background image

 

1/8/2018 

Proprietary and Confidential - Technicolor 

94 

 
 
 

 

Figure 10.3 

10.3.1 

SNMP Provisioning for Remote Management 

Below are the MIBs used for Remote Management configuration: 

 

tchRgDeviceRemoteWebAccessEnable  

 

tchRgDeviceRemoteWebAccessPort 

10.4 Backup & Restore 

The backup feature saves the current gateway configuration to a local PC. These settings can be 
restored later if a configuration needs to be restored, or to recover from changes that have had 
an undesirable effect. 

 

To backup the current configuration, click Backup and follow the prompts. To restore a previous 
configuration,  click  Browse  and  use  the  navigation  window  to  locate  the  local  backup  file.  The 
default filename is in the format MM_DD_YYYY.gwc. Note that this file is encrypted.  When the 
file has been located, click Restore to restore the settings.  When the settings are restored, the 
device will reboot to the restored settings. 

10.4.1 

User Provisioning for Backup & Restore 

Administration Tab / Backup & Restore 

Click on the Administration tab and then the Backup & Restore tab. This page displays Backup 
& Restore setup information. 
 

Summary of Contents for CGM4231

Page 1: ... WIRELESS GATEWAY CGM4231 OPERATIONS GUIDE Version Draft 1 1 Copyright 2018 Technicolor All Rights Reserved No portions of this material may be reproduced in any form without the written permission of Technicolor ...

Page 2: ...1 8 2018 Proprietary and Confidential Technicolor 2 Revision History Revision Date Description Draft 1 0 1 8 2018 Initial draft ...

Page 3: ...ireless Status 26 5 5 DOCSIS Status 28 5 6 DOCSIS Signal 30 5 7 DOCSIS Log 34 5 8 System 34 6 Connection 37 6 1 Devices 37 6 2 LAN 37 6 2 1 LAN Setup 38 6 3 WAN 39 6 3 1 User Provisioning of WAN 39 6 3 2 SNMP Provisioning for WAN 43 6 3 3 Dual Stack Router 43 6 4 Routing 44 6 4 1 Enable Disable IGMP Proxy 44 6 4 2 RIP 44 6 4 3 SNMP Provisioning for Routing 46 6 5 MoCA 47 6 5 1 User Provisioning fo...

Page 4: ... 63 7 5 MAC Control 63 7 5 1 User Provisioning for MAC Control 64 7 5 2 SNMP Provisioning for MAC Control 65 7 6 WPS 65 7 6 1 User Provisioning for WPS 65 7 7 QOS 66 7 7 1 User Provisioning for QOS 67 7 7 2 SNMP Provisioning for QOS 68 8 Security 69 8 1 Firewall 69 8 1 1 User Provisioning for Firewall 69 8 1 2 SNMP Provisioning for Firewall 72 8 2 IP Filter 72 8 3 Device Filter 72 8 3 1 SNMP Provi...

Page 5: ... 94 10 4 Backup Restore 94 10 4 1 User Provisioning for Backup Restore 94 10 4 2 SNMP Provisioning for Backup Restore 95 10 5 Reboot Reset 95 10 5 1 SNMP Provisioning for Factory Settings 96 10 6 Restarting the Device 96 10 6 1 SNMP Provisioning for Restarting the Device 97 10 7 Trouble Shooting 97 10 8 Remote Log 98 10 9 Historical Consumption 98 11 Diagnostics 100 11 1 System 100 11 2 Interface ...

Page 6: ...idential Technicolor 6 13 TR 069 114 13 1 User Provisioning for TR 069 114 13 2 SNMP Provisioning for TR 069 114 14 Appendix1 Web User Interface Control 116 15 Appendix2 A Sample CM Config File 122 16 Abbreviations and Acronyms 125 ...

Page 7: ...es information on the Technicolor 4231 Wireless Gateway to Technicolor s service provider customers The audience for this document includes those personnel who are tasked with deploying maintaining and servicing this device as well as those who provide answers to questions from end users ...

Page 8: ...ta connectivity along with reliable digital telephone service The Technicolor Wireless Gateway delivers data voice and wired Ethernet or wireless Wi Fi gateway capabilities to connect a variety of devices at home or SOHO small home office that supports high speed data access and voice services in one device Front Panel View The following image represents the Wireless Gateway Figure 2 1 ...

Page 9: ...1 8 2018 Proprietary and Confidential Technicolor 9 Top Panel View and LED Operations The following image represents the front panel view of the Wireless Gateway Figure 2 2 A B C D I H G F E ...

Page 10: ...HW push button to activate WPS for simplified and secure wireless setup Off WPS setup not active State Description Solid on Main Power Supply 12volt 4 5 Amp DUT is on Main Power Supply Blinking Slow Blink MoCA is enabled Fast Blink MoCA enabled and MoCA client connected Off Power Off State Description Solid on Down Stream channel locked Off Power Off Flashing with US LED off Searching for downstre...

Page 11: ...nnection Wi Fi is connected Off Wi Fi access point is not enabled State Description Solid on UP stream channel locked Off Power Off Flashing with DS Led off Attempting to communicate with the CMTS Flashing with US Led on Partial service mode Both US and DS Flashing Software upgrade in progress State Description Solid on Modem provisioning complete Flashing slow Attempting DHCP Flashing fast Attemp...

Page 12: ...wo off EMTA DHCP Both lines Blinking Device registering with call agent Off Line 1 is not connected to phone or not operational Telephone Line 2 led item I State Description Solid on Telephone Service on line 2 is enabled Blinking Telephone line 2 is connected to telephone and is operational Flashing Line one off EMTA DHCP Both lines Blinking Device registering with call agent Off Line 2 is not co...

Page 13: ...he back of the Wireless Gateway Figure 2 3 Tel ports item A Two line embedded digital voice adapter for wired telephony service Ethernet switch item B Four 1000 100 10BASE T Ethernet ports to provide wired connectivity Each Ethernet port has two LEDs LED LED Status Description A B C D E F G H ...

Page 14: ...he box Note Press and hold the reset button for more than 6 seconds to restore the gateway to factory settings Cable port item D Compliance with DOCSIS 3 0 3 1 standards along with PacketCable and EuroPacketCable specifications to deliver high end performance and reliability USB port item E USB interface provides full access for advanced user Technicolor Wireless Gateway does not support USB print...

Page 15: ... bottom of the Gateway contains the following information about your Gateway MTA MAC No Item A MTA MAC No of Device It is of the following format MTA MAC X XXXXXXXXXXX WAN MAC No Item B WAN MAC No of Device It is of the following format WAN MAC X XXXXXXXXXXX Serial Number of Device Item C S N of Device It is of the following format S N X XXXX XXXX CM MAC No Item D A B C D E F G H ...

Page 16: ...ARED KEY X XXXXXXXX Other Features Details Compliance with DOCSIS 3 0 3 1 standards along with Packet Cable and Euro Packet Cable specifications to deliver high end performance and reliability Two line embedded digital voice adapter for wired telephony service Up to two 802 11 radios for the dual band concurrent operation with up to eight SSIDs per radio Wi Fi Protected Setup TM WPS support includ...

Page 17: ...friendly method to check operational status and act as a troubleshooting tool Automatic software upgrades by the service provider TR 069 Compliant Remote Management Capabilities 2 1 System Information The following WebUI page of the Wireless Gateway provides the hardware and software version information of the product Figure 2 5 ...

Page 18: ...1 8 2018 Proprietary and Confidential Technicolor 18 Software File Name and Revisions The data shown in the table below provides the information about the firmware of your Wireless Gateway Figure 2 6 ...

Page 19: ...me User and Advanced User When the user connects to the WebUI the page prompts the user enter the username and password There is no user name and password set on default for the home user On boot up the user can login to the WebUI by pressing ENTER and the user will be directed to a page to set the user name and password After doing so the user is directed again to the login page to login to the s...

Page 20: ...us Overview ü ü Gateway ü ü Local Network ü ü Wireless ü ü DOCSIS Status ü ü DOCSIS Signal ü ü DOCSIS Log ü ü System ü ü Connection Devices ü ü LAN ü ü WAN ü ü MoCA ü ü Routing ü ü Modem ü ü MTA ü ü Network Time ü ü Wireless Radio ü ü Security ü ü Advanced ü ü Guest Network ü ü MAC Control ü ü WPS ü ü QoS ü ü Security Firewall ü ü IP Filter ü ü Device Filter ü ü Site Filter ü ü Service Filter ü ü ...

Page 21: ...istorical Consumption Troubleshooting ü ü Remote Log ü ü Diagnostics System ü ü Interface ü ü Network ü ü Wireless ü ü Clients ü ü Internet ü ü Self Test ü ü Table 4 1 Table 4 2 below describes the Webpages available for the Advanced User Basic access in online and offline states Top Tab Webpage sub tab OnLine OFFLine Status Overview ü ü Gateway ü ü Local Network ü ü Wireless ü ü DOCSIS Status ü ü...

Page 22: ...he Wi Fi LAN and Guest Wi Fi networks Main Wi Fi Displays the connected Wi Fi WLAN Clients with their Host Name and IP address Network Displays the connected Wired LAN Clients with their Host Name and IP address Guest Wi Fi Displays the clients connected to Guest Wi Fi Figure 5 1 5 2 Gateway Status Tab Gateway Click on the Status tab then click on Gateway The page displays Gateway information and ...

Page 23: ...Name eRouter MAC address Device Mode Router Provision Mode and Local Time set in the device as shown below Figure 5 2 The IP connectivity information provided in the page includes eRouter IP Address Subnet Mask DNS and default Gateway Information for the IPv4 and IPv6 connections The details are displayed as given below ...

Page 24: ...nfiguration of DHCP addresses for the home user on the LAN side Information such as the Gateway Address Subnet Mask MAC Address DHCP Server DHCP Beginning Address and DHCP Ending Address are displayed here DHCP Clients The connected clients to the gateway either via Ethernet or Wi Fi will be displayed in this table ARP Table The ARP Table section displays ARP information about connected clients Wh...

Page 25: ... protocol It allows the various devices attached to an IPv6 network to connect to the Internet using the Stateless Auto Configuration without requiring any intermediate IP support in the form of a DHCP server The SLAAC Table section displays details about IPv6 Address the corresponding MAC Address and Reachability States information Figure 5 4 ...

Page 26: ... IPv6 related status and type information 5 4 Wireless Status Status Tab Wireless Click on the Status tab then click on the Wireless tab The page provides wireless network information including the Network Name SSID MAC Address Security Mode Network Mode Channel Channel Width SSID Broadcast and Network Status for 2 4 GHz and 5 GHz ...

Page 27: ...1 8 2018 Proprietary and Confidential Technicolor 27 2 4GHz Network information Figure 5 6 ...

Page 28: ... Server Time Server Time Offset DHCP Lease Time DHCP Rebind Time and DHCP Renew CM Status possible states are Below are the possible states for a cable modem other notReady notSynchronized phySynchronized usParametersAcquired rangingComplete ipComplete todEstablished securityEstablished paramTransferComplete registrationComplete operational and accessDenied Active time The time since the network m...

Page 29: ...t shows UP else it will be DOWN Link Speed and Link Duplex Speed of 10 100 1000 and is it half duplex full duplex or Auto CPE List This section displays CPE List displays information about the CPE List with IP Address IPv4 and or IPv6 and HW Address The following figures provide these details displayed in the page Figure 5 8 ...

Page 30: ...for the particular channel Upstream Bonding Number of channels locked to upstream which can be used for upstream data transfer Upstream channel ID The CMTS identification of the upstream channel Upstream Lock Status Displays Locked if QAM and FEC are locked indicates that the channel is usable Upstream Channel Type Displays if it is a SC QAM channel Phy type 3 or a OFDMA channel Phy type 5 Upstrea...

Page 31: ... particular MAC interface If the interface is down displays the most current value If the downstream channel ID is unknown 0 is displayed Downstream Lock Status Displays Locked if QAM and FEC are locked indicates that the channel is usable Downstream Bonding Number of channels locked to downstream which can be used for downstream data transfer Downstream Channel Type Displays if it is a SC QAM cha...

Page 32: ...1 8 2018 Proprietary and Confidential Technicolor 32 Figure 5 11 Error Codewords This section displays Error Codewords the information about the Channel ID Unerrored Correcteds and Uncorrectables ...

Page 33: ...1 8 2018 Proprietary and Confidential Technicolor 33 Figure 5 12 ...

Page 34: ...on the DOCSIS connection system software and hardware configuration DOCSIS State This section displays information about the DOCSIS State including Initialize Hardware Acquire Downstream Channel Upstream Ranging DHCP Bound Set Time of Day Configuration File Download Registration and CM Status System Software This section displays information about the System Software including Model Name Vendor Se...

Page 35: ...1 8 2018 Proprietary and Confidential Technicolor 35 Figure 5 14 Figure 5 15 ...

Page 36: ...1 8 2018 Proprietary and Confidential Technicolor 36 Figure 5 16 ...

Page 37: ...he public guest network The page also displays the details of the connected device like Interface type connection type device name and the IP Address Click on Connection tab then click on Devices in the Web UI The devices page appears populated with the information below Figure 6 1 6 2 LAN Connection Tab LAN Click on the Status tab then click on Local Network The page displays details about the LA...

Page 38: ...onfiguration including the number of IP addresses If a client needs to be assigned with a static address the user has to select the static IP option and enter the MAC address of the client that needs the static IP address The life time of the DHCP address is defined in the DHCP lease time and again it is user configurable By default the lease time is 86400 seconds Figure 6 2 6 2 1 LAN Setup By def...

Page 39: ... displays WAN configuration information The page also allows the setting of WAN configuration Working Mode Router Mode Bridged Mode Connection Mode DHCP Static IP Host Name and Domain Name Figure 6 3 When the Gateway WAN provisioning is enabled with DHCP IPv4 and IPv6 DHCP client on the gateway will initiate DHCP request to get the eRouter WAN IP for the gateway In case of DHCP v6 the eRouter IP i...

Page 40: ...Mode after reboot Routing functionality is enabled with Wi Fi and LAN set to active The management IP address will change LAN configuration such as from x x x x to y y y y For instance it may change from 10 0 0 1 to 192 168 0 1 Figure 6 4 Bridge Mode If in Router Mode and Bridge Mode option is selected the Gateway will reboot automatically and operate in Bridge Mode after reboot The routing functi...

Page 41: ...ode When the WAN Connection Mode is selected as DHCP no more user settings will be available to configure WAN IP The WAN side will receive an IP address as per the rules specified in the DHCP configuration of the MSO ISP Provisioning with Static IP The Static IP for WAN interface is provided by the Service Provider ...

Page 42: ...e Gateway s Subnet Mask Default Gateway The default gateway of the Service Provider s router Primary DNS Required and Secondary DNS Optional The DNS Domain Name System server IPaddress es that are to be used with the Wireless Gateway in order that client devices may perform name resolution 6 3 1 3 Host Name Optional The Host Name field is optional but may be required by some Service Providers The ...

Page 43: ...or user options In case of Static Assignment use tchRgIpMgmtWanAddrStatic to fill in the details tchRgIpMgmtWanMtu tchRgIpMgmtWanTtl can be optionally set tchRgIpMgmtWanDualIpAddr is where the second IP can be filled in and tchRgIpMgmtWanDualIpRipAdvertised RIP advertised for the access tchRgIpMgmtWanAddrBackupDefGw is the default gateway used when the Modem is offline User Access MIBS defined in ...

Page 44: ...routers which connect networks using the Internet Protocol IP to share information about how to route traffic among networks RIP is classified by the Internet Engineering Task Force IETF as an Interior Gateway Protocol IGP one of several protocols for routers moving traffic around within a larger autonomous system network e g a single enterprise s network that may be comprised of many separate loc...

Page 45: ... 8 2018 Proprietary and Confidential Technicolor 45 Connection Tab Routing Click on the Connection tab then click on the Routing tab The gateway will display the information below Figure 6 9 Figure 6 10 ...

Page 46: ...Available tchRgRipDestIpAddress Available LAN 32 in routed mode with Public IP address 30 ranges with NAT disabled tchRgIpMgmtLanMode Available tchRgIpMgmtLanNetwork Available tchRgIpMgmtLanSubnetMask Available tchRgIpMgmtLanGateway Available tchRgIpMgmtLanNapt Available Wireless Gateway obtains its WAN IP address dynamically or through dual IP Note Not Available Currently In case the customer net...

Page 47: ...to scan or manual If manual is selected the channel may be configured by selecting the center frequency from the drop down box which because active upon selecting the manual option Preferred network controller influences which MoCA device in the MoCA network controls the MoCA network MoCA privacy controls whether the MoCA network is encrypted If this setting is enabled all MoCA devices on the netw...

Page 48: ...A11 MIB file This file can be provided upon request The following are some configuration and statistics MIB objects available for use All MIBs listed are read write unless otherwise noted ensure the appropriate instance is added to the end of each below MIB that references a table entry as noted before setting or reading For additional MIB objects refer to the above mentioned MIB definition file i...

Page 49: ...sk takes a channel list of bits as input that defines the channel or channels the device should scan and is only applicable if tchMocaDevChannelScanning is disabled 6 6 Modem Connection Tab Modem Click on the Connection tab then click on the Modem tab The gateway will display the various modem parameters The Downstream Frequency is the frequency at which the modem is locked with the CMTS during ch...

Page 50: ...line status and events logged on MTA line status as displayed below Figure 6 13 6 8 Network Time Connection Tab Network Time Click on the Connection tab then click on the Network Time tab The network time page will display the various parameters related to current time NTP server etc Options to configure Auto Daylight Saving and Time Zone are provided in this view ...

Page 51: ...1 8 2018 Proprietary and Confidential Technicolor 51 Figure 6 14 The user can change the configurations and press the Save button in the page to change these parameters ...

Page 52: ...iguration items required to configure the wireless network 7 1 Radio Wireless Tab Radio Click on the Wireless tab then click on the Radio tab The page displays Radio setup information at 2 4 GHz and 5 GHz Here user can set and display Wireless Network 2 4 GHz and 5 GHz information as for Wireless Interface Network Name Network Mode Channel Width Channel MAC Address Scan Nearby AP Figure 7 1 ...

Page 53: ...ork Mode Network Mode determines which 802 11 wireless protocols will be supported by the wireless card Network mode has different option available according to Wireless interface 1 For 2 4 GHz 802 11b only 802 11g only 802 11n only Mixed 802 11b and 802 11g Mixed 802 11g and 802 11n Mixed 802 11b 802 11g and 802 11n 2 For 5 GHz 802 11a only 802 11n only 802 11ac only Mixed 802 11a and 802 11n and...

Page 54: ... Address Mac address is reflected by this tab Scan Nearby AP The Scan button provides a mechanism for the AP to scan neighbouring APs and provides various statistics on neighbours 7 1 2 SNMP Provisioning for Radio tchRgdot11nExtMode selects the network mode tchRgdot11nExtBandWidth selects the channel width for 802 11n operation tchRgdot11nExtSideBand This is for N cards only tchRgDot11ExtCurrenann...

Page 55: ...roprietary and Confidential Technicolor 55 Figure 7 3 Figure 7 4 7 2 1 User Provisioning for Wireless Security Network Name Network name will only be displayed here The User cannot make any changes under this tab ...

Page 56: ...e 1 Open No password needed 2 WEP 64 need at least 5 ASCII characters or 10 Hex digits 3 WEP 128 need at least 13 ASCII characters or 26 Hex digits 4 WPA2 Personal at least 8 characters 5 WPA or WPA2 Personal at least 8 characters Key Interval User can make a choice what network key rotational value they want in general it comes with 3600 sec but user can choose between range 1 999999 Note Don t f...

Page 57: ...Dot11RadiusReAuthInterval sets the rekeying interval for RADIUS 7 3 Advanced Wireless Tab Advanced Click on the Wireless tab then click on the Advanced tab The page displays advanced wireless setup information of the 2 4 GHz and 5 GHz wireless networks including Beacon Interval Fragment Threshold RTS Threshold Wi Fi Multimedia WMM WMM Power Save Airtime Fairness and Band Steering Settings Band Ste...

Page 58: ...on Message DTIM A DTIM field is a countdown field informing client of the next window for listening to broadcast and multicast messages When the device has buffered broadcast or multicast messages for associated clients it sends the next DTIM with a DTIM Interval value Its clients use the DTIM value to wake up and hear the beacons to receive the broadcast and multicast messages The default value i...

Page 59: ...h as audio video voice and background traffic This is done using QOS WMM feature which in turn increases throughput User has option available to disable it through toggle button but again will impact throughput rates WMM Power Save This feature helps devices to conserve battery life Recommended to leave it enabled but again if needed user has option disable it Airtime Fairness This feature comes h...

Page 60: ...tation threshold 7 4 Guest Network Wireless Tab Guest Network Click on the Wireless tab then click on the Guest Network tab The page displays Guest Network and Guest LAN Settings Here user can enable set and display Guest Network 2 4 GHz and 5 GHz parameters such as the Network Name MAC Address and SSID Broadcast Under Guest LAN settings setup the user can set and display Guest LAN parameters such...

Page 61: ...1 8 2018 Proprietary and Confidential Technicolor 61 Figure 7 8 Figure 7 9 ...

Page 62: ... address it is available only for display information SSID Broadcast User can enable or disable this feature by toggle button provided under SSID Broadcast this is similar to Network name hide feature Radio tab Enable User can again enable or disable the any required Guest SSID by this toggle button 7 4 1 2 Guest LAN Settings Network Name Here user can get drop down menu on basis of selection in a...

Page 63: ...s provide configuration settings for the SSID and DHCP lease parameters tchRgDot11Bss tchRgDot11Privacy tchRgIpMgmtLanTable tchRgIpMgmtLanDhcpServerTable 7 5 MAC Control Wireless access can be filtered by using the MAC addresses of the clients that are connected to Wi Fi Wireless Tab MAC Control Click on the Wireless tab then click on MAC Control tab The page displays MAC Control setup information...

Page 64: ...e selection that option 7 5 1 3 Access Restrictions Select the Deny or Allow button to block or permit the MAC addresses listed to access the wireless network 7 5 1 4 MAC Control List The gateway can manage the network access of select client devices if they are entered in this list using that device s MAC address Click the Add button to add to the list Add the required details in the entries and ...

Page 65: ...WPS Wi Fi Protected Setup previously called Wi Fi Simple Config is an optional certification program developed by the Wi Fi Alliance designed to ease set up of security enabled Wi Fi networks at home and small office environment Wi Fi Protected Setup supports methods pushing a button or entering a PIN into a wizard type application The objective of this protocol is to make Gateways and Client s de...

Page 66: ...ser can observe WPS LED starts flashing as soon as HW SW PBC button is pressed This is indication that WPS process is initiated Personal Identification Number PIN method When user decides to go through connection method via PIN number the user is prompted to enter the Wi Fi Client PIN Figure 7 13 7 7 QOS By default networks operate on a best effort delivery basis which means that all traffic has e...

Page 67: ... Medium and High Index IcAifsn IcEcwMin IcEcwMax IcTxOp IcAckPolicy Figure 7 14 7 7 1 User Provisioning for QOS SSID Index User can select any number from the drop down list Where 1 represents 2 4 GHz and 2 represents 5 GHz and other numbers will be assigned to Guest SSID Radio Band This tab only displays which Wireless band is selected dependent on selection of SSID Index Network Name This again ...

Page 68: ...e refer section 7 3 1 Note Recommended not to change anything under this tab any wrong changes will lead to degradation in gateway performance 7 7 2 SNMP Provisioning for QOS tchRgDot11ExtWmm enables or disables WMM tchRgDot11ExtWmmNoAck enables or disables the no acknowledgement feature for WMM ...

Page 69: ... floods originating on both the LAN and WAN 8 1 Firewall 8 1 1 User Provisioning for Firewall Security Tab Firewall Click on the Security tab and then click on Firewall tab The page displays Firewall setup information Here user can set and display IPv4 Firewall Firewall Security Level LAN to WAN WAN to LAN IPv6 Firewall IPv6 Firewall Security Level LAN to WAN WAN to LAN Advanced Settings IPSec Pas...

Page 70: ...ewall level to various levels High Medium Low and Off Firewall level Restrictions on inbound traffic Restrictions on outbound traffic Remarks High All unsolicited inbound traffic is blocked and Intrusion Detection is enabled All traffic except the following are restricted HTTP and HTTPS TCP Both inbound and outbound traffic are restricted ...

Page 71: ...devices on your home network unless they match a port forwarding triggering rule or a DMZ host has been configured No restrictions Outbound connections are allowed by the firewall regardless of the service or port s being used for the connection Low Inbound traffic is blocked for the following services IDENT protocol TCP port 113 Intrusion Detection is enabled in the Low operating level All other ...

Page 72: ...8 3 Device Filter Device Filter page is used to allow or block devices connecting to the router for both LAN and Wi Fi clients The devices are allowed or blocked with respect to their MAC address which is added in the allowed devices list in this page User can add devices through auto learnt devices under devices list or add a device manually under the Allowed Devices list Security Tab Device Filt...

Page 73: ...cked Devices would be allowed to connect to the router 8 3 1 SNMP Provisioning for Device Filter tchRgFirewallMacFilterIndex Main Index tchRgFirewallMacFilterRowStatus To Add delete and view the rows tchRgFirewallMacFilterAddress To Add a MAC Address tchRgFirewallMacFilterAlwaysBlock To Set device Filter to Always Block tchRgFirewallMacFilterBlockStartTime To Set the Start time of the Time Interva...

Page 74: ...y user Site Filter Status Enabled Disabled Blocked Sites Content Type When Delete Trusted Devices Computer Name MAC Address IP Address Trusted Figure 8 4 The filter would be applied to all the devices in the trusted list The user can edit modify the filter setting to block the sites always block on specific day specific time etc The user also can remove the sites from the trusted devices list to r...

Page 75: ...User can block the desired service port range by adding it to Blocked services Security Tab Service Filter Click on Security tab then click on Service Filter tab The page displays following Service Filter setup information which can be viewed and modified by user Service Filter Status Blocked Services The specific traffic service that are blocked using the Service Filter This could be protocols or...

Page 76: ...e option and providing the specific service port number ranges and the time range for the filter action The following screen shows a specific service filter being enabled Figure 8 6 The user can edit modify the service filters to change the duration for the filter to be active day of the week time of the day etc ...

Page 77: ...r for Day based blocking 8 6 VPN Settings This feature is used in cases where the Wireless Gateway acts as the VPN end point and all the machines connected to the LAN side want to be on the enterprise private network This is mainly used in B2B Business 2 Business applications For the Wireless Gateway to act as a VPN end point the user needs to configure a VPN tunnel on the Wireless Gateway This ca...

Page 78: ...tion The page will show the following information Enable Option to enable VPN Tunnel Name Name of the tunnel to be created between endpoints Local Secure Group IP Address Subnet Mask Remote Secure Group IP Address Subnet Mask Remote Secure Gateway IP Address Key Management Key Exchange Method Encryption Algorithm Authentication Algorithm Pre Shared Key Key Life Time ...

Page 79: ...new tunnel X Button Click this button to delete all settings for the selected tunnel Enable To Enable VPN Tunnel Tunnel Name Enter a name for this tunnel such as London Office Local Secure Group Select the local LAN user s that can use this VPN tunnel This may be a single IP address or sub network Note that the Local Secure Group must match the remote gateway s ...

Page 80: ...od The device supports both automatic and manual key management When automatic key management is selected Internet Key Exchange IKE protocols are used to negotiate key material for Security Association SA If manual key management is selected no key negotiation is needed Basically manual key management is used in small static environments or for troubleshooting purposes Note that both sides must us...

Page 81: ...ew key will be renegotiated automatically The Key Lifetime may range from 300 to 100 000 000 seconds The default lifetime is 3600 seconds Enable To Enable the Key Management Tunnel Name This field specifies Tunnel Name Setting the values of different parameters Click on the parameter and change the values in valid range Select the corresponding button Click on the corresponding drop down menu and ...

Page 82: ...1 8 2018 Proprietary and Confidential Technicolor 82 Figure 8 10 Figure 8 11 ...

Page 83: ...email address of the recipient through this page Security Tab Email Settings Click on Security tab then click on Email settings tab The page displays Email settings information which can be viewed and modified by the user The following information will be displayed Recipient Email Notification Types Firewall Breach Parental Control Breach Alerts or Warnings Send Logs Mail Server Configuration SMTP...

Page 84: ...e 8 13 8 8 Reports To display security events select the Security tab in the Gateway page and then select Report tab Device Filter logs Site Filter logs Service Filter logs and Email Settings logs and Firewall Logs will be displayed as shown below Figure 8 14 ...

Page 85: ...ports should be sent If only a single port specification is desired enter the same port number in the start and end locations for that IP address Setting the values of different parameters Click on the parameter and change the values in valid range Select the corresponding button Click on the corresponding drop down menu and select the required values Press Save 9 2 Port Trigger Port Triggers are ...

Page 86: ...Trigger configuration Figure 9 2 9 3 DDNS Dynamic DNS DDNS allows a dynamic IP address to be aliased to a static pre defined host name so that the host can be easily contacted by other hosts on the internet even if its IP address changes The Technicolor Wireless Gateway supports a dynamic DNS client compatible with the Dynamic DNS service http www dyndns com Since implementation of DDNS the servic...

Page 87: ...ndom unknown port numbers and do not function correctly with specific port triggers or port forwarding setups It is advisable not to have any PCs Servers as DMZ hosts because of exposure to the public internet which results from this configuration Remember to disable this setting if this is enabled temporarily for any specific application Any computer whose port is being forwarded must have its DH...

Page 88: ...ersal Plug and Play UPnP allows client devices to automatically configure the device for various Internet applications such as gaming and video conferencing This protocol messaging over the LAN can be enabled or disabled Application Tab UPnP Click on the Application tab and then click on UPnP tab The page displays UPnP setup information Here user can enable or disable UPnP and alter parameters suc...

Page 89: ... is a table for different SSID UPnP configuration is supported on all primary as well as secondary SSIDs 9 6 IP Passthrough The IP Passthrough feature allows a device on the LAN to have the gateway s public address assigned to it This configuration is often times suitable for a customer desiring to connect third party equipment to the internet Application Tab IP Passthrough Click on the Applicatio...

Page 90: ...a This page displays Media setup information Here we can set and display Enable DLNA Enable FTP USB Device List and Samba Server List Application Tab Media Click on the Application tab and then click on Media tab The Gateway page appears populated with the information below ...

Page 91: ...1 8 2018 Proprietary and Confidential Technicolor 91 Figure 9 7 ...

Page 92: ...d the password Click on the Administration tab and then the User tab The page appears with the information below The user name and password can be entered into the various fields and changed Figure 10 1 10 2WiFi Power This page provides the user an option to turn off and turn on the radio power for the 2 4GHz and 5GHz radios Administration WiFi Power Click on the Administration tab and then the Wi...

Page 93: ...SSH cannot be enabled at the same time either of these can be enabled at a given point of time A remote terminal can establish a SSH session with the box if the SSH radio button is enabled The HTTP and HTTPS can be enabled disabled to allow limit the WebUI access over corresponding communication protocol The options selected under the Global Management and the Remote Management can be applied to a...

Page 94: ...ave had an undesirable effect To backup the current configuration click Backup and follow the prompts To restore a previous configuration click Browse and use the navigation window to locate the local backup file The default filename is in the format MM_DD_YYYY gwc Note that this file is encrypted When the file has been located click Restore to restore the settings When the settings are restored t...

Page 95: ...tes that a TFTP download or upload is underway Complete 2 indicates that the last download or upload is successful failed 3 indicates that the last attempted download or upload is failed tchRgDevConfBackupAdminStatus If set to download 1 the device will initiate a TFTP Wireless Gateway config file download using remoteProvisionFilename If set to upload 2 the device will initiate a TFTP Wireless Ga...

Page 96: ...ing button 10 5 1 SNMP Provisioning for Factory Settings This will be controlled by the MIB tchcmAPFactoryReset It can be set with a sequence of values to activate a remote factory reset This is the same as a sustained 3 seconds or more reset switch Reading this object always returns false 2 10 6Restarting the Device It is possible to restart the Gateway from WebUI This can be done from Administra...

Page 97: ...Shooting Ping and Traceroute are the trouble shooting features available in the Troubleshooting options This can be done for both the IPv4 and IPv6 networks Administration Trouble Shooting Click on the Administration tab then click on the Trouble Shooting tab The page provides views for running ping to check the network connectivity to a particular IPv4 or IPv6 address and traceroot for displaying...

Page 98: ... details also need to be entered Figure 10 7 10 9Historical Consumption The Administration Historical Consumption page provides the data consumption statistics on hour day monthly basis i e as selected against the Lookup Time Frame tab Administration Historical Consumption Click on the Administration tab then click on the Historical Consumption tab The page displays the various options to configur...

Page 99: ...1 8 2018 Proprietary and Confidential Technicolor 99 Figure 10 8 ...

Page 100: ...ays the System status details The details shown are System Up time Resource usage such as CPU and memory Figure 11 1 11 2Interface Diagnostic Tab Interface This page displays the up down status various configurations data traffic and error information for various interfaces in the system WAN LAN and Wi Fi The figures below provide specific screenshots for each of these interfaces ...

Page 101: ...1 8 2018 Proprietary and Confidential Technicolor 101 Figure 11 2 ...

Page 102: ...1 8 2018 Proprietary and Confidential Technicolor 102 Figure 11 3 ...

Page 103: ...1 8 2018 Proprietary and Confidential Technicolor 103 Figure 11 4 ...

Page 104: ...d Confidential Technicolor 104 11 3Network This section provides the gateway information LAN network data for IPv4 and IPv6 networks The figures mainly provide the configuration status for LAN side configurations Figure 11 5 ...

Page 105: ...1 8 2018 Proprietary and Confidential Technicolor 105 Figure 11 6 ...

Page 106: ...8 11 4Wireless This section provides the Wi Fi network data for 2 4GHz and 5 GHz networks The figure provides configuration information such as Network Name Wi Fi MAC address network mode channel bandwidth channel numbers security mode and SSID broadcast status enabled disabled ...

Page 107: ...1 8 2018 Proprietary and Confidential Technicolor 107 Figure 11 9 ...

Page 108: ...1 8 2018 Proprietary and Confidential Technicolor 108 Figure 11 10 ...

Page 109: ... Technicolor 109 Figure 11 11 11 5Clients This page provides data for different clients LAN and Wi Fi connected to the gateway and the details of the network connectivity IP address DHCP status LAN Wi Fi and Status of the clients connected ...

Page 110: ...rovides the data traffic information Protocol Tx Rx packet information IP timeouts etc for the LAN clients with remote internet access Figure 11 13 11 7Self Test This page provides an option to run self tests for System LAN and WAN modules The page appears populated with the information below ...

Page 111: ...1 8 2018 Proprietary and Confidential Technicolor 111 Figure 11 14 User can run self test by selecting the module and clicking on Run Self Test button Shown below Figure 11 15 ...

Page 112: ... WLAN WLAN traffic Isolation for WLAN WLAN traffic Isolation for WLAN WLAN traffic is controlled via the tchRgDot11BssApIsolation MIB object This is an interface specific MIB which must be appended with the appropriate interface index of the BSSID that is being configured for isolation Index Interface 32 Primary BSSID 33 Secondary BSSID 1 34 Secondary BSSID 2 35 Secondary BSSID 3 36 Secondary BSSI...

Page 113: ...e isolation between Ethernet ports and the primary SSID The following would be added to the CM config file SnmpMibObjecttchRgDeviceLanLanIsolation 0 Integer 1 enable SnmpMibObjecttchRgDeviceLanWlanIsolation 0 Integer 1 enable SnmpMibObjecttchRgDot11BssApIsolation 32 Integer 1 enable ...

Page 114: ...entAllowDocsisConfig must be set to enable 1 to reconfigure any TR 069 parameters including the ACS URL above During the initial device check in and configuration with the ACS the server will populate the tchTR069ClientCrUsername and tchTR069ClientCrPassword fields The client device identifier can also be set as either MAC or serial number when registering to the ACS server 13 1User Provisioning f...

Page 115: ...me user name for ACS association tchTR069ClientAcsPassword password for ACS association Optional configuration MIBs are tchTR069ClientPeriodicInformto enable inform messages to be sent back to the ACS periodically refreshing the device data this MIB is enabled by default tchTR069ClientPeriodicInformIntervalto set the time interval between inform messages in seconds 3600 or one hour by default ...

Page 116: ...s 2 Status DOCSIS Status docsisLog 3 Status DOCSIS Signal timeUseNtp 4 Setup LAN Setup Network Setup NTP Enable LAN timeZone 5 Setup LAN Setup Network Setup Time Zone LAN Daylight Saving Time timeDst 6 Setup LAN Setup Network Setup Automatically LAN adjust DST timeServer 7 Setup LAN Setup Network Setup LAN lanIp 8 Setup LAN Setup LAN Gateway Local IP Address IP Subnet Mask lanDhcpEnable 9 Setup LA...

Page 117: ...ult Gateway When Static IP is selected as Connection Mode wanDns 16 Administration Management Gateway Primary DNS Setup WAN Secondary DNS When Static IP is selected as Connection Mode wanMtu 17 Administration Management Gateway MTU Setup WAN wanHostDomainNames 18 Administration Management Gateway Host Name Setup WAN Domain Name When Static IP is selected as Connection Mode resetModem 19 Administra...

Page 118: ...emoteManagement 26 Administration Management Gateway Access Remote Management Management Port upnpEnable 28 Administration Management UPnP UPnP ipFiltering 29 Access IP Filter Restrictions macFiltering 30 Access MAC Address Restrictions Filter portFiltering 31 Applications Port Filter and Gaming portForwarding 32 Applications Port Range and Gaming Forwarding portTriggers 33 Applications Port Range...

Page 119: ...BGNMode 49 Wireless Radio Settings Basic Settings Network Mode wireless2p4SSID 50 Setup Quick Setup Wireless Network Name Network SSID Wireless Radio Settings Network Name SSID wireless2p4BroadcastSSID 5 Wireless Radio Settings Broadcast SSID 1 wireless2p4Channel 52 Wireless Radio Settings Standard Channel wireless2p4ChannelWidth 53 Wireless Radio Settings Channel Width wireless2p4Security 54 Wire...

Page 120: ...s Advanced Settings All fields wireless5AccessControl 70 Wireless MAC Control All fields wireless5Bridging 71 Wireless wreless5Wmm 72 Wireless QoS Quality of WMM Support Service wireless5AckEnable 73 Wireless QoS Quality of No ACK Service ping 74 Administration Diagnostics igmpProxy 75 Administration Management IGMP Proxy IGMP These bits are no longer available in GA but they are still available i...

Page 121: ...led 0001 tchCmWebAccessReadPages 0x00000000000000000030 tchCmWebAccessWritePages 0x00000000000000000030 This means bits 74 ping and 75 igmpProxy are enabled tchCmWebAccessReadPages 0x0fffffffffffffffffc0 and tchCmWebAccessWritePages 0x0fffffffffffffffffc0 The pages that will not be displayed in this case are bridgeRouterMode 0 docsisSignal 1 docsisStatus 2 docsisLog 3 and ping 74 igmpProxy 75 ...

Page 122: ...0 ReAuthTimeout 10 AuthGraceTime 600 OperTimeout 10 ReKeyTimeout 10 TEKGraceTime 600 AuthRejectTimeout 60 SAMapWaitTimeout 1 SAMapMaxRetries 4 GlobalPrivacyEnable 1 GenericTLVTlvCode 202 TlvLength 3 TlvValue0x010103 SNMPv1v2cCoexistence SNMPv1v2cCommunityName public SNMPv1v2cTransportAddrAccess SNMPv1v2cTransportAddr 0x000000000000 SNMPv1v2cTransportAddrMask 0x000000000000 SNMPv1v2cTransportAddrAc...

Page 123: ...E0603551D0F GenericTLVTlvCode 81 TlvLength 254 TlvValue 0x0101FF04040302010630120603551D130101FF040830060101FF020100301D0603551D0E041604143147D 1E559A52F3B89F8FFB9F9046D67DC32DA67301F0603551D2304183016801491BBEB58DDF1885F79B891E007 C380AD9D19CA4A300D06092A864886F70D01010B05000382020100C2449C998F91FEC1EABC75F4F155B3E0D B4A6BC99016BCD08D4410900A5B87CACDA2F692D0F6988C1443C3EA738ED561D08B0FBB47CADE8CA...

Page 124: ...F8F615EBBBE9A6E97DEF3D1 57425CA483021DC0BA1687072C102C7F9313294F505D609E6A261246B091789CB61352086CA4C97B6BDE729 E24B5E6A0588680B9F46508195810FEB7CD2F590E6FD6A43269FC5B1002CBF9B25483885232 GenericTLVTlvCode 81 TlvLength 110 TlvValue 0xC51A002A3DB4E8B16B27AB904DA2DADDA496C792EF04957E09F9E8BC0E4D00397A55223FC9D9653C6F188 65E16DB6B68FC58292EFD26B313F048DE52A42F2C961104A13D2A224D23D90706F70AD7B139716F5...

Page 125: ...t CTS Clear To Send protection mode DTIM Interval Delivery Traffic Indication Message MoCA Multimedia over Coax Alliance PMIP Proxy Mobile Internet Protocol RTS Request to Send Threshold SNMP Simple Network Management Protocol softGRE Soft Generic Routing Encapsulation STA Station A wireless Station WDS Wireless Distribution System WPS Wi Fi Protected Setup ...

Page 126: ...neaux France T 33 0 1 41 86 50 00 F 33 0 1 41 86 56 15 technicolor com Copyright 2017 Technicolor All rights reserved All tradenames referenced are service marks trademarks or registered trademarks of their respective companies Specifications subject to change without notice ...

Reviews: