LevelOne WBR-3407 User Manual
LevelOne WBR-3407 User Manual

LevelOne WBR-3407 User Manual

11g wireless adsl vpn router
Hide thumbs Also See for WBR-3407:
Table of Contents

Advertisement

Quick Links

LevelOne
WBR-3407
11g Wireless ADSL
VPN Router
User's Manual
Ver 1.00-0510

Advertisement

Table of Contents
loading

Summary of Contents for LevelOne WBR-3407

  • Page 1 LevelOne WBR-3407 11g Wireless ADSL VPN Router User’s Manual Ver 1.00-0510...
  • Page 2: Table Of Contents

    Table of Contents CHAPTER 1 INTRODUCTION..................1 Wireless ADSL Router Features ................. 1 Package Contents ....................5 Physical Details ....................6 CHAPTER 2 INSTALLATION ..................8 Requirements......................8 Procedure ......................8 CHAPTER 3 SETUP ....................10 Overview......................10 Configuration Program ..................11 Setup Wizard .......................
  • Page 3 Upgrade Firmware .................... 102 CHAPTER 8 MODEM MODE..................103 Overview......................103 Management Connections................103 Home Screen..................... 104 Mode Screen ..................... 105 Operation......................105 Status Screen....................106 APPENDIX A TROUBLESHOOTING ............... 108 Overview......................108 General Problems..................... 108 Internet Access....................108 Wireless Access ....................109 APPENDIX B ABOUT WIRELESS LANS ..............
  • Page 4: Chapter 1 Introduction

    Chapter 1 Introduction This Chapter provides an overview of the Wireless ADSL Router's features and capabilities. Congratulations on the purchase of your new Wireless ADSL Router. The Wireless ADSL Router is a multi-function device providing the following services: • ADSL Modem •...
  • Page 5: Advanced Internet Functions

    Wireless ADSL VPN Router User Guide • IPoA, PPPoE, PPPoA, Direct Connection Support. The Wireless ADSL Router supports all common connection methods. • Auto-detection of Internet Connection Method. In most situations, the Wireless ADSL Router can test your ADSL and Internet connection to determine the connection method used by your ISP.
  • Page 6: Lan Features

    Introduction • WEP support. Support for WEP (Wired Equivalent Privacy) is included. Key sizes of 64 Bit and 128 Bit are supported. WEP encrypts any data before transmission, providing protection against snoopers. • WPA-PSK support. Like WEP, WPA-PSK encrypts any data before transmission, providing protection against snoopers.
  • Page 7 Wireless ADSL VPN Router User Guide unavailable. The Wireless ADSL Router incorporates protection against DoS attacks.
  • Page 8: Package Contents

    Introduction Package Contents The following items should be included. If any of these items are damaged or missing, please contact your dealer immediately. • The Wireless ADSL Router Unit • 1 Cat-5 Ethernet (LAN) cable • 1 RJ-11 (ADSL) cable •...
  • Page 9: Physical Details

    Wireless ADSL VPN Router User Guide Physical Details Front-mounted LEDs Figure 2: Front Panel Power LED On - Power on. (Green) Off - No power. Status LED Off - Normal operation. (Yellow) Blinking - This LED blinks during start up, and during a Firmware Upgrade.
  • Page 10: Rear Panel

    Introduction Rear Panel Figure 3: Rear Panel Reset Button This button will reset the Wireless ADSL Router to the factory default settings. (Reset to To do this, press and hold the Reset Button for five (5) Defaults) seconds, until the Status LED is lit, then release the Reset Button, and wait the Wireless ADSL Router to restart using the factory default values.
  • Page 11: Chapter 2 Installation

    Chapter 2 Installation This Chapter covers the physical installation of the Wireless ADSL Router. Requirements • Network cables. Use standard 10/100BaseT network (UTP) cables with RJ45 connectors. • TCP/IP protocol must be installed on all PCs. • For Internet Access, an Internet Access account with an ISP, and a DSL connection.
  • Page 12 Installation 2. Connect LAN Cables Use standard LAN cables to connect PCs to the Switching Hub ports on the Wireless ADSL Router. Both 10BaseT and 100BaseT connections can be used simultaneously. If required, connect any port to a normal port on another Hub, using a standard LAN cable.
  • Page 13: Chapter 3 Setup

    Chapter 3 Setup This Chapter provides Setup details of the Wireless ADSL Router. Overview This chapter describes the setup procedure for: • Internet Access • LAN configuration • Wireless setup • Assigning a Password to protect the configuration data. PCs on your local LAN may also require configuration. For details, see Chapter 4 - PC Configuration.
  • Page 14: Configuration Program

    Setup Configuration Program The Wireless ADSL Router contains an HTTP server. This enables you to connect to it, and configure it, using your Web Browser. Your Browser must support JavaScript. The configuration program has been tested on the following browsers: •...
  • Page 15: Setup Wizard

    Wireless ADSL VPN Router User Guide If you can't connect If the Wireless ADSL Router does not respond, check the following: • The Wireless ADSL Router is properly installed, LAN connection is OK, and it is powered ON. You can test the connection by using the "Ping" command: •...
  • Page 16: Common Connection Types

    Setup Common Connection Types Type Details ISP Data required Dynamic Your IP Address is allocated a) ADSL parameters (VPI and IP Address automatically, when you VCI) may be required, if they connect to you ISP. cannot be detected automatically. b) Some ISP's may require you to use a particular Hostname or Domain name, or MAC (physical) address.
  • Page 17: Home Screen

    Wireless ADSL VPN Router User Guide Home Screen After finishing the Setup Wizard, you will see the Home screen. When you connect in future, you will see this screen when you connect. An example screen is shown below. Figure 5: Home Screen Main Menu The main menu, on the left, contains links to the most-commonly used screen.
  • Page 18: Lan Screen

    Setup LAN Screen Use the LAN link on the main menu to reach the LAN screen. An example screen is shown below. Figure 6: LAN Screen Data - LAN Screen TCP/IP IP address for the Wireless ADSL Router, as seen from the local IP Address LAN.
  • Page 19 Wireless ADSL VPN Router User Guide DHCP What DHCP Does A DHCP (Dynamic Host Configuration Protocol) Server allocates a valid IP address to a DHCP Client (PC or device) upon request. • The client request is made when the client device starts up (boots). •...
  • Page 20: Wireless Screen

    Setup Wireless Screen The Wireless ADSL Router's settings must match the other Wireless stations. Note that the Wireless ADSL Router will automatically accept both 802.11b and 802.11g connections, and no configuration is required for this feature. To change the Wireless ADSL Router's default settings for the Wireless Access Point feature, use the Wireless link on the main menu to reach the Wireless screen.
  • Page 21 Wireless ADSL VPN Router User Guide SSID This is also called the "Network Name". • If using an ESS (Extended Service Set, with multiple access points) this ID is called an ESSID (Extended Service Set Identifier). • To communicate, all Wireless stations should use the same SSID/ESSID.
  • Page 22 Setup Access Point Enable Enable this if you want to use Wireless Access Point function. Wireless If disabled, no Wireless stations can use the Access Point function, and all connections must be made via the wired LAN. Access Point Use this feature to determine which Wireless stations can use Allow access the Access Point.
  • Page 23: Wireless Security

    Wireless ADSL VPN Router User Guide Wireless Security This screen is accessed by clicking the "Configure" button on the Wireless screen. There are 3 options for Wireless security: • Disabled - no data encryption is used. • WEP - data is encrypted using the WEP standard. •...
  • Page 24 Setup for decryption only. You must enter a Key Value for the Default Key. Key Value Enter the key value or values you wish to use. The Default Key is required, the other keys are optional. Other stations must have the same key. Passphrase If desired, you can generate a key from a phrase, instead of entering the key value directly.
  • Page 25: Trusted Wireless Stations

    Wireless ADSL VPN Router User Guide Trusted Wireless Stations This feature can be used to prevent unknown Wireless stations from using the Access Point. This list has no effect unless the setting Allow access by trusted stations only is enabled. To change the list of trusted wireless stations, use the Modify List button on the Access Control screen.
  • Page 26 Setup Edit Use this to change an existing entry in the "Trusted Stations" list: 1. Select the Station in the Trusted Station list. 2. Click the Edit button. The address will be copied to the "Address" field, and the Add button will change to Update.
  • Page 27: Password Screen

    Wireless ADSL VPN Router User Guide Password Screen The password screen allows you to assign a password to the Wireless ADSL Router. Figure 11: Password Screen Old Password Enter the existing password in this field. New password Enter the new password here. Re-enter the new password here.
  • Page 28: Mode Screen

    Setup Mode Screen Use this screen to change the mode between Router mode and Modem (Bridge) mode. Figure 13: Mode Screen Select the desired option, and click "Save". Both the ADSL Modem and the Router features are operational. In Router this mode, this device can provide shared Internet Access to all your LAN users.
  • Page 29: Chapter 4 Pc Configuration

    Chapter 4 PC Configuration This Chapter details the PC Configuration required on the local ("Internal") LAN. Overview For each PC, the following may need to be configured: • TCP/IP network settings • Internet Access configuration • Wireless configuration Windows Clients This section describes how to configure Windows clients for Internet access via the Wireless ADSL Router.
  • Page 30 PC Configuration Checking TCP/IP Settings - Windows 9x/ME: 5. Select Control Panel - Network. You should see a screen like the following: Figure 14: Network Configuration 6. Select the TCP/IP protocol for your network card. 7. Click on the Properties button. You should then see a screen like the following. Figure 15: IP Address (Win 95) Ensure your TCP/IP settings are correct, as follows: Using DHCP...
  • Page 31 Wireless ADSL VPN Router User Guide • On the Gateway tab, enter the Wireless ADSL Router's IP address in the New Gateway field and click Add, as shown below. Your LAN administrator can advise you of the IP Address they assigned to the Wireless ADSL Router. Figure 16: Gateway Tab (Win 95/98) •...
  • Page 32 PC Configuration Checking TCP/IP Settings - Windows NT4.0 1. Select Control Panel - Network, and, on the Protocols tab, select the TCP/IP protocol, as shown below. Figure 18: Windows NT4.0 - TCP/IP 2. Click the Properties button to see a screen like the one below.
  • Page 33 Wireless ADSL VPN Router User Guide Figure 19: Windows NT4.0 - IP Address 3. Select the network card for your LAN. 4. Select the appropriate radio button - Obtain an IP address from a DHCP Server or Specify an IP Address, as explained below. Obtain an IP address from a DHCP Server This is the default Windows setting.
  • Page 34 PC Configuration Figure 20 - Windows NT4.0 - Add Gateway 2. The DNS should be set to the address provided by your ISP, as follows: • Click the DNS tab. • On the DNS screen, shown below, click the Add button (under DNS Service Search Order), and enter the DNS provided by your ISP.
  • Page 35 Wireless ADSL VPN Router User Guide Checking TCP/IP Settings - Windows 2000: 1. Select Control Panel - Network and Dial-up Connection. 2. Right - click the Local Area Connection icon and select Properties. You should see a screen like the following: Figure 22: Network Configuration (Win 2000) 3.
  • Page 36 PC Configuration Figure 23: TCP/IP Properties (Win 2000) 5. Ensure your TCP/IP settings are correct, as described below. Using DHCP To use DHCP, select the radio button Obtain an IP Address automatically. This is the default Windows setting. Using this is recommended. By default, the Wireless ADSL Router will act as a DHCP Server.
  • Page 37 Wireless ADSL VPN Router User Guide Checking TCP/IP Settings - Windows XP 1. Select Control Panel - Network Connection. 2. Right click the Local Area Connection and choose Properties. You should see a screen like the following: Figure 24: Network Configuration (Windows XP) 3.
  • Page 38 PC Configuration Figure 25: TCP/IP Properties (Windows XP) 5. Ensure your TCP/IP settings are correct. Using DHCP To use DHCP, select the radio button Obtain an IP Address automatically. This is the default Windows setting. Using this is recommended. By default, the Wireless ADSL Router will act as a DHCP Server.
  • Page 39 Wireless ADSL VPN Router User Guide Internet Access To configure your PCs to use the Wireless ADSL Router for Internet access: • Ensure that the DSL modem, Cable modem, or other permanent connection is functional. • Use the following procedure to configure your Browser to access the Internet via the LAN, rather than by a Dial-up connection.
  • Page 40: Macintosh Clients

    PC Configuration Macintosh Clients From your Macintosh, you can access the Internet via the Wireless ADSL Router. The procedure is as follows. 1. Open the TCP/IP Control Panel. 2. Select Ethernet from the Connect via pop-up menu. 3. Select Using DHCP Server from the Configure pop-up menu. The DHCP Client ID field can be left blank.
  • Page 41: Wireless Station Configuration

