Page 136 / 182 Scroll up to view Page 131 - 135
PRG AV4202N
© (2007) Pirelli Broadband Solutions S.p.A. All Rights Reserved. Proprietary Use Pursuant to Cover Page Instructions.
Advanced Section
OGU 930500275-A1
129
Metric
: A measurement of the preference of a route. Typically, the lowest metric
is the most preferred route. If multiple routes have the same metric value, the
default route will be the first in order of appearance.
Routing Protocols
Routing Information Protocol (RIP)
: Select this check-box in order to enable
connections previously defined to use RIP. If this check-box is not selected, RIP
will be disabled for all connections, including those defined to use RIP.
- Reverse:
Discus will advertise acquired route information with a high metric, in
order for other routers to disregard it.
- Do not Advertise Direct Connected Routes
: the Router will not advertise the
route information to the same subnet device from which it was obtained.
Internet Group Management Protocol (IGMP):
the Router provides support for
IGMP multicasting, which allows hosts connected to a network to be updated
whenever an important change occurs in the network. A multicast is simply a
message that is sent simultaneously to a pre-defined group of recipients. When
you join a multicast group you will receive all messages addressed to the group,
much like what happens when an e-mail message is sent to a mailing list. IGMP
multicasting may be useful when connected to the Internet through a router.
When an application running on a LAN computer sends out a request to join a
multicast group, the Router will listen and intercept this group's messages,
sending them to the subscribed application.
Domain Routing:
When Router’s DNS server receives a reply from an external
DNS server, it will add a routing entry for the IP address of the reply through the
device from which it arrived. This means that future packets from this IP ad-
dress will be routed through the device from which the reply arrived.
Page 137 / 182
PRG AV4202N
© (2007) Pirelli Broadband Solutions S.p.A. All Rights Reserved. Proprietary Use Pursuant to Cover Page Instructions.
130
OGU 930500275-A1
Advanced Section
FIGURE 30.
Routing Panel
SSH
Secure Shell (SSH) is a protocol that provides encrypted connections to remote
hosts or servers. PRG AV4202N supports SSH connection requests from LAN
clients with administrative permissions. When connected, a secured command-
line session will grant a user access to all system settings and parameters. This
service can also be opened to WAN clients.
Click the 'SSH' icon in the 'Advanced' screen of the Web-based management.
The 'SSH' screen will appear.
Enabled.
Check or un-check this box to enable or disable this feature.
Status.
This feature is enabled by default, and its status appears as “Running”.
This status will change reflecting actions performed.
Page 138 / 182
PRG AV4202N
© (2007) Pirelli Broadband Solutions S.p.A. All Rights Reserved. Proprietary Use Pursuant to Cover Page Instructions.
Advanced Section
OGU 930500275-A1
131
Host Keys.
Host keys are used to identify the Router to incoming SSH connec-
tion requests. You may wish to use new keys instead of the old ones. To do so,
press the 'Recreate' button. The status will change to “Generating Host Keys”
until the keys are created and saved in the Router's configuration file.
FIGURE 31.
SSH Panel
SSL VPN
Secure Socket Layer Virtual Private Network (SSL VPN) provides simple and
secure remote access to home and office network resources. It provides the se-
curity level of IPSec, but with the simplicity of using a standard Web browser.
The unparalleled advantage of SSL VPN is its zero-configuration on the client's
end. Remote users can simply browse to Discus from any computer in the world
and run applications on its LAN computers. However, since SSL VPN is not a
tunnel such as PPTP or IPSec, only pre-defined applications may be used.
When using this feature, non-administrator remote users browsing to Discus will
be routed to the "SSL VPN Portal". This portal will present them each with their
list of applications.
Setting up a Remote Desktop (RDP) application over SSL VPN in order to re-
motely connect and control a computer inside Discus LAN consists of two
stages—creating a remote desktop global shortcut, and launching the applica-
tion from a remote computer via the SSL VPN portal.
To create an RDP shortcut, perform the following:
1.
Access the Secure Socket Layer VPN (SSL VPN) settings either from its
link under the 'VPN' menu item of the 'Services' screen, or by clicking the
'SSL VPN' icon in the 'Advanced' screen.
2.
To enable SSL VPN, select the 'Enabled' check box, and click 'Apply'. The
screen refreshes, adding a link to the SSL VPN Portal.
Page 139 / 182
PRG AV4202N
© (2007) Pirelli Broadband Solutions S.p.A. All Rights Reserved. Proprietary Use Pursuant to Cover Page Instructions.
132
OGU 930500275-A1
Advanced Section
3.
Click the 'Click Here to Allow Incoming HTTPS Access' link. The 'Remote
Administration' screen appears. In the 'Allow Incoming WAN Access to
Web-Management' section, select both HTTPS port 443 and 8443, and
click 'OK'.
4.
Back in the 'SSL VPN' screen, click the 'Click Here to Create SSL-VPN Us-
ers' link. The 'Users' screen appears, where you can define a user with the
'Remote Access by SSL VPN' option enabled.
5.
In the 'SSL VPN' screen, click the 'New Shortcut' link. The 'Shortcut Wizard'
screen appears.
6.
Choose whether to select a host from a given list, comprised of DHCP
leases that are known to Discus, or to manually enter the host's IP address,
and click 'Next'. If you choose 'From a List', the following screen appears.
Select the host to which you would like to add a shortcut, and click 'Next'.
The next wizard screen appears, either with the IP address of a selected
host, or without an IP address for manual selection.
7.
In the 'Application' drop-down menu, select 'Remote Desktop (RDP)'. The
screen refreshes, displaying the RDP parameters.
8.
In this screen, perform the following:
Enter a name for the shortcut.
Enter the IP address of the LAN computer on which the RDP will be per-
formed.
Select the 'Override Default Port' option if the LAN computer uses a port
other than the application's "well known" default port. An additional field
appears, in which you must enter the alternative port.
If you choose the default setting of requiring the user to specify login in-
formation when connecting with RDP, provide the username and pass-
word that are used to login to the LAN computer.
Select the size of the screen in which the remote desktop application will
be displayed.
9.
Select the 'Edit the Newly Created Shortcut' check box in order to associate
a user or a group with this shortcut, and click 'Finish'. The 'Edit Shortcut'
screen appears.
10.
Click the 'New User' link (or 'New Group' according to your preference), and
select a user with remote SSL VPN access permission from the drop-down
menu.
11.
Click 'OK'. The new user is added to the 'Users' section in the 'Edit Shortcut'
screen. Click 'OK' to save the settings. The new shortcut is added to the
Page 140 / 182
PRG AV4202N
© (2007) Pirelli Broadband Solutions S.p.A. All Rights Reserved. Proprietary Use Pursuant to Cover Page Instructions.
Advanced Section
OGU 930500275-A1
133
'Shortcuts' screen, and will be available for this user when connecting to the
SSL VPN portal.
To launch the remote desktop application from a remote computer, perform the
following:
1.
Browse to Discus from a remote computer by typing https://<Discus Internet
address> (Discus Internet address can be found under the 'Internet Con-
nection' tab). For example,
.
2.
Log in with the newly added user. The portal screen appears. Click the
name of the RDP shortcut. A Remote Desktop session screen opens,
prompting you for login details. Enter the computer's login username and
password to gain RDP control. If an RDP screen fails to load, check that
JRE is properly installed on the client computer
FIGURE 32.
SSL VPN Panel
SCHEDULER RULES
Scheduler rules are used for limiting the activation of Firewall rules to specific
time periods, specified in days of the week, and hours.
To define a Rule:

Rate

4 / 5 based on 4 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top