NetComm G.SHDSL 4-port Security Modem Routers NB712 User Manual
NetComm G.SHDSL 4-port Security Modem Routers NB712 User Manual

NetComm G.SHDSL 4-port Security Modem Routers NB712 User Manual

G.hdsl 4-port moddem router
Hide thumbs Also See for G.SHDSL 4-port Security Modem Routers NB712:

Advertisement

Quick Links

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the G.SHDSL 4-port Security Modem Routers NB712 and is the answer not in the manual?

Questions and answers

Summary of Contents for NetComm G.SHDSL 4-port Security Modem Routers NB712

  • Page 2: Table Of Contents

    Contents 1 Introduction ...4 1.1 Features ...4 1.2 Package Contents ...4 1.3 Specification ...5 1.4 Application ...7 2 Firewall ...8 2.1 Types of Firewall ...9 2.2 Denial of Service Attack ...10 3 VLAN (Virtual Local Area Network) ...12 3.1 Specification ...12 3.2 Frame Specification ...12 3.3 Applications ...13 4 Getting to know the router ...14...
  • Page 3 10 Utility ...66 10.1 System Info ...67 10.2 Config Tool ...68 10.3 Upgrade ...69 10.4 Logout ...70 10.5 Restart ...71 11 Status ...72 12 LAN-to-LAN connection with bridge Mode ...73 12.1 CO side ...73 12.2 CPE Side ...75 13 LAN to LAN Connection with Routing Mode ...76 13.1 CO side ...76 13.2 CPE side ...78 14 Configuration via Serial Console or Telnet with Menu Driven Interface ...80...
  • Page 4: Introduction

    1 Introduction NetComm’s NB712 (2-wire) and NB714 (2 or 4-wire selectable) G.SHDSL 4-port Security Modem Routers deliver symmetrical DSL services to small and medium size business making them an economical alternative to Leased Line or ISDN services. Available in two modem router configurations, the NB712 (2-wire) and NB714 (2 or 4-wire selectable) are capable of providing data rates from 64kbps to 2.304Mbps (NB712) or 128kbps to 4.608Mbps (NB714) and fully comply...
  • Page 5: Specification

    1.3 Specification Routing • Supports IP/TCP/UDP/ARP/ICMP/IGMP protocols • IP routing with static routing and RIPv1/RIPv2 (RFC1058/2453) • IP multicast and IGMP proxy (RFC1112/2236) • Network address translation (NAT/PAT) (RFC1631) • NAT ALGs for ICQ/Netmeeting/MSN/Yahoo Messenger • DNS relay and caching (RFC1034/1035) •...
  • Page 6 ATM QoS • UBR (Unspecified bit rate) • CBR (Constant bit rate) • VBR-rt (Variable bit rate real-time) • VBR-nrt (Variable bit rate non-real-time) AAL5 Encapsulation • VC multiplexing and SNAP/LLC • Ethernet over ATM (RFC 2684/1483) • PPP over ATM (RFC 2364) •...
  • Page 7: Product Information

    Physical/Electrical • Dimensions: 18.7 x 3.3 x 14.5cm (WxHxD) • Power: 100~240VAC (via power adapter) • Power consumption: 9 watts max • Temperature: 0~45 • Humidity: 0%~95%RH (non-condensing) Memory • 2MB Flash Memory, 8MB SDRAM Product Information • G.shdsl 2-wire router/bridge with 4-port switching hub LAN, VLAN and business class firewall •...
  • Page 8: Firewall

    2 Firewall A firewall protects networked computers from an intrusion that could compromise confidentiality or result in data corruption or denial of service. It must have at least two network interfaces, one for the network it is intended to protect, and one for the network it is exposed to. A firewall sits at the junction point or gateway between the two networks, usually a private network and a public network such as the Internet.
  • Page 9: Types Of Firewall

    2.1 Types of Firewall There are three types of firewall: 2.1.1 Packet Filtering In packet filtering, only the protocol and the address information of each packet is examined. Its contents and context (its relation to other packets and to the intended application) are ignored. The firewall pays no attention to applications on the host or local network and it “knows”...
  • Page 10: Circuit Gateway

    2.1.2 Circuit Gateway Also called a “Circuit Level Gateway,” this is a firewall approach that validates connections before allowing data to be exchanged. What this means is that the firewall doesn’t simply allow or disallow packets but also determines whether the connection between both ends is valid according to configurable rules, then opens a session and permits traffic only from the allowed source and possibly only for a limited period of time.
  • Page 11 Ping of death SYN Flood ICMP Flood UDP Flood Land attack Smurf attack Fraggle Attack IP Spoofing NB712 / NB714 User Guide YML829 Rev1 On the Internet, ping of death is a kind of denial of service (DoS) attack caused by an attacker deliberately sending an IP packet larger than the 65,536 bytes allowed by the IP protocol.
  • Page 12: Vlan (Virtual Local Area Network)

    3 VLAN (Virtual Local Area Network) Virtual LAN (VLAN) is defined as a group of devices on one or more LANs that are configured so that they can communicate as if they were attached to the same wire, when in fact they are located on a number of different LAN segments.
  • Page 13: Applications

    as belonging to a particular VLAN based on the value of the VID that is included in the tag header. The presence of the tag header carrying a non-null VID means that some other device, either the originator of the frame or a VLAN-aware bridge, has mapped this frame into a VLAN and has inserted the appropriate VID.
  • Page 14: Getting To Know The Router

    4 Getting to know the router This section will introduce the hardware of the router. 4.1 Front Panel The front panel contains LEDs which show the status of the SHDSL router. Note: The front panel LEDs of the NB712 (2-wire) and NB714 (2 or 4-wire selectable) are identical. The NB714 is shown below. LED status LEDs Active...
  • Page 15: Rear Panel

    Rear Panel The rear panel of the SHDSL router is where all of the cable connections are made. Connectors DC-IN LAN (1,2,3,4) CONSOLE LINE The reset button can be used in one of two ways. (1) Press the Reset Button for one second to reboot the system only. (2) Pressing the Reset Button for four seconds will cause the product to reload the factory default settings, thereby losing all of your settings.
  • Page 16: Connecting Your G.shdsl Modem Router

    5 Connecting your G.SHDSL Modem Router This guide is designed to lead users through the Web Configuration of the G.SHDSL Modem Router in the easiest and quickest way possible. Please follow the instructions carefully. Note: There are three methods to configure the router: serial console, Telnet and Web Browser.
  • Page 17 Bridge EoA Route EoA IPoA PPPoA NB712 / NB714 User Guide YML829 Rev1...
  • Page 18 PPPoE Step 5: Install the SHDSL Router Do not turn on the Modem Router until you have completed the Hardware Installation. • Connect the power adapter to the port labelled DC-IN on the rear panel of the product. • Connect the Ethernet cable to the PC. Note: The 4-port modem router supports auto-MDIX switching, so both straight and cross-over Ethernet cables can be used.
  • Page 19: Configuration Via Web Browser

    6 Configuration via Web Browser For Win95, 98 and Me, click the start button. Select Setting and Control Panel. Double click the Network icon. In the Configuration window, select the TCP/IP protocol line associated with your network card and then click the Properties button.
  • Page 20 Choose IP Address tab. Select Obtain IP address automatically. Click the OK button. The window will ask you to restart the PC. Click Yes button. After rebooting your PC, open your web browser and type http://192.168.1.1 to connect to the Router. The default IP address and sub net-mask of the Router is 192.168.1.1 and 255.255.255.0.
  • Page 21: Basic Setup

    7 Basic Setup The Basic Setup contains LAN, WAN, Bridge and Router operation modes. This section can be used to completely setup the router. After successfully completing it, you can access the Internet. This is the easiest and quickest way to setup the router.
  • Page 22: Bridge Mode

    7.1 Bridge Mode Before configuring the router in bridge mode, check with your ISP to ensure you have the necessary information. Click Bridge and CPE Side to setup Bridging mode of the Router and then click Next. Two SHDSL modes are available: CO, Central Office, and CPE, Customer Premises Equipment. For a connection with a DSLAM, the correct SHDSL mode is CPE.
  • Page 23 WAN1 Parameters Enter VPI: Enter VCI: Click LLC Click Next. The screen will display the new parameters. Check the parameters and click Restart. The router will reboot with the new settings. Select Continue to configure other parameters. NB712 / NB714 User Guide YML829 Rev1...
  • Page 24: Routing Mode

    7.2 Routing Mode Routing mode includes DHCP server, DHCP client, DHCP relay, Point-to-Point Protocol over ATM and Ethernet and IP over ATM and Ethernet over ATM. The type of Internet protocol is provided by your ISP. Click ROUTE and CPE Side then press Next. Two SHDSL modes are available: CO, Central Office, and CPE, Customer Premises Equipment.
  • Page 25 7.2.1 DHCP Client Some ISPs provide a DHCP server service whereby the PC in the LAN can access IP information automatically. To setup the DHCP client mode, follow the procedure. LAN IP Type: Dynamic Click Next to setup WAN1 parameters. NB712 / NB714 User Guide YML829 Rev1...
  • Page 26 7.2.2 DHCP Server Dynamic Host Configuration Protocol (DHCP) is a communication protocol that allows network administrators to centrally manage and automate the assignment of Internet Protocol (IP) addresses in an organization’s network. Internet Protocol requires that each machine that can connect to the Internet has a unique IP address. When an organization sets up its computer users with a connection to the Internet, an IP address must be assigned to each machine.
  • Page 27 Trigger DHCP Service: DNS Server: Click Next to setup WAN1 parameters. NB712 / NB714 User Guide YML829 Rev1 Server The default setup is Enable DHCP server. If you want to turn off the DHCP service, choose Disable. For example: If the LAN IP address is 192.168.1.1, the IP range of LAN is 192.168.1.2 to 192.168.1.51.
  • Page 28 7.2.3 DHCP relay If you already have a DHCP server on your LAN and you want to use it for DHCP services, the router provides a DHCP relay function. IP Type: IP Address: Subnet Mask: Host Name: Trigger DHCP Service: Click Next to setup DHCP server parameters.
  • Page 29 7.2.4 PPPoE or PPPoA PPPoA (point-to-point protocol over ATM) and PPPoE (point-to- point protocol over Ethernet) are authentication and connection protocols used by many service providers for broadband Internet access. These are specifications for connecting multiple computer users on an Ethernet local area network to a remote site through common customer premises equipment, which is the telephone company’s term for a modem and similar devices.
  • Page 30 Type the ISP1 parameters. Username: Password: Password Confirm: Idle Time: IP Type: For fixed IP address: IP Type: IP Address: Click Next. For IP Unnumbered: IP Type: IP Address: Click Next. test test test Your ISP will provide the user name and password. If you want your Internet connection to remain on at all times, enter 0 in the Idle Time field.
  • Page 31 Don’t forget to enable LAN: For IP Routing Usage and type IP address on STEP 2 Note: For security, the password will be displayed as asterisk characters. The screen will display the parameters that will be written to EPROM. Check the parameters before writing to EPROM.
  • Page 32 7.2.5 IPoA or EoA Before configuring the router, check with your ISP to ensure you have the correct parameters. Type the Wan Parameters; VPI: VCI: AAL5 Encap: Protocol: Click Next to setup the IP parameters. For more information, refer to the section on NAT/DMZ. IP Address: Subnet mask: Gateway:...
  • Page 33 The screen will display the parameters that will be written to EPROM. Check the parameters before writing to EPROM. Press Restart to restart the router with the new parameters or press Continue to setup other parameters. NB712 / NB714 User Guide YML829 Rev1...
  • Page 34: Advanced Setup

    8 Advanced Setup Advanced setup contains SHDSL, WAN, Bridge, VLAN, Route, NAT/DMZ, Virtual server and firewall parameters. NB712 / NB714 User Guide YML829 Rev1...
  • Page 35: Shdsl

    8.1 SHDSL You can setup the Annex type, data rate and SNR margin for SHDSL parameters in SHDSL. Click SHDSL. The following screen displays the Advanced SHDSL settings page for the NB712. The NB714 supports an additional 4-wire mode with 4.0608Mbps data rate. The following screen displays the Advanced SHDSL settings page for the NB714 with the option to select the Link Type.
  • Page 36 SHDSL SNR margin: The screen will display the parameters that will be written to EPROM. Check the parameters before writing to EPROM. Press Restart to restart the router with the new parameters or press Continue to setup other parameters. The margin range is from 0 to 10. SNR margin is an index of line connection.
  • Page 37: Wan

    8.2 WAN The SHDSL router supports up to 8 PVCs. WAN 1 was configured via BASIC except QoS. If you want to setup other PVCs, 2 to 8, the parameters are setup in WAN. I.e., you must apply two or more Internet Services with ISPs otherwise you do not need to setup WAN.
  • Page 38 If the WAN protocol is IPoA or EoA, leave the ISP parameters as default setting. The system will ignore the information but deleting or leaving blank fields will cause a system error. QoS (Quality of Service): UBR (Unspecified Bit Rate): CBR (Constant Bit Rate): VBR-rt (Variable Bit Rate real-time): PCR (Peak Cell Rate) in kbps:...
  • Page 39: Bridge

    8.3 Bridge If your router is setup in bridge mode and you want to setup advanced filter functions, you can use the BRIDGE menu to setup the filter and blocking functions. Click Bridge to setup. Press Add to add the static bridge information. If you want to filter the MAC address of a LAN PC to access the Internet, press Add to establish the filtering table.
  • Page 40 The screen will display the parameters that will be written to EPROM. Check the parameters before writing to EPROM. Press Restart to restart the router with the new parameters or press Continue to setup other parameters. NB712 / NB714 User Guide YML829 Rev1...
  • Page 41: Vlan

    8.4 VLAN Virtual LAN (VLAN) is defined as a group of devices on one or more LANs that are configured so that they can communicate as if they were attached to the same wire, when in fact they are located on a number of different LAN segments.
  • Page 42 VID: PVID: Link Type: Link Type: Port-Based VLANs are VLANs where the packet forwarding decision is based on the destination MAC address and its associated port. Click Port-Based VLAN to configure the router and press Reset. Virtual LAN ID is a defined ID number from 1 to 4094. Port VID is an untagged member of a default VLAN.
  • Page 43: Route

    8.5 Route If the Router is connected to more than one network, it may be necessary to set up a static route between them. A static route is a pre-determined pathway that network information must travel to reach a specific host or network. With Dynamic Routing, you can enable the Router to automatically adjust to physical changes in the network’s layout.
  • Page 44 RIP Version: Authentication required: Poison Reverse: After modifying the RIP parameters, press finish. The screen will display the modified parameters. Check the parameters and press Restart to restart the router or press Continue to setup other parameters. It determines the format and broadcasting method of any RIP transmissions by the gateway.
  • Page 45: Nat/Dmz

    8.6 NAT/DMZ NAT (Network Address Translation) is the translation of an Internet Protocol address (IP address) used within one network to a different IP address known within another network. One network is designated as the inside network and the other is the outside.
  • Page 46 Users of the public network outside the company can access only the DMZ host. The DMZ may typically also have the company’s Web pages so these could serve the outside world. However, the DMZ provides access to no other company data. In the event that an outside user penetrated the DMZ host’s security, the Web pages might be corrupted, but no other company information would be exposed.
  • Page 47: Virtual Server

    8.7 Virtual Server Virtual Server allows specific ports on the WAN interface to be re-mapped to services inside the LAN. For example, 69.210.1.8 is assigned to WAN by the ISP and is visible to the Internet but does not actually have any services (other than NAT) running on the gateway.
  • Page 48: Firewall

    8.8 Firewall A firewall is a set of related programs that protect the resources of a private network from other networks. It prevents unauthorised users from accessing private data and resources accidentally. Basic Firewall Security This level only enables the NAT firewall and the remote management security. The NAT firewall will take effect if the NAT function is enabled.
  • Page 49 Automatic Firewall Security Select Automatic Firewall Security. This level enables basic firewall security as well as all DoS protection and the SPI filter function. Press Finish to finish setting up the firewall. The screen will display the parameters, which will be written to EPROM. Check the parameters. Press restart to restart the router or press Continue to setup another function.
  • Page 50 Advanced Firewall Security You can determine the security level for special purpose, environment, and applications by configuring DoS protection and defining an extra packet filter with higher priority than the default SPI filter. Note that an improper filter policy may degrade the capability of the firewall and/or even block the normal network traffic. Click Advanced Firewall Security and then press Finish.
  • Page 51 Ping of Death: Land Attack: IP Spoofing: Smurf Attack: Traditional firewalls are stateless meaning they have no memory of the connections of data or packets that pass through them. Such IP filtering firewalls simply examine header information in each packet and attempt to match it to a set of defined rule.
  • Page 52 If you want to configure the Packet Filtering Parameters, choose Enable and press Add. Select the protocol and configure the parameters. If you want to ban all of the protocol from the IP (e.g.: 200.1.1.1) to access the all PCs (e.g.: 192.168.1.2 ~ 192.168.1.50) in the LAN, key in the parameter as;...
  • Page 53 Filtering Rule for SMTP connection Filtering rule will be configured as follow Index Protocol Direction Inbound Outbound Outbound Inbound Either Packet Direction Inbound Outbound Packet Direction Outbound Inbound Packet Direction Inbound Outbound NB712 / NB714 User Guide YML829 Rev1 Action Source Permit External...
  • Page 54 Update Filtering Rule Index Protocol Direction Inbound Outbound Outbound Inbound Either Filtering Result Index Protocol Direction Inbound Outbound Outbound Inbound Inbound Outbound Action Source Destination Permit External Internal Permit Internal External Permit Internal External Permit External Internal Deny Action Source Destination Permit(A) 192.168.3.4...
  • Page 55 Rule Order The order of the rules affects the filtering result. The filtering process will proceed from top to bottom, changing the order will give a different result. For example: Rule Source Address 10.0.0.0 10.1.99.0 Where “0” at the last eight bits indicates “from 1 to 254”, “0” at any eight bits preceding “0”, “0.0” or “0.0.0” indicates “from 1 to 254”.
  • Page 56: Ip Qos

    8.9 IP QoS IP QoS allows you to prioritise different types of traffic, thereby ensuring Quality of Service. This is particularly useful for Voice over IP (VoIP) where the amount of bandwidth can affect the line quality in a phone call. Select Enable to enable IP QoS and then click on the Add button to set the IP QoS Policy parameters.
  • Page 57 The screen will display the configured parameters. Check the parameters. In this example 192.168.1.60 is the highest priority; 192.168.1.50 is the second high priority; 192.168.1.40 is the third highest priority and so on. NB712 / NB714 User Guide YML829 Rev1...
  • Page 58: Administration

    9 Administration This section details security, simple network management protocol (SNMP) and time synchronous. NB712 / NB714 User Guide YML829 Rev1...
  • Page 59: Security

    9.1 Security For system security, it is suggested that the default user name and password is changed from the default. There are three ways to configure the route: Web browser, telnet and serial console. Press Security to setup the parameters. For greater security, define the Supervisor ID and password for the gateway.
  • Page 60 Trusted Host address pool will setup the IP addresses from which authorized users can configure the gateway. This is the most secure way to setup and control authorised access to the router. Configured 0.0.0.0 will allow all hosts on Internet or LAN to access the router. Leaving blank the Trust Host List will block all PCs from WAN to access the router.
  • Page 61: Snmp

    9.2 SNMP Simple Network Management Protocol (SNMP) provides for the exchange of messages between a network management client and a network management agent for remote management of network nodes. These messages contain requests to get and set variables that exist in network nodes in order to obtain statistics, set configuration parameters, and monitor network events.
  • Page 62 SNMP status: Access Right: Access Right: Access Right: Community: Click on the OK button to submit the changes. Enable Deny for deny all access Read for access read only Write for access read and write. Serves as password for access right. NB712 / NB714 User Guide YML829 Rev1...
  • Page 63 SNMP trap is an informational message sent from an SNMP agent to a manager. Click Modify to modify the trap host pool. Version: Community: Click on OK to finish the setup. The browser will display the configured parameters. Press Restart to restart the gateway with the new parameters or press Continue to setup other parameters. NB712 / NB714 User Guide YML829 Rev1 Select version for trap host (SNMP v1 or SNMP v2).
  • Page 64: Time Sync

    9.3 Time Sync Time synchronization is an essential element for any business that relies on an IT system. The reason for this is that these systems all have clocks that are the source of time for files or operations they handle. Without time synchronization, time on these systems can vary and cause firewall packet filtering schedule processes to fail, security to be compromised, and virtual servers to work in wrong schedule.
  • Page 65 For SNTP, select SNTP v4.0. SNTP service: Time Server: Time Zone: Click on Finish to finish the setup. The browser will display the configured parameters. Press Restart to restart the gateway with the new parameters or press Continue to setup other parameters. NB712 / NB714 User Guide YML829 Rev1 Enable...
  • Page 66: Utility

    10 Utility This section describes the utility of the router including system information, loading the factory default configuration, upgrading the firmware, logout and restarting the gateway. NB712 / NB714 User Guide YML829 Rev1...
  • Page 67: System Info

    10.1 System Info Click on System Info to review the information. The browser will display your system information on the screen. NB712 / NB714 User Guide YML829 Rev1...
  • Page 68: Config Tool

    10.2 Config Tool This configuration tool has three functions: Load Factory Default, Restore Configuration and Backup Configuration. Press Config Tool. Choose the function and then click on Finish. Load Factory Default function: Note: All of the settings will be changed to factory default. On the other hand you will lose all the configured parameters.
  • Page 69: Upgrade

    10.3 Upgrade You can upgrade the gateway using the upgrade function. Press Upgrade. Browse the file and press OK button to upgrade. The system will reboot automatically after finishing. NB712 / NB714 User Guide YML829 Rev1...
  • Page 70: Logout

    10.4 Logout To logout the router, press logout. NB712 / NB714 User Guide YML829 Rev1...
  • Page 71: Restart

    10.5 Restart To restart the router, select Restart in UTILITY. Click on the Restart button to reboot the router. NB712 / NB714 User Guide YML829 Rev1...
  • Page 72: Status

    11 Status You can monitor the following: • SHDSL status including mode, Tx power, Bitrate, and Performance information including SNR margin, attenuation and CRC error count. • LAN status will display the MAC address, IP address, Subnet mask and DHCP client table. •...
  • Page 73: Lan-To-Lan Connection With Bridge Mode

    12 LAN-to-LAN connection with bridge Mode 12.1 CO side Click Bridge and CO Side to setup Bridging mode of the Router and then click Next. LAN Parameters NB712 / NB714 User Guide YML829 Rev1...
  • Page 74 Enter IP: Enter Subnet Mask: Enter Gateway: Enter Host Name: WAN1 Parameters Enter VPI: Enter VCI: Encap: Click Next The screen will display the configured parameters. Check the parameters and click Restart . The router will reboot with the new settings. 192.168.1.1 255.255.255.0 192.168.1.1...
  • Page 75: Cpe Side

    12.2 CPE Side Click Bridge and CO Side to setup Bridging mode of the Router and then click Next. LAN Parameters IP Address: Subnet Mask: Gateway: Host Name: WAN1 Parameters VPI: VCI: Encap: Click Next The screen will display the configured parameters. Check the parameters and click Restart . The router will reboot with the new settings.
  • Page 76: Lan To Lan Connection With Routing Mode

    13 LAN to LAN Connection with Routing Mode 13.1 CO side Click ROUTE and CO Side then press Next. LAN parameters: IP Address: Subnet Mask: Host Name: DHCP Service: 192.168.20.1 255.255.255.0 SOHO For more DHCP service, review DHCP Service. NB712 / NB714 User Guide YML829 Rev1...
  • Page 77 WAN Parameters VPI: VCI: AAL5 Encap: Protocol: Note: The Protocol used in CO and CPE have to be the same. Click Next to setup the IP parameters. Refer to the section NAT/DMZ for more information. IP Address: Subnet mask: Gateway: Click Next The screen will display the parameters that will be written to EPROM.
  • Page 78: Cpe Side

    13.2 CPE side Click ROUTE and CPE Side then press Next. LAN parameters: IP Address: Subnet Mask: Host Name: DHCP Service: WAN Parameters 192.168.10.1 255.255.255.0 SOHO For more DHCP service, review DHCP Service. NB712 / NB714 User Guide YML829 Rev1...
  • Page 79 VPI: VCI: AAL5 Encap: Protocol: Note: The Protocol used in CO and CPE have to be the same. Click Next to setup the IP parameters. Refer to the section NAT/DMZ for more information. IP Address: Subnet mask: Gateway: Click Next The screen will display the parameters that will be written to EPROM.
  • Page 80: Configuration Via Serial Console Or Telnet With Menu Driven Interface

    14 Configuration via Serial Console or Telnet with Menu Driven Interface 14.1 Serial Console Check the connectivity of the RS-232 cable from your computer to the serial port of ROUTER. Start your terminal access program with VT100 terminal emulation. Configure the serial link with the following value: Parameter Baudrate Data Bits...
  • Page 81: Operation Interface

    14.3 Operation Interface For serial console and Telnet management, the Router implements two operational interfaces: command line interface (CLI) and menu driven interface. The CLI mode provides users with a simple command line interface. The menu driven interface is a more user-friendly interface for general operations. The command syntax for CLI is the same as that of the menu driven interface.
  • Page 82: Window Structure

    14.4 Window structure From top to bottom, the window will be divided into four parts: 1. Product name 2. Menu field: Menu tree is prompted on this field. “>>” symbol indicates the cursor place. 3. Configuring field: You will configure the parameters in this field. < parameters > indicates the parameters you can choose and <...
  • Page 83: Menu Driven Interface Commands

    14.5 Menu Driven Interface Commands Before changing the configuration, familiarize yourself with the operations list in the following table. The Keystroke list are also displayed on the window. Menu Driven Interface Commands Keystroke [UP] or I [DOWN] or K [LEFT] or J [RIGHT] or L [ENTER] [TAB]...
  • Page 84: Menu Tree

    14.6 Menu Tree The menu tree is shown below. All configuration commands are included in the Enable directory and are protected by a supervisor password. Unauthorized users can view the status and configuration of the router, but cannot change any configuration information. NB712 / NB714 User Guide YML829 Rev1...
  • Page 85: Configuration

    14.7 Configuration To setup the router, move the cursor “ >>” to Enable and press the enter key. When the screen appears, type the supervisor password. The default supervisor password is admin. The password will be prompted as a “ * “ symbol for system security.
  • Page 86 Command ping admin utility exit Description Packet internet groper command. You can set management features with this command. Upgrade software and backup and restore configuration are done via “utility” command. Quit system NB712 / NB714 User Guide YML829 Rev1...
  • Page 87: Status

    14.8 Status You can view the status of SHDSL, WAN, route and interface via the status command. Move cursor “ >> “ to status and press enter. >> shdsl Show SHDSL status Show WAN interface status route Show routing table interface Show interface statistics status firewall...
  • Page 88: Show

    14.9 Show You can view the system information, configuration and configuration via the show command. Move cursor “ >> “ to show and press enter. >> system Show general information config Show all configuration script Show all configuration in command script Command system config...
  • Page 89: Write

    14.10 Write Any changes to the router configuration must be written to EPROM using the write command and the router needs to be rebooted for the changes to take affect. Move cursor to “ >> “ to write and press enter. ---------------------------------------------------------------------- Command: write <CR>...
  • Page 90 14.13.1 User Profile You can use the user command to clear, modify and list the user profiles. You can define up to five users to access the router via console port or telnet in user profile table however users who have the supervisor password can change the configuration of the router.
  • Page 91 14.13.3 SNMP Simple Network Management Protocol (SNMP) is the protocol not only governing network management, but also the monitoring of network devices and their functions. The router can generate SNMP traps to indicate alarm conditions, and it relies on SNMP community strings to implement SNMP security.
  • Page 92 14.13.4 Supervisor Password and ID The supervisor password and ID are the last door for security but the most important. Users who access the router via web browser have to use the ID and password to configure the router and users who access the router via telnet or console mode have to use the password to configure the router.
  • Page 93 14.13.5 SNTP Time synchronization is an essential element for any business that relies on an IT system. The reason for this is that these systems all have clocks that are the source of time for files or operations they handle. Without time synchronization, time on these systems can vary and this can cause virtual server schedule processes to fail and system log exposures with wrong data.
  • Page 94 Move the cursor to time_zone and configure where your router is placed. The easiest way to know the time zone offset hour is from your PC clock. Double click the clock at the right corner of monitor and check the time zone. ---------------------------------------------------------------------- Command: admin sntp time_zone <-12~12>...
  • Page 95: Utility

    14.14 Utility There are three utility tools, upgrade, backup and restore, embedded in the firmware. You can update the new firmware via TFTP upgrade tools and backup the configuration via TFTP backup tool and restore the configuration via TFTP restore tool. For upgrade, TFTP server with the new firmware will be supported by supplier but for backup and restore, you must have your own TFTP server to backup and restore the file.
  • Page 96 14.16.2 SHDSL You can setup the SHDSL parameters by the command shdsl. Move the cursor “ >> “ to shdsl and press enter. >> mode Configure SHDSL mode Link Configure SHDSL link n*64 Configure SHDSL data rate type Configure SHDSL annex type clear Clear current CRC error count margin...
  • Page 97 14.16.3 WAN The router supports up to 8 PVCs, private virtual circuits, and so you can setup up to 8 WANs; WAN1 to WAN8. Move the cursor “ >> “ to wan and press enter. To setup WAN1, type 1. ---------------------------------------------------------------------- Command: setup wan <1~8>...
  • Page 98 14.16.4 Bridge You can setup the bridge parameters in bridge command. If the product is configured as a router, you do not want to setup the bridge parameters. Move the cursor “ >> “ to bridge and press enter. >> gateway Default gateway static Static bridging table...
  • Page 99 14.16.5 VLAN Virtual LAN (VLAN) is defined as a group of devices on one or more LANs that are configured so that they can communicate as if they were attached to the same wire, when in fact they are located on a number of different LAN segments.
  • Page 100 14.16.6 802.11Q VLAN Follow the following steps to configure 802.11q VLAN. ---------------------------------------------------------------------- Command: setup vlan active <Disable|8021Q|Port> Message: Please input the following information. Tigger VLAN function (Tab select) <Disable>: 8021Q ---------------------------------------------------------------------- To modify the VLAN rule, move the cursor “ >> “ to modify and press enter. ---------------------------------------------------------------------- Command: setup vlan modify <1~8>...
  • Page 101 14.16.7 Route You can setup the routing parameters in route command. If the product is configured as a bridge, you do not want to setup the route parameters. Move the cursor “ >> “ to route and press enter. >> static Configure static routing table Configure RIP tool If the Router is connected to more than one network, it may be necessary to set up a static route between them.
  • Page 102 14.16.8 LAN LAN interface parameters can be configured LAN IP address, subnet mask and NAT network type. >> address LAN IP address and subnet mask attrib NAT network type 14.16.9 IP share You can configure Network Address Translation (NAT), Port Address Translation (PAT) and Demilitarized Zone parameters in ip_share menu.
  • Page 103 14.16.10 NAT You can configure NAT parameters in nat menu. >> virtual Virtual IP address pool global Global IP address pool fixed Fixed IP address mapping The virtual menu contains range of virtual IP address, delete virtual IP address and show virtual IP address. >>...
  • Page 104 To modify fixed IP address mapping, move the cursor “>>” to fixed command and press enter. >> modify Modify fixed NAT mapping interface Bind address pair to specific interface delete Delete fixed NAT mapping list Show fixed IP address mapping You can create up to 10 fixed NAT mapping entries via range command.
  • Page 105 14.16.11 PAT To configure Port Address Translation, move the cursor “>>” to pat and press enter. >> clear Clear virtual server mapping modify Modify virtual server mapping list Show virtual server mapping pool You can delete virtual server mapping entry- from 1 to 10- by using clear command. You can create up to 10 virtual server mapping entry via modify command.
  • Page 106 14.16.12 DMZ To setup demilitarized zone, move the cursor “>>” to dmz and press enter. >> active Trigger DMZ host function address Configure virtual IP address and interface You can enable the demilitarized zone via active command. After enabling the DMZ, shift the cursor to address and press enter. ---------------------------------------------------------------------- Command: setup ip_share dmz address <ip>...
  • Page 107 14.16.14 Packet Filtering Packet filtering function can be configured by pkt_filter command. Move the cursor to pkt_filter and press enter. >> active Trigger packet filtering function drop_flag Drop fragment packets Add packet filtering rule delete Delete packet filtering rule modify Modify packet filtering rule exchange Exchange the filtering rule...
  • Page 108: Dos Protection

    14.16.15 DoS Protection DoS protection parameters can be configured in dos_protection menu. Move the cursor to dos_protection and press enter. >> syn_flood icmp_flood udp_flood ping_death land_attack ip_spoff smurf_attack fraggle_attack A SYN flood attack attempts to slow your network by requesting new connections but not completing the process to open the connection.
  • Page 109 14.16.16 IPQoS IP QoS is a function to decide the priorities of setting IPs to transfer packets under the situation of overloading bandwidth. To configure IP QoS function, move the cursor to IPQoS and press enter. >> Active Trigger IP QoS function Add IP QoS policy Delete Delete IP QoS policy...
  • Page 110 14.16.17 DHCP Dynamic Host Configuration Protocol (DHCP) is a communication protocol that lets network administrators to manage centrally and automate the assignment of Internet Protocol (IP) addresses in an organization’s network. Using the Internet Protocol, each machine that can connect to the Internet needs a unique IP address. When an organization sets up its computer users with a connection to the Internet, an IP address must be assigned to each machine.
  • Page 111 14.16.18 DNS proxy You can setup three DNS servers in the router. The number 2 and 3 DNS servers are optional. Move cursor “ >> “ to dns_proxy and press enter. ---------------------------------------------------------------------- Command: setup dns_proxy <IP> [IP] [IP] Message: Please input the following information. DNS server 1 (ENTER for default) <168.95.1.1>: 10.0.10.1 DNS server 2: 10.10.10.1 DNS server 3:...
  • Page 112: Appendix A: Cable Information

    If you are unsure about which cable to use or which socket to connect it to, please refer to the hardware installation section in this manual. If you are still not sure about cable connections, please contact a professional computer technician or NetComm for further advice. RJ-45 Network Ports RJ-45 Network Ports can connect any networking devices that use a standard LAN interface, such as a Hub/Switch Hub or Router.
  • Page 113: Straight And Crossover Cable Configuration

    Straight and crossover cable configuration There are two types of the wiring: Straight-Through Cables and Crossover Cables. Category 5 UTP/STP cable has eight wires inside the sheath. The wires form four pairs. Straight-Through Cables has same pinouts at both ends while Crossover Cables has a different pin arrangement at each end.
  • Page 114: Shdsl Line Connector

    SHDSL Line Connector Console Cable Pin Number Description No connection RxD (O) TxD (I) No connection No connection CTS (O) RTS (I) No connection NB712 / NB714 User Guide YML829 Rev1...
  • Page 115: Appendix B: Registration And Warranty Information

    (3) The power supply that is provided with this unit is only intended for use with this product. Do not use this power supply with any other product or do not use any other power supply that is not approved for use with this product by NetComm. Failure to do so may cause damage to this product, fire or result in personal injury.
  • Page 116: Limitations Of Warranty

    4. The cost of transporting product to and from NetComm’s nominated premises is your responsibility; and, 5. NetComm does not have any liability or responsibility under this warranty where any cost, loss, injury or damage of any kind, whether direct, indirect, consequential, in ci den tal or otherwise arises out of events beyond NetComm’s reasonable control. This includes but is not limited to: acts of God, war, riot, embargoes, acts of civil or military authorities, fire, floods, electricity outages,...

This manual is also suitable for:

Nb712Nb714

Table of Contents