background image

Please check 

www.sitecom.com

 for up to date drivers & utilities, manuals and support 

 

35 

7.4 IP Filtering 

The IP/Port filtering feature allows you to deny/allow specific services or applications in the 

forwarding path.   

 

 

Field 

Description 

Outgoing Default 

Action 

Specify the default action on the LAN to WAN forwarding path. 

Incoming Default 

Action 

Specify the default action on the WAN to LAN forwarding path. 

 

Apply Changes 

Click to save the setting of default actions to the configuration. 

 

Summary of Contents for DC-227

Page 1: ...ADSL2 Modem DC 227 Full manual ...

Page 2: ...e Requirements 8 2 2 2 Decide where to place your ADSL2 Modem 8 2 2 3 Setup LAN connection 8 2 2 4 Hardware Setup Procedures 8 2 2 5 Power on 8 3 NETWORK SETTINGS AND SOFTWARE INSTALLATION 9 3 1 9 4 CONFIGURING THE ADSL2 MODEM 10 4 1 START UP AND LOG IN 10 4 1 1 LAN Settings 12 4 1 2 ARP Settings 13 4 1 3 DHCP 14 4 1 4 Route 15 4 1 5 Interface 16 4 1 6 Statistics 17 5 RUN SETUP WIZARD 18 6 BASIC S...

Page 3: ...TERING 35 7 5 MAC FILTERING 37 7 6 REMOTE MANAGEMENT 39 8 ADVANCED SETTINGS 40 8 1 BRIDGING 40 8 2 ROUTING 41 8 3 SNMP 43 8 4 QOS 45 8 5 MISC 47 8 6 ADSL SET 48 8 7 ADSL ATM 50 9 TOOLBOX 52 9 1 TIMEZONE 53 9 2 ACL 54 9 3 FIRMWARE UPGRADE 55 9 4 BACKUP SETTINGS 56 9 5 COMMIT AND REBOOT 57 9 6 PING 58 9 7 SYSLOG 59 APPENDICES 60 APPENDIX A HOW TO MANUALLY FIND YOUR PC S IP AND MAC ADDRESS 60 APPENDI...

Page 4: ...eam and 1 5 Mbps upstream to deliver true broadband speed and throughput To ensure fully compatibility the DSL device was tested with all major DSLAMs and support standard 10 100 Mbps Base T Ethernet interface Auto MDI MDIx 10 100 Switch function allowing user easily to link to PC or other Switches Hubs The DSL device is an idea solution for multi users utilizing build in channel mode PPPoE A IPoA...

Page 5: ...receive loop back 802 1d Spanning Tree Protocol DHCP Client Server Relay NAT RIP v1 v2 DNS Relay Agent DMZ support IGMP Proxy Snooping Stateful Packet Inspection Protection against Denial of Service attacks IP Packet Filtering QoS Dynamic DNS UPnP support Management Web based Configuration Menu driven Command line Interpreter Telnet Remote Management SNMP v1 v2 Trap Firmware upgrade through FTP TF...

Page 6: ...r Status Description POWER Power indication Green On Power is connected On ADSL line was detected WAN Link Status Green Blinking The modem couldn t detect the ADSL signal or is attempting to get line sync Blinking The LAN port is sending or receiving data LAN Data Rate Green On The LAN port is connected ...

Page 7: ...port 7 2 1 2 Rear Panel Port Description WAN The port to connect with your ADSL line Ethernet The ports where you can connect your computer or other device Reset To reset the system settings to factory defaults press the reset button for at least 10 seconds POWER The power inlet ...

Page 8: ...t cable to one of your computers 2 2 4 Hardware Setup Procedures 1 Connect the RJ 11 cable from the DC 227 to your ADSL line 2 Connect the RJ 45 line from your PC to an Ethernet port on the DC 227 3 Plug the power supply into a wall outlet 2 2 5 Power on Connect the power adapter to the power inlet port and connect it to a wall outlet this product will automatically enter the self test phase When ...

Page 9: ...etprotocol TCP IP and click on the button Properties 4 Select Obtain an IP address automatically 5 Click on OK then on Close and restart your PC 3 2 Windows Vista 1 Click the Windows Start button 2 Right click with the mouse on Network and select Properties 3 Click status of your network connection and select Properties in the new window 4 In User Account Control click continue 5 Click Internet Pr...

Page 10: ...e default configurations for the system are listed below 4 1 Start up and Log in 1 Start your web browser e g Internet Explorer 2 Type in de address bar http 10 0 0 1 and press Enter 3 Enter your username as admin and for your password admin and click OK 4 You will now see the start page for your modem LAN IP address 10 0 0 1 Subnet Mask 255 255 255 0 VPI VCI 8 35 Encapsulation 1483 Bridged IP LLC...

Page 11: ...tatus page to monitor the connection status of the ADSL modem s WAN LAN interfaces the current firmware and hardware version numbers and information on all DHCP client PCs currently connected to your network Connect Disconnect The two buttons take effect only when PVC is configured as PPPoE PPPoA mode Click Connect Disconnect button to connect disconnect the PPP dial up link ...

Page 12: ... this page Field Description IP Address The IP address your LAN hosts uses to identify the device s LAN port Subnet Mask LAN subnet mask IGMP Snooping Enable disable the IGMP snooping function for the multiple bridged LAN ports Apply Changes Click to save the setting to the configuration New parameters will take effect after save into flash memory and reboot the system Undo Discard your changes ...

Page 13: ...m com for up to date drivers utilities manuals and support 13 4 1 2 ARP Settings This page shows a list of MAC addresses and IP addresses for devices that are were connected to the ADSL modem Click Refresh to update the list ...

Page 14: ...Sitecom ADSL2 Modem DC 227 14 4 1 3 DHCP This page shows a list of assigned IP addresses and MAC addresses for each DHCP leased client Click Refresh to update the list ...

Page 15: ...Please check www sitecom com for up to date drivers utilities manuals and support 15 4 1 4 Route This page shows a list of learned routes Click Refresh to update the list ...

Page 16: ...Sitecom ADSL2 Modem DC 227 16 4 1 5 Interface This page shows the packet and memory statistics for the different interfaces Click Refresh to update the list ...

Page 17: ...Please check www sitecom com for up to date drivers utilities manuals and support 17 4 1 6 Statistics This page shows the statistics for the ADSL line and connection Click Refresh to update the list ...

Page 18: ... is connected and click Next Select your country from the Country list From Service select your internet provider Click Next Depending on the chosen provider you may need to enter your user name and password or MAC address in the following window After you have entered the correct information click Next Click APPLY to complete the configuration ...

Page 19: ...ties manuals and support 19 The modem will now save the settings and restart please wait 120 seconds and you will be transferred back to the status window The configuration is complete Wait for about 10 seconds to allow the modem to re connect to the Internet ...

Page 20: ...DNS relay configuration New parameters will take effect after save into flash memory and reboot the system Undo Discard your changes Field Description Attain DNS Automatically Select this item if you want to use the DNS servers obtained by the WAN interface via the auto configuration mechanism Set DNS Manually Select this item to configure up to three DNS IP addresses ...

Page 21: ...DHCP This page provides DHCP instructions for implementing it on your network by selecting the role of DHCP protocol that this device wants to play There are two different DHCP roles that this device can act as DHCP Server and DHCP Relay When acting as DHCP server you can setup the server parameters at the DHCP Server page while acting as DHCP Relay you can setup the relay at the DHCP Relay page ...

Page 22: ...ed to maintain a network connection to the device using the current dynamic IP address At the end of the Lease Time the lease is either renewed or a new IP is issued by the DHCP server The amount of time is in units of seconds The default value is 86400 seconds 1 day The value 1 stands for the infinite lease Domain Name A user friendly name that refers to the group of hosts subnet that will be ass...

Page 23: ...network requests Internet access the device contacts your ISP to obtain the IP configuration and then forward that information to the host Apply Changes Click to save the setting to the configuration New parameters will take effect after saving into flash memory and rebooting the system Field Description DHCP Server Address Specify the IP address of your ISP s DHCP server Requests for IP informati...

Page 24: ...e The Dynamic DNS page allows you to enable disable the Dynamic DNS feature Field Description Enable Check this item to enable this registration account for the DNS server DDNS provider There are two DDNS providers to be selected in order to register your device with DynDNS and TZO A charge may occurs depends on the service you select Hostname Domain name to be registered with the DDNS server Inte...

Page 25: ...ve Select an existing DDNS registration by clicking the radio button at the Select column of the Dynamic DNS Table Click Remove button to remove the selected registration from the configuration Apply Changes Set new DNS relay configuration New parameters will take effect after save into flash memory and reboot the system Undo Discard your changes ...

Page 26: ...t router sending multicast packets to multicast group on the WAN side When a host wishes to join a multicast group it sends IGMP REPORT message to the device s IGMP downstream interface The proxy sets up a multicast route for the interface and host requesting the video content It then forwards the Join to the upstream multicast router The multicast IP traffic will then be forwarded to the requesti...

Page 27: ...vers utilities manuals and support 27 Field Description IGMP Proxy Enable disable IGMP proxy feature Proxy Interface The upstream WAN interface is selected here Apply Changes Click to save the setting to the configuration Undo Discard your settings ...

Page 28: ... With NAT Traversal when an UPnP command is received to open ports in NAT the application translates the request into system commands to open the ports in NAT and the firewall The interface to open the ports on is given to UPnP when it starts up and is part of the configuration of the application For Device Identification the application will send a description of the DSL device as a control point...

Page 29: ...these cases there is no need to share routes because all Internet data from the network is sent to the same ISP gateway You may want to configure RIP if any of the following circumstances apply to your network Your home network setup includes an additional router or RIP enabled PC other than the ADSL Modem The ADSL Modem and the router will need to communicate via RIP to share their routing tables...

Page 30: ...be accepted into its routing table Send Mode Indicate the RIP version this interface will use when it sends its route information to other devices Add Add a RIP entry and the new RIP entry will be display in the table Delete Selected Entry Delete a selected RIP entry The RIP entry can be selected on the Select column of the RIP Config Table Apply Changes Set new DHCP server configuration New param...

Page 31: ...rding entry will create a tunnel through your firewall so that the computers on the Internet can communicate to one of the computers on your LAN on a single port Field Description Enable Port Forwarding Check this item to enable the port forwarding feature Protocol There are 3 options available TCP UDP and Both Enable Check this item to enable this entry Local IP Address IP address of your local s...

Page 32: ...application on the WAN side Interface Select the WAN interface on which the port forwarding rule is to be applied Apply Changes Click to save the rule entry to the configuration Delete Selected Delete the selected port forwarding rules from the forwarding table You can click the checkbox at the Select column to select the forwarding rule Delete All Delete all forwarding rules from the forwarding t...

Page 33: ...escription URL Blocking capability Check this item to enable the URL Blocking feature FQDN A fully qualified domain name or FQDN is an unambiguous domain name that specifies the node s position in the DNS tree hierarchy absolutely such as tw yahoo com The FQDN will be blocked to access Keyword The filtered keyword such as yahoo If the URL includes this keyword the URL will be blocked to access App...

Page 34: ...puter as a DMZ Demilitarized Zone host with unrestricted Internet access When doing this the DMZ host is no longer behind the firewall Field Description Enable DMZ Check this item to enable the DMZ feature DMZ Host IP Address IP address of the local host This feature sets a local host to be exposed to the Internet Apply Changes Click to save the setting to the configuration ...

Page 35: ...ou to deny allow specific services or applications in the forwarding path Field Description Outgoing Default Action Specify the default action on the LAN to WAN forwarding path Incoming Default Action Specify the default action on the WAN to LAN forwarding path Apply Changes Click to save the setting of default actions to the configuration ...

Page 36: ...source IP Src Port Starting and ending source port numbers Dst IP Address The destination IP address assigned to the traffic on which filtering is applied Dst Subnet Mask Subnet mask of the destination IP Dst Port Starting and ending destination port numbers Apply Changes Click to save the rule entry to the configuration Delete Selected Delete selected filtering rules from the filter table You can...

Page 37: ...n on the LAN to WAN bridging forwarding path Incoming Default Action Specify the default action on the WAN to LAN bridging forwarding path Rule Action Deny or allow traffic when matching this rule Direction Traffic bridging forwarding direction Src MAC Address he source MAC address It must be xxxxxxxxxxxx format Blanks can be used in the MAC address space and are considered as don t care Dst MAC A...

Page 38: ... to save the rule entry to the configuration Delete Selected Delete selected filtering rules from the filter table You can click the checkbox at the Select column to select the filtering rule Delete All Delete all filtering rules from the filter table ...

Page 39: ...Check un check the services on the LAN column to allow un allow the services access from LAN side and WAN WAN Check un check the services on the WAN column to allow un allow the services access from WAN side WAN Port This field allows the user to specify the port of the corresponding service Take the HTTP service for example when it is changed to 8080 the HTTP server address for the WAN side is ht...

Page 40: ...ime in seconds After Ageing Time seconds of not having seen a frame coming from a certain address the bridge will time out delete that address from Forwarding DataBase fdb 802 1d Spanning Tree Enable disable the spanning tree protocol Apply Changes Save this bridge configuration New configuration will take effect after saving into flash memory and rebooting the system Show MACs List MAC address in...

Page 41: ...it to them when you modified your TCP IP properties or because you configured them to receive the information dynamically from a server whenever they access the Internet On the DSL device itself a default gateway is defined to direct all outbound Internet traffic to a route at your ISP The default gateway is assigned either automatically by your ISP whenever the device negotiates an Internet acces...

Page 42: ...h which traffic will flow towards the destination subnet Metric Defines the number of hops between network nodes that data packets travel The default value is 0 which means that the subnet is directly one hop away on the local LAN network Interface The WAN interface to which a static routing subnet is to be applied Add Route Add a user defined destination route Update Update the selected destinati...

Page 43: ...act information for the DSL device System Name An administratively assigned name for the DSL device System Location The physical location of the DSL device System Object ID Vendor object identifier The vendor s authoritative identification of the network management subsystem contained in the entity Trap IP Address Destination IP address of the SNMP trap Community name read only Name of the read on...

Page 44: ...Sitecom ADSL2 Modem DC 227 44 Apply Changes Save SNMP configuration New configuration will take effect after saving into flash memory and rebooting the system ...

Page 45: ...port The Action enables you to assign the strictly priority level for and mark some fields in the packet that matches the Traffic Classification rule You can configure any or all field as needed in these two QoS blocks for a QoS rule Field Description IP QoS Enable disable the IP QoS function Source IP The IP address of the traffic source Source Netmask The source IP netmask This field is required...

Page 46: ...cable Field Description Outbound Priority The priority level for the traffic that matches this classification rule The possible selections are in the descending priority p0 p1 p2 p3 IP Precedence Select this field to mark the IP precedence bits in the packet that match this classification rule IP Type of Service Select this field to mark the IP TOS bits in the packet that match this classification...

Page 47: ...hange IP passthrough settings When the IP Passthrough option is enabled only one PC is able to access the Internet and the DHCP server will duplicate the WAN IP address from the ISP to the local client PC Only the PC with the WAN IP address can access the Internet This option is sometimes also called PPP Half Bridge ...

Page 48: ...ard protocols G lite G 992 2 Annex A G dmt G 992 1 Annex A T1 413 T1 413 issue 2 ADSL2 G 992 3 Annex A ADSL2 G 992 5 Annex A AnnexL Option Enable Disable ADSL2 ADSL2 Annex L capability AnnexM Option Enable Disable ADSL2 ADSL2 Annex M capability ADSL Capability Bitswap Enable Enable Disable bitswap capability SRA Enable Enable Disable SRA seamless rate adaptation capability Tone Mask ...

Page 49: ...tecom com for up to date drivers utilities manuals and support 49 Choose tones to be masked Mased tones will not carry any data Apply Changes Click to save the setting to the configuration and the modem will be retrained ...

Page 50: ...cted on the Select column in the Current ATM VC Table The VCI together with VPI is used to identify the next destination of a cell as it passes through to the ATM switch QoS Quality of Server a characteristic of data transmission that measures how accurately and how quickly a message or data is transferred from a source host to a destination host over a network The four QoS options are UBR Unspeci...

Page 51: ... Cell Rate measured in cells sec is the cell rate which the source may never exceed SCR Sustained Cell Rate measured in cells sec is the average cell rate over the duration of the connection MBS Maximum Burst Size a traffic parameter that specifies the maximum number of cells that can be transmitted at the peak cell rate Apply Changes Set new PVC OoS mode for the selected PVC New parameters will t...

Page 52: ... user The admin and user password configuration allows you to change the password for administrator and user Field Description User Name Selection of user levels are admin and user Old Password Enter the old password for this selected login New Password Enter the new password here Confirmed Password Enter the new password here again to confirm ...

Page 53: ...ode which issues sending client requests to the configured SNTP server addresses periodically can configure the system clock in the DSL device Field Description Current Time The current time of the specified time zone You can set the current time by yourself or configured by SNTP Time Zone Select The time zone in which the DSL device resides Enable SNTP client update Enable the SNTP client to upda...

Page 54: ...wed to access this device If ACL is enabled all hosts cannot access this device except for the hosts with IP address in the ACL table Field Description ACL Capability Enable disable the ACL function Enable Check to enable this ACL entry Interface Select the interface domain LAN or WAN IP Address Enter the IP address that allow access to this device ...

Page 55: ...SL device Click the Browse button to select the firmware file Confirm your selection Click the Upload button to start upgrading IMPORTANT Do not turn off your DSL device or press the Reset button while this procedure is in progress IMPORTANT Make sure you use a wired client to upgrade the firmwqare from Disable your wireless network card to prevent possible damage due to incomplete upgrading ...

Page 56: ...e the Restore to Factory Defaults selection this will set all configurations to its original default settings e g when you first purchased the modem Use the Backup tool to save the Broadband modem current configuration to a file named config bin on your PC You can then use the Restore tool to restore the saved configuration to the Broadband modem Alternatively you can use the Restore to Factory De...

Page 57: ... reset or turn off To save your change for future use you can use the commit function Commit and Reboot Whenever you use the web console to change system settings the changes are initially placed in temporary storage To save your changes for future use you can use the Commit Reboot function This function saves your changes from RAM to flash memory and reboot the system IMPORTANT Do not turn off yo...

Page 58: ... to the host you specify If the host receives the message it sends messages in reply To use it you must know the IP address of the host you are trying to communicate with and enter the IP address in the Host Address field Click Go To start the ping command the ping result will then be shown in this page Field Description Host Address The IP address you want to ping ...

Page 59: ...Please check www sitecom com for up to date drivers utilities manuals and support 59 9 7 Syslog This page allows you to enable or disable the system log ...

Page 60: ... 1 In Window s open the Command Prompt program 2 Type ipconfig all and enter Your PC s IP address is the one entitled IP address e g 192 168 0 100 The modem s IP address is the one entitled Default Gateway e g 192 168 0 1 Your PC s MAC Address is the one entitled Physical Address e g 00 13 D3 33 8D 45 ...

Page 61: ...unction is supported only if the device is equipped with a RTL8205SC which is a 5 port 10 100MBps switch controller Figure B 1 illustrates the how the RTL867x device adds a VLAN ID and tag to packets subject to PVC VLAN mapping In this example vc3 is mapped to VLAN 20 The RTL867x device adds VLAN ID 20 and tag 8100 to packets from vc3 ATM RTL867x RTL8305S Ethern Heade IP Heade DATA VLAN ID 20 Tag ...

Reviews: