background image

 

 
 
 
 
 
 
 

                    P-793H v2

 

 

 

G.SHDSL.bis  Bonded Broadband Gateway 

 

 
 
 
 
 
 
 
 
 
 
 
 
 
 

Support Notes

 

 

 
 
 
 
 
 
 
 
 
 
 
 

Version 3.70 

02/2010 

 

 
 
 
 
 
 
 
 
 
 
 
 

 

Содержание P-793H V2 -

Страница 1: ...P 793H v2 G SHDSL bis Bonded Broadband Gateway Support Notes Version 3 70 02 2010...

Страница 2: ...rs 9 16 How can I protect against IP spoofing attacks 9 Product FAQ 11 1 What isSHDSL SHDSL bis 11 2 How can I manage P 793H v2 11 3 What isthe default password for Web Configurator 11 4 What sthe dif...

Страница 3: ...nsof the DSL connector 19 7 What istriple play 19 Firewall FAQ 20 General 20 Configuration 23 Log and Alert 26 IPSec FAQ 28 VPN Overview 28 P 793H v2 VPN 32 Application Notes 38 General Application No...

Страница 4: ...ow to use P 793H v2 to build VPN Tunnel with another VPN Gateway Software 86 2 How to build a VPN between Secure Gateway with Dynamic WAN IP Address 92 3 Configure NAT for internal servers 94 4 VPN Ro...

Страница 5: ...onfigured to the following parameters VT100 terminal emulation 9600bps baud rate N81 data format No Parity 8 data bits 1 stop bit The default console port baud rate is 9600bps you can changeit to 1152...

Страница 6: ...r ROMFILE 4 Enter ATGO to restart the P 793H v2 6 How do I restore P 793H v2 configurationsby using TFTP client program via LAN 1 Use the TELNET client program in your PC to login to your P 793H v2 2...

Страница 7: ...al Internet are received by P 793H v2 the original IP source address and TCP UDP source port numbers are written into the destination fields of the packet since it is now moving in the opposite direct...

Страница 8: ...different ports sincethe servers share only one global IP But when you select Full Feature you can make multiple local servers mapping the same port or not on the LAN accessible from outside with mult...

Страница 9: ...the NAT for outside access Note if you want to map each server to one unique IGA please use the One to One mode The following table summarizes the five types NAT Type IP Mapping One to One ILA1 IGA1 M...

Страница 10: ...6 How can I protect against IP spoofing attacks The P 793H v2 s filter sets provide a means to protect against IP spoofing attacks The basic scheme is as follows For the input data filter Deny packets...

Страница 11: ...Type TCP IP Filter Rule Active Yes Destination IP Addr a b c d Destination IP Mask w x y z Action Matched Drop Action No Matched Forward Where a b c d is an IP address on your local network and w x y...

Страница 12: ...ent accounts for P 793H v2 Web Configurator Common User Account and Administrator Account By factory default the password for the two accounts are Common User Account user Administrator Account 1234 Y...

Страница 13: ...How to debug while DSL LED isoff Check the connection between the P 793H v2 s DSL port and the wall socket or remote devices If you use the back to back application check the service type and the Stan...

Страница 14: ...requires the user to determine a fixed bandwidthrequirement at the time the connection is set up so that the data can be sent in a steady stream CBR service is often used when transmitting fixed rate...

Страница 15: ...to connect to the ISP you are probably using PPPoE If you are simply connected to the Internet when you turn on your computer you probably are not You can also check your ISP or the information sheet...

Страница 16: ...he same IP address as yourhost dyndns org This feature is useful when there are multiple servers inside and you want users to be able to use things such as www yourhost dyndns org and still reachyour...

Страница 17: ...al network to be partitioned into multiple logical networks Stations on a logical network belong to one group called VLAN Group A station can belong to more than one group The stations on the same VLA...

Страница 18: ...nce cost and reduces loss from daily operation In addition P 793H v2 also performs backup functions by redirecting traffic to a specific gateway to ensure availability of the Internet connection DSL F...

Страница 19: ...2 back to back application by Y cable they will show the respective DSL line status 3 How doesthe P 793H v2 work on a noisy DSL Depending on the line quality the P 793H v2 uses Fall Back and Fall For...

Страница 20: ...e play More and more Telco ISPs are providing three kinds of services VoIP Video and Internet over one existing DSL connection The different services such as video VoIP and Internet access require dif...

Страница 21: ...ttacks such as Ping of Death SYN Flood LAND attack IP Spoofing etc It also uses stateful packet inspection to determine if an inbound connection is allowed through the firewall to the private LAN The...

Страница 22: ...yers from network layer up to the application layer 2 The P 793H v2 s firewall performs stateful inspection It takes into account the state of connections it handles so that for example a legitimate i...

Страница 23: ...attack exploits weakness in the reassemble of the IP packet fragments As data is transmitted through a network IP packets are often broken up into smaller chunks Each fragment looks like the original...

Страница 24: ...sumes all available bandwidth making communications impossible 12 What isIP Spoofing attack Many DoS attacks also use IP Spoofing as part of their attack IP Spoofing may be used to break into systems...

Страница 25: ...he IP address of the secured LAN host in Web Configurator Advanced Setup Advanced Remote MGNT Service Secured Client IP to allow special access to your P 793H v2 The default value in this field is 0 0...

Страница 26: ...e IP Remote trusted host Destination IP router WAN IP Service TCP 80 Action Forward TELNET Source IP Telnet Client host Destination IP router WAN IP Service TCP 23 Action Forward 2 You have disabled W...

Страница 27: ...WAN to LAN ACLsummary will look like as shown below Source IP FTP host Destination IP P 793H v2 s WAN IP Service FTP TCP 21 TCP 20 Action Forward 2 You have disabled FTP service in Menu 24 11 or in W...

Страница 28: ...s View Log The log keeps 128 entries the new entries will overwrite the old entries when the log has over 128 entries Before you can view firewall logs there are two steps you need to do 1 Enable log...

Страница 29: ...FAQ VPN Overview 1 What isVPN A VPN gives users a secure link to access corporate network over the Internet or other public or private networks without the expense of lease lines A secure VPN is a co...

Страница 30: ...pported in Windows NT and Windows 98 already For Windows 95 it needs to be upgraded by the Dial Up Networking 1 2 upgrade 5 What isL2TP Layer Two Tunneling Protocol L2TP is an extension of the Point t...

Страница 31: ...ec protocols AH and ESP can operate in either transport mode and tunnel mode 9 What isSA A Security Association SA is a contract between two parties indicating what security parameters such as keys an...

Страница 32: ...tionto make the decision Such additional information is what we call phase 1 ID In the IKE payload there are local and peer ID field to achieve this 14 What isFQDN FQDN Fully Qualified Domain Name IKE...

Страница 33: ...H v2 VPN support VPN vendors support a number of different authentication methods P 793H v2 VPN supports both SHA1 and MD5 AH provides authentication integrity and replay protection but not confidenti...

Страница 34: ...nges are reserved by internet standard for private LAN numberings behind NAT devices It is usually a static IP so that we can pre configure it in P 793H v2 for making VPN connections If it is a dynami...

Страница 35: ...FreeS WAN for Linux SSH Remote ISAKMP Testing Page http isakmp test ssh fi cgi bin nph isakmp test Windows 2000 IPSec 8 Is the host behind NAT allowed to use IPSec NAT Condition Supported IPSec Protoc...

Страница 36: ...nd a NAT router What do I need to know Some tips for this The NAT router must support to pass through IPSec protocol Only ESP tunnel mode is possible to work in NAT case In the NAT router is P 793H v2...

Страница 37: ...2 can support IPSec passthrough P 793H v2 series don t only support IPSec VPN gateway it can also be a NAT router supporting IPSec passthrough If the VPN connection is initiated from the security gate...

Страница 38: ...m SMT menu 24 8 You can get into SMT menu via either telnet or console connection 15 How do I use PTM Transfer Mode P 793H v2 supports ENET PPPOE and RFC1483 encapsulation Following original design P...

Страница 39: ...nection To connect your computer to the P 793H v2 s LAN port the computer must have an Ethernet adapter card installed For connecting a single computer to the P 793H v2 we use an Ethernet cable 2 TCP...

Страница 40: ...P 793H v2 as bridge mode We will use Web Configurator to guide you through the related menu 1 Configure P 793H v2 as bridge mode and configure Internet setup parameters in Web Configurator Advanced Se...

Страница 41: ...g P 793H v2 under Routing mode For most Internet users having multiple computers want to share an Internet account for Internet access they have to install an Internet sharing device like a router In...

Страница 42: ...correct Encapsulation type that your ISP supports For example RFC 1483 Multiplexing Select the correct Multiplexing type that your ISP supports For example LLC VPI VCI number Specify a VPI Virtual Pa...

Страница 43: ...or Advanced Setup Network LAN 3 Internet Accessscenarios 4 Wire Application 2 Wire Application Configuration Guide In WEB Configurator Network WAN Internet Connection there are three sets of settings...

Страница 44: ...port Notes Please set proper parameter for your Internet Access 4 Back to back scenarios 1 1 back to back 1 4 Wire Application 2 2 Wire Application 43 All contents copy right 2010 Zy XEL Communication...

Страница 45: ...s one LED When we use 1 2 back to back application by Y cable they will show the respective DSL line status 5 What isthe checklist for making a 1 1 Back to Back connection over P 793H v2 1 Make sure o...

Страница 46: ...v2s 3 Enter the remote IP following Remote ones take central one as gateway Note This application is realized via One Y cable On the Y cable there should be DSL1 and DSL2 printed on the offshoot phon...

Страница 47: ...v2 as a DHCP Relay via menu 3 2 as below Or via the following command in CLI Ip dhcp enif0 mode relay Ip dhcp enif0 relay server Server IP Address 8 SUA Notes Tested SUA NAT Applications e g Cu SeeMe...

Страница 48: ...internal server or client applications can be accessed by using the P 793H v2 s WAN IP Address SUA Supporting Table The following are the required Web Configurator Advanced Setup Network NAT Port For...

Страница 49: ...one VDOLive None Quake1 064 None Default client IP QuakeII2 305 None Default client IP QuakeIII1 05 beta None StartCraft 6112 client IP Quick Time 4 0 None pcAnywhere 8 0 None 5631 client IP 5632 clie...

Страница 50: ...only one Quake user will be allowed in this case Moreover when a Quake server is configured behind SUA P 793H v2 will not be able to provide information of that server on the internet 5 Quake II has t...

Страница 51: ...IP address and not be a DHCP client whose IP address potentially changes each time P 793H v2 is powered on In addition to the servers for specific services SUA supports a default server A service req...

Страница 52: ...ill in the service name and server IP Address press button Add 2 If add successfully the Web Configurator will display message Configuration updated successfully at the bottom You can see the port for...

Страница 53: ...connection with a tunnel server such as the Windows NT Server 4 0 Remote Access Server Windows Dial Up Networking uses the Internet standard Point to Point PPP to provide a secure optimized multiple...

Страница 54: ...Networking 1 2 upgrade This application note explains how to establish a PPTP connection with a remote private network in the P 793H v2 SUA case In ZyNOS all PPTP packets can be forwarded to the inter...

Страница 55: ...of the PPTP server WinNT server and the port number for PPTP as shown below Select service name as PPTP fill in the Server IP Address then press button Add When you have finished the above settings y...

Страница 56: ...ng the VPN server In the following example the IP address 140 113 1 225 is dynamically assigned by ISP You must enter this IP address in the VPN Server dialog box for reaching the PPTP server After th...

Страница 57: ...ddress Mapping Sets 1 in Web Configurator The other Address Mapping Sets 2 8 can only be configured in CLI Command Line Interface The NAT Server Set is a list of LAN side servers mapped to external po...

Страница 58: ...0 0 Global End IP This is the ending global IP address IGA N A NAT Server Sets The NAT Server Set is a list of LAN side servers mapped to external ports similar to the old SUA menu of before If you w...

Страница 59: ...d tosave it Step 3 You could click the button Edit on the rule to modify the Service name Server IP Address Start End Port The most often used port numbers are shown in the following table Please refe...

Страница 60: ...s case we do exactly as the figure use the convenient pre configured SUA Only set and also go to Web Configurator Advanced Setup Network NAT Port Forwarding tospecify the Internet Server behind the NA...

Страница 61: ...following way using4 NAT rules Rule 1 One to One type to map the FTP Server 1 with ILA1 192 168 1 10 to IGA1 200 0 0 1 Rule 2 One to One type to map the FTP Server 2 with ILA2 192 168 1 11 to IGA2 200...

Страница 62: ...in configuring Address Mapping Set 1 We can see there are 10 blank rule table that could be configured See the following setup for the four rules in our case Rule 1 Setup Select One to One type to map...

Страница 63: ...3 Menu Network NAT AddressMapping should look as follows now Step 3 Now weconfigure all other incoming traffic to go to our web server and mail server from Web Configurator Advanced Setup Network NAT...

Страница 64: ...mapping type is shown below We can also do this by configure threeOne to One mapping type rules 10 Using the Dynamic DNS DDNS What is DDNS The DDNS service an IP Registry provides a public central dat...

Страница 65: ...r i e www zyxel com tw is still usable The DDNS servers the P 793H v2supports currently is WWW DYNDNS ORG where you apply the DNS from and update the WAN IP to Setup the DDNS 1 Before configuring the...

Страница 66: ...ontrol additional system variables The ZyXEL s private MIB tree is shown in figure 3 For SNMP v1 operation ZyXEL permits one community string so that the router can belong to only one community and al...

Страница 67: ...the trap will be sent with the reason of restart before rebooting 1 For intentional reboot In some cases download new files CI command sys reboot reboot is done intentionally And traps with the messag...

Страница 68: ...om the NMS The default is public Set Community Enter the correct Set Community This Set Community must match the Set community requested from the NMS The default is public Trusted Host Enter the IP ad...

Страница 69: ...ish to send the syslog Log Facility Select from the 7 different local options The log facility lets you log the message in different server files Refer to your UNIX manual 13 Using IP Alias What isIP...

Страница 70: ...k LAN IP Alias There are three internal virtual LAN interfaces for the P 793H v2 to route the packets from to the three networks correctly They are enif0 for the major network enif0 0 for the IP alias...

Страница 71: ...up 1 Edit the first network in Web Configurator Advanced Setup Network LAN IP DHCP Setup by configuring the P 793H v2 s first LAN IP address Key Settings DHCP Setup If the P 793H v2 s DHCP server is e...

Страница 72: ...s applied to incoming packets on a per interface basis prior to the normal routing Network administrators can use IPPR todistribute traffic among multiple paths For example if a network has both the I...

Страница 73: ...arge packets The actions that canbe taken include routing the packet to a different gateway and hence the outgoing interface and the TOS and precedence fields in the IP header IPPR follows the existin...

Страница 74: ...ly at most 4 schedule sets in Remote Node The remote node configured with the schedule set could be Forced On Forced Down Enable Dial On Demand or Disable Dial On Demand on specified date and time How...

Страница 75: ...and they have priority For example if we program the sets as 1 2 3 4 in remote node then the set 1 will override set 2 3 4 set 2 will override 3 4 and so on We can apply the schedule to the remote nod...

Страница 76: ...0 0 to 239 255 255 255 Among them 224 0 0 1 is assigned to the permanent IP hosts group and 224 0 0 2 is assigned to the multicast routers group IGMP Internet Group Management Protocol is the protocol...

Страница 77: ...IP address in your network All of these are reasons why we need bandwidth management Using BWM Setp 1 Go to Web Configurator Advanced Setup Advanced Bandwidth MGMT Summary activate bandwidth manageme...

Страница 78: ...residuary bandw idth from Interface to the classes w ho need more bandw idth than configured amount Do not select this if you w ant to reserve bandw idth for traffic that does not match a bandw idth...

Страница 79: ...andw idth of this class at the configured value Please note that you should also disable Maximize Bandwidth Usage on the interface to meet the condition Service Select User defined SIP FTP or H 323 to...

Страница 80: ...ximum of 24 rules active for a single port The packet filter on P 793H v2 is configured in SMT menu 21 1 19 How could I configure triple play on P 793H v2 The common triple play scenario is as follows...

Страница 81: ...igure parameters in WEB Configuration Network WAN Wan Backup as below WAN Backup Setup settings Backup Type Select the method that theP 793H v2 uses to check the DSL connection Select DSL Link to have...

Страница 82: ...esponse from one of the IP addresses in the Check WAN IP Address field before timing out the request The WAN connection is considered down after the P 793H v2 times out the number of times specified i...

Страница 83: ...793H v2 Support Notes 21 How to deal with Triangle Route and Traffic redirect Traffic redirect scenario 1 Triangle route introduction 82 All contents copy right 2010 Zy XEL Communications Corporation...

Страница 84: ...out going through the P 793H v2 As a result the P 793H v2 resets the connection as the connection has not been acknowledged Triangle Route Problem 2 How to avoid triangle route 1 IP Aliasing The follo...

Страница 85: ...Traffic redirect LAN setup example 2 3 Allow firewall bypasstriangle route checking To resolve this conflict we add an option for users to allow disallow such Triangle Route topology in both CI comma...

Страница 86: ...ority the route has Note This field sets this router s priority among the three routes the P 793H v2 uses normal traffic redirect and dial backup If the three routes have the same metrics the priority...

Страница 87: ...e to Prestige Prestige can also talk to other VPN hardwards softwares The tested VPN hardwares are shown below Cisco 1720 Router IOS 12 2 2 XH IP ADSL FW IDS PLUS IPSEC 3DES NetScreen 5 ScreenOS 2 6 0...

Страница 88: ...have fixed IP addresses If one of VPN gateways uses dynamic IP we enter 0 0 0 0 as the secure gateway IP address In this case the VPN connection can only be initiated from dynamic side to fixed side t...

Страница 89: ...ct IPSec Key Mode to IKE Negotiation Mode to Main and Encapsulation Mode to Tunnel just the same as we will configure in Prestige B 5 Fill in the Local and Remote secure hosts information in the Local...

Страница 90: ...ve finished this field on Prestige A then when we configure Prestige B we should make it fit the following table Prestgie A Prestige B Local ID Type IP IP Content 0 0 0 0 0 0 0 1 Peer ID Type IP IP Co...

Страница 91: ...ou need to configure the same on Prestige B We don t do any advanced setup in the example Then we have finished the configuration on Prestige A Step 2 Setup Prestige B Similar to the settings for Pres...

Страница 92: ...On P 793H v2 Web Configurator Security VPN Monitor you can check every active IPSec connections The VPN Name Encapsulation and IPSec Algorithm will be shown in the Monitor Table If you can t see the...

Страница 93: ...c Log We can also view the log for IPSec and IKE connections for trouble shooting On P 793H v2 we can check the logs via Web Configurator or CLI The log menu is also useful for troubleshooting please...

Страница 94: ...case W2K won t capture the dynamic IP address automatically for you You have to obtain your dynamic IP address and then go back to IPSec configuration to setup your current IP address Prestige dynami...

Страница 95: ...ster DynDNS account from http www dyndns org or http dynupdate no ip com for both PrestigeA PrestigeB Step 2 In PrestigeA configure My IP as 0 0 0 0 and Secure Gateway as the dynamic domain name of Pr...

Страница 96: ...te Network 4 VPN Routing between Branch Office through Headquarter This page guides us how to setup VPN routing between branch offices through headquarter So that whenever branch officeA wants to talk...

Страница 97: ...ch office A to access both LAN segments of headquarter and branch office B Because the LAN segments of headquarter and branch office B are continuous we merge them into one single rule by including th...

Страница 98: ...ce B want to access systems behind branch office A and headquarter we have to specify these two segments in Remote section However if we include these two segments in one rule the LAN segment of branc...

Страница 99: ...r VPN Gateway 4 You can setup IKE phase 1 and phase 2 parameters by pressing Advanced button Please make sure that parameters you set in this menu match with all the parameters with thecorresponding V...

Страница 100: ...IP port destIP port There are two ways to dump the trace Online Trace display the trace real time on screen Offline Trace capture the tracefirst and display later The detailsfor capturing the trace in...

Страница 101: ...to capture the WAN packet by entering sys trcp channel mpoa00 bothway Enable the trace log by entering sys trcp sw on sys trcl sw on Display the brief trace online by entering sys trcd brief Display...

Страница 102: ...et0 bothway Enable the trace log by entering sys trcp sw on sys trcl sw on Wait for packet passing through the P 793H v2 over LAN Disable the trace log by entering sys trcp sw off sys trcl sw off Disp...

Страница 103: ...rminal Step 1 Initiate a hyper terminal connection from your PC suppose you connected to the LAN port of P 793H v2 Step 2 Click the properties to configure parameters to telnet to the P 793H v2 All co...

Страница 104: ...Step 3 So that after you invoke the relevant commands you could save the logs you ve captured 2 Firmware ConfigurationsUploading and Downloading using TFTP All contents copy right 2010 Zy XEL Communi...

Страница 105: ...mware into FLASH ROM and reboot itself An example The 192 168 1 1 is the IP address of the P 793H v2 The local file is the source file of the ZyNOS firmware that is available in your hard disk The rem...

Страница 106: ...transfering Using TFTP command on WindowsNT Step 1 TELNET to your P 793H v2 first before using TFTP command Step 2 Type the CI command sys stdio 0 to disable console idle timeout in Command Line Inter...

Страница 107: ...he Firmware and Configuration Files In addition to upload the firmware and configuration file via the console port and TFTP client youcan also upload the firmware andconfiguration files to the P 793H...

Страница 108: ...rator password in the FTP software Set the transfer type to Auto Detect or Binary Step 2 Press OK to ignore the Username prompt Step 3 To upload the firmware file we transfer the local ras file to ove...

Страница 109: ...otes the remote rom 0 file Step 4 The P 793H v2 reboots automatically after the uploading is finished Please do not power off the router at this moment All contents copy right 2010 Zy XEL Communicatio...

Страница 110: ...Shows the following commands and all major sub commands 2 exit Exit Subcommand To get the latest CI Command list The latest CI Command list is available in release note of every ZyXEL firmware release...

Страница 111: ...er Numbers Value in hex Protocol Name 0001 Padding Protocol 0003 to 001f reserved transparency inefficient 0021 Internet Protocol version 4 0023 OSI Network Layer 0025 Xerox NS IDP 0027 DECnet Phase I...

Страница 112: ...ession inefficient 0201 802 1d Hello Packets 0203 IBM Source Routing BPDU 0205 DEC LANBridge100 Spanning Tree 0207 Cisco Discovery Protocol Sastry 0209 Netcs Twin Routing Korfmacher 0231 Luxcom 0233 S...

Страница 113: ...rotocol ianp 8053 Encryption Control Protocol Meyer 8055 Individual Link Encryption Control Protocol Meyer 8057 IPv6 Control Protovol Hinden 806f Stampede Bridging Control Protocol 8073 MP Control Pro...

Страница 114: ...y are compression inefficient Protocol field values in the 0xxx to 3xxx range identify the network layer protocol of specific datagrams and values in the 8xxx to bxxx range identify datagrams belongin...

Страница 115: ...fic RFC2153 1 Maximum Receive Unit 2 Async Control Character Map 3 Authentication Protocol 4 Quality Protocol 5 Magic Number 6 DEPRECATED Quality Protocol 7 Protocol Field Compression 8 Address and Co...

Страница 116: ...onfigure Request packet the default value for that Configuration Option is assumed 1 Interface Token RFC2023 2 IPv6 Compression Protocol RFC2023 PPP ECP CONFIGURATION OPTION TYPES A one octet field is...

Страница 117: ...SDCP CONFIGURATION OPTIONS A one octet field is used in the Compression Control Protocol CCP PPP Serial Data Transport Protocol SDTP to indicate the option type RFC1963 SDCP Option Configuration Elem...

Страница 118: ...identifies the FCS used These are assigned as follows Bit FCS 1 Null FCS 2 CCITT 16 Bit FCS 4 CCITT 32 bit FCS PPP MULTILINK ENDPOINT DISCRIMINATOR CLASS The Point to Point Protocol PPP Link Control P...

Страница 119: ...ions whichare distinguished by an 8 bit Type field These Types are assigned as follows Type Configuration Option 1 IP Addresses deprecated RFC1332 2 IP Compression Protocol RFC1332 3 IP Address RFC133...

Страница 120: ...P Banyan Vines Control Protocol BVCP specifies a number of Configuration Options RFC1763 which are distinguished by an 8 bit Type field These Types are assigned as follows Type Configuration Option 1...

Страница 121: ...DDI with cannonical addresses PPP BRIDGING SPANNING TREE The Point to Point Protocol PPP Bridging Control Protocol BCP Spanning Tree Configuration Option contains an 8 bit Protocol field which identif...

Страница 122: ...582 6 Novell Demand SAP required RFC1582 7 Novell Triggered RIP required Edmonstone 8 Novell Triggered SAP required Edmonstone NBFCP Configuration Options NBFCP Configuration Options RFC 2097 allow mo...

Страница 123: ...Adoba 14 Defender Token AXENT Rosselli PPP VENDOR SPECIFIC OUI OPTIONS There are some provisions in some PPP message formats for vendor specific options to be identified by the Organisationally Uniqu...

Страница 124: ...3 tcp nicname usually to sri nic domain 53 tcp nameserve r name domain server domain 53 udp nameserver nameserver 53 tcp domain name domain server nameserver 53 udp domain mtp 57 tcp deprecated bootp...

Страница 125: ...p who 513 udp whod shell 514 tcp cmd no passwords used syslog 514 udp printer 515 tcp spooler line printer spooler talk 517 udp ntalk 518 udp efs 520 tcp for LucasFilm route 520 udp router routed time...

Страница 126: ...r userreg_server 753 udp Kerberos userreg server krb_prop 754 tcp Kerberos slave propagation erlogin 888 tcp Login and environment passing kpop 1109 tcp Pop with Kerberos phone 1167 udp ingreslock 152...

Страница 127: ...essage RFC792 Group Management RFC1112 3 GGP Gateway to Gateway RFC823 4 IP IP in IP encapsulation RFC2003 5 ST Stream RFC1190 IEN119 6 TCP Transmission Control RFC793 7 CBT CBT Ballardie 8 EGP Exteri...

Страница 128: ...otocol Presotto 41 IPv6 Ipv6 Deering 42 SDRP Source Demand Routing Protocol DXE1 43 IPv6 Route Routing Header for IPv6 Deering 44 IPv6 Frag Fragment Header for IPv6 Deering 45 IDRP Inter Domain Routin...

Страница 129: ...lar Gateway Protocol DGP ML109 87 TCF TCF GAL5 88 EIGRP EIGRP CISCO GXS 89 OSPFIGP OSPFIGP RFC1583 JTM4 90 Sprite RPC Sprite RPC Protocol SPRITE BXW 91 LARP Locus Address Resolution Protocol BXH 92 MT...

Страница 130: ...col Volpe 111 IPX in IP IPX in IP Lee 112 VRRP Virtual Router Redundancy Protocol Hinden Reliable Transport Protocol Speakman 0 hop protocol IANA 115 L2TP Layer Two Tunneling Protocol Aboba 116 254 Un...

Отзывы: