background image

SmartRG Inc., an ADTRAN company. All Rights Reserved. © 2020

55

NAT

In this section, you can configure the settings for Network Address Translation including setting up virtual servers, port triggering

and DMZ host. There is seldom need to customize these settings as the default settings manage the related features sufficiently for

most environments.

Virtual Servers

Virtual Servers (more commonly known as port forwards) is a technique used to facilitate communications by external hosts with ser-

vices provided within a private local area network.

On this page, you can configure the virtual server settings for your gateway.

1. In the left navigation bar, select

Advanced Setup > NAT

. The following page appears.

Summary of Contents for SMART/RG SR501

Page 1: ...Gateway User Manual Model SR501 Release 1 3 March 2020 Firmware Version 2 6 2 4 501 SE Columbia Shores Boulevard Suite 500 Vancouver Washington 98661 USA 1 360 859 1780 smartrg com...

Page 2: ...Queue Config 68 QoS Classification 70 QoS Port Shaping 72 Routing 74 Default Gateway 74 Static Route 75 Policy Routing 75 RIP Routing Information Protocol 76 DNS 78 DNS Server 78 Dynamic DNS 79 Static...

Page 3: ...Table of Contents Canada Statement 127 5GHz 128 Revision History 129 SmartRG Inc an ADTRAN company All Rights Reserved 2019 2...

Page 4: ...er net working professionals responsible for deploying and managing broadband access networks Readers of this manual are assumed to have a basic understanding of computer operating systems networking...

Page 5: ...herein Neither does it convey any license under its patent rights nor patent rights of others SmartRG further reserves the right to make changes to any products described herein without notice This pu...

Page 6: ...le describes the LEDs and their functions LED Action Description Internet Connected to Internet Authentication failed DSL Connecting to DSL Connected to DSL Transferring data LAN Connected to LAN Tran...

Page 7: ...eset button is a small hole in the gateway s enclosure with the actual button mounted behind the surface This style of push button prevents the gateway from being inadvertently reset during handling R...

Page 8: ...admin and click OK The Device Info summary page appears Note The gateway s UI can be accessed via the WAN connection by entering the WAN IP address in your browser s address bar and entering the defa...

Page 9: ...e of its connection with the provider and with LAN devices You cannot change the settings in this section Summary When you log into the gateway interface the Device Info summary page appears This page...

Page 10: ...through which the gateway handles the traffic Description The service description such ipoe_0_0_1 showing the type of WAN and its ID Type The service type Options are PPPoE IPoE and Bridge VlanMuxId T...

Page 11: ...ors and drops as well as bytes and packets for multicast transmissions and packets for unicast and broadcast transmission All local LAN Ethernet ports Ethernet WAN ports and w10 Wireless Interface are...

Page 12: ...mation about the status of your WAN To reset the counters click Reset Statistics near the bottom of the page The fields on this page are explained in the following table Field Name Description Interfa...

Page 13: ...ckets In OAM Cells Total quantity of received OAM cells Out OAM Cells Total quantity of transmitted OAM cells In ASM Cells Total quantity of received ASM cells Out ASM Cells Total quantity of transmit...

Page 14: ...h determines the quality of the xDSL connection a Scroll to the bottom of the page and click xDSL BER Test The ADSL BER Test dialog box appears b In the Tested Time field select the duration in second...

Page 15: ...d Modulation Options are On and Off SNR Margin dB The signal to noise ration margin SNRM is the maximum increase in dB of the received noise power such that the modem can still meet all of the target...

Page 16: ...ific fields only B of bytes in Mux Data Frame The nominal number of bytes from frame bearer n per Mux Data Frame at Reference Point A in the current latency path M of Mux Data Frames in FEC Data Frame...

Page 17: ...the SYNC state to the HUNT state 2 LCD Errors Total number of Loss of Cell Delineation errors An LCD Error is counted when at least one OCD error is present in each of four consecutive overhead channe...

Page 18: ...r both IPv4 and IPv6 implementation In the left navigation bar click Device Info Route The following page appears The fields on this page are explained in the following table Field Name Description De...

