Avaya BCM50a Bedienungsanleitung

Stöbern Sie online oder laden Sie Bedienungsanleitung nach Vernetzung Avaya BCM50a herunter. Avaya BCM50a Configuration manual Benutzerhandbuch

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 442
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen

Inhaltsverzeichnis

Seite 1 - BCM50a Integrated Router

BCM50aBCM50a Integrated Router Document Number: N0115790Document Version: 1.0Date: September 2006BCM50a Integrated Router Configuration — Basics

Seite 2 - Trademarks

10 ContentsN0115790Chapter 12Content filtering . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 187Introduc

Seite 3 - Contents

100 Chapter 7 WAN screensN0115790Configuring GeneralClick WAN to open the General screen. Figure 24 WAN: General

Seite 4 - Chapter 2

Chapter 7 WAN screens 101BCM50a Integrated Router Configuration — BasicsTable 17 describes the fields in Figure 24. Table 17 WAN: GeneralLabel Desc

Seite 5 - Chapter 4

102 Chapter 7 WAN screensN0115790PPPoE encapsulationThe BCM50a Integrated Router supports PPPoE (Point-to-Point Protocol over Ethernet). PPPoE is an I

Seite 6 - Chapter 6

Chapter 7 WAN screens 103BCM50a Integrated Router Configuration — BasicsConfiguring WAN ISPTo configure the WAN ISP settings for your BCM50a Integrate

Seite 7 - Chapter 7

104 Chapter 7 WAN screensN0115790Table 18 describes the fields in Figure 25.Table 18 WAN: WAN ISPLabel DescriptionName Enter the name of your Intern

Seite 8

Chapter 7 WAN screens 105BCM50a Integrated Router Configuration — BasicsConfiguring WAN IP To change the WAN IP settings of your BCM50a Integrated Rou

Seite 9

106 Chapter 7 WAN screensN0115790Figure 26 WAN: IP

Seite 10 - Chapter 13

Chapter 7 WAN screens 107BCM50a Integrated Router Configuration — BasicsTable 19 describes the fields in Figure 26.Table 19 WAN: IPLabel Description

Seite 11 - Chapter 14

108 Chapter 7 WAN screensN0115790Metric ( This field sets this route's priority among the routes the BCM50a Integrated Router uses.The metric rep

Seite 12 - Chapter 16

Chapter 7 WAN screens 109BCM50a Integrated Router Configuration — BasicsTraffic redirectTraffic redirect forwards WAN traffic to a backup gateway when

Seite 13 - Chapter 18

Contents 11BCM50a Integrated Router Configuration — BasicsPreshared key . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 14

110 Chapter 7 WAN screensN0115790Figure 27 Traffic Redirect WAN SetupThe network topology illustrated in Figure 28 avoids triangle route security is

Seite 15 - Appendix B

Chapter 7 WAN screens 111BCM50a Integrated Router Configuration — BasicsConfiguring Traffic RedirectTo change the traffic redirect settings, click WA

Seite 16

112 Chapter 7 WAN screensN0115790Configuring Dial BackupTo change the dial backup settings, click WAN , then the Dial Backup tab. The screen appears a

Seite 17

Chapter 7 WAN screens 113BCM50a Integrated Router Configuration — BasicsFigure 30 Dial Backup Setup

Seite 18

114 Chapter 7 WAN screensN0115790Table 21 describes the fields in Figure 30.Table 21 Dial Backup SetupLabel DescriptionEnable Dial Backup Select thi

Seite 19

Chapter 7 WAN screens 115BCM50a Integrated Router Configuration — BasicsUsed Fixed IP Address Select this check box if your ISP assigned you a fixed I

Seite 20

116 Chapter 7 WAN screensN0115790RIP Direction RIP (Routing Information Protocol) allows a router to exchange routing information with other routers.

Seite 21

Chapter 7 WAN screens 117BCM50a Integrated Router Configuration — BasicsAdvanced Modem SetupAT Command StringsFor regular telephone lines, the default

Seite 22

118 Chapter 7 WAN screensN0115790Configuring Advanced Modem Setup Click the Edit button in the Dial Backup screen to display the Advanced Setup screen

Seite 23

Chapter 7 WAN screens 119BCM50a Integrated Router Configuration — BasicsTable 22 describes the fields in Figure 31.Table 22 Advanced SetupLabel Desc

Seite 24

12 ContentsN0115790Importing a Trusted CA certificate . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .272Trusted CA Cert

Seite 25

120 Chapter 7 WAN screensN0115790Call Back Delay (sec)Type a number of seconds for the BCM50a Integrated Router to wait between dropping a callback re

Seite 26

121BCM50a Integrated Router Configuration — BasicsChapter 8Network Address Translation (NAT) ScreensThis chapter discusses how to configure NAT on the

Seite 27 - Text conventions

122 Chapter 8 Network Address Translation (NAT) ScreensN0115790Note that inside/outside refers to the location of a host, while global/local refers to

Seite 28 - How to get Help

Chapter 8 Network Address Translation (NAT) Screens 123BCM50a Integrated Router Configuration — BasicsHow NAT worksEach packet has two addresses–a sou

Seite 29 - Preface 29

124 Chapter 8 Network Address Translation (NAT) ScreensN0115790In Figure 33, B can send packets, with source IP address e.f.g.h and port 20202 to A be

Seite 30 - 30 Preface

Chapter 8 Network Address Translation (NAT) Screens 125BCM50a Integrated Router Configuration — BasicsFigure 34 NAT application with IP AliasNAT map

Seite 31 - Chapter 1

126 Chapter 8 Network Address Translation (NAT) ScreensN0115790Table 24 summarizes these types.Using NATSUA (Single User Account) versus NATSUA (Singl

Seite 32 - Physical features

Chapter 8 Network Address Translation (NAT) Screens 127BCM50a Integrated Router Configuration — BasicsSUA Server A SUA server set is a list of inside

Seite 33 - Four-Port switch

128 Chapter 8 Network Address Translation (NAT) ScreensN0115790Port forwarding: Services and Port NumbersThe most often used port numbers are shown in

Seite 34 - Nonphysical features

Chapter 8 Network Address Translation (NAT) Screens 129BCM50a Integrated Router Configuration — BasicsFigure 35 Multiple servers behind NAT exampleC

Seite 35

Contents 13BCM50a Integrated Router Configuration — BasicsChapter 17Remote management screens . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 36

130 Chapter 8 Network Address Translation (NAT) ScreensN0115790Figure 36 SUA/NAT setupTable 26 describes the fields in Figure 36.Table 26 SUA/NAT

Seite 37 - Central Network Management

Chapter 8 Network Address Translation (NAT) Screens 131BCM50a Integrated Router Configuration — BasicsConfiguring Address MappingOrdering your rules i

Seite 38 - Logging and tracing

132 Chapter 8 Network Address Translation (NAT) ScreensN0115790Figure 37 Address MappingTable 27 describes the fields in Figure 37.Table 27 Addres

Seite 39 - Embedded FTP and TFTP Servers

Chapter 8 Network Address Translation (NAT) Screens 133BCM50a Integrated Router Configuration — BasicsConfiguring Address Mapping To edit an Address M

Seite 40

134 Chapter 8 Network Address Translation (NAT) ScreensN0115790Figure 38 Address Mapping editTable 28 describes the fields in Figure 38.Table 28 A

Seite 41 - Introducing the WebGUI

Chapter 8 Network Address Translation (NAT) Screens 135BCM50a Integrated Router Configuration — BasicsTrigger Port ForwardingSome services use a dedic

Seite 42 - Figure 2 Login screen

136 Chapter 8 Network Address Translation (NAT) ScreensN0115790Figure 39 Trigger Port Forwarding process: example1 Jane (A) requests a file from the

Seite 43

Chapter 8 Network Address Translation (NAT) Screens 137BCM50a Integrated Router Configuration — BasicsConfiguring Trigger Port ForwardingTo change tri

Seite 44

138 Chapter 8 Network Address Translation (NAT) ScreensN0115790Table 29 describes the fields in Figure 40.Table 29 Trigger PortLabel DescriptionNo.

Seite 45 - Figure 5 MAIN MENU Screen

139BCM50a Integrated Router Configuration — BasicsChapter 9Static Route screensThis chapter shows you how to configure static routes for your BCM50a I

Seite 46 - Figure 6 Contact Support

14 ContentsN0115790How do I know if I am using UPnP? . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .347NAT Traversal . . . . .

Seite 47 - Wizard setup

140 Chapter 9 Static Route screensN0115790Figure 41 Example of Static Routing topologyConfiguring IP Static RouteClick STATIC ROUTE to open the Rout

Seite 48

Chapter 9 Static Route screens 141BCM50a Integrated Router Configuration — BasicsFigure 42 Static Route screenTable 30 describes the fields in Figur

Seite 49 - VPI and VCI

142 Chapter 9 Static Route screensN0115790Configuring Route entrySelect a static route index number and click Edit. The screen is illustrated in Figur

Seite 50 - Table 2 Wizard Screen 1

Chapter 9 Static Route screens 143BCM50a Integrated Router Configuration — BasicsMetric Metric represents the cost of transmission for routing purpose

Seite 51 - IP address assignment

144 Chapter 9 Static Route screensN0115790

Seite 52 - Private IP addresses

145BCM50a Integrated Router Configuration — BasicsChapter 10FirewallsThis chapter gives some background information on firewalls and introduces the BC

Seite 53 - Chapter 3 Wizard setup 53

146 Chapter 10 FirewallsN0115790Packet filtering firewallsPacket filtering firewalls restrict access based on the source or destination computer netwo

Seite 54 - 54 Chapter 3 Wizard setup

Chapter 10 Firewalls 147BCM50a Integrated Router Configuration — BasicsIntroduction to the BCM50a Integrated Router firewallThe BCM50a Integrated Rout

Seite 55 - Chapter 3 Wizard setup 55

148 Chapter 10 FirewallsN0115790Figure 44 BCM50a Integrated Router firewall applicationDenial of ServiceDenials of Service (DoS) attacks are aimed a

Seite 56 - 56 Chapter 3 Wizard setup

Chapter 10 Firewalls 149BCM50a Integrated Router Configuration — BasicsWhen computers communicate on the Internet, they use the client/server model, w

Seite 57 - Chapter 3 Wizard setup 57

Contents 15BCM50a Integrated Router Configuration — BasicsDHCP Table screen . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 58 - 58 Chapter 3 Wizard setup

150 Chapter 10 FirewallsN01157902 Weaknesses in the TCP/IP specification leave it open to SYN Flood and LAND attacks. These attacks are executed durin

Seite 59 - DHCP setup

Chapter 10 Firewalls 151BCM50a Integrated Router Configuration — BasicsFigure 46 SYN floodIn a LAND Attack, hackers flood SYN packets into the netw

Seite 60 - Figure 12 Wizard Screen 3

152 Chapter 10 FirewallsN0115790Figure 47 Smurf attack• ICMP vulnerability ICMP is an error reporting protocol that works in concert with IP. The fo

Seite 61 - Chapter 3 Wizard setup 61

Chapter 10 Firewalls 153BCM50a Integrated Router Configuration — BasicsAll SMTP commands are illegal except for those displayed in Table 35.• Tracerou

Seite 62 - 62 Chapter 3 Wizard setup

154 Chapter 10 FirewallsN0115790In summary, stateful inspection: • Allows all sessions originating from the LAN (local network) to the WAN (Internet).

Seite 63 - Test your Internet connection

Chapter 10 Firewalls 155BCM50a Integrated Router Configuration — Basics3 The packet is inspected by a firewall rule to determine and record informatio

Seite 64 - 64 Chapter 3 Wizard setup

156 Chapter 10 FirewallsN0115790• Restrict use of certain protocols, such as Telnet, to authorized users on the LAN.These custom rules work by evaluat

Seite 65 - User Notes

Chapter 10 Firewalls 157BCM50a Integrated Router Configuration — BasicsAfter the BCM50a Integrated Router receives any subsequent packet (from the Int

Seite 66

158 Chapter 10 FirewallsN0115790Consider the FTP protocol. A user on the LAN opens a control connection to a server on the Internet and requests a fil

Seite 67 - Chapter 4 User Notes 67

Chapter 10 Firewalls 159BCM50a Integrated Router Configuration — BasicsPacket filtering:• The router filters packets as they pass through the router i

Seite 68 - Advanced Router Configuration

16 ContentsN0115790VPN Responder IPSec Log . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .423Log Commands .

Seite 69 - Chapter 4 User Notes 69

160 Chapter 10 FirewallsN0115790When to use the firewall1 To prevent DoS attacks and prevent hackers cracking your network.2 A range of source and des

Seite 70 - 70 Chapter 4 User Notes

161BCM50a Integrated Router Configuration — BasicsChapter 11Firewall screensThis chapter shows you how to configure your BCM50a Integrated Router fire

Seite 71 - Chapter 4 User Notes 71

162 Chapter 11 Firewall screensN0115790By default, the BCM50a Integrated Router stateful packet inspection blocks packets traveling in the following d

Seite 72 - 72 Chapter 4 User Notes

Chapter 11 Firewall screens 163BCM50a Integrated Router Configuration — BasicsRule logic overviewRule checklist1 State the intent of the rule. For exa

Seite 73 - Chapter 4 User Notes 73

164 Chapter 11 Firewall screensN0115790Once these questions have been answered, adding rules is simply a matter of plugging the information into the c

Seite 74 - 74 Chapter 4 User Notes

Chapter 11 Firewall screens 165BCM50a Integrated Router Configuration — Basicssession through the LAN interface is an example of traffic destined for

Seite 75 - System screens

166 Chapter 11 Firewall screensN0115790Figure 49 LAN to WAN trafficWAN to LAN rulesThe default rule for WAN to LAN traffic blocks all incoming conne

Seite 76 - Configuring General Setup

Chapter 11 Firewall screens 167BCM50a Integrated Router Configuration — BasicsThe BCM50a Integrated Router applies the firewall rules in order, starti

Seite 77 - Chapter 5 System screens 77

168 Chapter 11 Firewall screensN0115790Figure 51 Enabling the firewall Table 36 describes the fields in Figure 51.Table 36 Firewall rules summary:

Seite 78 - 78 Chapter 5 System screens

Chapter 11 Firewall screens 169BCM50a Integrated Router Configuration — BasicsBypass Triangle RouteSelect this check box to have the BCM50a Integrated

Seite 79 - Configuring Dynamic DNS

17BCM50a Integrated Router Configuration — BasicsFiguresFigure 1 Secure Internet Access and VPN Application . . . . . . . . . . . . . . . . . . . .

Seite 80 - Table 9 DDNS

170 Chapter 11 Firewall screensN0115790Configuring firewall rulesFollow these directions to create a new rule.In the Summary screen, type the index nu

Seite 81 - Configuring Password

Chapter 11 Firewall screens 171BCM50a Integrated Router Configuration — BasicsFigure 52 Creating and editing a firewall rule Table 37 describes the

Seite 82 - Table 10 Password

172 Chapter 11 Firewall screensN0115790Source Address Click SrcAdd to add a new address, SrcEdit to edit an existing one or SrcDelete to delete one. T

Seite 83 - Chapter 5 System screens 83

Chapter 11 Firewall screens 173BCM50a Integrated Router Configuration — BasicsConfiguring source and destination addressesTo add a new source or desti

Seite 84 - Configuring Time and Date

174 Chapter 11 Firewall screensN0115790Configuring custom portsYou can also configure customized ports for services not predefined by the BCM50a Integ

Seite 85 - Figure 19 Time and Date

Chapter 11 Firewall screens 175BCM50a Integrated Router Configuration — Basics Example firewall rule The following Internet firewall rule example allo

Seite 86 - Table 12 Time and Date

176 Chapter 11 Firewall screensN01157906 Configure the Firewall Rule Edit IP screen as follows and click Apply.Figure 56 Firewall rule edit IP examp

Seite 87 - Chapter 5 System screens 87

Chapter 11 Firewall screens 177BCM50a Integrated Router Configuration — BasicsFigure 58 MyService rule configuration exampleAfter completing the con

Seite 88 - Configuring ALG

178 Chapter 11 Firewall screensN0115790Figure 59 My Service example rule summary Predefined servicesThe Available Services list box in the Edit Rule

Seite 89 - LAN screens

Chapter 11 Firewall screens 179BCM50a Integrated Router Configuration — Basicstype. For example, look at the default configuration labeled “(DNS)”. (U

Seite 90 - LAN TCP/IP

18 FiguresN0115790Figure 30 Dial Backup Setup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 113Figure 31 Advanced

Seite 91 - Multicast

180 Chapter 11 Firewall screensN0115790NEW-ICQ(TCP:5190) An Internet chat program.NEWS(TCP:144) A protocol for news groups.NFS(UDP:2049) Network Fil

Seite 92 - Configuring IP

Chapter 11 Firewall screens 181BCM50a Integrated Router Configuration — BasicsAlertsAlerts are reports on events, such as attacks, that you want to kn

Seite 93 - Table 14 LAN IP

182 Chapter 11 Firewall screensN0115790Configuring attack alertAttack alerts are the first defense against DOS attacks. In the Attack Alert screen (Fi

Seite 94 - 94 Chapter 6 LAN screens

Chapter 11 Firewall screens 183BCM50a Integrated Router Configuration — BasicsThe BCM50a Integrated Router measures both the total number of existing

Seite 95 - Configuring Static DHCP

184 Chapter 11 Firewall screensN0115790The BCM50a Integrated Router also sends alerts whenever TCP Maximum Incomplete is exceeded. The global values s

Seite 96 - Table 15 Static DHCP

Chapter 11 Firewall screens 185BCM50a Integrated Router Configuration — BasicsOne Minute High This is the rate of new half-open sessions that causes t

Seite 97 - Configuring IP Alias

186 Chapter 11 Firewall screensN0115790Apply Click Apply to save your changes to the BCM50a Integrated Router.Reset Click Reset to begin configuring t

Seite 98 - Table 16 IP Alias

187BCM50a Integrated Router Configuration — BasicsChapter 12Content filtering This chapter provides a brief overview of content filtering using the em

Seite 99 - WAN screens

188 Chapter 12 Content filteringN0115790Configure Content FilteringClick Content Filter on the navigation panel, to open the screen show in Figure 61.

Seite 100 - Configuring General

Chapter 12 Content filtering 189BCM50a Integrated Router Configuration — BasicsTable 42 describes the fields in Figure 61.Table 42 Content filterLab

Seite 101 - Table 17 WAN: General

Figures 19BCM50a Integrated Router Configuration — BasicsFigure 65 IPSec summary fields . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 102 - PPPoE encapsulation

190 Chapter 12 Content filteringN0115790Time of Day to BlockTime of Day to Block allows the administrator to define during which time periods content

Seite 103 - Configuring WAN ISP

191BCM50a Integrated Router Configuration — BasicsChapter 13VPNThis chapter introduces the basics of IPSec VPNs and covers the VPN WebGUI. See Chapter

Seite 104 - 104 Chapter 7 WAN screens

192 Chapter 13 VPNN0115790or • As a VPN router that can have encrypted connections to multiple remote VPN routers. See Table 1 on page 31 for details

Seite 105 - Configuring WAN IP

Chapter 13 VPN 193BCM50a Integrated Router Configuration — BasicsOther terminologyEncryptionEncryption is a mathematical operation that transforms dat

Seite 106 - Figure 26 WAN: IP

194 Chapter 13 VPNN0115790Connect branch offices and business partners over the Internet with significant cost savings and improved performance when c

Seite 107 - Table 19 WAN: IP

Chapter 13 VPN 195BCM50a Integrated Router Configuration — BasicsFigure 63 IPSec architectureIPSec algorithmsThe ESP (Encapsulating Security Payload

Seite 108 - 108 Chapter 7 WAN screens

196 Chapter 13 VPNN0115790The Authentication Algorithms, HMAC-MD5 (RFC 2403) and HMAC-SHA-1 (RFC 2404), provide an authentication mechanism for the AH

Seite 109 - Traffic redirect

Chapter 13 VPN 197BCM50a Integrated Router Configuration — BasicsAn added feature of the ESP is payload padding, which further protects communications

Seite 110

198 Chapter 13 VPNN0115790EncapsulationThe two modes of operation for IPSec VPNs are Transport mode and Tunnel mode. Figure 64 Transport and Tunnel

Seite 111 - Configuring Traffic Redirect

Chapter 13 VPN 199BCM50a Integrated Router Configuration — BasicsTunnel mode Tunnel mode encapsulates the entire IP packet to transmit it securely. A

Seite 112 - Configuring Dial Backup

2N0115790N0115790Copyright © Nortel 2005–2006All rights reserved.The information in this document is subject to change without notice. The statements,

Seite 113 - Figure 30 Dial Backup Setup

20 FiguresN0115790Figure 100 Bandwidth management statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . .301Figure 101 Bandwidth manager

Seite 114 - Table 21 Dial Backup Setup

200 Chapter 13 VPNN0115790IPSec using ESP in Tunnel mode encapsulates the entire original packet (including headers) in a new IP packet. The new IP pa

Seite 115 - Chapter 7 WAN screens 115

Chapter 13 VPN 201BCM50a Integrated Router Configuration — BasicsYou can also enter the domain name of the remote secure gateway in the Secure Gateway

Seite 116 - 116 Chapter 7 WAN screens

202 Chapter 13 VPNN0115790Figure 66 SummaryIP Policies

Seite 117 - Advanced Modem Setup

Chapter 13 VPN 203BCM50a Integrated Router Configuration — BasicsTable 46 describes the fields in Figure 66.Table 46 SummaryLabel DescriptionContivi

Seite 118 - Figure 31 Advanced Setup

204 Chapter 13 VPNN0115790Keep AliveWhen you initiate an IPSec tunnel with keep alive enabled, the BCM50a Integrated Router automatically renegotiates

Seite 119 - Table 22 Advanced Setup

Chapter 13 VPN 205BCM50a Integrated Router Configuration — Basicsinformation about the IPSec SA lifetime). The nailed up option is available with the

Seite 120 - 120 Chapter 7 WAN screens

206 Chapter 13 VPNN0115790NAT traversal solves the problem by adding a UDP port 500 header to the IPSec packet. The NAT router forwards the IPSec pack

Seite 121 - Chapter 8

Chapter 13 VPN 207BCM50a Integrated Router Configuration — BasicsFigure 68 VPN Contivity Client rule setupTable 47 VPN Contivity Client rule setup

Seite 122 - What NAT does

208 Chapter 13 VPNN0115790Configuring Advanced SetupSelect one of the VPN rules in the VPN Summary screen and click Edit to configure the rule. If the

Seite 123 - How NAT works

Chapter 13 VPN 209BCM50a Integrated Router Configuration — BasicsFigure 69 VPN Contivity Client advanced rule setupTable 48 describes the fields in

Seite 124 - NAT application

Figures 21BCM50a Integrated Router Configuration — BasicsFigure 135 Network connections . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 125 - NAT mapping types

210 Chapter 13 VPNN0115790ID Type and contentWith aggressive negotiation mode (see “Negotiation Mode” on page 232 for more information), the BCM50a In

Seite 126 - Using NAT

Chapter 13 VPN 211BCM50a Integrated Router Configuration — BasicsConfigure the ID type and content in the VPN Branch Office Rule Setup screen (see Fig

Seite 127 - SUA Server

212 Chapter 13 VPNN0115790The two BCM50a Integrated Routers shown in Table 51 can complete negotiation and establish a VPN tunnel.The two BCM50a Integ

Seite 128

Chapter 13 VPN 213BCM50a Integrated Router Configuration — BasicsConfiguring Branch Office VPN Rule SetupSelect one of the VPN rules in the VPN Summar

Seite 129 - Configuring SUA Server

214 Chapter 13 VPNN0115790Figure 70 VPN Branch Office rule setup

Seite 130 - Table 26 SUA/NAT setup

Chapter 13 VPN 215BCM50a Integrated Router Configuration — BasicsTable 53 describes the fields in Figure 70.Table 53 VPN Branch Office rule setupLab

Seite 131 - Configuring Address Mapping

216 Chapter 13 VPNN0115790Available/ Selected IP PolicyThe Available IP Policy table displays network routes. Use the Add, Edit and Delete buttons to

Seite 132 - Table 27 Address Mapping

Chapter 13 VPN 217BCM50a Integrated Router Configuration — BasicsLocal IP Address This field displays the IP address (or range of IP addresses) of the

Seite 133

218 Chapter 13 VPNN0115790Remote IP Address This field displays the IP addresses of computers on the remote network behind the remote IPSec router.Thi

Seite 134

Chapter 13 VPN 219BCM50a Integrated Router Configuration — BasicsCertificate Use the drop-down list to select the certificate to use for this VPN tunn

Seite 135 - Trigger Port Forwarding

22 FiguresN0115790Figure 170 Pop-up Blocker settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .401Figure 171 Internet

Seite 136

220 Chapter 13 VPNN0115790Peer Content When you select IP in the Peer ID Type field, type the IP address of the computer with which you make the VPN c

Seite 137 - Figure 40 Trigger Port

Chapter 13 VPN 221BCM50a Integrated Router Configuration — BasicsESP Select ESP if you want to use ESP (Encapsulation Security Payload). The ESP proto

Seite 138 - Table 29 Trigger Port

222 Chapter 13 VPNN0115790Configuring an IP PolicySelect one of the IP policies in the VPN Branch Office screen and click Add or Edit to configure the

Seite 139 - Static Route screens

Chapter 13 VPN 223BCM50a Integrated Router Configuration — BasicsFigure 71 VPN Branch Office — IP Policy

Seite 140 - Configuring IP Static Route

224 Chapter 13 VPNN0115790Table 54 describes the fields in Figure 71.Table 54 VPN Branch Office — IP PolicyLabel DescriptionProtocol Enter a number

Seite 141

Chapter 13 VPN 225BCM50a Integrated Router Configuration — BasicsType Select one of the following port mapping types. 1. One-to-One: One-to-one mode m

Seite 142 - Configuring Route entry

226 Chapter 13 VPNN0115790Virtual Ending IP Address When the Type field is configured to One-to-one or Many-to-One, this field is N/A. When the Type f

Seite 143

Chapter 13 VPN 227BCM50a Integrated Router Configuration — BasicsProtocol Enter a number to specify what type of traffic is allowed to go through the

Seite 144

228 Chapter 13 VPNN0115790Port forwarding server A NAT server set is a list of inside (behind NAT on the LAN) servers, for example, web or FTP, that y

Seite 145 - Firewalls

Chapter 13 VPN 229BCM50a Integrated Router Configuration — BasicsFigure 72 VPN Branch Office — IP Policy - Port Forwarding ServerTable 55 describes

Seite 146 - Application level firewalls

23BCM50a Integrated Router Configuration — BasicsTablesTable 1 Feature specifications . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 147 - Chapter 10 Firewalls 147

230 Chapter 13 VPNN0115790IKE phasesThere are two phases to every IKE (Internet Key Exchange) negotiation–phase 1 (Authentication) and phase 2 (Key Ex

Seite 148 - Denial of Service

Chapter 13 VPN 231BCM50a Integrated Router Configuration — BasicsFigure 73 Two phases to set up the IPSec SAIn Phase 1 you must:• Choose a negotiati

Seite 149 - Types of DoS attacks

232 Chapter 13 VPNN0115790• Set the IPSec SA lifetime. In this field, you can determine how long the IPSec SA will stay up before it times out. The BC

Seite 150 - 150 Chapter 10 Firewalls

Chapter 13 VPN 233BCM50a Integrated Router Configuration — BasicsDiffie-Hellman (DH) Key GroupsDiffie-Hellman (DH) is a public-key cryptography protoc

Seite 151 - Figure 46 SYN flood

234 Chapter 13 VPNN0115790Figure 74 VPN Branch Office advanced rule setupTable 56 describes the fields in Figure 74.Table 56 VPN Branch Office Adv

Seite 152 - ICMP types trigger an alert:

Chapter 13 VPN 235BCM50a Integrated Router Configuration — BasicsMultiple Proposal Select this check box to allow the BCM50a Integrated Router to use

Seite 153 - Stateful inspection

236 Chapter 13 VPNN0115790Multiple Proposal Select this check box to allow the BCM50a Integrated Router to use any of its phase 2 encryption and auth

Seite 154 - Stateful inspection process

Chapter 13 VPN 237BCM50a Integrated Router Configuration — BasicsSA MonitorIn the WebGUI, click VPN and the SA Monitor tab. Use this screen to display

Seite 155 - Chapter 10 Firewalls 155

238 Chapter 13 VPNN0115790Figure 75 VPN SA Monitor Table 57 describes the fields in Figure 75.Table 57 VPN SA MonitorLabel Description# This is t

Seite 156 - TCP security

Chapter 13 VPN 239BCM50a Integrated Router Configuration — Basics Global settingsIn the WebGUI, click VPN on the navigation panel, then click the Glob

Seite 157 - Upper layer protocols

24 TablesN0115790Table 30 IP Static Route summary . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .141Table 31 Edit IP Static R

Seite 158 - Packet filtering vs. firewall

240 Chapter 13 VPNN0115790VPN Client Termination Use these screens to configure the BCM50a Integrated Router for VPN connections from computers using

Seite 159 - Firewall

Chapter 13 VPN 241BCM50a Integrated Router Configuration — BasicsFigure 77 VPN Client Termination

Seite 160 - When to use the firewall

242 Chapter 13 VPNN0115790Table 59 describes the fields in Figure 77.Table 59 VPN Client TerminationLabel DescriptionEnable Client TerminationTurn

Seite 161 - Firewall screens

Chapter 13 VPN 243BCM50a Integrated Router Configuration — BasicsEncryption Select the combinations of protocol and encryption and authentication alg

Seite 162

244 Chapter 13 VPNN0115790VPN Client Termination IP pool summaryIn the WebGUI, click VPN on the navigation panel and the Client Termination tab to ope

Seite 163 - Rule logic overview

Chapter 13 VPN 245BCM50a Integrated Router Configuration — BasicsFigure 78 VPN Client Termination IP pool summaryTable 60 describes the fields in Fi

Seite 164 - Connection direction examples

246 Chapter 13 VPNN0115790VPN Client Termination IP pool editIn the WebGUI, click VPN on the navigation panel and the Client Termination tab to open t

Seite 165 - LAN to WAN rules

Chapter 13 VPN 247BCM50a Integrated Router Configuration — BasicsVPN Client Termination advancedIn the WebGUI, click VPN on the navigation panel and t

Seite 166 - Configuring firewall

248 Chapter 13 VPNN0115790Figure 80 VPN Client Termination advanced

Seite 167

Chapter 13 VPN 249BCM50a Integrated Router Configuration — BasicsTable 62 describes the fields in Figure 80.Table 62 VPN Client Termination advanced

Seite 168

Tables 25BCM50a Integrated Router Configuration — BasicsTable 65 My Certificate create . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 169

250 Chapter 13 VPNN0115790Accept ISAKMP Initial Contact PayloadThe BCM50a Integrated Router can accept the INITIAL-CONTACT status messages to inform i

Seite 170 - Configuring firewall rules

Chapter 13 VPN 251BCM50a Integrated Router Configuration — BasicsPassword Management You can have the BCM50a Integrated Router use some password requi

Seite 171

252 Chapter 13 VPNN0115790

Seite 172

253BCM50a Integrated Router Configuration — BasicsChapter 14CertificatesThis chapter gives background information about public-key certificates and ex

Seite 173 - Address

254 Chapter 14 CertificatesN0115790The BCM50a Integrated Router uses certificates based on public-key cryptology to authenticate users attempting to e

Seite 174 - Configuring custom ports

Chapter 14 Certificates 255BCM50a Integrated Router Configuration — BasicsConfiguration summaryThis section summarizes how to manage certificates on t

Seite 175 - Example firewall rule

256 Chapter 14 CertificatesN0115790Figure 82 My Certificates

Seite 176

Chapter 14 Certificates 257BCM50a Integrated Router Configuration — BasicsTable 63 describes the labels in Figure 82.Table 63 My CertificatesLabel D

Seite 177

258 Chapter 14 CertificatesN0115790Certificate file formatsThe certification authority certificate that you want to import has to be in one of these f

Seite 178 - Predefined services

Chapter 14 Certificates 259BCM50a Integrated Router Configuration — Basics• Binary PKCS#7: This is a standard that defines the general syntax for data

Seite 179

26 TablesN0115790Table 100 Web site hits report . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .368Table 101 Protocol

Seite 180

260 Chapter 14 CertificatesN0115790Figure 83 My Certificate ImportTable 64 describes the labels in Figure 83.Table 64 My Certificate ImportLabel D

Seite 181

Chapter 14 Certificates 261BCM50a Integrated Router Configuration — BasicsCreating a certificateClick CERTIFICATES, My Certificates and then Create to

Seite 182 - Configuring attack alert

262 Chapter 14 CertificatesN0115790Figure 84 My Certificate create

Seite 183

Chapter 14 Certificates 263BCM50a Integrated Router Configuration — BasicsTable 65 describes the labels in the Figure 84.Table 65 My Certificate cre

Seite 184 - Table 41 Attack alert

264 Chapter 14 CertificatesN0115790Create a certification request and save it locally for later manual enrollment Select Create a certification reques

Seite 185

Chapter 14 Certificates 265BCM50a Integrated Router Configuration — BasicsAfter you click Apply in the My Certificate Create screen, you see a screen

Seite 186

266 Chapter 14 CertificatesN0115790Figure 85 My Certificate details

Seite 187 - Content filtering

Chapter 14 Certificates 267BCM50a Integrated Router Configuration — BasicsTable 66 describes the labels in Figure 85.Table 66 My Certificate details

Seite 188 - Configure Content Filtering

268 Chapter 14 CertificatesN0115790Issuer This field displays identifying information about the certification authority that issued the certificate, s

Seite 189 - Table 42 Content filter

Chapter 14 Certificates 269BCM50a Integrated Router Configuration — BasicsTrusted CAsClick CERTIFICATES, Trusted CAs to open the Trusted CAs screen, s

Seite 190

27BCM50a Integrated Router Configuration — BasicsPrefaceBefore you beginThis guide assists you through the basic configuration of your BCM50a Integrat

Seite 191

270 Chapter 14 CertificatesN0115790Figure 86 Trusted CAsTable 67 describes the labels in Figure 86.Table 67 Trusted CAsLabel DescriptionPKI Storag

Seite 192 - VPN screens overview

Chapter 14 Certificates 271BCM50a Integrated Router Configuration — BasicsIssuer This field displays identifying information about the certification a

Seite 193 - VPN applications

272 Chapter 14 CertificatesN0115790Importing a Trusted CA certificateClick CERTIFICATES, Trusted CAs to open the Trusted CAs screen and then click Imp

Seite 194 - IPSec architecture

Chapter 14 Certificates 273BCM50a Integrated Router Configuration — BasicsTrusted CA Certificate detailsClick CERTIFICATES, Trusted CAs to open the Tr

Seite 195 - IPSec algorithms

274 Chapter 14 CertificatesN0115790Figure 88 Trusted CA details

Seite 196 - 196 Chapter 13 VPN

Chapter 14 Certificates 275BCM50a Integrated Router Configuration — BasicsTable 69 describes the labels in Figure 88.Table 69 Trusted CA detailsLabe

Seite 197 - Key management

276 Chapter 14 CertificatesN0115790Signature AlgorithmThis field displays the type of algorithm that was used to sign the certificate. Some certificat

Seite 198 - Encapsulation

Chapter 14 Certificates 277BCM50a Integrated Router Configuration — BasicsTrusted remote hostsClick CERTIFICATES, Trusted Remote Hosts to open the Tru

Seite 199 - IPSec and NAT

278 Chapter 14 CertificatesN0115790Figure 89 Trusted remote hostsTable 70 describes the labels in Figure 89.Table 70 Trusted Remote HostsLabel Des

Seite 200 - Secure Gateway Address

Chapter 14 Certificates 279BCM50a Integrated Router Configuration — BasicsVerifying a certificate of a trusted remote hostCertificates issued by certi

Seite 201 - Summary screen

28 PrefaceN0115790Related publications• For more information about using the BCM50a Integrated Router, refer to the following publications:BCM50a Inte

Seite 202 - IP Policies

280 Chapter 14 CertificatesN01157902 Make sure that the certificate has a “.cer” or “.crt” file name extension.Figure 90 Remote host certificates3 D

Seite 203 - Table 46 Summary

Chapter 14 Certificates 281BCM50a Integrated Router Configuration — BasicsImporting a certificate of a trusted remote hostClick CERTIFICATES, Trusted

Seite 204 - Nailed up

282 Chapter 14 CertificatesN0115790Table 71 describes the labels in Figure 92.Trusted remote host certificate detailsClick CERTIFICATES, Trusted Remot

Seite 205 - NAT Traversal

Chapter 14 Certificates 283BCM50a Integrated Router Configuration — BasicsFigure 93 Trusted remote host details

Seite 206 - Preshared key

284 Chapter 14 CertificatesN0115790Table 72 describes the labels in Figure 93.Table 72 Trusted remote host detailsLabel DescriptionName This field d

Seite 207 - Chapter 13 VPN 207

Chapter 14 Certificates 285BCM50a Integrated Router Configuration — BasicsValid To This field displays the date that the certificate expires. The text

Seite 208 - Configuring Advanced Setup

286 Chapter 14 CertificatesN0115790Directory serversClick CERTIFICATES, Directory Servers to open the Directory Servers screen (Figure 94). This scree

Seite 209 - Chapter 13 VPN 209

Chapter 14 Certificates 287BCM50a Integrated Router Configuration — BasicsTable 73 describes the labels in Figure 94.Add or edit a directory serverCli

Seite 210 - ID Type and content

288 Chapter 14 CertificatesN0115790Figure 95 Directory server addTable 74 describes the labels in Figure 95.Table 74 Directory server addLabel Des

Seite 211 - ID type and content examples

Chapter 14 Certificates 289BCM50a Integrated Router Configuration — BasicsServer Port This field displays the default server port number of the protoc

Seite 212 - My IP Address

Preface 29BCM50a Integrated Router Configuration — BasicsGetting Help from the Nortel Web siteThe best way to get technical support for Nortel product

Seite 213 - Figure 70

290 Chapter 14 CertificatesN0115790

Seite 214 - 214 Chapter 13 VPN

291BCM50a Integrated Router Configuration — BasicsChapter 15Bandwidth managementThis chapter describes the functions and configuration of bandwidth ma

Seite 215 - Chapter 13 VPN 215

292 Chapter 15 Bandwidth managementN0115790Bandwidth classes and filtersUse bandwidth subclasses to allocate specific amounts of bandwidth capacity (b

Seite 216 - 216 Chapter 13 VPN

Chapter 15 Bandwidth management 293BCM50a Integrated Router Configuration — BasicsFigure 96 Subnet based bandwidth management exampleApplication and

Seite 217 - Chapter 13 VPN 217

294 Chapter 15 Bandwidth managementN0115790Configuring summaryClick BW MGMT to open the Summary screen. Enable bandwidth management on an interface an

Seite 218 - 218 Chapter 13 VPN

Chapter 15 Bandwidth management 295BCM50a Integrated Router Configuration — BasicsConfiguring class setupThe class setup screen displays the configure

Seite 219 - Chapter 13 VPN 219

296 Chapter 15 Bandwidth managementN0115790Figure 98 Bandwidth Manager: Class setupTable 77 describes the labels in Figure 98.Table 77 Bandwidth M

Seite 220 - 220 Chapter 13 VPN

Chapter 15 Bandwidth management 297BCM50a Integrated Router Configuration — BasicsBandwidth Manager Class ConfigurationConfigure a bandwidth managemen

Seite 221 - Chapter 13 VPN 221

298 Chapter 15 Bandwidth managementN0115790Figure 99 Bandwidth Manager: Edit classTable 78 describes the labels in Figure 99.Table 78 Bandwidth Ma

Seite 222 - Configuring an IP Policy

Chapter 15 Bandwidth management 299BCM50a Integrated Router Configuration — BasicsFilter ConfigurationEnable Bandwidth Filter Select Enable Bandwidth

Seite 223 - Chapter 13 VPN 223

3BCM50a Integrated Router Configuration — BasicsContentsPreface . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 224 - 224 Chapter 13 VPN

30 PrefaceN0115790Getting Help through a Nortel distributor or reseller If you purchased a service contract for your Nortel product from a distributor

Seite 225 - Chapter 13 VPN 225

300 Chapter 15 Bandwidth managementN0115790Bandwidth management statisticsUse the Bandwidth Management Statistics screen to view network performance f

Seite 226 - 226 Chapter 13 VPN

Chapter 15 Bandwidth management 301BCM50a Integrated Router Configuration — BasicsFigure 100 Bandwidth management statistics Table 80 describes the

Seite 227 - Chapter 13 VPN 227

302 Chapter 15 Bandwidth managementN0115790MonitorTo view bandwidth usage and allotments, click BW MGMT, then the Monitor tab. The screen appears as s

Seite 228 - Port forwarding server

303BCM50a Integrated Router Configuration — BasicsChapter 16Authentication serverThe BCM50a Integrated Router can use either the local user database i

Seite 229 - Chapter 13 VPN 229

304 Chapter 16 Authentication serverN0115790Figure 102 Local User databaseTable 82 describes the labels in Figure 102. Table 82 Local User databas

Seite 230 - IKE phases

Chapter 16 Authentication server 305BCM50a Integrated Router Configuration — BasicsEdit Local User DatabaseTo change a local user database entry, clic

Seite 231 - Chapter 13 VPN 231

306 Chapter 16 Authentication serverN0115790Figure 103 Local User database edit

Seite 232 - Negotiation Mode

Chapter 16 Authentication server 307BCM50a Integrated Router Configuration — BasicsTable 83 describes the labels in Figure 103. Table 83 Local User

Seite 233 - Perfect Forward Secrecy (PFS)

308 Chapter 16 Authentication serverN0115790Current split networksIn the Local User Database Edit screen, click Configure Network to display the Curre

Seite 234 - 234 Chapter 13 VPN

Chapter 16 Authentication server 309BCM50a Integrated Router Configuration — BasicsTable 84 describes the labels in Figure 104. Current split networks

Seite 235 - Chapter 13 VPN 235

31BCM50a Integrated Router Configuration — BasicsChapter 1Getting to know your BCM50a Integrated RouterThis chapter introduces the main features and a

Seite 236 - 236 Chapter 13 VPN

310 Chapter 16 Authentication serverN0115790Figure 105 Current split networks editTable 85 describes the labels in Figure 105. Table 85 Current sp

Seite 237 - SA Monitor

Chapter 16 Authentication server 311BCM50a Integrated Router Configuration — BasicsConfiguring RADIUSUse RADIUS if you want to authenticate users usin

Seite 238 - Table 57 VPN SA Monitor

312 Chapter 16 Authentication serverN0115790Figure 106 RADIUSTable 86 describes the labels in Figure 106.Table 86 RADIUSLabel DescriptionAuthentic

Seite 239 - Global settings

Chapter 16 Authentication server 313BCM50a Integrated Router Configuration — BasicsPort Number The default port of the RADIUS server for authenticatio

Seite 240 - VPN Client Termination

314 Chapter 16 Authentication serverN0115790

Seite 241 - Chapter 13 VPN 241

315BCM50a Integrated Router Configuration — BasicsChapter 17Remote management screensThis chapter provides information on the Remote Management screen

Seite 242 - 242 Chapter 13 VPN

316 Chapter 17 Remote management screensN01157901 A filter in SMT menu 3.1 (LAN) or in menu 11.1.4 (WAN) is applied to block a Telnet, FTP, or Web ser

Seite 243 - Chapter 13 VPN 243

Chapter 17 Remote management screens 317BCM50a Integrated Router Configuration — BasicsIntroduction to HTTPSHTTPS (HyperText Transfer Protocol over Se

Seite 244 - 244 Chapter 13 VPN

318 Chapter 17 Remote management screensN0115790Figure 107 HTTPS implementationConfiguring WWWTo change your BCM50a Integrated Router Web settings,

Seite 245 - Chapter 13 VPN 245

Chapter 17 Remote management screens 319BCM50a Integrated Router Configuration — BasicsFigure 108 WWWTable 87 describes the labels in Figure 108.Tab

Seite 246 - 246 Chapter 13 VPN

32 Chapter 1 Getting to know your BCM50a Integrated RouterN0115790Physical featuresHigh-speed Internet accessYour BCM50a Integrated Router supports AD

Seite 247 - Chapter 13 VPN 247

320 Chapter 17 Remote management screensN0115790HTTPS exampleTo change the default HTTPS port on the BCM50a Integrated Router, in your browser, enter

Seite 248 - 248 Chapter 13 VPN

Chapter 17 Remote management screens 321BCM50a Integrated Router Configuration — BasicsInternet Explorer warning messagesWhen you attempt to access th

Seite 249 - Chapter 13 VPN 249

322 Chapter 17 Remote management screensN0115790Select Accept this certificate permanently to import the BCM50a Integrated Router certificate into the

Seite 250 - 250 Chapter 13 VPN

Chapter 17 Remote management screens 323BCM50a Integrated Router Configuration — BasicsFigure 111 Security Certificate 2 (Netscape)Avoiding the brow

Seite 251 - Chapter 13 VPN 251

324 Chapter 17 Remote management screensN0115790a Click REMOTE MGMT. Write down the name of the certificate displayed in the Server Certificate field.

Seite 252 - 252 Chapter 13 VPN

Chapter 17 Remote management screens 325BCM50a Integrated Router Configuration — BasicsFigure 112 Logon screen (Internet Explorer)

Seite 253 - Certificates

326 Chapter 17 Remote management screensN0115790Figure 113 Login screen (Netscape)Click Login to proceed. The screen shown in Figure 114 appears.The

Seite 254 - Self-signed certificates

Chapter 17 Remote management screens 327BCM50a Integrated Router Configuration — BasicsFigure 114 Replace certificateClick Apply in the Replace Cert

Seite 255 - My Certificates

328 Chapter 17 Remote management screensN0115790Figure 115 Device-specific certificateClick Ignore in the Replace Certificate screen to use the comm

Seite 256 - Figure 82 My Certificates

Chapter 17 Remote management screens 329BCM50a Integrated Router Configuration — BasicsFigure 116 Common BCM50a Integrated Router certificateSSH ove

Seite 257 - Table 63 My Certificates

Chapter 1 Getting to know your BCM50a Integrated Router 33BCM50a Integrated Router Configuration — Basics• Extended-reach ADSL (ER ADSL)• SRA (Seamles

Seite 258 - Certificate file formats

330 Chapter 17 Remote management screensN0115790Figure 117 SSH Communication ExampleHow SSH worksFigure 118 summarizes how a secure connection is es

Seite 259 - Importing a certificate

Chapter 17 Remote management screens 331BCM50a Integrated Router Configuration — BasicsThe client automatically saves any new server public keys. In s

Seite 260 - 260 Chapter 14 Certificates

332 Chapter 17 Remote management screensN0115790Figure 119 SSHTable 88 describes the labels in Figure 119.Table 88 SSHLabel DescriptionServer Host

Seite 261 - Creating a certificate

Chapter 17 Remote management screens 333BCM50a Integrated Router Configuration — BasicsSecure Telnet using SSH examplesThis section shows two examples

Seite 262 - 262 Chapter 14 Certificates

334 Chapter 17 Remote management screensN0115790Example 2: LinuxThis section describes how to access the BCM50a Integrated Router using the OpenSSH cl

Seite 263 - Chapter 14 Certificates 263

Chapter 17 Remote management screens 335BCM50a Integrated Router Configuration — BasicsFigure 122 SSH Example 2: Log on3 The SMT main menu displays.

Seite 264 - 264 Chapter 14 Certificates

336 Chapter 17 Remote management screensN0115790Figure 123 Secure FTP: Firmware Upload ExampleTelnetYou can configure your BCM50a Integrated Router

Seite 265 - My Certificate details

Chapter 17 Remote management screens 337BCM50a Integrated Router Configuration — BasicsConfiguring TELNETClick REMOTE MANAGEMENT to open the TELNET sc

Seite 266 - 266 Chapter 14 Certificates

338 Chapter 17 Remote management screensN0115790Configuring FTPYou can upload and download the BCM50a Integrated Router firmware and configuration fil

Seite 267 - Chapter 14 Certificates 267

Chapter 17 Remote management screens 339BCM50a Integrated Router Configuration — BasicsConfiguring SNMPSimple Network Management Protocol is a protoco

Seite 268 - 268 Chapter 14 Certificates

34 Chapter 1 Getting to know your BCM50a Integrated RouterN0115790Autonegotiating 10/100 Mb/s Ethernet LANThe LAN interfaces automatically detect if t

Seite 269 - Trusted CAs

340 Chapter 17 Remote management screensN0115790Figure 127 SNMP Management ModelAn SNMP-managed network consists of two main types of component: age

Seite 270 - Table 67 Trusted CAs

Chapter 17 Remote management screens 341BCM50a Integrated Router Configuration — Basics• Get-Allows the manager to retrieve an object variable from th

Seite 271 - Chapter 14 Certificates 271

342 Chapter 17 Remote management screensN0115790REMOTE MANAGEMENT: SNMPTo change your BCM50a Integrated Router SNMP settings, click REMOTE MANAGEMENT,

Seite 272 - Table 68 Trusted CA import

Chapter 17 Remote management screens 343BCM50a Integrated Router Configuration — BasicsConfiguring DNSUse DNS (Domain Name System) to map a domain nam

Seite 273 - Chapter 14 Certificates 273

344 Chapter 17 Remote management screensN0115790Figure 129 DNSTable 93 describes the fields in Figure 129.Configuring SecurityTo change your BCM50a

Seite 274 - 274 Chapter 14 Certificates

Chapter 17 Remote management screens 345BCM50a Integrated Router Configuration — BasicsIf an outside user attempts to probe an unsupported port on you

Seite 275 - Table 69 Trusted CA details

346 Chapter 17 Remote management screensN0115790Do not respond to requests for unauthorized servicesSelect this option to prevent hackers from finding

Seite 276 - 276 Chapter 14 Certificates

347BCM50a Integrated Router Configuration — BasicsChapter 18UPnPThis chapter introduces the Universal Plug and Play feature. Universal Plug and Play o

Seite 277 - Trusted remote hosts

348 Chapter 18 UPnPN0115790Windows Messenger is an example of an application that supports NAT traversal and UPnP. Cautions with UPnPThe automated nat

Seite 278 - 278 Chapter 14 Certificates

Chapter 18 UPnP 349BCM50a Integrated Router Configuration — BasicsFigure 131 Configuring UPnPTable 95 describes the fields in Figure 131.Table 95

Seite 279 - Chapter 14 Certificates 279

Chapter 1 Getting to know your BCM50a Integrated Router 35BCM50a Integrated Router Configuration — BasicsCertificatesThe BCM50a Integrated Router can

Seite 280 - 280 Chapter 14 Certificates

350 Chapter 18 UPnPN0115790Displaying UPnP port mappingClick UPnP and then Ports to display the screen as shown in Figure 132. Use this screen to view

Seite 281 - Chapter 14 Certificates 281

Chapter 18 UPnP 351BCM50a Integrated Router Configuration — BasicsInstalling UPnP in Windows exampleThis section shows how to install UPnP in Windows

Seite 282 - 282 Chapter 14 Certificates

352 Chapter 18 UPnPN0115790Installing UPnP in Windows MeFollow the steps below to install UPnP in Windows Me. 1 Click Start and Control Panel. Double-

Seite 283 - Chapter 14 Certificates 283

Chapter 18 UPnP 353BCM50a Integrated Router Configuration — BasicsFigure 134 CommunicationsInstalling UPnP in Windows XPFollow the steps below to in

Seite 284 - 284 Chapter 14 Certificates

354 Chapter 18 UPnPN0115790Figure 136 Windows optional networking components wizard5 In the Networking Services window, select the Universal Plug an

Seite 285 - Chapter 14 Certificates 285

Chapter 18 UPnP 355BCM50a Integrated Router Configuration — BasicsMake sure the computer is connected to a LAN port of the device. Turn on your comput

Seite 286 - Directory servers

356 Chapter 18 UPnPN01157904 You can edit or delete the port mappings or click Add to manually add port mappings.Figure 140 Internet connection prop

Seite 287 - Integrated Router can access

Chapter 18 UPnP 357BCM50a Integrated Router Configuration — Basics5 Select the Show icon in notification area when connected check box and click OK. A

Seite 288 - 288 Chapter 14 Certificates

358 Chapter 18 UPnPN01157903 Select My Network Places under Other PlacesFigure 144 Network connections 4 An icon with the description for each UPnP-

Seite 289 - Chapter 14 Certificates 289

359BCM50a Integrated Router Configuration — BasicsChapter 19Logs ScreensThis chapter contains information about configuring general log settings and v

Seite 290 - 290 Chapter 14 Certificates

36 Chapter 1 Getting to know your BCM50a Integrated RouterN0115790Content filteringThe BCM50a Integrated Router can block web features such as ActiveX

Seite 291 - Bandwidth management

360 Chapter 19 Logs ScreensN0115790Figure 146 View LogTable 97 describes the fields in Figure 146.Table 97 View LogLabel DescriptionDisplay The c

Seite 292 - Bandwidth classes and filters

Chapter 19 Logs Screens 361BCM50a Integrated Router Configuration — BasicsConfiguring Log settingsTo change your BCM50a Integrated Router log settings

Seite 293 - SIP 64 Kb/s 64 Kb/s

362 Chapter 19 Logs ScreensN0115790Figure 147 Log settings

Seite 294 - Configuring summary

Chapter 19 Logs Screens 363BCM50a Integrated Router Configuration — BasicsTable 98 describes the fields in Figure 147.Table 98 Log settingsLabel Des

Seite 295 - Configuring class setup

364 Chapter 19 Logs ScreensN0115790Configuring ReportsTo change your BCM50a Integrated Router log reports, click Logs, and then the Reports tab. The s

Seite 296

Chapter 19 Logs Screens 365BCM50a Integrated Router Configuration — Basics• The LAN IP addresses to and from which the most traffic has been sent• How

Seite 297

366 Chapter 19 Logs ScreensN0115790Figure 148 ReportsTable 99 describes the fields in Figure 148.Note: Enabling the reporting function decreases the

Seite 298

Chapter 19 Logs Screens 367BCM50a Integrated Router Configuration — BasicsViewing Web site hitsIn the Reports screen, select Web Site Hits from the Re

Seite 299

368 Chapter 19 Logs ScreensN0115790Figure 149 Web site hits report exampleTable 100 describes the fields in Figure 149.Table 100 Web site hits rep

Seite 300

Chapter 19 Logs Screens 369BCM50a Integrated Router Configuration — BasicsViewing Protocol/PortIn the Reports screen, select Protocol/Port from the Re

Seite 301

Chapter 1 Getting to know your BCM50a Integrated Router 37BCM50a Integrated Router Configuration — BasicsIP MulticastThe BCM50a Integrated Router can

Seite 302

370 Chapter 19 Logs ScreensN0115790Table 101 describes the fields in Figure 150.Viewing LAN IP addressIn the Reports screen, select LAN IP Address fro

Seite 303 - Authentication server

Chapter 19 Logs Screens 371BCM50a Integrated Router Configuration — BasicsFigure 151 LAN IP address report exampleTable 102 describes the fields in

Seite 304

372 Chapter 19 Logs ScreensN0115790Reports specificationsTable 103 lists detailed specifications on the reports feature.Table 103 Report Specificati

Seite 305 - Edit Local User Database

373BCM50a Integrated Router Configuration — BasicsChapter 20Call scheduling screensWith call scheduling (applicable for PPPoA or PPPoE encapsulation o

Seite 306

374 Chapter 20 Call scheduling screensN0115790Figure 152 Call schedule summaryTable 104 describes the fields in Figure 152.Table 104 Call Schedule

Seite 307

Chapter 20 Call scheduling screens 375BCM50a Integrated Router Configuration — BasicsCall scheduling editTo configure a schedule set, click the Edit b

Seite 308 - Current split networks

376 Chapter 20 Call scheduling screensN0115790If a connection has been already established, your BCM50a Integrated Router will not drop it. After the

Seite 309 - Current split networks edit

Chapter 20 Call scheduling screens 377BCM50a Integrated Router Configuration — BasicsApplying Schedule Sets to a remote nodeOnce your schedule sets ar

Seite 310

378 Chapter 20 Call scheduling screensN0115790

Seite 311 - Configuring RADIUS

379BCM50a Integrated Router Configuration — BasicsChapter 21MaintenanceThis chapter displays system information such as firmware, port IP addresses, a

Seite 312 - Table 86 RADIUS

38 Chapter 1 Getting to know your BCM50a Integrated RouterN0115790Traffic RedirectTraffic Redirect forwards WAN traffic to a backup gateway when the B

Seite 313

380 Chapter 21 MaintenanceN0115790Figure 154 System Status Table 106 describes the fields in Figure 154.Table 106 System StatusLabel DescriptionS

Seite 314

Chapter 21 Maintenance 381BCM50a Integrated Router Configuration — BasicsSystem statisticsRead-only information here includes port status and packet s

Seite 315 - Remote management screens

382 Chapter 21 MaintenanceN0115790Figure 155 System Status: Show statisticsTable 107 describes the fields in Figure 155.Table 107 System Status: S

Seite 316 - System timeout

Chapter 21 Maintenance 383BCM50a Integrated Router Configuration — BasicsDHCP Table screen With DHCP (Dynamic Host Configuration Protocol, RFC 2131 an

Seite 317 - Introduction to HTTPS

384 Chapter 21 MaintenanceN0115790Figure 156 DHCP TableTable 108 describes the fields in Figure 156.Diagnostic ScreenFrom the Site Map screen, click

Seite 318 - Configuring WWW

Chapter 21 Maintenance 385BCM50a Integrated Router Configuration — BasicsFigure 157 DiagnosticTable 109 describes the fields in Figure 157.Table 109

Seite 319 - Table 87 WWW

386 Chapter 21 MaintenanceN0115790F/W Upload screenFind firmware at www.nortel.com/index.html in a file that usually uses the system model name with a

Seite 320 - HTTPS example

Chapter 21 Maintenance 387BCM50a Integrated Router Configuration — BasicsFigure 158 Firmware uploadTable 110 describes the fields in Figure 158.Afte

Seite 321

388 Chapter 21 MaintenanceN0115790Figure 159 Firmware Upload In ProcessThe device automatically restarts in this time, causing a temporary network d

Seite 322

Chapter 21 Maintenance 389BCM50a Integrated Router Configuration — BasicsConfiguration screenClick MAINTENANCE, and then the Configuration tab. Inform

Seite 323

Chapter 1 Getting to know your BCM50a Integrated Router 39BCM50a Integrated Router Configuration — BasicsUpgrade BCM50a Integrated Router FirmwareThe

Seite 324 - Logon screen

390 Chapter 21 MaintenanceN0115790Figure 163 Reset warning messageThe BCM50a Integrated Router LAN IP address changes back to 192.168.1.1 and the pa

Seite 325

Chapter 21 Maintenance 391BCM50a Integrated Router Configuration — BasicsNote: Do not turn off the device while configuration file upload is in progre

Seite 326 - Integrated Router models

392 Chapter 21 MaintenanceN0115790If the upload was not successful, click Return to return to the Configuration screen. Restart screenWith system rest

Seite 327

393BCM50a Integrated Router Configuration — BasicsAppendix ATroubleshootingThis chapter covers potential problems and the corresponding remedies.Probl

Seite 328

394 Appendix A TroubleshootingN0115790Problems with the LAN LEDProblems with the LAN interfaceTable 113 Troubleshooting the LAN LEDProblem Correctiv

Seite 329 - SSH overview

Appendix A Troubleshooting 395BCM50a Integrated Router Configuration — BasicsProblems with the WAN interfaceProblems with Internet accessTable 115 T

Seite 330 - How SSH works

396 Appendix A TroubleshootingN0115790Problems accessing an Internet Web site Problems with the passwordProblems with the WebGUIProblems with Remote M

Seite 331 - Configuring SSH

Appendix A Troubleshooting 397BCM50a Integrated Router Configuration — BasicsAllowing Pop-up Windows, JavaScript and Java Permissions In order to use

Seite 332 - Table 88 SSH

398 Appendix A TroubleshootingN0115790Figure 167 Pop-up BlockerYou can also check if pop-up blocking is disabled in the Pop-up Blocker section in th

Seite 333 - Example 1: Microsoft Windows

Appendix A Troubleshooting 399BCM50a Integrated Router Configuration — BasicsFigure 168 Internet Options3 Click Apply to save this setting.Enabling

Seite 334 - Example 2: Linux

4 ContentsN0115790Nortel Contivity Client Termination . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .34Certificates . . . . . . .

Seite 335 - Secure FTP using SSH example

40 Chapter 1 Getting to know your BCM50a Integrated RouterN0115790Figure 1 Secure Internet Access and VPN ApplicationCaution: Electro-static Dischar

Seite 336

400 Appendix A TroubleshootingN01157902 Select Settings… to open the Pop-up Blocker Settings screen.Figure 169 Internet options3 Type the IP address

Seite 337 - Configuring TELNET

Appendix A Troubleshooting 401BCM50a Integrated Router Configuration — Basics4 Click Add to move the IP address to the list of Allowed sites.Figure 17

Seite 338 - Configuring FTP

402 Appendix A TroubleshootingN01157901 In Internet Explorer, click Tools, Internet Options, and then the Security tab. Figure 171 Internet options

Seite 339 - Configuring SNMP

Appendix A Troubleshooting 403BCM50a Integrated Router Configuration — Basics6 Click OK to close the window.Figure 172 Security Settings - Java Scri

Seite 340

404 Appendix A TroubleshootingN01157905 Click OK to close the window.Figure 173 Security Settings - Java JAVA (Sun)1 From Internet Explorer, click T

Seite 341 - SNMP Traps

Appendix A Troubleshooting 405BCM50a Integrated Router Configuration — Basics4 Close your existing browser session and open a new browser.Figure 174

Seite 342 - REMOTE MANAGEMENT: SNMP

406 Appendix A TroubleshootingN0115790Allowing Pop-ups1 In Netscape, click Tools, Popup Manager and then select Allow Popups From This Site. Figure 17

Seite 343 - Configuring DNS

Appendix A Troubleshooting 407BCM50a Integrated Router Configuration — Basics3 Clear the Block unrequested popup windows check box. Figure 177 Pop

Seite 344 - Configuring Security

408 Appendix A TroubleshootingN01157904 Click the Allowed Sites... button. Figure 178 Popup Windows5 Type the IP address of your device (the Web pag

Seite 345 - Table 94 Security

Appendix A Troubleshooting 409BCM50a Integrated Router Configuration — Basics6 Click Add to move the IP address to the Site list.Figure 179 Allowed

Seite 346

41BCM50a Integrated Router Configuration — BasicsChapter 2Introducing the WebGUIThis chapter describes how to access the BCM50a Integrated Router WebG

Seite 347

410 Appendix A TroubleshootingN01157904 Click OK to close the window.Figure 180 Advanced 5 Click the Advanced directory and then select Scripts &

Seite 348 - Configuring UPnP

Appendix A Troubleshooting 411BCM50a Integrated Router Configuration — Basics7 Click OK to close the window.Figure 181 Scripts & Plug-ins

Seite 349 - Table 95 Configuring UPnP

412 Appendix A TroubleshootingN0115790

Seite 350 - Displaying UPnP port mapping

413BCM50a Integrated Router Configuration — BasicsAppendix BLog DescriptionsThis appendix provides descriptions of example log messages.Table 120 Sy

Seite 351 - Table 96 UPnP Ports

414 Appendix B Log DescriptionsN0115790TELNET Login Fail Someone has failed to log on to the router through Telnet.FTP Login Successfully Someone has

Seite 352 - Installing UPnP in Windows Me

Appendix B Log Descriptions 415BCM50a Integrated Router Configuration — Basicsattack ESP The firewall detected an ESP attack.attack GRE The firewall d

Seite 353 - Installing UPnP in Windows XP

416 Appendix B Log DescriptionsN0115790For type and code details, see Table 127.teardrop ICMP (type:%d, code:%d)The firewall detected an ICMP teardrop

Seite 354 - 354 Chapter 18 UPnP

Appendix B Log Descriptions 417BCM50a Integrated Router Configuration — BasicsFirewall default policy: ICMP (set:%d, type:%d, code:%d)ICMP access matc

Seite 355 - Chapter 18 UPnP 355

418 Appendix B Log DescriptionsN0115790Firewall rule match: (set:%d, rule:%d)Access matched the listed firewall rule and the BCM50a Integrated Router

Seite 356 - Figure 141 Service settings

Appendix B Log Descriptions 419BCM50a Integrated Router Configuration — BasicsFilter default policy DROP!Access matched a default filter policy (denie

Seite 357 - WebGUI easy access

42 Chapter 2 Introducing the WebGUIN01157901 Launch your web browser.2 Type 192.168.1.1 as the URL.3 Type the username (“nnadmin” is the default) and

Seite 358 - Local Network

420 Appendix B Log DescriptionsN0115790(set:%d) With firewall messages, this is the number of the ACL policy set and denotes the packet's directi

Seite 359 - Logs Screens

Appendix B Log Descriptions 421BCM50a Integrated Router Configuration — BasicsFor type and code details, see Table 127.Table 126 ACL Setting NotesAC

Seite 360 - Table 97 View Log

422 Appendix B Log DescriptionsN0115790VPN/IPSec LogsTo view the IPSec and IKE connection log, type 3 in menu 27 and press [ENTER] to display the IPSe

Seite 361 - Configuring Log settings

Appendix B Log Descriptions 423BCM50a Integrated Router Configuration — BasicsFigure 182 Example VPN Initiator IPSec LogVPN Responder IPSec LogFigur

Seite 362 - Figure 147 Log settings

424 Appendix B Log DescriptionsN0115790Figure 183 Example VPN Responder IPSec LogThis menu is useful for troubleshooting your BCM50a Integrated Rout

Seite 363 - Table 98 Log settings

Appendix B Log Descriptions 425BCM50a Integrated Router Configuration — BasicsTable 129 Sample IKE Key Exchange LogsLog Message DescriptionSend <

Seite 364 - Configuring Reports

426 Appendix B Log DescriptionsN0115790!! Remote IP <IP start> / <IP end> conflictsIf the security gateway is “0.0.0.0”, the BCM50a Integ

Seite 365 - Chapter 19 Logs Screens 365

Appendix B Log Descriptions 427BCM50a Integrated Router Configuration — BasicsTable 130 shows sample log messages during packet transmission. ->

Seite 366 - Table 99 Reports

428 Appendix B Log DescriptionsN0115790Table 131 shows RFC 2408 ISAKMP payload types that the log displays. Refer to RFC 2408 for detailed information

Seite 367 - Viewing Web site hits

Appendix B Log Descriptions 429BCM50a Integrated Router Configuration — BasicsFailed to resolve <CMP CA server url>The CMP online certificate en

Seite 368 - 368 Chapter 19 Logs Screens

Chapter 2 Introducing the WebGUI 43BCM50a Integrated Router Configuration — BasicsFigure 3 Change password screen5 Click Apply in the Replace Certif

Seite 369 - Viewing Protocol/Port

430 Appendix B Log DescriptionsN0115790Table 133 Certificate Path Verification Failure Reason CodesCode Description1 Algorithm mismatch between the

Seite 370 - Viewing LAN IP address

Appendix B Log Descriptions 431BCM50a Integrated Router Configuration — BasicsLog CommandsGo to the command interpreter interface (the Command Interpr

Seite 371 - Chapter 19 Logs Screens 371

432 Appendix B Log DescriptionsN0115790Displaying LogsUse the sys logs display command to show all of the logs in the BCM50a Integrated Router log.Use

Seite 372 - Reports specifications

Appendix B Log Descriptions 433BCM50a Integrated Router Configuration — BasicsLog Command ExampleThis example shows how to set the BCM50a Integrated R

Seite 373 - Call scheduling introduction

434 Appendix B Log DescriptionsN0115790

Seite 374

BCM50a Integrated Router Configuration — Basics435IndexNumbers3DES 1974-Port Switch 33AAction 169Action for Matched Packets 172ActiveX 189Administrato

Seite 375 - Call scheduling edit

436 IndexN0115790Maximum Number of Schedule Sets 373, 377Precedence 373Precedence Example 373Called ID 119Calling Line Identification 119Central Netwo

Seite 376

Index 437BCM50a Integrated Router Configuration — BasicsEnable Wildcard 81Encapsulating Security Payload 196Encapsulation 47, 50ENET ENCAP 47PPP over

Seite 377

438 IndexN0115790Illegal Commands 152Initial Contact Payload 250Inside 122Inside Global Address 122Inside Local Address 122Internet access 32Internet

Seite 378

Index 439BCM50a Integrated Router Configuration — BasicsMultiprotocol Encapsulation 48My Password 307, 313NNailed-Up Connection 53NAT 53, 107, 115, 12

Seite 379 - Maintenance

44 Chapter 2 Introducing the WebGUIN0115790The MAIN MENU screen appears.Restoring the factory-default configuration settingsIf you forget your passwor

Seite 380 - Table 106 System Status

440 IndexN0115790Rreboot 386regulatory information 2reinitialize the ADSL line 386Remote Management and NAT 316Remote Management Limitations 315Report

Seite 381 - System statistics

Index 441BCM50a Integrated Router Configuration — BasicsStatic Route 139, 140SUA 127, 128, 130SUA (Single User Account) 126SUA Only 107SUA Server 129S

Seite 383 - DHCP Table screen

Chapter 2 Introducing the WebGUI 45BCM50a Integrated Router Configuration — BasicsFigure 5 MAIN MENU ScreenClick the Contact link to display the cus

Seite 384 - Diagnostic Screen

46 Chapter 2 Introducing the WebGUIN0115790Figure 6 Contact Support

Seite 385 - Table 109 Diagnostic

47BCM50a Integrated Router Configuration — BasicsChapter 3Wizard setupThis chapter provides information on the Wizard screens in the WebGUI.Wizard ove

Seite 386 - F/W Upload screen

48 Chapter 3 Wizard setupN0115790PPP over EthernetPPP over Ethernet (PPPoE) provides access control and billing functionality in a manner similar to d

Seite 387 - Table 110 Firmware Upload

Chapter 3 Wizard setup 49BCM50a Integrated Router Configuration — BasicsVC-based multiplexingIn this case, by prior mutual agreement, each protocol is

Seite 388 - 388 Chapter 21 Maintenance

Contents 5BCM50a Integrated Router Configuration — BasicsChapter 3Wizard setup. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 389 - Configuration screen

50 Chapter 3 Wizard setupN0115790Figure 7 Wizard Screen 1Table 2 describes the fields in Figure 7.Table 2 Wizard Screen 1Label DescriptionMode Fro

Seite 390 - Restore configuration

Chapter 3 Wizard setup 51BCM50a Integrated Router Configuration — BasicsIP address and subnet maskSimilar to the way houses on a street share a common

Seite 391 - Chapter 21 Maintenance 391

52 Chapter 3 Wizard setupN0115790IP assignment with PPPoA or PPPoE encapsulationIf you have a dynamic IP, the IP Address and ENET ENCAP Gateway fields

Seite 392 - Restart screen

Chapter 3 Wizard setup 53BCM50a Integrated Router Configuration — BasicsYou can obtain your IP address from the IANA, from an ISP, or it can be assign

Seite 393 - Troubleshooting

54 Chapter 3 Wizard setupN0115790Figure 8 Internet connection with PPPoATable 3 describes the fields in Figure 8.Table 3 Internet connection with

Seite 394 - Problems with the LAN LED

Chapter 3 Wizard setup 55BCM50a Integrated Router Configuration — BasicsFigure 9 Internet connection with RFC 1483Table 4 describes the fields in Fi

Seite 395 - Problems with Internet access

56 Chapter 3 Wizard setupN0115790Figure 10 Internet connection with ENET ENCAPTable 5 describes the fields in Figure 10.Network Address Translation

Seite 396 - Problems with the WebGUI

Chapter 3 Wizard setup 57BCM50a Integrated Router Configuration — BasicsFigure 11 Internet connection with PPPoEENET ENCAP GatewayYou must specify a

Seite 397 - Permissions

58 Chapter 3 Wizard setupN0115790Table 6 describes the fields in Figure 11.Table 6 Internet connection with PPPoELabel DescriptionService Name Type

Seite 398 - Figure 167 Pop-up Blocker

Chapter 3 Wizard setup 59BCM50a Integrated Router Configuration — BasicsDHCP setupUsing Dynamic Host Configuration Protocol (DHCP), individual clients

Seite 399

6 ContentsN0115790Security . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .68Routing . . .

Seite 400 - Figure 169 Internet options

60 Chapter 3 Wizard setupN0115790Figure 12 Wizard Screen 32 To change your BCM50a Integrated Router LAN settings, click Change LAN Configuration to

Seite 401 - Internet Explorer JavaScript

Chapter 3 Wizard setup 61BCM50a Integrated Router Configuration — BasicsFigure 13 Wizard: LAN configurationTable 7 describes the fields in Figure 13

Seite 402

62 Chapter 3 Wizard setupN0115790DHCP With DHCP (Dynamic Host Configuration Protocol, RFC 2131 and RFC 2132) individual clients (workstations) can ob

Seite 403

Chapter 3 Wizard setup 63BCM50a Integrated Router Configuration — BasicsWizard setup configuration: connection testsThe BCM50a Integrated Router autom

Seite 404 - JAVA (Sun)

64 Chapter 3 Wizard setupN0115790

Seite 405 - Netscape Pop-up Blockers

65BCM50a Integrated Router Configuration — BasicsChapter 4User NotesGeneral NotesThere are some router functions that, although performing as expected

Seite 406 - Allowing Pop-ups

66 Chapter 4 User NotesN0115790If the Administrator Timeout is set to 0, and an administration session is terminated without logging off, the router n

Seite 407 - Figure 177 Popup Windows

Chapter 4 User Notes 67BCM50a Integrated Router Configuration — BasicsIf a VPN Client user account is de-activated, deleted, or changed, and that user

Seite 408 - Figure 178 Popup Windows

68 Chapter 4 User NotesN0115790Security1 Exporting or Saving Self-Signed CertificateTo export or save a self-signed certificate, click details (the ic

Seite 409 - Figure 179 Allowed Sites

Chapter 4 User Notes 69BCM50a Integrated Router Configuration — BasicsSetting up the router when the system has a server1 If you are using a Full-Feat

Seite 410 - Figure 180 Advanced

Contents 7BCM50a Integrated Router Configuration — BasicsFactory LAN defaults . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 411

70 Chapter 4 User NotesN0115790Adding IP telephony to a multi-site networkScenario 1: A BCM50 in the primary site acting as the gateway for both sites

Seite 412

Chapter 4 User Notes 71BCM50a Integrated Router Configuration — BasicsConfiguring the router to act as a Nortel VPN Server (Client Termination)1 Under

Seite 413 - Log Descriptions

72 Chapter 4 User NotesN01157902 Create the appropriate Firewall rules to add BCM50 access.Go to FIREWALL / Summary, and create two WAN-to-LAN firewal

Seite 414

Chapter 4 User Notes 73BCM50a Integrated Router Configuration — Basics2 On BANDWIDTH MANAGEMENT / Class Setup, add a WAN subclass, and reserve suffici

Seite 415 - Table 124 Attack Logs

74 Chapter 4 User NotesN0115790

Seite 416 - Table 125 Access Logs

75BCM50a Integrated Router Configuration — BasicsChapter 5System screensThis chapter provides information on the System screens.System overviewThis se

Seite 417

76 Chapter 5 System screensN0115790Figure 15 depicts an example where three VPN tunnels are created from BCM50a Integrated Router A; one to branch off

Seite 418

Chapter 5 System screens 77BCM50a Integrated Router Configuration — BasicsFigure 16 System general setupTable 8 describes the fields in Figure 16.Ta

Seite 419

78 Chapter 5 System screensN0115790System DNS Servers (if applicable)DNS (Domain Name System) is for mapping a domain name to its corresponding IP add

Seite 420

Chapter 5 System screens 79BCM50a Integrated Router Configuration — BasicsDynamic DNSWith Dynamic DNS, you can update your current dynamic IP address

Seite 421 - Table 127 ICMP Notes

8 ContentsN0115790SUA Server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .127Defaul

Seite 422 - VPN/IPSec Logs

80 Chapter 5 System screensN0115790Figure 17 DDNSTable 9 describes the fields in Figure 17.Table 9 DDNSLabel DescriptionActive Select this check b

Seite 423 - VPN Responder IPSec Log

Chapter 5 System screens 81BCM50a Integrated Router Configuration — BasicsConfiguring PasswordTo change the password of your BCM50a Integrated Router

Seite 424

82 Chapter 5 System screensN0115790Figure 18 PasswordTable 10 describes the fields in Figure 18.Table 10 PasswordLabel DescriptionAdministrator Se

Seite 425

Chapter 5 System screens 83BCM50a Integrated Router Configuration — BasicsPredefined NTP time server listThe BCM50a Integrated Router uses the predefi

Seite 426

84 Chapter 5 System screensN0115790When the BCM50a Integrated Router uses the predefined list of NTP time servers, it randomly selects one server and

Seite 427

Chapter 5 System screens 85BCM50a Integrated Router Configuration — BasicsFigure 19 Time and Date

Seite 428 - Table 132 PKI Logs

86 Chapter 5 System screensN0115790Table 12 describes the fields in Figure 19.Table 12 Time and DateLabel DescriptionCurrent Time and DateCurrent Ti

Seite 429

Chapter 5 System screens 87BCM50a Integrated Router Configuration — BasicsTime Zone SetupTime Zone Choose the time zone of your location. This will se

Seite 430

88 Chapter 5 System screensN0115790ALG With Application Layer Gateway (ALG), an application can pass through NAT and the firewall. You must also conf

Seite 431 - Log Commands

89BCM50a Integrated Router Configuration — BasicsChapter 6LAN screens This chapter describes how to configure LAN settings.LAN overviewLocal Area Netw

Seite 432 - Displaying Logs

Contents 9BCM50a Integrated Router Configuration — BasicsPacket filtering vs. firewall . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Seite 433 - Log Command Example

90 Chapter 6 LAN screensN0115790DNS serversUse the LAN IP screen to configure the DNS server information that the BCM50a Integrated Router sends to th

Seite 434

Chapter 6 LAN screens 91BCM50a Integrated Router Configuration — BasicsBoth RIP-2B and RIP-2M send routing data in RIP-2 format; the difference being

Seite 435

92 Chapter 6 LAN screensN0115790Configuring IP Click LAN to open the IP screen.Figure 21 LAN IP

Seite 436

Chapter 6 LAN screens 93BCM50a Integrated Router Configuration — BasicsTable 14 describes the fields in Figure 21.Table 14 LAN IPLabel DescriptionDH

Seite 437

94 Chapter 6 LAN screensN0115790First DNS Server Second DNS Server Third DNS Server Select From ISP if your ISP dynamically assigns DNS server informa

Seite 438

Chapter 6 LAN screens 95BCM50a Integrated Router Configuration — BasicsConfiguring Static DHCPWith Static DHCP, you can assign IP addresses on the LAN

Seite 439

96 Chapter 6 LAN screensN0115790To change the static DHCP settings, click LAN, then the Static DHCP tab. The screen appears as shown in Figure 22.Figu

Seite 440

Chapter 6 LAN screens 97BCM50a Integrated Router Configuration — BasicsConfiguring IP AliasWith IP Alias, you can partition a physical network into di

Seite 441

98 Chapter 6 LAN screensN0115790Table 16 describes the fields in Figure 23.Table 16 IP AliasLabel DescriptionIP Alias 1,2 Select the check box to co

Seite 442 - 442 Index

99BCM50a Integrated Router Configuration — BasicsChapter 7WAN screensThis chapter describes how to configure WAN settings. WAN overviewThis section pr

Kommentare zu diesen Handbüchern

Keine Kommentare