OfficeServ 7200 User Manual

OfficeServ 7200
Data Server User Manual
Every effort has been made to eliminate errors and ambiguities in the information contained in this booklet. Any
questions concerning information presented here should be directed to SAMSUNG TELECOMMUNICATIONS
AMERICA. SAMSUNG TELECOMMUNICATIONS AMERICA disclaims all liabilities for damages arising from
erroneous interpretation or use of information presented in this manual.
PUBLICATION INFORMATION
SAMSUNG TELECOMMUNICATIONS AMERICA reserves the right without prior notice to revise information in this
publication for any reason.
SAMSUNG TELECOMMUNICATIONS AMERICA also reserves the right without prior notice to make changes in
design or components of equipment as engineering and manufacturing may warrant.
COPYRIGHT 2005
Samsung Telecommunications America
All rights reserved. No part of this manual may be reproduced in any form or by any means—graphic, electronic or
mechanical, including recording, taping, photocopying or information retrieval systems—without express written
permission of the publisher of this material.
TRADEMARKS
Product names mentioned in this document may be trademarks and/or registered trademarks of their respective companies.
© SAMSUNG Telecommunications America, L.P.
is the registered trademark of SAMSUNG Electronics Co., Ltd.
2

INTRODUCTION

Purpose

This document introduces the OfficeServ 7200 Data Server, an application of OfficeServ 7200, and describes procedures on installing and using the software.

Document Content and Organization

This document contains 3 chapters 3 annexes and an abbreviation as follows:
Chapter 1. OfficeServ 7200 Data Server Overview
This chapter briefly introduces the OfficeServ 7200 Data Server.
Chapter 2. OfficeServ 7200 Data Server Installation
This chapter describes the installation procedure and login procedure.
Chapter 3. Using the OfficeServ 7200 Data Server
This chapter describes how to use the menus of the OfficeServ 7200 Data Server.
Annex A. VPN Setting in Windows XP/2000
This chapter describes how to set VPN on Windows XP/2000.
Annex B. OfficeServ 7200 Data Server Quick Setup Guide
This Quick Setup Guide is designed to provide you with basic setup procedures of configuring your OfficeServ 7200 Data Server WAN1 port connecting to a DLS, Cable Modem or T1 for office wide Internet access sharing.
Annex C. OfficeServ 7200 Data Server Software Upgrade Quick Setup Guide
This Quick Setup Guide is designed to provide you with basic setup procedures of upgrading your OfficeServ 7200 Data Server software.
ABBREVIATION
Acronyms frequently used in this document are described.
© SAMSUNG Telecommunications America, L.P.
3

Conventions

The following special paragraphs are used in this document to point out information that must be read. This information may be set-off from the surrounding text, but is always preceded by a bold title in capital letters.
WARNING
Provides information or instructions that the reader should follow in order to avoid
CAUTION
Provides information or instructions that the reader should follow in order to avoid a
CHECKPOINT
Provides the operator with checkpoints for stable system operation.
personal injury or fatality.
service failure or damage to the system.
NOTE
Indicates additional information as a reference.

Console Screen Output

y The lined box with ‘Courier New’ font will be used to distinguish between the main
content and console output screen text.
y Bold Courier New font will indicate the value entered by the operator on the
console screen.
© SAMSUNG Telecommunications America, L.P.
4

References

OfficeServ 7200 General Description Guide
The OfficeServ 7200 General Description Guide introduces the OfficeServ 7200 and provides system information including the hardware configuration, specification, and function.
OfficeServ 7200 Installation Guide
The OfficeServ 7200 Installation Guide describes the condition required for installation, the procedure of installation, and procedures on inspecting and starting the system.
OfficeServ 7200 Programming Manual
The OfficeServ 7200 Call Server Programming Manual describes the method of using the Man Machine Communication (MMC) program that changes system settings by using phones.

Revision History

Edition No. Date of Issue Remarks
01 09.2005 First Version
© SAMSUNG Telecommunications America, L.P.
5

SAFETY CONCERNS

For product safety and correct operation, the following information must be given to the operator/user and shall be read before the installation and operation.

Symbols

Caution
Indication of a general caution
Restriction
Indication for prohibiting an action for a product
Instruction
Indication for commanding a specifically required action
© SAMSUNG Telecommunications America, L.P.
6

CAUTION

War
Security Warning
Note that all external users are allowed to access the firewall when the Remote IP is
set to ‘0.0.0.0’ and Port is set to ‘0:’.
Setting IP Range
The number of IPs for the Local IP range and that for the Remote IP range
should be identical. For example, if the number of IPs for Local IP range is 10 and that for Remote IP range is 20, only 10 calls will be set.
PPTP Setting in Windows XP/2000
In Windows XP/2000, the user can use DHCP client. If VPN PPTP client is
connected while the DHCP client is operating, errors will be found. To prevent this problem, close the DHCP client operation on the [Start] Æ [Program] Æ [Administrative Tools] Æ [Services] menu of the Windows PPTP client installed.
Caution Against Changing Network Interfaces
If a network interface(e.g., IP, gateway, and subnet mask) is changed during router
operation, all the IP sessions that are being used in the router are disconnected for a while.
DB Change
The DBs of the WIM module and LIM module are integrated in the OfficeServ 7200
Data Server. When the DB is changed, the system restarts.
Dynamic IP of DHCP, PPPoE, and xDSL
If a dynamic IP is used, information(e.g., ‘Port Forward’ and ‘Static NAPT’) on public
IPs will not be automatically changed. ‘Fixed IP’ should be used for VoIP services
that require settings of the ‘Port Forward’ and ‘Static NAPT’ menus and for VPN services that require WAN IP address setting.
© SAMSUNG Telecommunications America, L.P.
7
Using Web Browser
Use Microsoft Internet Explorer 6.0 or higher as a Web browser to maintain
Delete Temporary Internet Files
OfficeServ 7200 Data Server.
Delete Temporary Internet Files after upgrading Data Server package. After selecting the [Internet Explorer] Æ [Tools] Æ [Internet Options] menu, click the [Delete Cookies] and the [Delete Files] button in the [Temporary Internet files]. If Temporary Internet Files are not deleted, Data Server Web Management will not display properly.
© SAMSUNG Telecommunications America, L.P.
8
TABLE OF CONTENTS
INTRODUCTION ......................................................................................................................................3
Purpose .........................................................................................................................3
Document Content and Organization.............................................................................3
Conventions...................................................................................................................4
Console Screen Output .................................................................................................4
References ....................................................................................................................5
Revision History.............................................................................................................5
SAFETY CONCERNS..............................................................................................................................6
Symbols.........................................................................................................................6
War................................................................................................................................7
TABLE OF CONTENTS ...........................................................................................................................9
CHAPTER 1. OfficeServ 7200 Data Server Overview ........................................................................ 12
OfficeServ 7200 Introduction...........................................................................................12
OfficeServ 7200 Data Server Introduction......................................................................13
CHAPTER 2. OfficeServ 7200 Data Server Installation .....................................................................16
Installation Procedure......................................................................................................16
Configuring the PCs.........................................................................................................17
Starting up the OfficeServ 7200 Data Server..................................................................19
CHAPTER 3. Using the OfficeServ 7200 Data Server........................................................................ 21
Firewall/Network Menu.....................................................................................................22
Status...........................................................................................................................24
Management................................................................................................................27
Filtering Service...........................................................................................................50
LAN Config ..................................................................................................................52
© SAMSUNG Telecommunications America, L.P.
Switch Menus....................................................................................................................53
Port..............................................................................................................................54
VLAN...........................................................................................................................57
MAC.............................................................................................................................62
9
STP..............................................................................................................................64
IGMP Config................................................................................................................66
QoS Config..................................................................................................................67
MISC Config ................................................................................................................68
Save Config.................................................................................................................69
Router Menus....................................................................................................................70
General........................................................................................................................70
Config..........................................................................................................................72
QoS Menus........................................................................................................................77
Group...........................................................................................................................78
Policy...........................................................................................................................83
Status...........................................................................................................................84
Management................................................................................................................84
Status Menus....................................................................................................................85
Monitoring....................................................................................................................86
Statistics.......................................................................................................................88
Serial State..................................................................................................................89
Services.......................................................................................................................90
VPN Menu..........................................................................................................................92
IPSec...........................................................................................................................93
PPTP.........................................................................................................................100
IDS Menu.........................................................................................................................103
Log Analysis...............................................................................................................104
Configuration ............................................................................................................. 109
Management............................................................................................................... 111
Rule Update............................................................................................................... 112
Block Config............................................................................................................... 113
Mail Config................................................................................................................. 115
DSMI Menu......................................................................................................................116
© SAMSUNG Telecommunications America, L.P.
DSMI Configuration ...................................................................................................118
DHCP Server.............................................................................................................122
VoIP NAPT.................................................................................................................128
10
SIP ALG Menu.................................................................................................................129
Config........................................................................................................................129
Management..............................................................................................................131
System Menu .................................................................................................................. 132
DB Config ..................................................................................................................133
Log.............................................................................................................................136
Time Config ............................................................................................................... 138
Upgrade.....................................................................................................................141
Appl Server................................................................................................................143
Reboot.......................................................................................................................147
Home, My Info & Logout................................................................................................148
ANNEX A. VPN Setting in Windows XP/2000...................................................................................149
IPSec Setting.............................................................................................................149
PPTP Setting.............................................................................................................161
ANNEX B. OfficeServ 7200 Data Server Quick Setup Guide
ANNEX C. OfficeServ 7200 Data Server Software Upgrade Quick Setup Guide
ABBREVIATION
© SAMSUNG Telecommunications America, L.P.
11
CHAPTER 1. OfficeServ 7200 Data Server
Overview
This chapter provides an overview of OfficeServ 7200 system and OfficeServ 7200 Data Server.

OfficeServ 7200 Introduction

The OfficeServ 7200 is a single platform that delivers the convergence of voice, data, wired, and wireless communications for small and medium offices. The ‘office in a box’ solution offers TDM voice processing, voice over IP integration, wireless communications, voice mail, computer telephony integration, data router and switching functions, all in one powerful platform.
With the LIM and WIM modules, the OfficeServ 7200 provides network functions such as a switch, router, and network security over the data server. This document describes the full suite of IP based data and routing capabilities of OfficeServ 7200 Data Server.
OfficeServ 7200 Configuration
For information on the configuration, features, or specifications of the OfficeServ 7200, refer to
‘OfficeServ 7200 General Description Guide’.
© SAMSUNG Telecommunications America, L.P.
12

OfficeServ 7200 Data Server Introduction

The OfficeServ 7200 provides the functions below on the IP-based data server:
Unmanaged Switch
The switch performs the function of a layer 2 Internet switch as well as the Learning
Bridge function based on the MAC address filtering and forwarding algorithm.
The LIM module provides 16 LAN ports per module. Each port is 10/100 Base T, auto
sending, full duplex. OS 7200 can support up to 8 unmanaged LIM.
Managed Switch
When the LIM is installed in slot 2 with a WIM in slot 1, it can function as a managed switch by using an access interface LAN on the WIM. OfficeServ 7200 supports 1 managed LIM.
As a managed switch, the following features are support
802.1D Spanning Tree – The switch configures and processes the forwarding tree based
on the spanning tree algorithm to prevent a packet forwarding loop in the switch.
Layer 2 802.1p Packet Priority QoS – The switch extracts the priority field from the
Ethernet frame configured according to the 802.1p specification standard, and discriminatively processes the frame according to the priority of the specified operation. The switch then maps packets to a designated queue. Up to 2 output queues, Low and High, are supported per egress port with queuing type of Weighted Round Robin or All High before Low. For devices that do not support 802.1p, OS 7200 LIM can be configured to create an enforceable priority.
Supports Virtual LAN (VLAN) – The Virtual Local Area Network (VLAN) groups the
related equipment by the work group according to the LAN operational policy regardless of the location of the user equipment. VLAN removes the effects of unnecessary broadcasting packets and configures a stable switching subnet only for the corresponding group by separating and processing the group in the virtual LAN. The VLAN can be configured based on the switch port, MAC address, and 802.1Q tag.
IGMP Snooping – IGMP Snooping provides a method for intelligent forwarding of
multicast packets within a layer 2 broadcast domains. By snooping IGMP registration information, a distribution list of work stations is formed that determines which end­stations will receive packets with a specific multicast address.
802.3x Layer 2 Flow Control – Flow control is performed according to the value set for
incoming rate and/or outgoing rate. Limiting the rate at which a port can receive or send traffic is used to ease congestion on bottlenecks in the network and provide simple prioritization when the network is busy.
ed:
© SAMSUNG Telecommunications America, L.P.
13
Router
Multiple Network Interfaces:
o 2 WAN Ethernet ports: auto-sensing 10/100Base-T and 10Base-T, supporting
Point-to-Point, Point-to-Point over Ethernet (PPPoE) and DHCP client protocols.
o 1 LAN Ethernet port: Enables a connection with a switch for LAN configuration. o 1 Serial WAN port: Enables dedicated data line service by being connected with
DSU or CSU, which is a data line device. V.35 serial interface supports Dynamic Host Configuration Protocol (DHCP), PPP, or Frame Relay Encapsulation.
o 1 DMZ Ethernet port: Enable DMZ connection to protect an internal network
from external hazards. DMZ is a separate LAN port for configuring the device which requires a free access from outside such as a mail server and web server, while separating the device from internal devices.
Subnet Routing – The network interfaces of the WAN1, WAN2, LAN and DMZ are
configured with different sub-network interfaces, which enable them to perform the routing process with each other.
