Jump to:navigation, search
Wiki

































De.png
En.png
Fr.png









First steps for commissioning a RC400R (G5)

New article: 06.2022

notempty
This article refers to a Resellerpreview
-




































De.png
En.png
Fr.png

Preparation

notempty
Careful preparation of even simple steps is a prerequisite for successful installation

Have login information ready

  • When operating on a modem or fiber optic connection:
  • Have login information of the Internet service provider ready
    • Who has the current login information of the ISP?
    • Is the login information available at the installation site?
    • Is the login information available at the time of installation?
    • if applicable: Is the person who has the login information available at the time of installation?
  • When operating with a router:
    • What is the IP address of the router?
    • Can the UTM get a fixed IP?
    • For new installations, DHCP is activated on the external interface
  • Local network:
    • What is the network IP of the local network(s)?
    • Which IP addresses should the interfaces of the UTM in these networks receive?
      As a rule, this should always be a fixed IP address!

Prepare firmware update

notempty
Why should a firmware update be done?

  • If an existing configuration file is to be used, the installed firmware version must be identical or newer.
  • Latest features and patches are available immediately.
    Several firmware versions may have been released between the manufacturing and delivery.
  • Damage due to manipulation of the firmware in transit (unlikely, but not impossible) can thus be excluded.
  • A USB stick with the UTM image is required.
    This Securepoint Imaging Tool can be used. (Resellerportal → Menu  DownloadsTools x )
  • Connect keyboard and monitor
  • Monitor connection type see table below the figure


  • v12 is mandatory, as some of the hardware installed in the G5 units is not supported by v11
  • When installing/updating via USB stick, use the image first UTM v12.x - Interactive installation UTM Software v12 - USB-Image
    (not Autoinstall or Autoupdate)
    • The prepared USB stick must be connected to the UTM
    • Switch on the UTM
    • Under Save & Exit execute Restore Defaults
      The USB stick should then be listed at the top of the boot menu of the device, preceded by the TAG UEFI
    • Execute under Save & Exit Save Changes and Reset
    • Perform installation/ update


    Installing the firmware

    The firmware is installed in just a few steps. The preselection options only need to be confirmed.


    • Display and confirmation of the license conditions
    • Decision as to whether an upgrade should be carried out
      Default: Upgrade
    • Selection of the hard disk on which the firmware is to be installed
    • Starting the installation
    • Request to remove the USB stick
    • Reboot
    • Display of the login console



    RC400R (G5) Without expansion cards Port assignment as printed on the unit casing
    Hide table
    Port name of casing Port type Portname software v11 Portname software v12
    A0 RJ45 eth0 A0
    A1 RJ45 eth1 A1
    A2 RJ45 eth2 A2
    A3 RJ45 eth3 A3
    A4 RJ45 eth4 A4
    A5 RJ45 eth5 A5
    A6 RJ45 eth6 A6
    A7 RJ45 eth7 A7
    A8 SFP eth8 A8
    A9 SFP eth9 A9
    Anschluss Typ
    Monitor VGA
    Tastatur USB
    Console RJ45
































    Integration into the local network

    Adjust IP addresses of the UTM via CLI

    If administration via the CLI is not an issue, the IP adresses can be provided directly to the UTM via CLI
    In this case, the monitor and keyboard remain directly connected to the UTM.
    The login is done on the console.

    Adjust the IP address of your own computer

    The IP address of your own computer is temporarily adapted to the default network of the internal interface of the UTM.
    This is followed by connecting your own computer to interface A1 (the internal interface) of the UTM.
    The correct interface can be seen in the figure and table above.

    First access

    If not already done, the following connections must be made now physically:

    • Connect interface for the external interface (A0) towards the Internet (modem, router, etc.).
    • Connect the internal interface (A1)
      • with your own computer, if the IP address has been adjusted on it.
      • to the network from which the UTM is to be administered, if the IP address of the UTM has been adjusted.

  • The admin interface is available at port 11115. Access:
    https://192.168.175.1:11115 (Default) or
    https://172.16.0.1:11115, if the IP address of the UTM was changed to 172.16.0.1
  • When the admin interface is called up for the first time, a certificate warning appears in the browser.
    Since the browser doesn't know the certificate of the UTM, a security warning is issued.
    This warning must be ignored.

    UTM v12 Zertifikat-Firefox-en.png
    Message in Firefox: Warning: Potential security risk ahead
    Button Advanced / Accept the risk and continue
    UTM v12 Zertifikat-Chromium-en.png
    Message in Chrome / Chromium: This is not a secure connection. At the end click on Continue to IP address (unsure) .
    UTM v12 Zertifikat-Edge-en.png
    Message in Edge: Your connection isn't private. At the end click on Continue to IP address (unsure) .
    UTM v12 Zertifikat-Safari.png
    Message in Safari:
    Button Show details / Link Open this website












    First registration

    Caption Value Description UTM v14 Admin Login unlicensed-en.png
    UTM-Login (noch nicht lizensiert)
    User admin Login with the default login information of the factory settings: admin
    Password insecure Login with the default login information of the factory settings: insecure
     Login (admin)
    Agree to license agreement and privacy policy
    Accept
    The license agreement and privacy policy must be accepted by clicking the button. Datenschutzerklärung UTM Decline Accept UTM v12.6.2 ErsteSchritteAnmeldung Datenschutzerklaerung-en.pngThe privacy policy must be agreed to. Lizenzvereinbarung UTM Decline Accept UTM v12.6.2 ErsteSchritteAnmeldung Lizenzvereinbarung-en.pngThe license agreement must be agreed to.
    Basic configurations
    Firewall name firewall.ttt-point.local An individual firewall name must be assigned.
  • The name should correspond to an FQDN.
  • Basic configurations UTMuser@firewall.name.fqdn License agreement Log out UTM v12.6.2 Grundlegende Einstellungen-en.png
    Basic configurations
    The fields displayed may vary depending on what information is already available on the UTM
    System time yyyy-mm-dd hh-m--ss The system time should be correct. It is compared with other servers, e.g. for user authentication (Kerberos, OTP, etc.). If the deviation is too large, for example, login will not be possible.
    License key Browse... Import valid license.
  • Each license key may only be used once. The UTM is identified via this and various services and configurations are assigned via the license key.
  • Global email address: notempty
    New as of v12.4.4
    admin@ttt-point.de Required information e.g. for the mail connector and the proxy. Also serves as postmaster address for the mail relay.
    Authentication method: notempty
    New as of v12.5.1
    PIN (recommended)Login mask Authentication method for Web sessions via USC
    The web session PIN also secures the use of the following actions within the scope of the USC:
    • Reboot
    • Shutdown
    • Factory settings
    • Importing cloud backups

    If the PIN is not used, these actions cannot be called up from the Unified Security Portal.

    PIN:     PIN as additional security for Websessions
    Creates a secure PIN
    License agreement
    Displays the license agreement
    Privacy policy
    Displays the privacy policy
    Log out
    Logs off again.
    No settings are saved!
    Complete
    Completes the login process and opens the Welcome window.
    Welcome
    Basic settings are completed with the welcome dialog. Welcome UTMuser@firewall.name.fqdn Installation wizard Start tour UTM v12.6.2 ErsteSchritteAnmeldung Willkommen Dialog-en.pngWelcome dialog
    Installation wizard
    Starts the Installation Wizard.
    Start tour
    Starts a tour that explains the admin interface and menus in 15 steps.

    Configure interfaces

    notempty
    New as of v12.7.0
    Do you want to configure the interfaces now? Yes No This message appears if not all existing interfaces are configured correctly. However, it is recommended to do this to prevent possible problems. The Yes button opens the network configuration directly. UTM 12.7.0 Installationsassistent Meldung Schnittstellen konfigurieren-en.png
    Do not ask again. Off If this message is not desired, it can be set here so that it is not displayed again.