ONVENTIONS Conventions The following conventions are used to give the user additional Example: information about specific procedures or content. It is important Indicates information used to demonstrate or explain an to pay attention to these conventions as they provide associated concept. information to prevent damage to equipment or personal injury.
Page 3
ONVENTIONS Typographical Conventions The following typographical conventions are used in this document: Italics Indicates book titles, directory names, file names, path names, and program/process names. Constant width Indicates computer output shown on a computer screen, including menus, prompts, responses to input, and error messages.
ABLE OF ONTENTS ABLE OF ONTENTS Conventions........................0-i Copyright..........................0-ix Product Overview Package Contents......................1-1 Product Overview......................1-2 Key Features......................1-2 Benefits ..........................1-3 Technical Specifications .................... 1-4 Wireless Specifications .................... 1-4 Hardware Specifications ..................1-4 Software Specifications ................... 1-4 Product Interface......................
Page 5
ABLE OF ONTENTS Installing the Device......................2-2 Pre-Installation Guidelines ..................2-2 Installing the Device ....................2-2 Wall Mounting the Device ..................2-3 Pole Mounting the Device ..................2-4 Web Configuration Logging In........................3-1 Best Practices ......................3-2 Basic Network Settings System Status........................
Page 6
ABLE OF ONTENTS Viewing the WDS Link List.................... 4-8 System Setup........................ 4-9 Configuring Operation Modes..................4-9 Configuring IP Settings....................4-10 Configuring Spanning Tree Settings................4-11 Router Setup........................ 4-12 Configuring WAN Settings.................... 4-12 Static IP ........................ 4-12 Dynamic IP ......................4-13 Point-to-Point Protocol over Ethernet (PPPoE) .............
Page 8
ABLE OF ONTENTS Configuring System Time..................... 4-45 Configuring Wi-Fi Schedule...................4-46 Add a Schedule Service ................... 4-46 Schedule Services Table ..................4-47 Configuring Command Line Interface................4-48 Configuring Logging....................4-49 Configuring Diagnostics....................4-50 Viewing Device Discovery.....................4-51 Configure Denial of Service Protection................4-52 Logging Out.......................
Page 9
ABLE OF ONTENTS Appendix A Federal Communication Commission Interference Statement..........A-1 Appendix B Industry Canada Statement....................B-1 VIII...
ACKAGE ONTENTS 1.1 Package Contents The EnStation5 package contains the following items: EnStation5 PoE Injector with Power Adapter 24V PoE Injector Quick Installation Guide Mounting Screw Set Wall Mount Kit Pole Mount Strap ...
RODUCT VERVIEW 1.2 Product Overview Thank you for choosing EnStation5. The EnStation5 is a long Point-to-point and point-to-multipoint wireless range, high performance IEEE 802.11a/n network solution that connectivity enables data transfers between two or more provides Access Point, Client Bridge, WDS, and Client Router buildings.
Wireless Extensions to Ethernet Networks WLANs enable network managers in dynamic environments to The EnStation5 is the ideal product around which you can build minimize overhead caused by moves, extensions to networks, your WLAN. The following list summarizes a few key and other changes.
ECHNICAL PECIFICATION Technical Specifications Wireless Specifications IEEE 802.11a/n Radio I: 11a/n: 5.180-5.825 GHz, Data Rate: Up to 300 Mbps on the 5 GHz band Hardware Specifications Physical Interface: 2 x 10/100Mbps LAN Ports, 1 x Reset Button Power Supply: Passive PoE, 24V/0.6A Power Adapter ...
RODUCT NTERFACE 1.3 Product Interface NTERFACE DESCRIPTION (Access Point or Client Bridge Mode) OFF= EnStation radio is off and the device is not sending or receiving data over the wireless LAN. ON= EnStation radio is on, and the device is WAN LED not sending or receiving data over the wireless LAN.
YSTEM EQUIREMENTS 2.1 System Requirements To install the EnStation5, you will need the following: Computer (Windows, Linux, Mac OS X Operating System) Web Browser (Internet Explorer, FireFox, Chrome, Safari) Network Interface equipped: (one of the following) Wired Connectivity: Network Interface with an open ...
NSTALLING THE EVICE 2.2 Installing the Device Installing the Device Installing the EnStation5 on a pole or wall optimizes the wire- less access range. To install the EnStation5, use the following procedure to mount Note: the device on a pole and refer to the figure below: Only experienced installation professionals who are 1.
EnStation5. Use a screwdriver to unlock the pole-mounting ring putting it through the EnStation5. 7. Mount the EnStation5 securely to the pole by locking the strap tightly. Figure 2-2: Wall Mounting the Device...
OUNTING THE EVICE Pole Mounting the Device 1. Plug the dynamic stick into the bracket. 2. Combine the sealing nut with the assembled kit, as well as tighten it. 3. Put the mock washer on the dynamic stick. 4. Assemble the mounting kit with the CPE. 5.
3.1 Logging In 3. When the login screen appears, enter admin for the user- The EnStation5 has a built-in Web Configurator that lets you name in the top field and admin for the password in the bottom manage the unit from any location using a Web browser that field.
restore it. Restoring an earlier working configuration can be useful if the EnStation5 becomes unstable or crashes. If you forget your password, you will have to reset the EnStation5 to its factory default settings and lose any customized override settings you configured.
YSTEM TATUS 4.1 System Status View the summary of the current system status including system (hardware/software version, date/time), wired network (LAN) and wireless network (WLAN) information. 4.1.1 Using Save/Reload Save and apply the settings shown in the Unsaved changes list, or cancel the unsaved changes and revert to the previous settings that were in effect.
IEWING YSTEM NFORMATION 4.1.2 Viewing System Information Displays status information about the current operating mode: System Information Shows the general system information such as operating mode, system up time, firmware version, serial number, kernel version, and application version. LAN Settings Shows Local Area Network settings such as the LAN IP address, Subnet Mask, and MAC address.
Page 28
LAN IP address, Subnet Mask, primary and secondary DNS. Current Wireless Settings Shows wireless information such as frequency and channel. Since the EnStation5 supports multiple- SSIDs, information about each SSID, such as its ESSID and security settings, are displayed.
4.1.3 Viewing the Wireless Client List The Client List displays a list of clients associated to the EnStation5, along with the MAC addresses and signal strength for each client. To remove an SSID client from the list, click the button that appears in the Kick and Ban column. Click the Refresh button to...
IEWING YSTEM 4.1.4 Viewing the System Log The EnStation5 automatically logs events to internal memory. Note: The oldest events are deleted from the log when memory is full. Click the Refresh button to update the Client List or the Clear button to remove all events.
IEWING ONNECTION TATUS 4.1.5 Viewing the Connection Status From here you can see the current status of the network. The WLAN information shown includes network type, SSID, BSSID, Connection Status, Wireless Mode, Current Channel, Security, data rate, Current noise level, and Signal strength. The WAN information shown includes the MAC address, Connection Type, Connection Status, IP Address, IP Subnet Mask, Primary DNS and Secondary DNS.
4.1.6 Viewing the DHCP Client Table The DHCP Client Table displays the clients that are associated to the EnStation5 through DHCP. The MAC addresses and signal strength for each client are also shown. Click the Refresh button to update the Client List.
4.1.7 Viewing the WDS Link List Displays the clients that are associated to the EnStation5 through WDS. The MAC addresses, link status and signal strength for each client are also shown. Click the Refresh button to update the Client List.
ETUP 4.2 System Setup The following sections explain the features and functionality of the EnStation5 in access point mode, client bridge mode, WDS access point mode, WDS bridge mode, WDS station mode and client router mode. 4.2.1 Configuring Operation Mode Set the primary function of the device.
IP S ONFIGURING ETTINGS 4.2.2 Configuring IP Settings Configure the EnStation5 LAN settings for the EnStation5 using a static or dynamic IP address. IP Network Setting Configure the network connection type using either a static IP or dynamic IP. IP Address Enter the LAN IP address of the EnStation5.
Page 36
IP S ONFIGURING ETTINGS IPv6 Default Gateway Enter the IPv6 default gateway of the EnStation5. IPv6 Primary DNS Enter the IPv6 primary DNS of the EnStation5. IPv6 Secondary DNS Enter the IPv6 secondary DNS of the EnStation5. Click Apply to save the settings or Cancel to discard the changes.
Enable or disable the EnStation5 Spanning Tree function. Bridge Hello Time Specifies Bridge Hello Time, in seconds. This value determines how often the EnStation5 sends hello packets to communicate information about the topology throughout the entire Bridged Local Area Network Bridge Max Age Specifies Bridge Max Age, in seconds.
ETUP 4.3 Router Setup 4.3.1 Configuring WAN Settings Configure the WAN settings for the EnStation5 using a static or dynamic IP address, PPPoE or PPTP. Static IP Setting a static IP address allows an administrator to set a specific IP address for the router and guarantees that it can't be assigned a different address.
Page 39
OUTER ETUP Default Gateway Enter the WAN gateway address. Primary DNS Enter the primary DNS server address. Secondary DNS Enter the secondary DNS server address. Discard Ping on WAN Check the box to enable pings to be recognized on the EnStation2 interface. Uncheck the box to disable the feature and block pings on the EnStation2 Wan interface.
Check the box to enable pings to be recognized on the EnStation2 interface. Uncheck the box to disable the feature and block pings on the EnStation5 Wan interface. Note: Pinging IP addresses is a common method used by hackers to test whether the IP address is valid.
Page 41
YNAMIC Click Accept to save the settings or Cancel to discard changes. 4-15...
(PPP OINT OINT ROTOCOL OVER THERNET Point-to-Point Protocol over Ethernet (PPPoE) Point-to-Point Protocol over Ethernet (PPPoE) is used mainly by ISPs that provide DSL modems to connect to the Internet. Enter the maximum transmission unit (MTU). The MTU specifies the largest packet size permitted for an Internet transmission (PPPoE default: 1492).
Page 43
THERNET Discard Ping on WAN Check the box to enable pings to be recognized on the EnStation5 interface. Uncheck the box to disable the feature and block pings on the EnStation5 Wan interface. Note: Pinging IP addresses is a common method used by hackers to test whether the IP address is valid.
Enter the username provided by your ISP. Password Enter the password provided by your ISP. Connect on Demand If you want the EnStation5 to end the Internet connection after it has been inactive for a period of time, select this option and enter the 4-18...
Page 45
Keep Alive If you want the EnStation5 to periodically check your Internet connection, select this option. Then specify how often you want the EnStation5 to check the Internet connection. If the connection is down, the EnStation5 automatically re-establishes your connection.
Enter the LAN IP Subnet Mask. WINS Server IP Enter the WINS Server IP. Use Router As DHCP Server Check this option to enable the EnStation5 internal DHCP server. Starting IP Address Specifies the starting IP address range for the pool of allocated for private IP addresses.
4.3.3 Configuring VPN Pass-Through VPN Pass-through allows a secure Virtual Private Network (VPN) connection between two computers. Enabling options on this page opens a VPN port and enables connections to pass through the EnStation5 without interruption. PPTP Pass-through Check this option to enable PPTP Pass Through mode.
ONFIGURING ORWARDING 4.3.4 Configuring Port Forwarding Port forwarding enables multiple server applications on a LAN to serve clients on a WAN over a single WAN IP address. The router accepts incoming client packets, filters them based on the destination WAN, or public, port and protocol and forwards the packets to the appropriate LAN, or local, port.
Page 49
ONFIGURING ORWARDING Enable Click to enable or disable the forwarded port profile. Modify Click to modify the forwarded port profile. Delete Click to delete the forwarded port profile. Click Add Entry to add port forwarding rules. Click Accept to confirm the changes. 4-23...
Page 50
ONFIGURING ORWARDING Service Name Enter a name for the port forwarding rule. Protocol Select a protocol for the application: Your Options are Both, TCP, and UDP. Starting Port Enter a starting port number. Ending Port Enter an ending port number. All ports numbers between the starting and ending ports will forward users to the IP address specified in the IP Address field.
ONFIGURING EMILITARIZED 4.3.5 Configuring Demilitarized Zone Configuring a device on the LAN as a Demilitarized zone (DMZ) host allows unrestricted two-way Internet access for Internet applications, such as online video games, to run from behind the NAT firewall. The DMZ function allows the router to redirect all packets going to the WAN port IP address to a particular IP address on the LAN.
Incorrectly changing these settings may cause the device to stop functioning. Do not modify the settings in this section without a thorough understanding of the parameters. Access Point Mode The EnStation5 supports Access Point Mode. In this mode, users with a wireless client device within range can connect to the EnStation5 to access the WLAN. Wireless Mode Wireless mode supports 802.11a/n mixed modes.
Page 53
ONFIGURING IRELESS Auto Check this option to enable Auto Channel selection. AP Detection AP Detection can select the best channel to use by scanning nearby areas for Access Points. Current Profile Configure to four(4) different SSIDs. If many client devices will be accessing the network, you can arrange the devices into SSID groups.
LIENT RIDGE Client Bridge Mode Client Bridge Mode lets you connect two LAN segments via a wireless link as though they are on the same physical network. Since the computers are on the same subnet, broadcasts reach all machines. As a result, DHCP information generated by the server reaches all client computers as though the clients are residing on one physical network.
WDS B RIDGE WDS Bridge Mode WDS Bridge Mode allows you to create large wireless networks by linking several wireless access points with WDS links. WDS is normally used in large, open areas where pulling wires is cost prohibitive, restricted, or physically impossible. Wireless Mode The wireless mode supports 802.11a/n mixed modes.
Page 56
WDS B RIDGE Security Select the type of WDS security: None, WEP, or AES. WEP Key Enter the WEP key. AES Pass phrase Enter the AES pass phrase. MAC Address Enter the MAC address of the Access Point to which you want to extend wireless connectivity. Mode Select Disable or Enable to disable or enable WDS.
In Client Router Mode, you can access the Internet wirelessly with the support of a WISP. In AP Router Mode, the EnStation5 can access the Internet via a cable or DSL modem. In this mode, the EnStation5 can be configured to turn off a wireless network name (SSID) broadcast, so that only stations that have the SSID can be connected.
Page 58
LIENT OUTER Profile If you used the Site Survey, the Web Configurator shows nearby Access Points. To connect to an Access Point, click the Access Point’s BSSID. Wireless Security See Configuring Wireless Security. Click Refresh to scan again. 4-28...
IRELESS ECURITY 4.4.2 Configuring Wireless Security The Wireless Security Settings section lets you configure the EnStation5’s security modes: WEP, WPA-PSK, WPA2-PSK, WPA-PSK Mixed, WPA, WPA2, and WPA Mixed. We strongly recommend you use WPA2-PSK. Wired Equivalent Privacy (WEP) Security Mode Select WEP from the drop-down list to begin the configuration.
(WPA-PSK) ROTECTED CCESS HARED Wi-Fi Protected Access Pre-Shared Key (WPA-PSK) Security Mode Select WPA-PSK from the drop-down list to begin the configuration. Encryption Select Both, TKIP, or AES as the encryption type. Both = uses TKIP and AES. TKIP = automatic encryption with WPA-PSK; requires pass- ...
(WPA2-PSK) ROTECTED CCESS HARED Wi-Fi Protected Access 2 Pre-Shared Key (WPA2-PSK) Security Mode Select WPA2-PSK from the drop-down list to begin the configuration. Encryption Select Both, TKIP, or AES as the encryption type. Both = uses TKIP and AES. TKIP = automatic encryption with WPA-PSK;...
(WPA-PSK) M ROTECTED CCESS HARED IXED Wi-Fi Protected Access Pre-Shared Key (WPA-PSK) Mixed Security Mode Select WPA2-PSK Mixed from the drop-down list to begin the configuration. Encryption Select Both, TKIP, or AES as the encryption type. Both = uses TKIP and AES. ...
(WPA) ROTECTED CCESS Wi-Fi Protected Access (WPA) Security Mode Select WPA from the drop-down list to begin the configuration. Encryption Select Both, TKIP, or AES as the encryption type. Both = uses TKIP and AES. TKIP = automatic encryption with WPA-PSK; requires pass- ...
Page 64
(WPA) ROTECTED CCESS Radius Accounting Server Specifies the IP address of the RADIUS accounting server. Radius Accounting Port Specifies the port number that your RADIUS accounting server uses for authentication. The default port is 1813. Radius Accounting Secret Specifies RADIUS accounting secret furnished by the RADIUS server. Interem Accounting Interval Specifies the interem accounting interval.
2 (WPA2) ROTECTED CCESS Wi-Fi Protected Access 2 (WPA2) Security Mode Select WPA2 from the drop-down list to begin the configuration. Encryption Select Both, TKIP, or AES as the encryption type. Both = uses TKIP and AES. TKIP = automatic encryption with WPA-PSK; requires pass- ...
Page 66
2 (WPA2) ROTECTED CCESS Specifies the IP address of the RADIUS accounting server. Radius Accounting Port Specifies the port number that your RADIUS accounting server uses for authentication. The default port is 1813. Radius Accounting Secret Specifies RADIUS accounting secret furnished by the RADIUS server. Interem Accounting Interval Specifies the interem accounting interval.
(WPA) M ROTECTED CCESS IXED Wi-Fi Protected Access (WPA) Mixed Security Mode Select WPA Mixed from the drop-down list to begin the configuration. Encryption Select Both, TKIP, or AES as the encryption type. Both = uses TKIP and AES. TKIP = automatic encryption with WPA-PSK;...
Page 68
(WPA) M ROTECTED CCESS IXED Radius Accounting Server Specifies the IP address of the RADIUS accounting server. Radius Accounting Port Specifies the port number that your RADIUS accounting server uses for authentication. The default port is 1813. Radius Accounting Secret Specifies RADIUS accounting secret furnished by the RADIUS server.
Wireless MAC Filters are used to allow or deny network access to wireless clients according to their MAC addresses. You can manually add a MAC address to restrict the permission to access EnStation5. The default setting is Disable Wireless MAC Filters.
Click Accept to confirm the changes or Cancel to cancel and return to previous settings. Note: The Access Point to which you want to extend wireless connectivity must enter the EnStation5’s MAC address into its configuration. For more information, refer to the documentation for the Access Point. Not all Access Point supports this feature.
ONFIGURING DVANCED ETWORK ETTINGS 4.4.5 Configuring Advanced Network Settings Configure the advanced wireless settings for your access point using the screens in this section. Leave these settings in their default values if you are not sure what values to enter. Data Rate Selects a data rate from the drop-down list.
ONFIGURING DVANCED ETWORK ETTINGS Wireless Traffic Shaping Enable Traffic Shaping Enable or disable the regulation of packet flow leaving an interface for improved QoS. Incoming Traffic Limit Specifies the wireless transmission speeds used for downloading. Outgoing Traffic Limit Specifies the wireless transmission speeds used for uploading. Total Percentage Specifies the total percentage of the wireless traffic that is shaped.
4.5.1 Configuring Administrator Account Click the Administration link under the Management menu to change the user name and password used to log on to the EnStation5 Web Configurator. The default user name is admin and the default password is admin. Changing these settings protects the EnStation5 configuration settings from being accessed by unauthorized users.
Page 74
For example: If you specify the port number 8080, enter http://<IP address>:8080 to access the EnStation5 Web Configurator. Click Accept to apply the changes or Cancel to return to previous settings.
Click Accept to confirm the changes or Cancel to cancel and return previous settings. Note: If you reconfigure the Management VLAN ID, you may lose your connection to the EnStation5. Verify that the DHCP server supports the reconfigured VLAN ID and then reconnect to the EnStation5 using the new IP address.
4.5.3 Configuring SNMP SNMP is used in network management systems to monitor network-attached devices for conditions that warrant administrative attention. SNMP Enable or disables the EnStation5 SNMP function. Contact Enter the contact details of the device. Location Enter the location of the device.
Page 77
SNMP ONFIGURING User Name Specifies the username for SNMPv3. Auth Protocol Selects the authentication protocol type: MD5 or SHA. Auth Key (8-32 Characters) Specifies the authentication key for authentication. Priv Protocol Selects the privacy protocol type: DES. Priv Key (8-32 Characters) Specifies the privacy key for privacy.
This feature is particularly convenient for administrators who have several EnStation5 devices that need to be configured with the same settings. This page also lets you return the EnStation5 to its factory default settings.
ONFIGURING EBOOT ETTINGS 4.5.5 Configuring Auto Reboot Settings Click the Auto Reboot Settings link under the Management menu to enable or disable the Auto Reboot function. This feature is particularly convenient to administrators for the scheduling of auto rebooting the device. This page also allows you to set the frequency of this function.
Ethernet (LAN port) with all other clients disconnected. The firmware upgrade procedure can take several minutes. Do not power off the EnStation5 during the firmware upgrade, as it can cause the device to crash or become unusable. To update the firmware version, follow these steps below: 1.
YSTEM 4.5.7 Configuring System Time Change the system time of the EnStation5 by manually entering the information, synchronizing the device with a PC, or setting up automatic updates through a Network Time Protocol (NTP) server. Manually Set Date and Time...
ONFIGURING CHEDULE 4.5.8 Configuring Wi-Fi Schedule Use the Wi-Fi schedule function to control the wireless power ON/OFF service that operates on a routine basis. Add a Schedule Service Create a schedule service type and date/time parameters for a specific service. Schedule Name Enter the description of the schedule service.
EnStation5 to an NTP server, see Configuring System Time. Schedule Table Displays a list of scheduled services for the EnStation5. The properties of each service displayed are: Displays the ID number of the service in the table. Name Displays the description of the service.
4.5.9 Configuring Command Line Interface Most users will configure the EnStation5 through the graphical user interface (GUI). However, for those who prefer an alternative method there is the command line interface (CLI). The CLI can be access through a command console, modem or Telnet connection.
4.5.10 Configuring Logging The Log page displays a list of events that are triggered on the EnStation5 Ethernet and wireless interfaces. You can consult this log if an unknown error occurs on the system or when a report needs to be sent to the technical support department for debugging purposes.
ONFIGURING IAGNOSTICS 4.5.11 Configuring Diagnostics The Diagnosis feature allows the administrator to verify that another device is available on the network and is accepting request packets. If the ping result returns alive, it means a device is online. This feature does not work if the target device is behind a firewall or has security software installed.
Page 87
ONFIGURING IAGNOSTICS Start Speed Test Click Start Speed Test to begin the speed test operation. IPv4 Port Displays the IPv4 port number of the EnStation5. IPv6 Port Displays the IPv6 port number of the EnStation5. 4-50...
4.5.12 Viewing Device Discovery From here you will be able to discover devices within the network that the ENStation5 can connect to. If you do not see a particular device to connect to, lease click the Refresh button and wait for the device to show up on the list.
ONFIGURE ENIAL OF ERVICE ROTECTION 4.5.13 Configure Denial of Service Protection Use TCP SYN Cookies Protection Click to enable TCP SYN cookies protection. SYN Flood Attack Protection Click to enable or disable SYN Flood Attack Protection. Match Interval Per Second Enter the allowed number of packets per second.