background image

 

 

 

                                 

                            NeoGate TG Series User Manual 

http://www.yeastar.com                                                                                                                        20/56 

5.2.4 Firewall Rules 

 

Figure 5-13 

 

1)

 

General Settings 
 

Items 

Description 

Enable Firewall 

Enable the firewall to protect the device. You should reboot 
the device to make the firewall run successfully. 

Disable Ping 

Enable this item to drop net ping from remote hosts. 

Drop All 

When you enable “Drop All” feature, system will drop all 
packets or connection from other hosts if there are no other 
rules  defined.  To  avoid  locking  the  devices,  at  least 
one “TCP” accept common rule must be created  for port 
used for SSH access, port used for HTTP access and port 
sued for CGI access. 

 
2)

 

Common Rules 

There is no default rule; you can create one as required. 

   

 

Figure 5-14 

Summary of Contents for NeoGate

Page 1: ...NeoGate TG Series User Manual http www yeastar com 1 56 TG Series User Manual Version 5X 18 0 34 Yeastar Technology Co Ltd...

Page 2: ...eports 11 4 2 1 Call logs 11 4 2 2 System logs 11 5 System 12 5 1 Network Preferences 12 5 1 1 LAN Settings 12 5 1 2 VLAN Settings 13 5 1 3 VPN Settings 14 5 1 3 DDNS Settings 14 5 1 4 Static Route 15...

Page 3: ...1 1 Mobile List 31 7 1 2 Module Group 34 7 1 3 Call Waiting 35 7 1 4 Follow me 35 7 2 VoIP Settings 36 7 2 1 VoIP trunk 36 7 2 2 Trunk Group 42 7 2 3 SIP Settings 42 7 2 4 IAX Settings 47 7 2 5 Gener...

Page 4: ...It is the best solution ever to connect IP based telephone systems soft switches and IP PBXs to GSM network 1 1 Features SIP proxy Registrar for IP phones included Incoming call routing Outgoing call...

Page 5: ...NeoGate TG Series User Manual http www yeastar com 5 56 1 2 Hardware Specification Model Channels Appearance NeoGate TG100 1 NeoGate TG200 2 NeoGate TG400 4...

Page 6: ...ion Flashing green LED the server system is in working order Solid green LED system is damaged LAN port Ethernet port 10 100M RJ45 RS232 Console port RJ45 SIM socket Solid green LED connected correct...

Page 7: ...10 100M Ethernet ports with RJ45 interface and LED indicator Plug Ethernet line into NeoGate s Ethernet port and then connect the other end of the Ethernet line with a hub switch router LAN or WAN On...

Page 8: ...the IP address of the NeoGate server If this is the first time you configure NeoGate please use the default settings below IP Address http 192 168 5 150 Username admin Password password In this exampl...

Page 9: ...System Status In this page we can check the status of the system including trunk status network status and system information 4 1 1 Trunk status Figure 4 1 NeoGate Status Description GSM Tunk Status...

Page 10: ...e Provider Status Description OK Successful registration trunk is ready for use Unreachable The trunk is unreachable Failed Trunk registration failed 4 1 2 Network status In this page the IP address o...

Page 11: ...Call logs The call log captures all call details including call time caller number callee number call type call duration etc An administrator can search and filter call data by call date caller calle...

Page 12: ...access the device You can use the software putty to access the device In the SSH access you can do more advanced setting and debug It s disabled by default We don t recommend enabling it if not neede...

Page 13: ...ms Description NO 1 Click the NO 1 you can edit the first VLAN over LAN VLAN Number The VLAN Number is a unique value you assign to each VLAN on a single device VLAN IP Address Set the IP Address for...

Page 14: ...n be used to send any kind of network traffic securely NeoGate TG supports OpenVPN Figure 5 3 Enable VPN Import VPN Config Import configuration file of OpenVPN Notes 1 Don t configure user and group i...

Page 15: ...ault gateway You will need to set some Static Route for NeoGate TG to force it to go out through different gateway when access to different internet The default gateway priority of NeoGate TG from hig...

Page 16: ...ion and alert settings By clicking the relevant button you can enter the configuration page directly Service Figure 5 7 In Service tab you can check SMS USSD API SSH TFTP status For SMS USSD API you c...

Page 17: ...ld go to the forwarded number directly Port Choose the GSM port to dial alert call Attempts The attempts to dial a phone number when there is no answer Interval The interval between each attempt to di...

Page 18: ...ip address SOURCEIP attack dest mac DESTMAC attack source port DESTPORT attack source protocol PROTOCOL attack occurred DATETIME Figure 5 10 2 WEBLOGIN Web Login Alert Notification Enter the password...

Page 19: ...rusted Certificate This certificate is a CA certificate When selecting TLS Verify Client as Yes you should upload a CA The relevant IPPBX should also have this certificate Gateway Certificate This cer...

Page 20: ...Disable Ping Enable this item to drop net ping from remote hosts Drop All When you enable Drop All feature system will drop all packets or connection from other hosts if there are no other rules defi...

Page 21: ...255 255 0 for IP from 192 168 5 0 to 192 168 5 255 MAC Address The format of MAC Address is XX XX XX XX XX XX X means 0 9 or A F in hex the A F are not case sensitive Action Accept Accept the access...

Page 22: ...nds 2 IP blacklist The blocked IP address will display here you can edit or delete it as your wish 5 3 System Preferences In this page we can set other system preferences like the password for admin a...

Page 23: ...lly You can set the time to your local right time manually here 5 3 3 Custom Prompts We can upload the prompts in this page you can also download it and save it as a backup Figure 5 19 The administrat...

Page 24: ...com Port SMTP Port the default value is 25 Use SSL TLS to send secure message to server If the server of sending email needs to authenticate the sender you need to enable this Note Must be selected fo...

Page 25: ...e please don t turn off the power Or the system will get damaged Figure 5 22 5 3 6 Backup and Restore We can backup up the configurations before reset NeoGate TG to factory defaults and then restore i...

Page 26: ...age Figure 5 24 Reboot System Warning Rebooting the system will terminate all active calls Reset to Factory Defaults Warning A factory reset will erase all configuration data on the system Please do n...

Page 27: ...u cannot find the code for you just ignore it and add the code before number in destiation field to send SMS Destination Input the destination number to send the SMS to you can also choose the contact...

Page 28: ...ou can input _ instead 6 3 Outbox To check the SMS we sent we can check it in outbox page there are some filters for searching the SMS we want We can also check the status of email below Figure 6 3 6...

Page 29: ...ed for WAP browsing prepaid callback service mobile money services location based content services menu based information services and as part of configuring the phone on the network Figure 6 5 Choose...

Page 30: ...m 30 56 Figure 6 6 Enable API first define the user name and password You can set up the IP restrction for some special IP the software can connect to NeoGate TG via tha IP only We recommend configuri...

Page 31: ...can configure the details of GSM trunks VoIP trunks and the call routing rules 7 1 Mobile List 7 1 1 Mobile List All the GSM modules will be listed here edit each to the settings as you wish and powe...

Page 32: ...if the volume is fine It s 60 by default TxGain To adjust the transmit volume please configure this one No need to change it if the volume is fine It s 40 by default Call Progress Tone When dialing f...

Page 33: ...d during the alarm call you can customize the prompts as your wish E mail The email address to receive the alarm email Note please make sure SMTP test is successful in Email settings page before confi...

Page 34: ...ill be blocked 7 1 2 Module Group To route the call to a GSM channels group and dial out by the strategy we chose NeoGate can route the call in advanced method depending on your needs Figure 7 5 You c...

Page 35: ...ond call dialing into this SIM card there will be waiting tone instead of hang up or do follow me Figure 7 7 Choose the port to set up call waiting NeoGate will contact the SIM carrier to define if ca...

Page 36: ...sure the number you input there is reachable When a call arrivedt the call will be transferred to that number Notes 1 It takes several seconds to contact SIM carrier to get the status of follow me fe...

Page 37: ...this account Password Define the password for this account Figure 7 13 Items Description Enable SRTP Secure Real time Transport Protocol if it s enabled the same setting should be enabled in IP phone...

Page 38: ...o provider Type Choose the type of this trunk SIP or IAX Provider Name Input the name of provider Hostname IP Service provider s hostname or IP address 5060 is the standard port number used by SIP pro...

Page 39: ...ank if not needed Online Number Define the online number for Skype Connect and some other SIP service providers Leave this field blank if not needed Maximum Channels Control the maximum number of simu...

Page 40: ...ing DTMF of this trunk Default setting rfc2833 DOD settings DOD Direct Outward Dialing means the caller ID displayed when dialing out before configure this and please make sure the provider supports t...

Page 41: ...the codec for this SIP trunk and its priority Transport This will be the transport method used by the SIP Trunk This method is given by the SIP trunk provider The options are UDP default or TCP or TL...

Page 42: ...oup in this page Figure 7 18 Click Add New Trunk Group to add a new one or edit the defaut one All the VoIP trunk will be listed here we can choose the desired trunks to the right side as a group Figu...

Page 43: ...s parameter as No then common name must be the same with IP or domain name TLS Client Method When using NeoGate TG as TLS client specify the protocol for outbound TLS connections You can select it as...

Page 44: ...he default is NeoGate TG you can change it if needed 2 NAT Note Configuration of this section is required when using remote extensions generally Figure 7 21 Items Description Enable STUN STUN Simple T...

Page 45: ...ders and reply to the sender s IP address port No Use NAT mode only according to RFC3581 Never Never attempt NAT mode or RFC3581 support Route Use NAT but do not include rport in headers Allow RTP Rei...

Page 46: ...ovide priority to users by setting the value Figure 7 23 Note It s recommended that you configure the QoS in your router or switch instead of NeoGate side 5 Response Code NeoGate supports to change th...

Page 47: ...ate TG always respond the packets using SIP404 NOT FOUND It s recommended to be enabled for security Session timers Enable session timer mode default yes If you found the call is cut off every 15 minu...

Page 48: ...e global max call duration setting for all extensions it s 6000 by default HTTP Bind Port Port used for HTTP sessions Default 80 If you change this please reboot to take effect Two Stage Dialing Promp...

Page 49: ...1 Simple Mode Figure 7 29 This is the simple mode What we need to do is just choose the incoming source trunk and the destination trunk you want to route the call to NeoGate will allow all incoming c...

Page 50: ...can configure the advanced call back settings in part 7 3 4 Call Destination Choose the destination trunk to route the call to Hotline When it s configred this number will be dial via destination trun...

Page 51: ...oute here and we can create a new one or edit the old one There are two modes for you to configure that also Figure 7 31 1 Simple Mode This is the simple mode What we need to do is just choose the inc...

Page 52: ...to read tips DID number Define the expected DID Number if this trunk passes DID on incoming calls Leave this field blank to match calls with any or no DID info You can also use pattern matching to ma...

Page 53: ...o the phone number before the call is placed 7 3 3 Blacklist Blacklist is used to block an incoming outgoing call If the number of incoming outgoing call is listed in the number blacklist the caller w...

Page 54: ...ler ID directly Figure 7 35 If you want to apply Callback function to all incoming numbers please tick Allow All numbers Follow the step to use this function Step 1 Enable Callback On the mobile to IP...

Page 55: ...he system should strip or add digits Figure 7 38 Items Description Trunk Name Choose the trunk with callback rules Strip digits from front Define how many digits will be stripped from the call in numb...

Page 56: ...NeoGate TG Series User Manual http www yeastar com 56 56 8 Applications Application 1 Figure 8 1 Application 2 Figure 8 2 Finish...

Reviews: