Page 146 / 155 Scroll up to view Page 141 - 145
VoIP/(802.11g) ADSL2+ (VPN) Firewall Router
Chapter 4: Configuration
145
After 100 seconds, the device will automatically logout User A.
Universal Plug and Play (UPnP)
UPnP offers peer-to-peer network connectivity for PCs and other network devices, along with control and
data transfer between devices. UPnP offers many advantages for users running NAT routers through
UPnP NAT Traversal, and on supported systems makes tasks such as port forwarding much easier by
letting the application control the required settings, removing the need for the user to control advanced
configuration of their device.
Both the user’s Operating System and the relevant application must support UPnP in addition to the
router. Windows XP and Windows Me natively support UPnP (when the component is installed), and
Windows 98 users may install the Internet Connection Sharing client from Windows XP in order to
support UPnP. Windows 2000 does not support UPnP.
~
Disable:
Check to disable the router’s UPnP functionality.
~
Enable:
Check to enable the router’s UPnP functionality.
UPnP Port:
Its default setting is 2800. It is highly recommended for users to use this port value. If this
value conflicts with other ports already being used you may wish to change the port.
SNMP Access Control
(Software on a PC within the LAN is required in order to utilize this function) –
Simple Network Management Protocol.
SNMP V1 and V2:
Read Community:
Specify a name to be identified as the Read Community, and an IP address.
This
community string will be checked against the string entered in the configuration file. Once the string name
is matched, user obtains this IP address will be able to view the data.
Write Community:
Specify a name to be identified as the Write Community, and an IP address. This
community string will be checked against the string entered in the configuration file. Once the string name
is matched, users from this IP address will be able to view and modify the data.
Trap Community:
Specify a name to be identified as the Trap Community, and an IP address. This
community string will be checked against the string entered in the configuration file. Once the string name
is matched, users from
this IP address will be sent SNMP Traps.
SNMP V3:
Specify a name and password for authentication. And define the access right from identified IP address.
Once the authentication has succeeded, users from this IP address will be able to view and modify the
data.
SNMP Version: SNMPv2c and SNMPv3
SNMPv2c is the combination of the enhanced protocol features of SNMPv2 without the SNMPv2 security.
The "c" comes from the fact that SNMPv2c uses the SNMPv1 community string paradigm for "security",
but is widely accepted as the SNMPv2 standard.
SNMPv3 is a strong authentication mechanism, authorization with fine granularity for remote monitoring.
Traps supported: Cold Start, Authentication Failure.
The following MIBs are supported:
From RFC 1213 (MIB-II):
;
System group
;
Interfaces group
;
Address Translation group
Page 147 / 155
VoIP/(802.11g) ADSL2+ (VPN) Firewall Router
Chapter 4: Configuration
146
;
IP group
;
ICMP group
;
TCP group
;
UDP group
:
EGP (not applicable)
;
Transmission
;
SNMP group
From RFC1650 (EtherLike-MIB):
;
dot3Stats
From RFC 1493 (Bridge MIB):
;
dot1dBase group
;
dot1dTp group
;
dot1dStp group (if configured as spanning tree)
From RFC 1471 (PPP/LCP MIB):
;
pppLink group
:
pppLqr group (not applicable)
From RFC 1472 (PPP/Security MIB):
;
PPP Security Group)
From RFC 1473 (PPP/IP MIB):
;
PPP IP Group
From RFC 1474 (PPP/Bridge MIB):
;
PPP Bridge Group
From RFC1573 (IfMIB):
;
ifMIBObjects Group
From RFC1695 (atmMIB):
;
atmMIBObjects
From RFC 1907 (SNMPv2):
;
only snmpSetSerialNo OID
Page 148 / 155
VoIP/(802.11g) ADSL2+ (VPN) Firewall Router
Chapter 4: Configuration
147
IGMP
IGMP, known as
Internet Group Management Protocol
, is used to management hosts from multicast
group.
IGMP Forwarding:
Accepting multicast packet.
Default is set to
Enable.
IGMP Snooping:
Allowing switched Ethernet to check and make correct forwarding decisions.
Default
is set to
Disable.
VLAN Bridge
This section allows you to create VLAN group and specify the member.
Edit:
Edit your member ports in selected VLAN group.
Create VLAN:
To create another VLAN group.
Advanced VLAN Setup Example (Triply Play)
VLAN_data:
Ethernet Port 1, Wireless and Wireless WDS are reserving for Internet
- On Ethernet port 1 I also need VC 0/40 bridged.
VLAN_Vedio
Ethernet ports: 2, 3 and 4:
-
0/33 Bi-directional IP
-
0/34
Video
-
0/35
Video
-
0/36
Video Subscriber Services (EPG, EAS, etc.)
-
0/37
Video
-
0/38
Video
-
0/39
Spare
Step 1: Setup Member Ports
Go to
Configuration
Æ
LAN
Æ
Bridge Interface.
You can setup member ports for each VLAN group under Bridge Interface section. From the example, two
Page 149 / 155
VoIP/(802.11g) ADSL2+ (VPN) Firewall Router
Chapter 4: Configuration
148
VLAN groups need to be created.
Ethernet: P1 (Port 1)
Ethernet1: P2, P3 and P4 (Port 2, 3, 4) Please uncheck P2, P3, P4 from Ethernet VLAN Port first.
Note:
You should setup each VLAN group with caution.
Each Bridge Interface is arranged in this order.
Ethernet
P1 / P2 / P3 / P4
Ethernet2
P3 / P4
Step 2: Create WAN Interface
Go to
Configuration
Æ
WAN
Æ
ISP
wanlink
is the factory default WAN interface which in service for data/internet access. If your ISP uses
this access protocol, click
Edit
to input other parameters if needed.
If your ISP does not use PPPoE,
you can change the default WAN connection entry by clicking
Change
.
From the example, 0/40 is used for data/internet and assumes PPPoE is used; click the
Edit
to change
the VPI/VCI to 0/40.
Click
Create
to setup up additional WAN interface for video applications. Total of 8 VLAN is support;
therefore, only 8 WAN interfaces can be created in the table.
From the example, PVC 0/33 to 0/39 is assigned for video using 1483 Bridged mode.
Check
RFC 1483
Bridged
and click
Next
to continue the setup.
Page 150 / 155
VoIP/(802.11g) ADSL2+ (VPN) Firewall Router
Chapter 4: Configuration
149
Spaces next to VPI and VCI, type 0 and 33 in respectively. Select appropriate ATM Class, Encapsulation
Method, Acceptable Frame Type, Filter Type and PVID for Untagged Frames.
VPI and VCI:
Enter the information provided by your ISP.
ATM Class:
The Quality of Service for ATM layer.
Encapsulation method:
Select the encapsulation format, this is provided by your ISP.
Acceptable Frame Type:
Specify what kind of traffic can through this connection, all traffic or only VLAN
tagged.
Filter Type:
Specify the type of ethernet filtering performed by the named bridge interface.
All
Ip
Allows only IP/ARP types of ethernet packets through the port.
Pppoe
Allows only PPPoE types of ethernet packets through the port.
PVID for Untagged Frames:
PVID is known as Port VLAN Identifier.
When an untagged packet is
received by input port(s), this packet will be tagged with specified PVID.
From the example, VPI and VCI only section need to be filled-in and just leave the rest as is.
Repeat the
same procedure by clicking
Create
Æ
select
RFC1483 Bridged
Æ
fill-in the rest of PVC 0/34 to 0/39.

Rate

4 / 5 based on 1 vote.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top