Home

Planet Technology VRT-401G User's Manual

image

Contents

1. M 33 229 DDNS uc iita eerie ere ere ere O I EC C ene eee ETE CUu vL emer ee rte eer 34 2 S LAN 34 PA E E A a E E EE EEE E E T 36 2 4 T Basic SCUUING Sse 205005202659 aaee aaar sacs 301900 92200285 36 2 4 2 Advanced SCUING S n iu duni icuncuu Esa UMP SETA CRIME I RN MATE 41 2A 3S SOC ja t 42 243 T WEP nu cau 42 24 32 9021X ODIVacusedtncscaciiacuccsesnsaushonohodac inc dn 44 2 4 3 3 802 1x WEP Static key Luuuciusuted axes doe Leda Des eis eM Mc SR DEM osx dE eS 44 2 4 3 4 WPA Pre shared Key 21 Ier ce Dore ette cov cce eo ce oo rx Dore coe ve cau sce pceeesn 45 PE EORR Wc 46 244 ACCESS CODIFOL inten erede ededed duin decode fa dasc da ededed 47 PAN Doe S 50 2 0 1 osuere tt 52 2 6 2 Vilt al SerVel unice sie mm vue cs save ve reves VEU ene E UPU Ue PEN DIESEL II DE UE ICE QUE 52 2 5 3 Special ABDIICALIODS uinci cocci cho deo ec ach cc weleob E 55 2 0 4 UPNP SEUNG S coe toeos eterno aSa aaa teeta 56 2609 ALO SEWNOS e E m me 57 2 6 6 Static HoOUTIO n osos Ee obe OE UR eseti d Dose sui Eoi ties sag nnmnnn 58 2 7 uir ripe 60 ZT 1A6606SS COMM face eee ea D DD ORE INE 60 2 7 2 URL BIOCKING cisci eic ocio cae i02 0506292 0o0i650805 006 0000202622202006
2. 5 Feal CS fe 5 MIPIM rater A 5 mwrie cael PE s 5 Get to know the Wireless VPN Firewall Router 6 BACK Pane et sist 6 PONP AMO PETENTE ED ape seen 6 Setup DIA GI ANN m 7 Getung started 2o292225o6369o9a0ono6 ood d o aa 7 SGN E a AEP E T TET 0005 020051250282020262020 0020200026 00022 02 00 000058 16 ee ec uil 16 Step 1 TIME ZOMG om 16 Step 2 Broadband VDOidiimeitdde dete ster Mears nr et ay Shr Meer sr sr MEPE st arnt ar eter Meer si re 17 1 1 CG bl e IOC CIID eR 18 1 2 Fixed IP iD M t HA 18 153 PPPOE seriis 19 TAPPIP e 21 id irap Nr RETE 23 LO reUa BIO PONO Bet 25 SunLlorcrgc 27 General Settlngs eciec costs reden ta ratu i EEEE 27 AES LII O 28 PAM NEIN 49 9 NETTEN TE 28 2 1 2 Pas Sword SENGS uu oocu odo vau e ecu aaa 29 2 1 3 Remote Management aaa eea ea eTe nnn 30 ZZW AN pe Kr E 31 2 2 V DyNAMIC IP dec sisi a aE E 32 2 2 2 Slatic IP AAATOSS oesie aa ix eus aaa esse ioi vex 32 2 2 3 PPPOE PPP over Ethernet ncs qi cdedeed d d oci a da Aou eife a i oie aa 32 PAL M 32 PLA ZR Bog NE MH 33 2 2 0 Telstra BIG PONG 33 22 CONS
3. a IP Routing Enabled WINS Proxy Enabled pete Broadcast Ho Ho Ethernet adapter Local Area Connection Connection specific DNS Suffix Description a 2 a a n Adapter Physical Address DHCP Enabled Autoconf iguratio IP Address Subnet Mask Default Gateway DHCP Server DNS Servers a Realtek RILS81i39 A gt PCI Fast Ethernet Hid 5H FC FE H2 DEB Yes Yes 192 168 1 77 255 255 255 0 1 2 168 1 254 i1 2 168 1 i 19 2 168 1 1 139 175 55 244 Sunday December 49 2601 9 18 45 PH Friday December 14 2601 9 18 45 PH ee E ah MEME LE m or or 3r Gr us s Lease Obtained Lease Expires e Your PC s IP address is the one entitled IP address 192 168 1 77 e The router s IP address is the one entitled Default Gateway 192 168 1 254 e Your PC s MAC Address is the one entitled Physical Address 00 50 FC FE 02 DB 83 Glossary Default Gateway Router Every non router IP device needs to configure a default gateway s IP address When the device sends out an IP packet if the destination is not on the same network the device has to send the packet to its default gateway which will then send it out towards the destination DHCP Dynamic Host Configuration Protocol This protocol automatically gives every computer on your home network an IP address DNS Server IP Address DNS stands for Domain Name System which allows Internet servers to have
4. 54M Wireless VPN Firewall Router VRT 401G User s Manual Copyright Copyright C 2005 PLANET Technology Corp All rights reserved The products and programs described in this User s Manual are licensed products of PLANET Technology This User s Manual contains proprietary information protected by copyright and this User s Manual and all accompanying hardware software and documentation are copyrighted No part of this User s Manual may be copied photocopied reproduced translated or reduced to any electronic medium or machine readable form by any means by electronic or mechanical Including photocopying recording or information storage and retrieval systems for any purpose other than the purchaser s personal use and without the prior express written permission of PLANET Technology Disclaimer PLANET Technology does not warrant that the hardware will work properly in all environments and applications and makes no warranty and representation either implied or expressed with respect to the quality performance merchantability or fitness for a particular purpose PLANET has made every effort to ensure that this User s Manual is accurate PLANET disclaims liability for any inaccuracies or omissions that may have occurred Information in this User s Manual is subject to change without notice and does not represent a commitment on the part of PLANET PLANET assumes no responsibility for any inaccuracies that may be containe
5. 1 4 PPTP Select PPTP if your ISP requires the PPTP protocol to connect you to the Internet Your ISP should provide all the information required in this section Internet Broadband Router 4 IF Address Info 7 PFTF Point te Point Tunneling Protocol ie a common connection method used in xDSL connections WAN Interface Settings Obtain an IP address automatically MAC Addresa a OODOOCODODODOCO Clone Mac O Use the following IP address IP Address Daloult Gateway M a PPTP Settings ser 0 ee 000 0 Cnn ee 512 MTU Valus ce 1437 Cc ae Sa 090 ints 21 Parameter Obtain an IP address automatically MAC Address Use the following IP address IP Address Subnet Mask Gateway User ID Password PPTP Gateway Connection ID MTU BEZEQ ISRAEL Connection Type Description The ISP requires you to obtain an IP address by DHCP before connecting to the PPTP server Your ISP may require a particular MAC address in order for you to connect to the Internet This MAC address is the PC s MAC address that your ISP had originally connected your Internet connection to Type in this MAC address in this section or use the Clone MAC Address button to replace the WAN MAC address with the MAC address of that PC you have to be using that PC for the Clone MAC Address button to work To find out the PC s MAC address see Appendix A see Glossary for an explanation on MAC add
6. AES to change the encryption key frequently So the encryption key is not easy to be broken by hackers This can improve security very much Status Internet Broadband Router Security This page allows you setup the wireless sacur y Tum on WEP or WFA by using Encryption Keys could prevent any unddtho nzed access lo your wineheks nebwork SELLI WPA pre shered kiy Pe ee ee OWRATKIP COWPANAES WPA Mixed Fra shared Koy Format i Pastphrase d Pre shared Key a Parameters Default Description WPA TKIP TKIP can change the encryption key frequently to enhance the wireless LAN security 45 WPA2 AES This use CCMP protocol to change encryption key frequently AES can provide high level encryption to enhance the wireless LAN security WPA2 Mixed This will use TKIP or AES based on the other communication peer automatically Pre shared Key Format You may select to select Passphrase alohanumeric format or Hexadecimal Digits in the A F a f and 0 9 range to be the Pre shared Key For example Passphrase iamguest Hexadecimal Digits 12345abcde Pre shared Key The Pre shared key is used to authenticate and encrypt data transmitted in the wireless network Fill the text box by following the rules below Hex WEP input 64 digit Hex values in the A F a f and 0 9 range or at least 8 character pass phrase as the pre shared keys Click Apply at the bottom of the screen to save t
7. WAN connection will not disconnect due to the idle timeout If the WAN line breaks down and latter links again the router will not auto connect to the ISP Idle Time You can specify an idle time threshold minutes for the WAN port This means if no packets have been sent no one using the Internet throughout this specified period then the router will automatically disconnect the connection with your ISP Note This idle timeout function may not work due to abnormal activities of some network application software computer virus or hacker attacks from the Internet For example some software sends network packets to the Internet in the background even when you are not using the Internet So please turn off your computer when you are not using it This function also may not work with some ISP So please make sure this function can work properly when you use this function in the first time especially your ISP charge you by time used Click lt OK gt when you have finished the configuration above Congratulations You have completed the configuration for the PPTP connection You can start using the router now if you wish to use some of the advance features supported by this router see chapter 2 3 4 1 5 L2TP Select L2TP if your ISP requires the L2TP protocol to connect you to the Internet Your ISP should provide all the information required in this section latus 3 PLANET men y i LEE Internet Broadband Router 3
8. 2 4 3 Security This Access Point provides complete wireless LAN security functions include WEP IEEE 802 11x IEEE 802 11x with WEP WPA with pre shared key and WPA with RADIUS With these security functions you can prevent your wireless LAN from illegal access Please make sure your wireless stations use the same security function 2 4 3 1 WEP only When you select 64 bit or128 bit WEP key you have to enter WEP keys to encrypt data You can generate the key by yourself and enter it You can enter four WEP keys and select one of them as default key Then the router can receive any packets encrypted by one of the four keys 42 ST abue fees og kb ee al Internet Broadband Router Security This page allows you solup Th wireless securty Tum on WEP or WPA by using Encryption Kays could prevent any unau hanzed access to your wireless natw rk Fnongptlon E w Default Tx Key Key vw Fnorgption Key 1 Fnorgption Key P oo C Enable 887 4 Authontlcatlon Cancel Parameters Default Description Key Length 64 bit You can select the WEP key length for encryption 64 bit or 128 bit Larger WEP key length will provide higher level of security but the throughput will be lower Key Format You may select to choose ASCII Characters alphanumeric format or Hexadecimal Digits in the A F a f and 0 9 range to be the WEP Key For example ASCII Characters guest Hexadecimal Digit
9. while mainiaining eecunty and precy nabie or digable YEH modula fmction Enable Disable Parameters Description 2 8 1 IPSec Server IPSec Server allows you to set up a server that enables secure data transfer between two devices or private networks 2 8 2 L2TP Server L2TP Server allows you to set up a server that allows users connect with L2TP over IPSec protocol 2 8 3 PPTP Server PPTP Server allows you to set up a server that allows users connect with PPTP protocol Click on one of the VPN selections and proceed to the manual s relevant sub section 2 8 1 IPSec Server IPsec IP Security Protocol is an extended IP protocol which enables secure data transfer It provides services similar to SSL TLS however these services are provided on a network layer 67 Teme g i rem aaan internet Broadband Router VPN Setup Thre page r amp uted to enable da ble VEN luncbien and select a VPM connector To edi delela C Enable IPSEC VPN Enable NAT Traversal nerale RBA Show RSA Public Key Connection fist WAM IP 132 168 33 98 Default Gateway 197 168 55 253 Dt he ee een ee ee Dii i E ccc Parameters Description Enable IPSEC VPN Enable the IPSec VPN Server Enable NAT Traversal Enable the NAT Traversal function allows the clients behind NAT to connect to this VPN server Generate RSA Key Automatically generate the RSA Public Key Show RSA Public Key Click this bu
10. 10 0 0 1 8080 You ll also need to know the password set in the Password Setting screen in order to access the routers web based management Port The port number of remote management web interface Enabled Select Enabled to enable the remote management function Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 2 WAN Use the WAN Settings screen if you have already configured the Quick Setup Wizard section and you would like to change your Internet connection type The WAN Settings screen allows to specify the type of WAN port connect you want to establish with your ISP The WAN settings offer the following selections for the routers WAN port Dynamic IP Static IP Address PPPoE PPTP L2TP Telstra Big Pond DNS and DDNS Status Internet Broadband Router WAN Settings The Broadband router can be connected bo your Semice Prinder through the folloeing methods Dynamic IP Obtaing an iP Address nutematically from your Samica Prewdar Wes a Static IP Address Your Serace Provider gaes a Static IF C Stathe IP Address PPPeE PPP over Ethernet i a common connection method used in DSL connections Poinit Ep Foenit Turinekma Protocol r a common commection mathon Q PPTP wed in xDISL connections O LTP Layer Two Tunneling Protocol i amp common connection method used i
11. 2 2 8 DDNS DDNS allows you to map the static domain name to a dynamic IP address You must get an account password and your static domain name from the DDNS service providers This router supports DynDNS TZO and other common DDNS service providers Internet Broadband Router DDNS 4 DONS allows users 1o map the Sabet domam name to dynamic IP address You must get account password and your atic domain name from ike DONS serica pecvidars Our products have DONS guppar for wwe dyndns org amd wey 120 COITI trey eS Enable Goes Account E Mal Parameters Default Description Enable Disable Disable Enable Disable the DDNS function of this router Provider Select a DDNS service provider Domain name Your static domain name that use DDNS Account E mail The account that your DDNS service provider assigned to you Password Key The password you set for the DDNS service account above Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 3 LAN The LAN Port screen below allows you to specify a private IP address for your router s LAN ports as well as a subnet mask for your LAN segment 34 LAN Settings 7 LAN IP DHCP Server Parameters Default LAN IP IP address 192 168 0 1 IP Subnet Mask 255 255 255 0 802 1d Spanning Tree Disabled DHCP Server Enabled Lease Time IP Addr
12. Internet Broadband Router Wireless Setting This page allows you to define ESSID and Channel for the wireless conmection These parameters ane used for the wireless elations bo connact io the Access Point AP Bridige Point to Multi Point 2 4GHr Be Channel Mumber 1 000000000000 000000000000 DDODODDODOOD noonnnonoenn MAC Address 5 DOCOODUUOOOOI MAC Address 6 UDOODUUUOCOUU Ts AP Bridge WDS mode setting page Staiues Internet Broadband Router Wireless Setting This page allows you t define ESSID and Channel for tht winless connection These parameters aee used for Th wintless stations to connact to ihe Access Point LL EN ien Channel Number 1 Associated Clients Show Active Clients MAC Address 1 PUI MAC Address 2 aa MAC Address I frr MAC Address 4 Arii MAC Addross 5 fiii MAC Address 6 nani Sel Security 39 Parameters Default Mode Band ESSID default Channel Number 11 Associated Clients WLAN MAC Clone MAC MAC address Set Security Description It allows you to set the AP to AP Station Bridge or WDS mode It allows you to set the AP fix at 802 11b or 802 11g mode You also can select B G mode to allow the AP select 802 11b and 802 11g connection automatically This is the name of the wireless LAN All the devices in the same wireless LAN should have the same ESSID The channel used by
13. Networks and File and printer sharing for Microsoft Networks e Gateway All fields are blank e DNS Configuration Select Disable DNS e WINS Configuration Select Disable WINS Resolution e IP Address Select Obtain IP address automatically TCPAIP Properties Bindings Advanced NetBIOS DNS Configuration Gateway WINS Configuration IF Address An IP address can be automatically assigned to this computer IF your network does not automatically assign IF addresses ask your network administrator For an address and then type it in the space below C Specify an IP address LITT Sas 8 Reboot the PC Your PC will now obtain an IP address automatically you re your Broadband Router s DHCP server Note Please make sure that the Broadband router s DHCP server is the only DHCP server available on your LAN Once you ve configured your PC to obtain an IP address automatically please proceed to Step 3 2b Windows XP 1 Click the Start button and select Settings then click Network Connections The Network Connections window will appear 2 Double click Local Area Connection icon The Local Area Connection window will appear 3 Check your list of Network Components You should see Internet Protocol TCP IP on your list Select it and click the Properties button 4 In the Internet Protocol TCP IP Properties window select Obtain an IP address automatically and Obtain DNS server address automatically
14. PPPoE if your ISP requires the PPPoE protocol to connect you to the Internet Your ISP should provide all the information required in this section See chapter 1 PPPoE for more detail 2 2 4 PPTP Select PPTP if your ISP requires the PPTP protocol to connect you to the Internet Your ISP should provide all the information required in this section See chapter 1 PPTP for more detail 32 2 2 5 L2TP Select L2TP if your ISP requires the L2TP protocol to connect you to the Internet Your ISP should provide all the information required in this section See chapter 1 L2TP for more detail 2 2 6 Telstra Big Pond Select Telstra Big Pond if your ISP requires the Telstra Big Pond protocol to connect you to the Internet Your ISP should provide all the information required in this section Telstra Big Pond protocol is used by the ISP in Australia See chapter 1 Telstra Big Pond for more detail 2 2 7 DNS A Domain Name System DNS server is like an index of IP addresses and Web addresses If you type a Web address into your browser such as www router com a DNS server will find that name in its index and the matching IP address Most ISPs provide a DNS server for speed and convenience If your Service Provider connects you to the Internet with dynamic IP settings it is likely that the DNS server IP address is provided automatically However if there is a DNS server that you would rather use you need to specify the IP address of tha
15. Server setting will be added into the Current Virtual 53 Server Table below If you find any typo before adding it and want to change the setting just click Clear and retype it again Remove Virtual Server If you want to remove some Virtual Server settings from the Current Virtual Server Table select the Virtual Server settings you want to remove in the table and then click Delete Selected If you want remove all Virtual Server settings from the table just click Delete All button Click Reset will clear your current selections Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place Example Virtual Server The diagram below demonstrates one of the ways you can use the Virtual Server function Use the Virtual Server when you want the web server located in your private LAN to be accessible to Internet users The configuration below means that any request coming form the Internet to access your web server will be translated to your LAN s web server 192 168 2 2 Note For the virtual server to work properly Internet remote users must know your global IP address For websites you will need to have a fixed static global public IP address Configuration Private IP 192 168 2 2 Private Port 80 Type TCP Public Port 80 Fhewet 12 YOG ADSL or Cable Modem Internet LAN Request W
16. Servico Name TEN WWW HTTP TCP Poet 60 3128 6000 6060 8081 E mail Sending SMTP TCP Pad 25 LI News Forume NNTP TOP Port 118 0 E mail Recesing POPS TCP Port 110 a Secure HTTP HTTP TOP Por 443 N File Transfer FTP TOP Part 21 L MSN Messenger TCP Port 1853 Telnet Service TCP Pon 23 LI AM AOL Instant Messenger TCP Part 5150 a NetiMpating H 373 TOP Port 39 522 1503 1720 1731 0 DNS UDP Port 53 O SNMP UDP Fort 161 162 L1 WEN PPTP TCP Part 1723 L VPHN LZTP UDP Par 1701 CJ TCP All TCE Post C UDP All UDP Port L User Define eT Tuer Protecel Bath Port Range Description The description for this client PC rule Enter the IP address range that you wish to apply this Access Control rule This is the user s IP address es that you wish to setup an Access Control rule Note You need to give your LAN PC clients a fixed static IP address for the Access Control rule to work properly You can block the clients from accessing some Internet services by checking the services you want to block 62 Protocol This allows you to select UDP TCP or both protocol types you want to block Port Range It can be assigned up to five port ranges The router will block clients from accessing Internet services that use these ports Apply Changes Click Apply Changes to save the setting Reset Click Reset to clear all fields Click lt Apply Changes gt at the bottom of the screen to save the above configurations You
17. The DMZ function allows you to re direct all packets going to your WAN port IP address to a particular IP address in your LAN Click on one of the firewall selections and proceed to the manual s relevant sub section 2 7 1 Access Control If you want to restrict users from accessing certain Internet applications services e g Internet websites email FTP etc then this is the place to set that configuration Access Control allows 60 users to define the traffic type permitted in your LAN You can control which PC client can have access to these services J Internet Broadband Router Access Control 4 Access Control allows usare l define the balke type permilbed ar not perrilb ed in pour LAN You can eontrel which PC Ct uses what aeons in which thoy can hawe access To These sonics If both of MAC filtering and IP filtering see enabled simutanaausty the MAC fillanmg tabda will be checked fire and then IP Shering lable O Enable MAC Fihering Dony C Allow Client PC MAC Address MAC Filtering Table Reset O Enable IP Filtering Table up to 20 computers Deny C Allow Eine DE ru P lent Sonica Protocol Port Range Saluct Parameters Description Deny If select Deny then all PCs will be allowed to access Internet accept for the PCs in the list below Allow If select Allow then all PCs will be denied to access Internet accept for the PCs in the list below Filter client PC by MAC addres
18. Time Expined s 182 153 0 100 OQ ab DE Gb 52 forever 182 158 0 101 DO dO 58 58 79 24 forewer Fafresh Parameters Description Active DHCP Client This page shows all DHCP clients LAN PCs currently connected to your network The Active DHCP Client Table displays the IP address and the MAC address and Time Expired of each LAN Client Use the Refresh button to get the most updated situation 3 7 Statistics View the statistics of packets sent and received on WAN LAN and Wireless LAN 78 Internet Broadband Router Statistics 7 This page shows ihe packet counters for traeremission and reception regarding bo networks Sant Packets za Recemed Packeta 2183 Sant Packets a Recewed Packets 1611 Wireless LAH Ethernet LAH Eiherned VAM Refresh Parameters Description otatistics Shows the counters of packets sent and received on WAN LAN and Wireless LAN 79 Chapter 4 Tool This page includes the basic configuration tools such as Configuration Tools save or restore configuration settings Firmware Upgrade upgrade system firmware and Reset Internet Broadband Router Tools Settings The Toots Settings ection metades the basie configuration tools such as Save Restore Configuration Settings and Upgrade System Firmware Parameters Description 4 1 Configuration Tools You can save the routers current configuration restore the router s saved configuration files and restore the rout
19. a domain name such as www Broadbandrouter com and one or more IP addresses such as 192 34 45 8 A DNS server keeps a database of Internet servers and their respective domain names and IP addresses so that when a domain name is requested as in typing Broadbandrouter com into your Internet browser the user is sent to the proper IP address The DNS server IP address used by the computers on your home network is the location of the DNS server your ISP has assigned to you DSL Modem DSL stands for Digital Subscriber Line A DSL modem uses your existing phone lines to transmit data at high speeds Ethernet A standard for computer networks Ethernet networks are connected by special cables and hubs and move data around at up to 10 100 million bits per second Mbps Idle Timeout Idle Timeout is designed so that after there is no traffic to the Internet for a pre configured amount of time the connection will automatically be disconnected IP Address and Network Subnet Mask IP stands for Internet Protocol An IP address consists of a series of four numbers separated by periods that identifies a single unique Internet computer host in an IP network Example 192 168 2 1 It consists of 2 portions the IP network address and the host identifier The IP address is a 32 bit binary pattern which can be represented as four cascaded decimal numbers separated by aaa aaa aaa aaa where each aaa can be anything from 000 to 255 or a
20. also require that you fill in additional information such as Host Name and MAC address see screen below Note The Host Name and MAC address section is optional and you can skip this section if your ISP does not require these settings for you to connect to the Internet Internet Broadband Router 3 IP Address Info 7 Cable Modem Haat Hans MAC Address i ODDO EO i Clone Mac Addis I TTL Daad Enabled Parameters Description Host Name If your ISP requires a Host Name type in the host name provided by your ISP otherwise leave it blank if your ISP does not require a Host Name MAC Address Your ISP may require a particular MAC address in order for you to connect to the Internet This MAC address is the PC s MAC address that your ISP had originally connected your Internet connection to Type in this MAC address in this section or use the Clone MAC Address button to replace the WAN MAC address with the MAC address of that PC you have to be using that PC for the Clone MAC Address button to work To find out the PC s MAC address see Appendix A see Glossary for an explanation on MAC address TTL This is optional Some ISP will check the TTL response to build up the connection When you select Enabled VRT 401G will respond the TTL time plus 1 Click OK when you have finished the configuration above Congratulations You have completed the configuration for the Cable Modem connection You can st
21. as shown on the following screen Internet Protocol ICP7ZIP Properties General Alternate Configuration fou can get IP settings assigned automatically if your network supports this capability Othersize pou need to ask your network administrator for the appropriate IP settings Obtain an IP address automatically CO Use the following IP address C Use the following ONS server addresses RU cm 5 Click OK to confirm the setting Your PC will now obtain an IP address automatically from your Broadband Router s DHCP server Note Please make sure that the Broadband router s DHCP server is the only DHCP server available on your LAN Once you ve configured your PC to obtain an IP address automatically please proceed to otep 3 2c Windows 2000 1 Click the Start button and select Settings then click Control Panel The Control Panel window will appear 2 Double click Network and Dial up Connections icon In the Network and Dial up Connection window double click Local Area Connection icon The Local Area Connection window will appear 3 In the Local Area Connection window click the Properties button 4 Check your list of Network Components You should see nternet Protocol TCP IP on your list Select it and click the Properties button 5 In the Internet Protocol TCP IP Properties window select Obtain an IP address automatically and Obtain DNS server address automatically as shown on the following
22. can now configure other advance sections or start using the router with the advance settings in place Example Access Control In the example below LAN client A can only access websites that use Port 80 However LAN client B is able to access websites and any other service that uses ports between 80 and 999 Configuration Configuration IP 192 168 2 2 IP 192 168 2 3 Port 80 80 Port 80 999 FRteset 12 VOC ADSLor Cable Modem Internet 192 168 2 2 192 168 2 3 Website 2 7 2 URL Blocking Server 63 You can block access to some Web sites from particular PCs by entering a full URL address or just keyword of the Web site 341 42 Internet Broadband Router URL Blocking 7 You can block access to canain Web sitas from a particular PC by entering egher a full URL address or just a keyword of the Web piy O Enable UAL Blaeking Add Reset Current URL Mecking Table CS ETT Reset Parameters Description Enable URL Blocking Enable disable URL Blocking Add URL Keyword Fill in URL Keyword and then click Add You can enter the full URL address or the keyword of the web site you want to block If you find any typo before adding it and want to retype again just click Reset and the field will be cleared Remove URL Keyword If you want to remove some URL keyword from the Current URL Blocking Table select the URL keyword you want to remove in the table and then click Delete Se
23. enable the UPnP feature all client systems that support UPnP like Windows XP can discover this router automatically and access the Internet through this router without any configuration The NAT Traversal function provided by UPnP can let applications that support UPnP smoothly connect to Internet sites without any incompatibility problem due to the NAPT port translation 2 6 5 ALG Setting You can select special applications that need Application Layer Gateway to support here 2 6 6 Static Routing You can disable NAT function and setup the routing rules manually Click on one of the three NAT selections and proceed to the manual s relevant sub section 51 2 6 1 Port Forwarding The Port Forwarding allows you to re direct a particular range of service port numbers from the Internet WAN Ports to a particular LAN IP address It helps you to host some servers behind the router NAT firewall exul Hi Internet Broadband Router Port Forwarding 7 Erines in thie table aliya you to sotomaically rediract commen network garaitan to a spacifir machine behind tha MAT firewall These settings gne only Feces day if you wish l host sore Sarl of Serco hke web serur or mal serr on che private local network behind your Gateways MAT firewall Li Enable Pert Forwarding ELTEN TS NNCTTNNN Bolh add Reset Cunen Port Ferwarding Table WO Ponte 1 Regel Apply Parameter Description Enable Port Forwarding
24. external RADIUS server RADIUS Server Port The service port of the external RADIUS server RADIUS Server Password The password used by external RADIUS server Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 4 3 3 802 1x WEP Static key IEEE 802 1x is an authentication protocol Every user must use a valid account to login to this Access Point before accessing the wireless LAN The authentication is processed by a RADIUS server This mode also uses WEP to encrypt the data during communication 44 EE LL LIBE E So ao internet Broadband Router security Thr amp page allows you setup the wereless secunly Tum on WEP e WPA by usmg Encryphom Keys could prevent any unauthorized access t your wander nitwork ENEENTETM s ENTIER e Encryption Key 1 Encryption Key 2 Encryption Key 3 Encryption Key 4 a Enable 802 12 Authentication RADIUS Server IP address f RADIUS Sarver Port f 1812 RADIUS Server Password For the WEP settings please refer to section 2 4 3 1 WEP only For the 802 1x settings please refer to section 2 4 3 2 802 1x only 2 4 3 4 WPA Pre shared key Wi Fi Protected Access WPA is an advanced security standard You can use a pre shared key to authenticate wireless stations and encrypt data during communication It uses TKIP or CCMP
25. hardware version numbers any ilegal atempts 10 access your n tetrk and formation on all DHICP client Prg cumanii connected io your network Madal Wines Routes Uptime Oday Oh 18m 368 Hardware Veri Ae A Boot Cade Versi n 1 0 Runtime Code Version 1 70 Description Shows the router s system information View the VRT 401Gs current Internet connection status and other related information View the VRT 401G s current setting status View the VRT 401G s system log View any attempts that have been made to illegally gain access to your network View your LAN client s information that is currently linked to the VRT 401G s DHCP server Shows the statistics Select one of the above five Status selections and proceed to the manual s relevant sub section 3 1 Status and Information The Status and Information section allows you to view the router s system information 74 HELTEN internet Broadband Router Status and Information You can usa the Siatue page to maritor the connection status for the Broadband router s WANLAN interlaces firmare and hardware version numbers any ilegal atempts 10 access your n bw rk and formation on all DACP client Prg currantty connactad fn your netwerk System Model Up time Hardware Varis n Boot Code Version Rurdime Code Version Wiinlias Router Oday Oh lim a Rey A 1 0 178 Parameters Description Information You can see the router s system information such a
26. in xD 5L connectiong C Telstra Big Fond Telstra Big F ond is a Internet service is provided in Australia More Cor guration 3l Parameters Description 2 2 1 Dynamic IP address Your ISP will automatically give you an IP address 2 2 2 Static IP address Your ISP has given you an IP address already 2 2 3 PPPoE Your ISP requires PPPoE connection 2 2 4 PPTP Your ISP requires you to use a Point to Point Tunneling Protocol PPTP connection 2 2 5 L2TP Your ISP requires L2TP connection 2 2 6 Telstra Big Pond Your ISP requires Telstra Big Pond connection 2 2 7 DNS You can specify a DNS server that you wish to use 2 2 8 DDNS You can specify a DDNS server that you wish to use and configure the user name and password provided by you DDNS service provider Once you have made a selection click More Configuration at the bottom of the screen and proceed to the manual s relevant sub section 2 2 1 Dynamic IP Choose the Dynamic IP selection if your ISP will automatically give you an IP address Some ISP s may also require you to fill in additional information such as Host Name Domain Name and MAC address see chapter 1 Cable Modem for more detail 2 2 2 Static IP Address Select Static IP address if your ISP has given you a specific IP address for you to use Your ISP should provide all the information required in this section See chapter 1 Fixed IP for more detail 2 2 3 PPPoE PPP over Ethernet Select
27. on this means that you can obtain an IP address automatically once you ve configured your PC to obtain an IP address automatically This section will show you how to configure your PC s so that it can obtain an IP address automatically for either Windows 95 98 Me 2000 or NT operating systems For other operating systems Macintosh Sun etc follow the manufacturers instructions The following is a step by step illustration on how to configure your PC to obtain an IP address automatically for 2a Windows 95 98 Me 2b Windows XP 2c Windows 2000 and 2d Windows NT 2a Windows 95 98 Me 1 Click the Start button and select Settings then click Control Panel The Control Panel window will appear Double click Network icon The Network window will appear Check your list of Network Components If TCP IP is not installed click the Add button to install it now If TCP IP is installed go to step 6 In the Network Component Type dialog box select Protocol and click Add button In the Select Network Protocol dialog box select Microsoft and TCP IP and then click the OK button to start installing the TCP IP protocol You may need your Windows CD to complete the installation After installing TCP IP go back to the Network dialog box Select TCP IP from the list of Network Components and then click the Properties button Check each of the tabs and verify the following settings e Bindings Check Client for Microsoft
28. screen 10 Internet Protocol TCP IP Properties E x General fou can get IP settings assigned automatically if your network supports this capability Othenwise you need to ask your network administrator For the appropriate IP settings Obtain an IP address automatically C Use the following IF address IP address Subnet mask Default gateway Obtain DNS server address automatically C Use the following DNS server addresses Prefered DHS server Alternate DHS server 6 Click OK to confirm the setting Your PC will now obtain an IP address automatically from your Broadband Router s DHCP server Note Please make sure that the Broadband router s DHCP server is the only DHCP server available on your LAN Once you ve configured your PC to obtain an IP address automatically please proceed to Step 3 2d Windows NT 1 Click the Start button and select Settings then click Control Panel The Control Panel window will appear 2 Double click Network icon The Network window will appear Select the Protocol tab from the Network window 3 Check if the TCP IP Protocol is on your list of Network Protocols If TCP IP is not installed click the Add button to install it now If TCP IP is installed go to step 5 4 In the Select Network Protocol window select the TCP IP Protocol and click the Ok button to start installing the TCP IP protocol You may need your Windows CD to c
29. situation When the system is powered down the system log will disappear if not saved to a local file 3 5 Security Log View any attempts that have been made to illegally gain access to your network Internet Broadband Router security Log 7 View any attempts that hawe been made to illegally gain access tn your network XUEIDIADI DULI BOSD Sa gt Hear e SEaRLe IP 2000 01 01 OO 00 f6 SHEP connect to TimeServer 192 93 284 18 P2RS Li Lab DUWidT gz g SNT GaRneee awccecaa 2005 12 16 025 37 042 SHIP sert time to a d 05 12 16 02 27 01 2005 12 18 09 37 02 FTEEWALL VAH IP ia 192 1665 71 58 artting fizrcuenll Save Retesh Parameters Description TI Security Log This page shows the current security log of the VRT 401G It displays any illegal attempts to access your network At the bottom of the page the security log can be saved lt Save gt to a local file for further processing or the security log can be cleared lt Clear gt or it can be refreshed lt Refresh gt to get the most updated situation When the system is powered down the security log will disappear if not saved to a local file 3 6 Active DHCP Client View your LAN client s information that is currently linked to the VRT 401G s DHCP server Internet Broadband Router Active DHCP Client 7 This ade shows thet assigned IP addmss MAC addrass and time kipind for exch DHCP eased client IP Address MAC Aiddir
30. the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 1 2 Password Settings You can change the password required to log into the VRT 401G s system web based management By default the password is admin So please assign a password to the Administrator as soon as possible and store it in a safe place Passwords can contain O to 12 alphanumeric characters and are case sensitive 20 m F3 Le EIER Internet Broadband Router Password Settings You can change the pasgword required ta log into the broadband routers system web based managemunt By defsukt the patted is admin So please assign pas tword to The Administrator a4 toon as possible and store Hin 358 place Passwerds can contain to 30 alphanumenc characiars and sre cage sensim Current Passeorl Mus P ssi Confirmed Password Parameters Description Current Password Enter your current password for the remote management administrator to login to your VRT 401G Note By default the password is admin New Password Enter your new password Confirmed Password Enter your new password again for verification purposes Note If you forget your password you ll have to reset the router to the factory default with the reset button see routers back panel Click Apply at the bottom of the screen to save the above configurations You can now
31. work under the MAT You can elect appkeationg thai you are using i Suppor for Amanda backup fool peolacol e Egy Suppor for eggdrop bol retworks Ed FTP Support for FTP a H323 Support for H323 nebmeebng Ales DEC to work though MAT and connection z IRC tracking m Support for Microsoft Streaming Media Senices E MMS ET F Guske Suppor for Quake M Arana connection tracking and nad Talk Alswe natlilter to track talk connections E TFTP Support for TFTP F Starcraft Suppor for Starcrat Eatila net gama protocol w MSN Support for MSN file tranter Parameters Default Description Enable You can select to enable Application Layer Gateway then the router will let that application correctly pass though the NAT gateway Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 6 6 Static Routing This router provides Static Routing function when NAT is disabled With Static Routing the router can forward packets according to your routing rules The IP sharing function will not work any more in Static Routing mode Note The DMZ function of firewall will not work if static routing is enabled 58 CD PLANET Lanes Internet Broadband Router Static Routing 7 You can enable State Routieg to Turn off MAT function of this router and let thie router forward packets by pour rout
32. you have obtained an IP address see Appendix A Note Please make sure that the VRT 401G s DHCP server is the only DHCP server available on your LAN If there is another DHCP on your network then you ll need to switch one of the DHCP servers off To disable the VRT 401G s DHCP server see chapter 2 LAN Port 12 6 Once your PC has obtained an IP address from your router enter the default IP address 192 168 0 1 VRT 401G s IP address into your PC s web browser and press lt enter gt The login screen below will appear Enter the User Name and Password and then click lt OK gt to login Note By default the user name is admin and the password is admin For security reasons it is recommended that you change the password as soon as possible in General setup system password see chapter 2 Connect to 192 168 0 1 Default adminfadmin User name Password Remember my password The HOME page screen below will appear The Home Page is divided into four sections Quick Setup Wizard General Setup Status Information and Tools Quick Setup Wizard Chapter 1 If you only want to start using the VRT 401G as an Internet Access device then you ONLY need to configure the screens in the Quick Setup Wizard section General Setup Chapter 2 If you want to use more advanced features that the VRT 401G has to offer then you ll need to configure the Quick Setup Wizard and the General Setup section Alternatively yo
33. 292C0 2609 025 629055 63 2 1 3 DOS Denia Lof Servi66 sissu 64 2 AIDA om 66 2 8 VPN uiui iei pa tadetiedadiata dat eteda ta tacedetetutle ta datatetese ied iut I DUTr TR EOE Lo DERE E EEEEUI 67 2 9 1 IPSOC SOLVOE ciii mtus ER Us RR RE Ep E EE Nen et KE E ER UE ERE EE EE E MEE 67 2ZS2b2IP SOSIVOls m Cu UE n E E 71 2 80 9 PPTP SGEIVGE csiis aii iia VOCOP DEN tenuate COGUNT ORG PEN sian 72 04 gf 0 2 git et 74 AIS veces suu I NEM LL NM M E M EN EM AME E 74 3 1 Status and Informati n s sena on oin ak xu E eie ntu ao Eu ea eoe ena nen ues uan nues 74 3 2 Internet Connection uini avus sias a rin Exo FaURUMNAIEaCEEAKKEURVREMNREPNANREREEENRUNUR 75 3 9 DEVICE Eelrjli L2 EA 76 SEE Li ion 76 3 5 Security LOg pee P 77 3 5 Active DHCP CHN eiorinn aaa 78 AEE E GS e E E E A E E E E E E E E M 78 CRAPO Aena E 80 TOO acioni aiaa 80 A A GOMMGOUPALON Tools srasni ennea aE a a EE 80 A2 FIRIMWale Upgrade mesis TE T 81 AS ROS ON riiin R RER aaa 82 PAD DOING dU E T T A 83 GIOSSIIV ososan aaaea e dabai 84 Introduction Congratulations on purchasing Planet 54M Wireless VPN Firewall Router VRT 401G It is a cost effective VPN Firewall Router that enables multiple users to access the resource through VPN tunnel Simply configure your Internet connection settings in the 54M Wireless VPN Firewall R
34. 55 255 2465 0 Subnet Address 0 0 0 0 0 0 0 0 OKE OManaal Responder Connect Disconnect Ii ue Ip ue Hz m Disconnacted en Changes Reset Reson Back Description Check this check box to enable this tunnel setting The name of this connection Note The Connection Name can t be the same with other Connection Name You can choose which type of the local site is It can be a single site or a subnet You can choose which type of the remote site is It can be a single site a subnet any address NAT Traversal any address or L2TP Client When you choose single site or subnet you must specify the remote IP Address Choose the key exchange method It can be IKE or Manual setting Press this button for the advanced setting of IKE 69 Connection Type When select the Initiator the tunnel will automatically connect at the boot time When select the Responder the tunnel will connect only when you pressed the Connect button Local Remote ID Specify the ID of local site and remote site It can be IP address Domain Name or E Mail address Auth Method Choose PSK or RSA and fil the key for the authentication Click lt Apply Changes gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place DB nttpi H 1 92 168 0 1 VPN Advanced Setting Microsoft Internet Explorer
35. Addresses for key services such as Websites and FTP 50 PLANET sed Unnan Internet Broadband Router NAT Settings Hatwnork Adcess Translation MAT allows multipla users at your local she to access the Intemat thenugh a single Public IP Address or mulbple Public IP Addresses MAT prevides Feeevall prolection fnsen hacker atlacks and has the Seabury 1 allow you 18 map Private IP Addresses to Public IP Addresses Mr koy stritta Such as The Veb or FTP Enatle or disable MAT module function Enable Disable Parameter Description 2 6 1 Port Forwarding You can have different services e g email FTP Web etc going to different service servers clients in your LAN The Port Forwarding allows you to re direct a particular range of service port numbers from the InternetWAN Ports to a particular LAN IP address 2 6 2 Virtual Server You can have different services e g email FTP Web etc going to different service servers clients in your LAN The Virtual Server allows you to re direct a particular service port number from the Internet WAN Port to a particular LAN IP address and its service port number 2 6 3 Special Applications Some applications require multiple connections such as Internet games video conferencing Internet telephony and others In this section you can configure the router to support these types of applications 2 6 4 UPnP Setting It allows to Enable or Disable UPnP feature here After you
36. Chapter 1 Select your Internet connection type and then input the configurations needed to connect to your Internet Service Provider ISP General Setup Chapter 2 This section contains configurations for the VRT 401G s advance functions such as Address Mapping Virtual Server Access Control Hacker Attack Prevention DMZ Special applications and other functions to meet your LAN requirements Status Information Chapter 3 In this section you can see the VRT 401G s Tools Chapter 4 Logout system information Internet Connection Device otatus System Log Security Log and DHCP client information This section contains the VRT 401G s Tools Tools include Configuration tools Firmware upgrade and Reset Configuration tools allow you to Backup save Restore or Restore to Factory Default setting for your VRT 401G The Firmware upgrade tool allows you to upgrade your VRT 401G s firmware The RESET tool allows you to reset your VRT 401G Selecting logout will return you to the LOGIN page 14 7 Click on Quick Setup Wizard see chapter 1 to start configuring settings required by your ISP so that you can start accessing the Internet The other sections General Setup Status Information and Tools do not need to be configured unless you wish to implement monitor more advance features information Select the section Quick Setup Wizard General Setup Status Information and Tools you wish to configure and proc
37. Enable Port Forwarding Private IP This is the private IP of the server behind the NAT firewall Note You need to give your LAN PC clients a fixed static IP address for Port Forwarding to work properly Type This is the protocol type to be forwarded You can choose to forward TCP or UDP packets only or select both to forward both TCP and UDP packets Port Range The range of ports to be forward to the private IP Comment The description of this setting Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 6 2 Virtual Server Use the Virtual Server function when you want different servers clients in your LAN to handle different service Internet application type e g Email FTP Web server etc from the Internet 52 Computers use numbers called port numbers to recognize a particular service Internet application type The Virtual Server allows you to re direct a particular service port number from the Internet WAN Port to a particular LAN private IP address and its service port number See Glossary for an explanation on Port number Internet Broadband Router Virtual Server 7 You can configure the Broadband router as a Virtual Server sa that remote users accessing senices such as the Web or FTP at your local aita via Public IP Addresses can be automatical
38. IP Address Info 7 L2TP Layer Teo Tunneling Protocol is a common connection method weed in xDSL connections a WAM Interlace Setlings Ohtaln an IP address automatically MAC Address OXXXUEXEXO Clone Mac CI Use the fellowing IF address IF Addroms Subnet Mask Detwuilt Conteaemy a LTP Senings mo auv Continudus L neci oo Cac Coe 25 Parameter Obtain an IP address automatically MAC Address Use the following IP address IP Address Subnet Mask Gateway User ID Password L2TP Gateway MTU Connection Type Description The ISP requires you to obtain an IP address by DHCP before connecting to the L2TP server Your ISP may require a particular MAC address in order for you to connect to the Internet This MAC address is the PC s MAC address that your ISP had originally connected your Internet connection to Type in this MAC address in this section or use the Clone MAC Address button to replace the WAN MAC address with the MAC address of that PC you have to be using that PC for the Clone MAC Address button to work To find out the PC s MAC address see Appendix A see Glossary for an explanation on MAC address The ISP gives you a static IP to be used to connect to the L2TP server This is the IP address that your ISP has given you to establish a L2TP connection Enter the Subnet Mask provided by your ISP e g 255 255 255 0 Enter the IP address of the ISP G
39. You should not change these parameters unless you know what effect the changes will have on this router exul Ier Internet Broadband Router Advanced Settings These settings are only Sor more technically advanced users who haw a sufficient knowledge about wireless LAN Thera setlings should not be changed unless you know what effect Ihe changes well have on your Broadband router BU CEs Open System Shand Key Aulo Fragment Threshold 2345 25b 2348 nc jas v es a Long Preamble C Short Preamble BEEN XU crees O Disabied Enabled Disabled Parameters Description Authentication Type There are two authentication types Open System and Shared Key When you select Open System wireless stations can associate with this wireless router without WEP encryption When you select Shared Key you should also setup WEP key in the Encryption page and wireless stations should use WEP encryption in the authentication phase to associate with this wireless router If you select Auto the wireless client can associate with this wireless router by using any one of these two authentication types Fragment Threshold Fragment Threshold specifies the maximum size of packet during the fragmentation of data to be transmitted If you set this value too low it will result in bad performance RTS Threshold When the packet size is smaller the RTS threshold the wireless router will not use the RTS CTS mechanism to send this pa
40. art using the router now if you wish to use some of the advance features supported by this router see chapter 2 3 4 1 2 Fixed IP xDSL Select Fixed IP xDSL if your ISP has given you a specific IP address for you to use Your ISP should provide all the information required in this section 18 m he Le er LS ee Internet Broadband Router 3 IP Address Info 7 Fixed P xDSL Enter the IP Addoss Subnet Mask Gateeay IP Address and DNS IP Address prided To you by your ISP in the appropriate fields IP address assigned by your Service Provider 152 1155s ta ILLE Did C Enabies TRY Parameters Description IP This is the IP address that your ISP has given you Subnet Mask Enter the Subnet Mask provided by your ISP e g 255 255 255 0 DNS This is the ISP s DNS server IP address Gateway IP This is the ISP s IP address gateway TTL This is optional Some ISP will check the TTL response to build up the connection When you select Enabled VRT 401G will respond the TTL time plus 1 Click lt OK gt when you have finished the configuration above Congratulations You have completed the configuration for the Fixed IP x DSL connection You can start using the router now if you wish to use some of the advance features supported by this router see chapter 2 3 4 1 3 PPPoE Select PPPoE if your ISP requires the PPPoE protocol to connect you to the Internet Your ISP should provide all the information required in this sec
41. ateway Enter the User Name provided by your ISP for the L2TP connection Sometimes called a Connection ID Enter the Password provided by your ISP for the L2TP connection If your LAN has a L2TP gateway then enter that L2TP gateway IP address here If you do not have a L2TP gateway then enter the ISP s Gateway IP address above This is optional You can specify the maximum size of your transmission packet to the Internet Leave it as it is if you do not wish to set a maximum packet size If you select Continuous the router will always connect to the ISP If the WAN line breaks down and links again the router will auto reconnect to the ISP If you select Connect On Demand the router will auto connect to the ISP when someone want to use the Internet and keep connected until the WAN idle timeout The router will close the WAN connection if the time period that no one is using the Internet exceeds the Idle Time If you select Manual the router will connect to ISP only when you click Connect manually from the Web user interface The WAN connection will not be disconnected due to the idle timeout If the WAN line breaks down and latter links again the router will not auto connect to the ISP 24 Idle Time Out The WAN idle timeout auto disconnect function may not work due to abnormal activities of some network application software computer virus or hacker attacks from the Internet For example some software sends netw
42. ble PPTP Server Server IP Address Client IP Pool Authentication Encryption VPN Users Description By enable this server we can enable the operation of a virtual private network VPN over the Internet Specify the IP Address that the PPTP clients talked with Note The Server IP Address can be different to LAN IP or WAN IP Specify the IP Address for PPTP clients to use You can use PAP CHAP or MSCHAP for authentication When you choose MSCHAP for Authentication you can use MPPE Microsofts Point to Point Encryption to encryption the PPTP connection You can input up to ten usernames and passwords for the L2TP PPTP clients here Click Apply at the bottom of the screen to save the above configurations 73 Chapter 3 Status The Status section allows you to monitor the current status of your router You can use the Status page to monitor the connection status of the VRT 401G s WAN LAN interfaces the current firmware and hardware version numbers any illegal attempts to access your network and information on all DHCP client PCs currently connected to your network Internet Broadband Router Parameters 3 1 Status and Information 3 2 Internet Connection 3 3 Device Status 3 4 System Log 3 5 Security Log 3 6 Active DHCP Client 3 7 Statistics Status and Information System You can usa the Sistue page io maritor tha connecter gisua far ihe Broadband mere WANLAN intaraces AE i and
43. cket Beacon Interval The interval of time that this wireless router broadcast a beacon Beacon is used to synchronize the wireless network 4 Data Rate Preamble Type Broadcast ESSID APP 802 11g Protection The Data Rate is the rate this access point uses to transmit data packets The access point will use the highest possible selected transmission rate to transmit the data packets The Long Preamble can provide better wireless LAN compatibility while the Short Preamble can provide better wireless LAN performance If you enable Broadcast ESSID every wireless station located within the coverage of this access point can discover this access point easily If you are building a public wireless network enabling this feature is recommended Disabling Broadcast ESSID can provide better security If you enable IAPP it will allow wireless station roaming between IAPP enabled access points within the same wireless LAN This is also called CTS Protection It is recommended to enable the protection mechanism This mechanism can decrease the rate of data collision between 802 11b and 802 119 wireless stations When the protection mode is enabled the throughput of the AP will be a little lower due to many of frame traffic should be transmitted Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router
44. configure other advance sections or start using the router with the advance settings in place 2 1 3 Remote Management The remote management function allows you to designate a host in the Internet the ability to configure the VRT 401G from a remote site Enter the designated host IP Address in the Host IP Address field Q planer tee oe reri M neras Internet Broadband Router Remote Management 4 The remote manageren fursction allows you to designate a hist in the Intemet to have managemant coniquration secess to the Broadband router fom a remote site Entar ihe designated host IP Address in the Host IP Address feld a NT L Parameters Description 30 Host Address This is the IP address of the host in the Internet that will have management configuration access to the VRT 401G from a remote site This means if you are at home and your home IP address has been designated the Remote Management host IP address for this router located in your company office then you are able to configure this router from your home If the Host Address is left 0 0 0 0 this means anyone can access the routers web based configuration from a remote location providing they know the password Click the Enabled box to enable the Remote Management function Note When you want to access the web based management from a remote site you must enter the routers WAN IP address e g 10 0 0 1 into your web browser followed by port number 8080 e g http
45. d in this User s Manual PLANET makes no commitment to update or keep current the information in this User s Manual and reserves the right to make improvements to this User s Manual and or to the products described in this User s Manual at any time without notice If you find information in this manual that is incorrect misleading or incomplete we would appreciate your comments and suggestions CE mark Warning This is a class B device in a domestic environment this product may cause radio interference in which case the user may be required to take adequate measures WEEE Regulation To avoid the potential effects on the environment and human health as a result of the presence MT of hazardous substances in electrical and electronic equipment end users of electrical and X electronic equipment should understand the meaning of the crossed out wheeled bin symbol o Do not dispose of WEEE as unsorted municipal waste and have to collect such WEEE separately m C Trademarks The PLANET logo is a trademark of PLANET Technology This documentation may refer to numerous hardware and software products by their trade names In most if not all cases these designations are claimed as trademarks or registered trademarks by their respective companies Revision Users Manual for PLANET 54M Wireless VPN Firewall Router Model VRT 401G Rev 1 0 Dec 2005 Part No 2081 B42060 000 Table of Content INTFOGUCHION oT
46. displays the VRT 401G LAN ports current LAN IP Address and Subnet Mask It also shows whether the DHCP Server function is enabled or disabled 3 4 System Log View the operation log of the system 76 Q PLANET enan s i Deren Internet Broadband Router System Log 7 Wier Eh yaum operation mamala You cam cee the dylem stat up bend c nmectian Process dC hens Dec 16 09 37 20 ipsec setup penzwan IPsec stopped P Dec 1 09 37 33 ipare setup ELIFS igpaecr on SER 192 165 95 98 255 255 255 0 brenden Dec 16 09 37 35 ipsec plurorun Zrarrirg Fluro subsysrem Dec 16 09 37 36 iparc sctup pensumn IPasec atarted pec 16 uUuBiJU Jb plutca z117 SESE bing Pluto UPEN TAn VerBi n 1 0 1 Dee 1 amp 09 27 36 plura 1117 including X 505 parech vith traffic selectors Version Der 16 OF aria pluba B2illT inlui HAT Traverse l pabch Versicn D 0 dismble Dec 16 09 37 55 pluca Zz117 ike alg register enc Activating OARLEY AES CBee Ok rt Desc 16 09 37 386 pluka 1117 Changing te directory rcte lipace dracerzEas Li a Pa Saw Car Retesh Parameters Description System Log This page shows the current system log of the VRT 401G It displays any event occurred after system start up At the bottom of the page the system log can be saved lt Save gt to a local file for further processing or the system log can be cleared lt Clear gt or it can be refreshed lt Refresh gt to get the most updated
47. e IP address range of the packets that this rule will apply to If you assign 192 168 2 3 192 168 2 5 it means 3 IP addresses 192 168 2 3 192 168 2 4 and 192 168 2 5 Enter the remote port range of the packets that this rule will apply to You can assign a single port number here or assign a range of port numbers by assigning the first port number and the last port number of the range The two numbers are separated by a dash for example 101 150 means from port number 100 to port number 150 the range of 50 port numbers Select the traffic type of the packets that this rule will apply to We list some popular applications here to ease the configuration You also can get the same result by using other parameters for example source or destination port number if you are familiar with the application protocol Select the protocol type of the packets that this rule will apply to Save and exit the form Clear the content of this form Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 6 NAT Network Address Translation NAT allows multiple users at your local site to access the Internet through a single Public IP Address or multiple Public IP Addresses NAT provides Firewall protection from hacker attacks and has the flexibility to allow you to map Private IP Addresses to Public IP
48. e bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 7 Firewall The VRT 401G provides extensive firewall protection by restricting connection parameters thus limiting the risk of hacker attack and defending against a wide array of common Internet attacks However for applications that require unrestricted access to the Internet you can configure a specific client server as a Demilitarized Zone DMZ Note To enable the Firewall settings select Enable and click Apply 3 PLRNET Gober ag hl sia ru aa Internet Broadband Router security Settings Firewall The Broadband router peradis oxterdteve frowall protection by nestmeting commecton parameters thus limitirsg the nek of hacker attack and defending against a wide array of common attacks However for applications that require uneastricted access do the Meme you can conbgure spec ic chent serwer as Dernibtanzed Zone DMZ Enable or disable Firewall module function Enable Disable Parameters Description 2 7 1 Access Control Access Control allows you to specify which hosts users can or cannot have access to certain Internet applications 2 2 URL Blocking URL Blocking allows you to specify which URLs can not be accessed by users 2 7 3 DoS The VRT 401G s firewall can block common hacker attacks and can log the attack activities 2 7 4 DMZ
