Page 91 / 237 Scroll up to view Page 86 - 90
OxyGEN
mini
Office
Administrator’s Guide
QoS policy can be applied for each authenticated wireless client using the appropriate bandwidth
control attributes from the Radius server. The default bandwidth control attributes are
WISPr-Bandwidth-
Max-Down
and
WISPr-Bandwidth-Max-Up
which have been extended with the Gennet
gennet_class
attribute.
The former two attributes can be used for assigning the exact download and upload
bandwidths in bits per second (
bps
). The latter can be used to assign the authenticated wireless client
to one of the pre-defined service classes:
gold
: 4096000 / 1024000 bps (Down/Up)
silver
: 2048000 / 512000
bronze
: 1024000 / 256000
other value
: 512000 / 128000
Note that if the OxyGEN
mini
Office receives
BOTH the WISPr-Bandwidth-Max-Up/Down and the
gennet_class attributes, it will honour the gennet_class and ignore the WISPr-Bandwidth-Max-Up/Down
ones.
Note
The OxyGEN miniOffice optionally offers also an embedded Radius server. Please refer
to section
Radius Server
on page 139 for more information.
Gennet s.a.
91
Page 92 / 237
OxyGEN
mini
Office
Administrator’s Guide
Gennet s.a.
92
Page 93 / 237
9
Firewall Menu
The
Firewall
configuration menu provides all the configuration options related to the embedded firewall
of the OxyGEN miniOffice. The following sub-menus are available:
Port Forward
UPnP / NAT-PMP
IP Filters
Web Filters
DMZ Filters
Address Mapping
93
Page 94 / 237
OxyGEN
mini
Office
Administrator’s Guide
Port Forward
The firewall and Network Address Translation (NAT) engine of the OxyGEN miniOffice keeps the private
network (LAN) protected from external threats. It is frequently required, however, to selectively allow
access from the Internet to a host on the local network that runs an application or service. This selective
accessibility of a server on the LAN from the WAN is enabled using the
Port Forward
sub-menu. Each
forwarding rule tells the OxyGEN miniOffice on which computer a service or application is running. The
service or application is defined by its characteristic TCP/UDP port number(s), and whenever traffic is
received on the external (public) IP address with this specific port number as destination, this traffic is
automatically routed to the specified private IP address.
Selecting the
Port Forward
option, a list of the configured port forwarding rules is displayed.
Figure 9.1: Port Forwarding
You can Edit and Delete configured port forwarding rules by clicking on the icons
and
respectively of
Action
column.
To configure a new port forwarding rule, click
Add New
and the
Port Forward Rule
page opens:
1. Select the
Protocol
that will be forwarded. This can be one of the pre-defined services/applications
appearing in the drop-down list or CUSTOM for explicitly defining the forwarded port.
2. In case of CUSTOM protocol selection, specify the
Type
of incoming connection (TCP, UDP or
Both) and the corresponding
Port
number (valid ports are 1-65535).
Port ranges can also be
specified.
3. Specify the Internet
Connection
this new port forwarding rule will apply to.
You can select a
specific Internet connection or ALL to match all Internet connections.
4. Select if incoming connections from all
Hosts
are going to be forwarded (option ALL) or only
connections from a restricted host/network. For a single host, enter its IP address, whereas for a
network use the xxx.xxx.xxx.xxx/yy notation (xxx.xxx.xxx.xxx is the network address and yy is the
length of the mask in bits - see
Appendix B
on page 189).
Gennet s.a.
94
Page 95 / 237
OxyGEN
mini
Office
Administrator’s Guide
Figure 9.2: New Port Forwarding
5. Under the
Forward to
heading, enter the private (LAN) IP address of the internal server in the
Host
entry field. Note that if the desired local network server obtains its IP address from the OxyGEN
miniOffice through DHCP, you can select it from the drop-down list and a static DHCP lease will
also be automatically added (see
Static DHCP Leases
on page 73).
6. Specify if the port must be forwarded unchanged (normal situations) or if the port of the internal
server is different from the public one. Note that this option is only available if a single port is going
to be forwarded and not in the case of a port range.
7. Click
Save
to activate the rule.
Gennet s.a.
95

Rate

4.5 / 5 based on 2 votes.

Popular Gennet-OxyGEN Models

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top