Cyberoam NetGenie User Manual

Use
Guide
r
User Guide
Use
Guide
r
Table of Contents
Preface ................................................................................................................... 5
Intended Audience.......................................................................................................................... 5
Guide Organization......................................................................................................................... 5
Typographic Conventions ............................................................................................................... 6
Part 1: Deploy your NetGenie .................................................................................. 7
Introduction ............................................................................................................. 7
Know your NetGenie ...................................................................................................................... 7
Defaults .......................................................................................................................................... 8
Surf using NetGenie ............................................................................................... 8
Getting your NetGenie Ready ........................................................................................................ 8
Identify your Office Internet Setup .................................................................................................. 8
Access Internet ............................................................................................................................. 16
Part 2: Internet Controls ........................................................................................ 17
Access NetGenie .......................................................................................................................... 17
Set System Time .......................................................................................................................... 18
Add User ....................................................................................................................................... 19
User Internet Access .................................................................................................................... 21
Part 3: What can NetGenie do for you? ............................................................... 24
Registration .................................................................................................................................. 24
Why do I need to register my appliance and how do I do it? .......................................... 24
Internet Access ............................................................................................................................. 25
Is it mandatory to create a user in NetGenie in order to access Internet? ...................... 25
How can I access and configure my NetGenie appliance? ............................................. 25
I want to apply different levels of Internet restrictions to different users as per their role
and requirement in my organization, how can I do so? ........................................................... 25
Will all of the organization employees receive authentication page every time they try to
access Internet through NetGenie? ......................................................................................... 26
Do I need to manually add each website, which I want to be allowed for my employees? 26
How can I customize Website category access for a specific user? ............................... 26
I want to allow my employees accessing game sites after office hours. What should I
do? 28
How can I apply time-based Internet access? ................................................................ 28
I’m receiving “Blocked Website” message when I try to access www.google.com through
NetGenie. Is there any way one can allow access to the blocked website(s) from the
authentication page? ................................................................................................................ 29
I want to know the categorization for a Website. Is there any way to know the same
using NetGenie? ...................................................................................................................... 30
I want to allow only Yahoo Messenger to my employee ‘A’, that too in the evening
between 6 to 9. I also want to block any other chat messengers, what should I do? .............. 31
I am not able to access the Internet using my smartphone, why? .................................. 33
I want to allow or block some websites for all users; do I need to individually configure
this setting for each and every user? ....................................................................................... 34
Is there any way to allow/block websites globally? ......................................................... 34
Does NetGenie allow access to uncategorized websites? ............................................. 34
How can I block the websites, which are not categorized by NetGenie? ....................... 34
What if one of my employees forgets their password? ................................................... 35
I am a traveler and use USB modem to get Internet access; can NetGenie ensure me
safe Internet? ........................................................................................................................... 35
My ISP has given me an IP address, where do I need to specify the same in NetGenie? 35
Device Whitelisting ....................................................................................................................... 36
How do I make sure that every time I login using my laptop, I do not have to see the
authentication page? ................................................................................................................ 36
I do not want to authenticate every time I try to access the Internet using NetGenie.
What should I do? .................................................................................................................... 36
Use
Guide
r
System .......................................................................................................................................... 37
How do I change my NetGenie administrator password? ............................................... 37
How can I view system and security status of my NetGenie Appliance? ........................ 37
Networking .................................................................................................................................... 38
How many computers or devices can be connected wirelessly to Ne tGenie at the same
time?......................................................................................................................................... 38
Internet access through my NetGenie appliance has stopped. What should I do? ........ 38
How do I know that my NetGenie is having Internet connection? ................................... 38
How can I verify that my NetGenie appliance is Wi-Fi enabled? .................................... 38
How can I wirelessly connect my laptop to NetGenie? ................................................... 39
Can I insert my telephone cable directly to my NetGenie appliance to access Internet?39
I do not want others to see my network due to security reasons. Is there any way to hide
visibility of my network to wireless users? ............................................................................... 39
Can I change the name of my Network? ......................................................................... 40
Security ......................................................................................................................................... 41
Does NetGenie protect my network from viruses and other malicious software? .......... 41
I want to protect my network from viruses. What should I do? ....................................... 41
What is the frequency of malware signature updates? Can I customize it? ................... 41
Can I manually update malware signature database? .................................................... 42
How can I upgrade my NetGenie appliance with malware signature updates if I am not
connected to Internet? ............................................................................................................. 42
Upgrade, Back-up, Restore .......................................................................................................... 43
How can I check availability of upgrade(s) available for my NetGenie appliance? ......... 43
Can I apply downloaded firmware upgrade(s) to my NetGenie appliance? .................... 43
Can I save my current NetGenie configuration for future use i.e. in case of system crash
or change in settings? .............................................................................................................. 43
My system is crashed but I do have configuration back-up I took a few days back. What
should I do to restore my NetGenie settings: ........................................................................... 44
How to restore configuration back-up in NetGenie appliance? ....................................... 44
How can I restore Factory Default Configuration? .......................................................... 45
How many configuration snapshots can I store on NetGenie appliance? ...................... 45
Logs and Reports ......................................................................................................................... 46
I want to find out which websites are being accessed by my employees in my absence.
How can I check it? .................................................................................................................. 46
From where can I see overall Internet traffic passing through my NetGenie appliance? 47
I want to find out which applications are being accessed by my employees in my
absence. How can I do so? ...................................................................................................... 47
From where can I view details of viruses detected by NetGenie? .................................. 48
Can I have visibility of users who are accessing Internet through NetGenie? ................ 48
How can I view details of Intrusion attempts detected by NetGenie? ............................. 49
I have set time as per my local time zone but why is NetGenie still not showing it? ...... 51
Can I send NetGenie logs to third party server? ............................................................. 51
Is there any way to turn off NetGenie’s logging feature? ................................................ 52
Some Advanced Configuration ..................................................................................................... 52
Does NetGenie prevent my network from Web as well email-based viruses? What
happens when NetGenie encounters any Virus? .................................................................... 52
I do not want NetGenie to scan MS-Word documents for viruses, is it possible? .......... 53
What does NetGenie offer under Intrusion Prevention System? .................................... 54
Can I customize NetGenie’s intrusion prevention signatures? ....................................... 55
What is Port Forwarding? How can I configure port forwarding in NetGenie? ............... 56
Can I access NetGenie over Internet? ............................................................................ 57
Is there any single page from where I can get the complete network overview? ........... 58
I want to change the default IP address of my NetGenie appliance, can I do it? ........... 59
Why do I need to clone the MAC address of my router? ................................................ 59
I want to allow all TCP traffic passing through port 80, can I do so? .............................. 60
3
Use
Guide
r
I have set up a small network at office. I use NetGenie to surf the Internet using my laptop while I am keeping one game server behind a router, which is connected, to NetGenie.
Now if I want to access the game server using my laptop, how can it be done? .................... 61
I wish to configure VPN in NetGenie, how can I do that? ............................................... 63
Menu Structure ..................................................................................................... 65
4
Use
Guide

