background image

PC Configuration 

29 

Checking TCP/IP Settings - Windows NT4.0 

1.  Select 

Control Panel - Network

, and, on the 

Protocols

 tab, select the TCP/IP 

protocol, as shown below. 

 

Figure 20: Windows NT4.0 - TCP/IP 

2.  Click the 

Properties

 button to see a screen like the one below. 

Summary of Contents for ADSL 2/2+ VPN Firewall Router ADE-4300A/B

Page 1: ...ADSL 2 2 VPN Firewall Router ADE 4300A B ADW 4300A B User s Manual...

Page 2: ...ntial installation This equipment generates uses and can radiate radio frequency energy and if not installed and used in accordance with the instructions may cause harmful interfer ence to radio commu...

Page 3: ...h Station Equipment As of April 8 2000 Safety This equipment is designed with the utmost care for the safety of those who install and use it However special attention must be paid to the dangers of el...

Page 4: ......

Page 5: ...ts 26 Macintosh Clients 37 Linux Clients 37 Other Unix Systems 37 Wireless Station Configuration ADW 4300 only 38 Wireless Configuration on Windows XP ADW 4300 only 38 CHAPTER 5 OPERATION AND STATUS 4...

Page 6: ...111 Overview 111 General Problems 111 Internet Access 111 Wireless Access ADW 4300 only 112 APPENDIX B ABOUT WIRELESS LANS ADW 4300 ONLY 114 Modes 114 BSS ESS 114 Channels 115 WEP 115 WPA PSK 115 Wire...

Page 7: ...et 4 Port Switching Hub for 10BaseT or 100BaseT connections Figure 1 ADE 4300 ADW 4300 ADE 4300 ADW 4300 Features The ADE 4300 ADW 4300 incorporates many advanced features carefully designed to provid...

Page 8: ...irable Web sites by LAN users Logs Define what data is recorded in the Logs and optionally send log data to a Syslog Server Log data can also be E mailed to you Access Control Allows administrators to...

Page 9: ...es a 4 port 10 100BaseT switching hub making it easy to create or extend your LAN DHCP Server Support Dynamic Host Configuration Protocol provides a dynamic IP address to PCs and other devices upon re...

Page 10: ...ed and all incoming server re quests are filtered thus protecting your network from malicious attacks from external sources Protection against DoS attacks DoS Denial of Service attacks can flood your...

Page 11: ...following items should be included If any of these items are damaged or missing please contact your dealer immediately The ADE 4300 ADW 4300 Unit Quick Installation Guide User s Manual CD Power Adapt...

Page 12: ...s using 100BaseT and Blinking if data is being transferred via the cor responding LAN port 10 LNK ACT This will be ON if the LAN connection is using 10BaseT and Blinking if data is being transferred v...

Page 13: ...then release the Reset Button and wait the ADE 4300 ADW 4300 to restart using the factory default values POWER port Connect the supplied power adapter here 10 100BaseT LAN connec tions Use standard L...

Page 14: ...ccess Point all Wireless devices must be compliant with the IEEE 802 11g or IEEE 802 11b specifications ADW 4300 only Procedure Figure 6 Installation Diagram Antenna for ADW 4300 only 1 Choose an Inst...

Page 15: ...minator provided by your phone com pany 4 Power Up Connect the supplied power adapter to the ADE 4300 ADW 4300 Use only the power adapter provided Using a different one may cause hardware damage Power...

Page 16: ...00 ADW 4300 you wish to use Use the table below to locate detailed instructions for the required functions To Do this Refer to Configure PCs on your LAN Chapter 4 PC Configuration Check ADE 4300 ADW 4...

Page 17: ...same LAN segment The ADE 4300 ADW 4300 must be installed and powered ON If the ADE 4300 ADW 4300 s default IP Address 192 168 0 1 is already used by another device the other device must be turned OFF...

Page 18: ...uration for details on checking your PC s TCP IP settings Ensure that your PC and the ADE 4300 ADW 4300 are on the same network segment If you don t have a router this must be the case Ensure you are...

Page 19: ...y b IP Address allocated to you and related information such as Network Mask Gateway IP address and DNS address PPPoE PPPoA You connect to the ISP only when required The IP address is usually allocate...

Page 20: ...n menu also contains two 2 buttons Log Out When finished you should click this button to logout Restart Use this if you wish to restart the ADE 4300 ADW 4300 Note that re starting the Router will brea...

Page 21: ...HCP Server If Enabled the ADE 4300 ADW 4300 will allocate IP Ad dresses to PCs DHCP clients on your LAN when they start up The default and recommended value is Enabled If you are already using a DHCP...

Page 22: ...n the LAN screen On this screen you can Enable or Disable the ADE 4300 ADW 4300 s DHCP Server function Set the range of IP Addresses allocated to PCs by the DHCP Server function You can assign Fixed I...

Page 23: ...low Figure 9 Wireless Screen Data Wireless Screen Identification Region Select the correct domain for your location It is your responsibil ity to ensure That the ADW 4300 is only used in domains for w...

Page 24: ...shown by lost connections and or slow data transfers you may need to experiment with different channels to see which is the best If using multiple Access Points adjacent Access Points should use diffe...

Page 25: ...d Wireless stations only Only wireless stations you designate as Trusted can use the Access Point even if they have the correct SSID and security settings This feature uses the MAC address to identify...

Page 26: ...ption and ensure the Wireless Stations use the same setting 64 Bit data is encrypted using the default key before being transmitted You must enter at least the default key For 64 Bit Encryption the ke...

Page 27: ...K Data WPA PSK Screen Security System WPA PSK Like WEP data is encrypted before transmission WPA is more secure than WEP and should be used if possible WPA PSK is the version of WPA which does NOT req...

Page 28: ...Trusted Other Wireless Stations This list any Wireless Stations detected by the Access Point which you have not designated as Trusted Name The name assigned to the Trusted Wireless Station Use this wh...

Page 29: ...field and the Add button will change to Update 3 Edit the address MAC or physical address as required 4 Click Update to save your changes Add Update To add a Trusted Station which is not in the Other...

Page 30: ...ter the existing password in this field New password Enter the new password here Verify pass word Re enter the new password here You will be prompted for the password when you connect as shown below F...

Page 31: ...Server on your LAN to provide IP addresses to the Wireless clients using this Access Point ADW 4300 All traffic received on either the Wireless ADW 4300 or LAN interface will be sent over the ADSL con...

Page 32: ...lled and configured on each PC TCP IP Settings Overview If using the default ADE 4300 ADW 4300 s settings and the default Win dows TCP IP settings no changes need to be made By default the ADE 4300 AD...

Page 33: ...Figure 17 IP Address Win 95 Ensure your TCP IP settings are correct as follows Using DHCP To use DHCP select the radio button Obtain an IP Address automatically This is the default Windows setting Us...

Page 34: ...r LAN administrator can advise you of the IP Address they assigned to the ADE 4300 ADW 4300 Figure 18 Gateway Tab Win 95 98 On the DNS Configuration tab ensure Enable DNS is selected If the DNS Server...

Page 35: ...ng TCP IP Settings Windows NT4 0 1 Select Control Panel Network and on the Protocols tab select the TCP IP protocol as shown below Figure 20 Windows NT4 0 TCP IP 2 Click the Properties button to see a...

Page 36: ...rver Restart your PC to ensure it obtains an IP Address from the ADE 4300 ADW 4300 Specify an IP Address If your PC is already configured check with your network administrator before making the follow...

Page 37: ...Gateway 2 The DNS should be set to the address provided by your ISP as follows Click the DNS tab On the DNS screen shown below click the Add button under DNS Service Search Order and enter the DNS pr...

Page 38: ...n 2 Right click the Local Area Connection icon and select Properties You should see a screen like the following Figure 24 Network Configuration Win 2000 3 Select the TCP IP protocol for your network c...

Page 39: ...ddress from the ADE 4300 ADW 4300 Using a fixed IP Address Use the following IP Address If your PC is already configured check with your network administrator before making the following changes Enter...

Page 40: ...ork Connection 2 Right click the Local Area Connection and choose Properties You should see a screen like the following Figure 26 Network Configuration Windows XP 3 Select the TCP IP protocol for your...

Page 41: ...ns an IP Address from the ADE 4300 ADW 4300 Using a fixed IP Address Use the following IP Address If your PC is already configured check with your network administrator before making the following cha...

Page 42: ...and Internet Connections 2 Select Set up or change your Internet Connection 3 Select the Connection tab and click the Setup button 4 Cancel the pop up Location Information screen 5 Click Next on the...

Page 43: ...hanges Fixed IP Address By default most Unix installations use a fixed IP Address If you wish to continue using a fixed IP Address make the following changes to your configuration Set your Default Gat...

Page 44: ...urity By default Wireless security on the ADW 4300 is disabled If Wireless security remains disabled on the ADW 4300 all stations must have wireless security disabled If Wireless security is enabled o...

Page 45: ...ing section If the SSID is not listed for details of dealing with this situation 4 The next step depends on whether or not Wireless security has been enabled on the ADW 4300 If Wireless Security is Di...

Page 46: ...using WEP Data Encryption If WEP data encryption has been enabled on the ADW 4300 Windows will detect this and show a screen like the following Figure 31 WEP Windows XP To connect Enter the WEP key as...

Page 47: ...and click Configure to see a screen like the fol lowing Figure 33 Wireless Network Properties WEP Configure this screen as follows Set Network Authentication to match theADW 4300 If the setting on th...

Page 48: ...must match the default key index on the ADW 4300 The default value is 1 Ensure the options The key is provided for me automatically and This is a com puter to computer ad hoc network are unchecked Cl...

Page 49: ...it does not matter which network is selected on the screen below Just click the Advanced button Figure 35 Wireless Networks Windows XP You will then see a screen like the example below Figure 36 Adva...

Page 50: ...on to WPA PSK For Data Encryption select TKIP For the Network key and Confirm network key enter the network key PSK used on the ADW 4300 Ensure the option This is a computer to computer ad hoc network...

Page 51: ...d If the Broadcast SSID setting on the ADW 4300 has been disabled its SSID will NOT be listed on the screen below Figure 39 Wireless Networks Windows XP In this situation you need to obtain the SSID f...

Page 52: ...e a screen like the example below Figure 41 Add Wireless Network 3 Configure this screen as follows Enter the correct SSID as used on the ADW 4300 Remember the SSID is case sensitive so be sure to mat...

Page 53: ...ails of WEP and WPA PSK Uncheck the options The key is provided for me automatically and This is a com puter to computer ad hoc network Click OK to save and exit 4 This wireless network will then be l...

Page 54: ...m mode see Chapter 8 Modem Mode Operation Router Mode Once both the ADE 4300 ADW 4300 and the PCs are configured operation is automatic However there are some situations where additional Internet conf...

Page 55: ...indicates the status of the ADSL modem component DownStream Connection Speed Displays the speed for the DownStream Connection UpStream Connection Speed If connected displays the speed for the Up Stre...

Page 56: ...to open a sub window and view a detailed description of the current connection Depending on the type of connection a log may also be available LAN IP Address The IP Address of the ADE 4300 ADW 4300 N...

Page 57: ...howing all LAN and Wireless devices currently on the network VPN Status View details of each current VPN Tunnel is a sub window You also have the option of viewing the VPN Log For further details abou...

Page 58: ...s currently established If the connection does not exist the Connect button can be used to establish a connection If the connection currently exists the Disconnect button can be used to break the conn...

Page 59: ...mote Gateway or Router associated with the IP Address above DHCP Server The IP address of your ISP s DHCP Server DNS Server The IP address of the Domain Name Server which is currently used Lease Obtai...

Page 60: ...tion Details Fixed Dynamic IP Address Data Fixed IP address Screen Internet IP Address The IP Address of this device as seen by Internet users This address is allocated by your ISP Internet Service Pr...

Page 61: ...DMZ Special Applications URL filter Dynamic DNS Firewall Rules Firewall Services Schedule Virtual Servers VPN SNMP Access Control The Access Control feature allows administrators to restrict the Inte...

Page 62: ...Default Schedule to apply the blocking only during scheduled times If access is not blocked no Scheduling is possible and this setting has no effect None Schedule is disabled Default Use the schedule...

Page 63: ...ove from the Other PCs list Select an entry or entries in the Other PCs list and click the button Delete a Trusted PC from the list move to the Other PCs list Select an entry or entries in the Trusted...

Page 64: ...DMZ feature when required Special Applications If you use Internet applications which use non standard connections or port numbers you may find that they do not function correctly because they are blo...

Page 65: ...r for data you receive If the application uses a single port number enter it in both the Start and Finish fields Finish Enter the end of the range of port numbers used by the application server for da...

Page 66: ...e time independent of the Schedule page Allow Trusted PCs to Visit Blocked Sites Enable this to allow specified com puter s to have unrestricted access to the Internet For this these PC s the URL filt...

Page 67: ...trings The list contains the current list of items to block To add to the list use the Add option below To delete an entry select it and click Delete button To delete all entries click the Delete All...

Page 68: ...desired Domain name 3 Enter your DDNS data on the ADE 4300 ADW 4300 s DDNS screen and enable the DDNS feature 4 The ADE 4300 ADW 4300 will then automatically ensure that your current IP Address is re...

Page 69: ...dress Password Enter your current password for the DDNS Service TZO com calls this a key Domain Name Enter the domain name allocated to you by the DDNS Service If you have more than one name enter the...

Page 70: ...Firewall Screen Data Firewall Rules Incoming Rules For the default rule this will display Default For rules which you create this will display a radio button which allows you to select the rule Enable...

Page 71: ...the rule is currently enabled For rules you have added this column will contain a checkbox allowing you to easily enable or disable the rule Click Save after making any changes Service Name The Servic...

Page 72: ...ock BLOCK always BLOCK by schedule otherwise Allow Note Any inbound traffic which is not allowed by rules you create will be blocked by the Default rule BLOCK rules are only useful if the traffic is a...

Page 73: ...matches this rule The action is determined by this rule Not Match Log traffic which is considered by this rule but does not match The action is NOT determined by this rule Outgoing Rules Outbound Serv...

Page 74: ...er on your LAN which will be covered by this rule WAN Users These settings determine which packets are covered by the rule based on their source WAN IP address Select the desired option Any All IP add...

Page 75: ...creen Data Firewall Services Services Existing Ser vices This lists any Services you have defined If you have not de fined any Services this list will be empty Once you define some services they will...

Page 76: ...Service Data Add Edit Service Services Name If editing this shows the current name of the Service If adding a new service this will be blank and you should enter a suitable name Type Select the protoc...

Page 77: ...Disabling this option provides a slight increase in security MTU Size Enter a value between 1 and 1500 Note MTU Maximum Transmission Unit size should only be changed if advised to do so by Technical...

Page 78: ...ession 2 can be left blank if not required Start Time Enter the start using a 24 hr clock Finish Time Enter the finish time using a 24 hr clock Local Time Time Zone In order to display your local time...

Page 79: ...as the primary NTP server check the checkbox Use this NTP Server and enter the Server s IP address in the fields provided If this setting is not enabled the default NTP Servers are used Current Time T...

Page 80: ...t protocols To Internet users all virtual Servers on your LAN have the same IP Address This IP Address is allocated by your ISP This address should be static rather than dynamic to make it easier for...

Page 81: ...PC Server Select the PC for this Server The PC must be running the appropriate Server software For each entry the PC must be running the appropri ate Server software If the desired Server type is not...

Page 82: ...ADE 4300 ADW 4300 User Guide 76 From the Internet ALL Virtual Servers have the IP Address allocated by your ISP...

Page 83: ...to create one policy for each site you wish to connect to The remote VPN Gateway or client needs to have matching configuration Traffic covered by an enabled policy will automatically be sent via a VP...

Page 84: ...AN IP address or subnet on your local LAN Traffic must be from or to these addresses to be cov ered by this policy Remote LAN IP address or subnet on the remote LAN Traffic must be to or from these ad...

Page 85: ...Poli cies screen or when you edit an existing Auto Policy It allows you to define or edit an Auto VPN policy An Auto VPN policy uses the IKE Internet Key Protocol to exchange and negotiate parameters...

Page 86: ...as follows Single address Enter an IP address in the IP address field Typically this setting is used when you wish to make a single Server on your LAN available to remote users Subnet address Enter an...

Page 87: ...esired option to match the Local Identity Type setting on the remote VPN endpoint IP Address The Internet IP address of the remote VPN endpoint Fully Qualified Domain Name the Domain name of the remot...

Page 88: ...Also even if one key is broken subsequent keys are no easier to break Each key has no relationship to the previous key This setting applies to both IKE and IPSec SAs When con figuring the remote endp...

Page 89: ...s no negotiation between the 2 VPN endpoints Figure 62 VPN Manual Policy Screen Data VPN Manual Policy Screen General Policy Name Enter a unique name to identify this policy This name is not supplied...

Page 90: ...subnet Select this option if there is no LAN only a single PC at the remote endpoint If this option is selected no additional data is required Single address Enter an IP address in the IP address fie...

Page 91: ...Authentication Select the desired Authentication Algorithm and enter the key in the field provided For MD5 the key should be 16 ASCII characters 32 Hex characters For SHA 1 the key should be 20 ASCII...

Page 92: ...mber to identify the incom ing connection For Auto policies the SPI is automatically generated For Manual policies the SPI must be entered when the policy is configured SPI Out This is a unique index...

Page 93: ...ed on the main menu then SNMP to see a screen like the following Figure 64 SNMP Screen Data SNMP Screen SNMP Service Enable SNMP support Enable or disable the SNMP feature as required SNMP Data Commun...

Page 94: ...when you select the DMZ PC or a Virtual Server This database is maintained automati cally but you can add and delete entries for PCs which use a Fixed Static IP Address Config File Backup or restore t...

Page 95: ...Database screen is shown below Figure 65 PC Database PCs which are DHCP Clients are automatically added to the database and updated as required By default non Server versions of Windows act as DHCP Cl...

Page 96: ...or not powered On you will not be able to add it Buttons Add This will add the new PC to the list The PC will be sent a ping to determine its hardware address If the PC is not available not connected...

Page 97: ...is matches the PC s hostname IP Address Select the appropriate option Automatic The PC is set to be a DHCP client Windows Obtain an IP address automatically The ADE 4300 ADW 4300 will allocate an IP a...

Page 98: ...of this the MAC address can NOT be left blank Buttons Add as New Entry Add a new PC to the list using the data in the Properties box If Automatic discovery for MAC address is selected the PC will be...

Page 99: ...igure 67 Config File Screen Data Config File Screen Backup Config Use this to download a copy of the current configuration and store the file on your PC Click Download to start the download Restore Co...

Page 100: ...ADW 4300 log data can also be E mailed to your PC Use the E mail screen to configure this feature Figure 68 Logging Screen Data Logging Screen Logs Current Time The current time on the ADE 4300 ADW 43...

Page 101: ...will log connections TO this Router rather than through this Router to the Internet Router operation If checked other Router operations not covered by the selections above will be logged Known DoS at...

Page 102: ...ddress Outgoing SMTP Mail Server Enter the address or IP address of the SMTP Simple Mail Transport Protocol Server you use for outgoing E mail My SMTP Mail Server requires authentication To stop spann...

Page 103: ...ired option for sending the log by E mail Never default This feature is disabled Logs are not sent When log is full The time is not fixed The log will be sent when the log is full which will depend on...

Page 104: ...at case wait a few seconds and try again Ping Button After entering the IP address click this button to start the Ping procedure The results will be displayed in the Ping Results pane DNS Lookup Inter...

Page 105: ...ber Enter a port number between 1 and 65535 The default for HTTP Web connections is port 80 but using port 80 will prevent the use of a Web Virtual Server on your LAN So using a different port number...

Page 106: ...r HTTP followed by the Internet IP Address of the ADE 4300 ADW 4300 If the port number is not 80 the port number is also re quired After the IP Address enter followed by the port number e g HTTP 123 1...

Page 107: ...300 and ensure the following Windows 2000 settings are correct Open Routing and Remote Access In the console tree select Routing and Remote Access server name IP Rout ing RIP In the Details pane right...

Page 108: ...ed in the list is ignored and has no effect Edit Update the current Static Routing Table entry using the data shown in the table area on screen Delete Delete the current Static Routing Table entry Sav...

Page 109: ...with the exception of the Gateway IP Address For a router with a direct connection to the ADE 4300 ADW 4300 s local Router the Gateway IP Address is the address of the ADE 4300 ADW 4300 s local router...

Page 110: ...rd Class C Gateway IP Address 192 168 0 100 Metric 3 For Router A s Default Route Destination IP Address 0 0 0 0 Network Mask 0 0 0 0 Gateway IP Address 192 168 0 1 ADE 4300 ADW 4300 s IP Address For...

Page 111: ...llowing Figure 74 Router Upgrade Screen To perform the Firmware Upgrade 1 Click the Browse button and navigate to the location of the upgrade file 2 Select the upgrade file Its name will appear in the...

Page 112: ...de the IP address does not change but the DHCP server is disabled However your PC will usually retain the IP address provided by the DHCP Server so the connection will be automatically re established...

Page 113: ...change back to Router mode if desired LAN set IP address mask and gateway This is the same as in Router mode except that the DHCP server is not available while in Modem mode Wireless ADW 4300 only thi...

Page 114: ...nsparent it does not perform any operations or make any changes to the network traffic passing through it You need to have a DHCP Server on your LAN to provide IP addresses to the Wireless cli ents us...

Page 115: ...name of the Router This name is also the hostname for users with an Home type connection Firmware Version The version of the current firmware installed ADSL Modem Status This indicates the status of...

Page 116: ...nded Service Set with multiple access points this ID is called an ESSID Extended Service Set Identifier Region The current region as set on the Wireless screen Channel This shows the Channel currently...

Page 117: ...that it is using an IP Address within the range 192 168 0 2 to 192 168 0 254 and thus compatible with the ADE 4300 ADW 4300 s default IP Ad dress of 192 168 0 1 Also the Network Mask should be set to...

Page 118: ...less station should also have WEP disabled If WEP is enabled on the ADW 4300 your PC must have WEP enabled and the key must match If the ADW 4300 s Wireless screen is set to Allow Trusted PCs only the...

Page 119: ...Appendix A Troubleshooting 113 wireless stations This will mean high access speed is only possi ble when close to the ADW 4300...

Page 120: ...mmunicate only with Wireless Stations which are set to Infrastructure mode BSS ESS BSS A group of Wireless Stations and a single Access Point all using the same ID SSID form a Basic Service Set BSS Us...

Page 121: ...om receiving any data which is transmitted by your Wireless Stations But if the data is encrypted then it is meaningless unless the receiver can decrypt it If WEP is used the Wireless Stations and the...

Page 122: ...o connect to Alternatively the SSID can be set to any or null blank to allow connection to any Access Point Wireless Security The Wireless Stations and the Access Point must use the same settings for...

Page 123: ...nection There are two security modes possible with IPSec Transport Mode the payload data part of the packet is encapsulated through encryption but the IP header remains in the clear unchanged The ADE...

Page 124: ...o have multiple Policies for the same remote site However you should only Enable one 1 policy at a time VPN Configuration The general rule is that each endpoint must have matching Policies as follows...

Page 125: ...ion since it is not acting as a VPN endpoint Client PC to VPN Gateway Figure 79 Client PC to VPN Server In this situation the PC must run appropriate VPN client software in order to connect via the In...

Page 126: ...when a VPN tunnel will be established and what systems on the remote LAN can be accessed once the VPN connection is established It is possible to have simultaneous VPN connections to many remote sites...

Page 127: ...Appendix C VPNs 121 Configuration Settings Gateway A Gateway A should be configured as shown below Figure 82 Gateway A Configuration...

Page 128: ...ration Settings Gateway B Gateway B should be configured as shown below Figure 83 Gateway B Configuration Settings Setting LAN A Gateway LAN B Gateway Notes Policy Name Example Example Name does not a...

Page 129: ...n Mode Main Mode Must match DH Group Group 2 1024 bit Group 2 1024 bit Must match Local Identity IP address IP address IP address is the most common ID method Remote Identity WAN IP address WAN IP add...

Page 130: ...P over ATM LLC VCMUX AAL and ATM Support Integrated ATM AAL5 support 255 VPI plus 65535 VCI address range LAN 4 10Base T 100Base TX Auto Negotiation Auto MDI MDI X Wire less ADW 4300 only 1 x 802 11g...

Page 131: ...face ADW 4300 only Standards IEEE802 11b IEEE802 11g WLAN 802 11G plus Texas Instruments proprietary enhanced mode Frequency 2 4 to 2 4835GHz Industrial Scientific Medical Band Channels Maximum 14 Cha...

Page 132: ...radio TV technician for help To assure continued compliance any changes or modifications not expressly ap proved by the party responsible for compliance could void the user s authority to operate thi...

Reviews: