background image

b

 

Motorola

 

®

 

 NVG589 VDSL2 Gateway

 

Motorola

 

®

 

 Embedded Software Version 9.1.0

 

Administrator’s Handbook

Summary of Contents for AT&T NVG589

Page 1: ...Motorola NVG589 VDSL2 Gateway Motorola Embedded Software Version 9 1 0 Administrator s Handbook ...

Page 2: ...UPTED OR ERROR FREE OR THAT ANY ERRORS CAN OR WILL BE FIXED MOTOROLA MOBILITY LLC HEREBY DISCLAIMS ALL OTHER WARRANTIES EXPRESS OR IMPLIED ORAL OR WRITTEN WITH RESPECT TO THE SYSTEM AND SERVICES INCLUDING WITHOUT LIMITATION ALL IMPLIED WARRANTIES OF TITLE NON INFRINGEMENT INTEGRATION MERCHANTABILITY OR FITNESS FOR ANY PARTICULAR PURPOSE AND ALL WARRANTIES ARISING FROM ANY COURSE OF DEALING OR PERF...

Page 3: ...us Indicator Lights 13 Battery Installation optional 16 Battery Door Installation Instructions 17 Battery Door Removal Instructions 18 Cradle Installation Instructions 19 Set up the Motorola Gateway 20 Accessing the Web Management Interface 23 Broadband Network Redirect Pages 25 IP Diagnostics Page Redirect 26 Offline Troubleshooting 26 Device Status page 27 Device Access Code 27 Tab Bar 31 Help 3...

Page 4: ...itch 96 Log Event Messages 97 CHAPTER 4 Command Line Interface 103 Overview 105 Starting and Ending a CLI Session 107 Logging In 107 Ending a CLI Session 107 Using the CLI Help Facility 107 About SHELL Commands 108 SHELL Prompt 108 SHELL Command Shortcuts 108 SHELL Commands 109 Common Commands 109 WAN Commands 116 About CONFIG Commands 118 CONFIG Mode Prompt 118 Navigating the CONFIG Hierarchy 118...

Page 5: ...173 Power Supply 173 Environment 173 Software and protocols 173 Agency approvals 174 Manufacturer s Declaration of Conformance 175 Important Safety Instructions 177 47 CFR Part 68 Information 178 FCC Requirements 178 FCC Statements 178 Electrical Safety Advisory 179 Caring for the Environment by Recycling 180 Beskyttelse af miljøet med genbrug 180 Umweltschutz durch Recycling 180 Cuidar el medio a...

Page 6: ...dbook X_00D09E_SetCaptivePortalParams RPC 205 Appendix B Quality of Service QoS Examples 207 Overview 207 Upstream QoS Priority and shaping 209 Downstream QoS Ethernet Switch 210 Downstream QoS Egress queues 210 Index 211 ...

Page 7: ... to have public addresses directly on the Internet Motorola Inc provides a suite of technical information for its family of intelligent enterprise and consumer Gate ways It consists of Administrator s Handbook Dedicated User Manuals Specific White Papers The documents are available in electronic form as Portable Document Format PDF files They are viewed and printed from Adobe Acrobat Reader Exchan...

Page 8: ...alic Italic type indicates the complete titles of manuals Convention Graphics Description Denotes an excerpt from a Web page or the visual truncation of a Web page Denotes an area of emphasis on a Web page Convention Description straight brackets in cmd line Optional command arguments curly brackets with values separated with vertical bars Alternative values for an argument are presented in curly ...

Page 9: ...G modes A summary table and individual command examples for each mode is provided Chapter 5 Technical Specifications and Safety Information Appendix A Motorola Gateway Captive Portal Implementation Describes the Motorola Gateway Captive Portal Implementation Appendix B Quality of Service QoS Examples Describes the Motorola Gateway Quality of Service QoS Implementation Index A Word About Example Scr...

Page 10: ...Administrator s Handbook 10 ...

Page 11: ... chapter covers Important Safety Instructions on page 12 Motorola Gateway Status Indicator Lights on page 13 Battery Installation optional on page 16 Battery Door Installation Instructions on page 17 Battery Door Removal Instructions on page 18 Cradle Installation Instructions on page 19 Set up the Motorola Gateway on page 20 Accessing the Web Management Interface on page 23 Device Status page on ...

Page 12: ... leak in the vicinity of the leak CAUTION The external phone should be UL Listed and the connections should be made in accordance with Article 800 of the NEC COAX INSTALLATION Be sure that the outside cable system is grounded so as to provide some protection against voltage surges and built up static charges Article 820 20 of the NEC Section 54 Part I of the Canadian Electrical Code provides guide...

Page 13: ...er during firmware upgrade flash writing to memory and all other LEDs will be off 3 The Gateway will restart automatically As the device reboots the POWER ON LED behavior will happen During Boot process Power LED GREEN FLASH All other LED OFF If the device does not boot and fails its self test or fails to perform initial load of the boot loader Power LED RED FLASH ALL other LED OFF If the device b...

Page 14: ...ng to establish a broadband connection alternating with a five second steady Red This pattern continues until the broadband connection is successfully established Flashing Red No DSL signal on the line This is only used when there is no signal not dur ing times of temporary no tone during the training sequence Off The device is not powered Broadband 1 LED is also the Gigabit ethernet WAN LED when ...

Page 15: ...ort in order to terminate both lines This is a special purpose splitter You must only use the inner outer pair splitter adapters supplied by AT T LED Action Ethernet 1 2 3 4 Orange Amber when a Gigabit Ethernet device is connected to each port Green when 10 100 Ethernet device is connected Flash for Ethernet traffic passing Gigabit Ethernet WAN USB DSL WAN Ethernet LAN F Connector HPNA RJ14 FXS Re...

Page 16: ... temperature limit or incinerate Replace battery with Motorola P N 586185 001 00 only Use of another battery may present a risk of fire or explosion Dispose of used battery promptly Keep away from children Do not disassemble and do not dispose of in fire 1 Note the tab on the bottom of the battery 2 Insert the battery into the compartment on the bottom of the unit as shown and press into place so th...

Page 17: ...s 1 Place NVG589 Unit on a table top as shown in FIGURE 1 2 Place battery door at an angle as shown and slide toward edge of unit See FIGURE 2 3 Rotate door in direction shown see FIGURE 3 and snap closed 4 Battery door installed See FIGURE 4 ...

Page 18: ...al Instructions 1 Place unit on table top as shown in FIGURE 1 2 Using both hands pull tabs in directions shown in FIGURE 2 3 While still pulling the tabs pull the battery door in the direction shown See FIGURE 3 4 Remove battery door See FIGURE 4 ...

Page 19: ...e that the NVG589 unit is latched to the rear of the cradle as shown in FIGURE 2 3 Once the rear is latched rotate the NVG589 unit down into the cradle and press until the snap is engaged You should hear a click for positive engagement See FIGURE 3 4 Reverse sequence by first pulling on the cradle for removal ...

Page 20: ...operties Control Panel a Some Windows versions follow a path like this Start menu Settings Control Panel Network or Network and Dial up Connections Local Area Connection Proper ties TCP IP your_network_card or Internet Protocol TCP IP Properties b Some Windows versions follow a path like this Start menu Control Panel Network and Internet Connections Network Connections Local Area Connection Proper...

Page 21: ...ed to configure it at all To check open the Networking Control Panel and select Internet Protocol Version 4 TCP IPv4 Click the Properties button The Internet Protocol Version 4 TCP IPv4 Properties window should appear as shown If not select the radio buttons shown above and click the OK button ...

Page 22: ... follows a path like this Apple Menu Control Panels TCP IP Control Panel b Mac OS X follows a path like this Apple Menu System Preferences Network Then go to Step 2 Step 2 Select Built in Ethernet Step 3 Select Configure Using DHCP Step 4 Close and Save if prompted Proceed to Accessing the Web Management Interface on page 23 ...

Page 23: ...ion such as Firefox or Microsoft Internet Explorer from the computer connected to the Motorola Gateway 2 Enter http 192 168 1 254 in the Location text box While the Gateway is determining the Broadband network type the following screen appears The Device Status Page appears ...

Page 24: ...ice LEDs are lit GREEN to verify that the connection to the Internet is active Congratulations Your installation is complete You can now surf to your favorite Web sites by typing an URL in your browser s location box or by selecting one of your favorite Internet bookmarks ...

Page 25: ... Broadband network cannot be determined the following screen appears Contact AT T Customer care at the number shown for assistance If you click the Continue button the following screen appears Here you can manually select the Broadband net work type if you know it ...

Page 26: ...suggestions For additional troubleshooting information see Diagnostics on page 80 and Basic Troubleshooting on page 89 When your connection is restored or the problem is resolved the Broadband LED will turn GREEN Note For AT T this function is enabled by default See the CLI command set management lan redirect enable off on on page 149 Offline Troubleshooting If the WAN is down the following will b...

Page 27: ...u access the Home Page by typing http 192 168 1 254 in your Web browser s location box Device Access Code You may be required to provide your Device Access Code in order to access the web management configuration pages The Device Access Code is unique to your device It is printed on a label on the side of the Gateway Enter your Device Access Code and click the Continue button ...

Page 28: ...Administrator s Handbook 28 The Device Status Page appears ...

Page 29: ...and Broadband Connection Waiting for DSL is displayed while the Gateway is training This should change to Up within two minutes Up is displayed when the ADSL line is synched and the session is established Down indicates inability to establish a connection possible line fail ure Battery Status Normal or Low Battery or Charging or Warning No battery or bat tery has no charge or Warning Battery backu...

Page 30: ... computer on your home network This link will connect you to the Device List page See Device List on page 32 Adjust firewall settings for gaming and applications This link will connect you to the NAT Gaming page See NAT Gaming on page 69 ...

Page 31: ... of pages that allow you to manage or configure several features of your Gateway Each tab is described in its own section Help Help is provided in your Gateway Help is available in the right hand frame on every page in the Web interface Here is an example The page shown here is displayed when you are on the System Information page ...

Page 32: ...ist When you click the Device List link the Device List page appears The page displays the following information Home Network Devices Home Network Devices Displays the IPv4 Address Network Name and MAC Address of devices connected to this device on your local area network MAC Address Client device s unique hardware address IPv4 Address Name Client device s IP address or device network name Last Ac...

Page 33: ...ays the familiar bars indicating signal strength as follows Click the Clear Device List button to update the Home Network summary Click the Scan for Devices button to seek out other devices that have been connected since the last Home Network summary update ...

Page 34: ...his is the version number of the current embedded software in your Gateway MAC Address Unique hardware address of this Gateway unit First Use Date Date and Time when the Gateway is first used This field changes to the cur rent date and time after a reset to factory defaults Time Since Last Reboot Elapsed time since last reboot of the Gateway in days hr min sec Datapump Version Underlying operating...

Page 35: ...to a different one of your own choosing between 8 and 20 characters long The new password must also include two characters from any these categories alpha number and special characters Example fru1tfl13s_likeabanana Enter your Old Access Code your New Access Code and click the Use New Access Code button The new Access Code takes effect immediately You can always return to the original default pass...

Page 36: ...start Device When the Gateway is restarted it will disconnect all users initialize all its interfaces and load the Operating Sys tem Software When you make configuration changes you may be required restart for the changes to take effect ...

Page 37: ...dband Status page appears The Broadband Status page displays information about the Gateway s WAN connection s to the Internet Broadband Status Line State May be Up connected or Down disconnected Broadband Connection May be Up connected or Down disconnected ...

Page 38: ...The public IPv6 address of your device whether dynamically or statically assigned Border Relay IPv4 Address The public IPv4 address of your device IPv4 Statistics Transmit Packets IPv4 packets transmitted Transmit Errors Errors on IPv4 packets transmitted Transmit Discards IPv4 packets dropped IPv6 Statistics Transmit Packets IPv6 packets transmitted Transmit Errors Errors on IPv6 packets transmit...

Page 39: ...ault self sensing rate 10M full or half duplex 100M full or half duplex or 1G full or half duplex MDI X Auto the default self sensing crossover setting Off or On The WAN connection is automatically configured However you can adjust the Maximum allowable MTU Maximum Transmittable Unit value if your service provider suggests it The default 1500 is the maximum value but some services require other va...

Page 40: ... Handbook 40 Link IGMP Stats When you click the IGMP Stats link the IGMP Stats screen appears The IGMP Statistics screen reports IGMP Proxy Groups and Multicast Forwarding information It also displays a packet counter ...

Page 41: ...ays informa tion about the Gateway s local area network If you click the Run Congestion Detection but ton the device will generate statistics for each of the 11 channels available displaying Channel number AP Count Congestion Score 1 10 You can clear the current statistics information by clicking the Clear Statistics button ...

Page 42: ...ds IPv4 packets dropped IPv6 Statistics Transmit Packets IPv6 packets transmitted Transmit Errors Errors on IPv6 packets transmitted Transmit Discards IPv6 packets dropped Wireless Status Wireless Radio Status Indicates whether the Wi Fi radio is Enabled or Disabled Network Name SSID This is the name or ID that is displayed to a client scan The default SSID for the Gateway is attxxx where xxx is t...

Page 43: ...d on the Wi Fi network Transmit Discard Packets This is the number of packets transmitted on the Wi Fi network that were dropped Receive Discard Packets This is the number of packets received on the Wi Fi network that were dropped LAN Ethernet Statistics State up or down Transmit Speed This is the maximum speed of which the port is capable Transmit Packets This is the number of packets sent out fr...

Page 44: ... page for the Ethernet LAN appears For each Ethernet Port 1 through 4 you can select Ethernet Auto the default self sensing rate 10M full or half duplex 100M full or half duplex or 1G full or half duplex MDI X Auto the default self sensing crossover setting off or on Click the Save button ...

Page 45: ... link the HPNA Configure page for the HomePNA network appears Here you can turn HomePNA Networking On or Off If desired you can choose the Output Jack either the Coax jack or the Phone jack or let the device Auto sense it automatically Click the Save button ...

Page 46: ...default SSID for the Gateway is attxxx where xxx is the last 3 digits of the serial number located on the side of the gateway Hide SSID May be either Off or On If On your SSID will not appear in a client scan Security The type of wireless encryption security in use May be OFF No Privacy WPA PSK or WEP Default Key or Manual WPA Version If WPA is selected may be Both WPA 1 or WPA 2 WEP Key Length Ma...

Page 47: ...tion that applies to your setup NOTE If you choose to limit the operating mode to 802 11b or 802 11g only clients using the mode you excluded will not be able to connect Bandwidth May only be selected if mode is some combination of 802 11n from 54 Mbit s to 600 Mbit s with the use of four spatial streams at a channel width of 40 MHz Measure of the width of a range of frequen cies in megahertz Chan...

Page 48: ...sion pull down menu allows you to select the WPA version s that will be required for client connections Choices are Both for maximum interoperability WPA 1 for backward compatibility WPA 2 for maximum security All clients must support the version s selected in order to successfully connect Be sure that your Wi Fi client adapter supports this option Not all Wi Fi clients support WPA PSK OFF No Priv...

Page 49: ...128 bit WEP Hexadecimal characters are 0 9 and a f Examples 40 bits 02468ACE02 128 bits 0123456789ABCDEF0123456789 Any WEP enabled client must have an identical key of the same length as the Router in order to suc cessfully receive and decrypt the traffic Similarly the client also has a default key that it uses to encrypt its transmissions In order for the Router to receive the client s data it mu...

Page 50: ...you specify will be denied access Whitelist means that only MAC addresses you specify will be allowed access You add wireless clients that you want to Whitelist or Blacklist for your wireless LAN by selecting them from the List of MACs or by entering the MAC addresses in the Manual Entry field provided Click the Add button Your entries will be added to a list of clients that will be either authori...

Page 51: ...e quencies that vary from region to region Channel selection can have a significant impact on performance depending on other wireless activity close to this device You need not select a channel at any of the computers on your wireless network They will automatically scan available channels seeking a wireless device broadcasting on the SSID for which they are configured This scan will disconnect an...

Page 52: ...dress The IP address of your Gateway as seen from the LAN Subnet Mask Subnet mask of your LAN DHCPv4 Start Address First IP address in the range being served to your LAN by the Gateway s DHCP server DHCPv4 End Address Last IP address in the range being served to your LAN by the Gateway s DHCP server Public Subnet Public Subnet Enable If you select On from the pull down menu you can enable a second...

Page 53: ...P subnet range Network Address If you chose On from the pull down menu enter the Network Address that defines the range of IP addresses available to clients of the router you are using behind this Gateway Subnet Mask If you chose On from the pull down menu enter the subnet mask for the Network Address that defines the range of IP addresses available to clients of the router you are using behind th...

Page 54: ...ys information about the Gateway s HPNA connected devices in 15 minute inter vals If you have two or more stations you can select the radio button and click the Set DVR button to store the MAC address of the station as the master DVR If the station order subsequently changes the radio button will appear on the correct station ...

Page 55: ...smit packets dropped Dropped Rx This is the number of Receipt packets dropped Tx Error This is the percentage of transmitted errors Rx Error This is the percentage of receipt errors Frames Tx This is the number of frames transmitted Frames Rx This is the number of frames received Bytes Tx This is the number of bytes transmitted Bytes Rx This is the number of bytes received Unicast Tx This is the n...

Page 56: ...rk or the Internet in the form of data packets The Voice page displays information about your VoIP phone lines if configured Your Gateway supports two phones Line 1 and Line 2 If either one or both are registered with a SIP server by your service provider or not registered the Voice page will display their Registration Details The links at the top of the Voice page access a series of pages to allo...

Page 57: ...ne 2 button s To test if the lines are enabled click the Ring Line 1 or Ring Line 2 button s If enabled and registered the respective phone will ring until you click the Stop Ring Line 1 or Stop Ring Line 2 buttons To clear the current state of each phone line click the Reset Line 1 or Reset Line 2 button s This will dis connect any calls currently in progress as well To update the display click t...

Page 58: ...umulative Incoming Outgoing RTP Packet Loss Real time Transport Protocol packets dropped RTP Packet Loss percent age Percent of Real time Transport Protocol packets dropped Total RTCP Packets Total Real time Transport Control Protocol packets Average Inter Arrival Jitter This is calculated continuously in milliseconds as each data packet is received and averaged Max Inter Arrival Jitter This is th...

Page 59: ... calculated in milliseconds on every RTCP SR or RR packet This value is systime lsr dslr 2 lsr means last SR timestamp dslr means delay since last SR Sum of One Way Delay The sum of all the one way delays calculated in milliseconds on every RTCP packet is displayed as Sum of One Way Delay Sum of One Way Delay Squared One Way Delay is squared with every RTCP SR or RR packet Sum of all this will giv...

Page 60: ...odec in Use Audio codec used for decoding the call packet traffic Far End Host Information SIP server IP information IP address and port number Far End Caller Information Caller ID information if available Cumulative Since Last Reset Last Reset Timestamp Date and Time of the last call Number of Calls Total number of calls for each VoIP line Duration Time in seconds since the last call Number of In...

Page 61: ... hook UP Idle OFF N A off Enabled On hook UP Registered ON N A Solid Enabled Off hook UP Registered ON DIAL TONE Blink Enabled On off hook UP Failure OFF N A off Enabled On off hook DOWN Idle OFF N A off VOIP Line 1 2 WAN Status Hook State Reg state FXS Voltage Tone LED Disable Down Off hook Idle On to off off off Enabled Down On Off hook Idle ON Congestion off Enabled Up Off hook Registered ON Co...

Page 62: ...g a proper response are allowed through the firewall Stateful inspection is a security feature that prevents unsolicited inbound access when NAT is disabled You can configure UDP and TCP no activity periods that will also apply to NAT time outs if stateful inspection is enabled on the interface Stateful Inspection parameters are active on a WAN interface only if enabled on your system Stateful ins...

Page 63: ... Combining them in filtersets introduces subtle interactions increasing the like lihood of implementation errors Enabling a large number of filters can have a negative impact on performance Processing of pack ets will take longer if they have to go through many checkpoints in addition to NAT Too much reliance on packet filters can cause too little reliance on other security methods Filter sets are...

Page 64: ...ake your network less secure Be sure each individual filter s purpose is clear Determine how filter priority will affect the set s actions Test the set on paper by determining how the filters would respond to a number of different hypothetical packets Consider the combined effect of the filters If every filter in a set fails to match on a particular packet the packet is Forwarded if all the filter...

Page 65: ...er Enable Disable Packet Filters Click this button to globally turn your filters on or off Packet Filter Rules Buttons Click either Add a Drop Rule or Add a Pass Rule button Action drop If you select drop the specified packets will be blocked pass If you select pass the specified packets will be forwarded ...

Page 66: ...mple Protocol TCP have previously been created Select Protocol if necessary from the pull down menu ICMP TCP UDP or None to specify any another IP transport protocol If you chose by number enter the Protocol by number here If you chose by name enter the Protocol by name here Enter the Source Port this filter will match on Enter the Destination Port this filter will match on If you selected ICMP en...

Page 67: ... Routing filter is applied to source IP addresses it may inadvertently block communica tion with the router itself You can avoid this by preceding the Force Routing filter with a filter that matches the destination IP address of the Gateway itself Example Assume a configured Custom Service Hosted Application for an internal web server whose Global Port Range is 8080 8080 Also assume that we want t...

Page 68: ...ort forwarding rule involves TCP port 80 or 3389 or UDP port 47806 43962 69 123 or 53 or If you attempt to add or change a match such that this occurs AND if running in VDSL Ethernet mode the following warning will appear 2 Pass 207 53 17 0 24 TCP 8080 3 Drop TCP 8080 ...

Page 69: ...d Games and Software on page 73 In addition to choosing from these predefined services you can also select a user defined custom service See Custom Services on page 71 For each supported game or service you can view the protocols and port ranges used by the game or service by clicking the Service Details button For example Select a hosting device from the Needed by Device pull down menu 1 Once you...

Page 70: ...e a software service or game your entry will be added to the list of Service names dis played on the NAT Configuration page To remove a game or software from the hosted list choose the game or software you want to remove and click the Remove button ...

Page 71: ...ange of ports on which incoming traffic will be received Base Host Port The port number at the start of the port range your Gateway should use when forwarding traf fic of the specified type s to the internal IP address Protocol Protocol type of Internet traffic TCP or UDP Once you define a Custom Service it becomes available in the Application Hosting Entry Service menu as one of the services to s...

Page 72: ...to the list of Service names displayed on the Custom Services page Changes are saved immediately To remove this Service click the Delete button To edit this Service click the Edit button Note You cannot edit a Custom Service if the Service is active it must be inactive before it can be edited ...

Page 73: ...im WWII Europe Series v 1 0 Counter Strike DNS Server Dark Reign Delta Force Client and Server Delta Force 2 Delta Force Black Hawk Down Diablo II Server Dialpad DirecTV STB 1 DirecTV STB 2 DirecTV STB 3 Doom 3 Dues Ex Dune 2000 Empire Earth Empire Earth 2 F 16 Mig 29 F 22 Lightning 3 FTP Far Cry Fighter Ace II GNUtella Grand Theft Auto 2 Multiplayer H 323 compliant Netmeeting CUSeeME HTTP HTTPS H...

Page 74: ...Wolfenstein Roger Wilco Rogue Spear SMTP SNMP SSH server ShoutCast Server SlingBox Soldier of Fortune StarCraft StarLancer v 1 0 Starfleet Command TFTP TeamSpeak Telnet Tiberian Sun Command and Con quer Timbuktu Total Annihilation Ultima Online Unreal Tournament Server Urban Assault v 1 0 VNC Virtual Network Computing Warlords Battlecry Warrock Westwood Online Command and Conquer Win2000 Terminal ...

Page 75: ...ngle PC on the LAN to have the Motorola Gateway s public address assigned to it It also provides PAT NAPT via the same public IP address for all other hosts on the private LAN subnet Using IP Passthrough the public WAN IP is used to provide IP address translation for private LAN computers The public WAN IP is assigned and reused on a LAN computer ...

Page 76: ... of your Motorola Gateway This mode works the same as the DHCP modes Unsolicited WAN traffic will get passed to this client The client is still able to access the Motorola Gateway and other LAN clients on the 192 168 1 x network etc The Passthrough DHCP Lease By default the passthrough host s DHCP leases will be shortened to two minutes This allows for timely updates of the host s IP address which...

Page 77: ...ication might use For example some network games select arbitrary port numbers when a connection is opened When you want all unsolicited traffic to go to a specific LAN host This feature allows you to direct unsolicited or non specific traffic to a designated LAN station With NAT On in the Gateway these packets normally would be discarded For instance this could be application traffic where you do...

Page 78: ...f stateful inspection is enabled on the interface Stateful Inspection parameters are active on a WAN interface only if enabled on your Gateway Stateful inspection can be enabled on a WAN interface whether NAT is enabled or not DoS Protection Denial 0f Service attacks are common on the Internet and can render an individual PC or a whole network practically unusable by consuming all its resources Yo...

Page 79: ...er UDP traffic packet flooding should be detected and offend ing packets be dropped On or Off Flood limit UDP Pass multicast Allows exclusion of UDP multicast traffic On by default Flood limit TCP enable Allows exclusion of TCP traffic Off by default Flood limit TCP SYN cookie Allows TCP SYN cookies flooding to be excluded Additional Neighbor Discovery Attack protec tion Prevents downstream traffi...

Page 80: ...ality of the Router from the physical connections to the data traffic being sent by users through the Router You can run all the tests in order by clicking the Run Full Diagnostics button The device will automatically test a number of components to determine any problems You can see detailed results of the tests by clicking the Details buttons for each item ...

Page 81: ... to a destination by showing the number of hops and the router addresses of these hops NSLookup converts a domain name to its IP address and vice versa Detect Missing Filter if you click the Detect Missing Filter button a warning message appears at the top since the detection takes up to 2 minutes When completed the Progress area might look like following To use the Ping capability type a destinat...

Page 82: ...ing the internet default gateway IP address DSL is down DSL settings are incorrect Gate way s IP address or subnet mask are wrong gate way router is down Ping an internet site by IP address Site is down Ping an internet site by name Servers are down site is down From a LAN PC Ping the Modem s LAN IP address IP address and subnet mask of PC are not on the same scheme as the Modem cabling or other c...

Page 83: ... button You can save logs to a text TXT file by clicking the Save to File button This will download the file to your browser s default download location on your hard drive The file can be opened with your favorite text editor Note Some browsers such as Internet Explorer for Windows XP require that you specify the Motorola device s URL as a Trusted site in Internet Options Security This is necessar...

Page 84: ...Administrator s Handbook 84 The following is an example log portion saved as a TXT file ...

Page 85: ...tton The LEDs will operate normally as described in Status Indicator Lights on page 90 The installation may take a few minutes and the web page will indicate a 3 part countdown before returning you to the Home page wait for it to complete During the software installation you will lose Internet and phone service The LEDs will function as follows During this phase the LEDs will function as follows D...

Page 86: ...sh your Internet WAN IP address LAN side users will be briefly disconnected from the Internet but will otherwise be unaffected Click the Reset Connection button to disconnect and reconnect all of your connections including your VoIP phones Click the Reset Device button to reset the Gateway back to its original factory default settings Click the Restart button to reboott the device Previous configu...

Page 87: ...evice will alert users on your network if the connection to the Internet should fail In that event troubleshooting suggestions will display If you check the Missing Filter Notification checkbox the device will alert users on your network if hardware line filters are either missing or improperly installed In that event troubleshooting suggestions will display ...

Page 88: ... link the NAT Table page appears The NAT Table page displays the network address translation sessions in use by the Gateway You can use the pull down menu to limit the displayed sessions to selected IP addresses To refresh all the sessions displayed click the Reset button ...

Page 89: ...simple suggestions for troubleshooting problems with your Gateway s initial configura tion Before troubleshooting make sure you have read the User Manual plugged in all the necessary cables and set your PC s TCP IP controls to obtain an IP address automatically ...

Page 90: ...flash Orange Amber during firmware upgrade flash writing to memory and all other LEDs will be off 3 The Gateway will restart automatically As the device reboots the POWER ON LED behavior will happen During Boot process Power LED GREEN FLASH All other LED OFF If the device does not boot and fails its self test or fails to perform initial load of the boot loader Power LED RED FLASH ALL other LED OFF...

Page 91: ...ish a broadband connection alternating with a five second steady Red This pattern continues until the broadband connection is successfully established Flashing Red No DSL signal on the line This is only used when there is no signal not dur ing times of temporary no tone during the training sequence Off The device is not powered Broadband 1 LED is also the Gigabit ethernet WAN LED when that is in p...

Page 92: ...e RJ11 VoIP port in order to terminate both lines This is a special purpose splitter You must only use the inner outer pair splitter adapters supplied by AT T LED Action Ethernet 1 2 3 4 Orange Amber when a Gigabit Ethernet device is connected to each port Green when 10 100 Ethernet device is connected Flash for Ethernet traffic passing Gigabit Ethernet WAN USB DSL WAN Ethernet LAN F Connector HPN...

Page 93: ...soci ated with the port The flick ering of the light is synchro nized to actual data traffic Off The device is not powered no cable or no powered devices con nected to the associated ports Wireless Solid Green Wi Fi is pow ered Flashing Green Activ ity seen from devices con nected via Wi Fi The flicker ing of the light is synchro nized to actual data traffic Off The device is not powered or no pow...

Page 94: ...L sig nal on the line This is only used when there is no sig nal not during times of tempo rary no tone during the train ing sequence Off The device is not powered Service Solid Green IP connected The device has a WAN IP address from DHCP or 802 1x authen tication and the broadband con nection is up Flashing Green Attempting PPP connection Attempting IEEE 802 1X authentication or attempting to obt...

Page 95: ...tral office DSLAM Make sure the DSL Modem is not plugged into a micro filter Ethernet Make sure the you are using the yellow Ethernet cable not the DSL cable The Ethernet cable is thicker than the standard telephone cable Make sure the Ethernet cable is securely plugged into the Ethernet jack on the PC Make sure the Ethernet cable is securely plugged into the Ethernet port on the DSL Modem Make su...

Page 96: ...linking red within one 1 second of the reset button being pressed This will occur independent of the fact that the button is still being pressed or has been released The indicator lights will flash for a minimum of five seconds even if the reset button is released prior to five seconds after it has been depressed If the reset button is held for more than 5 seconds then it will continue to flash un...

Page 97: ...ect user name 5 administrative access denied invalid password This log message is generated whenever the user tries to access the router s management interface and authentication fails due to incor rect password 6 administrative access denied telnet access not allowed This log message is generated whenever the user tries to access the router s Telnet management interface from a Public interface an...

Page 98: ...r a packet traversing the router or destined to the router itself is dropped because of invalid IP checksum 5 dropped invalid data length This log message is generated whenever a packet traversing the router or destined to the router itself is dropped because the IP length is greater than the received packet length or if the length is too small for an IP packet 6 dropped fragmented packet This log...

Page 99: ...IR_UP DIRECTION UP Upstream direction NM_LOGDROP_CAT_DIR_DOWN DIRECTION DOWN Downstream direction NM_LOGDROP_CAT_ETH ETH Ethernet Header generic NM_LOGDROP_CAT_ETH_SRC_ADDR ETH SRC Ethernet Source MAC Address NM_LOGDROP_CAT_ETH_DST_ADDR ETH DST Ethernet Destination MAC Address NM_LOGDROP_CAT_ETH_PROT ETH PROTOCOL Ethernet Protocol NM_LOGDROP_CAT_ETH_VLAN ETH VLAN Ethernet VLAN ID where appli cable...

Page 100: ... dropped because of Universal Wi Fi Configuration restrictions currently unused NM_LOGDROP_CAT_POLICY_RESTRI CTED_HOST POLICY RESTRICTED HOST Packets dropped because of Restricted Host feature either content or time restrictions cur rently unused NM_LOGDROP_CAT_POLICY_WAN_D NS_QUERY POLICY WAN SIDE DNS QUERY DNS query packets received on a WAN interface NM_LOGDROP_CAT_POLICY_WAN_D HCP_TOSRVR POLIC...

Page 101: ...etection NM_LOGDROP_CAT_FLOW_DOS_OTH ER OTHER DoS Packets rejected because of other DoS detection Currently this includes downstream flows that don t generate upstream responses specifically address ing IPv6 Neighbor Discovery DoS attacks Firewall Log Messages Detail AT T requirement 841 Reason Enumeration C Log Text Representation Why the packet was logged ...

Page 102: ...Administrator s Handbook 102 ...

Page 103: ...d line interface to enter and update the unit s configuration settings monitor its performance and restart it This chapter covers the following topics Overview on page 105 Starting and Ending a CLI Session on page 107 Using the CLI Help Facility on page 107 About SHELL Commands on page 108 SHELL Commands on page 109 About CONFIG Commands on page 118 CONFIG Commands on page 121 Debug Commands on pa...

Page 104: ...s on page 139 NTP commands on page 141 Application Layer Gateway ALG commands on page 142 Dynamic DNS Commands on page 142 Link commands on page 143 Management commands on page 146 Remote access commands on page 148 Physical interfaces commands on page 150 PPPoE relay commands on page 156 NAT Pinhole commands on page 157 Security Stateful Packet Inspection SPI commands on page 157 VoIP commands on...

Page 105: ...elf test download to download config file exit to quit this shell help to get more help all or help help install to download and program an image into flash log to add a message to the diagnostic log loglevel to report or change diagnostic log level netstat to show IP information nslookup to send DNS query for host ping to send ICMP Echo request quit to quit this shell reset to reset subsystems re...

Page 106: ... TCP IP protocol options dns Domain Name System options igmp IGMP configuration options ntp Network Time Protocol options gateway Gateway options link WAN link options mgmt System management options phy Physical interface options dsl DSL configuration options enet Ethernet options pinhole Pinhole options system Gateway s system options log System activity logging options Command Utilities top Go t...

Page 107: ...logon enter the user name and your password Entering the administrator password lets you display and update all Motorola Gateway settings When you have logged in successfully the command line interface lists the username and the security level asso ciated with the password you entered in the diagnostic log Ending a CLI Session You end a command line interface session by typing quit from the SHELL ...

Page 108: ...see Motorola 3000 9437188 as your CLI prompt SHELL Command Shortcuts You can truncate most commands in the CLI to their shortest unique string For example you can use the trun cated command q in place of the full quit command to exit the CLI However you would need to enter rese for the reset command since the first characters of reset are common to the restart command The only commands you cannot ...

Page 109: ...dentifies the IP address of the TFTP server from which you want to copy the Motorola Gateway configuration file The filename argument identifies the path and name of the configuration file on the TFTP server If you include the optional confirm keyword the download begins as soon as all information is entered You can also download an SSL certificate file from a trusted Certification Authority CA on ...

Page 110: ... Warnings or greater includes recoverable error conditions and useful operator informa tion 5 or failure Failures includes messages describing error conditions that may not be recoverable netstat i Displays the IP interfaces for your Motorola Gateway netstat r Displays the IP routes stored in your Motorola Gateway nslookup hostname ip_address Performs a domain name system lookup for a specified ho...

Page 111: ...e first entry reset ipmap Clears the IPMap table NAT reset log Rewinds the diagnostic log display to the top of the existing Motorola Gateway diagnostic log The reset log command does not clear the diagnostic log The next show log command will display information from the beginning of the log file reset wan This function resets WAN interface statistics reset wepkeys This function allows you to for...

Page 112: ...ent Displays DHCP relay agent leases show dhcp server leases Displays the DHCP leases stored in RAM by your Motorola Gateway show dhcp client Displays the DHCP clients stored in RAM by your Motorola Gateway show diffserv Displays the Differentiated Services and QoS values configured in the Motorola Gateway show dsl all Displays DSL port statistics such as upstream and downstream connection rates a...

Page 113: ...ctets 30773 Rx Unicast Pkts 267 Rx Multicast Pkts 0 Tx Discards 0 Tx Octets 31692 10 100 Ethernet phy enet port Port Status Link up Duplex Full duplex active Speed 100BASE T Transmit OK 434 Transmit unicastpkts NA Receive OK 267 Receive unicastpkts 267 show group mgmt Displays the IGMP Snooping Table See IP IGMP commands on page 139 for detailed explanation show ip arp Displays the Ethernet addres...

Page 114: ...ip_v6_conn_name Sends out 6rd loopback packets to the 6rd BG Verifies 6rd connectivity to the 6rd BG show ipv6 interfaces Display IPv6 interfaces show ipv6 routes Display IPv6 route table show ipv6 neighbors Display IPv6 neighbor table show ipv6 dhcp server leases Display DHCPv6 server lease table show ipv6 statistics Display IPv6 statistics information show log Displays blocks of information from...

Page 115: ...S SSL situa tions except the 802 1X supplicant The default if you don t append a qualifier is all all will show both 802 1x supplicant and openssl trust list root certs supplicant will show the supplicant trust list root certs openssl will show openssl trust list root certs show rtsp Displays RTSP ALG session activity data show status Displays the current status of a Motorola Gateway the device s ...

Page 116: ...ngs The filename argu ment identifies the path and name of the configuration file on the TFTP server If you include the optional con firm keyword you will not be prompted to confirm whether or not you want to perform the operation view config Dumps the Motorola Gateway s configuration just as the view command does in config mode who Displays the names of the current shell and PPP users WAN Command...

Page 117: ...esets any open DSL connection reset ppp vccn Resets the point to point connection over the specified virtual circuit This command only applies to virtual circuits that use PPP framing show atm all Displays ATM statistics for the Motorola Gateway The optional all argument displays a more detailed set of ATM statistics show ppp stats lcp ipcp Displays information about open PPP links You can display...

Page 118: ...g ip and pressing RETURN Motorola 3000 9437188 top ip Motorola 3000 9437188 ip As a shortcut you can enter the significant letters of the node name in place of the full node name at the CONFIG prompt The significant characters of a node name are the letters that uniquely identify the node For example since no other CONFIG node starts with b you could enter one letter b to move to the bridge node J...

Page 119: ...LI commands When you are in step mode the command line interface prompts you to enter required and optional settings If a setting has a default value or a current setting the command line interface displays the default value for the com mand in parentheses If a command has a limited number of acceptable values those values are presented in brackets with each value separated by a vertical line For ...

Page 120: ...rola 3000 9437188 Mycroft Diagnostic Level High medium Stepping mode ended Validating Your Configuration You can use the validate CONFIG command to make sure that your configuration settings have been entered correctly If you use the validate command the Motorola Gateway verifies that all required settings for all services are present and that settings are consistent Motorola 3000 9437188 top vali...

Page 121: ...hould use Routing Information Protocol RIP broadcasts to advertise its routing tables to other Gateways RIP Version 2 RIP 2 is an extension of the original Routing Information Protocol RIP 1 that expands the amount of useful information in the RIP packets While RIP 1 and RIP 2 share the same basic algorithms RIP 2 supports several additional features including inclusion of subnet masks in RIP pack...

Page 122: ...0225634272 conf Config Mode v1 3 NOS 128600225634272 top conn NOS 128600225634272 conn set conn conn node list LAN WAN Select name node to modify from list or enter new name to create conn name name LAN link oid LAN LAN WAN PPPoE type static static dhcpc ppp side lan lan wan lan type private private public public delegated mcast forwarding off off on rip send off off v1 v2 v1 compat v2 md5 rip rec...

Page 123: ... If you do not want the gateway use this command to turn it off set ip gateway enable off set conn name name static netmask netmask Specifies a static netmask when the connection type has been set to static The default is 255 255 255 0 set conn name name dhcp server start addr ipaddr If dhcp server enable is set to on specifies the first address in the DHCP address range The Motorola Gateway can r...

Page 124: ...ame dhcp client vendor class string The vendor class default information varies by model and components This is information that identifies the unit set conn name name fs egress filterset_name Attaches a user filterset to a conn which is applied to transmitted packets See Filterset commands on page 124 set conn name name fs ingress filterset_name Attaches a user filterset to a conn which is applie...

Page 125: ... id number set filterset name filterset_name rule number match eth src mac addr mac_address Matches supplied source MAC address field set filterset name filterset_name rule number match eth dst mac addr mac_address Matches supplied destination MAC address field set filterset name filterset_name rule number match src ip addr ip_address_range Matches supplied value with packet s source ip address fi...

Page 126: ...c port number number Matches TCP UDP source port field or port range set filterset name filterset_name rule number match dst port number number Matches TCP UDP destination port field or port range set filterset name filterset_name rule number match tcp flags tcp_flag_string Matches TCP flags in a packet The flag string is comma delimited set filterset name filterset_name rule number match packet l...

Page 127: ...rough all of a filter s rules without a match then the filterset s default actions come into play These behave the same way that rule actions behave set filterset name filterset_name default action set qos marker qos_marker_string Tags the packet according to the queue marker name set filterset name filterset_name default action set tos number Sets the packet tos field to the supplied value set fi...

Page 128: ...burstiness can be buffered versus having a queue that is simply too long Burstiness smoothing requires queueing up the buffers For example if the upstream line rate is 1mbps but the traffic source sends 100mbps bursts for 10ms every second which coincidentally averages 1mbps then the router will have to buffer enough about a full second worth of traffic so that the burst of traffic doesn t get tai...

Page 129: ...the marker with which packets must be marked to be directed to this queue entry s input queue when the type is priority or wfq set queue name queue_name entry number priority 0 255 Sets the priority level of this queue A lower value indicates a higher priority All entries of equal priority will be sub ject to a round robin algorithm for strict priority queue the higher priority gets link resource ...

Page 130: ...ands set ip6 enable on off Enables disables IPv6 globally The default is off When enabled the following default configuration is created set ip6 enable on set ip6 conn name WANv6 enable on set ip6 conn name WANv6 type rd set ip6 conn name WANv6 mtu 1472 set ip6 conn name WANv6 side wan set ip6 conn name WANv6 mcast forwarding off set ip6 conn name WANv6 icmp echo drop on set ip6 conn name WANv6 tr...

Page 131: ...an unassigned drop on set security spi ip6 lan assigned src addr from wan drop on set security spi ip6 ula drop on set security spi ip6 ignore dns from wan on set security spi ip6 ignore dhcp from wan on set security spi ip6 esp hdr drop on set security spi ip6 ah hdr drop on set security spi ip6 allow inbound off set security spi ip4 invalid addr drop on set security spi ip4 private addr drop off...

Page 132: ...configured IPv6 connection set ip6 conn name name static link oid link_name Sets the connection named name to point to an associated link specified by the link oid link_name set ip6 conn name name static ipaddr ipv6_address Specifies a static IPv6 address set ip6 conn name name static prefix length value Specifies the prefix length of the connection s static IPv6 address Default is 64 6rd Connecti...

Page 133: ...n name name 6rd tunnel relay ipv4 addr IPv4_address The IPv4 anycast address of the 6rd border gateway set ip6 conn name name 6rd tunnel ipv4 tx tos mode off use ipv6 off means the TOS field in the IPv4 header is set to zero for transmitted 6rd packets use ipv6 means the the TOS field in the IPv4 header is set to the DS field of the 6rd encapsulated IPv6 packet set ip6 conn name name 6rd tunnel ip...

Page 134: ...e global prefix assigned from the conn delegating the pre fix remains active in the event that the conn delegating the prefix goes down and the prefix becomes invalid This enables local LAN side hosts to continue to use the global prefix uninterrupted If parameter stay up is set to off the connection s delegated prefix becomes invalid when the connection named ipv6 conn name delegating the prefix ...

Page 135: ...efault is off set ip6 dhcp server preference 255 Sets the preference option as defined in RFC1315 sec 22 8 The preference option in the server s Advertise message may assist a DHCPv6 client in selecting from more than one server on the LAN set ip6 dhcp server authoritative on off If a client requests an IP address on a given network segment that the server knows is not valid for that segment and a...

Page 136: ...ic route set ip6 static route name conn oid ipv6_conn_name Route is directed to IPv6 connection named ipv6_conn_name set ip6 static route name nexthop IPv6_address Next hop IPv6 address for forwarding Can be a global or link local address T1 The time at which the client contacts the server from which the addresses in the IA_NA were obtained to extend the lifetimes of the addresses assigned to the ...

Page 137: ...137 set ip6 static route name prefix IPv6_prefix IPv6 prefix set ip6 static route name prefix length value 1 64 IPv6 prefix length set ip6 static route name metric value 0 255 metric assigned to route ...

Page 138: ... server if it has an address for the fully qualified host name set ip dns primary address ip_address Specifies the IP address of the primary DNS name server set ip dns secondary address ip_address Specifies the IP address of the secondary DNS name server Enter 0 0 0 0 if your network does not have a sec ondary DNS name server set ip dns proxy enable on off This allows you to disable the default be...

Page 139: ...c Multicast SSM By adding source filtering a Gateway that proxies IGMP can more selectively join the specific multicast group for which there are interested LAN multicast receivers These features require no user configuration on the Gateway You can set the following options IGMP Snooping enables the Motorola Gateway to listen in to IGMP traffic The Gateway discovers multi cast group membership for...

Page 140: ...ore wireless clients leave a group and the Gateway determines that only a single wireless client is interested in the stream it will once again unicast the stream set ip igmp querier version 1 2 3 Sets the IGMP querier version version 1 version 2 or version 3 If you know you will be communicating with other hosts that are limited to v1 for backward compatibility select 1 otherwise allow the defaul...

Page 141: ...JOIN is seen from a multicast client Any new joins triggered by upstream que ries will reset the timeout back to seconds If no additional joins are seen the entry will expire after seconds Default is 130 set ip igmp snooping unreg mode block flood The snooping unreg mode can be set to block or flood This indicates what should happen to unregistered mul ticast traffic traffic that hasn t been subscr...

Page 142: ...alue Specifies the timeout value for the ESP ALG setup Default is 180 set ip alg esp stream timeout value Specifies the timeout value for the ESP ALG streaming Default is 300 set ip alg ftp enable on off Turns the FTP File Transfer Protocol ALG for file transfers on or off Default is on set ip alg h323 enable on off Turns the H323 ALG for audio video and data communications across IP based network...

Page 143: ...commands on page 124 and Queue commands on page 128 for more information set link name name type ethernet ppp Specifies whether the type of the link named name is ethernet or ppp set link name name mtu override 0 1500 Specifies whether the Maximum Transmission Unit value should be set to other than the standard 1500 A setting of 0 zero turns off override set link name name igmp snooping off on Tur...

Page 144: ...s set to on set link name name ppp password pwd Specifies a password pwd for authentication on the specified link when ppp auth type is set to on set link name name ppp magic number on off Enables or disables LCP magic number negotiation set link name name ppp protocol compression off on Specifies whether you want the Gateway to compress the PPP Protocol field when it transmits datagrams over the ...

Page 145: ...number of seconds the Gateway should wait before sending another echo from an LCP echo request The integer argument can be any number from between 5 and 300 seconds set link name name ppp mru integer Specifies the Maximum Receive Unit MRU for the PPP interface The integer argument can be any number between 128 and 1492 for PPPoE 1500 otherwise set link name name ppp peer dns on off Controls whethe...

Page 146: ...by not advertising its presence and by password protection set management cwmp acs url acs_url port_number set management cwmp acs username acs_username set management cwmp acs password acs_password If TR 069 WAN side management services are enabled specifies the auto config server URL and port number A username and password must also be supplied if TR 069 is enabled The auto config server is spec...

Page 147: ... HTTP web communication with the Motorola Gateway Because port numbers in the range 0 1024 are used by other protocols you should use numbers in the range 1025 65534 when assigning new port numbers to the Motorola Gateway web configuration interface A setting of 0 zero will turn the server off set management web https port 1 65534 Sets the secure web access port for secure management of the Motoro...

Page 148: ...gin to the Gateway Default is 20 minutes for HTTPS set management remote access https total timeout 1 120 Specifies a total timeout period of inactivity for secure remote HTTPS access to the Gateway after which a user must re login to the Gateway Default is 20 minutes for HTTPS set management remote access https max clients number Specifies the maximum number of client sessions for secure remote w...

Page 149: ...AN client s browser is redirected to a web page of failure and help text information The redirect will only occur once as the web UI maintains a state variable to determine whether the redirect has occurred to continually redirect would block the user from reconfiguring the router set management lan redirect missing filter notify on off If set to on if a missing filter on the line is detected the ...

Page 150: ...tance from the DSLAM to the customer s premises set physical dsl modulation auto off on Turns automatic DSL modulation off or on Default is off set physical dsl modulation vdsl2 off on Turns vdsl2 DSL modulation off or on Default is on set physical dsl modulation adsl2 off on Turns adsl2 DSL modulation off or on Default is on set physical dsl modulation adsl2 off on Turns adsl2 DSL modulation off ...

Page 151: ...upstream and downstream bandwidth Default is off set physical dsl bit swap on off Turns DSL bit swapping on or off Bit swapping is resilient to loss of hand shake commands Default is on set physical dsl trellis on off Turns trellis error correction encoding on or off Default is on set physical dsl vectoring enable off on Enables or disables VDSL2 vectoring Vectoring enables VDSL2 to achieve its hi...

Page 152: ...r off on vcc 2 Default is on set physical dsl atm vcc 2 aal type aal5 aal0pkt aal0cell Sets the ATM Adaptation Layer type aal type AAL5 AAL0 packet or AAL0 cell Default is aal5 set physical dsl atm vcc 2 datapath phy0fast phy0interleaved Sets the ATM datapath Fast Path or Interleaved Default is phy0fast set physical dsl atm vcc 2 encap type llcsnap eth llcsnap rtip llcencaps ppp vcmux eth vcmux ip...

Page 153: ...connection The default set 0 35 8 35 0 43 0 51 0 59 8 43 8 51 8 59 may changed set physical dsl atm vcc 1 qos enable off on Turns QoS off or on on the virtual circuit Default is off set physical dsl power save enable off on Turns power saving mode off or on Default is off Ethernet interfaces set physical enet 1 4 mac addr override mac_addr You can override your Gateway s Ethernet MAC address with ...

Page 154: ...is 1 and the highest priority queue is 4 Example Mapping is 1 1 2 2 3 3 4 4 where priority bit values 0 and 1 would map to queue 1 and values 2 and 3 would map to queue 2 etc Wireless interfaces set physical wireless enable on off Enables or disables the wireless capability for supported Wi Fi Gateways Default is on set physical wireless standard bg b only g only bgn n only an a only Sets and lock...

Page 155: ...sid 1 name name Specifies a name for the first Wi Fi SSID Defaults to a unique value per router of the form ATTxxx set physical wireless ssid 1 access type none allow deny Specifies the type of address list for defining MAC address filtering If set to allow only hosts with the specified addresses will be permitted to join the WLAN of the specified SSID If set to deny any hosts except those with th...

Page 156: ...eless wmm enable off on Enables or disables Wi Fi Multimedia settings for multimedia queueing characteristics set physical wireless wmm power save off on Turns power saving mode off or on for wireless multimedia when wmm enable is on Default is on set physical wireless power save enable off on Turns power saving mode off or on for all wireless services Default is off PPPoE relay commands set pppoe...

Page 157: ...535 Specifies the port number your Motorola Gateway should use when forwarding traffic of the specified type Under most circumstances you would use the same number for the external and internal port Security Stateful Packet Inspection SPI commands set security firewall level low high off All computer operating systems are vulnerable to attack from outside sources typically at the operating system ...

Page 158: ...s packets sourced or destined for private IPv4 addresses The default is off set security spi flood limit enable on off Enables or disables whether packet flooding should be detected and offending packets be dropped Default is on set security spi flood limit limit pps_value Sets a maximum Packets Per Second PPS value for packet flood criterion Defaults to 4 set security spi flood limit burst limit ...

Page 159: ...recluded because of reflexive ACL Of course there may be other reasons that particular packets are dropped For IPv4 NAT is generally enabled so reflexive ACL is usually not an issue VoIP commands supported models only Voice over IP VoIP refers to the ability to make voice telephone calls over the Internet This differs from tradi tional phone calls that use the Public Switched Telephone Network PST...

Page 160: ...ound proxy server port for the specified phone Default is 5060 set voip phone n sip user display name name Specifies the user name that is displayed on the web UI Home page or other caller id displays for the specified phone set voip phone n sip user name username Specifies the user name that authenticates the user to SIP for the specified phone set voip phone n sip user password password Specifie...

Page 161: ...mode sets the Dual Tone Multi Frequency Mode inband sends the DTMF digits as a normal inband tone rfc2833 default sends the DTMF digits as an event as part of the RTP packet header information info sends the DTMF digits in the SIP INFO message set voip phone n sip advanced setting sip hk flash mode cpe info Sets the behavior of the flash hook mode for the specified phone line Default is info set v...

Page 162: ...lue 0 7 Sets a QoS P bit value for the RTP session Default is 6 set voip phone n sip advanced setting rtp qos marker value value Sets a QoS marker on the RTP session packets on the specified phone line set voip phone n sip advanced setting fax redundancy level 0 1 Specifies the level of fax redundancy for t38 fax data rate management set voip phone n sip advanced setting sip init de register off o...

Page 163: ...ony setting codec codec jitter peak transit delay value set voip advanced telephony setting codec codec jitter delay buff inc value jitter max transit delay 250 250 250 250 jitter peak transit delay 475 475 475 475 jitter delay buff inc 10 10 10 10 jitter transit delay threshold 10000 10000 10000 10000 Codec G726_24 Codec G726_32 Codec G726_40 packetization time 20 20 20 jitter max reorder delay 5...

Page 164: ...on Turns T 38 fax capability on or off Default is off set voip advanced telephony setting sip session timer value seconds Sets a timer in seconds for SIP sessions to periodically verify that an established session is still active Default is 2280 set voip advanced telephony setting sip t1 timer value milliseconds Sets a SIP T1 timer value an estimate of the round trip time in milliseconds from 100 ...

Page 165: ...y call conferencing set voip phone n call feature do not disturb option off on do not disturb option enables or disables option to prevent the phone from ringing set voip phone n call feature subscribe mwi option off on subscribe mwi option if set to on the Message Waiting Indicator is enabled when new voice mail is received set voip phone n call feature anonymous call block option off on anonymou...

Page 166: ...4 set voip phone n dsp settings echo tail length 0 65535 echo tail length specifies the duration of an echo tail required to invoke cancellation Default is 0 set voip phone n dsp settings vad option off on When vad option is set to on enables Voice Activity Detection Comfort Noise Generation When speech is not present the CNG algorithm generates a noise signal at the level sent from the transmit s...

Page 167: ...l Time UTC options are 12 through 12 1 hour increments from UTC time set system auto daylight savings on off Time zones honoring Daylight Saving Time may be automatically designated set system firewall log enable on off Turns firewall logging on or off The firewall log tracks attempted violations of the firewall rules Default is on set system firewall log persist on off When set to on causes the l...

Page 168: ...ould poll the update server monthly or biweekly The default is monthly set system calendar update protocol http https tftp Specifies the protocol for accessing the update server The default is http set system calendar update server server_address Specifies the address of the update server by name or IP address The default is cpems bellsouth net set system calendar update username string Specifies ...

Page 169: ...check interval until the call is completed that is the call state becomes idle If set to off and a voice call is in progress when an update is scheduled the call is torn down The default is on set system voice check interval 60 86400 This specifies the interval in seconds for the device to wait before attempting a software update when a software update is scheduled but a voice call is in progress ...

Page 170: ...us messages that can help monitor network traffic high High level informational messages or greater includes status messages that may be significant but do not constitute errors The default alerts Warnings or greater includes recoverable error conditions and useful operator information failures Failures includes messages describing error conditions that may not be recoverable ...

Page 171: ...al operation at home for end users Disclaimer Warning Text The following is displayed when entering Debug level from normal Config level Warning Accessing these commands may impact the normal operation of this device Exit now if you entered by mistake Commands console Make this session the console mirror src port dst port To mirror one port s traffic to another Causes traffic transmitted or receiv...

Page 172: ...Administrator s Handbook 172 ...

Page 173: ...N RINGING Environment Operating temperature 0 C to 42 C 32 F to 107 F 8 to 95 Non Condensing Relative Humidity Storage temperature 20 C to 85 C 4 F to 185 F Relative storage humidity 20 to 80 noncondensing Software and protocols Software media Software preloaded on internal flash memory field upgrades done via download to internal flash memory via CLI or web upload Routing IPv4 IPv6 6rd DHCP serve...

Page 174: ...vals United States UL 60950 Third Edition Canada CSA CAN CSA C22 2 No 60950 00 EMC United States FCC Part 15 Class B Canada ICES 003 Telecom United States 47 CFR Part 68 Canada CS 03 Integrated Battery Hazardous Materials Regulations and Procedures CFR Title 49 Section 173 Subsection 185 UL60950 CAN CSA C22 2 No 60950 Recognized component U S and Canada UL 2054 Recognized component U S and Canada ...

Page 175: ...outlet on a circuit different from that to which the receiver is connected Consult the dealer or an experienced radio TV technician for help This device complies with Part 15 of the FCC Rules Operation is subject to the following two conditions 1 This device may not cause harmful interference and 2 this device must accept any interference received including interference that may cause undesired op...

Page 176: ...user to this equipment or equipment malfunctions may give the telecommunications company cause to request the user to disconnect the equipment Users should ensure for their own protection that the electrical ground connections of the power utility telephone lines and internal metallic water pipe system if present are connected together This precaution may be particularly important in rural areas C...

Page 177: ...serves as the main power disconnect locate the direct plug in power supply near the product for easy access For use only with CSA Certified Class 2 power supply rated 12VDC 1 0A Telecommunication installation cautions Never install telephone wiring during a lightning storm Never install telephone jacks in wet locations unless the jack is specifically designed for wet locations Never touch uninsula...

Page 178: ... telephone cord and modular plug is provided with this product It is designed to be connected to a compatible modular jack that is also compliant See installation instructions for details d The REN is used to determine the number of devices that may be connected to a telephone line Excessive RENs on a telephone line may result in the devices not ringing in response to an incoming call In most but ...

Page 179: ...f the wireless models must maintain at least 20 cm between the wireless Gateway and any body part of the user to be in compliance with FCC RF exposure guidelines Electrical Safety Advisory Telephone companies report that electrical surges typically lightning transients are very destructive to customer terminal equipment connected to AC power sources This has been identified as a major nationwide p...

Page 180: ...seche este producto junto con sus residuos residenciales o comer ciales Algunos países o regiones tales como la Unión Europea han orga nizado sistemas para recoger y reciclar desechos eléctricos y electrónicos Comuníquese con las autoridades locales para obtener información acerca de las prácticas vigentes en su región Si no existen sistemas de recolección disponibles solicite asistencia llamando ...

Page 181: ...ão Européia criaram sistemas para cole cionar e reciclar produtos eletroeletrônicos Para obter informações sobre as práticas estabelecidas para sua região entre em contato com as autoridades locais Se não houver sistemas de coleta disponíveis entre em contato com o Serviço ao Cliente da Motorola para obter assistência Återvinning av din Motorola utrustning Kasta inte denna produkt tillsammans med ...

Page 182: ...Administrator s Handbook 182 Please visit http www motorola com recycle for instructions on recycling ...

Page 183: ...OF USE DATA OR PROFITS OR BUSINESS INTERRUPTION HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY WHETHER IN CONTRACT STRICT LIABILITY OR TORT INCLUDING NEGLIGENCE OR OTHERWISE ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE dhcp dhcp isc 4 1 1 P1 Copyright 2004 2011 by Internet Systems Consortium Inc ISC Copyright 1995 2003 by Internet Software Con...

Page 184: ...Software without restriction including without limitation the rights to use copy modify merge publish distribute sublicense and or sell copies of the Software and to permit persons to whom the Software is furnished to do so subject to the following conditions The above copyright notice and this permission notice shall be included in all copies or substantial portions of the Software THE SOFTWARE I...

Page 185: ...PLIED INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM DAMAGES OR OTHER LIABILITY WHETHER IN AN ACTION OF CONTRACT TORT OR OTHERWISE ARISING FROM OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE GNU General Public Licens...

Page 186: ...General Public License The Program below refers to any such program or work and a work based on the Program means either the Program or any derivative work under copyright law that is to say a work containing the Program or a portion of it either verbatim or with modifications and or translated into another language Hereinafter translation is included without limitation in the term modification Ea...

Page 187: ...ble copy of the corresponding source code to be distributed under the terms of Sections 1 and 2 above on a medium customarily used for software interchange or c Accompany it with the information you received as to the offer to distribute corresponding source code This alternative is allowed only for noncommercial distribution and only if you received the program in object code or executable form w...

Page 188: ...ghly clear what is believed to be a consequence of the rest of this License 8 If the distribution and or use of the Program is restricted in certain countries either by patents or by copyrighted interfaces the original copyright holder who places the Program under this License may add an explicit geographical distribution limitation excluding those countries so that distribution is permitted only ...

Page 189: ... which gives you legal permission to copy distribute and or modify the library To protect each distributor we want to make it very clear that there is no warranty for the free library Also if the library is modified by someone else and passed on the recipients should know that what they have is not the original version so that the original author s reputation will not be affected by problems that ...

Page 190: ...ved from the Library and can be reasonably considered independent and separate works in themselves then this License and its terms do not apply to those sections when you distribute them as separate works But when you distribute the same sections as part of a whole which is a work based on the Library the distribution of the whole must be on the terms of this License whose permissions for other li...

Page 191: ... of the Sections above b Give prominent notice with the combined library of the fact that part of it is a work based on the Library and explaining where to find the accompanying uncombined form of the same work 8 You may not copy modify sublicense link with or distribute the Library except as expressly provided under this License Any attempt otherwise to copy modify sublicense link with or distrib...

Page 192: ...Software to deal in the Software without restriction including without limitation the rights to use copy modify merge publish distribute and or sell copies of the Software and to permit persons to whom the Software is furnished to do so provided that the above copyright notice s and this permission notice appear in all copies of the Software and that both the above copyright notice s and this perm...

Page 193: ...DING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT IN NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM DAMAGES OR OTHER LIABILITY WHETHER IN AN ACTION OF CONTRACT TORT OR OTHERWISE ARISING FROM OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN THE SOFTWARE OpenSSL 0 9 8k OpenSSL SSLeay Licens...

Page 194: ...mer in the documentation and or other materials provided with the distribution 3 All advertising materials mentioning features or use of this software must display the following acknowledgement This product includes cryptographic software written by Eric Young eay cryptsoft com The word cryptographic can be left out if the rouines from the library being used are not cryptographic related 4 If you ...

Page 195: ...te products derived from this software without prior written permission For permission or any legal details please contact Office of Technology Transfer Carnegie Mellon University 5000 Forbes Avenue Pittsburgh PA 15213 3890 412 268 4387 fax 412 268 7395 tech transfer andrew cmu edu 4 Redistributions of any form whatsoever must retain the following acknowledgment This product includes software deve...

Page 196: ...ut specific prior permission and notice be given in supporting documentation that copying and distribution is by permission of Roaring Penguin Software Inc Roaring Penguin Software Inc makes no representations about the suitability of this software for any purpose It is provided as is without express or implied warranty Copyright C 1995 1996 1997 1998 Lars Fenneberg lf elemental net Permission to ...

Page 197: ...articular purpose It is provided as is without express or implied warranty of any kind These notices must be retained in any copies of any part of this documentation and or software Copyright c 2000 by Sun Microsystems Inc All rights reserved Permission to use copy modify and distribute this software and its documentation is hereby granted provided that the above copyright notice appears in all co...

Page 198: ...ense Written 1995 2000 by Werner Almesberger EPFL LRC ICA Copyright 2000 Mitchell Blank Jr Based in part on work from Jens Axboe and Paul Mackerras Updated to ppp 2 4 1 by Bernhard Kaindl Updated to ppp 2 4 2 by David Woodhouse 2004 disconnect method added remove_options abuse removed This program is free software you can redistribute it and or modify it under the terms of the GNU General Public L...

Page 199: ...of source code must retain the above copyright notice this list of conditions and the following disclaimer 2 Redistributions in binary form must reproduce the above copyright notice this list of conditions and the following disclaimer in the documentation and or other materials provided with the distribution 3 The name s of the authors of this software must not be used to endorse or promote produc...

Page 200: ... l Institut National Polytechnique de Grenoble et de l UniversitÈ Joseph Fourier regroupant sept laboratoires dont le laboratoire Logiciels SystËmes RÈseaux LSR This work has been done in the context of GIE DYADE joint R D venture between BULL S A and INRIA This software is available with usual research terms with the aim of retain credits of the software Permission to use copy modify and distribu...

Page 201: ...terials provided with the distribution 4 All advertising materials mentioning features or use of this software must display the following acknowledgement with the name s of the authors as specified in the copyright notice s substituted where indicated This product includes software developed by the authors which are mentioned at the start of the source files and other contributors 5 Neither the na...

Page 202: ...re in a product an acknowledgment in the product documentation would be appreciated but is not required 2 Altered source versions must be plainly marked as such and must not be misrepresented as being the original software 3 This notice may not be removed or altered from any source distribution ...

Page 203: ... of 500 White IP Addresses are supported WhiteIPAddresses list takes a comma sepa rated string which can be Individual IP addresses or a range of IP addresses For a range of IP Addresses subnet mask is required The following formats of IP address are accepted Individual IP address 144 130 120 62 or 144 130 120 62 32 Range of 64 IP addresses 144 130 120 64 26 White IP Address list gets rewritten on...

Page 204: ...enc boolean xs annotation xs documentation If true the Captive Portal is enabled xs documentation xs documentation If false the Captive Portal is disabled xs documentation xs annotation xs element xs element name RedirectURL xs annotation xs documentation the URL to be redirected to xs documentation xs annotation xs simpleType xs restriction base xs string xs maxLength value 512 xs restriction xs ...

Page 205: ...ms RPC X_00D09E_SetCaptivePortalParams xs element name X_00D09E_SetCaptivePortalParams xs annotation xs documentation X_00D09E_SetCaptivePortalParams message to set the Captive Portal parameters on a CPE xs documentation xs annotation xs complexType xs sequence xs element name CaptivePortalParamStruct type tns CaptivePortalParamStruct xs sequence xs complexType xs element X_00D09E_SetCaptivePortal...

Page 206: ...Administrator s Handbook 206 ...

Page 207: ...ic and to give each class of traffic a certain behavior such as priority queuing or bandwidth shaping across critical networking bottlenecks Packets forwarded through the system are classified using sets of filter rules to match various criteria for example p bit DSCP IP address port etc The matching rule can set the classification which is the name of the queue that is to be used Figure 1 Illustr...

Page 208: ...e queue are these building blocks basic queues a 1 input 1 output packet list with a length of 64 packets by default Packets will tail drop when the enqueued to a full basic queue priority queue 2 or more input 1 output Schedules the packets from the various inputs strictly according to input s priority weighted fair queue 1 or more input 1 output Schedules the packets according to bandwidth con s...

Page 209: ...not be exceeded even if there is an excess pool of idle bandwidth that could otherwise be shared Upstream QoS Priority and shaping The Gateway uses the DSL sync rate to determine traffic shaping requirements for WAN traffic In this case there are 6 basic queues and a hierarchy of both priority queue and weighted fair queue with bandwidth sharing and dual rate shaping First the packets are classifi...

Page 210: ...he traffic is classified by priority bit value This can be the value retained from WAN ingress assum ing WAN is tagged or it can be a value that is set via a filter rule which allows for advanced classifica tion criteria to be used Even though the LAN interface might not be tagged there is still an internal priority field which is used to convey this information to the switch Downstream QoS Egress...

Page 211: ...see CLI CONFIG Command List 106 Configuration mode 118 Connection commands 121 Custom Service 71 D Default Server 77 designing a new filter set 64 Detect Missing Filter 81 Device Access Code 27 Device List 32 DHCP lease table 111 Diagnostic log 111 114 Diagnostics 80 Documentation conventions 8 Downstream QoS 210 E Ethernet statistics 111 Event Notifications 87 F filter parts 64 parts of 64 filter...

Page 212: ...07 R Redirect page 26 149 Reset Connection 86 Reset Device 86 Reset IP 86 Resets 86 Restart 86 111 Restart command 108 Restart Modem 36 S Safety Instructions 12 Security filters 63 Session Initiation Protocol 159 SHELL Command Shortcuts 108 Commands 108 Prompt 108 SHELL level 118 SHELL mode 108 show config 112 Show ppp 117 SIP 159 Step mode 119 Subnets DHCP 52 Supported Games and Software 73 Syste...

Page 213: ...213 WiFi Key 48 Wireless 46 Wireless Security 48 ...

Page 214: ...Administrator s Handbook 214 ...

Page 215: ...215 Motorola Mobility DSL Gateways Motorola Mobility LLC 600 North U S Highway 45 Libertyville Illinois 60048 USA Telephone 1 847 523 5000 July 13 2012 ...

Page 216: ...Administrator s Handbook 216 ...

Reviews: