background image

GRT-504 4-Wire G.SHDSL.bis Firewall Router User’s Manual 

7.9.2

 

Security................................................................................................................................126

 

7.9.3

 

SNMP ..................................................................................................................................127

 

7.9.4

 

Supervisor Password and ID ...............................................................................................128

 

7.9.5

 

SNTP ...................................................................................................................................129

 

7.10

 

U

TILITY

....................................................................................................................................131

 

7.10.1

 

Upgrade..........................................................................................................................131

 

7.10.2

 

Backup ............................................................................................................................131

 

7.10.3

 

Restore ............................................................................................................................132

 

7.11

 

E

XIT

..........................................................................................................................................133

 

7.12

 

S

ETUP

.......................................................................................................................................134

 

7.12.1

 

Mode ...............................................................................................................................134

 

7.12.2

 

SHDSL.bis ......................................................................................................................134

 

7.12.3

 

WAN ................................................................................................................................135

 

7.12.4

 

Bridge .............................................................................................................................137

 

7.12.5

 

VLAN ..............................................................................................................................138

 

7.12.6

 

802.11Q VLAN................................................................................................................138

 

7.12.7

 

STP .................................................................................................................................139

 

7.12.8

 

Route...............................................................................................................................139

 

7.12.9

 

LAN.................................................................................................................................141

 

7.12.10

 

IP share...........................................................................................................................141

 

7.12.10.1

 

NAT.......................................................................................................................................... 141

 

7.12.10.2

 

PAT........................................................................................................................................... 143

 

7.12.10.3

 

DMZ......................................................................................................................................... 144

 

7.12.11

 

Firewall ..........................................................................................................................145

 

7.12.11.1

 

Firewall security level .............................................................................................................. 145

 

7.12.11.2

 

Packet Filtering ........................................................................................................................ 145

 

7.12.11.3

 

DoS Protection ......................................................................................................................... 146

 

7.12.12

 

IPQoS .............................................................................................................................148

 

7.12.13

 

DHCP .............................................................................................................................149

 

7.12.14

 

DNS proxy.......................................................................................................................150

 

7.12.15

 

Host name.......................................................................................................................150

 

7.12.16

 

Default ............................................................................................................................150

 

 

 

 

6

Содержание G.SHDSL.bis Bridge Router GRT-504

Страница 1: ...4 Wire G SHDSL bis Firewall Router GRT 504 User s Manual...

Страница 2: ...of PLANET PLANET assumes no responsibility for any inaccuracies that may be contained in this User s Manual PLANET makes no commitment to update or keep current the information in this User s Manual...

Страница 3: ...on the environment and human health as a result of the presence of hazardous substances in electrical and electronic equipment end users of electrical and electronic equipment should understand the m...

Страница 4: ...FIREWALL 16 3 2 1 Packet Filtering 16 3 2 2 Circuit Gateway 17 3 2 3 Application Gateway 18 3 3 DENIAL OF SERVICE ATTACK 19 4 GETTING TO KNOW VLAN FEATURE 21 4 1 SPECIFICATION 21 4 2 FRAME SPECIFICAT...

Страница 5: ...9 1 Basic Firewall Security 68 6 2 9 2 Automatic Firewall Security 69 6 2 9 3 Advanced Firewall Security 70 6 2 10 IP QoS 74 6 3 STATUS 77 6 3 1 SHDSL bis 78 6 3 2 LAN 79 6 3 3 WAN 80 6 3 4 ROUTE 81 6...

Страница 6: ...LE OR TELNET WITH MANU DRIVEN INTERFACE 105 7 1 INTRODUCTION 105 7 1 1 Serial Console 105 7 1 2 Telnet 105 7 1 3 Operation Interface 106 7 1 4 Window structure 106 7 1 5 Menu Driven Interface Commands...

Страница 7: ...2 1 Mode 134 7 12 2 SHDSL bis 134 7 12 3 WAN 135 7 12 4 Bridge 137 7 12 5 VLAN 138 7 12 6 802 11Q VLAN 138 7 12 7 STP 139 7 12 8 Route 139 7 12 9 LAN 141 7 12 10 IP share 141 7 12 10 1 NAT 141 7 12 10...

Страница 8: ...L bis technology provides the higher symmetric data rate up to 11 4 Mbps on 4 wires CO and CPE side Support Provide the back to back connection Firewall It supports Natural NAT firewall and Advanced S...

Страница 9: ...User s Manual Simple Network Management Protocol SNMP It is an easy way to remotely manage the router via SNMPv1 v2 Fully ATM protocol stack implementation over G SHDSL bis PPPoA and PPPoE support us...

Страница 10: ...2 DB9 Button 1 x Reset Button LED Indicators PWR WAN LNK ACT LAN 1 2 3 4 ALM Software Maximum Concurrent Sessions 1024 Protocol and Advanced Functions IEEE 802 1D transparent learning bridge IEEE 802...

Страница 11: ...he following items should be included If any of these items are damaged or missing please contact your dealer immediately 4 Wire G SHDSL bis Firewall Router x 1 Power Adapter x 1 Quick Installation Gu...

Страница 12: ...GRT 504 4 Wire G SHDSL bis Firewall Router User s Manual 1 3 Applications 11...

Страница 13: ...Active Description PWR Green ON The power adaptor is connected to GRT 504 Green ON G SHDSL bis connection is established LNK Green Blink G SHDSL bis is handshaking WAN ACT Green Blink Transmit data or...

Страница 14: ...he default settings when press this button until reboot The reset button can be used only in one of two ways 1 Press the Reset Button for one second will cause system reboot 2 Pressing the Reset Butto...

Страница 15: ...r Below figure show the SHDSL bis line cord plugs pin asignment 2 4 Console Cable Below figure show the cosole cable pins asignment Pin Number Description Figure 1 No connection 2 RxD O 3 TxD I 4 No c...

Страница 16: ...rms when hostile or unauthorized entry is attempted Firewalls can filter packets based on their IP addresses of source and destination This is known as address filtering Firewalls can also filter spec...

Страница 17: ...packets and determines the packet dropping or not by a set of configurable rules Network Address Translation NAT routers offer the advantages of packet filtering firewalls but can also hide the IP ad...

Страница 18: ...External Port 2205 2206 192 120 8 5 2205 192 120 8 5 2206 3 2 2 Circuit Gateway Also called a Circuit Level Gateway this is a firewall approach which validates connections before allowing data to be e...

Страница 19: ...es according to authenticated users and so forth This type of firewall may also perform very detailed logging of traffic and monitoring of events on the host system furthermore can often be instructed...

Страница 20: ...advantage of that feature when they found that fragmented packets could be added up to the size more than the allowed 65 536 bytes Many operating systems don t know what to do once if they received an...

Страница 21: ...nd destination addresses originating from your network IP Spoofing IP Spoofing is a method of masking the identity of an intrusion by making it appeared that the traffic came from a different computer...

Страница 22: ...t VID PVID as an untagged member Also a port can belong to multiple VLANs and be tagged members of these VLANs 3 A port must not be a tagged member of its default VLAN 4 If a non tagged or null VID ta...

Страница 23: ...ol Identifier TPID is of 0x8100 and it identifies the frame as a tagged frame The Tag Control Information TCI consists of the following elements 1 User priority allows the tagged frame to carry user p...

Страница 24: ...GRT 504 4 Wire G SHDSL bis Firewall Router User s Manual 23...

Страница 25: ...GRT 504 4 Wire G SHDSL bis Firewall Router User s Manual 24...

Страница 26: ...apter had been installed in PC or NB used for configuration of the router TCP IP protocol is necessary for web configuration so please check the TCP IP protocol whether it has been installed 2 Check t...

Страница 27: ...ided by ISP you have to ask the necessary WAN parameters to setup it Bridge EoA Route EoA IPoA PPPoA PPPoE 2626 06 08 09Wed2626WWed Wed2626b Wednesday2626 2626 Wed2626 Wednesday2626 262626262626262626...

Страница 28: ...DC IN on the rear panel of the product y Connect the Ethernet cable Note This router supports auto MDIX switching so both straight through and cross over Ethernet cable can be used y Connect the phon...

Страница 29: ...GRT 504 4 Wire G SHDSL bis Firewall Router User s Manual 6 Configuration via Web Browser Step 1 Click the start button Select setting and control panel Step 2 Double click the network icon 28...

Страница 30: ...outer User s Manual In the Configuration window select the TCP IP protocol line that has been associated with your network card and then click property icon Choose IP address tab Select Obtain IP addr...

Страница 31: ...55 0 Because the router acts as DHCP server in your network the router will automatically assign IP address for PC or NB in the network Type User Name root and Password root and then click OK The defa...

Страница 32: ...SL bis router full function listing BASIC Quick Setup ADVANCED SHDSL bis WAN BRIDGE VLAN STP ROUTE NAT DMZ VIRTUAL SERVER FIREWALL IP QoS STATUS SHDSL bis LAN WAN ROUTE INTERFACE FIREWALL IP QoS STP A...

Страница 33: ...sion This is the easiest and possible way to setup the router Note The advanced functions are only for advanced users to setup advanced functions The incorrect setting of advanced function will affect...

Страница 34: ...click Next for the next setting This router can be setup as one of two SHDSL bis working mode CO Central Office and CPE Customer Premises Equipment For connection with DSLAM the SHDSL bis router work...

Страница 35: ...me as identification You may check with ISP to see if your Internet service has been configured with a host name In most cases this field can be ignored WAN1 VPI 0 VCI 32 Encap Click LLC and than Clic...

Страница 36: ...Name LAN Trigger DHCP service Disable Server Relay VPI VCI Encapsulation VC mux LLC WAN1 Protocol IPoA IPoA NAT EoA EoA NAT PPPoA NAT PPPoE NAT Default gateway Subnet Mast Start IP address End IP addr...

Страница 37: ...tup Routing mode contains DHCP server DHCP client DHCP relay Point to Point Protocol over ATM and Ethernet and IP over ATM and Ethernet over ATM You have to clarify which Internet protocol is provided...

Страница 38: ...at lets network administrators to manage centrally and automate the assignment of Internet Protocol IP addresses in an organization s network Using the Internet Protocol each machine that can connect...

Страница 39: ...1 Lease time 72 hours indicates that the DHCP server will reassign IP information in every 72 hours DNS Server1 DNS Server2 and DNS Server3 Your ISP will provide at least one Domain Name Service Serv...

Страница 40: ...yours need IP Type Fixed IP Address 192 168 0 1 Subnet Mask 255 255 255 0 Host Name SOHO Some of the ISP requires the host name as identification You may check with ISP to see if your Internet servic...

Страница 41: ...test Password Confirm test Your ISP will provide the user name and password Idle Time 10 You want your Internet connection to remain on at all time enter 0 in the Idle Time field IP Type Dynamics The...

Страница 42: ...ou A dynamic IP address is not fixed the ISP assigns you a differnet on each time you connect to the Internet The screen will prompt the parameters that will be written in NVRAM Check the parameters b...

Страница 43: ...it and you need to specify here Subnet mask 255 255 255 0 This is the router subnet mask seen by external users on Internet Your ISP will provide it to you Gateway 10 1 2 2 Your ISP will provide you t...

Страница 44: ...ser s Manual Review The screen will prompt the parameters that will be written in NVRAM Check the parameters before writing in NVRAM Press Restart to restart the router working with new parameters or...

Страница 45: ...ork of IP services ATM provides high speed point to point connections which considerably improve the bandwidth performance of IP network On the other hand ATM provides excellent network performance an...

Страница 46: ...sers on an Ethernet local area network to a remote site through common customer premises equipment which is the telephone company s term for a modem and similar devices PPPoE and PPPoA can be used to...

Страница 47: ...tup the Annex type data rate and SNR margin for SHDSL bis parameters in SHDSL bis Click SHDSL bis Enter Parameters in SHDSL bis 6 2 1 1 Annex Type There are four Annex types Annex A ANSI Annex B ETSI...

Страница 48: ...de each wire pair of SHDSL bis router must be configured with the same line rate If one pair fails then the entire line must be restarted It also has the Conexant M pair standard used with connection...

Страница 49: ...ata Rate For 2 wire model n 64kbps You can setup the SHDSL bis data rate in the multiple of 64kbps The default data rate is 5696Kbps n 89 For using Annex AF or BG TCPAM32 data rate is 768Kbps 5696Kbps...

Страница 50: ...et SNR margin in the field as 3 the SHDSL bis connection will drop and reconnect when the SNR margin is lower than 3 On the other hand the device will reduce the line rate and reconnect for better lin...

Страница 51: ...n t need to setup WAN except you apply two or more Internet Services with ISPs The parameters in WAN Number 1 has been setup in Basic Setup If you want to setup another PVC you can configure in WAN 2...

Страница 52: ...me sensitive such as e mail Slect VBR for bursty traffic and bandwidth sharing with other applications UBR Unspecified Bit Rate is the simplest service provided by ATM networks There is no guarantee o...

Страница 53: ...up all the time and specify an idle time on this field IP type A static IP address is a fixed IP that your ISP gives you A dynamic IP address is not fixed the ISP assigns you a differnet on each time...

Страница 54: ...s Firewall Router User s Manual 6 2 3 Bridge If you want to setup advanced filter function while router is working in bridge mode you can use BRIDGE menu to setup the filter function blocking function...

Страница 55: ...to filter the designated MAC address of WAN PC to access LAN press Add to establish the filtering table Key the MAC address in MAC Address field and select Filter in WAN field For example if your VC...

Страница 56: ...bers When properly configured VLAN prevents one subscriber from accessing the network resources of another on the same LAN VLAN also increases network performance by limiting broadcasts to a smaller a...

Страница 57: ...can receive or send tagged packets The Router initially default configures one VLAN VID 1 A port such as LAN1 to LAN4 and WAN1 to WAN8 can have only one PVID but can have as many VID as the router has...

Страница 58: ...ers in the same VLAN The network administrator typically performs the VLAN assignment The port configuration is static and cannot be automatically changed to another VLAN without manual reconfiguratio...

Страница 59: ...ches see stations appear on both sides of the switch This condition confuses the forwarding algorithm and allows duplicate frames to be forwarded To provide path redundancy Spanning Tree Protocol defi...

Страница 60: ...must travel to reach a specific host or network With Dynamic Routing you can enable the Router to automatically adjust to physical changes in the network s layout The Router using the RIP protocol det...

Страница 61: ...gateway does not participate in any RIP exchange with other router If set Enable the router broadcasts the routing table of the router on the LAN and incoporates RIP broadcast by other routers into it...

Страница 62: ...son Reserve is for the purpose of promptly broadcast or multicast the RIP while the route is changed ex shuting down one of the routers in routing table Enable the gateway will actively broadcast or m...

Страница 63: ...t world DMZ Demilitarized zone is a computer host or small network inserted as a neutral zone between a company private network and the outside public network It prevents outside users from getting di...

Страница 64: ...er User s Manual Press NAT DMZ to setup the parameters If you want to enable the NAT DMZ functions click Enable Enable the DMZ host Function is used the IP address assigned to the WAN for enabling DMZ...

Страница 65: ...eg 192 168 0 10 192 168 0 50 collectively use two of the global IP addresses eg 69 210 1 9 and 69 210 1 10 The Multi NAT table will be setup as Virtual Start IP Address 192 168 0 10 Count 40 Global S...

Страница 66: ...GRT 504 4 Wire G SHDSL bis Firewall Router User s Manual 6 2 8 Virtual Server Click Virtual Server to configure the parameters There have ten virtual server index form 1 to 10 can been set up 65...

Страница 67: ...NAT of course running on gateway it is said to be a virtual server Request with TCP made to 69 210 1 8 80 are remapped to the server 1 on 192 168 0 2 80 for working days from Monday to Friday 8 AM to...

Страница 68: ...ms that protects the resources of a private network from other networks It is helpful to users that allow preventing hackers to access its own private data resource accidentally There have three secur...

Страница 69: ...The remote management security is default to block any WAN side connection to the device Non empty legal IP pool in ADMIN will block all remote management connection except those IPs specified in the...

Страница 70: ...the parameters which will be written in NVRAM Check the parameters Press Restart to restart the router or press Continue to setup another function User can determine the security level for special pur...

Страница 71: ...e DoS protection parameters SYN flood A SYN flood is a form of denial of service attack attempts to slow your network by requesting new connections but not completing the process to open the connectio...

Страница 72: ...echo traffic to IP broadcast addresses all of it having a fake source address This is a simple rewrite of the smurf attack code For SYN attack ICMP flood and UDP flood they can set up the threshold of...

Страница 73: ...dresses or ranges of addresses to which this packet filter rule applies Address 0 0 0 0 is equivalent Any Dest IP Address The destination addresses or ranges of addresses to which this packet filter r...

Страница 74: ...Manual Press OK to finish The screen will prompt the configured parameters Click Enable on Trigger Packet Filtering Service item to active the packet filtering service You can modify or delete the acc...

Страница 75: ...P QoS IP QoS is a good function to decide which PCs can get the priorities to pass though router once if the bandwidth is exhausted or fully saturated Click Enable at item Trigger IP QoS Service in Ge...

Страница 76: ...ized session Local Port type the service port number of local host in prioritized session Remote Port type the service port number of remote host in prioritized session Protocol identify the transport...

Страница 77: ...Click Finish can make a review for all IP QoS parameter To let the IP QoS configuration you have changed and want those take effect immediately please click Restart button to reboot the system To cont...

Страница 78: ...nt table Type IP address and MAC address WAN WAN interface information 8 WAN interface including IP address Subnet Mask VPI VCI Encapsulation Protocol and Flag ROUTE IP routing table including Flags D...

Страница 79: ...al 6 3 1 SHDSL bis The status information shows this is 4 wire model which have channel A and B If the router have connected to remote side it can also show the performance information of remote side...

Страница 80: ...GRT 504 4 Wire G SHDSL bis Firewall Router User s Manual 6 3 2 LAN This information shows the LAN interface status and DHCP client table 79...

Страница 81: ...GRT 504 4 Wire G SHDSL bis Firewall Router User s Manual 6 3 3 WAN This information shows all eight WAN interface 80...

Страница 82: ...GRT 504 4 Wire G SHDSL bis Firewall Router User s Manual 6 3 4 ROUTE This information shows the IP routing table 81...

Страница 83: ...GRT 504 4 Wire G SHDSL bis Firewall Router User s Manual 6 3 5 INTERFACE This table shows the interface statistics 82...

Страница 84: ...GRT 504 4 Wire G SHDSL bis Firewall Router User s Manual 6 3 6 FIREWALL This information shows fireware status DoS protection and dropped packets statistics 83...

Страница 85: ...GRT 504 4 Wire G SHDSL bis Firewall Router User s Manual 6 3 7 IP QoS This information shows IP QoS statistics 84...

Страница 86: ...nsigned 16 bit integer field is the bridge priority number Designated Root ID The unique Bridge Identifier of the Bridge assumed to be the Root this parameter is used as the value of the Root Identifi...

Страница 87: ...meter is zero The ports parameters have Learning This is when the modem creates a switching table that will map MAC addresses to port number Listening This is when the modem processes BPDU s that allo...

Страница 88: ...the router and change the parameters There are three ways to configure the router Web browser telnet and serial console Press Security to setup the parameters For greater security change the Supervis...

Страница 89: ...Internet or LAN to access the router Leaving blank of trust host list will cause blocking all PC from WAN to access the router On the other hand only PC in LAN can access the router If you type the e...

Страница 90: ...sages contain requests to get and set variables that exist in network nodes in order to obtain statistics set configuration parameters and monitor network events SNMP communications can occur over the...

Страница 91: ...t pool SNMP trap is an informational message sent from an SNMP agent to a manager Click Modify to modify the trap host pool Version select version for trap host Version 1 is for SNMPv1 Version 2 for S...

Страница 92: ...g or operations Without time synchronization these system s clocks vary and cause the failure of firewall packet filtering schedule processes compromised security or virtual server working in wrong sc...

Страница 93: ...be used when the ultimate performance of the full NTP implementation Service Enable Time Server 1 Time Server 2 and Time Server 3 All of the time server around the world can be used but suggest using...

Страница 94: ...f the product including SYSTEM INFO Show the system information CONFIG TOOL Load the factory default configuration restore configuration and backup configuration UPGRADE Upgrade the firmware LOGOUT Lo...

Страница 95: ...is is sometimes needed by technicians to help troubleshoot problems Chipset This is the SHDSL bis chipset model name Firmware Version This is the chipset s firmware version Host Name This is the syste...

Страница 96: ...to recover the backup configuration easily Click Finish after selecting Restore Configuration Browse the route of backup file then press Finish Brower the place of restore file name or put the name Th...

Страница 97: ...pgrade You can upgrade the gateway using the upgrade function Press Upgrade in UTILITY Select the firmware file name by click Browse on your PC or NB and press OK button to upgrade The system will reb...

Страница 98: ...out To logout the router press LOGOUT in UTILITY For logout system and close window click the LOGOUT in UTILITY When click the Yes button the Router will logout and browser window will be closed 6 5 5...

Страница 99: ...uter When the restart button been clicked the router will restarting and the browser session will be disconnected This may appear as if your browser session is hung up After the router restarts you ma...

Страница 100: ...168 0 100 Netmask 255 255 255 0 Gateway 192 168 0 1 6 6 1 1 CO side lick Bridge and CO Side to setup Bridging mode of the Router and then click Next C Enter LAN Parameters IP 192 168 0 1 Subnet Mask...

Страница 101: ...reboot with the new setting 6 6 1 2 CPE Side lick Bridge and CPE Side to setup Bridge mode of the Router and then click Next C nter LAN Parameters E IP 192 168 0 2 Subnet Mask 255 255 255 0 Gateway 19...

Страница 102: ...VPI 0 VCI 32 Encapsulation LLC IP 192 168 10 200 Netmask 255 255 255 0 Gateway 192 168 10 1 IP 192 168 30 1 Netmask 255 255 255 0 Gateway 192 168 30 2 IP 192 168 30 2 Netmask 255 255 255 0 Gateway 19...

Страница 103: ...ameters For more understanding about NAT review the chapter of NAT DMZ IP Address 192 168 20 1 Subnet Mask 255 255 255 0 Gateway 192 169 30 2 Click Next The screen will prompt the parameters that we w...

Страница 104: ...DHCP service review the chapter of DHCP Service Type the WAN1 Parameters VPI 0 VCI 32 AAL5 Encap LLC Protocol IPoA EoA IPoA NAT or EoA NAT Note The Protocol used in CO and CPE have to be the same Clic...

Страница 105: ...er User s Manual The screen will prompt the parameters that we will write in NVRAM Check the parameters before writing in NVRAM Press Restart to restart the router working with new parameters or press...

Страница 106: ...its 8 Parity Check No Stop Bits 1 Flow control No Press the SPACE key until the login screen appears When you see the login screen you can logon to Router Note Only SPACE key invoke the login prompt P...

Страница 107: ...nd line The following figure gives you an example of the menu driven interface In the menu you scroll up down by pressing key I K select one command by key L and go back to a higher level of menu by k...

Страница 108: ...65534 t Two or more items enclosed in brackets and separated by vertical bars means that you can choose one or none of the items 7 1 5 Menu Driven Interface Commands Before changing the configuration...

Страница 109: ...password On the other hand unauthorized user cannot change any configurations but viewing the status and configuration of the router and using ping command to make sure the router is working enable M...

Страница 110: ...p management features utility TFTP upgrade utility exit Quit system Command Description Command Description enable Modify command privilege When you login via serial console or Telnet the router defau...

Страница 111: ...embedded operation channel wan WAN status shows all their parameters including IP address Net mask PVC and protocol information route You can see the routing table via route command interface The sta...

Страница 112: ...WAN5 192 168 5 1 255 255 255 0 0 36 LLC PPPoA No WAN6 192 168 6 1 255 255 255 0 0 37 LLC Ethernet No WAN7 192 168 7 1 255 255 255 0 0 38 LLC Ethernet No WAN8 192 168 8 1 255 255 255 0 0 39 LLC Etherne...

Страница 113: ...ou can view interface statistics data on one LAN port and eight WAN ports 7 4 5 Firewall Move cursor to Firewall and press enter Monitoring Window Current Firewall Status Attack Type Current Status Hi...

Страница 114: ...N8 Command status ip_qos 0 8 Message Please input the following information Interface number 0 8 0 Monitoring Window Current IP QoS Statistics LAN Interface Preced InBytes InPackets OutBytes OutPacket...

Страница 115: ...port that would cause a switching loop no user data is sent or received but it may go into forwarding mode if the other links in use were to fail and the spanning tree algorithm determines the port m...

Страница 116: ...DA Chipset PEF 22627 Firmware Version 1 1 1 5 7__002 Hostname SOHO System Up Time 0DAY 2HR 39MIN From this screen you can know more about the general information of this router 7 5 2 Configuration inf...

Страница 117: ...neric Bridging Parameters Gateway IP address 192 168 0 254 Static Bridging Parameters No data in the static bridge entry DHCP Server Generic Parameters Service Enable Interface LAN Default Gateway 192...

Страница 118: ...mpty 6 Empty 7 Empty 8 Empty 9 Empty 10 Empty Packet Filter Active Parameter Packet Filtering Function Disable Drop Fragmented Packets Disable Packet Filtering Table No entry in the access policy tabl...

Страница 119: ...168 0 254 Disable 2 private 192 168 0 254 Disable 3 private 192 168 0 254 Disable 4 private 192 168 0 254 Disable 5 private 192 168 0 254 Disable Time Synchronization Parameters Method Sync with PC S...

Страница 120: ...up wan 3 address 192 168 3 1 255 255 255 0 setup wan 3 vpi_vci 0 34 setup wan 3 encap LLC setup wan 3 qos class UBR setup wan 3 qos pcr 11392 setup wan 3 qos scr 11392 setup wan 3 isp test test 10 set...

Страница 121: ...mode 6 Access setup vlan link_mode 7 Access setup vlan link_mode 8 Access setup vlan link_mode 9 Access setup vlan link_mode 10 Access setup vlan link_mode 11 Access setup vlan link_mode 12 Access set...

Страница 122: ...rity port 23 admin security ip_pool modify 1 0 0 0 0 admin snmp community 1 edit Disable private Denied admin snmp community 2 edit Disable private Denied admin snmp community 3 edit Disable private D...

Страница 123: ...f configuration you must write the new configuration to NVRAM using write command and reboot the router to take affect Move cursor to to write and press enter Command write CR Message Please input the...

Страница 124: ...r s Manual 7 7 Reboot To reboot the router please use reboot command Move cursor to to reboot and press enter Command reboot CR Message Please input the following information Do you want to reboot y n...

Страница 125: ...information IP address IP 10 0 0 1 Number of ping request packets to send TAB select t Data size 1 1999 32 There are 3 parameters for ping command ip 1 65534 t 1 1999 IP address The IP address which y...

Страница 126: ...an change the configuration of the router Move the cursor to user and press enter key clear Clear user profile modify Modify the user profile list List the user profile You can delete the user by numb...

Страница 127: ...est 2 Command 4 test 3 Command 5 superman Menu 7 9 2 Security Security command can be configured sixteen legal IP address for telnet access and telnet port number Move the cursor to security and press...

Страница 128: ...press enter Command admin snmp community 1 5 more Message Please input the following information Community entry number 1 5 2 The screen will prompt as follow edit Edit community entry list Show commu...

Страница 129: ...the router via web browser have to use the ID and password to configure the router and users who access the router via telnet or console mode have to use the password to configure the router Suggest t...

Страница 130: ...hronization with PC doesn t need to configure the above parameters Move the cursor to sntp and press enter method Select time synchronization method service Tigger SNTP v4 0 service time_server1 Confi...

Страница 131: ...cursor to time_zone and configure where your router is placed The easiest way to know the time zone offset hour is from your PC clock Double click the clock at the right corner of monitor and check t...

Страница 132: ...system configuration Restore Restore system configuration 7 10 1 Upgrade Move the cursor to upgrade and press enter Command utility upgrade ip file Message Please input the following information TFTP...

Страница 133: ...and press enter Command utility restore ip file Message Please input the following information TFTP server IP address ENTER for default 192 168 0 2 192 168 0 150 Upgrade filename ENTER for default def...

Страница 134: ...er User s Manual 7 11 Exit If you want to exit the system without saving use exit command to quit system Command exit CR Message Please input the following information Do you want to disconnect y n Pr...

Страница 135: ...uct can act as routing mode or bridging mode The default setting is routing mode You can change the system operation mode by using mode command Move the cursor to mode and press enter Command setup mo...

Страница 136: ...s line connection quality If you set SNR margin in the field as 3 the SHDSL bis connection will drop and reconnect when the SNR margin is lower than 3 On the other hand the device will reduce the line...

Страница 137: ...the VC in the schedule table The ATM always sends a signle cell during the CBR connection s assigned cell slot VBR rt Varible Bit Rate real time is intended for real time applications such as compress...

Страница 138: ...ss Internet Add static MAC entry delete Delete static MAC entry modify Modify static MAC entry list Show static bridging table You can deny PCs to access Internet for security purpose After enter add...

Страница 139: ...ess enter The products support two types of VLAN 802 11q and Port Based The IEEE 802 1Q defines the operation of VLAN bridges that permit the definition operation and administration of VLAN topologies...

Страница 140: ...k and in routing mode access Command setup vlan link_mode 1 12 Access Trunk Message Please input the following information Port index 1 12 1 Port link type Tab select Trunk Access To view the VLAN tab...

Страница 141: ...You can review the static route entry by using list command To configure Routing Information Protocol RIP you can use rip command to setup the parameters Move the cursor to rip and press enter generi...

Страница 142: ...outside IP addresses and reverse the global IP addresses of incoming packets back into local IP addresses This ensure security since each outgoing or incoming request must go through a translation pro...

Страница 143: ...te five global IP address pool range via range command Command setup ip_share nat global range 1 5 ip 1 253 Message Please input the following information NAT global IP address range entry number 1 5...

Страница 144: ...e used by many hosts on the private network which is usually called a Local Area Network or LAN A PAT device transparently modifies IP packets as they pass through it The modifications make all the pa...

Страница 145: ...and can be used to configure the service name of the host server Begin and end command is used to setup the local server schedule to access You can view the fixed NAT mapping entry via list command 7...

Страница 146: ...termine the security level for special purpose environment and applications by configuring the DoS protection and defining an extra packet filter with higher priority than the default SPI filter Note...

Страница 147: ...ble Enable the packet filtering rule ON OFF Begin The schedule of beginning time End The schedule of ending time Action Configure action mode DENY PERMIT 7 12 11 3 DoS Protection DoS protection parame...

Страница 148: ...packet with identical source and destination addresses originating from your network IP Spoofing IP Spoofing is a method of masking the identity of an intrusion by making it appeared that the traffic...

Страница 149: ...ete Delete the IP QoS parameter Modify Modify the IP QoS parameter List View the IP QoS configuration When use the add command it will show the following protocol Configure protocol local_ip Configure...

Страница 150: ...ost IP list DHCP relay parameter List Show DHCP configuration The generic DHCP parameters can be configured via generic command active Trigger DHCP server function gateway Default gateway for DHCP cli...

Страница 151: ...of electronic communication Enter local host name via hostname command Move cursor to hostname and press enter Command setup hostname name Message Please input the following information Local hostnam...

Страница 152: ...61000 3 3 1995 A1 2001 Immunity EN 55024 1998 A1 2001 A2 2003 ESD EN 61000 4 2 2001 RS EN 61000 4 3 2002 EFT Burst EN 61000 4 4 1995 A1 2000 A2 2001 Surge EN 61000 4 5 2001 CS EN 61000 4 6 2001 Magne...

Отзывы: