Public - Resetting and Checking the DH310B/SET264 hardware
Cisco ASA
Testing the ASA Firewall
- Power off and power on the ASA appliance by removing the power cable from the rear of the device, then re-inserting it
- Connect to P-1 for the ASA on the patch panel
- Connect the WAN port for the ASA to Port 22 on the patch panel above the POD switch
- DHCP should give you a 192.168.1.x IP address
- Open https://192.168.1.1/ and ignore the certificate error
- Select "Run ASDM"
- Allow it to run
- It will say its untrusted, click "Continue"
- Click "Run" again
- Leave the username and password blank, click "OK"
- Under wizard run "Startup Wizard"
- Select "Modify existing settings"
- Leave at defaults on this page
- Leave the next page at defaults
- Leave the next page at the defaults
Select use Outside IP Address, and enter in the Outside and Inside IP Addresses from the table below. Use an Outside mask of 255.255.255.240 and inside mask of 255.255.255.0
Inside
Outside
Blue Pod
192.168.61.1
84.204.141.12
Yellow Pod
192.168.51.1
89.22.200.12
White Pod
192.168.41.1
119.187.223.12
Red Pod
192.168.31.1
196.137.23.12
Orange Pod
192.168.21.1
201.205.148.12
Green Pod
192.168.11.1
220.51.79.12
- Change the DHCP to match the network used on the inside LANJust use Google DNS for the DNS servers, the ones used in the actual lab only work if the lab is connected to Verizon
- Leave it on "Enable PAT"
- Change ASDM allowed IP to match the DHCP for the internal interface
- Click "Finish"
- It'll say "Error" sending command. Click "Close"
- Add a default route to the WAN interface
- Close ASDM
- Disconnect and reconnect Ethernet to P-1
Resetting the ASA to classroom defaults via command line
- Connect to the COM port with your console cable
- Open putty/hyperterminal/terraterm to the COM port connect to it
- Type in "enable"Press <enter>, there should be no password
- Run "config t" to enter configure mode
- Run "configure factory-default" to reset the asa to factory defaults
- Run "copy run start" to save the factory defaults
- Run "reload" to load the startup config
- Connect an Ethernet cable and open ASDM at https://192.168.1.1
- No username or password
- Click "Do not enable Smart Call Home"
- Click the "Save" button
If ASDM doesn't load
- Enter configuration mode by running "enable", press <enter> for no password, then "config t"
- Run "asdm image flash:?"
- Type in "asdm image flash:/asd-<tab>" which should auto complete the image name
- Run "copy run start" to save the image change
- Run "reload" to test the config change
Dell Sonicwall
Testing the Dell Sonicwall
- Connect to the LAN port on the Sonicwall
- Look for your default gateway, if the Sonicwall has been reset to factory defaults it will be 192.168.168.168
- Open that url in IE or Firefox https://192.168.168.168
- Chrome doesn't allow you to skip the cipher mismatch easily
- Skip the SSL error
- Login to the sonicwall interface
- The default username and password is : admin/password
- At this point the device is verified operational
Thorough testing – WAN Connectivity
- Open the Network group on the left side, then the interfaces panel
- Change the WAN IP address to match below
- The gateway is the same as the WAN IP but ending in .1
- Subnet mask is /28 or 255.255.255.240
- The DNS servers are the standard Comcast ones of 75.75.75.75
- Change the LAN IP address to match the PODs Ips
You will lose connectivity when it applies, just run an ipconfig /release and ipconfig /renew
POD
LAN
WAN – Default gateway is .1
Blue
192.168.62.1
84.204.141.5
Yellow
192.168.52.1
89.22.200.5
White
192.168.42.1
119.187.223.5
Red
192.168.32.1
196.137.23.5
Orange
192.168.22.1
201.205.148.5
- Connect the WAN link to the port 22 on the patch panel for uplink
- Verify from your machine you can ping the default gateway of the WAN link
- Change the WAN IP address to match below
Thorough Testing – VPN
- Get the Sonicwall registration key from portal for your POD
- Open System/Licenses in the Sonicwall
- Paste the key in and click "Submit"
- Open the Users/Local Users on the sonicwall
- Add a new user…
- Give it a name and password
- Under VPN Access add "LAN Subnets"
- Click OK
- Add a new user…
- Open the VPN/Settings panel on the sonicwall
- Enable the "WAN GroupVPN" VPN
- Click the Edit button next to the "WAN GroupVPN" under Configure
- Store the Shared Secret part, you will need this, then close the Window
- Connect your machine or another machine to the normal switch
- You should no longer have access to the sonicwall management
- Download the sonicwall VPN client from http://help.mysonicwall.com/Applications/vpnclient/
- Install it
- The new connection wizard will automatically open, click Next
- Enter in the WAN address of your SonicWall device
- Click "Finish"
- The Client should pop up
- Click Enable for the connection for your device
- Enter in the Shared Secret you stored above
- Enter in the username and password for your user you made
- If the license was not previously entered correctly,you will get an error, and the log will show this
- If the license is correct you should be connected
Resetting the SonicWall – Web UI
- Open System/Settings
- Click the boot icon next to "Current Firmware with Factory Default Settings"
- It will reboot and be back to 192.168.168.168 as an IP
Resetting the Sonicwall – Physical
- Power off the sonicwall
- Insert a paperclip into the reset button
- Power on the sonicwall while leaving the reset button pressed in
- Once the test light stops blinking you can remove the paperclip
Cisco RV042
Testing the RV042
- Connect your machine to the LAN port on the RV042
- Connect the WAN port of the RV042 to port 22 on the patch panel
- Look at the default gateway for your machine and open it in the web browser
- The default password is admin/admin
Configure the IP's like so
POD
LAN
WAN – Default gateway is .1
Blue
192.168.63.1
84.204.141.2
Yellow
192.168.53.1
89.22.200.2
White
192.168.43.1
119.187.223.2
Red
192.168.33.1
196.137.23.2
Orange
192.168.23.1
201.205.148.2
- Once configured it should look like this
- Make sure you can ping the default gateway
Resetting the RV042
- Use a paperclip to hold in the reset button for 30 seconds on the back of the device