background image

 

Administrator’s 
Handbook

 

Motorola Netopia

 

® 

 

Embedded Software 

Version 7.8.2

 

Motorola Netopia

 

®

 

 2200, 3300

January 2009

 and 7000 Series Routers

Residential models

Summary of Contents for 2210 - Netopia Residential Gateway Modem

Page 1: ...Administrator s Handbook Motorola Netopia Embedded Software Version 7 8 2 Motorola Netopia 2200 3300 January 2009 and 7000 Series Routers Residential models ...

Page 2: ...implied or expressed including but not limited to the implied warranties of merchantability and fitness for a particular purpose Motorola may make improvements or changes in the product s described in this manual at any time MOTOROLA and the Stylized M Logo are registered in the US Patent Trademark Office Microsoft Windows Windows Me and Windows NT are either trademarks or registered trademarks of...

Page 3: ...orola Netopia Gateway Quickstart 15 CHAPTER 2 Basic Mode Features 19 The Home Page 20 Home Page Information 20 Links Bar 22 Firewall 23 Firewall Background 23 Wireless Protected Setup 26 Wireless 28 Enable Wireless 28 Wireless ID SSID 28 Enable Wireless Protected Setup WPS 28 Enable Wireless Scheduler 29 Enable Wireless Protected Setup WPS 29 Privacy 29 Advanced Configuration Options optional 30 W...

Page 4: ...s ID SSID 89 Enable Wireless Scheduler 90 Enable Wireless Protected Setup WPS 90 Privacy 90 Advanced Configuration Options optional 91 WiFi Multimedia 102 Wireless MAC Authorization optional 104 Statistics 106 DSL 106 ATM 106 Ethernet 107 IP 107 LAN 107 Wireless 108 Logs 108 Diagnostics 109 Remote Access 110 Update Router 111 From a Server 111 From your PC 111 Reset Router 112 Restart Router 113 B...

Page 5: ...ds 149 Remote ATA Configuration Commands 149 DSL Commands 151 Bridging Settings 152 DHCP Settings 154 DMT Settings 160 Domain Name System Settings 161 IGMP Settings 163 IP Settings 165 Queue Configuration 177 IPMaps Settings 183 Network Address Translation NAT Default Settings 184 Network Address Translation NAT Pinhole Settings 184 PPPoE PPPoA Settings 185 PPPoE with IPoE Settings 188 Ethernet Po...

Page 6: ...y Advisory 250 Warranty Information 250 Software License Limited Warranty and Limitation of Remedies 250 Software License 250 Limited Warranty 251 General Provisions 251 Copyright Acknowledgments 252 Caring for the Environment by Recycling 254 Beskyttelse af miljøet med genbrug 254 Umweltschutz durch Recycling 254 Cuidar el medio ambiente mediante el reciclaje 254 Recyclage pour le respect de l en...

Page 7: ...s Administrator s Handbook This guide is targeted primarily to residential service subscribers Expert Mode sections and the Command Line Interface may also be of use to the support staffs of broadband service providers and advanced residential service subscribers See Expert Mode on page 59 and Command Line Interface on page 127 Most users will find that the basic Quickstart configuration is all th...

Page 8: ...cheduler See Enable Wireless Scheduler on page 32 and Wireless Settings sup ported models on page 216 ADSL and VDSL WIAD Voice over IP VoIP support See VoIP on page 85 and VoIP settings sup ported models on page 229 The system admin password can now be set via scripting with an FTP file See SHELL Commands on page 133 and System Settings on page 210 The current configuration can now be saved as fac...

Page 9: ...risk of fire electric shock and injury to persons including the following Do not use this product near water for example near a bathtub wash bowl kitchen sink or laundry tub in a wet basement or near a swimming pool Avoid using a telephone other than a cordless type during an electrical storm There may be a remote risk of electrical shock from lightning Do not use the telephone to report a gas lea...

Page 10: ...lkoples jordet stikkontakt USB powered models For Use with Listed I T E Only INSTALLATION DER TELEKOMMUNIKATION Wenn Ihre Telefonausrüstung verwendet wird sollten grundlegende Sicherheitsanweisungen immer befolgt werden um die Gefahr eines Feuers eines elektrischen Schlages und die Verletzung von Per sonen zu verringern Beachten Sie diese weiteren Hinweise Benutzen Sie dieses Produkt nicht in Wass...

Page 11: ... to your power source PC or local area network and your Internet access point whether it is a dedicated DSL outlet or a DSL or cable modem Different Motorola Netopia Gateway models are supplied for any of these connections Be sure to enable Dynamic Addressing on your PC See Configure Your PC for Dynamic Addressing ...

Page 12: ...n an IP address automatically 3 Select Obtain DNS server address automatically if available 4 Remove any previously configured gateways if available 5 OK the settings Restart if prompted Proceed to the next section Motorola Netopia Gateway Quickstart on page 15 a Some Win dows versions follow a path like this Start menu Settings Control Panel Network or Network and Dial up Connections Local Area Co...

Page 13: ... to configure it at all To check open the Networking Control Panel and select Internet Protocol Version 4 TCP IPv4 Click the Properties button The Internet Protocol Version 4 TCP IPv4 Properties window should appear as shown If not select the radio buttons shown above and click the OK button ...

Page 14: ...Then go to Step 2 2 Select Built in Ethernet 3 Select Configure Using DHCP 4 Close and Save if prompted Proceed to the next section Motorola Netopia Gateway Quickstart on page 15 a MacOS fol lows a path like this Apple Menu Control Pan els TCP IP Control Panel b Mac OS X follows a path like this Apple Menu System Prefer ences Network ...

Page 15: ...ola Netopia Router displays the Language Preference page 3 Select your language from the pull down menu and click Next The browser displays the Welcome page For security you must create and enter an Administrative password for accessing the Motorola Neto pia Gateway The administrative User name is admin The initial Password can be whatever you choose from one to 32 characters long ChoIces in the A...

Page 16: ...t you attempt to access the Motorola Netopia Gateway s configuration pages When you connect to your Gateway as an Administrator you enter admin as the UserName and the Password you just created 4 Click OK NOTE For 3397GP and 7000 Series models skip the rest of this section Congratulations Your configuration is complete You can go directly to Basic Mode Features on page 19 PPPoE Quickstart The brow...

Page 17: ... Internet bookmarks Optional services that you may have contracted with your provider are also available If you have any questions or encounter problems with your Motorola Netopia Gateway refer to Basic Troubleshooting on page 115 the context sensitive help in your Gateway s web pages or contact your service provider s technical support helpdesk Answers to many frequently asked product related que...

Page 18: ...Administrator s Handbook 18 ...

Page 19: ...etopia Gateway you can configure trouble shoot and monitor the status of your Gateway The Home Page on page 20 Links Bar on page 22 Firewall on page 23 Wireless Protected Setup on page 26 Wireless on page 28 Gaming on page 46 Expert Mode on page 51 Troubleshoot on page 52 Help on page 57 ...

Page 20: ...on Local Network Language Selection Buttons Language Selection Buttons are located at the top of every page If you prefer the web UI to be dis played in a different language you can click one of these buttons and the pages will display in that lan guage until you choose a different button Supported languages in Europe are German French Italian and English Supported languages in the Americas are La...

Page 21: ...r local IP address Connect Only displays if you are not connected For a PPPoE connection clicking this button will allow you to attempt to login using a different User ID and Password Disconnect Only for a PPPoE connection clicking this button will disconnect you from the Internet until you choose to reestablish your connection manually Click the Help link in the left hand column of links to displ...

Page 22: ...f pages to allow you to monitor diagnose and update your Gateway The following sections give brief descriptions of these pages The Home Page on page 20 Firewall on page 23 Wireless Protected Setup on page 26 Wireless on page 28 Gaming on page 46 Expert Mode on page 51 Troubleshoot on page 52 Help on page 57 ...

Page 23: ...und The following table gives some tips for Firewall settings Application Select this Level Other Considerations Typical Internet usage browsing e mail Medium Multi player online gaming Low Set up Gaming on page 46 once defined services will be active whenever Off is set Restore Medium when finished Going on vacation High Protects your connection while you re away Finished online use for the day H...

Page 24: ...opia Firewall offers three levels of increasing protection The following tables indicate the state of ports associated with session types both on the WAN side and the LAN side of the Gateway This table shows how inbound traffic is treated Inbound means the traffic is coming from the WAN into the WAN side of the Gateway ICMP HTTP FTP SNMP telnet DHCP Gateway WAN Side Firewall Setting Off Low Medium...

Page 25: ...their Service Providers while having no identifiable presence on the Internet Gateway LAN Side Firewall Setting Off Low Medium High Port Session Type Port State 20 ftp data Enabled Enabled Disabled 21 ftp control Enabled Enabled Disabled 23 telnet external Enabled Enabled Disabled 23 telnet Netopia server Enabled Enabled Enabled 80 http external Enabled Enabled Disabled 80 http Netopia server Enab...

Page 26: ...cally gen erate a new strong WPA key for your Gateway and any client devices on your wireless network Note Not all client wireless devices support WPS Refer to their documentation This page offers two ways to enable WPS from the Setup Type pull down menu by PIN Entry Here you create a Personal Identification Number PIN just as you would for a bank s ATM card Select the MAC address of the client de...

Page 27: ... Make sure your wireless clients are running Click the Start button to begin the exchange which may last up to two minutes Do not power off your Router during the exchange The Router will display a success message when the exchange has completed ...

Page 28: ...number unique to your unit You can either leave it as is or change it by entering a freeform name of up to 32 characters for example Hercule s Wireless LAN On client PCs software this might also be called the Network Name The Wireless ID is used to identify this particular wireless LAN Depending on their operating system or client wireless card users must either select from a list of available wir...

Page 29: ...rol your wireless LAN s hours of operation automatically Enable Wireless Protected Setup WPS See Wireless Protected Setup on page 26 Privacy By default Privacy is set to WPA PSK with a Wireless Protected Access Pre Shared key Other privacy options as well as other advanced wireless options are available To access them click the Advanced Configuration Options button See Privacy on page 33 for more i...

Page 30: ...o 20 Mbps select Normal 802 11b g To limit your wireless LAN to one mode or the other select 802 11b Only or 802 11g Only NOTE If you choose to limit the operating mode to 802 11b or 802 11g only clients using the mode you excluded will not be able to connect Default Channel 1 through 11 for North America on which the network will broadcast This is a frequency range within the 2 4Ghz band Channel ...

Page 31: ... both the wireless clients and the Router share the same Wireless ID in Closed System mode the Router s wireless LAN will not appear as an available network when scanned for by wireless enabled computers Members of the Closed System WLAN must log onto the Router s wireless network with the identical SSID as that configured in the router Closed System mode is an ideal way to increase wireless secur...

Page 32: ...iety of ways Consult the documentation for your particular wireless card and or operating system Block Wireless Bridging Check the checkbox to block wireless clients from communicating with other wireless clients on the LAN side of the Gateway Enable Wireless Scheduler See Enable Wireless Scheduler on page 29 Enable Wireless Protected Setup WPS See Wireless Protected Setup on page 26 ...

Page 33: ...t be using the same encryption keys See WEP Manual on page 36 WPA 802 1x provides RADIUS server authentication support See RADIUS Server authentication on page 34 below WPA PSK provides Wireless Protected Access the most secure option for your wireless network See WPA PSK on page 35 This mechanism provides the best data protection and access control Be sure that your Wi Fi client adapter supports ...

Page 34: ...ck the Configure RADIUS Server button The Configure RADIUS Server screen appears Enter your RADIUS Server information in the appropriate fields RADIUS Server Addr Name The default RADIUS server name or IP address that you want to use RADIUS Server Secret The RADIUS secret key used by this server The shared secret should have the same characteristics as a nor mal password Alt RADIUS Server Addr Name...

Page 35: ...selecting WPA PSK Wi Fi Protected Access from the pull down menu The screen expands to allow you to enter a Pre Shared Key The key can be between 8 and 63 charac ters but for best security it should be at least 20 characters When you have entered your key click the Save Changes button ...

Page 36: ... for IP traffic on your LAN WEP Manual allows you to enter your own encryption keys manually This is a difficult process but only needs to be done once Avoid the temptation to enter all the same characters Encryption Key Size 1 4 Selects the length of each encryption key The longer the key the stron ger the encryption and the more difficult it is to break the encryption Encryption Key 1 4 The encr...

Page 37: ...smitted traffic The default is key 1 Click the click Save Changes button Any WEP enabled client must have an identical key of the same length as the Router in order to suc cessfully receive and decrypt the traffic Similarly the client also has a default key that it uses to encrypt its transmissions In order for the Router to receive the client s data it must likewise have the identical key of the ...

Page 38: ...y of your cli ent wireless card for IP traffic on your LAN Enter a Passphrase The number of characters to use is shown in the pull down menu Click the Save Changes button This will generate an encryption key automatically Any WEP enabled client must have an identical key of the same length as the Router in order to suc cessfully receive and decrypt the traffic Similarly the client also has a defau...

Page 39: ...Enable SSID checkbox for each SSID you want to enable The screen expands to allow you to name each additional Wireless ID and specify a Privacy mode for each one You can enable or disable Closed System Mode for each SSID by checking or unchecking the checkbox See Enable Closed System Mode on page 31 for more information Privacy modes available from the pull down menu for the multiple SSIDs are WPA...

Page 40: ...on appears to allow you to specify your RADIUS server information See RADIUS Server authentication on page 34 You can now choose to Limit Wireless Access by MAC Address This allows you to restrict individual clients access to each SSID separately Click the Limit Wireless Access by MAC Address but ton The MAC Authorization for that SSID screen appears Select Enabled from the pull down menu The scre...

Page 41: ... will prompt you to restart it Click the Yes button and the Gateway will restart with your new settings NOTES The Gateway supports up to 4 different SSIDs One SSID is broadcast by default and has wireless bridging enabled by default These network IDs can now be configured separately in terms of MAC Address filtering You can configure privacy on one SSID and disable it on another SSID ...

Page 42: ... data depending on Diffserv priority settings These priorities are mapped into four Access Categories AC in increasing order of priority Background BK Best Effort BE Video VI and Voice VO It requires WiFi Multimedia WMM capable clients usually a separate feature enabled at the client net work settings and client PC software that makes use of Differentiated Services Diffserv Refer to your operating...

Page 43: ...ance AIFs Arbitration Interframe Spacing the wait time in milliseconds for data frames cwMin Minimum Contention Window upper limit in milliseconds of the range for determining initial random backoff The value you choose must be lower than cwMax cwMax Maximum Contention Window upper limit in milliseconds of the range of determining final random backoff The value you choose must be higher than cwMin...

Page 44: ...click the Limit Wireless Access by MAC Address button The MAC Authorization screen appears Select Enabled from the pull down menu The screen expands to permit you to add MAC addresses Click the Add button Once it is enabled only entered MAC addresses that have been set to Allow will be accepted onto the wireless LAN All unlisted addresses will be blocked in addition to the listed addresses with Al...

Page 45: ...Submit button When you are finished adding MAC addresses click the Save Changes button You will be returned to the 802 11 Wireless page You can Add Edit or Delete any of your entries later by returning to this page ...

Page 46: ...f Supported Games and Software on page 47 1 Once you choose a software service or game click Enable The Enable Service screen appears Host Device specifies the machine on which the selected software is hosted 2 Select a PC to host the software from the Select Host Device pull down menu and click Enable Each time you enable a software service or game your entry will be added to the list of Service ...

Page 47: ...WII Europe Series v 1 0 Counter Strike Dark Reign Delta Force Client and Server Delta Force 2 Delta Force Black Hawk Down Diablo II Server Dialpad DNS Server Doom 3 Dues Ex Dune 2000 eDonkey Empire Earth Empire Earth 2 eMule eMule Plus F 16 Mig 29 F 22 Lightning 3 Far Cry Fighter Ace II FTP GNUtella Grand Theft Auto 2 Multiplayer H 323 compliant Netmeeting CUSeeME Half Life Half Life 2 Steam Half ...

Page 48: ...k POP 3 PPTP Quake 2 Quake 3 Quake 4 Rainbow Six RealAudio Return to Castle Wolfenstein Roger Wilco Rogue Spear ShoutCast Server SMTP SNMP Soldier of Fortune SSH server StarCraft Starfleet Command StarLancer v 1 0 TeamSpeak Telnet TFTP Tiberian Sun Command and Conquer Timbuktu Total Annihilation Ultima Online Unreal Tournament Server Urban Assault v 1 0 VNC Virtual Network Comput ing Warlords Batt...

Page 49: ... Range entry screen appears Port Forwarding forwards a range of WAN ports to an IP address on the LAN Enter the following infor mation Service Name A unique identifier for the Custom Service Global Port Range Range of ports on which incoming traffic will be received Base Host Port The port number at the start of the port range your Gateway should use when for warding traffic of the specified type ...

Page 50: ...t your Gateway to forward all externally initiated IP traffic TCP and UDP protocols only to a default host on the LAN Enable it for certain situations Where you cannot anticipate what port number or packet protocol an in bound application might use For example some network games select arbitrary port numbers when a connection is opened When you want all unsolicited traffic to go to a specific LAN ...

Page 51: ...not need to modify these settings If you need to enter Expert Mode and click the Expert Mode link you will be challenged to confirm your choice Consult with your Internet Service Provider or your system administrator before attempting to modify any settings in the Expert Mode When you click Yes enter expert mode the Expert Mode Home page appears For information go to Expert Mode on page 59 ...

Page 52: ...Administrator s Handbook 52 Troubleshoot When you click the Troubleshoot link the Links Bar expands to offer two troubleshooting sub headings Diagnostics on page 53 Statistics on page 54 ...

Page 53: ...are generated This sequence of tests takes approximately one minute to generate results Please wait for the test to run to completion Each test generates one of the following result codes Result Meaning PASS The test was successful FAIL The test was unsuccessful SKIPPED The test was skipped because a test on which it depended failed PENDING The test timed out without producing a result Try running...

Page 54: ...tion to the Internet Line State May be Up connected or Down disconnected Modulation Method of regulating the DSL signal DMT Discrete MultiTone allows connections to work better when certain radio transmitters are present Data Path Type of path used by the device s processor Downstream and Upstream statistics Max Allowed Speed kbps Your maximum speeds for downloading receiving and uploading sending...

Page 55: ...address Primary DNS The IP address of the Primary Domain Name Server Primary DNS name The name of the Primary Domain Name Server Secondary DNS The IP address of the backup Domain Name Server if any Secondary DNS name The name of the backup Domain Name Server IP interfaces Address Your Gateway s IP address as seen from your internal network LAN and from the public Internet WAN Netmask The subnet ma...

Page 56: ...gs When you click Logs the Logs page appears Select a log from the pull down menu All Displays the entire system log Connection Displays events logged for the WAN connection System Displays events logged for the Gateway system configuration The current status of the Gateway is displayed for all logs You can clear all log entries by clicking the Clear All Logs button You can save logs to a text TXT...

Page 57: ...57 Help Click the Help link in the left hand column of links to display a page of explanatory information Help is available for every page in the Web interface Here is an example ...

Page 58: ...Administrator s Handbook 58 ...

Page 59: ... monitor the status of your Gateway This section covers the following topics Home Page Expert Mode on page 60 Help on page 62 Links Bar on page 63 Configure on page 64 Statistics on page 106 Diagnostics on page 109 Remote Access on page 110 Update Router on page 111 Reset Router on page 112 Restart Router on page 113 Basic Mode on page 114 ...

Page 60: ...me Page for a PPPoE Connection Home Page Information The Home page displays information about the following categories Connection Information supported VoIP models only Telephone Information Gateway Information Local Network Language Selection Buttons Language Selection Buttons are located at the top of every page If you prefer the web UI to be dis played in a different language you can click one ...

Page 61: ... DHCP server which assigns your local IP address Connect Only displays if you are not connected For a PPPoE connection clicking this button will allow you to attempt to login using a different User ID and Password Disconnect Only for a PPPoE connection clicking this button will disconnect you from the Internet until you choose to reestablish your connection manually Click the Help link in the left...

Page 62: ...dministrator s Handbook 62 Help Click the Help link in the left hand column of links to display a page of explanatory information Help is available for every page in the Web interface Here is an example ...

Page 63: ...o move freely about the site The headings in the following table are hyperlinks You can click on any heading to read about that feature Home Configure Connection LAN WAN DHCP Server IP Passthrough NAT Router Password Time Zone VLAN VoIP Wireless Statistics DSL ATM Ethernet IP LAN Wireless Logs Diagnostics Remote Access Update Router Reset Router Restart Router Basic Mode Help ...

Page 64: ...Administrator s Handbook 64 Configure When you click Configure in the left hand column of links the links bar expands ...

Page 65: ...red However it will no longer pro vide routing or security features in this mode If you want the Gateway to do both bridging and routing select Enabled from the Concurrent Bridging Routing pull down menu When this mode is enabled the Gateway will appear to be a router but also bridge traffic from the LAN if it has a valid LAN side address PPPoE PPPoA DHCP Autosensing The pull down menu allows you ...

Page 66: ...ach connection making it more difficult to attack Manual This setting disables automatic connection attempts You must bring the connection up and down via the Connect Disconnect buttons User InactivityTimeout in seconds If you chose either Manual or On Demand as your Connection Type the User Inactivity Timeout setting can be used to control how long your connection will remain active before it dis...

Page 67: ...N WAN Turnaround feature allows Ethernet port 4 to be used as the WAN interface When you click the Enable button the DSL interface is disabled When you click the Disable button the Ethernet port 4 and the DSL interface function normally ...

Page 68: ... Address Specifies the IP address of the Gateway itself Subnet Mask Specifies the common Class C subnet DHCP Start Address Specifies the first address in the DHCP address range You can reserve a sequence of up to 253 IP addresses within a subnet beginning with the specified address for dynamic assignment DHCP End Address Specifies the last address in the DHCP address range DHCP Lease Specifies the...

Page 69: ... to enter subnet infor mation If DHCP Server see DHCP Server on page 68 is not enabled the DHCP Start Address and DHCP End Address fields do not appear Enter the Router s IP address on the subnet in the IP Address field and the subnet mask for the subnet in the Netmask field Enter the DHCP Start Address and End Address of the subnet range in their respective fields Ranges cannot overlap and there ...

Page 70: ...e DHCP subnet con figuration will default to a class C subnet mask 1 Select either User Configured PC or an IP address displayed in the selection win dow these are the IP addresses currently being served to computers on your LAN If you select User Configured PC you must then configure a local PC to have the public WAN IP address 2 Click Enable Once configured the passthrough host s DHCP leases will...

Page 71: ... Software on page 72 1 Once you choose a software service or game click Enable The Enable Service screen appears Host Device specifies the machine on which the selected software is hosted 2 Select a PC to host the software from the Select Host Device pull down menu and click Enable Each time you enable a software service or game your entry will be added to the list of Service Names displayed on th...

Page 72: ... Flight Sim WWII Europe Series v 1 0 Counter Strike Dark Reign Delta Force Client and Server Delta Force 2 Delta Force Black Hawk Down Diablo II Server Dialpad DNS Server Doom 3 Dues Ex Dune 2000 eDonkey Empire Earth Empire Earth 2 eMule eMule Plus F 16 Mig 29 F 22 Lightning 3 Far Cry Fighter Ace II FTP GNUtella Grand Theft Auto 2 Multiplayer H 323 compliant Netmeeting CUSeeME Half Life Half Life ...

Page 73: ... Quake 2 Quake 3 Quake 4 Rainbow Six RealAudio Return to Castle Wolfenstein Roger Wilco Rogue Spear ShoutCast Server SMTP SNMP Soldier of Fortune SSH server StarCraft Starfleet Command StarLancer v 1 0 TeamSpeak Telnet TFTP Tiberian Sun Command and Conquer Timbuktu Total Annihilation Ultima Online Unreal Tournament Server Urban Assault v 1 0 VNC Virtual Network Comput ing Warlords Battlecry Warroc...

Page 74: ...ing the Port Range entry screen appears Port Forwarding forwards a range of WAN ports to an IP address on the LAN Enter the following infor mation Service Name A unique identifier for the Custom Service Global Port Range Range of ports on which incoming traffic will be received Base Host Port The port number at the start of the port range your Gateway should use when for warding traffic of the spe...

Page 75: ...y to forward all externally initiated IP traffic TCP and UDP protocols only to a default host on the LAN Enable it for certain situations Where you cannot anticipate what port number or packet protocol an in bound application might use For example some network games select arbitrary port numbers when a connection is opened When you want all unsolicited traffic to go to a specific LAN host This fea...

Page 76: ...ord page appears Here you can change the administrative password that you use when logging onto the Gateway as admin Passwords are case sensitive fields and must be 1 to 32 characters long Store your password in a safe place Enter your new password and confirm it Click the Save Changes button ...

Page 77: ...is distant from Green wich Mean Time GMT 12 12 from the pull down menu This allows you to set the time zone for gen eral time stamp purposes If you are in a time zone that honors Daylight Saving Time you will also have the option to automatically enable or disable it If your time zone does not use Daylight Saving Time this checkbox option does not appear ...

Page 78: ...ls When data is passed to a Motorola Netopia VGx enabled broadband gateway specific policies routing and prioritization parameters can be applied to each individual service delivering that service to the appropriate networked device with the required level of quality of service QoS In effect a single Motorola gateway acts as separate virtual gateways for each distinct service being delivered Motor...

Page 79: ...VLANs that have an Inter VLAN routing group enabled in common When configuring VLANs you must define how traffic needs to be forwarded If traffic needs to be bridged between LAN and WAN you can create a single VLAN that encompasses the WAN port and LAN ports If traffic needs to be routed then you must define four elements LAN side VLANs WAN side VLANs Associate IP Interfaces to VLANs Inter VLAN Ro...

Page 80: ...er with VGx managed switch technology is shown below To configure VLANs check the Enable checkbox To create a VLAN select a list item from the main VLAN page and click the Edit button The VLAN Entry page appears Check the Enable checkbox and enter a descriptive name for the VLAN ...

Page 81: ...the VLAN s VID The default VID for the VLAN is selected by the Gateway Global indicating that the ports joining this VLAN are part of a global 802 1q Ethernet VLAN This VLAN includes ports on this Gateway and may include ports within other devices throughout the net work The VID in this case may define the behavior of traffic between all devices on the network hav ing ports that are members of thi...

Page 82: ... specified 802 1p priority bits page 81 into the IP TOS header bit field for IP packets received on this port destined for this particular VLAN It writes any specified IP TOS priority bits into the 802 1p priority bit field for tagged IP packets transmitted from this port for this VLAN All mappings between Ethernet 802 1p and IP TOS are made according to a pre defined QoS map ping policy The pre d...

Page 83: ...re link in the left hand toolbar and then the VLAN link and repeat the process You can Edit Clear Enable or Disable your VLAN entries by returning to the VLANs page and select ing the appropriate entry from the displayed list When you are finished click the Save Changes button ...

Page 84: ...Administrator s Handbook 84 To view the settings for each VLAN select the desired VLAN from the list and click the Details button The screen expands to display the VLAN settings ...

Page 85: ...ain Motorola Netopia Gateway models have two separate voice ports for connecting telephone handsets These models support VoIP If your Gateway is a VoIP model you can configure the VoIP features When you click the VoIP link the VoIP SIP Lines page appears To enable a VoIP line select one of the lines from the SIP Line Entry menu that corresponds to the port on the Gateway to which your phone is con...

Page 86: ...t if required Default is 5060 Outbound Proxy Server Outbound Proxy server name or IP address if required Outbound Proxy Port Outbound Proxy server port if required Default is 5060 User Display Name Name of this phone s user to be displayed on the Home page Exam ple Jacob Q Smith SIP User Name Registration user ID Example jqsmith SIP User Password Registration user password Auth User ID The authori...

Page 87: ...appear for you to enter the number if enabled Enable Call Forwarding On Busy If you check this checkbox calls will be forwarded to a specified num ber if the line is busy The On Busy Call Forwarding Number field will appear for you to enter the number if enabled Enable Call Forwarding On No Answer If you check this checkbox calls will be forwarded to a specified num ber if there is no answer The O...

Page 88: ...Administrator s Handbook 88 The Home page for a VoIP enabled Gateway with both phone lines registered is shown below ...

Page 89: ...reless ID is preset to a number unique to your unit You can either leave it as is or change it by entering a freeform name of up to 32 characters for example Hercule s Wireless LAN On client PCs software this might also be called the Network Name The Wireless ID is used to identify this particular wireless LAN Depending on their operating system or client wireless card users must either select fro...

Page 90: ...ible to control your wireless LAN s hours of operation automatically Enable Wireless Protected Setup WPS See Wireless Protected Setup on page 26 Privacy By default Privacy is set to WPA PSK with a Wireless Protected Access Pre Shared key Other privacy options as well as other advanced wireless options are available To access them click the Advanced Configuration Options button See Privacy on page 9...

Page 91: ...ect Normal 802 11b g To limit your wireless LAN to one mode or the other select 802 11b Only or 802 11g Only NOTE If you choose to limit the operating mode to 802 11b or 802 11g only clients using the mode you excluded will not be able to connect Default Channel 1 through 11 for North America on which the network will broadcast This is a frequency range within the 2 4Ghz band Channel selection dep...

Page 92: ...e wireless clients and the Router share the same Wireless ID in Closed System mode the Router s wireless LAN will not appear as an available network when scanned for by wireless enabled computers Members of the Closed System WLAN must log onto the Router s wireless network with the identical SSID as that configured in the router Closed System mode is an ideal way to increase wireless security and ...

Page 93: ...at is based on encryption between the Router and any PCs clients you have with wireless cards If you are not using WPA PSK Privacy you can use WEP encryption instead For this encryption to work both your Router and each client must share the same Wireless ID and both must be using the same encryption keys See WEP Manual on page 96 WPA 802 1x provides RADIUS server authentication support See RADIUS...

Page 94: ...ck the Configure RADIUS Server button The Configure RADIUS Server screen appears Enter your RADIUS Server information in the appropriate fields RADIUS Server Addr Name The default RADIUS server name or IP address that you want to use RADIUS Server Secret The RADIUS secret key used by this server The shared secret should have the same characteristics as a nor mal password Alt RADIUS Server Addr Name...

Page 95: ...selecting WPA PSK Wi Fi Protected Access from the pull down menu The screen expands to allow you to enter a Pre Shared Key The key can be between 8 and 63 charac ters but for best security it should be at least 20 characters When you have entered your key click the Save Changes button ...

Page 96: ... for IP traffic on your LAN WEP Manual allows you to enter your own encryption keys manually This is a difficult process but only needs to be done once Avoid the temptation to enter all the same characters Encryption Key Size 1 4 Selects the length of each encryption key The longer the key the stron ger the encryption and the more difficult it is to break the encryption Encryption Key 1 4 The encr...

Page 97: ...smitted traffic The default is key 1 Click the click Save Changes button Any WEP enabled client must have an identical key of the same length as the Router in order to suc cessfully receive and decrypt the traffic Similarly the client also has a default key that it uses to encrypt its transmissions In order for the Router to receive the client s data it must likewise have the identical key of the ...

Page 98: ...y of your cli ent wireless card for IP traffic on your LAN Enter a Passphrase The number of characters to use is shown in the pull down menu Click the Save Changes button This will generate an encryption key automatically Any WEP enabled client must have an identical key of the same length as the Router in order to suc cessfully receive and decrypt the traffic Similarly the client also has a defau...

Page 99: ...Enable SSID checkbox for each SSID you want to enable The screen expands to allow you to name each additional Wireless ID and specify a Privacy mode for each one You can enable or disable Closed System Mode for each SSID by checking or unchecking the checkbox See Enable Closed System Mode on page 92 for more information Privacy modes available from the pull down menu for the multiple SSIDs are WPA...

Page 100: ...on appears to allow you to specify your RADIUS server information See RADIUS Server authentication on page 94 You can now choose to Limit Wireless Access by MAC Address This allows you to restrict individual clients access to each SSID separately Click the Limit Wireless Access by MAC Address but ton The MAC Authorization for that SSID screen appears Select Enabled from the pull down menu The scre...

Page 101: ...y will prompt you to restart it Click the Yes button and the Gateway will restart with your new settings NOTES The Gateway supports up to 4 different SSIDs One SSID is broadcast by default and has wireless bridging enabled by default These network IDs can now be configured separately in terms of MAC Address filtering You can configure privacy on one SSID and disable it on another SSID ...

Page 102: ...g data depending on Diffserv priority settings These priorities are mapped into four Access Categories AC in increasing order of priority Background BK Best Effort BE Video VI and Voice VO It requires WiFi Multimedia WMM capable clients usually a separate feature enabled at the client net work settings and client PC software that makes use of Differentiated Services Diffserv Refer to your operatin...

Page 103: ...mance AIFs Arbitration Interframe Spacing the wait time in milliseconds for data frames cwMin Minimum Contention Window upper limit in milliseconds of the range for determining initial random backoff The value you choose must be lower than cwMax cwMax Maximum Contention Window upper limit in milliseconds of the range of determining final random backoff The value you choose must be higher than cwMi...

Page 104: ... click the Limit Wireless Access by MAC Address button The MAC Authorization screen appears Select Enabled from the pull down menu The screen expands to permit you to add MAC addresses Click the Add button Once it is enabled only entered MAC addresses that have been set to Allow will be accepted onto the wireless LAN All unlisted addresses will be blocked in addition to the listed addresses with A...

Page 105: ... Submit button When you are finished adding MAC addresses click the Save Changes button You will be returned to the 802 11 Wireless page You can Add Edit or Delete any of your entries later by returning to this page ...

Page 106: ...llows connections to work better when certain radio transmitters are present Data Path Type of path used by the device s processor Downstream and Upstream statistics Max Allowed Speed kbps Your maximum speeds for downloading receiving and uploading sending data on the DSL line in kilobits per second SN Margin db Signal to noise margin in decibels Reflects the amount of unwanted noise on the DSL li...

Page 107: ... Server Secondary DNS The IP address of the backup Domain Name Server if any Secondary DNS name The name of the backup Domain Name Server IP interfaces Address Your Gateway s IP address as seen from your internal network LAN and from the public Internet WAN Netmask The subnet mask for the respective IP interfaces LAN and WAN Name The name of each IP interface example Eth0 WAN2 Network Routing Tabl...

Page 108: ...system log Connection Displays events logged for the WAN connection System Displays events logged for the Gateway system configuration The current status of the Gateway is displayed for all logs You can clear all log entries by clicking the Clear All Logs button You can save logs to a text CTXT file by clicking the Save to File button This will download the file to your browser s default download ...

Page 109: ...gress Window as they are generated This sequence of tests takes approximately one minute to generate results Please wait for the test to run to completion Each test generates one of the following result codes Result Meaning PASS The test was successful FAIL The test was unsuccessful SKIPPED The test was skipped because a test on which it depended failed PENDING The test timed out without producing...

Page 110: ... password you entered Enter a temporary password for the person you want to authorize Select a Timeout period for this password from the pull down menu 5 30 minutes or Unlimited Remote Access authorization lasts for a selected period of inactivity after which it is automatically disabled again to protect against unauthorized access attempts to your Gateway Selecting Unlim ited will enable remote a...

Page 111: ...updated version exists click the Update Software from Server button and a new version will automatically be downloaded to your Gateway When the download and installation is complete you will be prompted to restart the Gateway From your PC To update your software from a file on your PC you must first download the software from http www netopia com equipment residential firmwareN html 1 Browse your ...

Page 112: ...ou to do that When you click the link you will be challenged to confirm that this is what you want to do If you want to clear your settings click the Yes reset to factory settings button The Gateway configu ration will be reset to the factory default Any configuration information you have entered will be lost and will have to be re entered The Gateway will automatically restart ...

Page 113: ...is restarted it will disconnect all users initialize all its interfaces and copy the Operating System Software and feature keys from its internal storage When you make configuration changes you must restart for the changes to take effect ...

Page 114: ...Administrator s Handbook 114 Basic Mode When you click Basic Mode you are returned immediately to the Basic Mode Home page ...

Page 115: ... simple suggestions for troubleshooting problems with your Gateway s initial configuration Before troubleshooting make sure you have read the User Manual plugged in all the necessary cables and set your PC s TCP IP controls to obtain an IP address automatically ...

Page 116: ...or lights LED Action Power Solid Green Power on Off Power off Flashing Red Power On Self Test Solid Red PO ST Failure Ethernet Solid green Device connected Off No device con nected or modem power is off DSL Solid green DSL synch Off Modem power off Flash ing green DSL attempting synch Flashing green red DSL fails to synch 3 times Flashing red No DSL sig nal Internet Solid green Connected to Intern...

Page 117: ... Flash green when there is activity on the LAN USB Model 2241N only Solid green when connected Flash green when there is activity on the LAN DSL Solid green when trained Blinking green when no line is attached or when training Internet Solid green when Broadband device is connected Flashes green for activity on the WAN port If the physical link comes up but PPP or DHCP fail the LED turns red Power...

Page 118: ...eing installed Ethernet 1 2 3 4 Solid green when connected Flash green when there is activity on the LAN DSL Solid green when trained Blinking green when no line is attached or when training Internet Solid green when Broadband device is connected Flashes green for activity on the WAN port If the physical link comes up but PPP or DHCP fail the LED turns red Power Ethernet 1 2 3 4 DSL Internet ...

Page 119: ...re is activity on the LAN Wireless Flashes green when there is activity on the wireless LAN Off if driver fails to initialize or if wireless is disabled DSL Solid green when trained Blinking green when no line is attached or when training Internet Solid green when Broadband device is connected Flashes green for activity on the WAN port If the physical link comes up but PPP or DHCP fail the LED tur...

Page 120: ...olid green when trained Blinking green when no line is attached or when training Internet Solid green when Broadband device is connected Flashes green for activity on the WAN port Phone 1 Phone 2 Off when respective line is not registered and on hook Solid green when respective SIP account is registered and on hook Flash green when the respective line is off hook and registered or FXO feature is e...

Page 121: ...olid green when Internet connection is established Internet Solid green when Gateway is connected Flashes green when transmitting or receiving data on the WAN port Ethernet 1 2 3 4 Solid green when connected Flash green when there is activity on the LAN Wireless Flashes green when there is activity on the wireless LAN Power Wireless DSL Ethernet 1 2 3 4 Internet ...

Page 122: ... installed DSL DSL 1 2 ADSL2 models only Solid green when trained Blinking green when no line is attached or when training Flashes green for DSL traffic Ethernet 1 2 3 4 Solid green when connected Flash green when there is activity on the LAN Wireless Flashes green when there is activity on the wireless LAN Off if driver fails to initialize or if wireless is disabled Power DSL Ethernet 1 2 3 4 Wir...

Page 123: ...if device malfunctions Flashes Red when new embedded software is being installed Ethernet 1 2 3 4 Solid green when connected Flash green when there is activity on the LAN DSL Solid green when trained Blinking green when no line is attached or when training Flashes green for DSL traffic Power DSL Ethernet 1 2 3 4 ...

Page 124: ...into the 2200 3300 or 7000 series DSL Gate way properly 3 Try a known good wall outlet 4 Replace the power supply and or unit DSL Sync Unlit 1 Make sure the you are using the correct cable The DSL cable is the thinner standard tele phone cable 2 Make sure the DSL cable is plugged into the correct wall jack 3 Make sure the DSL cable is plugged into the DSL port on the 2200 3300 or 7000 series DSL G...

Page 125: ...the PC s TCP IP Properties for the USB Network Control Panel is set to obtain an IP address via DHCP 3 Make sure the PC has obtained an address in the 192 168 1 x range You may have changed the subnet addressing 4 Make sure the PC is configured to access the Internet over a LAN 5 Disable any installed network devices Ethernet HomePNA wireless that are not being used to connect to the 2200 3300 or ...

Page 126: ... than 1 2 a second the unit will continue to run as normal If you press the factory default button for 1 second when you release it the Gateway will perform a factory reset clear all settings and configurations and reboot Do not hold the button down too long 5 10 seconds This will destroy any saved default settings as well DSL POWER 4 3 ETHERNET 2 1 RESET ON OFF Power Off On LAN DSL 4 1 2 3 Factor...

Page 127: ...e command line interface to enter and update the unit s configuration settings monitor its performance and restart it This chapter covers the following topics CONFIG Commands on page 128 Overview on page 129 Starting and Ending a CLI Session on page 131 Using the CLI Help Facility on page 131 About SHELL Commands on page 132 SHELL Commands on page 133 About CONFIG Commands on page 145 CONFIG Comma...

Page 128: ...Name System Settings on page 160 Security Settings on page 195 IGMP Settings on page 162 System Settings on page 210 IP Settings on page 164 Syslog on page 214 Queue Configuration on page 177 Wireless Settings supported models on page 216 IPMaps Settings on page 184 VLAN Settings on page 224 Network Address Translation NAT Default Set tings on page 185 VoIP settings supported models on page 229 Ne...

Page 129: ...le etheroam to show Ethernet OAM info exit to quit this shell help to get more help all or help help install to download and program an image into flash license to enter an upgrade key to add a feature log to add a message to the diagnostic log loglevel to report or change diagnostic log level netstat to show IP information nslookup to send DNS query for host ping to send ICMP Echo request quit to ...

Page 130: ...TR 064 LAN management dynamic dns Dynamic DNS client options ethernet Ethernet options ethernet MAC override Ethernet options igmp IGMP configuration options ip TCP IP protocol options ip maps IPmaps options nat default Network Address Translation default options pinhole Pinhole options ppp Peer to Peer Protocol options wan over ether PPP over Ethernet options preferences Shell environment settings...

Page 131: ... Motorola Netopia Gateway settings When you have logged in successfully the command line interface lists the username and the security level associated with the password you entered in the diagnostic log Ending a CLI Session You end a command line interface session by typing quit from the SHELL node of the command line interface hierarchy Saving Settings In CONFIG mode the save command saves the w...

Page 132: ...9437188 you would see Netopia 3000 9437188 as your CLI prompt SHELL Command Shortcuts You can truncate most commands in the CLI to their shortest unique string For example you can use the truncated command q in place of the full quit command to exit the CLI However you would need to enter rese for the reset command since the first characters of reset are common to the restart command The only comm...

Page 133: ...con nectivity over each interface on your Motorola Netopia Gateway The console displays the results of each test as the diagnostic utility runs If one test is dependent on another the diagnostic utility indents its entry in the console window For example the diagnostic utility indents the Check IP connect to Ethernet LAN entry since that test will not run if the Check Ethernet LAN Connect test fai...

Page 134: ... server on which your Motorola Netopia Gateway operating software is stored The filename argument identifies the path and name of the operating software file on the TFTP server If you include the optional keyword confirm you will not be prompted to confirm whether or not you want to perform the operation license key This command installs a software upgrade key An upgrade key is a purchased item ba...

Page 135: ...which you want DNS information ping s size c count hostname ip_address Causes the Motorola Netopia Gateway to issue a series of ICMP Echo requests for the device with the specified name or IP address The hostname argument is the name of the device you want to ping for example ping ftp neto pia com The ip_address argument is the IP address in dotted decimal notation of the device you want to locate...

Page 136: ... point of system malfunction reset dhcp server Clears the DHCP lease table in the Motorola Netopia Gateway reset diffserv Resets the Differentiated Services diffserv statistics reset enet all Resets Ethernet statistics to zero Resets individual LAN switch port statistics as well as wireless and WAN Ethernet statistics where applicable reset heartbeat Restarts the heartbeat sequence reset ipmap Cle...

Page 137: ...them without the need to reset the entire configuration of the unit restart seconds Restarts your Motorola Netopia Gateway If you include the optional seconds argument your Motor ola Netopia Gateway will restart when the specified number of seconds have elapsed You must enter the complete restart command to initiate a restart show all info Displays all settings currently configured in the Motorola...

Page 138: ...y requirement It displays IP Address Man ufacture OUI and Serial number show enet all Displays Ethernet interface statistics maintained by the Motorola Netopia Gateway Beginning with Firmware Version 7 7 supports display of individual LAN switch port statistics as well as WAN Ethernet statistics where applicable Example show enet status all 10 100 Ethernet 1 Port Status Link down Transmit OK 0 Tra...

Page 139: ...tics show features Displays standard and keyed features installed in the Motorola Netopia Gateway show group mgmt Displays the IGMP Snooping Table See IGMP Settings on page 162 for detailed explanation show ip arp Displays the Ethernet address resolution table stored in your Motorola Netopia Gateway show ip igmp Displays the contents of the IGMP Group Address table and the IGMP Report table mainta...

Page 140: ...for your Motorola Netopia Gateway If you include the optional all argument your Motorola Netopia Gateway will display a more detailed set of memory statistics show pppoe Displays status information for each PPPoE socket such as the socket state service names and host ID values show rootcert Dumps the Subject line for the list of all the trusted root certificates for the supplicant which is cur ren...

Page 141: ...port masks PortPort 00000000 00000000 GlobalPort 00000000 00000000 SumPort 00000000 00000000 segment 4 port masks PortPort 00000000 00000000 GlobalPort 00000000 00000000 SumPort 00000000 00000000 segment 5 port masks PortPort 00000000 00000000 GlobalPort 00000000 00000000 SumPort 00000000 00000000 segment 6 port masks PortPort 00000000 00000000 GlobalPort 00000000 00000000 SumPort 00000000 0000000...

Page 142: ...active link namePtr ethernet0 0 portType 3 portIndex 2 ifId 46 vlan active link namePtr ssid1 portType 5 portIndex 12 ifId 56 vlan active link namePtr eth ip0 portType 7 portIndex 32 ifId 76 vlan active segment Type 1 Index 2 Vid 3 PortMask 0000003c 00000000 SwitchMask 0000003c WirelessMask 00000000 vlan active link namePtr ethernet0 0 portType 3 portIndex 2 ifId 90 vlan active link namePtr ethern...

Page 143: ...ice to which you want to connect The port argument is the number of t he port over which you want to open a telnet session traceroute ip_address hostname Traces the routing path to an IP destination upload server_address filename confirm Copies the current configuration settings of the Motorola Netopia Gateway to a TFTP Trivial File Trans fer Protocol server The TFTP server must be accessible on you...

Page 144: ... use Enter the reset dhcp client release command without the variable to see the letter assigned to each virtual circuit reset dhcp client renew vcc id Releases the DHCP lease the Motorola Netopia Gateway is currently using to acquire the IP settings for the specified DSL port The vcc id identifier is an index letter in the range B I and does not directly map to the VCC in use Enter the reset dhcp...

Page 145: ...erarchy Moving from CONFIG to SHELL You can navigate from anywhere in the CONFIG hierarchy back to the SHELL level by entering quit at the CONFIG prompt and pressing RETURN Netopia 3000 9437188 top quit Netopia 3000 9437188 Moving from top to a subnode You can navigate from the top node to a subnode by entering the node name or the significant letters of the node name at the CONFIG prompt and pres...

Page 146: ... are configuring when you are setting up a Motorola Neto pia Gateway Displaying Current Gateway Settings You can use the view command to display the current CONFIG settings for your Motorola Netopia Gateway If you enter the view command at the top level of the CONFIG hierarchy the CLI displays the settings for all enabled functions If you enter the view command at an intermediate node you see sett...

Page 147: ...off option off on off on You can accept the default value for a field by pressing the Return key To use a different value enter it and press Return You can enter the CONFIG step mode by entering set from the top node of the CONFIG hierarchy You can enter step mode for a particular service by entering set service_name In stepping set mode press Control X Return Enter to exit For example Netopia 300...

Page 148: ...n for the specified ATA configuration profile to be stored in the Gateway set ata profile 0 3 ata mac addr MAC_addr Specifies the MAC address of the ATA for the specified configuration profile set ata profile 0 3 ata qos enable on off Enables or disables QoS for the specified profile set ata profile 0 3 ata dhcpc enable on off Enables or disables DHCP client service for the specified profile set ata ...

Page 149: ...ies a registrar server port typically 5060 for the specified profile set ata profile 0 3 ata outproxy server ip_addr Specifies an outbound proxy server hostname or IP address for the specified profile set ata profile 0 3 ata outproxy port port Specifies an outbound proxy server port typically 5060 for the specified profile set ata profile 0 3 ata auth id value Specifies an authorization ID for the sp...

Page 150: ...rst Size that apply to the VC You set these values according to specifi cations defined by your service provider set atm vcc n qos peak cell rate 1 n If QoS class is set to cbr or vbr then specify the peak cell rate that should apply to the specified vir tual circuit This value should be between 1 and the line rate The Peak Cell Rate PCR should be set to the maximum rate a PVC can oversubscribe it...

Page 151: ...twork to another When bridging is enabled the Motorola Netopia Gateway maintains a table of up to 512 MAC addresses Entries that are not used within 30 seconds are dropped If the bridging table fills up the oldest table entries are dropped to make room for new entries Virtual circuits that use IP framing cannot be bridged NOTE For bridging in the 3341 or any model with a USB port you cannot set th...

Page 152: ...rcuit using Ethernet framing set bridge dsl vccn option on off Enables or disables bridging services for the specified interface Specified interface must be part of a VLAN if bridge is turned on Only RFC 1483 Bridged encapsulation is supported currently show log command will show that WAN Bridge is enabled when at least one WAN interface is bridged show ip interfaces and show bridge interfaces com...

Page 153: ... with the specified address for dynamic assignment set dhcp end address ip_address If you selected server specifies the last address in the DHCP address range set dhcp lease time lease time If you selected server specifies the default length for DHCP leases issued by the Motorola Netopia Gateway Enter lease time in dd hh mm ss day hour minute second format set dhcp option group name Specifies a na...

Page 154: ...lar option numbers set dhcp gen option name name Specifies a DHCP generic option set named name of one to 15 characters You can specify up to 20 gen options Each can contain up to 100 bytes of data up to a maximum of 912 bytes of options data total An option will be served only if the client requests it set dhcp gen option option 1 255 Specifies the DHCP option by number 1 255 The following table ...

Page 155: ...47 String up to 100 characters N Yes 48 49 IP address list Multiples of 4 Yes 50 IP address 4 No 51 Unsigned 4 byte integer 4 No 52 Unsigned 1 byte integer 1 No 53 Unsigned 1 byte integer 1 Yes 54 IP address 4 Yes 55 String up to 100 characters N No 56 String up to 100 characters N Yes 57 Unsigned 2 byte integer 2 Yes 58 59 Unsigned 4 byte integer 4 No 60 String up to 100 characters N Yes 61 Strin...

Page 156: ...rm 81 Complex N No 82 Sub option list N Yes 83 Complex N No 84 Undefined Yes 85 IP address list Multiples of 4 Yes 86 87 Unicode String Multiples of 2 Yes 88 Encoded DN list N Yes 89 IP address list Multiples of 4 Yes 90 Complex N No 91 97 Undefined Weakly defined Yes 98 String up to 100 characters N Yes 99 115 Undefined Weakly defined Yes 116 Flag 1 Yes 117 Unsigned 2 byte integer list Multiples ...

Page 157: ...ditional filterset is available for use when bridging to block undesired DHCP traffic Up to 8 rules can be created in the filterset which are evaluated in order dhcp option determines which DHCP option should be compared A typical value would be to use option 60 data for comparison but allowing this value to be configured permits more flexibility set dhcp filterset name settopbox rule 1 type dhcp ...

Page 158: ... 9450000 dhcp sc set dhcp option server set dhcp start address 192 168 1 33 set dhcp end address 192 168 1 63 set dhcp lease time 00 01 00 00 set dhcp filterset name settopbox rule 1 type dhcp option set dhcp filterset name settopbox rule 1 dhcp option 60 set dhcp filterset name settopbox rule 1 match str STB set dhcp filterset name settopbox rule 1 match action pass set dhcp filterset name settop...

Page 159: ...a value for the VPI or VCI setting will disable this feature set dmt dmt dying gasp default off on Enables or disables Gateway dying gasp behavior in cases of power failure Default is off set dmt wiringMode auto tip_ring A_A1 not supported on all models This command configures the wiring mode setting for your ADSL line Selecting auto the default causes the Gateway to detect which pair of wires inn...

Page 160: ...e IP address of the primary DNS name server set dns proxy enable This allows you to disable the default behavior of acting as a DNS proxy The default is on set dns secondary address ip_address Specifies the IP address of the secondary DNS name server Enter 0 0 0 0 if your network does not have a secondary DNS name server set dns configured dns priority 0 255 Sets the configured DNS priority relativ...

Page 161: ... IP address may change as a result of a PPPoE connection to the Internet set dynamic dns option off dyndns org set dynamic dns ddns host name myhostname dyndns org set dynamic dns ddns user name myusername set dynamic dns ddns user password myuserpassword Enables or disables dynamic DNS services The default is off If you specify dyndns org you must supply your hostname username for the service and...

Page 162: ...n order for IGMP snooping to function with IGMP Version 3 it must always track the full source filter state of each host on each group as was previously done with Version 2 only when Fast Leave support was enabled IGMP Version 3 supports IGMP Source Filtering the ability for group memberships to incorporate source address filtering This allows Source Specific Multicast SSM By adding source filteri...

Page 163: ...querier keeps track of which client is requesting which channel by IP address When a leave message is received the querier can check its internal table to see if there are any more clients on this group If there are none it immediately sends an IGMP leave message to the upstream querier Log Enable If set to on all IGMP messages on both the LAN and the WAN will be logged Wireless Multicast to Unica...

Page 164: ...efault fast leave enables a non standard expedited leave mech anism The querier keeps track of which client is requesting which channel by IP address When a leave message is received the querier can check its internal table to see if there are any more clients on this group If there are none it immediately sends an IGMP leave message to the upstream querier set igmp wireless m2u on off This comman...

Page 165: ... networks is 255 255 255 0 Class C subnet mask set ip dsl vccn restrictions admin disabled none Specifies restrictions on the types of traffic the Motorola Netopia Gateway accepts over the DSL vir tual circuit The admin disabled argument means that access to the device via telnet web and SNMP is disabled RIP and ICMP traffic is still accepted The none argument means that all traffic is accepted se...

Page 166: ...upport running an IPoE interface without an address set ip dsl vccn dns acquired dns priority 0 255 Sets the priority for DNS acquired via PPP See Domain Name System Settings on page 160 for more information set ip dsl vccn rip send off v1 v2 v1 compat v2 MD5 Specifies whether the Motorola Netopia Gateway should use Routing Information Protocol RIP broad casts to advertise its routing tables to ot...

Page 167: ...2 bit binary IP address represent network information The default subnet mask for most networks is 255 255 255 0 Class C subnet mask set ip ethernet A restrictions none admin disabled Specifies whether an administrator can open a telnet connection to a Motorola Netopia Gateway over an Ethernet interface A the LAN to monitor and configure the unit The admin disabled argument prevents access to the ...

Page 168: ... subnet 2 8 option on off Enables or disables additional LAN subnets Up to seven additional subnets may be configured set ip ethernet A subnet n address ip_address Specifies an IP address for the subnet n when subnet n option is on set ip ethernet A subnet n netmask netmask Specifies the subnet mask for the subnet n when subnet n option is on Default IP Gateway Settings set ip gateway option on of...

Page 169: ...p_address argument is 0 0 0 0 which indicates that the virtual PPP inter face will accept the IP address returned by the remote peer If you enter 0 0 0 0 the peer system must be configured to supply this address set ip ip ppp vccn restrictions admin disabled none Specifies restrictions on the types of traffic the Motorola Netopia Gateway accepts over the PPP vir tual circuit The admin disabled arg...

Page 170: ...rings with a maximum of 31 characters and must match the other Gateway s keys for proper operation of MD5 support set ip ip ppp vccn rip receive off v1 v2 v1 compat v2 MD5 Specifies whether the Motorola Netopia Gateway should use Routing Information Protocol RIP broad casts to update its routing tables with information received from other Gateways on the other side of the PPP link If you specify v...

Page 171: ...ateway Use the fol lowing commands to add static ARP entries to the Motorola Netopia Gateway static ARP table set ip static arp ip address ip_address Specifies the IP address for the static ARP entry Enter an IP address in the ip_address argument in dotted decimal format The ip_address argument cannot be 0 0 0 0 set ip static arp ip address ip_address hardware address MAC_address Specifies the Eth...

Page 172: ...sence events notification and instant messaging RTSP Passthrough set ip rtsp passthrough off on Turns Real Time Streaming Protocol application layer gateway client passthrough on or off RTSP is a protocol used for streaming media It allows a client remotely to control a streaming media server A typical application is Video on Demand VoD The default is on IP Prioritization set ip prioritize off on ...

Page 173: ...ot override TOS bit settings made by the endpoints Support for source provided IP TOS priorities within the Gateway is achieved simply by turning the Diff Serve option on and by setting the lohi asymmetry to adjust the behavior of the Gate way s internal queues set diffserv lohi ratio 60 100 percent Sets a percentage between 60 and 100 used to regulate the level of packets allowed to be pending in...

Page 174: ...ve the address equal to zero this check is ignored for outbound packets The check is always ignored for inbound packets The DiffServe queuing func tion must be applied ahead of NAT and before NAT re maps the inbound packets all inbound pack ets are destined for the Gateway s WAN IP address outside ip mask If you want packets destined for and originating from a certain WAN IP address to be marked e...

Page 175: ...rol set diffserv qos dscp map 31 best effort assured expedite network control By default the following settings are used in custom mode set diffserv qos dscp map 0 best effort set diffserv qos dscp map 1 best effort set diffserv qos dscp map 2 best effort set diffserv qos dscp map 3 best effort set diffserv qos dscp map 4 best effort set diffserv qos dscp map 5 assured set diffserv qos dscp map 6 ...

Page 176: ...set diffserv qos dscp map 25 network control set diffserv qos dscp map 26 network control set diffserv qos dscp map 27 network control set diffserv qos dscp map 28 network control set diffserv qos dscp map 29 network control set diffserv qos dscp map 30 network control set diffserv qos dscp map 31 network control ...

Page 177: ...es which can be a basic queue or a priority queue comprising a group of basic queues a weighted fair queue comprising a group of basic queues or a funnel com prising a group of basic queues assign a queue instance to the Ethernet WAN interface map packet attributes to a queue The same queue name can be assigned to multiple interfaces which require identical queue configura tion however currently t...

Page 178: ...y Queue funnel Funnel Queue Basic Queue set queue name basic_queue_name option on off set queue name basic_queue_name type basic Specifies the Basic Queue named basic_queue_name attributes Basic queues have one input and one output The basic queue is assigned an ID with the following attribute when the queue is full dis card By default the following Basic Queues are created basic_q0 basic_q1 basic...

Page 179: ...e bandwidth used for each queue share bw if enabled the bandwidth for this queue can be shared between other queues when idle limit bw if enabled then the transmit bandwidth for that queue is limited to the weight ratio if the WFQ type is relative or the specified bps if the WFQ type is bps Therefore if queue X has limit bw enabled and any other queues have share bw enabled then queue X will not u...

Page 180: ...Administrator s Handbook 180 set queue name wfq entry 4 weight 40000 set queue name wfq entry 4 share bw off set queue name wfq entry 4 limit bw off set queue name wfq default input basic_q0 ...

Page 181: ...ame name of priority queue input_queue_name name of input queue priority_value numeric relative priority of queue The lower the number the higher the priority of the queue default input specifies the default input queue name By default the following priority queue is created set queue name pq option on set queue name pq type priority set queue name pq entry 1 input basic_q0 set queue name pq entry...

Page 182: ...t queue name wfq 100kbps option on set queue name wfq 100kbps type funnel set queue name wfq 100kbps input wfq set queue name wfq 100kbps bps 100000 Interface Queue Assignment The WAN ethernet queue is assigned as follows set ethernet ethernet ip ethernet B ip ppp vccn tx queue queue_name By default the WAN ethernet interface is assigned the default priority queue set ethernet ethernet B tx queue ...

Page 183: ...lt Gateway must be located on a network connected to the Motorola Netopia Gateway configured interface set ip static routes destination network net_address metric integer Specifies the metric hop count for the static route The default metric is 1 Enter a number from 1 to 15 for the integer argument to indicate the number of Gateways actual or best guess a packet must traverse to reach the remote n...

Page 184: ...ame internal ip ip_address Specifies the name and static ip address of the LAN device to be mapped set ip maps name name external ip ip_address Specifies the name and static ip address of the WAN device to be mapped Up to 8 mapped static IP addresses are supported ...

Page 185: ...t NAT traffic that would other wise be discarded by the Motorola Netopia Gateway should be directed to a specific hosts set nat default mode off default server ip passthrough Specifies whether you want your Motorola Netopia Gateway to forward unsolicited traffic from the WAN to a default server or an IP passthrough host when it doesn t know what else to do with it set nat default dhcp enable on of...

Page 186: ...t pinhole name name Specifies the identifier for the entry in the Gateway s pinhole table You can name pinhole table entries sequentially 1 2 3 by port number 21 80 23 by protocol or by some other naming scheme set pinhole name name protocol select tcp udp Specifies the type of protocol being redirected set pinhole name name external port start 0 49151 Specifies the first port number in the range ...

Page 187: ...eive Unit MRU for the PPP interface The integer argument can be any number between 128 and 1492 for PPPoE 1500 otherwise set ppp module vccn magic number on off Enables or disables LCP magic number negotiation set ppp module vccn protocol compression on off Specifies whether you want the Motorola Netopia Gateway to compress the PPP Protocol field when it transmits datagrams over the PPP link set p...

Page 188: ... between 1 and 30 set ppp module vccn connection type instant on always on Specifies whether a PPP connection is maintained by the Motorola Netopia Gateway when it is unused for extended periods If you specify always on the Motorola Netopia Gateway never shuts down the PPP link If you specify instant on the Motorola Netopia Gateway shuts down the PPP link after the number of seconds specified in t...

Page 189: ...d before you can enter other information set ppp module vccn port authentication username username The username argument is 1 255 alphanumeric characters The information you enter must match the username configured in the PPP peer s authentication database set ppp module vccn port authentication password password The password argument is 1 128 alphanumeric characters The information you enter must...

Page 190: ... C address 0 0 0 0 set ip ethernet C broadcast 0 0 0 255 set ip ethernet C netmask 255 255 255 0 set ip ethernet C restrictions admin disabled set ip ethernet C addr mapping on set ip ethernet C dns acquired dns priority 20 set ip ethernet C mcast fwd on set ip ethernet C igmp null source addr off set ip ethernet C tx queue none set ip ethernet C unnumbered off set ip ethernet C rip receive off se...

Page 191: ...cast forwarding on the specified interface If set to on this interface acts as an IGMP proxy host and IGMP packets are transmitted and received on this interface on behalf of IGMP hosts on the LAN interface See IGMP Settings on page 162 for more information set ip ip ppp vcc1 igmp null source addr off on Enables or disables IGMP null source address if mcast fwd is set to on If enabled the source I...

Page 192: ...scovers and keeps alive the Link connectivity and reports faults if the link goes down Supported OAM request and response types are remote loopback enable remote loopback disable variable request variable response set ethernet oam ah option off on Enables or disables Ethernet OAM Default is off set ethernet oam ah pass through off on Enable or disable Ethernet OAM pass through mode Default is off ...

Page 193: ...plays help for a node when you navigate to that node set preference more lines Specifies how many lines of information you want the command line interface to display at one time The lines argument specifies the number of lines you want to see at one time The range is 1 65535 By default the command line interface shows you 22 lines of text before displaying the prompt More y n If you enter 1000 for...

Page 194: ...e Motorola Netopia Gateway graphical user interface Similarly you would have to configure your telnet application to use the appropriate port when opening a configuration connection to your Motorola Netopia Gateway set servers web http 1 65534 Specifies the port number for HTTP web communication with the Motorola Netopia Gateway Because port numbers in the range 0 1024 are used by other protocols ...

Page 195: ...an be either another Motorola Netopia unit or another IPsec IKE based security product For VPN you can choose to have traffic authenticated encrypted or both When connecting the Motorola Netopia unit in a telecommuting scenario the corporate VPN settings will dictate the settings to be used in the Motorola Netopia unit If a parameter has not been specified from the other end of the tunnel choose t...

Page 196: ... page 201 for details about SafeHarbour IPsec tunnel capability set security ipsec tunnels name 123 IKE mode pre shared key type ascii hex See page 201 for details about SafeHarbour IPsec tunnel capability set security ipsec tunnels name 123 IKE mode pre shared key hex_string See page 201 for details about SafeHarbour IPsec tunnel capability Example 0x1234 set security ipsec tunnels name 123 IKE m...

Page 197: ... tunnel capability set security ipsec tunnels name 123 IKE mode invalid spi recovery off on Enables the Gateway to re establish the tunnel if either the Motorola Netopia Gateway or the peer gateway is rebooted set security ipsec tunnels name 123 xauth enable off on Enables or disables Xauth extensions to IPsec when IKE mode neg method is set to aggressive Default is off set security ipsec tunnels ...

Page 198: ...urity ipsec tunnels name 123 local id addr ip address set security ipsec tunnels name 123 local id mask ip mask set security ipsec tunnels name 123 remote id type IP address Subnet Hostname ASCII Specifies the NAT remote ID type for the specified IPsec tunnel when Aggressive Mode is set set security ipsec tunnels name 123 remote id id_value Specifies the NAT remote ID value as specified in the rem...

Page 199: ...0 The soft parameters designate when the system begins to negotiate a new key For example after 82800 seconds 23 hours or 1 Gbyte has been transferred whichever comes first the key will begin to be renegotiated The hard parameters indicate that the renegotiation must be complete or the tunnel will be dis abled For example 86400 seconds 24 hours means that the renegotiation must be complete within ...

Page 200: ...ss Subnet Hostname ASCII Local ID Address Value Local ID Mask Remote ID Type IP Address Subnet Hostname ASCII Remote ID Address Value Remote ID Mask Pre Shared Key Type HEX ASCII Pre Shared Key DH Group 1 2 5 PFS Enable Off On SA Encrypt Type DES 3DES SA Hash Type MD5 SHA1 Invalid SPI Recovery Off On Soft MBytes 1 1000000 Soft Seconds 60 1000000 Hard MBytes 1 1000000 Hard Seconds 60 1000000 IPSec ...

Page 201: ...rea Network LAN address of the remote gateway or VPN Server you are communicating with Peer Internal Netmask The Peer Internal IP Netmask is the subnet mask of the Peer Internal IP Network NAT enable Turns NAT on or off for this tunnel PAT Address If NAT is enabled this field appears You can specify a Port Address Translation PAT address or leave the default all zeroes if Xauth is enabled If you l...

Page 202: ...1 and 1 000 000 MB and refers to data traffic passed If this value is not achieved the Hard MBytes parameter is enforced This parameter does not need to match the peer gateway Soft Seconds Setting the Soft Seconds parameter forces the renegotiation of the IPSec Security Asso ciations SAs at the configured Soft Seconds value The value can be configured between 60 and 1 000 000 seconds This paramete...

Page 203: ... access to the user s central office IKE establishes the tunnel and Xauth authenticates the specific remote user s Gateway Since NAT is supported over the tunnel the remote user network can have multiple PCs behind the client Gateway accessing the VPN By using XAuth network VPN managers can centrally control remote user authentication Xauth Username Password Xauth authentication credentials Table ...

Page 204: ...lue of tcp seq diff is 0 it means that this check is disabled set security state insp ip ppp dsl vccn deny fragments off on set security state insp ethernet A B deny fragments off on Sets whether fragmented packets are allowed to be received or not on the specified interface set security state insp tcp timeout 30 65535 Sets the stateful inspection TCP timeout interval in seconds set security state...

Page 205: ...quad format 32 exposed addresses can be created The range for exposed address numbers are from 1 through 32 set security state insp xposed addr exposed address n protocol tcp udp both any Sets the protocol for the stateful inspection feature for the exposed address list Accepted values for protocol are tcp udp both or any If protocol is not any you can set port ranges set security state insp xpose...

Page 206: ...the specified filter rule A match on this rule resets idle timeout status and keeps the WAN connection alive The default is off For idle reset to be displayed forward must be enabled on a filter rule set security pkt filter filterset filterset name input_filter output_filter index frc rte on off Turns forced routing on or off for the specified filter rule A match on this rule will force a route for pac...

Page 207: ..._filter output_filter index tos mask value Specifies the TOS Type Of Service mask to match packets The value for tos mask can be from 0 255 set security pkt filter filterset filterset name input_filter output_filter index protocol value Specifies the protocol value to match packets the type of higher layer Internet protocol the packet is carrying such as TCP or UDP The value for protocol can be from 0 25...

Page 208: ...src port does not display if nc is set for src compare or dst compare set security pkt filter filterset filterset name input_filter output_filter index dst port value Specifies the destination IP port to match packets the port on the receiving host that the packet is destined for if the underlying protocol is TCP or UDP dst port does not display if nc is set for src compare or dst compare set security ...

Page 209: ...ment is the IP address of the host acting as an SNMP console set snmp sysgroup contact contact_info Identifies the system contact such as the name phone number beeper number or email address of the person responsible for the Motorola Netopia Gateway You can enter up to 255 characters for the contact_info argument You must put the contact_info argument in double quotes if it contains embedded space...

Page 210: ...is part of this type of network do NOT alter the System Name unless specifically instructed by your Service Provider set system diagnostic level off low medium high alerts failures Specifies the types of log messages you want the Motorola Netopia Gateway to record All messages with a level equal to or greater than the level you specify are recorded For example if you specify set system diagnostic ...

Page 211: ...word admin user Specifies the administrator or user password for a Motorola Netopia Gateway When you enter the set system password command you are prompted to enter the old password if any and new password You are prompted to repeat the new password to verify that you entered it correctly the first time To prevent anyone from observing the password you enter characters in the old and new pass word...

Page 212: ... is 20 in the above layout each heartbeat sequence will send out a total 20 heartbeats spaced at 30 second intervals and then sleep for 30 minutes So to have the Gateway send out packets forever this number can be set very high If it is 1440 and the interval is 1 minute say the heartbeat will go out every minute for 1440 minutes or one day before sleeping The sleep setting is part of sequence cont...

Page 213: ...he Internet will succeed If the zero touch option is set to on HTTP requests to any destination IP address except the IP address es of the configured redirection URL s will access a redirection server DNS traffic will not be blocked Other traf fic from the LAN to all destinations will be dropped set system zerotouch redirect url redirection URL Specifies the URL s of the desired redirection server...

Page 214: ...her in dotted decimal format or as a DNS name up to 64 char acters set system syslog log facility local0 local7 Sets the UNIX syslog Facility Acceptable values are local0 through local7 set system syslog log violations off on Specifies whether violations are logged or ignored set system syslog log accepted off on Specifies whether acceptances are logged or ignored set system syslog log attempts of...

Page 215: ...t the IP Address of the syslog host set system syslog host nameip ip addr example set system syslog host nameip 10 3 1 1 Enable change the options you require set system syslog log facility local1 set system syslog log violations on set system syslog log accepted on set system syslog log attempts on 4 Set NTP parameters Type config Set the time zone Default is 0 or GMT set system ntp time zone zon...

Page 216: ...tion can have a significant impact on performance depending on other wireless activity in proximity to this AP Channel selection is not necessary at the clients clients will scan the available channels and look for APs using the same ssid as the client set wireless network id closed system on off When this setting is enabled a client must know the ssid in order to connect or even see the wireless ...

Page 217: ...second ssid privacy off WEP WPA PSK WPA 802 1x set wireless multi ssid third ssid privacy off WEP WPA PSK WPA 802 1x set wireless multi ssid fourth ssid privacy off WEP WPA PSK WPA 802 1x Specifies the type of privacy enabled on multiple SSIDs when multi ssid option is set to on off no privacy WEP WEP encryption WPA PSK Wireless Protected Access Pre Shared Key WPA 802 1x Wireless Protected Access ...

Page 218: ...o break the encryption set wireless multi ssid second ssid wepkey hexadecimal digits set wireless multi ssid third ssid wepkey hexadecimal digits set wireless multi ssid fourth ssid wepkey hexadecimal digits Specifies a WEP key for the multiple SSIDs when second third or fourth ssid privacy is set to WEP For 40 64bit encryption you need 10 digits 26 digits for 128bit and 58 digits for 256bit WEP V...

Page 219: ... cwmax Valid values are 1 3 7 15 31 63 127 255 or 511 cwmax Maximum Contention Window upper limit in milliseconds of the range of determining final random backoff The value you choose must be higher than cwmin Valid values are 3 7 15 31 63 127 255 511 or 1023 txoplimit Time interval in microseconds that clients may initiate transmissions Valid values are 0 9999 NOTE It is not recommended that you ...

Page 220: ... set wireless wmm client edca video cwmin value set wireless wmm client edca video cwmax value set wireless wmm client edca video txoplimit 0 9999 Sets values for client WMM video parameters set wireless wmm client edca best effort aifs 1 255 set wireless wmm client edca best effort cwmin value set wireless wmm client edca best effort cwmax value set wireless wmm client edca best effort txoplimit ...

Page 221: ...e WEP enabled client must have the identical key of the same length in the identical slot 1 4 as the wire less Gateway in order to successfully receive and decrypt the packet Similarly the client also has a default key that it uses to encrypt its transmissions In order for the wireless Gateway to receive the client s data it must likewise have the identical key of the same length in the same slot ...

Page 222: ...ers are 0 9 a f Example 40bit key 02468ACE02 Example 128bit key 0123456789ABCDEF0123456789 Example 256bit key 592CA140F0A238B0C61AE162F592CA140F0A238B0C61AE162F21A09C You must set at least one of these keys indicated by the default keyid Wireless MAC Address Authorization Settings set wireless mac auth option on off Enabling this feature limits the MAC addresses that are allowed to access the LAN ...

Page 223: ...rver Settings set radius radius name server_name_string Specifies the default RADIUS server name or IP address set radius radius secret shared_secret Specifies the RADIUS secret key used by this server The shared secret should have the same charac teristics as a normal password set radius alt radius name server_name_string Specifies an alternate RADIUS server name or IP address to be used if the p...

Page 224: ... If you set this to a value greater than 0 all packets of this VLAN with unmarked priority bits pbits will be re marked to this priority set vlan name name ports port option off on Enables or disables the Gateway s physical Ethernet USB or VCC port or wireless SSID for the speci fied VLAN set vlan name name ports port tag off on If set to on packets transmitted from this port through this VLAN mus...

Page 225: ... the specified group to route traffic to the others ungrouped VLANs cannot route traffic to each other You must save the changes exit out of configuration mode and restart the Gateway for the changes to take effect Example 1 A simple example using the Step method Navigate to the VLAN item Netopia 3000 9437188 top vlan Netopia 3000 9437188 vlan set vlan vlan node list Select name node to modify fro...

Page 226: ... LanPorts ip interfaces ip eth b option off set vlan name LanPorts ip interfaces ip eth c option off set vlan name LanPorts ip interfaces ip eth a option on set vlan name LanPorts inter vlan routing group 1 on set vlan name LanPorts inter vlan routing group 2 off set vlan name LanPorts inter vlan routing group 3 off set vlan name LanPorts inter vlan routing group 4 off set vlan name Voip_217 type ...

Page 227: ... vlan name Mgmt_2017 ports eth1 tag on set vlan name Mgmt_2017 ports eth1 priority off set vlan name Mgmt_2017 ports eth1 promote off set vlan name Mgmt_2017 ports eth1 port pbits 0 set vlan name Mgmt_2017 ip interfaces ip ppp a option off set vlan name Mgmt_2017 ip interfaces ip eth b option off set vlan name Mgmt_2017 ip interfaces ip eth c option on set vlan name Mgmt_2017 ip interfaces ip eth ...

Page 228: ... 1 off set vlan name Video_31 inter vlan routing group 2 off set vlan name Video_31 inter vlan routing group 3 off set vlan name Video_31 inter vlan routing group 4 off You must save the changes exit from configuration mode and restart the Gateway for the changes to take effect ...

Page 229: ...p vcc1 2 3 will show IP PPP WAN interface ip enet x will show IP over Ethernet over VDSL Ethernet WAN ppp enet x will show PPP over Ethernet over VDSL Ethernet WAN set voip phone 1 2 sip option off on Turns SIP on or off for the specified phone Default is off set voip phone 1 2 sip proxy server server_name ip_address Specifies the SIP proxy server for the specified phone by fully qualified server ...

Page 230: ...IP for the specified phone Most SIP Serv ers expect this to be the username itself but some may use auth id set voip phone 1 2 codec G711A priority 1 2 3 4 5 6 7 none Assigns a priority to the alaw codec the common analog voice encoding method used outside North America set voip phone 1 2 codec G711U priority 1 2 3 4 5 6 7 none Assigns a priority to the ulaw codec the common analog voice encoding ...

Page 231: ...mber dialed by the user and to ensure this number matches the dial plan defined by the ITSP set voip phone 1 2 sip advanced setting sip compact header off on Forces all headers in the message to use compact format when set to on Sends the SIP messages with Compact Headers reducing the size of the SIP messages set voip phone 1 2 sip advanced setting sip q value 0 10 This is used to prioritize the s...

Page 232: ...n turns call forwarding when there is no answer on or off set voip phone 1 2 sip advanced setting call feature call forwarding on no answer number phone_number call forwarding on no answer number specifies the number to which calls are to be forwarded when call forwarding on no answer option is on set voip phone 1 2 sip advanced setting call feature call waiting option off on call waiting option e...

Page 233: ...t is 8192 set voip phone 1 2 sip advanced setting dsp settings echo max attenuation 0 65535 echo max attenuation specifies the maximum attenuation level at which to invoke echo cancella tion Default is 16384 set voip phone 1 2 sip advanced setting dsp settings echo tail length 0 65535 echo tail length specifies the duration of an echo tail required to invoke cancellation Default is 0 set voip phon...

Page 234: ...dvanced setting call feature call forwarding all option on set voip phone 1 sip advanced setting call feature call forwarding all number 1234 set voip phone 1 sip advanced setting call feature call forwarding on busy option on set voip phone 1 sip advanced setting call feature call forwarding on busy number 1234 set voip phone 1 sip advanced setting call feature call forwarding on no answer option...

Page 235: ...t upnp log off on Enables or disables UPnP logging set upnp read only off on Enables or disables DSL Forum settings TR 064 is a LAN side DSL CPE configuration specification and TR 069 is a WAN side DSL CPE Manage ment specification TR 064 DSL Forum LAN Side CPE Configuration TR 064 is an extension of UPnP It defines more services to locally manage the Motorola Netopia Gateway While UPnP allows ope...

Page 236: ...f cpewan option off on set dslf cpewan acs url acs_url port_number set dslf cpewan acs user name acs_username set dslf cpewan acs user password acs_password Turns TR 069 WAN side management services on or off For 3300 Series Gateways the default is off for 2200 Series Gateways the default is on If TR 069 WAN side management services are enabled specifies the auto config server URL and port number ...

Page 237: ... disables remote management via web UI of the network specified by network n netmask n set remote mgmt snmp enable on off Enables or disables remote management via SNMP of the network specified by network n netmask n set remote mgmt network 1 network 10 ip_addr Specifies the IP address for the network 1 10 to be remotely managed set remote mgmt netmask 1 netmask 10 netmask Specifies the subnet mas...

Page 238: ...system to wait before the backup port becomes enabled in the event of primary line failure when backup option is set to automatic Sets the Default is 1 set backup ping host 1 option name address set backup ping host 1 hostname ip address set backup ping host 1 ip address ip_address set backup ping host 1 hostname hostname set backup ping host 2 option name address set backup ping host 2 hostname i...

Page 239: ...ion on or off Default is off set ip backup gateway interface ip address ppp vccn Specifies the backup gateway interface ip address to which you want to direct the backup connection set ip backup gateway default ip_address Specifies the ip address of the default gateway ...

Page 240: ...0000 0xffff min noise margin 0x0000 0xffff port bandplan 0x00 xff framing mode 0x00 0xff band mod 0x00 0xff port option 0x00 0xff power mode 0x00 0xff tx filter 0x00 0xff rx filter 0x00 0xff dying gasp off on VDSL Parameter Defaults Parameter Default Meaning sys option 0x00 VDSL system option bit0 ntr 1 margin 2 ini 3 pbo 4 tlan 5 pbo sys bandplan 0x02 VDSL system bandplan bp_3_998_4 2 bp4_997_3 3 b...

Page 241: ...target noise margin min noise margin 0x0A VDSL port minimum noise margin port bandplan 0x02 VDSL port bandplan framing mode 0x90 DSL port frame mode 0 ATM 0x80 PTM 0x90 Auto EFM PTM band mod 0x11 VDSL port band mod port option 0x0A Annex B 0x06 Annex A VDSL port portoption bit0 I43 bit1 v43 bit2 a43 bit3 b43 power mode 0x01 VDSL port power mode tx filter 0x02 VDSL port txPathFilterMode rx filter 0x0...

Page 242: ...to retrain at higher rates but less stable line sys bandplan BP1_998_3 0x00 BP2_998_3 0x01 BP998_3B_8_5M 0x01 BP3_998_4 0x02 BP998_4B_12M 0x02 BP4_997_3 0x03 BP997_3B_7_1M 0x03 BP5_997_3 0x04 BP6_997_4 0x05 BP997_4B_7_1M 0x05 BP7_MXU_3 0x06 FLEX_3B_8_5M 0x06 BP8_MXU_2 0x07 BP9_998_2 0x08 BP10_998_2 0x09 BP998_2B_3_8M 0x09 BP11_998_2 0x0A BP12_998_2 0x0B BP13_MXU_3 0x0C BP14_MXU_3 0x0D BP15_MXU_3 0...

Page 243: ...am band in the PSD Upstream Band 0 or Optional band Upstream band 1 Upstream band 2 and Upstream Band 3 Setting all K2 parameters to 0 and all K1 to a high power level ie low number will essentially disable UPBO pbo k1_2 pbo k1_3 pbo k2_1 pbo k2_2 pbo k2_3 line type VDSL_AUTO_DETECT 0x80 VDSL 0x81 VDSL_ETSI 0x82 us max inter delay Maximum upstream interleave delay Provisioned in steps of 0 5 ms Us...

Page 244: ...0x09 BP998_2B_3_8M 0x09 BP11_998_2 0x0A BP12_998_2 0x0B BP13_MXU_3 0x0C BP14_MXU_3 0x0D BP15_MXU_3 0x0E BP16_997_4B_4P 0x0F BP17_998_138_4400 0x10 BP18_997_138_4400 0x11 BP19_997_32_4400 0x12 BP20_998_138_4400_opBand 0x15 BP21_997_138_4400_opBand 0x16 BP22_998_138_4400_opBand 0x16 BP23_998_138_16000 0x17 BP24_998_3B_8KHZ 0x18 BP25_998_138_17600 0x19 BP26_CH1_3 0x1A BP27_CH1_4 0x1B framing mode HDL...

Page 245: ... 5dBm power output 1 11 5 dBm power output tx filter 0 using internal filter in Tx path 1 using K1 external filter in Tx path for Korea VLR Application 2 using U1 external filter in Tx path for US Korea VLR Application 3 using H1 external filter in Tx path for 100 100 Application rx filter 0 using internal filter in Rx path 1 using K1 external filter in Rx path for Korea VLR Application 2 using U1 externa...

Page 246: ...Administrator s Handbook 246 ...

Page 247: ...put Environment Operating temperature 0 to 40 C Storage temperature 0 to 70 C Relative storage humidity 20 to 80 noncondensing Software and protocols Software media Software preloaded on internal flash memory field upgrades done via download to internal flash memory via TFTP or web upload Routing TCP IP Internet Protocol Suite RIP WAN support PPPoE DHCP static IP address Security PAP CHAP UI passw...

Page 248: ...area of product design including RF emissions and immunity from electrical disturbances The Motorola Netopia Embedded Software Version 7 8 complies with the following EU directives Low Voltage 73 23 EEC EMC Compatibility 89 336 EEC conforming to EN 55 022 This Motorola product is in conformity with the essential requirements and other relevant requirements of the Radio Equipment and Telecommunicat...

Page 249: ... be performed by our Company or an authorized agent Under FCC rules no customer is authorized to repair this equipment This restriction applies regardless of whether the equipment is in or our of warranty It is the responsibility of users requiring service to report the need for service to our Company or to one of our authorized agents Service can be obtained at Motorola Inc 6001 Shellmound Street...

Page 250: ...g safety information is provided in conformance with Australian safety requirements Caution DO NOT USE BEFORE READING THE INSTRUCTIONS Do not connect the Ethernet ports to a carrier or carriage service provider s telecommunications network or facility unless a you have the written consent of the network or facility manager or b the connection is in accordance with a connection permit or connection...

Page 251: ... rules and requirements adopted by the ACTA A compliant telephone cord and modular plug is provided with this product It is designed to be connected to a compatible modular jack that is also compliant See installation instructions for details d The REN is used to determine the number of devices that may be connected to a telephone line Excessive RENs on a telephone line may result in the devices n...

Page 252: ...NTY IF YOU DO NOT ACCEPT THESE TERMS PLEASE IMMEDIATELY RETURN THE GATEWAY IN ITS ORIGINAL PACKAGING TO THE VENDOR FROM WHICH YOU PURCHASED IT FOR A FULL REFUND OF THE PURCHASE PRICE The following describes your license to use the software the Software that has been provided with the Product and the limited warranty that Motorola provides on the Software and Product Software License The Software i...

Page 253: ...ED ABOVE Motorola AND ITS LICENSOR S DO NOT WARRANT GUARANTEE OR MAKE ANY REPRESENTATION REGARDING THE USE OR THE RESULTS OF THE USE OF THE PRODUCT AND THE SOFTWARE IN TERMS OF ITS CORRECTNESS ACCURACY RELIABILITY CURRENTNESS OR OTHERWISE THE ENTIRE RISK AS TO THE RESULTS AND PERFORMANCE OF THE PRODUCT AND THE SOFTWARE IS ASSUMED BY YOU THE EXCLUSION OF IMPLIED WARRANTIES IS NOT PERMITTED BY SOME ...

Page 254: ... com The implementation was written so as to conform with Netscape s SSL This library is free for commercial and non commercial use as long as the following conditions are adhered to The following conditions apply to all code found in this distribution be it the RC4 RSA lhash DES etc code not just the SSL code The SSL documentation included with this distribution is covered by the same copyright t...

Page 255: ... derived from the RSA Data Security Inc MD4 Message Digest Algorithm in all material mentioning or referencing the derived work RSA Data Security Inc makes no representations concerning either the merchantability of this software or the suitability of this software for any particular purpose It is provided as is without express or implied warranty of any kind These notices must be retained in any ...

Page 256: ...he este producto junto con sus residuos residenciales o com erciales Algunos países o regiones tales como la Unión Europea han organizado sistemas para recoger y reciclar desechos eléctricos y elec trónicos Comuníquese con las autoridades locales para obtener infor mación acerca de las prácticas vigentes en su región Si no existen sistemas de recolección disponibles solicite asistencia llamando el...

Page 257: ...ião Européia criaram siste mas para colecionar e reciclar produtos eletroeletrônicos Para obter informações sobre as práticas estabelecidas para sua região entre em contato com as autoridades locais Se não houver sistemas de coleta disponíveis entre em contato com o Serviço ao Cliente da Motorola para obter assistência Återvinning av din Motorola utrustning Kasta inte denna produkt tillsammans med...

Page 258: ...Administrator s Handbook 256 Please visit www motorola com recycle http www motorola com recycle for instructions on recycling ...

Page 259: ...2 145 Restart command 132 SHELL mode 132 View command 147 Closed System Mode 31 92 Command ARP 133 144 Ping 135 Telnet 144 Command line interface see CLI Community 207 Compression protocol 186 Concurrent Bridging Routing 65 153 CONFIG Command List 130 Configuration mode 145 Configure 64 Connection 65 Custom Service 49 74 D Default Channel 30 91 DHCP 12 154 DHCP filtering 158 DHCP lease table 136 D...

Page 260: ...ulti cast forwarding 167 189 multiple subnets 69 Multiple Wireless IDs 39 99 Multiple Wireless SSIDs Wireless 215 N Nameserver 161 NAT 46 71 170 184 Netmask 168 O set upnp option 233 Operating Mode Wireless 30 91 214 P Password Administrator 131 User 131 persistent log 209 Ping command 135 Pinholes 184 Port authentication 187 Port Forwarding 49 74 Port renumbering 192 PPP 145 Primary nameserver 16...

Page 261: ...h option command 220 SHELL Command Shortcuts 132 Commands 132 Prompt 132 SHELL level 146 SHELL mode 132 show config 137 Show ppp 145 Simple Network Management Protocol SNMP 207 SIP 85 227 sip passthrough 182 SMTP 184 SNMP 184 207 SNMP Notify Type settings 207 stateful inspection 140 Static NAT 50 75 Static route 182 Statistics 54 106 status indicator lights 116 Step mode 147 Subnet mask 168 subnet...

Page 262: ...Administrator s Handbook 260 Wired Equivalent Privacy 36 96 Wireless Configuration 28 89 Wireless ID SSID 28 89 Z Zero Touch 211 ...

Reviews: