Billion BiPAC 7402G Скачать руководство пользователя страница 74

Billion BIPAC 7402G 802.11g ADSL VPN Firewall Router  

 

 

Chapter 4: Configuration 

 

Intrusion Detection 

     

 

The router’s 

Intrusion Detection System

 (IDS) is used to detect hacker attacks and intrusion 

attempts from the Internet. If the IDS function of the firewall is enabled, inbound packets are 
filtered and blocked depending on whether they are detected as possible hacker attacks, intrusion 
attempts or other connections that the router determines to be suspicious.  

Blacklist

: If the router detects a possible attack, the source IP or destination IP address will be 

added to the Blacklist. Any further attempts using this IP address will be blocked for the time 
period specified as the 

Block Duration

. The default setting for this function is false (disabled). 

Some attack types are denied immediately without using the Blacklist function, such as 

Land 

attack

 and 

Echo/CharGen scan

.

 

 

Intrusion Detection

: If enabled, IDS will block Smurf attack attempts. Default is false. 

 
 
Block Duration:

  

 

  Victim Protection Block Duration

: This is the duration for blocking 

Smurf 

attacks. 

Default value is 600 seconds.

 

 

Scan Attack Block Duration

: This is the duration for blocking hosts that attempt a 

possible Scan attack. Scan attack types include 

X’mas scan, IMAP SYN/FIN scan

 and 

similar attempts. Default value is 86400 seconds.

 

 

DoS Attack Block Duration

: This is the duration for blocking hosts that attempt a 

possible Denial of Service (DoS) attack. Possible DoS attacks this attempts to block 
include 

Ascend Kill

 and 

WinNuke

. Default value is 1800 seconds.

 

 

Max TCP Open Handshaking Count

: This is a threshold value to decide whether a 

SYN Flood

 

attempt is occurring or not. Default value is 100 TCP SYN per seconds. 

Max PING Count

: This is a threshold value to decide whether an 

ICMP Echo Storm

 is occurring or 

not.

 

Default value is 15 ICMP Echo Requests (PING) per second. 

70

Содержание BiPAC 7402G

Страница 1: ...BIPAC 7402G 802 11g ADSL VPN Firewall Router User s Manual...

Страница 2: ......

Страница 3: ...e and Password 17 LAN Device IP Settings 17 ISP setting in WAN site 17 DHCP server 17 LAN and WAN Port Addresses 17 INFORMATION FROM YOUR ISP 18 CONFIGURING WITH YOUR WEB BROWSER 19 CHAPTER 4 CONFIGUR...

Страница 4: ...ervice 112 Prioritization 113 Outbound IP Throttling LAN to WAN 115 Inbound IP Throttling WAN to LAN 116 Virtual Server Port Forwarding 120 Add Virtual Server 121 Edit DMZ Host 123 Edit One to One NAT...

Страница 5: ...worldwide standards It supports downstream rates up to 8Mbps with ADSL capable of up to 12 24 Mbps with ADSL2 2 and upstream rates up to 1 Mbps Users enjoy not only high speed ADSL services but also b...

Страница 6: ...you to alias a dynamic IP address to a static hostname This dynamic IP address is the WAN IP address For example to use the service you must first apply for an account from a DDNS service like http ww...

Страница 7: ...ing protocol to support routing capability Simple Network Management Protocol SNMP It is an easy way to remotely manage the router via SNMP Web based GUI Supports web based GUI for configuration and m...

Страница 8: ...2G 802 11g ADSL VPN Firewall Router Chapter 1 Introduction BIPAC 7402G ADSL Router Application Figure 1 1 Application Diagram of BIPAC 7402G Thank you for your purchase and welcome to the world of bro...

Страница 9: ...s product and all accessories outdoors DO NOT use the BIPAC 7402G in high humidity or high temperatures DO NOT use the same power source for the BIPAC 7402G as other equipment DO NOT open or repair th...

Страница 10: ...is email in the Inbox 2 ADSL When lit it indicates that the ADSL Line port is connected to the DSLAM and working properly 3 LAN Port 1X 4X RJ 45 connector Lit when the LAN link is connected to an Ethe...

Страница 11: ...reset the device 6 seconds above restore to factory default settings this is used when you cannot login to the router E g forgot the password 4 LAN 1X 4X RJ 45 connector Connect a UTP Ethernet cable...

Страница 12: ...the proper cables Ensure that all other devices connected to the same telephone line as your Billion router e g telephones fax machines analogue modems have a line filter connected between them and t...

Страница 13: ...configure the PC to get an IP address automatically from BIPAC 7402G using DHCP If you encounter any problems accessing the router s web interface it may also be advisable to uninstall any kind of so...

Страница 14: ...indows XP 1 Go to Start Control Panel in Classic View In the Control Panel double click on Network Connections 2 Double click Local Area Connection See Figure 3 1 Figure 3 1 LAN Area Connection 3 In t...

Страница 15: ...elect Internet Protocol TCP IP and click Properties See Figure 3 3 Figure 3 3 TCP IP 5 Select the Obtain an IP address automatically and the Obtain DNS server address automatically radio buttons See F...

Страница 16: ...ows 2000 1 Go to Start Settings Control Panel In the Control Panel double click on Network and Dial up Connections 2 Double click Local Area Connection See Figure 3 5 Figure 3 5 LAN Area Connection 3...

Страница 17: ...elect Internet Protocol TCP IP and click Properties See Figure 3 7 Figure 3 7 TCP IP 5 Select the Obtain an IP address automatically and the Obtain DNS server address automatically radio buttons See F...

Страница 18: ...n the Control Panel double click on Network and choose the Configuration tab 2 Select TCP IP NE2000 Compatible or the name of your Network Interface Card NIC in your PC See Figure 3 9 3 Click Properti...

Страница 19: ...1g ADSL VPN Firewall Router Chapter 3 Basic Installation 15 5 Then select the DNS Configuration tab See Figure 3 11 6 Select the Disable DNS radio button and click OK to finish the configuration Figur...

Страница 20: ...4 0 1 Go to Start Settings Control Panel In the Control Panel double click on Network and choose the Protocols tab 2 Select TCP IP Protocol and click Properties See Figure 3 12 Figure 3 12 TCP IP 3 Se...

Страница 21: ...s LAN Device IP Settings IP Address 192 168 1 254 Subnet Mask 255 255 255 0 ISP setting in WAN site PPPoE DHCP server DHCP server is enabled Start IP Address 192 168 1 100 IP pool counts 100 LAN and W...

Страница 22: ...DNS IP address it can be automatically assigned by your ISP when you connect or be set manually PPPoA VPI VCI VC based LLC based multiplexing Username Password and Domain Name System DNS IP address i...

Страница 23: ...browser enter the IP address of your router which by default is 192 168 1 254 and click Go a user name and password window prompt will appear The default username and password are admin and admin See...

Страница 24: ...ireless Association Table Routing Table DHCP Table PPTP Status IPSec Status L2TP Status Email Status Event Log Error Log NAT Sessions and UPnP Portmap Quick Start Configuration LAN WAN System Firewall...

Страница 25: ...of your PCs to use with the router s Firewall MAC Address Filter function See the Firewall section of this manual for more information on this feature IP Address A list of IP addresses of devices on...

Страница 26: ...BIPAC 7402G 802 11g ADSL VPN Firewall Router Chapter 4 Configuration Wireless Association Table IP Address It is IP address of wireless client that joins this network MAC The MAC address of wireless c...

Страница 27: ...e destination netmask address Gateway Interface The IP address of the gateway or existing interface that this route will use Cost The number of hops counted as the cost of the route RIP Routing Table...

Страница 28: ...Table IP Address The IP address that assigned to client MAC Address The MAC address of client Client Host Name The Host Name Computer Name of client Expiry The current lease time of client Expired Ta...

Страница 29: ...ular PPTP connection in your VPN configuration Type The type of connection dial in dial out Enable Whether the connection is currently enabled Active Whether the connection is currently active Tunnel...

Страница 30: ...to the particular VPN entry Active Whether the VPN Connection is currently Active Connection State Whether the VPN is Connected or Disconnected Statistics Statistics for this VPN Connection Local Subn...

Страница 31: ...al out Enable Whether the connection is currently enabled Active Whether the connection is currently active Tunnel Connected Whether the VPN Tunnel is currently connected Call Connected If the Call fo...

Страница 32: ...the router s ADSL connection is disconnected as well as Firewall events when you have enabled Intrusion or Blocking Logging in the Configuration Firewall section of the interface Please see the Firew...

Страница 33: ...lists all current NAT sessions between interface of types external WAN and internal LAN UPnP Portmap The section lists all port mapping established using UPnP Universal Plug and Play Please see the A...

Страница 34: ...n additional you have the option to provide specific DNS as your desire or check the Enable box to get the DNS automatically from your ISP Your ISP will be able to supply all the details you need alte...

Страница 35: ...ter 4 Configuration Select the desired option from the list and click Apply to return to the Quick Start interface to continue configuring your ISP connection Please note that the contents of this lis...

Страница 36: ...e are seven items within the LAN section Ethernet Ethernet Client Filter Wireless Wireless Security Wireless Client Filter Port Setting and DHCP Server Ethernet The router supports two Ethernet IP add...

Страница 37: ...ing is set to Disable Allowed check to authorize specific device accessing your LAN by insert the MAC Address in the space provided or click Make sure your PC s MAC is listed Blocked check to prevent...

Страница 38: ...C in LAN displays a list of individual Ethernet device s IP Address MAC Address which connecting to the router You can easily by checking the box next to the IP address to be blocked or allowed Then A...

Страница 39: ...ve exactly the ESSID as the device in order to get connected to your network Note It is case sensitive and must not excess 32 characters ESSID Broadcast It is function in which transmits its ESSID to...

Страница 40: ...quired to bridge between two access points and extending an existing wired or wireless infrastructure network to create a larger network In addition WDS enhances its link connection security in WEP mo...

Страница 41: ...The key for network authentication The input format is in character style and key size should be in the range between 8 and 63 characters Group Key Renewal The period of renewal time for changing the...

Страница 42: ...algorithm in WEP64 or WEP128 You can input the same string in both the AP and Client card settings to generate the same WEP keys Please note that you do not have to enter Key 0 3 as below when the Pa...

Страница 43: ...ert the MAC Address in the space provided or click Make sure your PC s MAC is listed Blocked check to prevent unwanted device accessing the LAN by insert the MAC Address in the space provided or click...

Страница 44: ...s Client displays a list of individual wireless device s MAC Address that currently connects to the router You can easily by checking the box next to the MAC address to be blocked or allowed Then Add...

Страница 45: ...hen configure parameters of the DHCP Server including the IP pool starting IP address and ending IP address to be allocated to PCs on your network lease time for each assigned IP address the period of...

Страница 46: ...two items within the WAN section ISP DNS and ADSL ISP The factory default is PPPoE If your ISP uses this access protocol click Edit to input other parameters as below If your ISP does not use PPPoE yo...

Страница 47: ...psulation method Selects the encapsulation format the default is LLC Bridged Select the one provided by your ISP DHCP client Enable or disable the DHCP client specify if the Router can get an IP addre...

Страница 48: ...od Select the encapsulation format this is provided by your ISP Ether Filter Type Specify the type of ethernet filtering performed by the named bridge interface All Allows all types of ethernet packet...

Страница 49: ...Internet directly the NAT function can be disabled Username Enter the username provided by your ISP You can input up to 128 alphanumeric characters case sensitive This will usually be in the format o...

Страница 50: ...is a specific or default route If set to enabled the route created will only apply to packets for the subnet at the remote end of the PPP link The address of this subnet is obtained during IPCP negot...

Страница 51: ...BNS This setting enables disables whether the primary secondary NBNS server address is requested from a remote PPP peer using IPCP The default setting for this command is disabled Discover Subnet Mask...

Страница 52: ...ernet directly the NAT function can be disabled DHCP client Enable or disable the DHCP client specifying if the router can obtain an IP address from the Internet Service Provider ISP automatically or...

Страница 53: ...ut up to 128 alphanumeric characters case sensitive This will usually be in the format of username ispname instead of simply username Password Enter the password provided by your ISP You can input up...

Страница 54: ...the remote end of the PPP link Specific Route Specifies whether the route created when a PPP link comes up is a specific or default route If set to enabled the route created will only apply to packets...

Страница 55: ...the DHCP server Discover Primary NBNS Discover Secondary NBNS This setting enables disables whether the primary secondary NBNS server address is requested from a remote PPP peer using IPCP The defaul...

Страница 56: ...to remember the DNS converts the friendly name into its equivalent IP Address You can obtain a Domain Name System DNS IP address automatically if your ISP has provided it when you logon check the Ena...

Страница 57: ...aking it active true again for taking effect with setting of Connect Mode Coding Gain Configure the ADSL coding gain from 0 dB to 7dB or automatic Tx Attenuation Setting ADSL transmission gain the val...

Страница 58: ...P server you have specified If you prefer to specify an SNTP server other than those in the list simply enter its IP address as shown above Your ISP may provide an SNTP server for you to use Daylight...

Страница 59: ...select a time period the router will permit remote access for and click Enable You may change other configuration options for the web administration interface using Device Management options in the A...

Страница 60: ...er time this software may be improved and modified and your router allows you to upgrade the software it runs to take advantage of these changes Clicking on Browse will allow you to select the new fir...

Страница 61: ...any significant changes to your router s configuration Press Backup to select where on your local PC to save the settings file You may also change the name of the file when saving if you wish to keep...

Страница 62: ...If you wish to restart the router using the factory default settings for example after a firmware upgrade or if you have saved an incorrect configuration select Factory Default Settings to reset to f...

Страница 63: ...u have clicked on Edit you are shown the following options You can change the user s password whether their account is active and Valid as well as add a comment to each user account These options are...

Страница 64: ...to outside users on the Internet making it much more difficult for a hacker to target a machine on your network This natural firewall is on when NAT function is enabled 60 When using Virtual Servers...

Страница 65: ...ion BIPAC 7402G 802 11g ADSL VPN Firewall Router Chapter 4 Configuration You can find six items under the Firewall section General Settings Packet Filter Intrusion Detection URL Filter and Firewall Lo...

Страница 66: ...played in Port Filters of Packet Filter Select either High Medium or Low security level to enable the Firewall The only difference between these three security levels is the preset port filter rules i...

Страница 67: ...ly available when the Firewall is enabled and one of these four security levels is chosen All blocked High Medium and Low The predefined port filter rules in the Packet Filter must modify accordingly...

Страница 68: ...YES NO YES NO YES DNS 53 UDP 17 53 53 NO YES NO YES YES YES DNS 53 TCP 6 53 53 NO YES NO YES YES YES FTP 21 TCP 6 21 21 NO NO NO YES NO YES Telnet 23 TCP 6 23 23 NO NO NO YES NO YES SMTP 25 TCP 6 25 2...

Страница 69: ...or form set IP address and Subnet Mask to 0 0 0 0 to inactive the Address Filter rule Tip To block access to from a single IP address enter that IP address as the Host IP Address and use a Host Subnet...

Страница 70: ...le Time Schedule It is self defined time period You may specify a time schedule for your prioritization policy For setup and detail refer to Time Schedule section Protocol Number Insert the port numbe...

Страница 71: ...medium or low security level To setup a web server located on the local network when the firewall is enabled you have to configure the Port Filters setting for HTTP As you can see from the diagram be...

Страница 72: ...elete 2 Click Delete to delete the existing HTTP rule 3 Click Add TCP UDP Filter Click Add TCP UDP Filter 4 Input the Rule Name Time Schedule Source Destination IP Type Source Destination Port Inbound...

Страница 73: ...le for HTTP is shown below 7 Configure your Virtual Server port forwarding settings so that incoming HTTP requests on port 80 will be forwarded to the PC running your web server Note For how to config...

Страница 74: ...function such as Land attack and Echo CharGen scan Intrusion Detection If enabled IDS will block Smurf attack attempts Default is false Block Duration Victim Protection Block Duration This is the dur...

Страница 75: ...tim Protection Yes Yes Land attack SrcIP DstIP Yes Yes Echo CharGen Scan UDP Echo Port and CharGen Port Yes Yes Echo Scan UDP Dst Port Echo 7 Src IP Scan Yes Yes CharGen Scan UDP Dst Port CharGen 19 S...

Страница 76: ...tion will be performed by the Block Mode Always On Action is enabled URL filter rules will be monitoring and checking at all hours of the day TimeSlot1 TimeSlot16 It is self defined time period You ma...

Страница 77: ...the URL to determine if it is in the trusted list If yes the connection attempt is sent to the remote web server 2 If not check if it is listed in the forbidden list and if present then the connection...

Страница 78: ...knows this function Domain Filtering ONLY disables all WEB traffic except for Trusted Domain BUT not its IP address If this is the situation Block surfing by IP address function can be handy and help...

Страница 79: ...Router Chapter 4 Configuration Firewall Log Firewall Log display log information of any unexpected action with your firewall settings Check the Enable box to activate the logs Log information can be s...

Страница 80: ...mote Access and LAN to LAN please refer below for more information Click Create to configure a new VPN connection After you have created PPTP connection account status will be displayed See example ab...

Страница 81: ...he authentication type to use or else manually specify CHAP Challenge Handshake Authentication Protocol or PAP Password Authentication Protocol if you know which type the server is using when acting a...

Страница 82: ...figuration Idle Time Auto disconnect the VPN connection when there is no activity on the connection for a predetermined period of time 0 means this connection is always on Active as default route Enab...

Страница 83: ...our Host If you are a Dial In user server enter your own password PPP Authentication Type Default is Auto if you want the router to determine the authentication type to use or else manually specify CH...

Страница 84: ...ll be changed every 256 packets when you select Stateful mode If you select Stateless mode the key will be changed in each packet Idle Time Auto disconnect the VPN connection when there is no activity...

Страница 85: ...ctivates the IPSec connection To wish interrupting the tunnel check Disable radio button and click Apply button to deactivate the connection Name This is the user defined name of the connection Local...

Страница 86: ...Remote Secure Gateway Address or Domain Name The IP address or hostname of the remote VPN device that is connected and establishes a VPN tunnel Network Set the IP address subnet or address range of t...

Страница 87: ...Diffie Hellman public key cryptography to change encryption keys during the second phase of VPN negotiation This function will provide better security but extends the VPN negotiation time Diffie Hell...

Страница 88: ...al Hash Function It is a Message Digest algorithm which coverts any length of a message into a unique set of bits It is widely used MD5 Message Digest and SHA 1 Secure Hash Algorithm algorithms SHA1 i...

Страница 89: ...establishes SA on behalf of IPSec an IKE SA is used by IKE Phase 1 IKE To issue an initial connection request for a new VPN tunnel The range can be from 5 to 15 000 minutes and the default is 240 min...

Страница 90: ...It is the NO Response time clock When no traffic stage time is beyond the Disconnection time set Router will automatically halt the tunnel connection and re establish it base on the Reconnection Time...

Страница 91: ...have created L2TP connection account status will be displayed See example above Enable Disable This function activates or deactivates the L2TP connection To wish interrupting the tunnel check Disable...

Страница 92: ...ser client enter the password provided by your Host If you are a Dial In user server enter your own password PPP Authentication Type Default is Auto if you want the router to determine the authenticat...

Страница 93: ...protocol that allows two parties to establish a shared secret over an unsecured communication channel i e over the Internet There are three modes MODP 768 bit MODP 1024 bit and MODP 1536 bit MODP stan...

Страница 94: ...eer Network IP setting Username If you are a Dial Out user client enter the username provided by your Host If you are a Dial In user server enter your own username Password If you are a Dial Out user...

Страница 95: ...This function will provide better security but extends the VPN negotiation time Diffie Hellman is a public key cryptography protocol that allows two parties to establish a shared secret over an unsecu...

Страница 96: ...Configuring a Remote Access PPTP VPN Dial in Connection A remote worker establishes a PPTP VPN connection with the head office using Microsoft s VPN Adapter included with Windows 2000 ME etc The route...

Страница 97: ...ddress Assigned to Dialing User 192 168 1 200 An assigned IP address for the remote worker Username username 3 Password 123456 Input username password to authenticate remote worker Auth Type Chap Auto...

Страница 98: ...guration Example Configuring a Remote Access PPTP VPN Dial out Connection A company s office establishes a PPTP VPN connection with a file server located at a separate location The router is installed...

Страница 99: ...out 2 Server IP Address or Hostname 69 121 1 33 An Dialed server IP Username username 3 Password 123456 A given username password Auth Type Chap Auto Data Encryption Auto Key Length Auto 4 Mode state...

Страница 100: ...LAN PPTP VPN Connection The branch office establishes a PPTP VPN tunnel with head office to connect two private networks over the Internet The routers are installed in the head office and branch offi...

Страница 101: ...User 192 168 1 200 IP address assigned to branch office network Peer Network IP 192 168 0 0 Branch office network 3 Netmask 255 255 255 0 Username username 4 Password 123456 Input username password t...

Страница 102: ...t Check Dial out 2 Server IP Address or Hostname 69 121 1 33 IP address of the head office router in WAN side Peer Network IP 192 168 1 0 3 Netmask 255 255 255 0 Head office network Username username...

Страница 103: ...Router IP 69 1 121 30 69 1 121 3 Remote Network ID 192 168 1 0 24 192 168 0 0 24 Remote Router IP 69 1 121 3 69 1 121 30 IKE Pre shared Key 12345678 12345678 VPN Connection Type Tunnel mode Tunnel mod...

Страница 104: ...Check Subnet radio button IP Address 192 168 1 0 2 Netmask 255 255 255 0 Head office network 3 Secure Gateway Address or Hostname 69 121 1 30 IP address of the head office router in WAN side Subnet C...

Страница 105: ...net Check Subnet radio button IP Address 192 168 0 0 2 Netmask 255 255 255 0 Branch office network 3 Secure Gateway Address or Hostname 69 121 1 3 IP address of the head office router in WAN side Subn...

Страница 106: ...Billion BIPAC 7402G 802 11g ADSL VPN Firewall Router Chapter 4 Configuration Example Configuring a IPSec Host to LAN VPN Connection 102...

Страница 107: ...ubnet radio button IP Address 192 168 1 0 2 Netmask 255 255 255 0 Head office network 3 Secure Gateway Address or Hostname 69 121 1 30 IP address of the head office router in WAN side Single Address C...

Страница 108: ...nfiguring a L2TP VPN Remote Access Dial in Connection A remote worker establishes a L2TP VPN connection with the head office using Microsoft s VPN Adapter included with Windows XP 2000 ME etc The rout...

Страница 109: ...ss Assigned to Dialing User 192 168 1 200 An assigned IP address for the remote worker Username username 3 Password 123456 Input username password to authenticate remote worker 4 Auth Type Chap Auto K...

Страница 110: ...guration Example Configuring a Remote Access L2TP VPN Dial out Connection A company s office establishes a L2TP VPN connection with a file server located at a separate location The router is installed...

Страница 111: ...Dialed server IP Username username 3 Password 123456 A given username password 4 Auth Type Chap Auto Keep as default value in most of the cases 5 Idle Timeout 0 The connection will be disconnected wh...

Страница 112: ...outer Chapter 4 Configuration Example Configuring your Router to Dial in to the Server Currently Microsoft Windows operation system does not support L2TP incoming service Additional software may be re...

Страница 113: ...2TP VPN tunnel with head office to connect two private networks over the Internet The routers are installed in the head office and branch office accordingly Attention Both office LAN networks MUST in...

Страница 114: ...r 192 168 1 200 IP address assigned to branch office network Peer Network IP 192 168 0 0 Branch office network 3 Netmask 255 255 255 0 Username username 4 Password 123456 Input username password to au...

Страница 115: ...al out 2 Server IP Address or Hostname 69 121 1 33 IP address of the head office router in WAN side Peer Network IP 192 168 1 0 3 Netmask 255 255 255 0 Head office network Username username 4 Password...

Страница 116: ...fic for each application from LAN Ethernet and or Wireless to WAN Internet It facilitates you to control the different quality and speed of through put for each application when the system is running...

Страница 117: ...policy application Its default setting is set to High you may adjust this setting to fit your policy application Protocol The name of supported protocol Source Port The source port of packets to be m...

Страница 118: ...ffort 000000 Premium Express Forwarding 101110 Gold service L Class 1 Gold 001010 Gold service M Class 1 Silver 001100 Gold service H Class 1 Bronze 001110 Silver service L Class 2 Gold 010010 Silver...

Страница 119: ...entify this new policy application Time Schedule Scheduling your prioritization policy Refer to Time Schedule for more information Protocol The name of supported protocol Source Port The source port o...

Страница 120: ...tify this new policy application Time Schedule Scheduling your prioritization policy Refer to Time Schedule for more information Protocol The name of supported protocol Source Port The source port of...

Страница 121: ...n Diagram Normal PCs VoIP Restricted Information and Settings Upstream 928 kbps Downstream 8 Mbps VoIP User 192 168 1 1 Normal Users 192 168 1 2 192 168 1 5 Restricted User 192 168 1 100 0 100 200 300...

Страница 122: ...application Voice is latency sensitive application Most VoIP devices are use SIP protocol and the port number will be assigned by SIP module automatically Better to use fixed IP address for catching V...

Страница 123: ...me level Upstream 928kbps 29 32kbps Mission critical Application 192kbps 6 32kbps Voice Application 128kbps 4 32kbps Restricted Application 160kbps 5 32kbps Other Applications 448kbps 14 32kbps 6 4 14...

Страница 124: ...sharing applications and are using NAT Network Address Translation then you will usually need to configure your router to forward these incoming connection attempts using specific ports to the PC on...

Страница 125: ...port is received it will be forwarded to the corresponding internal server Time Schedule A self defined time period to enable your virtual server You may specify a time schedule or Always on for the...

Страница 126: ...o edit this virtual server application Delete Click it to delete this virtual server application If you have disabled the NAT option in the WAN ISP section the Virtual Server function will hence be in...

Страница 127: ...number used by any other Virtual Server entries Cautious This Local computer exposing to the Internet may face varies of security risks Disabled As set in default setting it disables the DMZ function...

Страница 128: ...o utilize these IP addresses NAT Type Select desired NAT type As set in default setting it disables the One to One NAT function Global IP Address Subnet The subnet of the public WAN IP address given b...

Страница 129: ...l for the virtual server In addition to specifying the port number to be used you will also need to specify the protocol used The protocol used is determined by the particular application Most applica...

Страница 130: ...h 65535 For further information please see IANA s website at http www iana org assignments port numbers For help on determining which private port numbers are used by common applications on this list...

Страница 131: ...ay to restrict or allowing the usage of the Internet by users or applications This Time Schedule correlates closely with router s time since router does not have a real time clock on board it uses the...

Страница 132: ...iption to identify this time portfolio Day The default is set from Monday through Friday You may specify the days for the schedule to be applied Start Time The default is set at 8 00 AM You may specif...

Страница 133: ...r Start Time set time to 8 30 5 For End Time set time to 13 45 6 Click Apply button to save this setting Back to the Time Schedule page you can see the time profile has just been created Note Watch it...

Страница 134: ...four items within the Advanced section Static Route Dynamic DNS Checking Email Device Management and IGMP Static Routing Click on Routing Table and then choose Create Route add a routing table Destin...

Страница 135: ...stablish an account with the Dynamic DNS provider using their website for example http www dyndns org There are more than 5 DDNS services supported Disable Check to disable the Dynamic DNS function En...

Страница 136: ...uters Emailing checking function The following fields will be activated and required Account Name Enter the name login of the POP3 account you wish to check Normally it is the text in your email addre...

Страница 137: ...their LAN Management IP Address You may specify an IP address allowed to logon and access the router s web server Setting the IP address to 0 0 0 0 will disable IP address restrictions allowing users...

Страница 138: ...agement Protocol SNMP V1 and V2 Read Community Specify a name to be identified as the Read Community and an IP address This community string will be checked against the string entered in the configura...

Страница 139: ...ranslation group IP group ICMP group TCP group UDP group EGP not applicable Transmission SNMP group From RFC1650 EtherLike MIB dot3Stats From RFC 1493 Bridge MIB dot1dBase group dot1dTp group dot1dStp...

Страница 140: ...DSL VPN Firewall Router Chapter 4 Configuration PPP IP Group From RFC 1474 PPP Bridge MIB PPP Bridge Group From RFC1573 IfMIB ifMIBObjects Group From RFC1695 atmMIB atmMIBObjects From RFC 1907 SNMPv2...

Страница 141: ...IGMP known as Internet Group Management Protocol is used to management hosts from multicast group IGMP Forwarding Accepting multicast packet Default is set to Enable IGMP Snooping Allowing switched Et...

Страница 142: ...uration Save Configuration to Flash After changing the router s configuration settings you must save all of the configuration parameters to FLASH to avoid them being lost after turning off or resettin...

Страница 143: ...PC accessing the configuration web pages at a time Once a PC has logged into the web interface other PCs cannot get access until the current PC has logged out of the web interface If the previous PC f...

Страница 144: ...m Corrective Action Initialization of the PVC connection linesync failed Ensure that the telephone cable is connected properly from the ADSL port to the wall jack The ADSL LED on the front panel of th...

Страница 145: ...Cs on the LAN Check the Ethernet LEDs on the front panel The LED should be on for a port that has a PC connected If it is off check the cables between your router and the PC Make sure you have uninsta...

Страница 146: ...pter please contact the dealer where you purchased this product Contact Billion AUSTRALIA http www billion com au 2005 Billion Electric Co Ltd PC Range P L All Rights Reserved WORLDWIDE http www billi...

Отзывы: