Management 15
Out-of-Band Command Line Management 15
Temporarily Reconfiguring a Host for Command Line
Management 16
Setting Up Telnet Operation 16

ii
Chapter 6 - Basic Configuration Guide 19
SETUP OPTIONS 19
Diagram of Dual-Ethernet Setup 20
Diagram of Single-Ethernet Setup 21
CONFIGURATION USING COMPATIVIEW 22
VPN Client Tunnel Settings 22
CONFIGURING THE SERVER FOR LAN-TO-LAN TUNNELS 37
BASIC CONFIGURATION USING COMMAND LINE 41
VPN Client Tunnel Settings 41
CONFIGURING THE SERVER FOR LAN-TO-LAN TUNNELS 48
Chapter 7 - Alternate Protocols and Security
Parameters 50
IPX Protocol 50
Required for IPX 50
Suggested for IPX 50
AppleTalk Protocol 51
Required for AppleTalk 51
Suggested for AppleTalk 51
SETTING UP RADIUS AUTHENTICATION 51
Settingthe IntraPort for a RADIUS Server 51
RADIUS Server User Authentication Settings 52
SETTING UP SECURID AUTHENTICATION 53
Setting the IntraPort for an ACE/Server 54
ACE/Server Settings 54
SAVING ACONFIGURATION FILE TO FLASH ROM 55
Appendix A - Shipping Defaults 57
Ethernet Interfaces 57
Default Password 57
IP Defaults 57
IPX Defaults 57
AppleTalk Defaults 57

iii
Appendix B - Connector and Cable Pin Outs 58
Pin Outs for DB-25 Male to DB-25 Female RS-232 Data &
Console Cable 58
Appendix C - Security Dynamics ACE/Server
Information 59
Appendix D - LED Patterns and Test Switch Settings 61
IntraPort 2/2+ VPN Access Servers LED Patterns 61
Ethernet Back Panel Indicators LEDs 61
Front Panel LEDs 61
Sys Ready 61
Power On, No Traffic 61
Ethernet Traffic Indicators 61
IntraPort 2 Connections/Users LEDs 62
IntraPort 2+ Connections/Users LEDs 62
IntraPort 2 Special Indicators 63
IntraPort 2+ Special Indicators 63
IntraPort 2/2+ VPN Access Server Switch Settings 63
Appendix E - Downloading Software From Compatible
Systems 65
THE COMPATIBLE SYSTEMS WWW SERVER 65
Appendix F - Terms and Conditions 67

iv

Chapter 1 - Introduction 1
Chapter 1 - Introduction
About the IntraPort 2/2+ VPN Access
Server
Congratulations on your purchase of the IntraPort 2 or IntraPort 2+
VPN Access Server. These VPN Access Servers provide secure
Internet-based remote access and site-to-site connections.
The IntraPort 2 will support up to 16 simultaneous LAN-to-LAN
connections and up to 64 simultaneous remote client connections. The
IntraPort 2+ will support up to 32 simultaneous LAN-to-LAN connec-
tions and up to 500 simultaneous remote client connections.
A Note About Remote Client Connections
In order to create a tunnel to a network over the Internet, remote users
must run VPN Client software on a Windows95/98 PC, Windows NT
PC, Mac OS, Linux, or Solaris computer which is connected to the
Internet via PPP or Ethernet.
The IntraPort VPN Clients are applications which set up the remote
access VPN tunnels to the IntraPort 2/2+ VPN Access Server and make
sure that appropriate data gets sent.
The clients work in conjunction with your communications software.
Connections can be made to the Internet via PPP software or over a
local intranet via your workstation’s LAN adapter. Together, these
pieces provide cost-effective on-demand connections to your corpo-
rate network.
IntraPort 2/2+ VPN Access Server Installa-
tion Overview
This manual will help you install either the IntraPort 2 or the IntraPort
2+ VPN Access Server on your Local Area Network. For an overview
on installing and running the VPN Client software at remote user loca-
tions, refer to the VPN Client Reference Guide. For the most up-to-date
information available on Compatible Systems products, please visit the
Technical Support section of our Web site at:
http://www.compatible.com.

2Chapter 1 - Introduction
In short, the installation steps are:
1. Install the IntraPort 2 or IntraPort 2+ hardware on your Ethernet
LAN and connect one or both of the 10/100 twisted-pair Ethernet
interfaces to a Fast Ethernet or Ethernet hub.
2. Select the management tool you wish to use with the server. If you
want to use the CompatiView management software, you must
install the software on a Windows PC computer which is connected
to your network.
3. Configure the IntraPort 2/2+ LAN and tunnel parameters using the
management tool you have chosen.
4. Install and Configure the VPN Client software for remote users.
The manual is divided into several sections that should provide you
with all the information you will need to use the IntraPort 2/2+ on
your network.
Getting Started
This part of the manual describes the contents of the IntraPort 2/2+
package and outlines the preparation and equipment you will need to
install the device.
Network Installation
This part of the manual includes step-by-step instructions on how to
physically install the server and connect it to your local Ethernet.
Instructions are included for twisted-pair Ethernet environments.
CompatiView Software Installation
This part of the manual describes how to install CompatiView,
Compatible Systems’GUI (Graphical User Interface) management
software which is included with your server.
Command Line Preparation
This part of the manual provides basic instructions for using command
line management and text-based configuration.
Basic Configuration Guide
This part of the manual contains a minimal list of parameters that must
be entered into a server for proper operation using CompatiView,
Compatible Systems’management software, and text-based configura-
tion.

Chapter 1 - Introduction 3
Alternate Protocols and Security Parameters
This part of the manual lists configuration parameters that must be set in
order to use the IntraPort 2/2+ VPN Access Server with protocols other
than TCP/IP, and when using additional security parameters such as
SecurID and RADIUS.
Appendices
Additional information that might be of interest to you, such as tech-
nical specifications, default settings, and how to download current soft-
ware from Compatible Systems’website, can be found at the end of this
guide.

.
Dieses Handbuch passt für folgende Modelle
1
Inhaltsverzeichnis
Andere Compatible Systems Server Handbücher
Beliebte Server Handbücher anderer Marken

iRobo
iRobo IPC2U Bedienungsanleitung

Nortel
Nortel 1000 Con?guration guide Bedienungsanleitung

Asus
Asus AP7500 Bedienungs- und Wartungshandbuch

Avid Technology
Avid Technology AirSpeed 5000 Bedienungsanleitung

HP
HP Integrity rx2600 Installationsanleitung

Milestone
Milestone Husky IVO 350T Bedienungsanleitung













