Table of Contents

Advertisement

Quick Links

1
1
g
W
i
r
e
l
e
s
s
S
e
c
u
r
i
t
y
R
o
u
t
e
r
1
1
g
W
i
r
e
l
e
s
s
S
e
c
u
r
i
t
y
R
o
u
t
e
r
User Guide

Advertisement

Table of Contents
loading

Summary of Contents for KTI Networks KWG-400

  • Page 1 User Guide...
  • Page 2: Fcc Interference Statement

    11g Wireless Security Router User Guide FCC Interference Statement This device complies with Part 15 of FCC rule. Operation is subject to the following two conditions: ü This device may not cause harmful interference. ü This device must accept any interference received, including interference that may cause undesired operation.
  • Page 3: Manufacturer's Disclaimer State

    11g Wireless Security Router User Guide Manufacturer’s Disclaimer State The information in this document is subject to change without notice and does not represent a commitment on the part of vendor. No warranty or representation, either expressed or implied, is made with respect to the quality, accuracy or fitness for any particular prupose of this document.
  • Page 4: Table Of Contents

    11g Wireless Security Router User Guide Table of Contents ................I FCC INTERFERENCE STATEMENT ..........................II FCC Radiation Exposure Statement..........................ii CE DECLARATION OF CONFORMITY: ........................II MANUFACTURER’S DISCLAIMER STATE......................III INTRODUCTION .................................. 1 About this Guide................................1 Chapter 1: Get to know your 11g Wireless Security Router..................1 Chapter 2: Hardware Installation &...
  • Page 5 11g Wireless Security Router User Guide 3-3 I – S ..........................14 NITIAL ONFIGURATION ETUP CHAPTER 4: ADVANCED APPLICATIONS ......................21 4-1 F ..................................21 IREWALL 4-2 VPN S ................................22 ETTINGS 4-3 DHCP C ..............................30 ONFIGURATION 4-4 W ................................31 ONTROL 4-5 T ................................32 ONTROL 4-6 A ................................33...
  • Page 6 11g Wireless Security Router User Guide ..................................62 ARDWARE ) ...............................63 LIENT OMPUTERS APPENDIX A: FREQUENTLY ASKED QUESTIONS ....................65 APPENDIX B: TECHNICAL SPECIFICATIONS .....................67 APPENDIX C: CONFIGURING IPSEC BETWEEN A MICROSOFT WINDOWS 2000 OR XP PC AND BROADBAND VPN ROUTER ............................68 C-1 E ................................68 NVIRONMENT...
  • Page 7: Introduction

    11g Wireless Security Router User Guide Introduction Congratulations on your purchase of this Advanced Wireless 11g Router. This router is the perfect design product combining wireless and Ethernet network technology together. Fully compatible with IEEE 802.11g wireless standard, this device not only allows you to take advantage of mobility, but also to have fast Ethernet connection with built-in four 10/100 auto-sensing switch Ethernet ports.
  • Page 8: Chapter 3: Internet Access

    11g Wireless Security Router User Guide Chapter 3: Internet Access This chapter describes the steps for the basic configuration and start up of the Advanced Wireless 11g Router. Chapter 4: Advanced Applications This chapter describes how to configure advanced functions in order to get the most from your Advanced Wireless 11g Router.
  • Page 9: Chapter 1: Getting To Know Your Advanced Wireless 11G Router

    11g Wireless Security Router User Guide Chapter 1: Getting to know your Advanced Wireless 11g Router This chapter describes the package contents and provides a list of features and application illustrations of the Advanced Wireless 11g Router. 1-1 About The 11g Wireless Security Router The 11g Wireless Security Router is a hybrid design product which combines Ethernet technology and wireless access into a single stand-alone unit.
  • Page 10: Contents Of The 11G Wireless Security Router Package

    11g Wireless Security Router User Guide network send data to that dedicated access point. Advanced Wireless 11g Router uses “Infrastructure” network as Wireless LANs. Each wireless LAN PC within the range of the access point can communicate with other wireless LAN PCs within the range. 1-2 Contents of the 11g Wireless Security Router Package After carefully unpacking the shipping carton, check the contents listed below.
  • Page 11 11g Wireless Security Router User Guide through common web browsers such as Netscape Communication 6.0 or later and Internet Explorer 5.0 or later. ü Built-in firewall to protect your PCs from outside intruders (NAT). ü Supports DHCP client to receive both a dynamic IP Address and a fixed IP Address from ISP.
  • Page 12: Chapter 2: Hardware Installation & Setup

    11g Wireless Security Router User Guide Chapter 2: Hardware Installation & Setup This chapter provides information about your Advanced Wireless 11g Router’s physical features and gives step-by-step installation instructions. 2-1 Rear Panel & Connections The following figure shows the rear view of the Advanced Wireless 11g Router and illustrates how the cables connect to the interfaces on the rear panel.
  • Page 13: System Requirements And Setup

    11g Wireless Security Router User Guide § Power: Green The Power LED illuminates when the Wireless 11g Router is powered on. § Diag The Diag LED illuminates when Router goes through its self-diagnosis mode during boot-up. It will turn off upon successful completion of the diagnostic.
  • Page 14 11g Wireless Security Router User Guide Select the “Configuration” tab. Note: For Windows 2000 & Windows XP Setting Click the “Local Area Connection” icon on the lower right hand side of your desktop screen. In the “Local Area Connection Status” window, click the “Properties” button then your Network window will appear.
  • Page 15 11g Wireless Security Router User Guide There is only one tab, “General”, in the Network window. 2. Check whether the TCP/IP Protocol has already been installed onto your computer’s Ethernet card. Note that TCP/IP Protocol can be installed for a computer’s Dial-Up Adapter as well as for the Ethernet card.
  • Page 16 11g Wireless Security Router User Guide 4. Highlight “Microsoft” under the list of manufacturers. Double-click “TCP/IP” from the list on the right or highlight “TCP/IP” then click “OK” to install TCP/IP. 5. After a few seconds, you will be returned to the Network window. The TCP/IP Protocol should now be on the list of installed network components (see 2 above).
  • Page 17: Fixed Ip Addresses Configuration

    11g Wireless Security Router User Guide Fixed IP Addresses Configuration Fixed IP addresses may be assigned to network devices for many reasons, such as the server PCs or printers which are consistently accessed by multiple users. To set up computers with fixed IP Addresses, go to the “IP Address” tab of the “TCP/IP Properties”...
  • Page 18 11g Wireless Security Router User Guide Click on the “DNS Configuration” tab and select “Enable DNS”. Enter the “DNS IP Address” obtained from your ISP in the “Server Search Order” location. Then click the “Add” button. Click on the “Gateway” tab and enter the Advanced Wireless 11g Router’s default gateway value 192.168.1.1 in the “New gateway”...
  • Page 19: Chapter 3: Internet Access

    11g Wireless Security Router User Guide Chapter 3: Internet Access This chapter describes the procedures necessary to configure the basic functions and begin using your Advanced Wireless 11g Router. If you follow these procedures correctly, there should be no problem in accessing the Internet via your Advanced Wireless 11g Router.
  • Page 20: Initial Configuration - Setup

    11g Wireless Security Router User Guide 3-3 Initial Configuration – Setup The “OnePage Setup” screen is the first screen you will see when you access the Utility. If the router has already been successfully installed and set up, this screen’s values will already be properly configured.
  • Page 21 11g Wireless Security Router User Guide Private IP Address: The “Device IP Address” and “Subnet Mask” of the router are used for the internal LAN. The default values are 192.168.1.1 for the IP Address and 255.255.255.0 for the Subnet Mask. Wireless: Check “Enable”...
  • Page 22 11g Wireless Security Router User Guide Default TX Key: Select one of the four keys to be the encryption key you are going to use in the wireless network. To be sure that all the points in a same wireless network have to have the same encryption key.
  • Page 23 11g Wireless Security Router User Guide Specify WAN IP Address: Enter the IP address provided by your ISP. Subnet Mask: Enter the subnet mask values provided by your ISP. Default Gateway IP Your ISP will provide you with the Default Gateway IP Address: Address.
  • Page 24 11g Wireless Security Router User Guide of minutes you wish the network to remain idle before disconnection occurs in the “Max Idle Time” location. Keep Alive: This function keeps your PPPoE connection enable even if it remains idle. However, in some situation, PPPoE session cannot be established immediately after disconnection.
  • Page 25 11g Wireless Security Router User Guide PPTP PPTP is the acronym of Point to Point Tunneling Protocol. Usually, it is used to encapsulate other protocols’ packets for transmission over IP network. Some ISPs use this protocol as way to establish the initial connection between the CPE (end-user side) and DSLAM (ISP side).
  • Page 26 11g Wireless Security Router User Guide If your ISP uses HBS to establish the connection, you should select this item and follow the steps below. User Name: Enter the user name provided by your ISP. Password: Enter the password provided by your ISP. Heart Beat Server: Enter the IP address provided by your ISP.
  • Page 27: Chapter 4: Advanced Applications

    11g Wireless Security Router User Guide Chapter 4: Advanced Applications This chapter provides information on how to set up and use the advanced functions of your Advanced Wireless 11g Router. 4-1 Firewall The settings page allows you to configure advanced Firewall functions, providing superior security for your network environment.
  • Page 28: Vpn Settings

    11g Wireless Security Router User Guide viruses are also written in these languages. If you deny access to either of these, you may run the risk of not having access to certain web pages. A cookie is a small piece of data (usually in the form of a text file), which is stored on your PC when you visit certain web sites.
  • Page 29 11g Wireless Security Router User Guide from any others you have created. Note: The tunnel name set here does not always have to match the name used at the other end of the tunnel. However, certain VPN applications require a tunnel to have the same name at both ends of the tunnel.
  • Page 30 11g Wireless Security Router User Guide remain in the IP and Mask fields. (2) IP Address Selecting this item allows only the specific PC with the IP address you enter in the IP field to the tunnel. Only the PC with IP Address 192.168.2.51 can access the tunnel from the other end.
  • Page 31 11g Wireless Security Router User Guide (3) Any Accept remote requests from any IP address. Note that the router cannot initial VPN connection when “Any” is selected. Encryption: This item helps give your VPN connection added security. There are two different type of encryption: “DES” or “3DES”. DES uses 64-bit encryption key, and 3DES uses 128-bit encryption key.
  • Page 32 11g Wireless Security Router User Guide Manual keying allows you to manually enter the keys to be used for encryption and authentication. Enter the Keys (code) you wish to use for encryption and authentication separately in the “Encryption KEY” and “Authentication KEY” fields. Up to 23 alphanumeric characters are allowed in each field.
  • Page 33 11g Wireless Security Router User Guide Operation mode: There two options in this mode: Main and Aggressive. Main mode is the default and is more secure method. Aggressive mode is used when the devices at the remote end of the VPN tunnel use Aggressive mode.
  • Page 34 11g Wireless Security Router User Guide NetBIOS Broadcast: Check the box to allow NetBIOS traffic pass through the VPN tunnel. Anti-replay: Check the box to enable this function. This item will keep track of sequence numbers as data packets arrive and ensure security at the IP packet level.
  • Page 35 11g Wireless Security Router User Guide Ø Creating a tunnel between VPN router and VPN client with dynamic IP Address Once you are satisfied that your settings are correct, click the “Apply” button. Click the “Cancel” button to exit the screen without saving any - 29 -...
  • Page 36: Dhcp Configuration

    11g Wireless Security Router User Guide changes. 4-3 DHCP Configuration A DHCP (Dynamic Host Configuration Protocol) Server can automatically assign IP Addresses to each computer in your network. Unless you already have one in you LAN, it is highly recommended that you set your router to act as a DHCP server. Dynamic IP Address: Select “Enable”...
  • Page 37: Web Control

    11g Wireless Security Router User Guide first DNS entry will be use in most cases. WINS: Windows Internet Naming Service converts NETBIOS name to IP address. The Windows based PCs are assigned NETBIOS names, which have to be transfer into IP addresses if the network transport is TCP/IP.
  • Page 38: Tod Control

    11g Wireless Security Router User Guide Control Web Access: Check “Enable” or “Disable” to make this function active or inactive. Control Type: Check “Allow” to allow users on the network to access specific website listed on the location only. In contrast, to restrict users on the network to access the website listed on the location, check “Block”...
  • Page 39: Access Control

    11g Wireless Security Router User Guide this page before clicking Apply. 4-6 Access Control The Access Control feature allows administrators to set up to 20 access policies to block or allow certain users from accessing the Internet or specific applications. Before using this function, the network PCs which you want to control the access limitation should be assigned fixed IP Addresses.
  • Page 40 11g Wireless Security Router User Guide rule. Direction: Choose the initial network data traffic direction you wish to block. Select “Outbound” to restrict the connection to the Internet from your LAN. Select “Inbound” to restrict any external connections from Internet to your LAN. MAC: This item allows network administrators to use the MAC addresses of PCs to restrict users/computers from accessing...
  • Page 41: Virtual Server Settings