Static Routing – The OfficeServ 7200 configures a fixed routing table between each
network interface to process the static routing. In this case, the routing table cannot be dynamically changed by the routing protocol, and specific routing services will be provided according to the pre-set routing policy.
Dynamic Routing – The OfficeServ 7200 supports routing information exchange
protocols to react to the changing network environment more effectively:
o RIPv1, RIPv2: These protocols are widely used for managing the routing
information in a mid-sized independent network such as a group of LANs
o OSPFv2: This protocol is used in a large-sized independent network. A router
detects and reports any change in the routing table or the network to other routers, thus all routers share the same routing information.
Performs inter-VLAN routing – Communication between the VLAN groups.
Data Network Security
Outbound and Inbound NAT/PT
o Controls an access to internal resources through conversion between the Global IP
and Private IP. Network Address Translation and Port Address Translation services protect devices on the private internal LAN from being exposed on the Public Network. This service also allows a single public IP address to be shared among multiple hosts on the internal LAN.
Firewall
o Access Filtering: Access lists and policies can be implemented to control access to
the Data Server resources.
o DMZ Function: Hosts connected to the DMZ port can bypass the network firewall
making it easier for external clients to access their services. Applications such as web servers and mail servers are typically connected to the DMZ ports.
o Port Forwarding: This feature allows external hosts on the public network to
access hosts and services on the internal private LAN by forwarding the public WAN address to a private LAN address based on a specific port
© SAMSUNG Telecommunications America, L.P.
14
Intrusion Detection System(IDS)
o Detects and notifies an access to unauthorized areas by the access list. o Recognizes and notifies unauthorized packets by applying the basic intrusion rule
for packets.
o Detects and blocks DoS attacks such as SYN flood.
Virtual Private Network(VPN)
o The VPN capability creates encrypted ‘tunnels’ through the Internet, allowing
branch offices or remote users to securely connect into the network from off-site.
o Functions as a VPN gateway based on PPTP and IPSec. o Performs privacy and integrity through VPN tunneling and data encryption.
Data Network Application
Functions as data network applications such as NAT/PT, Firewall, VPN, DHCP, and Application Level Gateway(ALG)
SIP Aware Application Level Gateway (ALG)
o This feature takes SIP packets coming to the WAN interface and redirects them to
any SIP user agents connected to the private LAN.
DHCP Server
o This service dynamically assigns IP addresses to all hosts connected to the private
LAN.
QoS
Processes priority for layer 2 frames based on the 802.1p standard(Switch function)
Processes priority queuing for layer 3 packets and for selected IPs. The ToS (Type of
Service) field of the IP header is checked and process according to the priority of the corresponding routing in the data server.
Processes priority queuing for layer 4 packets and for RTP packets (UDP/TCP port).
Prioritize RTP voice packets over normal data packets for improved voice quality in VoIP applications.
DSMI
This service automatically configures the router to allow for VoIP applications such as
remote IP phones and IP networking, IP Trunking, etc. If the OfficeServ 7200 VoIP services provided by MCP and MGI use private IP, and they are connected behind the WIM router’s public IP, DSMI will automatically perform NAPT for signaling and media data packets for VoIP services.
Management
Supports a specialist level debugging function through Telnet connection
Supports configuring and verifying the functional block operations of the data server
through a web-based browser
Exchanges IDS data and alarm data with the system manager
Program upgrade
o Upgrades program through TFTP o
Upgrades program through HTTP
© SAMSUNG Telecommunications America, L.P.
15

CHAPTER 2. OfficeServ 7200 Data Server Installation

This chapter describes the installation and login procedures for the OfficeServ 7200 Data Server.

Installation Procedure

OfficeServ 7200 Data Server software is installed on WIM board. The software package is composed of items described below:
Package File Description
Bootrom Package bootldr.img-vx.xx
bootldr.img-vx.xx.sum
Main Package
ds-pkg-vx.xx.tar.gz Upgrade package for HTTP on the
app.img-vx.xx
app.img-vx.xx.sum
config.img-vx.xx
config.img-vx.xx.sum
kernel.img-vx.xx
kernel.img-vx.xx.sum
log.img-vx.xx
log.img-vx.xx.sum
ramdisk.img-vx.xx
ramdisk.img-vx.xx.sum
flash1.img-vx.xx
flash1.img-vx.xx.sum
flash2.img-vx.xx
flash2.img-vx.xx.sum
Boot ROM program
WEB Management
‘app’ partition upgrade package for
TFTP
‘config’ partition upgrade package for
TFTP
‘kernel’ partition upgrade package for
TFTP
‘log’ partition upgrade package for
TFTP
‘ramdisk’ partition upgrade package for
TFTP
The first flash fusing file
The second flash fusing file
Software Package Configuration
Each package has a separate file for checking checksum, and x.xx represents the version.
© SAMSUNG Telecommunications America, L.P.
Setup the environment as follows to access the Data Server.
1.
Mount the WIM board on slot 1 and the LIM board on slot 2.
In order to connect the WIM board to the LIM board through the back panel, first
place the shunt pin of JP1, 2, 3, and 4 toward the back of the WIM board, then mount the WIM board to the back panel direction.
16
If the shunt pin of JP1, 2, 3, 4 is directed to the front of the WIM board, connect the
LAN port of the WIM board to one of the Ethernet port of the LIM board through a LAN cable.
2.
Connect a PC to a Ethernet port of the LIM board.

Configuring the PCs

This section describes how to configure your PC to communicate with the OS 7200 Data Server Management Web Browser.
The instructions below apply only to Windows 2000 or XP computers. Make sure that an Ethernet card or adapter has been successfully installed in your PC.
1.
Click the [Start]button. Click [Settings] and then [Control Panel]. From there, double­click the [Network] icon.
2.
On the [Configuration] tab, select the Internet Protocol (TCP/IP) line for the applicable Ethernet adapter. Click the [Properties] button.
© SAMSUNG Telecommunications America, L.P.
17
3.
Click the [IP Address] tab and select Specify an IP address. Enter the following IP address:
IP Address: Enter a unique IP address that is not used by any other computer on the
network connected to the OS 7200 data server. You can use an IP address in the ranges of 10.0.0.2 to 10.0.0.254.
Subnet Mask: 255.255.255.0
Default Gateway: 10.0.0.1 (OS 7200 Data Server’s default IP address)
Click the [OK] button in the Internet Protocol Properties window. Click the [OK] button in the Local Area Connection Properties window.
© SAMSUNG Telecommunications America, L.P.
4.
Execute the Internet Explorer from the PC and connect to the IP of LAN. The default IP address of the WIM board managing the LIM board is set to ‘10.0.0.1’.
Using Web Browser
Use Microsoft Internet Explorer 6.0 or higher as a Web browser to maintain OfficeServ 7200
Data Server.
18

Starting up the OfficeServ 7200 Data Server

The procedure for starting up the OfficeServ 7200 Data Server is as follows:
1.
Start the Internet Explorer and enter the IP address of the Data Server into the address
bar. The login window shown below will appear:
2.
Login using the administrator ID and password. The default Login ID and Password are Admin and Admin respectively. Click the [OK] button to proceed. The following window will appear:
© SAMSUNG Telecommunications America, L.P.
19
3.
Click [Data] to use the menus for Data Server shown in the following window:
When a ‘Data’ menu is selected, the submenus of the Data Server menu appear on the left section of the window. Descriptions on each submenu are provided in ‘Chapter 3. Using the OfficeServ 7200 Data Server’.
Delete Temporary Internet Files
Delete Temporary Internet Files after upgrading Data Server package.
Select the [Internet Explorer] Æ [Tools] Æ [Internet Options] menu, click the [Delete Cookies]
and the [Delete Files] button in the [Temporary Internet files].
If the Temporary Internet Files are not cleared, Data Server Web Management displayed info will
not be correct.
© SAMSUNG Telecommunications America, L.P.
20
CHAPTER 3. Using the OfficeServ 7200 Data
Server
This chapter describes how to use the menus of the OfficeServ 7200 Data Server.
The menus of the OfficeServ 7200 Data Server are as follows:
© SAMSUNG Telecommunications America, L.P.
21

Firewall/Network Menu

Firewall/Network Menu provides a Configuration Wizard to setup the WAN1, WAN2, LAN, DMZ, and Serial network interfaces, as well as firewall and the communication policies between the firewall and each interface. Under this menus, you can also setup the Data Server Access Control List, Port Forward, and Filtering Services.
Select [Firewall/Network] to display the submenus of Firewall/Network on the upper left section of the window.
© SAMSUNG Telecommunications America, L.P.
Menu Submenu Description
Status
WAN1 Displays user settings of the WAN1 port, which is an external port used for
Internet connection.
DMZ Displays user settings of the DMZ port, which is an internal port. The DMZ
(Demilitarized Zone) allows internal LAN devices to be accessible to
Internet traffic, such as Web servers, FTP servers.
LAN Displays user settings of the LAN port, which is an internal port.
WAN2 Displays user settings of the WAN2 port, which is an external port.
SERIAL Displays user settings of the SERIAL port, which is an external port.
Network status Displays a summary of status of all ports.
22
Menu Submenu Description
Management
Service
LAN config - Sets the transfer rate and transmission system of Ethernet port.
Config Sets firewall and network interface configuration.
Port ACL Allows external users to access OS 7200 firewall.
Port Forward Sets port forward to pass thru OS 7200 firewall. The incoming traffic is
directed to specific local PCs based on one specified destination port
number.
Static NAPT Sets port forward to pass thru OS 7200 firewall. The incoming traffic is
directed to specific local PCs based on a range of service port numbers.
Network DB List Deletes DB where settings are saved.
URL Filtering Blocks the internal network web access to the URL name setting. Filtering
IP Filtering Blocks the internal network web access to the IP setting.
© SAMSUNG Telecommunications America, L.P.
23

Status

The [Status] menu displays the setting of the WAN1, DMZ, LAN, WAN2, or SERIAL.
Port Setup Procedure
The WAN1, LAN, DMZ, WAN2, and SERIAL ports are set at the [Firewall/Network] Æ
WAN1
The [Status] Æ [WAN1] menu shows the setting of WAN1, which is an external port using a public IP.
[Management] Æ [Config] menu. Refer to the description on the menu for the setup procedures.
© SAMSUNG Telecommunications America, L.P.
Port Settings
Refer to descriptions on the [Firewall/Network] Æ [Management] Æ [Config] menu for details on
the items of the setting.
24
DMZ
LAN
WAN2
SERIAL
The [Status] Æ [DMZ] menu shows the setting of DMZ, which is an internal port using a private IP or public IP.
The [Status] Æ [LAN] menu shows the setting of LAN, which is an internal port using a private IP.
The [Status] Æ [WAN2] menu shows the setting of WAN2, which is an external port using a public IP.
The [Status] Æ [SERIAL] menu shows the setting of SERIAL, which is an external port using a public IP.
DMZ, LAN, WAN2, and SERIAL ports’ settings
Settings of ports that have no lines connected (When the port is set to ‘Not Used’at the
[Management] Æ [Config] menu) are displayed as ‘No line’s connected to this port’.
© SAMSUNG Telecommunications America, L.P.
25
Network Status
The [Status] Æ [Network Status] menu displays the current IP Address of WAN1, DMZ, LAN, WAN2, and SERIAL.
Category WAN1, DMZ, LAN, WAN2, and SERIAL ports
Usage - NONE: Unused line
Type - NONE: Not used port
Item Description
- PRIMARY: Primary public interface
- SECONDARY: Secondary public interface
- INTERNAL: Line used for internal interface
- PUBLIC: Port using public IP
- INTPRV: Internal port using private IP
- INTDMZ: Internal DMZ port
© SAMSUNG Telecommunications America, L.P.
26
g

Management

The [Management] menu sets ports related to firewall and network.
Config
The [Config] menu starts the configuration wizard which will guide through the settings of the WAN1, LAN, DMZ, WAN2, and SERIAL ports. Select [Management] Æ [Config] and set the items of each window. Click the [Next] button and set the firewall and network according to the following procedure:
1
2
3
4
5
6
Initial setup
Configure line type for each port
Configure WAN1
Configure DMZ
Confi
Configure WAN2
ure LAN
© SAMSUNG Telecommunications America, L.P.
7
8
Configure SERIAL
Save settings
27
Initial Setup
1.
Select [Management] Æ [Config] and display the window shown below. The ‘NAT’ and ‘Packet Filtering’ items are originally disabled. Check the checkboxes to set the status to ‘On’ and click the [Run] button.
If these items are checked, Click the [Next] button.
Network Address Translation (NAT)
NAT is an Internet standard that enables a local-area network (LAN) to use one set of IP
addresses for internal traffic and a second set of addresses for external traffic. NAT adds a
level of security by protecting the address of a PC connected to the private LAN from
transmitted on the Internet. If only a single Internet IP address is provided by the ISP
(such as a DSL or cable modems internet account), NAT must be selected to allow all PCs
on the LAN to share this single Internet IP address.
Packet Filtering
2.
Packet Filtering controls access to the local-area network by analyzing the incoming and
outgoing packets and letting them pass or halting them based on the IP address of the
source and destination.
Click the [Start] button to start the Firewall/Network configuration wizard, which will
step through configuration for each interface.
© SAMSUNG Telecommunications America, L.P.
28
3.
New settings can be set or previously set setup files can be changed or executed from
the following window. The IP of the LAN port is initially set to ‘10.0.0.1’. Check the ‘default’ item and click the [Next] button.
Set Line Type for Each Port
External ports (e.g., WAN1, WAN2, SERIAL) use public IPs while internal ports (e.g., DMZ, LAN) use public or private IPs. Select the line type for each port as listed below:
External port (WAN1,WAN2, SERIAL)
o Primary WAN line: Primary internet connection interface o Secondary WAN line: Secondary internet connection interface o Third WAN line: Third internet connection interface o Not Used: No WAN line is connected
Internal port (DMZ, LAN)
o Internal line: Internal line is used o Not Used: Internal line is not used
In the figure shown below, WAN1 port is set to Primary WAN line as the primary line, LAN port is to Internal line as the internal line, and WAN2, SERIAL, and DMZ ports are set to Not Used as lines not connected:
Dynamic IP Address (e.g. Cable Modem, ADSL PPPoE, and SDSL internet account)
If a dynamically assigned IP address is used for WAN internet connection, information
(e.g., ‘Port Forward’ and ‘Static NAPT’) on public IPs will not be automatically changed.
‘Fixed IP’ should be used for VoIP services that require settings of the ‘Port Forward’ and
‘Static NAPT’ menus and for VPN services that require WAN IP address setting.
© SAMSUNG Telecommunications America, L.P.
29
WAN1 Setup
1.
The starting window for setting WAN1 as “Primary WAN line’ is shown below. Click the [Next] button to start setting the WAN1 port.
2.
Select the line type for Primary WAN line. Select one of the four applications shown below for the external network:
Fixed IP: Select Fixed IP if your Internet service account uses Fixed IP (Static) IP assignment.
Primary PPPoE Client: Select Primary PPPoE Client if your Internet service
account uses PPP over Ethernet login protocol, such as in ADSL account.
Primary DHCP Client: Select Primary DHCP Client if your Internet service
account uses Dynamic IP assignment, such as in Cable Modem account.
Primary VDSL Line: Select Primary VDSL Line if your Internet service account
uses VDSL service.
The four applications of Primary WAN line are described below:
a. Fixed IP: Enter values in the Address, Netmask, and Gateway fields to perform
settings in the WAN1 port on an external network where a static IP is used, and click the [Next] button. To add another IP, apart from the IP of the external line currently being used, click the [Add] button and add the item. OfficeServ 7200 WAN interface supports up to eight multiple public IP addresses.
© SAMSUNG Telecommunications America, L.P.
30
Loading...
+ 150 hidden pages