Edimax BR-6641 User Manual

Edimax BR-6641 User Manual

4wan+1lan load balancer router
Hide thumbs Also See for BR-6641:

Advertisement

Quick Links

B
B
4
W
A
N
+
1
L
A
4
W
A
N
+
1
L
A
User Manual
R
-
6
6
4
R
-
6
6
4
N
L
o
a
d
B
a
l
a
N
L
o
a
d
B
a
l
1
1
n
c
e
r
R
o
u
t
e
a
n
c
e
r
R
o
u
t
e
r
r

Advertisement

Table of Contents
loading

Summary of Contents for Edimax BR-6641

  • Page 1 User Manual...
  • Page 2: Table Of Contents

    Chapter1 Quick Start ...4 1.1 Preparation ...4 1.2 Access to the Web-based UI ...6 1.3 BR-6641 Web-based UI Overview...8 1.4 How to use BR-6641 Web-based UI...10 1.4.1 BR-6641 Operating Menu...10 1.4.2 BR-6641 Rule/Filter/Policy Table... 11 Chapter 2 System...13 2.1 Summary...14 2.2 Traffic Statistics ...16...
  • Page 3 BR-6641 User Manual 4.4 QoS ...62 4.5 Per IP Max Connection ...66 4.6 Per IP Max Rate Control ...68 4.7 Multihoming...70 4.8 Internal DNS ...75 4.9 SNMP...77 4.10 UPnP...78 Chapter 5 Log...79 5.1 View ...80 5.2 Control ...81 5.3 Notification ...84...
  • Page 4 Copyright© by Edimax Technology Co, LTD. all rights reserved. No part of this publication may be reproduced, transmitted, transcribed, stored in a retrieval system, or translated into any language or computer language, in any form or by any means, electronic, mechanical, magnetic,optical, chemical, manual or otherwise, without the prior written permission of this company.
  • Page 5: Chapter1 Quick Start

    1.1 Preparation Before you get started, there are few things you need to know: The position of the BR-6641 LAN Port: It has five network interfaces, the last port is LAN Port which is marked on the machine. The default IP address for LAN interface is 192.168.2.1 Your IP addresses for computers in the LAN should be changed to 192.168.2.2 (or 192.168.2.x) in order to avoid conflicts with the default LAN...
  • Page 6 Use a cross-over cable to access BR-6641 Web-based UI from the LAN port. BR-6641 is shipped with two types of network cable in the box; one is a cross-over and the other is a straight cable. Please use the cross-over cable to connect to the computer and LAN port of BR-6641, the LED of the plugged in port will turn on when properly connected.
  • Page 7: Access To The Web-Based Ui

    Connect your PC Ethernet LAN interface to LAN port of BR-6641 with a cross-over cable. The default management LAN port of BR-6641 is LAN port. After powering on BR-6641, the LED of LAN port will turn to orange. This indicates that it is on-line.
  • Page 8 BR-6641 User Manual Cancel the Proxy Setting...
  • Page 9: Br-6641 Web-Based Ui Overview

    1.3 BR-6641 Web-based UI Overview After logging in, you will be able to start configuring or monitoring BR-6641 through the Web-based UI. In order to help you to familiar with the basic operations, the explanations are as follows: The Web-based UI tasks are grouped into four categories. The categories are located at the upper left-hand corner of Web-based UI task bar.
  • Page 10 “reset” and password “BR-6641_edimax” to log into serial console and reset the system to default. Open the IE browser to access the Web-based UI Note: Please remember the changed password , otherwise it is not possible to access the BR-6641 management interface.
  • Page 11: How To Use Br-6641 Web-Based Ui

    1.4 How to use BR-6641 Web-based UI This section describes the operations and arrangement of Web Based UI, figure 1-2 displays the operating menu of BR-6641 Web-based UI system. BR-6641 Web Based UI Operating Menu Items 1.4.1 BR-6641 Operating Menu The task bar of operating menu contains five categories, which are System, Service, Network, Log, each category has these own menu, “System /...
  • Page 12: Br-6641 Rule/Filter/Policy Table

    1.4.2 BR-6641 Rule/Filter/Policy Table Orders of Rules/Filters/Policies BR-6641 provides a rule table for you to perform the tasks like system parameter or service policies. Often you are required to add or delete rules of your own. In general, when you have multiple rules in a table, BR-6641 matches these rules from top to bottom.
  • Page 13 Table 5.2 So far, we have only mentioned the basic operations of the Web-based UI. In the next section, we will talk more on how to integrate BR-6641 into your present network environment. Operating Rules The function is disabled.
  • Page 14: Chapter 2 System

    In this chapter, you will learn how to configure system settings. System settings are the fundamental configurations of the BR-6641 system. They have to be specific in order for the system to work properly. Examples are provided here to help you to fulfill the configuration.
  • Page 15: Summary

    Table 3.1 System Information Note: Connections may jump up to over 100 when BR-6641 is starting up. This is due to many ICMP packets sent out by BR-6641 to test the network. It will drop back to normal there after.
  • Page 16 Each WAN link is represented as a color-coded block with the following color coding scheme to indicate its status. The allowed number of WAN Link is also shown here. Green: Active WAN link. Red: Broken WAN link. Black: WAN link not in use. BR-6641 User Manual...
  • Page 17: Traffic Statistics

    Traffic Class WAN Link 1, 2… Table 3.2 The Description of the fields on the Statistics/Traffic Page BR-6641 User Manual Descriptions The direction of traffic flow – either inbound traffic or outbound traffic. The names of the traffic classes defined on the QoS page.
  • Page 18: Diagnostic Tools

    ARP Enforcement: network devices around BR-6641. When the Enforce button is pushed, BR-6641 sends out ARP packets to the surrounding servers or network devices to update their ARP tables. This is necessary only if certain equipments in DMZ cannot connect to the Internet properly after initial setup.
  • Page 19 BR-6641 discovers that a machine in WAN conflicts with Network Setting on BR-6641. For example, a public IP address should be in DMZ but is used by a machine in WAN. An error message with the conflicting IP address and MAC address of the machine will be displayed.
  • Page 20 WAN link number in Index field. For ARP related error messages, please refer other materials. Note: If a host name is used in Target IP field, then a DNS server has to be specified in [Network ]→[Host Names]. BR-6641 User Manual...
  • Page 21: Date&Time

    Hawaii, select ”US” in the left list and then choose “Hawaii” in the right list. BR-6641 can use the NTP protocol to get time from the Internet. You can select a time server from the list or add your preferred time server to the list. With NTP, BR-6641 automatically adjusts its time when necessary.
  • Page 22: Busyhour Setting

    <Hour/Minute> <Hour/Minute> Type Busy Idle Table 3.3 Busyhour Setting BR-6641 User Manual Description Define default type to be either Idle or Busy hour. You set the time segment rules in this table. They are matched in sequence on a first-match basis. If none of the rules match, the default type is used.
  • Page 23: Administration

    To avoid any security risks, it is absolutely necessary to change passwords before putting your BR-6641 on-line. From time to time you might receive BR-6641 firmware updates from AscenVision or your system integrator. Just push the Update button and follow the instructions on the screen to update.
  • Page 24: Administrator Password

    You can reset BR-6641 to its factory default state. In doing this, you will lose your entire customized configuration. Finally, you can reboot BR-6641. Due to web interface limitations. There will not be any messages after you have rebooted the system. Wait two minutes or so and try to re-connect to BR-6641 using the browser.
  • Page 25: Configuration File

    SURE not to turn off the system or pull the power plug. You should also NOT click on [Upload] button. Note:Update will succeed when ¬the “Update succeeded” message appears. At this time please power off and then on again the system to restart BR-6641 with the new firmware. Configuration File: Push Save button to save current configuration into a file.
  • Page 26: Chapter3 Network

    BR-6641 User Manual Chapter3 Network Figure 3.1 The Location of “Network” on the Menu Bar...
  • Page 27: Wan Setting

    BR-6641 User Manual 3.1 WAN Setting Figure 3.2 System / Network Setting [WAN Setting] is quite important part for BR-6641. The relavent parameter is defined here. The configuration is done one WAN link at a time. However, you can apply all the changes at once at the end.
  • Page 28 After connecting the WAN Link to the machine, WAN No. need to be defined in [Basic Setting]. WAN is to be different for different type of WAN. BR-6641 provide the following choices: Standard DHCP PPPoE PPTP Advanced Figure 3.3 WAN Setting / Basic Setting...
  • Page 29: Standard Mode

    BR-6641 User Manual 3.1.1 Standard Mode Basic Setting: Figure 3.4 Standard Mode / Basic Setting When you select Standard Mode as the WAN Type, you need to fill the parameters as in the Basic Setting table.
  • Page 30 By fine-tuning certain parameters, an MIS can adjust BR-6641 to match a particular network structure and/or a particular ISP. For WAN link health detection, BR-6641 sends out ICMP or TCP packets and monitors responses to determine the statuses of those links. In the WAN Link...
  • Page 31 Always BR-6641 will always do the health detection according to the rules. Only when no packet If BR-6641 detects no inbound WAN traffic, it will start the is received health detection. Protocol Choose either ICMP or TCP as methods for WAN health detection.
  • Page 32: Dhcp Mode

    3.1.2 DHCP Mode This model is enabled when BR-6641 is a client using DHCP to acquire a dynamic IP address from an ISP's DHCP server. Figure 3.6 DHCP Mode / Basic Setting Field Value Down Stream Up Stream Port Speed...
  • Page 33 Clone MAC xx-xx-xx-xx-xx-xx Table 3.3 DHCP Mode BR-6641 User Manual This function is used to configure the WAN link health detection mechanism for the specific WAN link. Please refer to Chapter 3.2.1 WAN Link Health Detection.
  • Page 34: Pppoe Mode

    Field Value Down Stream Up Stream Port Speed Auto BR-6641 User Manual Description The down stream (inbound) bandwidth of the WAN link, for example 25600 (Kbps). The up stream (outbound) bandwidth of the WAN link, for example 25600 (Kbps). The speed and duplex of WAN Port. You can...
  • Page 35 Obtain Address Address x.x.x.x Table 3.4 PPPoE Mode BR-6641 User Manual set it manually or system can got it automatically. This function is used to configure the WAN link health detection mechanism for the specific WAN link. Please refer to Chapter 3.2.1 WAN Link Health Detection.
  • Page 36: Pptp Mode

    3.1.4 PPTP Mode This model is enabled when BR-6641 is access to PPTP server via Internet. Figure 3.8 PPTP Mode / Basic Setting Field Value Down Stream Up Stream BR-6641 User Manual Description The down stream (inbound) bandwidth of the WAN link, for example 25600 (Kbps).
  • Page 37 My IP x.x.x.x subnet mask Table 3.5 PPTP Mode BR-6641 User Manual The speed and duplex of WAN Port. You can set it manually or system can got it automatically. This function is used to configure the WAN link health detection mechanism for the specific WAN link.
  • Page 38: Advanced Mode

    BR-6641 User Manual 3.1.5 Advanced Mode Advanced mode is used where BR-6641 is connected with a router via its private IP and its actual public IP deployed in DMZ. Figure 3.9 Advanced Model / Basic Setting...
  • Page 39 Input the private IP address of BR-6641 connected with the router. There are two options available: IP Address IP Range Input predefined Gateway, 192.168.99.1. Input the Subnet Mask. Input the public IP of BR-6641 in DMZ Input the Subnet Mask. e.g.:...
  • Page 40: Lan Setting

    3.2 LAN Setting Figure 3.10 Network/LAN Setting Basic Subnet The table of Basic Subnet allows you to specify one or more private subnets that connect to BR-6641 directly. Figure 3.11 LAN Setting / Basic Subnet BR-6641 User Manual...
  • Page 41: Rip Configuration

    Please refer to IETF’s official documents for the complete definition of RIP. If your private LAN subnet supports RIP, you need to also enable BR-6641’s RIP function, by doing as follows: Figure 3.12 LAN Private Subnet / RIP Configuration...
  • Page 42 BR-6641 User Manual Note: DMZ is virtual area, which is in the port with LAN. DMZ support the public IP Address. The public IP support only one IP range, which do not support multi-IP range Routing. Example: Figure 3.13 LAN Private Subnet / Static Routing Subnet Figure 3.14...
  • Page 43: Dhcp Setting

    Figure 3.15 Network / DHCP Setting Click on “Enable DHCP” to enable this function. BR-6641 is a client using DHCP to acquire a dynamic IP address from an ISP’s DHCP server. The following is an example of how you set it up.
  • Page 44 BR-6641 User Manual Figure 3.16 DHCP Setting...
  • Page 45 Input the dynamic Range Start and Range End assinged for LAN host, e.g. -Range End 192.168.10.53 -199.168.10.100. -MAC If the host in LAN require a stable IP Address, input IP Address and Address IP-MAC Address. Table 3.7 DHCP Setting BR-6641 User Manual Description...
  • Page 46: Host Names

    Network / DHCP Setting Description Input the host name of the BR-6641. Input the domain of the BR-6641. Input the IP Address of DNS, BR-6641 will use it to resolve machine names to obtain IP addresses Table 3.8 System Name BR-6641 User Manual...
  • Page 47 Named IP Addresses: Field Name Input the name which is to be substitute for the IP address. Address Specify the IP Address. It can be: IP Address IP Range Description Table 3.9 System Name BR-6641 User Manual...
  • Page 48: Service Names

    3.5 Service Names Figure 3.18 This function is to configure the name, protocol and other parameters of service. (BR-6641 has a default list of commonly used services.) These defined names will appear in sub-menu of service in Firewall, Multihoming, etc.. Service List:...
  • Page 49 Parameter Number Type From…To Table 3.10 Service Name BR-6641 User Manual ICMP: The service used ICMP, e.g. Ping. TCP: The service used TCP, e.g. FTP. UDP: The service used UDP. Specify the parameter for different Protocols. Number: Input Protocol Number.
  • Page 50: Ip Grouping

    BR-6641 User Manual 3.6 IP Grouping BR-6641 offers a variety of services. These services will be discussed in the next chapter. In order to help IT manager configure services efficiently, BR-6641 provides a few management tools. IP Grouping is one of them. This function allows you to assign a name to a group of IP addresses.
  • Page 51 [Named IP Addresses] can only be a range of IP Address, while [IP Group] provide several types of format. BR-6641 give more priority to the group in [Named IP Addresses]. It is recommended to use groups defined in [Host Name].
  • Page 52: Service Grouping

    Transfer, then it will appear in the service menu and relevant options. Note: You can set at most 5 groups. ICMP Define the assigned TCP, UDP, and ICMP as a group for the usage in the TCP@ BR-6641 User Manual...
  • Page 53 For example, you can set up a service group called “MSN File Transfer”. Its ports are TCP 6891 to 6900. You need to fill TCP@6891-6900 into Service field. BR-6641 User Manual service menu. The format is port (xxx) for single Port and port (xxx-yyy) for a range of port, e.g.
  • Page 54: Chapter 4 Service

    These services can help you manage your network more efficiently and effectively. In figure 4.1, you can see a list of functions BR-6641 is capable of. These services play an important role in daily network administration. For example, Firewall protects your network from hacker attacks.
  • Page 55: Firewall

    [Summary] is in the submenu of [System], which helps the Administrator to know the system information. While logging in the Web UI, System/Summary is the first page you see when you log into BR-6641’s web-based UI. [Summary] provide the following information: Figure 4.2 The Location of “Service/Firewall”...
  • Page 56 Any Address: Match all packets regardless of its source. LAN: Match all packets that come from the LAN. WAN: Match all packets that come from the WAN. Localhost:Match all packets that come from BR-6641 Localhost. IP Address: Match packets from a single IP address. e.g.
  • Page 57 Group: The packets from the group which are predefined in [Service Grouping]. Any: All packets are to be matched. Note: The default value by BR-6641 is to neglect all the packets. Accept: The firewall will let the matched packets pass through.
  • Page 58: Auto Routing

    Busy hour, idle hour, and All-time. All-time mean the rule will be applied for all the 24 hours a day. Please refer to Chapter 2 [System]->[ Date&Time]->[Busyhour Setting] for setting up the definition of busy or idle hours. BR-6641 User Manual...
  • Page 59 Packets sent from the specified source will be matched: Any Address: Match all packets regardless of its source. LAN: Match all packets that come from the LAN. Localhost: Match all packets that come from BR-6641 Localhost. IP Address: Match packets from a single IP address. e.g.
  • Page 60 The type of parameter depends on the algorithm you choose. The number represents the number of WAN link. You can check, the check box under the number, telling BR-6641 to apply the algorithm to this WAN link. Enable: The logging will be enabled. Whenever the rule is matched, the system will write the event to the log file.
  • Page 61: Virtual Server

    If you wish to make these services (provided on the servers) accessible to outsiders, you must tell BR-6641 to redirect these external requests to the right servers in the LAN or DMZ. Whenever an external request arrives at BR-6641, BR-6641 will look up the Virtual Server table and redirect the packet right to the corresponding server in the LAN or DMZ.
  • Page 62 Server Port Port Number L og Enable Disable Table 4.3 The Description of the Fields on Virtual Server Page BR-6641 User Manual Description There are three options available: Busy hour, idle hour, All-times. Please refer [System]→[ Date/Time] for setting up the definition of busy or idle hours.
  • Page 63: Qos

    This function is to manage the bandwidth so as to fine-tune your bandwidth utilization. Bandwidth Management (BM) in BR-6641 is separated by the direction of traffic flow – either inbound (from WAN to LAN) or outbound (from LAN to WAN).
  • Page 64 This makes sure the connections through the WAN link will at least be allocated with the specified bandwidth. It is particularly useful when you want to ensure the quality of a certain type of service (e.g. VoIP). This defines the maximum bandwidth allowed for the BR-6641 User Manual...
  • Page 65 Any Address: Match all packets regardless of its source. LAN: Match all packets that come from the LAN. WAN: Match all packets that come from the WAN. Localhost: Match all packets that come from BR-6641 Localhost. IP Address: Match packets from a single IP address. e.g. 192.168.1.4 IP Range: Match packets from a continuous range of IP addresses.
  • Page 66 Classes <Name> Table 4.5 The Description of the Fields in the Inbound BM Filter Table BR-6641 User Manual the list as well. Please See [System]→[IP Grouping] for setting up your own IP groups. The services, which are predefined in [Service Name], will be matched.
  • Page 67: Per Ip Max Connection

    This function is used to protect network against malicious attacks caused by virus or hackers. When the number of connections exceeds the preset value, BR-6641 will block the rest of connections and write the event to a log file if the check box of ”Log”...
  • Page 68 Enable Disable Table 4.6 The Description of the fields in the Per IP Max Connection Table BR-6641 User Manual The time interval used for system to write the event to the log file. Connections established from the specified source will be matched, including Any Address, LAN, WAN, IP Address, IP Range, Subnet, and IP Group.
  • Page 69: Per Ip Max Rate Control

    BR-6641 User Manual 4.6 Per IP Max Rate Control Figure 4.9 The Location of “Service / Per IP Max Rate Control” on the Menu Bar This function is used to set the maximum bandwidth assigned to inbound and outbound traffic per IP in order to prevent network congestion from non-business application bandwidth consumption.
  • Page 70 Outbound (Kbps) <value> Table 4.7 The Description of the fields in the Per IP Max Rate Control Table BR-6641 User Manual Description The IP where the packets come from will be matched, including LAN, IP Address, IP Range, IP Subnet, and specified IP Group.
  • Page 71: Multihoming

    WAN link so that the public IPs returned will be distributed evenly by weight. If one of your WAN links fails, BR-6641 will not return the public IP assigned to that failed link nevertheless your publicly accessible servers...
  • Page 72 BR-6641 User Manual are still reachable via other live WAN links. In order to let your Multihoming function properly, you must make sure that the requirements listed below are met. Prerequisites for Multihoming: Multiple WAN links (at least two). Registered domain names for your publicly accessible servers.
  • Page 73 (can be more than one), the DNS servers for querying your domain names, and the answering policy to apply a given prefix of the domain name. Value Description Set DNS query response time. Enter the reverse lookup IP address. Enter the corresponding FQDN to the reverse IP. BR-6641 User Manual...
  • Page 74 FQDN is nsl.abc.com, please enter “nsl”. Enter the IP address corresponding to the name server. Enter the prefix of the primary workstation’s name. example, if the name is www.abc.com, enter “www”. BR-6641 User Manual To enter For example, if a...
  • Page 75 “mail”. Priority Enter the priority of the mail servers. The higher the priority, the lower the number Mail Server Enter the IP address of the mail server. Table 4.9 The Description of the Fields in Domain Setting BR-6641 User Manual...
  • Page 76: Internal Dns

    4.8 Internal DNS Figure 4.13 The Location of “Service / Internal DNS” on the Menu Bar BR-6641 has a built-in DNS server function which can be activated by completing the fields in this page. Global Settings: Field Enable InternalDNS PTR Record...
  • Page 77 “mail”. Enter the priority of the mail servers. The higher the priority, the lower the number. Enter the IP address of the mail server. BR-6641 User Manual To enter For example, if a...
  • Page 78: Snmp

    Enter the description of the machine. Contact Info Enter the contact information of the machine. Node Name Enter the Node Name. Location Enter the location of the machine. Table 4.12 The Description of the Fields in SNMP BR-6641 User Manual Description...
  • Page 79: Upnp

    4.10 UPnP Figure 4.15 The Location of “Service / UPnP” on the Menu Bar BR-6641 will detect the public UPnP (Universal Plug and Play) equipment in the network and automatically respond to its predefined IP Address. Field Value Enable UPnP Enable Enable or disable the function.
  • Page 80: Chapter 5 Log

    BR-6641 User Manual Chapter 5 Log In this Chapter, you can control BR-6641’s logging activities with repect to various functionalities such as the System, Firewall, Routing, etc. Administrator can also either set up the log transmission methods to another server for purpose of archiving and further analyses, or control the event notifications settings via emails.
  • Page 81: View

    5.1 View In the ‘View’ Sub-menu, BR-6641 provides two types of comprehensive log records (see the table below). Administrator can pick the desired log type and the corresponding events for that type will be shown in the windows below. Press the ‘refresh’...
  • Page 82: Control

    With this sub-menu, you can set up how log data will be transmitted to other servers (out of BR-6641) for archiving and further analyses. Transmission methods include FTP, Email and Syslog. Each log type can have its own transmission method setting.
  • Page 83 Method BR-6641 offers three types of log transmissions: FTP out to an external FTP server, Syslog out to a syslog server or send emails via SMTP to the administrator’s mailbox. E-mail Field SMTP Server <IP> or <Domain Name> Account <SMTP Account>...
  • Page 84 FTP user password. FTP server path. Push this button to start automatically. Turn on scheduled push. Start scheduled push. Scheduled duration. Method: FTP Value Syslog Server’s IP or domain name. Method: Syslog BR-6641 User Manual Server’s pushing time push Description...
  • Page 85: Notification

    <IP Address> The SNMP managing device <Community Name> The community name. Enable this function, system will notify administrator when a Link Fail happened. SMTP Server. Authenticated mail server. Authenticated password for mail server. Sender. Receiver. BR-6641 User Manual Description Email account...
  • Page 86 Link Fail Admin Password Change Table 5.6 The Description of the Fields on Log/Notification BR-6641 User Manual Enable this function, system will notify administrator when a Link Fail happened. Enable this function, system will notify administrator when Administrator password is...

Table of Contents