Page 6 / 23 Scroll up to view Page 1 - 5
Chapter 2
Wireless Security Checklist
3
Wireless ADSL2+ Modem Router
Chapter 2:
Wireless Security Checklist
Wireless networks are convenient and easy to install, so
homes with high-speed Internet access are adopting them
at a rapid pace. Because wireless networking operates by
sending information over radio waves, it can be more
vulnerable to intruders than a traditional wired network.
Like signals from your cellular or cordless phones, signals
from your wireless network can also be intercepted. Since
you cannot physically prevent someone from connecting
to your wireless network, you need to take some additional
steps to keep your network secure.
1. Change the default wireless
network name or SSID
Wireless devices have a default wireless network name
or Service Set Identifier (SSID) set by the factory. This is
the name of your wireless network, and can be up to 32
characters in length. Linksys by Cisco wireless products
use
linksys
as the default wireless network name. You
should change the wireless network name to something
unique to distinguish your wireless network from other
wireless networks that may exist around you, but do not
use personal information (such as your Social Security
number) because this information may be available for
anyone to see when browsing for wireless networks.
2. Change the default password
For wireless products such as access points, routers, and
modem routers, you will be asked for a password when
you want to change their settings. These devices have a
default password set by the factory. The default password
is
admin
. Hackers know these defaults and may try to
use them to access your wireless device and change your
network settings. To thwart any unauthorized changes,
customize the device’s password so it will be hard to
guess.
3. Enable MAC address filtering
Linksys by Cisco routers and modem routers give you
the ability to enable Media Access Control (MAC) address
filtering. The MAC address is a unique series of numbers
and letters assigned to every networking device. With
MAC address filtering enabled, wireless network access
is provided solely for wireless devices with specific MAC
addresses. For example, you can specify the MAC address
of each computer in your home so that only those
computers can access your wireless network.
4. Enable encryption
Encryption protects data transmitted over a wireless
network. Wi-Fi Protected Access
(WPA
/WPA2
) and
Wired Equivalency Privacy (WEP) offer different levels of
security for wireless communication.
A
network
encrypted
with
WPA
/WPA2
is
more
secure than a network encrypted with WEP, because
WPA
/WPA2
uses dynamic key encryption. To protect
the information as it passes over the airwaves, you should
enable the highest level of encryption supported by your
network equipment.
WEP is an older encryption standard and may be the
only option available on some older devices that do not
support WPA
.
General Network Security Guidelines
Wireless network security is useless if the underlying
network is not secure.
Password protect all computers on the network and
individually password protect sensitive files.
Change passwords on a regular basis.
Install
anti-virus
software
and
personal
firewall
software.
Disable file sharing (peer-to-peer). Some applications
may open file sharing without your consent and/or
knowledge.
Additional Security Tips
Keep wireless routers, access points, or modem routers
away from exterior walls and windows.
Turn wireless routers, access points, or modem routers
off when they are not being used (at night, during
vacations).
Use strong passphrases that are at least eight characters
in length. Combine letters and numbers to avoid using
standard words that can be found in the dictionary.
WEB:
For more information on wireless security,
visit
www.linksysbycisco.com/security
Page 7 / 23
Chapter 3
Advanced Configuration
4
Wireless ADSL2+ Modem Router
Chapter 3:
Advanced Configuration
After you finish running the Setup Wizard on the Setup
CD-ROM, the device is ready for use. To change the device’s
advanced settings, access the Configuration Utility via a
web browser on a computer connected to the device.
NOTE FOR USERS IN NEW ZEALAND:
Refer to
the Note in
Setup > Basic Setup
,
page 5
for
setup instructions specific to your country.
How to Access the Utility
Launch the web browser on your computer, and enter the
device’s default IP address,
192.168.1.1
, in the
Address
field. Then, press
Enter
.
A login screen appears. Use the default user name and
password,
admin
, unless you changed them when you
ran the Setup Wizard. (You can set a new user name and
password from the Administration tab’s
Management
screen.) Click
OK
to continue.
Login
If you are unable to log in, press the Reset button on the
back panel for at least 5 seconds, then wait for the device
to reset and try again.
Using the Utility
Immediately after login, the
Basic Setup
screen appears.
Near the top of the screen is a bar with selectable tabs.
Use these tabs to navigate within the Utility. The
primary
tabs
indicate the Utility’s main configuration categories.
Each primary tab has one or more
secondary tabs
that
provide access to the primary tab’s configuration screens.
Setup
Wireless Storage
Security
Access
Restrictions
Applications &
Gaming
Administration
Status
Basic Setup
Ethernet
DDNS
MAC Address Clone
Advanced Routing
Navigation Tabs
To access a screen, click the appropriate primary tab,
then click the appropriate secondary tab. The screen will
appear, with its primary and secondary tabs highlighted.
List of Screens in the Utility
The screens are organized hierarchically as listed below.
(Some screens may not apply to all models.)
Setup Tab
Setup > Basic Setup
Setup > Ethernet
Setup > DDNS
Setup > MAC Address Clone
Setup > Advanced Routing
Wireless Tab
Wireless > Basic Wireless Settings
Wireless > Wireless Security
Wireless > Wireless MAC Filter
Wireless > Advanced Wireless Settings
Storage Tab (WAG320N Only)
Storage > Disk Management
Storage > Shared Folder
Storage > Administration
Storage > Media Server
Security Tab
Security > Firewall
Security > VPN Passthrough
Access Restrictions Tab
Access Restrictions > Internet Access Policy
Applications & Gaming Tab
Applications & Gaming > Single Port Forwarding
Applications & Gaming > Port Range Forwarding
Applications & Gaming > Port Range Triggering
Applications & Gaming > DMZ
Applications & Gaming > QoS
Administration Tab
Administration > Management
Administration > Reporting
Administration > Diagnostics
Administration > Back Up & Restore
Administration > Factory Defaults
Administration > Firmware Upgrade
Administration > Language
Status Tab
Status > Modem Router
Status > Local Network
Status > Wireless Network
Status > DSL Connection
Primary Tabs
Secondary Tabs
Page 8 / 23
Chapter 3
Advanced Configuration
5
Wireless ADSL2+ Modem Router
Setup Tab
The Setup tab provides the device’s basic setup functions.
For detailed information on the Setup tab, refer to the
Utility’s online help pages.
Setup > Basic Setup
The
Basic Setup
screen allows you to change the device’s
general
settings.
The
following
connection
types
(encapsulations) are available:
RFC 2364 PPPoA
RFC 2516 PPPoE
RFC 2684 Routed
IPoA
RFC 2684 Bridged - Dynamic IP Address
RFC 2684 Bridged - Static IP Address
Bridge Mode Only
NOTE FOR USERS IN NEW ZEALAND:
To set up
the device, follow these
instructions:
1. Access the
Setup > Basic Setup
screen.
2. Select
RFC
2364
PPPoA
from
the
Encapsulation drop-down menu.
3. For the Virtual Circuit ID, enter
0
for the VPI
and
100
for the VCI.
4. Select
VC
for Multiplexing.
5. Select
Multimode
from the DSL Modulation
drop-down menu.
6. Enter your User Name and Password details
from your ISP.
7. Click
Save Settings
.
Setup > Ethernet
The
Ethernet
screen allows you to configure the device’s
Ethernet settings. It also allows you to set up the first
Ethernet port as a WAN port.
Setup > DDNS
The
DDNS
screen allows you to assign a fixed host and
domain name to a network computer that has been
assigned a dynamic Internet IP address. This is useful
when you are hosting your own website, FTP server, or
other server behind the device.
Setup > MAC Address Clone
Some service providers require you to register a MAC
address in order to access the Internet. The
MAC Address
Clone
screen lets you use the MAC address of a device that
has already been registered with your service provider, by
copying that MAC address to the device.
Setup > Advanced Routing
The
Advanced Routing
screen allows you to configure the
device’s advanced routing functions, such as operating
mode, dynamic mode, and static routing.
Wireless Tab
The Wireless tab allows you to configure the device’s
wireless functions.
For detailed information on the Wireless tab, refer to the
Utility’s online help pages.
Wireless > Basic Wireless Settings
The
Basic Wireless Settings
screen allows you to set up a
network with Wi-Fi Protected Setup™, change the radio
band, select the network mode, change the wireless
network name (SSID), change the wireless channel and
disable the SSID broadcast.
Wireless > Wireless Security
The
Wireless Security
screen allows you to configure the
security of your wireless network(s). It allows you to select
from a number of security modes, such as WPA2.
Wireless > Wireless MAC Filter
The
Wireless MAC Filter
screen allows you to control (block
or allow) Internet access by individual devices on your
wireless network by specifying their MAC addresses.
Wireless > Advanced Wireless Settings
The
Advanced Wireless Settings
screen allows you to
configure the device’s advanced wireless functions.
Storage Tab (WAG320N Only)
The Storage tab allows you to configure the settings for an
optional external USB storage device, such as a flash drive
or hard disk drive.
For detailed information on the Storage tab, refer to the
Utility’s online help pages.
Storage > Disk Management
The
Disk Management
screen displays information on an
attached USB storage device, and allows you to perform
basic management functions on the device. It also
provides information on the attached USB disk, allows for
a blank disk to be formatted, and enables safe removal of
the attached disk.
Storage > Shared Folder
The
Shared Folder
screen allows you to manage the shared
folders on an external USB storage device. A shared folder
Page 9 / 23
Chapter 3
Advanced Configuration
6
Wireless ADSL2+ Modem Router
is a directory on the device that a user can access through
the network.
Storage > Administration
The
Administration
screen allows you to configure basic
storage settings and manage the device’s users.
Storage > Media Server
The
Media Server
screen allows you to configure the
device’s built-in media server, and to select the folders to
scan for content.
Security Tab
The Security tab allows you to enhance the security of
your network.
For detailed information on the Security tab, refer to the
Utility’s online help pages.
Security > Firewall
The
Firewall
screen allows you to configure a firewall that
can filter out various types of unwanted traffic on the
device’s local network.
Security > VPN Passthrough
The
VPN Passthrough
screen allows you to configure the
device’s VPN passthrough feature. This feature lets VPN
tunnels using the IPSec, L2TP, or PPTP protocols to pass
through the device’s firewall.
Access Restrictions Tab
The Access Restrictions tab allows you to configure
the Internet access restrictions for each device in your
network.
For detailed information on the Access Restrictions tab,
refer to the Utility’s online help pages.
Access Restrictions > Internet Access Policy
The
Internet Access Policy
screen allows you to define
policies that are used to block or allow specific kinds
of Internet usage and traffic, such as Internet access,
designated applications, websites, and inbound traffic
during specific days and times, and for a specified list of
devices in your network.
Applications & Gaming Tab
The Applications & Gaming tab allows you to configure
functions such as port forwarding and quality of service
that may be necessary for special applications such as
hosting web servers, ftp servers, and e-mail servers on on
your network, or other specialized internet applications
such as videoconferencing or online gaming.
For detailed information on the Applications & Gaming
tab, refer to the Utility’s online help pages.
Applications & Gaming > Single Port Forwarding
The
Single Port Forwarding
screen allows you to set up
port forwarding for a single port. You should assign static
IP addresses to the destination computers before you use
this feature.
Applications & Gaming > Port Range Forwarding
The
Port Range Forwarding
screen allows you to set up
port forwarding for a range of ports. You should assign
static IP addresses to the destination computers before
you use this feature.
Applications & Gaming > Port Range Triggering
The
Port Range Triggering
screen allows you to set up port
triggering. When port triggering is configured, the device
watches for specified port numbers in outgoing data.
When a match is found, the device records the sending
computer’s IP address so that when the requested data
returns, it can be sent to the proper computer.
Applications & Gaming > DMZ
The
DMZ
screen allows you to expose one network user
to the Internet for use of a special-purpose service such
as Internet gaming or video conferencing. DMZ hosting
forwards all the ports at the same time to one computer.
You should assign static IP addresses to the destination
computers before you use this feature.
Applications & Gaming > QoS
The
QoS
screen allows you to specify priorities for different
types of traffic. Lower priority traffic will be slowed down
to allow greater throughput or less delay for high priority
traffic.
Administration Tab
The Administration tab allows you to configure the device’s
administrative functions.
For detailed information on the Administration tab, refer
to the Utility’s online help pages.
Administration > Management
The
Management
screen allows you to manage specific
functions for access and security.
Page 10 / 23
Chapter 3
Advanced Configuration
7
Wireless ADSL2+ Modem Router
NOTE ON CISCO WEB ASSISTANT OPTION
(not on all models):
If you see an “error code
404” message (indicating that you entered an
invalid web address), the Cisco Web Assistant
will appear and automatically run a search
based on the keywords in the web address. This
feature can be enabled or disabled from this
screen.
NOTE ON TREND MICRO OPTION (not on all
models):
Trend Micro ProtectLink Gateway
is a hosted security service that stops spam
and filters URLS to prevent unwanted content
from passing through your router. The Email
Protection is the hosted messaging security
solution provided by Trend Micro InterScan
Messaging Hosted Security (IMHS). This feature
can be enabled or disabled from this screen.
Administration > Reporting
The
Reporting
screen allows you to configure system event
logging and to configure sending of e-mail alerts when a
Denial of Service attack is detected.
Administration > Diagnostics
The
Diagnostics
screen allows you to perform a ping test
to check the status of your Internet connection.
Administration > Back Up & Restore
The
Back Up & Restore
screen allows you to back up and
restore the configuration settings of your device.
Administration > Factory Defaults
The
Factory Defaults
screen allows you to restore the
factory defaults of the device. All savings you have saved
will be lost
NOTE:
Restoring the factory defaults causes all
settings you have previously saved to be lost.
Administration > Firmware Upgrade
The
Firmware Upgrade
screen allows you to upgrade the
device’s firmware.
Administration > Language
The
Language
screen allows you to select an available
language for the utility.
Status Tab
The Status tab allows you to display status information.
For detailed information on the Status tab, refer to the
Utility’s online help pages.
Status > Modem Router
The
Modem Router
screen displays information about the
device and its current settings. The on-screen information
will vary depending on the Internet Connection Type you
use.
Status > Local Network
The
Local Network
screen displays the status of your Local
Area Network.
Status > Wireless Network
The
Wireless
Network
screen
displays
some
basic
information about the wireless network of the device.
Status > DSL Connection
The
DSL Connection
screen displays the status of your DSL
connection.

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top