Wireless Networking Gateway IDU
Antenna
Wall mounting kit
Power Transformer
Mains power cord
Additional Installation Requirements
Ethernet cable(s) for connecting to the end-user’s data equipment.
Mains plug adapter or termination plug (if the power plug on the
supplied AC power cord does not fit local power outlets).
刪除: 3
刪除: 3
刪除: Operation and
Administration
Portable PC with an Ethernet card and an Ethernet cable for
configuring the Wireless Networking Gateway IDU parameters using
a web browser, and for configuring the SU-ODU parameters using
Telnet.
Other installation tools and materials (a drill for wall-mounting the
unit, means for securing cables to walls, etc.)
錯誤! 尚未定義樣式。
2-2
刪除: Installation
錯誤! 尚未定義樣式。
Panels Layout and Components
Front Panel
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
Front Panel LEDs
LED Function Status Description
POWER
WLAN
USB
STATUS
Power
Indication
Wireless LAN
Activity
USB Port
Activity
System
Status
Figure 2
Table 2-1: Front Panel LEDs
-1: Front Panel
On Power is available.
Blinking
On The USB port is linked.
Blinking
Blinking The unit is functioning properly.
Sending or receiving data via
wireless LAN
The USB port is sending or
receiving data.
刪除: 2
刪除: 2
Wireless Networking Gateway System Manual
2-3
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
LED Function Status Description
刪除: 3
刪除: 3
刪除: Operation and
Administration
LAN LINK/ACT
1~4
LAN SPEED 10/100
1~4
ODU LINK/ACT
ODU 10/100
ODU WLINK
LAN Status
LAN Port
Data Rate
ODU Port
Activity
ODU Port
Data Rate
ODU Wireless
Link Status
On
Blinking
On
Off
On
Blinking
On Data rate is 100 Mbps
Off Data rate is 10 Mbps
On The ODU is connected with an AU
An active station is connected to
the corresponding LAN port.
The corresponding LAN port is
sending or receiving data.
Data rate is 100 Mbps on the
corresponding LAN port.
Data rate is 10 Mbps on the
corresponding LAN port.
The ODU port is connected to the
ODU.
The ODU port is sending or
receiving data.
RESET ROUTER Button
Press momentarily the recessed button to reset the Wireless Networking
Gateway IDU.
Resetting the IDU to Factory Defaults
Press the RESET ROUTER button for 5 seconds at least, until the
STATUS LED flashes 5 times. After releasing the button, the unit will
resume operation with the factory default configuration.
錯誤! 尚未定義樣式。
刪除: Installation
2-4
錯誤! 尚未定義樣式。
Rear Panel Components
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
Figure 2
-2: Rear Panel (without antenna)
Rear Panel Connectors
Table 2-2: Rear Panel Connectors
Connector Description
POWER DC Power Inlet from Power Transformer
ODU Connection to ODU. Carries Ethernet, Power (55 VDC)
and signaling.
Port 1-4 LAN ports for networked computers and other devices.
USB USB Host Port for a USB printer.
Antenna (not marked) An SMA connector for the WLAN antenna
CAUTION
Do not connect data equipment to the ODU port. The ODU port supplies DC power to
the ODU, and this may harm other equip m ent connected to it.
刪除: 2
刪除: 2
RESET ODU Button
Press momentarily the recessed button to reset the ODU.
Wireless Networking Gateway System Manual
2-5
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Installation
The unit can be placed on a desktop or a shelf. Alternatively, it may be
wall-mounted. The drilling template included with the unit can be used
to simplify the wall installation process.
For optimal performance, place the Wireless Networking Gateway in the
center of your office (or your home), in a location that is away from any
potential source of interference, such as a metal wall or microwave oven.
This location must be close to a mains outlet and network connections.
To install the Wireless Networking Gateway IDU:
1. Assemble an RJ-45 connector with a protective cover on the indoor
end of the IDU-ODU cable. The length of the IDU-ODU cable should
not exceed 100m. Refer to the relevant System Manual for
instructions on preparing the cable.
2. Connect the IDU-ODU cable to the ODU connector located on the
rear panel.
刪除: 3
刪除: 3
刪除: Operation and
Administration
3. Connect the power cord of the transformer to the unit’s POWER
socket, located on the rear panel. Connect the Mains power cord to
the power transformer and to the AC mains.
NOTE
The color codes of the power cable are as follows:
Brown Phase ~
Blue Neutral 0
Yellow/GreenGround
4. Once power is connected, the unit will automatically enter the self-
test phase. When it is in the self-test phase, the STATUS LED will be
lighted ON for about 10 seconds, and then it will blink 3 times,
indicating that the self-test operation has finished. Finally, the
STATUS LED will blink continuously one blink per second,
indicating that the unit is functioning properly.
5. Connect a PC to one of the LAN ports and configure the basic
parameters of the SU-ODU. Align the antenna of the ODU. For more
information refer to the applicable sections of the relevant System
Manual.
6. Use a web browser to configure the parameters of the Wireless
Networking Gateway IDU. For details refer to Chapter 3.
刪除: Installation
錯誤! 尚未定義樣式。
2-6
錯誤! 尚未定義樣式。
7. Connect the 10/100Base-T Ethernet connectors to the data
equipment. The length of the Ethernet cables should not exceed
100m.
8. If a printer is to be used, connect it to the USB port using a
standard USB cable. To configure the Print Server on your
computer(s), refer to Appendix A - Print Server
.
9. Configure the network settings of the computers for proper
operation with the Wireless Networking Gateway. The default IP
address of the Wireless Networking Gateway is 192.168.123.254,
and the default subnet mask is 255.255.255.0. Refer to Appendix B
- TCP/IP Configuration for Windows 95/98.
10. To verify data connectivity, from the end-user’s PC or from a
portable PC connected to the unit, try to connect to the Internet.
11. Verify proper operation using the LED indicators (see Table 2-1
on
page 2-3).
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
刪除: Table 2-1
Wireless Networking Gateway System Manual
2-7
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
This page is intentionally left blank.
刪除: 3
刪除: 3
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
2-8
刪除: Installation
3
3
CChhaapptteerr 33 --
Operation and
Administration
In this Chapter
Start-up and Log in on page 3-2
Status on page 3-7
Wizard on page 3-9
Basic Setting on page 3-11
Security Setting on page 3-30
NAT Setting on page 3-41
Advanced Settings on page 3-45
Toolbox on page 3-56
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Introduction
The Wireless Networking Gateway IDU can be configured using the
following methods:
The Web Configuration Server
An .cfg-file loaded into the unit from the web configuration server or
TFTP.
SNMP
This document describes the configuration using the Web Configuration
Server.
刪除: 3
刪除: 3
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
3-2
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
Accessing the Web Configuration
Server
Follow the steps below to access the Web Configuration Server:
1. Connect the unit to the AC mains.
2. If a DHCP server is being used, the unit may request an IP address
during power up (depending on the .cfg file in the unit).
3. If fixed IP address should be used, proceed as follows:
¾ Unplug the power supply cable from the unit
¾ Press the Reset Router button on the front panel.
¾ Reconnect the power supply cable and keep the Reset Router
button pressed for at least 5 seconds or until the unit
reboots (all LEDs at the front panel will flash)
¾ Release the Reset Router button
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
After performing this sequence the Wireless Networking Gateway
will be at "factory default" status and have the IP address
192.168.254.253 and subnet mask 255.255.255.0.
When connecting from WAN, make sure that a remote administrator
is enabled (see Security Setting
and enter the WAN IP address specified in the System Status
window (see Status
4. Open a web browser (Internet Explorer or Netscape Communicator).
NOTE
Be sure to disable the proxy on your Web browser or add the IP address of the product
into the exceptions.
5. Enter the IP address of the unit in the Address (IE) or Location
(Netscape) field and click Enter.
6. If the Web Configuration Server is password protected, you will be
prompted to enter your password in order to login to the system.
The default password is .
7. The Web Configuration Server main view appears on the screen.
> Miscellaneous Items on page 3-39),
on page 3-7).
Wireless Networking Gateway System Manual
3-3
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Log in and Log out
After connection is established, the networking gateway web user
interface appears. There are two entry levels: for general users and for
system administrators. The menus and screens vary depending on entry
level. Menus and parameters that are available for Administrator entry
刪除: 3
刪除: 3
刪除: Operation and
Administration
level only, are marked in this manual with
To log in as an administrator, enter the system password (the factory
setting is "private") in the System Password field and click the Log in
button.
NOTE
The default passwords for the two access lev els are:
For Administrators: private
For Users: public
Figure 3: Log In Window
After successful Log in, the Networking Gateway Main Window appears.
錯誤! 尚未定義樣式。
3-4
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
Figure 4: Networking Gateway Main Window
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
The Menu List
The Web Configuration Server view consists of a number of menu links
(to the left). Clicking on each of them expands the menu node and
displays the selected page with the applicable content (configurable
parameters/options or status information) in the main area.
Control Buttons
Most configuration pages include the some of the following buttons:
NOTE
Some control buttons may be disabled for user entry level (public password)
Help – Displays a help screen for the specific window.
Refresh – Refreshes the displayed information.
Back – Returns to the previous screen.
Undo – Recovers the original settings.
Save – Saves any changes made to the configuration. Most changes
require rebooting the system for them to take effect.
Cancel – Clears unsaved changes to the configuration.
Wireless Networking Gateway System Manual
3-5
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Clients List - TBD
Reboot
Virtual Computers - Enables to use the original NAT feature, and to
set up the one-to-one mapping of multiple global IP address and
local IP address.
刪除: 3
刪除: 3
刪除: Operation and
Administration
Figure 5: Virtual Computers
¾ Global IP - Enter the global IP address assigned by your ISP.
¾ Local IP - Enter the local IP address of your LAN PC
corresponding to the global IP address.
¾ Enable - Check this item to enable the Virtual Computer
feature.
錯誤! 尚未定義樣式。
3-6
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
Status
The Status window appears in the main window upon successful log in.
The window can be accessed at any time by clicking on the Status
menu on the menu list.
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
Figure 6: System Status
The Status window provides information for observing the product's
working status:
Remaining Lease Time - A counter displaying the remaining time (in
hh:mm:ss) in which the user will be allocated the specific IP address.
When the lease time expires, a new IP address will be automatically
allocated, or the lease will be automatically renewed, depending on
the settings.
¾ Renew – Click to reset the Lease Time.
IP Address – The WAN IP address. (The default is 192.168.254.253)
¾ Release – Click to release the IP address.
¾ Disconnect/Connect – When in PPPoE or PPTP mode, click
Disconnect to terminate session, or Connect to initiate a
session.
Subnet Mask – The Subnet mask of the device. (The default is
255.255.255.0)
Gateway – The Gateway IP address.
Domain Name Server – The server's domain name
Wireless Networking Gateway System Manual
3-7
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Peripheral Status: The USB Printer status: Not ready, when no
printer is available. Ready, when a printer is connected and ready to
print.
Traffic Statistics- Enables to monitor inbound and outbound
packets for WAN, LAN and wireless.
In addition, the Status window includes the following control button:
刪除: 3
刪除: 3
刪除: Operation and
Administration
View Log – opens the log file for viewing. See View Log
on page 3-56.
錯誤! 尚未定義樣式。
3-8
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
Wizard
The Setup Wizard will guide you through the basic configuration
procedure (recommended for most users).
Figure 7: Setup Wizard
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
1.Click on Next. The Select WAN Type window appears.
Figure 8: Setup Wizard - Select WAN Type
2. Follow the instructions on screen. Refer to Primary Setup – WAN
Type on page 3-11 for details on each parameter.
You can click Back at any time to return to previous screens and
change your settings.
Wireless Networking Gateway System Manual
3-9
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
When initial setting is complete, the following window appears:
Figure 9: Setup Wizard - Configuration Completed
3. The configurations will be effective only after rebooting your
computer. Click on Reboot to restart your computer.
刪除: 3
刪除: 3
刪除: Operation and
Administration
For more advance configurations, see details on the specific windows,
below.
錯誤! 尚未定義樣式。
3-10
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
Basic Setting
The Basic Setting window allows you to configure the settings for WAN,
LAN, and Wireless and to change the password.
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
WAN Setup
Click on WAN Setup from the Basic Setting menu on the menu list. The
Primary Setup window appears.
Figure 10: Basic Setting
Wireless Networking Gateway System Manual
3-11
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Figure 11: WAN Setup/Primary Setup
From the WAN Setup window you can:
Set the WAN type – allows you to select the WAN connection type of
your ISP.
刪除: 3
刪除: 3
刪除: Operation and
Administration
Enter the Host Name (optional)
Set WAN's MAC Address
Enable/Disable Renew IP Forever
NAT – Enable/Disable - When disabled, the gateway functions as a
regular router as opposed to a NAT router. This option is available
in the Primary Setup window for all WAN types.
NOTE
The Reboot button is not available at first entry to the Primary Setup window and
appears only after saving your changes.
For client entry level (public password), the parameter fields in all WAN type
screens are disabled (for display onl y).
IMPORTANT
Changes to the Primary Setup window will take effect only after rebooting the system.
The default WAN type is Dynamic IP Address with Road Runner
Session Management. However, you can change the WAN type as
follows:
To select a different WAN type:
錯誤! 尚未定義樣式。
3-12
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
1.Click Change. The Choose WAN Type window opens.
Figure 12: Choose WAN Type
2. Select one of the following types:
¾ Static IP Address: The ISP provides you with a static IP
address.
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
¾ Dynamic IP Address: Automatically obtain an IP address
from the ISP.
¾ Dynamic IP Address with Road Runner Session Management.
(e.g. Telstra BigPond) (default)
¾ PPP over Ethernet: Some ISPs require the use of PPPoE to
connect to their services.
¾ PPTP: Some ISPs require the use of PPTP to connect to their
services.
For each WAN type selected, a different Primary Setup window appears,
as follows. You can change the WAN type by clicking on Change and
selecting a different WAN type.
Wireless Networking Gateway System Manual
3-13
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Static IP Address
Figure 13: Primary Setup - Static IP Address
Enter the settings provided by your ISP for WAN IP Address, Subnet
Mask, Gateway, Primary and Secondary DNS.
刪除: 3
刪除: 3
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
3-14
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
Dynamic IP Address
Figure 14: Primary Setup - Dynamic IP Address
Host Name: optional. Required by some ISPs, for example, @Home.
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
WAN's MAC Address – The gateway's pre-configured MAC Address.
¾ Clone MAC – Click to replace the Gateway's MAC Address
with the PC's MAC Address.
¾ Restore MAC – When Clone MAC is activated, the button
changes to Restore MAC, to enable to restore the unit's pre-
configured MAC Address.
Renew IP Forever: When enabled, this feature will automatically
renew your IP address when the lease time expires, even if the
system is idle.
Wireless Networking Gateway System Manual
3-15
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Dynamic IP Address with Road Runner Session
Management
Figure 15: Primary Setup - Dynamic IP Address with Road Runner Session
Management
刪除: 3
刪除: 3
刪除: Operation and
Administration
Account – The account provided by your ISP.
Password – The password provided by your ISP. If you do not want
to change the password, leave empty.
Login Server – The Login Server (optional). Leave empty if you want
the default server.
Renew IP Forever: When enabled, this feature will automatically
renew your IP address when the lease time expires, even if the
system is idle.
刪除: Renew IP Forever:
When enabled, this feature
will automatically renew
your IP address when the
lease time expires, even if
the system is idle.
錯誤! 尚未定義樣式。
3-16
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
PPP over Ethernet
Some ISPs require the use of PPPoE to connect to their services. If this
is the case, click Change to select PPPoE as your WAN type. The
Primary Setup window display changes to reflect the parameters for
PPPoE.
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
Figure 16: Primary Setup - PPPoE
PPPoE Account – The account assigned to you by your ISP.
PPPoE Password: the password assigned to you by your ISP. This
field appears blank. If you don't want to change the password, leave
it empty.
Primary DNS – The DNS provided by your ISP. To use a specific DNS,
enter a specific address (optional).
Secondary DNS – The backup DNS provided by your ISP. (optional)
Maximum Idle Time - The amount of time of inactivity before
disconnecting your PPPoE session. To disable this feature, set this
parameter to 0 seconds, or enable Auto-reconnect.
Connection Control – Authentication for IP allocation. Select one of
the following options:
¾ Connect-on-demand – An IP address is automatically
allocated whenever the user attempts to make a connection.
¾ Auto reconnect(Always-on) – The system automatically
connects to the ISP after restart or after connection is
dropped.
Wireless Networking Gateway System Manual
3-17
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
¾ Manually – The user manually performs the connection.
Maximum Transmission Unit (MTU) - Most ISPs provide an MTU
value to users. The most common MTU value is 1492 bytes.
More >> - Click to display the following parameters:
¾ PPPoE Service Name (optional) - Directs to a PPPoE server.
¾ Assigned IP Address (optional) – Directs to a specific server.
刪除: 3
刪除: 3
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
3-18
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
PPTP
Some ISPs require the use of PPTP to connect to their services.
Figure 17: Primary Setup - PPTP
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
IP Mode – select one of the following options:
¾ Dynamic IP Address (this is the default setting)
¾ Static IP Address
My IP Address – The private IP address assigned by your ISP.
My Subnet Mask - The private subnet mask assigned by your ISP.
WAN Gateway IP – The WAN Gateway IP address.
Server IP Address/Name: the IP address/Name of the PPTP server.
PPTP Account – The account assigned by your ISP.
PPTP Password - The password assigned by your ISP. If you do not
want to change the password, leave this field empty.
Connection ID - Enter the connection ID if your ISP requires it
(optional).
Maximum Idle Time - The amount of time of inactivity before
disconnecting your PPTP session. To disable this feature, set this
parameter to 0 seconds, or enable Auto-reconnect.
Connection Control – Authentication for IP allocation. Select one of
the following options:
格式化: 項目符號及編號
Wireless Networking Gateway System Manual
3-19
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
¾ Connect-on-demand – An IP address is automatically
allocated whenever the user attempts to make a connection.
¾ Auto reconnect(Always-on) – The system automatically
connects to the ISP after restart or after connection is
dropped.
¾ Manually – The user manually performs the connection.
LAN Setup
Select Basic Setting > LAN Setup submenu on the menu list. The LAN
Setup window opens.
刪除: 3
刪除: 3
刪除: Operation and
Administration
刪除: Authentication for IP
allocation. Select one of the
following options:
<#>Connect-on-demand –
An IP address is
automatically allocated
whenever the user attempts
to make a connection.
<#>Auto reconnect(Alwayson) – The system
automatically connects to
the ISP after restart or after
connection is dropped.
Manually – The user
manually performs the
connection.
Figure 18: LAN Setup
Enter the following parameters:
LAN IP Address – Sets the local IP address of the device. The users
on your network must use this LAN IP address as their default
gateway. You can change it as necessary.
LAN Subnet Mask – Sets the subnet mask to the LAN IP address.
DHCP Server – Enable/Disable to turn off this service. When
enabled, the LAN Setup window display changes (indicated by the
red icon), and the following parameters are displayed (see Figure 19):
¾ Range of IP addresses Pool – Specify the starting and ending
address for DHCP clients.
¾ Domain suffix – Specify the domain suffix for DHCP clients.
錯誤! 尚未定義樣式。
3-20
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
¾ Primary DNS – Specify the primary DNS for DHCP clients.
¾ Secondary DNS – Specify the secondary DNS for DHCP
clients.
¾ Primary WINS – Specify the primary WINS address for DHCP
clients.
¾ Secondary WINS – Specify the secondary WINS address for
DHCP clients.
¾ Lease Time – The time set (in minutes) for IP allocation.
DHCP Proxy – This parameter is available only when DHCP Server is
disabled.
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
Figure 19: LAN Setup - DHCP Enabled
In addition, the LAN Setup window includes the following control
buttons:
Clients List – Opens a list of the current mapping of the IP and MAC
address for each DHCP client.
Wireless Networking Gateway System Manual
3-21
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Figure 20: DHCP Clients List
From the DHCP Clients List window you can:
刪除: 3
刪除: 3
刪除: Operation and
Administration
¾ Wake up – TBD
¾ Delete – Delete the selected clients.
¾ Fixed Mapping – Opens the MAC Address Control window for
assigning a specific IP address to the specified MAC address
for DHCP clients (see MAC Address Control
on page 3-25 for
further details).
錯誤! 尚未定義樣式。
3-22
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
Figure 21: MAC Address Control
Wireless Setting
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
Wireless settings allow you to set the wireless configuration items.
CAUTION
Changing any of the parameters ma y cause loss of wireless link connectivity to the unit
if the settings do not match the settings on the User's PC.
Wireless – Enable/Disable – Check the Enable box to enable this
service. The default setting is "Enable".
Figure 22: Wireless Setting
Wireless Networking Gateway System Manual
3-23
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Network ID (SSID): Network ID is used for identifying the Wireless
LAN (WLAN). Client stations can roam freely over this product and
other Access Points that have the same Network ID. (The factory
setting is "default".)
Channel: The radio channel number. The permissible channels
depend on the Regulatory Domain.
Security: Select the data privacy algorithm you want to protect your
data when being transferred from one station to another. The
available security protocols are:
¾ None – No encryption is applied. (default)
¾ WEP (Wired Equivalent Privacy) – Encrypts frames
transmitted through a wireless module using a pre-entered
WEP key. You can configure 4 key sets and select one to
apply as follows:
WEP 64 bit - 10 hexadecimal digits
WEP 126 bit – 26 hexadecimal digits
刪除: 3
刪除: 3
刪除: Operation and
Administration
WEP 258 bit – 58 hexadecimal digits
¾ 802.1x – When enabled, the wireless user must be
authenticated before it is allowed to use the network services.
One implementation of 802.1x (the most common one) is
through a RADIUS server on your LAN, containing an
authentication database.
Encryption Key Length – Select either 64 or 128 bits for
the encryption key.
RADIUS Server IP – The 802.1x server's IP address.
RADIUS Port – The 802.1x server's service port.
RADIUS Shared Key – Key value shared by the RADIUS
server and the networking gateway. The key value is
consistent with the one in the RADIUS server.
¾ WPA-PSK – Accepts WPA clients only. Manually enter a pre-
share key (encryption key) as follows:
Pre-share key mode: ASCII or HEX can be selected.
Pre share key: 32 ASCII characters or 64 hexadecimal
digits pre-share key (encryption key).
錯誤! 尚未定義樣式。
3-24
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
¾ WPA (Wi-Fi Protected Access) – improves data protection and
implements access control to Wireless LAN systems. Frames
transmitted through a wireless module are encrypted using a
Pre-share key (PSK) or a key received from the RADIUS
server.
RADIUS Server IP – The 802.1x server's IP address.
RADIUS Port – The 802.1x server's service port.
RADIUS Shared Key – Key value shared by the RADIUS
server and the networking gateway. The key value is
consistent with the one in the RADIUS server.
IMPORTANT
If you enable the 802.1x or WPA feature, you must have a RADIUS server available.
Advanced Wireless Setting
Clicking the Advanced Wireless Setting button that appears in the
Wireless Setting window opens the Advanced Wireless Setting window.
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
格式化: 項目符號及編號
刪除: <#>RADIUS Server
IP – The 802.1x server's
IP address.
<#>RADIUS Port – The
802.1x server's service
port.
<#>RADIUS Shared Key –
Key value shared by the
RADIUS server and the
networking gateway. The
key value is consistent
with the one in the
RADIUS server.
Figure 23: Advanced Wireless Setting
Enter the following parameters:
Beacon Interval – Specify the intervals (in milliseconds) between
beacons (the range is 1~1000 milliseconds, the default is 100
milliseconds).
Wireless Networking Gateway System Manual
3-25
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
RTS Threshold – Specify the packet size above which a Request To
Send will be performed (the range is 256~2432, the default is 2432).
Fragmentation Threshold – Specify the packet size above which
fragmentation will be performed (the range is 256~2346 even
numbers only, the default is 2346).
DTIM Interval – [TBD]
Wireless Mode – The wireless mode supported: 802.11b, 802.11g, or
both.
TX Rates – Select the transmission rate from the dropdown list.
Preamble Type – Select short/long or automatic preamble to be
assigned to each packet.
Authentication Type – [TBD]
SSID Broadcast – [TBD what is SSID?] Enable/Disable broadcasting
the network's ID.
Antenna Transmit Power – Select the antenna's transmission power
from the dropdown list.
刪除: 3
刪除: 3
刪除: Operation and
Administration
MAC Address Control
MAC Address Control allows you to assign different access rights for
different users and to assign a fixed IP address to a specific MAC
address.
NOTE
All the settings in this page will t ake effect only when MAC Address Control is set to
"Enable".
錯誤! 尚未定義樣式。
3-26
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
MAC Address Control – Check "Enable" to enable the MAC Address
Control feature.
Connection control – Check the "Connection control" check box to
enable controlling which wired and wireless clients can connect to
this device. If a client is denied the connection to this device, he will
not be able to access the Internet either. Select allow/deny to allow
or deny clients whose MAC addresses are not in the "Control table"
(see below) to connect to this device. ("deny" is the default setting.)
A wired client who is allowed to connect to the device has full access
to the Internet and to network resources. When denied the
connection to the device, he can communicate with other clients on
the wired LAN, but cannot connect to the Internet, use the Print
Server function, communicate with clients on the wireless LAN, or
use the Web configuration.
Association control – "Association" refers to the exchanging of
information between wireless clients and the device to establish a
link between them. A wireless client is able to transmit and receive
data to the device only after successful association. Check
"Association control" check box to control which wireless clients can
associate to the wireless LAN. If a client is denied the association to
the wireless LAN, he will not be able to send or receive any data via
this device. Select allow/deny to allow or deny clients whose MAC
addresses are not in the "Control table" to associate to the wireless
LAN.
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
A wireless client who is allowed both to associate to the wireless
LAN and to connect to the device has full access to the Internet and
to network resources.
When allowed to associate to the wireless LAN, but denied to
connect to the device, he can communicate with other clients on the
LAN (wired and wireless), but cannot connect to the Internet, use
the Print Server function, or use the Web configuration.
When denied to associate to the wireless LAN, the client cannot
communicate with other clients on the LAN (wired or wireless),
connect to the internet, use the Print Server function, or use the
Web configuration. [TBD – provide a summary table]
NOTE
Association control does not affect wired clients.
Wireless Networking Gateway System Manual
3-27
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Control table - Each row in the control table indicates the MAC
address and the mapped IP address of a single client. The table
shows the following parameters:
¾ MAC Address – The MAC address of a specific client.
¾ IP Address – The expected IP address of the corresponding
client. Leave empty if you do not want to specify an IP
address for the corresponding client.
¾ C - When "Connection control" is checked, checking "C" will
allow/deny (depending on the connection control setting) the
corresponding client to connect to this device.
¾ A - When "Association control" is checked, checking "A" will
allow/deny (depending on the association control setting) the
corresponding client to associate to the wireless LAN.
DHCP clients Combo box – Facilitates the process of entering the
MAC address.
刪除: 3
刪除: 3
刪除: Operation and
Administration
Select a specific client in the "DHCP clients" Combo box and click on
Copy to to copy the MAC address of the selected client to the
selected ID in the "ID" Combo box
The control table is divided into several pages. Use the << Previous
page and Next Page >> buttons to jump to a different page.
Change Password
The Change Password window allows you to change the system
password. For security reasons, it is strongly recommended that you do
so.
To access change password:
1. Select Basic Setting > Change Password submenu on the menu list.
The Change Password window opens.
錯誤! 尚未定義樣式。
3-28
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
Figure 24: Change Password
2. Type in the old password in the Old Password box.
3. Type in the new password in the New Password box.
4. Re-type the new password in the Reconfirm box.
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
5. Click Save to save the new password(s).
Follow this procedure for the Administrator Password level, for the User
Password level, or for both password levels.
Wireless Networking Gateway System Manual
3-29
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Security Setting
Click on the Security Setting menu on the menu list to display the
submenus and the Security Setting window.
Figure 25: Security Setting Window
刪除: 3
刪除: 3
刪除: Operation and
Administration
MAC Control
MAC Address Control allows you to assign different access rights for
different users and to assign a fixed IP address to a specific MAC
address. See MAC Address Control on page 3-26.
Packet Filters
Packet Filter enables you to control which packets are allowed to pass
through the networking gateway. When selecting the Packet Filters
submenu on the menu list, the Outbound Packet Filter window opens.
NOTE
The Inbound Filter… button at the bottom of the windo w toggles between the
Outbound and Inbound Packet Filter windows. The button's text will change from
Inbound Filter… to Outbound Filter… accordingly.
刪除: MAC Address Control
allows you to assign
different access rights for
different users and to assign
a fixed IP address to a
specific MAC address.
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
3-30
錯誤! 尚未定義樣式。
Figure 26: Packet Filter Initial Window
The Outbound filter applies on all outbound packets. The Inbound filter
applies only on packets that are destined to Virtual Servers or DMZ host.
You can select one of the following filtering policies:
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
Allow all to pass except those match the specified rules
Deny all to pass except those match the specified rules
You can specify up to 8 rules for each direction, inbound and outbound.
For each rule, you can define the following:
Source IP address – You can define a single IP address (4.3.2.1) or a
range of IP addresses (4.3.2.1-4.3.2.254). An empty field denotes all
IP addresses.
Source port address - You can define a single port (80) or a range of
ports (1000-1999). Add prefix "T" or "U" to specify a TCP or UDP
protocol. For example, T80, U53, U2000-2999. No prefix indicates
both TCP and UDP protocols. An empty field denotes all port
addresses.
Destination IP address - You can define a single IP address (4.3.2.1)
or a range of IP addresses (4.3.2.1-4.3.2.254). An empty field
denotes all IP addresses.
Destination port address - You can define a single port (80) or a
range of ports (1000-1999). Add prefix "T" or "U" to specify a TCP or
UDP protocol. For example, T80, U53, U2000-2999. No prefix
indicates both TCP and UDP protocols. An empty field denotes all
port addresses.
Wireless Networking Gateway System Manual
3-31
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Enable – Check to enable the rule. Each rule can be enabled or
disabled individually.
Use Rule# - Packet Filter can work with Scheduling Rules. For details,
please refer to Schedule Rule
Schedule rule – Facilitates the process of selecting a scheduling rule
for each ID.
Click Save to save your Inbound/Outbound Packet Filter settings.
Inbound Filter
To enable Inbound Packet Filter click on the Inbound Filter button and
check the Enable box in the Inbound Packet Filter window.
In the following examples, the SMTP Server (25), POP Server (110), Web
Server (80), FTP Server (21), and News Server (119) are defined in the
Virtual Server or DMZ Host.
Example 1:
on page 3-52.
刪除: 3
刪除: 3
刪除: Operation and
Administration
格式化: 字型: 斜體
刪除: Schedule Rule
Figure 27: Inbound Packet Filter – Example 1
In this example, IPs (1.2.3.100-1.2.3.149) are allowed to send mail (port
25), receive mail (port 110), and browse the Internet (port 80).
IPs (1.2.3.10-1.2.3.20) are allowed to perform all operations.
All other IPs are all blocked from performing any operation.
錯誤! 尚未定義樣式。
3-32
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
Example 2:
Figure 28: Inbound Packet Filter - Example 2
In this example, IPs (1.2.3.100-1.2.3.119) are allowed to do everything
except read net news (port 119) and transfer files via FTP (port 21).
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
All other IPs are all allowed to perform all operations.
Outbound Filter
To enable Outbound Packet Filter, click on the Outbound Filter button
and check the Enable box in the Outbound Packet Filter window.
Wireless Networking Gateway System Manual
3-33
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
Example 1:
Figure 29: Outbound Packet Filter - Example 1
In this example, IP (192.168.123.149) is restricted from sending mail
(port 25), receiving mail (port 110), and browsing the Internet (port 80).
It is allowed to perform all other operations.
刪除: 3
刪除: 3
刪除: Operation and
Administration
IP (192.168.123.20) is blocked from performing any operation.
All other IPs are allowed to perform all operations.
Example 2:
Figure 30: Outbound Packet Filter - Example 2
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
3-34
錯誤! 尚未定義樣式。
In this example, IPs (192.168.123.100) and (192.168.123.119) can only
read net news (port 119) and send mail (port 25). They are blocked from
performing any other operation.
All other IPs are blocked from performing any operation.
URL Blocking
When enabled, this feature blocks LAN computers from connecting to
pre-defined Web sites.
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
Figure 31: URL Blocking
Enter the following parameters:
URL Blocking – Enable/Disable - Check to enable the URL Blocking
feature.
URL - If any part of the Web site's URL matches the pre-defined
word specified in this field, the connection will be blocked.
For example, you can use a pre-defined word "sex" to block all Web
sites whose URLs contain the word "sex".
Enable - Checked to enable the rule. Each rule can be enabled or
disabled individually.
Use Rule# - URL Blocking can work with Scheduling Rules. For
details, please refer to Schedule Rule
Schedule rule – Facilitates the process of selecting a scheduling rule
for each ID.
Click Save to save your settings.
on page 3-52.
刪除: Schedule Rule
格式化: 字型: 斜體
Wireless Networking Gateway System Manual
3-35
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
URL Blocking - Example
Figure 32: URL Blocking Example
In this example:
刪除: 3
刪除: 3
刪除: Operation and
Administration
1. All URLs which include the string "msn" will be blocked, and the
action will be recorded in the log file.
2. All URLs which include the string "sina" will be blocked, and the
action will be recorded in the log file.
3. All URLs which include the string "cnnsi" will be blocked, and the
action will be recorded in the log file.
4. All URLs which include the string "espn" will be blocked, and the
action will be recorded in the log file.
If the Enable box is not checked for a specific rule, the rule will not be
applied and the matching URLs will not be blocked.
Domain Filter
When enabled, the Domain Filter feature blocks LAN computers from
connecting to pre-defined Web sites.
NOTE
While URL Blocking uses keywords to block all Web sites whose URL includes the prespecified keyword, Domain Filter blocks a single pre-defined Web site by specifying the
suffix (such as .com, .org, etc.).
錯誤! 尚未定義樣式。
3-36
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
Figure 33: Domain Filter
Up to 9 Domain Suffixes can be defined, and for each rule you can
specify the desired action to be taken when a user attempts to access
that domain. For each rule you can define the following:
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
Domain Filter – Check to enable the Domain Filter feature to
prevent users from accessing specific URLs.
Log DNS Query – Check to enable logging users' attempts to enter
the specified URLs.
Privilege IP Addresses Range – Sets a group of hosts and allows
them to access the network without restriction. (From: 1~254, To:
1~254)
Domain Suffix - A suffix of URL to be restricted. For example, ".com",
"xxx.com".
Action – You can specify the type of action you want performed
when someone attempts to access the specific URL that meets the
domain-suffix:
¾ Drop – Check to block access.
¾ Log – Check to log the access attempt.
Enable - Check to enable the rule. Each rule can be
enabled/disabled individually.
In the example above (Figure 33):
Wireless Networking Gateway System Manual
3-37
Chapter 錯誤! 尚未定義樣式。 - 錯誤! 尚未定義樣式。
1. The URL "www.msn.com" will be blocked, and the action will be
recorded in the log file.
2. The URL "www.sina.com" will not be blocked, but any attempt to
enter the Web site will be recorded in the log file.
3. The URL "www.google.com" will be blocked, but the action will
not be recorded in the log file.
4. IP address X.X.X.1~ X.X.X.20 can access network without
restriction.
Click Save to save your settings.
Firewall
Firewall rules deny/allow traffic from passing through the device.
刪除: 3
刪除: 3
刪除: Operation and
Administration
Figure 34: Firewall
Up to 8 rules can be specified for each direction of traffic: inbound and
outbound. For each rule, you can define the following:
Source IP address, from LAN to WAN
Destination IP address, from LAN to WAN
Destination Protocol: TCP, UPD or ICMP
Destination port number
Action – Allow/Deny (default – Allow)
Enable – Check to enable the rule. Each rule can be
enabled/disabled individually.
錯誤! 尚未定義樣式。
3-38
刪除: Operation and
Administration
錯誤! 尚未定義樣式。
Click Save to save your settings.
Miscellaneous Items
Figure 35: Miscellaneous Items
刪除: Set TCP/IP Protocol
for Working with NAT
Router
刪除: Wizard
From the Miscellaneous Items window you can set the following:
Remote Administrator Host/Port - Enables the user to perform
administration tasks from a remote host. When enabled, only the
specified IP address can perform remote administration. If the
specified IP address is 0.0.0.0, any host can connect to this device
in order to perform administration tasks. You can use subnet mask
bits "/nn" notation to specify a group of trusted IP addresses. For
example, "10.1.2.0/24".
NOTE
When Remote Administration is enabled, the web server port will automatically
change to 88. You can change the web server port to another port.
Administrator Time-out - The time of no activity to logout
automatically. Set it to zero to disable automatic time-out.
TFTP Access Client/Port – When enabled, the specified IP address
with the specified port can access the device through the TFTP client
utility.
Discard PING from WAN side - When enabled, any ping packet from
WAN will be discarded.
Wireless Networking Gateway System Manual
3-39
Loading...
+ hidden pages
You need points to download manuals.
1 point = 1 manual.
You can buy points or you can get point for every manual you upload.