is the registered trademark of SAMSUNG Electronics Co., Ltd.
2
Home Page
Table of Contents
INTRODUCTION
Purpose
This document introduces the OfficeServ 7200 Data Server, an application of OfficeServ 7200,
and describes procedures on installing and using the software.
Document Content and Organization
This document contains 3 chapters 3 annexes and an abbreviation as follows:
Chapter 1. OfficeServ 7200 Data Server Overview
This chapter briefly introduces the OfficeServ 7200 Data Server.
Chapter 2. OfficeServ 7200 Data Server Installation
This chapter describes the installation procedure and login procedure.
Chapter 3. Using the OfficeServ 7200 Data Server
This chapter describes how to use the menus of the OfficeServ 7200 Data Server.
Annex A. VPN Setting in Windows XP/2000
This chapter describes how to set VPN on Windows XP/2000.
Annex B. OfficeServ 7200 Data Server Quick Setup Guide
This Quick Setup Guide is designed to provide you with basic setup procedures of configuring
your OfficeServ 7200 Data Server WAN1 port connecting to a DLS, Cable Modem or T1 for
office wide Internet access sharing.
Annex C. OfficeServ 7200 Data Server Software Upgrade Quick Setup Guide
This Quick Setup Guide is designed to provide you with basic setup procedures of upgrading
your OfficeServ 7200 Data Server software.
ABBREVIATION
Acronyms frequently used in this document are described.
The following special paragraphs are used in this document to point out information that must
be read. This information may be set-off from the surrounding text, but is always preceded by
a bold title in capital letters.
WARNING
Provides information or instructions that the reader should follow in order to avoid
CAUTION
Provides information or instructions that the reader should follow in order to avoid a
CHECKPOINT
Provides the operator with checkpoints for stable system operation.
personal injury or fatality.
service failure or damage to the system.
NOTE
Indicates additional information as a reference.
Console Screen Output
y The lined box with ‘Courier New’ font will be used to distinguish between the main
content and console output screen text.
y‘Bold Courier New’ font will indicate the value entered by the operator on the
The OfficeServ 7200 General Description Guide introduces the OfficeServ 7200 and provides
system information including the hardware configuration, specification, and function.
OfficeServ 7200 Installation Guide
The OfficeServ 7200 Installation Guide describes the condition required for installation, the
procedure of installation, and procedures on inspecting and starting the system.
OfficeServ 7200 Programming Manual
The OfficeServ 7200 Call Server Programming Manual describes the method of using the Man
Machine Communication (MMC) program that changes system settings by using phones.
For product safety and correct operation, the following information must be given to the operator/user and shall be
read before the installation and operation.
Symbols
Caution
Indication of a general caution
Restriction
Indication for prohibiting an action for a product
Instruction
Indication for commanding a specifically required action
Note that all external users are allowed to access the firewall when the Remote IP is
set to ‘0.0.0.0’ and Port is set to ‘0:’.
Setting IP Range
The number of IPs for the ‘Local IP range’ and that for the ‘Remote IP range’
should be identical.
For example, if the number of IPs for ‘Local IP range’ is 10 and that for ‘Remote IP
range’ is 20, only 10 calls will be set.
PPTP Setting in Windows XP/2000
In Windows XP/2000, the user can use DHCP client. If VPN PPTP client is
connected while the DHCP client is operating, errors will be found. To prevent this
problem, close the DHCP client operation on the [Start] Æ [Program] Æ
[Administrative Tools] Æ [Services] menu of the Windows PPTP client installed.
Caution Against Changing Network Interfaces
If a network interface(e.g., IP, gateway, and subnet mask) is changed during router
operation, all the IP sessions that are being used in the router are disconnected for
a while.
DB Change
The DBs of the WIM module and LIM module are integrated in the OfficeServ 7200
Data Server. When the DB is changed, the system restarts.
Dynamic IP of DHCP, PPPoE, and xDSL
If a dynamic IP is used, information(e.g., ‘Port Forward’ and ‘Static NAPT’) on public
IPs will not be automatically changed. ‘Fixed IP’ should be used for VoIP services
that require settings of the ‘Port Forward’ and ‘Static NAPT’ menus and for
VPN services that require WAN IP address setting.
Use Microsoft Internet Explorer 6.0 or higher as a Web browser to maintain
Delete Temporary Internet Files
OfficeServ 7200 Data Server.
Delete Temporary Internet Files after upgrading Data Server package. After
selecting the [Internet Explorer] Æ [Tools] Æ [Internet Options] menu, click the [Delete
Cookies] and the [Delete Files] button in the [Temporary Internet files]. If Temporary Internet
Files are not deleted, Data Server Web Management will not display properly.
This chapter provides an overview of OfficeServ 7200 system and OfficeServ 7200 Data Server.
OfficeServ 7200 Introduction
The OfficeServ 7200 is a single platform that delivers the convergence of voice, data, wired,
and wireless communications for small and medium offices. The ‘office in a box’ solution
offers TDM voice processing, voice over IP integration, wireless communications, voice mail,
computer telephony integration, data router and switching functions, all in one powerful
platform.
With the LIM and WIM modules, the OfficeServ 7200 provides network functions such as a
switch, router, and network security over the data server. This document describes the full
suite of IP based data and routing capabilities of OfficeServ 7200 Data Server.
OfficeServ 7200 Configuration
For information on the configuration, features, or specifications of the OfficeServ 7200, refer to
The OfficeServ 7200 provides the functions below on the IP-based data server:
Unmanaged Switch
•The switch performs the function of a layer 2 Internet switch as well as the Learning
Bridge function based on the MAC address filtering and forwarding algorithm.
•The LIM module provides 16 LAN ports per module. Each port is 10/100 Base T, auto
sending, full duplex. OS 7200 can support up to 8 unmanaged LIM.
Managed Switch
When the LIM is installed in slot 2 with a WIM in slot 1, it can function as a managed switch
by using an access interface LAN on the WIM. OfficeServ 7200 supports 1 managed LIM.
As a managed switch, the following features are support
•802.1D Spanning Tree – The switch configures and processes the forwarding tree based
on the spanning tree algorithm to prevent a packet forwarding loop in the switch.
•Layer 2 802.1p Packet Priority QoS – The switch extracts the priority field from the
Ethernet frame configured according to the 802.1p specification standard, and
discriminatively processes the frame according to the priority of the specified operation.
The switch then maps packets to a designated queue. Up to 2 output queues, Low and
High, are supported per egress port with queuing type of Weighted Round Robin or All
High before Low. For devices that do not support 802.1p, OS 7200 LIM can be
configured to create an enforceable priority.
•Supports Virtual LAN (VLAN) – The Virtual Local Area Network (VLAN) groups the
related equipment by the work group according to the LAN operational policy regardless
of the location of the user equipment. VLAN removes the effects of unnecessary
broadcasting packets and configures a stable switching subnet only for the corresponding
group by separating and processing the group in the virtual LAN. The VLAN can be
configured based on the switch port, MAC address, and 802.1Q tag.
•IGMP Snooping – IGMP Snooping provides a method for intelligent forwarding of
multicast packets within a layer 2 broadcast domains. By snooping IGMP registration
information, a distribution list of work stations is formed that determines which endstations will receive packets with a specific multicast address.
•802.3x Layer 2 Flow Control – Flow control is performed according to the value set for
incoming rate and/or outgoing rate. Limiting the rate at which a port can receive or send
traffic is used to ease congestion on bottlenecks in the network and provide simple
prioritization when the network is busy.
o 2 WAN Ethernet ports: auto-sensing 10/100Base-T and 10Base-T, supporting
Point-to-Point, Point-to-Point over Ethernet (PPPoE) and DHCP client protocols.
o 1 LAN Ethernet port: Enables a connection with a switch for LAN configuration.
o 1 Serial WAN port: Enables dedicated data line service by being connected with
DSU or CSU, which is a data line device. V.35 serial interface supports Dynamic
Host Configuration Protocol (DHCP), PPP, or Frame Relay Encapsulation.
o 1 DMZ Ethernet port: Enable DMZ connection to protect an internal network
from external hazards. DMZ is a separate LAN port for configuring the device
which requires a free access from outside such as a mail server and web server,
while separating the device from internal devices.
•Subnet Routing – The network interfaces of the WAN1, WAN2, LAN and DMZ are
configured with different sub-network interfaces, which enable them to perform the
routing process with each other.
•Static Routing – The OfficeServ 7200 configures a fixed routing table between each
network interface to process the static routing. In this case, the routing table cannot be
dynamically changed by the routing protocol, and specific routing services will be
provided according to the pre-set routing policy.
•Dynamic Routing – The OfficeServ 7200 supports routing information exchange
protocols to react to the changing network environment more effectively:
o RIPv1, RIPv2: These protocols are widely used for managing the routing
information in a mid-sized independent network such as a group of LANs
o OSPFv2: This protocol is used in a large-sized independent network. A router
detects and reports any change in the routing table or the network to other routers,
thus all routers share the same routing information.
• Performs inter-VLAN routing – Communication between the VLAN groups.
Data Network Security
• Outbound and Inbound NAT/PT
o Controls an access to internal resources through conversion between the Global IP
and Private IP. Network Address Translation and Port Address Translation
services protect devices on the private internal LAN from being exposed on the
Public Network. This service also allows a single public IP address to be shared
among multiple hosts on the internal LAN.
• Firewall
o Access Filtering: Access lists and policies can be implemented to control access to
the Data Server resources.
o DMZ Function: Hosts connected to the DMZ port can bypass the network firewall
making it easier for external clients to access their services. Applications such as
web servers and mail servers are typically connected to the DMZ ports.
o Port Forwarding: This feature allows external hosts on the public network to
access hosts and services on the internal private LAN by forwarding the public
WAN address to a private LAN address based on a specific port
o Detects and notifies an access to unauthorized areas by the access list.
o Recognizes and notifies unauthorized packets by applying the basic intrusion rule
for packets.
o Detects and blocks DoS attacks such as SYN flood.
• Virtual Private Network(VPN)
o The VPN capability creates encrypted ‘tunnels’ through the Internet, allowing
branch offices or remote users to securely connect into the network from off-site.
o Functions as a VPN gateway based on PPTP and IPSec.
o Performs privacy and integrity through VPN tunneling and data encryption.
Data Network Application
Functions as data network applications such as NAT/PT, Firewall, VPN, DHCP, and
Application Level Gateway(ALG)
• SIP Aware Application Level Gateway (ALG)
o This feature takes SIP packets coming to the WAN interface and redirects them to
any SIP user agents connected to the private LAN.
• DHCP Server
o This service dynamically assigns IP addresses to all hosts connected to the private
LAN.
QoS
• Processes priority for layer 2 frames based on the 802.1p standard(Switch function)
• Processes priority queuing for layer 3 packets and for selected IPs. The ToS (Type of
Service) field of the IP header is checked and process according to the priority of the
corresponding routing in the data server.
•Processes priority queuing for layer 4 packets and for RTP packets (UDP/TCP port).
Prioritize RTP voice packets over normal data packets for improved voice quality in VoIP
applications.
DSMI
•This service automatically configures the router to allow for VoIP applications such as
remote IP phones and IP networking, IP Trunking, etc. If the OfficeServ 7200 VoIP
services provided by MCP and MGI use private IP, and they are connected behind the
WIM router’s public IP, DSMI will automatically perform NAPT for signaling and media
data packets for VoIP services.
Management
• Supports a specialist level debugging function through Telnet connection
• Supports configuring and verifying the functional block operations of the data server
through a web-based browser
• Exchanges IDS data and alarm data with the system manager
Setup the environment as follows to access the Data Server.
1.
Mount the WIM board on slot 1 and the LIM board on slot 2.
• In order to connect the WIM board to the LIM board through the back panel, first
place the shunt pin of JP1, 2, 3, and 4 toward the back of the WIM board, then
mount the WIM board to the back panel direction.
16
Home Page
Table of Contents
• If the shunt pin of JP1, 2, 3, 4 is directed to the front of the WIM board, connect the
LAN port of the WIM board to one of the Ethernet port of the LIM board through a
LAN cable.
2.
Connect a PC to a Ethernet port of the LIM board.
Configuring the PCs
This section describes how to configure your PC to communicate with the OS 7200 Data
Server Management Web Browser.
The instructions below apply only to Windows 2000 or XP computers. Make sure that an
Ethernet card or adapter has been successfully installed in your PC.
1.
Click the [Start]button. Click [Settings] and then [Control Panel]. From there, doubleclick the [Network] icon.
2.
On the [Configuration] tab, select the Internet Protocol (TCP/IP) line for the
applicable Ethernet adapter. Click the [Properties] button.
Execute the Internet Explorer from the PC and connect to the IP of LAN. The default IP
address of the WIM board managing the LIM board is set to ‘10.0.0.1’.
Using Web Browser
Use Microsoft Internet Explorer 6.0 or higher as a Web browser to maintain OfficeServ 7200
Data Server.
18
Home Page
Table of Contents
Starting up the OfficeServ 7200 Data Server
The procedure for starting up the OfficeServ 7200 Data Server is as follows:
1.
Start the Internet Explorer and enter the IP address of the Data Server into the address
bar. The login window shown below will appear:
2.
Login using the administrator ID and password. The default Login ID and Password are
Admin and Admin respectively. Click the [OK] button to proceed. The following
window will appear:
Click [Data] to use the menus for Data Server shown in the following window:
When a ‘Data’ menu is selected, the submenus of the Data Server menu appear on the
left section of the window. Descriptions on each submenu are provided in ‘Chapter 3.
Using the OfficeServ 7200 Data Server’.
Delete Temporary Internet Files
Delete Temporary Internet Files after upgrading Data Server package.
Select the [Internet Explorer] Æ [Tools] Æ [Internet Options] menu, click the [Delete Cookies]
and the [Delete Files] button in the [Temporary Internet files].
If the Temporary Internet Files are not cleared, Data Server Web Management displayed info will
Firewall/Network Menu provides a Configuration Wizard to setup the WAN1, WAN2, LAN,
DMZ, and Serial network interfaces, as well as firewall and the communication policies
between the firewall and each interface. Under this menus, you can also setup the Data Server
Access Control List, Port Forward, and Filtering Services.
Select [Firewall/Network] to display the submenus of Firewall/Network on the upper left
section of the window.
The [Management] menu sets ports related to firewall and network.
Config
The [Config] menu starts the configuration wizard which will guide through the settings of the
WAN1, LAN, DMZ, WAN2, and SERIAL ports. Select [Management] Æ [Config] and set the
items of each window. Click the [Next] button and set the firewall and network according to
the following procedure:
Select [Management] Æ [Config] and display the window shown below. The ‘NAT’
and ‘Packet Filtering’ items are originally disabled. Check the checkboxes to set the
status to ‘On’ and click the [Run] button.
If these items are checked, Click the [Next] button.
Network Address Translation (NAT)
NAT is an Internet standard that enables a local-area network (LAN) to use one set of IP
addresses for internal traffic and a second set of addresses for external traffic. NAT adds a
level of security by protecting the address of a PC connected to the private LAN from
transmitted on the Internet. If only a single Internet IP address is provided by the ISP
(such as a DSL or cable modems internet account), NAT must be selected to allow all PCs
on the LAN to share this single Internet IP address.
Packet Filtering
2.
Packet Filtering controls access to the local-area network by analyzing the incoming and
outgoing packets and letting them pass or halting them based on the IP address of the
source and destination.
Click the [Start] button to start the Firewall/Network configuration wizard, which will
New settings can be set or previously set setup files can be changed or executed from
the following window. The IP of the LAN port is initially set to ‘10.0.0.1’. Check the
‘default’ item and click the [Next] button.
Set Line Type for Each Port
External ports (e.g., WAN1, WAN2, SERIAL) use public IPs while internal ports (e.g., DMZ,
LAN) use public or private IPs. Select the line type for each port as listed below:
• External port (WAN1,WAN2, SERIAL)
o Primary WAN line: Primary internet connection interface
o Secondary WAN line: Secondary internet connection interface
o Third WAN line: Third internet connection interface
o Not Used: No WAN line is connected
• Internal port (DMZ, LAN)
o Internal line: Internal line is used
o Not Used: Internal line is not used
In the figure shown below, WAN1 port is set to Primary WAN line as the primary line, LAN
port is to Internal line as the internal line, and WAN2, SERIAL, and DMZ ports are set to Not
Used as lines not connected:
Dynamic IP Address (e.g. Cable Modem, ADSL PPPoE, and SDSL internet account)
If a dynamically assigned IP address is used for WAN internet connection, information
(e.g., ‘Port Forward’ and ‘Static NAPT’) on public IPs will not be automatically changed.
‘Fixed IP’ should be used for VoIP services that require settings of the ‘Port Forward’ and
‘Static NAPT’ menus and for VPN services that require WAN IP address setting.
The starting window for setting WAN1 as “Primary WAN line’ is shown below. Click
the [Next] button to start setting the WAN1 port.
2.
Select the line type for Primary WAN line. Select one of the four applications shown
below for the external network:
Fixed IP: Select Fixed IP if your Internet service account uses Fixed IP (Static) IP
assignment.
• Primary PPPoE Client: Select Primary PPPoE Client if your Internet service
account uses PPP over Ethernet login protocol, such as in ADSL account.
• Primary DHCP Client: Select Primary DHCP Client if your Internet service
account uses Dynamic IP assignment, such as in Cable Modem account.
• Primary VDSL Line: Select Primary VDSL Line if your Internet service account
uses VDSL service.
The four applications of Primary WAN line are described below:
a. Fixed IP: Enter values in the Address, Netmask, and Gateway fields to perform
settings in the WAN1 port on an external network where a static IP is used, and
click the [Next] button. To add another IP, apart from the IP of the external line
currently being used, click the [Add] button and add the item. OfficeServ 7200
WAN interface supports up to eight multiple public IP addresses.