Home
        User Manual
         Contents
1.           24 Hour Format     Everyday Sun Mon Tue Wed Thu Fri Sat    b   Click  Add New Rule  under  Access Rule  page  Select  Deny  in  Action  under the  Service     rule setting  followed by the selection of  All Traffic  TCP amp UDP 1 65535   from  the service  and select   Any  for Interface   Any  for source IP address  users with relevant needs may select either  Single  or   Range  to block any QQLive login by using one single IP or IP range   followed by the selection of   Single  of the  Dest  IP and enter the IP address as 121 14 75 155  for the QQLive Server  note that  there are more than one IP address for QQLive server  Repeated addition may be needed   Lastly  select   Always  under the Scheduling setting so that the QQLive Login Time can be set   If necessary  specific    time setting may be undertaken   Click  Apply  to move to the next step        2i    your future life    Multi WAN QoS Router    c   Input the following IP address in Dest  IP with repeat operation   121 14 75 115  60 28 234 117  60 28 235 119  222 28 155 17  QQ LiveVersion   QQ Live 2008  7 0 401 7 0     Tested on  2008 07 29    After repeated addition  users may see the links to the QQLive Server blocked  Click  Apply  to block QQLive    video broadcast     28    your future life    Multi WAN QoS Router     4  ARP Virus Attack Prevention    1  ARP Issue and Information    Recently  many cyber cafes in China experienced disconnection  partially or totally  for a short period of  time  but 
2.          EnabledLine Dropped Scheduling  Line Dropped Period   from oml     to o    24 Hour Format     Line Dropped Scheduling   minutes ahead line dropped to start new session  oe   transferring    Backup Interface         WAN IP address Input the available static IP address issued by ISP     Subnet Mask Input the subnet mask of the static IP address issued by ISP  such as     Issued eight static IP addresses  255 255 255 248    Issued 16 static IP addresses  255 255 255 240    Default Gateway Input the default gateway issued by ISP  For ADSL users  it is usually an ATU R    IP address  As for optical fiber users  please input the optical fiber switching IP        23    your future life    DNS Server    Enable  Line Dropped  Scheduling    Line Dropped    Period    Line Dropped  Scheduling    Backup Interface    Multi WAN QoS Router    Input the DNS IP address issued by ISP  At least one IP group should be input     The maximum acceptable is two IP groups     The WAN disconnection schedule will be activated by checking this option  In  some areas  there is a time limitation for WAN connection service  For example   the optical fiber service will be disconnected from 0 00 am to 6 00 am  Although  there is a standby system in the device  at the moment of WAN disconnection   all the external connections that go through this WAN will be disconnected too   Only after the disconnected lines are reconnected can they go through the  standby system to connect with the Internet  Theref
3.        ia       GINO    your future life    Multi WAN QoS Router  2x100Mbps WAN   4x100Mbps Switch LAN   WAN2 DMZ    Fully Integrated SMB Solution    English User   s Manual          your future life    Multi WAN QoS Router    Product Manual Using Permit Agreement     Product Manual  hereafter the  Manual   Using Permit Agreement  hereafter the  Agreement  is the using  permit of the Manual  and the relevant rights and obligations between the users and Qno Technology Inc   hereafter  Qno    and is the exclusion to remit or limit the liability of Qno  The users who obtain the file of this    manual directly or indirectly  and users who use the relevant services  must obey this Agreement     Important Notice  Qno would like to remind the users to read the clauses of the  Agreement  before  downloading and reading this Manual  Unless you accept the clauses of this  Agreement   please return this  Manual and relevant services  The downloading or reading of this Manual is regarded as accepting this     Agreement  and the restriction of clauses in this  Agreement       1  Statement of Intellectual Property   Any text and corresponding combination  diagram  interface design  printing materials or electronic file are  protected by copyright of our country  clauses of international copyright and other regulations of intellectual  property  When the user copies the  Manual   this statement of intellectual property must also be copied and    indicated  Otherwise  Qno regards it as tort 
4.     Go to website of your DNS service provider to modify your own DNS Host IP  as the following figure   DNS REME  EMRTEARS   HSDNS sete DNS  gt  DNS EE P       NSH C EMR  a Me      retabccomw fioi    rezatccomw food  S      rs  a    b    a LEES ERE RT   RBI      Choose DNS mode  and then fill in the Host name and corresponding IP address of WAN1 and          WAN2  Press    Finish    button  the setting will be effective in 24 hours   Attention     Please follow your ISP to modify Host IP assignment if your upper level isn   t TWNIC  If your DNS    agent is other ISP  please refer to the Web configuration provided by your ISP      5  Configure Firewall Router Domain Name       119    ad    your future life    Multi WAN QoS Router    Enabled Inbound Load Balance    7200      Domain Name  Input the Domain Name which is applied before  The domain name will be shown in    following configuration automatically without entering again              Time To Live    Time To Live  the abbreviation is TTL  is time interval of DNS inquiring  second       0 65535   Too long interval will affect refresh time  Shorter time will increase system   s        loading  but the effect of Inbound Load Balance will be more correct  You can adjust       Administrator  Enter administrator   s E mail address  e g  test abc com tw        6  DNS Server Settings  Add or Modify NS Record   NS Record   NS Record is the record of DNS server to assign which DNS server translates the domain name      DNS Server
5.     to cancel the modification  This only works before       Apply    is clicked     After the configuration is completed  in the China Netcom Policy window users can select WANs in    combination to connect with Netcom     Import Strategy     A division of traffic policy can be defined by users too  In the    Import Strategy    window  select the WAN or  WAN group  ex  WAN 1  to be assigned and click the    Import IP Range    button  the dialogue box for document  importation will be displayed accordingly  A policy document is an editable text document  It may contain a  destination IP users designated  After the path for document importation has been selected  click    Import      and then at the bottom of the configuration window click    Apply     The device will then dispatch the traffic to the    assigned destination IP through the WAN  ex  WAN 1  or WAN grouping users designated to the Internet        2 China Netcom  i Self defined Strategy 1       Self defined Strategy 2    ae      To build a policy document users can use a text based editor  such as Notepad  which is included with  Windows system  Follow the text format in the figure below to key in the destination IP addresses users want  to assign  For example  if the destination IP address range users want to designate is 140 115 1 1    140 115 1 255  key in 140 115 1 1   140 115 1 255 in Notepad  The next destination IP address range should  be keyed in the next line  Attention  Even if only one destination IP ad
6.    Device IP Address   ho   fio   fio   fa      Therefore  DCHP DNS IP address must be 10 10 10 1 to make DNS local database in effect        DNS        3  After enabling DNS local database  if there is no host domain names in the list  the router will still use ISP    DNS server or internal DNS server for lookup     Test if DNS local database is effective     Assumed tw yahoo com IP address is 10 10 10 199  as the following figure     62    N  ONE    your future life       Multi WAN QoS Router       DNS Local Database    Host Domain Name   Exc www google com   IP Address   ho  io  jio ftg9      Update this Entry    www jay com   gt  111 122 43 25  Aw   gt  138 145 353 278      tw yahoo com   gt  10 10 10 199       Delete selected item     1  System Tool   gt  Diagnostic   gt  DNS Name Lookup     DNS Name Lookup Ping  Ping host or IP address   Po   2  Enter tw yahoo com for lookup        DNS Name Lookup    Ping     3  The IP is 10 10 10 199  confirming the corresponding IP in DNS local database        DNS Name Lookup      Ping       Ping host or IP address      tr yehoo comp    Status  140 10 10 199          63    ONO    your future life    Multi WAN QoS Router    7 5 IP  amp  MAC Binding    Administrators can apply IP  amp  MAC Binding function to make sure that users can not add extra PCs for  Internet access or change private IP addresses     IP DHCP  DHCP Setup    DHCP Status          IP amp MAC binding    Show new IP user       staticiP      J  l    MACAddress           
7.    Enable  Line Dropped  Scheduling    Line Dropped Period    Line Dropped  Scheduling    Backup Interface    Multi WAN QoS Router    Input the DNS IP address set by ISP  At least one IP group should be  input  The maximum acceptable is two IP groups    Input the available IP range issued by ISP  If ISP issued two  discontinuous IP address ranges  users can input them into Internal    LAN IP Range 1 and Internal LAN IP Range 2 respectively     The WAN disconnection schedule will be activated by checking this  option  In some areas  there is a time limitation for WAN connection  service  For example  the optical fiber service will be disconnected  from 0 00 am to 6 00 am  Although there is a standby system in the  device  at the moment of WAN disconnection  all the external  connections that go through this WAN will be disconnected too  Only  after the disconnected lines are reconnected can they go through the  standby system to connect with the Internet  Therefore  to avoid a  huge number of disconnection  users can activate this function to  arrange new connections to be made through another WAN to the  Internet  In this way  the effect of any disconnection can be    minimized   Input the time rule for disconnection of this WAN service     Input how long the WAN service may be disconnected before the  newly added connections should go through another WAN to connect    with the Internet     Select another WAN port as link backup when port binding is    configured  Users shoul
8.   80238023   TELNET SSL  TCF 992992    DHCP  UDF 67671  L2TP  UDP 17017 1701  PPIP  TCP 1723  1723   IPSec  UDP  500 500   ICPLICP  135    UDP  UDP 135  1   TCP TCP 445  44 hal    c3          Uelets selected saryice    b  Use the  Access Rule  in the firewall and set to block these three ports     25    ONO    your future life    Multi WAN QoS Router       Services          Scheduling    L IE Jol     2  Hour eorman    Everyday Sun Mon Tue Wed Thu       Use the same method to add UDP  UDP135 139  and TCP  445 445  Ports     c  Enhance the priority level of these three to the highest        Jump to 12 Page 5   entries per page    n oo Tems t   w   w aas   UDP  136  Cra eo       ee  om reno     oy  ow  oe a                 26     gt  gt  i    your future life    Multi WAN QoS Router     3  Block QQLive Video Broadcast Setting    QQLive Video broadcast software is a stream media broadcast software  Many clients are bothered by  the same problem  When several users apply QQLive Video broadcast software  a greater share of the  bandwidth is occupied  thus overloading the device  Therefore  the device responds more slowly or is  paralyzed  If the login onto the QQLive Server is blocked  the issue can be resolved  The following relates to    Qno products and provides users with solutions by introducing users how to set up the device     a   Log into the device web  based UI  and enter    Firewall   gt  Access Rule           Services          Scheduling    pty this ute            to  
9.   9 2 1 Add New Access RUle        ee seeseceesccnscensessscseesscesscessesnssessnsesnseenscenssensesscseceseneeeseonssensseneenes 96   ys  A E E T E E E E E E ee E eee ee 98   PAW ANC CCU CU ON si cases race inss S 103   10 1 DMZ Host  Port Range Forwarding ciosascccecsanctasiustnan decwsdabalanancedenssctadsvsiesndecendebadiaaiosuessnuodaldneandeusencewavesten tae  103  TO Te MEY EZ ROS  a gsagroaetcctartctace E E E oc beetle ieua E obi biased E E 103  1O22 Port Rante OG Wal MNS ceniris onai nea EE cod potas ide aanaded moe idi bec bled pened E ted nedactueaiee 103   ITZ IP OP e a E E E E E 107   OSR ODS ea saaisnaseaeioonbne yer seada ul aeantdlnadancecehooosesaadessesnasapateendnmeneectutes 108  10 3 1 Dynamic FR OU GG easy sconicageantencunaesexanececaiduisdeinenayndatanbyniaiaioniedadsind  gate ANETE AA T Raa SKARS 108  102 Sae ROUNE eieren aE bet bonito e A S EE 109   LO FONE VS IN e E E E T E 111   10 5 DDNS  Dynamic Domain Name Service  lt ieveinsd chevsisncesesesdelerwecensiisnsd  alavstesecxaamedahincnsescsyandlaleveacousesaecdadianceaasds 113   O DEC C O ee E E E E A E AE 116   1O AO Wid Load Balanoe osciriorieireon enir e EE EE 117   VSEM HOON ena E A EE 125   EUD A RO e E ee asaaaanameaanetamesumonm eens asanaseanoaanonemocnmeteseamiacs 125   eFirma NY OA     A E E EERE E E E E 127   ISLC OM FEO M BaCk UDe a a E web ontctteectaincauee  128   DTA SINIVE  ETE E E T PE E ETENE ET A A ET EN TEEPE E ENE E E 129   LES Sye IRC OV E eae E E dass 131   ITON AEA aB y eaea
10.   Cancel    button to cancel the modification  This only works    before    Apply    is clicked     Quit this configuration window     106    your future life    Multi WAN QoS Router    11 2 UPnP    UPnP  Universal Plug and Play  is a protocol set by Microsoft  If the virtual host supports UPnP system     such as Windows XP   users could also activate the PC UPnP function to work with the device        UPnP Mapping    Semice Port    DNS  UDP 53  53  w       Service Port Management    HostName or IP Address  Po    Enabled          Add to list          Debis selected item       Show Teles Caneel   Service Port  Select the UPnP service number default list here  for example   WWW is 80 80  FTP is 21 21  Please refer to the default service  number list    Host Name or IP Address  Input the Intranet virtual IP address or name that maps with UPnP  such as 192 168 1 100    Enabled  Activate this function    Service Port Management  Add or remove service ports from the management list    Add to List  Add to active service content    Delete Selected Item  Remove selected services    Show Table  This is a list which displays the current active UPnP functions    Apply  Click    Apply    to save the network configuration modification    Cancel  Click    Cancel  to leave without making any change        107    jie ko Pn 4   e n a F Bii    i ae  Au i    3 sy at iE     S          your future life  Multi WAN QoS Router  10 3 Routing    In this chapter we introduce the Dynamic Routing Informat
11.   If the server function  which means the server for an    external service such as WWW  FTP  Mail  etc  is contained in the network  we recommend that users       103    your future life    Multi WAN QoS Router    use the firewall function to set up the host as a virtual host  and then convert the actual IP addresses   the Internet IP addresses  with Port 80  the service port of WWW is Port 80  to access the internal  server directly  In the configuration page  if a web server address such as 192 168 1 50 and the Port 80  has been set up in the configuration  this web page will be accessible from the Internet by keying in the    device actual IP address such as  http   211 243 220 43   At this moment  the device actual IP will be converted into    192 168 1 50    by Port 80 to access the  web page     In the same way  to set up other services  please input the server TCP or UDP port number and    the virtual host IP addresses        Port Range Forwarding    Service IP Address Interface Enable  192  168      m    Add to list       Service Management       Nelets celected application       service   To select from this option the default list of service ports of the virtual    host that users want to activate     such as  All  TCP amp UDP  0 65535  80  80 80  for WWW  and 21 21    for FTP  Please refer to the list of default service ports     IP Address   Input the virtual host IP address    Enabled   Activate this function    service Port Add or remove service ports from the 
12.   Users       may follow or self  define the priority of each network access rule  The device will follow the rule priorities one    by one  so please make sure the priority for all the rules can suit the setting rules     Edit   Define the network access rule item  Delete      eee Remove the item   Add New Rule   Create a new network access rule  Restore to Default Restore all settings to the default values and delete all the self defined  Rule   settings     95    ad    your future life    9 2 1 Add New Access Rule          Scheduling    Multi WAN QoS Router    Allow    fic    All Traffic  TCP amp UDP1 6    Service Management       Apply this rule   i      to           24 Hour Format     Action      Service      Service Management      Log      Source Interface      Source IP      Everyday Sun Mon Tue Wed Thu Fri Sat    Allow  Permits the pass of packets compliant with this control rule    Deny  Prevents the pass of packets not compliant with this control rule  From the drop down menu  select the service that users grant or do not  give permission    lf the service that users wish to manage does not exist in the drop down  menu  press     Service Management to add the new service    From the pop up window  enter a service name and communications  protocol and port  and then click the    Add to list    button to add the new  Service    No Log  There will be no log record    Create Log when matched   Event will be recorded in the log    Select the source port whether users ar
13.   at  the moment of WAN disconnection  all the external connections that go  through this WAN will be disconnected too  Only after the disconnected  lines are reconnected can they go through the standby system to  connect with the Internet  Therefore  to avoid a huge number of  disconnection  users can activate this function to arrange new  connections to be made through another WAN to the Internet  In this  way  the effect of any disconnection can be minimized    Line Dropped Period   Input the time rule for disconnection of this WAN service    Line Dropped Scheduling   Input how long the WAN service may be disconnected before the newly  added connections should go through another WAN to connect with the    Internet        22    N    your future life    Multi WAN QoS Router    Backup Interface   Select another WAN port as link backup when port binding is configured     Users should select the port that employs the same ISP     After the changes are completed  click    Apply    to save the configuration  or click    Cancel  to leave    without making any changes   Static IP    If an ISP issues a static IP  such as one IP or eight IP addresses  etc    please select this connection    mode and follow the steps below to input the IP numbers issued by an ISP into the relevant boxes     Interface  WANI    WAN Connection Type    Static IF  WAN IP Address   et o     Subnet Mask    ass       Default Gateway           p  DNSServer Required    0   Jo     i    DNSServer Optional   0    
14.   fan fee    0    a0    Device IP Address  192 168 1 1 Subnet Mask  255 255   255 0  Multiple Subnet Setting Disabled       Unified IF Management       Multiple Subnet Setting      Click    Unified IP Management    to enter the configuration page  as shown in the following figure  Input    the respective IP addresses and subnet masks        LAN Setting  Device IP Address 192    168       Subnet Mask255    255    255  o      _Muitiple Subnet Setting   C  utiple Subnet       LANIPAddress               SubnetMask             Add to list          This function enables users to input IP segments that differ from the router network segment to the  multi net segment configuration  the Internet will then be directly accessible  In other words  if there are    already different IP segment groups in the Intranet  the Internet is still accessible without making any       20    your future life    Multi WAN QoS Router    changes to internal PCs  Users can make changes according to their actual network structure     6 1 3 WAN  amp  DMZ Settings    WAN Setting       WAN Setting    WAN 1 Obtain an IF automatically Edit  WAN 2 Obtain an IP automatically Edit  USB 36  3 56 Edit    Interface  An indication of which port is connected     Connection Type  Obtain an IP automatically  Static IP connection  PPPoE  Point to Point Protocol over    Ethernet   PP TP  Point to Point Tunneling Protocol  or Transparent Bridge   Config   A modification in an advanced configuration  Click Edit to enter the 
15.  0     in the boxes of    Destination IP     which means to include all Internet IP addresses   Select WAN2 from  the pull down option list    Interface     and then click    Enable     Finally  click    Add New    and the rule will be    added to the mode     48    your future life    Multi WAN QoS Router    Show Priority       HITF  TCF s080      Service         Source IF   1it2 166 1 _ 150 to 200 l  Group    DestinationIP  0 0 00 0 to    Interface  WAKE     Enable  C     HITE  TCE S80  80  2192  168 1  150   200 00  0  0  070  0  0  Ov ARE          Delete selected application Add Hew       Beck     Apy   C Cenedl    Example 3   How do   set up Auto Load Balance Mode to keep all Intranet IP addresses from going through  WAN2 when the destination port is Port 80 and keep all other services from going through WAN1     As in the figure below  there are two rules to be configured  The first rule  select    HTTP   TCP 80 80      from the pull down option list    Service     and then in the boxes of Source IP input     192 168 1 0    to    0     which means to include all Intranet IP addresses   Retain the original numbers     0 0 0 0    in the boxes of    Destination IP     Which means to include all Internet IP addresses   Select  WAN2 from the pull down option list    Interface     and then click    Enable     Finally  click    Add New    and  the rule will be added to the mode  The device will transmit packets to Port 80 through WAN2  However   with only the above rule  packe
16.  EE Ere E ES e e EE E EEEa 133   EFEC EE C0 costes e N E E E E eeeganes 138   LOO e A E T E E E T E E E E 1   MMs E E N E E E A E A A A A A E AE A l       IV    your future life    Multi WAN QoS Router    122  SV SUC Ml ALLS UIC see E E ceed E E A EEE E E E sds A E A A EA ES 7  PAAR SUG EN gece fe tase pee sesgreine ts A E ames EE EE E T T E EE 9  PEE E A E E E A A E A A E E A soeuace 11  12 5 Connection Statistic Future Feature           ec ccccccccssccceesseeceesssececesseeeeesseeeeesseeeceesseeeeessseceeeseeeeeeeeeeens 13   12 6 ORTG  Ono Router Traffic Grapes  siiicstecfoiniveanssiaitaniwswadacshiettontobotwadaltadtancune iiecdhiutionloilicedei teiansunetsidtbieltontens 15  XIII  LOG OUT ea E E A E E E 20  Appendix l  User Interface and User Manual Chapter Cross ReferencCe            sesssccesssocesssscecesse 21  Appendix Il  Troubleshooting          esssesessseceesoecessoocessoocessoocessoccessocceesooceesoocessoocessoocessoccessoocessoecesssscsssose 24  G1  ESOC BT TOW NAG asore ae rE EE E AE reas aeeencseeatet ores 24    2  Shock Wave and Worm Virus Prevention              cccccccssssseeeeeececcccccccccccccsaasssseceeecececcecececeuauaasteceeecececececenaaas 25    3  Block QQLive Video Broadcast Setting           eessesesessressrrssrresserssrtesrressrersrressrersreeseressreesrirssrteseressreesrrrsseresn  27    4  ARP Vims Attack Prevention esinaise E EA E 29  Appendix Ill  Qno Technical Support Information         esseesoesseesoesscesoessoesoessoesoeesoesoeesoesoessoes
17.  Edit    Bandwidth Configuration    When Auto Load Balance mode is selected  the device will select sessions or IP and the WAN bandwidth  will automatically allocate connections to achieve load balancing for external connections  The network  bandwidth is set by what users input for it  For example  if the upload bandwidth of both WANs is 512Kbit sec   the automatic load ratio will be 1 1  if one of the upload bandwidths is 1024Kbit sec  while the other is  512Kbit sec  the automatic load ratio will be 2 1  Therefore  to ensure that the device can balance the actual  network load  please input real upload and download bandwidths  The section refers to QoS configuration     Therefore  it should be set in QoS page  Please refer to 8 1 QoS bandwidth configuration        Interface  WAN 4 Auto Edit  WAN 2 Auta Edit  USB 3C 3 5C Edit       43    your future life    Multi WAN QoS Router    Protocol Binding    Users can define specific IP addresses or specific application service ports to go through a user assigned  WAN for external connections  For any other unassigned IP addresses and services  WAN load balancing will    still be carried out     Note      In the load balance mode of Assigned Routing  the first WAN  WAN1  cannot be assigned  It is to  be saved for the IP addresses and the application Service Ports that are not assigned to other WANs   WAN2  for external connections  In other words  the first WAN  WAN1  cannot be configured with the  Protocol Binding rule  This is to
18.  End   This is an initial IP automatically leased by DHCP  It means DHCP will  start the lease from this IP  The default initial IP is 192 168 1 100     DNS  Domain Name Service       This is for checking the DNS from which an IP address has been leased to a PC port  Input the IP    address of this server directly     DNS  Required  1   Input the IP address of the DNS server   DNS  Optional  2   Input the IP address of the DNS server   WINS      If there is a WIN server in the network  users can input the IP address of that server directly     WINS Server   Input the IP address of WINS   Apply   Click    Apply    to save the network configuration modification   Cancel   Click    Cancel  to leave without making any changes     59    your future life    Multi WAN QoS Router    7 4 DHCP Status    This is an indication list of the current status and setup record of the DHCP server  The indications are for  the administrator   s reference when a network modification is needed     IP DHCP  DHCP Setup    IP amp MAC binding          Status  Subnet Subnet2 Subnet Subnet4  192 168 1 1 192 168 2 1 192 168 3 1 192 168 4 1  1 0 0 0  0 0 0 0  49 50 50 50  50 50 50 50          Client Table    subnet          NE9S7008 192 168 1 100 00 1f c6 7b 8a bd 22 Hours  59 Minutes  16 seconds i  Raresh  DHCP Server   This is the current DHCP IP   Dynamic IP Used   The amount of dynamic IP leased by DHCP   Static IP Used   The amount of static IP assigned by DHCP     DHCP Available   The amount of IP st
19.  IP Address   Indicates the current IP configuration for WAN port    Default Gateway   Indicates current WAN gateway IP address from ISP    DNS Server   Indicates the current DNS IP configuration    Session   Indicates the current session number for each WAN in the device    Downstream Indicates the current downstream bandwidth usage    for each WAN    Bandwidth   Usage        Upstream Indicates the current upstream bandwidth usage    for each WAN    Bandwidth   Usage                 11    your future life    Multi WAN QoS Router    DDNS   Indicates if Dynamic Domain Name is activated  The default configuration is    Off        Quality of Service     indicates how many QoS rules are set     Manual Connect   When    Obtain an IP automatically    is selected  two buttons  Release and    Renew  will appear  If a WAN connection  such as PPPoE or PPTP  is selected      Disconnect    and    Connect    will appear   DMZ IP Address   Indicates the current DMZ IP address     5 1 2 Physical Port Status       Physical Port Status    1 2 4 4  LAN  Connect Enabled Enabled Enabled  Internet Internet USB  WAN 1 WAN 2 USB  Connect Enabled Enabled       The status of all system ports  including each connected and enabled port  will be shown on this  Home page  see above table   Click the respective status button and a separate window will appeare to  show detailed data  including setting status summary and statisitcs  of the selected port     12    N  ONO    your future life    Multi WAN QoS 
20.  IP Range  o  o  o  o bo      Beek   Apak o Cenedl    LAN Default Gateway Enter the LAN Default Gateway that you configured at Router Plus    NAT Mode  LAN IP Range Enter the usable static IP range that provide by ISP into the DMZ  service IP range     If you have other IP range  you can setup the default gateway and IP  range into group 2     After the changes are completed  click    Apply    to save the configuration  or click    Cancel  to leave  without making any changes     34    GNO    your future life    Multi WAN QoS Router    6 2 Multi  WAN Setting    When you have multiple WAN gateways  you can use Traffic Management and Protocol Binding function    to fulfill WAN road balancing  so that we can have highest network bandwidth efficiency        Mode    Auto Load Balance lode     By Session Advanced Function    Unbinding WAN Balance   Un binding WAN Balance Mode     By Session MECC earthen     strategy Routing Wode  Ay Seccinn Advanced Function    oc    Set WAH Grouping    Strategy Routing Disabled    se Eee el  Self defined Strategy 1   Disabled v  Self defined Strategy 2   Disabled  v          Interface          Network Service Detection    o mete AN  qee e  a T a      When Fail Remove the Connection    When In  OR lout bandwidth is over  a6  regarded as normal     EA Defaut eateway  O a  EfRemoenost  ooo  E onstoompHost ooo d O          35    your future life    Multi WAN QoS Router    6 2 1 Load Balance Mode       Mode  Auto Load Balance Mode    Mode     By Sessio
21.  M wans I wans M wan7 l wans  Unit     900    Kbps    Nov 21 Nov 22 Nov 23 Nov 24 Nov 25 Nov 26       WAN Upstream M want M wan2 M wan3 M wan4 M wans l wans  wan7  l wans  Unit   1500    Kbps    1000    500  i     Nov 21 Nov 22 Nov 23 Nov 24 Nov 25 Nov 26      The UI might vary from model to model  depending on different product lines     19          Nov 27    Average     E 2174         2188    Unit Day    Average     M676  E 696  E 636  M616  E o   E 621    Unit Day    Kbps  Kbps  Kbps  Kbps  Kbps  Kbps    Kbps  Kbps  Kbps  Kbps  Kbps  Kbps    your future life    Multi WAN QoS Router    XIII  Log out    On the top right corner of the web  based UI  there is a Logout button  Click on it to log out of the  web  based UI  To enter next time  open the Web browser and enter the IP address  user name and    password to log in        English           20    your future life    Multi WAN QoS Router    Appendix    User Interface and User Manual Chapter Cross Reference    This appendix is to show the corresponding index for each chapter and user interface  Users can find    how to setup quickly and understand the Security QoS Router capability at the same time     Security QoS Router overall interface is as below     Home    NetWork    USE Setting    Qos  IP DHCP  E Bulletin  amp  ARP Binding   Group Management   Firewall  Advanced Function   System Tool  Port Management    Log    Category Sub  category Chapter   Home V  Device Spec Verification  Status Display  and Login Password and
22.  MAC address  as illustrated      IP Address MAC  192 168 1 1 00 Of 3d 83 74 28    192 168 1 3 03 aa 01 75 c3 06    For example  host A  192 168 1 5  transmits data to Host B  192 168 1 1    Transmitting data  Host A    searches for the destination IP address from the ARP Cache  If it is located  MAC address is known  Simply fill       192 168 1 2 00 aa 00 62 c5 03    in the MAC address for transmission  If no corresponding IP address is found in ARP cache  Host A will send  a broadcast  The MAC address is    FF FF FF FF FF FF     which is to inquire all the host devices in the same  network session about    What is the MAC address of    192 168 1 1   Other host devices do not respond to the       29    your future life    Multi WAN QoS Router    ARP inquiry except host device B  which responds to host device A when receiving this frame     The MAC  address of 192 168 1 1 is 00 aa 00 62 c6 09     So Host A knows the MAC address of Host B  and it can send    data to Host B  Meanwhile  it will update its ARP cache     Moreover  ARP virus attack can be briefly described as an internal attack to the PC  which causes trouble  to the ARP table of the PC  In LAN  IP address was transferred into the second physical address  MAC  address  through ARP protocol  ARP protocol is critical to network security  ARP cheating is caused by fake IP  addresses and MAC addresses  and the massive ARP communications traffic will block the network  The  MAC address from the fake source sends ARP res
23.  One to One NAT     To activate or close the One to One NAT function   Check to activate the    function    Private IP Range Begin   Input the Private IP address for the Intranet One to One NAT function   Public IP Range Begin   Input the Public IP address for the Internet One to One NAT function   Range Length   The numbers of final IP addresses of actual Internet IP addresses   Please    do not include IP addresses in use by WANSs    Add to List   Add this configuration to the One to One NAT list     Delete Seleted Item   Remove a selected One to One NAT list   Apply   Click    Apply    to save the network configuration modification   Cancel      Click    Cancel     to leave without making any changes     Attention      One to One NAT mode will change the firewall working mode  If this function has been set up  the  Internet IP server or PC which is mapped with a LAN port will be exposed on the Internet  To prevent    Internet users from actively connecting with the One on One NAT server or PC  please set up a proper       112    N    your future life    Multi WAN QoS Router    denial rule for access  as described Firewall     10 5 DDNS  Dynamic Domain Name Service    DDNS supports the dynamic web address transfer for QNODDNS org cn  3322 0org  DynDNS org  and DtDNS com  This is for VPN connections to a website that is built with dynamic IP addresses  and  for dynamic IP remote control  For example  the actual IP address of an ADSL PPPoE time based  system or the actual IP 
24.  QoS Router    Show Priority    SMIE  TCE 25  25   Service      Service Management    Source IF   192 _ 168    Destination IP     Interface    Enable   ilove Un Add to list    All Traffic  TCPAUDP 1 65535  7192  168  1 00  211 1 1 1  211 254  254  254 WAH   All Traffic  TCPAUDP 1  65535   2192  166 1  0  0  60 1 1  1  80  254  254  254 WANE       52    your future life    Multi WAN QoS Router    VII  Intranet Configuration    This chapter introduces how to configure ports and understand how to configure intranet IP addresses     7 1 Port Management    Through the device  users can easily manage the setup for WAN ports  LAN ports and the DMZ port  by choosing the number of ports  speed  priority  duplex and enable disable the auto negotiation feature    for connection setting of each port     Port Management       Port Status       Port Setup  CJ Enable Port 1 as Mirror Port     PortID Interface DisabledPort Priority   Speed Status   Duplex Status   AutoNeg    VLAN  1 LAN    O 10M   100M Half    Full Enabled  2 LAN C 10M   100M Half    Full Enabled  3 LAN O 10M     100M Half    Full Enabled  4 LAN O 10M   100M Half    Full Enabled  5   WAN 1 O 10M   100M Half    Full Enabled  6 WAN 2 C 10M   100M Half    Full Enabled    aly   Genee    Mirror Port   Users can configure LAN 1 as mirror port by choosing    Enable Port 1 as Mirror Port     All the  traffic from LAN to WAN will be copied to mirror port  Administrator can control or filter the traffic through  mirror port  Once this
25.  Remove the rules selected from the Service List     Display all the Rate Control Rules users made for the bandwidth  Click     Edit    to modify     Click    Apply    to save the configuration    Click    Cancel  to leave without making any change           Rule O Interface          79    your future life    Multi WAN QoS Router    8 2 Session control    Session management controls the acceptable maximum simultaneous sessions of Intranet PCs   This function is very useful for managing connection quantity when P2P software such as BT  Thunder   or emule is used in the Intranet causing large numbers of sessions  Setting up proper limitations on    sessions can effectively control the sessions created by P2P software  It will also have a limiting effect  on bandwidth usage     In addition  if any Intranet PC is attacked by a virus like Worm Blaster and sends a huge number of    session requests  session control will restrict that as well     Session Control and Scheduling         Session Control       Disabled      Single IP cannot exceed session      Single IP cannot exceed TCP hoo    UDP session      When single IP exceed Session    block this IF s new sessions for   minutes       block this IF s all sessions fr   minutes       Scheduling    C a  Apply this rule   Always     foo  oo to  zs    54    Everyday Sun Mon Tue Wed Thu Fri Sat        24 Hour Format     Disabled   Disable Session Control function   This option enables the restriction of maximum external sessions to eac
26.  Restart       Factory Default LY Are you sure you want to restart router           131    N  GINO    your future life    Multi WAN QoS Router    Return to Factory Default Setting    If clicking    Return to Factory Default Setting  the dialog block will pop out  if the device will return to    factory default        Factory Default        Windows Intemet Explorer    Y Are you sure you want to return io default setting  f    132    your future life    Multi WAN QoS Router    11 6 High Availability    High Availability is adopted in the network that requires fault tolerance and backup mechanism  Two  similar devices are used to be the backup for each other  One of these devices is employed for major network  transmitting  and the other redundant device will take over when the master device fails to assure that  network transmitting and services never break down  Therefore  administrators will have more opportunity    and time to deal with the master device problems   Besides general HA  Qno also provides advanced HA function that enables two devices to operate    simultaneously  It brings full cost efficiency without making another device idle  It does not have to be the    same model  All of Qno devices which support HA can achieve the function        High Availability    High Availability Enable    Disable  Mode  Hardware Backup Mode    Two devices are operating simultaneously  Operation  is Master Mode C Backup Mode    Master  Slave Mode setting Of two devices must be diffe
27.  Security QoS Router brings users super networking efficiency   Its processing speed and capacity are almost equal to those of expensive enterprise level Security QoS  Routers  This is why the device is so popular with modern enterprises     The advanced built in firewall function enables Security QoS Router to resist most attacks from the  Internet  It utilizes active detection technology SPI  Stateful Packet Inspection   The SPI firewall functions  mainly within the network by dynamically inspecting each link  The SPI firewall also has a warning  function for the application process  therefore  it can refuse links to non standard communication  protocols  Security QoS Router supports network address translation  NAT  function and routing modes   lt makes the network environment more flexible and easier to manage     Through web  based UI  Security QoS Router enables enterprises to have their own network access  rules   To control web access  users can build and edit filter lists  It also enables users to ban or monitor  websites according to their needs  By the filter setting and complete OS management  school and  business internet management will be clearly improved  Security QoS Router offers various on line  SysLog records  It supports on line management setup tools  it makes setting up networks easy to  understand  It also reinforces the management of network access rules  and all other network services     Security QoS Router fully protects the safety of communication
28.  Settings   NS Record       WAN 1 192 166 4 164    ee test com Pe ana  t    wan 1192 1684 1164    estcom L  C WAN 2 0000  p testo    WAN 1 192 168 4 164  C WAN 2 0000       WAN 1 192 188 4 164    testcom Reece  C WAN 2 0000    DNS Server Input registered NS Record  ex  ns1  ns2   Interface  Assign WAN IP address as corresponding IP of NS Record  The system will show all  acquired enabled WAN IP addresses automatically so that users can check directly  But    users have to check if the IP addresses are the same as the corresponding settings on                   120    your future life    Multi WAN QoS Router    TWNIC DNS service provider   Ex  nsi abc com tw      WAN  210 10 1 1   ns2 abc com tw WAN2  200 1 1 1   7  Host Record  Add or modify host record   A Record        Host Record   A Record    0   ostame AN  M WAN 1 192 168 4 164    test com           WAN 2 0000    M WAN 1 192 168 4 164    testcom eae     WAN 2 0000   l WAN 1 192 168 4 164    test com See SERGI     WAN 2 0000    pO test com  T WAN 1 192 1684 164    WAN 2 0000    Host Input the host name which provides services  E g  mail server or FTP   Name   WAN IP  Check corresponding A Record IP  WAN Port IP   If more than one IPs is checked  Inbound    traffic will be distributed on this WANs   8  Alias Record   Add or modify alias record  CNAME Record     This kind of record allows you to assign several names to one computer host  which may provide    several services on it     For instance  there is a computer whose
29.  This can better shelter the network from being attacked     2  Cyber caf   administrators should check the LAN virus  install anti virus software  Ginshan Virus Reixin    must update the virus codes  and conduct virus scanning for the device     3  Install the patch program for the system  Through Windows Update  the system patch program  critical    update  security update and Service Pack        36    your future life    Multi WAN QoS Router    4  Provide system administrators with a sophisticated and strong password for different accounts  It  would be best if the password consists of a combination of more than 12 letters  digits  and symbols  Forbid    and delete some redundant accounts     5  Frequently update anti virus software  virus data base   and set the daily upgrade that allows regular  and automatic update  Install and use the network firewall software  Network firewall is important for the  process of anti virus  It can effectively avert the attack from the network and invasion of the virus  Some users  of the pirate version of Windows cannot install patches successfully  Users are advised to use network firewall    and other measures for protection     6  Close some unnecessary services and some unnecessary sharing  if the condition is applicable      which includes such management sharing as C  and D   Single device user can directly close Server service     7  Do not open QQ or the link messages sent by MSN online chatting tools in a causal manner  Do not  
30.  Time Setting  5 1 Home     __  Network Connection   6 1 Network Connection     Traffic Management   6 2 Multi WAN Setting    Protocol Binding   6 2 Muti  WAN Setting    USB Setting Please download user manual on Qno official  webpage   http   www qno com tw          21    4    your future life    Multi WAN QoS Router    Bandwidth 8 1  QoS   Management 8 3 Bandwidth Management    Session Control 8 2 Session Limit    IP DHCP       VII  Port Management  7 3 DHCP  IP   7 4 DHCP Status   7 5 IP  amp  MAC Binding  7 6 IP Grouping    Setup  Status  IP  amp  MAC Binding    IP Grouping    E Bulltin  amp  ARP Binding  Future Feature     Firewall IX  Firewall    General Policy 9 1 General Policy   9 2 Restricted Application   Access Rule 9 3 Access Rule   9 4 Content Filter   XII  Advanced Setting   12 1 DMZ Host  Port Range Forwarding  12 2 UPnP  Universal Plug and Play  12 3 Routing   12 4 One to One NAT   12 5 DDNS   12 6 MAC Clone    13 7 Inbound Load Balance    Content Filter    Advanced Function    DMZ Forwarding  UPnP   Routing   One to One NAT    MAC Clone  Inbound Load    Balance    UO   w  Z  o     System Tool XIII  System Tool    V  Device Spec Verification  Status Display    and Login Password and Time Setting       Password 5 2 Change and Set Login Password and Time    Diagnostic 13 1 Diagnostic  Firmware Upgrade 13 2 Firmware Upgrade  13 3 Setting Backup    13 4 SNMP    Setting Backup  SNMP    Time  5 2 Change and Set Login Password and Time    System Recover 13 5 System 
31.  WAN QoS Router    System Log  Windows Internet Explorer      E  hit 192 168 1 Levs_log hin    System Log    Jan 1 08 00  Jan 1 08 00 09 2000     2000 lsystemLog i ssts    lt       S Log SMB    SMB   Systemisup sisi    is up    id  none  time  2000 1 1 0  3 16  fw 192 168 1 1 pricS    src 192 166 1 100 dst  192 168 1 1 user admin type mgmt meg  User    Jan 1 08 03 16 2000 System Log login successful agent  Mozilla 4 0  compatible  MSIE 6 0  Windows NT      5 1  Trident 4 0  NET CLR 2 0 50727   MET CLR 3 0 4506 2152   NET CLR    3 5 30729      id  none  time  2000 1 1 1 51  7   fw 192 188 1 1 pri 5  erc 192 166 1 100 dst 192 166 1 1 user admin type mgmt meg  User     Jan 1 09 51 07 2000 System Log login successful agent  Mozilla 4 0  compatible  MSIE 8 0  Windows NT  5 1  Trident4 0   NET CLR 2 0 50727   NET CLR 3 0 4506 2152  NET CLR    3 5 30729    id  none  time  2000 1 2 5 30 49  fw 192 168 1 1 pri 5  erc 192 168 1 100 dst  192 168 1 1 user admin type mgmt meg  User    Jan 2 13 30 49 2000 System Log login successful agent  Mozilla 4 0  compatible  MSIE 8 0  Windows NT  5 1  Trident 4 0  NET CLR 2 0 50727   NET CLR 3 0 4506 2152  NET CLR    3 5 30729    id  none  time  2000 1 2 6 42 47  fw 192 168 1 1 pri 5    src 192 166 1 100 dst 192 168 1 1 uzer admin type mgmt meg  User    Jan 2 14 42 47 2000 F i login successful agent  Mozilla 4 0  compatible  MSIE 8 0  Windows NT    5 1  Trident   4 0   NET CLR 2 0 50727   NET CLR 3 0 4506 2152   NET CLR    3 0 30 729    id  none  tim
32.  a desk or install it in a rack with attached brackets  Do not  place other heavy objects together with the device on a rack  Overloading may cause the rack to fail   thus causing damage or danger     Each device comes with a set of rack installation accessories  including 2 L  shaped brackets and 8  screws  Users can rack  mount the device onto the chassis  Please refer to the figure below for the  installation onto a 19    rack        Attention     In order for the device to run smoothly  wherever users install it  be sure not to obstruct the vent on    each side of the device  Keep at least 10cm space in front of both the vents for air convection     N    your future life    Multi WAN QoS Router    Installing Router on a Wall    The Router has two wall mount slots on its bottom panel  When mounting the device on a wall  please  ensure that the heat dissipation holes are facing sideways as shown in the following picture for safety reasons     Qno is not responsible for damages incurred by insecure wall mounting hardware     WA     E  n  fa  pe  p  i  E          ONO    your future life    Multi WAN QoS Router    3 2 Security QoS Router Network Connection          Hub Switch    Server          WAN connection   AWAN port can be connected with xDSL Modem  Fiber Modem  Switching Hub  or  through an external router to connect to the Internet     LAN Connection  The LAN port can be connected to a Switching Hub or directly to a PC  Users can  use servers for monitoring or filtering
33.  avoid a condition where all WANs are assigned to specific Intranet IP or  Service Ports and destination IP  no more WAN ports will be available for other IP addresses and    Service Ports        Protocol Binding    Show Priority       service     All Traffic  TCP amp UDP 1 65535     Service Management    source IP       Enabled         Delete selected item       your future life    Service     Source IP     Dest  IP     Interface   Enable   Add To List     Delete selected    item     Moving Up  amp     Down     Note      Multi WAN QoS Router    This is to select the Binding Service Port to be activated  The default  such  as ALL TCP amp UDP 0 65535  WWW 80 80  FTP 21 to 21  etc   can be  selected from the pull down option list  The default Service is All 0 65535   Option List for Service Management  Click the button to enter the Service  Port configuration page to add or remove default Service Ports on the  option list    Users can assign packets of specific Intranet virtual IP to go through a  specific WAN port for external connection  In the boxes here  input the  Intranet virtual IP address range  for example  if 192 168 1 100 150 is  input  the binding range will be 100 150  If only specific Service Ports need  to be designated  while specific IP designation is not necessary  input    O    in  the IP boxes    In the boxes  input an external static IP address  For example  if  connections to destination IP address 210 11 1 1 are to be restricted to  WAN1  the external sta
34.  be announced in the relevant block of the Qno website     4 3  All the set parameters are examples and they are for reference only  You may also purpose your  opinion or suggestion  We will take it as reference and they may be amended in the next version     4 4  This Manual explains the configuration of all functions for the products of the same series  The actual  functions of the product may vary with the model  Therefore  some functions may not be found on the product  you purchased     4 5  Qno reserves the right to change the file content of this Manual and the Manual content may not be  updated instantly  To know more about the updated information of the product  please visit Qno official    website      4 6  Qno  and   or  distributors hereby declares that no liability will be born for any guarantee and condition  of the corresponding information  The guarantee and condition include tacit guarantee and condition about  marketability  suitability for special purposes  ownership  and non infringement  The name of the companies  and products mentioned may be the trademark of the owners  Qno  and or  the distributors do not provide the  product or software of any third party company  Under any circumstance  Qno and   or distributors bear no  liability for special  indirect  derivative loss or any type of loss in the lawsuit caused by usage or information on  the file  no matter the lawsuit is related to agreement  omission  or other tort     5  Other Clauses    5 1  The 
35.  between all offices and branches of  an organization  It helps to free enterprises from increasing hacker intrusion  With an exclusive  independent operation platform  users are able to set up and use a firewall without professional network  knowledge  Security QoS Router setting up and management can be carried out through web browsers   such as IE  Netscape  etc     your future life    Multi WAN QoS Router    Il  Multi  WAN Security QoS Router Installation    In this chapter we are going to introduce hardware installation  Through the understanding of  multi WAN setting process  users can easily setup and manage the network making Security QoS  Router functioning and having best performance     2 1 Systematic Setting Process    Users can set up and enable the network by utilizing bandwidth efficiently  The network can  achieve the ideal efficientness block attacks  and prevent security risks at the same time  Through the  process settings  users can install and operate Security QoS Router easily  This simplifies the  management and maintenance  making the user network settings be done at one time  The main    process is as below   1  Hardware installation  2  Login  3  Verify device specification and set up password and time  4  Set WAN connection  5  Set LAN connection  physical port and IP address settings  6  Set QoS bandwidth management  avoid bandwidth occupation  7  Set Firewall  prevent attack and improper access to network resources  8  Other settings  UPnP  DDNS  
36.  clock basis  Select    from     and the  operation will run according to the defined time    Select  Always  to apply the rule on a round the clock basis    If    From    is selected  the activation time is introduced as below   This control rule has time limitation  The setting method is in 24 hour format  such as  08 00   18 00  8 a m  to 6 p m      102    your future life    Multi WAN QoS Router    X  Advanced Function    10 1 DMZ Host  Port Range Forwarding       DMZ Host    DMZ Private IP Address 192 1681  o         Port Range Forwarding    Service IF Address Interface Enabled    All Traffic  TCP amp UDP 1 65535  YT i   O    cervice Management Add to list          All Traffic  TCP amp UDP 1 65535   gt 192 165 1 101  gt  WAN1       Halata selected annlicstion    Snos Velie Aaah Cancel    10 1 1 DMZ Host    When the NAT mode is activated  sometimes users may need to use applications that do not  support virtual IP addresses such as network games  We recommend that users map the device actual    WAN IP addresses directly to the Intranet virtual IP addresses  as follows     If the    DMZ Host    function is selected  to cancel this function  users must input  0    in the following       DMZ Private IP     This function will then be closed     After the changes are completed  click    Apply    to save the network configuration modification  or    click    Cancel  to leave without making any changes     10 1 2 Port Range Forwarding    Setting up a Port Forwarding Virtual Host
37.  destination Service Ports  or destination IP addresses  Those which are not configured will    go through other WANs for external connection  Only when this mode is collocated with    Assigned    Routing    can it bring the function into full play     Example 1   How do   set up the Assigned Routing Mode to keep all Intranet IP addresses from going  through WAN2 when the destination is Port 80  and keep all other services from going through WAN1     As in the figure below  select    HTTP TCP 80 80     from the pull down option list    Service     and    then in the boxes of    Source IP    input    192 168 1 0   0     which means to include all Intranet IP    addresses   Retain the original numbers    0 0 0 0    in the boxes of    Destination IP     Which means to    include all Internet IP addresses   Select WAN2 from the pull down option list    Interface     and then click       Enable     Finally  click    Add New    and the rule will be added to the mode  After the rule is set up  only    packets that go to Port 80 will be transmitted through WAN2  while other traffics will be transmitted    through WAN1        50    your future life    Service      Source IF       Destination IF      Interface      Enable      HITE  TCP 80   80  2192    Multi WAN QoS Router    show Priority       HITE  TCF 6080        Service Management       192 166 1 0 to 0   Group    Update this Application       168  1  0 0  0 0 0 0  0  0 0  DIWAN        Delete selected application Add Hew       Ex
38.  edit port Input the name  protocol  and port range for the specific service port   Name Name the Port in order to identify its property  For example  Virus 135   Protocol Choose the port protocol form the pull down list like TCP  UDP or TCP and UDP   Port Range Input the port range  For example  135 to 135   Add to Port List After setting name  protocol and port range  push this button to add the    information into the Port list below  This port can be from some port groups        71    your future life    Port GroupSet    Group Name    Delete Group     gt  gt  gt  gt     button    Delete ll  Apply    Cancel    Multi WAN QoS Router    You can choose from the Port list on the left side to set up a Port group     When you add new groups  please note if the group name is in the column  For    example  Virus     Choose the group that you would like to delete from the pull  down list  and push  the    Delete Group    button  System will ask you again if you would like to delete    the group  After pushing the confirmation button  the group will be deleted     You can choose several ports from Port list on the left side  and push this button    to have them added into the group the right side   Delete self  defined port or port range   Click    Apply    to save the network configuration modification    Click    Cancel  to leave without making any changes     72    N    your future life    Multi WAN QoS Router    VIII  QoS  Quality of Service     QoS is an abbreviation for Quality
39.  function is enabled  LAN 1 will be shown as Mirror Port in Physical Port Status  Home    page     53    your future life       Physical Port Status       DisabledPort      Priority      Speed Status      Duplex Status      Auto Neg       VLAN      Multi WAN QoS Router    1 2 3 4  Mirror Port LAN  Connect Enabled Enabled Enabled  Internet Internet USB  WAN 1 WAN 2 USB  Connect Enabled Enabled    This feature allows users turn on off the Ethernet port  If selected  the  Ethernet port will be shut down immediately and no connection can be    made  The default value is  on      This feature allows users to set the high low priority of the packet delivery  for the Ethernet port  If it is set as High  the port has the first priority to    deliver the packet  The default value is    Normal        This feature allows users to select the network hardware connection speed    for the Ethernet port  The options are 10Mbps and 100Mbps     This feature allows users to select the network hardware connection speed    working mode for the Ethernet  The options are full duplex and half duplex     The Auto Negotiation mode can enable each port to automatically adjust  and gather the connection speed and duplex mode  Therefore  if Enabled  Auto Neg  selected  the ports setup will be done without any manual setting  by administrators     This feature allows administrators to set the LAN port to be one or more  disconnected network sessions  All of them will be able to log on to the  Internet thr
40.  future life    Multi WAN QoS Router    11 3 Configration Backup    System Tool  Password Setup  Diagnostic    Firmware Upgrade    Network Time       system Recover       Import Configuration File            Browse               Export Configuration File    Import Configuration File      This feature allows users to integrate all backup content of parameter settings into the device  Before  upgrade  confirm all information about the software version  Select and browse the backup parameter file      config exp   Select the file and click  Import  to import the file     Export Configuration File    This feature allows users to backup all parameter settings  Click  Export  and select the location to save the     config exp  file     128    GNO    your future life    Multi WAN QoS Router    11 4 SNMP    Simple Network Management Protocol  SNMP  refers to network management communications  protocol and it is also an important network management item  Through this SNMP communications  protocol  programs with network management  i e  SNMP Tools HP Open View  can help  communications of real time management  The device supports standard SNMP vi v2c and is  consistent with SNMP network management software so as to get hold on to the operation of the online    devices and the real time network information     system Tool    Password    Diagnastic    Firmware Upgrade    setting Backup    system Recover          SNMP    Enabled    T WAH QVM Router    public  private    public    Spay i  
41.  message will be sent to the  Login   system log   General Log    The device provides the following warning message  Click to activate the feature  System error  message  blocked regulations  regulation of passage permission  system configuration change and    registration verification     your future life    System Error Message     Deny Policies      Allow Policies      Configuration Change      Authorized Login      Multi WAN QoS Router    Provides the system log with all kinds of error messages  For example   wrong settings  occurrence of abnormal functions  system reactivation     disconnection of PPPoE and so on     If remote users fail to enter the system because of the access rules  for  instance  message will be recorded in the system log    If remote users enter the system because of compliance with access  rules  for instance  message will be recorded in the system log    When the system settings are changed  this message will be sent back  to the system log    Successful entry into the system includes login from the remote end or  from the LAN into this device  These messages will be recorded in the    system log     The following is the description of the four buttons allowing online inquiry into the log     View System Log      This option allows users to view system log  The message content can be read online via the    device  They include All Log  System Log  Access Log  and Firewall Log  which is illustrated as    below        GINO  your future life    Multi
42.  name is    host mydomain com     A record   It provides  WWW and Mail services concurrently  Administrator can configure as two CNAME  WWW and Mail   They are    www mydomain com    and    mail mydomain com     They are both orientated to       host mydomain com        You can also assign several domain names to the same IP address  One of the domains will be A    record corresponding server IP  and the others will be alias of A record domain  If you change your       121    GNO  your future life    Multi WAN QoS Router    server IP  you don   t have to modify every domain one by one  Just changing A record domain  and the    other domains will be assigned to new IP address automatically        Alias Record   CName Record         P00 testcom pO testcom  PO testcom pO testcom  PO testcom pO testcom  P00 testcom pO testcom    Input Alias Record corresponding to A Record                       Alias                 Target  Input the existed A Record domain name                       9  Mail Server  Add or modify mail server record     MX Record is directed to a mail server  It orientates to a mail server according to the domain name  of an E mail address  For example  someone on internet sends a mail to user myhomain com  The  mail server will search MX Record of mydomain com through DNS  If the MX Record exists  sender PC    will send mails to the mail server assigned by MX Record        Mail Server  MX Record      O HostName weiht MalSewer    o   o ia PO testcaom  PO   PO test
43.  of Service  The main function is to restrict bandwidth usage for  some services and IP addresses to save bandwidth or provide priority to specific applications or  services  and also to enable other users to share bandwidth  as well as to ensure stable and reliable  network transmission  To maximize the bandwidth efficiency  network administrators should take  account of the practical requirements of a company  a community  a building  or a caf    etc   and modify    bandwidth management according to the network environment  application processes or services     Session Control          73    ONO    your future life    Multi WAN QoS Router    8 1 Bandwidth Management       The Maximum Bandwidth provided by ISP          Quality of Service    Interface     wan1 O wana C use  senice    All Traffic   TCP amp UDPMN 65535   Service Management  P Address     fo   fo  o  b jt    Direction    Upstream      Mini  Rate       Kbit sec Max  Rate     Kbitsec        Share total bandwidth with all IP addresses        Assign bandwidth for each IF address   Enabled        Bandwidth sharing      iliyi lfe Add to list filtres Devers       C  Enabled Smart Qos    74    your future life    Multi WAN QoS Router       Exception IP address    C  wand O wana  O  use       Do not control Upstream bandwidth     Do not control downstream bandwidth     Do not control bi direction bandwidth  Enabled   C     Source IP yt    to   Group     Add to list       Nelets selected itam       8 1 1 The Maximum Bandw
44.  possibility of making errors during the operation     c  Bind the IP MAC Address from Device End     Enter    Setup    under DHCP page  On the down right corner of the screen  there is    IP and MAC Binding   where users may create IP and MAC binding  On    Enabled     click on    V    and select    Add to List     Repeat these    steps to add other IP addresses and MAC binding  followed by clicking    Apply    at the bottom of the page     33    your future life    Multi WAN QoS Router       IP  amp  MAC binding    Show new IF user          IP  amp  MAC binding    Static IP Address          MAC Address   00    17  _16    o1    er  _ Aa      Enable      Update this Entry       192  168  1 110   gt  00 17 16 01 6F As 2PCO01  Enabled                After an item is added to the list  the corresponding message will be displayed in the white block on the  bottom  However  such method is not recommended because the inquiry of IP MAC addresses of all hosts  creates heavy workload  Another method to bind IP and MAC is more recommended because of easy    operation  reducing workload and time efficiency  It is described in the following     Enter    Setup    under the DHCP page and look for IP and MAC binding  On the right  there is an option of     Show new IP user  and click to enter     34    ONO    your future life    Multi WAN QoS Router       IP  amp  MAC binding    Show mew LP user    IP  amp  MAC binding    StaticIPAddress               MAC Address           J         _   Nam
45.  through the port after    Physical Port Mangement    configuration is  done     DMZ   The DMZ port can be connected to servers that have legal IP addresses  such as Web servers   mail servers  etc     your future life    Multi WAN QoS Router    IV  Login    This chapter is mainly introducing Web  based UI after conneting the device     First  check up the device   s IP address by connecting to DOS through the LAN PC under the device  Go  to Start     Run  enter cmd to commend DOS  and enter ipconfig for getting Default Gateway address  as the    graphic below  192 168 1 1  Make sure Default Gateway is also the default IP address of the router     ey AWN DOW seyeten 2 MD ere    Microsoft Windows KP Lia 5 1 2600   CC  Copyright 1985 2661 Microsoft Corp                          C 5Documents and Settings PNA  gt ipconfig    Windows IP Configuration    Connection specific DNS Suffix   IP Address         2 192  168 1 168  Subnet Mask          255 255 255 808  Default Gateway       192  168 1 1    GCoSDocuments and Settings PMAL  gt  m                   Attention   When not getting IP address and default gateway by using    ipconfig     or the received IP address is  0 0 0 0 and 169 X X X  we recommend that users should check if there is any problem with the circuits    or the computer network card is connected nicely     GNO    your future life    Multi WAN QoS Router    Then  open webpage browser  IE for example  and key in 192 168 1 1 in the website column  The login    window w
46.  to    Inbound Load Balance    in    Advanced Function    and click    Edit    to configure     3  Enable    Inbound Load Balance        117    ONO    your future life    Multi WAN QoS Router          Inbound Load Balance    i    Enabled Inbound Load Balance          testcom fr200 fest  itest com       DNS Server Settings   NS Record         wAn 1 192 168 4 164     0 test com    WAN 2 0000          WAN 1192 1684 1654    test com Des ny eee     WAN 2 0000         testcom    WAN 1 192 168 4 164     WAN 2 0000       WAN 1 192 168 4 164    test com ipa E     WAN 2 0000                   AAAAAMAAAAAAMAAARAAABAAARGS       Host Record   A Record      CT i  7 wan 1 192 168 4 164  test com Cape SSS aaa  l WAN 2 0000           tectcom   WAN 1 192 168 4 164  l WAN 2 0000                 s   SY i   wan 1 192 168 4 164  test com Sue  l    WAN 2 0000        0 test com   WAN 1 192 168 4 164   M WAN 2 0000                   Alias Record   CName Record        test com   test com    test com   test com      test com   test com    test com   test com                             test com    hia       fp  tesst com                118    N    your future life    Multi WAN QoS Router    4  Configure Domain Name and Host IP    Assign DNS service provider and Host IP address  Take the setting on TWNIC as an example  the network  structure and IP are as following    WAN1   ADSL ISP A 210 10 1 1   WAN2   ADSL ISP B 200 1 1 1   Domain Name   abc com tw    Name Server NS    ns1 abc com tw  ns2 abc com tw
47.  to the list    Delete selected item   Delete the service item content from the list   Apply   Click    Apply    to save the modified parameters    Cancel   Click    Cancel    to cancel all the changes made to the    parameters     Accept Allowed Domains    In some companies or schools  employees and students are only allowed to access some specific    websites  This is the purpose of the function        100    your future life    Multi WAN QoS Router        Block Forbidden Domains       Accept Allowed Domains       Allowed Domains    Allowed Domains Enabled    add  oo    Add to list       Nelets relected domain       Enabled   Activate the function  The default setting is    Disabled        Add   Input the allowed domain name  etc  www google com    Add to list   Add the rule to list    Delete selected item   Users can select one or more rules and click to delete        Content Filter Scheduling    Select    Always    to apply the rule on a round the clock basis  Select    from     and the operation will  run according to the defined time  For example  if the control time runs from 8 a m  to 6 p m   Monday to    Friday  users may control the operation according to the following illustrated example        Scheduling    Apply this rule   Always v   B    to   Ka    24 Hour Format           Everyday Sun Mon Tue Wed Thu Fri Sat    Anake Cancel       101    your future life    Always      Day Control      Multi WAN QoS Router    Select    Always    to apply the rule on a round the
48. 0 10 15 10 20 10 25 10 30 10 35 10 40 10 45 10 50      The UI might vary from model to model  depending on different product lines     10 55    10 55          11 00    Average     E 1328  E 1338  E 1690  E 1487  Eo   E 1041    Kbps  Kbps  Kbps  Kbps  Kbps  Kbps    UnitMinutes    Average     E 411  E 398  E 431  M516  E o   M 434    Kbps  Kbps  Kbps  Kbps  Kbps  Kbps    UnitMinutes    lll  WAN Traffic Statistic  Day  graphic and average  up down stream  As in the following figures     17    ONO    your future life    M Enabled QRTG  WAN Traffic Statistics Day           WAN Downstream M wani1l wan2 M wana M wan4 M wans I wans M wan7 l wang    Unit  e900  Kbps    4000    2000      12 00 14 00 16 00 18 00 20 00 22 00 0 00 2 00 4 00       WAN Upstream M want M wan2 M wan3 M wan4 M wans C wans M wan7  C wang    Unit     Kbps  1000    12 00 14 00 16 00 18 00 20 00 22 00 0 00 2 00 4 00      The UI might vary from model to model  depending on different product lines     Multi WAN QoS Router    8 00          10 00        F    Average     E 2342    2568  E 2050  M2179  E o     2619    UnitHours    Average     M698  E 673  E 607  E 603  HO   m 669    UnitHours    IV  WAN Traffic Statistic  Week  graphic and average  up down stream  As in the following figures     18    Kbps  Kbps  Kbps  Kbps  Kbps  Kbps    Kbps  Kbps  Kbps  Kbps  Kbps  Kbps    ONO    your future life    Multi WAN QoS Router    V Enabled QRTG  WAN Traffic Statistics Week          WAN Downstream M wan1 M wan2 M wan3 M wan4
49. 01 192 168 1 101 101 i 1 4192 168 1 2 2 ll    100 192 168 1 100 100 i  1 192 168 1 2 2 i          68    your future life    User Edit IP    Name  IP Address    Add to IP List    Local Group Set    IP Group    Group Name    Delete Group     gt  gt  gt  gt   button    Delete  Apply    Cancel    Multi WAN QoS Router    The IP list will show the list which learns the IP addresses automatically on the    left under side  You can also modify IP addresses manually   Input the name of IP address  or range  showed below   Input IP address  or range   For example  192 168 1 200   250     After setting name and IP address  push this button to add the information into    the IP list below  If this IP  or range  is already in the list  you can not add it again   You can choose from the IP list on the left side to set up a local IP group     Choose IP Group that you would like to modify  If you would like to add new    groups  please push    Add Group    button   When you add new groups  please note if the group name is in the column     Choose the group that you would like to delete from the pull  down list  and push  the    Delete Group    button  System will ask you again if you would like to delete    the group  After pushing the confirmation button  the group will be deleted     You can choose several IPs from IP list on the left side  and push this button to    have them added into the group the right side   Delete self  defined IP or IP range   Click    Apply    to save the network 
50. 16 real IP addresses  220 243 230 1 16 with Mask 255 255 255 240   users have to separate the 16 IP addresses into two groups  220 243 230 1 8 with Mask 255 255 255 248   and 220 243 230 9 16 with Mask 255 255 255 248 and then set the device and the gateway in the same  group with the other group in the DMZ     32    your future life    Multi WAN QoS Router    Interface  mz    O DMZ IP ranges are the same with WAN IP       Subnet O Range  DMZ  amp  WAN within same subnet       ranges in Router Plus NAT mode    Specify DMZ IP Address  0  o  e    Subnet Mask 255  255  255  0    Beek   Apy   Caneel    Range      DMZ and WAN within same Subnet    Interface    OME       DMZ IP ranges are the same with WAN IP        Subnet    Range  DMZ  amp  WAN within same subnet      ranges in Router Plus NAT mode    Interface  IP Range for DMZ port M p p o joo       Beck   C Apy   Cancel    IP Range  Input the IP range located at the DMZ port     After the changes are completed  click    Apply    to save the configuration  or click    Cancel  to leave    without making any changes     DMZ IP ranges are the same with WAN IP ranges in Router Plus NAT mode      33    your future life    Multi WAN QoS Router    Interface DMZ    DMZ IP ranges are the same with WAH IP     Subnet    Range  DMZ  amp  WAN within same subnet     i ng  ranges in Router Plus NAT mode  Interface    LAN Default Gateway1 0  o  o  o     LAN  Public  IP Range o  o  o  o   o    LAN  Public  IP Rangelo  o  o  o to    LAN  Public 
51. 3 d3 ef   b2   c dynamic  192 168 1 252 HA Bf    J3d 83 74 28 dynamic       Ge WWIANDOWS  Syustems2 arp  a    It is found that the IP of 192 168 1 1 and 192 168 252 points to the same MAC address as  00 0f 3d 83 74 28  Evidently  this is a cheat by ARP   3  ARP Solution    Now we understand ARP  ARP cheat and attack  as well as how to identify this type of attack  What  comes next Is to find out effective prevention measures to stop the network from being attacked  The general    solution provided by Qno can be divided into the following three options   a  Enable    Prevent ARP Virus Attack        Enter the device IP address to log in the management webpage of the device  Enter    Firewall  gt  General     and find the option  Prevent ARP Virus Attack  to the right of the page  Click on the option to activate it and  click  Apply  at the bottom of the page  see illustrated      31    your future life    Multi WAN QoS Router              Enabled    Disabled  Enabled    Disabled  Enabled    Disabled Bacicu     Enabled     Disabled      Enabled      Disabled Port  9     Enabled     Disabled     Enabled    Disabled    Router sends ARP times per second        b  Bind the Gateway IP and MAC address for each PC    This prevents the ARP from cheating IP and its MAC address  First  find out the gateway IP and MAC    address on the device end        LAN Setting       Device IP Address  192  166 1 1 Subnet Mask  255 255   255 0  Multiple Subnet Disabled       On every PC  start or opera
52. 4 49 79 1863  192 168 8 100 TCP 51877 WANI  114 47 207 109   1257 0 0  192 168 8 100   TCP   51893   WAN1   192 168 3 10   1025   22   22  192 168 8 100 TCP 51897 WAN1 192 168 3 10 1318 44 44  192 168 8 100 TCP   51899   WAN1   192 168 3 10   1318   0   0  Retesh  Host Name   Display PC names that having outbound traffic  It will       show blank when the system cannot analyze   Session   Display PC connection sessions that having outbound    traffic        N    your future life    Multi WAN QoS Router    Refresh   Click the Refresh button that the latest data and list will be  updated     12 6 QRTG  Qno Router Traffic Grapher     QRTG utilizes dynamic GUI and simple statistic to display system status of Qno Firewall  Router    presently  including CPU Utilization     Memory Utilization     Session and WAN Traffic     Enable QRTG  The funcation is disabled by default  When you are going to enable the QRTG function   system will pop up a warning massage to remind you this function will be enabled  which may influence  router efficiency  You can use drop down menu to select current status that including statistic and graphics of  the following items when this function is enabled  System will refresh the statistic and graphics to latest data    timing when you click    Refresh    button     I  CPU Usage  As in the the following figure     1  CPU Hours Usage Rate graphic   average  maximum   2  CPU Days Usage Rate graphic   average  maximum   3  CPU  Week Usage Rate graphic   ave
53. Cenes       129    your future life    Enabled      System Name      System Contact      System Location      Get Community Name      Set Community Name      Trap Community Name      Send SNMP Trap to      Apply      Cancel      Multi WAN QoS Router    Activate SNMP feature  The default is activated   Set the name of the device such as Qno     Set the name of the person who manages the device  i e  John    Define the location of the device  i e  Taipei      Set the name of the group or community that can view the device  SNMP data  The default setting is  Public      Set the name of the group or community that can receive the device  SNMP data  The default setting is  Private      Set user parameters  password required by the Trap receiving host  computer  to receive Trap message     Set one IP address or Domain Name for the Trap receiving host  computer     Press    Apply    to save the settings     Press    Cancel    to keep the settings unchanged     130    N  ONO    your future life    Multi WAN QoS Router    11 5 System Recover    Users can restart the device with System Recover button     System Tool  Password Setup    Diagnostic             Firmware Upgrade    Configuration Backup    Network Time          System Recover    Eestart Eouter       Factory Default    Return to Factory Default Setting    System Recover    As the figure below  if clicking    Restart Router    button  the dialog block will pop out  confirming if users    would like to restart the device       
54. J             Name       Enabled       Add to list       Delete zajecia item    L  Block MAC address on the list with wrong IP address  L  Block MAC address not on the list    eraa Cemzel  There are two methods for setting up this function    Block MAC address not on the list    This method only allows MAC addresses on the list to receive IP addresses from DHCP and have Internet    access  When this method is applied  please fill out Static IP with 0 0 0 0  as the figure below         64    ONO    your future life    Multi WAN QoS Router       IP  amp  MAC Binding    Chr a F    r 10 poor  Snow new IP use          Delate selected item          Block MAC address on the list with wrong IP address  Block MAC address not on the list    IP  amp  MAC Binding    65    N    your future life    Multi WAN QoS Router       IP  amp  MAC Binding    Show new IP user       siaticiP       f ff    mACAddress                          Name   fs    Enabled          Add to list       Debi selecte   item       Block MAC address on the list with wrong IP address  Block MAC address not on the list    Static IP   There are two ways to input static IP     1  If users want to set up a MAC address to acquire IP from  DHCP  but the IP need not be a specific assigned IP   input 0 0 0 0 in the boxes  The boxes cannot be left    empty     2  If users want DHCP to assign a static IP for a PC every  single time  users should input the IP address users want  to assign to this computer in the boxes  The server o
55. MAC Clone  9  Management and maintenance settings  Syslog  SNMP  and configuration backup  10  Logout    2 2 Setting Flow Chart  Below is the description for each setting process  and the crospondent contents and purposes  For    detailed functions  please refer to Appendix    Setting Inferface and Chapter Index          Setting Content Purpose       Q    your future life    Multi WAN QoS Router    1 Configure the Install the device hardware based on user  Hardware installation  network to meet physical requirements     user   s demand     2 Login Login the device with   Login the device web  based Ul   Web Browser     Verify device Verify Firmware Verify the device specification  Firmware       specification version and working   version and working status   status   Set password and time   Set time and re  new   Modify the login password considering safe  password  issue   Synchronize time with WAN   Verify WAN Connect to WAN  Configure bandwidth to    connection setting  optimize data transmission     Set WAN connection    bandwidth allocation    and protocol binding    Set mirror port and Provide mirror port  port management and  VLAN  Allocate and VLAN setting functions  Support Static DHCP    Set LAN connection     physical port and IP        manage LAN IP  IP allocation to meet different needs  IP group  address settings oC  will simplize the management work       Restrict bandwidth To assure transmission of important  Set QoS bandwidth      and session of WAN _  infor
56. Open or execute any strange  Suspicious documents  and procedures such as the unknown attachment    enclosed in E mail and plug in   4  Summary    ARP attack prevention is a serious and long term undertaking  The above methods can basically  resolve the network problems caused by ARP virus attack  Moreover  clients who adopted similar methods  witness good results  However  it is important that network administrators pay special attention to this  problem rather than overlooking the issue  It is suggested that the above measures can be adopted to    prevent ARP attack  reduce the damage  enhance the work efficiency  and minimize economic loss     37    your future life    Multi WAN QoS Router    Appendix Ill   Qno Technical Support Information    For more information about the Qno s product and technology  please log onto the Qno s bandwidth  forum  refer to the examples of the FTP server  or contact the technical department of Qno s dealers as well    as the Qno s Mainland technical center   Qno Official Website  http    Awww Qno com tw  Dealer Contact  Users may log on to the service webpage to check the contacts of dealers   http    www qno com tw web where_buy asp  Taiwan Support Center      E  mail   QnoFAE qno com tw    38    
57. P to go  through a specific service provider for connection  or assign an IP for a specific destination to go    through the WAN users assign to connect with the Internet     For example  if users want to assign IP 192 168 1 100 to go through WAN 1 when connecting  with the Internet  or assign all Intranet IP to go through WAN 2 when connecting with servers with  port 80  or assign all Intranet IP to go through WAN 1 when connecting with IP 211 1 1 1  users    can do that by configuring    Protocol Binding        Attention  When the Auto Load Balance mode is collocated with Protocol Binding  only IP       36    your future life    Multi WAN QoS Router    addresses or servers that are configured in the connection rule will follow the rule for external  connections  those which are not configured in the rule will still follow the device Auto Load Balance    system     Please refer to the explanations in 6 2 3 Configuring Protocol Binding for setting up Protocol    Binding and for examples of collocating router modes with Protocol Binding     Specify WAN Binding Mode    This mode enables users to assign specific intranet IP addresses  destination application service  ports or destination IP addresses to go through an assigned WAN for external connection  After being  assigned  the specific WAN will only support those assigned Intranet IP addresses  specific destination  application service ports  or specific destination IP addresses  Intranet IP  specific destination  applicatio
58. Recover       22    your future life    Multi WAN QoS Router    Tr avaiiy  Se High aaiiy  teense key Gionee O O O  Oooo e o  sans ress      System og 4 System tag  system satus  42 System Sas  Fate state atete OO  oo oo eensame  aeons       23    your future life    Multi WAN QoS Router    Appendix II   Troubleshooting   1  Block BT Download    To block BT and prevent downloading by users  go to the    Firewall   gt  Content Filter  and select  Enable    Website Block by Keywords   followed by the input of  torrent   This will prevent the users from downloading        C  Forbidden Domains Enabled          Website Blocking by Keywords  Enable Website Blocking by Keywords       Exception IP address wie o   R o     o   a lo  to o      Group       Add to list    d torrent  Forbidden all IF addresses             Dalata selected beywords       24    ONO    your future life    Multi WAN QoS Router     2  Shock Wave and Worm Virus Prevention    Since many users have been attacked by Shock Wave and Worm viruses recently  the internet    transmission speed was brought down and the Session bulky increase result in the massive processing load    of the device  The following guides users to block this virus    corresponding port for prevention     a  Add this TCP135 139  UDP135 139 and TCP445 Port     Service Name            Protocol    Port Range      de l    Add to list           TCP 1437143  TCP  212972119  TCP 110  110  UDP  161     161     _  T         25    TA  TELNET Secondary  TCP
59. Router    Forti Information          10Base T   100Base TX         Down   Port Enabledb name  broadCast  gt   Normal   10 Mbps   Half    Enabled    VLAN       l    Receive Packets Count   a7  Transmit Packets Count   188  O Eror Packets Count        The current port setting status information will be shown in the Port Information Table  Examples  type   10Base T 100Base TX   iniferface  WAN  LAN  DMZ   link status  Up  Down   physical port status  Port  Enabled  Port Disabled   priority  high or normal   speed status  10Mbps or 100Mbps   duplex status  Half   Full   auto negotiation  Enabled or Disabled   The tabble also shows statistics of Receive  Transmit Packets   Receive Transmit Packets Byte Count as well as Error Packets Count     13     a te 3  lt a  a D i i    Fil  E ng g    on ih AW  aS    E Wa    your future life           Multi WAN QoS Router    5 1 3 System Information       System Information    192  168 1 1 255 255 255 0 D  E v1 0 11 04  May 27 2010  Gateway 10 27 24     0 Days 0 Hours 6 Minutes 45    P Sun Mar 18 2164 14 38 23       NA  NA  NA       LAN  IP Subnet Mask   Identifies the current device IP address  The default is 192 168 1 1     Working Mode  Indicates the current working mode  Can be NAT Gateway or Router mode  The default    is    NAT Gateway    mode   System Active Time   Indicates how long the Router has been running   Serial Number   This number is the Router serial number   Firmware Version   Information about the Router present software ve
60. Syslog  syslog Server  ee ame or IF Address    d Syn Flooding d IP Spoofing F  Win Nuke   F Fing Of Death Unauthorized Login Attempt    L  Deny Policies C  Allow Policies Authorized Login   View System Log Outgoing Log Table Incoming Log Table Clear Log How  System Log    If this option is selected  the System Log feature will be enabled     your future life    Syslog Server      E mail Alert Future Feature        E mail Alert    Enabled    Multi WAN QoS Router    The device provides external system log servers with log collection  feature  System log is an industrial standard communications protocol   It is designed to dynamically capture related system message from the  network  The system log provides the source and the destination IP  addresses during the connection  service number  and type  To apply  this feature  enter the system log server name or the IP address into    the empty  system log server  field     Mat servers  name ort acer     tea Time threshold  30 minutes    Enabled     Mail Server     E  mail     Log Queue Length     Log Time Threshold     Send Log to E  mail        Send Log to E mail    If this option is selected  E mail Warning will be enabled   If users wish to send out all the logs  please enter the E mail server  name or the IP address  for instance  mail abc com    This is set as system log recipient email address such as  abc mail abc com   Set the number of Log entries  and the default entry number is 50   When this defined number is reached  i
61. actessec                                              Siock tis iP whenresch le        Biot mis iP whenreach    E  Preshotd e m m o  Threshold counted by si a Threshold counted by ai E  peckess w ot  29  Packetssec  Single OesziP Trresmoid   gt    Peres set  Threshold coumed D  zr Pa a ea  hisapan j      peceesssec SingesorosiPTrresnoid     Paceetssec  Block tis IP whenrescn      Block tis iP wrenresch s   SEEE E jmi wes presnoid S   minanes   races Be aMMa M  2  F   PIPIPIE  1    Pie Ie IE  2 jo  jo Je  i  a pe   i   p    t D       EE                      Kray Terie eb ah   Pest Cites     Packet Type  This device provides three types of data packet  transmission  TCP SYN Flood  UDP Flood and ICMP Flood     WAN Threshold  When all packet values from external attack or from  single external IP attack reach the maximum amount  the default is  15000 packets Sec and 2000 packets Sec respectively   if these  conditions above occurs  the IP will be blocked for 5 minutes   the  default is 5 minutes OBJ 176    Users can adjust the threshold value and  the blocking duration to effectively deal with external attack  The  threshold value should be adjusted from high to low     LAN Threshold  When all packet values from internal attack or from  single internal IP attack reach the maximum amount  the default is  15000 packets Sec and 2000 packets Sec respectively   if these  conditions above occurs  the IP will be blocked for 5 minutes  the default  is 5 minutes   Users can adjust the thr
62. advanced configuration page   Obtain an Automatic IP automatically     This mode is often used in the connection mode to obtain an automatic DHCP IP  This is the device  system default connection mode  It is a connection mode in which DHCP clients obtain an IP address  automatically  If having a different connection mode  please refer to the following introduction for selection of  appropriate configurations  Users can also set up their own DNS IP address  Check the options and input the    user defined DNS IP addresses     21    your future life    Multi WAN QoS Router    Interface  WANI    WAN Connection Type        C  Use the Following DNS Server Addresses  DNSServer Required    0   o  fe   fo    DNSServer Optional    o  o  e  e      _  EnabledLine Dropped Scheduling    Line Dropped Period  from o   i o   to   o    24 Hour Format     Po ey minutes ahead line dropped to start new session      transferring       Backup Interface    disab    Use the following DNS Server Select a user defined DNS server IP address    Addresses     DNS Server   Input the DNS IP address set by ISP  At least one IP group should be  input  The maximum acceptable groups is two IP groups    Enable Line Dropped The WAN disconnection schedule will be activated by checking this   Scheduling   option  In some areas  there is a time limitation for WAN connection  service  For example  the optical fiber service will be disconnected from  0 00 am to 6 00 am  Although there is a standby system in the device
63. agnostic    If one or more computers are affected by the ARP virus  we must learn how to diagnose and take  appropriate measures  The following is experience shared by Qno technical engineers with regard to the ARP    prevention     Through the ARP working principle  it is known that if the ARP cache is changed and the device is  constantly notified with the series of error IP or if there is cheat by fake gateway  then the issue of  disconnection will affect a great number of devices  This is the typical ARP attack  It is very easy to judge if    there is ARP attack  Once users find the PC point where there is problem  users may enter the DOS system to       30    your future life    Multi WAN QoS Router    conduct operation  pining the LAN IP to see the packet loss  Enter the ping 192 168 1 1  Gateway IP address     as illustrated     eply from 192 168 1 1  bytes 32 time lt ims  eply from 192 168 1 1  hbytes 32 time lt ims  equest timed out   equest timed out     equest timed out   equest timed out   eply from 192 168 1 1  bytes 32 time lt ims  eply from 192 168 1 1  bytes 32 timetims       lf there are cases of packet loss of the ping LAN IP and If later there is connection  it is possible that the  system is attacked by ARP  To verify the situation  we may judge by checking ARP table  Enter the ARP  a    command as illustrated below     Interface  192 168  1 72      x2  Internet Address Physical Address Type  192 168 1 i HA BF     3d 83 74 268 dynamic    192 168 1 43 p   1
64. ample 2   How do   configure Protocol Binding to keep traffic from all Intranet IP addresses from going  through WAN2 when the destinations are IP 211 1 1 1   211 254 254 254 as well as the whole Class A  group of 60 1 1 1   60 254 254 254  while traffic to other destinations goes through WAN1      As in the following figure  there are two rules to be configured  The first rule  Select    All Port     TCP amp UDP 1 65535     from the pull down option list    Service     and then in the boxes of    Source IP       input    192 168 1 0   0     which means to include all Intranet IP addresses   In the boxes for    Destination  IP    input    211 1 1 1   211 254 254 254   Select WANZ2 from the pull down option list    Interface     and  then click    Enable     Finally  click    Add New    and the rule will be added to the mode  The second rule     Select    All Port  TCP amp UDP 1 65535     from the pull down option list    Service     and then in the boxes of       Source IP    input    192 168 1 0   0     which means to include all Intranet IP addresses   In the boxes of       Destination IP    input    211 1 1 1      60 254 254  254      Select WANZ2 from the pull down option list       Interface     and then click    Enable     Finally  click    Add New     and the rule will be added to the mode     After the rule has been set up  all traffic that is not going to the assigned destinations will only be    transmitted through WAN1     51    ONO    your future life    Multi WAN
65. and relevant duty will be prosecuted as well      2  Scope of Authority of  Manual     The user may install  use  display and read this  Manual on the complete set of computer      3  User Notice  If users obey the law and this Agreement  they may use this  Manual  in accordance with  Agreement   The   hardcopy or softcopy  of this Manual is restricted using for information  non commercial and personal  purpose  Besides  it is not allowed to copy or announce on any network computer  Furthermore  it is not  allowed to disseminate on any media  It is not allowed to modify any part of the  file   Using for other purposes  is prohibited by law and it may cause serious civil and criminal punishment  The transgressor will receive the    accusation possibly      4  Legal Liability and Exclusion   4 1  Qno will check the mistake of the texts and diagrams with all strength  However  Qno  distributors  and  resellers do not bear any liability for direct or indirect economic loss  data loss or other corresponding    commercial loss to the user or relevant personnel due to the possible omission        your future life    Multi WAN QoS Router     4 2  In order to protect the autonomy of the business development and adjustment of Qno  Qno reserves  the right to adjust or terminate the software   Manual any time without informing the users  There will be no  further notice regarding the product upgrade or change of technical specification  If it is necessary  the change  or termination will
66. andwidth control for certain Service    Ports  A guarantee bandwidth control for external connections can also be configured if there is an  internal server     76    ONO    your future life    Multi WAN QoS Router       Quality of Service                Interface     wan1 O wan2 CO use  Service   All Traffic TCP amp UDP 1 85535     Service Management    Padaess E   e e le le loe       Direction    Upstream we    Mini  Rate      Kbitisec Max Rate     Kbit   sec      Share total bandwidth with all IP addresses      Assign bandwidth for each IP address   Enabled          Bandwidth sharing         Add to list hove Down                CL  Enabled Smart Qos    Interface   Select on which WAN the QoS rule should be executed  It can be a single    selection or multiple selections     Service Port   Select what bandwidth control is to be configured in the QoS rule  If the    bandwidth for all services of each IP is to be controlled  select    All  TCP amp UDP   1 65535     If only FTP uploads or downloads need to be controlled  select     FTP Port 21 21     Refer to the Default Service Port Number List     11    N    your future life    IP Address      Direction      Min   amp  Max  Rate     Kbit Sec     Multi WAN QoS Router    This is to select which user is to be controlled  If only a single IP is to be    restricted  input this IP address  such as    192 168 1 100 to 100     The rule will  control only the IP 192 168 1 100  If an IP range is to be controlled  input the   range  su
67. arrange the list  as described in the following      Service Name  All Traffic  LTCP amp UDP  1 65535      DNS  UDP  5353     FIP  TcP 21 21   HTTP  TCP B8080           Bolo HTTP Secondary  TCP  808078080   HTTPS  TCP 443 443   ICP    HTTPS Secondary  TCP 98443 8443    UDP   69 69   Port Range  TCP  1437143   to  TCP  119119      TCP 110110    UDF 161  161    TCP 2525   TELNET  TCP 2323   TELNET Secondary  TCP B023 8023                 Add to list          Service Name  In this box  input the name of the Service Port which users  want to activate  such as BT  etc    Protocol  This option list is for selecting a packet format  such as TCP or  UDP for the Service Ports users want to activate    Port range  In the boxes  input the range of Service Ports users want to  add        46    your future life    Multi WAN QoS Router    Add To List  Click the button to add the configuration into the Services List   Users can add up to 100 services into the list    Delete selected To remove the selected activated Services    service    Apply  Click the    Apply    button to save the modification    Cancel  Click the    Cancel    button to cancel the modification  This only    works before    Apply    is clicked     Exit  To quit this configuration window     Auto Load Balancing mode when enabled      The collocation of the Auto Load Balance Mode and the Auto Load Mode will enable more flexible  use of bandwidth  Users can assign specific Intranet IP addresses to specific destination appli
68. c rules match destination IP addresses     3  None  The traffic rules neither match traffic rules nor check MAC addresses   Choose service port protocols for games  videos  or other network applications  required to be prioritized    You can choose TCP  UDP  or any other protocols listed    Input service ports for games  videos  or other network applications required to be  prioritized  Range is 1 65535    Activate the rule    Add this rule to the list     Remove the rules selected from the Service List     84    your future life    8 4 Smart QoS    Multi WAN QoS Router    The smart QoS function enables the administrators to constrain the bandwidth occupied    automatically without any configuring        Each IF s upstream bandwidth threshold   Kbit sec    Each IF s downstream bandwidth threshold   Kbit sec    Each IF s Maximum bandwith     Upstream  WAN 1  Kbitisec WAN 2  Kbit sec      USB  Kbit sec     Downstream  WAN 1  Kbitsec WAN 2  Kbit sec      USB  Kbit sec     L  Fenalty mechanism    Show Fanel ty IF    Enabled QoS     When the usage of any WAN   s bandwidth is  over than  __   Enable Smart QoS   Each IP   s upstream bandwidth threshold   for all WAN      Each IP   s downstream bandwidth threshold   for all WAN    If any IP   s bandwidth is over maximum  threshold  its maximum bandwidth will    remain      Enabled Penalty Mechanism            Choose to apply QoS function     Input the required rate value into the column  The  default is 60      Input the max  upstrea
69. cation  service ports or assign specific destination IP addresses to a WAN users choose for external    connections     Example 1   How do   set up Auto Load Balance Mode to assign the Intranet IP 192 168 1 100 to WAN2 for the    Internet     47    your future life    Multi WAN QoS Router    As in the figure below  select    All Traffic    from the pull down option list    Service     and then in the  boxes of    Source IP    input the source IP address    192 168 1 100  to    100     Retain the original numbers     0 0 0 0    in the boxes of    Destination IP     which means to include all Internet IP addresses   Select  WAN2 from the pull down option list    Interface     and then click    Enable     Finally  click    Add New    and    the rule will be added to the mode     Show Priority       SMTP  TCP 25 25      Service      service Management       Source IF   i92 i686 1 ao to 1   Group    Destination IP  0    0    0 0 to    Interface  WANI  Enable       All Traffic  TCPAUDF 1 65535   gt 192  166  1  100100 i0  0  0  0 0  0  0  0JWANI       Deletes selected aonlication       Back     Apay   C Cenedl    Example 2   How do   set up Auto Load Balance Mode to keep Intranet IP 192 168 1 150   200 from  going through WAN2 when the destination port is Port 80    As in the figure below  select    HTTP  TCP 80 80     from the pull down option list    Service     and  then in the boxes for    Source IP    input    192 168 1 150    to    200     Retain the original numbers    0 0 0
70. ch as    192 168 1 100   150     The rule will control IP addresses from  192 168 1 100 to 150  If all Intranet users that connect with the device are to   be controlled  input    O    in the boxes of IP address  This means all Intranet IP   addresses will be restricted  QoS can also control the range of Class B     Upstream  Means the upload bandwidth for Intranet IP   Downstream  Means the download bandwidth for Intranet IP     Server in LAN  Upstream  If a Server for external connection has been built in  the device  this option is to control the bandwidth for the traffic coming from    outside to this Server     server in LAN  Downstream  If there are web sites built in the Intranet  this  option is to control the upload bandwidth for the connections from outside to  this Server  For example  game servers have been built in many Internet  caf  s  This rule can be used to control the bandwidth for connections from  outside to the game server of a cafe to update data  In this way  game players  inside the cafe will not be affected    The minimum bandwidth  The rule is to guarantee minimum available    bandwidth     The maximum bandwidth  This rule is to restrict maximum available    bandwidth  The maximum bandwidth will not exceed the limit set up under    this rule     Attention  The unit of calculation used in this rule is Kbit  Some software    indicates download upload speed by the unit KB  1KB   8Kbit     78    your future life    Bandwidth sharing      Enable    Add t
71. com                                     Host   Display the host name without domain name of mail host    Name          Weight  Indicate the order of several mail hosts  the smaller has more priority  E  Mail Input the server name which is saved in A Record or external mail server  F  Server           Click    Apply    button to save the configuration  Besides  users have to configure DNS service port    as following description        122    your future life    Multi WAN QoS Router    10  Enable DNS Query  DNS service port  in Access Rule of Firewall setting     Add a new access rule in Firewall setting to enable DNS service port of the WAN on which    Inbound Load Balance need to be enabled     Action  Check    Allow       Service Port  From the drop down menu  select    DNS  UDP 53 53        Log  Check    Enable    if DNS Query data should be recorded    Interface  Check the WAN port on which Inbound Load Balance is enabled    Source IP  Select    Any       Dest  IP  Select WAN port and input correspondingly IP of the domain name  Take the    previous example  input 210 10 1 1     Scheduling  Select    Always        11  Enable internal IP and service port corresponding to A Record in Port Range Forwarding of Advanced    Function        Port Range Forwarding    service Port    All Traffic  TCP amp UDP 1 65535           Service Port Management    Internal IP Address                 Interface    ANY          Enabled        Add to list  Dalis selected item  Service Port  Activa
72. configuration modification    Click    Cancel    to leave without making any changes     Remote IP Group Management     Basically  Remote IP Group setups are exactly the same as Local IP Group setups  However  remote IP    group does not have automatically learning functions  Instead  you need to define addresses  ranges and    groups manually  For example  220 130 188 1 to 200  range      69    ONO    your future life    User Edit IP    ie   it E hl       IP List       Multi WAN QoS Router    RemotebroupSet    IPGroup  Y    A d d Gr oup       Delete Group    GroupName           lt is the same setting methods  You should set the IP address or the range of remote IP from the left side    first  and choose to add IP address information from the left side into the remote group     70    your future life    Multi WAN QoS Router    7 7 Port Group Management    Service ports can be grouping as IP grouping  It is convenient to set QoS  firewall access rules  and other    functions     user edit port Port GroupSet  ee Add GY 01 j   Fort    Add to Port list  Range      to     i 5    Fort List GroupName     sd    Delete Group       name protocol port delete   name protocol port delete  All Traffic BOTH 1 65535  DNS UDP 53 53  FTP TCP 21 21  HTTP TCP 80 80  a TCP   8080 8080    secondary  HTTPS TCP 443 443    TPP  ies TCP   8443 9443  secondary  TMF UDF 69 59    IMAP TCP 143 143  NNTP TCP 119 119  POP3 TCP 110 110  SNMP UDP 161 161  SMTP TCP 25 25  TELNET TCP 23 23 v  Araya Cancel  User
73. connection is resumed quickly  This is caused by the clash with MAC address  When virus contained  MAC mirrors to such NAT equipments as host devices  there is complete disconnection within the network  If  it mirrors to other devices of the network  only devices of this affected network have problems  This happens  mostly to legendary games especially those with private servers  Evidently  the network is attacked by ARP   which aims to crack the encryption method  By doing so  they hackers may intercept the packet data and user  information through the analysis of the game s communication protocol  Through the spread of this virus  the  detailed information of the game players within the local network can be obtained  Their account and    information are stolen  The following describes how to prevent such virus attack     First  let us get down to the definition of ARP  Address Resolution Protocol   In LAN  what is actually  transmitted is  frame   in which there is MAC address of the destination host device  So called    Address  Analysis    refers to the transferring process of the target IP address into the target MAC address before the  host sends out the frame  The basic function of ARP protocol aims to inquire the MAC address of the target    equipment via the IP address of the target equipment so as to facilitate the communications     The Working Principle of ARP Protocol  Computers with TCP IP protocol have an ARP cache  in    which the IP address corresponds to the
74. d off          Enabled       Enabled  lo Enabled       Enabled     Enabled       Enabled       _    Enabled    O Disabled    O Disabled       Disabled     Disabled     Disabled     Disabled      Disabled             Port   50    Router sends ARP 20   times per second        Restrict WEB Features       Java      Cookies  _U Activex    CL Access to HTTP Proxy Servers    Don t block Java Activex Cookies Proxy to Trusted Domains    Firewall   This feature allows users to turn on off the firewall   SPI  Stateful Packet This enables the packet automatic authentication detection technology   Inspection    The Firewall operates mainly at the network layer  By executing the    dynamic authentication for each connection  it will also perform an    alarming function for application procedure  Meanwhile  the packet    authentication firewall may decline the connections which use    non standard communication protocol     87       your future life    Multi WAN QoS Router    DoS  Denial of Service    This averts DoS attacks such as SYN Flooding  Smurf  LAND  Ping of  Death  IP Spoofing and so on     Block WAN request   If set as Enabled  then it will shut down outbound ICMP and abnormal  packet responses in connection  If users try to ping the WAN IP from the  external  this will not work because the default value is set as activated in    order to decline the outbound responses     Remote Management   To enter the device web  based UI by connecting to the remote Internet   this feature mu
75. d select the port that employs the same ISP     After the changes are completed  click    Apply    to save the configuration  or click    Cancel  to leave    without making any changes     Router Plus NAT Mode      When you apply a public IP address as your default gateway  you can setup this public IP address into a  LAN PC  and this PC can use this public IP address to reach the Internet  Others PCs can use NAT mode to    reach the Internet     If this WAN network is enabled the Router plus NAT mode  you can still use load balancing function in this    WAN network        30    your future life    Multi WAN QoS Router    Interface   WAHL    WAN Connection Type  uter Plus NAT Mode we    WAN IP Address   SP e      Subnet Mask   255    255    255      Default Gateway     DNS Server Required      DNS Server Optional      LAN Default Gateway 1   LAN  Public  IP Range 1     e    e    o  e   e   LAN  Public  IP Range 2 0     e   e  e    30  a   o    LAN Default Gateway     LAN  Public  IP Range 1   LAN  Public  IP Range       LAN Default Gatew   LAN  Public  IP Range 1   LAN  Public  IP Range 2           KEI  HEJ    p   p   p   p    b        F    to    COE N   e le   C    H  e_  fe_    e_  fe_    E   E  ee  ee  ee   e   e_     o   o fie    o fio  o    o fto    e fte    o    e fto    E loo       EnabledLine Dropped Scheduling  Line Dropped Period  fram    0   to  o     4 Hour Format     Line Dropped Scheduling    LES ahead line dropped to start new session  transferring    Backup In
76. de    If strategy Routing is selected  the device will automatically allocate external connections based on       37    your future life    Multi WAN QoS Router    routing policy  Division of traffic between Telecom and Netcom is to be used in China  embedded in the device   All you have to do is to select the WAN  or WAN group  which is connected with Netcom  the device will then  automatically dispatch the traffic for Netcom through that WAN to connect with the Internet and dispatch traffic  for Telecom to go through the WAN connected with Telecom to the Internet accordingly  In this way  the traffic    for Netcom and Telecom can be divided     Set WAN Grouping     If more than one WAN is connected with Netcom  to apply a similar division of traffic policy to these  WANs  a combination for the WANs must be made  Click    Set WAN Grouping     an interactive window    as shown in the figure below will be displayed     Name       Interface    Lo  WAN 4     WAN 2    L use    Add to list Deletes selected          Name  To define a name for the WAN grouping in the box  such as       Education    etc  The name is for recognizing different WAN groups     Interface  Check the boxes for the WANs to be added into this combination   Add To List  To add a WAN group to the grouping list    Delete selected  To remove selected WANs from the WAN grouping    Apply  Click    Apply    to save the modification        38    N    your future life    Multi WAN QoS Router    Cancel  Click    Cancel
77. dress     Interface    AN1     Default 00 O0c 41 00 00 02   mic nanesstem8 P   O 0066650 02    Eek   Apki   Cancel        116    N    your future life    Multi WAN QoS Router    10 7 Inbound Load Balance    Qno Firewall Router not only supports efficient Outbound Load Balance  but Inbound Load  Balance  It distributes inbound traffic equally to every WAN port to make best use of bandwidth  It also  can prevent traffic from unequally distribution and congested  Users can use only one device to satisfy  the demand of Inbound Outbound Load Balance simultaneously    Following introduces how to enable and setup Inbound Load Balance step by step    Attention     In For some models of Qno routers  user can try the function for a period but with time limit  If the  function can match your network demand  you can apply for the official version License Key in Qno  Official Website  www gno com tw   After applying  auditing  paying and inputting License Key    successfully  users can use the official version without time limit     1  System Tool   gt  License Key   gt  Try to enable    Inbound Load Balance           License Key    Current Time   2009 12 09 _NTP Server    License Key Number              Submit    Official Version Registration time Status And Information       After enabling Trial version     Status and Information    column will display the remaining trial time  If    trial expires  the function can not work out at all unless users enter an official License Key     2  Go
78. dress is to be assigned  it should follow  the same format  For example  if the destination IP address is 210 66 161 54  it should be keyed in as  210 66 161 54 210 66 161 54  After the document has been saved  the extension file name is  txt   users can    import the IP range of self defined strategy        39    your future life    Multi WAN QoS Router       Selfdefinedstratepy txt   Notepad Seles  File Edit Format wiew Help    146 115 1 1  146 115 1 255  146 116  11 1  146 116 11 31  216 66 161 54  216 66 161 54    China Netcom strategy and self defined strategy can coexist  However  if a    destination IP is assigned by both China Netcom strategy and self defined strategy     China Netcom strategy will take priority  In other words  traffic to that destination IP will be  transmitted through the WAN  or WAN group  under China Netcom strategy        6 2 2 Network Service Detection    This is a detection system for network external services  If this option is selected  information such     Retry    or    Retry Timeout    will be displayed  If two WANs are used for external connection  be sure to    activate the NSD system  so as to avoid any unwanted break caused by the device misjudgment of the  overload traffic for the WAN     40    N    your future life    Multi WAN QoS Router       Network service detection    Interface     Retry     Retry Timeout     When Fail      s     C1 UO di    Interface    Enable   Retry count   Retry timeout Second   When Fai  when In Out bandwi
79. dth is over   9     Default Gateway   Remote Host YY   DNSLockupHost   sd    Select the WAN Port that enables Network Service Detection     This selects the retry times for network service detection  The default is  five times  If there is no feedback from the Internet in the configured     Retry Times   it will be judged as    External Connection Disconnected      Delay time for external connection detection latency  The default is 30    seconds  After the retry timeout  external service detection will restart      1  Generate the Error Condition in the System Log  If an ISP    connection failure is detected  an error message will be recorded in  the System Log  This line will not be removed  therefore  the some of  the users on this line will not have normal connections    This option is suitable under the condition that one of the WAN  connections has failed  the traffic going through this WAN to the  destination IP cannot shift to another WAN to reach the destination   For example  if users want the traffic to 10 0 0 1   10 254 254 254 to  go only through WAN1  while WAN2 is not to support these  destinations  users should select this option  When the WAN1  connection is disconnected  packets for 10 0 0 1 10 254 254 254  cannot be transmitted through WAN 2  and there is no need to remove    the connection when WAN 1 is disconnected      2  Keep System Log and Remove the Connection  If an ISP       41    N    your future life    Multi WAN QoS Router    connection failure i
80. e    o    Enable         Add to list       LJ Block MAC address on the list with wrong IP address  LJ Block MAC address not on the list    Apy o Caneel   Click to display IP and MAC binding list dialog box  In this box  the unbinding IP and MAC address    corresponding to the PC are displayed  Enter the  Name  of the computer and click on  Enabled  with the    display of the    V    icon and push the option on the top right corner of the screen to confirm           192 166 171 700    Now the bound options will display on the IP and MAC binding list  as illustrated in Figure 5  and click   Apply    to finish binding        35    N    your future life    Multi WAN QoS Router       IP  amp  MAC binding    Show new LP user       IP  amp  MAC binding    Static IP Address          MAC Address   00  _ 20  _jed  _ 41  _jeb  _ 94      Enable      Update this Entry    192 138 1 110   O0 20 ed 41 cb 9d 2PCO01  Enabled  192  165  1 130   gt  00 3e 4a 6d 3d 24 2PCO02  gt Fnabled       Delete selected Entry Add Hew       Block MAC address on the list with wrong IF address  Block MAC address not on the list    Though these basic operations can help solve the problem but Qno s technical engineers suggest that    further measures should be taken to prevent the ARP attack     1  Deal with virus source as well as the source device affected by virus through virus killing and the  system re installation  This operation is more important because it solves the source PC which is attacked by    ARP 
81. e  2000 1 2 7 10 49   fw 192 168 1 1 pri 5    erc 192 166 1 100 dst 192 168 1 1 user admin type mgmt meg  User     Jan 2 15 10 49 2000 login success fur agent  Mozilla 4 0  compatible  MSIE 8 0  Windows NT    5 1  Trident 4 0  NET CLR 2 0 50727   NET CLR 3 0 4506 2152  NET CLR    3 5 30729           Outgoing Packet Log      View system packet log which is sent out from the internal PC to the Internet  This log includes    LAN IP  destination IP  and service port that is applied  It is illustrated as below       Ontgoing Packet Loz   Windows Internet Explorer E  m           bttp192 168 1 Loutgome log htm wt    f cose  TEN TOO OENE 1 O E          Feb 6 03 46 03 2006 Preet Refused   Policy UDP 192 168 1 100 7464  gt 77 239 233 64 20301 on ixp2  Connection Refused   Policy    Feb 6 03 46 06 2006     violation    UDP 192 168 1 100 7464  gt 84 10 118 17 10682 on ixp   Connection Refused   Policy    Feb6 06 27 54 2006     violation    TCP 192 168 1 1 60  gt 192 1686 1 100 1224 on ixp0    Feb 6 08 18 58 2006 Connection Refused   Policy    i i TCP 192 168 1 107 18195  163 253 104 148 1234 on ixp1    violation    Connection Refused   Policy    Feb 6 08 19 53 2006 violalicn TCP 192 166 1 101 51671    3 139 58 12 1234 on ixp1     a i  So  lt a    EEN H i Fil  j i qag ny  Ss    l ad    your future life    Incoming Packet Log      Multi WAN QoS Router    View system packet log of those entering the firewall  The log includes information about the    external source IP addresses  destinatio
82. e  Select the Transparent Bridge mode for  the WAN connection mode  In this way  users will be able to connect normally with the Internet while keeping    the original Internet IP addresses in Intranet IP configuration     If there are two WANs configured  users still can select Transparent Bridge mode for WAN connection    mode  and load balancing will be achieved as usual     Interface  WAH 1    WAN Connection Type     WAN IP Address   E  T om  Subnet Mask   255   255   255  o    Default Gateway   fo   e    e      UE  DNS Server Required    b  o ds   w        et  wn    e     e     DNSServer Optional   0    Internal LAN IP Range 1  0    Internal LAN IP Range 2 0    Internal LAN IP Range 3 0    Internal LAN IP Range 4 0    Internal LAN IP Range 5 0      p le  o joe    p le  p joe    COTA  p le  p joe    p Je  p joe         EnabledLine Dropped Scheduling    Line Dropped Period  from lo   s o   to   o    24 Hour Format     Line Dropped Scheduling   minutes ahead line dropped to start new session    i a tran           WAN IP Address Input one of the static IP addresses issued by ISP   Subnet Mask Input the subnet mask of the static IP address issued by ISP  such  as     Issued eight static IP addresses  255 255 255 248 Issued 16  Static IP addresses  255 255 255 240    Default Gateway Input the default gateway of the static IP address issued by ISP  For  Address ADSL users  it is usually an ATU R IP address        29    your future life    DNS Server    Internal LAN IP    Range 
83. e configuration     Click    Cancel  to leave without making any change     81    ONO    your future life    Multi WAN QoS Router    Exempted Service Port or IP Address       Exempted Service Port or IP Address    service    All Traffic  TOCP amp UDPAM 65535        Service Management    Swer a ICIC e lee    Enabled            Maximum connections limit      Unlimited     Not exceed  200  Add to list          Neleis selected itap          Ayayalle Caneel  Service Port   Choose the service port   Source IP   Input the IP address range or IP group   Enabled   Activate the rule   Add to list   Add this rule to the list   Delete seleted item     Remove the rules selected from the Service List   Apply   Click    Apply    to save the configuration   Cancel   Click    Cancel  to leave without making any change     82    your future life    Multi WAN QoS Router    8 3 Hardware Optimization Future Feature     This flagship router not only provides high processing performance but also launches    hardware  optimization    function for bandwidth control and traffic prioritization  The main purpose is to process the  bandwidth functions through hardware design  which can accerlate and prioritize the traffic distribution and  usage without wasting CPU and system resources  Hardware optimization will soeed up the router    processing  carry huge connection sessions and PCs  and provide stable and excellent network environment   Service Optimization     Service ports that online games and vid
84. e key and click    Submit     and  the system will check whether the License Key is valid  If the key is  valid  users will be allowed to use the feature  The    Official Version     column of that feature will be checked    List value added features  If there is no    Trial Version    button in the     Trial Version    column  it means the feature has no trail version  or it just  supports the amount of VPN tunnels  such as QnoSoftKey    Display    Trial    button in the    Trial Version    column at default if the  functions have trial versions  Users can try the functions for certain  period of time by pressing the button    After entering and registering License Key successfully    Official  Version   column will be checked  The feature will be in official version  and not be limited by trial expiration date     Display successfully inputted and registered time        138    N    your future life    Multi WAN QoS Router    Status Information  Indicate remaining trial date or supported amount of QnoSoftkey VPN  Tunnels   Refresh  Refresh current system status and time     139    ONO    your future life    Multi WAN QoS Router    XII  Log  From the log management and look up  we can see the relevant operation status  which is    convenient for us to facilitate the setup and operation     12 1 System Log    lis system log offers three options  system log  E mail alert  and log setting     system Statistic    Traffic Statistic  IF Port Statistic             Syslog  C  Enable 
85. e limitation for WAN connection service  For  example  the optical fiber service will be disconnected from 0 00 am to  6 00 am  Although there is a standby system in the device  at the moment  of WAN disconnection  all the external connections that go through this  WAN will be disconnected too  Only after the disconnected lines are  reconnected can they go through the standby system to connect with the  Internet  Therefore  to avoid a huge number of disconnection  users can  activate this function to arrange new connections to be made through  another WAN to the Internet  In this way  the effect of any disconnection    can be minimized   Input the time rule for disconnection of this WAN service     Input how long the WAN service may be disconnected before the newly  added connections should go through another WAN to connect with the    Internet     Select another WAN port as link backup when port binding is configured     Users should select the port that employs the same ISP     After the changes are completed  click    Apply    to save the configuration  or click    Cancel  to leave    without making any changes     Transparent Bridge    lf all Intranet IP addresses are applied as Internet IP addresses  and users don   t want to substitute private    network IP addresses for all Intranet IP addresses  ex  192 168 1 X   this function will enable users to       28    your future life    Multi WAN QoS Router    integrate existing networks without changing the original structur
86. e permitted or not  for example   LAN  WAN1  WAN2 or Any   Select from the drop down menu    Select the source IP range  for example  Any  Single  Range  or preset IP  group name   If Single or Range is selected  please enter a single IP    address or an IP address within a session        96    your future life    Dest  IP      scheduling      Apply this rule      oe UO ee    Day Control      Apply    Cancel      Multi WAN QoS Router    Select the destination IP range  such as Any  Single  Range  or preset IP  group name  If Single or Range is selected  please enter a single IP  address or an IP address within a session    Select    Always    to apply the rule on a round the clock basis  Select     from     and the operation will run according to the defined time   Select  Always  to apply the rule on a round the clock basis    If    From    is selected  the activation time is introduced as below   This control rule has time limitation  The setting method Is in 24 hour  format  such as 08 00   18 00  8 a m  to 6 p m      Everyday    means this period of time will be under control everyday  If  users only certain days of a week should be under control  users may  select the desired days directly    Click    Apply    to save the configuration     Click    Cancel    to leave without making any change     97    your future life    Multi WAN QoS Router    9 3 Content Filter    The device supports two webpage restriction modes  one is to block certain forbidden domains  and the    
87. ections  including outbound    sessions  and intranet users  PC   It also displays the user connection sessions        Connection Statistic    V Enabled    1   24    LAN PC Data Ordering By  IP Address  up to down     Jump to  1  gt    1Page   10    entries per page    192 168 8 100    QnoPM01   24       Refresh    When enabling Connection Statistic function  parts of    system efficiency will be influenced  Therefore  the    system will remind you the influence when you enable this    function        13    ai    your future life    Multi WAN QoS Router    PC there are currently traffic   Display current PC amounts having outbound  connections  If the PC does not boot up or is not  connected to internet  it will not be counted in the  Statistic    LAN PC Data Ordering By   Select this function to sort the data by  IP Address up to  down    IP Address down to up    Session down to up    and  Session up to down     Jumpto__  Page  Select this function to display the data by how many   Entries per page___ entries of data per page will be displayed  Also you can  select the page you would like to see from the drop down  menu    Data List field   IP Address   Display PC   s IP address which has outbound traffic  Also    you can click the IP hyperlink to display the current    connection statistic and details  As the following graph         IP Port Statistic    V Enabled    Search Type    IP Address    IP Address   fisz fies    fe fico    Search           192 168 8 100   50143 65 5
88. eo softwares will be the highest priority  Router can process these  games or videos traffic in first priority  In this way  users can play games or watch videos fluently without    disconnection even when the traffic is full        Service Optimization    MAC Address    Source MAC Address    rit    IP Address    SourcelP        Il    Protocol   TCP     serice Port     Enable          Add to list          TOCP  Dest  Ported   Enable  WIDP  Dest  Por S3   Enable  TOP  Dest  Por l d63   Enable  TOP  Dest  Porn 5050   Enable  TOP  Dest  Por 443   Enable       MAC address Pull down menus includes    1  Source MAC address  Hardware optimization will only be effective to guarantee    the traffic in high priorities when the traffic rules match source MAC addresses        83    your future life    IP address    IP Protocol    Action    Enable  Add to list  Delete selected    entry    Multi WAN QoS Router     2  Destination MAC address  Hardware optimization will only be effective to  guarantee the traffic in high priorities when the traffic rules match destination MAC  addresses     3  None  The traffic rules neither match traffic rules nor check MAC addresses    Pull down menus includes     1  Source IP address  Hardware optimization will only be effective to guarantee the  traffic in high priorities when the traffic rules match source IP addresses     2  Destination IP address  Hardware optimization will only be effective to guarantee  the traffic in high priorities when the traffi
89. eption ip address    In addition  if Blocked QQ is activated  users can set the exempted QQ number list  Press    Exempted QQ    Number    button  and enter the QQ number into the exempted QQ number list     91    ONO    your future life    Multi WAN QoS Router    New User Name     QQ Number       Add to list       User Name  Input the information of the QQ number  etc     Exempted QQ Number  Input the number     Add to list  Add the number to the list   Delete selected item  Delete the selected rule in the list   Block File Type       92    ONO    your future life       Block File Type    Multi WAN QoS Router          seunenenee    Special service   exe    Exception      Add to list    Exception IP address  Input Exception IP           93    your future life    Multi WAN QoS Router    9 2 Access Rule    Users may turn on off the setting to permit or forbid any packet to access internet  Users may select  to set different network access rules  from internal to external or from external to internal  Users may set    different packets for IP address and communication port numbers to filter Internet access rules     Network access rule follows IP address  destination IP address  and IP communications protocol  status to manage the network packet traffic and make sure whether their access is allowed by the    firewall     The device has a user friendly network access regulatory tool  Users may define network access  rules  They can select to enable  disable the network so as to p
90. eshold value and the blocking  duration to effectively deal with external attack  The threshold value  should be adjusted from high to low     Input the exempted source IP     Input the exempted Destination IP addresses     89    ai    your future life    Show Blocked IP      Restricted WEB    Features      Don t Block Java    ActiveX   Cookies Proxy  to Trusted Domain    Apply     Cancel      Multi WAN QoS Router        gt  DoS Block List  Windows Internet Explorer a af      http 192 168 1 1 dos_block_table htm v        Show the blocked IP list and the remained blocked time     It supports the block that is connected through  Java  Cookies  Active X     and HTTP Proxy access     If this option is activated  users can add trusted network or IP address into  the trust domain  and it will not block items such as Java ActiveX Cookies  contained in the web pages from the trust domains    Click    Apply    to save the configuration     Click    Cancel  to leave without making any change     90    your future life    Multi WAN QoS Router    Restrict Application    Users can check MSN  QQ  Yahoo Messager  PPSTREAM  PPLIVE and the device will block the  service users checked  However  to provide this service for certain IP address in the intranet  users may  check the following item and then enter the specific IP address or IP address session to use the services    which are checked above        Restrict Application       LIMSN  Caa   C  Yahoo Messager     PPSTREAM   C  PPLIVE    Exc
91. essecessesesesenseseaees 8  BO UUM oe ceca cutee ces daecaave oovag E A 9  V  Device Spec Verification  Status Display and Login Password and Time Setting11  FAI O es ach cathe ie socnte senate ctantione E E 11  SLL MAN S eE I EE E T E 11  SA Phys eal A Oiler  SUAS ecir E E E E O E EE 12  ILo Sy aaO e EE E E bonaatausatenceepaseaseoetes 14  ILA Firewall AUIS esae icc von ataianndoedcauioendaiaioesnseuemsodadapeeanetuscnes 15  Med TO SGM e teresa eee wege ee be se dieucter a oe oae E nasssuineeesa dnuterneetibneeveiaatd 15  Change and Set Login Password and Time    ccc ccccccesscccesseceessecesssecesseecesssecesssecesseesesssecesseeeesseeens 16  el ASS WON a E oases natenecteusenntaubeaseatadaansidetoasceanddandione 16  I UMMM seeps estan orate pnisps se vin a Paes E EE EE 17  ION OU cata cccsvecuatstensecsctscees EE 19  Network CONNGCUIOM sisi ccesecennseneticncineitnPatetiverustleasentuesdvicisinteaaifotiebiceses i a a a a a a 19  Oll HostName amd Domain NaMe sesser niee EE EEEE EEES 19  CL EAN O E e E E E 20  6 1 3  WAN VI Ss sciastna stresses tas reese cen ee go siecre nc tananicaeis sniestgo pe aaweins de eiaaind van bcwicnvectiaviouianevetdnleaneracbeucoustieme 21  Multi  WAN SS SUTIN sas sis ocranetasnated ris tres rii ni eNEAN NEE ETOT EE 35  Be LOTE CO NOE meie E E E E E 36  022 Network Service DCC 0110 I ossee rretra EE EAE EENE 40  023  Pro  tocol Bindi seses a cles EA aE EON ERER us tated OEE A AASENS EEEE 43  tanet COMET AU OM secissecsiseriiciesicnvsaes riunire i
92. event occurrences that are  recorded in the System Log  and the time of closing or opening access for Internet resources  You can either    select the embedded NTP Server synchronization function or set up a time reference   Synchronize with external NTP server   The device has embedded NTP server  which will update the time  spontaneously     System Tool    Password Setup    Diagnostic    Firmware Upgrade    Configuration Backup    system Recover          Network Time       Set the local time using Network Time Protocol  MTP  automatically     Set the local time Manually       Time Zone   Select your location from the pull down time zone list to show correct    local time        N    your future life    Multi WAN QoS Router    Daylight Saving   lf there is Daylight Saving Time in your area  input the date range  The  device will adjust the time for the Daylight Saving period automatically    NTP Server   If you have your own preferred time server  input the server IP address    Apply   After the changes are completed  click    Apply    to save the  configuration    Cancel   Click    Cancel     to leave without making any change  This action will be    effective before    Apply    to save the configuration   Select the Local Time Manually  Input the correct time  date  and year in the boxes        Set the local time using Network Time Protocol  NTP  automatically     Set the local time Manually    Hours Minutes seconds       After the changes are completed  click    Apply    
93. fer functions    Username The name which is set up for DDNS    Input a complete website address such as abc qnoddns org cn  as a user name for QnoDDNS     The password which is set up for DDNS    Dynamic Domain Name Input the website address which has been applied from DDNS    Examples are abc dyndns org or xyz 3322 org     WAN IP Address Input the actual dynamic IP address issued by the ISP          114    your future life    Status  Apply    Cancel    Multi WAN QoS Router    An indication of the status of the current IP function refreshed by DDNS   After the changes are completed  click    Apply    to save the network  configuration modification     Click    Cancel     to leave without making any changes     115    ONC  your future life  Multi WAN QoS Router       10 6 MAC Clone  Some ISP will request for a fixed MAC address  network card physical address  for distributing IP  address  which is mostly suitable for cable mode users  Users can input the network card physical  address  MAC address  00 xx xx xx xx xx  here  The device will adopt this MAC address when    requesting IP address from ISP        MAC Clone    Edit    WAN 1 50 56 4D 32 30 34 Edit  WAN 2 50 56 4D 32 30 32 Edit    Select the WAN port to which the configuration is to be edited  click the hyperlink to enter and edit    its configuration  Users can input the MAC address manually  Press    Apply    to save the setting  and    press    Cancel    to remove the setting     Default MAC address is the WAN MAC ad
94. h  Single IP cannot Intranet PC  When the number of external sessions reaches the limit  to  exceed __ session  allow new sessions to be built  some of the existing sessions must be  closed  For example  when BT or P2P is being used to download  information and the sessions exceed the limit  the user will be unable to    connect with other services until either BT or P2P is closed        80    N    your future life    When single IP    exceed _     scheduling      Apply    Cancel      Multi WAN QoS Router        block this IP to add new session for Minutes    If this function is selected  when the user   s port session reach the limit   this user will not be able to make a new session for five minutes  Even if  the previous session has been closed  new sessions cannot be made    until the setting time ends      block this IFs all connection for s    Minutes    If this function is selected  when the user   s port connections reach the  limit  all the lines that this user is connected with will be removed  and the  user will not be able to connect with the Internet for five minutes  New  connections cannot be made until the delay time ends    If    Always    is selected  the rule will be executed around the clock    If    From       is selected  the rule will be executed according to the  configured time range  For example  if the time control is from Monday to  Friday  8 00am to 6 00pm  users can refer to the following figure to set up  the rule    Click    Apply    to save th
95. icates the status is idle  Master device operates  normally        Status  Backup    indicates the device takes over all the network  transmitting  The status will return to    Normal    when Master device  boots normally and send a message to the backup device  Then  the    status will return to Normal  which the backup device remains idle        Two devices are operating simultaneously     High Availability    Enable     Disable  Mode  C Hardware Backup Mode Two devices are operating simultaneously    i   Master Mode    Slave Mode  Operation    OHCP Enable   DHCP Disable   Master  Slave Mode setting Of two devices must be different  WAN Backup    WAN 1  F WAN 2     The checked WAN are not working in this device      LAN Gateway Backup  192 fie Ji    MAC Address of the backup device  0 p i  p p EJ      Status  Normal                                                                   Operation Master Mode Besides operating network with another device  Master device is also       135    N    your future life    Multi WAN QoS Router    the DHCP server to issue LAN IP addresses  Although Slave device    also supports outbound linking  its DHCP server is disabled     WAN Backup The checked WANs will works in the other device  For an example  if   The Checked WANs are not WAN1 works in this device  and WAN2 works in the other device    working in this device   WAN2 should be checked    LAN Gateway Backup Input LAN IP of Slave device  The IP should be different from LAN IP    of Mas
96. idth provided by ISP       The Maximum Bandwidth provided by ISP    WAN 1 LOO00 10000  WAN 2 LOO00 10000    USB LOO00 LO000    In the boxes for WAN1 and WAN2 bandwidth  input the upstream and downstream bandwidth  which users applied for from bandwidth supplier  The bandwidth QoS will make calculations according  to the data users input  In other words  it will guarantee a minimum rate of upstream and downstream  for each IP and Service Port based on the total actual bandwidth of WAN1 and WAN2  For example  if  the upstream bandwidths of both WAN1 and WAN2 are 512Kbit Sec  the total upstream bandwidth will  be  WAN1   WAN2   1024kKbit Sec  Therefore  if there are 50 IP addresses in the Intranet  the       75    your future life    Multi WAN QoS Router    minimum guaranteed upstream bandwidth for each IP would be 1024Kbit 50 20Kbit Sec  Thus     20Kbit Sec can be input for    Mini  Rate    Downstream bandwidth can be calculated in the same way     Attention      The unit of calculation in this example is Kbit  Some software indicates the downstream upstream  speed with the unit KB  1KB   8Kbit     8 1 2 QoS    To satisfy the bandwidth requirements of certain users  the device enables users to set up QoS  Rate    Control and Priority Control  Users can select only one of the above QoS choices   Rate Control      The network administrator can set up bandwidth or usage limitations for each IP or IP range according  to the actual bandwidth  The network administrator can also set b
97. ill appear as below        The device   s default username and password are both    admin     Users can change the login password    in the setting later     Attention   For security  we strongly suggest that users must change password after login  Please keep the  password safe  or you can not login to the device  Press Reset button for more than 10 sec  all the    setting will return to default     After login  the device   s web  based UI will be shown  Select the language on the upper right corner of the    webpage  The language chosen will be in blue  Please select    English    as below     English    Ns      li    Self i Fi      ae    your future life    paan  t    Multi WAN QoS Router    V  V  Device Spec Verification  Status Display and Login Password and Time Setting    This chapter introduces the device specification and status after login as well as change password and    system time settings for security   5 1 Home Page    In the Home page  all the device   s parameters and status are listed for users    reference     5 1 1 WAN Status       WAN Status                                           Interface WAN  WAN2 USE  WAN IP Address 192 168 4 105 0 0 0 0      Default Gateway 192 168 4 1 0 0 0 0         DS 192 168 5 121 0 0 0 0         Session 3 o       nae i   7  tna i i 7  Dyndns Disabled Dyndns Disabled Dyndns Disabled  3322 Disabled 3322 Disabled 3322 Disabled  Qnoddns Disabled Qnoddns Disabled Qnoddns Disabled  a 0 rules set 0 rules set      Release   Rea  m  
98. ill available in the DHCP server     Total   The total IP which the DHCP server is configured to lease        60    your future life    Multi WAN QoS Router    Host Name   The name of the current computer    IP Address   The IP address acquired by the current computer    MAC Address   The actual MAC network location of the current computer   Client Lease Time   The lease time of the IP released by DHCP    Delete   Remove a record of an IP lease     DNS Local Database  Future   Normally  DNS sever will be directed to ISP DNS server or internal self  defined DNS server  Qno router    also provides    easy    self  defined DNS services  called    DNS Local Database     which can map website host    domain names and the corresponding IP addresses        DNS Local Database    Host Domain Name   Po  Ex  www google com   IP Address   Yr ey I     Add to list       Deletes selected itam    Api D  Caneel    Host Domain Name Enter the website host domain name   i e  www google com    IP Address Enter the corresponding IP address of the host domain above        61    your future life    Multi WAN QoS Router    Add to Llist Add the items into the list below   Delete selected item Delete the items chosen   x Note      1  Users MUST enable DCHP server service to enable DNS local database    2  Users must set DHCP server DNS IP address as the router LAN IP  For example  LAN is 10 10 10 1  as    shown in the following figure        LAN Setting    MAC Address        Default  1   06 6f 95 de 9a
99. ion Protocol and Static Routing  Information Protocol        Dynamic Routing       Gateway     Router     Enabled     Disabled          Static Routing  Desti    J J       subnetMask           0   Gateway          s              Hop Count       Interface            10 3 1 Dynamic Routing    The abbreviation of Routing Information Protocol is RIP  There are two kinds of RIP in the IP  environment     RIP   and RIP Il  Since there is usually only one router in a network  ordinarily just Static  Routing will be used  RIP is used when there is more than one router in a network  and if an administrator    doesn t want to assign a path list one by one to all of the routers  RIP can help refresh the paths        108    your future life    Multi WAN QoS Router    RIP is a very simple routing protocol  in which Distance Vector is used  Distance Vector determines    transmission distance in accordance with the number of routers  rather than based on actual session speed     Therefore  sometimes it will select a path through the least number of routers  rather than through the fastest    routers        Dynamic Routing         Working Mode    RIP      Receive RIP versions      Transmit RIP versions      10 3 2 Static Routing       Gateway    Router     Enabled     Disabled    Select the working mode of the device  NAT mode or router mode     Click    Enabled    to open the RIP function    Use Up Down button to select one of    None  RIPv1  RIPv2  Both  RIPv1 and v2    as the    TX    func
100. ket count  Users may press the refresh button to    update all real time messages        56    N    your future life    Multi WAN QoS Router    7 3 IP  DHCP    With an embedded DHCP server  it supports automatic IP assignation for LAN computers   This  function is similar to the DHCP service in NT servers   It benefits users by freeing them from the  inconvenience of recording and configuring IP addresses for each PC respectively  When a computer  is turned on  it will acquire an IP address from the device automatically  This function is to make    management easier     IP DHCP    DHCP Status    IP amp MAC binding       57    ONO    your future life    Multi WAN QoS Router    Enabled DHCP Server       DHCP Dynamic IP    Client Lease Time  1440   Minutes    t  Subnet1 Subnet2    Enabled Disabled Disabled  192 168 1 100 192 168 2 100 192 168 3 100 192 168 4 100  192 168 1 149 192 168 2149 192 168 3 149 192 168 4 149    Unified IF Management    Dynamic IP         Client lease Time   Check the option to activate the DHCP server automatic IP lease    Range Start      function  If the function is activated  all PCs will be able to acquire IP  automatically  Otherwise  users should configure static virtual IP for each  PC individually    This is to set up a lease time for the IP address which is acquired by a  PC  The default is 1440 minutes  a day   Users can change it according    to their needs  The time unit is minute        N    your future life    Multi WAN QoS Router    Range
101. list of service ports   Management     Add to list   Add to the active service content        104    ONO    your future life    Multi WAN QoS Router    Service Port Management    The services in the list mentioned above are frequently used services  If the service users want to  activate is not in the list  we recommend that users use    Service Port Management    to add or remove    ports  as follows        gt  Service Management   Windows  nternet Explorer          http192 100 1 Tservicell hin    Service Name    Ali    DNs  UDP  53 53   FIP  TcP 21 21   HTTP  TCP  8080   oee HTTP Secondary  TCP 8080 8080     HTTPS  TCP 443  443   HTTPS Secondary  TCP 8443 8443   IFIP  UDP 69769     Port Range IMAP  TCP 143 143     el   NNTP  TCP 119 119   POPS  TCP 110  110   SNMP  UDP   161 161   SMTP  TCP  2525   TELNET  TCP  23723  TELNET Secondary       Add to list    Service Name   Input the name of the service port users want to activate on the list     such as E donkey  etc     Protocol   To select whether a service port is TCP or UDP     Port Range   To activate this function  input the range of the service port locations    users want to activate such as 500 500 or 2300 2310  etc     Add to list   Add the service to the service list  It supports up to 100 rules           105    your future life    Delete selected item      Apply      Cancel      Close      Multi WAN QoS Router    To remove the selected services   Click the    Apply    button to save the modification     Click the  
102. ly   Click    Apply    to save the network configuration modification   Cancel   Click    Cancel    to leave without making any changes        110    your future life    Multi WAN QoS Router    10 4 One to One NAT    As both the device and ATU R need only one actual IP  if ISP issued more than one actual IP  Such as  eight ADSL static IP addresses or more   users can map the remaining real IP addresses to the intranet PC  virtual IP addresses  These PCs use private IP addresses in the Intranet  but after having One to One NAT    mapping  these PCs will have their own public IP addresses     For example  if there are more than 2 web servers requiring public IP addresses  administrators can map    several public IP addresses directly to internal private IP addresses     Example   Users have five available IP addresses   210 11 1 1 5  one of which  210 11 1 1  has been  configured as a real IP for WAN  and is used in NAT  Users can respectively configure the other four real IP    addresses for Multi DMZ  as follows   210 11 1 2 gt  192 168 1 3  210 11 1 3 gt  192 168 1 4  210 11 1 4 gt  192 168 1 5    210 11 1 5 gt  192 168 1 6    Attention      The device WAN IP address can not be contained in the One to One NAT IP configuration     111    your future life    Multi WAN QoS Router    Enabled One to One NAT    Private IP Range Begin            Public IP Range Begin                        Range Length          Add to list          Delete selectes  ibern    Apri D Cenedl    Enabled
103. m rate for intranet IPs     Input the max  downstream rate for intranet IPs     When any IP uses more bandwidth than the above    upstream or downstream settings  the IP will be  restricted for the following upstream or downstream  bandwidth settings    After choosing    Enabled Penalty Mechanism     the  device will enable the penalty conditions internally   When the IP still uses more upstream or downstream  bandwidth than the setting  the device will execute the    penalty conditions automatically     85    N    your future life    Multi WAN QoS Router    Show Penalty IP   The IPs which are under penalty mechanism will be  shown on the list     Scheduling   If    Always    is selected  the rule will be executed around  the clock     If    From       is selected  the rule will be executed    according to the configured time range  For example  if    the time control is from Monday to Friday  8 00am to  6 00pm  users can refer to the following figure to set up    the rule        86    ONO    your future life    IX  Firewall    Multi WAN QoS Router    This chapter introduces firewall general policy  access rule  and content filter settings to ensure network    security     9 1 General Policy    The firewall is enabled by default  If the firewall is set as disabled  features such as SPI  DoS  and    outbound packet responses will be turned off automatically  Meanwhile  the remote management feature    will be activated  The network access rules and content filter will be turne
104. mail setting  Syslog will be sent to the specific E mail        15    aA mR    a  lt      Pe iil fey ml  q   Ge pe   j    Oa N ay  SH eu    your future life    Multi WAN QoS Router    5 2 Change and Set Login Password and Time    5 2 1 Password Setting    When you login the device setting window every time  you must enter the password  The default value for  the device username and password are both    admin     For security reasons  we strongly recommend that  you must change your password after first login  Please keep the password safe  or you might not login to    the device  You can press Reset button for more than 10 sec  the device will return back to default     System Tool    Diagnostic    Firmware Upgrade  Configuration Backup  SNMP Setup   Network Time  system Recover  High Availability    License Key          Password Setup                               User Name     The default is    admin      Old Password   Input the original password   The default is    admin        New User Name   Input the new user name  I e Qno  New Password   _ Input the new password              your future life    Multi WAN QoS Router    Confirm New Input the new password again for verification    Password     Apply   Click    Apply    to save the configuration    Cancel   Click    Cancel  to leave without making any change  This action will be    effective before    Apply    to save the configuration     5 2 2 Time    The device can adjust time setting  Users can know the exact time of 
105. mation  manage and allocate the    management  avoid    ports  LAN IP and bandwidth further to achieve best efficiency   bandwidth occupation a  application     Block attack  Set Administrators can block BT to avoid bandwidth  Set Firewall  prevent    Access rule and occupation  and enable access rules to restrict  attack and improper   a  restrict Web access    employee accessing internet improperly or  access to network      using MSN  QQ and Skype during working  resources    time  They can also protect network from Worm    or ARP attacking        Q    your future life    Multi WAN QoS Router    Advanced Settings   DMZ Forwarding  DMZ Forwarding  UPnP  Routing Mode   DMZ Forwarding  UpnP  Routing Mode    multiple WAN IP  DDNS and MAC Clone  UPnP  DDNS  MAC multiple WAN IP   Clone DDNS and MAC    Clone    Monitor Security QoS   Administrators can look up system log and  Management and        Router working status   monitor system status and inbound outbound    maintenance settings         and configuration flow in real time   Syslog  SNMP  and    l l backup   configuration backup       Logout Close configuration Logout Security QoS Router web  based Ul   window     We will follow the process flow to complete the network setting in the following chapters     your future life    Multi WAN QoS Router    Ill  Hardware Installation    In this chapter we are going to introduce hardware interface as well as physical installation     3 1 LED Signal    LED Signal Description    Powe
106. me Lookup    Ping       tatus  Test Succeeded   Packets  4 4 transmitted  4 4 received  05 loss  Minimun   2 ms   Round Trip Time  Maximun   2 ms    Average   2 ms    This item informs users of the status quo of the outbound session and allows the user to know the  existence of computers online     On this test screen  please enter the host IP that users want to test such as 192 168 5 20  Press   Go  to start the test  The result will be displayed on this screen     126    N    A e D EFR  z   Mja Ss   your future life    Multi WAN QoS Router    11 2 Firmware Upgrade    Users may directly upgrade the device firmware on the Firmware Upgrade page  Please confirm all  information about the software version in advance  Select and browse the software file  click  Firmware    Upgrade Right Now  to complete the upgrade of the designated file     Note      Please read the warning before firmware upgrade     Users must not exit this screen during upgrade  Otherwise  the upgrade may fail     System Tool    Password Setup    Diagnostic    Configuration Backup    Network Time    system Recover          Firmware Upgrade         Browse            Firmware Upgrade Right Now       Warning   1  When choosing previous firmware versions  all settings will restore back to default value   2  Upgrading firmware may take a few minutes  please don t turn off the power or press the Reset button     3  Please don t close the window or disconnect the link  during the upgrade process     127    N    your
107. n Advanced Function    By IP  Unbinding WAN Balance   Un binding WAN Balance Mode     By Session Advanced Function     By IP  Strategy Routing Mode     By Session Advanced Function    By IP          Set WAN Grouping       China Netcom Disabled   Import IP Range  self defined Strategy 1  Disabled    seltdefined Strategy    Disabled         Auto Load Balance Mode    When Auto Load Balance mode is selected  the device will use sessions or IP and the WAN bandwidth  automatically allocate connections to achieve load balancing for external connections  The network bandwidth  is set by what users input for it  For example  if the upload bandwidth of both WANs is 512kKbit sec  the  automatic load ratio will be 1 1  if one of the upload bandwidths is 1024Kbit sec while the other is 512Kbit sec   the automatic load ratio will be 2 1  Therefore  to ensure that the device can balance the actual network load     please input real upload and download bandwidths        Session Balance  If    By Session    is selected  the WAN bandwidth will automatically    allocate connections based on session number to achieve network load balance        IP Session Balance  If    By IP    is selected  the WAN bandwidth will automatically allocate    connections based on IP amount to achieve network load balance   Note     For either session balancing or IP connection balancing  collocation with Protocol Binding will  provide a more flexible application for bandwidth  Users can assign a specific Intranet I
108. n IP addresses  and service ports  It is illustrated as below     Incoming Packet Log   Windows Internet Explorer    Feb 6 02 34 31 2006  Feb 6 02 57 54 2006  Feb 6 03 06 39 2006  Feb 6 03 15 31 2006  Feb 6 03 45 58 2006  Feb 6 03 46 00 2006    Feb 6 03 46 02 2006    Clear Log Now      E http192 168 1 Lincoming log hin    Connection Refused   Policy  violation   Connection Refused   Policy  violation   Connection Refused   Policy  Violation   Connection Refused   Policy  violation   Connection Refused   Policy  violation   Connection Refused   Policy  violation   connection Refused   Policy  violation       UDP 192 1568 2 1 67  255 255 255 255 68 on ixp2    UDP 192 168 1 100 13 7 192 166 1 255 137 on ixp      UDP 192 168 2 7  67   192  166 2 102  68 on ixp2    UDP 192 166 2 7 67  192 166 2 100 68 on ixp4    UDP 192 168 1 100 7464  gt  75 128 47 253 27220 on ixpo    UDP 192 168 1 100  7464  gt 97 153 161 189 27310 on ixp      UDP 192 166 1 100 7464  24 160 250 156 19343 on ixp      This feature clears all the current information on the log     N    your future life    Multi WAN QoS Router    12 2 System Statistic    The device has the real time surveillance management feature that provides system current  operation information such as port location  device name  current WAN link status  IP address  MAC  address  subnet mask  default gateway  DNS  number of received  sent  total packets   number of  received  sent  total Bytes  Received and Sent Bytes Sec   total number of erro
109. n service ports and specific destination IP that is not configured under the rules will go  through other WANs for external connection  For unassigned WANs  users can select Load Balance    mode and select session or IP for load balancing       Session Balance  If    By Session    is selected  the WAN bandwidth will automatically    allocate connections based on session number to achieve network load balance       IP Balance  If    By IP    is selected  the WAN bandwidth will automatically allocate    connections based on the number of IP addresses to achieve network load balance     Note     Only when a device assignment is collocated with Protocol Binding can the balancing function  be brought into full play  For example  an assignment requiring all Intranet IP addresses to go  through WAN 1 when connecting with service port 80  or go through WAN 1 when connecting with    IP 211 1 1 1  must be set up in the Protocol Binding Configuration     Attention  When assigning mode is selected  as in the above example  the IP s  or service  provider s  configured in the connection rule will follow the rule for external connections  but those  which are not configured in the rule will still follow the device Load Balance system to go through    other WAN ports to connect with the Internet     Please refer to the explanations in 6 2 3 Configuring Protocol Binding for setting up Protocol    Binding and for examples of collocating router mode with Protocol Binding     Strategy Routing Mo
110. n this device  and WAN2 works in another  WAN2  should be checked    Input the LAN IP of Master device  It should be different from Slave  device s IP   Must be in the same subnet    Input the LAN MAC of Master device  It should be different from Salve  device   s LAN MAC       Status Normal    indicates both devices work normally      Status Backup    indicates the Backup device is enabled for backing  up Master device to take over WAN connection and DHCP issuing    function     137    N    your future life    11 7 License Key    Multi WAN QoS Router    Users have to purchase License Key to    enable    some functions in Qno Firwalls Routers series or upgrade    to    Official Version    not trial version   such as QnoSniff or Inbound Load Balance  etc        License Key    Current Time      License Key Number               Current Time     License Key Number      Feature Name     Trial Version   Official    Version     Registration Time     2009 12 09 NTP Server    Trial version Official Version Registration time Status And Information    T   PE    T m  ria    Raresh    Before inputing License Key  the device will check whether current time  is correct and whether License Key is still in valid period  In order to  prevent from dysfuction problems  we strongly recommend you to  check and update the time correctly before attempting a feature and  entering License Key    Input License Key you purchase  Generally the key is composed by  several alphanumeric characters  Enter th
111. ng  minutes ahead line dropped to start new session  transferring    Backup Interface         User Name Input the user name issued by ISP     Password Input the password issued by ISP     This function enables the auto dialing function to be used in a PPPoE dial  Connect on Demand  connection  When the client port attempts to connect with the Internet  the  device will automatically make a dial connection  If the line has been idle  for a period of time  the system will break the connection automatically    The default time for automatic break off resulting from no packet    transmissions is five minutes      i This function enables the PPPoE dial connection to keep connected  and  Keep Alive  to automatically redial if the line is disconnected  It also enables a user to    set up a time for redialing  The default is 30 seconds     25    your future life    Enable  Line Dropped  Scheduling    Line Dropped Period    Line Dropped  Scheduling    Backup Interface    Multi WAN QoS Router    The WAN disconnection schedule will be activated by checking this option   In some areas  there is a time limitation for WAN connection service  For  example  the optical fiber service will be disconnected from 0 00 am to  6 00 am  Although there is a standby system in the device  at the moment  of WAN disconnection  all the external connections that go through this  WAN will be disconnected too  Only after the disconnected lines are  reconnected can they go through the standby system to connec
112. o list      Move up  amp  Move    down      Delete selected  items    Show Table      Apply      Cancel      Show Table         Multi WAN QoS Router    Sharing total bandwidth with all IP addresses  If this option is selected  all IP  addresses or Service Ports will share the bandwidth range  from minimum to    maximum bandwidth      Assign bandwidth for each IP address  If this option is selected  every IP or  Service Port in this range can have this bandwidth  minimum to maximum    For example  If the rule is set for the IP of each PC  the IP of each PC will have    the same bandwidth     Attention  If    Share Bandwidth    is selected  be aware of the actual usage  conditions and avoid an improper configuration that might cause a malfunction  of the network when the bandwidth is too small  For example  if users do not  want an FTP to occupy too much bandwidth  users can select the     Share Bandwidth Mode     so that no matter how much users use FTPs to    download information  the total occupied bandwidth is fixed   Activate the rule   Add this rule to the list     QoS rules will be executed from the bottom of the list to the top of the list  In  other words  the lower down the list  the higher the priority of execution  Users  can arrange the sequence according to their priorities  Usually the service  ports which need to be restricted  such as BT  e mule  etc   will be moved to  the bottom of the list  The rules for certain IP addresses would then be moved    upward    
113. oei ena i ene N SEDE Eis 53  PON AAS TM a wos aaaa sen deema oes inl canes eaeaieenobeasnena tease ete cancaeateaeubasosdaumennacenses 53  PGE a EE nevtesn dettsetshacap AEE S E T EEE 56  i D a E EA E EAE pepo awn E EE E T EE EE ENTE peas EE E 57  PI PE CUES ee aretec despre pas uate tence ste icp crib ons arn pease E kad ast nace acta AEA AEAT 60  MP INT AS AGT Geechee centsestacistenaat ca deemee tees ociataaast E 64  MY Group Manageme ccs rancher ceteris a a en seueivea ba alacnsteasandinceneeeanieredensueaneeet lt  68       M    your    VIII     xI     xII     N    future life    Multi WAN QoS Router    LI PORE GrOU Manas CMC MN sicossecirsoassctcanetaaduentbacsdadasenaneaidididanahiod pate bidsteaastacnssss hdacebaeuenahiasdeceosadnesabdibenetaedmenebic fal   QoS  Quality of Service  cca cass cscs cars ccescaeccce cas sweet cc cc eases rei iTi EN EEA 73   Ble Bandwidth Management aac aire rea eetsne sate seaocigete na aE EEEE Ea a AEE aaia 74  8 1 1 The Maximum Bandwidth provided by ISP    cccccccsssssssseseseeeeceeeeeeeeeeseaaeeeeseseeeeeeeeeseeeeeeaaas 75  SEL DO artes areetettoc tote terete E E Bean eoeie scar bento E E E A E EEA 76   e D SCN CO a ecm ete der cosde ee Meas EE A deneonndeaeedeciastataatantotatsceees 80   8 3 Hardware Optimization Future PCature   es avscscdclevedsnscvesvsdaddewesesataneddadenmcweucvasendalianeraevaenddalevoesenvessadehenesancondes 83   S O a EE E AE E EEE AEEA 85   giran E E E E 87   D EFO e E E E 87   OCC RNG EE N T A N E N A A E A 94
114. of a cable modem will be changed from time to time  To overcome this problem  for users who want to build services such as a website  it offers the function of dynamic web address  transfer  This service can be applied from www gno cn ddns  www 3322 org  www dyndns org  or    www ditdns com  and these are free     Also  in order to solve the issue that DDNS server is not stable  the device can update the dynamic    IP address with different services at the same time        DDNS Setup    Dyndns Disabled Dydns       WAN 1 3322 Disabled 3322      Edit  Qnoddns Disabled ano         Dyndns Disabled Dydns      WAN 2 3322 Disabled 3322      Edit  Ginoddns Disabled ano     Dyndns Disabled Dydns      USB1 3322 Disabled 3322      Edit  anoddns Disabled ano        Select the WAN port to which the configuration is to be edited  for example  WAN 1  Click the hyperlink to    enter and edit the settings     113    ONO    your future life    Multi WAN QoS Router    Interface   WAN    DynDNS amp  org           0 0 0 0    DONS function is disabled or No Internet connection                    0 0 0 0    DONS function is disabled or No Internet connection           HM QnoDDNS org cn                0 0 0 0       DOWNS function is disabled or No Internet connection     Aaa   Camel    Interface This is an indication of the WAN port the user has selected     DDNS Check either of the boxes before DynDNS org  3322 org  DtDNS com  and QnoDDNS org cn to select one of the four DDNS website address  trans
115. ore  to avoid a huge number  of disconnection  users can activate this function to arrange new connections to  be made through another WAN to the Internet  In this way  the effect of any    disconnection can be minimized     Input the time rule for disconnection of this WAN service     Input how long the WAN service may be disconnected before the newly added    connections should go through another WAN to connect with the Internet     Select another WAN port as link backup when port binding is configured  Users    should select the port that employs the same ISP     After the changes are completed  click    Apply    to save the configuration  or click    Cancel  to leave    without making any changes     PPPoE    This option is for an ADSL virtual dial up connection  suitable for ADSL PPPoE   Input the user    connection name and password issued by ISP  Then use the PPP Over Ethernet software built into the device    to connect with the Internet  If the PC has been installed with the PPPoE dialing software provided by ISP     remove it  This software will no longer be used for network connection     24    your future life    Multi WAN QoS Router    Interface  WAHL    WAN Connection Type   UserName  Ps  Password  O i      Connect on Demand  Max Idle Time Min      Keep Alive  Redial Period sec           EnabledLine Dropped Scheduling    Line Dropped Period  from 0     0   to 0    24 Hour Format      lt r l A z minutes ahead line dropped to start new sessi  Line Dropped Scheduli
116. ork Segment  This  Remote Host IP should better be capable of receiving feedback stably  and speedily   Please input the DNS IP of the ISP port     This is the detect location for DNS   Only a web address such as  www hinet net is acceptable here  Do not input an IP address   In  addition  do not input the same web address in this box for two different  WANs     In the load balance mode for Assigned Routing  the first WAN port  WAN1  will be saved for the    traffic of the IP addresses or the application service ports that are not assigned to other WANs  WAN2         42    your future life    Multi WAN QoS Router    Therefore  in this mode  we recommend assigning one of the connections to the first WAN  When other  WANs  WANZ  are broken and connection error remove  Remove the Connection  has been selected  for the connection detection system  traffic will be shifted to the first WAN  WAN1   In addition  if the first  WAN  WAN1  is broken  the traffic will be shifted to other WANs in turn  For example  the traffic will be  shifted to WAN2     6 2 3 Protocol Binding    Interface Configuration    Router allows maximum four WAN interface  the bandwidth and real connection of every WAN will impact  the load balance mechanism  therefore you need to set the Bandwidth and the Network service detection by    each WAN Port correctly     In    Interface Configuration     click    Edit    to enter the WAN port configuration        Interface  WAN 4 Auto Edit  WAN 2 Auta Edit  USB 3G 2 5C
117. other is to give access to certain web pages  Only one of these two modes can be selected          Block Forbidden Domains      Accept Allowed Domains    LJ Forbidden Domains Enabled  LJ Enable Website Blocking by Keywords       Scheduling    Os  Apply this rule joo    to joo     24 hour Format     Everyday Sun Mon Tue Wed Thu Fri Sat    Aaa   Camel    Block Forbidden Domain    Fill in the complete website such as www sex com to have it blocked     98    JNO    your future life    Multi WAN QoS Router         Block Forbidden Domains      Accept Allowed Domains    Forbidden Domains Enabled     Forbidden Domains    Exception IP address    IF Grouping    Add to li et       Add   Enter the websites to be controlled such as www playboy com  Add to list   Click    Add to list    to create a new website to be controlled   Delete selected item   Click to select one or more controlled websites and click this    option to delete     99    N    your future life    Multi WAN QoS Router  Website Blocking by Keywords      Enable Website Blocking by Keywords       Website Blocking by Keywords       ception Padres w   e J e   0 _  0 hoe    Group IF Grouping       Add to list    Deletes selected heywords       Enabled    Click to activate this feature  The default setting is disabled   For example  If users enter the string    sex     any websites  containing    sex    will be blocked    Keywords  Only for English Enter keywords    keyword       Add to List   Add this new service item content
118. ough the device     Members in the same network session  within the same VLAN  can see  and communicate with each other  Members in different VLAN will not  know the existence of other members     54    your future life    VLAN All      Multi WAN QoS Router    set VLAN All port to be the public area of VLAN so that it can be connected  to other VLAN networks  A server should be constructed for the intranet so  that all VLAN group can visit this server  Set one of the network ports as  VLAN All  Connect the server to VLAN All so that computers of different  VLAN groups can be connected to this server  Moreover  the port where the  administrator locates must be set as VLAN All so that it can be connected to    the entire network to facilitate network management     55    GNO    your future life    7 2 Port Status       Summary    aE       Summary         Multi WAN QoS Router    Port Management    Port Setup       Port ID  LAN 1      10Base T   100Base Tx    Port Enabled  Normal   10 Mbps  Half  Enabled  VLAN ALL    2485  309071  1260939  161564    Raiet    There are Network Connection Type  Interface  Link Status  Up Down   Port Activity  Port Enabled      Priority Setting  High or Normal   Speed Status  10Mbps or 100Mbps   Duplex Status  half duplex or full  duplex   Auto Neg   Enabled Disabled   and VLAN     Statistics      The packet data of this specific port will be displayed  Data include receive  transmit packet count     receive  transmit packet Byte count and error pac
119. ponse  attacking the high speed cache mechanism of ARP   This usually happens to the cyber cafe users  Some or all devices in the shop experience temporal  disconnection or failure of going online  It can be resolved by restarting the device  however  the problem  repeats shortly after  Cafe Administrators can use arp    a command to check the ARP table  If the device IP    and MAC are changed  it is the typical symptom of ARP virus attack     Such virus program as PWSteal  lemir or its transformation is worm virus of the Trojan programs affecting  Windows 95  98  Me  NT  2000  XP  2003  There are two attack methods affecting the network connection  speed  cheat on the ARP table in the device or LAN PC  The former intercepts the gateway data and send  ceaselessly a series of wrong MAC messages to the device  which sends out wrong MAC address  The PC  thus cannot receive the messages  The later is ARP attack by fake gateways  A fake gateway is established   The PC which is cheated sends data to this gateway and doesn t go online through the normal device  From    the PC end  the situation is  disconnection      For these two situations  the device and client setup must be done to prevent ARP virus attack  which is  to guarantee the complete resolution of the issue  The device selection is advised to take into consideration  the one with anti ARP virus attack  Qno products come squarely with such a feature  which is very    user friendly compared to other products     2  ARP Di
120. potency of this Agreement is over any other verbal or written record  The invalidation of part or  whole of any clause does not affect the potency of other clauses     5 2  The power of interpretation  potency and dispute are applicable for the law of Taiwan  If there is any  dissension or dispute between the users and Qno  it should be attempted to solve by consultation first  If it is  not solved by consultation  user agrees that the dissension or dispute is brought to trial in the jurisdiction of  the court in the location of Qno  In Mainland China  the  China International Economic and Trade Arbitration    Commission  is the arbitration organization     II    Vi     VII     N    your future life    2 1  2 2    3 1    3 2    5 1    5 2    6 1    6 2    7 1  Te  7 3  7 4  7 5  7 6    Multi WAN QoS Router    Content  BME TOON WO coset oon cases A A csi venvavensicsaeviueesacevstestcsvseseusent 1  Multi  WAN Security QoS Router Installation                     scccccsssssessccccssseccssscccesscsessscesessses 2  Systematic Setting Process                s scccssscssssecssstsceserevssntessseecenatesesecessnecessnatecsnsteesanecesanecesanecesanesesanevesans 2  SERO FOW CA   ence a ee eee ee en nee a ee ee ee ee ee ee eee 2  eA AL OM SUID OUD soccer cece scene sa ueccdct cones sieves czespedayesaveucsiat cores asasstcasspedets saveessiatecessssausesaeuas  5  EZBER AAE ae AA E 5  Security QoS Router Network Connection uu    ccc cee ccccccescccssccessecesseceseecessecessecessecesec
121. r Green Green LED on  Power ON       DIAG Amber Amber LED on  System self test is running    Amber LED blinking  System not ready   Amber LED off  System self test is completed successfully   Link Act Green Green LED on  Port has been connected  amp  Get IP    Green LED blinking  Packets are transmitting through Ethernet port   100M  Speed Amber Amber LED on  Ethernet is running at 100Mbps    Amber LED off  Ethernet is running at 10Mbps     Connect Green Green LED on  WAN is connected and gets the IP address    WAN1 Green Green LED on   WAN   1 is connected and IP address has been  obtained   WAN2 Green Green LED on   WAN2 is connected and IP address has been  obtained   Reset    Press Reset Button For 5 Secs Warm Start  DIAG indicator  Amber LED flashing slowly        Press Reset Button Over 10 Secs Factory Default  DIAG indicator  Amber LED flashing quickly     System Built in Battery    A system timing battery is built into the device  The lifespan of the battery is about 1 2 years  If the  battery life is over or it can not be charged  the device will not be able to record time correctly  nor  synchronize with internet NTP time server  Please contact your system supplier for information on how to  replace the battery     Attention     Do not replace the battery yourself  otherwise irreparable damage to the product may be caused        N    your future life    Multi WAN QoS Router    Installing the device on a Standard 19    Rack    We suggest to either place the device on
122. r PC  which is to be bound will then acquire a static virtual IP    whenever it restarts     MAC Address   Input the static real MAC  the address on the network card  for    the server or PC which is to be bound        66    N    your future life    Multi WAN QoS Router    Name   For distinguishing clients  input the name or address of the    client that is to be bound  The maximum acceptable characters    are 12   Enabled   Activate this configuration   Add to list   Add the configuration or modification to the list   Delete selected item   Remove the selected binding from the list   Add   Add new binding     Block MAC address on the list with wrong IP address   When this option is activated  MAC addresses    which are not included in the list will not be able to connect with the Internet   Show New IP user      This function can reduce administrator s effort on checking MAC addresses one by one for the binding   Furthermore  it is easy to make mistakes to fill out MAC addresses on the list manually  By checking this list   administrator can see all MAC addresses which have traffic and are not bound yet  Also  if administrators  find that one specific bound MAC address is shown on the list  it means that the user changes the private IP    address         New IP List   Windows Internet Explorer Seles  Wr    E  http192 166 1 1 Dhep_tablel btn       ss Calan A e P  E  Appiy JELE A Reresn    192 168 1 100 00 16 e6 50 13 32   oO       Name   Input the name or address of the clien
123. r packets received   total number of the packets dropped  number of session  number of the new Session Sec   and    upstream as well as downstream broadband usage         Log    system Log       Traffic Statistic       IP Port statistic    ONO    your future life    Multi WAN QoS Router       System Statistic    ppp3000  Disabled    eth2  Enabled  192 168 4 104 0 0 0 0  50 56 4D 32 30 32  0 0 0 0  0 0 0 0    192 168 5 121 0 0 0 0    Test Succeeded Test Failed  517389 0     4         192 168 1 1  50 56 4D 32 30 30  255 255 255 0    5294  469652  210    707851  23113008    528  68474742  2573568 o  71048310 o  0    525917    0    0    0       ONO    your future life    Multi WAN QoS Router    12 3 Traffic Statistic    Six messages will be displayed on the Traffic Statistic page to provide better traffic management and    control     system Log    system Statistic    IP Port statistic          Traffic Statistic    Enable Traffic Statistic    Inbound IP Source Address      The figure displays the source IP address  bytes per second  and percentage        Traffic Statistic    Enable Traffic Statistic       Sore IP sitesi R   Retires  Outbound IP Source Address      The figure displays the source IP address  bytes per second  and percentage        ONO    your future life    Multi WAN QoS Router       Traffic Statistic      Outbound IF Source Address              _ H  Enable Traffic Statistic                Ratesh    Inbound IP Service      The figure displays the network protocol t
124. rage  maximum       V Enabled QRTG CPU Usage ind  o CPU Hours Usage Rate Total Session   4942 Memory Usage   22   Unit  100  Session Avg  5257 Session   100   s9 Max  10416 Session  0  10 05 10 10 10 15 10 20 10 25 10 30 10 35 10 40 10 45 10 50 10 55 11 00 UnitMinutes  Unit  100  Ava  17    0  10 05 10 10 10 15 10 20 10 25 10 30 10 35 10 40 10 45 10 50 10 55 11 00 UnitMinutes    15    N  ONO    your future life    Multi WAN QoS Router    o CPU Days Usage Rate    Unit   Session isa Avg  10771 Session   100   Max  17143 Session  100  50  12 00 14 00 16 00 18 00 20 00 22 00 0 00 2 00 4 00 6 00 8 00 10 00 UnitHours  Unit  100  Avg  31    50 Max  48    0    12 00 14 00 18 00 18 00 20 00 22 00 0 00 2 00 4 00 6 00 6 00 10 00 Unit Hours      CPU Week Usage Rate    Unit  Session 22   Avg  10138 Session  100   100     6  Max  22088 Session  100  50  3    Nov 21 Nov 22 Nov 23 Nov 24 Nov 25 Nov 26 Nov 27 Unit Week  Unit  100  Avg  32    50 Max  51    9     Nov 21 Nov 22 Nov 23 Nov 24 Nov 25 Nov 26 Nov 27 Unit Week    ll  WAN Traffic Statistic  hourly  graphic and average  up down stream   As in the following figures     16    ONO    your future life    Multi WAN QoS Router    V Enabled QRTG  WAN Traffic Statistics Hour          WAN Downstream M wan1 M wan2 M wana  wan4 M wans C wans M wan7 TC wang    Unit     5000    2500    10 05 10 10 10 15 10 20 10 25 10 30 10 35 10 40 10 45 10 50       WAN Upstream M want M wan2 M wan3 M wan4 M wans I wans M wan7 l wang    Unit     Kbps    10 05 10 1
125. rent    Status  Normal    Status of the backup device  Normal       vay  High Availability Enable  Activate HA function   Disable  Disable HA function    Mode  1  Hardware Backup Mode    It is the general backup mode  The master device takes responsibility of network  transmitting and the other one is set as idle  When the master device fails  transmitting  it will send out the message to the idle device for taking over network  transmitting immediately     2  Two devices are operating simultaneously    Two devices operate outbound linking simultaneously  but they are still separated as       133    N    your future life    Multi WAN QoS Router    Master device and Backup device  In normal situation  Master device is major DHCP  IP issuer  and Backup device will disable DHCP issuing automatically  When Master  device fails transmitting  the Backup device will take over all outbound links and  enable DHCP server to provide IP addresses     Following is the description of the two different modes     Hardware Backup       High Availability   Enable     Disable  Mode  Hardware Backup Mode   Two devices are operating simultaneously  Operation      Master Mode    Backup Mode    Master  Slave Mode setting Of two devices must be different    Status  Normal  Status of the backup device  Normal    l Indicates the master device will operate for all outbound links  When  X Operation Master Mode     B  the master device fails transmitting  the backup device will take over    Status    Sta
126. rotect all internet access  The following    describes the internet access rules     All traffic from the LAN to the WAN is allowed   by default      All traffic from the WAN to the LAN is denied   by default     All traffic from the LAN to the DMZ is allowed   by default      All traffic from the DMZ to the LAN is denied   by default      All traffic from the WAN to the DMZ is allowed   by default      All traffic from the DMZ to the WAN is allowed   by default     Users may define access rules and do more than the default rules  However  the following four extra    service items are always on and are not affected by other user defined settings     HTTP Service  from LAN to Device  is on by default  for management     DHCP Service  from LAN to Device  is set to on by default  for the automatic IP retrieval     DNS Service  from LAN to Device  is on by default  for DNS service analysis       Ping Service  from LAN to Device  is on by default  for connection and test     94    your future life    Multi WAN QoS Router       Access Rule    Jump to 1  Page  5 entries per page  Priority Enabled Action Service _Sourceinterface__ Source   Destination   Time Day     Delete         Allow All Traffic  1  LAN Any Any Always  Deny All Traffic  1  LSB Any Any Always  Deny All Traffic  1  WAN  Any Any Always  Deny All Traffic  1  WAN  Any Any Always    Add Hew Aule Restore Default Rules    In addition to the default rules  all the network access rules will be displayed as illustrated above
127. rsion     Current Time   Indicates the device present time  Please note  To have the correct time  users must    synchronize the device with the remote NTP server first   CPU Usage   Indicates the current router CPU usage percentage   Memory Usage   Indicates the current router memory usage percentage     Total Session   Indicates the current router session connection quantity     14    ONO    your future life    Multi WAN QoS Router    5 1 4 Firewall Status       Security Status    Status    n  On  Off  On  Off    Orules set    SPI  Stateful Packet Inspection    Indicates whether SPI  Stateful Packet Inspection  is on or off  The  default configuration is    On        DoS  Denial of Service    Indicates if DoS attack prevention is activated  The default configuration is     On        Block WAN Request   Indicates that denying the connection from Internet is activated  The default  configuration is    On        Prevent ARP Virus Attack   Indicates that preventing Arp virus attack is acitvated  The default  configuration is    Off        Remote Management  Indicates if remote management is activated  on or off   Click the hyperlink to  enter and manage the configuration  The default configuration is    Off        Access Rule   Indicates the number of access rule applied in the device     5 1 5 Log Setting Status       Log Setting Status    External Indicates the sever setting to receive the syslog        SyslogServer    Send Log by  future feature     E mail   Indicates the E 
128. s detected  no error message will be recorded in  the System Log  The packet transmitted through this WAN will be  shifted to the other WAN automatically  and be shifted back again  when the connection for the original WAN is repaired and  reconnected    This option is suitable when one of the WAN connections fails and the  traffic going through this WAN to the destination IP should go through  the other WAN to reach the destination  In this way  when any of the  WAN connections is broken  other WANs can serve as a backup     traffic can be shifted to a WAN that is still connected     Detecting Feedback Servers     Default Gateway     ISP Host     Remote Host     DNS Lookup Host     Note      The local default communication gateway location  such as the IP  address of an ADSL router  will be input automatically by the device   Therefore  users just need to check the option if this function is needed   Attention  Some gateways of an ADSL network will not affect packet  detection  If users have an optical fiber box  or the IP issued by ISP is a  public IP and the gateway is located at the port of the net caf   rather  than at the IP provider   s port  do not activate this option    This is the detected location for the ISP port  such as the DNS IP  address of ISP  When configuring an IP address for this function  make  sure this IP is capable of receiving feedback stably and speedily   Please  input the DNS IP of the ISP port    This is the detected location for the remote Netw
129. soesoesoee 38       your future life    Multi WAN QoS Router       Introduction    Security QoS Router  referred as Security QoS Router hereby  is a business level security router  that efficiently integrates new generation multiple WAN port devices  It meets the needs of medium  enterprises  internet caf  s  campus  dorm and communities  etc  Apart from its internet connectivity  that suits the broadband market  Security QoS Router has a built in QoS and VLAN switching board  which enables it to fulfill most enterprise and internet cafe firewall needs     Security QoS Router has 2 10 100 Base T TX Ethernets  RJ45  WAN ports  These WAN ports can  support auto load balance mode  exclusive mode  remaining WAN balance   and stategy routing mode  for high efficiency network  They offer super flexibility for network set up  Moreover  these WAN ports  also support DHCP  fixed IP  PPPoE  transparent bridge  port binding  static routing  dynamic routing   NAT  one to one NAT  PAT  MAC Clone  as well as DDNS  As for LAN ports including one DMZ  they  support 4 10 100 Base T TX Ethernet  RJ45  ports and provide the features of Microsoft UPnP  VLAN   Multi Subnet  and transparent bridge mode  Internet IP addresses can also be used in intranet     To fulfill the requirement for a highly secure and integrated firewall  Security QoS Router has a 64 bit  hardware acceleration  high speed  high efficiency processor embedded  With high processing speed   plusing high standard SDRAM and Flash 
130. st be activated  In the field of remote browser IP  a valid  external IP address  WAN IP  for the device should be filled in and the  modifiable default control port should be adjusted  the default is set to  80  modifiable      Multicast Pass Through   There are many audio and visual streaming media on the network   Broadcasting may allow the client end to receive this type of packet    message format  This feature is off by default     Prevent ARP Virus This feature is designed to prevent the intranet from being attacked by  Attack   ARP spoofing  causing the connection failure of the PC  This ARP virus  cheat mostly occurs in Internet cafes  When attacked  all the online  computers disconnect immediately or some computers fail to go online     Activating this feature may prevent the attack by this type of virus     88    GINO    your future life    Advanced Setting    Exempted Source IP      Exempted Dest  IP         Multi WAN QoS Router    WAN Threshold LANThreshols   Trresnoid cowed ny ai nso      Threshold coumed Dy ai  L packets             Single Dest iP Trreshoid  m00   Peckerssec       single i  papers  203  eeceesssec Singe SowceiP Tresnoid  2002   paccesssec   Block his iP whenreach z   Biock fils IP whenresch a yi   Tresnoid E mnes  evesnoid mines   Trresmoid coumed Dy s  i500 le _   Threshold coumed bye   35000  ee j    packets  SSN _J PSSRESSOS   sctets as ceetssec     BingieDestiPTrresnoid  2000  Pactetssec        2009  Fasse Single Source IP Trreshoid  20   P
131. t that is to be bound  The maximum    acceptable characters are 12     Enabled   Choose the item to be bound   Apply   Activate the configuration     Select All   Choose all items on the list for binding   Refresh   Refresh the list   Close   Close the list        67    your future life    Multi WAN QoS Router    7 6 IP Group Management    IP Group function can combine several IP addresses or IP address ranges into several groups  When you  manage user internet access privileges by IP address  you can set up every management functions for users  who have same internet access privileges in the same IP group in order to decrease the effort of setting rules  for each IP address  For example  you can choose to set up QoS or Access Rule by IP grouping  Thus  you    will simplify setting rules     IP Grouping consists of Local IP Group and Remote IP Group  Local IP Group refers to LAN IP groups   and remote IP Group refers to WAN IP groups  Local IP Group list will automatically learn IP addresses having  packets that pass through firewall  Moreover  if user changes the IP address  the IP in the list will change  accordingly well  For IP information which is in group list  it won t update automatically along with IP list of the    left side  Administrators need to modify it manually     User Edit IP Local broupSet    Name  Ys IP Group    P  Address    tt L H W       Delete Group       Add to IF list       IF List Group Name   test O    name IP    Edit delete name IP  amp  delete  1
132. t will automatically send out the  log mail   Set the interval of sending the log  and the default is set to 10 minutes     Reaching this defined number  it will automatically send out the Mail    log     The device will detect which parameter  either entries or intervals   reaches the threshold first and send the log message of that parameter  to the user     Users may send out the log right away by pressing this button     your future life    Multi WAN QoS Router       Log Setting     Syn Flooding LIP Spoofing L  Win Nuke     Ping Of Death Unauthorized Login Attempt  System Error Messages    Deny Policies  C  Allow Policies  Configuration Changes      Authorized Login  Alert Log    The device provides the following warning message  Click to activate these features  Syn Flooding   IP Spoofing  Win Nuke  Ping of Death   Unauthorized Login Attempt   Syn Flooding   Bulky syn packet transmission in a short time causes the overload of the    system storage of record in connection information     IP Spoofing   Through the packet sniffing  hackers intercept data transmitted on the  network  After they access the information  the IP address from the sender  is changed so that they can access the resource in the source system     Win Nuke   Servers are attacked or trapped by the Trojan program     Ping of Death   The system fails because the sent data exceeds the maximum packet that    can be handled by the IP protocol     Unauthorized If intruders into the device are identified  the
133. t with the  Internet  Therefore  to avoid a huge number of disconnection  users can  activate this function to arrange new connections to be made through  another WAN to the Internet  In this way  the effect of any disconnection    can be minimized   Input the time rule for disconnection of this WAN service     Input how long the WAN service may be disconnected before the newly  added connections should go through another WAN to connect with the    Internet     Select another WAN port as link backup when port binding is configured     Users should select the port that employs the same ISP     After the changes are completed  click    Apply    to save the configuration  or click    Cancel  to leave    without making any change     PPTP    This option is for the PPTP time counting system  Input the user   s connection name and password issued    by ISP  and use the built in PPTP software to connect with the Internet     26    your future life    Multi WAN QoS Router    Interface  WAND    WAN IP Address   oT fo    je         Subnet Mask    Default Gateway   o   UserName   A        Connect on Demand  Max Idle Time Min      Keep Alive  Redial Period Sec     JAE  AE        EnabledLine Dropped Scheduling    Line Dropped Period  from     0   to  1_     9     4 Hour Format     minutes ahead line dropped to stat new session  transferring    Line Dropped Scheduling     Backup Interface         WAN IP Address This option is to configure a static IP address  The IP address to be    config
134. te cmd to enter the dos operation  Enter arp    s 192 168 1 1 Oa Of d4 9e fb Ob    so as to finish the binding of pc01 as illustrated     Microsoft Windows RP  hitch 5 1 2600   CG  Copyright 19785 2601 Microsoft Corp     C  Documents and Settings  PMNB1l gt arp  s 192 168 1 1 1c   hb1    88 9a ce 2h        For other host devices within the network  follow the same way to enter the IP and MAC address of the  corresponding device to complete the binding work  However  if this act restarts the computer  the setting will  be cancelled  Therefore  this command can be regarded as a batch of processing documents placed in the    activation of the operation system  The batch processing documents can be put in this way    echo off  arp  d  arp  s Router LAN IP Router LAN MAC    For those internal network attacked by Arp  the source must be identified  Method  If the PC fails to       32    your future life    Multi WAN QoS Router    go online or there is packet loss of ping  in the DOS screen  input arp  a command to check if the MAC  address of the gateway is the same with the device MAC address  If not  the PC corresponding to the    MAC address is the source of attack     Solutions for other device users are to make a two way binding of the IP address and MAC address  from both of the PC and device ends in order to carry out the prevention work  However  this is more  complicated because the search for the IP and address and MAC increases the workload  Moreover     there is greater
135. te the service port of A Record server  e g  SMTP  TCP 25 25  for Mail        123    your future life    Multi WAN QoS Router    Internal IP  Input the internal IP of A Record  e g  192 168 8 100 of Mail server   Interface  select the WAN port of A Record and corresponding IP    Enable  Activate the configuration    Add to List  Add to the active service content     124    N    your future life    Multi WAN QoS Router    XI  System Tool    This chapter introduces the management tool for controlling the device and testing network connection     For security consideration  we strongly suggest to change the password  Password and Time setting is in  Chapter 5 2     11 1 Diagnostic    System Tool    Password Setup    Firmware Upgrade    Configuration Backup  Network Time    system Recover       The device provides a simple online network diagnostic tool to help users troubleshoot network related  problems  This tool includes DNS Name Lookup  Domain Name Inquiry Test  and Ping  Packet    Delivery Reception Test         DNS Name Lookup      Ping  PinghostorIPaddress   oo O    DNS Name lookup    On this test screen  please enter the host name of the network users want to test  For example     users may enter www abc com and press  Go  to start the test  The result will be displayed on this page        DNS Name Lookup    Ping    Look up the name    wwv  qno  com  tw      Name  www qno com tw  Address  59 124 180 50    125    your future life    Multi WAN QoS Router  Ping       DNS Na
136. ter device    MAC Address of the backup device     Input LAN MAC of Slave device  It should be different from LAN MAC  of Master device    Status    Status Normal    means both two devices operate normally      Status Backup    indicates Slave mode has problems  and the device    enables backup to take over WAN    High Availability    Enable    Disable  Mode      Hardware Backu p Mode    Two devices are operating simultaneously  Operati    Master Mode    Slave Mode    DHCP Enable   DHCP Disable     Master   Slave Mode setting Of two devices must be different    LIWAN 1      WAN 2  WAN Backup    The checked WAN are not working in this device      LAN Gateway Backup  as jes  r 5  MAC Address ofthe backupdevice 0  o io Ho Jo Wo    Status  Normal  Operation Slave Mode Although working with master device  Backup device   s DHCP server  is disabled  LAN users need to transmit traffic through the WAN on  Slave device  You should add LAN IP of Slave device into Master    device DHCP server default gateway  which is DHCP server IP    address     For example  if the DHCP server   s IP of Master device is  192 168 1 1  and the subnet mask is 255 255 255 0  Salve device  should be in the same subnet  ex  192 168 1 2     WAN Backup The checked WANs will works in another device  For an example  if       136    N    your future life     The Checked WANS are not  working in this device    LAN Gateway Backup    MAC Address of the backup device    Status    Multi WAN QoS Router    WAN1 works i
137. terface      WAN IP address  Subnet mask  WAN Default Gateway    DNS Servers    LAN Default Gateway       Enter the public IP address   Enter the public IP address subnet mask   Enter the WAN default gateway  which provided by your ISP     Enter the DNS server IP address  you must have to enter a DNS  server IP address  maximum two DNS servers IP addresses    available      Enter one of IP addresses that provide by the ISP as your default    gateway     31    N    your future life    Multi WAN QoS Router    LAN IP Addresses Range Enter your IP addresses range  which IP addresses are provided by  ISP  If you have multiple IP ranges  you need setup group1 and    group 2     You can also setup the default gateway and IP range in the group 2     DMZ Setting    For some network environments  an independent DMZ port may be required to set up externally  connected servers such as WEB and Mail servers  Therefore  the device supports a set of independent DMZ  ports for users to set up connections for servers with real IP addresses  The DMZ ports act as bridges    between the Internet and LANs     enable DMZ     DMZ Setting    DMZ 0 0 0 0 Edit  Ayaralhy Came   IP address  Indicates the current default static IP address     Config   Indicates an advanced configuration modification  Click Edit to enter the advanced configuration    page   The DMZ configuration can be classified by Subnet and Range   Subnet    The DMZ and WAN located in different Subnets    For example  If the ISP issued 
138. tic IP address 210 1 1 1   210 1 1 1 should be input   If a range of destinations is to be assigned  input the range such as  210 11 1 1   210 11 255 254  This means the Class B Network Segment of  210 11 x x will be restricted to a specific WAN  If only specific Service Ports  need to be designated  while a specific IP destination assignment is not  required  input    0    into the IP boxes     Select the WAN for which users want to set up the binding rule   To activate the rule   To add this rule to the list     To remove the rules selected from the Service List     The priority for rule execution depends on the rule order in the list  A rule  located at the top will be executed prior to those located below it  Users can    arrange the order according to their priorities     The rules configured in Protocol Binding will be executed by the device according to their priorities    too  The higher up on the list  the higher the priority of execution        45    your future life    Multi WAN QoS Router    Show Priority      Click the    Show Table    button  A dialogue box as shown in the following figure will be displayed  Users  can choose to sort the list by priorities or by interface  Click    Refresh    and the page will be refreshed  click       Close    and the dialogue box will be closed     Summary       Add or Remove Service Port    If the Service Port users want to activate is not in the list  users can add or remove service ports    from    Service Management    to 
139. tion for transmitting dynamic RIP   Use Up Down button to select one of    None  RIPv1   RIPv2 Broadcast  RIPv2 Multicast    as the    RX    function for    receiving dynamic RIP     When there are more than one router and IP subnets  the routing mode for the device should be    configured as static routing  Static routing enables different network nodes to seek necessary paths    automatically  It also enables different network nodes to access each other  Click the button    Show Routing    Table     as in the figure  to display the current routing list     109    your future life    Multi WAN QoS Router       Static Routing    Dest IP   Subnet Mask      JOL  JUL    Gateway      Hop Count     PH    Interface      Add to list          Delis selected item    Suny Tabla Apply Cancel    Dest  IP   Input the remote network IP locations and subnet that is to be   Subnet Mask   routed  For example  the IP subnet is 192 168 2 0 255 255 255 0    Gateway   The default gateway location of the network node which is to be  routed    Hop Count   This is the router layer count for the IP  If there are two routers under    the device  users should input    2    for the router layer  the default is       1      Max  is 15     Interface   This is to select    WAN port    or    LAN port    for network connection  location    Add to List   Add the routing rule into the list    Delete Selected Item   Remove the selected routing rule from the list    Show Table   Show current routing table    App
140. to save the configuration  Click    Cancel  to leave    without making any change  This action will be effective before    Apply    to save the configuration     18    ONO    your future life    Multi WAN QoS Router    Vi  Network    This Network page contains the basic settings  For most users  completing this general setting is enough    for connecting with the Internet  However  some users need advanced information from their ISP  Please refer    to the following descriptions for specific configurations     6 1 Network Connection       LAN Setting    so    ss    en   se Jo    0  Device IP Address   192 168 1 1 Subnet Mask  255 255  255 0  Multiple Subnet Setting Disabled       Unified IP Management          WAN Setting    WAN 1 Obtain an IP automatically Edit  WAN 2 Obtain an IF automatically Edit  USB 36 3 56 Edit        Enable DMZ    Analy o Cancel    6 1 1 Host Name and Domain Name    Host Name SMBs Required by some ISPs      Domain Name  smb  con  Required by some ISPs     Device name and domain name can be input in the two boxes  Though this configuration is not          19    your future life    Multi WAN QoS Router    necessary in most environments  some ISPs in some countries may require it     6 1 2 LAN Setting    This is configuration information for the device current LAN IP address  The default configuration is  192 168 1 1 and the default Subnet Mask is 255 255 255 0  It can be changed according to the actual    network structure        LAN Setting    go   se 
141. ts that do not go to Port 80 may be transmitted through WAN2  therefore   a second rule is necessary  The second rule  Select    All Ports  TCP amp UDP 1 65535      from the  pull down option list    Service     and then input    192 168 1 2   254    in the boxes of    Source IP     Retain  the original numbers    0 0 0 0    in the boxes of    Destination IP     which means to include all Internet IP  addresses   Select WAN1 from the pull down option list    Interface     and then click    Enable     Finally   click    Add New    and the rule will be added to the mode  The device will transmit packets that are not    going to Port 80 to the Internet through WAN1     49    your future life    HIT  TCF 8080     Service         Source IF   192 166 1 _ 150 to 200   Group    Destination IP  0 Mo    0 0 to    Interface  ANZ w   Enable       Update this Application    HITE  TCE 80  80  2192  168 1  150200 0  0  0  00  0 0  O WARZ  All Traffic  TCPAUDF 1 65535  7192  166  1 2 254 0 0 0 0 0  0  0  074A       Multi WAN QoS Router    Show Priority             Delete selected application       Beck   Appi Genedl    Configuring    Assigned Routing Mode    for load Balance      IP Group  This function allows users to assign packets from specific Intranet IP addresses or to    specific destination Service Ports and to specific destination IP addresses through an assigned WAN to    the Internet  After being assigned  the specific WAN will only support those assigned Intranet IP    addresses 
142. tus  Normal    indicates the device operates well    Status of the backup device Indicates status of backup device  If the status is normal   administrators can login the device remotely to manage   Remote  Management should be enabled       Status  Abnormal    indicates the backup device can not be detected or    does exist  and need to inspect the backup device actual status     oot    High Availability i Enable   Disable  Mode  C Hardware Backup Mode    Two devices are operating simultaneously  Operation     Master Mode    Backup Mode    Master  Slave Mode setting Of two devices must be different                      LAN IP of the backup device  we ffs ff E  MAC Address of the backup device  0    f Do  0  status  Normal       134    your future life    Multi WAN QoS Router    Operation Backup Mode Indicates the backup device will take over when the master fails  transmitting  WAN and LAN IP setting in backup device should be the  same as those of master device  The backup device should not be in    charge of network transmitting and DHCP server     ox If the original LAN IP addresses are issued by Master  device  DHCP server setting of Backup device should be the  same as Master device  The Backup device can keep DHCP    functioning and there will be no LAN disconnection     LAN IP of the backup device Input LAN IP of Master mode  which is backed up    MAC Address of the backup Input Master device MAC address  which is backed up    device    Status    Status  Normal    ind
143. ured could be one issued by ISP   The IP address is usually  provided by the ISP when the PC is installed  Contact ISP for relevant    information    Subnet Mask Input the subnet mask of the static IP address issued by ISP  such as   Issued eight static IP addresses  255 255 255 248    Issued 16 static IP addresses  255 255 255 240    Default Gateway Input the default gateway of the static IP address issued by ISP  For ADSL  Address users  it is usually an ATU R IP address    User Name Input the user name issued by ISP    Password Input the password issued by ISP        2i    your future life    Connect on Demand    Keep Alive    Enable  Line Dropped  Scheduling    Line Dropped Period    Line Dropped  Scheduling    Backup Interface    Multi WAN QoS Router    This function enables the auto dialing function to be used for a PPTP dial   connection  When the client port attempts to connect with the Internet  the  device will automatically connect with the default ISP auto dial connection   when the network has been idle for a period of time  the system will break  the connection automatically   The default time for automatic break off    when no packets have been transmitted is five minutes      This function enables the PPTP dial connection to redial automatically  when the connection has been disconnected  Users can set up the    redialing time  The default is 30 seconds     The WAN disconnection schedule will be activated by checking this option   In some areas  there is a tim
144. ware is denied  inquiring about the IP address of this  specific software server port may apply this feature  Moreover  to find out BT or P2P software  users    may select this feature to inquire users from the port        11    ONO    your future life    Multi WAN QoS Router    system Log    system Statistic    Traffic Statistic           P Port Statistic    Enable IP Port Statistic Specific IP Port status for  IPaddress  0  o  o  e         Specific IP Status      Enter the IP address that users want to inquire  and then the entire destination IP connected to remote    devices as well as the number of ports will be displayed         P Port Statistic  Enabled    Search Type    IP Address w       IP Address        192 168 1 100  192 168 1 100  192 168 1 100  192 168 1 100  192 168 1 100    192 166 1 100       TGP  TGP  TGP    1       AN  AN    WAN   AN     207 46 111 14  192 168 4 194  192 168 5 21  192 168 5 126  192 168 5 126  192 168 5 21  192 168 5 24  192 168 5 21       12    ONO    your future life    Multi WAN QoS Router    Specific Port Status    Enter the service port number in the field and IP that are currently used by this port will be displayed         P Port Statistic    Enabled    Search Type    Service Port        Service Port     192 168 1 100   TCP 1290 WAN2   207 46 111 14    192 168 1 100   TCP 1944 WAN2   203 69 138 19 80 D D  Retreat    12 5 Connection Statistic Future Feature     Connection Statistic function is used to record the numbers of network conn
145. ype  destination IP address  bytes per second  and    percentage        Traffic Statistic    o o    EE    Enable Traffic Statistic    L                            Rates             Outbound IP Service      The figure displays the network protocol type  destination IP address  bytes per second  and    percentage        Traffic Statistic    WV  Enable Traffic Statistic                                           10    your future life    Multi WAN QoS Router    Inbound IP Session      The figure displays the source IP address  network protocol type  source port  destination IP    address  destination port  bytes per second and percentage        Traffic Statistic    Enable Traffic Statistic      SourcelP   Protocol   Source Port    DestiP   Dest Port   bytesisec        Raices  Outbound Session      The figure displays the source IP address  network protocol type  source port  destination IP    address  destination port  bytes per second and percentage        Traffic Statistic    Enable Traffic Statistic    Ratesh    12 4 IP  Port Statistic    The device allows administrators to inquire a specific IP  or from a specific port  about the  addresses that this IP had visited  or the users  source IP  who used this service port  This facilitates  the identification of websites that needs authentication but allows a single WAN port rather than  Multi WANs  Administrators may find out the destination IP for protocol binding to solve this login  problem  For example  when certain port soft
    
Download Pdf Manuals
 
 
    
Related Search
    
Related Contents
313326D - HVLP Edge Gun, Operation, German  Untitled - Congresos SELMQ  User manual - CGF Products  molegro molecular viewer  QorIQ Qonverge BSC9131 Reference Design Board  3-Heights™ PDF OCR Import Shell, User Manual  Cables Direct XXURT-603V networking cable  DENVER CLT-35 – WORLD RADIO User Manual Basic Operation 1  Incipio Highland    Copyright © All rights reserved. 
   Failed to retrieve file