User Guide
Page 12
... 10.2 SUA (Single User Account) Versus NAT 144 10.3 NAT General Setup 144 10.4 Port Forwarding 145 10.4.1 Default Server IP Address 146 10.4.2 Port Forwarding: Services and Port Numbers 146 10.4.3 Configuring Servers Behind Port Forwarding (Example 146 10.5 Configuring Port Forwarding 147 10.5.1 Port Forwarding Rule Edit 148 10.5.2 SIP ALG 149 Chapter 11 Voice ...151 11.1 Introduction to...
... 10.2 SUA (Single User Account) Versus NAT 144 10.3 NAT General Setup 144 10.4 Port Forwarding 145 10.4.1 Default Server IP Address 146 10.4.2 Port Forwarding: Services and Port Numbers 146 10.4.3 Configuring Servers Behind Port Forwarding (Example 146 10.5 Configuring Port Forwarding 147 10.5.1 Port Forwarding Rule Edit 148 10.5.2 SIP ALG 149 Chapter 11 Voice ...151 11.1 Introduction to...
User Guide
Page 24
... Network > Wireless LAN > OTIST 133 Figure 69 Example: Wireless Client OTIST Screen 134 Figure 70 OTIST: Settings 134 Figure 71 OTIST: In Progress on the ZyXEL Device 134 Figure 72 OTIST: In Progress on the Wireless Device 135 Figure 73 Start OTIST? ...135 Figure 74 MAC Address Filter 136 Figure 75... Works 142 Figure 78 NAT Application With IP Alias 143 Figure 79 NAT General ...145 Figure 80 Multiple Servers Behind NAT Example 146 Figure 81 Port Forwarding 147 24 List of Figures
... Network > Wireless LAN > OTIST 133 Figure 69 Example: Wireless Client OTIST Screen 134 Figure 70 OTIST: Settings 134 Figure 71 OTIST: In Progress on the ZyXEL Device 134 Figure 72 OTIST: In Progress on the Wireless Device 135 Figure 73 Start OTIST? ...135 Figure 74 MAC Address Filter 136 Figure 75... Works 142 Figure 78 NAT Application With IP Alias 143 Figure 79 NAT General ...145 Figure 80 Multiple Servers Behind NAT Example 146 Figure 81 Port Forwarding 147 24 List of Figures
User Guide
Page 25
P-2602H(W)(L)-DxA Series User's Guide Figure 82 Port Forwarding Rule Setup 148 Figure 83 Network > NAT > ALG 149 Figure 84 SIP User Agent 153 Figure 85 SIP Proxy Server 153 Figure 86 SIP Redirect ... Rule 200 Figure 106 Firewall: Customized Services 202 Figure 107 Firewall: Configure Customized Services 203 Figure 108 Firewall Example: Rules 204 Figure 109 Edit Custom Port Example 204 Figure 110 Firewall Example: Edit Rule: Destination Address 205 Figure 111 Firewall Example: Edit Rule: Select Customized Services 206 Figure 112 Firewall Example...
P-2602H(W)(L)-DxA Series User's Guide Figure 82 Port Forwarding Rule Setup 148 Figure 83 Network > NAT > ALG 149 Figure 84 SIP User Agent 153 Figure 85 SIP Proxy Server 153 Figure 86 SIP Redirect ... Rule 200 Figure 106 Firewall: Customized Services 202 Figure 107 Firewall: Configure Customized Services 203 Figure 108 Firewall Example: Rules 204 Figure 109 Edit Custom Port Example 204 Figure 110 Firewall Example: Edit Rule: Destination Address 205 Figure 111 Firewall Example: Edit Rule: Select Customized Services 206 Figure 112 Firewall Example...
User Guide
Page 30
...Table 45 Application Priority Configuration 139 Table 46 NAT Definitions ...141 Table 47 NAT Mapping Types 144 Table 48 NAT General ...145 Table 49 Port Forwarding 147 Table 50 Port Forwarding Rule Setup 148 Table 51 Network > NAT > ALG 149 Table 52 SIP Call Progression 152 Table 53 SIP > SIP Settings 155 ...Phone Book > Speed Dial 173 Table 64 Phone Book > Incoming Call Policy 175 Table 65 PSTN Line > General 177 Table 66 Common IP Ports 184 Table 67 ICMP Commands That Trigger Alerts 186 Table 68 Legal NetBIOS Commands 186 Table 69 Legal SMTP Commands 186 Table 70 Firewall: General...
...Table 45 Application Priority Configuration 139 Table 46 NAT Definitions ...141 Table 47 NAT Mapping Types 144 Table 48 NAT General ...145 Table 49 Port Forwarding 147 Table 50 Port Forwarding Rule Setup 148 Table 51 Network > NAT > ALG 149 Table 52 SIP Call Progression 152 Table 53 SIP > SIP Settings 155 ...Phone Book > Speed Dial 173 Table 64 Phone Book > Incoming Call Policy 175 Table 65 PSTN Line > General 177 Table 66 Common IP Ports 184 Table 67 ICMP Commands That Trigger Alerts 186 Table 68 Legal NetBIOS Commands 186 Table 69 Legal SMTP Commands 186 Table 70 Firewall: General...
User Guide
Page 53
... to partition your LAN interface into subnets. Local User Database Use this screen to set up help screens. Port Forwarding Use this screen to make your ZyXEL Device's Quality of Service settings for VoIP. Use this screen to view current DHCP client information and to ... Logout: Click this screen to configure your wireless security settings to specific wireless clients or exclude specific wireless clients from accessing the ZyXEL Device. P-2602H(W)(L)-DxA Series User's Guide The icons provide the following tables describe each menu item. MAC Filter Use this screen ...
... to partition your LAN interface into subnets. Local User Database Use this screen to set up help screens. Port Forwarding Use this screen to make your ZyXEL Device's Quality of Service settings for VoIP. Use this screen to view current DHCP client information and to ... Logout: Click this screen to configure your wireless security settings to specific wireless clients or exclude specific wireless clients from accessing the ZyXEL Device. P-2602H(W)(L)-DxA Series User's Guide The icons provide the following tables describe each menu item. MAC Filter Use this screen ...
User Guide
Page 54
... to allow NetBIOS traffic through VPN tunnels. Use this screen to view the ZyXEL Device's bandwidth usage and allotments. Use this screen to configure IP static routes to tell your location and call -forwarding. Use this screen to select your device about networks beyond the directly connected ...you to use which SIP accounts. Use this screen to exclude a range of each VPN tunnel. Use this screen to configure general phone port settings. P-2602H(W)(L)-DxA Series User's Guide Table 6 Navigation Panel Summary LINK Phone Phone Book TAB Analog Phone Common Region Incoming Call Policy ...
... to allow NetBIOS traffic through VPN tunnels. Use this screen to view the ZyXEL Device's bandwidth usage and allotments. Use this screen to configure IP static routes to tell your location and call -forwarding. Use this screen to select your device about networks beyond the directly connected ...you to use which SIP accounts. Use this screen to exclude a range of each VPN tunnel. Use this screen to configure general phone port settings. P-2602H(W)(L)-DxA Series User's Guide Table 6 Navigation Panel Summary LINK Phone Phone Book TAB Analog Phone Common Region Incoming Call Policy ...
User Guide
Page 142
... Address Translation (NAT) Screens With no servers defined, your ZyXEL Device filters out all incoming inquiries, thus preventing intruders from a subscriber (the inside local address) to another (the inside global address) before forwarding it to the inside hosts can be either local or global... IGA (Inside Global Address) is the source address on page 144), NAT offers the additional benefit of the original addresses and port numbers so incoming reply packets can have their original values restored. The following figure illustrates this. P-2602H(W)(L)-DxA Series User's Guide...
... Address Translation (NAT) Screens With no servers defined, your ZyXEL Device filters out all incoming inquiries, thus preventing intruders from a subscriber (the inside local address) to another (the inside global address) before forwarding it to the inside hosts can be either local or global... IGA (Inside Global Address) is the source address on page 144), NAT offers the additional benefit of the original addresses and port numbers so incoming reply packets can have their original values restored. The following figure illustrates this. P-2602H(W)(L)-DxA Series User's Guide...
User Guide
Page 144
... NAT mapping types. ILA1ÅÆ IGA1 ILA2ÅÆ IGA2 ILA3ÅÆ IGA3 ... P-2602H(W)(L)-DxA Series User's Guide Port numbers do NOT change for your ZyXEL Device. 10.3 NAT General Setup You must create a firewall rule in addition to setting up SUA/NAT, to allow traffic from the... IGA1 ... Table 47 NAT Mapping Types TYPE One-to-One Many-to-One (SUA/PAT) Many-to-Many Overload Many-to be forwarded through the ZyXEL Device. The ZyXEL Device also supports Full Feature NAT to map multiple global IP addresses to multiple private LAN IP addresses of mapping, Many-to-One...
... NAT mapping types. ILA1ÅÆ IGA1 ILA2ÅÆ IGA2 ILA3ÅÆ IGA3 ... P-2602H(W)(L)-DxA Series User's Guide Port numbers do NOT change for your ZyXEL Device. 10.3 NAT General Setup You must create a firewall rule in addition to setting up SUA/NAT, to allow traffic from the... IGA1 ... Table 47 NAT Mapping Types TYPE One-to-One Many-to-One (SUA/PAT) Many-to-Many Overload Many-to be forwarded through the ZyXEL Device. The ZyXEL Device also supports Full Feature NAT to map multiple global IP addresses to multiple private LAN IP addresses of mapping, Many-to-One...
User Guide
Page 145
...P-2602H(W)(L)-DxA Series User's Guide The following table describes the labels in all of the available NAT sessions. Use this screen. 10.4 Port Forwarding A port forwarding set is not degraded by the number of clients using peer to peer applications, you can raise this radio button if you have just...to the outside world even though NAT makes your whole inside (behind NAT on the LAN) servers, for your ZyXEL Device. If you can establish through the ZyXEL Device. Select this can result in this number to ensure no additional NAT sessions can be established, and users ...
...P-2602H(W)(L)-DxA Series User's Guide The following table describes the labels in all of the available NAT sessions. Use this screen. 10.4 Port Forwarding A port forwarding set is not degraded by the number of clients using peer to peer applications, you can raise this radio button if you have just...to the outside world even though NAT makes your whole inside (behind NAT on the LAN) servers, for your ZyXEL Device. If you can establish through the ZyXEL Device. Select this can result in this number to ensure no additional NAT sessions can be established, and users ...
User Guide
Page 146
... do not assign a Default Server IP address, the ZyXEL Device discards all packets received for further information about port numbers. 10.4.3 Configuring Servers Behind Port Forwarding (Example) Let's say you are shown in the remote management setup. 10.4.2 Port Forwarding: Services and Port Numbers Use the Port Forwarding screen to forward incoming service requests to the server(s) on your ISP...
... do not assign a Default Server IP address, the ZyXEL Device discards all packets received for further information about port numbers. 10.4.3 Configuring Servers Behind Port Forwarding (Example) Let's say you are shown in the remote management setup. 10.4.2 Port Forwarding: Services and Port Numbers Use the Port Forwarding screen to forward incoming service requests to the server(s) on your ISP...
User Guide
Page 147
... Server In addition to the table below. # This is the first port number that identifies a service. P-2602H(W)(L)-DxA Series User's Guide 10.5 Configuring Port Forwarding Note: If you do not assign a Default Server IP address, the ZyXEL Device discards all packets received for ports that are not specified here or in the remote management setup...
... Server In addition to the table below. # This is the first port number that identifies a service. P-2602H(W)(L)-DxA Series User's Guide 10.5 Configuring Port Forwarding Note: If you do not assign a Default Server IP address, the ZyXEL Device discards all packets received for ports that are not specified here or in the remote management setup...
User Guide
Page 148
... to the ZyXEL Device. Click Apply to save your changes back to the previous screen. 148 Chapter 10 Network Address Translation (NAT) Screens Enter a name to identify this field. To forward only one when you can edit the port forwarding rule. Enter a port number in this port-forwarding rule. To forward a series of ports, enter the last port number in...
... to the ZyXEL Device. Click Apply to save your changes back to the previous screen. 148 Chapter 10 Network Address Translation (NAT) Screens Enter a name to identify this field. To forward only one when you can edit the port forwarding rule. Enter a port number in this port-forwarding rule. To forward a series of ports, enter the last port number in...
User Guide
Page 149
... is described in the following table. Click this screen to previously saved configuration. When the ZyXEL Device registers with port-forwarding and address-mapping rules. Use this to return to enable and disable the SIP (VoIP) ALG in the data stream. Figure 83 Network > NAT > ALG ...
... is described in the following table. Click this screen to previously saved configuration. When the ZyXEL Device registers with port-forwarding and address-mapping rules. Use this to return to enable and disable the SIP (VoIP) ALG in the data stream. Figure 83 Network > NAT > ALG ...
User Guide
Page 161
... tones using IVR first. PCM - send the DTMF tones in VoIP > Phone Book > Incoming Call Policy. Server Port Enter the SIP outbound proxy server's listening port, if your phone when you push its buttons. Enter the number of the SIP outbound proxy server. The peer devices... service each time the ZyXEL Device subscribes to specify what tone people hear when you . MWI (Message Waiting Indication) Enable Select this if you want to the service. This provides better quality, but it . Call Forward Call Forward Table Select which call forwarding table you want people ...
... tones using IVR first. PCM - send the DTMF tones in VoIP > Phone Book > Incoming Call Policy. Server Port Enter the SIP outbound proxy server's listening port, if your phone when you push its buttons. Enter the number of the SIP outbound proxy server. The peer devices... service each time the ZyXEL Device subscribes to specify what tone people hear when you . MWI (Message Waiting Indication) Enable Select this if you want to the service. This provides better quality, but it . Call Forward Call Forward Table Select which call forwarding table you want people ...
User Guide
Page 168
... services with the Europe Type Call Service Mode. Commands for a short period of the supplementary phone services available through the ZyXEL Device's phone ports, you do not issue the sub-command before releasing it may need to subscribe to the services from your VoIP service ... transfer, ... With manual tapping, if the duration is much more precise. The ZyXEL Device supports the following services: • Call Hold • Call Waiting • Making a Second Call • Call Transfer • Call Forwarding (see Section 11.19 on page 174) • Three-Way Conference •...
... services with the Europe Type Call Service Mode. Commands for a short period of the supplementary phone services available through the ZyXEL Device's phone ports, you do not issue the sub-command before releasing it may need to subscribe to the services from your VoIP service ... transfer, ... With manual tapping, if the duration is much more precise. The ZyXEL Device supports the following services: • Call Hold • Call Waiting • Making a Second Call • Call Transfer • Call Forwarding (see Section 11.19 on page 174) • Three-Way Conference •...
User Guide
Page 175
... is used by the No Answer Forward to the specified phone number if the phone port is forwarded to the specified phone number if you to the specified phone number if the call -forwarding table. Select this field, the screen automatically refreshes. Enter the number of seconds the ZyXEL Device should wait for you reject...
... is used by the No Answer Forward to the specified phone number if the phone port is forwarded to the specified phone number if you to the specified phone number if the call -forwarding table. Select this field, the screen automatically refreshes. Enter the number of seconds the ZyXEL Device should wait for you reject...
User Guide
Page 226
... on both data payload and headers, with a hash value appended to the packet, but the ZyXEL Device's NAT Traversal feature provides a way to work, you cannot set up an IKE SA with... checks are NAT routers between the two IPSec routers. Finally, NAT is unchanged by adding a UDP port 500 header to IPSec router A. Table 82 VPN and NAT SECURITY PROTOCOL MODE NAT AH AH ESP ...ESP Transport N Tunnel N Transport Y* Tunnel Y 226 Chapter 17 VPN Screens The NAT router forwards the IPSec packet with ESP in both transport and tunnel mode. An IPSec VPN using the AH protocol...
... on both data payload and headers, with a hash value appended to the packet, but the ZyXEL Device's NAT Traversal feature provides a way to work, you cannot set up an IKE SA with... checks are NAT routers between the two IPSec routers. Finally, NAT is unchanged by adding a UDP port 500 header to IPSec router A. Table 82 VPN and NAT SECURITY PROTOCOL MODE NAT AH AH ESP ...ESP Transport N Tunnel N Transport Y* Tunnel Y 226 Chapter 17 VPN Screens The NAT router forwards the IPSec packet with ESP in both transport and tunnel mode. An IPSec VPN using the AH protocol...
User Guide
Page 279
...Cancel to return to the previously saved settings. 22.3 Installing UPnP in Windows Example This section shows how to manually configure port forwarding for the UPnP enabled application. Table 112 Configuring UPnP LABEL DESCRIPTION Active the Universal Plug and Select this check box to... UPnP to pass through the ZyXEL Device, for example, MSN packets). Click Details. Clear this check box to have the firewall block all UPnP application packets (for example by using NAT traversal, UPnP applications automatically reserve a NAT forwarding port in the Components selection box....
...Cancel to return to the previously saved settings. 22.3 Installing UPnP in Windows Example This section shows how to manually configure port forwarding for the UPnP enabled application. Table 112 Configuring UPnP LABEL DESCRIPTION Active the Universal Plug and Select this check box to... UPnP to pass through the ZyXEL Device, for example, MSN packets). Click Details. Clear this check box to have the firewall block all UPnP application packets (for example by using NAT traversal, UPnP applications automatically reserve a NAT forwarding port in the Components selection box....
User Guide
Page 335
... EAP-MD5, TLS, TTLS OTIST (ZyXEL's One-Touch Intelligent Security Technology) Antenna: 2dBi, non-detachable Stateful Packet Inspection Prevent Denial of Service attacks such as Ping of Service Content Filtering IP & Generic Packet Filtering Real time Attack Alerts and Logs Reports and logs SIP ALG passthrough Port Forwarding 1024 NAT sessions Multimedia application...
... EAP-MD5, TLS, TTLS OTIST (ZyXEL's One-Touch Intelligent Security Technology) Antenna: 2dBi, non-detachable Stateful Packet Inspection Prevent Denial of Service attacks such as Ping of Service Content Filtering IP & Generic Packet Filtering Real time Attack Alerts and Logs Reports and logs SIP ALG passthrough Port Forwarding 1024 NAT sessions Multimedia application...
User Guide
Page 425
... 181 Pairwise Master Key (PMK) 369 PCM 156 Peak Cell Rate (PCR) 96, 102 Peer to Peer Calls 45 Peer-to-peer Calls 45 Perfect Forward Secrecy 236 Per-Hop Behavior 162 Permanent Virtual Circuits 334 PFS 236 PHB (Per-Hop Behavior) 163 Phone 164 Ping of Death 184 Point to... Point Calls 45 Point to Point Protocol over ATM Adaptation Layer 5 (AAL5) 94 Point-to-point Calls 336 POP3 183, 184 Port Forwarding 335 Power Adaptor 336 Power Adaptor Specifications 336 Power Specification 333 PPP (Point-to-Point Protocol) Link Layer Protocol 334 PPP over ATM AAL5 334...
... 181 Pairwise Master Key (PMK) 369 PCM 156 Peak Cell Rate (PCR) 96, 102 Peer to Peer Calls 45 Peer-to-peer Calls 45 Perfect Forward Secrecy 236 Per-Hop Behavior 162 Permanent Virtual Circuits 334 PFS 236 PHB (Per-Hop Behavior) 163 Phone 164 Ping of Death 184 Point to... Point Calls 45 Point to Point Protocol over ATM Adaptation Layer 5 (AAL5) 94 Point-to-point Calls 336 POP3 183, 184 Port Forwarding 335 Power Adaptor 336 Power Adaptor Specifications 336 Power Specification 333 PPP (Point-to-Point Protocol) Link Layer Protocol 334 PPP over ATM AAL5 334...