Compex, Inc. may make improvements and/or changes to the product and/or specifications of the product described in this manual, without prior notice. Compex, Inc will not be liable for any technical inaccuracies or typographical errors found in this guide. Changes are periodically made to the information contained herein and will be incorporated into later versions of the manual.
FCC NOTICE This device has been tested and found to comply with the limits for a Class B digital device, pursuant to Part 15 of the FCC Rules. These limits are designed to provide reasonable protection against harmful interference in a residential installation.
Product Name: Compex Wireless-G 54Mbps XR Managed Access Point (compatible with Compex PoE Plus) Model No.: Compex WPP54G conforms to the following Product Standards: Radiated Emission Standards: ETSI EN 300 328-2: July 2000; FCC: 47 CFR Part 15, Subpart B, ANSI C63.4-1992; 47 CFR Part 15, Subpart C (Section 15.247), ANSI C63.4-1992.
The warranty information and registration form are found in the Quick Install Guide. For technical support, you may contact Compex or its subsidiaries. For your convenience, you may also seek technical assistance from the local distributor, or from the authorized dealer/reseller that you have purchased this product from.
About This Document The product described in this document, Wireless Access Point, Compex WPP54G is a licensed product of Compex Systems Pte Ltd. This document contains instructions for installing, configuring and using Access point. It also gives an overview of the key applications and the networking concepts with respect to the product.
In this document, special conventions are used to help and present the information clearly. The Wireless Access Point with PoE is often referred to as WPP54G or access point or AP in this document. Below is a list of conventions used throughout.
Page 9
CHAPTER 4: COMMON CONFIGURATION ......34 Management Port Setup..................34 Setting up your LAN ....................35 To view the active DHCP leases................38 To reserve specific IP addresses for predetermined DHCP clients....39 WLAN Setup ......................42 To configure the Basic setup of the wireless mode ......... 43 To configure the Security setup of the wireless mode........
Page 10
CHAPTER 7: ADVANCED CONFIGURATION ......121 Routing........................121 To configure Static Routing of Compex WPP54G .......... 122 NAT..........................123 To configure Virtual Servers based on De-Militarized Zone Host ....124 To configure Virtual Servers based on Port Forwarding ........ 126 To configure Virtual Servers based on IP Forwarding ........129 Bandwidth Control....................
Page 11
System Clock Setup .....................164 Firmware Upgrade ....................165 Backup or Reset Settings ..................167 Reboot System...................... 170 Change Password....................171 Logout ........................172 Using the HELP menu ................... 173 Get Technical Support ..................173 About System......................174 APPENDIX I: FIRMWARE RECOVERY ........175 APPENDIX II: TCP/IP CONFIGURATION ........177 For Windows 95/98/98SE/ME/NT ................
Repeater Mode. Which makes it suitable for a wide variety of wireless applications, including long-distance deployments. Designed with an external SMA connector, the WPP54G can be used for a wide variety of wireless applications and provides a wider coverage for your network.
Page 13
LAN, while maintaining full access to the establishment’s resources. WPP54G also incorporates unique features from Compex such as – the Parallel Broadband feature that allows bandwidth aggregation and fail- over redundancy capability. It uses Spanning Tree Protocol (STP) that provides the wireless network with extra redundancy and reliability.
Compex WPP54G has been designed for high performance and offers a rich suite of features, with which you should acquaint yourself to be able to exploit your Compex WPP54G’s full potential. • & • & Point-to-Point and Point-to-MultiPoint communication between different buildings enables you to bridge wireless clients that are kilometres apart while unifying the networks.
Page 15
• • NetPassage WPP54G supports HTTPS (SSL) in addition to the standard HTTP. HTTP (SSL) features additional authentication and encryption for secure communication. •...
The access point is versatile in the sense that it may operate in six different types of modes: Access Point Mode, Client Mode, Wireless Routing Client, Gateway Mode, Wireless Adapter Mode, Transparent Client Mode and Repeater Mode. This section presents a brief outline of the different network applications that can be accommodated through the different modes of the access point.
- allowing them to communicate with all devices connected at the Ethernet port of the NetPassage WPP54G. In the example above, the workgroup PCs will be able to access the printer connected to the access point in Access Point Client mode.
An application of this mode would be for the Ethernet port of the Wireless Routing Client to be used for connection with other devices on the network while access Internet would achieved through wireless communication with wireless ISP. The above illustration describes how this mode operates. Optional additional feature: Point-to-Point connection in this operation mode is also supported if you specifically wish to connect with an AP only.
Or put it more simply, Broadband Internet sharing in a wireless network! Since the access point supports several types of broadband connections, the first step in setting up the access point as a Broadband Internet Gateway is to identify the type of broadband Internet access you are subscribed to.
Page 20
Static IP address Use this type of connection if you have subscribed to a fixed IP address or to a range of fixed IP addresses from your Internet Service Provider. Dynamic IP address When powered using this type of connection, the access point requests for an IP address which will be automatically assigned to it by your Internet Service Provider.
Similarly to the Access Point Client mode, the access point used in this mode is able to communicate wirelessly with another access point to perform transparent bridging between two networks. However here, the Wireless Adapter connects a single wired workstation only. No client software or drivers are required while using this mode.
This mode is generally used for outdoor connections over long distances, or for indoor connections between local networks. • Current Compex model that provide RootAP support are: WP54x series; WPP54x series; WP18; and NP18A. For newer models, please contact your Compex supplier or visit the Compex web site.
Page 23
Difference Between other client modes and Transparent Client Mode Transparent Client Mode Other client modes Connectivity with RootAP-supported Connectivity with any standard APs. Compex APs. All devices connected to the Devices connected to the Ethernet Ethernet ports use a common MAC ports flow through freely and...
The access point has a built-in Repeater Mode to extend the range and greatly enhance the performance of the wireless network by allowing communications over much greater distances. In Repeater Mode, the access point regenerates network signals to extend the range of the existing network infrastructure.
TCP/IP protocol is installed and IP address parameters are properly configured on all your network’s nodes You can install your Compex WPP54G either onto the wall or mount it on a pole. The two mounting methods will be described as shown below.
4 holes into the wall. Next, secure the brackets to the wall as shown in the figure on the right. Align the main unit of Compex WPP54 with the bracket to attach them as shown in the figure.
Page 27
Connect one end of an RJ45 Ethernet cable to the LAN OUT port of the Injector and the other end to Ethernet Port 1 of Compex WPP54. Maximum length RJ45 Category 5 cable is 100 metres. Next, connect your SMA antenna (not provided) to the SMA reverse connector.
Page 28
PC you will use to configure the WPP54. Connect the power adapter in the Compex PoE kit (not provided) to the main electrical supply and the power plug into the socket of the injector.
Place the straps through the slots in the bracket and then around the pole. Tighten the straps. Align the main unit of Compex WPP54 with the bracket to attach them as shown in the figure.
Page 30
Connect one end of an RJ45 Ethernet cable to the LAN OUT port of the Injector and the other end to Ethernet Port 1 of Compex WPP54. Maximum length RJ45 Category 5 cable is 100 metres.
Page 31
PC you will use to configure the WPP54. Connect the power adapter in the Compex PoE kit (not provided) to the main electrical supply and the power plug into the socket of the injector.
2 to 254, so that it is in the same subnet as Access point. Compex has developed a powerful uConfig utility that has been designed to give you direct access to the Web interface. Insert the Product CD into your CD-ROM drive. The CD will run automatically.
Page 33
When the utility has been installed, double-click on the icon. The following screen will appear, click on the button to proceed. Select in the section and click on button. To retrieve and display the latest device(s) in the list, click on the button.
Page 34
Do not exit the uConfig program while accessing to the web-based interface. This will disconnect you from the device. Click on the button to proceed. At the login page, press the button to enter the configuration page. The default password is “password”.
Page 35
You will then reach the home page of your access point’s web-based interface.
For this method, you need to assign an IP address to your PC so that it belongs to the same subnet as your access point. In this example, we are using Windows XP for illustration. For Windows 98/98SE/2000/NT/ME, kindly refer to Appendix II “TCP/IP Configuration”.
Page 37
Highlight and click on the button. Select the radio button for . Enter the IP Address and Subnet Mask as 192.168.168.x and 255.255.255.0, where x can be any number from 2 to 254, except 1. In this example, we are using 192.168.168.160 as the static IP Address.
Page 38
Click on the button to close all windows. Next, in order to check if the IP address has been correctly assigned to your PC, go to menu, , select and type the command ipconfig/all. Your PC is now ready to configure your access point. Launch your Web browser.
Page 39
Open the tab and in the section, disable all the option boxes. Click on the button to update the changes. At the bar, enter http://192.168.168.1 and press on your keyboard. At the login page, click on the button to enter the configuration pages.
Page 40
You will then reach the home page of your access point’s Web interface.
This chapter illustrates the following features, which are available in ALL the operating modes of your access point, unless stated otherwise. • • • • • • • • • • • • • • This section shows you how to customize the parameters of your access point to suit the needs of your network.
You can opt to adjust the default values of your access point and customize them to your network settings. Click on from the menu. In the page, refer to the table below to replace the default settings of Access point with appropriate values to suit the needs of your network.
Page 43
This table describes the parameters that can be modified in the Management Port Setup page. Parameters Description IP Address When the DHCP server of the access point is enabled (unless you set a different DHCP Gateway IP Address), this LAN IP Address would be allocated as the Default Gateway of the DHCP client.
Page 44
Parameters Description DHCP Gateway IP Though usually, the DHCP server also acts as the Default Address Gateway of the DHCP client, the access point gives you the option to define a different Gateway IP Address, which will be allocated as the Default Gateway IP of the DHCP client. The DHCP client will thus receive its dynamic IP address from the access point but will access to the Internet or to the other LAN through the Default Gateway defined by the DHCP Gateway IP...
The following will guide you to a page display of the active IP address leases that have been allocated by the built-in DHCP server of Access point. Click on from the menu. Go to the section, click on the button. The DHCP Active Leases table displays: •...
how to set the system clock. Making an IP address reservation lets you inform the DHCP server to exclude that specific address from the pool of free IP addresses it draws on for dynamic IP address allocation. For instance, if you set up a publicly accessible FTP/HTTP server within your private LAN, while that server would require a fixed IP address, you would still want the DHCP server to dynamically allocate IP addresses to the rest of the PCs on the LAN.
Page 47
Fill in: The host portion of the IP Address to reserve. The Hardware Address, in pairs of two hex values Press the button to make your new entry effective. page will then be refreshed to illustrate the currently reserved IP addresses.
Page 48
If you do not need the DHCP server to reserve an IP address anymore, you can delete the DHCP Server Reservation. Click on the reserved IP address that you wish to delete, e.g. 192.168.168.20. Click on the button. table will then be refreshed to reflect your changes.
This section shows how to perform the following functions: Basic: This function performs a basic setup of the operation modes. Security: This function performs data encryption and protection for the access point. Kindly refer to Chapter 5 on WLAN Security for details. Advanced: This function furthers the basic configuration of the access point by setting the system’s additional Long Distance Parameters.
The following will guide you to configure the basic setup of the wireless mode you have selected. Click on from the menu. You will see the sub- menus expanded under . Click on The default operating mode of Access point is the Access Point mode. If you wish to change the current mode of your access point, click on , select your and click on the...
Page 52
Enter the parameters in their respective fields, click on the button and reboot your device to let your changes take effect. Note that the pages for the modes are different. Example: page for Example: page for This table describes the parameters that can be modified in the page.
Page 53
Parameters Description The Current Mode The default operating mode of the access point is the Access Point mode. The access point can operate in 6 modes: • Access Point Mode • Client Mode • Wireless Routing Client • Gateway Mode •...
Page 54
Wireless Profile A selection of network environment types in which to operate the access point: • • This mode supports wireless B clients with data rates of up to 11Mbps in the frequency range of 2.4GHz. • • This mode supports both wireless B and G clients. •...
Page 55
Act as RootAP The access point will connect with one or multiple clients to create a point-to-point and point-to-multi-point connections network with 2 or more APs. This connection method is fully compliant with 802.1h standards. VLANID Select and specify the VLANID. This is a number to identify the different virtual network segments to which the network devices are grouped.
Page 56
In the page, click on the button. provides a list of the neighbouring access points detected, (channels), (Authentication), (Algorithm) used, and the strength of the received.
Page 57
To connect the WPP54 -client to one of the access points detected: Select the radio button corresponding to the access point you want to connect to. Click on the button to effect the change and return to the setup page. Click on the button to update this screen.
Page 58
NOTE The purpose of using Site Survey is to scan and display all access points based on the current security setting of your access point. For instance, the following information supplied by the Site Survey according to the security setting is explained: •...
Page 59
To view the connection status when WPP54 -client is linked to another access point, click on the button. table illustrates the following data:...
Page 60
This table describes the parameters that can be viewed from the page. Parameters Description State Refers to the MAC address of the BSS (AP to which the WPP54 -client is connected). Current Channel The channel that is being presently used for transmission. Tx Rate The rate of data transmission in Mbps.
Page 61
Channel Survey provides a list of all channels that are supported by the access point. This feature will show relative interference of all channels and recommend the least congested channel. When the users want to scan for and find the best channel, they can use Channel Survey.
Page 62
The values indicate the level of interference. The higher the value, the higher the interference. If the value is zero, there is no interference. To connect the WPP54 -client to one of the channels detected, select the radio button corresponding to the channel you want to connect to. Click on the button to effect the change and return to the setup page.
Page 63
This table describes the read-only parameters of all channels that can be viewed from the Channel Survey page. Parameters Description Freq Refers to the frequency of the channel at which your access point is operating. Channel Refers to the channel of the access point being used for transmission depending on its origin of country.
Page 64
The Antenna Alignment feature in the access point is designed to precisely align the antenna over such a long distance so that the connectivity communication between your access point and another remote or neighbouring access point could be improved as indicated by higher signal strength.
Page 65
NOTE If no MAC address is entered, the Antenna Alignment tool will make use of the SSID to align the antenna. Please make sure that the correct SSID is entered. If more than one access point (AP) share the same SSID, the Antenna Alignment tool will show the strongest signal AP.
Kindly refer to Chapter 5 on WLAN Security for details on setting the different security modes of the access point. The following will guide you to configure the advanced setup of the wireless mode you have selected. Click on from the menu to expand into the four sub-menus.
Page 67
This table describes the parameters that can be modified in the page. Parameters Description Beacon Interval The Beacon Interval is the amount of time between (Only in Access beacon transmissions. A beacon is a guidance signal Point mode) sent by the access point to announce its presence to other devices in the network.
Antenna Control The Antenna Control function allows you to control whether to use the: • External antenna (Default) • Internal antenna NOTE The values illustrated in the examples are suggested values for their respective parameters. The following shows you the information on the wireless device that is connected to the WLAN.
Page 69
To check the details on individual wireless client, click on the MAC Address in the WLAN Station List. The following screen will show the statistics of the selected wireless client.
Page 70
Click on from the menu. You will see the sub- menus expanded under . Click on mode, you are not allowed to view other wireless clients’ statistics. To view other wireless clients information, you need to change to Access Point mode.
Page 71
Click on from the menu. You will see the sub- menus expanded under . Click on...
Page 72
Click on from the menu. You will see the sub- menus expanded under . Click on To view the statistics information if a wireless client connected to the AP, click on the MAC address of that client.
Page 73
Click on from the menu. You will see the sub- menus expanded under . Click on Click on the button to get the latest information on the wireless clients in the wireless network. To check the details on individual wireless client, click on the MAC Address in the lists.
(only supported by Wireless Routing Client and Gateway) A correct WAN Setup allows you to successfully share your Internet connection among the wired and wireless clients of the access point. To do so, you need to identify the type of broadband Internet access you are subscribed to. If you are using : •...
Page 75
Step 3: Simply select and hit the button. Please remember to click under and hit button to let the settings take effect. Note: Additional configuration might be required before your ISP will allocate an IP address to the access point. Certain ISPs require authentication through a DHCP Client ID before releasing a public IP address to you.
Page 76
Step 5: On the following screen, key in the your ISP assigned DHCP Client ID as (You may also like to key in a preferred person and the the access point). Click the button to complete. Please remember to click under and hit button to let the settings...
Page 77
WAN Setup - Cable Internet with Static IP Assignment If you have an ISP that leases a static WAN IP for your subscription, you will need to configure your access point’s WAN type accordingly. For example, if the ISP provided you with the following setup information, you can set up your WAN as described below: IP Address 203.120.12.240...
Page 78
WAN Setup - ADSL Internet using PPP over Ethernet (PPPoE) If you subscribe to an ADSL service using PPP over Ethernet (PPPoE) authentication, you can set up your access point’s WAN type as follows. For example, you may configure an account whose username is ‘guest’ as described below: Step 1: Under...
Page 79
You can limit the maximum size a packet can be in a network by setting the (Maximum Transmissible Unit). Click the Button in has a range of 1 to 1492. Enter the and click...
Page 80
WAN Setup – ADSL Internet using PPTP If you subscribe to an ADSL service using Point-to-Point Tunneling Protocol (PPTP) authentication, you can set up your access point’s WAN type from the steps that follow. For example, if the ISP provided you with the following set up information, you can set up your WAN as described below: IP Address 203.120.12.47...
Telnet allows a computer to remotely connect to the NetPassage WPP54 (Command Line Interface) for control and monitoring. SSH (Secure Shell Host) establishes a secure host connection to the NetPassage WPP54 CLI for control and monitoring. Telnet/SSH Setup Click Telnet/SSH Setup from the CONFIGURATION menu.
Page 82
To enable Telnet Server: Select Telnet Server Enable and enter the Port Number. To enable SSH server: Select SSH Server Enable and enter the Port Number. Click Apply. To add user: 1. Click Add button. 2. In Add User Entry Page, enter User Name, Password, and specify whether user is granted permission to Read Only or Read/Write.
Page 83
To Delete User: 1. Select which user to Delete. 2. Click Delete. User Management list refreshes to update users. To Refresh User Management list: Click Refresh to refresh User Management list.
Telnet CLI (Command Line Interface) The user may connect to the CLI (Command Line Interface) via a TELNET session to the default IP, 192.168.168.1. This section uses Microsoft TELNET command for instruction. You may use any TELNET client. Connecting to CLI (Command Line Interface) via TELNET Connect to CLI (Command Line Interface) with the following command at DOS prompt.
SSH CLI (Secure Shell Host Command Line Interface) SSH is designed and created to provide the best security when accessing another computer remotely. Not only does it encrypt the session, it also provides better authentication facilities and features that increase the security of other protocols. It can use different forms of encryption and ciphers.
Page 86
SSH CLI has a command line interface like shown below for example. NOTE Please refer to Appendix V for the list of commands available at the console.
NetPassage WPP54G supports HTTPS (SSL) in addition to the standard HTTP. HTTPS (SSL) features additional authentication and encryption for secure communication. Web Management Setup Select Web Management Setup from the CONFIGURATION menu. Select whether to set web server to HTTP or HTTPS (SSL) mode.
Simple Network Management Protocol (SNMP) is a set of communication protocols that separates the management architecture from the architecture of the hardware devices. Step 1: Click on from the menu. Step 2: Select from the drop-down list. The default is set to public while the default is private.
(Only available in Access Point, Transparent Client, and Repeater Modes) Spanning Tree Protocol (STP) is a link management protocol that helps to prevent undesirable loops occurs in the network. For an Ethernet network to function properly, only one active path can exist between two stations. If a loop exists in the network topology, duplication of messages will occur and this might confuse the forwarding algorithm and allow duplicate frames to be forwarded.
Page 90
Spanning-Tree Protocol operation is transparent to end stations, which are unaware whether they are connected to a single LAN segment or a switched LAN of multiple segments. The path with the smallest cost will be used and extra redundant paths will be disabled.
Page 91
Scenario #1 – (No STP) Referring to the illustration below, if the Spanning Tree Protocol (STP) is not implemented in a network, all clients (Notebook#1, #2, #3 & #4,) can access to one another, resulting in low level of data security. Due to the redundant paths found in this network, broadcast packets will be duplicated and forwarded endlessly resulting in a broadcast storm.
Page 92
Scenario #2 – (With STP) When STP is enabled, extra redundant network paths between APs will be disabled, hence preventing multiple active network paths in-between any two APs. If one of the APs is down, the STP algorithm will reactivate one of the redundant paths so that the network connection will not be lost.
Page 93
Click on from the menu. Select from the radio button. Fill in the fields, and click on button to update the changes. Priority: (Default: 32768, Range: 0 – 65535) This is the relative priority. The lowest priority will be elected as the root. Hello Time: (Default: 2, Range: 1 –...
MAC Filtering acts as a security measure by controlling the users accessing to the network through their MAC address. Each WLAN or radio card supports up to 16 virtual access points and has its own MAC address listing. The client MAC addresses entries can be set apply to all, or to only selected virtual access points.
Select from MAC Address Filtering page displays. In this page you may also set the MAC Filtering Status to for access points and set the Policy to either addresses. MAC Filtering set to with Policy to only the MAC addresses in the MAC Filter Address List and deny all other MAC addresses.
Page 96
MAC Filter Address List page displays. Click the button. Add MAC Address page displays.
Page 97
Enter the MAC Address of the client in the format xx-xx-xx-xx-xx-xx, where x can take any value in the range 0-9 or a-f. Enter the Comment. This describes the MAC Address you have entered. To apply to all virtual access points: Check To apply to specific virtual access point: Select the checkbox of the corresponding Click the button.
NOTE Please reboot to effect all changes and new MAC address entries. Select from MAC Address Filtering page displays. Click (This displays the MAC Address List of the radio card.)
Page 99
MAC Filter Address List page displays. Select the checkbox of the MAC address you wish to delete. Click the button. MAC Filter Address List page displays with updated MAC Address List.
Select from MAC Address Filtering page displays. Click for the corresponding access point.
Page 101
MAC Filter Address List page displays. Select the checkbox of the MAC address you wish to delete. Click the button. MAC Filter Address List page displays with updated MAC Address List.
Select from MAC Address Filtering page displays. Click MAC Filter Address List page displays. Select the MAC address to edit.
Page 103
The Edit MAC Address page displays. Edit the MAC address settings accordingly. Click MAC Filter Address List page displays with updated MAC Address List.
This section illustrates how to make your WLAN more secure. All the nodes in your network MUST share the same wireless settings to be able to communicate. We will illustrate how to configure each type of security mode individually. To start with, follow the common preliminary steps described below to select the most appropriate security approach for protecting your wireless communications.
The guidelines below will help you to set up your access point for using WEP. At the WEP Setup page,...
Page 106
Specify the , by selecting either: • • • • Select the from the pull down menu: • • • • • • • • The access point lets you define up to four different transmission keys. It defines a set of shared keys for network security. You must enter at least one WEP key to enable security using a shared key.
(Only available in Access Point mode) The guidelines below will help you to set up the access point for using WPA- Personal. Please follow the steps below if you have activated WPA-Personal, WPA2-Personal or WPA-Personal-AUTO security modes. At the page, Specify the , by selecting either: •...
Page 108
For WPA-Personal Set the WPA replaces WEP with a strong encryption technology called Temporal Key Integrity Protocol (TKIP) with Message Integrity Check (MIC). For WPA2-Personal Set the Advanced Encryption Standard (AES) is a stronger symmetric 128-bit block data encryption technique. AES is a requirement of WPA2 under the IEEE 802.11i standard.
(Only available in Access Point mode) The guidelines below will help you to set up the access point for using 802.1x/RADIUS. At the IEEE 802.1x Setup page, Key in the IP address of the in your WLAN. You can optionally add in the IP address of a , if any.
Page 110
Enter the in the field provided. By default, the is set as seconds. You may leave this value as its default setting. Select the of each encryption key: • • 10 hexadecimal or 5 ASCII Text • • 26 hexadecimal or 13 ASCII Text Press the button and reboot your system, after which your settings will become effective.
(Only Access Point mode supports WPA2-Enterprise and WPA-Enterprise-AUTO) The guidelines below will help you to set up the access point for using WPA- . Please follow the steps below if you have selected the Enterprise WPA or WPA1- , WPA2- or WPA- -AUTO.
Page 112
By default, the value for . You can leave this value as it is. This value must be set to be the same as the one in the RADIUS server. Enter the used to validate client-server RADIUS communications. Select the of each encryption key: •...
Page 113
Enter the This is the length of time after which the access point will automatically generate a new shared key to secure multicast/broadcast traffic among all stations that are communicating with it. By default, the value is 600 seconds. Press the button and reboot your system, after which your settings will become effective.
This section illustrates how to configure the wireless extended features. To start with, follow the common preliminary steps described below. Virtual AP implements mSSID (Multi-SSID) whereby a single wireless card can be setup with up to 16 virtual AP connections with different SSIDs or BSSID (Basic Service Set Identifier) and security modes.
Page 115
Follow these steps to setup Virtual AP. Virtual AP Click on WLAN Setup (a/b/g) from the CONFIGURATION menu. Select Virtual AP. Virtual AP List page displays. • Click Apply to register changes. • Click Clear to clear Virtual AP List. •...
When there is more than one AP with the same SSID, the Preferred APs function allows you define the MAC address of the APs in order of preference. The MAC address at the top of the Preferred APs list has the highest connection preference, and the MAC address at the bottom has the lowest connection preference.
This setup allows the access point to calculate and display suggested values for certain parameters to use to ensure that wireless communication takes place efficiently and effortlessly between physically distant APs. The following steps demonstrate how to configure the Long Distance Parameters. From under Configuration, click on , which shows the...
Page 118
As illustrated on the Setup page, the feature is disabled by default. Select from the pull down menu. The access point can automatically calculate the values of the parameters to input based on the distance between your access point and the other wireless device.
Page 119
You can enter the parameters according to the recommended values in the pop-up window, click on the button to update the changes. This table describes the parameters that can be modified in the Long Distance Parameters page. Parameters Description Outdoor The Outdoor parameter is disabled by default.
& & You can implement Point-to-Point connection by simply setting one access point as RootAP in Access Point mode and setting the other access points to Transparent Client mode. You can set a root access point and a transparent client to allow point-to-point communication between different buildings and enable you to bridge wireless clients that are kilometres apart while unifying the networks.
Page 121
Select , click on the button and reboot your device to let your changes take effect.
Page 122
Follow these steps to setup Transparent Client/s. Click on from the menu. You will see the sub- menus expanded under . Click on Ensure that is set to To change , please refer to: Common Configuration – WLAN Setup - To Configure the Basic Setup of the Wireless Mode. Repeat Transparent Client step to add more points to the Point-to-MultiPoint connection.
A Repeater AP can connect to an AP only if the option Act as RootAP is set or checked in the AP setup. Example: Network diagram with 2 repeater hops. NOTE As bandwidth degrades with every repeater hop it is recommended that a limit of 4 hops is not exceeded.
Page 124
NOTE DO NOT physically connect your PC to the server via Ethernet cable in addition to the wireless connection, as doing so will create a loop that is not prevented by wireless loop preventing feature.
Page 125
Follow these settings to setup the root AP. Click on from the menu. You will see the sub- menus expanded under . Click on Ensure that is set to To change , please refer to: Common Configuration – WLAN Setup - To Configure the Basic Setup of the Wireless Mode. Select Click...
Page 126
Follow these settings to setup the repeater. Click on from the menu. You will see the sub- menus expanded under . Click on Ensure that is set to To change , please refer to: Common Configuration – WLAN Setup - To Configure the Basic Setup of the Wireless Mode.
Page 127
Options for defining the root AP: • Accept the default (root AP’s SSID) • Enter the • Check and enter the (root AP’s MAC address) Apply...
(only supported by Wireless Routing Client and Gateway) The access point allows the network administrator to add a static routing entry into its routing table so that the access point can re-route IP packets to another network access point. This feature is very useful for a network with more than one access point.
In this network, the main office of subnet 192.168.168.0 contains two routers: the office is connected to the Internet via the access point (192.168.168.1) and to the remote office via NetPassage 16A (192.168.168.254). The remote office resides on a subnet 192.168.100.0. You may add a static routing entry into the access point’s routing tables so that IP packets from the clients in the main office with a destination IP address of 192.168.100.X (where X is any number from 2 to 254) will be routed to the...
When the entry is added, it is reflected in the (only supported by Wireless Routing Client and Gateway) The basic purpose of NAT is to share a single public IP address when there are multiple PCs in the private network by using different TCP ports to identify requests coming from different PCs.
Important: Do NOT disable NAT unless absolutely necessary. Disabling NAT will disable broadband Internet sharing effectively. Having gone through the NAT Technology Primer on the Product CD, you would now have a good understanding of how DMZ works to make a specific PC in an NAT-enabled network directly accessible from the Internet.
Page 132
Step 3: On the page, you have to define the of the DMZ host. In this example, we keyed in the private IP address for the PC we wish to place within the DMZ : 192.168.168.55 (Enter as the and it will disable DMZ). Remember click button.
Virtual Server based on Port Forwarding is implemented to forward Internet requests arriving at the access point’s WAN interface, based on their TCP ports, to specific PCs in the private network. If you require more information on this function, please refer to the NAT Technology Primer on the Product CD. Step 1: Under the command...
Page 134
Step 4: On the following screen, you can set up a Virtual Server for a type by selecting from a drop-down menu OR you can define a For a more detailed explanation, please refer to the NAT Technology Primer found on the Product CD. Technology Primer Learn more from our NAT...
Page 135
Known Server Server Type Select from the drop-down list of known server types: (HTTP, FTP, POP3 or Netmeeting). Private Specify the LAN IP address of your server PC running within Address the private network. Public IP Select All, Single, or Range from the dropdown list. From Enter the beginning of the range.
When you have subscribed for more than one IP address from your ISP, you may define Virtual Servers based on IP Forwarding for which all Internet requests, regardless of ports, are forwarded to defined computers in the private network. If you require more information of its function, please refer to the NAT Technology Primer on the Product CD.
Page 137
Step 5: page will reflect your new addition. NOTE For step 3 above, please ensure that you have subscribed to the Public IP Address you intend to forward from.
(only supported by Wireless Routing Client and Gateway) The access point is designed to support simple bandwidth management that makes use of the Bandwidth Control. This feature gives the administrator the choice to manage the bandwidth control of subscribers in case of massive data transfer that causes slowdown problems when surfing the Internet.
Step 2: By default, is disabled. Select , followed by clicking button. The access point can allow you to limit the entire throughput by configuring the Upload / Download Bandwidth Setting option. These values should be set to a positive integer indicating the maximum number of kilobytes transferred per second that will be allowed.
The access point can allow you to limit the LAN user’s throughput by configuring the Bandwidth Control Rule. Step 1: Under the command menu, click on select Step 2: Click to create the bandwidth rule for LAN user. Step 3: Click to create the rule for LAN user’s bandwidth control.
Page 141
This table describes the parameters that can be modified in the Add Bandwidth Control Entry page. Parameters Description Rule Name The rule describes the type of bandwidth traffic to be controlled and of a specification of what action to take when that bandwidth traffic is encountered.
(only supported by Wireless Routing Client and Gateway) Remote management is supported on the access point. With this feature enabled, you will be able to access the access point’s web-based configuration pages from anywhere on the Internet and manage your home/office network remotely.
(only supported by Gateway) The access point is equipped with the exclusive Parallel Broadband technology to provide scalable Internet bandwidth with Load Balancing and Fail-Over Redundancy. By installing multiple units of the access point cascaded using Parallel Broadband, you may balance the Internet traffic generated from your private network over multiple broadband connections - providing the network with aggregated bandwidth! In the event of a particular broadband connection failing, the access point in cascade will use the remaining functional...
To learn more about Parallel Broadband, please read the whitepaper at www.cpx.com or www.compex.com.sg. Before you begin, ensure that each of the access point within the network is properly configured to connect to its individual broadband Internet account. Then ensure that either: •...
Important: If you have only one unit of the access point, you DO NOT need to implement the Parallel Broadband feature for broadband Internet sharing. The access point provides this feature to notify you by email when there is a change in the WAN IP address that was supplied to you earlier.
Page 146
• Email address of Receiver: This is the email address of the receiver to whom the message would be sent. • IP address of Email Server: This is the IP address of the SMTP server through which the message would be sent out.
(only supported by Wireless Routing Client and Gateway) If you use a notebook for work at the office, it is probable that you also bring it home to connect to the Internet and retrieve emails or surf the web. Since it is most likely that your office’s and your home’s broadband-sharing network subnets are differently configured, you would have to struggle with reconfiguring your TCP/IP settings each time you use the notebook in a different...
Page 148
Step 1: Under the command menu, click on Step 2: You may then choose to Static Address Translation here, followed by clicking the button. (Note: SAT is disabled by default)
(only supported by Wireless Routing Client and Gateway) When you enter a URL in your Internet browser, the browser requests for a name-to-IP address translation from the Domain Name System (DNS) servers to be able to locate the web server hosting the website you want to access.
Page 150
NOTE For Internet access, please do NOT leave the DNS Server field of the PC’s TCP/IP Properties blank. Simply key in any legal IP address for it (e.g. 10.10.10.10) even though you do not have the exact DNS IP address.
Step 1: Under the command menu, click on Step 2: Simply choose Step 3: Complete the setup by clicking the button. It is difficult to remember the IP addresses used by computers to communicate on the Internet. It gets even more complicated when ISPs change your public IP address regularly, as is the case when the Internet connection type is Dynamic IP or PPPoE with Dynamic IP.
Step 1: Under the command menu, click on Step 2: You may then choose to Dynamic here, followed by clicking the button. (Note: Dynamic DNS is disabled by default)
Step 1: Under the command menu, click on Step 2: If you have already created a list earlier, click on the button to update the list. Step 3: To add a new Dynamic DNS to the list, click on the Add button and you will see the page appear.
Page 154
To select 2MyDNS – Dynamic DNS Service Provider as DDNS Service Provider Step 1: Under the column in the check the radio button next to the – – . Then click on button to proceed. Step 2: Enter your Step 3: checkbox is ticked by default.
Page 155
would allowed multiple identities. example, register: users looking for www.mydomain.2mydns.net ftp.mydomain.2mydns.net can still reach your hostname. Step 5: (Optional) In the Mail Exchanger field, enter the Static WAN IP address mail server configured to handle email for your domain. Select to enable this service.
Page 156
To select DtDNS as DDNS Service Provider Step 1: Under the column in the table of check the radio button next to the . Then click on the button to proceed. Step 2: Enter your Step 3: checkbox is ticked by default.
Page 157
Step 5: In our example, while the new domain name, is being added to the list, the message ‘Waiting in queue…” will be displayed under the column of the table.
• This chapter describes the security configuration mainly found in the Wireless Routing Client and Gateway modes. As part of the comprehensive security package found on the access point, you may perform IP packet filtering to selectively allow/disallow certain applications from connecting to the Internet.
Security Configuration Step 4: Click on the button and you will be able to define the details of your from the screen on the right. Enter Rule Name for this new 4a). packet filtering rule. example, BlockCS 4b). From the IP Address drop down list, select whether to...
Page 160
Security Configuration Here, you need only specify the source port in the (From) field. IP port You may here, leave both, the (From) as well as the (To) fields, blank. Here, the rule will apply to all ports. 4d). From the Day of the Week drop down list, select whether the rule should apply to:...
Page 161
Security Configuration Step 5: Click on the button to make the new rule effective. table will then be updated. Step 6: In this example, let us say we would like block application called CS from all PCs (any IP address within the network) from Monday to Friday 7am to 6pm, and this application is using the port number 27015.
The access point supports URL Filtering, which allows you to easily set up rules to block objectionable web sites from your LAN users. Step 1: Under the command menu, click on Step 2: You may now define the by clicking the button.
To learn more about SPI firewall, read our whitepaper at www.cpx.com or at www.compex.com.sg. he following steps explain the configuration of Compex’s SPI firewall. As incorrect configuration to the firewall can result in undesirable network behavior, you are advised to carefully plan your firewall security rules. Step 1:...
Page 164
Step 4: You may add more firewall rules for specific security purposes. Click on the radio button at the screen shown above, followed by the button and the screen on the left will appear. Rule Name Enter a unique name to identify this firewall rule. Disposition This parameter determines whether the packets obeying the rule Policy...
Page 165
ICMP Packet Type Description Echo request Determines whether an IP node (a host or a router) is available on the network. Echo reply Replies to an ICMP echo request. Destination Informs the host that a datagram cannot unreachable be delivered. Source quench Informs the host to lower the rate at which sends...
Page 166
range of IP addresses. Source Port You can control requests for using a specific application by entering its port number here. Users can either set a single port number or a range of port numbers. Destination Port This parameter determines the application from the specified destination port.
When the access point’s SPI firewall is in operation, valuable traffic patterns in your network will be captured and stored into the Firewall Logs. From these logs, you can extract detailed information about the type of data traffic, the time, the source and destination address/port as well as the action taken by the SPI firewall.
This feature lets you determine whether your access point can communicate (ping) with another network host. This feature is available only for the Wireless Routing Client and Gateway modes. Step 1: Select under the command menu. Step 2: Enter the IP address of the target host where the target host you want the access point to ping to.
Syslog allows remote system logging. You can setup Syslog with the following steps. Click on from the menu. Select to Enter the Enter the Click to make the changes.
If your network operates with several access points, you would find it useful to have a means of identifying each individual device. You can define the System Identity of your access point to be uniquely identifiable as follows: Click on from the menu.
Click on from the menu. Select the appropriate time zone from the drop-down list. the Auto Time Setting (SNTP) radio button. stands for Simple Network Time Protocol and is used to synchronise computer clocks. Fill in the field and click on the button to effect the changes.
Keep your access point updated with the latest capabilities by downloading its latest firmware revision from either of Compex’s corporate web sites at www.compex.com.sg or www.cpx.com before following the next steps. You can check the types and version of your firmware by clicking on About System from the HELP menu.
Page 173
Follow the instructions given during the upgrading process. You need to reboot the system after the firmware upgrade. NOTE The firmware upgrade process must NOT be interrupted otherwise the device might become unusable.
You may choose to save the current configuration profile, to make a backup of it onto your hard disk, to restore an earlier profile saved on file or to reset the access point back to its default settings. Click on from the menu.
Page 175
Click on from the menu. If you want to back up the current settings of your access point onto your hard disk drive, click on the button. Next, save your configuration file to your local disk.
Page 176
Click on from the menu. If you want to store back the settings that you had previously saved, click on … button. Proceed to the folder where you saved your … configuration file. Click on the button and the system will prompt you to reboot your device.
Most of the changes you make to the system’s settings require a system reboot before the new parameters can take effect. Click on from the menu. Click on the button. Wait for the system to reboot and the login page will be displayed.
It is recommended that you change the default login password, which is case sensitive and is set by default, to password. Click on from the menu. Key in the . The factory default is password. Enter the in the field as well as in the field.
To exit the Web interface, follow the next few steps. Click on from the menu. Click the button to access your access point’s configuration interface again.
Click on from the menu. The access point is a feature-packed device. If you require further information than provided in the manual or data sheet, please contact one of Compex’s Technical Support Centres by mail, email, fax or telephone.
The About System page displays a summary of your system configuration information. Support technicians might require specific information about your system data when they are troubleshooting your configuration. You can use the information displayed in this page to quickly find the data they need to resolve your system problem.
Power the access point on, and then start up your computer. You are recommended to set your computer’s IP address to 192.168.168.100 and its network mask to 255.255.255.0. Insert the Compex WPP54 Product CD into the CD drive of your computer.
Recovery folder of the Product CD. If you have downloaded a newer firmware and have saved it in your local hard disk as: C:\WPP54G\WPP54Axxx.IMG, then replace the command with this new path and firmware name. In our example: C:\WPP54G\TFTP –i 192.168.168.1 PUT WPP54Axxx.img The recovery process will now take place.
Once the hardware has been set up, you need to assign an IP address to your PC so that it will be in the same subnet as the access point. By default, the access point’s IP address is 192.168.168.1; and its subnet mask is 255.255.255.0. You need to configure your PC’s IP address to 192.168.168.xxx;...
Page 185
Select radio button Specify an IP address. Enter the IP Address and Subnet Mask 192.168.168.X 255.255.255.0, where X can be any number from 2 to 254, except for 1. In this example, we are using 192.168.168.160 as the static IP Address.
Page 186
In order to check if the IP address has been assigned correctly to your PC, simply go to the Start menu, select Run, and enter the command winipcfg. Select your respective Ethernet Adapter from the drop down list and click OK. Now, your PC is now ready to communicate with your access point.
Go to your desktop, right-click on My Network Places icon and select Properties. Go to your network adapter icon, right click and select to Properties. Highlight Internet Protocol (TCP/IP) and click on Properties button.
Page 188
Select the radio button for Use the following IP address. Enter the IP Address Subnet Mask 192.168.168.X 255.255.255.0, where X can be any number from 2 to 254, except for 1. In this example, we are using 192.168.168.160 as the static IP Address.
Page 189
Next, in order to check if the IP address has been correctly assigned to your PC, go to Start menu, Accessories, select Command Prompt and type the command ipconfig/all. Your PC is now ready to communicate with your access point.
Power is supplied to the device. No power is supplied to the device. 10 ACT LED Steady Red The respective port has successfully connected to Compex WPP54G. Blinking The respective port is transmitting or receiving data. No connection is established.
Page 191
100 ACT LED Steady Red The respective port has successfully connected to Compex WPP54G. Blinking Red The respective port is transmitting or receiving data. No connection is established. WLAN LED Steady Red Wireless interface up and running. Ready for operation.
Get Operation List SYNTAX DESCRIPTION Get tasks Display all active process/tasks. Get sysinfo Display system information. Get aplist Display list of access points discovered. Get athstats Display wireless driver information. Get brinfo Display bridge and interfaces information. Get brmacshow Display bridge learned MAC address list. Get bssinfo.
Page 193
TX Power SYNTAX DESCRIPTION Set txpower <string> (Default full) auto, 1, 2, 3, 4, ..., 17, full, min TX Rate SYNTAX DESCRIPTION Set txrate <string> Values are: (default auto) (802.11b/g mixed)-- 1, 2, 5,5, 11, 6, 9, 12, 18, 24, 36, 48, 54, auto (802.11b-only)-- 1, 2, 5.5, 11, auto Wireless Mode SYNTAX...
Page 196
WLAN State SYNTAX DESCRIPTION Get wlanstate Display whether status of current wireless operation is Enabled or Disabled. Set wlanstate enable/disable Set to Disable to turn off wireless operation. Set to Enable to turn back on wireless operation. Note: When executing this command, please ensure that you are not connected on wireless with device or you will be disconnected from the device and network.
Q1) What is mSSID? Multi-SSID (mSSID) as the name suggest, allows an access point (AP) with a single radio card to support more than one SSID. Q2) What can you do with mSSID connection? The application of mSSID is to provide better security with multiple network path connections from a single AP, to multiple VLAN network segments of the switch on the local area network.
Page 198
Q3) Can I update my WPP54G or WPP54AG to this mSSID firmware? Yes. You can retain your WPP54G or WPP54AG configuration when you update to the mSSID firmware if the current firmware running is v1.3x and above. If AP is running the following configuration setup, updating to the mSSID firmware will affect the configuration.
Page 199
Q6) I have Pseudo VLAN for Per Group enabled. Will updating to mSSID firmware still support wireless clients with MAC addresses listed in Per Group? The mSSID firmware replaces Pseudo VLAN and integrates it into VAP (Virtual AP) and MAC Filtering. Thus, Pseudo VLAN with its VLAN ID and MAC listing will be lost after updating to mSSID firmware.
Page 200
Q8) I have 2 WPP54AG units installed at a site about 2km from each other running PtP modes. Should I update to mSSID firmware? Can I do it from one location to update the firmware like I do with the current single SSID firmware? The setup for PtP and PtMP for mSSID firmware is different the current sSSID firmware.
Safety • FCC Part 15 SubPart B and SubPart C (for Electromagnetic wireless module) Conformance • EN 300 328-2 • EMC CE EN 301 489 (EN300 826) • EN 55022 (CISPR 22)/EN 55024 Class B • EN 61000-3-2 • EN 61000-3-3 •...
Page 203
Operating Channels • 11 Channels: US and Canada • 13 Channels: Europe • 14 Channels: Japan Load Balancing Parallel Broadband (in Gateway mode) Fail-Over Redundancy Parallel Broadband (in Gateway mode) Virtual Server IP and Port Forwarding, De-Militarised Zone IP Packet Filtering •...
Need help?
Do you have a question about the WPP54G and is the answer not in the manual?
Questions and answers