Billion Electric Company BiPAC 7404VGOX, BiPAC 7404VGPX User Manual

BiPAC 7404V(G)OX
BiPAC 7404V(G)PX
3G/VoIP/(802.11g) ADSL2+ (VPN)
Firewall Router
User Manual
Version release 5.53.s5.rc3
Last Revised Date 23-10-2008
Table of Contents
Introduction to your Router ..................................................................1
Features ............................................................................................1
Important note for using this router .................................................... 5
Package Contents .................................................................................5
The Front LEDs. ................................................................................6
The Rear Ports ...................................................................................7
Cabling ................................................................................................8
Connecting Your Router .....................................................................10
Network Conguration ........................................................................ 11
Factory Default Settings ..................................................................17
Information from your ISP ............................................................18
Conguring with your Web Browser .................................................19
Status .....................................................................................................21
ADSL Status ......................................................................................21
3G Status ..........................................................................................21
ARP Table .........................................................................................22
DHCP Table .....................................................................................22
Routing Table ....................................................................................24
NAT Sessions ....................................................................................25
UPnP Portmap ..................................................................................25
PPTP Status ....................................................................................26
IPSec Status ..................................................................................... 27
L2TP Status .....................................................................................27
Email Status ...................................................................................... 28
VoIP Status .......................................................................................28
VoIP Call Log ....................................................................................28
Event Log .......................................................................................... 29
Error Log ...........................................................................................30
Diagnostic ......................................................................................... 30
Quick Start ............................................................................................31
Conguration ........................................................................................35
LAN - Local Area Network ................................................................. 36
Bridge Interface ................................................................................ 36
Ethernet ..........................................................................................37
IP Alias ...........................................................................................37
Ethernet Client Filter ..........................................................................38
Wireless ..........................................................................................40
Wireless Security ..............................................................................42
Wireless Client / MAC Address Filter ....................................................45
WPS ...............................................................................................46
Port Setting ....................................................................................47
DHCP Server .................................................................................. 48
WAN - Wide Area Network ................................................................49
WAN Interface ..................................................................................49
WAN Prole .....................................................................................51
ADSL Mode .....................................................................................61
System ..............................................................................................62
Time Zone ....................................................................................... 62
Remote Access .................................................................................63
Firmware Upgrade ............................................................................63
Backup / Restore ..............................................................................64
Restart Router ..................................................................................65
User Management .............................................................................66
Firewall and Access Control .............................................................. 68
General Settings ............................................................................... 69
Packet Filter ..................................................................................... 70
Intrusion Detection ............................................................................78
URL Filter ........................................................................................81
IM / P2P Blocking ..............................................................................84
Firewall Log .....................................................................................85
VPN - Virtual Private Networks (Only available for BiPAC 7404V(G)OX) 86
PPTP (Point-to-Point Tunneling Protocol) .............................................. 86
IPSec (IP Security Protocol) ................................................................95
L2TP (Layer Two Tunneling Protocol) .................................................104
VoIP - Voice over Internet Protocol ................................................. 116
SIP Device Parameters ................................................................... 117
SIP Accounts .................................................................................120
Phone Port ....................................................................................121
PSTN Dial Plan (Router with LINE port only) ........................................123
VoIP Dial Plan ...............................................................................127
Call Feature ..................................................................................130
Speed Dial .....................................................................................130
Ring & Tone ...................................................................................131
QoS - Quality of Service..................................................................133
Prioritization ..................................................................................133
Outbound IP Throttling (LAN to WAN) ................................................. 134
Inbound IP Throttling (WAN to LAN) ...................................................136
Virtual Server (known as Port Forwarding) .....................................142
Add Virtual Server ...........................................................................143
Edit DMZ Host ................................................................................145
Edit One-to-One NAT (Network Address Translation) ............................. 146
Time Schedule ................................................................................149
Advanced ........................................................................................ 152
Static Route ..................................................................................152
Dynamic DNS .................................................................................153
Check Email ...................................................................................154
Device Management .......................................................................155
IGMP ............................................................................................ 158
VLAN Bridge ..................................................................................158
Logout .................................................................................................. 159

Chapter 1: Introduction

Introduction to your Router

Welcome to the 3G/VoIP/ (802.11g) ADSL2+(VPN) Firewall Router. The router is an “all-in-one”
ADSL router, combining an ADSL modem, ADSL router and Ethernet network switch functionalities, providing everything you need to get the machines on your network connected to the Internet over
your ADSL broadband connection. With features such as an ADSL Quick-Start wizard and DHCP Server, you can be online in no time at all and with a minimum of fuss and conguration, catering for rst-time users to the guru requiring advanced features and control over their Internet connection
and network.

Features

Express Internet Access
The router complies with ADSL worldwide standards. It supports downstream rate up to 12/24 Mbps with ADSL2/2+, 8Mbps with ADSL. Users enjoy not only high-speed ADSL services but also
broadband multimedia applications such as interactive gaming, video streaming and real-time
audio much easier and faster than ever. It is compliant with Multi-Mode standard (ANSI T1.413,
Issue 2; G.dmt (ITU G.992.1); G.lite (ITU G.992.2); G.hs (ITU G994.1); G.dmt.bis (ITU G.992.3); G.dmt.bis.plus (ITU G.992.5)).
3G
3G-based Internet connection (requires an additional 3G USB modem), with automatic fail-over
to ensure an always-on Internet connection in the event that one of your Internet services fails.
Secure WLAN setup is simplied by the web browser-based conguration for easy access to the
Internet wherever a 3G connection is available - whether you're seated at your desk or taking a cross-country train trip.
802.11g Wireless AP with WPA Support (Wireless Router only)
With integrated 802.11g Wireless Access Point in the router, the device offers a quick and easy
access among wired network, wireless network and broadband connection (ADSL) with single
device simplicity, and as a result, mobility to the users. In addition to 54 Mbps 802.11g data rate, it also interoperates backward with existing 802.11b equipment. The Wireless Protected Access (WPA-PSK and WPA2-PSK) and Wireless Encryption Protocol (WEP) supported features enhance the security level of data protection and access control via Wireless LAN.
Fast Ethernet Switch
A 4-port 10/100Mbps fast Ethernet switch is built in with automatic switching between MDI and MDI-X for 10Base-T and 100Base-TX ports. An Ethernet straight or crossover cable can be used
directly for auto detection.
1
Multi-Protocol to Establish a Connection
It supports PPPoA (RFC 2364 - PPP over ATM Adaptation Layer 5), RFC 1483 encapsulation overATM (bridged or routed), PPP over Ethernet (RFC 2516), and IPoA (RFC1577) to establish a
connection with the ISP. The product also supports VC-based and LLC-based multiplexing.
Quick Installation Wizard
It supports a WEB GUI page to install this device quickly. With this wizard, end users can enter the information easily which they get from their ISP, then surf the Internet immediately.
Universal Plug and Play (UPnP) and UPnP NAT Traversal
This protocol is used to enable simple and robust connectivity among stand-alone devices and PCs from many different vendors. It makes network simple and affordable for users. UPnP
architecture leverages TCP/IP and the Web to enable seamless proximity networking in addition to control and data transfer among networked devices. With this feature enabled, users can now connect to Net meeting or MSN Messenger seamlessly.
Network Address Translation (NAT)
Allows multi-users to access outside resources such as the Internet simultaneously with one IP
address/one Internet access account. Many application layer gateway (ALG) are supported such as web browser, ICQ, FTP, Telnet, E-mail, News, Net2phone, Ping, NetMeeting, IP phone and
others.
SOHO Firewall Security with DoS and SPI
Along with the built-in NAT natural rewall feature, the router also provides advanced hacker pattern-ltering protection. It can automatically detect and block Denial of Service (DoS) attacks.
The router is built with Stateful Packet Inspection (SPI) to determine if a data packet is allowed through the rewall to the private LAN.
Domain Name System (DNS) Relay
It provides an easy way to map the domain name (a friendly name for users such as www.yahoo.
com) and IP address. When a local machine sets its DNS server with this router’s IP address, every DNS conversion request packet from the PC to this router will be forwarded to the real DNS
in the outside network.
Dynamic Domain Name System (DDNS)
The Dynamic DNS service allows you to alias a dynamic IP address to a static hostname. This
dynamic IP address is the WAN IP address. For example, to use the service, you must rst apply for an account from a DDNS service like http://www.dyndns.org/. More than 5 DDNS servers are
supported.
2
Quality of Service (QoS)
QoS gives you full control over which types of outgoing data trafc should be given priority by
the router, ensuring important data like gaming packets, customer information, or management information move through the router ay lightning speed, even under heavy load. The QoS features
are congurable by source IP address, destination IP address, protocol, and port. You can throttle
the speed at which different types of outgoing data pass through the router, to ensure P2P users don’t saturate upload bandwidth, or ofce browsing doesn’t bring client web serving to a halt. In addition, or alternatively, you can simply change the priority of different types of upload data and let the router sort out the actual speeds.
Virtual Server (“port forwarding”)
Users can specify some services to be visible from outside users. The router can detect incoming
service requests and forward either a single port or a range of ports to the specic local computer to handle it. For example, a user can assign a PC in the LAN acting as a WEB server inside and
expose it to the outside network. Outside users can browse inside web servers directly while it is
protected by NAT. A DMZ host setting is also provided to a local computer exposed to the outside
network, Internet.
Rich Packet Filtering
Not only lters the packet based on IP address, but also based on Port numbers. It will filter packets from and to the Internet, and also provides a higher level of security control.
Dynamic Host Conguration Protocol (DHCP) Client and Server
In the WAN site, the DHCP client can get an IP address from the Internet Service Provider (ISP)
automatically. In the LAN site, the DHCP server can allocate a range of client IP addresses and distribute them including IP address, subnet mask as well as DNS IP address to local computers. It provides an easy way to manage the local IP network.
Static and RIP1/2 Routing
It has routing capability and supports easy static routing table or RIP1/2 routing protocol.
Simple Network Management Protocol (SNMP)
It is an easy way to remotely manage the router via SNMP.
Web based GUI
It supports web based GUI for conguration and management. It is user-friendly and comes with on-line help. It also supports remote management capability for remote users to congure and
manage this product.
3
Firmware Upgradeable
Device can be upgraded to the latest rmware through the WEB based GUI.
Rich Management Interfaces
It supports exible management interfaces with local console port, LAN port, and WAN port. Users can use terminal applications through the console port to congure and manage the device, or Telnet, WEB GUI, and SNMP through LAN or WAN ports to congure and manage the device.
Virtual Private Network (VPN) (BiPAC 7404V(G)OX only)
It allows user to make a tunnel with a remote site directly to secure the data transmission among
the connection. User can use embedded PPTP and L2TP client/server, IKE and IPSec which are
supported by this router to make a VPN connection or users can run the PPTP client in PC and the router already provides IPSec and PPTP pass through function to establish a VPN connection if the user likes to run the PPTP client in his local computer.
4

Chapter 2: Installing the Router

Important note for using this router

Package Contents

3G/VoIP/(802.11g) ADSL2+ (VPN) Firewall Router
CD-ROM containing the online manual
RJ-11 ADSL/telephone Cable
Ethernet (CAT-5) Cable
Console kit
Power adapter
A detachable antenna
Quick Start Guide
5

The Front LEDs.

LED Meaning
1 Power
Ethernet Port
2
1X 4X
(RJ-45 connector)
3 USB
4 Wireless
Phone 1x-2x
5
(RJ-11 connector) Line
6
(Router with LINE port only)
VoIP 1x-2x
7
(RJ-11 connector)
Lit when power is ON. Lit red means system failure. Restart the device
or contact Billion for support.
Lit when one of LAN ports is connected to an Ethernet device.
Lit green when the speed of transmission hits 100Mbps; Lit orange when the speed of transmission hits 10Mbps.
Blink when data is being Transmitted / Received.
Lit when the router is connected to a USB device. Flash when data is received / transmitted.
Lit green when a wireless connection is established.
Flash when the device is sending/receiving data.
Lit green when phone is off hook.
Lit when the inbound and outbound calls are transmitted through PSTN.
After SIP registration is OK, the LED will lit green whenever phone 1
is off hook but will lit orange for phone 2.
Note: Orange light also means when both Phone 1 and 2 are registered OK at the same time.
8 DSL
9 Internet
Lit Green when the device is successfully connected to an ADSL
DSLAM. (“line sync”).
Lit red when WAN port fails to get IP address. Lit green when WAN port gets IP address successfully.
6

The Rear Ports

Port Meaning
Antenna
1
(Wireless Router only)
2 DSL
Line
3
(Router with LINE port only)
Phone
4
1X-2X (RJ-11 connector)
5 USB Connect the USB cable to this port.
Ethernet
6
1X — 4X
(RJ-45 connector)
7 WPS Push WPS button to trigger Wi-Fi Protected Setup function.
8 RESET
Connect the detachable antenna to this port.
Connect this port to the ADSL/telephone network with the RJ- 11 cable (telephone) provided.
Connect this port to the telephone jack on the wall with RJ-11 cable.
Connect this port to an analog phone set with RJ-11 cable.
Connect a UTP Ethernet cable (Cat-5 or Cat-5e) to one of
the LAN ports when connecting to a PC or an ofce/home network of 10Mbps or 100Mbps.
Caution: Port 4 can be either a LAN or Console port at a time but not both.
To be sure the device is being turned on press RESET button for:
1-3 seconds: quick reset the device.
6 seconds and above, power off, power on the device: restore to factory default settings. (Cannot login to the router or forgot your Username/Password. Press the button for more than 6 seconds).
Caution: After pressing the RESET button for more than 6 seconds, to be sure you power cycle the device again.
9 Power Connect it with the supplied power adapter.
10 Power Switch Power ON/OFF switch
7

Cabling

One of the most common causes of problem is bad cabling or ADSL line(s). Make sure that all connected devices are turned on. On the front panel of your router is a bank of LEDs. Verify that the LAN Link and ADSL line LEDs are lit. If they are not, verify if you are using the proper cables.
Make sure that all devices (e.g. telephones, fax machines, analogue modems) connected to the same telephone line as your router have a line lter connected between them and the wall outlet (unless
you are using a Central Splitter or Central Filter installed by a qualied and licensed electrician), and that all line lters are correctly installed in a right way. If line lter is not installed and connected properly, it may cause problem to your ADSL connection or may result in frequent disconnections.
8

Chapter 3: Basic Installation

The router can be congured through your web browser. A web browser is included as a standard application in the following operating systems: Linux, Mac OS, Windows 98/NT/2000/XP/Me/Vista,
etc. The product provides an easy and user-friendly interface for conguration.
Please check your PC network components. The TCP/IP protocol stack and Ethernet network
adapter must be installed. If not, please refer to your Windows-related or other operating system
manuals.
There are ways to connect the router, either through an external repeater hub or connect directly to your PCs. However, make sure that your PCs have an Ethernet interface installed properly prior to connecting the router device. You ought to congure your PCs to obtain an IP address through
a DHCP server or a xed IP address that must be in the same subnet as the router. The default IP
address of the router is 192.168.1.254 and the subnet mask is 255.255.255.0 (i.e. any attached PC must be in the same subnet, and have an IP address in the range of 192.168.1.1 to 192.168.1.253).
The best and easiest way is to congure the PC to get an IP address automatically from the router
using DHCP. If you encounter any problem accessing the router web interface it is advisable to
uninstall your rewall program on your PCs, as they can cause problems accessing the IP address
of the router. Users should make their own decisions on what is best to protect their network.
Please follow the following steps to congure your PC network environment.
9

Connecting Your Router

Connect this router to a 1. LAN (Local Area Network) and the ADSL/telephone (ADSL) net
work.
Power on the device.2.
Make sure the 3. Power LED lit steadily and that the LAN LED is lit.
Connect your router to the telephone jack on the wall with RJ-11 cable.4.
Connect the USB 2.0 cable.5.
10
Network Conguration
Conguring PC in Windows Vista
Go to Start. Click on Network.1.
Then click on Network and Sharing 2. Center at the top bar.
When the Network and Sharing 3. Center window pops up, select and click on Manage network connec­tions on the left window column.
Select the Local Area Connection, 4. and right click the icon to select Properties.
11
Select Internet Protocol Version 4 5.
(TCP/IPv4) then click Properties.
In the TCP/IPv4 properties window, 6.
select the Obtain an IP address au­tomatically and Obtain DNS Server address automatically radio but­tons. Then click OK to exit the set­ting.
Click OK again in the Local Area 7. Connection Properties window to
apply the new conguration.
12
Conguring PC in Windows XP
Go to Start > Control Panel (in Classic 1. View). In the Control Panel, double-click on Network Connections
Double-click Local Area Connection.2.
In the Local Area Connection Status 3. window, click Properties.
Select Internet Protocol (TCP/IP) and 4. click Properties.
Select the Obtain an IP address auto-5. matically and the Obtain DNS server address automatically radio buttons.
Click OK to nish the conguration.6.
13
Conguring PC in Windows 2000
Go to Start > Settings > Control Panel. 1. In the Control Panel, double-click on Network and Dial-up Connections.
Double-click Local Area Connection.2.
In the Local Area Connection Status 3. window click Properties.
Select Internet Protocol (TCP/IP) and 4. click Properties.
Select the Obtain an IP address auto-5. matically and the Obtain DNS server address automatically radio buttons.
Click OK to nish the conguration.6.
14
Conguring PC in Windows 95/98/Me
Go to Start > Settings > Control Panel. 1. In the Control Panel, double-click on
Network and choose the Conguration
tab.
Select TCP/IP > NE2000 Compatible, 2. or the name of your Network Interface Card (NIC) in your PC.
Select the Obtain an IP address auto-3. matically radio button.
Then select the DNS Congurationtab.4.
Select the Disable DNS radio button 5.
and click OK to nish the conguration.
15
Conguring PC in Windows NT4.0
Go to Start > Settings > Control Panel. 1. In the Control Panel, double-click on Network and choose the Protocols tab.
Select TCP/IP Protocol and click Prop-2. erties.
Select the Obtain an IP address from 3. a DHCP server radio button and click
OK.
16

Factory Default Settings

Before conguring your router, you need to know the following default settings.
Web Interface (Username and Password)
Username: admin Password: admin
The default username and password are “admin” and “admin” respectively.
Device LAN IP settings
IP Address: 192.168.1.254
Subnet Mask: 255.255.255.0
ISP setting in WAN site
PPPoE
DHCP server
DHCP server is enabled. Start IP Address: 192.168.1.100
IP pool counts: 100
LAN and WAN Port Addresses
The parameters of LAN and WAN ports are pre-set in the factory. The default values are shown in
the tale.
LAN Port WAN Port
IP address 192.168.1.254 Subnet Mask 255.255.255.0 DHCP server function Enabled
IP addresses for distribution to PCs
100 IP addresses continuing from 192.168.1.100 through
192.168.1.199
The PPPoE function is enabled to automatically get
the WAN port conguration
from the ISP.
17

Information from your ISP

Before conguring this device, you have to check with your ISP (Internet Service Provider) to nd
out what kind of service is provided such as DHCP (Obtain an IP Address Automatically, Static IP (Fixed IP Address) or PPPoE.
Gather the information as illustrated in the following table and keep it for reference.
VPI/VCI, VC / LLC-based multiplexing, Username, Password, Service
PPPoE(RFC2516)
PPPoA(RFC2684)
Name, and Domain Name System (DNS) IP address (it can be automatically assigned by your ISP when you connect or be set manually).
VPI/VCI, VC / LLC-based multiplexing, Username, Password and
Domain Name System (DNS) IP address (it can be automatically assigned by your ISP when you connect or be set manually).
MPoA(RFC1483/
RFC2684)
IPoA(RFC1577)
Pure Bridge VPI/VCI, VC / LLC-based multiplexing to use Bridged Mode.
VPI/VCI, VC / LLC-based multiplexing, IP address, Subnet mask,
Gateway address, and Domain Name System (DNS) IP address (it is a
xed IP address).
VPI/VCI, VC / LLC-based multiplexing, IP address, Subnet mask,
Gateway address, and Domain Name System (DNS) IP address (it is a
xed IP address).
18
Conguring with your Web Browser
Open your web browser, enter the IP address of your router, which by default is 192.168.1.254,
and click “Go”, a user name and password window prompt will appear. The default username and password are “admin” and “admin” respectively. (See Figure 3.14)
Figure 3.14: User name & Password Prompt Window
Congratulations! You are now successfully logon to the 3G/VoIP/(802.11g) ADSL2+ (VPN) Firewall Router!
19
Chapter 4: Conguration
At the conguration homepage, the left navigation column provides you the link to each conguration page. The category of each conguration page is listed as below.
Status
ADSL Table
3G Status
ARP Table
DHCP Table
Routing Table
NAT Sessions
UpnP Portmap
PPTP Status
IPSec Status
L2TP Status
Email Status
VoIP Status
VoIP Call Log
Event Log
Error Log
Diagnostic
Quick Start
Conguration
LAN
WAN
System Firewall VPN VoIP QoS Virtual Server Time Schedule Advanced
Language (provides user interface in English and French languages)
20

Status

ADSL Status

This section displays the ADSL overall status, which shows a number of helpful information such
as DSP rmware version.

3G Status

This section displays the 3G Card’s overall status, which shows you a number of helpful
information such as the current signal strength and statistics on current and total bytes transferred and received.
Status: The current status of the 3G card.
Signal Strength: The signal strength bar indicates current 3G signal strength.
Network Name: The network name that the device is connected to.
21
Card Name: The name of the 3G card.
Card Firmware: The current rmware for the 3G card.
Current TX Bytes / Packets: The statistics of transmission, count for this call.
Current RX Bytes / Packets: The statistics of receive, count for this call.
Total TX Bytes / Packets: The statistics of transmission, count from system ready
Total RX Bytes / Packets: The statistics of receive, count from system ready

ARP Table

This section displays the router’s ARP (Address Resolution Protocol) Table, which shows the mapping of Internet (IP) addresses to Ethernet (MAC) addresses. This is useful as a quick way of determining the MAC address of the network interface of your PCs to use with the router’s Firewall – MAC Address Filter function. See the Firewall section of this manual for more information on this
feature.
IP Address: A list of IP addresses of devices on your LAN (Local Area Network).
MAC Address: The MAC (Media Access Control) addresses for each device on your LAN.
Interface: The interface name (on the router) that this IP Address connects to.
Static: Static status of the ARP table entry:
no” for dynamically-generated ARP table entries.
yes” for static ARP table entries added by the user.

DHCP Table

Leased: The DHCP assigned IP addresses information.
Expired: The expired IP addresses information.
Permanent: The xed host mapping information.
22
Leased Table
IP Address: The IP address that assigned to client.
MAC Address: The MAC address of client.
Client Host Name: The Host Name (Computer Name) of client.
Expiry: The current lease time of client.
23

Routing Table

Routing Table
Valid: It indicates a successful routing status.
Destination: The IP address of the destination network.
Netmask: The destination Netmask address.
Gateway/Interface: The IP address of the gateway or existing interface that this route will use.
Cost: The number of hops counted as the cost of the route.
RIP Routing Table
Destination: The IP address of the destination network.
Netmask: The destination Netmask address.
Gateway: The IP address of the gateway that this route will use.
Cost: The number of hops counted as the cost of the route.
24

NAT Sessions

This section lists all current NAT sessions between interface of types external (WAN) and internal
(LAN).

UPnP Portmap

The section lists all port-mapping established using UPnP (Universal Plug and Play. See Advanced
section of this manual for more details on UPnP and the router’s UPnP conguration options.
25
Loading...
+ 138 hidden pages