Quick Setup
In this chapter you can find a brief guide for a quick setup of Kerio WinRoute Firewall (called briefly WinRoute in further text). After this setup the firewall should be immediately available and able to share your Internet connection and protect your local network. For a detailed guide refer to the separate WinRoute Step-by-Step Configuration guide.
If you are not sure how to set any of the Kerio WinRoute Firewall functions or features, look up the appropriate chapter in this manual. For information about your Internet connection (such as your IP address, default gateway, DNS server, etc.) contact your ISP.
Note: In this guide, the expression firewall represents the host where WinRoute is (or will be) installed.
-
The firewall must include at least two interfaces one must be connected to the local network (i.e. the Ethernet or Token Ring network adapters), another must be connected to the Internet (i.e. analog modem, ISDN adapter, network adapter or USB Satellite adapter). TCP/IP parameters must be set properly at both/all interfaces.
Test functionality of the Internet connection and of traffic among hosts within the local network before you run the WinRoute installation. This test will reduce possible problems with debugging and error detections.
- Run WinRoute installation. Specify a username and password for access to the administration from the configuration wizard (for details refer to chapters Installation and Configuration Wizard).
- Set basic traffic rules using the Network Rules Wizard (see chapter Network Rules Wizard).
- Run the DHCP server and set required IP ranges including their parameters (subnet mask, default gateway, DNS server address/domain name). Read more in chapter DHCP server.
- Check the DNS Forwarder's configuration. Define the local DNS domain if you intend to scan the hosts file and/or the DHCP server table. For details refer to chapter DNS Forwarder.
- Create or import user accounts and user groups. Set access rights and sort accounts into groups. For details see chapters User Accounts and User Groups.
- Define IP groups (chapter Address Groups), time ranges (chapter Time Ranges) and URL groups (chapter URL Groups), that will be used during rules definition (refer to chapter Time Ranges).
- Create URL rules (chapter URL Rules) and set the ISS OrangeWeb Filter module (chapter Content Rating System (ISS OrangeWeb Filter)). Set HTTP cache and automatic configuration of browsers (chapter HTTP cache). Define FTP rules (chapter FTP Policy).
- Select an antivirus and define types of objects that will be scanned. If you choose the integrated McAfee antivirus application, check automatic update settings and edit them if necessary.
- Using one of the following methods set TCP/IP parameters for the network adapter of individual LAN clients:
- Automatic configuration activate the Obtain an IP address automatically option. Do not set any other parameters.
- Manual configuration define IP address, subnet mask, default gateway address, DNS server address and local domain name.
Use one of the following methods to set the Web browser at each workstation:
- Transparent configuration by default WinRoute will filter all outgoing HTTP traffic through the HTTP protocol inspector. This does not require any configuration to the Web browser of the workstations.
- Automatic configuration activate the Automatically detect settings option (Microsoft Internet Explorer) or specify URL for automatic configuration (other types of browsers). For details refer to chapter HTTP cache.
- Manual configuration select type of connection via the local network or define IP address and appropriate proxy server port (see chapter Proxy server).