    11g Wireless Security Router User Guide Number” column, then click the “Apply” button. As a result, this PC with MAC address 00-01-36-02-B1-4F and IP Address 192.168.1.101 will not be able to use the applications which use port numbers from 20 to 80, such as FTP, Telnet and web browsing.
  • Page 42 11g Wireless Security Router User Guide Set up individual network computers to act as servers and configure each with a fixed IP Address. Note: In the “One Page Setup” screen, ensure the “Private IP Address” is set to the Wireless Security Router’s default setting of 192.168.1.1. If a fixed Public IP Address is to be used, select “Specify an IP address”...
  • Page 43: Upnp Forwarding

    11g Wireless Security Router User Guide 1863 5190 6901 (Voice) 6901 (Voice) PC Anywhere host 5631 5632 Quake 2 27910 Quake III 27660 (first player) "C:\Program Files\Quake III Arena\quake3.exe" +set net_port 27660 27661 (second player) Telnet Server Web Server UPnP Forwarding UPnP (Universal Plug and Play) is a standard introduced from Microsoft and UPnP Forum for interoperability.
  • Page 44 11g Wireless Security Router User Guide UPnP Function: Check “Enable” will allow LAN side PCs that support UPnP to set virtual server. Before you enable the UPnP Forwarding, you have to set up individual network computers to act as servers and configure each with a fixed IP Address.
  • Page 45: Special Applications

    11g Wireless Security Router User Guide Ext. Port Most of applications usually use their individual port number for its incoming and outgoing data packets. However, some of the application may use different port number for incoming and outgoing data packets. In this case, you have to enter the port number used by incoming data packets here.
  • Page 46 11g Wireless Security Router User Guide Application name: Enter the name of application you wish to configure in the Name column to identify this setting. Outgoing Port Range: Enter the port number or range numbers this application uses when it sends packets outbound. The Outgoing Control Port Numbers act as the trigger.
  • Page 47: Dmz Host

    11g Wireless Security Router User Guide 2069, 2085,3010-3030 MSN Gaming Zone 47624 2300-2400, 28800-29000 PC to Phone 12053 12120,12122, 24150-24220 Quick Time4 6970-6999 wowcall 8000 4000-4020 4-9 DMZ Host The DMZ Host application allows unrestricted 2-way communication between a single LAN PC and other Internet users or servers.
  • Page 48 11g Wireless Security Router User Guide Before setting up a LAN PC to act as a DMZ Host, you should configure it using a fixed IP Address. Note: In the “One Page Setup” screen, ensure the Private IP Address is set to the Wireless Security Router’s default setting of 192.168.1.1.
  • Page 49: Dynamic Routing

    11g Wireless Security Router User Guide 4-10 Dynamic Routing The Dynamic Routing feature allows your Wireless Security Router to exchange routing information with other routers in the network. Enabling this feature is likely to enhance performance of your Wireless Security Router. From the drop-down list, select one of the routing information types, “RIP-1”, “RIP-1 Compatible”, or “RIP-2”, to enable the “TX”...
  • Page 50: Static Routing

    11g Wireless Security Router User Guide 4-11 Static Routing The Static Routing feature allows PCs that are connected to the Wireless Security Router, either directly or through a hub/switch (in the immediate LAN), to communicate with other PCs in the respective LAN segment which are connected to the Wireless Security Router through another router (destination LAN).
  • Page 51 11g Wireless Security Router User Guide Select Route entry: Select the route entry number from 1 to 20 that you wish to configure. Delete this entry Delete the selected route entry information. Destination LAN IP and Enter the IP Address and Subnet Mask of the destination LAN Subnet Mask: that the immediate LAN is to communicate with.
  • Page 52: Wireless

    11g Wireless Security Router User Guide access LAN 1, LAN 2 and the Internet while PC2 can only access LAN 2, LAN1. 4-12 Wireless This setting page allows you to configure adva nced wireless functions. To set those items needs more technology background. Unless you really understand those technical terms, it would be better to leave them as default setting.
  • Page 53 11g Wireless Security Router User Guide addresses have been blocked (check the Filter field beside the MAC address in Edit MAC Filter table), the background color will be yellow. Wireless Station MAC This function allows you to restrict wireless users to access Filter: Internet.
  • Page 54: Ddns

    11g Wireless Security Router User Guide Basic Rate: Leave “Mixed” as default setting to compatible with different wireless standard or select other rates you wish to use to connect with specific wireless standard devices. Transmission Rate: Leave “Default” setting or select other speed you wish to use. Preamble Type: Leave “Dynamic”...
  • Page 55 11g Wireless Security Router User Guide DDNS Service: Check the “Enable” option if you wish to activate this function. Username: After you have applied for the DDNS service from DynDNS.org, you will be issued with a Username. Enter this username in the “Username” field. Password: DynDNS.org, will also issue you with a password.
  • Page 56: Chapter 5: Management

    11g Wireless Security Router User Guide Chapter 5: Management This chapter provides information on using Macintosh computers in your network. The instructions given here are for system software version 8.0 or above, which comes with the TCP/IP Protocol preloaded and supports DHCP Addressing. 5-1 Device Administration Settings This feature allows the administrator to manage the Wireless Security Router by setting certain parameters.
  • Page 57 11g Wireless Security Router User Guide Administrator Enter the password you want to use into the “Password Password: Change” field and re-enter it into the “Password Confirm” field for confirmation. Be sure that the password is less than 64 characters long and without any special characters or spaces..
  • Page 58 11g Wireless Security Router User Guide read-only information about this router or have the authority to change the configuration. Also, the administrator can define any specific community and configure its limits as Read-Only or Read-Write from the right side drop-down box. WAN MAC Change: The WAN MAC address can be changed from the original values if necessary.
  • Page 59: Status Monitor

    11g Wireless Security Router User Guide 5-2 Status Monitor This screen shows the router’s current status. All of the information provided is read-only. Product Name: This field shows the name of this router. Firmware Version: This field shows the installed version of the firmware. Login: This column shows the login information of PPPoE or PPTP.
  • Page 60: Log

    11g Wireless Security Router User Guide in “One Page Setup: Public IP Address”, the information will be the same as your input. DHCP Release: Click this button to eliminate the IP address obtained from DHCP server. DHCP Renew: Click this button to refresh the IP address from DHCP server. Note that the “DHCP Release”...
  • Page 61: Backup & Restore

    11g Wireless Security Router User Guide Send Log To: Enter the IP address of the PC that you wish to use to view the Log information. View Log: Click this button to view the log on-line. Send Log via E-mail: The Firewall log can be sent via e-mail.
  • Page 62: Upgrade Firmware

    11g Wireless Security Router User Guide Backup: Click “Backup” button save the current configuration as a backup file in your hard disk. Restore: Enter path of the configuration file you saved on the PC. You can click “Browse” to view the folders and select the file. Click “Restore”...
  • Page 63: Diagnostic-Ping/Tracert

    11g Wireless Security Router User Guide Note that don’t power off the router during the firmware upgrading, otherwise the incompletion of firmware upgrading will cause serious damage to the integrity of the router’s firmware that will lead to fail to boot the router again. 5-6 Diagnostic-Ping/Tracert This function allows you to test the connection between router and LAN or between router and Internet.
  • Page 64: Tracert

    11g Wireless Security Router User Guide starting to ping the destination device. Start: Click this button to begin the ping test. Ping Result: The result will show the numbers of sending packet, numbers of packet receiving, and the average return time. Tracert Tracert Host: Enter the IP Address of destination device that you wish to...
  • Page 65: Chapter 6: Macintosh Setup

    11g Wireless Security Router User Guide Chapter 6: Macintosh Setup This chapter provides information on using Macintosh computers in your network. The instructions given here are for system software version 8.0 or above, which comes with the TCP/IP Protocol preloaded and supports DHCP Addressing. 6-1 Hardware Connections Connect your Macintosh computer to your Advanced Wireless 11g Router.
  • Page 66: Advanced Wireless 11G Router Configuration

    11g Wireless Security Router User Guide Select “Manually” in the “Configure” location from the drop-down list. In the “IP Address” location, enter the IP Address that you want to assign to the computer. (see the notes on Fixed IP Addresses 2-4 above). Enter “255.255.255.0”...
  • Page 67 11g Wireless Security Router User Guide Close the window. 5. Click “Confirm”. TCP/IP is now configured for manual IP Addressing. 6. Configure your Advanced Wireless 11g Router (see 5.3 above). - 61 -...
  • Page 68: Chapter 7: Trouble Shooting

    11g Wireless Security Router User Guide Chapter 7: Trouble Shooting This chapter provides solutions to problems you may encounter during installation and operation of your Advanced Wireless 11g Router. Hardware Q: The Power LED is off. Check that the power cable is properly connected to the Advanced Wireless 11g Router, the power adapter and the socket.
  • Page 69: Client Side (Computers)

    11g Wireless Security Router User Guide address automatically. Ensure that your PC is using an IP Address within the range 192.168.1.2 to 192.168.1.254 and thus compatible with the Advanced Wireless 11g Router default IP address of 192.168.1.1 Finally, use the Ping command in MS-DOS mode to verify the network connection: Ping 127.0.0.1 to check the TCP/IP stack of your computer Ping gateway IP (Default: 192.168.1.1) to check the internal link of network.
  • Page 70 11g Wireless Security Router User Guide ü Check that the values as stated above are the same in Status Monitor (4-7). Q: I get a time out error when I enter a URL or IP address. A: Check whether other computers work. If they do, ensure the computer’s IP settings are correct (IP Address, Subnet Mask, Gateway IP Address and DNS) (3-3).
  • Page 71: Appendix A: Frequently Asked Questions

    11g Wireless Security Router User Guide Appendix A: Frequently Asked Questions Q: What is the maximum number of IP Addresses the Advanced Wireless 11g Router can support? The Advanced Wireless 11g Router can support up to 253 IP Addresses in the range of 192.168.1.2~192.168.1.254.
  • Page 72 11g Wireless Security Router User Guide Addresses that Internet host can handle. Addressing systems using Domain name, like www.yahoo.com, is easier to use than an IP address, such as 204.71.177.70. Q: What operating systems does Advanced Wireless 11g Router series support? Advanced Wireless 11g Router uses standard TCP/IP protocol, it can be operated as long as you have the TCP/IP protocol installed in your operating system (For example: Windows 9x, Windows NT, Windows 2000, etc.)
  • Page 73: Appendix B: Technical Specifications

    11g Wireless Security Router User Guide Appendix B: Technical Specifications Standards Compliance IEEE 802.3 10BASE-T IEEE 802.3u 100BASE-TX IEEE 802.11g Wireless Interface One 10/100Mbps Ethernet RJ45 port on WAN Four 10/100Mbps auto-sensing Ethernet RJ-45 ports and one uplink port on LAN Wireless access point Management Web-based UI Management...
  • Page 74: Broadband Vpn Router

    11g Wireless Security Router User Guide Appendix C: Configuring IPSec between a Microsoft Windows 2000 or XP PC and Broadband VPN Router This document illustrates the steps of Microsoft Windows 2000 (or XP) PC establishing a secure IPsec tunnel with this Broadband VPN Router. You can find detailed information on configuring the Microsoft Windows 2000 server at the Microsoft website: Microsoft KB Q252735 - How to Configure IPSec Tunneling in Windows 2000...
  • Page 75: C-2.2 Build 2 Filter Lists: "Winxpàbroadband Vpn Router" And "Broadband Vpn Routeràwinxp

    11g Wireless Security Router User Guide 4. Deselect the Activate the default response rule check box, and then click Next button. 5. Click the Finish button, making sure the Edit check box is checked. C-2.2 Build 2 Filter Lists: “WinXPà Broadband VPN Router” and “Broadband VPN Routerà...
  • Page 76 11g Wireless Security Router User Guide 2. From the IP Filter List tab, click the Add button. 3. Type an appropriate name “XPà Broadband VPN Router” for the filter list, deselect the Use Add Wizard check box, and then click Add button. 4.
  • Page 77 11g Wireless Security Router User Guide 6. If you want to type a description for your filter, click the Description tab. 7. Click OK button. Then click OK(for WinXP) or Close (for Win2000) button on the IP Filter List Window. [Filter List 2] Broadband VPN Routerà...
  • Page 78: C-2.3 Configure Individual Rule Of 2 Tunnels

    11g Wireless Security Router User Guide Address “192.168.1.0” and Subnet mask “255.255.255.0”. In the Destination address area, click My IP Address. If you want to type a description for your filter, click the Description tab. Click OK, and then click OK. C-2.3 Configure Individual Rule of 2 Tunnels [Tunnel 1] WinXPà...
  • Page 79 11g Wireless Security Router User Guide From the Filter Action tab, click the filter action “Require Security”, and click the Edit button. Check that the Negotiate security option is enabled, and deselect the Accept unsecured communication, but always respond using IPsec check box. Select the Session key Perfect Forward Secrecy (PFS) and remember to check - 73 -...
  • Page 80 11g Wireless Security Router User Guide the PFS option on the Broadband VPN Router, and then click the OK button. From the Authentication Methods tab, click the Edit button. Change the authentication method to “Use this string (preshared key)”, enter the string “Test”, and then click the OK button.
  • Page 81 11g Wireless Security Router User Guide This new Preshared key will be displayed in Authentication method preference order. Click the OK button to continue. From the Tunnel Setting tab, click The tunnel endpoint is specified by this IP Address box, and then type the WAN IP Address “140.111.1.1”(Note: ISP provided IP Address;...
  • Page 82 11g Wireless Security Router User Guide From the Connection Type tab, select All network connections , and then click the OK or Close button to finish this rule. - 76 -...
  • Page 83 11g Wireless Security Router User Guide [Tunnel 2] Broadband VPN Routerà WinXP In the to_VPNRouter Properties, deselect the Use Add Wizard check box, and then click the Add button to create the second IP Filter. On the IP Filter List tab, click the filter list “Broadband VPN Routerà XP”. - 77 -...
  • Page 84 11g Wireless Security Router User Guide From the Filter Action tab, click the filter action “Require Security”. From the Authentication Methods tab, click the Edit button. Change the authentication method to “Use this string (preshared key)”, enter the string “Test”, and then click the OK button. - 78 -...
  • Page 85 11g Wireless Security Router User Guide This new Preshared key will be displayed in Authentication method preference order. Click the OK button to continue. From the Tunnel Setting tab, click The tunnel endpoint is specified by this IP Address box, and then type the Windows 2000/XP IP Address “140.111.1.2”. - 79 -...
  • Page 86 11g Wireless Security Router User Guide From the Connection Type tab, select All network connections , and then click the OK(for WinXP) or Close(for Win2000) button to finish. - 80 -...
  • Page 87: C-2.4 Assign New Ipsec Policy

    11g Wireless Security Router User Guide From the Rules tab, click the OK button to back to the secpol screen. C-2.4 Assign New IPsec Policy 1. In the IP Security Policies on Local Computer MMC snap- in, right-click policy named “to_VPNRoute r”, and then click Assign. A green arrow appears in the folder icon.
  • Page 88 11g Wireless Security Router User Guide - 82 -...
  • Page 89: Appendix D: Glossary

    11g Wireless Security Router User Guide Appendix D: Glossary 10Base-T / 100Base-T The adaptation of the Ethernet standard for Local Area Networks (LANs). 10Base-T uses a twisted pair cable with maximum lengths of 100 meters and transmits data at 10Mbps maximum.
  • Page 90 11g Wireless Security Router User Guide identify your machine. It is normally a text with ID number, but can include other information. DHCP DHCP, short for Dynamic Host Configuration Protocol, is a protocol for assigning dynamic IP Addresses to devices on a network. Dynamic Addressing means that a device can have a different IP Address each time it connects to the network.
  • Page 91 11g Wireless Security Router User Guide Firewall A security system used to enforce an access control policy between an organisation’s networks and the Internet. IEEE Short for Institute of Electrical and Electronics Engineers, an organization best known for developing standards for the computer and electronics industry. Internet A global network connecting millions of computers for the exchange of data, news and opinions.
  • Page 92 11g Wireless Security Router User Guide connected in this way is called a wide area network (WAN) MAC Address Short for Media Access Control Address and in a hardware address that uniquely identifies each node of a network. Short for Network Address Translation, a routing protocol that allows global IP Addresses to be translated into multiple private IP Addresses for use on internal LAN networks.
  • Page 93 11g Wireless Security Router User Guide Router An Internet device that routes requests for information to other routers until the information’s location is found and the data can be transmitted back to the origin of the request. SPI is an acronym for Stateful Packet Inspection. The SPI engine examines not just the headers of the packet, but also the packet contents, it can then determine more about the packet than just its source and destination information.

Table of Contents