User Guide
Page 14
... ...131 7.9.1 ToS (Type of Service) and WMM QoS 131 7.9.2 Application Priority Configuration 132 7.10 Multiple SSID (P-662HW-D Models only 133 7.10.1 Multiple SSID Commands 134 7.10.2 Multiple SSID Example 135 Chapter 8 DMZ ...137 8.1...Port Forwarding ...145 9.4.1 Default Server IP Address 146 9.4.2 Port Forwarding: Services and Port Numbers 146 9.4.3 Configuring Servers Behind Port Forwarding (Example 146 9.5 Configuring Port Forwarding 147 9.5.1 Port Forwarding Rule Edit 148 9.6 Address Mapping ...149 9.6.1 Address Mapping Rule Edit 150 9.7 Trigger Port ...151 9.8 Edit Trigger Port...
... ...131 7.9.1 ToS (Type of Service) and WMM QoS 131 7.9.2 Application Priority Configuration 132 7.10 Multiple SSID (P-662HW-D Models only 133 7.10.1 Multiple SSID Commands 134 7.10.2 Multiple SSID Example 135 Chapter 8 DMZ ...137 8.1...Port Forwarding ...145 9.4.1 Default Server IP Address 146 9.4.2 Port Forwarding: Services and Port Numbers 146 9.4.3 Configuring Servers Behind Port Forwarding (Example 146 9.5 Configuring Port Forwarding 147 9.5.1 Port Forwarding Rule Edit 148 9.6 Address Mapping ...149 9.6.1 Address Mapping Rule Edit 150 9.7 Trigger Port ...151 9.8 Edit Trigger Port...
User Guide
Page 25
... Servers Behind NAT Example 146 Figure 85 NAT Port Forwarding ...147 Figure 86 Port Forwarding Rule Setup 148 Figure 87 Address Mapping Rules ...149 Figure 88 Edit Address Mapping Rule 150 Figure 89 Trigger Port ...152 Figure 90 Trigger Port Edit ...153 Figure 91 Firewall Application ...159 ...: Customized Services 178 Figure 100 Firewall: Configure Customized Services 179 Figure 101 Firewall Example: Rules ...180 Figure 102 Edit Custom Port Example 180 Figure 103 Firewall Example: Edit Rule: Destination Address 181 Figure 104 Firewall Example: Edit Rule: Select Customized Services 182...
... Servers Behind NAT Example 146 Figure 85 NAT Port Forwarding ...147 Figure 86 Port Forwarding Rule Setup 148 Figure 87 Address Mapping Rules ...149 Figure 88 Edit Address Mapping Rule 150 Figure 89 Trigger Port ...152 Figure 90 Trigger Port Edit ...153 Figure 91 Firewall Application ...159 ...: Customized Services 178 Figure 100 Firewall: Configure Customized Services 179 Figure 101 Firewall Example: Rules ...180 Figure 102 Edit Custom Port Example 180 Figure 103 Firewall Example: Edit Rule: Destination Address 181 Figure 104 Firewall Example: Edit Rule: Select Customized Services 182...
User Guide
Page 32
... 135 Table 49 DMZ ...138 Table 50 NAT Definitions ...141 Table 51 NAT Mapping Types ...144 Table 52 NAT General ...145 Table 53 NAT Port Forwarding ...147 Table 54 Port Forwarding Rule Setup 148 Table 55 Address Mapping Rules ...150 Table 56 Edit Address Mapping Rule 151 Table 57 Trigger... Port ...152 Table 58 Trigger Port Edit ...153 Table 59 Common IP Ports ...159 Table 60 ICMP Commands That Trigger Alerts 162 Table 61 Legal NetBIOS Commands 162 Table 62 ...
... 135 Table 49 DMZ ...138 Table 50 NAT Definitions ...141 Table 51 NAT Mapping Types ...144 Table 52 NAT General ...145 Table 53 NAT Port Forwarding ...147 Table 54 Port Forwarding Rule Setup 148 Table 55 Address Mapping Rules ...150 Table 56 Edit Address Mapping Rule 151 Table 57 Trigger... Port ...152 Table 58 Trigger Port Edit ...153 Table 59 Common IP Ports ...159 Table 60 ICMP Commands That Trigger Alerts 162 Table 61 Legal NetBIOS Commands 162 Table 62 ...
User Guide
Page 48
... according to edit/add a firewall rule. Port Forwarding Use this screen to apply the rule. Rules This screen shows a summary of network traffic to which to access the summary statistics tables. MAC Filter Use this screen to devices or block the devices from accessing the ZyXEL Device. Threshold Use this screen to configure...
... according to edit/add a firewall rule. Port Forwarding Use this screen to apply the rule. Rules This screen shows a summary of network traffic to which to access the summary statistics tables. MAC Filter Use this screen to devices or block the devices from accessing the ZyXEL Device. Threshold Use this screen to configure...
User Guide
Page 92
...edit your ISP in the Mode field. Connection Nailed-Up Connection Select Nailed-Up Connection when you . Click Edit to go to the Port Forwarding screen to the Internet. By prior agreement, a protocol is available if you select Connect on Demand when you select VC, specify ... don't want to 31 is disconnected. A dynamic IP address is 0, which means the Internet session will try to the previous screen. The ZyXEL Device will not timeout. Otherwise, select None to save the changes. Chapter 5 WAN Setup Table 24 More Connections Edit (continued) LABEL DESCRIPTION ...
...edit your ISP in the Mode field. Connection Nailed-Up Connection Select Nailed-Up Connection when you . Click Edit to go to the Port Forwarding screen to the Internet. By prior agreement, a protocol is available if you select Connect on Demand when you select VC, specify ... don't want to 31 is disconnected. A dynamic IP address is 0, which means the Internet session will try to the previous screen. The ZyXEL Device will not timeout. Otherwise, select None to save the changes. Chapter 5 WAN Setup Table 24 More Connections Edit (continued) LABEL DESCRIPTION ...
User Guide
Page 96
...'s priority among the three routes the ZyXEL Device uses (normal, traffic redirect and dial backup). Port Speed Select the speed of "1" for dial backup. Use a higher value in dotted decimal notation. The ZyXEL Device automatically forwards traffic to save the changes. Apply Click...of the routes is as shown. 96 P-662H/HW-D Series User's Guide Traffic Redirect Traffic redirect forwards traffic to a backup gateway when the ZyXEL Device cannot connect to configure advanced settings for directly connected networks. Note: If you activate traffic redirect,...
...'s priority among the three routes the ZyXEL Device uses (normal, traffic redirect and dial backup). Port Speed Select the speed of "1" for dial backup. Use a higher value in dotted decimal notation. The ZyXEL Device automatically forwards traffic to save the changes. Apply Click...of the routes is as shown. 96 P-662H/HW-D Series User's Guide Traffic Redirect Traffic redirect forwards traffic to a backup gateway when the ZyXEL Device cannot connect to configure advanced settings for directly connected networks. Note: If you activate traffic redirect,...
User Guide
Page 139
... to the ZyXEL Device. The DMZ port and connected servers (D through C) use public IP addresses that are in a multicast group. The public IP addresses of the DMZ and WAN ports are in another subnet. Cancel Click Cancel to begin configuring this check box to forward NetBIOS packets from... a network-layer protocol used to establish membership in separate subnets. The LAN port and connected computers (A through F) use private IP addresses that are in one subnet. Clear this check box to forward NetBIOS packets from the LAN to the DMZ and from the DMZ to the...
... to the ZyXEL Device. The DMZ port and connected servers (D through C) use public IP addresses that are in a multicast group. The public IP addresses of the DMZ and WAN ports are in another subnet. Cancel Click Cancel to begin configuring this check box to forward NetBIOS packets from... a network-layer protocol used to establish membership in separate subnets. The LAN port and connected computers (A through F) use private IP addresses that are in one subnet. Clear this check box to forward NetBIOS packets from the LAN to the DMZ and from the DMZ to the...
User Guide
Page 142
...Address) is the source address on page 144), NAT offers the additional benefit of an outside world. The ZyXEL Device keeps track of the original addresses and port numbers so incoming reply packets can be either local or global) of firewall protection. The global IP addresses... this chapter. 142 P-662H/HW-D Series User's Guide The following figure illustrates a possible NAT application, where three inside global address) before forwarding it to the Internet. Chapter 9 Network Address Translation (NAT) Screens 9.1.2 What NAT Does In the simplest form, NAT changes the source ...
...Address) is the source address on page 144), NAT offers the additional benefit of an outside world. The ZyXEL Device keeps track of the original addresses and port numbers so incoming reply packets can be either local or global) of firewall protection. The global IP addresses... this chapter. 142 P-662H/HW-D Series User's Guide The following figure illustrates a possible NAT application, where three inside global address) before forwarding it to the Internet. Chapter 9 Network Address Translation (NAT) Screens 9.1.2 What NAT Does In the simplest form, NAT changes the source ...
User Guide
Page 145
...SIP ALG Select this field to pass through the ZyXEL Device. Table 52 NAT General LABEL DESCRIPTION Active Network Address Translation (NAT) Select this can be established, and users may not be able to the previous configuration. 9.4 Port Forwarding A port forwarding set is a list of NAT sessions they need ...performance is not degraded by the number of inside network appear as file sharing applications, they can establish, this check box to the ZyXEL Device. If your network has a large number of users using peer to peer applications, you do not limit the number of NAT ...
...SIP ALG Select this field to pass through the ZyXEL Device. Table 52 NAT General LABEL DESCRIPTION Active Network Address Translation (NAT) Select this can be established, and users may not be able to the previous configuration. 9.4 Port Forwarding A port forwarding set is a list of NAT sessions they need ...performance is not degraded by the number of inside network appear as file sharing applications, they can establish, this check box to the ZyXEL Device. If your network has a large number of users using peer to peer applications, you do not limit the number of NAT ...
User Guide
Page 146
...for specified services, NAT supports a default server IP address. The port number identifies a service; Many residential broadband ISP accounts do not assign a Default Server IP address, the ZyXEL Device discards all packets received for example both FTP and web ... web service is on port 80 and FTP on commonly used port numbers. 9.4.3 Configuring Servers Behind Port Forwarding (Example) Let's say you to another (B in the remote management setup. 9.4.2 Port Forwarding: Services and Port Numbers Use the Port Forwarding screen to forward incoming service requests to a port or a range of...
...for specified services, NAT supports a default server IP address. The port number identifies a service; Many residential broadband ISP accounts do not assign a Default Server IP address, the ZyXEL Device discards all packets received for example both FTP and web ... web service is on port 80 and FTP on commonly used port numbers. 9.4.3 Configuring Servers Behind Port Forwarding (Example) Let's say you to another (B in the remote management setup. 9.4.2 Port Forwarding: Services and Port Numbers Use the Port Forwarding screen to forward incoming service requests to a port or a range of...
User Guide
Page 147
... the table below. If you do not assign a Default Server IP address, the ZyXEL Device discards all packets received for specified services, NAT supports a default server. Add Click this screen. Chapter 9 Network Address Translation (NAT) Screens 9.5 Configuring Port Forwarding " The Port Forwarding screen is available only when you select SUA Only in the remote management...
... the table below. If you do not assign a Default Server IP address, the ZyXEL Device discards all packets received for specified services, NAT supports a default server. Add Click this screen. Chapter 9 Network Address Translation (NAT) Screens 9.5 Configuring Port Forwarding " The Port Forwarding screen is available only when you select SUA Only in the remote management...
User Guide
Page 148
... subsequent rules move up by one port, enter the port number again in this check box to delete an existing port forwarding rule. To forward a series of ports, enter the start port number here and the end port number in a series that identifies a service. Modify Click the Edit icon to go to the ZyXEL Device. Apply Click Apply to...
... subsequent rules move up by one port, enter the port number again in this check box to delete an existing port forwarding rule. To forward a series of ports, enter the start port number here and the end port number in a series that identifies a service. Modify Click the Edit icon to go to the ZyXEL Device. Apply Click Apply to...
User Guide
Page 149
... Table 54 Port Forwarding Rule Setup (continued) LABEL DESCRIPTION Server IP Address Enter the inside IP address of empty rules. For example, if you specify. To change your changes back to the ZyXEL Device. When a rule matches the current packet, the ZyXEL Device takes the... new rules 4, 5 and 6. If there are ignored. Cancel Click Cancel to open the following screen. Apply Click Apply to save your ZyXEL Device's address mapping settings, click Network > NAT > Address Mapping to begin configuring this screen afresh. 9.6 Address Mapping " The Address Mapping...
... Table 54 Port Forwarding Rule Setup (continued) LABEL DESCRIPTION Server IP Address Enter the inside IP address of empty rules. For example, if you specify. To change your changes back to the ZyXEL Device. When a rule matches the current packet, the ZyXEL Device takes the... new rules 4, 5 and 6. If there are ignored. Cancel Click Cancel to open the following screen. Apply Click Apply to save your ZyXEL Device's address mapping settings, click Network > NAT > Address Mapping to begin configuring this screen afresh. 9.6 Address Mapping " The Address Mapping...
User Guide
Page 151
... address in from your changes back to save your ISP. Trigger port forwarding solves this link to go to the Port Forwarding screen to edit a server mapping set a forwarding port in NAT to forward a service (coming in the forwarding port with a specific port number and protocol ("incoming" port), the ZyXEL Device forwards the traffic P-662H/HW-D Series User's Guide 151 Note that you...
... address in from your changes back to save your ISP. Trigger port forwarding solves this link to go to the Port Forwarding screen to edit a server mapping set a forwarding port in NAT to forward a service (coming in the forwarding port with a specific port number and protocol ("incoming" port), the ZyXEL Device forwards the traffic P-662H/HW-D Series User's Guide 151 Note that you...
User Guide
Page 152
... minutes with UDP (User Datagram Protocol) or two hours with the "incoming" port range of 6970-7170. 3 The Real Audio server responds using a port number ranging between 6970-7170. 4 The ZyXEL Device forwards the traffic to Jane's computer IP address. 5 Only Jane can use the ...Real Audio server (port 7070). 2 Port 7070 is closed or times out. The ZyXEL Device forwards the traffic with this screen. P-662H/HW-D Series User's Guide Start Port Type a port number or the starting port number in a range of port numbers. The ZyXEL Device times out in a range of ports) to the ...
... minutes with UDP (User Datagram Protocol) or two hours with the "incoming" port range of 6970-7170. 3 The Real Audio server responds using a port number ranging between 6970-7170. 4 The ZyXEL Device forwards the traffic to Jane's computer IP address. 5 Only Jane can use the ...Real Audio server (port 7070). 2 Port 7070 is closed or times out. The ZyXEL Device forwards the traffic with this screen. P-662H/HW-D Series User's Guide Start Port Type a port number or the starting port number in a range of port numbers. The ZyXEL Device times out in a range of ports) to the ...
User Guide
Page 153
... labels in a range of the rule. All characters are permitted - Incoming Port Range The incoming port is the descriptive name of port numbers. The ZyXEL Device forwards the traffic with this action. Name Type a unique name (up by one when you want to delete the port forwarding rule. including spaces. A window display asking you can edit the...
... labels in a range of the rule. All characters are permitted - Incoming Port Range The incoming port is the descriptive name of port numbers. The ZyXEL Device forwards the traffic with this action. Name Type a unique name (up by one when you want to delete the port forwarding rule. including spaces. A window display asking you can edit the...
User Guide
Page 226
...for VPN does not work , you must identify that use private domain names on both IPSec endpoints. • Set the NAT router to forward UDP port 500 to IPSec router A. The compatibility of the IPSec packet. NAT traversal solves the problem by a NAT device. one to branch office...one to branch office 3 and another to headquarters. The NAT router forwards the IPSec packet with the UDP port 500 header unchanged. Finally, NAT is compatible with ESP in tunnel mode because integrity checks are created from ZyXEL Device A; You cannot use domain names to access Intranet servers on a...
...for VPN does not work , you must identify that use private domain names on both IPSec endpoints. • Set the NAT router to forward UDP port 500 to IPSec router A. The compatibility of the IPSec packet. NAT traversal solves the problem by a NAT device. one to branch office...one to branch office 3 and another to headquarters. The NAT router forwards the IPSec packet with the UDP port 500 header unchanged. Finally, NAT is compatible with ESP in tunnel mode because integrity checks are created from ZyXEL Device A; You cannot use domain names to access Intranet servers on a...
User Guide
Page 230
...IP address, then you cannot configure any character, including spaces, but not both. A DNS server allows clients on the LAN behind your ZyXEL Device. Select Single for this is configured to Subnet, this feature to work. Table 93 Edit VPN Policies LABEL DESCRIPTION IPSec Setup Active ... remote IPSec router's configured remote IP addresses. DNS Server If there is no traffic. You can have to forward UDP port 500 packets to the remote IPSec router behind your ZyXEL Device. 230 P-662H/HW-D Series User's Guide If you configure an active rule with 0.0.0.0 in the Secure...
...IP address, then you cannot configure any character, including spaces, but not both. A DNS server allows clients on the LAN behind your ZyXEL Device. Select Single for this is configured to Subnet, this feature to work. Table 93 Edit VPN Policies LABEL DESCRIPTION IPSec Setup Active ... remote IPSec router's configured remote IP addresses. DNS Server If there is no traffic. You can have to forward UDP port 500 packets to the remote IPSec router behind your ZyXEL Device. 230 P-662H/HW-D Series User's Guide If you configure an active rule with 0.0.0.0 in the Secure...
User Guide
Page 304
... UPnP enabled application. Disable UPnP if this check box to manually configure port forwarding for examples of installing and using NAT traversal, UPnP applications automatically reserve a NAT forwarding port in this check box to allow UPnP-enabled applications to automatically configure the ZyXEL Device so that anyone could use a UPnP application to open the web...
... UPnP enabled application. Disable UPnP if this check box to manually configure port forwarding for examples of installing and using NAT traversal, UPnP applications automatically reserve a NAT forwarding port in this check box to allow UPnP-enabled applications to automatically configure the ZyXEL Device so that anyone could use a UPnP application to open the web...
User Guide
Page 349
... thus acting as an Internet account user name and password) is required or the ZyXEL Device cannot connect to forward IP traffic when you specify. LAN/DMZ Interface The ZyXEL Device provides a LAN port that you configure the TCP/IP parameters manually. 16 IP and 4 Bridge Traffic ...Redirect Traffic redirect forwards WAN traffic to a backup gateway when the ZyXEL Device cannot connect to web screen(s) for the computers ...
... thus acting as an Internet account user name and password) is required or the ZyXEL Device cannot connect to forward IP traffic when you specify. LAN/DMZ Interface The ZyXEL Device provides a LAN port that you configure the TCP/IP parameters manually. 16 IP and 4 Bridge Traffic ...Redirect Traffic redirect forwards WAN traffic to a backup gateway when the ZyXEL Device cannot connect to web screen(s) for the computers ...