Page 19: ...ed in the following table Field Name Description IP address The IP address of the host Flags Each entry in the ARP cache is marked with one of these flags Options are Complete Per manent and Published...

Page 20: ...onnected LAN device IP Address The IP Address for each connected LAN device Expires In The time until the DHCP lease expires for each LAN device DHCPv6 On this page you can view the host name the IP a...

Page 21: ...on bar select Device Info VPN The following screen appears The fields on this page are explained in the following table Field Name Description Tunnel Name Name of the IPSec tunnel Interface WAN interf...

Page 22: ...gs configured by default If your network is highly customized you may need to modify some of the settings such as Username and Password ATM Interface On this page you can configure Asynchronous Transf...

Page 23: ...e Description VPI Enter a Virtual Path Identifier A VPI is an 8 bit identifier that uniquely identifies a net work path for ATM cell packets to reach its destination A unique VPI number is required fo...

Page 24: ...used to carry one protocol per PVC l VC MUX Virtual Circuit Multiplexer creates a virtual connection used to carry one protocol per PVC Service Category Select the bit rate protocol Options are l UBR...

Page 25: ...Enter a precedence for the specified queue Options are 1 8 VC WRR Weight The weight of the specified virtual channel queue Options are 1 63 VC Precedence The priority of the specified virtual channel...

Page 26: ...Path1 Interleaved Error checking that provides error free data which increases latency If you are not certain which method is best you can select both Scheduler for Queues of Equal Precedence as the D...

Page 27: ...ue Minimum Rate The default minimum rate at which traffic can pass through the queue For no shaping enter 1 disabled Options are 1 0 Kbps Default Queue Shaping Rate The shaping rate for the specified...

Page 28: ...l IP over Ethernet l Bridging Instructions are provided for each variation PPP over Ethernet There are several parts to configuring a PPP over Ethernet WAN service You will progress through several pa...

Page 29: ...ption Enter Service Description Enter a name to describe this configuration Enter 802 1P Pri ority Options are 0 7 The default is 0 For tagged service enter values in this field and the 802 1Q VLAN ID...

Page 30: ...ghts Reserved 2020 29 Field Name Description Select VLAN TPID Select the TPID for this VLAN Options are 0x8100 0x88A8 and 0x9100 Internet Pro tocol Selection Select the IP version Options are IPv4 Onl...

Page 31: ...SmartRG Inc an ADTRAN company All Rights Reserved 2020 30 5 Click Next The following page appears...

Page 32: ...umber of additional attempted packets that the gateway will send in the event that the PPP server does not respond to the keepalive before giving up and declar ing the connection as Failed PPP IP Exte...

Page 33: ...N and Local Ports Select to enable PPPoE passthrough to relay PPPoE connections from behind the modem Also known as Half Bridged mode Enable Firewall This option is selected by default and enables fun...

Page 34: ...artRG gateways supporting a gig abit capable WAN interface Options are 1370 1492 bytes The default is 1492 bytes Use Base MAC Address on this WAN interface Use the SmartRG Devices Base Primary MAC add...

Page 35: ...ere you will select DNS Server settings 10 Select the DNS Server Interface from Available WAN interfaces and click the arrows to move your selection from left to right or from right to left 11 Alterna...

Page 36: ...is complete 13 Review the summary and either click Apply Save to commit your changes or click Back to step through the pages in reverse order to make any necessary alterations IP over Ethernet There a...

Page 37: ...l Rights Reserved 2020 36 1 In the left navigation bar click Advanced Setup WAN Service and then click Add The following page appears 2 Select the Layer2 interface to use for the WAN service and click...

Page 38: ...r tagged service enter values in this field and the 802 1P Priority field For untagged service enter 1 disabled in this field and the 802 1P Priority field Select VLAN TPID Select the TPID for this VL...

Page 39: ...SmartRG Inc an ADTRAN company All Rights Reserved 2020 38 5 Click Next The following page appears...

Page 40: ...ssages If the address is not available the DHCP server assigns the next allowed IP address Option 51 Request Leased Time Select to request the maximum lease time defined for the client Option 54 Reque...

Page 41: ...ISP Dhcpv6 Prefix Delegation IAPD Select this option for the CPE to generate the WAN IP s prefix from the server s REST by MAC address Use the following Static IPv6 address Select this option to manu...

Page 42: ...AT allows you to share one Wide Area Network WAN IP address for multiple computers on your Local Area Network LAN If you do not want to enable NAT atypical and wish the user of this gateway to access...

Page 43: ...nable NAT is selected Enables Session Initiation Protocol SIP pass through NAT Used for Voice over IP VOIP applications Enable IGMP Multicast Proxy Click to enable Internet Group Membership Protocol I...

Page 44: ...Rights Reserved 2020 43 9 Click Next The following page appears 10 Select the interface used as a default gateway for the PPP service being created and click the arrows to move your selection from le...

Page 45: ...from right to left 13 Alternatively you can enter static DNS IP addresses in the Use the following Static DNS IP address section 14 If you selected IPv6 as the Internet protocol earlier you can confi...

Page 46: ...mary page appears 16 Review the summary and either click Apply Save to commit your changes or click Back to step through the pages in reverse order to make any necessary alterations Bridging Before yo...

Page 47: ...6 1 In the left navigation bar click Advanced Setup WAN Service and then click Add The following page appears 2 Select an ATM interface for the WAN service and then click Next The following page appea...

Page 48: ...er a name to describe this configuration Enter 802 1P Priority Options are 0 7 The default is 1 disabled For tagged service enter values in this field and the 802 1Q VLAN ID field For untagged service...

Page 49: ...48 5 Click Next The summary page appears indicating that your Bridging WAN setup is complete 6 Review the summary and either click Apply Save to commit your changes or click Back to step through the p...

Page 50: ...9 LAN On the Local Area Network LAN Setup page you can configure the router s local IP addresses subnet mask DHCP behavior and other related LAN side settings for your gateway 1 In the left navigation...

Page 51: ...ent subscriptions to a multicast group are present Enable IGMP LAN to LAN Multicast Allows multicast traffic between LANs Enable LAN Side Fire wall Enables the restriction of traffic between LAN hosts...

Page 52: ...re DHCP Options section Option 66 For devices that require access to a TFTP server device configuration name files are in cnf file format which enables the device to communicate with other infrastruct...

Page 53: ...ears 2 Modify the fields as needed using the information in the table below 3 Click Save Apply to commit your changes The fields on this page are explained in the following table Field Name Descriptio...

Page 54: ...enable unique local address ULA advert isement on the LAN When you select this option the Randomly Generate option is selected and the gateway can generate a random IPv6 prefix l Statically Configure...

Page 55: ...te way These options represent 100 megabits or 10 megabits using half or full duplex transmission protocols When you have a spe cific device with a known limited transmission speed capability select o...

Page 56: ...ettings as the default settings manage the related features sufficiently for most environments Virtual Servers Virtual Servers more commonly known as port forwards is a technique used to facilitate co...

Page 57: ...plained in the following table Field Name Description Use Interface Select the WAN interface to which this NAT rule will apply Select a Service Select from a list of application that typically require...

Page 58: ...internal port for this server Internal Port End Enter the last internal port for this server Port Triggering Some applications require that specific ports in the gateway s firewall be opened for acce...

Page 59: ...ct the interface for which the port triggering rule will apply Application Name Select or enter the application which requires a port trigger entry Options are l Select an application Select an applic...

Page 60: ...ing ports Options are 1 65535 Open Protocol Select the protocol for the open port Options are TCP UDP and TCP UDP DMZ Host The Broadband Router will forward IP packets from the WAN that do not belong...

Page 61: ...Click Apply Save to commit the completed entry The fields on this page are explained in the following table Field Name Description Filter Name Enter a descriptive name for this filter IP Version For...

Page 62: ...ed from reaching the specified destination s Destination IP address Enter the destination IP address of a LAN side host for which you wish to filter block outgoing traffic for the specified protocols...

Page 63: ...TCP UDP TCP UDP or ICMP Source IP address prefix length Enter the source IP address for rule For IPv6 enter the prefix as well Source Port port or port port Enter source port number or range xxxxx yyy...

Page 64: ...nderstand the consequences of changing the policy click the Change checkbox and then click Change Policy The policy is switched to FORWARD or BLOCKED 3 To add a rule follow the instructions in MAC Fil...

Page 65: ...f the hardware you wish to associate with this filter Source MAC Address Enter the MAC address of the device that is originating requests intended for the device asso ciated with the Destination MAC A...

Page 66: ...his restriction Browser s MAC Address This option is selected by default The MAC address of the connected device is shown Other MAC Address Select this option to restrict access to another device Ente...

Page 67: ...st Type select Include and repeat the above steps The fields on this page are explained in the following table Field Name Description URL Address Enter the URL address to be included in the list Port...

Page 68: ...nced Setup Quality Of Service QoS Config The following page appears 2 If the Enable QoS checkbox is not checked click it to select it Warning If this option is already enabled and you clear the checkb...

Page 69: ...out commonly used DSCP values refer to RFC 2475 No Change 1 CS1 001000 AF32 011100 CS4 100000 Auto Marking 2 AF23 010110 AF31 011010 EF 101110 Default 000000 AF22 010100 CS3 011000 CS5 101000 AF13 001...

Page 70: ...ies weighting based on the Priority field value l Weighted Round Robin Applies a fair round robin scheme weighting that is effective for networks with fixed packet sizes e g ATM networks l Weighted Fa...

Page 71: ...so mark the DSCP or Ethernet priority of the packet 1 In the left navigation bar click Advanced Setup Quality Of Service QoS Classification and then click Add The following page appears A maximum of 3...

Page 72: ...MAC Mask Not applicable for Ether Type of 8021Q Enter the destination MAC Address and des tination MAC Mask for this classification Source IP Address Mask Not applicable for Ether Type of 8021Q Option...

Page 73: ...t Shaping QoS Port Shaping facilitates setting a fixed rate Kbps for each of the Ethernet ports 1 In the left navigation bar click Advanced Setup Quality Of Service QoS Port Shaping The following page...

Page 74: ...Interface Options are 1 1 000 000 Kbps The default is 1 no shaping Egress Burst Size bytes Enter the burst size to be applied to packets in the defined queue Options are 1600 bytes or greater The def...

Page 75: ...Interfaces column Note You must configure the IPv6 interface before attempting to assign it as the default gateway interface 1 In the left navigation bar select Advanced Setup Routing The following p...

Page 76: ...ic route you wish to create Options are IPv4 and IPv6 Destination IP address prefix length Enter the destination network address subnet mask for route Interface Select the WAN Interface for this route...

Page 77: ...licy routing table Source IP Enter the IP address for the source of this policy route Use Interface Select the WAN Interface for this policy route Default Gateway IP Enter the IP address of the defaul...

Page 78: ...Name Description Interface Displays a list of available WAN interfaces Complete the line item s associated with the inter face where you wish to employ RIP Version Select the version of Routing Interf...

Page 79: ...n input the Domain Name Server DNS information supplied by your service provider 1 In the left navigation bar click Advanced Setup DNS The following page appears 2 Optional Select DNS Server interface...

Page 80: ...P address 6 Click Apply Save to commit changes Dynamic DNS Dynamic DNS DDNS automatically updates a name server in the DNS with the active DNS configuration of its configured hostnames addresses or ot...

Page 81: ...DNS service allows you to resolve DNS queries on the Broadband Router by adding a static host name to the IP Address mappings On this page you can configure up to 10 static DNS entries 1 In the left n...

Page 82: ...ou can configure settings for the DSL interface Caution Altering these settings unnecessarily can result in the gateway being unable to attain DSL synchronization 1 In the left navigation bar click Ad...

Page 83: ...nsmission rates ADSL2 ITU T G 992 5 standard 28 1 0 AnnexM Annex L of ITU T G 992 5 standard which supports extended upstream bandwidth 24 3 VDSL2 ITU T G 993 2 standard 100 60 The following table exp...

Page 84: ...Mode Enable Enables Asymmetric Digital Subscriber Line in Packet Transfer Mode l Stinger Mode Enable Enables communication with Stinger type equipment Inventory Man agement Select whether to use the g...

Page 85: ...to return to the previous page The fields on this page are explained in the following table Mode Description Normal Puts the DSL PHY in test mode sending only a Normal signal Reverb Puts the DSL PHY...

Page 86: ...t this Universal Plug and Play standard Common cli ent devices include gaming consoles IP cameras printers and others This feature is enabled by default 1 In the left navigation bar select Advanced Se...

Page 87: ...nce for clients by creating a historical cache of look ups 1 In the left navigation bar click Advanced Setup DNS Proxy The following page appears 2 If not already selected click Enable DNS Proxy The H...

Page 88: ...an create an interface group to map local interfaces to WAN interfaces A typical application for this feature is assigning IPTV STBs to a WAN interface 1 In the left navigation bar click Advanced Setu...

Page 89: ...If this new grouped interface is to share the WAN interface click Shared WAN Interface Not selecting this option this will cause the WAN interface you select to be removed from any other interface gro...

Page 90: ...lient request that includes this vendor ID is denied an IP address from the local DHCP server DHCP option 60 6 Click Apply Save Your changes take effect immediately 7 To remove a grouping on the Inter...

Page 91: ...e settings automatically select Automatic The fields below the buttons are hidden 5 Click Apply Save to commit your changes IPv4inIPv6 On this page you can configure the IPv4inIP6 settings 1 In the le...

Page 92: ...nnections 1 In the left navigation bar click Advanced Setup IP Sec and then click Add The following page appears 2 Complete the fields using the information provided in the following table 3 If desire...

Page 93: ...entire LAN or a single host for local IP addresses Options are l Subnet Allows access to the entire LAN l Single Address For single host select this option IP Address Enter the IP address used for lo...

Page 94: ...eld that appears Pre Shared Key If you selected Pre Shared Key in the Authentication Method field enter the key here Perfect Forward Secrecy Select whether a session key is derived from a set of long...

Page 95: ...re 768bit 8192bit The default is 1024bit Key Life Time Enter the number of seconds that a key is valid The default is 3600 seconds 3 Click Apply Save to commit your changes Certificate In this section...

Page 96: ...ation domain name or email address in the field provided The domain name or email address is for identification purposes and is a free form text field Organization Name A free form text field Typicall...

Page 97: ...information between the BEGIN and END markers 8 Click Apply to implement this certificate Trusted CA On this page you import and store up to four trusted certificates Trusted Certificates are used to...

Page 98: ...ificate details between the BEGIN and END markers 4 Click Apply to commit this certificate After you add one certificate a Remove button appears on the Trusted CA landing page Click this button to rem...

Page 99: ...t to a destination On this page you can configure the multicast settings 1 In the left navigation bar select Advanced Setup Multicast The following page appears 2 Modify the settings as needed using t...

Page 100: ...ssages to hosts the default is 125 Note If you enter a number below 128 the value is used directly If you enter a number 128 it is interpreted as an exponent and mantissa Query Response Inter val Upon...

Page 101: ...aximum Multicast Group Members Enter the maximum number of multicast groups that can be joined on a port or group of ports The default is 25 Fast Leave Enable Select whether the IGMP proxy removes gro...

Page 102: ...nitiated utilizing OAM F5 loopback cells The table is updated with fresh diagnostic information about connection integrity To learn more about what is being tested and what actions to take in the even...

Page 103: ...M 802 3ah a Click the Enabled checkbox Additional fields appear b Modify the fields as needed using the information in the Ethernet Link OAM 802 3ah section of the table below 3 To enable Ethernet Ser...

Page 104: ...ss in the Target MAC field and click Send Linktrace at the bottom of the page The results appear in the Linktrace Result row of the table The fields on this page are explained in the following table F...

Page 105: ...y group MEG ID Appears for the Y 1731 option only Enter the ID of the MEG Local MEP ID Enter the ID of the local maintenance entity group end point Options are 1 8191 The default is 1 Local MEP VLAN I...

Page 106: ...ce Route to Host On this page you can use the Trace Route utility to trace a connection 1 In the left navigation menu click Diagnostics Tools Trace Route to Host The following page appears 2 Enter the...

Page 107: ...rrently running settings to a local drive click Backup Running Settings The File Upload dialog box appears Click OK The backupsettings conf file is created in your default download location 3 To save...

Page 108: ...and click Open 4 Click the appropriate Update button The gateway reboots when the update has completed Restore Default On this page you can reset the gateway to its default settings which can be the f...

Page 109: ...view and configure the system log generated for your gateway 1 In the left navigation bar click Management System Log The following page appears 2 To view the contents of the system log click View Sys...

Page 110: ...Notice Warning Informational and Debugging The options are listed in top down order The default is Debugging Display Level Select Error unless actively troubleshooting a situation with a subscriber fo...

Page 111: ...of the log text paste it into a Notepad window and save the file Management Server A management server is an Auto Configuration Server ACS such as Cisco Prime Home which offers significant advantages...

Page 112: ...wing the instructions from your ACS platform vendor Information about specific fields is provided in the table below 3 Click Apply Save to commit your changes Note This manual does not cover the setup...

Page 113: ...way checks in with the ACS to sync and exchange data A typical production environment entails CPEs in the field informing to the ACS once day or every 86 400 seconds The default is 300 seconds ACS URL...

Page 114: ...e TR 069 parameters entered above 6 If you made any further changes click Apply Save to commit them STUN Config STUN stands for Simple Traversal of UDP through NATs STUN enables a device to find out i...

Page 115: ...page error message from the gateway You can enter a maximum of 256 characters An ACS server may also have STUN functionality running on the same physical box Con sult your ACS vendor for implementatio...

Page 116: ...n the mapping information STUN has discovered and the maximum time to retain that information before refreshing it through forced re discovery Which values are appropriate for these two fields is infl...

Page 117: ...Access Control In this section you can manage access to your gateway and network You can configure passwords accounts services the logout timer and access lists Accounts On this page you can create a...

Page 118: ...SmartRG Inc an ADTRAN company All Rights Reserved 2020 117 1 In the left navigation bar click Management Access Control Accounts The following page appears...

Page 119: ...ount The following page appears 3 Enter a Username and Password for the new account 4 Select the features that you want this user to access If you select a category the subordinate boxes are also sele...

Page 120: ...ort user 2 In the left navigation bar click Management Access Control Accounts and then click Delete Modify Account The Delete Edit Account page appears 3 In the Select an account field select the acc...

Page 121: ...s on this page are explained in the following table Field Name Description Services Select the SCL services that you want to be enabled Options are FTP HTTP ICMP SNMP SSH TELNET and TFTP Use encrypted...

Page 122: ...to the gateway Three accounts are available to manage Admin Support and User 1 In the left navigation bar click Management Access Control Passwords The following page appears 2 Enter your user name a...

Page 123: ...restrict access c Click Apply Save You are returned to the Management Access Lists page d To add up to 9 more addresses repeat steps 2a 2c 3 To remove an address click the Remove checkbox next to it...

Page 124: ...ter a zero 0 in the field Update Software On this page you can update the firmware of your SmartRG gateway Software updates for SmartRG products are available for down load by direct customers of Smar...

Page 125: ...company All Rights Reserved 2020 124 1 In the left navigation bar select Management Reboot The following page appears 2 Click Reboot Your gateway is rebooted and you must log in again if you want to...

Page 126: ...Inc an ADTRAN company All Rights Reserved 2020 125 Logging Out 1 To log out of your gateway click Logout in the left navigation menu The logout page appears 2 Click the Logout button A success message...

Page 127: ...causes harm to the telephone network the telephone company will notify you in advance that temporary discontinuance of service may be required But if advance notice isn t practical the telephone compa...

Page 128: ...pment off and on the user is encouraged to try to correct the interference by one or more of the following meas ures Reorient or relocate the receiving antenna Increase the separation between the equi...

Page 129: ...a minimum distance of 20 centimeters between the radiator and your body Cet metteur ne doit pas tre Co plac ou ne fonctionnant en m me temps qu aucune autre antenne ou metteur Cet quipement devrait tr...

Page 130: ...Revision History REVISION DATE CHANGES 1 3 March 2020 Updated for SmartRG firmware release 2 6 2 4 1 2 September 2019 Updated for firmware release 2 6 2 3 1 1 September 2019 Updated for firmware rele...

Reviews: