background image

 

1

 
 

LevelOne 

 

FBR-1411TX

 

 

1W,4L High Performance   

Broadband Router w/VPN/DMZ port 

 

 

 

User`s Manual 

 

 

 

Summary of Contents for FBR-1411TX

Page 1: ...1 LevelOne FBR 1411TX 1W 4L High Performance Broadband Router w VPN DMZ port User s Manual...

Page 2: ...or transmitted in any form or by any means mechanical magnetic electronic optical photocopying manual or otherwise without the prior written permission Trademarks All products company brand names are...

Page 3: ...s manual may cause harmful interference to radio communications Operation of this equipment in a residential area is likely to cause interference in which case the user at his own expense will be requ...

Page 4: ...Setup LAN s IP WAN s MAC Address WAN Type Virtual Computers 14 4 4 2 DHCP Server 19 4 4 3 Hardware DMZ Demilitarized Zone 20 4 4 4 Change Administrator s Password 21 4 5 Forwarding Rules 21 4 5 1 Vir...

Page 5: ...mware Upgrade 49 4 8 3 Backup Setting 50 4 8 4 Reset to default 50 4 8 5 Reboot 50 4 8 6 Miscellaneous Items 51 A 1 Install TCP IP Protocol into Your PC 52 A 2 Set TCP IP Protocol for Working with NAT...

Page 6: ...protect your Intranet z DHCP server supported All of the networked computers can retrieve TCP IP settings automatically from this product z Web based configuring Device can be configured through any n...

Page 7: ...l NAT feature and allows you to setup the one to one mapping of multiple global IP address and local IP address z DDNS supported This device supports dynamic domain name service DDNS to host your serv...

Page 8: ...n for about 7 seconds to reset system settings to factory defaults 2 1 2 Rear Panel Figure 2 2 Rear Panel Ports Port Description 5VDC Power inlet DC 5V 1 5A minimum DMZ The port where you will connect...

Page 9: ...hernet cable for connecting this product to your cable xDSL modem or Ethernet backbone 3 Power on Connecting the power cord to power inlet this product will automatically enter the self test phase Whe...

Page 10: ...f your computer has successfully connected to this product The following example shows the ping procedure for Windows 95 platforms First execute the ping command ping 192 168 123 254 If the following...

Page 11: ...your browser and disable the proxy or add the IP address of this product into the exceptions Then type this product s IP address in the Location for Netscape or Address for IE field and press ENTER Fo...

Page 12: ...he Side note column You can click this button to renew or release IP manually B Statistics of WAN If the WAN port of router device is connected to the Internet the statistics of all packets passed the...

Page 13: ...de you through a basic configuration procedure step by step Press Next Setup Wizard Select WAN Type For detail settings please refer to Section 4 4 primary setup 4 3 2 Setup Wizard VPN Setting Setup W...

Page 14: ...eway You can change it if necessary 2 WAN s MAC Address It is the MAC address of WAN interface of this device and can be set by user manually Usually the device is attached with one unique MAC address...

Page 15: ...LAN host that is browsing the web page for the one of WAN interface of router device by clicking on the Clone MAC button 4 4 1 3 WAN Type 4 4 1 3 1 Static IPAddress 1 WAN IP Address Subnet Mask Gatew...

Page 16: ...ed by your ISP 4 4 1 3 3 Dynamic IPAddress with Road Runner Session Management e g Telstra BigPond 1 LAN IP Address is the IP address of this product It must be the default gateway of your computers 2...

Page 17: ...oE Service Name optional Input the service name if your ISP requires it Otherwise leave it blank 3 Maximum Idle Time the amount of time of inactivity before disconnecting your PPPoE session Set it to...

Page 18: ...rivate IP address and subnet mask your ISP assigned to you 4 PPTP Account and Password the account and password your ISP assigned to you If you don t want to change the password keep it empty 5 Maximu...

Page 19: ...t IP Subnet Mask Gateway and DNS configurations It is not easy to manually configure all the computers and devices in your network Fortunately DHCP Server provides a rather simple approach to handle a...

Page 20: ...e DMZ Demilitarized Zone This Demilitarized Zone page will show only when Hardware DMZ port is supported Hardware DMZ Demilitarized Zone This feature allow user to configure 10 Global IP for DMZ Hosts...

Page 21: ...Intranet so all hosts behind this product are invisible to the outside world If you wish you can make some of them accessible by enabling the Virtual Server Mapping A virtual server is defined as a S...

Page 22: ...nections like Internet games Video conferencing Internet telephony etc Because of the firewall function these applications cannot work with a pure NAT router The Special Applications feature allows so...

Page 23: ...to add the predefined setting to your list Note At any given time only one PC can use each Special Application tunnel 4 5 3 Miscellaneous Items IPAddress of DMZ Host DMZ DeMilitarized Zone Host is a...

Page 24: ...utbound packets However Inbound filter applies on packets that destined to Virtual Servers or DMZ host only You can select one of the two filtering policies 1 Allow all to pass except those match the...

Page 25: ...enable Inbound Packet Filter click the check box next to Enable in the Inbound Packet Filter field Example 1 Suppose you have SMTP Server 25 POP Server 110 Web Server 80 FTP Server 21 and News Server...

Page 26: ...thing And others are all blocked Example 2 1 2 3 100 28 It stands for a subnet of IP address ranging from 1 2 3 96 to 1 2 3 111 and they can do everything except read net news port 119 and transfer fi...

Page 27: ...et of IP address ranging from 192 168 123 96 to 192 168 123 111 and they are allowed to send mail port 25 receive mail port 110 and browse Internet port 80 port 53 DNS is necessary to resolve the doma...

Page 28: ...address ranging from 192 168 123 96 to 192 168 123 111 and they can do everything except read net news port 119 and transfer files via FTP port 21 Others are allowed After Outbound Packet Filter setti...

Page 29: ...the domain suffix what kind of action you want Checke drop to block the access Checke log to log these access Enable Checke Enable to enable each rule Example In this example 1 Domain include sex com...

Page 30: ...r org etc while URL Blocking require user to input a keyword only In other words Domain filter can block specific website while URL Blocking can block hundreds of websites by simply a keyword URL Bloc...

Page 31: ...n will be record in log file 2 URL include erotica will be blocked but the action will be record in log file 3 URL include girl will not be blocked but the action will be record in log file 4 URL incl...

Page 32: ...trol table please see below to connect to this device But note that do not configure the router with one case resulting in none can access it For example enable the MAC Address Control and Connection...

Page 33: ...rity of network information by utilizing encapsulation protocols encryption algorithms and hashing algorithms VPN enable item VPN protects network information from ill network inspectors But it greatl...

Page 34: ...ost regardless of its IP information Tunnel name Indicate which tunnel that is focused now Method IPSec VPN supports two kinds of key obtained methods manual key and automatic key exchange IKE Manual...

Page 35: ...Life Time Encapsulation Protocol pfs aggressive mode pre shared key remote ID and local ID The tunnel name is derived from previous page of VPN setting Local subnet It is the subnet of LAN site of lo...

Page 36: ...ode or aggressive mode Aggressive mode is a reduced version of main mode and more unsafe Pre shared key It is the first key that supports IKE mechanism of both VPN gateways for negotiating further sec...

Page 37: ...a host a partial subnet or the whole subnet of LAN site of local gateway Local netmask Local netmask combined with local subnet forms a subnet domain Remote subnet It is the subnet of LAN site of remo...

Page 38: ...encryption algorithm is DES or 24 bytes if 3DES The key value should be set in hex formatted Authentication algorithm There are two algorithms can be selected SHA1 and MD5 But none also can be select...

Page 39: ...port too Administrator Time out It is the time of no activity on management web server to logout the administrator by router system automatically Set it to zero to disable this feature Discard PING fr...

Page 40: ...on to administrator via email SMTP Server IP and Port Input the SMTP server IP and port which are concatenated with If you do not specify port number the default value is 25 For example mail your_url...

Page 41: ...provider Before you enable Dynamic DNS you need to register an account on one of these Dynamic DNS servers that we list in provider field To enable Dynamic DNS click the check box next to Enable in t...

Page 42: ...function If Local is checked this device will response request from LAN If Remote is checked this device will response request from WAN Get Community Setting the community of Get Request your device...

Page 43: ...subnets to communicate with each other Routing Table settings are settings used to setup the functions of static and dynamic routing RIP Enable Check to enable RIP function It supports dynamic routin...

Page 44: ...had to go via 192 168 1 33 a gateway and if it sends packets to 192 168 5 77 will go via 192 168 1 55 Each rule can be enabled or disabled individually After routing table setting is configured click...

Page 45: ...lly Function of Buttons Sync Now Synchronize system time with network time server 4 7 6 Schedule Rule You can set the schedule time to decide which service will be turned on or off Select the enable i...

Page 46: ...46 After configure Rule 1 Schedule Enable Selected if you want to Enable the Scheduler Edit...

Page 47: ...the schedule rule and the rule of the rules behind the deleted one will decrease one automatically Schedule Rule can be apply to Virtual server and Packet Filter for example Exanple1 Virtual Server A...

Page 48: ...48 Exanple2 Packet Filter Apply Rule 1 ftp time everyday 14 10 to 16 20 4 8 Toolbox Chapter Home...

Page 49: ...49 4 8 1 View log You can View system log by clicking on the View Log button 4 8 2 Firmware Upgrade You can upgrade firmware by clicking Firmware Upgrade button...

Page 50: ...bin file Once you want to restore these settings please click Firmware Upgrade button and use the bin file you saved 4 8 4 Reset to default You can also reset this product to factory default by click...

Page 51: ...you to power up a networked device remotely In order to enjoy this feature the target device must be Wake on LAN enabled and you have to know the MAC address of this device say 00 11 22 33 44 55 Click...

Page 52: ...lick Network icon and select Configuration tab in the Network window 3 Click Add button to add network component into your PC 4 Double click Protocol to add TCP IP protocol 5 Select Microsoft item in...

Page 53: ...button to set the TCP IP protocol for this NAT Router 4 Now you have two setting methods A Get IP via DHCP server a Select Obtain an IP address automatically in the IP Address tab b Don t input any va...

Page 54: ...B Configure IP manually a Select Specify an IP address in the IP Address tab The default IP address of this product is 192 168 123 254 So please use 192 168 123 xxx xxx is between 1 and 253 for IP Ad...

Page 55: ...address of this product default IP is 192 168 123 254 in the New gateway field and click Add button c In the DNS Configuration tab add the DNS values which are provided by the ISP into DNS Server Sear...

Page 56: ...56...

Reviews: