background image

 

P

ROSCEND 

6200

 

S

ERIES

 

 
 

G.SHDSL.

BIS

 

VPN

 

R

OUTER

 

 

 

 

 

 

 

U

SER 

M

ANUAL

 

V

ERSION 

1.00

Содержание 6200 SERIES

Страница 1: ...1 PROSCEND 6200 SERIES G SHDSL BIS VPN ROUTER USER MANUAL VERSION 1 00...

Страница 2: ...12 2 8 RESET BUTTON 12 2 9 PROTECTIVE EARTH FRAME GROUND TERMINAL 13 3 CONFIGURATION 14 3 1 CONFIGURATION METHODS 14 3 1 1 Installation 14 3 1 2 Web Configuration 15 3 1 3 Serial Console Configuratio...

Страница 3: ...8 DDNS 57 3 6 9 IGMP 58 3 7 SECURITY 59 3 7 1 Firewall 59 3 7 2 VPN 60 3 7 3 Filter 67 3 8 MANAGEMENT 71 3 8 1 SNTP 71 3 8 2 SNMP 73 3 8 3 TR 069 76 3 8 4 UPnP 77 3 8 5 Sys Log 78 3 8 6 Telnet 78 3 8...

Страница 4: ...4 3 11 2 Config Tool 88 3 11 3 Users 88 3 11 4 Ping 89 3 11 5 Trace Route 90 APPENDIX A TERMINOLOGY 92 APPENDIX B FAQ 100 B 1 802 1Q TAG BASED VLAN TEST CASES 100 B 2 PORT BASED VLAN 106...

Страница 5: ...ways on connection that DSL features PROSCEND 6200 series VPN routers provide advanced firewall with Stateful Packet Inspection SPI and Denial of Service DoS protection serving as a powerful firewall...

Страница 6: ...er SHDSL bis PPPoA and PPPoE support user authentication with PAP CHAP MS CHAP MS CHAPv2 SNMP management with SNMPv1 v2c v3 agent and MIB II Getting enhancements and new features via Internet software...

Страница 7: ...rough VPN PPTP L2TP pass through Virtual Server Network Protocol IPv4 ARP RARP TCP UDP ICMP DHCP Client Server Relay DNS Relay Proxy Dynamic DNS DDNS IGMP v1 v2 v3 IGMP Proxy IGMP Snooping SNTP and UP...

Страница 8: ...ark Up to 8 priority queues IP Precedence Alternation VPN IPSec RFC2411 up to 4 Tunnels DES 3DES AES MD5 SHA 1 IKE Manual Key ISAKMP RFC 2407 2408 4306 IKE v1 RFC 2409 4109 PSK L2TP PPTP Firewall SPI...

Страница 9: ...ort TR 069 WAN management protocol Physical Electrical Dimensions 18 7 x 3 3 x 14 5cm WxHxD Power 100 240VAC via power adapter Power Consumption 9 watts Max Temperature 0 45 C Humidity 0 95 RH non con...

Страница 10: ...6 1 1 4 4 A Ap pp pl li ic ca at ti io on ns s 1 1 4 4 1 1 V VP PN N A Ac cc ce es ss s 1 1 4 4 2 2 P PP PT TP P L L2 2T TP P A Ac cc ce es ss s...

Страница 11: ...3 On SHDSL bis line 3 connection is established Blink SHDSL bis line 3 handshake Transmit or received data over SHDSL bis link 3 LINK 4 On SHDSL bis line 4 connection is established Blink SHDSL bis li...

Страница 12: ...2VDC CONSOLE RJ 45 for system configuration and maintenance RST Reset button for reboot or load factory default LAN 1 2 3 4 10 100BaseT auto sensing and auto MDIX for LAN port RJ 45 USB USB ports for...

Страница 13: ...model Loop1 2 3 and 4 have been used Channel A Channel B Channel C Channel D 2 wire model 6200 2W 6200 2W U 2 wire mode Loop1 4 5 4 wire model 6200 4W 6200 4W U 2 wire mode 4 wire mode Loop1 4 5 Loop...

Страница 14: ...10 T 568A Straight Through Ethernet Cable T 568B Straight Through Ethernet Cable Both the T 568A and the T 568B standard Straight Through cables are been used...

Страница 15: ...the optimum Ethernet speed 10 100 Mbps and duplex mode full duplex or half duplex of the connected device The auto crossover auto MDI MDI X ports automatically works with a straight through or crossov...

Страница 16: ...ptor Inset the female end of power adaptor s cord into the power receptacle on the rear panel Connect the power adaptor to an appropriate power source 2 2 8 8 R Re es se et t B Bu ut tt to on n The re...

Страница 17: ...or terminal should be connected to the building protective earth bus The function of protective earth does not serve the purpose of providing protection against electrical shock but instead enhances...

Страница 18: ...st way possible Please follow the instructions carefully Step 1 Connect the power adapter to the port labeled DC IN on the rear panel of the VPN Router Step 2 Connect the Ethernet cable to LAN ports N...

Страница 19: ...Router provides a browser interface that allows you to configure and manage this device After you set up your IP address for the VPN Router you can access the VPN Router s Web interface applications...

Страница 20: ...VPN Router s console port Start your terminal access program by terminal emulation program or Hyper Terminal and configure its communication parameters to match the following default characteristics o...

Страница 21: ...168 0 1 which is the management IP address of Proscend 6200 series VPN router and wait for the login page prompts up Then key in the user name and the password once the login page shows The login page...

Страница 22: ...type http 192 168 0 1 in the address bar of the browser you just open Step 2 The default IP address and sub net mask of the management port of VPN Router are 192 168 0 1 and 255 255 255 0 Step 3 If D...

Страница 23: ...Password Confirm Password PPP Connection Type PPPoA NAT PPPoE PPPoE NAT Primary DNS Secondary DNS DHCP mode Disable Server Relay SHDSL bis Mode STU R STU C WAN ENCAP WAN VPI VCI Default Gateway Networ...

Страница 24: ...Location ISP Manufacture Dial Number APN Keep alive Interval Keep alive Server DNS Primary Secondary DHCP Mode Disable Server Relay DHCP Server Mode Subnet Netmask IP Range Gateway DNS Lease Time DHCP...

Страница 25: ...etmask Gateway Interface QoS Mode Traffic Classify Mode Class ID Protocol Src IP Src Netmask Src Port Dst IP Dst Netmask Dst Port 802 1P Class ID IP DSCP DSCP Class ID Class Shaping Mark Mode DSCP TOS...

Страница 26: ...xy Snooping Security Firewall Router Mode Mode Bridge Mode Not available VPN Router Mode IPSEC Mode Name WAN Perfect Forward Secrecy Local Subnet Local Netmask Remote Public IP Remote Local LAN Subnet...

Страница 27: ...ry 1 16 Mode MAC Action Management SNTP Sync With PC SNTP Mode Time Server Time Zone SNMP SNMPv3 Mode V3 User Name V3 Auth Password V3 Priv Password V3 Auth Mode V3 Auth Type V3 Priv Type V3 Access Tr...

Страница 28: ...Web Refresh Time Service Port Show Information Hardware MCSV Software MCSV Software Version DSL Chip Name DSL Phy Firmware Version DSL IDC Firmware Version MAC Serial No Present Time System Uptime Sys...

Страница 29: ...25 Ping IP Address Size Count Update Trace Route Host name or IP Packet Datagram Update Interval...

Страница 30: ...u to connect to the Internet which include all the technical settings VCI encapsulation etc and the VPN router also connects to the ISP with your username and password You can basically just connect t...

Страница 31: ...n this VPN router to be a router device Once System Mode is set to Router more setups will be shown as the screen shot above Fill up WAN port information for the VPN router as the router mode WAN Sect...

Страница 32: ...osed hence the information of WAN IP and WAN Netmask will not be effective EoA EoA NAT IPoA IPoA NAT PPPoA PPPoA NAT PPPoE PPPoE NAT DHCP Mode Choose whether DHCP mode should be Disable Server or Rela...

Страница 33: ...nnection type can be set as either Always on or On demand 3 3 4 4 2 2 S SH HD DS SL L b bi is s m mo od de e There are two SHDSL bis modes STU C and STU R STU C means the terminal of central office CO...

Страница 34: ...ubnet mask in the circled area 3 3 4 4 4 4 W WA AN N E EN NC CA AP P For encapsulation type VC Mux Virtual Circuit Multiplexing and LLC Logical Link Control are available VC MUX and LLC are two mechan...

Страница 35: ...D De ef fa au ul lt t G Ga at te ew wa ay y In quick setup process fill up the default gateway IP address 3 3 4 4 7 7 D DN NS S Two sets of DNS addresses can be stored in DNS section primary DNS and...

Страница 36: ...3 3 4 4 8 8 S Su ub bm mi it t Click on Submit button to save all settings After saving all settings the following screen shots will be shown to confirm the configurations For bridge mode For router m...

Страница 37: ...33 Click on Apply to activate these configurations The VPN router will be rebooted as the following screen shot...

Страница 38: ...L function allows you to change SHDSL parameters 1 Mode You are able to change your VPN router s mode to STU R or STU C in here 2 Pair Mode For Pair Mode parameter you are able to choose how many wire...

Страница 39: ...lly and this option is only available when the Annex type is Annex A F or Annex B G SHDSL bis VPN Router Annex A Annex B Annex A F Annex B G Auto TCPAM 16 TCPAM 32 5 Line Probe You are able to choose...

Страница 40: ...e completed Please remember to reboot your VPN router after any changes are made 3 3 5 5 2 2 1 1 L LA AN N You are able to change LAN configurations in Interfaces function Once you change the settings...

Страница 41: ...lation type and VPI VCI information Then setup QoS class UBR CBR VBR RT and VBR NRT QoS PCR Peak Cell Rate and QoS SCR Substained Cell Rate information For Bridge mode Protocol provides two options Di...

Страница 42: ...se PPPoA or PPPoE type for protocol parameter four more information fields will be needed 3 3 5 5 2 2 3 3 D De ef fa au ul lt t G Ga at te ew wa ay y Default gateway information can be changed in Inte...

Страница 43: ...Ethernet cable from the any LAN ports 1 4 on VPN router to the Ethernet socket on the PC Step 3 Insert SIM card into 3G 3 5G modem card and connect the modem card with one of USB ports of VPN router...

Страница 44: ...Internet please check with your ISP as to the type of connection it requires 3 3 5 5 4 4 D DN NS S DNS function maintains two sets of external DNS addresses One is for the primary usage and the other...

Страница 45: ...s to manage centrally and assigns IP addresses in an organization s network automatically 3 3 5 5 5 5 1 1 M Mo od de e DHCP feature provides three DHCP modes Disable Server and Relay 1 Disable Disable...

Страница 46: ...First please make sure you set Mode to Server Then choose a DHCP server there are five DHCP servers available in this configuration system and configure its details by click on the number The followin...

Страница 47: ...43 3 3 5 5 5 5 3 3 D DH HC CP P R Re el la ay y Please make sure choose Relay mode first Then please provide the information of DHCP server IP address and assign a WAN port...

Страница 48: ...want to enable NAT and click on Enable button of Mode section Please configure the circled section in the following screen shot There are sixteen NAT rules can be stored in 6200 VPN router configurati...

Страница 49: ...en disconnection 3 3 6 6 1 1 S ST TP P STP Spanning Tree Protocol defined in the IEEE 802 1D is a link management protocol that provides path redundancy while preventing undesirable loops in the netwo...

Страница 50: ...e not in the same group When properly configured VLAN prevents one subscriber from accessing the network resources of another on the same LAN In addition VLAN also increases network performance by lim...

Страница 51: ...ort you need and its link type un tag or tag Then click on Apply to set your VPN router with 802 1Q Tag Based VLAN policy 3 3 6 6 2 2 2 2 P Po or rt t B Ba as se ed d V VL LA AN N Click on Port Based...

Страница 52: ...have a tight IP mask this offers you reliable security Disadvantages of Static Routes In order to make changes in the network you have to manually configure the route When network outage is experience...

Страница 53: ...ngested This can cause a reduction in network performance and mark the network inadequate for time critical application such as video on demand QoS is to decide the priorities to pass though VPN Route...

Страница 54: ...50 3 3 6 6 4 4 2 2 T Tr ra af ff fi ic c C Cl la as ss si if fy y Click on the number to configure each entry s details...

Страница 55: ...show the screen shot above Click on the number of an entry to configure a queue s class ID User priority is giving eight 2 3 8 priority levels class IDs Priority Level Traffic Type 0 default Best Effo...

Страница 56: ...nt priorities of forwarding Resources can then be allocated according to the DSCP values and the configured policies Click on IP DSCP tag and the following screen shot will be shown Click on the numbe...

Страница 57: ...ange the configurations Traffic policing can propagates bursts When the traffic rate reaches the configured maximum rate excess traffic is dropped or remarked The result is an output rate that appears...

Страница 58: ...d as an IGP interior gateway protocol RIP function can be defined by the following parts 1 Mode To set disable RIP mode or enable it 2 RIP Version To support V1 RFC 1058 and V2 RFC 2453 3 Port Mode an...

Страница 59: ...ur ISP This address should be static to make it easier for Internet users to connect to your Servers Once configured anyone on the Internet can connect your virtual servers First choose Disable or Ena...

Страница 60: ...rpose of a DMZ is to add an additional layer of security to an organization s LAN Local Area Network In DMZ feature three parameters needed to build up a DMZ function for a WAN port 1 Mode Choose Disa...

Страница 61: ...configured hostnames addresses or other information 1 Mode to disable or enable DDNS function 2 Provider 6200 VPN Router provides three DNS name service providers Please choose a provider from the fol...

Страница 62: ...works by IGMP frame forwarding VPN Router s IGMP proxy supports IGMP version 2 RFC2236 IGMP proxy works in router mode Layer 3 in the other hand IGMP snooping works in bridge mode Layer 2 When IGMP fu...

Страница 63: ...re ew wa al ll l A firewall is a set of related programs that protects the resources of a private network from other networks It prevents hackers to access its own private data resource accidentally...

Страница 64: ...is only available in Router mode 3 3 7 7 2 2 1 1 I IP PS SE EC C IPSEC is a near ubiquitous VPN security standard designed for use with TCP IP networks It works at the packet level and authenticates...

Страница 65: ...ort to apply this policy 4 Perfect Forward Secrecy Perfect forward secrecy is the property that ensures a session key derived from a set of long term public and private keys will not be compromised if...

Страница 66: ...24 192 168 0 0 24 Remote Router IP 69 1 121 3 69 1 121 30 IKE Pre shared Key 12345678 12345678 VPN Connection Type Tunnel mode Tunnel mode Security Algorithm ESP MD5 with AES ESP MD5 with AES Both of...

Страница 67: ...ncryption protocol that it passes within the tunnel to provide privacy L2TP configuration parameters 1 Mode to disable or enable L2TP policy 2 Authentication choose authentication type PAP CHAP MS CHA...

Страница 68: ...The routers are installed in the head office and branch office accordingly Example Configuring L2TP LAN to LAN VPN Connection Both office LAN networks must in different subnet with LAN to LAN applica...

Страница 69: ...n there are three basic parameters to setup 1 Mode to enable or disable PPTP feature 2 Authentication four authentication modes can be chosen PAP CHAP MS CHAP and MS PAP 3 Virtual IP In addition you a...

Страница 70: ...h LAN to LAN application Configuring PPTP VPN in the Head Office The IP address 192 168 1 254 will be assigned to the router located in the branch office Please make sure this IP is not used in the he...

Страница 71: ...nd MAC Filter 3 3 7 7 3 3 1 1 I IP P f fi il lt te er r IP Filter allows users to filter packets by IP address Two sections are in IP Filter feature The first section includes Mode which allows user t...

Страница 72: ...ffic to from particular IP address Selecting the Subnet Mask of the IP address range you wish to allow block the traffic to or form set IP address and Subnet Mask to 0 0 0 0 to inactive the Address Fi...

Страница 73: ...N A H 323 TCP 1720 1720 T 120 TCP 1503 1503 SSH TCP 22 22 NTP SNTP UDP 123 123 HTTP HTTP Proxy TCP 8080 8080 HTTPS TCP 443 443 ICQ TCP 5190 5190 MSN 1863 TCP 1863 1863 MSN 7001 UDP 7001 7001 MSB vide...

Страница 74: ...network access to specific devices through the use of black lists and white lists In MAC Filter page you need to provide the following information in order to allow the VPN router to activate MAC filt...

Страница 75: ...heir filing or operations Without time synchronization these system s clocks vary and cause the failure of firewall packet filtering schedule processes compromised security or virtual server working i...

Страница 76: ...TP P SNTP features allow you to synchronize the time with the time server you provided In order to make this feature works you need to provide the following parameters 1 Mode to enable or disable thi...

Страница 77: ...statistics set configuration parameters and monitor network events SNMP communications can occur over the LAN or WAN connection Three SNMP methods are available in SNMP function 1 General 2 SNMPv3 and...

Страница 78: ...of Access Click Save button to finish this configuration section 3 3 8 8 2 2 2 2 S SN NM MP Pv v3 3 SNMPv3 feature lets you to fill up the detail information such as password for SNMPv3 function by cl...

Страница 79: ...3 T Tr ra ap p With Trap feature the VPN router is able to support SNMP Trap function You are able to disable or enable this feature by click on the radio buttons of Mode Then if you would like to mo...

Страница 80: ...on between CPE customer premises equipment and ACS Auto Configuration Servers Using TR 069 the terminals can get in contact with the ACS Auto Configuration Servers and establish the configuration auto...

Страница 81: ...ion Request Port 10 Connection Request Username the username used to authenticate an ACS making a Connection Request to the CPE 11 Connection Request Password the password used to authenticate an ACS...

Страница 82: ...n Enable button to send logs to a remote server 2 Remote Server Address this allows you to send logs to different files in the syslog server 3 Remote Server Port to specify a UDP port number to which...

Страница 83: ...a Telnet client you can use in an SSH client The only difference is that the communication is made via encrypted channels to and from your VPN Router In SSH function you are able to change the default...

Страница 84: ...80 2 seconds 2 Service Port the default port number is 80 You are able to change this port number to a new one and please make sure you login with this new port number next time...

Страница 85: ...feature shows the general system information such as hardware and software MCSV the Manufacture s Concurrent Software Version software version etc Note please include a screen shot of this page when...

Страница 86: ...uter is on 3 3 9 9 2 2 S Sy ys s L Lo og g Sys Log feature shows all of system logs 3 3 9 9 3 3 S Sc cr ri ip pt t Script presents the VPN router s system setups in script manner Clicking on Export bu...

Страница 87: ...83 3 3 1 10 0 S St ta at tu us s Status section provides five features 1 SHDSL 2 WAN 3 Route Table 4 Interfaces 5 STP 3 3 1 10 0 1 1 S SH HD DS SL L For 2 wire models For 4 wire models...

Страница 88: ...uter have connected to remote side it can also show the performance information of remote side Click Clear CRC button will clear the CRC error count 3 3 1 10 0 2 2 W WA AN N WAN feature presents all i...

Страница 89: ...IP address the routing table additionally stores a network mask and other data that specifies the destination IP address ranges that remote device will accept 3 3 1 10 0 4 4 I In nt te er rf fa ac ce...

Страница 90: ...kets on this port OutOctets The field shows the number of transmitted bytes on this port OutPactets The field shows the number of transmitted packets on this port InDrops The field shows the discarded...

Страница 91: ...n 1 Upgrade 2 Config Tool 3 Users 4 Ping 5 Trace Route 3 3 1 11 1 1 1 U Up pg gr ra ad de e Upgrade features allows user to upgrade firmware Click on Browser button and browse to the file you wish to...

Страница 92: ...he VPN router s configuration from a selected file You are able to choose which function you will do from the drop down menu of Mode and click on Apply button to start the process 3 3 1 11 1 3 3 U Us...

Страница 93: ...determines whether your VPN router can communicate with another computer or other web sites over the network Then if network communication is established ping tests also determine the connection laten...

Страница 94: ...ber default is 3 4 Update Updated time default is 2 Once you click on Ping you will see the following screen shot 3 3 1 11 1 5 5 T Tr ra ac ce e R Ro ou ut te e The trace route command traces the netw...

Страница 95: ...91 2 Packet Datagram the packet type UDP or IGMP 3 Update Interval for the refresh interval Once you click on Trace Route button you will see the following screen shot...

Страница 96: ...e table The ATM always sends a single cell during the CBR connection s assigned cell slot CFI Canonical Format Indicator CFI is always set to zero for Ethernet switches CFI is used for compatibility r...

Страница 97: ...s worldwide DSCP Differentiated Service or DiffServ DSCP is a computer networking architecture that specifies a simple scalable and coarse grained mechanism for classifying managing network traffic an...

Страница 98: ...ons In addition to allow these hosts to communicate on the same ATM networks IP packets must be tuned somewhat AS the bearer network of IP services ATM provides high speed point to point connections w...

Страница 99: ...capsulated within an Ethernet frame or ATM frame PPPoE Point to Point Protocol over Ethernet PVID Port VID PVID is an untagged member from 1 to 4094 of default VLAN QoS Quality of Service In the field...

Страница 100: ...net Engineering Task Force IETF It consists of a set of standards for network management including an application layer protocol a database schema and a set of data objects 1 SNTP Simple Network Time...

Страница 101: ...e reach adaptive potential offering improved performance and enhanced spectral compatibility with ADSL when compared to today s traditional 2B1Q SDSL offerings ToS Type of Service The Type of Service...

Страница 102: ...R rt Variable Bit Rate real time VBR rt is intended for real time applications such as compressed voice over IP and video conferencing that require tightly constrained delays and delay variation VBR r...

Страница 103: ...cure access to their organization s network It aims to avoid an expensive system of owned or leased lines that can be used by only one organization The goal of a VPN is to provide the organization wit...

Страница 104: ...LA AN N T Te es st t C Ca as se es s Choose MGMT LAN1 and WAN1 for entry 1 as one group for all configurations Configuration 1 PVID Link Type LAN1 20 Un tag WAN1 20 Tag VID 1 Case 1 Ingress Port LAN1...

Страница 105: ...port Case 3 Ingress Port LAN1 un tag Egress Port WAN1 tag Incoming Packet with VID 30 6200 VPN Router WAN1 LAN1 VID 30 PDU The packet will be dropped since the VID 30 is not matched with the VID 1 of...

Страница 106: ...102 Case 5 Ingress Port WAN1 tag Egress Port LAN1 un tag Incoming packet with VID 1 6200 VPN Router LAN1 WAN1 VID 1 PDU PDU The VID will be removed and the packet will be forwarded...

Страница 107: ...Link Type LAN1 20 Un tag WAN1 30 Tag VID 10 Case 1 Ingress Port LAN1 Un tag Egress Port WAN1 Tag Incoming Packet with no VID 6200 VPN Router WAN1 LAN1 PDU The packet is dropped because the VID is not...

Страница 108: ...Un tag Egress Port WAN1 Tag Incoming Packet with VID 30 6200 VPN Router WAN1 LAN1 VID 30 PDU The packet is dropped because the packet s VID 30 is not matched with WAN VID 10 Case 4 Ingress Port WAN1...

Страница 109: ...N Router LAN1 WAN1 VID 30 PDU The packet is dropped because the packet s VID 30 is not matched with VID 10 Case 6 Ingress Port WAN1 Tag Egress Port LAN1 Un tag Incoming Packet with VID 10 6200 VPN Rou...

Страница 110: ...ot send to or receive from devices in another VLAN For example The default setting is all ports connected which means all ports can communicate with each other That is there are no virtual LANs The op...

Страница 111: ...ding to the DSCP values and the configured policies The following is an illustration about how the bits are used in DSCP field Bit 0 Bit 1 Bit 2 Precedence Usage 1 1 1 7 Stays the same link layer and...

Страница 112: ...d 2 define the class bits 3 and 4 specify the drop probability bit 5 is always 0 Class 1 Class 2 Class 3 Class 4 Low Drop 001010 AF11 DSCP 10 010010 AF21 DSCP 18 011010 AF31 DSCP 26 100010 AF41 DSCP 3...

Страница 113: ...dcast TV live events Low Latency Data AF21 AF22 AF23 010010 18 010100 20 010110 22 Transactional applications database access interactive data applications High Throughput Data AF11 AF12 AF13 001010 1...

Отзывы: