background image

 

46 

In ASM Cells: 

Number of ASM cells received. 

Out ASM Cells: 

Number of ASM cells transmitted. 

In Packet Errors: 

Number of received packets with errors. 

In Cell Errors: 

Number of received cells with errors. 

Reset: 

Click to reset the statistics.

 

 

xDSL 

 

 

 

Mode: 

Modulation protocol, including G.dmt, G.lite, T1.413, ADSL2, AnnexL, ADSL2+ and AnnexM.

 

Traffic Type: 

Transfer mode, here supports ATM and PTM.

 

Status: 

Show the status of DSL link. 

Link Power State: 

Show link output power state.

 

Summary of Contents for BiPAC 8700VAX(L)-1600

Page 1: ...BiPAC 8700VAX L 1600 Triple WAN Wireless 1600Mbps 3G 4G LTE VoIP VPN VDSL2 ADSL2 Firewall Router User Manual Version Released 2 52 d2 Last revised date August 30 2017 ...

Page 2: ... 9 Important note for using this router 10 Device Description 11 The Front LEDs 11 The Rear Ports 12 Cabling 14 Chapter 3 Basic Installation 15 Connecting Your Router 16 Network Configuration 18 Configuring a PC in Windows 7 8 10 18 Configuring a PC in Windows Vista 21 Configuring a PC in Windows XP 24 Factory Default Settings 26 Information from your ISP 28 Easy Sign On EZSO 29 Chapter 4 Configur...

Page 3: ...Wireless 5G wl0 2 4G Wl1 90 Basic 91 Security 93 MAC Filter 104 Wireless Bridge 105 Advanced 122 Station Info 127 Schedule Control 128 WAN Wide Area Network 129 WAN Service 129 DSL 129 Ethernet 142 3G 4G LTE 149 Failover 152 DSL 153 SNR 154 System 155 Internet Time 155 Firmware Upgrade 156 Backup Update 157 Access Control 158 Mail Alert 159 SMS Alert 160 Configure Log 161 USB 162 Storage Device In...

Page 4: ...207 Wake On LAN 208 VoIP 209 SIP Device 209 Service Provider 211 SIP Account 213 Call Block 215 VOIP Dial Plan 216 Phone Book 219 Advanced Setup 221 VPN 222 IPSec 222 VPN Account 232 Exceptional Rule Group 233 PPTP 235 PPTP Server 235 PPTP Client 236 L2TP 248 L2TP Server 248 L2TP Client 250 OpenVPN 266 OpenVPN Server 266 OpenVPN CA 268 OpenVPN Client 269 GRE 276 Routing 277 Default Gateway 277 Sta...

Page 5: ...5 Remote Access 306 Mobile Network 307 3G 4G LTE Usage Allowance 308 Power Management 309 Time Schedule 310 Auto Reboot 311 Diagnostics 312 Diagnostics Tools 312 Push Service 315 Diagnostics 316 Ethernet OAM 317 Restart 318 Chapter 5 Troubleshooting 319 Appendix Product Support Contact 321 ...

Page 6: ...rmance Featured with simultaneous dual band technology the BiPAC 8700VAX L 1600 can run both 2 4GHz and 5GHz frequency bands at the same time offering ultra fast wireless speeds of up to 1600Mbps 1300 300 and multiple SSIDs on both bands The BiPAC 8700VAX L 1600 by adopting this state of the art technology allows for multiple demand applications such as streaming HD videos and multiplayer gaming s...

Page 7: ...ntly popular secure VPNs including embedded IPSec VPN PPTP L2TP OPenVPN GRE which satisfies different users needs allowing users to establish encrypted private connections over the Internet with your optimum VPN options You can access your corporate Intranet and transmit sensitive data between branch offices and remote sites anytime even when you are out of office thus enhancing productivity Pathw...

Page 8: ... guest access and client isolation Secured IPSec VPN with powerful DES 3DES AES PPTP VPN with Pap Chap MS CHAPv2 authentication Pure L2TP and L2TP over IPSec OpenVPN with CA authentication and extensive OpenSSL encryption GRE tunnel SNR adjustments to achieve highest sync speeds Universal Plug and Play UPnP Compliance QoS for traffic prioritization and bandwidth management SOHO firewall security A...

Page 9: ... modes Supports VDSL2 profiles 8a 8b 8c 8d 12a 12b 17a Supports ATM and PTM modes Network Protocols and Features IPv4 or IPv4 IPv6 Dual Stack NAT static v4 v6 routing and RIP 1 2 IPv6 Stateless Stateful Address Auto configuration IPv6 Router Advertisement IPv6 over PPP DHCPv6 IP Tunnel IPv6 in IPv4 6RD IP Tunnel IPv4 in IPv6 DS Lite Universal Plug and Play UPnP Compliant Dynamic Domain Name System...

Page 10: ... the DiffServ approach Traffic prioritization and bandwidth management based on IPv4 IPv6 protocol port number and address ATM and PPP Protocols ATM Adaptation Layer Type 5 AAL5 Multiple Protocol over ALL5 RFC 268 formerly RFC 1483 Bridged or routed Ethernet encapsulation VC and LLC based multiplexing PPP over Ethernet PPPoE PPP over ATM RFC 2364 Classical IP over ATM RFC 1577 MAC Encapsulated Rou...

Page 11: ...87 RTC RFC 1870 Supports G 711ALaw G 711MuLaw G 729a G 726_32 G 722 Audio Codec standards Supports telephony features call waiting silence suppression voice activity detection VAD comfort noise generation CNG G 168 line echo cancellation caller ID Bell 202 V23 and three way conference Dialing rules for individual use of Internet CNG Comfort Noise Generation DTMF Detection and Generation Silence Su...

Page 12: ...lnet server for remote and local management Supports DHCP server client relay Supports SNMP v1 v2 MIB I and MIB II TR 069 1 supports remote management Available Syslog Mail alert for WAN IP change Auto failover and fallback Push Service for diagnostics and debug usage Supports Remote Access Control 1 On request for Telco ISP projects 2 IPTV application may require subscription to IPTV services fro...

Page 13: ...uto crossover MDI MDI X Switch EWAN 1 Gigabit Ethernet port port 5 for connecting directly to Fiber xDSL Cable modem also serving as a Ethernet port 5 when not in EWAN use It is a LAN WAN configurable port USB 2 0 supports storage service and 3G 4G LTE USB modem Telephone 2 FXS ports Wireless on off and WPS push button Power jack Power switch Factory default reset button ...

Page 14: ...AN Wireless 1600Mbps 3G 4G LTE VoIP VPN VDSL2 ADSL2 Firewalls Router Vertical Stand Quick Start Guide CD containing the on line manual Three detachable external Wi Fi Antennas for 5G RJ 45 Cat 5e STP Ethernet cable RJ 11 telephone cable Power adapter Splitter Micro filter Optional ...

Page 15: ... 3 Do not open or repair the case yourself If the router is too hot turn off the power immediately and have it repaired at a qualified service center 4 Avoid using this product and all accessories outdoors Attention 1 Place the router on a stable surface 2 Only use the power adapter that comes with the package Using a different voltage rating power adapter may damage the router ...

Page 16: ... off USB Green Successfully connected to a USB device Printer USB 2 0 storage 4G LTE USB modem FXS1 2 Green Phone off hook Green Successfully connected to an Ethernet device or to a broadband device WAN Blinking Data being transmitted received Green Successfully connected to an xDSL DSLAM Line Synced Green Blinking xDSL synchronizing or waiting for DSL synchronizing DSL Off xDSL cable unplugged Gr...

Page 17: ...12 The Rear Ports 5 1 2 3 4 7 9 8 10 6 ...

Page 18: ...vice Printer USB 2 0 storage 3G LTE 3G USB modem to this port 6 FXS1 2 RJ 11 connector Connect your analog phone set to this port with the RJ 11 cable 7 DSL Connect to the xDSL telephone network with RJ 11 cable telephone 8 WPS Press hold the button for 2 seconds to trigger WPS function For WPS configuration please refer to the WPS section in the User Manual 9 WLAN Press hold the button for more t...

Page 19: ... you have a line filter with all devices e g telephones fax machines analogue modems connected to the same telephone line and the wall socket unless you are using a Central Splitter or Central Filter installed by a qualified and licensed electrician and ensure that all line filters are correctly installed and the right way around Missing line filters or line filters installed the wrong way around ...

Page 20: ...s to obtain an IP address through a DHCP server or a fixed IP address that must be in the same subnet as the router The default IP address of the router is 192 168 1 254 and the subnet mask is 255 255 255 0 i e any attached PC must be in the same subnet and have an IP address in the range of 192 168 1 1 to 192 168 1 253 The best and easiest way is to configure the PC to get an IP address automatic...

Page 21: ...16 Connecting Your Router Users can connect the VDSL2 ADSL2 VoIP router as the following DSL mode Broadband mode ...

Page 22: ...17 3G 4G LTE mode Failover fallback mode ...

Page 23: ...Settings or right click the mouse when it points at Windows ICON Start then click Control Panel 3 Click on Network and Internet 4 When the Network and Sharing Center window pops up select and click on Change adapter settings on the left window panel 5 Select the Local Area Connection and right click the icon to select Properties Settings of Windows 10 Control Panel ...

Page 24: ...ties 7 In the TCP IPv4 properties window select the Obtain an IP address automatically and Obtain DNS Server address automatically radio buttons Then click OK to exit the setting 8 Click OK again in the Local Area Connection Properties window to apply the new configuration ...

Page 25: ...ies 7 In the TCP IPv6 properties window select the Obtain an IPv6 address automatically and Obtain DNS Server address automatically radio buttons Then click OK to exit the setting 8 Click OK again in the Local Area Connection Properties window to apply the new configuration ...

Page 26: ...ork 2 Then click on Network and Sharing Center at the top bar 3 When the Network and Sharing Center window pops up select and click on Manage network connections on the left window pane 4 Select the Local Area Connection and right click the icon to select Properties ...

Page 27: ...ties 6 In the TCP IPv4 properties window select the Obtain an IP address automatically and Obtain DNS Server address automatically radio buttons Then click OK to exit the setting 7 Click OK again in the Local Area Connection Properties window to apply the new configuration ...

Page 28: ...ies 6 In the TCP IPv6 properties window select the Obtain an IPv6 address automatically and Obtain DNS Server address automatically radio buttons Then click OK to exit the setting 7 Click OK again in the Local Area Connection Properties window to apply the new configuration ...

Page 29: ...Network Connections 2 Double click Local Area Connection 3 In the Local Area Connection Status window click Properties 4 Select Internet Protocol TCP IP and click Properties 5 Select the Obtain an IP address automatically and the Obtain DNS server address automatically radio buttons 6 Click OK to finish the configuration ...

Page 30: ...t you should install it first Act as shown below 1 On the desktop Click Start Run type cmd then press Enter key in the keyboard the following screen appears 2 Key in command ipv6 install Configuration is OK now you can test whether it works ok ...

Page 31: ...tention If you have forgotten the username and or password of the router you can restore the device to its default setting by pressing the Reset Button more than 5 seconds Device LAN IPv4 settings IPv4 Address 192 168 1 254 Subnet Mask 255 255 255 0 Device LAN IPv6 settings IPv6 Address prefix Default is a link local address and is different from each other as MAC address is different from one to ...

Page 32: ...dresses continuing from 192 168 1 100 through 192 168 1 199 The PPPoE function is enabled to automatically get the WAN port configuration from the ISP IPv6 LAN Port WAN Port IPv6 address prefix Default is a link local address and is different from each other as MAC address is different from one to one For example fe80 204 edff fe01 1 64 the prefix initiates by fe80 DHCP server function Enabled The...

Page 33: ...your ISP when you connect or be set manually PPPoA RFC2364 VPI VCI VC LLC based multiplexing Username Password and Domain Name System DNS IP address it can be automatically assigned by your ISP when you connect or be set manually DHCP Client VPI VCI VC LLC based multiplexing Domain Name System DNS IP address it can be automatically assigned by your ISP when you connect or be set manually IPoA RFC1...

Page 34: ...ve obtained from your ISP By following the instructions given carefully and through the information you provide the router will be configured in no time and you will find yourself surfing the internet sooner than you realize EZSO window pops up Step1 Set the administration password Step 2 Set the Time Zone Step 3 Configure the WAN interface DSL mode ADSL mode please choose ATM VDSL please choose P...

Page 35: ...f the DSL connection failure 3 Wait while the device is configured DSL synchronized 4 WAN port configuration is success and next to wireless if you want skip wireless setting click Done Click Done web configuration will be loaded you will enter the web configuration page ...

Page 36: ...on which band or both and set the SSID and encryption Key 1 Leave it empty to disable the wireless security 2 Fill in the Key and the encryption mode will be WPA2 PSK AES 6 Continue to set 2 4GHz wireless 7 Set the VoIP parameters First user should turn to a VoIP service provider to register a SIP account write down the registration information and fill it in the following blanks For detail please...

Page 37: ...32 8 In the above page click finish to complete the EZSO settings ...

Page 38: ...the username password from your ISP for IP and DNS settings also refer to your ISP Here IPv6 service is enabled by default 3 Wait while the device is configured 4 WAN port configuration is success Click Done web configuration will be loaded you will enter the web configuration page ...

Page 39: ...on which band or both and set the SSID and encryption Key 1 Leave it empty to disable the wireless security 2 Fill in the Key and the encryption mode will be WPA2 PSK AES 6 Continue to set 2 4GHz wireless 7 Set the VoIP parameters First user should turn to a VoIP service provider to register a SIP account write down the registration information and fill it in the following blanks For detail please...

Page 40: ...35 8 In the above page click finish to complete the EZSO settings ...

Page 41: ...ter the APN username password from your ISP for settings about Authentication method PIN etc also refer to your ISP 3 Wait while the device is configured 4 WAN port configuration is success Click Done web configuration will be loaded you will enter the web configuration page ...

Page 42: ...on which band or both and set the SSID and encryption Key 1 Leave it empty to disable the wireless security 2 Fill in the Key and the encryption mode will be WPA2 PSK AES 6 Continue to set 2 4GHz wireless 7 Set the VoIP parameters First user should turn to a VoIP service provider to register a SIP account write down the registration information and fill it in the following blanks For detail please...

Page 43: ...38 8 In the above page click finish to complete the EZSO settings ...

Page 44: ...he IP address of your router which by default is 192 168 1 254 and click or press Enter key on the keyboard a login prompt window will appear The default root username and password are admin and admin respectively Congratulations You are now successfully logged in to the VDSL2 ADSL2 Router ...

Page 45: ...ary WAN Statistics Bandwidth Usage 3G 4G LTE Status Route ARP DHCP VPN Log VoIP Quick Start Quick Start Configuration LAN Wireless 5G wl0 Wireless 2 4G wl1 WAN System USB IP Tunnel Security Quality of Service NAT Wake On LAN VPN IPSec VPN Account Exceptional Rule Group PPTP L2TP OpenVPN GRE VoIP SIP Devices Service Provider SIP Account Call Block VOIP Dial Plan Phone Book Advanced Setup Routing DN...

Page 46: ...ers an easy access to the information about the working router and access to view the current status of the router Here Summary WAN Statistics Bandwidth Usage 3G 4G LTE Status Route ARP DHCP VPN Log and VOIP subsections are included ...

Page 47: ... LAN IPv6 address Default is a Link Local address but when connects to ISP it will display the Global Address like above figure MAC Address Displays the MAC address DSL PHY and Driver Version Display DSL PHY and Driver version Wireless Driver Version Displays wireless driver version WAN Line Rate Upstream Kbps Displays Upstream line Rate in Kbps Line Rate Downstream Kbps Displays Downstream line R...

Page 48: ...n interface Description The description of this connection Type The protocol used by this connection Status To disconnect or connect the link Connection Time The WAN connection time since WAN is up IPv4 Address The WAN IPv4 Address the device obtained IPv6 Address The WAN IPv6 Address the device obtained DNS The DNS address the device obtained ...

Page 49: ...n Packets for each interface Errors Display the total statistics of errors arising in Receiving or Transmitting data for each interface Drops Display the total statistics of drops arising in Receiving or Transmitting data for each interface Multicast packets Display the Received and Transmitted multicast Packets for each interface Unicast packets Display the Received and Transmitted unicast Packet...

Page 50: ...st packets Display the Received and Transmitted multicast Packets for every WAN interface Unicast packets Display the Received and Transmitted unicast Packets for every WAN interface Broadcast packets Display the Received and Transmitted broadcast Packets for every WAN interface Reset Press this button to refresh the statistics xTM The Statistics xTM screen displays all the xTM statistics Port Num...

Page 51: ...ackets with errors In Cell Errors Number of received cells with errors Reset Click to reset the statistics xDSL Mode Modulation protocol including G dmt G lite T1 413 ADSL2 AnnexL ADSL2 and AnnexM Traffic Type Transfer mode here supports ATM and PTM Status Show the status of DSL link Link Power State Show link output power state ...

Page 52: ...interleaver depth Delay msec Show the delay time in msec INP DMT symbol Show the DMT symbol Super Frames The total number of super frames Super Frame Errors the total number of super frame errors RS Words Total number of Reed Solomon code errors RS Correctable Errors Total number of RS with correctable errors RS Uncorrectable Errors Total number of RS words with uncorrectable errors HEC Errors Tot...

Page 53: ...ested Time sec press Start to start test When it is OK the following test result window will appear You can view the quality of ADSL connection Here the connection is OK Reset Click this button to reset the statistics ...

Page 54: ...ar idea of the usage LAN Note P5 is a configurable WAN LAN port here the example is in broadband WAN mode p5 working as a WAN port Press View LAN Transmitted button to change the diagram to the statistics of the LAN Transmitted Bytes Note means Ethernet port 1 and the traffic information of the port 2 is identified with blue the same color with port 2 in the diagram other ports all take the same m...

Page 55: ...50 When you press View WAN Traffic concurrently button the WAN Bandwidth Usage pops up so that users can view the WAN traffic concurrently ...

Page 56: ...51 WAN Service Press View WAN Transmitted button to change the diagram to the statistics of the WAN Transmitted Bytes ...

Page 57: ...52 Press View LAN Traffic concurrently button to directly switch to the LAN Bandwidth Usage page to view the LAN traffic concurrently ...

Page 58: ...cting to Network Mode The current operation mode for 3G 4G LTE module it depends on service provider and card s limitation GSM or UMTS Card Name Given a name for the embedded 3G 4G LTE module Card Firmware Current used FW in the 3G 4G LTE module Current Received RX Transmitted TX Bytes Current Rx TX receive transmit packets in Byte Total Received RX Transmitted TX Bytes The total Rx TX receive tra...

Page 59: ...ot the subnet L G Show that the outside gateway is needed to forward packets in this route L R Show that the route is reinstated from dynamic routing L D Show that the route is dynamically installed by daemon or redirecting L M Show the route is modified from routing daemon or redirect Metric Display the number of hops counted as the Metric of the route Service Display the service that this route ...

Page 60: ...as permanent entry the route is permanent L P publish entry publish this route item MAC Address Shows the MAC address that is corresponded to the IP address of the device it is mapped to Device here refers to the physical interface it is a concept to identify Clients from LAN or WAN For example the Clients in LAN here displays br0 Mark Show clearly the SSID WLAN the device is in Neighbor Cache Tab...

Page 61: ... server in the device Host Name The Host Name of DHCP client MAC Address The MAC Address of internal DHCP client host IP Address The IP address which is assigned to the host with this MAC address Expires in Show the remaining time after registration Mark Show clearly the SSID WLAN the device is in ...

Page 62: ...ec Name The IPSec connection name Active Display the connection status Local Subnet Display the local network Remote Subnet Display the remote network Remote Gateway The remote gateway address SA The Security Association for this IPSec entry Refresh Click this button to refresh the tunnel status ...

Page 63: ...onnected client Action Act to the connection Click Drop button to disconnect the tunnel connection PPTP Client Name The PPTP connection name Enable Display the connection status with icon Status The connection status Connection Type Remote Access or LAN to LAN Peer Network IP Display the remote server side network and subnet mask Client Assigned IP by PPTP server Action Act to the connection Click...

Page 64: ... connected client Action Act to the connection Click Drop button to disconnect the tunnel connection L2TP Client Name The L2TP connection name Enable Display the connection status with icon Status The connection status Connection Type Remote Access or LAN to LAN Peer Network IP Display the network and subnet mask of server side Client Assigned IP by L2TP server Action Act to the connection Click D...

Page 65: ...signed tunnel virtual IP to remotely connected OpenVPN client Action Act to the connection Click Drop button to disconnect the tunnel connection OpenVPN Client Name The OpenVPN connection name Enable Display the connection status with icon Status The connection status Peer Network IP Display the tunnel virtual address WAN address of server side Client IP Assigned tunnel virtual IP by OpenVPN serve...

Page 66: ... GRE connection name Enable Display the connection status with icons Status The connection status connected or disable Remote Gateway The IP of remote gateway Refresh Click this button to refresh the connection status ...

Page 67: ...cumulated up to the present time You can trace historical information with this function And the log policy can be configured in Configure Log section Refresh Click to update the system log Clear Click to clear the current log from the screen ...

Page 68: ...g Outgoing IP Filtering Incoming URL Filter to determine if you want to log this information Also you can turn to Configure Log section below to determine the level to log the message You can use this to track potential threats to your system and network Refresh Click to update the security log Clear Click to clear the current log from the screen ...

Page 69: ...status table displays the status of the VoIP phone usage including Username the username registered in SIP Account Host the SIP registrar address Status the process in use Registered Time the lasting period since the VoIP is up ...

Page 70: ...65 Incoming Call Log Incoming call log monitors incoming calls It records all incoming call information ranging from Date Time Duration Caller ID Caller Number My Number ...

Page 71: ...66 Outgoing Call Log Outgoing call log monitors outgoing calls It records all outgoing call information ranging from Date Time Duration Caller ID Caller Number My Number ...

Page 72: ...all log monitors missed calls It records all missed call information ranging from Date Time Duration CallerID Caller Number My Number and Mark the reason why the call is not answered with possible value reading DND CF CB or empty ...

Page 73: ...choose ATM VDSL please choose PTM Here take ADSL for example Select DSL press Continue to go on to next step Enter the username password from your ISP for IP and DNS settings also refer to your ISP Here IPv6 service is enabled by default If the DSL line is not synchronized the page will pop up warning of the DSL connection failure ...

Page 74: ...ton and you may proceed to configure the Wireless setting The 8700VAX L 1600 supports dual band wireless here you can set to activate wireless on which band or both and set the SSID and encryption Key 1 Leave it empty to disable the wireless security 2 Fill in the Key and the encryption mode will be WPA2 PSK AES 6 Continue to set 2 4GHz wireless ...

Page 75: ...a VoIP service provider to register a SIP account please write down the registration information and fill it in the following blanks In this page user can continue to add SIP account and configure dial plan for more please refer to SIP Account and VoIP Plan ...

Page 76: ...s Continue to go on to next step 2 Enter the username password from your ISP for IP and DNS settings also refer to your ISP Here IPv6 service is enabled by default 3 Wait while the device is configured 4 WAN port configuration is successful ...

Page 77: ...band wireless connections in Quick Start part users can only enable or disable the wireless on the band and the exact SSID and encryption Key 1 Leave it empty to disable the wireless security 2 Fill in the Key and the encryption mode will be WPA2 PSK AES For detail setting please go to the Wireless part in this Manual 6 Continue to set 2 4GHz wireless ...

Page 78: ...a VoIP service provider to register a SIP account please write down the registration information and fill it in the following blanks In this page user can continue to add SIP account and configure dial plan for more please refer to SIP Account and VoIP Plan ...

Page 79: ...ontinue to go on to next step 2 Select the 3G mode and enter the APN username password from your ISP and check with your ISP with the authentication method setting 3 Wait while the device is configured 4 WAN port configuration is successful ...

Page 80: ...band wireless connections in Quick Start part users can only enable or disable the wireless on the band and the exact SSID and encryption Key 1 Leave it empty to disable the wireless security 2 Fill in the Key and the encryption mode will be WPA2 PSK AES For detail setting please go to the Wireless part in this Manual 6 Continue to set 2 4 GHz wireless ...

Page 81: ...a VoIP service provider to register a SIP account please write down the registration information and fill it in the following blanks In this page user can continue to add SIP account and configure dial plan for more please refer to SIP Account and VoIP Plan ...

Page 82: ... In this part users can conduct the necessary settings SIP account VoIP Dial Plan etc of VoIP for use For detail settings please refer to VoIP Picture1 Click Add SIP Account to add new sip accounts set the registration information Picture2 Click Apply to save the settings ...

Page 83: ...78 For example In picture1 click Configure Dial Plan to extend to configure the dial plan Please go to VOIP Plan to get more Picture3 ...

Page 84: ... display the sub items that will allow you to further configure your router LAN Wireless 5G wl0 Wireless 2 4G wl1 WAN System USB IP Tunnel Security Quality of Service NAT and Wake On LAN The function of each configuration sub item is described in the following sections ...

Page 85: ...of the router Default is 192 168 1 254 Subnet Mask the default Subnet mask on the router IGMP Snooping Enable or disable the IGMP Snooping function Without IGMP snooping multicast traffic is treated in the same manner as broadcast traffic that is it is forwarded to all ports With IGMP snooping multicast traffic of a group is only forwarded to ports that have members of that group When enabled you ...

Page 86: ...unctions The DHCP protocol allows your router to dynamically assign IP addresses to PCs on your network if they are configured to obtain IP addresses automatically L Disable Disable the DHCP Server function L Enable Enable the DHCP function enter the information wanted Here as default Start IP Address The start IP address of the range the DHCP Server used to assign to the Clients End IP Address Th...

Page 87: ...s and then click Apply to confirm your settings But the IP assigned should be outside the range of 192 168 1 100 192 168 1 199 IP Alias This function allows the creation of multiple virtual IP interfaces on this router It helps to connect two or more local networks to the ISP or remote node IP Alias Check whether to enable this function IP Address Specify an IP address on this virtual interface Su...

Page 88: ... stateless mechanism allows a host to generate its own addresses using a combination of locally available information MAC address and information prefix advertised by routers Routers advertise prefixes that identify the subnet s associated with a link while hosts generate an interface identifier that uniquely identifies an interface on a subnet An address is formed by combining the two When using ...

Page 89: ...ock fc00 7 It is approximately the IPv6 counterpart of the IPv4 private address They are not routable in the global IPv6 Internet RADVD Type The way that ULA prefix is generated L Randomly Generated L Statically Configured select to set manually in the following parameters Prefix Set the prefix manually Preferred Life Time The ULA prefix life time When the time is over the ULA prefix is invalid an...

Page 90: ...de thus the PCs in LAN are configured through RA mode to obtain the prefix message and generate an address using a combination of locally available information MAC address and information prefix advertised by routers L With both DHCPv6 and Issue Router Advertisement Enabled With this method the PCs addresses in LAN are configured like above method but they can obtain such information like DNS from...

Page 91: ...e PCs addresses are configured the same as in IPv4 that is addresses are assigned by DHCPv6 server L With both DHCPv6 and Issue Router Advertisement Enabled With this method the PCs addresses are configured the same like above and the address information in RA packets will be neglected ...

Page 92: ... physical LAN but it allows for end stations to be grouped together even if they are not located on the same network switch Each group will perform as an independent network To support this feature you must create mapping groups with appropriate LAN and WAN interfaces using the Add button Please Note P5 can be configured as EWAN and when the device is in EWAN profile there is no P5 EWAN interface ...

Page 93: ...rfaces you want to group as a single group from Available LAN Interfaces Automatically Add Clients with following DHCP Vendor IDs Enter the DHCP Vendor IDs for which you want the Clients automatically added into the group DHCP vendor ID DHCP 60 is an Authentication for DHCP Messages Click Apply to confirm your settings and your added group will be listed in the Interface Grouping table below ...

Page 94: ...p add the DHCP vendor ID string By configuring a DHCP vendor ID string any DHCP client request with the specified vendor ID DHCP option 60 will be denied an IP address from the local DHCP server If a vendor ID is configured for a specific client device please REBOOT the client device attached to the modem to allow it to obtain an appropriate IP address Each LAN interface can only be added into one...

Page 95: ...s router supporting 11b g n a ac wireless standards It allows multiple wireless users on 2 4G and 5G radio bands to surf the Internet checking e mail watching video listening to music over the Internet concurrently You can choose the optimum radio band wireless connection base on your environment ...

Page 96: ...nique name of a wireless access point AP to be distinguished from another For security purpose change the default wlan ap 2 4g to a unique ID name to the AP already built in to the router s wireless interface It is case sensitive and must not excess 32 characters Make sure your wireless clients have exactly the SSID as the device in order to get connected to your network Note SSID is case sensitiv...

Page 97: ...hared by multiple providers Virtual APs provide each provider with separate authentication and accounting data for their users as well as diagnostic information without sharing sensitive management traffic or data between providers You can enable the virtual AP Here you can enable some Virtual APs according to the request And the other parameters of virtual APs are the same to the above Click Appl...

Page 98: ...onfiguration Manual Setup AP Select SSID select the SSID you want these settings apply to Network Authentication L Open WEP Encryption Select to enable or disable WEP Encryption Here select Enable Encryption Strength Select the strength 128 bit or 64 bit Current Network Key Select the one to be the current network key Please refer to key 1 4 below Network Key 1 4 Enter 13 ASCII characters or 26 he...

Page 99: ...ter the port number of RADIUS authentication server here RADIUS Key Enter the password of RADIUS authentication server WEP Encryption Select to enable or disable WEP Encryption Here select Enable Current Network Key Select the one to be the current network key Please refer to key 2 3 below Network Key 1 4 Enter 13 ASCII characters or 26 hexadecimal digits for 128 bit encryption keys Enter 5 ASCII ...

Page 100: ...DIUS authentication server This is in seconds RADIUS Server Port Enter the port number of RADIUS authentication server here RADIUS Key Enter the password of RADIUS authentication server WPA WAPI Encryption There are two Algorithms AES Advanced Encryption Standard and TKIP Temporal Key Integrity Protocol which help to protect the wireless communication L WPA2 PSK Protected Management Frame Select w...

Page 101: ...address of RADIUS authentication server RADIUS Server Port Enter the port number of RADIUS authentication server here RADIUS Key Enter the password of RADIUS authentication server WPA WAPI Encryption There are two Algorithms AES Advanced Encryption Standard and TKIP Temporal Key Integrity Protocol which help to protect the wireless communication L Mixed WPA2 WPA PSk Protected Management Frame Sele...

Page 102: ...ure WPS WPS Select enable to enable WPS function Please note that WPS can only be available when WPA2 PSK or OPEN mode is configured Note 1 WPS feature is only available when in WPA2 PSK or OPEN mode in security settings 2 Here wireless can be configured as Registrar and Enrollee mode respectively When AP is configured as Registrar you should select Configured in the WPS AP Mode below and default ...

Page 103: ...m Enrollee Station 16837546 in this example Or else users can alternatively enter the authorized station MAC Help it is to help users to understand the concept and correct operation 3 Click Station PIN Station MAC Note Users can alternatively input PIN from Enrollee Station or enter the authorized station MAC ...

Page 104: ...the wireless client s WPS utility eg Ralink Utility Set the Config Mode as Enrollee press the WPS button on the top bar select the AP eg Wlan ap 2 4g from the WPS AP List column Then press the PIN button located on the middle left of the page to run the scan ...

Page 105: ...s SSID and security settings will now be configured to match the SSID and security settings of the registrar You can check the message in the red ellipse with the security parameters you set here we all use the default ...

Page 106: ...101 Configure AP as Enrollee Add Registrar with PIN Method 1 Set AP to Unconfigured Mode ...

Page 107: ...ity eg Ralink Utility Set the Config Mode as Registrar Enter the PIN number 10864111 device for example in the PIN Code column then choose the correct AP eg wlan ap 2 4g from the WPS AP List section before pressing the PIN button to run the scan ...

Page 108: ...router s AP s SSID and security setting will now be configured to match the SSID and security setting of the registrar 4 Do Web Page refresh after ER complete AP Configuration to check the new parameters setting ...

Page 109: ...ny the hosts with the following listed MACs to access the wireless network Click Add to add the MACs MAC Address enter the MAC address es The format of MAC address could be xx xx xx xx xx xx or xx xx xx xx xx xx Click Apply to apply your settings and the item will be listed below To delete entries check the remove checkbox and press Remove to delete it To make changes click Edit of a MAC address t...

Page 110: ...ommunicate with all other bridges or only specific ones L Enable to enable wireless bridge restriction Only those specified in the Remote MAC Address the gateway can communicate with Remote Bridge MAC Address enter the remote bridge MAC addresses Here up to 4 bridge MAC addresses are supported L Enabled Scan to enable wireless bridge restriction Only those scanned by the gateway can communicate Re...

Page 111: ...ease use the router of the same brand or better the same model Point to Point wireless bridge Router B needs to bridge to Router A using wireless bridge for internet access and wireless coverage extension Router B shares the same Wireless SSID Country Security Channel setting with Router A Router A setup 1 Login to Router A LAN IP Address 192 168 1 254 enable DHCP server ...

Page 112: ...ss for Router A SSID Country Security Channel I Basic configuration SSID Country etc II Wireless security configuration for Router A Configure Network Authentication as WPA2 PSK and WPA WAPI passphrase as 1234567890 Users configure wireless security parameters according to their own needs ...

Page 113: ...108 III Advanced wireless configuration for Router A Channel 1 Bandwidth 20MHz 40MHz OBSS Coexistence Disable ...

Page 114: ...scanning or inputting Router B s wireless MAC address Make sure you know Router B s wireless MAC If not go to Wireless Basic Check BSSID which is Router B s wireless MAC Router B s wireless basic configuration WDS Configuration finished for Router A ...

Page 115: ...the LAN is same with router A please change it to 192 168 1 X which needs to be on the same subnet with router A disable DHCP server 2 Configure wireless for Router B SSID Country Security Channel which need to be same as set in Router A I Basic configuration SSID Country etc ...

Page 116: ...urity configuration for Router B Configure Network Authentication the same as Router A III Advanced wireless configuration for Router B the same as set in Router A Channel 1 Bandwidth 20MHz 40MHz OBSS Coexistence Disable ...

Page 117: ...uter A s wireless MAC If not go to Wireless Basic Check BSSID which is A s wireless MAC Router A s wireless basic configuration WDS Configuration finished for Router B As for now the WDS connection between Router A and B is established Connect a wireless client to Router B with the SSID test ap 2 4g to test the connectivity ...

Page 118: ...wireless bridge Router B and C need to bridge to Router A using wireless bridge for internet access and wireless coverage extension Router B and C share the same Wireless SSID Country Security Channel setting with Router A ...

Page 119: ...114 Router A setup 1 Login to Router A LAN IP Address 192 168 1 254 enable DHCP server 2 Configure WAN Interface for Router A ADSL PPPoE See WAN Service ...

Page 120: ...rity Channel I Basic configuration SSID Country etc II Wireless security configuration for Router A Configure Network Authentication as WPA2 PSK and WPA WAPI passphrase as 1234567890 Users configure wireless security parameters according to their own needs ...

Page 121: ...116 III Advanced wireless configuration for Router A Channel 1 Bandwidth 20MHz 40MHz OBSS Coexistence Disable ...

Page 122: ...ing Router B and C s wireless MAC addresses Make sure you know Router B and C s wireless MACs If not go to Wireless Basic Check BSSID which is Router B s wireless MAC Router B for example Router B s wireless basic configuration WDS Configuration finished for Router A ...

Page 123: ...the LAN is same with router A please change it to 192 168 1 X which needs to be on the same subnet with router A disable DHCP server 2 Configure wireless for Router B SSID Country Security Channel which need to be same as set in Router A I Basic configuration SSID Country etc ...

Page 124: ...urity configuration for Router B Configure Network Authentication the same as Router A III Advanced wireless configuration for Router B the same as set in Router A Channel 1 Bandwidth 20MHz 40MHz OBSS Coexistence Disable ...

Page 125: ...uter A s wireless MAC If not go to Wireless Basic Check BSSID which is A s wireless MAC Router A s wireless basic configuration WDS Configuration finished for Router B As for now the WDS connection between Router A and B is established Connect a wireless client to Router B with the SSID test ap 2 4g to test the connectivity ...

Page 126: ...121 Router C setup Refer to Router B setup ...

Page 127: ...e higher the bandwidth the better the performance will be but greater interference with other wireless devices Control Sideband only available for 40MHz It allows you to select upper sideband or lower sideband Sideband refers to the frequency band either above upper sideband or below lower sideband the carrier frequency within which fall the spectral components produced by modulation of a carrier ...

Page 128: ...or performance RTS Threshold Request to Send RTS threshold specifies the packet size when exceeds the size the RTS CTS will be triggered The default setting of 2347 max length will disable the RTS DTIM Interval Delivery Traffic Indication Message DTIM The entry range is a value between 1 and 255 A DTIM is countdown variable that informs clients of the next window for listening to broadcast and mul...

Page 129: ... scan in minutes 802 11n EWC select to auto enable or disable 802 11n Bandwidth The higher the bandwidth the better the performance will be but greater interference with other wireless devices Select 20MHz for lessen radio interference Control Sideband only available for 40MHz It allows you to select upper sideband or lower sideband Sideband refers to the frequency band either above upper sideband...

Page 130: ...n WLAN will be split into smaller units suitable for circuit size While the packets smaller than fragmentation threshold will not be fragmented Default is 2346 setting the fragmentation too low may result in poor performance RTS Threshold Request to Send RTS threshold specifies the packet size when exceeds the size the RTS CTS will be triggered The default setting of 2347 max length will disable t...

Page 131: ...ss signal WMM Wi Fi Multimedia you can choose to enable or disable this function which allows for priority of certain data over wireless network WMM No Acknowledgement Refers to the acknowledge policy at the MAC level Enabling WMM No Acknowledgement can result in more efficient throughput but higher error rates in noisy Radio Frequency RF environment WMM APSD Automatic Power Save Delivery Enable t...

Page 132: ...ated List all the stations that are associated with the Access Point If a station is idle for too long it is removed from this list Authorized List those devices with authorized access SSID Show the current SSID of the client Interface To show which interface the wireless client is connected to Refresh To get the latest information ...

Page 133: ...meslot user can turn to Time Schedule Time Schedule Set when the SSID works If user wants the SSID works all the time please select Always On if not please set or select the exact time your want the SSID works Here user can set two separate intervals For example user wants the SSID wlan ap 5g to work on weekdays except for Wednesday under this circumstance user can set as shown below 8700VAX L 160...

Page 134: ... network systems WAN Service Three WAN interfaces are provided for WAN connection DSL VDSL ADSL Ethernet and 3G 4G LTE Click Add to add new WAN connections L DSL In DSL mode there are two transfer modes for you to configure for WAN connection namely ATM ADSL and PTM VDSL configuration of PTM mode is similar as ATM mode here take ATM mode WAN configuration for example ...

Page 135: ... Interface 2 transfer mode ATM ADSL or PTM VDSL PPPoE PPPoE PPP over Ethernet provides access control in a manner which is similar to dial up services using PPP VPI VCI Enter the VPI VCI combination from you ISP ...

Page 136: ... NAT is enabled by default you can determine whether to enable Fullcone NAT or disable Fullcone NAT and only use NAT the default NAT type is Port Restricted cone NAT Of Port Restricted cone NAT the restriction includes port numbers Specifically an external host can send a packet with source IP address X and source port P to the internal host only if the internal host had previously sent a packet t...

Page 137: ...p the multicast forwarding table it takes over some of the router s job simplifying the router s job and multicast communication Support MLDv1 and MLDv2 MLD Multicast Source Used in a similar way by IPv6 system as IGMP Multicast source in IPv4 system Enable it to support the source filtering functionality for IPv6 system Note It works only on MLD version 2 ...

Page 138: ...secondary DNS server addresses L Parental Controls If user registers and gets a DNS account in the parental control provider website expecting to enjoy a more reliable and safer internet surfing environment please select this option need to configure at Parental Control Provider IPv6 Obtain IPv6 DNS info from a WAN interface WAN Interface selected Select one configured IPv6 WAN connection from the...

Page 139: ...ess Remove Press Edit button to re edit this service settings Here you can configure WAN Service if it is OK you can access the internet You can go to Status WAN or Summary to view the WAN connection information if your ISP provides IPv6 service then you will obtain an IPv6 address IPv4 or IPv6 ...

Page 140: ... While only NAT enabled the default NAT type Port Restricted cone NAT will be used Fullcone NAT Enable or disable fullcone NAT Fullcone is a kind of NAT in this mode all requests from the same internal IP address and port are mapped to the same external IP address and port Furthermore any external host can send a packet to the internal host by sending a packet to the mapped external address Note I...

Page 141: ... over some of the router s job simplifying the router s job and multicast communication IGMP Multicast Source Enable to support the source filtering which is the ability for a system to report interest in receiving packets only from specific source address es or all but specific source address es sent to a particular multicast address Note It works only on IGMP version 3 MLD Multicast Proxy check ...

Page 142: ...classes of traffic voice video data etc Enter the priority identification tagged 0 1 untagged 1 802 1Q VLAN ID It is a parameter to specify the VLAN which the frame belongs Enter the VLAN ID identification tagged 0 4094 untagged 1 Here two modes are supported for users to deal with the IP and DNS You can select obtain automatically or manually input the information according to your ISP Obtain an ...

Page 143: ... your LAN have their own public IP addresses to access the Internet NAT function can be disabled When enabled a Fullcone NAT parameter will appear you can determine whether to enable Fullcone NAT While only NAT enabled the default NAT type Port Restricted cone NAT will be used Fullcone NAT Enable or disable fullcone NAT Fullcone is a kind of NAT in this mode all requests from the same internal IP ...

Page 144: ... send through the interface MAC Spoofing This option is required by some service providers specifying some specific MAC allowed for joining network You must fill in the MAC address specified by your service provider when this information is required Click Next to continue to set the default gateway and DNS for IPv4 and IPv6 ...

Page 145: ... Fullcone is a kind of NAT in this mode all requests from the same internal IP address and port are mapped to the same external IP address and port Furthermore any external host can send a packet to the internal host by sending a packet to the mapped external address IGMP Multicast Proxy Check whether to enable this feature IGMP Internet Group Management Protocol Proxy intercepts the IGMP request ...

Page 146: ...ed 1 802 1Q VLAN ID It is a parameter to specify the VLAN which the frame belongs Enter the VLAN ID identification tagged 0 4094 untagged 1 Allow as IGMP Multicast Source Enable to support the source filtering which is the ability for a system to report interest in receiving packets only from specific source address es or all but specific source address es sent to a particular multicast address No...

Page 147: ...n commonly for friendly use 802 1P Priority The parameter indicates the frame priority level from 0 lowest to 7 highest which can be used to prioritize different classes of traffic voice video data etc Enter the priority identification tagged 0 1 untagged 1 802 1Q VLAN ID It is a parameter to specify the VLAN which the frame belongs Enter the VLAN ID ...

Page 148: ...omatically IP Address If Static is enabled in the above field enter the static IPv4 address get from the ISP Dial on demand It is a parameter to let users to dial for connection to internet themselves It is useful when saving internet fees Inactivity Timeout The set Inactivity timeout period unit minutes It is combined use with Dial on Demand users should specify the concrete time interval for dia...

Page 149: ...secondary DNS server addresses L Parental Controls If user registers and gets a DNS account in the parental control provider website expecting to enjoy a more reliable and safer internet surfing environment please select this option need to configure at Parental Control Provider IPv6 Obtain IPv6 DNS info from a WAN interface WAN Interface selected Select one configured IPv6 WAN connection from the...

Page 150: ...l be OK Press Edit button to re edit this service settings Here the corresponding WAN Service have been configured if it is OK you can access the internet You can go to Status WAN or Summary to view the WAN connection information if your ISP provides IPv6 service then you will obtain an IPv6 address IPv4 or IPv6 ...

Page 151: ...r ID Enter the associated information by your ISP This option is used by DHCP clients to optionally identify the vendor type and configuration of a DHCP client The information is a string of n octets interpreted by servers Vendors may choose to define specific vendor class identifiers to convey particular configuration or other identification information about a client Option 77 User ID Set the Us...

Page 152: ...ding a packet to the mapped external address Firewall Enable to drop all traffic from WAN side If enabled all incoming packets by default would be dropped and please turn to IP Filtering Incoming to add allowing rules IGMP Multicast IGMP Internet Group Membership Protocol is a protocol used by IP hosts to report their multicast group memberships to any immediately neighboring multicast routers Che...

Page 153: ...the frame belongs Enter the VLAN ID identification tagged 0 4094 untagged 1 Allow as IGMP Multicast Source Enable to support the source filtering which is the ability for a system to report interest in receiving packets only from specific source address es or all but specific source address es sent to a particular multicast address Note It works only on IGMP version 3 Allow as MLD Multicast Source...

Page 154: ...or the WAN connectivity While if disabled 3G 4G LTE serves as a normal interface and can only be brought up when it has been configured to achieve a mobile connectivity Mode There are 6 options of phone service standards GSM 2G only UTMS 3G only GSM 2G preferred UMTS 3G preferred Automatic and Use 3G LTE 3g dongle settings If you are uncertain what services are available to you and then please sel...

Page 155: ... on Connect on Demand the Idle Timeout field will display Idle Timeout Auto disconnect the broadband firewall gateway when there is no activity on the line for a predetermined period of time Default is 600 seconds L Keep Alive Check Enable to allow the router to send message out every 7 seconds can be changed base on need to prevent the connection being dropped by ISP IP Address The IP address is ...

Page 156: ...151 Here you can configure WAN Service if it is OK you can access the internet You can go to Status WAN or Summary to view the WAN connection information Here user can see the 3G LTE failover ...

Page 157: ...nd wait for response from it in every Probe Cycle to check the connectivity of the gateway of slave interface L Host It will send ping packets to specific host and wait for response in every Probe Cycle Probe Cycle Set the time duration for the Probe Cycle to determine when the router will switch to the backup connection once the main connection main port fails For example when set to 30 seconds t...

Page 158: ... up to 17a US0 Select to enable US0 In VDSL mode profiles like 8a 8b 8c 8d 12a and 17a need users to enable US0 band Phone line pair This is for reserved only You can choose Inner Pair or Outer Pair Capability There are 2 options Bitswap Enable and SRA Enable that user can select for this connection L Bitswap Enable Allows bitswaping function L SRA Enable Allows seamless rate adaptation PhyR A new...

Page 159: ...a measure used in science and engineering that compares the level of a desired signal to the level of background noise It is defined as the ratio of signal power to the noise power SNR Change the value to adjust the DSL link rate more suitable for an advanced user ...

Page 160: ...ther than those in the drop down list simply enter its IP address in their appropriate blanks provided as shown above Your ISP may also provide an SNTP server for you to use Choose your local time zone from the drop down menu After a successful connection to the Internet the router will retrieve the correct local time from the NTP server you have specified If you prefer to specify an NTP server ot...

Page 161: ... upgrading Your router s firmware is the software that allows it to operate and provides all its functionality Think of your router as a dedicated computer and the firmware as the software it runs Over time this software may be improved and revised and your router allows you to upgrade the software it runs to take advantage of these changes Clicking on Browse will allow you to select the new firmw...

Page 162: ...s It is advisable to backup your router s settings before making any significant changes to your router s configuration Click Backup Settings a window appears click save then browse the location where you want to save the backup file Click Browse and browse to the location where your backup file is saved the click Open Then in the above page click Update Settings the following process indicating s...

Page 163: ...username and password are admin and admin respectively L Remote username for the remote user to login corresponding default username and password are support and support respectively L Local username for the general user when logon to the web page only few items would be listed for common user corresponding default username password are user and user respectively Username The default username for ...

Page 164: ...hernet port will have the same configuration SMTP Server Enter the SMTP server that you would like to use for sending emails Username Enter the username of your email account to be used by the SMTP server Password Enter the password of your email account Sender s Email Enter your email address SSL Check to whether to enable SSL encryption feature Port the port default is 25 Account Test Press this...

Page 165: ...ation clients subscribe The BiPAC 8700VAX L 1600 offers SMS alert sending clients alert messages when a WAN IP change is detected Recipient s Number WAN IP Change Alert Enter the Recipient s number that will receive the alert message once a WAN IP change has been detected ...

Page 166: ...ents at the chosen level and above For instance if you set the log level to Critical all critical alert and emergency events are logged but none of the others are recorded Display Level Display the log according to the level you set when you view system log Once you set the display level the logs of the same or higher priority will be displayed Mode Select the mode the system log adopted Three mod...

Page 167: ...des users direct access to the storage information like the total volume the used and the remaining capacity of the device Volume Name Display the storage volume name FileSystem Display the storage device s file system format well known is FAT Total Space Display the total space of the storage with unit MB Used Space Display the remaining space of each partition unit MB Unmount Click Unmount butto...

Page 168: ...fault user admin Click Add button enter the user account adding page Username user defined name but simpler and more convenient to remember would be favorable Password Set the password Confirm Password Reset the password for confirmation Volume Name Select Volume name as to create access to the volume of the specified partition of the storage For example a user test is setup behind the disk1_1 ...

Page 169: ...164 Accessing mechanism of Storage In your computer Click Start Run enter 192 168 1 254 ...

Page 170: ...the User Accounts section When first logged on to the network folder you will see the public folder Public The public sharing space for each user in the USB Storage When user register a USB account and log successfully a private folder the same name as the user account registered exclusive for each user is established Go on to see the details ...

Page 171: ...166 Access the folder public ...

Page 172: ...167 When successfully accessed the private folder of each user is established and user can see from the following picture The test fold in the picture is the private space for each user ...

Page 173: ...ort 2 Enable the print server on the 8700VAX 1600 3 Install the printer drivers on the PC you want to print from On board Print Server Check Enable to activate the print server Printer Name Enter the Printer name for example OfficePrinter Make and Model Enter in the Make and Model information for the printer for example Epson Stylus Photo R290 Note The Printer name can be any text string up to 40 ...

Page 174: ...169 Step 2 Click Add a Printer Step 3 Click Add a network wireless or Bluetooth printer ...

Page 175: ... a shared printer by name Enter http 8700VAX 1600 LAN IP 631 printers printer name or Make sure printer s name is the same as what you set in the 8700VAX 1600 earlier For Example http 192 168 1 254 631 printers OfficePrinter OfficePrinter is the Printer Name we set up earlier ...

Page 176: ...171 Step 6 Click Next to add the printer driver If your printer is not listed and your printer came with an installation disk click Have Disk find it and install the driver Step 7 Click Next ...

Page 177: ...172 Step 8 Click Next and you are done You will now be able to see your printer on the Devices and Printers Page ...

Page 178: ...e types of devices server renderer controller that DLNA supports and the mechanism for accessing media over a network Overall DLNA allows more convenience more choices and enjoyment of your digital content through DLNA certified devices Any DLNA certified devices or software can access the DLNA server With USB storage 8700VAX L 1600 can serve as a DLNA server On board digital media server Enable t...

Page 179: ...indows media player in Windows 7 accessing the DLNA server for example for usage of DLNA Note Here we only gives an example on Windows 7 Windows series including Windows 10 vista 8 7 also supports the application ...

Page 180: ...6 traffic over explicitly configured IPv4 links The 6in4 traffic is sent over the IPv4 Internet inside IPv4 packets whose IP headers have the IP Protocol number set to 41 This protocol number is specifically designated for IPv6 capsulation 6RD 6RD is a mechanism to facilitate IPv6 rapid deployment across IPv4 infrastructures of internet service providers ISPs It is derived from 6to4 a preexisting ...

Page 181: ...address carried in IPv6 prefix for example 0 means to carry all the 32 bits of IPv4 address while 8 carries 24 bits of the IPv4 address 6rd Prefix with Prefix Length Enter the 6rd prefix and prefix length you uniquely designate to 6rd by the ISP The 6rd prefix and prefix length are to replace the standard 6to4 prefix 2002 16 by an IPv6 prefix that belongs to the ISP assigned Border Relay IPv4 Addr...

Page 182: ...ibutes private IPv4 addresses for the LAN clients the same as a NAT device The subnet information is chosen by the customer identically to the NAT model However instead of performing the NAT itself the CPE encapsulates the IPv4 packet inside an IPv6 packet Click Add button to manually add the 4in6 rules Tunnel Name User defined tunnel name Mechanism It is the 4in6 tunnel operation technology Pleas...

Page 183: ...the IP Version IPv4 or IPv6 Protocol Set the traffic type TCP UDP TCP UDP ICMP RAW Any rule applies to Source IP address This is the Address Filter used to allow or block traffic to from particular IP address es featured in the IP range If you leave empty it means any IP address Source Port port or port port The port or port range defines traffic from the port specific application or port in the s...

Page 184: ...ctive See Time Schedule Action Select to drop or forward the packets fit the outgoing filtering rule Log check the check box to record the security log To check the log users can turn to Security Log Example For example if there is an outgoing rule set as follows then the 21 application between source IP and destination IP will be forwarded Or exactly in the rule below all traffic trying to access...

Page 185: ...180 How to disable set rule Rule inactive ...

Page 186: ... Address Filter used to allow or block traffic to from particular IP address es featured in the IP range If you leave empty it means any IP address Source Port port or port port The port or port range defines traffic from the port specific application or port in the set port range blocked to go through the router Default is set port from range 1 65535 Destination IP address Traffic from LAN with t...

Page 187: ...e when the rule works like 01 00 19 00 from Monday to Friday Or you can select the already set timeslot in Time Schedule during which the rule works And when set to Disable the rule is disabled or inactive and there will be an icon in the list table indicating the rule is inactive See Time Schedule Log check the check box to record the security log To check the log users can turn to Security Log ...

Page 188: ...Change checkbox and then press Change Policy to change the settings to the interface For example from above the interface atm0 1 is of bridge mode and all the MAC layer frames will be forward but you can set some rules to let some item matched the rules to be blocked Click Add button to add the rules Protocol type Select from the drop down menu the protocol that applies to this rule Destination So...

Page 189: ...184 Blocking WAN PING This feature is enabled to let your router not respond to any ping command when someone others Ping your WAN IP ...

Page 190: ...k Add to add the rules Host Label User defined name MAC Address Enter the MAC address es you want to allow or block to access the router and LAN The format of MAC address could be xx xx xx xx xx xx or xx xx xx xx xx xx For convenience user can select from the list box Time Schedule Configure to control the PC from accessing router and internet L Drop To drop the MAC entries always in other words t...

Page 191: ...the user child use with a MAC of 18 a9 05 04 12 23 is blocked to access the router from 00 00 to 23 59 Monday through Friday The test can access the internet always If you needn t this rule you can check the box press Remove it will be OK ...

Page 192: ...ly Domains Filtering This function checks the whole URL address but not the IP address against your list of domains to block or allow If it is matched the URL request will either be sent Trusted or dropped Forbidden Restrict URL Features Click Block Java Applet to filter web access with Java Applet components Click Block ActiveX to filter web access with ActiveX components Click Block Cookie to fi...

Page 193: ...e the item and press Edit Delete Click Return to be back to the previous page Domains Filtering Note Maximum number of entries 32 Click to add Domains Domains Filtering enter the domain you want this filter to apply Type select the action this filter deals with the Domain L Forbidden Domain The domain is forbidden access L Trusted Domain The domain is trusted and allowed access Enter a domain and ...

Page 194: ...excluded from the URL filtering rules in effect For specific process please refer to Keywords Filtering For example users can set IPv4 client 192 168 1 103 in your network as a exception address that is not limited to the rules set in URL filter or IPv4 clients a range And also an IPv6 client 2000 1211 1002 6ba4 d160 5adb 9009 87ae or IPv6 clients a range can be the exceptions from the URL rules A...

Page 195: ...figure at the selected Provider www opendns com in advance To use parental control DNS user needs to configure to use parental control DNS provided by parental control provider to access internet at WAN configuration or DNS page See DNS Host Name Username and Password Enter your registered domain name and your username and password at the provider website www opendns com ...

Page 196: ...rate of the EWAN interface Click Apply to save the EWAN rate settings Click Add to enter QoS rules IP Version Select either IPv4 or IPv6 base on need Application Assign a name that identifies the new QoS application rule Select from the list box for quick setup Direction Shows the direction mode of the QoS application L LAN to WAN You want to control the traffic from local network to the outside U...

Page 197: ...rent packet loss priorities from high medium to low Also CS1 CS7 indicates the IP precedence Rate Type You can choose Limited or Prioritization L Limited Maximum Specify a limited data rate for this policy It also is the maximum rate for this policy When you choose Limited type the Ratio proportion As above FTP server example you may want to throttle the outgoing FTP speed to 20 of 256K and limit ...

Page 198: ... number on the remote WAN side Time Schedule Select or set exactly when the rule works When set to Always On the rule will work all time and also you can set the precise time when the rule works like 01 00 19 00 from Monday to Friday Or you can select the already set timeslot in Time Schedule during which the rule works And when set to Disable the rule is disabled or inactive and there will be an ...

Page 199: ...Give outgoing VoIP traffic more priority The default queue priority is normal so if you have VoIP users in your local network you can set a higher priority to the outgoing VoIP traffic 2 Give regular web http access a limited rate ...

Page 200: ...rnet access for other users within your network you can then use QoS to set a rule that has low priority In this way P2P application will not congest the data transmission with other applications Other applications like FTP Mail access users can use QoS to control based on need ...

Page 201: ...thernet interface When Shaping Rate is set to 1 no shaping will be in place and the Burst Size is to be ignored Interface P1 P5 P5 used as EWAN also covered Type All LAN when P5 is LAN port P5 used as EWAN type WAN and all others LAN QoS Shaping Rate Kbps Set the forcefully maximum rate Burst Size Bytes Set the forcefully Burst Size ...

Page 202: ...cific IP or IP range Press Edit to set the exceptional IP IP Range Default Action Please first set the range to make Default Action setting available Select Allow to grant access to the listed IP or IPs to Virtual Server and DMZ Host While choose Block to ban the listed IP or IPs to access the Virtual Server and DMZ Host Apply Press Apply button to apply the change Exceptional Rule Range IP Addres...

Page 203: ...r to forward these incoming connection attempts using specific ports to the PC on your network running the application You will also need to use port forwarding if you want to host an online game server The reason for this is that when using NAT your publicly accessible IP address will be used by and point to your router which then needs to deliver all traffic to the private IP addresses used by y...

Page 204: ...arting number for the range you want to give access to internal network L End Enter a port number as the external ending number for the range you want to give access to internal network Internal Port L Start Enter a port number as the internal staring number L End Here it will generate automatically according to the End port number of External port and can t be modified Protocol select the protoco...

Page 205: ...Virtual Server access to this IP range you can select Group1 Set up 1 Select a Server Name from the drop down menu then the port will automatically appear modify some as you like or you can just leave it as default Remember to enter your server IP Address 2 Press Apply to conform and the items will be list in the Virtual Servers Setup table ...

Page 206: ...201 Means the rule is inactive Remove If you don t need a specified Server you can remove it Check the check box beside the item you want to remove then press Remove it will be OK ...

Page 207: ...usly group 1 blocking access to 172 16 1 102 172 16 1 106 If here you want to block DMZ Access to this IP range you can select Group1 Using port mapping does have security implications since outside users are able to connect to PCs on your network For this reason you are advised to use specific Virtual Server entries just for the ports your application requires instead of simply using DMZ or creat...

Page 208: ... Exceptional Rule Group Select the exceptional group listed It is to give or block access to a group of IPs to the server after One to One NAT For example a server with 192 168 1 3 is mapped to 123 1 1 2 by One to One NAT then the exceptional group can be designated to have or have not access to 123 1 1 2 For example you have an ADSL connection of pppoe_0_8_35 ppp0 1 interface with three fixed glo...

Page 209: ...ck Add to add a port triggering rule Interface Select from the drop down menu the interface you want the port triggering rules apply to Application Preinstalled applications or Custom Application user can customize the utility yourself Custom Application It is a kind of service to let users themselves customizes the service they want Enter the user defined service name here Trigger Port L Start En...

Page 210: ...es an outgoing connection on port 4099 to the Aim Talk server but when the computer is behind the NAT the NAT silently drops this connection because it does not know which computer behind the NAT to send the request to connect So in this case port triggering in the router is working when an outbound connection is attempted on port 4099 or any port in the range set it should allow inbound connectio...

Page 211: ...206 Edit Remove If you don t need a specified Server you can remove it Check the check box beside the item you want to remove and then press Remove Click Edit to re edit your port triggering rule ...

Page 212: ...ALG to pass through the NAT Disable the SIP when SIP phone includes NAT Traversal algorithm H 323 Enable to secure the voice communication using H 323 protocol when one or both terminals are behind a NAT IPSec Enable IPSec ALG to allow one or both peers to reside behind a NAT gateway i e doing address or port translation ...

Page 213: ...hedule Enable to wake up your set device at some specific time For instance user can set to get some device woken up at 8 00 every weekday Click Schedule to enter time schedule configuring page to set the exact timeline Add After selecting click Add then you can submit the Wake up action Edit Delete Click to edit or delete the selected MAC address Ready Yes indicating the remote computer is ready ...

Page 214: ...try for which the VoIP device is operating When a country is selected the country parameters are automatically loaded Different countries can have their special ring mechanism SIP Port Set the SIP port default 5060 Quality of Service User can mark DSCP for outgoing SIP and RTP VoIP flow to control VoIP QoS DSCP Marking For SIP Set the DSCP marking for SIP VoIP packets for QoS proceeding DSCP Marki...

Page 215: ... there will be no time restrictions on incoming calls See Time Schedule Call Features Call Wait Enable to activate Call Wait feature When you are busy on a call and another call comes in while the Call Wait feature is enabled you can hear a hint sound indicating there is another call in for you to decide whether to answer by slightly pressing the key Flash to keep the original call Three Way Confe...

Page 216: ...P Proxy address you obtain after you register from the service provider SIP Proxy Port The port number set on your SIP proxy server that the SIP proxy server uses to make network connections default is 5060 SIP Outbound Proxy SIP outbound proxy is in similar use as SIP proxy but when the SIP devices are behind a firewall or a router or NAT the SIP outbound proxy is the useful way to let SIP traffi...

Page 217: ...n Expire Timeout This sets time interval before timeout Registration Retry Interval The interval set to retry sending registration message SIP Transport Protocol The protocol adopted to transport SIP UDP commonly used ...

Page 218: ... account name Account Enabled Enable to activate the sip account Default Dial Plan Chosen Port 1 Enable to allow user to set the account as the default VoIP dial plan rules for port 1 See VOIP Dial Plan Default Dial Plan Chosen Port 2 Enable to allow user to set the account as the default VoIP dial plan rules for port 2 Incoming Phone Port Select which phone port you are setting Extension The Phon...

Page 219: ... data signal conversion Set the priority of voice compression Priority 1 owns the top priority L G 711A LAW It is a basic non compressed encoder and decoder technique A LAW uses pulse code modulation PCM encoder and decoder to convert 13 bit linear sample into 8 bit value L G 729a It is used to encoder and decoder voice information into a single packet which reduces the bandwidth consumption L G 7...

Page 220: ...Name The identification for the call number s Number Type the number depending on the selected Type below If Phone Number is selected please input the complete phone number while if Prefix is selected please input the prefix number featuring a group of unfavorable call numbers Type Phone Number and Prefix Click Apply to save the call blacklist Incoming calls with the prefix 020 will all be abandon...

Page 221: ...x unconditionally xxx number is appended unconditionally to the front of the dialing number when making a call Prefix can also be included with any number and or character such as Note For special service with you may need to check with your VoIP or Local Telephone Service Provider for information L If Prefix is xxx delete it Prefix xxx is removed from the dialed numbers before making a call L If ...

Page 222: ...th is 32 xxx Specifies any sequence of digits in fixed length Total length is 3 xxxx Specifies any sequence of digits in variable length but not shorter than 4 digits Maximum Length is 32 123x Any sequence of digits starting with 123 and with variable length Maximum length is 32 124 x Any sequence of digits starting with 1 or 2 or 4 Minimal length is 2 maximum length is 32 1 3 x Any sequence of di...

Page 223: ... to set up a conference with Phone C Step 5 Phone A presses flash again to merge all 3 calls Case 2 Phone C dials in and wants to join Phone A and Phone B s conference Step 1 Phone A and Phone B on a call then Phone C dials Phone A and A hears a waiting tone Step 2 Phone A presses flash and picks up the call waiting call Step 3 Phone A presses flash to hold the call with Phone C and return to orig...

Page 224: ...ivered to the destination of 5532772 call established Note For 1xx the speed dial number xx means only two digits 0 9 are allowed to identify the phone number Name User defined identification Phone Number The full destination phone number user wants to be simplified to a speed dial number Speed Dial Set the speed dial number 1 xx for the destination number Ring Tone Support up to 5 different ring ...

Page 225: ... frequently used phone number to an easy and friendly number for a quick dialing and then speed dial is a good choice for him For example the frequently used phone number is 5522772 and mapped to 105 then he can only dial out 105 to make the call ...

Page 226: ...221 Advanced Setup There are sub items within the System section Routing DNS Static ARP UPnP Certificate Multicast Management and Diagnostics ...

Page 227: ...session IPsec also includes protocols for establishing mutual authentication between agents at the beginning of the session and negotiation of cryptographic keys to be used during the session IPsec is an end to end security scheme operating in the Internet Layer of the Internet Protocol Suite It can be used in protecting data flows between a pair of security gateways network to network or between ...

Page 228: ...n IPSec connection between a security gateway and a host network to host L Subnet The subnet of the local network for establishing an IPSec tunnel between a pair of security gateways network to network IP Address The local network address Netmask The local network netmask Remote Secure Gateway The IP address of the remote VPN device that is connected and establishes a VPN tunnel Anonymous Enable a...

Page 229: ...the integrity of the datagram and ensures it is not tampered with in transmit There are 2 options Message Digest 5 MD5 and Secure Hash Algorithm SHA1 SHA1 is more resistant to brute force attacks than MD5 However it is slower L MD5 A one way hashing algorithm that produces a 128 bit hash L SHA1 A one way hashing algorithm that produces a 160 bit hash DH Group It is a public key cryptography protoc...

Page 230: ... to be detected lively when the connection between the router and a remote IPSec peer has lost Please be noted it must be enabled on the both sites Detection Interval The period cycle for dead peer detection The interval can be 180 86400 seconds Idle Timeout Auto disconnect the IPSec connection after trying several consecutive times L Ping This mode will detect whether the remote IPSec peer has lo...

Page 231: ...ands for Triple Data Encryption Standard it uses 168 56 3 bits as an encryption method L AES Stands for Advanced Encryption Standards you can use 128 192 or 256 bits as encryption method Integrity Algorithm Authentication establishes the integrity of the datagram and ensures it is not tampered with in transmit There are 2 options Message Digest 5 MD5 and Secure Hash Algorithm SHA1 SHA1 is more res...

Page 232: ...me for IPSec connection Local Network Subnet Select Subnet IP Address 192 168 1 0 2 Netmask 255 255 255 0 Head Office network 3 Secure Gateway Address Hostanme 69 121 1 30 IP address of the Branch office router on WAN side Remote Network Subnet Select Subnet IP Address 192 168 0 0 4 Netmask 255 255 255 0 Branch office network Proposal Method ESP Authentication MD5 Encryption 3DES Prefer Forward Se...

Page 233: ...228 ...

Page 234: ...P Address 192 168 0 0 2 Netmask 255 255 255 0 Branch Office network 3 Remote Secure Gateway Address Hostanme 69 121 1 3 IP address of the Head office router on WAN side Remote Network Subnet Select Subnet IP Address 192 168 1 0 4 Netmask 255 255 255 0 Head office network Proposal Method ESP Authentication MD5 Encryption 3DES Prefer Forward Security MODP 1024 group2 5 Pre shared Key 123456 Security...

Page 235: ...ame for IPSec connection Local Network Subnet Select Subnet IP Address 192 168 1 0 2 Netmask 255 255 255 0 Head Office network 3 Remote Secure Gateway Hostanme 69 121 1 30 IP address of the Branch office router on WAN side Remote Network 4 Single Address 69 121 1 30 Host Proposal Method ESP Authentication MD5 Encryption 3DES Prefer Forward Security MODP 1024 group2 5 Pre shared Key 123456 Security...

Page 236: ...231 ...

Page 237: ...ount PPTP L2TP server is waiting for the client to connect to this account Username Please input the username for this account Password Please input the password for this account Connection Type Select Remote Access for single user Select LAN to LAN for remote gateway Peer Network IP Please input the subnet IP for remote network Peer Netmask Please input the Netmask for remote network ...

Page 238: ...groups at most In each group user can add specific IP or IP range Press Edit to set the exceptional IP IP Range Default Action Please first set the range to make Default Action setting available Set Allow to ban the listed IP or IPs to access the PPTP and L2TP server Check Block to grant access to the listed IP or IPs to the PPTP and L2TP server Apply Press Apply button to apply the change ...

Page 239: ...pecify the IP address range IPv4 address range can be supported Click Add to add the IP Range For instance if user wants to block IP range of 172 16 1 102 172 16 1 106 from accessing your PPTP and L2TP server you can add this IP range and valid it ...

Page 240: ...e to deactivate PPTP Server function WAN Interface Select the exact WAN interface configured for the tunnel Select Default to use the now working WAN interface for the tunnel Auth Type The authentication type Pap or Chap PaP Chap and MS CHAPv2 When using PAP the password is sent unencrypted whilst CHAP encrypts the password before sending and also allows for challenges at different periods to ensu...

Page 241: ...on type to use or else manually specify CHAP Challenge Handshake Authentication Protocol or PAP Password Authentication Protocol if you know which type the server is using when acting as a client or else the authentication type you want clients connecting to you to use when acting as a server When using PAP the password is sent unencrypted whilst CHAP encrypts the password before sending and also ...

Page 242: ... with 172 16 1 208 just an example for illustration 2 Here is a configuration example on Windows 7 Windows series including Windows 10 8 7 vista also supports the application with similar steps Server Side 1 Configuration VPN PPTP and Enable the PPTP function Click Apply ...

Page 243: ... Note Here is a configuration example on Windows 7 Windows series including Windows 10 vista 8 7 also supports the application with similar steps 1 In Windows7 click Start Control Panel Network and Sharing Center Click Set up a new connection network Windows 7 ...

Page 244: ...or Windows 10 Users can click Start Settings or right click the mouse when it points at Windows ICON Start then click Control Panel Network and Sharing Center then Set up a new connection network Windows 10 ...

Page 245: ...240 2 Click Connect to a workplace and press Next 3 Select Use my Internet connection VPN and press Next ...

Page 246: ...241 4 Input Internet address and Destination name for this connection and press Next ...

Page 247: ...242 5 Input the account user name and password and press Create ...

Page 248: ...243 6 Connect to the server ...

Page 249: ... You can also go to Network Connections shown below to check the detail of the connection Right click test icon and select Properties to change the security parameters if the connection fails users can go here to change the settings ...

Page 250: ...245 ...

Page 251: ... connect two private networks over the Internet The routers are installed in the head office and branch offices accordingly Server side Head Office The above is the common setting for PPTP Server set as you like for authentication and encryption The settings in Client side should be in accordance with settings in Server side ...

Page 252: ...rver and can also set the tunnel as the default route for all outgoing traffic Note users can see the Default Gateway item in the bar and user can check to select the tunnel as the default gateway default route for traffic If selected all outgoing traffic will be forwarded to this tunnel and routed to the next hop ...

Page 253: ...s the complete L2TP Server settings L2TP Select Enable to activate L2TP Server Disable to deactivate L2TP Server WAN Interface Select the exact WAN interface configured as source for the tunnel Select different interfaces you will decide whether to use L2TP over IPSec or the pure L2TP L L2TP over IPSec Select Default or IPSec Tunnel only when there is IPSec for L2TP rule in place L Pure L2TP Selec...

Page 254: ...me of peer featuring the destination of the L2TP tunnel Local Host Name Enter the local host name featuring the source of the L2TP tunnel Exceptional Rule Group Select to grant or block access to a group of IPs to the L2TP server See Exceptional Rule Group If there is not any restriction select none Click Apply to submit your L2TP Server basic settings ...

Page 255: ...ter the username provided by your L2TP Server Password Enter the password provided by your L2TP Server Auth Type Default is Pap or CHap if you want the router to determine the authentication type to use or else manually specify CHAP Challenge Handshake Authentication Protocol or PAP Password Authentication Protocol if you know which type the server is using When using PAP the password is sent unen...

Page 256: ...nicate through pure L2TP server Username Enter the username provided by your L2TP Server Password Enter the password provided by your L2TP Server Auth Type Default is Pap or CHap if you want the router to determine the authentication type to use or else manually specify CHAP Challenge Handshake Authentication Protocol or PAP Password Authentication Protocol if you know which type the server is usi...

Page 257: ...assword in the server side Remote Host Name Enter the remote host name featuring the destination of the L2TP tunnel Local Host Name Enter the local host name featuring the source of the L2TP tunnel Click Add button to save your changes ...

Page 258: ...72 16 1 185 just an example for illustration 2 Here is a configuration example on Windows 7 Windows series including Windows 10 8 7 vista also supports the application with similar steps Server Side 1 Configuration VPN L2TP and Enable the L2TP function Click Apply The IPSec for L2TP rule ...

Page 259: ...s Note Here is a configuration example on Windows 7 Windows series including Windows 10 vista 8 7 also supports the application with similar steps 1 In Windows7 click Start Control Panel Network and Sharing Center Click Set up a new connection network Windows 7 ...

Page 260: ...or Windows 10 Users can click Start Settings or right click the mouse when it points at Windows ICON Start then click Control Panel Network and Sharing Center then Set up a new connection network Windows 10 ...

Page 261: ...256 2 Click Connect to a workplace and press Next 3 Select Use my Internet connection VPN and press Next ...

Page 262: ...257 4 Input Internet address and Destination name for this connection and press Next ...

Page 263: ...258 5 Input the account user name and password and press Create ...

Page 264: ...259 6 Connection created Press Close 7 Go to Network Connections shown below to check the detail of the connection Right click L2TP_IPSec icon and select Properties to change the security parameters ...

Page 265: ...260 8 Chang the type of VPN to Layer 2 Tunneling Protocol with IPSec L2TP IPSec and Click Advanced Settings to set the pre shared set in IPSec key for authentication ...

Page 266: ...261 9 Go to Network connections enter username and password to connect L2TP_IPSec and check the connection status ...

Page 267: ...262 ...

Page 268: ...blishes a L2TP VPN tunnel with head office to connect two private networks over the Internet The routers are installed in the head office and branch office accordingly Note Both office LAN networks must be in different subnets with the LAN LAN application Server side Head Office ...

Page 269: ...e above is the commonly setting for L2TP Server set as you like for authentication and encryption The settings in Client side should be in accordance with settings in Server side Then account the L2TP Account ...

Page 270: ...n also set the tunnel as the default route for all outgoing traffic Note users can see the Default Gateway item in the bar and user can check to select the tunnel as the default gateway default route for traffic If selected all outgoing traffic will be forwarded to this tunnel and routed to the next hop ...

Page 271: ...as the 2222SSLv3 TLSv1 2222protocol and contains many security and control features OpenVPN is good at portability OpenVPN has been ported and embedded to several systems OpenVPN Server Users can set the bassic parameters source destination address protocl port authentication encyption etc for OpenVPN Server OpenVPN Server Select Enable to activate OpenVPN Server WAN Interface Select the exact WAN...

Page 272: ...VPN support 2222HMAC authentication please select authentication item from the list lzo Compression Enable to use the 2222LZO compression library to compress the data stream Click Apply to submit your OpenVPN Server basic settings ...

Page 273: ...t robust Generally the part offers the billion factory defined authentication certificate Recipient s Email Set the recipient s email address to send the trusted CA to the OpenVPN client OpenVPN server and client need matched certificate to establish trusted VPN tunnel on client side please import this certificate in 2222Trusted CA client side CA ...

Page 274: ... Server Password Enter the password provided by your OpenVPN Server OpenVPN Server Address Enter the WAN IP address of the OpenVPN server Protocol The protocol same as set in server side Port Number 1194 Cipher Encryption Be consistent with what set on server side HMAC Authentication Be consistent with what set on server side lzo Compression Enable to use the 2222LZO compression library to compres...

Page 275: ...tter install an OpenVPN client application installer and connect to server accordingly Here only give the configuration on server side Server side on router 1 Set up parameters WAN interface port tunnel virtual subnet IP mask encryption authentication etc on OpenVPN server side 2 Create an account for the OpenVPN tunnel for client to connect in ...

Page 276: ...271 3 Set the OpenVPN client s E mail address to receive trusted CA from server to establish a trusted OpenVPN tunnel ...

Page 277: ...ed in the head office and branch office accordingly Configured in this way head office and branch office can access each other Note Both office LAN networks must be in different subnets with the LAN to LAN application Server side Head Office 1 Set up parameters WAN interface port tunnel virtual subnet IP mask encryption authentication etc on OpenVPN server side ...

Page 278: ...273 2 Create an account for client to connect in 3 Set the OpenVPN client s E mail address to receive trusted CA from server to establish a trusted OpenVPN tunnel ...

Page 279: ... Import your trusted certificate from server side which is used to authenticate between client and server for establishing trusted OpenVPN tunnel 2 On the OpenVPN client side fill in the parameters the same as set for OpenVPN server ...

Page 280: ...see the Default Gateway item in the bar and user can check to select the tunnel as the default gateway default route for traffic If selected all outgoing traffic will be forwarded to this tunnel and routed to the next hop ...

Page 281: ...l IP Please input the virtual destination IP for tunnel Remote Gateway IP Set the destination IP for the tunnel Remote Network Select the peer topology Single address client or Subnet IP Address Set the IP address if the peer is a client If the peer is a subnet please enter the IP and netmask Enable Keepalive Normally the tunnel interface is always up Enable keepalive to determine when the tunnel ...

Page 282: ... ones you have set in WAN section here select the one you want to be the default gateway by moving the interface via or And select a Default IPv6 Gateway from the drop down menu Note Only one default gateway interface will be used according to the priority with the first being the highest and the last one the lowest priority if the WAN interface is connected ...

Page 283: ...4 address 192 168 1 0 24 submask is 255 255 255 0 While in IPv6 IPv6 address composes of two parts thus the prefix and the interface ID the prefix is like the net ID in IPv4 and the interface ID is like the host ID in IPv4 The prefix length is to identify the net ID in the address One IPv6 address 3FFE FFFF 0 CD30 0 0 0 0 64 the prefix is 3FFE FFFF 0 CD3 Interface The exit interface of local route...

Page 284: ...279 In listing table you can remove the one you don t want by checking the checking box and press Remove button ...

Page 285: ...e User defined name Physical LAN Port Select the LAN port Source IP Enter the Host Source IP Interface Select the WAN interface exit interface of local router to the next hop Default Gateway Enter the gateway IP address the entry address of the next hop Click Apply to apply your settings And the item will be listed in the policy Routing listing table Here if you want to remove the route check the ...

Page 286: ...ly receive the routing information broadcasted by other routers and modifies its routing table according to the received information L Active working in this mode the router sends and receives RIP routing information and modifies routing table according to the received information Enable check the checkbox to enable RIP rule for the interface Note RIP can t be configured on the WAN interface which...

Page 287: ...L Use the IP address provided by Parental Control Provider If user registers and gets an DNS account in the parental control provider website expecting to enjoy a more reliable and safer internet surfing environment please select this option need to configure at Parental Control Provider IPv6 IPv6 DNS Server s operation is similar to IPv4 DNS server There are two modes to get DNS server address Au...

Page 288: ...283 Primary IPv6 DNS Server Secondary IPv6 DNS Server Type the specific primary and secondary IPv6 DNS Server address ...

Page 289: ...N interfaces with different DNS es Click Add to register a WAN interface with the exact DNS You will first need to register and establish an account with the Dynamic DNS provider using their website for example http www dyndns org Dynamic DNS Server Select the DDNS service you have established an account with Host Name Username and Password Enter your registered domain name and your username and p...

Page 290: ...xamples Note first users have to go to the Dynamic DNS registration service provider to register an account User test register two Dynamic Domain Names in DDNS provider http www dyndns org 1 pppoe_0_8_35 with DDNS www hometest com using username password test test ...

Page 291: ...286 2 ipoe_eth4 with DDNS www hometest1 com using username password test test ...

Page 292: ...y to connect to the DNS Server in public to correctly resolve Domain name to access the internet DNS Proxy Select whether to enable or disable DNS Proxy function default is enabled Host name of the Broadband Router Enter the host name of the router Default is home gateway Domain name of the LAN network Enter the domain name of the LAN network home gateway ...

Page 293: ...me In LAN you can map a PC to a domain name for convenient access Or you can set some well known Internet IP mapping item so your router will response quickly for your DNS query instead of querying from the ISP s DNS server Host Name Type the domain name host name for the specific IP IP Address Type the IP address bound to the set host name above Click Add to save your settings ...

Page 294: ...resses And Static ARP here allows user to map manually the layer 3 MAC Media Access Control address to the layer 2 IP address of the device IP Address Enter the IP of the device that the corresponding MAC address will be mapped to MAC Address Enter the MAC address that corresponds to the IP address of the device Click Add to confirm the settings ...

Page 295: ...ed settings removing the need for the user to control advanced configuration of their device Both the user s Operating System and the relevant application must support UPnP in addition to the router Windows XP and Windows Me natively support UPnP when the component is installed and Windows 98 users may install the Internet Connection Sharing client from Windows XP in order to support UPnP Windows ...

Page 296: ...ouble click Add Remove Programs Step 2 Click on the Windows Setup tab and select Communication in the Components selection box Click Details Step 3 In the Communications window select the Universal Plug and Play check box in the Components selection box Step 4 Click OK to go back to the Add Remove Programs Properties window Click Next ...

Page 297: ... and Control Panel Step 2 Double click Network Connections Step 3 In the Network Connections window click Advanced in the main menu and select Optional Networking Components The Windows Optional Networking Components Wizard window displays Step 4 Select Networking Service in the Components selection box and click Details ...

Page 298: ...lick OK to go back to the Windows Optional Networking Component Wizard window and click Next Auto discover Your UPnP enabled Network Device Step 1 Click start and Control Panel Double click Network Connections An icon displays under Internet Gateway Step 2 Right click the icon and select Properties ...

Page 299: ...lick Settings to see the port mappings that were automatically created Step 4 You may edit or delete the port mappings or click Add to manually add port mappings Step 5 Select Show icon in notification area when connected option and click OK An icon displays ...

Page 300: ...295 in the system tray Step 6 Double click on the icon to display your current Internet connection status ...

Page 301: ...usted CA Certificate Name The certificate identification name Subject The certificate subject Type The certificate type information ca indicates that the certificate is a CA signed certificate self indicates that the certificate is a certificate owner signed one x 509 indicates the certificate is the one created and signed according to the definition of Public Key System suggested by x 509 Action ...

Page 302: ...297 Click Import Certificate button to import your certificate Enter the certificate name and insert the certificate ...

Page 303: ...298 Click Apply to confirm your settings ...

Page 304: ...munications protocols used to manage the membership of Internet Protocol multicast groups IGMP is used by IP hosts and the adjacent multicast routers to establish multicast group members There are three versions for IGMP that is IGMPv1 IGMPv2 and IGMPv3 MLD short for Multicast Listener Discovery protocol is a component if the Internet Protocol version 6 IPv6 suite MLD is used by IPv6 to discover m...

Page 305: ...message to hosts to understand the group membership information Query Response Interval Enter the response interval time sec Last Member Query Interval Enter the interval time sec the multicast router query the specified group after it has received leave message Robustness Value Enter the router robustness parameter 2 7 the greater the robustness value the more robust the Querier is Maximum Multic...

Page 306: ...y message to hosts to understand the group membership information Query Response Interval Enter the response interval time sec Last Member Query Interval Enter the interval time sec the multicast router query the specified group after it has received leave message Robustness Value Enter the router robustness parameter default is 2 the greater the robustness value the more robust the Querier is Max...

Page 307: ...IB accordingly and then generates Response message to send it to the manager Also agent will send Trap message to the manager when agent finds some exceptions Trap message is the message automatically sent by the managed device without request to the manager about the emergency events SNMP Agent enable or disable SNMP Agent Read Community Type the Get Community which is the authentication for the ...

Page 308: ...e Auto Configuration Servers ACS and establish the configuration automatically and let ACS configure CPE automatically Inform Select enable to let CPE be authorized to send Inform message to automatically connect to ACS Inform Interval Specify the inform interval time sec which CPE used to periodically send inform message to automatically connect to ACS When the inform interval time arrives the CP...

Page 309: ...304 GetRPCMethods Supported by both CPE and ACS display the supported RFC listing methods Click Apply to apply your settings ...

Page 310: ...305 HTTP Port The device equips user to change the embedded web server accessing port Default is 80 ...

Page 311: ...ss Click Apply button to submit your settings Allowed Access IP Address Range was used to restrict which IP address could login to access system web GUI Valid Enable Disable Allowed Access IP Address Range IP Address Range Specify the IP address Range IPv4 and IPv6 address range can be supported users can set IPv4 and IPv6 address range individually Click Add to add an IP Range to allow remote acc...

Page 312: ...307 Mobile Network User can press Scan to discover available 3G 4G LTE mobile network ...

Page 313: ...only Download only Upload and Download and Upload to limit the flow L Time based control the flow by providing specific hours per month The billing period begins on The beginning day of billing each month Over usage allowance action What to do when the flow is over usage allowance the available methods are E mail Alert Email Alert and Disconnect and Disconnect E mail alert at percentage of bandwid...

Page 314: ...agement is a feature of some electrical appliances especially computers that turn off the power or switch to a low power state when inactive Five main parameters are listed for users to check to manage the performance of the router ...

Page 315: ...nternet by users or applications This Time Schedule correlates closely with router s time since router does not have a real time clock on board it uses the Simple Network Time Protocol SNTP to get the current time from an SNTP server from the Internet Refer to Internet Time for details You router time should synchronize with NTP server For example user can add a timeslot named timeslot1 features a...

Page 316: ...he current configuration of router for users in line with scheduled timetable settings Enable to set the time schedule for rebooting For example the router is scheduled to reboot at 22 00 every single weekday and to reboot at 9 00 on Saturday and Sunday You can set as follows ...

Page 317: ...elect or set the source address to test the connectivity from the source to the destination Ping Test Press this button to proceed ping test Trace route Test to trace the route to see how many hops also see the exact hops the packet of data has to take to get to the destination Destination Host Set the destination host IP domain name to be traced Source Address Select or set the source address to ...

Page 318: ...313 Example Ping www google com ...

Page 319: ...314 Example trace www google com ...

Page 320: ... E mail Enter the destination mail address The email is used to receive system log system configuration security log sent by the device when the Push Now button is pressed information sent only when pressing the button but the mail address is not remembered Note Please first set correct the SMTP server parameters in Mail Alert ...

Page 321: ...stics Check the connections including Ethernet connection Internet Connection and wireless connection Click Help link that can lead you to the interpretation of the results and the possible simply troubleshooting ...

Page 322: ...ich are necessary for ensuring conformance to SLAs and verifying end to end service quality Ethernet Link OAM 802 3ah Enable to activate Ethernet in the First Mile EFM Link OAM to do link fault management Ethernet Service OAM 802 1ag Y1 1731 Enable to activate Ethernet Service OAM check mechanism including connectivity fault management and performance monitoring Linktrace Operators trigger linktra...

Page 323: ...If you wish to restart the router using the factory default settings for example after a firmware upgrade or if you have saved an incorrect configuration select Factory Default Settings to reset to factory default settings Or you just want to restart after the current setting the select the Current Settings and Click Restart ...

Page 324: ...admin If this fails you can restore your router to its factory settings by pressing the reset button on the device rear side Problems with WAN interface Problem Suggested Action Frequent loss of ADSL line sync disconnections Ensure that all other devices connected to the same telephone line as your router e g telephones fax machines analogue modems have a line filter connected between them and the...

Page 325: ... should be on for the port that has a PC connected If it does not lit check to see if the cable between your router and the PC is properly connected Make sure you have first uninstalled your firewall program before troubleshooting Verify that the IP address and the subnet mask are consistent for both the router and the workstations ...

Page 326: ...ase contact the dealer from where you purchased your product Contact Billion Worldwide http www billion com MAC OS is a registered Trademark of Apple Computer Inc Windows Windows XP Windows Vista Windows 7 and Windows 8 10 are registered Trademarks of Microsoft Corporation ...

Page 327: ...quipment and receiver Connect the equipment into an outlet on a circuit different from that to which the receiver is connected Consult the dealer or an experienced radio TV technician for help FCC Caution This device complies with Part 15 of the FCC Rules Operation is subject to the following two conditions 1 This device may not cause harmful interference 2 This device must accept any interference...

Reviews: