Home

WISP-NSR User Manual - ALFA Network WiFi Networking Products

image

Contents

1. m 22 ui A 7 T A 23 24 NETWORK arta TO VENDI NUUS 25 ijj 25 m 28 ADVANCED ROUTING idR etu erri mida rn ee 29 WIRELESS SETTINGS cssesetiivivistisumesbtimiesetasusedetntuisss 30 2 30 SECURIT RR TT 31 INTRODUCTION The WISP NSR is a MIMO IEEE 802 11b g n wireless outdoor AP ROUTER which Support data rate up to 150Mbps It is rain and splash proof when install in upright position WISP NSR also integrated 9dBi panel antenna and passive PoE for simplify installation INITIAL CONFIGURATION The WISP NSR outdoor 2 4GHz AP ROUTER offers a user friendly web based management interface for the configuration of all the unit s features Any PC directly attached to the unit can access the management interface using a web browser such as Internet Explorer version 6 0 or above CONNECTING TO THE LOGIN PAGE It is recommended to make initial configuration changes by connecting a PC directly to the WISP NSR s LAN port The WISP NSR has a default IP address of 192 168 2 1 and a subnet mask of 255 255 2
2. Web Interface Settings Firmware Upgrade l Load Factory Defaults Reboot System Scheduling Reboot Load Default Load Factory Defaults If you have problems with WISP NSR which might be a result from changing some settings but you are unsure what settings exactly you can restore the factory defaults by click the Load Default Button Web Interface Settings Firmware Upgrade Configuration Load Factory Defaults Reboot System Scheduling Reboot Reboot Mow Reboot System If you want to reboot the WISP NSR click the Reboot Now Button 17 ADVANCED SETTINGS The Advanced Settings section is provided for configuration of Time Zone DDNS UPnP SNMP and SSH Time Zone Settings DDNS Settings UPNP Settings SNMP Settings SSH Settings PC Sync with host GMT 12 00 International Date Line Duc EN Time Zone Settings The Time Zone Settings allows you to configure update and maintain the correct time on the WISP NSR s internal system clock SNTP Server Enter the address of an SNTP server to receive time updates SNTP synchronization minutes Specify the interval between SNTP server updates Time Zone Settings DDNS Settings UPNP Settings SNMP Settings SSH Settings Dyndns org freedns afraid org www zoneedit com ip y Cancel DDNS Settings DDNS lets you a
3. mode is selected all WAN related functions will be disabled AP Router The WAN port is used to connect with ADSL Cable modem and the wireless is used for your private WLAN The NAT is existed between the 2 RJ45 ports and all wireless clients share the same public IP address through the WAN port to ISP The default IP configuration for WAN port is DHCP client Client Router The WISP NSR will behave just the same as the client mode for wireless function However router functions are added between the wireless WAN side and the Ethernet LAN side Therefore the WSIP subscriber can share the WISP connection without the extra router Client Bridge If you want to configure WISP NSR as a WiFi client 19 FIREWALL CONFIGURATION MAC IP PORT FILTERING MAC IP Port filtering restricts connection parameters to limit the risk of intrusion and defends against a wide array of common hacker attacks MAC IP Port filtering allows the unit to permit deny or proxy traffic through its MAC addresses IP addresses and ports The WISP NSR allows you define a sequential list of permit or deny filtering rules up to 32 This device tests ingress packets against the filter rules one by one A packet will be accepted as soon as it matches a permit rule or dropped as soon as it matches a deny rule If no rules match the packet is either accepted or dropped depending on the default policy setting Advanced we English x MACIIP
4. Current URL Filters Displays current URL filter Adda URL Filter Adds a URL filter to the settings Delete a URL Filter Deletes a URL filter entry from the list Web Host Filter Settings Allows Internet content access to be restricted based on web address keywords and web domains A domain name is the name of a particular web site For example for the address www HOST com the domain name is HOST com Enter the Keyword then click Add Current Host Filters Displays current Host filter Add a Host Filter Enters the keyword for a host filtering Delete a Host Filter Deletes a Host filter entry from the list Webs URL Filter Settings SAGO alic dU E 24 NETWORK SETTINGS WAN In this section there are several connection types to choose from Static IP DHCP PPPoE PPTP and L2TP If you are unsure of your connection method please contact your Internet Service Provider CABLE DYNAMIC IP DHCP Cable Dynamic IP DHCP v DHCP 73 r3 Hostname Specifies the host name of the DHCP client Primary DNS Server The IP address of the Primary Domain Name Server A DNS maps numerical IP addresses to domain names and can be used to identify network hosts by familiar names instead of the IP addresses To specify a DNS server type the IP addresses in the text field provided Otherwise leave the text field blank Secondary DNS Server The IP address of the Seco
5. WISP NSR 2 4GHz 802 11b g n AP Router User Guide TABLE OF CONTENTS N OTS TON ese case 3 INITIAL CONFIGURATION ccccccccccccccsesssscessssceeccesssceesseueessceessuueessueeeeccesseeueeesueeesseeeseeaes 3 CONNECTING TO 3 OTATIUS TP AOE sco MEME EMT ME x NM 4 4 OPERATION MODE AP ROUTER esee 5 SE MINGS PPPOE osos 5 OETIHNOS S STATIC MXED IP 6 SETTINGS CABLE DYNAMIC IP DHCP ccccccccccssssseeeeesssssseeeeeessssaeeees 7 IN PPTP A 8 SETIN ad re ee 10 OPERATION MODE AP BRIDGE 00ssssssesssssssssssssssssssssssssssssssssssssseeens 11 OPERATION MODE CLIENT ROUTER eene 12 OPERATION MODE CLIENT BRIDGE eee 14 ADVANCED SF TUP RON eee 15 MANAGE MENT ia narren iTe E NENTE N NE EANN 16 ADVANCED Co emer arene 18 OPERATION MODE io seren uu 19 FIREWALL CONFIGURATION cceccicc occas tencsuesncosncncneceseacsoncaanepocustsaadascsmnnssuseavsdncnean tease 20 MAC IP PORT FILTERING 20 VIRTUAL SERVER SETTINGS sascasasicisasivsaseatacinigiadonsaeasntiniededvssansiansasebedonsaeaas 21 uy
6. WPA2 mixed modes allow both WPA and WPA2 clients to associate to a common 36 SSID In mixed mode the unicast encryption type TKIP or AES is negotiated for each client Key Renewal Interval Sets the time period for automatically changing data encryption keys and redistributing them to all connected clients Pass Phrase The WPA Preshared Key can be input as an ASCII string an easy to remember form of letters and numbers that can include spaces or Hexadecimal format Range 8 63 ASCII characters or exactly 64 Hexadecimal digits 37
7. Current Virtual Servers in System The Current Port Forwarding Table displays the entries that are allowed to forward packets through the WISP NSR s firewall gt The table entry number gt Address The IP address of a server on the local network to allow external access gt Port Mapping displays the port mapping for the server gt Protocol Displays the protocol used for forwarding this port gt Comment Displays a useful comment to identify the nature of the port to be forwarded DMZ DMZ is to specified host PC on the local network to access the Internet without any firewall protection Some Internet applications such as interactive games or video conferencing may not function properly behind the firewall By specifying a Demilitarized Zone DMZ host the PC s TCP ports are completely exposed to the Internet allowing open two way communication The host PC should be assigned a static IP address which is mapped to its MAC address and this must be configured as the DMZ IP address EM c DMZ Settings Sets the DMZ status Default Disable DMZIP Address Specifies an IP address on the local network allowed unblocked access to the WAN 22 FIREWALL Firewall functions which will help to protect your network and computer You can utilized firmware functions to protect your network from hackers and malicious intruders Remote Management Port BARNI Translation
8. Default setting is Add IKE Key Retry Specify maximum retry limits for negotiate key to Internet Key Exchange Peer IP address Subnet Gateway Remote end point IP address Subnet and Gateway IP address 27 L2TP Static IP Keep Alive v Server IP Sets the L2TP server IP Address Default I2tp server User Name Sets the L2TP user name for the WAN port Default I2tp_user Range 1 32 characters Password Sets a L2TP password for the WAN port Default I2tp password Range 1 32 characters Address Mode Sets a L2TP network mode Default Dynamic IP Operation Mode Enables and configures the keep alive time Primary DNS Server The IP address of the Primary Domain Name Server A DNS maps numerical IP addresses to domain names and can be used to identify network hosts by familiar names instead of the IP addresses To specify a DNS server type the IP addresses in the text field provided Otherwise leave the text field blank Secondary DNS Server The IP address of the Secondary Domain Name Server LAN In this section the LAN settings are configured based on the IP Address and Subnet Mask The IP address is also used to access this Web based management interface It is recommended to use the default settings if you do not have an existing network 28 LAN Setup 55 O0U CO CA 60 BS AC DHCP Setup DHCP Server v ocal Domain
9. Disable Remote Management via WAN allow or deny to manage the router from anywhere on the Internet Remote Management Port The port that you will use to address the management from the Internet For example if you specify port 2020 then to access the WISP NSR from Internet you would use a URL of the form http XXX XXX Xxx xxx 2020 Ping from WAN Filter When Allow the WISP NSR does not respond to ping packets received on the WAN port SPI Firewall SIP firewall help to keep track of the state of network connections such as TCP streams UDP communication traveling across it It is programmed to distinguish legitimate packets for different types of connections Only packets matching a known active connection will be allowed by the firewall others will be rejected Network Address Translation NAT is the process of modifying IP address information in IP packet headers while in transit across a traffic routing device 23 CONTENT FILTERING The WISP NSR provides a variety of options for blocking Internet access based on content URL and host name Pe Cig Webs Host Filter Settings M ee Http s is Web URL Filter Settings By filtering inbound Uniform Resource Locators URLs the risk of compromising the network can be reduced URLs are commonly used to point to websites By specifying a URL or a keyword contained in a URL traffic from that site may be blocked
10. Grass 19 gt 1592 100 192 1682 199 One day IH IP Address The IP address of WISP NSR on the local area network Default 192 168 2 1 Subnet Mask The subnet mask of WISP NSR on the local area network DHCP Server The DHCP Server is to assign private IP address to the WISP NSR in your local area network LAN The default LAN IP address is 192 168 2 1 changing IP address will also change the DHCP server s IP subnet ADVANCED ROUTING In this section allow to configure routing feature in the WISP NSR Advanced Routing Settings Add a routing rule Destination MERERI Interfa Current Routing table in the DEn Delete Dynamic Routing Protocol Disable Destination The IP address of packets that can be routed Type Defines the type of destination Host Signal IP address Net Portion 29 of Network Netmask Displays the subnetwork associated with the destination Gateway Defines the packets destination next hop Interface Select interface to which a static routing subnet is to be applied Comment Help identify the routing RIP Enable or disable the RIP Routing Information Protocol for the WAN or LAN interface 9999 WIRELESS SETTINGS BASIC Access Point i coron Set County code nites km SSID NAME Hide Disable i Wireless On Off Enables or Disable the radio Default
11. Now it shows the Profile Name SSID BSSID and encryption type received from your target network and press Next button to continue 41 52 Purte TKIP CCMP EET basic miles 1 1 basic itHm 4 Finally you need to tell the system about IP address received from WAN DHCP Hostname and DNS Server then press Next button to finish the wizard Wide Area Network WAN Settings Cable Dynamic IP DHCP DHCP Mode inet wc dns op 13 OPERATION MODE CLIENT BRIDGE 1 Press Site Survey button and look for available wireless network then click on the SSID that you attempt to connect to it Alfa_B is the SSID that we are going to connect in this example Press Next button when finished prof currently Pofile List No Wireless Profile Rules prof profile setup Infarstrature MI Site Survey Disabled basic ack timeout settings O basic miles 1 1 basic km dBm DENS al EV As gael Me Beram aema Meee m ee E PRE Alf Espace e 11 53 cei TRIP VCEMP imre HEJ 54 Mbia 50 94 786 dim A WPFAZ Perrongl COMP En ragtructure KTLTE 41 nid 9 5 P J WPS Perni COMP in trasiructure 2 Now it shows the Profile Name SSID BSSID and encryption type received from your target network and press Next button to finish the wizard Ara ee 00 CO CASP 40 C2 WPAPSK Aute TKIP CCMP basic miles 1 1 basic
12. characters Password Sets a PPTP password for the WAN port Default pptp password Range 1932 characters Address Mode Sets a PPTP network mode Default Dynamic IP Operation Mode Enables and configures the keep alive time Primary DNS Server The IP address of the Primary Domain Name Server A DNS maps numerical IP addresses to domain names and can be used to identify network hosts by familiar names instead of the IP addresses To specify a DNS server type the IP addresses in the text field provided Otherwise leave the text field blank Secondary DNS Server The IP address of the Secondary Domain Name Server 3 secure ssid 1 title SSID_NAME W Hide choice 8 Disable i Disable Done wireless back Network Name SSID SSID Service Set Identification must be assigned to all wireless devices in your network Considering your wireless network security Security Mode Select the security method and then configure the required parameters Options Disabled WEP AUTO WPA PSK WPA2 PSK WPA Auto PSK WPA WPA2 WPA Auto 802 1X Default Disabled SETTINGS L2TP 1 Select L2TP if you are using PPTP service to gain connection to the Internet Cable Dynamic IP DHCP Static Fixed IP Cable Dynamic IP DHCP PPPoE ADSL L2TP Keep Alive Server IP Sets the L2TP server IP Address Default I2tp server User Name S
13. km dBm ADVANCED SETUP In the Advanced Manual Bar it includes all the settings such as firmware upgrade LAN WAN and wireless settings that change the RF behaviors It is important to read through this section before attempting to make changes Management Advanced Settings Operation Mode System Log Pj antent Filtering Network Settings WAN LAN VLAN DHCP Static Leases Advanced Routing Wireless Settmgs Basic Advanced 15 MANAGEMENT The Management section is provided for configuration of administrative needs such as language type user name Password firmware upgrade export and import settings load factory defaults and reboots system 1 Web Interface Settings HT Scheduling ebook Firmware Upgrade 1 Configuration Load Factory Defaults Reboot System admin Apply Password The new password must not exceed 32 characters in length and must not include any spaces Enter the new password a second time to confirm it 1 E TE ERA ll Web Interface Settings ELI DER Configuration Load Factory Defaults Reboot System Scheduling Reboot W2 5 2012 06 27 13 42 jJ Software Version This displays the current firmware version To upgrade the Router s firmware follow these instructions below 1 Download a mor
14. wireless back Network Name SSID SSID Service Set Identification must be assigned to all 11 wireless devices in your network Considering your wireless network security Security Mode Select the security method and then configure the required parameters Options Disabled Open Shared WEP AUTO WPA PSK WPA2 PSK WPA PSK_WPA2 PSK WPA WPA2 WPA1_WPA2 802 1X Default Disabled OPERATION MODE CLIENT ROUTER In the Client Router mode is also known as WISP The WISP NSR wireless side is connected to the remote AP Base Station as in Client Infrastructure mode Between the wireless and LAN is the IP sharing router function This is used to share Client Router connection The WAN is on the wireless side Client Router A Please select an Operation Mode Nex AP Router AP Bridge Client Router Client Bridge 2 Press Site Survey button and look for available wireless network then click on the SSID that you attempt to connect to it Alfa B is the SSID that we are going to connect in this example Press Next button when finished Infarstrature iy Site Survey basic miles 1 1 basic km dBm Next wireless back 12 Aut tL er ML Sam Network Ty ware D Rate Sh games Betas e ee kiia Channel STE Pe Eee LE E ption EI a P 11 Mb s i imi WAI Perera TKIP CCMP infrastructure E 34 CMF In rgastructure COMP lIn rastructurge 3
15. 55 0 You must set your PC IP address to be on the same subnet as the WISP NSR that is the PC and WISP NSR addresses must both start 192 168 2 x To access the WISP NSR s management GUI interface follow these steps 1 Use your web browser to connect to the management interface using the default IP address of 192 168 2 1 2 Log into the interface by entering the default username admin and password admin then click OK STATUS PAGE After logging in to the web interface the Status page displays The Home page top menu bar shows the Status Easy Setup Advanced and Language dress A 6d 64 B5 sss 1927 158 2 1 LA etmazk 255 255 255 0 ess OieCieC A 4 4 64 fersion V2 5 2012 06 27 13 42 system Time Sum 04 Jan 2012 12 13 03 ode AP Router mode elezs MAC Address O0UeCOcC Ace 64 B6 EASY SETUP The Easy Setup is designed to help you to configure the basic settings required to get the WISP NSR up and running There are only a few basic steps you need to set up the WISP NSR to get the connection Click on Easy Setup to bring up the wizard Please select an Operation Mode v Please select an Operation Mode Nex AP Router AP Bridge Client Router Client Bridge If you want to configure a router connection please select_AP Router If you want to configure to an access point please select AP Bridge If you want to configure to WISP please select Client Router If you want to configure to WiFi client plea
16. CMP AES Auto Generator WPA PSK Clients using WPA with a Pre shared Key are accepted for authentication The default data encryption type for WPA is TKIP WPA2 PSK Clients using WPA2 with a Pre shared Key are accepted for authentication The default data encryption type for WPA is AES WPA Auto PSK Clients using WPA or WPA2 with a Preshared Key are accepted for authentication The default data encryption type is TKIP AES WPA Algorithms Selects the data encryption type to use Default is determined by the Security Mode selected TKIP Uses Temporal Key Integrity Protocol TKIP keys for encryption WPA specifies TKIP as the data encryption method to replace WEP TKIP avoids the problems of WEP static keys by dynamically changing data encryption keys AES Uses Advanced Encryption Standard AES keys for encryption WPA2 uses AES Counter Mode encryption with Cipher Block Chaining Message Authentication Code CBC MAC for message integrity The AES Counter Mode CBCMAC Protocol AESCCMP provides extremely robust data confidentiality using a 128 bit key Use of AES CCMP encryption is specified as a standard requirement for WPA2 Before implementing WPA2 in the network be sure client devices are upgraded to WPA2 compliant hardware 4 Auto Uses either TKIP or AES keys for encryption WPA and WPA2 mixed modes allow both WPA and WPA2 clients to associate to a common SSID In mixed mode th
17. CP if your Internet service provider ISP use a DHCP service to assign your Router an IP address when connecting to the 7 Internet Wide Area Network WAN Settings Cable Dynamic IP DHCP Static Fixed IP DHCP Mode li PPPoE ADSL PPTP L2TP inet wc dns op Wide Area Network WAN Settings Cable Dynamic IP DHCP DHCP Mode DHCP inet wc dns The host name that you selected from the DHCP service provider 3 secure ssid 1 title IE SSID NAME ll Hide choice NI ZOLL Disable ao Disable Done wireless back Security Setup Network Name SSID SSID Service Set Identification must be assigned to all wireless devices in your network Considering your wireless network security Security Mode Select the security method and then configure the required parameters Options Disabled WEP AUTO WPA PSK WPA2 PSK WPA Auto PSK WPA WPA2 WPA Auto 802 1X Default Disabled SETTINGS PPTP 1 Select PPTP if you are using PPTP service to gain connection to the Internet Wide Area Network WAN Settings Cable Dynamic IP DHCP Static Fixed IP DHCP Mode NE PPPoE ADSL PPTP L2TP inet wc dns op Wide Area Network WAN Settings PPTP Mode Mod Keep Alive inet wc dns op Server IP Sets the PPTP server IP Address Default pptp server User Name Sets the PPTP user name for the WAN port Default pptp user Range 19322
18. PS device PIN codes and activating the virtual WPS button Click on Wireless Settings followed by WPS HE SSID NAME Hide SSID NAME WPA PSK TKIP CCMP AES Auto moo 2 WPS SSID The service set identifier for the unit APPIN Displays the PIN Code for the WISP NSR The default is exclusive for each unit Device Name WPS name for connecting to the device Encryption Settings Selects between methods of broadcasting the WPS beacon to network clients wanting to join the network WPA Algorithms Selects the data encryption type to use Default is determined by the Security Mode selected TKIP Uses Temporal Key Integrity Protocol TKIP keys for encryption WPA specifies TKIP as the data encryption method to replace WEP TKIP avoids the problems of WEP static keys by dynamically changing data encryption keys AES Uses Advanced Encryption Standard AES keys for encryption WPA2 uses AES Counter Mode encryption with Cipher Block Chaining Message Authentication Code CBC MAC for message integrity The AES Counter Mode CBCMAC Protocol AESCCMP provides extremely robust data confidentiality using a 128 bit key Use of AES CCMP encryption is specified as a standard requirement for WPA2 Before implementing WPA2 in the network be sure client devices are upgraded to WPA2 compliant hardware Auto Uses either TKIP or AES keys for encryption WPA and
19. Port Filtering Enables or disables MAC IP Port Filtering Default Disable Default Policy When MAC IP Port Filtering is enabled the default policy will be enabled If you set the default policy to Dropped all incoming packets that don t match the rules will be dropped If the policy is set to Accepted all incoming packets that don t match the rules are accepted Default Dropped MAC Address Specifies the MAC address to block or allow traffic from DIP Destination IP Address Specifies the destination IP address to block or allow traffic from SIP Source IP Address Specifies the source IP address to block or allow traffic from Protocol Specifies the destination port type TCP UDP or ICMP Default None Destination Port Range Specifies the range of destination port to block traffic from the specified LAN IP address from reaching Source Port Range Specifies the range of source port to block traffic from the specified LAN IP address from reaching Action Specifies if traffic should be accepted or dropped Default Accept 20 Comment Enter a useful comment to help identify the filtering rules Current Filtering rules The Current Filter Table displays the configured IP addresses and ports that are permitted or denied access to and from gt The table entry number MAC Address Displays a MAC address to filter Destination IP Add
20. Range 19322 characters Password Sets a PPTP password for the WAN port Default pptp password Range 1932 characters Address Mode Sets a PPTP network mode Default Dynamic IP Operation Mode Enables and configures the keep alive time 26 Primary DNS Server The IP address of the Primary Domain Name Server A DNS maps numerical IP addresses to domain names and can be used to identify network hosts by familiar names instead of the IP addresses To specify a DNS server type the IP addresses in the text field provided Otherwise leave the text field blank Secondary DNS Server The IP address of the Secondary Domain Name Server IPSec a B n oM m 4 3 ho rm wn A 1 accCONN Verify the desire settings and use scroll down for more options IPSec Connection Type Use drop down menu to select from Road Warrior Tunnel Host to Host Tunnel Subnet to Subnet Tunnel Host to Host Transport Pass trough Drop or Reject Default setting is Road Warrior Tunnel IPSec Authentication Use drop down menu to select from SHA 1 or MDS Default setting is SHA1 SA Connection Life Time Specify how often each SA should be rekeyed measured in hour Local IP address Subnet Gateway Local end point IP address Subnet and Gateway IP address IPSec Operation Mode Use drop down menu to select from Add Route Start Manual or Ignore
21. TINGS STATIC FIXED IP 1 Select Static Fixed IP if your Internet service provider ISP to be permanent address on the Internet A Static IP address is a number in the form of a dotted quad Cable Dynamic IP DHCP r3 c3 2 Static Fixed IP D 192 168 3 1 255 255 255 0 IP Address Sets the static IP address Subnet Mask Sets the static IP subnet mask Default 255 255 255 0 Default Gateway The IP address of a router that is used when the requested destination IP address is not on the local subnet Primary DNS Server The IP address of the Primary Domain Name Server A DNS maps numerical IP addresses to domain names and can be used to identify network hosts by familiar names instead of the IP addresses To specify a DNS server type the IP addresses in the text field provided Otherwise leave the text field blank Secondary DNS Server The IP address of the Secondary Domain Name Server 3 SSID_NAME Hide Done wireless back Security Setup Network Name SSID SSID Service Set Identification must be assigned to all wireless devices in your network Considering your wireless network security Security Mode Select the security method and then configure the required parameters Options Disabled WEP AUTO WPA PSK WPA2 PSK WPA Auto PSK WPA WPA2 WPA Auto 802 1X Default Disabled SETTINGS CABLE DYNAMIC IP DHCP 1 Select Cable Dynamic IP DH
22. Turn On Wireless Mode There are 4 wireless mode those are Access Point WDS Access Point WDS Repeater and WDS Client Note If WEP authentication is selected for WDS communication you will then only have one set of encryption for the entire channel Network Name SSID The name of the wireless network service provided by the WISP NSR Clients that want to connect to the network must set their SSID to the same as that of WISP NSR Range 1 32 characters Multiple SSID One additional VAP interface supported on the device Default 30 name configured Range 1 32 characters Frequency Channel The radio channel that the WISP NSR uses to communicate with wireless clients Network Mode Defines the radio operating mode Default 11an HT20 Packet Aggregate The process of joining multiple packets together into a single transmission unit in order to reduce the overhead associated with each transmission SECURITY SSID NAME ll Hide al Disable Z Disable WIRED EQUIVALENT PRIVACY WEP WEP provides a basic level of security preventing unauthorized access to the network and encrypting data transmitted between wireless clients and an access point WEP uses static shared keys fixed length hexadecimal or alphanumeric strings that are manually distributed to all clients that want to use the network When you select to use WEP be sure to define at least one static WEP key for user a
23. e recent firmware upgrade file from our website 2 Type the path and file name of the update file into the File field Or click the Browse button to locate the update file 3 Click the Upgrade button Note 1 New firmware versions are posted at our website and can be downloaded for free There is no need to upgrade the firmware unless the new firmware has a new feature you want to use However when experiencing problems caused by the Router rather than the configuration you can try to upgrade the firmware 2 When you upgrade the Router s firmware you may lose its current configurations so before upgrading the firmware please write down some of your customized settings to 16 avoid losing important settings 3 Do not turn off the Router or press the Reset button while the firmware is being upgraded otherwise the Router may be damaged 4 The Router will reboot after the upgrading has been finished Web Interface Settings T Firmware Upgrade Meco Scheduling Reboot P di Export Settings Click the Export Button to download current router configuration to your PC Import Settings Click the Import Button to browse for the configuration file that is currently saved on your PC Click Import to overwrite all current configurations with the one in the configuration file
24. e unicast encryption type TKIP or AES is negotiated for each client Pass Phrase The WPA Preshared Key can be input as an ASCII string an easy to remember form of letters and numbers that can include spaces or Hexadecimal format Range 8763 ASCII characters or exactly 64 Hexadecimal digits Key Renewal Interval Sets the time period for automatically changing data encryption keys and redistributing them to all connected clients Default 3600 seconds 34 IEEE 802 1X AND RADIUS IEEE 802 1X is a standard framework for network access control that uses a central RADIUS server for user authentication This control feature prevents unauthorized access to the network by requiring an 802 1X client application to submit user credentials for authentication The 802 1X standard uses the Extensible Authentication Protocol EAP to pass user credentials either digital certificates user names and passwords or other from the client to the RADIUS server Client authentication is then verified on the RADIUS server before the client can access the network Remote Authentication Dial in User Service RADIUS is an authentication protocol that uses software running on a central server to control access to RADIUS aware devices on the network An authentication server contains a database of user credentials for each user that requires network access The WPA and WPA2 enterprise security modes use 802 1X as the method of user authenticatio
25. ets the L2TP user name for the WAN port Default 21 user Range 19322 characters Password Sets a L2TP password for the WAN port Default I2tp password Range 1932 characters Address Mode Sets a L2TP network mode Default Dynamic IP Operation Mode Enables and configures the keep alive time Primary DNS Server The IP address of the Primary Domain Name Server A DNS maps numerical IP addresses to domain names and can be used to identify network hosts by familiar names instead of the IP addresses To specify a DNS 10 server type the IP addresses in the text field provided Otherwise leave the text field blank Secondary DNS Server The IP address of the Secondary Domain Name Server 3 SSID_NAME lll Hide Done wireless back Network Name SSID SSID Service Set Identification must be assigned to all wireless devices in your network Considering your wireless network security Security Mode Select the security method and then configure the required parameters Options Disabled WEP AUTO WPA PSK WPA2 PSK WPA Auto PSK WPA WPA2 WPA Auto 802 1X Default Disabled OPERATION MODE AP BRIDGE Choose menu Easy Setup and select AP Bridge if you want to configure to an access point 1 In this mode bridge your WISP NSR to another Access Point Please select an Operation Mode Nex AP Router AP Bridge Client Bridge SSID NAME ll uide Done
26. eys and redistributing them to all connected clients Default 3600 seconds RADIUS Server Configures RADIUS server settings IP Address Specifies the IP address of the RADIUS server Port The User Datagram Protocol UDP port number used by the RADIUS server for authentication messages Range 1024 65535 Default 1812 Shared Secret A shared text string used to encrypt messages between the access point and the RADIUS server Be sure that the same text string is specified on the RADIUS server Do not use blank spaces in the string Maximum length 20 characters WPA PSK amp WPA2 PSK Wi Fi Protected Access WPA was introduced as an interim solution for the vulnerability of WEP pending the adoption of a more robust wireless security standard WPA2 includes the complete wireless security standard but also offers backward compatibility with WPA Both WPA and WPA2 provide an enterprise and personal mode of operation For small home or office networks WPA and WPA2 provide a simple personal operating mode that uses just a pre shared key for network access The WPA Pre Shared Key WPA PSK mode uses a common password phrase for user authentication that is manually entered on the access point and all wireless clients Data encryption keys are automatically generated by the access point and distributed to all clients connected to the network 33 SSID NAME ll Hide WPA2 PSK x TKIP C
27. n IEEE 802 1X can also be enabled on its own as a security mode for user authentication When 802 1X is used a RADIUS server must be configured and be available on the connected wired network USSID NAME Lal 802 1X WEP Selects WEP keys for data encryption When enabled WEP encryption keys are automatically generated by the RADIUS server and distributed to all connected clients Default Disabled RADIUS Server Configures RADIUS server settings IP Address Specifies the IP address of the RADIUS server Port The User Datagram Protocol UDP port number used by the RADIUS server for authentication messages Range 1024 65535 Default 1812 Shared Secret A shared text string used to encrypt messages between the access point and the RADIUS server Be sure that the same text string is specified on the RADIUS server Do not use blank spaces in the string Maximum length 20 characters 35 Wi Fi PROTECTED SETUP WPS Wi Fi Protected Setup WPS is designed to ease installation and activation of security features in wireless networks WPS has two basic modes of operation Push button Configuration PBC and Personal Identification Number PIN The WPS PIN setup is optional to the PBC setup and provides more security The WPS button on the WISP NSR can be pressed at any time to allow a single device to easily join the network The WPS Settings page includes configuration options for setting W
28. ndary Domain Name Server PPPoE ADSL PPPoE ADSL Keep Alive iy m User Name Sets the PPPoE user name for the WAN port Default pppoe_user Range 1 32 characters Password Sets a PPPoE password for the WAN port Default pppoe_password Range 1 32 characters Verify Password Prompts you to re enter your chosen password 25 Operation Mode Enables and configures the keep alive time and configures the on demand idle time STATIC IP FIXED IP Static Fixed IP 192 168 3 1 255 255 255 0 to IP Address Sets the static IP address Subnet Mask Sets the static IP subnet mask Default 255 255 255 0 Default Gateway The IP address of a router that is used when the requested destination IP address is not on the local subnet Primary DNS Server The IP address of the Primary Domain Name Server A DNS maps numerical IP addresses to domain names and can be used to identify network hosts by familiar names instead of the IP addresses To specify a DNS server type the IP addresses in the text field provided Otherwise leave the text field blank Secondary DNS Server The IP address of the Secondary Domain Name Server PPTP pptp server pptp user Static IP Keep Alive i T Server IP Sets the PPTP server IP Address Default pptp server User Name Sets the PPTP user name for the WAN port Default pptp user
29. ress DIP Displays the destination IP address Source IP Address SIP Displays the source IP address Protocol Displays the protocol type Destination Port Range DPR Displays the destination port range Source Port Range SPR Displays the source port range Action Displays if the specified traffic is accepted or dropped ON ON ON ON ON WV Comment Displays a useful comment to identify the filter rules VIRTUAL SERVER SETTINGS Virtual Server sometimes referred to as Port Forwarding is the act of forwarding traffic from one network node to another based on received protocol port number This technique can allow an external user to reach a port on a private IP address inside a LAN from the outside through a NAT enabled router Maximum 32 entries are allowed hone ieee Enable I Apply TCP amp UDP Reset Virtual Server Selects between enabling or disabling port forwarding the virtual server Default Disable IP Address Specifies the IP address of a server on the local network to allow 21 external access Private Port The protocol port number on the local server Public Port The protocol port number on the router s WAN interface Protocol Specifies the protocol to forward either TCP UDP or TCP amp UDP Comment Enter a useful comment to help identify the port forwarding service on the network
30. se select Client Bridge OPERATION MODE AP ROUTER Choose menu Easy Setup and select AP Router if you want to configure a router connection Operation Mode Setup Please select an Operation Mode SETTINGS PPPoE ADSL 1 Select PPPoE to be assigned automatically from an Internet service provider ISP through a DSL modem using Point to Point Protocol over Ethernet PPPOE Wide Area Network WAN Settings Cable Dynamic IP DHCP v Static Fixed IP DHCP Mode Cable Dynamic IP DHCP PPPoE ADSL inet wc dns op Wide Area Network WAN Settings PPPoE ADSL A PPPoE Mode inet wc dns op User Name Sets the PPPoE user name for the WAN port Default pppoe_user Range 1 32 characters Password Sets a PPPoE password for the WAN port Default pppoe_password Range 1 32 characters Verify Password Prompts you to re enter your chosen password Operation Mode Enables and configures the keep alive time and configures the on demand idle time 3 SSID NAME E Hide Done wireless back Security Setup Network Name SSID SSID Service Set Identification must be assigned to all wireless devices in your network Considering your wireless network security Security Mode Select the security method and then configure the required parameters Options Disabled WEP AUTO WPA PSK WPA2 PSK WPA Auto PSK WPA WPA2 WPA Auto 802 1X Default Disabled SET
31. ssign a fixed host and domain name to dynamic Internet IP address It is useful when you are hosting your own website FTP server or other server behind the WISP NSR Before using this feature you need to sign up for DDNS service at www dyndns org a DDNS service provider User Name Sets the DDNS user name for the connection Password Sets a DDNS password for the connection HostName The host name that you selected from the DDNS service provider Time Zone Settings DDNS Settings UPNP Settings SNMP Settings SSH Settings UPNP Settings UPnP permits network devices to discover other network device s preference and establish functional network services for data sharing communication and entrainment Default setting is Disabled 18 Time Zone Settings DDNS Settings UPNP Settings SNMP Settings SSH Settings Disable public rivate SNMP Settings Managing devices on IP networks Default setting is Disabled Time Zone Settings DDNS Settings UPNP Settings SNMP Settings SSH Settings m SSH Settings Secure Shell Enable your WISP NSR unit to access secure shell SSH based network device Default setting is Disabled OPERATION MODE The Operation Mode content four modes AP Bridge AP Router Client Router and Client Bridge Advanced AP Router AP Router AP Bridge Client Router Client Bridge AP Bridge The wired Ethernet and wireless are bridged together Once the
32. ty standard but also offers backward compatibility with WPA SSID NAME l Hide al WPA D TKIP CCMP AES Auto WPA Clients using WPA for authentication WPA2 Clients using WPA2 for authentication WPA Auto Clients using WPA or WPA2 for authentication WPA Algorithms Selects the data encryption type to use Default is o determined by the Security Mode selected TKIP Uses Temporal Key Integrity Protocol TKIP keys for encryption WPA 32 specifies TKIP as the data encryption method to replace WEP TKIP avoids the problems of WEP static keys by dynamically changing data encryption keys AES Uses Advanced Encryption Standard AES keys for encryption WPA2 uses AES Counter Mode encryption with Cipher Block Chaining Message Authentication Code CBC MAC for message integrity The AES Counter Mode CBCMAC Protocol AESCCMP provides extremely robust data confidentiality using a 128 bit key Use of AES CCMP encryption is specified as a standard requirement for WPA2 Before implementing WPA2 in the network be sure client devices are upgraded to WPA2 compliant hardware 4 Auto Uses either TKIP or AES keys for encryption WPA and WPA2 mixed modes allow both WPA and WPA2 clients to associate to a common SSID In mixed mode the unicast encryption type TKIP or AES is negotiated for each client Key Renewal Interval Sets the time period for automatically changing data encryption k
33. uthentication or data encryption Also be sure that the WEP shared keys are the same for each client in the wireless network SSID NAME ll uide E WEP AUTO FI ASC 31 WEP AUTO Allows wireless clients to connect to the network using Open WEP uses WEP for encryption only or Shared WEP uses WEP for authentication and encryption Encrypt Type Selects WEP for data encryption OPEN mode only Security Key Index Selects the WEP key number to use for authentication or data encryption If wireless clients have all four WEP keys configured to the same values you can change the encryption key to any of the settings without having to update the client keys Default 1 Range 1 4 WEP Keys Sets WEP key values The user must first select ASCII or hexadecimal keys Each WEP key has an index number Enter key values that match the key type and length settings Enter 5 alphanumeric characters or 10 hexadecimal digits for 64 bit keys or enter 13 alphanumeric characters or 26 hexadecimal digits for 128 bit keys Default Hex no preset value Note If WEP authentication is selected for WDS communication you will then only have one set of encryption for the entire channel WPA amp WPA2 Wi Fi Protected Access WPA was introduced as an interim solution for the vulnerability of WEP pending the adoption of a more robust wireless security standard WPA2 includes the complete wireless securi

Download Pdf Manuals

image

Related Search

Related Contents

Solis Barbecue Grill XXL Pro 792 (FDE)  AllPile Manual  Visualizza/apri - POLITesi  QM105D - SAMSUNG DISPLAY  ポータブルビデオ CD プレーヤー  Catálogo LCM.cdr    INDICE DE BIODIVERSITE DE LA VILLE  Kenwood KDC-3031G Car Stereo System User Manual  Gefen EXT-HDMI-CAT5-145  

Copyright © All rights reserved.
Failed to retrieve file