Table of Contents

Advertisement

Manual
Funkwerk Enterprise Communications GmbH
Manual
bintec R200 Series
Reference
Copyright© Version 5.0, 2009 Funkwerk Enterprise Communications GmbH
bintec R200 Series
1

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the R232a and is the answer not in the manual?

Questions and answers

Summary of Contents for BinTec R232a

  • Page 1 Manual Funkwerk Enterprise Communications GmbH Manual bintec R200 Series Reference Copyright© Version 5.0, 2009 Funkwerk Enterprise Communications GmbH bintec R200 Series...
  • Page 2: Legal Notice

    GmbH accepts no responsibility for data loss, unwanted connection costs and damage caused by un- intended operation of the product. Trademarks funkwerk trademarks and the funkwerk logo, bintec trademarks and the bintec logo, artem trademarks and the artem logo, elmeg trademarks and the elmeg logo are registered trademarks of Funkwerk En- terprise Communications GmbH.
  • Page 3: Table Of Contents

    Pin Assignments ......bintec R230aw ......
  • Page 4 Pin Assignments ......bintec R232bw ......
  • Page 5 ADSL Modem ......124 6.3.1 ADSL Configuration ......124 bintec R200 Series...
  • Page 6 Load Balancing ......170 9.4.1 Load Balancing Groups ..... . 170 bintec R200 Series...
  • Page 7 Users ......251 11.2.3 Options ......257 bintec R200 Series...
  • Page 8 RTSP ......297 13.2.1 RTSP Proxy ......297 bintec R200 Series...
  • Page 9 Interfaces ......337 14.7.3 Ping Generator ......339 bintec R200 Series...
  • Page 10 E-mail Alert Recipient ..... . . 367 16.4 SNMP ......368 viii bintec R200 Series...
  • Page 11 Glossary......Index ......bintec R200 Series...
  • Page 12 Table of Contents Funkwerk Enterprise Communications GmbH bintec R200 Series...
  • Page 13: Chapter 1 Introduction

    This chapter describes the outstanding features your new bintec gateway offers. It provides you with an overview of the ways in which your bintec gateway can be used. This chapter also tells you about the structure and contents of this manual.
  • Page 14: Possible Applications

    These local networks are connected via an ISDN (only bintec R232a, R232b and R232bw) or DSL connection. The size of your own local network – whether it consists of several computers or just one workstation – is ir- relevant.
  • Page 15 Funkwerk Enterprise Communications GmbH High-speed Internet access If you configure high-speed Internet access with the bintec gateway, all the users in the local network profit from faster Internet access. The bandwidth used permits considerably faster Internet applications than conventional ISDN or modems.
  • Page 16 Wireless LAN The wireless interface of the bintec R230aw and bintec R230bw transfers the data at max. 54 mbps (802.11g) and is compatible with the 11 mbps variant 802.11b in the same frequency range. Encryption via the WLAN interface can take place via WPA and WPA2.
  • Page 17: About This Manual

    Extra memory and new software features make these devices flexible IP access routers with an integrated ADSL modem (R232a/aw with annex A, R232b/bw with annex B) and 4-port switch. The support of ADSL2+ allows a high-performance WAN connection and per- mits download rates of up to 24 mbps.
  • Page 18 To help you locate information easily, this manual uses the following visual aids: List of visual aids Visual aid Identifies general and important points. bintec R200 Series...
  • Page 19 Windows Indicates keys, key combinations and Windows terms. Start menu bold, e.g. biboAdmLo- Indicates fields. ginTable italic, e.g. none Indicates values that you enter or that can be configured. Online: blue and italic, Indicates hyperlinks. e.g. www.funkwerk-ec.com bintec R200 Series...
  • Page 20: Chapter 2 Quick Install Guide

    Express Setup Wizard. 2.1 Introduction Your bintec gateway contains extensive features for encrypted data transfer and Internet access for both individual users and companies. The basic configuration of your device is carried out using the Express Setup Wizard.
  • Page 21: Installation

    • Password: funkwerk Note All bintec devices are delivered with the same username and password. As long as the password remains unchanged, they are not protected against unauthorised use. Make sure you change the passwords to prevent unauthorised access to your device...
  • Page 22: Connections

    Please read the safety precautions carefully before installing and starting up your device. These are supplied with the device. 2.4.1 Connections All connections are located on the back of the device. bintec R230a / R230b Fig. 4: Back of Reset Reset button...
  • Page 23 Console Serial interface 4/3/2/1 10/100 Base-T Ethernet interface ADSL ADSL interface (annex A) Main/AUX RSMA connection bintec R232a / R232b Fig. 6: Back of Reset Reset button Socket for plug-in power pack Console Serial interface 4/3/2/1 10/100 Base-T Ethernet interface...
  • Page 24: Setting Up And Connecting

    Set up and connect in the following sequence: (1) Antennas: Screw the two external standard antennas provided to their RSMA connec- tions (only bintec R230aw and bintec R232bw). (2) Place your device on a solid, level base. (3) LAN: For the standard configuration of your device via Ethernet, connect the first switch port (1) of your device to your LAN using the Ethernet cable supplied.
  • Page 25: Configuration

    ISDN cable provided (only bintec R232a, bintec R232b and bintec R232bw). • DMZ: Connect the WAN interface ( ETH) of your device to the Ethernet connection of your DMZ using another Ethernet cable (only bintec R232a, bintec R232b and bintec R232bw).
  • Page 26 • Basic configuration (obligatory if your device is in the ex works state) • Internet access (optional) • Wireless LAN (optional, only for bintec R230aw and bintec R232bw) • Company network connection (optional). The following tables show examples of possible values for the necessary data. You can enter your personal data in the "Your values"...
  • Page 27 "@t-online.de" at the end of this string of numbers. You username could, for ex- ample, look like this: 00012345678906112345678#0001@t-online.de Wireless LAN (only bintec R230aw and bintec R232bw) You can operate your device as an access point and therefore connect individual work sta- tions (e.g.
  • Page 28 Example value Your values Partner name BigBoss (Key of company head office) Dial-in number: 0911987654321 (Call number of the company head office's device) Local name LittleIndian (Your own code. Your partner (the head office) must enter this name bintec R200 Series...
  • Page 29 (1) First click Properties, then Install in the status window of the LAN Connection. (2) Select the Protocol entry. (3) Click Add. (4) Select Internet Protocol (TCP/IP) and click OK. (5) Follow the on-screen instructions and restart your PC when you have finished. bintec R200 Series...
  • Page 30 Internet providers. SNMP Manager The SNMP Manager provides you with complete access to your device's configuration. With this application, you can monitor im- portant device events at the same time (SNMP traps). bintec R200 Series...
  • Page 31 To install the software, proceed as follows: (1) Close all Windows programs on your PC. (2) Place your bintec Companion CD in the CD-ROM drive of your PC. The Start win- dow will appear automatically after a short time. If the Start window does not open automatically, click your CD-ROM drive in Windows Explorer and double-click setup.exe.
  • Page 32: Configuring The Gateway

    Follow the instructions. Optional: (1) On the bintec bintec Companion CD, choose Installation, and click the Configure Device button. (2) Then follow the instructions to find a free IP address for the device. Click Allocate Automatically...
  • Page 33: Testing The Configuration

    Watch the LEDs on your device (LED ISDN, ADSL and Eth- ernet interfaces to which you have connected one or more WANs; for an explanation of the displays, see Technical data on page 24) or use the Activity Monitor (see BRICKware for Windows). bintec R200 Series...
  • Page 34: Reset

    The next time, the device will boot with the standard ex works settings. You can now configure your gateway again as described as of Configuring the Gateway page 20. bintec R200 Series...
  • Page 35: Support Information

    If you have any questions on your new product or would like more information, you can reach the Support Center of Funkwerk Enterprise Communications GmbH under the follow- ing call number or via the E-mail Hotline: +49 911 9673 1550 hotline@funkwerk-ec.com For detailed information on our support services, contact www.funkwerk-ec.com bintec R200 Series...
  • Page 36: Chapter 3 Technical Data

    Funkwerk Enterprise Communications GmbH Chapter 3 Technical data This chapter provides a summary of all the hardware properties of the R230a, R230b, R230aw, R232a, R232b and R232bw devices. 3.1 bintec R230a / bintec R230b 3.1.1 Scope of supply Your device is supplied with the following parts: •...
  • Page 37 10 % to 90 % non-condensing in operation, midity 5 % to 95 % non-condensing when stored Room classification Only use in dry rooms. Available interfaces: ADSL interface Internal ADSL modem for Annex A (R230a) and Annex B (R230b) bintec R200 Series...
  • Page 38: Leds

    Printed documentation Quick Install Guide supplied Online documentation User's Guide BRICKware for Windows (Engl.) Software Reference (Engl.) 3.1.3 LEDs The device LEDs provide information on certain activities and statuses of the device. They are arranged as follows: bintec R200 Series...
  • Page 39: Connections

    ADSL connection is active. 3.1.4 Connections All the connections are located on the back of the device. bintec R230a and bintec R230b has a 4-port Ethernet switch, an ADSL interface and a serial interface. The connections are arranged as follows:...
  • Page 40: Pin Assignments

    ADSL interface 3.1.5 Pin Assignments 3.1.5.1 Serial Interface bintec R230a and bintec R230b have a serial interface for connection to a console. This supports Baud rates from 1200 to 115200 Bps. The interface is designed as a 5-pole mini USB socket.
  • Page 41 RJ11 plug needed for most ADSL splitters. Only the two inner pins are used for the ADSL connection: Fig. 13: ADSL interface (RJ11) The pin assignment for the ADSL interface (RJ11 socket) is as follows: RJ11 socket for ADSL connection Function Not used bintec R200 Series...
  • Page 42: Bintec R230Aw

    - Serial connecting cable - DSL cable - Plug-in power pack • Antennas: - two standard antennas • bintec Companion CD • Documentation: - Quick Install Guide (printed) - User's Guide (on CD) - Release Notes, if required - Safety precautions 3.2.2 General Product Features...
  • Page 43 Relative atmospheric hu- 10 % to 90 % non-condensing in operation, midity 5 % to 95 % non-condensing when stored Room classification Only use in dry rooms. Available interfaces: ADSL interface Internal ADSL modem for Annex A bintec R200 Series...
  • Page 44 The two antennas have different functions. One is used both to transmit and receive (known as the "main" antenna), the other is only used to receive. During reception, the AP (Access Point) checks which antenna is receiving a better signal. This is then used bintec R200 Series...
  • Page 45: Leds

    The device is connected to the Ethernet (100 mbps or 10 mbps). flashing Data traffic via the Ethernet Interface (100 mbps or 10 mbps). WLAN The WLAN module is active. flashing Data traffic via the WLAN interface. ADSL ADSL connection is active. bintec R200 Series...
  • Page 46: Connections

    3 Technical data Funkwerk Enterprise Communications GmbH 3.2.4 Connections All the connections are located on the back of the device. bintec R230aw has a 4-port Eth- ernet switch, an ADSL interface and a serial interface. The connections are arranged as follows: bintec R230aw Fig.
  • Page 47 Not used Not used 3.2.5.2 Ethernet interface bintec R230aw has an Ethernet interface with an integrated 4-port switch. This is used to connect individual PCs or other switches. The connection is made via an RJ45 socket. Fig. 17: Ethernet 10/100 Base-T interface (RJ45 socket)
  • Page 48: Bintec R232A / Bintec R232B

    The pin assignment for the ADSL interface (RJ11 socket) is as follows: RJ11 socket for ADSL connection Function Not used Not used 3.3 bintec R232a / bintec R232b 3.3.1 Scope of supply Your device is supplied with the following parts: • Cable sets/mains unit: - Ethernet cable...
  • Page 49: General Product Features

    The features are summarised in the following table: General Product Features Property Value Product name bintec R232a / bintec R232b Dimensions and weights: Equipment dimensions 189,2 mm x 27 mm x 123,1 mm without cable (B x H x Weight approx.
  • Page 50 5 % to 95 % non-condensing when stored Room classification Only use in dry rooms. Available interfaces: ADSL interface Internal ADSL modem for Annex A (R232a) and Annex B (R232b) Serial interface V.24 Permanently installed, supports Baud rates: 1200, 2400, 4800, 9600, 19200, 38400, 57600, 115200 Baud Ethernet IEEE 802.3...
  • Page 51: Leds

    3.3.3 LEDs The device LEDs provide information on certain activities and statuses of the device. They are arranged as follows: bintec R232a bintec R232b Fig. 19: LEDs on In operating mode, the LEDs display the following status information for your device:...
  • Page 52: Connections

    Both B channels are in use. 3.3.4 Connections All the connections are located on the back of the device. bintec R232a and bintec R232b havea 4-port Ethernet switch, an ETH interface, an ISDN interface, an ADSL interface and a serial interface.
  • Page 53 Not used Not used 3.3.5.2 Ethernet interface bintec R232a and bintec R232b have an Ethernet interface with an integrated 4-port switch. This is used to connect individual PCs or other switches. The device also has a fifth Ethernet interface. The connection is made via an RJ45 socket.
  • Page 54 Not used Not used 3.3.5.4 ISDN S0 port bintec R232a and bintec R232b have an additional ISDN-S0 interface, which can be used for back-up functions, for example. The connection is made via an RJ45 socket. Fig. 24: ISDN S0 BRI interface (RJ45 socket)
  • Page 55: Bintec R232Bw

    - Serial connecting cable - DSL cable - Plug-in power pack • Antennas: - two standard antennas • bintec Companion CD • Documentation: - Quick Install Guide (printed) - User's Guide (on CD) - Release Notes, if required bintec R200 Series...
  • Page 56: General Product Features

    14 (1x Power, 4x2 Ethernet, 1x ETH, 1x WLAN, 1x Status, 1x ADSL, 1x ISDN) Power consumption of 4.7 Watt the device Voltage supply 12 V DC 800 mA EU PSU Environmental require- ments: Storage temperature -20° to +70 °C bintec R200 Series...
  • Page 57 Serial interface V.24 5-pole mini USB socket Ethernet interface RJ45 socket ISDN interface RJ45 socket ADSL interface RJ11 socket SAFERNET TM Security Community Passwords, PAP, CHAP, MS-CHAP, Access Con- Technology trol Lists, NAT, SIF Software supplied BRICKware for Windows bintec R200 Series...
  • Page 58: Leds

    The device LEDs provide information on certain activities and statuses of the device. They are arranged as follows: bintec R232bw Fig. 25: LEDs on In operating mode, the LEDs display the following status information for your device: LED status display Status Information Power The power supply is connected. bintec R200 Series...
  • Page 59: Connections

    Both B channels are in use. 3.4.4 Connections All the connections are located on the back of the device. bintec R232bw has a 4-port Eth- ernet switch, an ETH interface, an ISDN interface, an ADSL interface and a serial interface.
  • Page 60: Pin Assignments

    RSMA connection 3.4.5 Pin Assignments 3.4.5.1 Serial interface bintec R232bw has a serial interface for connection to a console. This supports Baud rates from 1200 to 115200 Bps. The interface is designed as a 5-pole mini USB socket. Fig. 27: 5-pole mini USB socket...
  • Page 61 RJ11 plug needed for most ADSL splitters. Only the two inner pins are used for the ADSL connection. Fig. 29: ADSL interface (RJ11) The pin assignment for the ADSL interface (RJ11 socket) is as follows: RJ11 socket for ADSL connection Function Not used bintec R200 Series...
  • Page 62 Function Not used 3.4.5.4 ISDN S0 port bintec R232bw has an additional ISDN-S0 interface, which can be used for back-up func- tions, for example. The connection is made via an RJ45 socket. Fig. 30: ISDN S0 BRI interface (RJ45 socket)
  • Page 63: Chapter 4 Access And Configuration

    • Via your LAN • Via the serial interface • Via an ISDN connection (R232a, R232bR232b and R232bw only) 4.1.1 Access via LAN Access via one of the Ethernet interfaces of your device allows you to to open the Express Setup Wizard and Funkwerk Configuration Interface in a web browser for configuration purposes and to access your device via Telnet or SSH.
  • Page 64 • The encryption keys needed for the process must be available on the device. • An SSH client must be installed on your PC. Encryption keys First of all, make sure that the keys for encrypting the connection are available on your device: bintec R200 Series...
  • Page 65 Proceed as follows to log in on your device via SSH: If you have made sure that all the keys needed are available on the device, you have to check whether an SSH client is installed on your PC. Most UNIX and Linux distributions in- bintec R200 Series...
  • Page 66: Access Via The Serial Interface

    FAQs, which list the required settings. 4.1.2 Access via the Serial Interface Each bintec gateway has a serial interface, with which a PC can be connected directly. The following chapter describes what you have to remember when setting up a serial con- nection and what you can do to configure your device in this way.
  • Page 67 If necessary, therefore, set HyperTerminal to Autodetection instead of VT 100. Unix You will require a terminal program such as cu (on System V), tip (on BSD) or minicom (on Linux). The settings for these programs correspond to those listed above. bintec R200 Series...
  • Page 68: Access Over Isdn

    Logging in for Configuration on page 57. 4.2 Logging in With certain access data, you can log in on your device and carry out different actions. The extent of the actions available depend on the authorisations of the user concerned. bintec R200 Series...
  • Page 69: User Names And Passwords In Ex Works State

    Caution All bintec devices are delivered with the same username and password. As long as the password remains unchanged, they are not protected against unauthorised use. How to change the passwords is described in Changing the Password on page 77.
  • Page 70: Configuration Options

    The configuration options available to you depend on the type of connection to your device: Types of connections and configurations Type of connection Possible types of configuration Express Setup Wizard, Funkwerk Configuration Interface , ASCII Setup Tool, shell commands Serial connection ASCII Setup Tool, shell commands bintec R200 Series...
  • Page 71: Express Setup Wizard For Beginners

    The settings you make with the Funkwerk Configuration Interface are applied with the OK or Apply button of the menu, and you do not have to restart the device. If you finish the configuration and want to save your settings so that they are loaded as the bintec R200 Series...
  • Page 72 Save configur- ation button. You can also use the Funkwerk Configuration Interface to monitor the most important function parameters of your device. Funkwerk Configuration Interface Fig. 31: Initial Screen bintec R200 Series...
  • Page 73 4.3.2.2 Operating elements Funkwerk Configuration Interface window The Funkwerk Configuration Interface window is divided into three areas: • The header • The navigation bar • The main configuration window Funkwerk Configuration Interface Fig. 32: Areas of the Header bintec R200 Series...
  • Page 74 A window is opened offering you the fol- lowing options: • Continue with the configuration, • Save the configuration and close the window, • Exit the configuration without saving. Navigation bar Fig. 34: Save Configuration button bintec R200 Series...
  • Page 75 The most important data of your device can be seen on this at a glance. Main configuration window The sub-menus generally contain several pages. These are called using the buttons at the top of the main window. If you click a button, the window is opened with the basic paramet- bintec R200 Series...
  • Page 76 In the Surveillance -> ISDN/Modem -> Current calls menu, clicking on this button ends the active calls selected in the column. Various icons indicate the following possible actions or statuses: Funkwerk Configuration Interface icons bintec R200 Series...
  • Page 77 Here you can set the interval in which the view is to be updated. To do this, enter a period in seconds in the input field and con- firm it with Filter You can have the list entries filtered and displayed according to bintec R200 Series...
  • Page 78 Sub-menu The New button is available in each menu in which a list of all the configured entries is displayed. Click the button to display the configuration menu for creating a new list entry. bintec R200 Series...
  • Page 79 Click the arrow to open the list. Select the required option using the mouse. Internal lists e.g. Click . A new list entry is created. Enter the correspond- ing data. If list input fields remain empty, these are not saved bintec R200 Series...
  • Page 80 Note Please note that not all devices have the full range of functions. Check the software of your device on the corresponding product page under www.funkwerk-ec.com The Funkwerk Configuration Interface contains the following menus: bintec R200 Series...
  • Page 81 In this menu, you configure the ISDN interface of your device. Here you enter data such as the type of ISDN connection to which your device is connected. ADSL Modem In this menu, you make the basic settings for your ADSL con- nection. bintec R200 Series...
  • Page 82 In this menu, you carry out configuration of the ATM profiles that are needed for all the ADSL connections and also connection monitoring (OAM) and ATM QoS. Real Time Jitter Con- In this menu, you can optimise the low-bandwidth transmission bintec R200 Series...
  • Page 83 In this menu, you configure a network transition between vari- ous telecommunication networks. RTSP In this menu, you configure the use of the RealTime Streaming protocol. Local Services Menu Function In this menu, you configure the name resolution. bintec R200 Series...
  • Page 84 In this menu you can configure the ISDN theft protection func- tion for each interface. Funkwerk Discovery In this menu, you can configure management functions for bintec Access Point. UPnP In this menu, you configure the UPnP settings individually for each interface of your gateway.
  • Page 85: The Setup Tool For Experts

    Proceed as follows to start a Setup Tool session: (1) Log in to your device as admin (see Logging in for Configuration on page 57). (2) Enter setup after the input prompt and press Return. The main menu of the ASCII Setup Tool opens. bintec R200 Series...
  • Page 86 Setup Tools menu system. The system name of your device is also displayed. This is es- pecially helpful if you are using several bintec devices with different system names. • The configuration window is where the actual entries are made and the respective set- tings displayed.
  • Page 87 Save all the entries of the current menu and all the sub-menus in the working memory. These changes become effective imme- diately. EXIT Leave the current menu and return to the main menu. Any entries made are lost. bintec R200 Series...
  • Page 88 The characters entered for the search are displayed in the help line at the bottom of the menu. Do not enter invisible characters, such as Tabulator or Space as they stop the search and could cause a function to be executed. bintec R200 Series...
  • Page 89 (4) Now enter the new password again and confirm by pressing Return, Tabulator or a Cursor key. If you have entered the repeat password correctly, the password is changed. The new password is saved on leaving the menu with the SAVE button. If bintec R200 Series...
  • Page 90 "Password doesn't match. Try again." 4.3.3.5 Menu structure The main menu of the Setup Tool looks like this: Fig. 40: Setup Tool main menu The menu structure (main menu and first sub-menu) of the Setup Tool looks like this: bintec R200 Series...
  • Page 91 External Systems In this menu, you can configure management functions for ex- ternal systems, e.g. bintec access points. In this menu, you can configure the 4-port Ethernet switch (LAN) of your device. The switch ports can be configured inde- pendently of each other.
  • Page 92 In this menu, you manage your device's Credits Based Account- ing System. CAPI In this menu, you make the settings for the bintec CAPI User Concept. In this menu, you carry out configuration of the ATM profiles that are needed for all the ADSL connections and also connection monitoring (OAM) and ATM QoS.
  • Page 93: Snmp Shell

    The device is reset to the ex works state. All configuration files are deleted and the BOOTmonitor settings are set to the default values. (5) Default BOOTmonitor Parameters: You can change the default settings of the BOOTmonitor of the device, e.g. the baud rate for serial connections. bintec R200 Series...
  • Page 94 If you change the baud rate (the preset value is 9600 baud), make sure the terminal program used also uses this baud rate. If this is not the case, you will not be able to establish a serial connection to the device. bintec R200 Series...
  • Page 95: Chapter 5 System Management

    Automatic Update Interval and clicking on the Apply-button. Caution Under Automatic Refresh Interval do not enter a value of less than 5 seconds, other- wise the refresh interval of the screen will be too short to make further changes! bintec R200 Series...
  • Page 96 Displays the current system date and system time. Serial Number Displays the device serial number. BOSS Version Displays the currently loaded version of the system software. Fields in the Status Resource Information menu Field Value CPU Usage Displays the CPU usage as a percentage. bintec R200 Series...
  • Page 97 • Operation Mode: Access Point or Off • The channel used on this wireless module • Number of connected clients • Number of WDS links • Software version of the wireless card Recent System Logs Displays the last 10 system messages. bintec R200 Series...
  • Page 98: Global Settings

    Enter the system name of your device. This is also used as the PPP host name. A character string of up to 255 characters is possible. The device type is entered as the default value. Location Enter the location of your device. bintec R200 Series...
  • Page 99 Enter the relevant contact person. Here you can enter the e- mail address of the system administrator, for example. A character string of up to 255 characters is possible. The default value is BINTEC. Maximum Number of Enter the maximum number of syslog messages that are stored Syslog Entries internally in the device.
  • Page 100: Passwords

    -> Note All bintec devices are delivered with the same username and password. As long as the password remains unchanged, they are not protected against unauthorised use. Make sure you change the passwords to prevent unauthorised access to the device If the password is not changed, under System Administration->...
  • Page 101: Date And Time

    If you press OK or call the menu again, they are displayed as asterisks. 5.2.3 Date and Time You need the system time for tasks such as correct timestamps for system messages, ac- counting or IPSec certificates. bintec R200 Series...
  • Page 102 Switching from summer time to winter time (and back) must be carried out manually if the time is derived using this method by changing the value in the Time Off- set from GMT field. bintec R200 Series...
  • Page 103 ISDN until a successful update is received from this time server. Updating over ISDN is deactivated for the period in which the time is de- termined by means of a time server. bintec R200 Series...
  • Page 104 • None: This time server is not currently used for the time re- quest. Third Timeserver Enter the tertiary time server, using either a domain name or an IP address. In addition, select the protocol for the time server request. Possible values: bintec R200 Series...
  • Page 105 To ensure this is the case, for Time Update Policy, select the value Endless. Internal Time Server Select whether the internal time server is to be used. The function is activated by choosing Enabled. Time requests bintec R200 Series...
  • Page 106: System Licences

    (Description, License type, License Serial Number, Status). Possible values for Status Licence Meaning Subsystem is activated. Not OK Subsystem is not activated. Not Supported You have entered a licence for a subsystem your device does bintec R200 Series...
  • Page 107 Fields in the System LicencesBasic Parameters menu Field Value Licence Serial Number Enter the licence serial number you received when you bought the licence. Licence Key Enter the licence key you received by e-mail. bintec R200 Series...
  • Page 108: Interface Mode / Bridge Groups

    With routing, different networks are connected at layer 3 (network layer) of the OSI model and information is routed from one network to the other. Conventions for port/interface names The names of wireless ports in the user interface of your device are made up of the follow- ing parts: (a) WLAN bintec R200 Series...
  • Page 109 (b) Number of the Ethernet port (c) Number of the interface connected to the Ethernet port (d) Number of the virtual interface Example: en1-0-1 (first virtual interface based on the first interface on the first Ethernet port) bintec R200 Series...
  • Page 110: Interfaces

    Select whether you want to run the interface in Routing Mode or whether you want to assign the interface to an existing ( br0, br1 etc.) or new bridge group ( New Bridge Group). If you select New Bridge Group, a new bridge group is created bintec R200 Series...
  • Page 111: Administrative Access

    In this menu, you can configure the administrative access to the device. 5.4.1 Access In the Administrative Access -> Access menu, a list of all physical interfaces is shown. System Administration Administrative Access Access Fig. 49: -> -> bintec R200 Series...
  • Page 112: Ssh

    Your devices offers encrypted access to the shell. You can enable ( enabled, default value) or disable this access in the System Administration -> Administrative Access -> SSH menu and have access to the menus for configuration of the SSH login. bintec R200 Series...
  • Page 113 The System Management -> Administrative Access-> SSH menu consists of the follow- ing fields: Fields in the SSH SSH Parameters (secure shell) menu Field Value SSH Service Active Select whether the SSH Daemon is to be enabled for the inter- face. The function is activated by choosing Enabled. bintec R200 Series...
  • Page 114 Possible options: • 3DES • Blowfish • AES-128 • AES-256 3DES, Blowfish and AES-128 and are enabled by default. Hashing Algorithms Select the algorithms that are to be available for message au- thentication of the SSH connection. bintec R200 Series...
  • Page 115 Not Generated and the Generate link are displayed again. You can then repeat generation. If the status Unknown is displayed, generation of a key is not possible, for example because there is not enough space in the FlashROM. bintec R200 Series...
  • Page 116: Snmp

    You use this menu to configure the use of SNMP. System Administration Administrative Access SNMP Fig. 52: -> -> The System Management -> Administrative Access-> SNMP menu consists of the fol- lowing fields: Fields in the SNMP Base Parameters menu bintec R200 Series...
  • Page 117: Remote Authentication

    RADIUS can be used for: • Authentication • Accounting • Exchange of configuration data For an incoming connection, your device sends a request with user name and password to bintec R200 Series...
  • Page 118 RADIUS server, it sends an ACCESS_REJECT to reject the connection. ACCOUNTING_START Client -> Server If a RADIUS server is used for accounting, your device sends an accounting message to the RADIUS server at the start of each connection. ACCOUNTING_STOP Client -> Server bintec R200 Series...
  • Page 119 -> The System Management -> Remote Authentication-> RADIUS -> New menu consists of the following fields: Fields in the RADIUS Basic Parameters menu Field Value Authentication Type Select what the RADIUS server is to be used for. bintec R200 Series...
  • Page 120 The function is enabled by default. The Advanced Settingsmenu consists of the following fields: Fields in the Advanced Settings menu Field Value Policy Select how your device is to react if a negative answer to a re- quest is received. bintec R200 Series...
  • Page 121 The function is activated by choosing Enabled. The function is enabled by default. Retries Enter the number of retries for cases when there is no response to a request. If an answer has still not been received after these bintec R200 Series...
  • Page 122: Tacacs

    Like RADIUS, TACACS+ is an AAA protocol and offers authentication, authorisation and accounting services (TACACS+ Accounting is currently not supported by bintec devices). The following TACACS+ functions are available on your device: •...
  • Page 123 Displays which TACACS+ function is to be used. The value cannot be changed. Possible values: • Login Authentication: Here, you can define whether the current TACACS+ server is to be used for login authentication to your device. bintec R200 Series...
  • Page 124 TACACS+. It is checked after all TACACS+ servers have been queried. TCP Port Shows the default TCP port ( 49) used for the TACACS+ pro- tocol. The value cannot be changed. Timeout Enter time in seconds for which the NAS is to wait for a re- bintec R200 Series...
  • Page 125: Options

    If the data (password, partner PPP ID) obtained by executing the authentication protocol is the same as the data of a listed remote terminal or RADIUS user, your device accepts the incoming call. bintec R200 Series...
  • Page 126 CHAP V1 & V2) (i.e. PPP requests without CLID) are sent to the RADIUS server defined in Server IP Address. • Outband (CLID) : Only outband RADIUS requests (i.e. re- quests for calling line identification, CLID) are sent to the RA- DIUS server. Inband is activated by default. bintec R200 Series...
  • Page 127: Chapter 6 Physical Interfaces

    VLANs for Routing Interfaces Configure VLANs to separate individual network segments from each other, for example (e.g. individual departments of a company) or to reserve bandwidth for individual VLANs when managed switches are used with the QoS function. bintec R200 Series...
  • Page 128: Port Configuration

    The Physical Interfaces -> Ethernet Ports-> Port Configuration menu consists of the following fields: Fields in the Port Configuration Switch Configuration menu Field Description Switch Port Shows the respective switch port. The numbering corresponds to the numbering of the Ethernet ports on the back of the device. bintec R200 Series...
  • Page 129 • Inactive Fields in the Port Configuration Port Configuration menu Field Description Interface Shows the interface name of the separate Ethernet port ETH. Configured Speed / Select the mode in which the interface is to run. Mode bintec R200 Series...
  • Page 130: Isdn Ports

    ISDN. Proceed as follows to configure the ISDN BRI interface: • Enter the settings for your ISDN connection: Here you set the most important parameters of your ISDN connection. • MSN Configuration: Here you tell your device how to react to incoming calls from the WAN. bintec R200 Series...
  • Page 131: Isdn Configuration

    ISDN port. Physical Interfaces ISDN Ports ISDN Configuration Fig. 57: -> -> -> The Physical Interfaces -> ISDN Ports-> ISDN Configuration-> menu consists of the following fields: Fields in the ISDN Configuration Basic Parameters menu bintec R200 Series...
  • Page 132 • Dialup (Euro ISDN) • Leased line ISDN Configuration Only if Autoconfig on Bootup is disabled and if Port Usage = Type Dialup (Euro ISDN). Select the ISDN connection type. Possible values: • Point-to-Multipoint (default value): Point-to-multipoint connection bintec R200 Series...
  • Page 133 For CAPI, the TEI value set in the CAPI application is used. For CAPI Default, the value of the CAPI application is ignored and the default value set here is always used. Set Packet Switch if you wish to use X.31 TEI for the X.25 device. bintec R200 Series...
  • Page 134: Msn Configuration

    • ISDN Login: The ISDN login service enables both incoming data connections with access to the SNMP shell of your device, and outgoing data connections to other bintec devices. As a result, your device can be remotely configured and administrated.
  • Page 135 Fields in the MSN Configuration Basic Parameters menu Field Description ISDN Port Select the ISDN port for which the MSN is to be configured. Service Select the service to which a call is to be assigned on the MSN below. Possible values: bintec R200 Series...
  • Page 136: Adsl Modem

    • Data + Voice (default value): Both data and voice calls • Data: Data call • Voice: Voice call (modem, voice, analogue fax) 6.3 ADSL Modem 6.3.1 ADSL Configuration In this menu, you make the basic settings for your ADSL connection. bintec R200 Series...
  • Page 137 • ADSL2 DELT: ADSL2 Double Ended Line Test • ADSL2 Plus: ADSL2 Plus, ITU G.992.5 • ADSL2 Plus DELT: ADSL2 Plus Double Ended Line Test • READSL2: Reach Extended ADSL2 • READSL2 DELT: Reach Extended ADSL2 Double Ended Line Test bintec R200 Series...
  • Page 138 2,048,000 bps in defined steps. • User Defined: The data rate is reduced to the value entered in Maximum Upstream Bandwidth The default value is Default (Line Speed). Maximum Upstream Only if Transmit Shaping = User defined Bandwidth bintec R200 Series...
  • Page 139 6 Physical Interfaces Funkwerk Enterprise Communications GmbH Field Description Enter the maximum data rate in the send direction in bits per second. bintec R200 Series...
  • Page 140: Chapter 7 Lan

    IP addresses 192.168.46.1 and 192.168.46.2. To be able to exchange data packets with the first subnet, your device uses the IP address 192.168.42.3, for example, and 192.168.46.3 for the second subnet. The netmasks for both subnets must also be indicated. bintec R200 Series...
  • Page 141 Select how an IP address is assigned to the interface. Possible values: • Static (default value): A static IP address is assigned to the interface in IP Address/Netmask. • DHCP: An IP address is assigned to the interface dynamically via DHCP. bintec R200 Series...
  • Page 142 Only if Address Mode = DHCP If Use Preset is activated (default setting), the hardware MAC address of the Ethernet interface is used. In the case of physical interfaces, the current MAC address is entered by default. bintec R200 Series...
  • Page 143: Vlan

    VLAN tag of a frame sent to the clients and to tag received frames with a pre- defined VLAN ID. This functionality makes an access point nothing less than a VLAN- aware switch with the enhancement of grouping clients into VLAN groups. In general, VLAN segmenting can be configured with all interfaces. bintec R200 Series...
  • Page 144 For interfaces that operate in Routing mode, you only assign a VLAN ID to the inter- face. You define this via the parameter Interface Mode = VLAN and the VLAN ID field in the LAN -> IP Configuration ->Interfaces->New menu. bintec R200 Series...
  • Page 145: Vlans

    Enter a unique name for the VLAN. A character string of up to 32 characters is possible. VLAN Members Select the ports that are to belong to this VLAN. You can use the Add button to add members. For each entry, also select whether the frames to be transmitted bintec R200 Series...
  • Page 146: Port Configuration

    If a packet without a VLAN tag reaches this port, it is assigned this PVID. Drop untagged frames If this option is activated, untagged frames are discarded. If the option is deactivated, untagged frames are tagged with the PVID defined in this menu. bintec R200 Series...
  • Page 147: Administration

    Enable or disable the specified bridge group for VLAN. The function is activated with Enabled. The function is not activated by default. Management VID Enter the VLAN ID of the VLAN in which your device is to oper- ate. bintec R200 Series...
  • Page 148: Chapter 8 Wireless Lan

    TPC and DFS is to ensure that satellite connections and radar devices are not in- terfered with. 8.1 WLANx In the Wireless LAN -> WLANx menu, you can configure all the WLAN modules of your device. bintec R200 Series...
  • Page 149: Radio Settings

    WLAN module is shown. Wireless LAN WLANx Wireless Module Settings Fig. 65: -> -> 8.1.1.1 -> Radio Settings Edit In this menu, you change the settings for the wireless module. Choose the button to edit the configuration. bintec R200 Series...
  • Page 150 The function is activated by choosing Enabled. The function is disabled by default. Operation Mode Define whether your device is to be run as an Access Point. Operation Band Displays the operation band and usage area of the access point. Possible values: bintec R200 Series...
  • Page 151 • 8 mW 9 dBm • 16 mW 12 dBm • 63 mW 18 dBm Fields in the Radio Settings Performance Settings menu Field Description Wireless Mode Select the wireless technology that the access point is to use. bintec R200 Series...
  • Page 152 The burst functionality complies with the 802.11 standards, which means burst mode can result in improvements with every 11g-enabled client. If problems occur with older WLAN hardware, this field should be set to disabled. The Advanced Settingsmenu consists of the following fields: bintec R200 Series...
  • Page 153 Possible values are 1 to 255. The default value is 7. Long Retry Limit Enter the maximum number of attempts to send a data packet of length less than or equal to the value defined in RTS bintec R200 Series...
  • Page 154: Virtual Service Sets

    In contrast to a LAN set up over Ethernet, a wireless LAN does not have any cables for set- ting up a permanent connection between the server and clients. Access violations or faults may therefore occur with directly adjacent radio networks. To prevent this, every radio net- bintec R200 Series...
  • Page 155 (Pre-Shared Keys) are usually used in smaller networks, such as those seen in SoHo (Small office, Home office). Therefore, all the wireless LAN subscribers must know the PSK, because it is used to generate the session key. bintec R200 Series...
  • Page 156 Permitted Addresses -list in the MAC Filter menu (see Fields in the menu MAC Filter on page 148). In the Wireless LAN -> WLANx -> Virtual Service Sets menu, a list of all WLAN networks shown. bintec R200 Series...
  • Page 157 The network name is shown by choosing Visible. It is visible by default. Intra-cell Repeating Select whether communication between the WLAN clients is to be permitted within a radio cell. The function is activated by choosing Enabled. The function is enabled by default. bintec R200 Series...
  • Page 158 Only if Security Mode = WEP 40, WEP 104 Select one of the keys configured in WEP Key <1 - 4> as the default key. The default value is Key 1. WEP Key 1-4 Only if Security Mode = WEP 40 , WEP 104 bintec R200 Series...
  • Page 159 Select the type of encryption you want to apply to WPA2. Possible values: • AES (default value): AES is used. • TKIP : TKIP is used. • ADS and TKIP : AES or TKIP is used. Preshared Key Only if Security Mode = WPA-PSK bintec R200 Series...
  • Page 160: Administration

    Address) of the clients to be permitted. 8.2 Administration The Wireless LAN -> Administration menu contains basic settings for running your gate- way as an access point (AP). 8.2.1 Basic settings Wireless LAN Administration Basic Settings Fig. 68: -> -> bintec R200 Series...
  • Page 161 Possible values are all the countries configured on the gate- way's wireless module. The range of channels available for selection (Channel in the Wireless LAN -> WLANx->Radio Settings menu) changes de- pending on the country setting. The default value is Germany bintec R200 Series...
  • Page 162: Chapter 9 Routing

    Choose the New button to create routes. Routing Routes IP Routes Extended Route Fig. 69: -> -> -> with Not Enabled If the Extended Route option is selected for Route Class, an extra configuration section opens. bintec R200 Series...
  • Page 163 (TOS) and the status of the device interface. The function is activated by choosing Enabled. The function is disabled by default. Fields in the IP Routes Route Parameters menu Field Description Route Type Select the type of route. bintec R200 Series...
  • Page 164 Enter the IP address of the gateway to which your device is to forward the IP packets. Gateway Only for Network Type = Indirect. Enter the IP address of the host to which your device is to for- ward the IP packets. Metric Select the priority of the route. bintec R200 Series...
  • Page 165 • Not privileged: Entry of unprivileged port numbers: 1024 ... 65535. Enter the appropriate values for the indivividual port or start port of a range in Port and, for a range, the end port in to Port. bintec R200 Series...
  • Page 166 Enter the relevant value for DSCP, TOS Binary Value and TOS Decimal Value. Mode Select when the interface defined in Route Parameters -> In- terface is to be used. Possible values: • Dialup and wait (default value): The route can be used if bintec R200 Series...
  • Page 167: Options

    You can therefore prevent the acceptance of packets with false IP addresses – even without using filters. Routing Routes Options Fig. 71: -> -> bintec R200 Series...
  • Page 168 Define whether all the routes entered on your device can be ed- routing entries ited and deleted in the Routing -> Routes -> Routes menu. The function is activated with Enabled. By default, the function is deactivated for all interfaces. bintec R200 Series...
  • Page 169: Nat

    In addition, Portforwardings displays how many port forwarding rules were configured for this interface. Options in the menu NAT Interfaces Field Description NAT Active Select whether NAT is to be activated for the interface. The function is disabled by default. bintec R200 Series...
  • Page 170: Portforwarding

    In the Routing -> NAT -> Port Forwarding menu, a list of all NAT interfaces is shown for which port forwarding has been configured. 9.2.2.1 New Choose the New button to set up port forwarding for other interfaces. bintec R200 Series...
  • Page 171 Fields in the Portforwarding Select traffic Field Description Service Select the service for which address mapping is defined for in- coming connections. Possible values: • User-defined (default value) • DNS (UDP) • DNS (TCP) • FTP • HTTP • HTTPS bintec R200 Series...
  • Page 172 • GGP • IP • TCP • EGP • IGP • PUP • Chaos • UDP • HMP • XNS-IDP • RDP • IPv6 • RSVP • GRE • ESP • AH • TLSP • SKIP • Kryptolan bintec R200 Series...
  • Page 173 • Specify Port Range : Enables a port number range to be entered. Now enter the original destination port or destination port range (...to...) of the incoming IP connection. Remote Network Select whether IP packets are to be forwarded to a remote net- work. bintec R200 Series...
  • Page 174: Rip

    RIP removes routes that are older than 5 minutes (i.e. routes not verified in the last 300 seconds - Garbage Collection Timer + Route Timeout). Routes learnt with triggered RIP are not deleted. Your device supports both version 1 and version 2 of RIP, either individually or together. bintec R200 Series...
  • Page 175: Rip Interfaces

    In the Routing -> RIP -> RIP Interfaces menu, a list of all RIP interfaces is shown. Routing RIP Interfaces Fig. 74: -> -> 9.3.1.1 Edit For each RIP interface, you can, in the menu, select the options Send Version, Re- ceive Version and Route Announce. bintec R200 Series...
  • Page 176 224.0.0.9. • RIP V1 Triggered: RIP V1 messages are sent, received and processed as per RFC 2091 (triggered RIP). • RIP V2 Triggered: RIP V2 messages are sent, received and processed as per RFC 2091 (triggered RIP). bintec R200 Series...
  • Page 177: Rip Filter

    • You explicitly deactivate the import or export of certain routes. The import or export of all other routes that are not listed is still allowed. • You explicitly activate the import or export of certain routes. In this case, you must also bintec R200 Series...
  • Page 178 A dialog box opens, in which you can se- lect the position to which the filter is to be moved. 9.3.2.1 New Choose the New button to set up more RIP filters. bintec R200 Series...
  • Page 179 Select the value to be added to the route metric if the status of Interfaces the interface is "up". During export, the value is added to the ex- ported metric if the interface status is "up". Possible values are -16 to 16. bintec R200 Series...
  • Page 180: Rip Options

    RIP updates, is only for test purposes. If the setting is changed, this can mean that your device sends and listens at a port that no other devices use. The default value 520 should be retained. bintec R200 Series...
  • Page 181 If the function is not activated, the times defined in RFC are re- tained for the timeouts. Fields in the RIP Options Timer for RIP V2 (RFC 2453) menu Field Description Update Timer Only for RFC 2453 Variable Timer = Enabled bintec R200 Series...
  • Page 182: Load Balancing

    Only for RFC 2091 Variable Timer = Enabled After this timeout, update request or update response packets are sent again until an update flush or update acknowledge packet arrives. The default value is 5 (seconds). 9.4 Load Balancing bintec R200 Series...
  • Page 183 Choose the New button to set up new groups. Routing Load Sharing Load Sharing Groups Fig. 79: -> -> -> The Routing -> Load Balancing ->Load Balancing Groups -> New menu consists of the following fields: Fields in the Load Balancing GroupsBasic Parameters menu bintec R200 Series...
  • Page 184 • Only use active interfaces: Only interfaces in the up state are included. In the Interface Selection for Load Sharing area, you add and configure interfaces that match the current group context. You can also delete interfaces. Use Add to create entries. bintec R200 Series...
  • Page 185: Multicast

    Address range for multicast For, IPv4 the IP addresses 224.0.0.0 to 239.255.255.255 (224.0.0.0/4) are reserved for bintec R200 Series...
  • Page 186 This is a useful option if multicast data traffic is to be permanently forwarded. • IGMP: IGMP is used to gather information about the potential recipients in a subnet. In the case of a hop, incoming multicast data traffic can thus be selected. bintec R200 Series...
  • Page 187: Forwarding

    /New menu consists of the following fields: Fields in the Forwarding Basic Parameters menu Field Description All Multicast Groups Select whether all multicast groups, i.e. the complete multicast address range 224.0.0.0/4, are to be forwarded from the defined bintec R200 Series...
  • Page 188: Igmp

    (sent to 224.0.0.1), a group-specific query (sent to a group address) and the group-and-source-specific query (sent to a specific group address). Reports are only sent by hosts to respond to queries. In this menu, you configure the interfaces on which IGMP is to be enabled. bintec R200 Series...
  • Page 189 For the sending of queries, enter the time interval in seconds Time within which hosts must respond. The hosts randomly select a time delay from this interval before sending the response. This spreads the load in networks with several hosts, improving per- formance. bintec R200 Series...
  • Page 190 IGMP Proxy enables you to simulate several locally connected interfaces as a subnet to an adjacent router. Queries coming in to the IGMP Proxy interface are forwarded to the local subnets. Local reports are forwarded on the IPGM Proxy interface. bintec R200 Series...
  • Page 191 Select whether your device is to forward the hosts' IGMP mes- sages in the subnet via its defined Proxy Interface. Proxy Interface Only for IGMP Proxy enabled Select the interface on your device via which queries are to be received and collected. bintec R200 Series...
  • Page 192: Options

    • Auto (default value) Multicast is activated automatically for hosts if the hosts open applications that use multicast. • Up: Multicast is always on. • Down : Multicast is always off. Mode Only for IGMP Status = Active or Auto Select Multicast Mode. Possible values: bintec R200 Series...
  • Page 193 3 reports and the maximum number of internally managed sources per group. IGMP State Limit Enter the maximum permitted total number of incoming queries and messages per second. The default value is 0, i.e. the number of IGMP status mes- sages is not limited. bintec R200 Series...
  • Page 194: Chapter 10 Wan

    (e.g. because of an error during setup of an out- going connection, a renewed attempt is only possible after a specified number of seconds) administratively set to down (deactivated); connection setup not possible for leased lines: bintec R200 Series...
  • Page 195: Default Route

    Identification can be based on the calling party number or PAP/CHAP/MS-CHAP au- thentication. Identification is made in the former case without call acceptance, as the calling party number is transferred over the ISDN D channel, and in the latter case with call ac- bintec R200 Series...
  • Page 196: Pppoe

    Ethernet connection. Today, PPPoE is used for ADSL connections in Ger- many. In Austria, the Point-to-Point Tunneling Protocol (PPTP) was originally used for AD- SL access. However, PPPoE is now offered here too by some providers. bintec R200 Series...
  • Page 197 PPPoE Mode Select whether you want to use a standard Internet connection over PPPoE ( Standard) or your Internet access is to be set up over several interfaces ( Multilink). If you choose Mul- bintec R200 Series...
  • Page 198 Enter the password. Always on Select whether the interface should always be activated. The function is activated with Enabled. The function is disabled by default. Only activate this option if you have Internet access with a flat- rate charge. bintec R200 Series...
  • Page 199 Specify whether Network Address Translation (NAT) is to be ac- tivated. The function is activated with Enabled. The function is enabled by default. Local IP Address Only if Address Mode = Static Enter the static IP address of the connection partner. bintec R200 Series...
  • Page 200 Protocol as per RFC 1994); the password is transferred encrypted. • PAP/CHAP: Primarily run CHAP, otherwise PAP. • MS-CHAPv1: Only run MS-CHAP version 1 (PPP Microsoft Challenge Handshake Authentication Protocol). • PAP/CHAP/MS-CHAP : Primarily run CHAP, on denial then bintec R200 Series...
  • Page 201: Pptp

    In the WAN -> Internet + Dialup -> PPTP menu, a list of all PPTP interfaces is shown. In this menu, you configure an Internet connection that uses the Point Tunnelling Protocol (PPTP) to set up a connection, e.g. required in Austria. 10.1.2.1 New Choose the New button to set up new PPTP interfaces. bintec R200 Series...
  • Page 202 PPTP Interface Select the IP interface over which packets are to be transported to the remote PPTP terminal. If you want to use an external DSL modem, select the Ethernet port to which the modem is connected. bintec R200 Series...
  • Page 203 Possible values: • Get IP Address (default value): Your device is automatic- ally assigned a temporarily valid IP address from the provider. • Static: You enter a static IP address. bintec R200 Series...
  • Page 204 The de- fault value is 60. Maximum Number of Di- Enter the number of unsuccessful attempts to setup a connec- alup Retries tion before the interface is blocked. bintec R200 Series...
  • Page 205 The function is activated with Enabled. The function is disabled by default. PPTP Address Mode Displays the address mode. The value cannot be changed. Possible values: • Static: The IP address of the Ethernet port selected in bintec R200 Series...
  • Page 206: Pppoa

    When using the internal DSL modem, select here a PPPoA interface must be configured for this connection in WAN -> ATM -> Profiles -> New with Client Type = On demand. 10.1.3.1 New Choose the New button to set up new PPPoA interfaces. bintec R200 Series...
  • Page 207 Select an ATM profile created in the ATM -> Profiles menu, in- dicated by the global identifiers VPI and VCI specified by the provider. User Name Enter the user name. Password Enter the password for the PPPoA connection. Always on Select whether the interface should always be activated. bintec R200 Series...
  • Page 208 The function is activated with Enabled. The function is enabled by default. Create NAT Policy Specify whether Network Address Translation (NAT) is to be ac- tivated. The function is activated with Enabled. bintec R200 Series...
  • Page 209 • PAP (default value) Only run PAP (PPP Password Authentica- tion Protocol); the password is transferred unencrypted. • CHAP: Only run CHAP (PPP Challenge Handshake Authentic- ation Protocol as per RFC 1994); the password is transferred encrypted. bintec R200 Series...
  • Page 210: Isdn

    In the WAN -> Internet + Dialup -> ISDN menu, a list of all ISDN interfaces is shown. In this menu, you configure the following ISDN connections: • Internet access over ISDN • LAN-to-LAN connection over ISDN • Remote (Mobile) Dialin bintec R200 Series...
  • Page 211 10 WAN Funkwerk Enterprise Communications GmbH • Use of the ISDN Callback function 10.1.4.1 New Choose the New button to set up new ISDN interfaces. Internet + Dialup ISDN Fig. 87: -> -> -> bintec R200 Series...
  • Page 212 Possible values are -1 to 3600 (seconds). A value of -1 means that the connection is set up again immediately after disconnec- tion and 0 deactivates short hold. The default value is 20. bintec R200 Series...
  • Page 213 Route Entries Only if IP Address Mode = Static Define routing entries for this connection partner. • Remote IP Address: IP address of the destination host or LAN. bintec R200 Series...
  • Page 214 Authentication Select the authentication protocol for this PPTP partner. Possible values: • PAP/CHAP/MS-CHAP (default value): Primarily run CHAP, on denial, the authentication protocol required by the PPTP part- bintec R200 Series...
  • Page 215 • Windows Client Mode: Your device calls the connection partner to request a callback via CBCP (Callback Control Protocol). Needed for Windows clients. • Passive: Select one of the following options: • Enabled. Your device calls back immediately when re- bintec R200 Series...
  • Page 216 In static channel bundling, you specify right from the start how many B channels your device is to use, regardless of the transferred data rate. Possible values: • None (default value): No channel bundling, only one B- bintec R200 Series...
  • Page 217 • Active: OSPF is activated for this interface, i.e. routes are propagated or OSPF protocol packets sent over this interface. • Down : OSPF is disabled for this interface. Proxy ARP Mode Select whether and how ARP requests from your own LAN are bintec R200 Series...
  • Page 218: Ip Pools

    If a new dial-in takes place within an interval of one hour, an attempt is made to allocate the same IP address assigned to this partner the last time. Use the Add button to set up new IP pools. bintec R200 Series...
  • Page 219: Atm

    If the connection for your Internet access is set up using the internal modem, the ATM con- nection parameters must be set for this. By default an ATM profile with the description AUTO-CREATED is preconfigured. Its values (VPI 1 and VCI 32) are suitable for a Telekom ATM connection, for example. bintec R200 Series...
  • Page 220 Select one of the preconfigured ATM profiles for your provider from the list or manually define the profile using - User- defined -. Description Only for Provider = - User-defined - Enter the desired description for the connection. bintec R200 Series...
  • Page 221 Select the encapsulation to be used. Note your provider's in- structions. Possible values (in accordance with RFC 2684): • LLC Bridged no FCS (default value for Ethernet over ATM): Only shown for Type = Ethernet over ATM. bintec R200 Series...
  • Page 222 • Static (default value): A static IP address is assigned to the interface in IP Address/Netmask. • DHCP: An IP address is assigned to the interface dynamically via DHCP. IP Address/Netmask Only if Address Mode = Static bintec R200 Series...
  • Page 223 Add. Prioritize TCP ACK Select whether the TCP download is to be optimised in the Packets event of intensive TCP upload. This function can be specially applied for asymmetrical bandwidths (ADSL). The function is activated with Enabled. bintec R200 Series...
  • Page 224: Service Categories

    (traffic contract). The configuration of ATM QoS requires extensive knowledge of ATM technology and the way the bintec devices function. An incorrect configuration can cause consider- able disruption during operation. If applicable, save the original configuration on your 10.2.2.1 New Choose the New button to set up new categories.
  • Page 225 • Constant Bit Rate (CBR) : (Constant Bit Rate) The con- nection is assigned a guaranteed data rate determined by the Peak Cell Rate (PCR) . This category is suitable for critical (real-time) applications that require a guaranteed data rate. bintec R200 Series...
  • Page 226 (MBS) (VBR.1) or Variable Bit Rate V.3 (VBR.3) Enter a value for the maximum number of bits per second by which the PCR can be exceeded briefly. Possible values: 0 to 100000. The default value is 0. bintec R200 Series...
  • Page 227: Oam Controlling

    Caution The configuration of OAM requires extensive knowledge of ATM technology and the way the bintec devices functions. An incorrect configuration can cause considerable disruption during operation. If applicable, save the original configuration on your PC. In the WAN -> ATM -> OAM Control menu, a list of all monitored OAM flow levels is shown.
  • Page 228 (displayed by the combination of VPI and VCI). Virtual Path Connection Only for OAM Flow Level = f4 (VPC) Select the already configured virtual path connection to be mon- itored (displayed by the VPI). Fields in the OAM Control Loopback bintec R200 Series...
  • Page 229 The default value is 5. Segment Pending Re- Only if Loopback Segment is enabled. quests Enter the number of directly consecutive loopback cells that may fail to materialise before the connection is regarded as in- terrupted ("down"). bintec R200 Series...
  • Page 230 VCC or VPC. Possible values: • Passive (default value) OAM CC requests are responded to after CC negotiation (CC activation negotiation). • Active: OAM CC requests are sent after CC negotiation (CC activation negotiation). bintec R200 Series...
  • Page 231: Real Time Jitter Control

    In the WAN -> Real Time Jitter Control ->Controlled Interfaces menu, a list of all inter- faces is shown for which the real time jitter control has been configured. 10.3.1.1 New Click o the New button to set up port forwarding for other interfaces. bintec R200 Series...
  • Page 232 • All RTP Streams: All RTP streams are optimised. • Inactive : Voice data transmission is not optimised. • Always: Voice data transmission is always optimised. Maximum Upload Speed Enter the maximum available upstream bandwidth in KBit/s for the selected interface. bintec R200 Series...
  • Page 233: Chapter 11 Vpn

    IP packets. The IPSec implementation can also be smoothly integrated in a Public Key Infrastructure (PKI). The bintec IPSec im- plementation achieves this firstly by using the Authentication Header (AH) protocol and En- capsulated Security Payload (ESP) protocol, and secondly through the use of cryptograph- ic key key administration mechanisms like the Internet Key Exchange (IKE) protocol.
  • Page 234 Choose the New button to set up more IPSec peers. IPSec IPSec Peers Fig. 94: -> -> -> The VPN -> IPSec -> IPSec Peers-> New menu consists of the following fields: Fields in the IPSec Peers Peer Parameters menu bintec R200 Series...
  • Page 235 Enter the password agreed with the peer. The maximum length of the entry is 50 characters. All charac- ters are possible except for 0x at the start of the entry. Fields in the IPSec Peers Interface Routes menu bintec R200 Series...
  • Page 236 The Advanced Settingsmenu consists of the following fields: Fields in the Advanced Settings Advanced IPSec Options menu Field Description Phase-1 Profile For phase 1, select a profile already configured in the Phase-1 Profiles menu. You can also select the profile marked as the bintec R200 Series...
  • Page 237 IPSec peer is Up (active), i.e. a connection already exists to the IPSec peer. IPSec Callback bintec devices support the DynDNS service to enable hosts without fixed IP addresses to bintec R200 Series...
  • Page 238 Transferring the IP address of a device over ISDN (in the D channel and/or B channel) opens up new possibilities for the configuration of IPSec VPNs. This enables restrictions that occur in IPSec configuration with dynamic IP addresses to be avoided. bintec R200 Series...
  • Page 239 IP address and be reachable for peer B over the Internet. (2) Your device creates a token with a limited validity and saves it together with the cur- rent IP address in the MIB entry belonging to peer B. bintec R200 Series...
  • Page 240 • Both : Your device can react to incoming ISDN calls and send ISDN calls to the remote device. The setting up of an IPSec tunnel is executed (after an incoming ISDN call) and initiated (by an outgoing ISDN call). bintec R200 Series...
  • Page 241 D Channel Mode field. If this does not suc- ceed, the IP address is transferred in the B channel. (This in- curs costs.) • Use only B Channel Mode : Your device transfers the IP address in the B channel. This incurs costs. bintec R200 Series...
  • Page 242: Phase-1 Profiles

    In the VPN -> IPSec -> Phase 1 Profiles menu a list of all configured IPSec phase 1 pro- files is shown. IPSec Phase 1 Profiles Fig. 95: -> -> In the Standard column, you can mark the profile to be used as the default profile. bintec R200 Series...
  • Page 243 24 possible values in this field. At least one proposal must exist. Therefore the first line of the table can- not be deactivated. Encryption algorithms (Encryption): bintec R200 Series...
  • Page 244 96 bit digest length for IPSec. • RipeMD 160: RipeMD 160 is a 160 bit hash algorithm. It is used as a secure replacement for MD5 and RipeMD. • Tiger192: Tiger 192 is a relatively new and very fast al- gorithm. bintec R200 Series...
  • Page 245 DH Group The Diffie-Hellman group defines the parameter set used as the basis for the key calculation during phase 1. "MODP" as sup- ported by bintec devices stands for "modular exponentiation". Possible values: • 1 (768-bit): During the Diffie-Hellman key calculation, modular exponentiation at 768 bits is used to create the en- cryption material.
  • Page 246 IP addresses if preshared keys are used for au- thentication. Also define whether the selected mode is used exclusively (Strict), or the peer can also propose another mode. Local ID Type Select the local ID type. Possible values: • Fully Qualified Domain Name (FQDN) bintec R200 Series...
  • Page 247 Select the method to be used to check the functionality of the IPSec connection. In addition to the default method Dead Peer Detection (DPD), the (proprietary) Heartbeat method is implemented. This sends and receives signals every 5 seconds, depending on the config- bintec R200 Series...
  • Page 248 The default value is 30. NAT Traversal NAT Traversal (NAT-T) also enables IPSec tunnels to be opened via one or more devices on which network address translation (NAT) is activated. Without NAT-T, incompatibilities may arise between IPSec and bintec R200 Series...
  • Page 249: Phase-2 Profiles

    You can define profiles for phase 2 of the tunnel setup just as for phase 1. In the VPN -> IPSec -> Phase 2 Profiles menu a list of all configured IPSec phase 2 pro- files is shown. bintec R200 Series...
  • Page 250 -> In the Standard column, you can mark the profile to be used as the default profile. 11.1.3.1 New Choose the New button to set up new profiles. IPSec Phase 2 Profiles Fig. 98: -> -> -> bintec R200 Series...
  • Page 251 • CAST: CAST is also a very secure algorithm, marginally slower than Blowfish, but faster than 3DES. • DES: DES is an older encryption algorithm, which is rated as weak due to its small effective length of 56 bits. bintec R200 Series...
  • Page 252 The new SAs are negotiated shortly before expiry of the current SAs. As for RFC 2407, the default value is eight hours, which means the key must be renewed once eight hours have elapsed. The following options are available for defining the lifetime: bintec R200 Series...
  • Page 253 Select whether and the way in which IPSec heartbeats are used. A bintec IPSec heartbeat is implemented to determine whether or not a Security Association (SA) is still valid. This function sends and receives signals every 5 seconds, depending on the configuration.
  • Page 254: Ip Pools

    • Autodetect: Automatic detection of whether the remote ter- minal is a bintec device. If it is, Heartbeat Both (for a remote terminal with bintec) or None (for a remote terminal without bintec) is set.
  • Page 255 IP Pool Name Enter the name of the IP pool. IP Pool Range In the first field, enter the first IP address of the range. In the second field, enter the last IP address of the range. bintec R200 Series...
  • Page 256: Options

    This cancels all settings made during the IPSec configuration. Once the configuration is deleted, you can start with a com- pletely new IPSec configuration. You can only delete the configuration if Enable IPSec = Not bintec R200 Series...
  • Page 257 The default val- ues are globally valid and enable your system to work correctly to other bintec devices, so that you only need to change these values if the remote terminal is a third-party product or you know special settings are necessary.
  • Page 258 Select whether certificate requests are to be sent during IKE quest Payloads (phase 1). The function is activated with Enabled. The function is enabled by default. Send Certificate Chains Select whether complete certificate chains are to be sent during IKE (phase 1). bintec R200 Series...
  • Page 259: L2Tp

    The layer 2 tunnel protocol (L2TP) enables PPP connections to be tunnelled via a UDP connection. Your bintec device supports the following two modes: • L2TP LNS Mode (L2TP Network Server): for incoming connections only • L2TP LAC Mode (L2TP Access Concentrator): for outgoing connections only Note the following when configuring the server and client: An L2TP tunnel profile must be created on each of the two sides (LAC and LNS).
  • Page 260 • LAC: The Local Hostname is used in outgoing tunnel setup messages to identify this device and is associated with the Remote Hostname of a tunnel profile configured on the LNS. These tunnel setup messages are SCCRQs (Start Control bintec R200 Series...
  • Page 261 Enter how the port number to be used as the source port for all outgoing L2TP connections based on this profile is to be be de- termined. By default, the Fixed option is disabled, which means that ports are dynamically assigned to the connections that use this profile. bintec R200 Series...
  • Page 262 Time between Retries. The available values are 1 to 255, the default value is 1. Maximum Time between Enter the maximum time (in seconds) that your device waits be- Retries fore resending a L2TP control packet for which it received no re- sponse. bintec R200 Series...
  • Page 263: Users

    The function is disabled by default. 11.2.2 Users In the VPN -> L2TP -> Users menu a list of all configured L2TP partners is shown. 11.2.2.1 New Choose the New button to set up new L2TP partners. bintec R200 Series...
  • Page 264 The first character in this field must not be a number and no special characters or umlauts must be used either. The maxim- um length of the entry is 25 characters. Connection Type Select whether the L2TP partner is to take on the role of the bintec R200 Series...
  • Page 265 The default value is 300. Fields in the Users IP Mode and Routes menu Field Description IP Address Mode Select whether your device is to be assigned a static IP address or whether it should be assigned this dynamically. Possible values: bintec R200 Series...
  • Page 266 Only for IP Address Mode = Static Enter the Remote IP Address and Netmask of the L2TP part- ner LAN and the corresponding Metric. Add new entries with Add. The Advanced Settingsmenu consists of the following fields: bintec R200 Series...
  • Page 267 Microsoft and Cisco. LCP Alive Check Check whether the availability of the remote terminal is to be checked by sending LCP echo requests or replies. This is re- commended for leased lines, PPTP and L2TP connections. bintec R200 Series...
  • Page 268 ARP request; the connection is not set up until someone actually wants to use the route. • Active Only: Your device responds to an ARP request only if the status of the connection to the L2TP partner is Up bintec R200 Series...
  • Page 269: Options

    UDP Destination Port Enter the port to be monitored by the LNS on incoming L2TP tunnel connections. Available values are all whole numbers from 1 to 65535, the default value is 1701, as specified in RFC 2661. bintec R200 Series...
  • Page 270: Pptp

    PPTP tunnel end-points. As soon as this control connection is set up, the PPTP transfers the traffic data packed in GRE packets (GRE = Generic Routing Encapsu- lation). 11.3.1 PPTP Tunnels In the PPTP Tunnels menu, a list of all PPTP tunnels is shown. bintec R200 Series...
  • Page 271 -> -> -> The VPN -> PPTP -> PPTP Tunnels -> New menu consists of the following fields: Fields in the menu, PPTP Tunnels PPTP Partner Parameters Field Description Description Enter a unique name for the tunnel. bintec R200 Series...
  • Page 272 Fields in the menu, PPTP Tunnels IP Mode and Routes Field Description IP Address Mode Select whether your device is to be assigned a static IP address or whether it should be assigned this dynamically. Possible values: bintec R200 Series...
  • Page 273 Select an IP pool configured in the WAN->Internet + Dialup->IP Pools menu. If an IP pool has not been configured here yet, the message Not yet defined appears in this field. The Advanced Settingsmenu consists of the following fields: Fields in the menu Advanced Settings bintec R200 Series...
  • Page 274 Windows versions than Win- dows XP. LCP Alive Check Check whether the availability of the remote terminal is to be checked by sending LCP echo requests or replies. This is re- commended for leased lines, PPTP and L2TP connections. bintec R200 Series...
  • Page 275 PPTP partner has already been es- tablished. DNS Negotiation Select whether your device should obtain IP addresses for Primary DNS client, Secondary DNS client from the PPTP partner or should send these to the PPTP partner. The function is activated with Enabled. bintec R200 Series...
  • Page 276 Enter the ISDN number from which the remote device calls the local device (calling party number). Outgoing ISDN Number Only if Callback is enabled. Enter the ISDN number with which the local device calls the re- mote device calls (called party number). bintec R200 Series...
  • Page 277: Options

    GRE Window Size Enter the maximum number of GRE packets that can be sent without confirmation. Windows XP uses a higher initial reception window in the GRE, which is why the maximum send window size on the bintec side bintec R200 Series...
  • Page 278: Gre

    11.4.1 GRE Tunnels In the VPN -> GRE -> GRE Tunnels menu, a list of all configured GRE tunnels is shown. 11.4.1.1 New Choose the New button to set up new GRE tunnels. GRE Tunnels Fig. 106: -> -> bintec R200 Series...
  • Page 279 Enter the maximum packet size (Maximum Transfer Unit, MTU) in bytes that is allowed for the GRE connection between the partners. Possible values are 1 to 8192. The default value is 1500. Use key Enable the key input for the GRE connection, which makes it bintec R200 Series...
  • Page 280: Certificates

    11.5.1 Certificate List In the VPN -> Certificates -> Certificate List menu a list of all available certificates is shown. 11.5.1.1 Edit Click the icon to display the content of the selected object (key, certificate, or request). bintec R200 Series...
  • Page 281 (unless specified otherwise under "Phase 1 Profiles"). The function is activated with True. The function is disabled by default. Certificate Revocation Only for Certificate is CA Certificate = True. List (CRL) Checking Define the extent to which certificate revocation lists (CRLs) are bintec R200 Series...
  • Page 282 If SCEP is used, your device also supports separate registration authority certificates. Registration authority certificates are used by some Certificate Authorities (CAs) to handle certain tasks (signature and encryption) during SCEP communication with separate keys, and to delegate the operation to separate registration authorities, if applicable. bintec R200 Series...
  • Page 283 -> -> -> The VPN ->Certificates -> Certificate List ->Request menu consists of the following fields: Fields in the Certificate List Certificate Request menu Field Description Certificate Request De- Enter a unique description for the certificate. scription bintec R200 Series...
  • Page 284 If no CA certificates are available, the device will first down- load the CA certificate of the relevant CA. It then continues with the enrolment process, provided no more important para- bintec R200 Series...
  • Page 285 Fields in the Certificate List Subject Name menu Field Description Custom Select whether you want to enter the name components of the subject name individually as specified by the CA or want to enter a special subject name. bintec R200 Series...
  • Page 286 Enter the location according to CA. State/Province Only for Custom = disabled. Enter the state/province according to CA. Country Only for Custom = disabled. Enter the country according to CA. The Advanced Settingsmenu consists of the following fields: bintec R200 Series...
  • Page 287 As soon as the enrolment is completed and the certificate has been downloaded from the CA server, it is automatically saved in the device configuration. The function is activated with Enabled. The function is enabled by default. 11.5.1.3 Import Choose the Import button to import other certificates. bintec R200 Series...
  • Page 288 • auto (default value) Activates automatic code recognition. If downloading the certificate in auto mode fails, try with a cer- tain type of encoding. • Base64 • Binary Password You may need a password to obtain certificates for your keys. Enter the password here. bintec R200 Series...
  • Page 289: Crls

    Enter a unique description for the CRL. Local Certificate De- scription File Encoding Select the type of encoding, so that your device can decode the CRL. Possible values: • Auto (default value) Activates automatic code recognition. If bintec R200 Series...
  • Page 290: Certificate Servers

    Choose the New button to set up new certificate servers. Certificates Certificate Servers Fig. 111: -> -> -> The VPN -> Certificates -> Certificate Servers-> New menu consists of the following fields: Fields in the Certificate Servers Basic Parameters menu bintec R200 Series...
  • Page 291 11 VPN Funkwerk Enterprise Communications GmbH Field Description Description Enter a unique description for the certificate server. LDAP URL Path Enter the LDAP URL of the server. bintec R200 Series...
  • Page 292: Firewall

    12 Firewall Funkwerk Enterprise Communications GmbH Chapter 12 Firewall The Stateful Inspection Firewall (SIF) provided for bintec gateways is a powerful security feature. The SIF with dynamic packet filtering has a decisive advantage over static packet filtering: The decision whether or not to send a packet cannot be made solely on the basis of source and destination addresses or ports but also using dynamic packet filtering based on the state of the connection to a partner.
  • Page 293: Policies

    • All packets without matching rules are rejected without sending an error message to the sender when all the existing rules have been checked (=default behaviour). 12.1 Policies bintec R200 Series...
  • Page 294: Filter Rules

    Moreover, the overview provides the option to show the firewall rules of the underlying set- tings made in the System Management ->Administrative Access -> Access menu. To bintec R200 Series...
  • Page 295 Select one of the preconfigured aliases for the destination of the packet. The list includes all WAN-/LAN interfaces, interface groups (see Firewall -> Interfaces -> Groups), addresses (see Firewall -> Addresses -> Address List) and address groups (see Firewall bintec R200 Series...
  • Page 296 Apply Qos Only for Action = Access Select whether you want to enable QoS for this policy with the priority selected in Data Traffic Priority The function is activated with Enabled. bintec R200 Series...
  • Page 297: Qos

    Certain applications can be given preference and bandwidth re- served for them. In the Firewall -> Policies -> QoS menu, a list of all QoS rules is shown. 12.1.2.1 New Choose the New button to set up new QoS rules. bintec R200 Series...
  • Page 298 QoS was enabled (Apply QoS = Enabled). The follow- ing options are available for each list entry: • Use: Select whether this entry should be assigned to the QoS interface. The option is deactivated by default. • Bandwidth: Enter the maximum available bandwidth in kbps bintec R200 Series...
  • Page 299: Options

    Fields in the Options Global Firewall Options menu Field Description Firewall Status Here you can activate and deactivate the firewall function. The function is activated with Enabled. The function is enabled by default. Logged Actions Select the firewall syslog level. bintec R200 Series...
  • Page 300: Interfaces

    The default value is 86400. Other Inactivity Enter the inactivity time after which a session of another type is to be regarded as expired (in seconds). Possible values are 30 to 86400. The default value is 30. 12.2 Interfaces bintec R200 Series...
  • Page 301: Groups

    Fields in the Groups Basic Parameters menu Field Description Description Enter the desired description of the interface group. Members Select the members of the group from the available interfaces. To do this, activate the field in the Members column. 12.3 Addresses bintec R200 Series...
  • Page 302: Address List

    Select the type of address you want to specify. Possible values: • Address / Subnet (default value): Enter an IP address with subnet mask. • Address Range: Enter an IP address range with a start and end address. bintec R200 Series...
  • Page 303: Groups

    Choose the New button to set up new address groups. Firewall Addresses Groups Fig. 118: -> -> -> The Firewall -> Addresses -> Groups-> New menu consists of the following fields: Fields in the Groups Basic Parameters menu bintec R200 Series...
  • Page 304: Services

    -> -> The Firewall -> Services -> Service List-> New menu consists of the following fields: Fields in the Service List Basic Parameters menu Field Description Description Enter an alias for the service you want to configure. bintec R200 Series...
  • Page 305 The Type field shows the class of ICMP messages, the Code field specifies the type of message in greater detail. Possible values: • Any (default value) • Echo Replay • Destination Unreachable • Source Quench • Redirect • Echo • Time Exceeded bintec R200 Series...
  • Page 306: Groups

    In the Firewall -> Services -> Groups menu, a list of all configured service groups is shown. You can group together services. This makes it easier to configure firewall rules. 12.4.2.1 New Choose the New button to set up new service groups. bintec R200 Series...
  • Page 307 Fields in the Groups Basic Parameters menu Field Description Description Enter the desired description of the service group. Members Select the members of the group from the available service ali- ases. To do this, activate the field in the Members column. bintec R200 Series...
  • Page 308: Voip

    In the VoIP ->SIP-> Options menu, you can make global settings for the SIP. VoIP Options Fig. 121: -> -> The VoIP ->SIP-> Options menu consists of the following fields: Fields in the Options Basic Parameters menu Field Description SIP Proxy Select whether you want to activate the SIP proxy. bintec R200 Series...
  • Page 309: Rtsp

    If you want to use RTSP, the firewall and NAT must be configured accordingly. In the VoIP -> RTSP, you can enable the RTSP proxy to enable requested RTSP sessions over the defined port if required. bintec R200 Series...
  • Page 310 The function is activated by choosing Enabled. The function is disabled by default. RTSP Port Select the port over which the RTSP messages are to come in and go out. Possible values are 0 to 65535. The default value is 554. bintec R200 Series...
  • Page 311: Chapter 14 Local Services

    (2) Otherwise, if a suitable forwarding entry exists, the relevant DNS server is asked, de- pending on the configuration of the Internet or dialin connections, if necessary by set- ting up a WAN connection at extra cost. If the DNS server can resolve the name, the bintec R200 Series...
  • Page 312 (6) Otherwise the initial request is answered with a server error. If one of the DNS servers answers with non-existent domain, the initial request is im- mediately answered accordingly and a corresponding negative entry is made in the DNS cache of your device. bintec R200 Series...
  • Page 313: Global Settings

    Select whether the addresses of the global name server on your tion device can be overwritten by transferred name server ad- dresses. Possible values: • Dynamic (default value) The name server addresses can be automatically overwritten. • Static: The name server addresses are not overwritten. bintec R200 Series...
  • Page 314 If the Cache Size is reduced by the user, dynamic entries are deleted if necessary. Static entries are not deleted. Cache Size cannot be set to smaller than the current number of static entries. Possible values: 0 .. 1000 . The default value is 100. bintec R200 Series...
  • Page 315 IPCP server for PPP connections. Possible values: • None: No name server address is sent. • Own IP address: The address of your device is transferred as the name server address. • Global DNS Setting (default value): The addresses of the bintec R200 Series...
  • Page 316: Static Hosts

    Enter the host name to which the IP Address defined in this menu is to be assigned if a positive response is received to a DNS request. If a negative response is received to a DNS re- quest, no address is specified. bintec R200 Series...
  • Page 317: Domain Forwarding

    The default value is 86400 (= 24 h). 14.1.3 Domain Forwarding In the Local Services -> DNS -> Domain Forwarding menu, a list of all configured for- warding for defined domains is shown. 14.1.3.1 New Choose the New button to set up new forwardings. bintec R200 Series...
  • Page 318 The entry can also start with the wildcard *, e.g. *.funkwerk.com. If a name is entered without a full stop, once you confirm with OK " <Default Domain>. " " is added. Domain Only for Forward = Domain bintec R200 Series...
  • Page 319: Cache

    Only for Forward to = DNS server Enter the IP address of the primary and secondary DNS server. 14.1.4 Cache In the Local Services -> DNS -> Cache menu, a list of all available cache entries is shown. bintec R200 Series...
  • Page 320 A dynamic entry can be converted to a static entry by marking the entry and confirming with Set to Static. This entry then disappears from the list and is included in the list in the Stat- ic Hosts menu. The TTL is transferred in this operation. bintec R200 Series...
  • Page 321: Statistics

    Shows the number of requests that were answered with static or dynamic entries from the cache. Forwarded Requests Shows the number of requests forwarded to other name serv- ers. Cache Hitrate (%) Displays the number of Cache Hits per DNS Request in %. bintec R200 Series...
  • Page 322: Dyndns Client

    In the Local Services -> DynDNS Client -> DynDNS Update menu, a list of all configured DynDNS registrations is shown that are to be updated. 14.2.1.1 New Choose the New button to set up further DynDNS registrations to be updated. bintec R200 Series...
  • Page 323 Enter the password as registered with the DynDNS provider. Provider Select the DynDNS provider with which the above data is re- gistered. A choice of DynDNS providers is already available in the uncon- figured state and their protocols are supported. bintec R200 Series...
  • Page 324: Dyndns Provider

    The function is disabled by default. 14.2.2 DynDNS Provider In the Local Services -> DynDNS Client -> DynDNS Providers menu, a list of all con- figured DynDNS providers is shown. 14.2.2.1 New Choose the New button to set up new DynDNS providers. bintec R200 Series...
  • Page 325 IP address of your device. Ask your provider for the path to be used. Port Enter the port at which your device is to reach your provider’s server. Ask your provider for the relevant port. The default value is 80. bintec R200 Series...
  • Page 326: Dhcp Server

    To activate your device as a DHCP server, you must first define IP address pools from which the IP addresses are distributed to the requesting clients. In the Local Services->DHCP Server->DHCP Pool menu, a list of all configured IP ad- bintec R200 Series...
  • Page 327 Range are to be assigned to DHCP clients. When a DHCP request is received over this Interface, one of the addresses from the address pool is assigned. IP Address Range Enter the first (first field) and last (second field) IP address of bintec R200 Series...
  • Page 328 After the Lease Time (Minutes) expires, the address can be re- assigned by the server. The default value is 120. DHCP Options Specify thwhich additional data is forwarded to the DHCP client. Possible values for Option: • Time Server (default value): Enter the IP address of the bintec R200 Series...
  • Page 329: Ip/Mac Binding

    You can only create new static IP/MAC bindings if IP address ranges have been con- figured in Local Services -> DHCP Server -> DHCP Pool. 14.3.2.1 New Choose the New button to set up new IP/MAC bindings. bintec R200 Series...
  • Page 330 IP Address Enter the IP address to be assigned to the MAC address spe- cified in MAC Address. MAC Address Enter the MAC address to which the IP address specified in IP Address is to be assigned. bintec R200 Series...
  • Page 331: Dhcp Relay Setting

    Field Description Primary DHCP Server Enter the IP address of a server to which BootP or DHCP re- quests are to be forwarded. Secondary DHCP Serv- Enter the IP address of an alternative BootP or DHCP server. bintec R200 Series...
  • Page 332: Web Filter

    This menu contains the configuration of basic parameters for using the Proventia Web Fil- ter. Local Services Web Filters Global Settings Fig. 133: -> -> The Lokale Dienste -> Web Filter -> Global Settings menu consists of the following fields: Fields in the Global Settings Web Filter Options menu bintec R200 Series...
  • Page 333 • Allow all (default value): The download is permitted. • Block all: The download of the requested page is blocked. • Log all: The download is permitted, but logged. The License Information menu consists of the following fields: Fields in the Global SettingsLicense Information menu bintec R200 Series...
  • Page 334: Filter List

    Action = Permit or Permit and Log) • If you only create entries for those addresses that are to be allowed or logged, it is not necessary to change the default behaviour (= all other calls are blocked). bintec R200 Series...
  • Page 335 • Default behaviour: This category applies to all Internet addresses. • Other Category: Some addresses are already known to the Proventia Web Filter, but not yet classified. The action as- sociated with this category is used for such addresses. bintec R200 Series...
  • Page 336: Black / White List

    The Local Services -> Web Filters -> Black / White List menu contains a list of URLs and IP addresses that can be downloaded even if they were blocked as a result of the filter configuration and classification in the Proventia Web Filter (no entries are contained in the default configuration). bintec R200 Series...
  • Page 337 White List) or never ( in the Black List) be Whitelisted downloaded. By default, in the White List is enabled. Addresses listed in the White List are allowed automatically. It is not necessary to configure a suitable filter. bintec R200 Series...
  • Page 338: History

    The CAPI service allows connection of incoming and outgoing data and voice calls to com- munications applications on hosts in the LAN that access the Remote CAPI interface of your device. This enables, for example, hosts connected to your device to receive and send faxes. bintec R200 Series...
  • Page 339: User

    Choose the New button to set up new CAPI users. Local Services CAPI Server User Fig. 137: -> -> -> The Local Services -> CAPI Server ->User -> New menu consists of the following fields: Fields in the User Basic Parameters menu bintec R200 Series...
  • Page 340: Options

    The function is activated by default. 14.5.2 Options Local Services CAPI Server Options Fig. 138: -> -> The Local Services -> CAPI Server ->Options menu consists of the following fields: Fields in the Options Basic Parameters menu bintec R200 Series...
  • Page 341: Scheduling

    To run the event scheduler, the date configured on your device must be 1.1.2000 or later. 14.6.1 Time Schedule In the Local Services -> Scheduling -> Time Schedule menu, a list of all scheduled tasks is shown. 14.6.1.1 New Choose the New button to set up new tasks. bintec R200 Series...
  • Page 342 • Activate Interface : The interface defined in the Select Interface field is activated. • Deactivate Interface : The interface defined in the Se- lect Interface field is deactivated. • Activate WLAN: The WLAN interface defined in the Select Interface field is activated. bintec R200 Series...
  • Page 343 TFTP File Name Only if Select Action = Trigger Configuration Backup Enter the name with which configuration file is to be transferred to the TFTP server. Fields in the Time Schedule Select time interval menu bintec R200 Series...
  • Page 344 Enter the time from which the initiator is to be deactivated. De- activation is carried on the next scheduling interval. If you do not enter a Stop Time or set Stop Time = Start Time, the initiator is activated and deactivated after 10 seconds. bintec R200 Series...
  • Page 345: Options

    Enter the interval in seconds during which the system checks whether there are planned tasks. Possible values are 0 to 65535. The value 300 is recommended (5 minute accuracy). Values lower than 60 are generally pointless and are an unnecessary use of system resources. bintec R200 Series...
  • Page 346: Surveillance

    RADIUS server. 14.7.1 Hosts In the Local Services -> Monitoring -> Hosts menu, a list of all monitored hosts is shown. Local Services Surveillance Hosts Fig. 141: -> -> Values in the list Hosts bintec R200 Series...
  • Page 347 The Local Services -> Monitoring -> Hosts-> New menu consists of the following fields: Fields in the Hosts Host Parameters menu Field Description Group ID Select an ID for the group of hosts whose availability is to be monitored by your device. bintec R200 Series...
  • Page 348 Enter the number of pings that must remain unanswered for the host to be regarded as unavailable. Possible values are 1 to 65536. The default value is 3. Controlled interfaces Select the interface(s) for which the action defined in Interface Action is to be performed. bintec R200 Series...
  • Page 349: Interfaces

    Shows the interface to be monitored. Status Shows the operating status of the selected interface. Trigger Displays the chosen state transition. Interface Action Shows the interface action. Interface Shows the interface to which the chosen interface action should be applied. bintec R200 Series...
  • Page 350 Select the state or state transition of Monitored Interfaces that is to trigger a particular Interface Action. Possible values: • Interface goes up (default setting) • Interface goes down Interface Action Select the action that is to follow the state or state transition bintec R200 Series...
  • Page 351: Ping Generator

    14.7.3 Ping Generator In the Local Services -> Monitoring -> Ping Generator menu, a list is shown of all pings configured for automatic generation. Local Services Surveillance Ping Generator Fig. 145: -> -> Values in the Ping Generator list bintec R200 Series...
  • Page 352 The Local Services -> Monitoring ->Ping Generator -> New menu consists of the follow- ing fields: Fields in the Ping Generator Basic Parameters menu Field Description Destination IP Address Enter the IP address to which the ping is automatically sent. bintec R200 Series...
  • Page 353: Isdn Theft Protection

    If the numbers agree, the device assumes that it is at the original location and the inter- faces are administratively set to "up". To reduce cost, the function uses the ISDN D channel. Note Note that the ISDN theft protection function is not available for Ethernet interfaces. bintec R200 Series...
  • Page 354 Enter the subscriber number that the gateway dials to call itself. Incoming Number Only if ISDN Theft Protection Servic is enabled. Enter the subscriber number to be compared with the current calling party number. Outgoing Number Only if ISDN Theft Protection Servic is enabled. bintec R200 Series...
  • Page 355: Funkwerk Discovery

    (provided you know the administrator password). Note Any bintec access points that exist are determined by means of a multicast. The IP address of the access point is therefore irrelevant. Please note that the discovered bintec access points are not stored in the flash, which...
  • Page 356 Local Services Funkwerk Discovery Device Discovery Fig. 148: -> -> If access points were discovered in the network, they are displayed in the list. You use the button to go to the configuration menu for the access point. bintec R200 Series...
  • Page 357 This field specifies the MAC address of the discovered access point. Node Name You can change the name of the discovered access point here. IP Address You can change the IP address of the discovered access point here. Netmask You can change the related netmask here. bintec R200 Series...
  • Page 358 • Other AP Error: The access point responds to the config- uration request with an unexpected or non-specific error. • Internal Error: An internal device problem prevented the configuration option from being carried out. bintec R200 Series...
  • Page 359: Options

    14 Local Services Funkwerk Enterprise Communications GmbH 14.9.2 Options In this menu, you can grant permission for your device to be discovered by other bintec devices using the funkwerk Discovery protocol and to be configured by means of this. Local Services...
  • Page 360: Upnp

    In this menu, you configure the UPnP settings individually for each interface of your gate- way. You can determine whether UPnP requests from clients are accepted by each interface (for requests from the local network) and/or whether the interface can be controlled via UPnP requests. bintec R200 Series...
  • Page 361 The function is activated with Enabled. The function is disabled by default. Interface is UPnP con- Determine whether the NAT configuration of this interface is trolled controlled by UPnP. The function is activated with Enabled. The function is enabled by default. bintec R200 Series...
  • Page 362: Global Settings

    IP address of the requesting LAN UPnP client. The function is disabled by default. The gateway rejects UPnP requests, NAT releases are not made. UPnP TCP Port Enter the number of the port on which the gateway listens for UPnP requests. bintec R200 Series...
  • Page 363 14 Local Services Funkwerk Enterprise Communications GmbH Field Description Possible values are 1 to 65535, the default value is 5678. bintec R200 Series...
  • Page 364: Maintenance

    You can use the ping test to check whether a certain host in the LAN or an internet address can be reached. The Output field shows the ping test messages. The ping test is started by entering the IP address to be tested in Send Ping Request to Address and clicking on the Go button. bintec R200 Series...
  • Page 365: Dns Test

    The DNS test is used to check whether the domain name of a particular host is correctly re- solved. The Output Results field shows the DNS test messages. The DNS test is started by entering the domain name to be tested in DNS Address and clicking on the Go button. bintec R200 Series...
  • Page 366: Traceroute Test

    Every new system software includes new features, better performance and any necessary bugfixes from the previous version. You can find the current system software at www.funkwerk-ec.com . The current documentation is also available here. bintec R200 Series...
  • Page 367 When you start your device, the boot configuration file is used by default. Operations The files in the flash memory can be copied, moved, erased and newly created. It is also possible to transfer configuration files between your device and a host via HTTP. bintec R200 Series...
  • Page 368 • Import configuration: The configuration file that you se- lect in Filename is transferred to the flash memory. Note: To activate, copy the configuration to the boot file or rename it and reboot your device. • Import language: You can import other language versions bintec R200 Series...
  • Page 369 Only for Action = Import configuration, Import lan- guage, Update system software. Enter the path and name of the file or select the file with Browse... via the explorer/finder. Source Location Only for Action = Update system software bintec R200 Series...
  • Page 370: Reboot

    Only if Action = Rename, Delete configuration or De- lete file: Select the file or configuration to be renamed or deleted. New File Name Only for Action = Rename: Enter the new name of the configur- ation file. 15.3 Reboot bintec R200 Series...
  • Page 371: System Reboot

    Save Configuration button, so that these are not lost when you reboot. Maintenance Reboot System Reboot Fig. 157: -> -> If you wish to reboot your device, click on OK in response to the question Are you sure you want to reboot the system now? bintec R200 Series...
  • Page 372: Chapter 16 External Reporting

    In this menu, you define which messages are sent to which hosts and with which condi- tions. In the External Reporting -> System Log -> Syslog Servers menu, a list of all configured system log servers is shown. 16.1.1.1 New Choose the New button to set up new syslog servers. bintec R200 Series...
  • Page 373 Select the priority of the syslog messages that are to be sent to the host. Possible values: • Emergency (highest priority) • Alert • Critical • Error • Warning • Notice • Information (default value) • Debug (lowest priority) bintec R200 Series...
  • Page 374 Select the protocol for the transfer of syslog messages. Note that the syslog server must support the protocol. Possible values: • UDP (default value) • TCP Type of Messages Select the message type. Possible values: • System & Accounting (default value) • System • Accounting bintec R200 Series...
  • Page 375: Ip Accounting

    In the IP Accounting column, you do not need to click each entry indi- vidually. Using the Select All and Disable All options, you can enable or disable the IP ac- counting function for all interfaces simultaneously. bintec R200 Series...
  • Page 376: Options

    Date of the session start in the format DD.MM.YY Time of the session start in the format HH:MM:SS Duration of the session in seconds Protocol Source IP Address Source Port Source interface index Destination IP Address Destination Port bintec R200 Series...
  • Page 377: E-Mail Alert

    E-mails are sent to the administrator as soon as relevant sys- log messages occur. 16.3.1 E-mail Alert Server The E-mail Alert Server menu consists of the following fields: External Reporting E-mail Alert E-mail Alert Server Fig. 161: -> -> bintec R200 Series...
  • Page 378 Enter the password of the user. POP3 Server Only if SMTP Authentication = SMTP after POP. Enter the address of the server from which the mails are to be retrieved. Appropriate POP3 server software must be installed so that the bintec R200 Series...
  • Page 379: E-Mail Alert Recipient

    The External Reporting -> E-mail Alert-> E-mail Alert Recipient menu consists of the following fields: Fields in the E-mail Alert Recipient Add / Edit E-mail Alert Recipient menu Field Description Recipient Enter the recipient's e-mail address. The entry is limited to 40 characters. bintec R200 Series...
  • Page 380: Snmp

    Enable or disable the field. The function is enabled by default. Fields in the E-mail Alert Receiver Monitored Subsystems menu Field Description Subsystem HSelect the subsystems to be monitored. Add a new system with Add. bintec R200 Series...
  • Page 381: Snmp Trap Options

    In the event of errors, a message - known as a trap packet - is sent unrequested to monitor the system. In the External Reporting -> SNMP -> SNMP Trap Options menu, you can configure the sending of traps. External Reporting SNMP SNMP Trap Options Fig. 163: -> -> bintec R200 Series...
  • Page 382: Snmp Trap Hosts

    In this menu, you specify the IP addresses to which your device is to send the SNMP traps. In the External Reporting -> SNMP -> SNMP Trap Hosts menu, a list of all configured SNMP trap hosts is shown. 16.4.2.1 New Choose the New button to set up new SNMP trap hosts. bintec R200 Series...
  • Page 383: Activity Monitor

    The Activity Monitor enables Windows users to monitor the activities of your device. Im- portant information about the status of physical interfaces (e.g. ISDN line) and virtual inter- faces is easily obtained with one tool. A permanent overview of the utilisation of your device is possible. Method of operation bintec R200 Series...
  • Page 384: Options

    The External Reporting -> Activity Monitor-> Options menu consists of the following fields: Fields in the Options Basic Parameters menu Field Description Monitored Interfaces Select the type of information to be sent in the UDP packets to the Windows application. bintec R200 Series...
  • Page 385 The default value is 5. UDP Destination Port Enter the port number for the Windows application Activity Monitor. The default value is 2107 (registered by IANA - Internet As- signed Numbers Authority). Password Enter the password for the Activity Monitor. bintec R200 Series...
  • Page 386: Monitoring

    Syslog Entries and the configured Maximum Message Level of Syslog Entries . These values can be changed in the System Management -> Global Settings -> System menu. Monitoring Internal Log System Messages Fig. 166: -> -> Values in the list System Messages bintec R200 Series...
  • Page 387: Ipsec

    In the Monitoring -> IPSec -> IPSec Tunnel menu, a list of all configured IPSec peers is shown. Monitoring IPSec IPSec Tunnel Fig. 167: -> -> Values in the list IPSec Tunnels Field Description Displays the serial number of the IPSec connection. Description Displays the name of the IPSec connection. bintec R200 Series...
  • Page 388 Shows the description of the peer. Local IP Address Shows the WAN IP address of your device. Remote IP Address Shows the WAN IP address of the connection partner. Local ID Shows the ID of your device for this IPSec tunnel. bintec R200 Series...
  • Page 389: Ipsec Statistics

    The Monitoring -> IPSec ->IPSec Statistics menu consists of the following fields: Field in the IPSec Statistics Licenses menu Field Description IPSec Tunnels Shows the IPSec licenses currently in use (In use) and the maximum number of licenses usable (Maximum). bintec R200 Series...
  • Page 390: Isdn/Modem

    Shows the number of rejected incoming (Incoming) or outgoing (Outgoing) packets. Encrypted Shows the number of IPSec protected incoming (Incoming) or outgoing (Outgoing) packets. Error Shows the number of incoming (Incoming) or outgoing (Outgo- ing) packets for which the processing led to errors. 17.3 ISDN/Modem bintec R200 Series...
  • Page 391: Current Calls

    Displays the duration of the current connection. Stack Displays the related ISDN port (STACK). Channel Displays the number of the ISDN B channel. Status Displays the state of the connection: null, c-initiated, ovl-send, oc-procd, c-deliverd, c-present, c-recvd, bintec R200 Series...
  • Page 392: Call History

    Displays additional information for PPP connections. Direction Displays the send direction: Incoming, Outgoing. Charge Displays the costs of the connection. Start Time Displays the time at which the call was made or received. Duration Displays the duration of the connection. bintec R200 Series...
  • Page 393: Interfaces

    Displays the interface text. Tx Packets Displays the total number of packets sent. Tx Bytes Displays the total number of octets sent. Tx Errors Shows the total number of errors sent. Rx Packets Displays the total number of packets received. bintec R200 Series...
  • Page 394: Wlan

    Fig. 173: -> -> Values in the list WLAN1 Field Description mbps Displays the possible data rates on this radio module. Tx Packets Shows the total number of packets sent for the data rate shown in mbps. bintec R200 Series...
  • Page 395 Displays the number of MSDUs successfully sent to multicast mitted successfully addresses (including the broadcast MAC address). Transmitted MPDUs Displays the number of MPDUs received successfully. Multicast MSDUs re- Displays the number of successfully received MSDUs that were ceived successfully sent with a multicast address. bintec R200 Series...
  • Page 396: Vss

    Invalid packets received Displays the number of frames received incompletely or with er- rors. 17.5.2 VSS In the Monitoring -> WLAN -> VSS menu, the current values and activities of the con- figured wireless networks are shown. bintec R200 Series...
  • Page 397 11, 5.5, 2 and 1 mbps; IEEE 802.11g/a: 54, 48, 36, 24, 18, 12, 9, 6 mbps. If the 5 GHz frequency band is used, the indication of 11, 5.5, 2 and 1 mbps is suppressed for IEEE 802.11b. VSS - Details for Connected Clients bintec R200 Series...
  • Page 398 Signal-to-Noise Ratio in dB is an indicator of the quality of the wireless connection. Values: • > 25 dB excellent • 15 – 25 dB good • 2 – 15 dB borderline • 0 – 2 dB bad. bintec R200 Series...
  • Page 399 11, 5.5, 2 and 1 mbps is suppressed for IEEE 802.11b. Rate Displays the possible data rates on this radio module. Tx Packets Shows the number of sent packets for the data rate. Rx Packets Shows the number of received packets for the data rate. bintec R200 Series...
  • Page 400: Glossary

    As a result of the internationally standardised Pulse Code Modula- mission tion (PCM), analogue voice signals are converted to a digital pulse flow of 64 kbps. Advantages: Better voice quality and less suscept- ibility to faults during analogue voice transmission. bintec R200 Series...
  • Page 401 If you include several bits in the mask, all these services are approved for activa- tion, while in the case of just one bit, it is just the one selected ser- bintec R200 Series...
  • Page 402 Access code PIN or password Access list A rule that defines a set of packets that should or should not be transmitted by the device. Access point An active component of a network consisting of wireless parts and bintec R200 Series...
  • Page 403 To transmit voice via the telephone, acoustic oscillations are conver- transmission ted to continuous electrical signals, which are transmitted via a net- work of lines (digital voice transmission). Answering machine You configure an analogue answering machine under "Terminal Type". bintec R200 Series...
  • Page 404 Your telephone rings. When you lift the receiver, a connection to the required sub- scriber is set up automatically. An internal "Callback on Busy" is de- leted automatically after 30 minutes. The external "Callback on bintec R200 Series...
  • Page 405 For special-feature telephones, the base station can also be used as a telephone, the handheld unit is charged using separate charging stations. Basic Rate Interface ISDN connection that includes two basic channels (B channels) each with 64 kbps and one control and signalling channel (D chan- bintec R200 Series...
  • Page 406 2 of the OSI model, are independent of higher-level protocols and transmit data packets using MAC addresses. Data transmission is transparent, which means the information contained in the data packets is not inter- bintec R200 Series...
  • Page 407 You can receive more information on this from your T-Com advisor. The exchange connects the calling subscriber with an external sub- scriber you have specified. bintec R200 Series...
  • Page 408 Performance feature in T-ISDN, PBXs and T-Net. A connection is set up automatically as soon as the Busy status on the destination connection ends. When the connection is free, this is signalled to the caller. As soon as the caller lifts the receiver, the connection is bintec R200 Series...
  • Page 409 Performance feature of a PBX. Telephone numbers are stored in a memory PBX and can be called from every connected telephone using a key combination. Certificate Certificate Channel Bundling Channel bundling CHAP Challenge Handshake Authentication Protocol Checksum field Frame Check Sequence (FCS) CLID Calling Line Identification bintec R200 Series...
  • Page 410 For information on programming your PBX using the tele- phone phone, please see the accompanying user's guide. Connection of ana- The performance features for analogue terminals can only be used logue terminals with terminals that use the MFC dialling method and that have an R bintec R200 Series...
  • Page 411 You can allocate each subscriber two different call allocations (call assignment Day and call assignment Night). With call assignments, it is also possible to forward the call to an external subscriber, so that you can be contacted at all times. bintec R200 Series...
  • Page 412 Direct dialling range See Extension numbers range Display and output In the configuration, it is possible to define storage of data records of connection data for specific terminals or all terminals. In the ex works setting, all in- bintec R200 Series...
  • Page 413 Domain of Interpretation Domain A domain refers to a logical group of devices in a network. On the Internet, this is part of a naming hierarchy (e.g. bintec.de). Door intercom Door intercom device. It can be connected to various PBXs. A tele- phone can be used to take an intercom call and open the door.
  • Page 414 To make an external call, first dial 0 and then the required emergency number. Encapsulation Encapsulation of data packets in a certain protocol for transmitting the packets over a network that the original protocol does not dir- ectly support (e.g. NetBIOS over TCP/IP). bintec R200 Series...
  • Page 415 It can be redialled later, even if you have called other numbers in the meantime. Extension For PBXs, describes the terminal (e.g. telephone) connected to the exchange. Each extension can access PBX services and commu- nicate with other extensions. bintec R200 Series...
  • Page 416 Software code containing all a device's functions. This code is writ- ten to a PROM (programmable read only memory) and is retained there, even after the device is switched off. Firmware can be up- dated by the user when a new software version is available (firmware upgrade). bintec R200 Series...
  • Page 417 Data transmission recommendation for ADSL. See also G.992.1 An- nex A and G.992.1 Annex B. G.992.1 Annex A Data transmission recommendation for ADSL: ITU-T G.992.1 Annex G.992.1 Annex B Data transmission recommendation for ADSL: ITU-T G.992.1 Annex G.SHDSL See G.991.2. bintec R200 Series...
  • Page 418 Both B channels of the ISDN connection are needed for the per- formance features "Call another person during a call" and "Speak al- ternately with two people" (brokering). As a result, you cannot be reached from outside or make external calls via your PBX's second bintec R200 Series...
  • Page 419 Infrastructure mode A network in infrastructure mode is a network that contains at least one access point as the central point of communication and control. In a network in infrastructure mode, all clients communicate with bintec R200 Series...
  • Page 420 IPoA IP over ATM ISDN Integrated Services Digital Network ISDN address The address of an ISDN device that consists of an ISDN number fol- lowed by further numbers that relate to a specific terminal, e.g. 47117. bintec R200 Series...
  • Page 421 International Standardization Organization Internet Service Provider International Telecommunication Union Key Escrow Stored keys can be viewed by the government. The US government, in particular, requires key storages to prevent crimes being covered up through data encryption. Local Area Network bintec R200 Series...
  • Page 422 "man-in-the-middle" is used instead of the intended key from the real communication partner. See HMAC-MD5 Multifrequency code dialling method Management Information Base Microphone mute Switch for turning off the microphone. The subscriber on the tele- phone cannot hear the discussions in the room. bintec R200 Series...
  • Page 423 MailBox to a terminal. The receipt of the message on the terminal is signalled e.g. by a LED. Network Address Translation NDIS WAN NDIS WAN is a Microsoft enhancement of this standards in relation to wide area networking (WAN). The NDIS WAN CAPI driver per- bintec R200 Series...
  • Page 424 Without connection. Connectionless operating state e.g. of the PCs. Online With connection. For example the state of a connection between a PC and data network or for data exchange between two PCs. Online banking Term for electronic banking e.g. using T-Online. bintec R200 Series...
  • Page 425 A point-to-point ISDN access includes a PBX number and an exten- sion numbers range. The PBX number is used to reach the PBX. A certain terminal of the PBX is then dialled via one of the extension bintec R200 Series...
  • Page 426 00. The internal telephone numbers 10, 11 and 20 are entered in team 00 ex works. External calls are therefore signalled with the internal telephone numbers 10, 11 and 20 for the connections entered in team 00. Point-to-point Point-to-point bintec R200 Series...
  • Page 427 PBX. In modern telephones, the R key triggers the hook flash function. This is required for use of performance features in T-Net such as inquiry/brokering and three-party conference. RADIUS Remote Authentication Dial In User Service RADSL Rate-Adaptive Digital Subscriber Line Remote access service bintec R200 Series...
  • Page 428 Remote, as opposed to local. Remote access Opposite to local access, see Remote. Remote CAPI bintec's own interface for CAPI. Remote diagnosis/re- Some terminals and PBXs are supported and maintained by T- mote maintenance Service support offices over the telephone line, which often means a service engineer does not have to visit the site.
  • Page 429 SAD is queried to determine how the packet is to be pro- cessed. SDSL Symmetric Digital Subscriber Line Server A server offers services used by clients. Often refers to a certain computer in the LAN, e.g. DHCP server. bintec R200 Series...
  • Page 430 ISDN telephone with a simplex function, this automatically activates the Loudspeaker function so that a conversation can take place immediately. Please see the information on the telephone user's guide on the simplex operation function. bintec R200 Series...
  • Page 431 B channels are available. So connection See ISDN Basic Rate Interface So interface Internationally standardised interface for ISDN systems. This inter- face is provided on the network side by the NTBA . On the user bintec R200 Series...
  • Page 432 SPID Service Profile Identifier Splitter The splitter separates data and voice signals on the DSL connec- tion. Spoofing Technique for reducing data traffic (and thus saving costs), espe- cially in WANs. bintec R200 Series...
  • Page 433 CLIP/CLIR: Calling line identification presentation/calling line identi- telephone number fication restriction (CLIR) Suppress B tele- COLP/COLR: Connected line identification presentation/connected phone number line identification restriction = Activate/suppress transmission of (COLR) called party's telephone number to caller. This performance feature bintec R200 Series...
  • Page 434 This connection option, which can be used with the existing telephone cable, costs less than two telephone connections but offers far greater quality and ease of use: Two independent lines, so that you can still make a bintec R200 Series...
  • Page 435 T-Service access enables you to have your PBX configured by T- Service. Give T-Service a call! Get advice and provide information on your configuration requirements. T-Service will then configure your PBX remotely without you having to do anything. Terminal Adapter TAPI Telephony Application Program Interface bintec R200 Series...
  • Page 436 Automatic Outside Line as a result of the ex works settings, you would first have to dial ** for a callback in order to obtain the internal dialling tone, and then bintec R200 Series...
  • Page 437 (menu-guided operation). UUS1 (User to User This function is only possible for system telephones and ISDN tele- Signalling 1) phones. V.11 ITU-T recommendation for balanced dual-current interface lines (up to 10 mbps). bintec R200 Series...
  • Page 438 Remote station that is reached over a WAN, e.g. ISDN. Web server Server that provides documents in HTML format for access over the Internet (WWW). Webmail T-Online service with which e-mails can be sent and received world- bintec R200 Series...
  • Page 439 X.31 ITU-T recommendation on the integration of X.25-compatible DTEs in ISDN (D channel). X.500 ITU-T standards that cover user directory services, see LDAP. Ex- ample: The phone book is the directory in which you find people on bintec R200 Series...
  • Page 440 You can search these databases to obtain information about individuals. X.509 ITU-T standards that define the format of the certificates and certific- ate queries and their use. bintec R200 Series...
  • Page 441: Index

    Allow deleting/editing all routing Category entries Certificate is CA Certificate Allowed Addresses Certificate Request Description Alternative interface to get DNS Certificate Revocation List (CRL) servers Checking Always on 195 , 200 , 252 , 259 Channel 138 , 379 bintec R200 Series...
  • Page 442 385 , 386 Drop untagged frames Data Traffic Priority Dropped Date DSA Key Status DSCP / TOS Value Default Ethernet for PPPoE Interfaces DTIM Period Duplicate received MSDUs Default Route 187 , 191 , 196 , 201 , bintec R200 Series...
  • Page 443 IP accounting message format IP Address 167 , 210 , 211 , 304 , 318 , 345 , 361 , 371 , 385 , 386 Garbage Collection Timer IP Address Assignment Gateway 151 , 316 , 345 bintec R200 Series...
  • Page 444 Local Certificate Maximum Retries Local Certificate Description 276 , Maximum Sources Maximum Time between Retries Local GRE IP Address Maximum TTL for Negative Cache Local Hostname Entries Local ID Maximum TTL for Positive Cache Local ID Type Entries bintec R200 Series...
  • Page 445 151 , 167 , 210 , 211 , 253 , Port Name Port Usage Network Name (SSID) Port VLAN Identifier (PVID) Network Type Portforwardings New Date Positive Cache New File Name PPPoE Ethernet Interface New Time PPPoE Interfaces for Multilink Node Name bintec R200 Series...
  • Page 446 Received MPDU that couldn't be de- Secondary Timeserver crypted Security Algorithm Recent System Logs Security Mode Recipient Segment Pending Requests Region Segment Send Interval Remote GRE IP Address Select action Remote Hostname Select file Remote ID Select interface bintec R200 Series...
  • Page 447 153 , 175 Time Update Policy Source IP Address 153 , 336 , 339 , Timeout 112 , 343 Timestamp Source Location 330 , 356 Total Source Port Traceroute Test Source Port Range Traffic Shaping Specify bandwidth Transfer Mode bintec R200 Series...
  • Page 448 Update Interval 313 , 372 Update Path Update system time from ISDN Zero Cookie Size Update Timer Update URL UPnP Status UPnP TCP Port Upstream Uptime URL Path Depth URL/IP-Address Usage Type Use key Use PFS Group bintec R200 Series...

This manual is also suitable for:

R232awR232bR232bw

Table of Contents