Key Features ..........................1-1 Features in Detail .........................1-2 Application ..........................1-6 Package Contents.........................2-1 System Requirements ........................2-1 TW100-BRF104 Broadband Router+Firewall Front Panel ............2-2 TW100-BRF104 Broadband Router+Firewall Back Panel............2-2 Connecting the Broadband Router+Firewall ................2-3 Back to Factory Defaults ......................2-4 Introduction..........................3-1 Preparing Your Personal Computers for IP Networking .............3-1 Configuring Windows 95 or later for IP Networking ..............3-2...
Page 3
Port Forwarding ...........................6-3 Static Route..........................6-6 Dynamic Route ..........................6-10 Upgrade and Backup........................6-12 Remote Management .........................6-16 Diagnostic ..........................6-19 Security Management ........................7-1 Web Patrol ...........................7-4 Services ............................7-7 Log ...............................7-9 Problem Scenarios........................8-1 FAQ .............................8-3 Table Of Contents...
TW100-BRF104 Broadband Router+Firewall List of Figures Figure 1-1 Broadband Router+Firewall Application ...................1-6 Figure 3-1 Configuring Windows for IP Networking..................3-2 Figure 3-2 Macintosh TCP/IP........................3-5 Figure 3-3 Verifying Macintosh TCP/IP .....................3-5 Figure 4-1 Login Window ...........................4-2 Figure 4-2 Embedded Web Configurator Home..................4-3 Figure 5-1 WAN Setup..........................5-2...
Page 5
Figure 7-2 Web Patrol..........................7-5 Figure 7-3 Services ............................7-58 Figure 7-4 Security/Services Event Log ....................7-510 Figure 7-5 Web Patrol Log ........................7-512 List of Figures...
(such as a cable modem or DSL modem) that is normally intended for use by a single computer. The TW100-BRF104 Broadband Router+Firewall provides you with multiple Web Patrol options, plus browsing activity reporting and instant alerts - both via e-mail. Parents and network administrators can establish restricted access policies based on time-of-day, Website addresses and address keywords, and share high-speed cable/DSL Internet access for up to 253 personal computers.
TW100-BRF104 Broadband Router+Firewall Embedded Web Configurator for easy setup and management Security • DoS (Denial of Service) prevention • SPI (Stateful Packet Inspection) • Applications Services Management • Login capability • Web browsing Patrol by using URL keyword blocking • Auditing and e-mail reporting of web browsing activities •...
Page 9
The TW100-BRF104 Broadband Router+Firewall supports login scripting and monitoring requirements for major cable modem deployments such as RoadRunner. 1.3.3 Security The TW100-BRF104 Broadband Router+Firewall is equipped with several features designed to maintain security, as described in this section. Password Security PAP and CHAP support (RFC 1334 plus major vendor variations) if required in login script.
Page 10
Schedule The TW100-BRF104 allows the user to specify the day and time to blocking. Trusted Host The TW100-BRF104 allows the user to specify one Trusted host from blocking by the fixed IP address. Periodical Reports And Logs •...
Page 11
128 websites visited list. 1.3.6 Auto-sensing 10/100 Ethernet With its internal, 4-port 10/100 switch, The TW100-BRF104 Broadband Router+Firewall can connect to either a 10 Mbps standard Ethernet network or a 100 Mbps Fast Ethernet network. The local LAN interface is auto-sensing and is capable of full-duplex or half-duplex operation.
LAN to access the Internet or a remote office through an external single-host device such as a cable modem or xDSL modem. By integrating NAT and DoS prevention, TW100-BRF104 provides not only the ease of installation and Internet access, but also the most completed security solution to protect your intranet and efficient network management for data traffic.
Broadband Router+Firewall for repair. System Requirements The TW100-BRF104 Broadband Router+Firewall is intended for use in a network of personal computers that are interconnected by twisted-pair Ethernet cables. 2.2.1 Computer Requirements...
TW100-BRF104 Broadband Router+Firewall TW100-BRF104 Broadband Router+Firewall Front Panel The TW100-BRF104 Broadband Router+Firewall front panel LEDs provide an easy way to monitor its status and activity. Table 2-1 Front Panel LEDs LED LABEL Power Test Internet Local 1 2 3 4...
If your local network consists of more than four hosts, you will need to connect your Broadband Router+Firewall to another hub or switch: Connect any port 4 of your TW100-BRF104 Broadband Router+Firewall to any port of an Ethernet hub or switch using a standard or crossover Ethernet cable.
TW100-BRF104 Broadband Router+Firewall The Ethernet cable supplied by your ISP for connecting to your cable or DSL modem may be an Ethernet crossover cable or a straight-through cable. You can push the normal/uplink button in the Broadband Router+Firewall to connect the modem well.
Page 17
TW100-BRF104 Broadband Router+Firewall 2. Use the Restore Factory Defaults button on the rear panel of the Broadband Router+Firewall. Use this method for cases when the Web Configurator password or IP address is not known. 2.6.1 Procedure To Use the Restore Factory Defaults Button 1.
Introduction This chapter describes how to prepare your computer network to connect to the Internet through the TW100-BRF104 Broadband Router+Firewall and how to order broadband Internet service from an Internet service provider (ISP). Preparing Your Personal Computers for IP Networking The TW100-BRF104 Broadband Router+Firewall uses the Transmission Control Protocol/Internet Protocol (TCP/IP).
TW100-BRF104 Broadband Router+Firewall The TW100-BRF104 Broadband Router+Firewall is shipped pre-configured as a DHCP server. The gateway assigns the following TCP/IP configuration information automatically when the computers are rebooted: Computer IP addresses - 192.168.1.2 through 192.168.1.32 Subnet mask - 255.255.255.0 Gateway address - 192.168.1.1 These addresses are part of the IETF-designated private address range for use in private networks.
Page 21
After the TCP/IP protocol components are installed, each computer must be assigned specific information about itself and resources that are available on its network. The simplest way to configure this information is to allow the computer to obtain the information from the internal DHCP server of the TW100-BRF104 Broadband Router+Firewall.
ISP, you may need to copy the current configuration information for use in the configuration of your TW100-BRF104 Broadband Router+Firewall. 3.3.3 Verifying TCP/IP Properties (Windows) After your computer is configured and has rebooted, you can check the TCP/IP configuration using: winipcfg.exe for Windows 95, 98, and Millennium utility...
TW100-BRF104 Broadband Router+Firewall Figure 3-2 Macintosh TCP/IP 2. From the Connect via box, select your Macintosh’s Ethernet interface. 3. From the Configure box, select Using DHCP Server. You can leave the DHCP Client ID box empty. 4. Close the TCP/IP Control Panel.
TW100-BRF104 Broadband Router+Firewall If you do not see these values, you may need to restart your Macintosh or you may need to switch the Configure setting to a different option, then back again to Using DHCP Server. Your Internet Account For access to the Internet, you need to contract with an Internet service provider (ISP) for a single-user Internet access account using an external broadband access device such as a cable modem or DSL modem.
Page 25
As mentioned above, you may need to collect configuration information from your computer so that you can use this information when you configure the TW100-BRF104 Broadband Router+Firewall. Following this procedure is only necessary when your ISP does not dynamically supply the account information.
8. Close the TCP/IP Control Panel. Ready For TW100-BRF104 Broadband Router+Firewall Configuration After configuring all of your computers for TCP/IP networking and connecting them to the LAN network of your TW100-BRF104, you are ready to access and configure the Broadband Router+Firewall. Preparing Your Network...
This chapter introduces the embedded Web configurator and shows you how to log in and perform basic configuration of your TW100-BRF104 Broadband Router+Firewall. The Web configurator was designed with ease-of-use paramount yet still allow fine-tuning of the powerful advanced features of the TW100- BRF104 Broadband Router+Firewall.
TW100-BRF104 Broadband Router+Firewall TW100- Figure 4-1 Login Window 6. Type ‘admin’ (not case sensitive) in the User Name box, ‘1234 in the Password box, and then ’ click OK. If your Broadband Router+Firewall password was previously changed, enter the current password.
TW100-BRF104 Broadband Router+Firewall Figure 4-2 Embedded Web Configurator Home The recommended screen resolution is 800 by 600 pixels using small fonts; however you may have to scroll in some pages where the convenience of having all information displayed in one page outweighs the inconvenience of scrolling.
Page 30
TW100-BRF104 Broadband Router+Firewall 3. Click Advanced to configure dynamic DNS, port forwarding, static routes, dynamic routes, remote management, upload firmware/configuration files and restore/backup configuration files. 4. Click Firewall to configure the firewall including DoS, content filtering, enable/disable services, scheduling, and display logs.
TW100-BRF104 Broadband Router+Firewall Chapter 5 The Basic Setup Screens This chapter discusses how to set up your WAN (Internet), LAN (Local), system information such as name, password and time/date and display system information and statistics. Setup Click the Setup tab to display the next screen. Use this screen to configure Internet access related setup options.
Select this option if the assigns a dynamic IP address to the TW100-BRF104. Automatically Specify an IP Address Select this option if the assigns a static IP address to the TW100-BRF104 and fill in the next four fields. IP Address Enter the IP address of this device in dotted decimal notation.
Page 34
PPPoE service name provided to you in the this field. Login Server IP (RR Login The TW100-BRF104 will find the RoadRunner Server IP if this field is left blank. Only) If it does not, then you must enter the authentication server IP address.
TW100-BRF104 Broadband Router+Firewall System Click the System tab to display the next screen. Use this screen to configure system name, password and time/date. You may have to scroll down to see the whole screen. The table following the screen describes the fields displayed in the screen.
TW100-BRF104 Broadband Router+Firewall Table 5-2 System Setup FIELD DESCRIPTION Name System Name System Name is for identification purposes. We recommend you enter your computer’s “Computer name”. Domain Name The Domain Name entry is what is propagated to the DHCP clients on the LAN.
TW100-BRF104 Broadband Router+Firewall Figure 5-3 LAN Setup Table 5-3 LAN Setup FIELD DESCRIPTION Disable DHCP Server DHCP (Dynamic Host Configuration Protocol, RFC 2131 and RFC 2132) allows individual clients to obtain TCP/IP configuration at start-up from a server. You can configure the Broadband Router+Firewall as a DHCP server or disable it.
TW100-BRF104 Broadband Router+Firewall FIELD DESCRIPTION IP Pool Starting Address The Broadband Router+Firewall is pre-configured with a pool of 32 IP addresses. It allocates 31 IP addresses (excluding the device itself) in the lower range for other server machines, e.g., server for mail, FTP, telnet, web, etc., that you may have.
TW100-BRF104 Broadband Router+Firewall MAC address. If the Broadband Router+Firewall is rebooted, the table data is lost until each PC renews its DHCP lease. Table 5-4 DHCP Client Table FIELD DESCRIPTION This is the client index number. IP Address This is the IP address of the client specified above.
TW100-BRF104 Broadband Router+Firewall Table 5-5 Status Screen FIELD DESCRIPTION System Information The next five fields display general information about the Broadband Router+Firewall system. System Name This is the Broadband Router+Firewall’s system name + domain name assigned in the System screen. For example, System Name= xxx; Domain Name= baboo.mickey.com;...
TW100-BRF104 Broadband Router+Firewall 5.4.1 Statistics Click the Show Statistics button to bring up the next screen. Figure 5-6 Statistics Screen Table 5-6 Statistics Screen FIELD DESCRIPTION WAN/LAN The following statistics are displayed for both LAN and WAN respectively. Port The statistics for the WAN (Internet) and LAN (local) Ethernet ports. For each port, the screen displays the following information.
TW100-BRF104 Broadband Router+Firewall Chapter 6 The Advanced Setup Screens This chapter discusses how to configure dynamic DNS, port forwarding, static routes, dynamic routes, backing up/restoring the configuration file, uploading new software, remote management, and Diagnostic. Dynamic DNS Click the Dynamic DNS tab to display the next screen. Use this screen to configure dynamic Domain Name Server Your router supports Dynamic Domain Name Service (DDNS).
TW100-BRF104 Broadband Router+Firewall Figure 6-1 Dynamic DNS Setup Table 6-1 Dynamic DNS Setup FIELD DESCRIPTION Disable Dynamic DNS Select this option to disable Dynamic DNS Service. Service Enable Dynamic DNS Select this option to enable Dynamic DNS Service and then fill in the following fields.
TW100-BRF104 Broadband Router+Firewall FIELD DESCRIPTION enable DYNDNS Wildcard. E-mail Address Enter your e-mail address. User Enter your user name. Password Enter the password assigned to you. Help Click this button for HTML help on this screen. Apply Click this button to save your changes back to the Broadband Router+Firewall.
TW100-BRF104 Broadband Router+Firewall (also called DMZ) to which all other incoming protocols are forwarded. To configure port forwarding to a local server: 1. Enter a port number in an unused Service Port Range. 2. To forward only one port, enter it again in the Service Port Range after the “~”.
TW100-BRF104 Broadband Router+Firewall Local Game Host or Videoconference Example Some online games and videoconferencing applications are incompatible with NAT. The Broadband Router+Firewall is programmed to recognize some of these applications and to work properly with them, but there are other applications that may not function well. In some cases, one local computer can run the application properly if that computer’s IP address is entered as the default in the Port Forwarding Menu.
TW100-BRF104 Broadband Router+Firewall Table 6-3 Port Forwarding FIELD DESCRIPTION Disable DMZ Select this option to disable DMZ (De-Militarized Zone). Enable DMZ Select this option to enable DMZ (De-Militarized Zone). Server IP Address Enter the IP address of the server on your local network to which you want to forward incoming service requests.
TW100-BRF104 Broadband Router+Firewall Static routes tell the Broadband Router+Firewall routing information that it cannot learn automatically through other means. This can arise in cases where RIP is disabled on the LAN or you have multiple routers or multiple IP subnets located on your network.
TW100-BRF104 Broadband Router+Firewall Table 6-4 Static Route FIELD DESCRIPTION Static Routing Entry Select the static route entry you want to edit or create from the drop down list box. Enable this entry Select this checkbox to make this static route active.
TW100-BRF104 Broadband Router+Firewall addresses. With this configuration, if you attempt to access a device on the 134.177.0.0 network, your router will forward your request to the ISP. The ISP forwards your request to the company where you are employed, and the request will likely be denied by the company’s firewall.
TW100-BRF104 Broadband Router+Firewall Table 6-5 Show Static Routing Table FIELD DESCRIPTION Destination IP The Destination IP Address and IP Subnet Mask fields specify the IP address and Address & Subnet subnet mask to which this static route applies. Mask Interface This is the LAN or WAN interface.
TW100-BRF104 Broadband Router+Firewall Figure 6-5 Dynamic Route Table 6-6 Dynamic Route FIELD DESCRIPTION Disable Dynamic Select this checkbox to disable RIP broadcasts. Routing Enable Dynamic Select this checkbox to enable RIP broadcasts. Routing Select Enable if you want the Broadband Router+Firewall to broadcast its routing Outgoing table periodically;...
TW100-BRF104 Broadband Router+Firewall FIELD DESCRIPTION Show Routing Table Click this button to display the dynamic routing table. Help Click this button for HTML help on this screen. Apply Click this button to save your changes back to the Broadband Router+Firewall.
TW100-BRF104 Broadband Router+Firewall Table 6-7 Upgrade and Backup FIELD DESCRIPTION Software Upgrade Save and unzip the latest software on your computer, then click this button to upload the new software to your Broadband Router+Firewall. Restore Factory Default Click this button to upload the default configuration file to your Broadband Configurations Router+Firewall.
TW100-BRF104 Broadband Router+Firewall When uploading software to the Broadband Router+Firewall, it is important not to interrupt the Web browser by closing the window, clicking a link, or loading a new page. If the browser is interrupted, it may corrupt the software.
TW100-BRF104 Broadband Router+Firewall 6.5.3 Backup Current Configurations Click Backup Current Configurations in the Upgrade and Backup screen to save a copy of your current configuration file to your computer. Click Browse, then choose a location on your computer where you wish to save the Broadband Router+Firewall’s current configuration, then click Backup.
TW100-BRF104 Broadband Router+Firewall Remote Management Click the Remote Management tab to display the next screen. Remote management setup is for embedded web and FTP services. Users can customize the service port, access interface, and the trusted client IP address to enhance security and flexibility.
TW100-BRF104 Broadband Router+Firewall Table 6-8 Remote Management FIELD DESCRIPTION HTTP Server Service Port 80 is the service port number for web services. Access Interface Select which interface you want to remotely manage via web server from or disable remote management via web server here.
TW100-BRF104 Broadband Router+Firewall Diagnostic The diagnostic facility allows you to test the different aspects of your TW100-BRF104 to determine if it is working properly. Figure 6-12 Diagnostic The Advanced Setup Screens 6-19...
WAN IP address, subnet mask and default Router in a fashion similar to “winipcfg”. DHCP Release DHCP Renewal PING By Pinging some Host on Internet, you can see if your TW100-BRF104 is connecting to Internet properly. Ping Host IP Address Enter the Host IP address you want to ping. Help Click this button for HTML help on this screen.
TW100-BRF104 Broadband Router+Firewall Chapter 7 The Firewall Screens This chapter discusses how to configure e-mail settings for alert and log, privileged access, web patrol, schedule web access, block/schedule specific services and display logs of these events. Security Management Click the Security Management tab to display the next screen. Use this screen to configure e-mail settings, and privileged access.
TW100-BRF104 Broadband Router+Firewall Table 7-1 Security Management FIELD DESCRIPTION E-mail Alerts and logs are sent out via e-mails through the following configurations. Address Information Mail Server Enter the name of your outgoing (SMTP) mail server. You can enter either the server name (such as mail.myISP.com) or its IP Address.
TW100-BRF104 Broadband Router+Firewall FIELD DESCRIPTION address. Help Click this button for HTML help on this screen. Apply Click this button to save your changes back to the Broadband Router+Firewall. Cancel Click this button to cancel any configuration changes you made in this screen.
TW100-BRF104 Broadband Router+Firewall Table 7-2 Web Patrol FIELD DESCRIPTION Disable URL Keyword Select this option to disable screening for keywords within Web URLs. Blocking Enable URL Keyword Select this option to enable screening for keywords within Web URLs. Be sure that a Blocking time period for blocking is specified on Schedule setup in this screen.
TW100-BRF104 Broadband Router+Firewall FIELD DESCRIPTION Cancel Click this button to cancel any configuration changes you made in this screen. Services Click the Services tab to display the next screen. Use this screen to block services and schedule when to block them.
TW100-BRF104 Broadband Router+Firewall Table 7-3 Services FIELD DESCRIPTION Disable Services Select this option to disable services blocking. Blocking Enable Services Select this option to enable services blocking. Blocking Available Services Select the service you want to block from the pre-configured drop down list box and then click the Add button below.
Page 72
TW100-BRF104 Broadband Router+Firewall 7.4.1 Security/Services Event Log Select Security/Services Event Log in the Log screen to view this log. The log is a detailed record of attacks and services accessing on your network. Up to 128 entries are stored in the log. No log entries will be made for the Privileged Access computer.
TW100-BRF104 Broadband Router+Firewall Table 7-4 Security/Services Event Log FIELD DESCRIPTION This is the log index number. 128 entries are available numbered from 0 to 127. The log will keep the record of the latest 128 entries. Time This is the date and time the log of this event occurred.
TW100-BRF104 Broadband Router+Firewall Figure 7-5 Web Patrol Log Table 7-5 Web Patrol Log FIELD DESCRIPTION This is the log index number. 128 entries are available numbered from 0 to 127. The log will keep the record of the latest 128 entries.
TW100-BRF104 Broadband Router+Firewall Chapter 8 Troubleshooting The following section provides possible solutions to problems regarding the installation and operation of the Broadband Router+Firewall. If your situation is described here, the problem should be solved by applying the corresponding solution. Also check the FAQs which follow for other environment related information about your Broadband Router+Firewall.
Page 76
TW100-BRF104 Broadband Router+Firewall 8.1.3 I can’t browse through the Broadband Router+Firewall. • Check if both ends of the network cable and power adapter are properly connected. Check if the status LEDs on the front panel are functioning properly. • If using Windows 95 or Windows 98, check the TCP/IP setup on the client side. Run winipcfg by clicking on the Start button, then selecting Run, and typing winipcfg in the Run box and press Enter.
TW100-BRF104 Broadband Router+Firewall Check these FAQs for additional information about your Broadband Router+Firewall configuration in various environments. 8.2.1 What is the maximum number of IP addresses that the Broadband Router+Firewall will support? The Broadband Router+Firewall will support up to 253 IP addresses.
Page 78
TW100-BRF104 Broadband Router+Firewall 8.2.6 Does the Broadband Router+Firewall support any operating system other than Windows 95, Windows 98, Windows 2000, or Windows NT? Yes. 8.2.7 How do I get Napster to work with the Broadband Router+Firewall? Napster is fully compatible with the Broadband Router+Firewall, but you must make sure that, during installation, you select “no idea”...
Page 79
TW100-BRF104 Broadband Router+Firewall 8.2.13 I am not able to get the web configuration screen for the Broadband Router+Firewall. What can I do? You may have to remove the proxy settings on your Internet browser, e.g., Netscape Navigator or Internet Explorer. Or remove the dial-up settings on your browser. Check with your browser documentation.
Page 80
TW100-BRF104 Broadband Router+Firewall 8.2.20 Does the Broadband Router+Firewall replace a modem? Is there a cable or DSL modem in the Broadband Router+Firewall? No, this version of the Broadband Router+Firewall must work in conjunction with a cable or DSL modem. 8.2.21 Which modems are compatible with the Broadband Router+Firewall? The router is compatible with virtually any cable or DSL modem that supports Ethernet.
Need help?
Do you have a question about the TW100-BRF104 and is the answer not in the manual?
Questions and answers