    Wireless ADSL VPN Router User Guide Wireless Station Configuration This section applies to all Wireless stations wishing to use the Wireless ADSL Router's Access Point, regardless of the operating system which is used on the client. To use the Wireless Access Point in the Wireless ADSL Router, each Wireless Station must have compatible settings, as follows: Mode The mode must be set to Infrastructure (rather than Ad-hoc)
  • Page 42 PC Configuration Figure 27 Wireless Networks (Windows XP) If the "Broadcast SSID" setting on the Wireless ADSL Router has been disabled, its SSID will NOT be listed. See the following section "If the SSID is not listed" for details of dealing with this situation. 4.
  • Page 43 Wireless ADSL VPN Router User Guide To connect: • Check the checkbox Allow me to connect to the selected wireless network, even though it is not secure. • The Connect button will then be available. Click the Connect button, and wait a few seconds for the connection to be established.
  • Page 44 PC Configuration Figure 30: Advanced - Wireless Networks Select the SSID for the Wireless ADSL Router, and click Configure, to see a screen like the following: Figure 31: Wireless Network Properties - WEP Configure this screen as follows: • Set Network Authentication to match the Wireless ADSL Router. (If the setting on the Wireless ADSL Router is "Auto", then either Open or Shared can be used.) •...
  • Page 45 Wireless ADSL VPN Router User Guide • For the Network key and Confirm network key, enter the default key value used on the Wireless ADSL Router. (Windows will determine if 64bit or 128bit encryption is used.) • The Key index must match the default key index on the Wireless ADSL Router. The default value is 1.
  • Page 46 PC Configuration If using WPA-PSK Data Encryption If WPA-PSK data encryption has been enabled on the Wireless ADSL Router, it does not matter which network is selected on the screen below. Just click the Advanced button. Figure 33: Wireless Networks (Windows XP) You will then see a screen like the example below.
  • Page 47 Wireless ADSL VPN Router User Guide Figure 35: Wireless Network Properties- WPA-PSK Configure this screen as follows: • Set Network Authentication to WPA-PSK. • For Data Encryption, select TKIP. • For the Network key and Confirm network key, enter the network key (PSK) used on the Wireless ADSL Router.
  • Page 48 PC Configuration Figure 36: Preferred Networks Click OK to establish a connection to the Wireless ADSL Router. If the SSID is not listed If the "Broadcast SSID" setting on the Wireless ADSL Router has been disabled, its SSID will NOT be listed on the screen below. Figure 37: Wireless Networks (Windows XP) In this situation, you need to obtain the SSID from your network administrator, then follow this procedure:...
  • Page 49 Wireless ADSL VPN Router User Guide Figure 38: Unlisted Wireless Network 2. Click the Add button. You will see a screen like the example below. Figure 39: Add Wireless Network 3. Configure this screen as follows: • Enter the correct SSID, as used on the Wireless ADSL Router. Remember the SSID is case-sensitive, so be sure to match the case, not just the spelling.
  • Page 50 PC Configuration • If using data encryption (WEP or WPA-PSK), enter the key used on the Wireless ADSL Router. See the preceding sections for details of WEP and WPA-PSK. • Uncheck the options The key is provided for me automatically and This is a computer-to-computer (ad hoc) network.
  • Page 51: Chapter 5 Operation And Status

    Chapter 5 Operation and Status This Chapter details the operation of the Wireless ADSL Router and the status screens. For Details of operation in Bridge (Modem) mode, see Chapter 8 - Modem Mode. Operation - Router Mode Once both the Wireless ADSL Router and the PCs are configured, operation is automatic.
  • Page 52 Operation and Status Data - Status Screen System The current name of the Router. This name is also the Device Name "hostname" for users with an "@Home" type connection. Firmware Version The version of the current firmware installed. ADSL This indicates the status of the ADSL modem component. Modem Status DownStream Displays the speed for the DownStream Connection.
  • Page 53 Wireless ADSL VPN Router User Guide MAC Address This shows the MAC Address for the Wireless ADSL Router, as seen on the LAN interface. Wireless If using an ESS (Extended Service Set, with multiple Name (SSID) access points) this ID is called an ESSID (Extended Service Set Identifier).
  • Page 54: Connection Status - Pppoe & Pppoa

    Operation and Status Connection Status - PPPoE & PPPoA If using PPPoE (PPP over Ethernet) or PPPoA (PPP over ATM), a screen like the following example will be displayed when the "Connection Details" button is clicked. Figure 42: PPPoE Status Screen Data - PPPoE/PPPoA Screen Connection Time This indicates how long the current connection has been...
  • Page 55: Connection Details - Dynamic Ip Address

    Wireless ADSL VPN Router User Guide Connection Details - Dynamic IP Address If your access method is "Direct" (no login), with a Dynamic IP address, a screen like the following example will be displayed when the "Connection Details" button is clicked.
  • Page 56 Operation and Status...
  • Page 57: Connection Details - Fixed Ip Address

    Wireless ADSL VPN Router User Guide Connection Details - Fixed IP Address If your access method is "Direct" (no login), with a fixed IP address, a screen like the following example will be displayed when the "Connection Details" button is clicked. Figure 44: Connection Details - Fixed/Dynamic IP Address Data - Fixed IP address Screen Internet...
  • Page 58: Chapter 6 Advanced Features

    Chapter 6 Advanced Features This Chapter explains when and how to use the Wireless ADSL Router's "Advanced" Features. Overview The following advanced features are provided: • Internet: • • Special Applications • URL filter • Dynamic DNS • Firewall Rules •...
  • Page 59: Special Applications

    Wireless ADSL VPN Router User Guide This feature, if enabled, allows the DMZ computer on your LAN to be exposed to all users on the Internet. • This allows almost any application to be used on the "DMZ PC". • The "DMZ PC"...
  • Page 60 Advanced Features Figure 46: Special Applications Screen Data - Special Applications Screen Checkbox Use this to Enable or Disable this Special Application as required. Enter a descriptive name to identify this Special Application. Name • Type - Select the protocol (TCP or UDP) used when you receive Incoming data from the special application or service.
  • Page 61: Url Filter

    Wireless ADSL VPN Router User Guide Using a Special Application • Configure the Special Applications screen as required. • On your PC, use the application normally. Remember that only one (1) PC can use each Special application at any time. Also, when 1 PC is finished using a particular Special Application, there may need to be a "Time-out"...
  • Page 62 Advanced Features Data - URL Filter Screen Current Filter Strings The list contains the current list of items to block. Current Filter Strings • To add to the list, use the "Add" option below. • To delete an entry, select it and click Delete button. •...
  • Page 63: Dynamic Dns (Domain Name Server)

    Wireless ADSL VPN Router User Guide Dynamic DNS (Domain Name Server) This free service is very useful when combined with the Virtual Server feature. It allows Internet users to connect to your Virtual Servers using a URL, rather than an IP Address.
  • Page 64 Advanced Features DDNS Data Enter the domain name allocated to you by the DDNS Service. Host Name If you have more than one name, enter the name you wish to use. User Name Enter your Username for the DDNS Service. (TZO.com uses your E-mail address.) Enter your current password for the DDNS Service.
  • Page 65: Firewall Rules

    Wireless ADSL VPN Router User Guide Firewall Rules The Firewall Rules screen allows you to define "Firewall Rules" which can allow or prevent certain traffic. "Traffic" means incoming connection attempts, not packets. By default: • All Outgoing traffic is permitted. •...
  • Page 66 Advanced Features WAN Users The WAN IP address or addresses covered by this rule. Indicates whether or not connections covered by this rule should be logged. Use the Add button to create a new rule. Buttons The other buttons - Edit, Move, or Delete - require that a rule be selected first.
  • Page 67 Wireless ADSL VPN Router User Guide Incoming Rules (Inbound Services) This screen is displayed when the "Add" or "Edit" button for Incoming Rules is clicked. Figure 50: Inbound Services Screen Data - Incoming Rules Screen Inbound Services Select the desired Service. This determines which packets are Service covered by this rule.
  • Page 68 Advanced Features desired values in the "Single/Start" and "Finish" fields to determine the address range. • Single address - Enter the required address in the "Single/Start" fields. This determines whether packets covered by this rule are logged. Select the desired action. •...
  • Page 69 Wireless ADSL VPN Router User Guide • ALLOW always • ALLOW by schedule, otherwise Block Note: • Any outbound traffic which is not blocked by rules you create will be allowed by the Default rule. • ALLOW rules are only useful if the traffic is already covered by a BLOCK rule.
  • Page 70: User-Defined Services

    Advanced Features User-defined Services Services are used when creating Firewall Rules. If you wish to create a firewall rule, but the required service is not listed in the "Service" list, you can use this feature to define the required service or services. Once created, these services will be listed in the "Service"...
  • Page 71 Wireless ADSL VPN Router User Guide Add/Edit Service This screen is displayed when the Add or Edit button on the Services screen is clicked. Figure 53 : Add/Edit Service Data - Add/Edit Service Services Name If editing, this shows the current name of the Service. If adding a new service, this will be blank, and you should enter a suitable name.
  • Page 72: Options

    Advanced Features Options This screen allows advanced users to enter or change a number of settings. For normal operation, there is no need to use this screen or change any settings. An example Options screen is shown below. Figure 54: Options Screen Data - Options Screen Internet •...
  • Page 73: Schedule

    Wireless ADSL VPN Router User Guide Schedule This Schedule can be used for the Firewall Rules and the URL filter. Figure 55: Schedule Screen Data - Schedule Screen Schedule Each day of the week can scheduled independently. Two (2) separate sessions or periods can be defined. Session Session 1 Session 2 2 can be left blank if not required.
  • Page 74 Advanced Features Current Time This displays the current time on the Wireless ADSL Router, at the time the page is loaded.
  • Page 75: Virtual Servers

    Wireless ADSL VPN Router User Guide Virtual Servers This feature, sometimes called Port Forwarding, allows you to make Servers on your LAN accessible to Internet users. Normally, Internet users would not be able to access a server on your LAN because: •...
  • Page 76: Connecting To The Virtual Servers

    Advanced Features dynamic IP addresses (IP address is allocated upon connection, so it may change each time you connect). Figure 57: Virtual Servers Screen Data - Virtual Servers Screen Servers Servers This lists a number of common Server types. If the desired Server type is not listed, you can create a Firewall Rule to achieve the same effect as the Virtual Server function.
  • Page 77 Wireless ADSL VPN Router User Guide From the Internet, ALL Virtual Servers have the IP Address allocated by your ISP...
  • Page 78: Vpn Setup

    Advanced Features VPN Setup The VPN (Virtual Private Network) feature in the Wireless ADSL Router allows you to create a VPN connection between 2 Wireless ADSL Routers, or a remote PC to establish a VPN connection to the Wireless ADSL Router. To establish a VPN connection from a remote PC to the Wireless ADSL Router, you need suitable (IPSec) VPN client software on your PC.
  • Page 79 Wireless ADSL VPN Router User Guide VPN Policies Screen This screen is displayed when you select VPN on the Advanced menu. It allows you to create, modify and manage your VPN Policies. If you have not created any policies, the Policy Table will be empty. Figure 58: VPN Policies Screen Data - VPN Policies Screen The Policy Table contains the following data...
  • Page 80 Advanced Features Add Manual Change to the input screen for an "Manual" policy. See the following section for details. Policy When the new policy is saved, it will appear in the bottom row of the Policy Table. VPN Status View details of each current VPN Tunnel (connection) in a sub-window.
  • Page 81 Wireless ADSL VPN Router User Guide Data - VPN-Auto Policy Screen General Enter a unique name to identify this policy. This name is not Policy Name supplied to the remote VPN endpoint. It is used only to help you manage the policies. If the remote endpoint has a dynamic IP address, select Remote VPN Endpoint...
  • Page 82 Advanced Features This setting is used when determining if the IKE policy Direction matches the current traffic. Select the desired option. • Responder only - Incoming connections are allowed, but outgoing connections will be blocked. • Initiator and Responder - Both incoming and outgoing connections are allowed.
  • Page 83 Wireless ADSL VPN Router User Guide SA Life Time This determines the time interval before the SA (Security Association) expires. (It will automatically be re-established if necessary.) While using a short time period (or data amount) increases security, it also degrades performance. It is common to use periods over an hour (3600 seconds) for the SA Life Time.
  • Page 84 Advanced Features VPN- Manual Policy Screen This screen is displayed when you click the Add Manual Policy button on the VPN Policies screen, or when you edit an existing Manual Policy. It allows you to define or edit a "Manual" VPN policy. An "Manual"...
  • Page 85 Wireless ADSL VPN Router User Guide Local LAN This identifies which PCs on your LAN are covered by this Local LAN policy. For each selection, data must be provided as follows: • Single address Enter an IP address in the "IP address" field. Typically, this setting is used when you wish to make a single Server on your LAN available to remote users.
  • Page 86 Advanced Features Authentication Select the desired Authentication Algorithm, and enter the key in the field provided. • For MD5, the key should be 16 ASCII characters (32 Hex characters). • For SHA-1, the key should be 20 ASCII (40 Hex characters).
  • Page 87: Vpn Status Screen

    Wireless ADSL VPN Router User Guide VPN Status Screen This screen is displayed when you click the VPN Log button on the VPN Policies screen, or on the Status screen. This screen allows you to view details of each current VPN Tunnel (connection). If there are no current connections, the status table will be empty.
  • Page 88: Chapter 7 Advanced Administration

    Chapter 7 Advanced Administration This Chapter explains the settings available via the "Administration" section of the menu. Overview Normally, it is not necessary to use these screens, or change any settings. These screens and settings are provided to deal with non-standard situations, or to provide additional options for advanced users.
  • Page 89: Pc Database

    Wireless ADSL VPN Router User Guide PC Database The PC Database is used whenever you need to select a PC (e.g. for the "DMZ" PC). • It eliminates the need to enter IP addresses. • Also, you do not need to use fixed IP addresses on your LAN. However, if you do use a fixed IP address on some devices on your LAN, you should enter details of each such device into the PC database, using the PC Database screen.
  • Page 90 Advanced Features Data - PC Database Screen This lists all current entries. Data displayed is name (IP Address) Known PCs type. The "type" indicates whether the PC is connected to the LAN. If adding a new PC to the list, enter its name here. It is best if Name this matches the PC's "hostname".
  • Page 91 Wireless ADSL VPN Router User Guide PC Database - Advanced This screen is displayed if the "Advanced Administration" button on the PC Database is clicked. It provides more control than the standard PC Database screen. Figure 63: PC Database (Admin) Data - Advanced PC Database Known PCs This lists all current entries.
  • Page 92 Advanced Features MAC Address Select the appropriate option • Automatic discovery - Select this to have the Wireless ADSL Router contact the PC and find its MAC address. This is only possible if the PC is connected to the LAN and powered On.
  • Page 93: Config File

    Wireless ADSL VPN Router User Guide Config File This feature allows you to download the current settings from the Wireless ADSL Router, and save them to a file on your PC. You can restore a previously-downloaded configuration file to the Wireless ADSL Router, by uploading it to the Wireless ADSL Router.
  • Page 94: Logging

    Advanced Features Logging The Logs record various types of activity on the Wireless ADSL Router. This data is useful for troubleshooting, but enabling all logs will generate a large amount of data and adversely affect performance. Since only a limited amount of log data can be stored in the Wireless ADSL Router, log data can also be E-mailed to your PC.
  • Page 95 Wireless ADSL VPN Router User Guide Logs Include Use these checkboxes to determine which events are included in the log. Checking all options will increase the (Checkboxes) size of the log, so it is good practice to disable any events which are not really required.
  • Page 96: E-Mail

    Advanced Features E-mail This screen allows you to E-mail Logs and Alerts. A sample screen is shown below. Figure 66: E-mail Screen Data - E-mail Screen E-Mail Notification Turn E-mail Check this box to enable this feature. If enabled, the E-mail address information (below) must be provided.
  • Page 97 Wireless ADSL VPN Router User Guide E-mail Alerts You can choose to have alerts E-mailed to you, by checking Send E-mail alerts the desired checkboxes. The Broadband ADSL Router can send an immediate alert when it detects a significant security immediately incident such as •...
  • Page 98: Diagnostics

    Advanced Features Diagnostics This screen allows you to perform a "Ping" or a "DNS lookup". These activities can be useful in solving network problems. An example Network Diagnostics screen is shown below. Figure 67: Network Diagnostics Screen Data - Network Diagnostics Screen Ping Enter the IP address you wish to ping.
  • Page 99: Remote Administration

    Wireless ADSL VPN Router User Guide Remote Administration If enabled, this feature allows you to manage the Wireless ADSL Router via the Internet. Figure 68: Remote Administration Screen Data - Remote Administration Screen Remote Administration Enable Remote Check to allow administration/management via the Internet. (To connect, see below).
  • Page 100 Advanced Features addresses as practical. To connect from a remote PC via the Internet 1. Ensure your Internet connection is established, and start your Web Browser. 2. In the "Address" bar, enter "HTTP://" followed by the Internet IP Address of the Wireless ADSL Router.
  • Page 101: Routing

    Wireless ADSL VPN Router User Guide Routing Overview • If you don't have other Routers or Gateways on your LAN, you can ignore the "Routing" page completely. • If the Wireless ADSL Router is only acting as a Gateway for the local LAN segment, ignore the "Routing"...
  • Page 102: Configuring Other Routers On Your Lan

    Advanced Features Figure 69: Routing Screen Data - Routing Screen Select the desired RIP Direction. RIP Direction RIP Version Choose the RIP Version for the Server. Static Routing This list shows all entries in the Routing Table. Static Routing Table Entries •...
  • Page 103 Wireless ADSL VPN Router User Guide Local Router The local router is the Router installed on the same LAN segment as the Wireless ADSL Router. This router requires that the Default Route is the Wireless ADSL Router itself. Typically, routers have a special entry for the Default Route. It should be configured as follows.
  • Page 104 Advanced Features Network Mask 255.255.255.0 (Standard Class C) Gateway IP Address 192.168.0.100 (Wireless ADSL Router's local Router) Metric Entry 2 (Segment 2) Destination IP Address 192.168.2.0 Network Mask 255.255.255.0 (Standard Class C) Gateway IP Address 192.168.0.100 Metric For Router A's Default Route Destination IP Address 0.0.0.0 Network Mask...
  • Page 105: Upgrade Firmware

    Wireless ADSL VPN Router User Guide Upgrade Firmware The firmware (software) in the Wireless ADSL Router can be upgraded using your Web Browser. You must first download the upgrade file, then select Upgrade Firmware on the Administration menu. You will see a screen like the following. Figure 71: Router Upgrade Screen To perform the Firmware Upgrade: 1.
  • Page 106: Chapter 8 Modem Mode

    Chapter 8 Modem Mode This Chapter explains configuration and operation when in "Modem" or "Bridge" mode.. Overview There are two modes available on the Mode screen. • Router - Both the ADSL Modem and the Router features are operational. In this mode, this device can provide shared Internet Access to all your LAN users.
  • Page 107: Home Screen

    Wireless ADSL VPN Router User Guide Home Screen If in Modem mode, the home screen will look like the example below. Figure 72: Home Screen - Modem Mode Note that the menu has changed, many of the options in Router mode are not available.
  • Page 108: Mode Screen

    Advanced Administration Mode Screen This screen is change back to Router mode, if desired. Figure 73: Mode Screen Data - Mode Screen This field displays the current name of this device. Device Name Select the desired device mode for the router: Device Mode •...
  • Page 109: Status Screen

    Wireless ADSL VPN Router User Guide Status Screen In Modem mode, the Status screen looks like the example below. Figure 74: Status Screen - Bridge Mode Data - Status Screen (Bridge Mode) System The current name of the Router. This name is also the Device Name "hostname"...
  • Page 110 Advanced Administration Network Mask The Network Mask (Subnet Mask) for the IP Address above. MAC Address This shows the MAC Address for the Wireless ADSL Router, as seen on the LAN interface. Wireless Name (SSID) If using an ESS (Extended Service Set, with multiple access points) this ID is called an ESSID (Extended Service Set Identifier).
  • Page 111: Appendix A Troubleshooting

    Appendix A Troubleshooting This Appendix covers the most likely problems and their solutions. Overview This chapter covers some common problems that may be encountered while using the Wireless ADSL Router and some possible solutions to them. If you follow the suggested steps and the Wireless ADSL Router still does not function properly, contact your dealer for further advice.
  • Page 112: Wireless Access

    Appendix A - Troubleshooting working correctly. Problem 2: Some applications do not run properly when using the Wireless ADSL Router. Solution 2: The Wireless ADSL Router processes the data passing through it, so it is not transparent. For incoming connections, you must use the Virtual Server or Firewall Rules to specify the PC which will receive the incoming traffic.
  • Page 113 Wireless ADSL VPN Router User Guide • Radio Interference Other devices may be causing interference. You can experiment by switching other devices Off, and see if this helps. Any "noisy" devices should be shielded or relocated. • RF Shielding Your environment may tend to block transmission between the wireless stations.
  • Page 114: Appendix B About Wireless Lans

    Appendix B About Wireless LANs This Appendix provides some background information about using Wireless LANs (WLANs). Modes Wireless LANs can work in either of two (2) modes: • Ad-hoc • Infrastructure Ad-hoc Mode Ad-hoc mode does not require an Access Point or a wired (Ethernet) LAN. Wireless Stations (e.g.
  • Page 115: Channels

    Wireless ADSL VPN Router User Guide performance. This capability is called Roaming. (Access Points do not have or require Roaming capabilities.) Channels The Wireless Channel sets the radio frequency used for communication. • Access Points use a fixed Channel. You can select the Channel used. This allows you to choose a Channel which provides the least interference and best performance.
  • Page 116: Wireless Lan Configuration

    Appendix B - About Wireless LANs Encryption The same encryption method must be used. The most common encryption method is TKIP. Another widely- supported method is AES. Wireless LAN Configuration To allow Wireless Stations to use the Access Point, the Wireless Stations and the Access Point must use the same settings, as follows: Mode On client Wireless Stations, the mode must be set to...
  • Page 117: Appendix C About Vpns

    Appendix C About VPNs Overview A VPN (Virtual Private Network) provides a secure connection between 2 points, over an insecure network - typically the Internet. This secure connection is called a VPN Tunnel. There are many standards and protocols for VPNs. The standard implemented in the Wireless ADSL Router is IPSec.
  • Page 118: Vpn Configuration

    Appendix C - VPNs Because the IKE and IPsec connections are separate, they have different SAs (security associations). Policies VPN configuration settings are stored in Policies. Note that different vendors use different terms. Generally, the terms "VPN Policy", "IPSec Policy", and "IPSec Proposal" have the same meaning. However, some vendors separate IKE Policies (Phase 1 parameters) from IPSec Policies (Phase 2 parameters).
  • Page 119: Common Vpn Situations

    Wireless ADSL VPN Router User Guide Common VPN Situations VPN Pass-through Figure 75: VPN Pass-through Here, a PC on the LAN behind the Router/Gateway is using VPN software, but the Router/Gateway is NOT acting as a VPN endpoint. It is only allowing the VPN connection.
  • Page 120: Vpn Example

    Appendix C - VPNs Connecting 2 LANs via VPN Figure 77: Connecting 2 VPN Gateways This allows two (2) LANs to be connected. PCs on each endpoint gain secure access to the remote LAN. • The 2 LANs MUST use different IP address ranges. •...
  • Page 121 Wireless ADSL VPN Router User Guide Configuration Settings - Gateway A Gateway A should be configured as shown below. Figure 79: Gateway A Configuration...
  • Page 122 Appendix C - VPNs Configuration Settings - Gateway B Gateway B should be configured as shown below. Figure 80: Gateway B Configuration Settings Setting LAN A Gateway LAN B Gateway Notes Policy Name Example Example Name does not affect operation. Select a meaningful name.
  • Page 123 Wireless ADSL VPN Router User Guide IP address 255.255.255.0 255.255.255.0 Use a more restrictive Mask definition if possible. Remote LAN 192.168.1.0 192.168.0.0 Remote Address IP address 255.255.255.0 255.255.255.0 subnet. Mask Use a more restrictive definition if possible. Direction Initiator & Initiator &...
  • Page 124: Appendix D Specifications

    Appendix D Specifications Multi-Function Wireless ADSL Router Model Wireless ADSL Router ADSL Interface T1.413, G.DMT, G.lite, multi-mode Dimensions 153mm(W) * 102mm(D) * 35.5mm(H) Operating 0° C to 40° C Temperature Storage Temperature -10° C to 70° C Network Protocol: TCP/IP 4 * 10/100BaseT (RJ45) LAN connection Network Interface: 1 * RJ11 for ADSL line...
  • Page 125: Regulatory Approvals

    Wireless ADSL VPN Router User Guide Regulatory Approvals FCC Statement This equipment has been tested and found to comply with the limits for a Class B digital device, pursuant to Part 15 of the FCC Rules. These limits are designed to provide reasonable protection against harmful interference in a residential installation.
  • Page 126 If you would like a copy of the GPL or other open source code in this software on a physical CD medium, LevelOne (Digital Data Communications) offers to mail this CD to you upon request, for a price of US$9.99 plus the cost of shipping.

Table of Contents