Preface

Welcome to Cyberoam NetGenie SOHO User Guide.

Intended Audience

This guide is intended for small and home office users with basic Internet knowledge.

Guide Organization

This guide gives you information about the administration of Cyberoam NetGenie Secure Internet appliance while helping you manage and customize NetGenie to meet your personalized Internet safety requirements.
This guide is organized in three parts:
Part 1 – Deploy your NetGenie
Part 2 – Protect your Organization
Part 3 – What can NetGenie do for you
r
5
Use
Guide

Typographic Conventions

All contents in this guide including text or screenshots follow the given list of conventions
Item Convention Example
Part titles Bold and
shaded font typeface
Topic titles Shaded font
typeface

Internet Controls

Introduction

Subtitles Bold & Black
typeface

Notation conventions

r
Navigation link Normal
typeface
Notes and Prerequisites
Bold typeface between black borders
Internet Controls Device Whitelisting
it means, to open the required page click on Internet Controls then on Device Whitelisting
Note
6
Use
Guide

Part 1: Deploy your NetGenie

Introduction

NetGenie works as a wireless Unified Threat Management (UTM) appliance for Small Offices, Home Offices. It creates a Wi-Fi zone along with the benefits of Stateful Inspection Firewall, VPN, Anti-Virus, Intrusion Prevention System, 3G Ready and Internet Controls over websites and applications – all this in your Wireless Router! Share Internet connection with your office users over desktops, laptops, handheld devices like iPad, iPhone and more –at the same time!
NetGenie’s pre-configured security settings offer protection from unauthorized outsiders. Protect all devices used to connect to the Internet – laptops, desktops, iPhone, iPad, and more – from virus and hackers. Control user access to harmful and unproductive websites and applications like adult sites, job portals, sports sites Facebook, Skype, Yahoo Messenger and more to enhance security and productivity in your office.
After unboxing your NetGenie, ensure that you have all these components available:
1. One (1) NetGenie Wireless Base Unit - NG11EO
2. Two (2) detachable Wi-Fi Antennas
3. One (1) RJ-45 Ethernet Cable
4. One (1) Power Adapter
5. Quick Start Guide
Please immediately contact your vendor if you find anything missing.
r

Know your NetGenie

7
Use
Guide

Defaults

Default IP address to access NetGenie: http://10.1.1.1
Default Username: admin
Default Password: admin
Appliance Reset Button: To reset appliance to factory default settings, keep the reset button pressed for 5 seconds. While doing so, all past upgrades and configurations will be lost.

Surf using NetGenie

Prerequisites:
1. Internet connectivity through a DSL/Cable modem/Direct Internet Cable with RJ45 (Ethernet) connection or USB Modem.
2. At least one computer with an installed network interface adapter/wireless network adapter.
3. Internet browser.
r

Getting your NetGenie Ready

1. Before you begin surfing the Internet through NetGenie, you first need to assemble the appliance.
2. Screw in detachable Wi-Fi antennas in their respective jacks provided in the back panel.
3. Look out for a sticker at the bottom of the appliance containing the default wireless network name, technically known as SSID and a pass key specific for your appliance.
4. Plug one end of the power adapter into the socket on the back of the NetGenie Base Unit.
5. Plug the other end of the power adapter into the nearest main socket.
6. Before you access the Internet through NetGenie, make sure the power is switched on. The Power LED on the front panel should turn green.
Note:
SSID and pass key pre-secure your wireless network from any unauthorized access attempts. Please note down your pass key for future reference.

Identify your Office Internet Setup

Depending on your office network set-up, you can connect NetGenie to the Internet by referring to any of the following scenarios:
1. Through ADSL Cable Modem
2. Through Direct Cable
3. Through USB Modem
4. Over Wi-Fi
8
Use
Guide
Wired Connection - Secure Internet Connectivity through ADSL/Cable Modem
r
1. Unplug the cable that connects the ADSL Router/Cable Modem to your computer and plug it into the “WAN” NetGenie socket.
2. Use the RJ-45 Ethernet cable provided with the NetGenie appliance to connect your computer to any of the “LAN” NetGenie sockets.
3. Switch on your ADSL Modem/Cable Modem and wait till it connects to the Internet. The Internet LED on the ADSL modem will turn green and remain steady. If you are dialing the Internet from your computer, refer to the Configuring PPPoE
4. Switch on the NetGenie appliance. Wait till the “Power” LED and “WAN” LED turns green.
5. Switch on your computer now. NetGenie's “LAN” LED will turn green and remain steady.
6. Open your browser and start surfing the Internet. Your computer is now secured from online threats and malware with the Quick Security feature automatically turned on.
Note:
To configure role-appropriate Internet access for your employees, refer the Internet Controls section. If you are unable to connect to the Internet after following above procedure, please revert to your original setup and visit Cyberoam’s support section at www.netgenie.net.
section.
Wired Connection - Secure Internet Connectivity through Direct Cable
9
Use
Guide
1. Unplug the Internet cable that connects to your computer and plug it into the “WAN” NetGenie socket.
2. Use the RJ-45 Ethernet cable provided with the NetGenie appliance to connect your computer to any of the “LAN” NetGenie sockets.
3. Switch on your NetGenie appliance. Wait till the “Power” LED and “WAN” LED turns green.
4. Switch on your computer now. NetGenie's “LAN” LED will turn green and remain steady.
5. Open your browser and start surfing the Internet. Your computer is now secured from online threats and malware with the Quick Security feature automatically turned on.
Note:
To configure role-appropriate Internet access for your employees, refer the Internet Controls section. If you are unable to connect to the Internet after following above procedure, please revert to your original setup and visit Cyberoam’s support section at www.netgenie.net.
Wireless Connection - Secure Internet Connectivity using USB Modem
r
1. Plug a USB modem in the slot provided in the NetGenie appliance.
2. Use the RJ-45 Ethernet cable provided with the NetGenie appliance to connect your computer to any of the “LAN” NetGenie sockets and switch on the NetGenie appliance.
OR
Switch on the NetGenie appliance. If you are connecting to the Internet over Wi-Fi, start your laptop. Make sure your Wireless Network Adapter is enabled. Your laptop will automatically select the wireless network (also called SSID) named “NetGenie”.
3. Click the network icon in your machine's system tray (bottom-right of your screen) and Select “NetGenie”.
4. After selecting “NetGenie”, you will be asked to enter the exact Security/Pass Key printed on the sticker at the bottom of your appliance. This will connect you to the NetGenie appliance over Wi-Fi.
5. Enter the IP address: http://10.1.1.1 in the address bar and access NetGenie using your administrator credentials.
6. Go to Network Settings Internet.
7. Select USB Modem and fill up the required details. Once the valid details are entered and configurations are applied, NetGenie will automatically connect to the Internet.
10
Use
Guide
8. Open your browser and start surfing the Internet. Your computer is now secured from online threats and malware with the Quick Security feature automatically turned on.
Note:
To configure role-appropriate Internet access for your employees, refer the Internet Controls section. If you are unable to connect to the Internet after following above procedure, please revert to your original setup and visit Cyberoam’s support section at www.netgenie.net.
Wireless Connection - Secure Internet Connectivity over Wi-Fi
r
1. Use the cable that comes with your NetGenie appliance to connect it to the ADSL Router/ Cable Modem.
2. Insert one end of the cable in the “WAN” NetGenie socket and the other end in your modem “LAN”.In case of Direct Cable Internet, please connect it straight to the NetGenie “WAN” socket. If you are dialing the Internet from your computer, refer to the section.
3. Switch on your NetGenie appliance. Wait till the “Power” LED and “WAN” LED turns green and for the “WLAN/WPS” LED to turn green and stabilize.
4. Start your laptop. Make sure that your Wireless Network Adapter has been enabled. Your laptop will automatically detect the wireless network (also called SSID) named “NetGenie”.
5. Click the network icon in your machine's system tray (bottom-right of your screen) and select “NetGenie”.
6. After selecting “NetGenie”, you will be asked to enter the exact Security/Pass Key printed on the sticker at the bottom of your appliance. This will connect you to the NetGenie appliance over Wi-Fi.
7. Open your browser and start surfing the Internet. Your computer is now secured from online threats and malware with the Quick Security feature automatically turned on.
Configuring PPPoE
Note: Please turn off your router's Wi-Fi, to avoid any security breaches.
Configuring PPPoE
PPPoE (Point-to-Point Protocol over Ethernet) is used when you dial up to connect to the Internet
11
Use
Guide
through a broadband connection. This section is only relevant to you if need to dial up the Internet from your machine.
(You will need your Username and Password for connecting to the Internet. Please contact your ISP if you have lost them.)
Go to Network Settings Internet, select Internet connection type as PPPoE and fill up the required details.
r
Screen- Configure PPPoE
Screen Elements Description
Internet
PPPoE
Connection Type
PPPoE Information
Username Specify username provided by your ISP. Password Specify password. Confirm Password Confirm the password. Redial Period Specify the time after which redialing should be attempted. Idle Time Specify idle time. Connection will drop after the configured
inactivity time and the user will be forced to re-login.
12
Use
Guide
MTU Specify MTU value (Maximum Transmission Unit)
MTU is the largest physical packet size in bytes that can be transmitted in a network. This parameter becomes an issue when networks are interconnected and have different MTU sizes. Any packets larger than the MTU value are divided (fragmented) into smaller packets before being sent over.
Default - 1492 Input range - 568 to 1492
Static IP Select the checkbox to bind a static IP address with the NetGenie
appliance. IP Address Specify IP address. Network Mask Specify network mask.
DNS Server Configuration
Static DNS Server Select the checkbox to configure static DNS server. Primary Specify IP address of primary DNS server. Secondary Specify IP address of secondary DNS server. MAC Address
Enable this to create a clone of your router’s IP address. Clone
MAC Address Specify MAC address of your router to be cloned.
Table - Configure PPPoE Screen Elements
r
Configuring USB Modem
You need to configure USB modem when you connect to the Internet through a data/fax/voice modem.
Go to Network Settings Internet. Select Internet connection type as USB and fill up the required details.
.
13
Use
Guide
r
Screen- Configure USB Modem
Screen Elements Description
Internet
USB Modem Connection Type
Wireless Modem Information USB Modem
Status
Status of USB modem. Possible status:
Plugged
Unplugged USB Modem
Signal strength of plugged USB modem. Signal Strength
Country Select the Country. Service Provider Select the service provider name Service Name Specify name of the service if required. Dial Number Dial number of the selected service provider.
14
Use
Guide
Authentication Select the checkbox if you want to enable authentication for your
USB modem. Username Specify the username if you have enabled authentication for your
USB modem. Password Specify password. Pincode Specify the pin code of your area. Init String Specify initialization string for your USB modem, if required. Connection on
Demand
Select the checkbox against ‘Disconnect in’ and specify the value
in seconds. Connection will drop after the configured inactivity
time and user will be forced to re-login. MTU Specify MTU value (Maximum Transmission Unit)
MTU is the largest physical packet size, in bytes that can be
transmitted in a network. This parameter becomes an issue when
networks are interconnected and the networks have different MTU
sizes. Any packets larger than the MTU value are divided
(fragmented) into smaller packets before being sent over.
Default - 1492
Input range - 568 to 1492 DNS Server Configuration Static DNS Server Select the checkbox to configure static DNS server. Primary Specify IP address of the primary DNS server. Secondary Specify IP address of the secondary DNS server. MAC Address
Enable this to create a clone of your router’s IP address. Clone
MAC Address Specify MAC address of your router that has to be cloned.
Table- Configure USB Modem Screen Elements
r
Configuring Static Internet Connection
You need to configure static Internet connection if your ISP has assigned an IP address to your network.
Go to Network Settings Internet. Select the Internet connection type as “Static” and fill up the required details.
15
Use
Guide
r
Screen- Configure Static Internet Connection
Screen Elements Description
Internet Connection Type
IP Address IP Address Specify IP address provided by your ISP. Subnet Mask Specify subnet mask of your network. Gateway Specify gateway IP address for your network. DNS Server Configuration Static DNS Server Select the checkbox to configure static DNS server. Primary Specify IP address of primary DNS server. Secondary Specify IP address of secondary DNS server. MAC Address
Clone MAC Address Specify MAC address of your router to be cloned.
Table- Configure Static Internet Connection Screen Elements
Static
Enable to create clone of your router’s IP address.

Access Internet

Congratulations!!! If you are reading this, it means you have installed NetGenie successfully. Now simply open a new browser window and enter any website URL, you want to visit in the
address bar. Enjoy safe surfing with NetGenie.
16
Use
Guide

Part 2: Internet Controls

This section describes how to access and configure NetGenie security features to ensure threat free Web surfing for your entire organization. It contains the following sub-sections:
Access NetGenie
Register NetGenie
Set System Time
Add User
User Internet Access

Access NetGenie

After successful deployment, NetGenie needs to be configured to enable Internet controls. Enter the IP address http://10.1.1.1
password ‘admin’.
in address bar and log in using default username ‘admin’ and
r
Screen –Login
Screen Elements Description
Username Specify user login name.
If you are logging in for the first time after deployment, please use
default username ‘admin’. Password Specify password.
If you are logging in for the first time after deployment, please use
default password ‘admin’. Log in button Click to login into NetGenie
Table – Login screen elements
17
Use
Guide
Note:
It is recommended to change admin password of NetGenie as soon as you log in. This is a preventive measure to avoid unauthorized use of NetGenie.

Log out procedure

To avoid unauthorized users from accessing NetGenie, log out after you have finished working. This will end your session and mark your exit from NetGenie
.

Set System Time

You need to update your local time zone in order to prepare time schedules for accessing the Internet and generating time-based reports.
Go to System Time to update your time zone
.
r
Screen – System Time Settings
Screen Elements Description
System Time Displays NetGenie’s current time Select Time Zone Selects local time zone from drop down menu Enable NTP Client Checks to enable NTP (Network Client Protocol) client Sync Now Clicks to synchronize system time with configured NTP server NTP Server
1,2,3,4 and Port Synchronization
Interval Manually
Configure Date and Time
Displays NTP server’s domain name and port if NTP client is
enabled
Displays time interval in seconds to synchronize with NTP server
You can manually set system date and time if you do not want to
use NTP clients.
Specifies date and time in yyyy/mm/dd format and hh:mm:ss
format respectively
Table – System Time Settings screen elements
18
Use
Guide

Add User

You need to add your organization users in order to give role and requirement appropriate Internet access to them.
Go to Internet Controls Add User.
r
Screen – Add User
Screen Elements Description
Username Specify the name of the individual for whom you wish to
customize Internet access. Password Specify a password. Re-enter your password in the Confirm
Password field. Image icon Click to change the picture for a user Internet
Restriction Slider bar
Website List Click to allow or block any specific website(s) for the user. Website Category
List Application List Click to view and customize access to specific applications for the
Enable Internet Activity Reporting
Apply Click to save the changes.
Drag the slider bar to reflect the appropriate Internet control for
any of your organization user. This selection will block any
websites and applications deemed inappropriate for them.
Available options:
List Only
Strict
Moderate
Minimal
Safe Surfing
Click to view and customize access to specific web categories for
the user.
user.
Click to log and report Internet activities for a user.
19
Use
Guide
Tips Displays help text to configure the user settings.
Table – System Time Settings screen elements
Website List
Enter one or more websites to be allowed or blocked for the user and click OK to save the changes.
This section is used to customize NetGenie Web protection for the specific user. E.g. Your IT administrator shows interest in visiting a particular computer security forum, which is
blocked as per the Internet access settings. You can override these settings to allow access to that particular website using Website List.
r
Screen – Website List
Website Category List
As and when the need arises, you can customize the list of websites allowed and denied to a specific user.
For this, click Website Category List icon to view, allow or block a specific website category. You can also use this page to configure schedule-based Website category access.
Screen – Website Category List
Application List
As and when required, you can customize the list of applications allowed and denied to a specific user.
20
Loading...
+ 45 hidden pages