49. e table and then click Delete Selected If you want remove all Special Application settings from the table just click Delete All button Click Reset will clear your current selections Click Apply at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place Example Special Applications If you need to run applications that require multiple connections then specify the port outbound normally associated with that application in the Trigger Port field Then select the protocol type TCP or UDP and enter the public ports associated with the trigger port to open them up for inbound traffic Example ID Trigger Port Trigger Type Public Port Public Type Comment 1 28800 UDP 2300 2400 47624 TCP MSN Game Zone 2 6112 UDP 6112 UDP Battle net In the example above when a user trigger s port 28800 outbound for MSN Game Zone then the router will allow incoming packets for ports 2300 2400 and 47624 to be directed to that user Note Only one LAN client can use a particular special application at a time 2 6 4 UPnP Settings With UPnP all PCs in you Intranet will discover this router automatically So you do not have to do any configuration for your PC and can access the Internet through this router easily 56 Internet Broadband Router UPnP UPnP i more than just a Simple extencion ofthe Plug avd Play pe
50. ebsite Server B owen 192 158 2 2 Internet 54 2 6 3 Special Applications Some applications require multiple connections such as Internet games video conferencing Internet telephony and others In this section you can configure the router to support multiple connections for these types of applications Internet Broadband Router Special Applications 4 Some applications require multipla connections such as letermet gaming video coeferencing lntemel telephony and gihers These applications cannot work when Network Address Tranglatinn MAT is enabled If you need to run applications iha require rnulliple connections speti the port normally adiociated with an application in Ie Trigger Por fld select ihe protocol type as TCP or UDP then enter the public poris associated with ihe trigger port to opon them for inbound irae l l Hate The rarat of the Trigger Port is 110 65535 Enable Trigger Par r Trigger NS Public ERE Bath Beth Popular Applications select one dl asa Add eset Currant Trigger ont Tabla DETZIE JENNNCTTENNNN E commen feae plea Select plei Hasat Parameters Description Enable Trigger Port Enable the Special Application function Trigger Port This is the out going Outbound range of port numbers for this particular application Trigger Type Select whether the outbound port protocol is TCP UDP or both Public Port Enter the In coming Inbound port or port
51. ection Password Enter the Password provided by your ISP for the Telstra Big Pond connection User decide login server Select if you want to assign the IP of Telstra Big Pond s login manually server manually Login Server The IP of the Login Server 25 Click lt OK gt when you have finished the configuration above Congratulations You have completed the configuration for the Telstra Big Pond connection You can start using the router now if you wish to use some of the advance features supported by this router see chapter 2 3 4 26 Chapter 2 General Settings Once you click on the General Setup button at the Home Page you should see the screen below If you have already configured the Quick Setup Wizard you do NOT need to configure anything thing in the General Setup screen for you to start using the Internet The General Setup contains advanced features that allow you to configure the router to meet your network s needs such as Wireless Address Mapping Virtual Server Access Control Hacker Attack Prevention Special Applications DMZ and other functions Internet Broadband Router General Setup Th Braadband ruber supports advanced functions like Vani Sener Access Control Hacker An ck Detection and DM Wie highly rec mmoend you keep the default settings LEM NE NEL ML OL ML MM Below is a general description of what advance functions are available for this broadband router Menu Description 2 1 System T
52. eed to the corresponding chapter Use the selections on the web management s top right hand page see below to navigate around the web based management User Interface 15 Chapter 1 Quick Setup The Quick Setup section is designed to get you using the VRT 401G as quickly as possible In the Quick Setup you are required to fill in only the information necessary to access the Internet Once you click on the Quick Setup Wizard in the HOME page you should see the screen below Step 1 Time Zone The Time Zone allows your router to be configured base on its time settings this will affect functions such as Log entries and Firewall settings E ag bh eae a Internet Broadband Router 1 Time Zone cet Th time zone of the Broadband router This inf rmati n if used far beg entries aed federal setting Tt eae GT Gresreich hMaan Time Dublin Edinburgh Lisbon London Time Server Address DER 4x 244 19 Daylight Smaingqe Lee Parameter Description Set Time Zone Select the time zone of the country you are currently in The router will set its time based on your selection Time Server Address You can manually assign time server address if the default time server does not work Enable Daylight Savings The router can also take Daylight savings into account If you wish to use this function you must check tick the enable box to enable your daylight saving configuration below Start Daylight Savings Time Select t
53. ents 35 Note By default the IP range is from Start IP 192 168 0 100 to End IP 192 168 0 200 If you want your PC to have a static fixed IP address then you ll have to choose an IP address outside this IP address Pool Domain Name You can specify a Domain Name for your LAN Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 4 Wireless Wireless Access Point builds a wireless LAN and can let all PCs equipped with IEEE 802 11b or 801 11g wireless network adaptor connect to your Intranet It supports WEP and WPA2 encryption to enhance the security of your wireless network Internet Broadband Router Wireless Settings The gateeay ran be quickly cornfurad AE 3 w mliess arcass poini for roaming chants by Batting ihe access ianbfiar and chaenel number Hals supports data encryption aed client Sltering Enable or disable Wireless module function Enable Digable _ Apply Parameters Default Description Enable or disable Enable You can select to enable or disable the wireless Wireless module access point module of this router function Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 4 1 Basic Settings You can set parameters that are used for
54. er with the advance settings in place 2 5 QoS The QoS can let you classify Internet application traffic by source destination IP address and port number You can assign priority for each type of application and reserve bandwidth for it The packets of applications with higher priority will always go first Lower priority applications will get bandwidth after higher priority applications get enough bandwidth This can let you have a better experience in using critical real time services like Internet phone video conference etc All the applications not specified by you are classified as rule name Others The rule with smaller priority number has higher priority the rule with larger priority number has lower priority You can adjust the priority of the rules by moving them up or down Note If the total assigned bandwidth of higher priority applications is larger than the maximum bandwidth provided by the WAN port the other applications will not get any bandwidth aoe PLANET Woreguag b erae eam s Internet Broadband Router QoS Qualty of Samica QoS refers to the capability ef n meteork to pride betier sanae to selected metweek trafic Tha primary goal of GeS i5 to pade pronty including d ditaled bardendih controlled piter and Erency required by Some real time and m arzciive trafic and improved loss characteristics Also important is making eure that prodding priory for one or more dows does not make ether flew Exi
55. er s factory default settings 4 2 Firmware Upgrade This page allows you to upgrade the router s firmware 4 3 Reset You can reset the router s system should any problem exist Select one of the above three Tools Settings selection and proceed to the manual s relevant sub section 4 1 Configuration Tools The Configuration Tools screen allows you to save Backup the router s current configuration setting Saving the configuration settings provides an added protection and convenience should problems occur with the router and you have to reset to factory default When you save the configuration setting Backup you can re load the saved configuration into the router through the Restore selection If extreme problems occur you can use the Restore to Factory Defaults selection this will set all configurations to its original default settings e g when you first purchased the router 80 Internet Broadband Router Configuration Tools 4 Lise the Backup tool io save the Broadband router s current configurations to ie named config ben You can then use the Restore 100l t restore the saved configuration b the Broadband router Altematively you can use the Fest re to Faclery Defauli bool to force the Broadband rouler bo perferri System Regal and restore the onginal faclery selling Backup Settings Sava Restore Sings Fr Browse Restore to Factory Default Reset Parameters Description Configu
56. ess Pool sran IP Find IF 132 16 0 200 Domain Mame TESTE Internet Broadband Router You can enable the Broadband routers DHCP serar to dynamically allocate IP Addresses to your LAN client PCs The broadband router must hae an IP Addness for the Local Ama Mebwork IP Address RE 192 169 0 1 IF Sobre Maak ums umb ums rar Spanning Tree Disabled ee INE Enabled w 132 152 0 1100 Description This is the routers LAN port IP address Your LAN clients default gateway IP address Specify a Subnet Mask for your LAN segment If 802 1d Spanning Tree function is enabled this router will use the spanning tree protocol to prevent from network loop happened in the LAN ports You can enable or disable the DHCP server By enabling the DHCP server the router will automatically give your LAN clients an IP address If the DHCP is not enabled then you ll have to manually set your LAN clients IP addresses make sure the LAN Client is in the same subnet as VRT 401G if you want the router to be your LAN client s default gateway The DHCP when enabled will temporarily give your LAN clients an IP address In the Lease Time setting you can specify the time period that the DHCP lends an IP address to your LAN clients The DHCP will change your LAN client s IP address when this time threshold period is reached You can select a particular IP address range for your DHCP server to issue IP addresses to your LAN Cli
57. face Card NIC for each Personal Computer PC PCs with a Web Browser Internet Explorer 4 0 or higher or Netscape Navigator 4 7 or higher Package Content 54M Wireless VPN Firewall Router unit x 1 Quick Installation Guide x 1 User Manual CD x 1 Power Adapter x 1 Accessories Get to know the Wireless VPN Firewall Router Back Panel The diagram fig1 0 below shows the VRT 401G s back panel The router s back panel is divided into three sections LAN WAN and Reset 12V DC RESET Figure 1 0 1 Local Area Network LAN The VRT 401G s 4 LAN ports are where you connect your LAN s PCs printer servers hubs and switches etc 2 Wide Area Network WAN The WAN port is the segment connected to your xDSL or Cable modem and is linked to the Internet 3 Reset The Reset button allows you to do one of two things 1 If problems occur with your router press the router s reset button with a pencil tip for less than 4 seconds and the router will re boot itself keeping your original configurations 2 If problems persist or you experience extreme problems or you forgot your password press the reset button for longer than 4 seconds and the router will reset itself to the factory default settings warning your original configurations will be replaced with the factory default settings Front Panel On the router s front panel there are LED lights that inform you of the router s current status Below is an explanat
58. fe ISR Adavnced VFN Setting Phase 1 EXAFEMP SA Exchange ype Plain Made Encrypti n SES Ww Hash MD w Dhe Heiman DiiZ madpllrM Key Life tone eee aA Fhace 7 IPSEC SAK Acime Prabacal ESP Encapsulation funnel mode Encryplti n 3DES M Aanhentir anan AMAL NES PFS On Key Life Tire secs Fann iE Advanced VPN Setting Parameters Description Encryption Choose the encryption type with the remote peer It can be 3DES or AES128 Note If you choose the wrong method the connection may not be established Hash Authentication Choose the hash method with the remote peer It can be MD5 or SHA1 Note If you choose the wrong method the connection may not be established 70 Diffie Hellman You can choose which Diffie Hellman protocol you want to use at the Phase 1 Key Life Time Enter the life time for the key After this time the key will expire PFS If you turn on this option the keys that protect data transmission are not used to derive additional keys Also seeds used to create data transmission keys are not reused Click OK at the bottom of the screen to save the above configurations 2 8 2 L2TP Server Layer Two Tunneling Protocol L2TP is an extension of the Point to Point Tunneling Protocol PPTP By enable this server we can enable the operation of a virtual private network VPN over the Internet Internet Broadband Router L 2TP Settings You can enable the Broadband routers L2TP so
59. grade is complete you can start using the router 4 3 Reset You can reset the router s system should any problem exist The reset function essentially re boots your router s system Internet Broadband Router Reset gt In the event that Une system stops resporeding correctly or stops functioning you can perform a Reset Your settings will mot be changed To perform the reset click on the APPLY bution below You will be asked to canfim your decision The Regel will be complete when the LED Power light steps blinking Parameters Description Reset In the event that the system stops responding correctly or in some way stops functioning you can perform a reset Your settings will not be changed To perform the reset click on the lt APPLY gt button you will be asked to confirm your decision The reset will be complete when the power light stops blinking Once the reset process is complete you may start using the router again 82 Appendix A How to Manually find your PC s IP and MAC address 1 In Window s open the Command Prompt program Command Prom st Microsoft Windows 2000 Version 5 06 2195 LC Copyright 1985 1999 Microsoft Corp CIN EN 2 Type Ipconfig all and lt enter gt Lommand Prompt 2000 Version 5 00 2195 CC Copyright 1985 1999 Microsoft Corp GCoN gt ipconfig all Windows 2608 IP Configuration Host Mame Primary DNS Suffix Mode Type
60. gs in place 2 4 4 Access Control This wireless router provides MAC Address Control which prevents the unauthorized MAC Addresses from accessing your wireless network Internet Broadband Router MAC Address Filtering Far sacumy reason the Access Point feabures MAC Address Filtering that only allows authanzed MAC Addresses weeociating 16 the Accere MAC Address Filtering Table H alpre to aniry X seis address only MAC Addres Select ee eee Aasai Enable Wireless Access Control Cancel Parameters Description Enable wireless access control Enable wireless access control Add MAC address into the list Fill in the MAC Address and Comment of the wireless station to be added and then click Add Then this wireless station will be added into the Current Access Control List below If you find any issues before adding it and want to retype again Just click Clear and both MAC Address and Comment fields will be cleared 47 Remove MAC address from the list If you want to remove some MAC address from the Current Access Control List select the MAC addresses you want to remove in the list and then click Delete Selected If you want remove all MAC addresses from the table just click Delete All button Click Reset will clear your current selections Click Apply at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the rout
61. he above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 4 3 5 WPA Radius Wi Fi Protected Access WPA is an advanced security standard You can use an external RADIUS server to authenticate wireless stations and provide the session key to encrypt data during communication It uses TKIP or CCMP AES to change the encryption key frequently This can improve security very much Internet Broadband Router security This page allows you setup the wireless security Tur on WEP or WPA by using Eneryplion Keys could prevent any unaulhorirad ccess En your wireless network Se CATHIE COWPAG AES WPA Mixed Parameters Default Description WPA TKIP TKIP can change the encryption key frequently to enhance the wireless LAN security 46 WPA2 AES This use CCMP protocol to change encryption key frequently AES can provide high level encryption to enhance the wireless LAN security WPA2 Mixed This will use TKIP or AES based on the other communication peer automatically RADIUS Server IP address The IP address of external RADIUS server RADIUS Server Port The service port of the external RADIUS server RADIUS Server Password The password used by external RADIUS server Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settin
62. he period in which you wish to start daylight Savings Time End Daylight Savings Time Select the period in which you wish to end daylight Savings Time Click on NEXT to proceed to the next page step 2 Broadband Type 16 Step 2 Broadband Type In this section you have to select one of four types of connections that you will be using to connect your VRT 401G s WAN port to your ISP see screen below Note Different ISP s require different methods of connecting to the Internet please check with your ISP as to the type of connection it requires XE ITE Internet Broadband Router 2 Broadband Type Spet ihe WAH connection type required by your emol Senece Pridi Spec y Cable modam Fixed IP xDSL PPPoE DS or PPTP xDSL connection O Cable Modem A connactipn thraugh a Cable modem regulis minimal configuration When you Er up am mecaurd Wath your Cable perder the Cable provider and your Broadband router will automatically establish connection 40 you probably do not need 10 enter anything mare Fixed IP xDSL core xDSL latem Senice Pridi may assign Fixed IP Address for your Broadband router If you have boon provided with this information chesse this option and enter tha assigned IP Address Subnet Mack Gateway IP Address and ONS IP Address for your Broadband router OPPPoE DSL If you Conn cs to the Inbemat using an xD SL Modem and your ESP has provided you with Password and a Senice Nan thon your ISP
63. his section allows you to set the VRT 401G s system Time Zone Password and Remote Management Administrator 2 2 WAN This section allows you to select the connection method in order to establish a connection with your ISP same as the Quick Setup Wizard section 2 3 LAN You can specify the LAN segment s IP address Subnet Mask enable disable DHCP and select an IP range for your LAN 2 4 Wireless You can setup the wireless LAN s SSID WEP key MAC filtering 2 5 QoS You can setup the QoS bandwidth control policy 2 6 NAT You can configure the Address Mapping Virtual Server and Special Applications functions in this section This allows you to specify what user packet can pass your router s NAT 2 Firewall The Firewall section allows you to configure Access Control Hacker Prevention and DMZ 2 8 VPN The VPN section allows you to configure VPN Server 27 Select one of the above five General Setup selections and proceed to the manual s relevant sub section 2 1 System The system screen allows you to specify a time zone to change the system password and to specify a remote management user for the VRT 401G Ciatue Internet Broadband Router System Settings This page mcludes the Bates configuration toole for tha Broadband routers remote management access Tunclian Parameters Description System Settings 2 1 1 Time Zone Select the time zone of the country you are currently in The router will set its time based
64. ice 4 The Breadband routers firewall can block common hacker attacks inclodevg DoS Discard Ping from WAN and Port Scan Danial af Sarvica Femara G Ping of Death 5 pecketie per Second w burgo 5 amp Discard Ping From WAH INMAP FIN URG PSH Xmas Tree Another xmas tree Mull scan z S YN RST 8YM FIN 7 SYN only unreschable poet Ho Sync Flood 5 packet s per Second burgi 5 65 2 7 4 DMZ If you have a local client PC that cannot run an Internet application e g Games properly from behind the NAT firewall then you can open the client up to unrestricted two way Internet access by defining a DMZ Host The DMZ function allows you to re direct all packets going to your WAN port IP address to a particular IP address in your LAN The difference between the virtual server and the DMZ function is that the virtual server re directs a particular service Internet application e g FTP websites to a particular LAN client server whereas DMZ re directs all packets regardless of services going to your WAN IP address to a particular LAN client server Internet Broadband Router DMZiDemilitarized Zone 7 E you have a local client PC that cannot run an Intemot application property from behind ihe HAT irreal then you can open the chant up fo wnresincled hyoway Inlemel access by defining Virtual DI Hast LJ Emable DMZ Client PC IP Address Dynamic I Session 1 vw C Static IP Curre
65. ing policy Enable Static Reuting LAM Add Reset Current Static Rowling Table Sa os ed ose froortacalsstea Reset Parameter Description Enable Static Routing Static Routing function is default disabled You have to enable the Static Routing function before your routing rules take effect Destination LAN IP The network address of destination LAN Subnet Mask The subnet mask of destination LAN Default Gateway The next stop gateway of the path toward the destination LAN This is the IP of the neighbor router that this router should communicate with on the path to the destination LAN Hop Count The number of hops routers to pass through to reach the destination LAN Interface The interface that go to the next hop router Add a Rule Fill in the Destination LAN IP Subnet Mask Default Gateway Hop Count and Interface of the rule to be added and then click Add Then this rule of Static Routing will be added into the Static Routing Table below If you find any typo before adding it and want to retype again just click Reset and the fields will be cleared Hemove a Rule If you want to remove some routing rules from the Static Routing Table select the rules you want to remove in the table and then click Delete Selected If you want remove all rules from the table just click Delete All button Click Reset will clear your current selections 59 Click lt Apply gt at th
66. ion of each LED and its description gt PLANET 54Mbps Wireless VPN Firewall Router pes n WP LNK ACT VRT 401C FWE WLAN 1 z 3 4 Figure 1 1 LED Light Status Description PWR ON Router s power supply is on WAN 10 100M ON WAN port 100Mbps is connected OFF WAN port 10Mbps is connected WAN LNK ACT ON WAN is connected OFF No WAN connection Flashing WAN port has Activity ACT data being sent LAN 10 100M ON LAN port 100Mbps is connected Port 1 4 OFF LAN port 10Mbps is connected LAN LNK ACT ON LAN is connected Port 1 4 OFF No LAN connection Flashing LAN port has Activity ACT data being sent WLAN ON Wireless LAN has been activated OFF Wireless LAN is disabled Flashing Wireless LAN has Activity ACT data being sent Setup Diagram Figure 1 2 below shows a typical setup for a Local Area Network LAN ADSL or Cable Modem Figure 1 2 Getting started This is a step by step instruction on how to start using the router and get connected to the Internet 1 Setup your network as shown in the setup diagram above fig 1 2 2 You then need to set your LAN PC clients so that it can obtain an IP address automatically All LAN clients require an IP address Just like an address it allows LAN clients to find one another If you have already configured your PC to obtain an IP automatically then proceed to step 3 page 13 Configure your PC to obtain an IP address automatically By default the VRT 401G s DHCP is
67. l L Enable tos Curmarnt QoS Tahla Can Parameters Description Enable Disable QoS You can check Enable QoS to enable QoS function for the WAN port You also can uncheck Enable QoS to disable QoS function for the WAN port 48 Add a QoS rule into the table Click Add then you will enter a form of the QoS rule Click Apply after filling out the form and the rule will be added into the table Remove QoS rules from the table If you want to remove some QoS rules from the table select the QoS rules you want to remove in the table and then click Delete Selected If you want remove all QoS rules from the table just click Delete All button Click Reset will clear your current selections Edit a QoS rule Select the rule you want to edit and click Edit then you will enter the detail form of the QoS rule Click Apply after editing the form and the rule will be saved Adjust QoS rule priority You can select the rule and click Move Up to make its priority higher You also can select the rule and click Move Down to make its priority lower Edit QoS Rule You can assign packet classification criteria by its local IP range remote IP range traffic type protocol local port range and remote port range parameters The parameters that you leave as blank will be ignored The priority of this rule will be applied to packets that match classification criteria of this rule You can
68. l connect to ISP only when you click Connect manually from the Web user interface The WAN connection will not disconnect due to the idle timeout If the WAN line breaks down and latter links again the router will not auto connect to the ISP Idle Time You can specify an idle time threshold minutes for the WAN port This means if no packets have been sent no one using the Internet during this specified period the router will automatically disconnect the connection with your ISP 20 TTL Note This idle timeout function may not work due to abnormal activities of some network application software computer virus or hacker attacks from the Internet For example some software sends network packets to the Internet in the background even when you are not using the Internet So please turn off your computer when you are not using it This function also may not work with some ISP So please make sure this function can work properly when you use this function in the first time especially your ISP charge you by time used This is optional Some ISP will check the TTL response to build up the connection When you select Enabled VRT 401G will respond the TTL time plus 1 Click OK when you have finished the configuration above Congratulations You have completed the configuration for the PPPoE connection You can start using the router now if you wish to use some of the advance features supported by this router see chapter 2 3 4
69. lected If you want remove all URL keyword from the table just click Delete All button If you want to clear the selection and re select again just click Reset You can now configure other advance sections or start using the router with the advance settings in place 2 7 3 DoS Denial of Service The VRT 401G s firewall can block common hacker attacks including Denial of Service Ping of Death Port Scan and Sync Flood If Internet attacks occur the router can log the events 64 b p b imre a LII Internet Broadband Router Denial of Service 7 The Broadband router s Srewall can block common hacker attacks inchading DoS Discand Ping from WAN and Port Scan Denial of Service Feature Ping of heath T Discard Plng From WAH D Port Scan D Sync Flood C Advance Setbmas Parameters Description Denial of Service Feature Ping of Death Protections from Ping of Death attack Discard Ping From WAN The routers WAN port will not respond to any Ping requests Port Scan Protection the router from Port Scan Sync Flood Protection the router from Sync Flood attack Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place Note You can press Advance Settings to configure more detail settings per each DoS feature if necessary Internet Broadband Router Denial of Serv
70. limit bandwidth consumed by packets that match this rule or guarantee bandwidth required by packets that match this rule 3 PLRNET Status E Pee ag be I ITI Internet Broadband Router los This page allows users to add modfy the QoS rules settings TPL bee Diaria kbps Guanes Local IP Addross Local Pert Kenge Remote IF Address Remote Port Range rte Hone cw Protocol CP Parameters Description Rule Name The name of this rule 49 Bandwidth Local IP Address Local Port Range Remote IP Address Remote Port Range Traffic Type Protocol Save Reset You can assign the download or upload bandwidth by the unit of Kops 1024 bit per second You can limit the maximum bandwidth consumed by this rule by selecting Maximum You also can reserve enough bandwidth for this rule by selecting Guarantee Enter the local IP address range of the packets that this rule will apply to If you assign 192 168 2 3 192 168 2 5 it means 3 IP addresses 192 168 2 3 192 168 2 4 and 192 168 2 5 Enter the local port range of the packets that this rule will apply to You can assign a single port number here or assign a range of port numbers by assigning the first port number and the last port number of the range The two numbers are separated by a dash for example 101 150 means from port number 100 to port number 150 the range of 50 port numbers Enter the remot
71. manufacturers Protocol A protocol is a set of rules for interaction agreed upon between multiple parties so that when they interface with each other based on such a protocol the interpretation of their behavior is well defined and can be made objectively without confusion or misunderstanding Router A router is an intelligent network device that forwards packets between different networks based on network layer address information such as IP addresses Subnet Mask A subnet mask which may be a part of the TCP IP information provided by your ISP is a set of four numbers e g 255 255 255 0 configured like an IP address It is used to 85 create IP address numbers used only within a particular network as opposed to valid IP address numbers recognized by the Internet which must be assigned by InterNIC TCP IP UDP Transmission Control Protocol Internet Protocol TCP IP and Unreliable Datagram Protocol UDP TCP IP is the standard protocol for data transmission over the Internet Both TCP and UDP are transport layer protocol TCP performs proper error detection and error recovery and thus is reliable UDP on the other hand is not reliable They both run on top of the IP Internet Protocol a network layer protocol WAN Wide Area Network A network that connects computers located in geographically separate areas e g different buildings cities countries The Internet is a wide area network Web based management Graphical User In
72. me network is considered a LAN MAC Address MAC stands for Media Access Control A MAC address is the hardware address of a device connected to a network The MAC address is a unique identifier for a device with an Ethernet interface It is comprised of two parts 3 bytes of data that corresponds to the Manufacturer ID unique for each manufacturer plus 3 bytes that are often used as the product s serial number NAT Network Address Translation This process allows all of the computers on your home network to use one IP address Using the broadband router s NAT capability you can access the Internet from any computer on your home network without having to purchase more IP addresses from your ISP Port Network Clients LAN PC uses port numbers to distinguish one network application protocol over another Below is a list of common applications and protocol port numbers Application Protocol Port Number Telnet TCP 23 FTP TCP 21 SMTP TCP 25 POP3 TCP 110 H 323 TCP 1720 SNMP UCP 161 SNMP Trap UDP 162 HTTP TCP 80 PPTP TCP 1723 PC Anywhere TCP 5631 PC Anywhere UDP 5632 PPPoE Point to Point Protocol over Ethernet Point to Point Protocol is a secure data transmission method originally created for dial up connections PPPoE is for Ethernet connections PPPoE relies on two widely accepted standards Ethernet and the Point to Point Protocol It is a communications protocol for transmitting information over Ethernet between different
73. ne to provide Remote Access VPM senec L TP Server L Enable LATP Server Server I Address p Client IF Paal cid IPAP OCHAP IMS CHAP SULA Pse VPN Users uo n uc d A o h 71 L2TP Settings Parameters Enable L2TP Server Server IP Address Client IP Pool Authentication VPN Users Description By enable this server we can enable the operation of a virtual private network VPN over the Internet Specify the IP Address that the L2TP clients talked with Note The Server IP Address can be different to LAN IP or WAN IP Specify the IP Address for L2TP clients to use You can use PAP CHAP or MSCHAP for authentication You can input up to ten usernames and passwords for the L2TP PPTP clients here Click Apply at the bottom of the screen to save the above configurations Note L2TP client IP address must be public IP 2 8 3 PPTP Server PPTP is a protocol from Microsoft that is used to create a virtual private network VPN over the Internet It uses Microsoft s Point to Point Encryption MPPE which is based on RSA s RC4 T2 Internet Broadband Router PPTP Settings You can enable the Broadband router s PETE server io provida Remote Access VPM samica PPTP Server 0O Enahla PPTP amp arvar Saner IF Address M Client IP Pool le ST CPAP COCHAP CME CHAP eee Home MEPE VPN Users ma Qe OF Xd de tt o BB c PPTP Settings Parameters Ena
74. nt DMF Table EN Public IP Address Client PC IP Address EH Resu Cy eae Parameters Description Enable DMZ Enable disable DMZ Note If there is a conflict between the Virtual Server and the DMZ setting then Virtual Server function will have priority over the DMZ function Public IP Address The IP address of the WAN port or any other Public IP addresses given to you by your ISP Client PC IP Address Input the IP address of a particular host in your LAN that will receive all the packets originally going to the WAN port Public IP address above Note You need to give your LAN PC clients a fixed static IP address for DMZ to work properly You can now configure other advance sections or start using the router with the advance settings in place 66 2 8 VPN Virtual Private Network VPN provides a secure private communication tunnel between two or more devices across the Internet These VPN devices can be either a computer running VPN software or a special device like a VPN enabled router It allows your home computer to be connected to your office network or can allow two home computers in different locations to connect to each over the Internet Note To enable the VPN settings select Enable and click Apply 3 PLANET mer tad Uns Internet Broadband Router VPH Virtual Private Network Tha Bresdband router provides The Broadband maiar provides VPN saraca ihai makes usa of Interes to transfer dats
75. omplete the installation 5 After you install TCP IP go back to the Network window Select TCP IP from the list of Network Protocols and then click the Properties button 11 6 Check each of the tabs and verify the following settings IP Address Select Obtain an IP address from a DHCP server DNS Let all fields are blank WINS Let all fields are blank Routing Let all fields are blank Microsoft TCP IP Properties ki EY IP Address DNS WINS Address Routing An F address can be automatically assigned to this network card by a DHCP server F your network does not have a DHCP server ask your network administrator for an address and then type it in the space below Adapter Obtain an IP address from a DHCP server C Specify an IP address p xe e rn Stier Bes l Defaut ater Advanced 7 Click OK to confirm the setting Your PC will now obtain an IP address automatically from your Broadband Router s DHCP server Note Please make sure that the Broadband router s DHCP server is the only DHCP server available on your LAN Once you ve configured your PC to obtain an IP address automatically please proceed to otep 3 Once you have configured your PCs to obtain an IP address automatically the router s DHCP server will automatically give your LAN clients an IP address By default the VRT 401G s DHCP server is enabled so that you can obtain an IP address automatically To see if
76. on your selection 2 1 2 Password Settings Allows you to select a password in order to access the web based management website 2 1 3 Remote Management You can specify a Host IP address that can perform remote management functions Select one of the above three system settings selections and proceed to the manual s relevant sub section 2 1 1 Time Zone The Time Zone allows your router to refer or base its time on the settings which will affect functions such as Log entries and Firewall settings 28 SPT TET Internet Broadband Router 1 Time Zone Sel the time zone of ihe Broadband router Thee anformation rs used fer log enines and firewall selbrsgs Sel Time fone GMTGreerwich Mean Time Dublin Edinburgh Lisbon Londen Time Server Address PAES 43 244 15 Met Parameter Description Set Time Zone Select the time zone of the country you are currently in The router will set its time based on your selection Time Server Address The router default the Time Server Address is 192 43 244 18 Enable Daylight Savings The router can also take Daylight savings into account If you wish to use this function you must check tick the enable box to enable your daylight saving configuration below Start Daylight Savings Time Select the period in which you wish to start daylight Savings Time End Daylight Savings Time Select the period in which you wish to end daylight Savings Time Click Apply at
77. ork packets to the Internet in the background even when you are not using the Internet This function also may not work with some ISP So please make sure this function can work properly when you use this function in the first time especially your ISP charge you by time used Due to the many uncontrollable issues we do not guarantee the WAN idle timeout auto disconnect function will always work In order to prevent from extra fee charged by ISP please TURN OFF THE ROUTER WHEN YOU FINISHED USING THE INTERNET Click lt OK gt when you have finished the configuration above Congratulations You have completed the configuration for the L2TP connection You can start using the router now if you wish to use some of the advance features supported by this router see chapter 2 3 4 1 6 Telstra Big Pond Select Telstra Big Pond if your ISP requires the Telstra Big Pond protocol to connect you to the Internet Your ISP should provide all the information required in this section Telstra Big Pond protocol is used by the ISP in Australia Internet Broadband Router 3 IP Address Info 7 Telstra Big Pond Australia Only lf your intemal sarate is pended by Telstra Big Pond in Awstralia you will need to enter your ifeermati n below Thi information is provided by Teistra BigPond Leer Name L User decide login server manually COK gt Parameter Description User Name Enter the User Name provided by your ISP for the Telstra Big Pond conn
78. outer and plug your PC to the LAN port and you re ready to share files and access the Internet The VRT 401G is embedded with an IEEE 802 119 b access point that allows you to build up a wireless LAN The 54M Wireless VPN Firewall Router provides a total solution for the Small and Medium sized Business SMB and the Small Office Home Office SOHO markets giving you an instant network today and the flexibility to handle tomorrow s expansion and speed Features Compliant with 802 11g 802 11b standard AP AP Client WDS Bridge modes supported Supports 64 128 bit WEP WPA WPA 2 Encryption to protect the wireless data transmissions IPSec VPN gateway ESP IKE Provides 3DES AES encryption and MD5 and SHA1 authentication algorithms PPTP and L2TP server client support VPN Pass Through IPSec PPTP L2TP QoS support DHCP PPPOE PPTP L2TP Fixed IP Wireless allocation MAC IP filter access control URL blocking SPI firewall DoS prevention protection Supports Virtual and DMZ function Supports UPnP function Supports DDNS function Supports DHCP Server for easy setup Easy to use Web based GUI for configuration and remote management purposes Status monitoring includes Active DHCP Client Security Log and Device Connection otatus Equipped with four LAN ports 10 100M and one WAN port 10 100M Auto MDI MDI X supported Minimum Requirements One External xDSL ADSL or Cable modem with an Ethernet port RJ 45 Network Inter
79. range for this type of application e g 2300 2400 47624 Note Individual port numbers are separated by a comma e g 47624 5775 6541 etc To input a port range use a dash to separate the two port number range e g 2300 2400 Public Type Select the Inbound port protocol type TCP UDP or both Comment The description of this setting Popular applications This section lists the more popular applications that require multiple connections Select an application from the Popular Applications selection Once you have selected an application select a location 1 10 in the Copy to selection box and then click the Copy to button This will automatically list the Public 55 Ports required for this popular application in the location 1 10 youd specified Add Special Application Fill in the Trigger Port Trigger Type Public Port Public Type Public Port and Comment of the setting to be added and then click Add Then this Special Application setting will be added into the Current Trigger Port Table below If you find any typo before adding it and want to retype again just click Clear and the fields will be cleared If you want to add a popular application select one Popular Application and then click Add Remove Special Application If you want to remove some Special Application settings from the Current Trigger Port Table select the Special Application settings you want to remove in th
80. ration Tools Use the Backup tool to save the VHRT 401G current configuration to a file named config bin on your PC You can then use the Restore tool to restore the saved configuration to the VRT 401G Alternatively you can use the Restore to Factory Defaults tool to force the VRT 401G to perform a power reset and restore the original factory settings 4 2 Firmware Upgrade This page allows you to upgrade the router s firmware Internet Broadband Router Firmware Upgrade 7 This too allows you to upgrade the Broadband rowier s system Srmmwarn Enter ihe path and namre of the upgrade file and then chek the APPLY button below You wil be prompled bo canfum Ihe upgrade Tha mystom will automatically rabest tha rawar altar you finished tha firmwares upqeada praeses W you dant complete the firmware upgrade process in the next step you have to reboot the router Next Parameters Description Firmware Upgrade This tool allows you to upgrade the VRT 401G s system firmware To upgrade the firmware of your device you need to download the firmware file to your local hard disk and enter that file name and path in the appropriate field on this page You can also use the Browse button to find the firmware file on your PC 81 Once you ve selected the new firmware file click Apply at the bottom of the screen to start the upgrade process You may have to wait a few minutes for the upgrade to complete Once the up
81. ress The ISP gives you a static IP to be used to connect to the PPTP server This is the IP address that your ISP has given you to establish a PPTP connection Enter the Subnet Mask provided by your ISP e g 255 255 255 0 Enter the IP address of the ISP Gateway Enter the User Name provided by your ISP for the PPTP connection Sometimes called a Connection ID Enter the Password provided by your ISP for the PPTP connection If your LAN has a PPTP gateway then enter that PPTP gateway IP address here If you do not have a PPTP gateway then enter the ISP s Gateway IP address above This is the ID given by ISP This is optional This is optional You can specify the maximum size of your transmission packet to the Internet Leave it as it is if you to not wish to set a maximum packet size Select this item if you are using the service provided by BEZEQ in Israel If you select Continuous the router will always connect to the ISP If the WAN line breaks down and links again the router will auto reconnect to the ISP If you select Connect On Demand the router will auto connect to the ISP when someone want to use the Internet and keep connected until the WAN idle timeout The router will close the WAN connection if the time period that no one is using the Internet exceeds the Idle Time If you select Manual the router will connect to ISP only when you click Connect manually from the Web user interface The 27
82. ripheral model It ig dussgrred to suppor zero configuration imvesibla netwerking and sulomalic discovery for a braadth of device categones from a wide range of vendor With UPnP a device can dynamically join a network obtain an IP address convey ite capakditias and leam about ihe presence and capabiktsez of other dices all wulomatically truly enabling 2660 confiquration networks Dices can subsequantir Communicate wih each other directly Thareby further enabling peer 1o pear netweeking Vier ENABLE DISABLE Apply Parameters Default Description UPnP Feature Disable You can Enable or Disable UPnP feature here After you enable the UPnP feature all client systems that support UPnP like Windows XP can discover this router automatically and access the Internet through this router without any configuration The NAT Traversal function provided by UPnP can let applications that support UPnP smoothly connect to Internet sites without any incompatibility problem due to the NAPT port translation Click lt Apply gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 2 6 5 ALG Settings You can select applications that need Application Layer Gateway to support 57 Internet Broadband Router Application Layer Gateway 7 Beirw are apphcalonrs hat reed reuter s special support to make them
83. s 12345abcde Default Key Select one of the four keys to encrypt your data Only the key you select it in the Default key will take effect Key 1 Key 4 The WEP keys are used to encrypt data transmitted in the wireless network Fill the text box by following the rules below 64 bit WEP input 10 digit Hex values in the A F a f and 0 9 range or 5 digit ASCII character as the encryption keys 128 bit WEP input 26 digit Hex values in the A F a f and 0 9 range or 13 digit ASCII characters as the encryption keys Click Apply at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 43 2 4 3 2 802 1x only IEEE 802 1x is an authentication protocol Every user must use a valid account to login to this Access Point before accessing the wireless LAN The authentication is processed by a RADIUS server This mode only authenticates user by IEEE 802 1x but it does not encryption the data during communication Status Internet Broadband Router Security This page alaws you setup The wireless socurzy Tum on WEP or WPA by using Encryplian Kays duld prevent any unauthorized access to your wireless network LT Enable 802 1 Authentication RADIUS Serp IF address e RADIUS Server Port Slc RADIUS Sonor UE s DIE Parameters Default Description RADIUS Server IP address The IP address of
84. s Check Enable MAC Filtering to enable MAC Filtering Add PC Fill in Client PC MAC Address and Comment of the PC that is allowed to access the Internet and then click Add If you find any typo before adding it and want to retype again just click Reset and the fields will be cleared Remove PC If you want to remove some PC from the MAC Filtering Table select the PC you want to remove in the table and then click Delete Selected If you want remove all PCs from the table just click Delete All button If you want to clear the selection and re select again just click Reset Filter client PCs by IP Fill IP Filtering Table to filter PC clients by IP Add PC You can click Add PC to add an access control rule for users by IP addresses Remove PC If you want to remove some PC from the IP Filtering Table select the PC you want to remove in the table 61 and then click Delete Selected If you want remove all PCs from the table just click Delete All button You can now configure other advance sections or start using the router with the advance settings in place Add PC Parameters Client PC Description Client PC IP Addresses Client PC Service Internet Broadband Router Access Control Add PC This page allows users tn dedna garece lemistion of chant PC including IP address amd sanace type Client PC Dascriptlen Client PC WF Address Client FC Service
85. s four cascaded binary numbers separated by bbbbbbbb bbbbbbbb bbbbbbbb bbbbbbbb where each b can either be 0 or 1 A network mask is also a 32 bit binary pattern and consists of consecutive leading 1 s followed by consecutive trailing Os such as 11111111 11111111 11111111 00000000 Therefore sometimes a network mask can also be described simply as x number of leading 1 s When both are represented side by side in their binary forms all bits in the IP address that correspond to 1 s in the network mask become part of the IP network address and the remaining bits correspond to the host ID For example if the IP address for a device is in its binary form 11011001 10110000 10010000 000001 11 and if its network mask is 11111111 11111111 11110000 00000000 It means the device s network address is 11011001 10110000 10010000 00000000 and its host ID is 00000000 00000000 00000000 000001 11 This is a convenient and efficient method for routers to route IP packets to their destination ISP Gateway Address see ISP for definition The ISP Gateway Address is an IP address for the Internet router located at the ISP s office 84 ISP Internet Service Provider An ISP is a business that provides connectivity to the Internet for individuals and other businesses or organizations LAN Local Area Network A LAN is a group of computers and devices connected together in a relatively small area Such as a house or an office Your ho
86. s the router s LAN MAC Address WAN MAC Address Hardware version Serial Number Boot code Version Runtime code Version 3 2 Internet Connection View the VRT 401G s current Internet connection status and other related information Internet Broadband Router Internet Connection 4 Were the curent inberet conrsection Halas and related information tee Fired I ennnact so osose Subnet Maak 255255 2550 Datauh Gateway 192 150 99 253 HAT Addresa DOOOHAF 54 7H 45 Primary ONS 158595 1 1 Secondary ONS Parameters Description Internet Connection This page displays whether the WAN port is connected to a Cable DSL connection It also displays the routers WAN port information such as WAN IP address Subnet Mask and ISP Gateway as well as the Primary DNS and Secondary DNS being used 75 3 3 Device Status View the VRT 401G s current configuration settings The Device Status displays the settings you ve configured in the Quick Setup Wizard General Setup section Internet Broadband Router Device Status 4 View the Current setting Hates of this device Wireless Configuration Mode AP ESSID default Channel Humber 11 Security Disabre Agaociated Clients 1 mss E Dec 22 54 7b 44 IP Address 192 152 0 1 Subnet Mask Mh 2595 255 0 DHCP Server Enabled MAC Address QU De 26 54 75 44 Parameters Description Device Status This page shows the VRT 401G s current device settings This page
87. t DNS server here 3 PLRN eT Sats mares ph Cane Internet Broadband Router DHS 4 A Domain Name System ONS server i Hoe an index af IP Addresses and Web Addresses HF you type a Web address ina your brewear auch as wew bresdbandreutar cam DNS sarver wall find that name in ite index and find the malzhira IP addrass Mot ISPs prede a ONS senes for speed and comenience Since your Serece Proeder may connect you to the Internet through dynamic IF settings ii is likely that ihe ONS server IP Address is aleo peowided dynamically However d there r amp a ONS gener that you would rather use you reed bo specify the IP Address of that ONS serer The primary ONS will be ugod for domain mamo rotas first in case ihe primary DHS access falures the secondary OHS wall be used Hart your Inlernel senice prinder green you ONS address Demain Mame Sercer OMS Address Secondary DNS Address optional Parameters Description Domain Name Server DNS Server This is the ISP s DNS server IP address that they gave you or you can specify your own preferred DNS server IP address Secondary DNS Address optional This is optional You can enter another DNS servers IP address as a backup The secondary DNS will be used should the above DNS fail Click Apply at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 33
88. terface GUI Many devices support a graphical user interface that is based on the web browser This means the user can use the familiar Netscape or Microsoft Internet Explorer to Control configure or monitor the device being managed 86
89. the wireless LAN All devices in the same wireless LAN should use the same channel Click Show Active Clients button then an Active Wireless Client Table will pop up You can see the status of all active wireless stations that are connecting to the access point This is the MAC address used by the Wireless interface of this AP when it is in the station modes Click the Clone MAC button will copy the MAC address of your PC that you are using to configure the AP to the WLAN MAC If you want to bridge more than one networks together with wireless LAN you have to set this access point to AP Bridge Point to Point mode AP Bridge Point to Multi Point mode or AP Bridge WDS mode You have to enter the MAC addresses of other access points that join the bridging work Click the Set Security button then a WDS Security Settings will pop up You can set the security parameters used to bridge access points together here when your AP is in AP Bridge modes You can refer to section 4 3 Security Settings for how to set the parameters Click Apply at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place 40 2 4 2 Advanced Settings You can set advanced wireless LAN parameters of this router The parameters include Authentication Type Fragment Threshold RTS Threshold Beacon Interval Preamble Type
90. the wireless stations to connect to this router The parameters include Mode ESSID Channel Number and Associated Client 36 AP Mode setting Page Internet Broadband Router Wireless Setting This page allows you fo debre ESSID and Channel for the wireless connection These parameters are used for the wereless s1ats ns t connect T the Access Paini ENENNCTT ENTM fea C anena Station Ad Hoc mode setting page Status Internet Broadband Router Wireless Setting Thes page allows you to define ESSID and Channel for the wireless connection These parameters ane used for the wireless stations to connect En the Access Point oc EE ENTE e _cione aac 37 Station Infrastructure mode setting page Status r Internet Broadband Router Wireless Setting This page allows you to deine SSID and Channel for the wireless connection These parameters ace weed for ihe wireless stations to connect t the Access Point stet rnntra tacture Y 24 GHz B G v nnnoneennnnn Clone MAC AP Bridge Point to Point mode setting page T eger enga Internet Broadband Router Wireless Setting This page allows you io deine ESSO and Channel far ihe wireless connection Thaae parameters are weed for ihe wireless stations to connect 10 the Access Point ss re Channel Humber T TS Ss 38 AP Bridge Point to Multi Point mode setting page ziF U4 FP LL
91. tion 19 gt PLANET ETT ud cg NR Teac Internet Broadband Router 3 IP Address Info 4 PPPoE Enter the User Hame and Password required by your ISP in the appropriate fields Hf your ISP hae provided you with a Semce Name enter it in the Semice Name field ethereise leave it blank Line PPPoE Authenticatian User Mame S99 159 Pawo sessast Service Mame MTU 1332 B12 z MTU Valugen 1432 Connection Type Continuous v Idle Time 1 1000 minutes TTL sDisabled Enabled Parameter Description User Name Enter the User Name provided by your ISP for the PPPoE connection Password Enter the Password provided by your ISP for the PPPoE connection Service Name This is optional Enter the Service name should your ISP requires it otherwise leave it blank MTU This is optional You can specify the maximum size of your transmission packet to the Internet Leave it as it is if you to not wish to set a maximum packet size Connection Type If you select Continuous the router will always connect to the ISP If the WAN line breaks down and links again the router will auto reconnect to the ISP If you select Connect On Demand the router will auto connect to the ISP when someone want to use the Internet and keep connected until the WAN idle timeout The router will close the WAN connection if the time period that no one is using the Internet exceeds the Idle Time If you select Manual the router wil
92. tton to show the RSA Public Key RSA Key This page ks used ip ghe res kay Cunswt RSA Kay sAGPRMTKrmXFERGFSLRKEdoSFFERZqfpotapoli cbr Teu DUhmMCKAQLI G 2B To 25 Ry Riedie ig IS GKOWT 36 KLzfePmiapHyT WE pmi TQ VW VZ W Va VD VFBRITUK VF TION M CD SSygk HB TuR uL OW TED VIZ eive EY in Current VPN Connection Table This table shows the current tunnel settings and the status of each tunnel The maximum number of tunnel is 10 WAN IP Shows the current WAN IP that this VPN Server listened on Edit a VPN Connection Select the connection you want to edit and click Edit then you will enter the detail form of the Tunnel Setting Click Apply Changes after editing the form and the tunnel setting will be saved 68 Click lt Apply Changes gt at the bottom of the screen to save the above configurations You can now configure other advance sections or start using the router with the advance settings in place Edit Connection Parameters Enable Tunnel Connection Name Local Site Remote Site Network Management Advanced VPN Setup Enable Tunnel 1 Connaction Name Local Site Local IP Naber rk Local Subnet Mask Remote Site Remote WPH Gateway Remote IPiteteork Remote Subnet Mask Kay Management Connection Type Local Remote ID Local ID Type Local ID Pampa ID Type Pamela ID Auth Methed PreShared Key Rome AGA Key Status Internet Broadband Router Subnel Address 192 153 0 1 2
93. u can just configure the General Setup section since the General Setup WAN and the Quick Setup Wizard contain the same configurations Status Information Chapter 3 The Status Information section is for you to monitor the router s current status information only Tools Chapter 4 If you want to Reset the router because of problems or save your configurations or upgrade the firmware then the Tools section is the place to do this 13 Menu slabug Internet Broadband Router Quick Setup Wizard The Quick Setup Wizard provides only the necessary confqueations to connect your Broadband router 19 your Internet Serice Proeder ISP through an external cable or a DSL modem General Setup Th Broadband router supports advanced functions lika Virtual Sereer Access Control Hacker Attack Detection and DM We highly recommend you keep the default settings status Information The Broadband rovier s stalus information prides ihe foliwng information about your Broadband router Hardwane Firwarne version Senal Narmber and ils current operating slabus Tools Eroadband router Tools Tools include Configuration Tools Firrrewane upgrade and Reset Configuration tools allow you to Backup Restore or Restore bo Factory Default setting for your Broadband roter Firmware upgrade tool allows you to upgrade your Broadband router s furere The RESET tool allows you bo resel your Broadband riter Description Quick Setup Wizard
94. usas PPPoE to establish a commection You must choose thes option and enter the required infomation OPPTF xDSL Hf you connect to the Intemat using an xDSL Modem and your ISP has peovided you with a Password Local IP Address Remote IP Adimas and Connection ID then your ISP uses PPTP to establish a connection You must choose This option and enter the required information O LTF xDSL Layer Two Tunnelng Prolecol i amp common conreection method weed in xDSL conmectons O Telstra Big Pond M your Infernel aeree i pronded by Telatra Big Pond in Australia you vell reed bo erder your information below This anbeerrialion ii provided by Teistra BigPond Menu Description 1 1 Cable Modem Your ISP will automatically give you an IP address 1 2 Fixed IP xDSL Your ISP has given you an IP address already 1 3 PPPoE Your ISP requires you to use a Point to Point Protocol over Ethernet PPPoE connection 1 4 PPTP Your ISP requires you to use a Point to Point Tunneling Protocol PPTP connection 1 5 L2TP Your ISP requires you to use a Layer Two Tunneling Protocol L2TP connection 1 6 Telstra Big Pond This Protocol only used for Australia s ISP connection Click on one of the WAN type and then proceed to the manual s relevant sub section 1 1 1 2 1 3 1 4 1 5 or 1 6 Click on Back to return to the previous screen 17 1 1 Cable Modem Choose Cable Modem if your ISP will automatically give you an IP address Some ISP s may
95. y redirectad 10 local semere canfiqured with Private IP Addreeees in ol ier words depending on the requested eenice TCP UDP port number the Broadband router redirects the axtamal ganice raquast tn the appenpriate intemal server located at ona of your LANs Pisia IP Adda O nahla Virtual Server Both Current Virtual Serves Table Reset App Parameters Description Enable Virtual Server Enable Virtual Server Private IP his is the LAN client host IP address that the Public Port number packet will be sent to Note You need to give your LAN PC clients a fixed static IP address for Virtual Server to work properly Private Port This is the port number of the above Private IP host that the below Public Port number will be changed to when the packet enters your LAN to the LAN Server Client IP Type Select the port number protocol type TCP UDP or both If you are unsure then leave it to the default both protocols Public Port Enter the service service Internet application port number from the Internet that will be re directed to the above Private IP address host in your LAN Note Virtual Server function will have priority over the DMZ function if there is a conflict between the Virtual Server and the DMZ settings Comment The description of this setting Add Virtual Server Fill in the Private IP Private Port Type Public Port and Comment of the setting to be added and then click Add the Virtual

Download Pdf Manuals

image

Related Search

Related Contents

Manual del usuario - AG Neovo Service Website  NGS Purple Microhub  TopLobe - Johnson Pump  RW 420 Route Palette Accessory Kit Safety, Installation and User  GE AEW18* Cooktop User Manual    IAN 86428 - Lidl Service Website  ALGI-COOL blue gel  Dual ALB10 User's Manual  パトメール操作マニュアル  

Copyright © All rights reserved.
Failed to retrieve file