Proroute GEM420 4G M2M Router
GEM420 User Manual
58
the packet frames that are received on a port. Administrator can further use a VLAN
switch to separate the VLAN trunk to different groups based on VLAN ID. Following is
an example. In SMB or a company, administrator schemes out 3 segments, Lobby &
Restaurant, Lab & Meeting Rooms and Office. In a Security VPN Gateway,
administrator can configure Lobby & Restaurant segment with VLAN ID 12. The
VLAN group is equipped with DHCP-3 server to construct a 192.168.12.x subnet. He
also configure Lab & Meeting Rooms segment with VLAN ID 11. The VLAN group is
equipped with DHCP-2 server to construct a 192.168.11.x subnet for Intranet only.
That is, any client host in VLAN 11 group can’t access the Internet. However, he
configure Office segment with VLAN ID 10. The VLAN group is equipped with
DHCP-1 server to construct a 192.168.10.x subnet. In this example, VLAN 10 and 12
groups can access the Internet as following diagram.
VLAN Group Access Control
Administrator can specify the Internet access right for all VLAN groups. He also can
configure which VLAN groups can communicate each other.
VLAN Group Internet Access
Administrator can specify members of one VLAN group to be able to access Internet
or not. Following is an example that VLAN groups of VID is 1 and 4 can access
Internet but the one with VID is 3 can’t. That is, visitors in Lobby and staffs in office
can access Internet. But ones in Lab can’t since security issue. Servers in Lab serve