background image

ADW-4302v2 User Guide 

Virtual Servers 

This feature, sometimes called 

Port Forwarding

, allows you to make Servers on your 

LAN accessible to Internet users. Normally, Internet users would not be able to ac-
cess a server on your LAN because: 

 

Your Server does not have a valid external IP Address. 

 

Attempts to connect to devices on your LAN are blocked by the firewall in this 
device. 

The "Virtual Server" feature solves these problems and allows Internet users to con-
nect to your servers, as illustrated below. 

 

Figure 60: Virtual Servers 

IP Address seen by Internet Users 

Note that, in this illustration, both Internet users are connecting to the same IP Ad-
dress, but using different protocols. 

To Internet users, all virtual Servers on your LAN have the same IP Address. 
This IP Address is allocated by your ISP. 

This address should be static, rather than dynamic, to make it easier for Internet users 
to connect to your Servers. 

However, you can use the 

DDNS (Dynamic DNS)

 feature to allow users to connect to 

your Virtual Servers using a URL, instead of an IP Address. 

Virtual Servers Screen 

 

The "Virtual Servers" feature allows Internet Users to access PCs on your LAN.  

 

The PCs must be running the appropriate Server Software.  

74 

Summary of Contents for ADSL 2/2+ VPN Firewall Router ADW-4302A v2

Page 1: ...ADSL 2 2 VPN Firewall Router ADW 4302A v2 ADW 4302B v2 User s Manual...

Page 2: ...al installation This equipment generates uses and can radiate radio frequency energy and if not installed and used in accordance with the instructions may cause harmful interfer ence to radio communic...

Page 3: ...rical and electronic equipment end users of electrical and electronic equipment should understand the meaning of the crossed out wheeled bin symbol Do not dispose of WEEE as unsorted mu nicipal waste...

Page 4: ......

Page 5: ...36 Linux Clients 36 Other Unix Systems 36 Wireless Station Configuration 37 Wireless Configuration on Windows XP 37 CHAPTER 5 OPERATION AND STATUS 47 Operation Router Mode 47 Status Screen 47 Connecti...

Page 6: ...A TROUBLESHOOTING 121 Overview 121 General Problems 121 Internet Access 121 Wireless Access 122 APPENDIX B ABOUT WIRELESS LANS 124 Modes 124 BSS ESS 124 Channels 125 WEP 125 WPA PSK 125 Wireless LAN...

Page 7: ...Point for 802 11b and 802 11g Wireless Stations VPN Gateway to allow secure VPN connections over the Internet 4 Port Switching Hub for 10BaseT or 100BaseT connections Figure 1 ADW 4302v2 ADW 4302v2 F...

Page 8: ...L Filter Use the URL Filter to block access to undesirable Web sites by LAN users Logs Define what data is recorded in the Logs and optionally send log data to a Syslog Server Log data can also be E m...

Page 9: ...create or extend your LAN DHCP Server Support Dynamic Host Configuration Protocol provides a dy namic IP address to PCs and other devices upon request The ADW 4302v2 can act as a DHCP Server for devic...

Page 10: ...r immediately The ADW 4302v2 Unit Quick Installation Guide User s Manual CD Power Adapter 1 RJ 45 Cable 1 RJ 11 ADSL cable Physical Details Front mounted LEDs of ADW 4302v2 Figure 2 Front Panel of ADW...

Page 11: ...Rear Panel of ADW 4302v2 RESET Button Reset to De faults This button will reset the ADW 4302v2 to the factory default settings To do this press and hold the Reset Button for five 5 sec onds until the...

Page 12: ...gram 1 Choose an Installation Site Select a suitable place on the network to install the ADW 4302v2 For best Wireless reception and performance the ADW 4302v2 should be positioned in a central locatio...

Page 13: ...fferent one may cause hardware damage 5 Check the LEDs The Power LED should be ON The Status LED should flash then turn Off If it stays on or blinking after 60 sec onds there is a hardware error For e...

Page 14: ...er configuration may also be required depending on which features and functions of the ADW 4302v2 you wish to use Use the table below to locate detailed instruc tions for the required functions To Do...

Page 15: ...up Use any of the following Administration Configuration settings or features PC Database Config File Logging E mail Diagnostics Remote Admin Routing Upgrade Firmware Chapter 7 Advanced Administration...

Page 16: ...on the ADW 4302v2 or on the same LAN segment The ADW 4302v2 must be installed and powered ON If the ADW 4302v2 s default IP Address 192 168 0 1 is already used by another device the other device must...

Page 17: ...checking your PC s TCP IP settings Ensure that your PC and the ADW 4302v2 are on the same network segment If you don t have a router this must be the case Ensure you are using the wired LAN interface...

Page 18: ...i cally b IP Address allocated to you and related information such as Network Mask Gateway IP address and DNS address PPPoE PPPoA You connect to the ISP only when required The IP address is usually al...

Page 19: ...contains two 2 buttons Log Out When finished you should click this button to logout Restart Use this if you wish to restart the ADW 4302v2 Note that restarting the Router will break any existing conn...

Page 20: ...gment DHCP Server If Enabled the ADW 4302v2 will allocate IP Addresses to PCs DHCP clients on your LAN when they start up The default and recommended value is Enabled If you are already using a DHCP S...

Page 21: ...AN screen On this screen you can Enable or Disable the ADW 4302v2 s DHCP Server function Set the range of IP Addresses allocated to PCs by the DHCP Server function You can assign Fixed IP Addresses to...

Page 22: ...cess Point feature use the Wireless link on the main menu to reach the Wireless screen An example screen is shown below Figure 7 Wireless Screen Data Wireless Screen Identification Region Select the c...

Page 23: ...andard Channel No Select the Channel you wish to use on your Wireless LAN If you experience interference shown by lost connections and or slow data transfers you may need to experiment with different...

Page 24: ...usted Wireless stations only Only wireless stations you designate as Trusted can use the Access Point even if they have the correct SSID and security settings This feature uses the MAC address to iden...

Page 25: ...option and ensure the Wireless Stations use the same setting 64 Bit data is encrypted using the default key before being transmitted You must enter at least the default key For 64 Bit Encryption the k...

Page 26: ...ess Security Figure 9 WPA PSK Data WPA PSK Screen Security System WPA PSK Like WEP data is encrypted before transmission WPA is more secure than WEP and should be used if possible WPA PSK is the versi...

Page 27: ...s Stations This list any Wireless Stations detected by the Access Point which you have not designated as Trusted Name The name assigned to the Trusted Wireless Station Use this when adding or editing...

Page 28: ...ress field and the Add button will change to Up date 3 Edit the address MAC or physical address as required 4 Click Update to save your changes Add Update To add a Trusted Station which is not in the...

Page 29: ...ng password in this field New password Enter the new password here Verify pass word Re enter the new password here You will be prompted for the password when you connect as shown below Figure 12 Passw...

Page 30: ...have a DHCP Server on your LAN to provide IP addresses to the Wireless clients using this Access Point All traffic received on either the Wireless or LAN interface will be sent over the ADSL connecti...

Page 31: ...and configured on each PC TCP IP Settings Overview If using the default ADW 4302v2 s settings and the default Windows TCP IP settings no changes need to be made By default the ADW 4302v2 will act as...

Page 32: ...llowing Figure 15 IP Address Win 95 Ensure your TCP IP settings are correct as follows Using DHCP To use DHCP select the radio button Obtain an IP Address automatically This is the default Windows set...

Page 33: ...inistrator can advise you of the IP Address they assigned to the ADW 4302v2 Figure 16 Gateway Tab Win 95 98 On the DNS Configuration tab ensure Enable DNS is selected If the DNS Server Search Order li...

Page 34: ...g TCP IP Settings Windows NT4 0 1 Select Control Panel Network and on the Protocols tab select the TCP IP protocol as shown below Figure 18 Windows NT4 0 TCP IP 2 Click the Properties button to see a...

Page 35: ...erver Restart your PC to ensure it obtains an IP Address from the ADW 4302v2 Specify an IP Address If your PC is already configured check with your network administrator before making the following ch...

Page 36: ...Gateway 2 The DNS should be set to the address provided by your ISP as follows Click the DNS tab On the DNS screen shown below click the Add button under DNS Service Search Order and enter the DNS pr...

Page 37: ...click the Local Area Connection icon and select Properties You should see a screen like the following Figure 22 Network Configuration Win 2000 3 Select the TCP IP protocol for your network card 4 Cli...

Page 38: ...n IP Address from the ADW 4302v2 Using a fixed IP Address Use the following IP Address If your PC is already configured check with your network administrator before making the following changes Enter...

Page 39: ...ction 2 Right click the Local Area Connection and choose Properties You should see a screen like the following Figure 24 Network Configuration Windows XP 3 Select the TCP IP protocol for your network...

Page 40: ...obtains an IP Address from the ADW 4302v2 Using a fixed IP Address Use the following IP Address If your PC is already configured check with your network administrator before making the following chan...

Page 41: ...nd Internet Connections 2 Select Set up or change your Internet Connection 3 Select the Connection tab and click the Setup button 4 Cancel the pop up Location Information screen 5 Click Next on the Ne...

Page 42: ...es Fixed IP Address By default most Unix installations use a fixed IP Address If you wish to continue using a fixed IP Address make the following changes to your configuration Set your Default Gateway...

Page 43: ...default Wireless security on the ADW 4302v2 is disabled If Wireless security remains disabled on the ADW 4302v2 all stations must have wireless security disabled If Wireless security is enabled on the...

Page 44: ...ng section If the SSID is not listed for details of dealing with this situation 4 The next step depends on whether or not Wireless security has been enabled on the ADW 4302v2 If Wireless Security is D...

Page 45: ...ata Encryption If WEP data encryption has been enabled on the ADW 4302v2 Windows will detect this and show a screen like the following Figure 29 WEP Windows XP To connect Enter the WEP key as set on t...

Page 46: ...and click Configure to see a screen like the following Figure 31 Wireless Network Properties WEP Configure this screen as follows Set Network Authentication to match the ADW 4302v2 If the setting on t...

Page 47: ...h the default key index on the ADW 4302v2 The default value is 1 Ensure the options The key is provided for me automatically and This is a com puter to computer ad hoc network are unchecked Click OK t...

Page 48: ...it does not matter which network is selected on the screen below Just click the Advanced button Figure 33 Wireless Networks Windows XP You will then see a screen like the example below Figure 34 Adva...

Page 49: ...PSK For Data Encryption select TKIP For the Network key and Confirm network key enter the network key PSK used on the ADW 4302v2 Ensure the option This is a computer to computer ad hoc network is unch...

Page 50: ...If the Broadcast SSID setting on the ADW 4302v2 has been disabled its SSID will NOT be listed on the screen below Figure 37 Wireless Networks Windows XP In this situation you need to obtain the SSID...

Page 51: ...like the example below Figure 39 Add Wireless Network 3 Configure this screen as follows Enter the correct SSID as used on the ADW 4302v2 Remember the SSID is case sensitive so be sure to match the ca...

Page 52: ...ils of WEP and WPA PSK Uncheck the options The key is provided for me automatically and this is a com puter to computer ad hoc network Click OK to save and exit 4 This wireless network will then be li...

Page 53: ...mode see Chap ter 8 Modem Mode Operation Router Mode Once both the ADW 4302v2 and the PCs are configured operation is automatic However there are some situations where additional Internet configurati...

Page 54: ...Screen ADSL Modem Status This indicates the status of the ADSL modem component DownStream Connection Speed Displays the speed for the DownStream Connection UpStream Connection Speed If connected displ...

Page 55: ...s This IP Address is allocated by the ISP Internet Service Provider If using a dynamic IP address and no connection currently exists this information is unavailable LAN IP Address The IP Address of th...

Page 56: ...f each VC Virtual Circuit Connection Details Click this button to open a sub window and view a detailed description of the current connection Depending on the type of connection a log may also be avai...

Page 57: ...ntly established If the connection does not exist the Connect button can be used to establish a connection If the connection currently exists the Disconnect button can be used to break the connection...

Page 58: ...he remote Gateway or Router associated with the IP Address above DHCP Server The IP address of your ISP s DHCP Server DNS Server The IP address of the Domain Name Server which is currently used Lease...

Page 59: ...Operation and Status 53...

Page 60: ...tails Fixed Dynamic IP Address Data Fixed IP address Screen Internet IP Address The IP Address of this device as seen by Internet users This address is allocated by your ISP Internet Service Provider...

Page 61: ...Special Applications URL filter Dynamic DNS Firewall Rules Firewall Services Schedule Virtual Servers VPN SNMP Access Control The Access Control feature allows administrators to restrict the Internet...

Page 62: ...Schedule to apply the blocking only during scheduled times If access is not blocked no Scheduling is possible and this setting has no effect None Schedule is disabled Default Use the schedule which i...

Page 63: ...from the Other PCs list Select an entry or entries in the Other PCs list and click the button Delete a Trusted PC from the list move to the Other PCs list Select an entry or entries in the Trusted PC...

Page 64: ...feature when required Special Applications If you use Internet applications which use non standard connections or port numbers you may find that they do not function correctly because they are blocke...

Page 65: ...or data you receive If the application uses a single port number enter it in both the Start and Finish fields Finish Enter the end of the range of port numbers used by the application server for data...

Page 66: ...e independent of the Schedule page Allow Trusted PCs to Visit Blocked Sites Enable this to allow specified com puter s to have unrestricted access to the Internet For this these PC s the URL filter wi...

Page 67: ...ngs The list contains the current list of items to block To add to the list use the Add option below To delete an entry select it and click Delete button To delete all entries click the Delete All but...

Page 68: ...desired Domain name 3 Enter your DDNS data on the ADW 4302v2 s DDNS screen and enable the DDNS feature 4 The ADW 4302v2 will then automatically ensure that your current IP Address is recorded at the...

Page 69: ...ss Password Enter your current password for the DDNS Service TZO com calls this a key Domain Name Enter the domain name allocated to you by the DDNS Service If you have more than one name enter the na...

Page 70: ...is shown below Figure 53 Firewall Screen Data Firewall Rules Incoming Rules For the default rule this will display Default For rules which you create this will display a radio button which allows you...

Page 71: ...ble Indicates whether or not the rule is currently enabled For rules you have added this column will contain a checkbox allowing you to easily enable or disable the rule Click Save after making any ch...

Page 72: ...OCK always BLOCK by schedule otherwise Allow Note Any inbound traffic which is not allowed by rules you create will be blocked by the Default rule BLOCK rules are only useful if the traffic is already...

Page 73: ...ches this rule The action is determined by this rule Not Match Log traffic which is considered by this rule but does not match The action is NOT determined by this rule Outgoing Rules Outbound Service...

Page 74: ...our LAN which will be covered by this rule WAN Users These settings determine which packets are covered by the rule based on their source WAN IP address Select the desired option Any All IP addresses...

Page 75: ...een Data Firewall Services Services Existing Ser vices This lists any Services you have defined If you have not defined any Services this list will be empty Once you define some services they will be...

Page 76: ...Data Add Edit Service Services Name If editing this shows the current name of the Service If adding a new service this will be blank and you should enter a suitable name Type Select the protocol used...

Page 77: ...sabling this option provides a slight increase in security MTU Size Enter a value between 1 and 1500 Note MTU Maximum Transmission Unit size should only be changed if advised to do so by Technical Sup...

Page 78: ...2 can be left blank if not required Start Time Enter the start using a 24 hr clock Finish Time Enter the finish time using a 24 hr clock Local Time Time Zone In order to display your local time corre...

Page 79: ...as the primary NTP server check the checkbox Use this NTP Server and enter the Server s IP address in the fields provided If this setting is not enabled the default NTP Servers is used Current Time T...

Page 80: ...ure 60 Virtual Servers IP Address seen by Internet Users Note that in this illustration both Internet users are connecting to the same IP Ad dress but using different protocols To Internet users all v...

Page 81: ...IP address is allocated upon connection so it may change each time you connect Figure 61 Virtual Servers Screen Data Virtual Servers Screen Servers Servers This lists a number of common Server types I...

Page 82: ...an connect to your Virtual Servers They must use the Internet IP Address the IP Address allocated to you by your ISP e g http 203 70 212 52 ftp 203 70 212 52 It is more convenient if you are using a F...

Page 83: ...icy for each site you wish to connect to The remote VPN Gateway or client needs to have matching configuration Traffic covered by an enabled policy will automatically be sent via a VPN tunnel If the V...

Page 84: ...address or subnet on your local LAN Traffic must be from or to these addresses to be cov ered by this policy Remote LAN IP address or subnet on the remote LAN Traffic must be to or from these addresse...

Page 85: ...cies screen or when you edit an existing Auto Policy It allows you to define or edit an Auto VPN policy An Auto VPN policy uses the IKE Internet Key Protocol to exchange and negotiate parameters for...

Page 86: ...ows Single address Enter an IP address in the IP address field Typically this setting is used when you wish to make a single Server on your LAN available to remote users Subnet address Enter an IP add...

Page 87: ...red option to match the Local Identity Type setting on the remote VPN endpoint IP Address The Internet IP address of the remote VPN endpoint Fully Qualified Domain Name the Domain name of the remote V...

Page 88: ...even if one key is broken subsequent keys are no easier to break Each key has no relationship to the previous key This setting applies to both IKE and IPSec SAs When con figuring the remote endpoint t...

Page 89: ...negotiation between the 2 VPN endpoints Figure 64 VPN Manual Policy Screen Data VPN Manual Policy Screen General Policy Name Enter a unique name to identify this policy This name is not supplied to t...

Page 90: ...Select this option if there is no LAN only a single PC at the remote endpoint If this option is selected no additional data is required Single address Enter an IP address in the IP address field This...

Page 91: ...thentication Select the desired Authentication Algorithm and enter the key in the field provided For MD5 the key should be 16 ASCII characters 32 Hex characters For SHA 1 the key should be 20 ASCII 40...

Page 92: ...o identify the incom ing connection For Auto policies the SPI is automatically generated For Manual policies the SPI must be entered when the policy is configured SPI Out This is a unique index number...

Page 93: ...us chapter Using Microsoft VPN provides easier setup than using IPSec VPN Microsoft VPN Screen ADW 4302v2 incorporates a PPTP Peer to Peer Tunneling Protocol server which is compatible with the VPN Ad...

Page 94: ...remote user must provide this name when they connect The name must not contain spaces punc tuation or special characters Login Password Enter the login password The remote user must provide this passw...

Page 95: ...sh Use this to Enable or Disable auto refresh for this screen If enabled the screen will be updated every few seconds The status bar on the bottom on the screen will indicate if auto refresh is enable...

Page 96: ...xed IP address you can use a Dynamic DNS service to obtain a domain name Click Next to continue Figure 69 Windows ME VPN Remote Host 5 Click Finish to exit the Wizard The new entry will now be listed...

Page 97: ...ing 4 Enter your User name and Password as recorded in the Client database on ADW 4302v2 5 Click the Connect button Windows 2000 Ensure you have logged on with Administrator rights before attempting t...

Page 98: ...nitial connec tion and select the PPPoE connection Click Next to continue Figure 72 Windows 2000 Public Network 4 On the screen below enter the Domain Name or Internet IP address of ADW 4302v2 you wis...

Page 99: ...ompted for the username and password Enter the username and password assigned to you as recorded in the VPN client database on ADW 4302v2 3 You can choose to have Windows remember the password if desi...

Page 100: ...s procedure 1 Open Network Connections Start Settings Network Connections and start the New Connection Wizard 2 Select the option Connect to the network at my workplace as shown below and click Next F...

Page 101: ...below select Do not dial the initial connection Click Next to continue Figure 79 Windows XP Public Network 6 On the screen below enter the Domain Name or Internet IP address of ADW 4302v2 you wish to...

Page 102: ...the username and password assigned to you as recorded in the VPN client database on ADW 4302v2 3 You can choose to have Windows remember the password if desired so you do not have to enter it again Ch...

Page 103: ...on the main menu then SNMP to see a screen like the following Figure 82 SNMP Screen Data SNMP Screen SNMP Service Enable SNMP support Enable or disable the SNMP feature as required SNMP Data Community...

Page 104: ...shown when you select the DMZ PC or a Virtual Server This database is maintained automati cally but you can add and delete entries for PCs which use a Fixed Static IP Address Config File Backup or res...

Page 105: ...Database screen is shown below Figure 83 PC Database PCs which are DHCP Clients are automatically added to the database and updated as required By default non Server versions of Windows act as DHCP C...

Page 106: ...t powered On you will not be able to add it Buttons Add This will add the new PC to the list The PC will be sent a ping to determine its hardware address If the PC is not available not connected or no...

Page 107: ...trol than the standard PC Database screen Figure 84 PC Database Admin Data Advanced PC Database Known PCs This lists all current entries Data displayed is name IP Address type The type indicates wheth...

Page 108: ...MAC address This is only possi ble if the PC is connected to the LAN and powered On MAC address is Enter the MAC address on the PC The MAC address is also called the Hardware Address Physi cal Addres...

Page 109: ...onfig File Screen Data Config File Screen Backup Config Use this to download a copy of the current configuration and store the file on your PC Click Download to start the download Restore Config This...

Page 110: ...og data can also be E mailed to your PC Use the E mail screen to configure this feature Figure 86 Logging Screen Data Logging Screen Logs Current Time The current time on the ADW 4302v2 is displayed L...

Page 111: ...ll log connections TO this Router rather than through this Router to the Internet Router operation If checked other Router operations not covered by the selections above will be logged Known DoS attac...

Page 112: ...Outgoing SMTP Mail Server Enter the address or IP address of the SMTP Simple Mail Transport Protocol Server you use for outgoing E mail My SMTP Mail Server requires authentication To stop spanners man...

Page 113: ...tion for sending the log by E mail Never default This feature is disabled Logs are not sent When log is full The time is not fixed The log will be sent when the log is full which will depend on the vo...

Page 114: ...wait a few seconds and try again Ping Button After entering the IP address click this button to start the Ping procedure The results will be displayed in the Ping Results pane DNS Lookup Internet nam...

Page 115: ...er a port number between 1 and 65535 The default for HTTP Web connections is port 80 but using port 80 will prevent the use of a Web Virtual Server on your LAN So using a different port number is reco...

Page 116: ...TTP followed by the Internet IP Address of the ADW 4302v2 If the port number is not 80 the port number is also required After the IP Address enter followed by the port number e g HTTP 123 123 123 123...

Page 117: ...the following Windows 2000 settings are correct Open Routing and Remote Access In the console tree select Routing and Remote Access server name IP Routing RIP In the Details pane right click the inte...

Page 118: ...Update the current Static Routing Table entry using the data shown in the table area on screen Delete Delete the current Static Routing Table entry Save Save the RIP setting This has no effect on the...

Page 119: ...uter with a direct connection to the ADW 4302v2 s local Router the Gate way IP Address is the address of the ADW 4302v2 s local router For routers which must forward packets to another router before r...

Page 120: ...ateway IP Address 192 168 0 100 Metric 3 For Router A s Default Route Destination IP Address 0 0 0 0 Network Mask 0 0 0 0 Gateway IP Address 192 168 0 1 ADW 4302v2 s IP Address For Router B s Default...

Page 121: ...llowing Figure 92 Router Upgrade Screen To perform the Firmware Upgrade 1 Click the Browse button and navigate to the location of the upgrade file 4 Select the upgrade file Its name will appear in the...

Page 122: ...m mode the IP address does not change but the DHCP server is disabled However your PC will usually retain the IP address pro vided by the DHCP Server so the connection will be automatically re establi...

Page 123: ...de change back to Router mode if desired LAN set IP address mask and gateway This is the same as in Router mode except that the DHCP server is not available while in Modem mode Wireless this screen an...

Page 124: ...nsparent it does not perform any operations or make any changes to the network traffic passing through it You need to have a DHCP Server on your LAN to provide IP addresses to the Wireless cli ents us...

Page 125: ...een Bridge Mode System Device Name The current name of the Router This name is also the hostname for users with a Home type connection Firmware Version The version of the current firmware installed AD...

Page 126: ...ame SSID If using an ESS Extended Service Set with multiple ac cess points this ID is called an ESSID Extended Service Set Identifier Region The current region as set on the Wireless screen Channel Th...

Page 127: ...Fixed Static IP address ensure that it is using an IP Address within the range 192 168 0 2 to 192 168 0 254 and thus compatible with the ADW 4302v2 s default IP Address of 192 168 0 1 Also the Network...

Page 128: ...WEP The default setting for the ADW 4302v2 is disabled so your wireless station should also have WEP disabled If WEP is enabled on the ADW 4302v2 your PC must have WEP enabled and the key must match...

Page 129: ...oting devices should be shielded or relocated RF Shielding Your environment may tend to block transmission between the wireless stations This will mean high access speed is only pos sible when close t...

Page 130: ...function in Infrastructure mode and can communicate only with Wireless Stations which are set to Infrastructure mode BSS ESS BSS A group of Wireless Stations and a single Access Point all using the s...

Page 131: ...rd for encrypting data before it is transmit ted This is desirable because it is impossible to prevent snoopers from receiving any data which is transmitted by your Wireless Stations But if the data i...

Page 132: ...uld use the same SSID ESSID as the Access Point they wish to connect to Alternatively the SSID can be set to any or null blank to allow connection to any Access Point Wireless Security The Wireless St...

Page 133: ...ection There are two security modes possible with IPSec Transport Mode the payload data part of the packet is encapsulated through encryption but the IP header remains in the clear unchanged The ADW 4...

Page 134: ...iple Policies for the same remote site However you should only Enable one 1 policy at a time VPN Configuration The general rule is that each endpoint must have matching Policies as follows VPN Endpoin...

Page 135: ...figuration since it is not acting as a VPN endpoint Client PC to VPN Gateway Figure 97 Client PC to VPN Server In this situation the PC must run appropriate VPN client software in order to connect via...

Page 136: ...hen a VPN tunnel will be established and what systems on the remote LAN can be accessed once the VPN connection is established It is possible to have simultaneous VPN connections to many remote sites...

Page 137: ...Appendix C VPNs Configuration Settings Gateway A Gateway A should be configured as shown below Figure 100 Gateway A Configuration 131...

Page 138: ...ow Figure 101 Gateway B Configuration Settings Setting LAN A Gateway LAN B Gateway Notes Policy Name Example Example Name does not affect operation Select a meaningful name Remote VPN Endpoint Fixed I...

Page 139: ...24 bit Must match Local Identity IP address IP address IP address is the most common ID method Remote Identity WAN IP address WAN IP address IP address is the most common ID method SA Parameters Encry...

Page 140: ...and ATM Support Integrated ATM AAL5 support 255 VPI plus 65535 VCI address range LAN 4 10Base T 100Base TX Auto Negotiation Auto MDI MDI X Wireless 1 x 802 11g wireless access point antenna detachabl...

Page 141: ...rface Standards IEEE802 11b IEEE802 11g WLAN 802 11G plus Texas Instruments proprietary enhanced mode Frequency 2 4 to 2 4835GHz Industrial Scientific Medical Band Channels Maximum 14 Channels dependi...

Page 142: ...TV technician for help To assure continued compliance any changes or modifications not expressly ap proved by the party responsible for compliance could void the user s authority to operate this equip...

Reviews: