Table of Contents

Advertisement

Quick Links

Prestige 2802HW(L)-Ix
Support Notes
Version 3.40
Jun. 2007

Advertisement

Table of Contents
loading

Summary of Contents for ZyXEL Communications Prestige 2802HW(L)-IX

  • Page 1 Prestige 2802HW(L)-Ix Support Notes Version 3.40 Jun. 2007...
  • Page 2: Table Of Contents

    Peer to Peer call ...................99 Phone port settings..................103 Advanced voice settings configuration............105 Phone book Speed dial................108 Voice - QoS setup ..................111 Call Forwarding setup................115 Voice – Common Settings ................. 118 FAQ ......................119 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 3 What is the difference between the internal IP and the real IP from my ISP? ........................125 How does e-mail work through the Prestige? ..........126 Is it possible to access a server running behind SUA from the outside Internet? If possible, how?.................126 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 4 What is the relationship between codec and VoIP?........133 What advantage does Voice over IP can provide?........134 What is the difference between H.323 and SIP?........134 Can H.323 and SIP interoperate with one another?........134 What is voice quality?................134 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 5 What is VPN? ....................142 Why do I need VPN? .................142 What are most common VPN protocols?...........143 What is PPTP? ...................143 What is L2TP? ...................143 What is IPSec? ...................143 What secure protocols does IPSec support? ..........144 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 6 What are the advantages of Wireless LANs ? ...........152 What are the disadvantages of Wireless LANs ?........153 Where can you find wireless 802.11 networks ? ........153 What is an Access Point ?................153 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 7 What is the difference between Open System and Shared Key of Authentication Type ?................159 What is 802.1x ? ..................159 What is the difference between No authentication required, No access allowed and Authentication required ? ............160 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 8 Prestige 2802HW(L)-Ix Support Notes What is AAA ?...................160 What is RADIUS ?..................160 What is WPA ?...................160 What is WPA-PSK?...................161 Trouble Shooting ..................161 Using Embedded Packet Trace ................161 Debug PPPoE Connection .................176 CLI Command List ..................187 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 9: Application Notes

    2. DHCP server enabled with IP pool starting from 192.168.1.33 3. Default SMT menu password = 1234 • Setting up the PC (Windows OS) 1. Ethernet connection All PCs must have an Ethernet adapter card installed. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 10 When the drivers are updated, you will be asked if you want to restart the PC. Make sure your Prestige is powered on before answering Yes to the prompt. Repeat the above steps for each Windows PC on your network. • Setting up the Prestige router All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 11 Prestige. The default LAN IP of the Prestige is 192.168.1.1. See the example below. Note that you can either http://192.168.1.1 2. Login first The default password is the default WEB GUI password, '1234'. 3. Configure Prestige for Internet access by using WIZARD SETUP All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 12 Prestige 2802HW(L)-Ix Support Notes The Web screen shown below takes PPPoE as the example. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 13: Setup The Prestige As A Dhcp Relay

    DHCP relay function. When it is configured as DHCP server, it assigns the IP addresses to the LAN clients. When it is configured as DHCP relay, it is reponsable for forwarding the requests and responses negotiating between the DHCP clients and the server. See figure 1. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 14 • Setup the Prestige as a DHCP Client 1. Toggle the DHCP to Relay in Network>LAN>DHCP Setup and enter the IP address of the DHCP server in the 'Remote DHCP Server' field. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 15: Configure An Internal Server Behind Sua

    'Network>NAT>Port Forwarding', Port Forwarding Configuration. The outside users can access WAN IP the local server using the Prestige's address. • For example (Configuring an internal Web server for outside access) : All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 16: Configure A Pptp Server Behind Sua

    In order to run the Windows 9x PPTP client, you must be able to establish an IP connection with a tunnel server such as the Windows NT Server 4.0 Remote Access Server. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 17 Network > NAT > Port SUA. The port number of the PPTP has to be Configure in the WEB GUI Forwarding for Prestige to forward to the appropriate private IP address of Windows NT server. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 18 ISP first. • Go to WEB GUI “Network>NAT>Port Forwarding”. Enter the IP address of the PPTP server (WinNT server) and specify the Service Name for PPTP as shown below. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 19 IP address in the 'VPN Server' dialog box for reaching the PPTP server. After the VPN link is established, you can start the network protocol application such as IP, IPX and NetBEUI. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 20: Using Nat / Multi-Nat

    NAT based on RFC 1631, and we call this feature as 'Multi-NAT'. For more information on IP address The IP Network Address Translator (NAT) translation, please refer to RFC 1631, • How NAT works All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 21 ZyXEL's Single User Account feature that previous ZyNOS routers supported (the SUA only option in today's routers). 4. Many to Many Overload In Many-to-Many Overload mode, the Prestige maps the multiple ILA to shared IGA. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 22 With multiple global IP addresses, multiple severs of the same type (e.g., FTP servers) are allowed on the LAN for outside access. In previous ZyNOS versions (that supported SUA 'visible' servers had to be of All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 23 When you select this option the SMT will use Address Mapping Set 255 (Menu 15.1-see later for further SUA Only discussion). This option use basically Many-to-One Overload mapping. Select Full Feature when you require other mapping types. It is a convenient, All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 24 Network > NAT > Address Mapping Enter WEB GUI to bring up Address Mapping Sets Menu. Network > NAT > Address Mapping Now let's look at WEB GUI Menu All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 25 Note that subsequent address mapping rules move up by one when you take this action. To edit an address mapping rule, click the rule's edit icon in the Address Mapping screen to display the screen show next. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 26 As an example (see the following figure), if you have a Web server at 192.168.1.36 and a FTP server at 192.168.1.33, then you need to specify for port 80 (Web) the server at IP address 192.168.1.36 and for port 21 (FTP) another at IP address 192.168.1.33. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 27 Step 3. Selet the service type in Service Name field and the inside IP address of the server in the Server IP Address field. Step 4. Press Add icon to add your configuration after you define all the servers, press Apply icon to save the settings. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 28 1723 Protocol) 1. Internet Access Only In our Internet Access example, we only need one rule where all our ILAs map to one IGA assigned by the ISP. See the following figure. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 29 Network > NAT > General From WEB GUI shown above simply choose the SUA Only option in the NAT Setup. This is the Many-to-One mapping discussed earlier. 2. Internet Access with an Internal Server All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 30 Internet Server behind the NAT as shown in the NAT as shown below. 3. Using Multiple Global IP addresses for clients and servers (One-to-One, Many-to-One, Server Set mapping types are used) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 31 Network > NAT > Address Mapping In this case, we need to configure Address Mapping Set 1 from Network > NAT > General Menu. Therefore we must choose the Full Feature option in All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 32 Rule 1 Setup: Select One-to-One type to map the FTP Server 1 with ILA1 (192.168.1.10) to IGA1. Rule 2 Setup: Selecting One-to-One type to map the FTP Server 2 with ILA2 (192.168.1.11) to IGA2. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 33 Rule 3 Setup: Select Many-to-One type to map the other clients to IGA3. Rule 4 Setup: Select Server type to map our web server and mail server with ILA3 (192.168.1.20) to IGA3. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 34 Now we configure all other incoming traffic to go to our web server aand mail server from Menu 15.2 - NAT Server Setup (not Set 1, Set 1 is used for SUA Only case). All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 35 IP address. In this case it is better to use Many-to-Many No Overload or One-to-One NAT mapping types, thus each user login to the server using a unique global IP address. The following figure illustrates this. One rule configured for using Many-to-Many No Overload mapping type is shown below. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 36 Prestige 2802HW(L)-Ix Support Notes The three rules configured for using One-to-One mapping type is shown below. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 37 Prestige 2802HW(L)-Ix Support Notes Prestige supports multiple type of NAT mapping rules All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 38 The following table summarizes these types. NAT Type IP Mapping One-to-One ILA1<--->IGA1 ILA1<--->IGA1 Many-to-One ILA2<--->IGA1 (SUA/PAT) ILA1<--->IGA1 ILA2<--->IGA2 Many-to-Many ILA3<--->IGA1 Overload ILA4<--->IGA2 ILA1<--->IGA1 ILA2<--->IGA2 Many-to-Many No ILA3<--->IGA3 Overload ILA4<--->IGA4 Server Server 1 IP<--->IGA1 (SUA) Server 2 IP<--->IGA1 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 39: Using The Dynamic Dns (Ddns)

    IP to the DDNS server. • Advanced > Dynamic DNS Go to in WEB GUI and active 'Dynamic DNS' checkbox and press Apply for configuring the settings of the DDNS. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 40 Select the check box to enable DynDNS Wildcard. Option This option is available when CustomDNS is selected in the DDNS Type field. Enable off line option Check with your Dynamic DNS service provider to have traffic redirected to a All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 41: Network Management Using Snmp

    SNMP variables are defined using the OSI Abstract Syntax Notation One (ASN.1). ASN.1 specifies how a variable is encoded in a transmitted data frame; it is very powerful because the encoded data is self-defining. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 42 NMSs use these operations to determine which variables a managed device supports and to sequentially gather information from variable tables (such as IP routing table) in managed devices. 9. Traps The managed devices to asynchronously report certain events to NMSs use trap. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 43 The SNMPv1 messages contains two part. The first part contains a version and a community name. The second part contains the actual SNMP protocol data unit (PDU) specifying the operation to be performed (Get, Set, and All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 44 Some traps are sent to the SNMP manager when anyone of the following events happens: • coldStart (defined in RFC-1215) : If the machine coldstarts, the trap will be sent after booting. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 45 "System reboot by user !" will be sent. (ii) For fatal error : System has to reboot for some fatal errors. And traps with the message of the fatal code will be sent. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 46 Advanced > Remote MGMT > The SNMP related settings in Prestige are configured in WEB GUI menu SNMP , SNMP Configuration. The following steps describe a simple setup procedure for configuring all SNMP settings. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 47 'Set-community requested from the NMS. The default is 'public'. Enter the community name in each sent trap to the NMS. This Trap Community must Community match what the NMS is expecting. The default is 'public'. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 48: Using Syslog

    3. Log Facility, select the location from the drop down list box. The log facility allows you to log the messages to different files in the syslog server. Refer to the syslog server manual for more information. • UNIX Setup All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 49 Feb 14 16:57:17 192.168.1.1 ZyXEL Communications Corp.: board 0 line 0 channel 0, call 18, C01 Incoming Call OK Feb 14 17:07:18 192.168.1.1 ZyXEL Communications Corp.: board 0 line 0 channel 0, call 18, C02 Call Terminated All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 50 Protocol: (1:IP 2:IPX 3:IPXHC 4:BPDU 5:ATALK 6:IPNG) Data: We will send forty-eight Hex characters to the server Example: Jul 19 11:28:39 192.168.102.2 ZyXEL Communications Corp.: Packet Trigger: Protocol=1, Data=4500003c100100001f010004c0a86614ca849a7b08004a5c020001006162636465666768696a6b6c6d6e6f7071727374 Jul 19 11:28:56 192.168.102.2 ZyXEL Communications Corp.: Packet Trigger: Protocol=1, Data=4500002c1b0140001f06b50ec0a86614ca849a7b0427001700195b3e00000000600220008cd40000020405b4 •...
  • Page 51: Using Ip Alias

    Proto = LCP / ATCP / BACP / BCP / CBCP / CCP / CHAP/ PAP / IPCP /IPXCP Example: Jul 19 11:43:25 192.168.1.1 ZyXEL Communications Corp.: ppp:LCP Starting Jul 19 11:43:29 192.168.1.1 ZyXEL Communications Corp.: ppp:IPCP Starting Jul 19 11:43:34 192.168.1.1 ZyXEL Communications Corp.: ppp:CCP Starting Jul 19 11:43:38 192.168.1.1 ZyXEL Communications Corp.: ppp:BACP Starting...
  • Page 52 Therefore, three routes are created in the Prestige as shown below when the three networks are configured. If the Prestige's DHCP is also enabled, the IP pool for the clients can be any of the three networks. Copyright (c) 1994 - 2004 ZyXEL Communications Corp. ras> ip ro st...
  • Page 53: Using Ip Multicast

    Traditionally, IP packets are transmitted in two ways - unicast or broadcast. Multicast is a third way to deliver IP packets to a group of hosts. Host groups are identified by class D IP addresses, i.e., those with All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 54 Network > LAN > Advanced : Enable IGMP in Prestige's LAN in WEB GUI Network > WAN > Internet Connection > Enable IGMP in Prestige's WAN remote node in WEB GUI Advanced Setup All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 55: Using Prestige Traffic Redirect

    Once Prestige detects it's WAN connectivity is broken, Prestige will try to forward outgoing traffic to backup gateway that users specify in traffic redirect configuration menu. • How to deploy backup gateway? You can deploy the backup gateway on LAN of Prestige. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 56 Traffic Redirect on LAN port • Traffic Redirect Setup Configure parameters that determine when Prestige will forward WAN traffic to the backup gateway using Network > WAN > WAN Backup in WEB GUI. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 57 Check WAN IP Address fields without getting a response before switching to a WAN backup connection (or a different WAN backup connection). Recovery When the Prestige is using a lower priority connection (usually a WAN backup connection), it periodically All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 58: Using Universal Plug N Play (Upnp)

    Click Back to return to the previous screen. Apply Click Apply to save the changes. Cancel Click Cancel to begin configuring this screen afresh. Using Universal Plug n Play (UPnP) • 1. What is UPnP All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 59 Control points: Control points can manipulate network devices When you add a new control point (in this case, a laptop) to a network, the device may ask the network to find UPnP-enabled devices. These devices respond with their URLs and device descriptions. UPnP Operations All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 60 NAT mapping for PC1. As long as we enable UPnP function on the router, PC1 will assign the mapping to the router dynamically. Note that since PC1 must support UPnP, we presume that it's OS is Microsoft WinME or WinXP. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 61 The second check box allow users' application to change configuration in this device. For instance, if you enable this item, then user's MSN application can assign dynamic port mapping to the router. So that network administrator don't need to setup SUA port mapping in the router. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 62 Prestige 2802HW(L)-Ix Support Notes 2. After getting IP address, you can go to open MSN application on PC and sign in MSN server. 3. Start a Video conversation with one online user. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 63 Prestige 2802HW(L)-Ix Support Notes 4. On the opposite side, your partner select Accept to accept your conversation request. 5. Finally, your video conversation is achieved. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 64: Wireless Application Notes

    Infrastructure mode, sometimes referred to as Access Point mode, is an operating mode of an 802.11b/Wi-Fi client unit. In infrastructure mode, the client unit can associate with an 802.11b/Wi-Fi Access Point and communicate with other clients in infrastructure mode through that access point. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 65 Configuration Wireless Access Point to Infrastructure mode using Web configurator. To configure Infrastructure mode of your Prestige wireless VoIP IAD please follow the steps below. Network > Wireless LAN > General. 1. From the web configurator main menu, click All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 66 To configure Infrastructure mode on your ZyAIR B-100/B-200/B-300 wireless NIC card please follow the following steps. 1. Double click on the utility icon in your windows task bar the utility will pop up on your windows screen. 2. Select configuration tab. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 67 3. Select Infrastructure from the operation mode pull down menu, fill in an SSID or leave it as any if you wish to connect to any AP than press Apply Change to take effect. 4. Click on Site Survey tab, and press search all the available AP will be listed. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 68: Wireless Mac Address Filtering

    MAC address of the station before allowing it to connect to the network. This provides an additional layer of control layer in that only stations with registered MAC addresses can connect. This approach requires that the list of MAC addresses be configured. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 69 4. Select the Filter Action to allow or deny association from hosts in the list. 5. Enter the MAC Addresses which you may want to apply the filter to allow or block associations from. 6. Click Apply to make your setting work. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 70: Wep Configuration (Wired Equivalent Privacy)

    AP. If Deny Association is selected in this field, hosts with MAC addresses configured in this list will be blocked. MAC Address This field specifies those MAC Addresses that you want to add in the list. WEP configuration (Wired Equivalent Privacy) Introduction All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 71 The reson for this misnomer is that the WEP key ( 40/104 bits ) is concatenated with the initialisation vector ( 24 bits ) resulting in a 64/128 bit total key size. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 72 64-bit WEP key (secret key) with 5 characters 64-bit WEP key (secret key) with 10 hexadecimal digits 128-bit WEP key (secret key) with 13 characters 128-bit WEP key (secret key) with 26 hexadecimal digits All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 73 Hexadecimal digits have to preceded by '0x', WEP Key type Example Key1= 2e3f4 Key2= 5y7js 64-bit WEP with 5 characters Key3= 24fg7 Key4= 98jui Key1= 0x123456789A 64-bit WEP with 10 hexadecimal digits Key2= 0x23456789AB ('0-9', 'A-F') Key3= 0x3456789ABC All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 74 Enter exactly 5, 13 or 29 characters to match the security strength 40/64bit, 128-bit, 256-nit respectively. Setting up the Station 1. Double click on the utility icon in your windows task bar or right click the utility icon then select 'Show Config Utility'. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 75 Select encryption type correspond with access point. Set up 4 Keys which correspond with the WEP Keys of access point. And select on WEP key as default key to encrypt wireless data transmission. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 76 Prestige 2802HW(L)-Ix Support Notes All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 77: Configuring 802.1X

    Ethernet), in order to provide a means of authenticating and authorizing devices attached to a LAN port that has point-to-point connection characteristics, and of preventing access to that port in cases the authentication process fails. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 78 The station must be running 802.1x-compliant client software such as that offered in the Microsoft Windows XP operating system, Meeting House AEGIS 802.1x client and Odyssey 802.1x client. 3. Authentication Server : All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 79 When 802.1x is enabled, the authenticator controls the port authorization state by using the following control parameters. The following three authentication control parameter are applied in Wireless AP. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 80 EAP over LANs, or EAPOL. Ethernet type of EAPOL is 88-8E , two octets in length. EAPOL encapsulations are described for IEEE 802 compliant environment, such as 802.3 Ethernet, 802.11 Wireless LAN and Token Ring/FDDI. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 81 When the supplicant does not need Wireless access any more, it sends EAPOL-Logoff packet to terminate its 802.1x session, the port state will become unauthorized. The following figure shows the EAPOL exchange ping-pong chart. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 82 The EAPOL packet contains the following fields: protocol version, packet type, packet body length and packet body. Most of the fields are obvious. The packet type can have four different values, and these values are described below: All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 83 ZyXEL AP. By default, the 802.1x function is disabled (Authentication Control= Force Authorized) to allow all wireless client. You can use Web Configuration to configure it. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 84 By storing wireless 802.1x client profiles locally, your ZyXEL AP is able to authenticate wireless client without interacting with a extra network RADIUS server. Follow the steps to add user accounts on your ZyXEL AP. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 85 Enter a username up to 31 alphanumeric characters long. User Name Press [SPACE BAR] to select Yes and press [Enter] to activate this 802.1x client Active profile. Password Enter a password up to 31 characters long. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 86 The specific exchange of EAP frames depends on the authentication method being used. The figure below shows a message exchange initiated by the client using the MD5 Challenge authentication method with a RADIUS server. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 87 Prestige 2802HW(L)-Ix Support Notes Configure in WEB GUI Configurator,: From the Web Configurator main menu, Click Network -> Wireless Lan to setup the RADIUS authentication and accounting server configuration. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 88: Site Survey

    RADIUS authentication server and ZyXEL AP (RADIUS client). The key is not send Shared Secret to the network. This key must be the same on the external RADIUS authentication server and ZyXEL AP. Site Survey Introduction What is Site Survey? All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 89 3. User a notebook with wireless client installed and run it's utility. An utility will provide information such as connection speed, current used channel, associated rate, link quality, signal strength and etc information as shown in utility below. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 90 4. It's always a good idea to start with putting the access point at the corner of the room and walk away from the access point in a systematic manner. Record down the changes at point where transfer rate drop and the link quality and signal strength information on the diagram as you go alone. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 91 7. You may need more than one access point is the RF coverage area have not cover all the wireless service area you needed. 8. Repeat step 1~6 of survey on site as necessary, upon completion you will have an diagram and information of site survey. As illustrated below. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 92: Pstn Lifeline Application Notes

    PSTN dial out is 0000 and can be change to value you wish to) and dial this prefix to switch over to PSTN line than dial the PSTN number as normal. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 93: Lifeline Configuration

    0000, than the device will switch over to PSTN line. At this moment you will heard dial tone from PSTN again. At this state you can dial out to PSTN as you would on a regular PSTN system. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 94: Relay To Pstn

    If your ADSL line type is Splitter type you ISP will provide you with splitter otherwise it should be splitterless. For correct info you may check with your service provider as for which type of line you have. Firgure 1 Splitter type All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 95 Connect the RJ-11 to one of the output jack on the Y connector Connect the DSL cable to the other output jacket on the Y connector Connect the Y connector input port with a phone cable to the wall Jack or line from ISP. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 96: Voip Application Notes

    The Prestige can hold up to two SIP account simultaneously please follow the below instruction to configure the SIP account properly. Note: You should have a voice account already set up and have VoIP information from your VoIP service provider prior to configure SIP account on to the unit. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 97 Enter your SIP number in this field. You can use up to 31 ASCII characters. Use this field to configure the Prestige’s listening port for SIP. Leave this field Local set to the default if you were not given a local port number for SIP. Port All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 98 Click Advanced Setup to open a screen where you can configure the Setup Prestige’s advanced VoIP settings like SIP server settings, the RTP port range and the coding type. Apply Click Apply to save your changes back to the Prestige. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 99: Peer To Peer Call

    You need to configure the self SIP number at VOIP screen and callee's IP address in the phone book Note that there are 10 speed dial can be configured only so far. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 100 You need to configure the self SIP number and put callee's IP address at SIP server, SIP proxy, Domain server all in the VOIP screen. Setup--- Configuring SIP / VoIP related settings in device A All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 101 2. Fill in device B’s IP into SIP server address, Register server address… as example. 3. Setup speed dial, put device B’s information into the column. Setup--- Configuring SIP / VoIP related settings in device B All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 102 Prestige 2802HW(L)-Ix Support Notes All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 103: Phone Port Settings

    After completing the setting, you can dial #01 from the phone under device A, then the phone under device B will ring. Phone port settings Prestige allow you to configure the volume and echo cancellation setting for each individual phone port. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 104 Use this field to set the loudness that the Prestige uses for the speech signal Listening Volume that it receives from the peer device and sends to your phone. -1 is the All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 105: Advanced Voice Settings Configuration

    Advanced Settings to display the following screen. Advanced voice settings configuration allows user to modify SIP server related settings, RTP port range, preferred compression type (codec), DTMF type and Message Waiting Indication (MWI) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 106 SIP Account This read-only field displays the number of the SIP account that you are configuring. The changes that you save in this page affect the Prestige’s settings with the SIP account displayed here.. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 107 The Dual Tone Multi-Frequency (DTMF) mode sets how the Prestige handles the tones that your telephone makes when you push its buttons. It DTMF Mode is recommended that you use the same mode that your VoIP service provider uses. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 108: Phone Book Speed Dial

    Apply Click Apply to save your changes back to the Prestige. Phone book Speed dial Prestige allows you to configure up to 10 SIP numbers in the phone book for speed dial. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 109 IP or URL remote peer. Step 6. Click on Add button when you are finish to add the entry to the phone book. Each field's detail description of the page is listed below. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 110 Click this button to change the speed dial entry. The speed dial entry Edit displays in the Add New Entry section of the screen where you can edit it. Clear Click this button to remove all of the entries from the speed dial phonebook. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 111: Voice - Qos Setup

    DSCP values: Per Hop Behaviour DiffServ Code Point (PHB) (DSCP) Precedence Default 000000 Low Drop Medium Drop High Drop Assured Forwarding Probability Probability Probability Class AF11 AF12 AF13 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 112 100100 100110 Expedited Forwarding 101110 The values in decimal are given in the following table: DSCP Binary Decimal Default 000000 0 001000 8 AF11 001010 10 AF12 001100 12 AF13 001110 14 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 113 Quality of Service (QoS) refers to both a network's ability to deliver data with minimum delay, and the networking methods used to provide bandwidth for real-time multimedia applications. Click VoIP -> SIP -> QoS to display the following screen. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 114 Disable VLAN tagging if the Prestige does not need to be a member of a VLAN group to communicate with the SIP server. Apply Click Apply to save your changes back to the Prestige. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 115: Call Forwarding Setup

    Enable this feature to have the Prestige forward incoming calls to the number that you configure. Busy Forward to Number Enable this feature to have the Prestige forward incoming calls to the number that you configure when your SIP account has a call connected. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 116 No Answer Set how long the Prestige should let a call ring before considering the call unanswered. Waiting Time Advanced Configure Advanced Setup call forwarding entries to have the Prestige All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 117 Select Block to have the Prestige reject calls from the number specified in the call forwarding entry. Select Accept to have the Prestige allow calls from the number specified in the Incoming Call Number field. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 118: Voice - Common Settings

    Use these fields to specify phone numbers to which the Prestige will always Immediate send calls through the regular phone service without the need of dialing a Dial prefix number. These numbers must be for phones on the PSTN (not VoIP All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 119: Faq

    It is designed in a modular fashion so it is easy for developers to add new features. New ZyNOS software upgrades can be easily downloaded from our FTP sites and public Web download site as they become available. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 120: How Do I Access The Embedded Web Configurator

    To upgrade firmware, use FTP client program to put firmware in file 'ras' in the Prestige. After data transfer is finished, the Prestige will program the upgraded firmware into FLASH ROM and reboot All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 121: How Do I Upload Or Backup Romfile Via Web Configurator

    To restore the configurations, use the FTP client program to put your configuration in file ROM-0 in the Prestige. Why can't I make Telnet to Prestige from WAN? There are three possible reasons that Telnet from WAN is blocked. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 122: What Should I Do If I Forget The System Password

    The primary motivation for RFC 1631 is that there is not enough IP address to go around. In addition, many corporations simply did not bother to obtain legal (globally unique) IP addresses for their networks and now finding themselves unable to connect to the Internet. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 123: How Many Network Users Can The Sua/Nat Support

    ADSL. The IAD is equipped with 1 auto-MDI/MDIX 10/100Mbps Ethernet LAN port, 1 ADSL WAN port. It is the most simple and affordable solution for multiple and instant broadband Internet access router. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 124: Will The Prestige Work With My Internet Connection

    Internet when you turn on your computer, you probably are not. You can also check your ISP or the information sheet given by the ISP. Please choose PPPoE as the encapsulation type in the Prestige if the ISP uses PPPoE. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 125: Why Does My Provider Use Pppoe

    IP from ISP, instead, can be recognized or pinged by another real IP. The Prestige Internet Access Sharing Router works like an intelligent router that route between the virtual IP and the real IP. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 126: How Does E-Mail Work Through The Prestige

    5 second, the unit will be reset. When the reset button is pressed the devices all parameter will be reset back to factory default include, password, and IP address. The default IP address is 192.168.1.1, Password 1234. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 127: What Network Interface Does The New Prestige Series Support

    Most independent Internet Service Providers today connect to the Internet using a single 1.5 Mbps "T1" telephone line. All of their subscribers share that 1.5 Mbps pipeline. Cable head-ends connecting to the Internet backbone using a T1 limit their subscribers to an absolute maximum of 1.5 Mbps. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 128: What Is Multi-Nat

    IP address. Thus, users on the same network can not login to the same server simultaneously. In this case it is better to use Many-to-Many No Overload or One-to-One NAT mapping types, thus each user login to the server using a unique global IP address. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 129: What Ip/Port Mapping Does Multi-Nat Support

    NAT for outside access. Note, if you want to map each server to one unique IGA please use the One-to-One mode. The following table summarizes these types. NAT Type IP Mapping One-to-One ILA1<--->IGA1 ILA1<--->IGA1 Many-to-One ILA2<--->IGA1 (SUA/PAT) Many-to-Many ILA1<--->IGA1 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 130: What Is The Difference Between Sua And Multi-Nat

    Without DDNS, we always tell the users to use the WAN IP of the 312 to reach our internal server. It is inconvenient for the users if this IP is dynamic. With DDNS supported by the Prestige, you apply a DNS name All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 131: When Do I Need Ddns Service

    However, SUA should not change the source port of the UDP packets which are used for key managements. Because the remote gateway checks this source port during connections, the port thus is not allowed to be changed. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 132: How Do I Setup My Prestige For Routing Ipsec Packets Over Sua

    P2802HWL can support up to three devices per telephone port. Can I receive incoming PSTN call through P2802HWL ? Yes, P2802HWL has a line port for connecting a PSTN line. Thus enable you to receive incoming PSTN calls. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 133: Can I Make An Outgoing Pstn Call Through P2802Hwl

    In order to transfer voice (analog signal) over IP it first need to be digitized. Codec is a technic to digitize analog signal to digital and vice versa. There are various speech codec available and can be used with VoIP each with it's advantage and disadvantage. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 134: What Advantage Does Voice Over Ip Can Provide

    Codec is a algorithm which converts analog signal into digital signal and vice versa. There are three main type of waveform codec, source codec, and hybrid codec. Each consume different amount of bandwidth and provide different voice quality level. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 135: What Is The Relation Of Codec And Voip

    3. An account with a VoIP provider such as an ITSP. The account can be configured to recognize your calls automatically, or you can require the users to enter their unique account numbers issued. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 136: Unable To Register With The Sip Server

    In such case, please contact your local vendor for support. If they can't help out the problem they will escalate your problem to ZyXEL tech center. To report a problem please prepared below info. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 137: What Is A Network Firewall

    This adds a level of security since the clients on the private LAN are invisible to the Internet. What are the basic types of firewalls? Conceptually, there are three types of firewalls: 1. Packet Filtering Firewall 2. Application-level Firewall 3. Stateful Inspection Firewall All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 138: What Kind Of Firewall Is The Prestige

    Although packet filter and NAT restrict access to particular computers and networks, however, for the other companies this security may be insufficient, because packets filters typically cannot maintain session state. Thus, for greater security, a firewall is considered. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 139: What Is Denials Of Service (Dos)Attack

    SYN-ACKs are moved off the queue only when an ACK comes back or when an internal timer (which is set a relatively long intervals) terminates the TCP three-way handshake. Once the queue is full , the system will ignore all incoming SYN requests, making the system unavailable for legitimate users. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 140: What Is Land Attack

    There are two default ACLs pre-configured in the Prestige, one allows all connections from LAN to WAN and the other blocks all connections from WAN to LAN except of the DHCP packets. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 141: How Can I Protect Against Ip Spoofing Attacks

    Destination IP Addr =a.b.c.d • Destination IP Mask =w.x.y.z • Action Matched =Drop • Action No Matched =Forward Where a.b.c.d is an IP address on your local network and w.x.y.z is your netmask. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 142: Content Filter Faq

    There are some reasons to use a VPN. The most common reasons are because of security and cost. Security 1). Authentication With authentication, VPN receiver can verify the source of packets and guarantee the data integrity. 2). Encryption All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 143: What Are Most Common Vpn Protocols

    IP standard (IPv.4) and also the upcoming one (IPv.6). In addition, IPSec can protect any protocol that runs on top of IP, for instance TCP, UDP, and ICMP. The IPSec All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 144: What Secure Protocols Does Ipsec Support

    There are two phases in every IKE negotiation- phase 1 (Authentication) and phase 2 (Key Exchange). Phase 1 establishes an IKE SA and phase 2 uses that SA to negotiate SAs for IPSec. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 145: What Is Pre-Shared Key

    IP/FQDN(DNS)/Ueser FQDN(E-mail). The content of Phase 1 ID depends on the Phase 1 ID type. The following is an example for how to configure phase 1 ID. ID type Content ------------------------------------ IP 202.132.154.1 DNS www.zyxel.com All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 146: When Should I Use Fqdn

    You can configure Prestige for VPN using SMT or Web configurator. Prestige 1 supports Web only. How many VPN connections does Prestige support? Prestige 1 supports 1 VPN connection. Prestige 10 supports 10 VPN connections. Prestige 50 supports 50 tunnels. Prestige 100 supports 100 tunnels. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 147: What Vpn Protocols Are Supported By Prestige

    4. Secure Gateway IP Address -- This must be a public, routable IP address, private IP is not allowed. That means it can not be in the 10.x.x.x subnet, the 192.168.x.x subnet, nor in the range All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 148: Does Prestige Support Dynamic Secure Gateway Ip

    SecGo IPSec for Windows • F-Secure IPSec for Windows • KAME IPSec for UNIX • Nortel IPSec for UNIX • Intel VPN, v. 6.90 • FreeS/WAN for Linux • SSH Remote ISAKMP Testing Page, (http://isakmp-test.ssh.fi/cgi-bin/nph-isakmp-test) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 149: Will Zyxel Support Secure Remote Management

    15-SUA Server Setup. Where can I configure Phase 1 ID in Prestige? Phase 1 ID can be configured in VPN setup menu as following. Note that you can make such configuration in WEB GUI. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 150: If I Have Nat Router Between Two Vpn Gateways, And I Would Like To Use Ip Type As Phase 1 Id, What Should I Know

    If I have NAT router between two VPN gateways, and I would like to use IP type as Phase 1 ID, what should I know? We presume your environment may look like this, All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 151: How Can I Keep A Tunnel Alive

    To configure NAT port forwarding, please go to WEB interface, Setup/ "SUA/NAT", put the secure gateway's IP address in default server. To configure Firewall forwarding, please go to WEB interface, Setup/Firewall, select Packet Direction to WAN to LAN, and create a firewall rule the forwards IKE(UDP:500). All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 152: Can Prestige Behave As A Nat Router Supporting Ipsec Passthrough And An Ipsec Gateway Simultaneously

    Installation Flexibility: Wireless technology allows the network to go where wire cannot go. d. Reduced Cost-of-Ownership: While the initial investment required for wireless LAN hardware can be higher than the cost of wired All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 153: What Are The Disadvantages Of Wireless Lans

    The IEEE 802.11 is a wireless LAN industry standard, and the objective of IEEE 802.11 is to make sure that different manufactures' wireless LAN devices can communicate to each other.802.11 provides 1 or 2 Mbps transmission in the 2.4 GHz ISM band using either FHSS or DSSS. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 154: What Is 802.11B

    Yes. As long as the products comply to the same IEEE 802.11 standard. The Wi-Fi logo is used to define 802.11b compatible products. Wi-Fi5 is a compatibility standard for 802.11a products running in the 5GHz band. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 155: What Is Wi-Fi

    What are potential factors that may causes interference among WLAN products ? Factors of interference: 1. Obstacles: walls, ceilings, furniture… etc. 2. Building Materials: metal door, aluminum studs. 3. Electrical devices: microwaves, monitors, electric motors. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 156: What's The Difference Between A Wlan And A Wwan

    If an area is large with dispersed pockets of populations then extension points can be used for extend coverage. What is Direct-Sequence Spread Spectrum Technology – (DSSS) ? DSSS spreads its signal continuously over a wide frequency band. DSSS maps the information bearing All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 157: What Is Frequency-Hopping Spread Spectrum Technology – (Fhss)

    ESSID stands for Extended Service Set Identifier and identifies the wireless LAN. The ESSID of the mobile device must match the ESSID of the AP to communicate with the AP. The ESSID is a 32-character maximum string and is case-sensitive. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 158: How Do I Secure The Data Across An Access Point's Radio Link

    WEP, the encryption standard for 802.11, only encrypts the data packets not the 802.11 management packets and the SSID is in the beacon and probe management messages. The SSID is not encrypted if All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 159: By Turning Off The Broadcast Of Ssid, Can Someone Still Sniff The Ssid

    What is 802.1x ? IEEE 802.1x Port-Based Network Access Control is an IEEE (Institute of Electrical and Electronics Engineers) standard, which specifies a standard mechanism for authenticating, at the link layer (Layer 2), All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 160: What Is The Difference Between No Authentication Required, No Access Allowed And Authentication Required

    What is WPA ? WPA (Wi-Fi Protected Access) is a subset of the IEEE 802.11i security sepcification draft. difference between WPA and WEP are user authentication and improve data encryption. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 161: What Is Wpa-Psk

    There are two ways to dump the trace: 1. Online Trace--display the trace real time on screen 2. Offline Trace--capture the trace first and display later The details for capturing the trace in CLI command are as follows. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 162 11883.620 ENET0-T[0102] TCP 192.31.7.130:80->192.168.1.2:1108 11883.630 ENET0-T[0054] TCP 192.31.7.130:80->192.168.1.2:1108 11883.630 ENET0-R[0060] TCP 192.168.1.2:1108->192.31.7.130:80 11883.650 ENET0-R[0060] TCP 192.168.1.2:1108->192.31.7.130:80 11883.650 ENET0-R[0062] TCP 192.168.1.2:1109->192.31.7.130:80 Prestige> sys trcd parse ---<0000>---------------------------------------------------------------- LAN Frame: ENET0-RECV Size: 62/ 62 Time: 12089.790 sec All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 163 = 28 Flags = 0x02 (..S.) Window Size = 0x2000 (8192) Checksum = 0xBEC3 (48835) Urgent Ptr = 0x0000 (0) Options 0000: 02 04 05 B4 01 01 04 02 RAW DATA: All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 164 Source Port = 0x0050 (80) Destination Port = 0x045C (1116) Sequence Number = 0x4AD1B57F (1255257471) Ack Number = 0x00BD15A8 (12391848) Header Length = 24 Flags = 0x12 (.A..S.) Window Size = 0xFAF0 (64240) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 165 Time to Live = 0x80 (128) Protocol = 0x06 (TCP) Header Checksum = 0x3C79 (15481) Source IP = 0xC0A80102 (192.168.1.2) Destination IP = 0xC01F0782 (192.31.7.130) TCP Header: Source Port = 0x045C (1116) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 166 Prestige> sys trcp channel enet0 none Prestige> sys trcp channel enet1 bothway Prestige> sys trcp sw on Prestige> sys trcl sw on Prestige> sys trcd brief 12367.680 ENET1-R[0070] UDP 202.132.155.95:520->202.132.155.255:520 12370.980 ENET1-T[0062] TCP 202.132.155.97:10261->192.31.7.130:80 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 167 Source IP = 0xC01F0782 (192.31.7.130) Destination IP = 0xCA849B61 (202.132.155.97) TCP Header: Source Port = 0x0050 (80) Destination Port = 0x281E (10270) Sequence Number = 0xD3E95985 (3555285381) Ack Number = 0x00C18F63 (12685155) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 168 = 0x0800 (TCP/IP) IP Header: IP Version Header Length = 20 Type of Service = 0x00 (0) Total Length = 0x0028 (40) Idetification = 0x7A0C (31244) Flags = 0x02 Fragment Offset = 0x00 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 169 Frame Type: TCP 202.132.155.97:10270->192.31.7.130:80 Ethernet Header: Destination MAC Addr = 00A0C5012345 Source MAC Addr = 00A0C5921312 Network Type = 0x0800 (TCP/IP) IP Header: IP Version Header Length = 20 Type of Service = 0x00 (0) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 170 0020: 07 82 28 1E 00 50 00 C1-8F 63 D3 E9 5D E9 50 11 ..(..P...c..].P. 0030: 1D D5 7A 11 00 00 ..z... Prestige> Offline Trace 1. Trace LAN packet 2. Trace WAN packet All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 171 10856.020 ENET0-T[0054] TCP 192.31.7.130:80->192.168.1.2:1102 10856.030 ENET0-T[0058] TCP 192.31.7.130:80->192.168.1.2:1103 10856.040 ENET0-R[0060] TCP 192.168.1.2:1103->192.31.7.130:80 Prestige> sys trcp parse 5 5 ---<0005>---------------------------------------------------------------- LAN Frame: ENET0-XMIT Size: 58/ 58 Time: 10856.030 sec Frame Type: TCP 192.31.7.130:80->192.168.1.2:1103 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 172 = 0xDCEF (56559) Urgent Ptr = 0x0000 (0) Options 0000: 02 04 05 B4 RAW DATA: 0000: 00 80 C8 4C EA 63 00 A0-C5 92 13 11 08 00 45 00 ...L.c..E. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 173 12865.130 ENET1-T[0411] TCP 202.132.155.97:10278->204.217.0.2:80 12865.220 ENET1-R[0247] TCP 204.217.0.2:80->202.132.155.97:10282 Prestige> sys trcp parse 3 4 ---<0003>---------------------------------------------------------------- LAN Frame: ENET1-RECV Size: 247/ 96 Time: 12865.120 sec Frame Type: TCP 204.217.0.2:80->202.132.155.97:10278 Ethernet Header: Destination MAC Addr = 00A0C5921312 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 174 0020: 20 57 65 64 2C 20 30 37-20 4A Wed, 07 J RAW DATA: 0000: 00 A0 C5 92 13 12 00 A0-C5 59 12 84 08 00 45 00 ..Y..E. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 175 = 0xCCD90002 (204.217.0.2) TCP Header: Source Port = 0x2826 (10278) Destination Port = 0x0050 (80) Sequence Number = 0x00C8C015 (13156373) Ack Number = 0x4D713E47 (1299267143) Header Length = 20 Flags = 0x18 (.AP...) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 176: Debug Pppoe Connection

    3. Enter Menu 24.8-CI command mode 4. Type the following commands: sys trcp sw on (turn on packet trace) sys errctl 3 (save crash information and make system enter debug mode after the crash) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 177 1 type 1 code x09 sess-id 0 len 12(x000C) ### Hit any key to continue.### $$$ DIALING dev=6 ch=0..poeI/C: ver 1 type 1 code x07 sessId x0000 len 274(x0112) poeCtrlI/C: pkt len 274 poeGetTags() service-name All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 178 00 00 00 00 00 00 00 00 00 00 00 00 00 01 ed 2b ...b...f...j...n e5bdc010: 00 00 00 00 00 00 00 00 00 00 00 00 00 01 ed 2b ...b...f...j...n All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 179 (Compressed) Version: RAS P2802R, start: bfc58030 Length: 3DB3EC, Checksum: 9AA9 Compressed Length: 12AC58, Checksum: DC06 Copyright (c) 1994 - 2004 ZyXEL Communications Corp. initialize ch = 0, ethernet address: 00:a0:c5:d1:78:e9 Wan Channel init ..done ........done VC5402 Init...OK Press ENTER to continue...
  • Page 180 1.4 Display the brief trace online by entering: sys trcd brief 1.5 Display the detailed trace online by entering: sys trcd parse Example: ras> sys trcp channel mpoa00 none All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 181 = 0x00 (0) Total Length = 0x0030 (48) Idetification = 0x330B (13067) Flags = 0x02 Fragment Offset = 0x00 Time to Live = 0x80 (128) Protocol = 0x06 (TCP) Header Checksum = 0x3E71 (15985) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 182 Destination MAC Addr = 0080C84CEA63 Source MAC Addr = 00A0C5921311 Network Type = 0x0800 (TCP/IP) IP Header: IP Version Header Length = 20 Type of Service = 0x00 (0) Total Length = 0x002C (44) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 183 0030: FA F0 F8 77 00 00 02 04-05 B4 ...w..---<0002>---------------------------------------------------------------- LAN Frame: ENET0-RECV Size: 60/ 60 Time: 12090.210 sec Frame Type: TCP 192.168.1.2:1116->192.31.7.130:80 Ethernet Header: Destination MAC Addr = 00A0C5921311 Source MAC Addr = 0080C84CEA63 All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 184 0010: 00 28 35 0B 40 00 80 06-3C 79 C0 A8 01 02 C0 1F .(5.@...<y..0020: 07 82 04 5C 00 50 00 BD-15 A8 4A D1 B5 80 50 10 ...\.P..J...P. All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 185 Source MAC Addr = 00A0C5012345 Network Type = 0x0800 (TCP/IP) IP Header: IP Version Header Length = 20 Type of Service = 0x00 (0) Total Length = 0x048B (1163) Idetification = 0xB139 (45369) All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 186 0040: A5 3C 2B 59 E2 78 A7 98-8F 3F A9 09 E4 0F 26 14 .<+Y.x...?..&. 0050: 9C 58 3E 95 3E E7 FC 2A-4C 2F FB BE 2F FE EF D0 .X>.>..*L/../... Offline Trace All contents copyright (c) 2007 ZyXEL Communications Corporation.
  • Page 187: Cli Command List

    The latest CI command list is available in release notes of every ZyXEL firmware release. Please go to ZyXEL public WEB site http://www.zyxel.com/support/download.php to download firmware package (*.zip), you should unzip the package to get the release note in PDF format. All contents copyright (c) 2007 ZyXEL Communications Corporation.

This manual is also suitable for:

Prestige 2802hw-ix

Table of Contents