Support Guide
Page 2
...When do if I need DDNS service 14 11. What's the difference between SUA and Full Feature NAT?.......... 8 10. Does the P-660HN-T1A support DDNS wildcard 14 12. What is DDNS 13 10. What IP/Port mapping does Multi-NAT support 9 13. How do ...I update the firmware and configuration file 6 4. What is content filter 16 ADSL FAQ ...17 2 All contents copyright © 2010 ZyXEL Communications Corporation. The P-660HN-T1A supports Bridge and Router mode, what's the difference between them 13 7. What is the difference between 'Common User Account' and 'Administrator ...
...When do if I need DDNS service 14 11. What's the difference between SUA and Full Feature NAT?.......... 8 10. Does the P-660HN-T1A support DDNS wildcard 14 12. What is DDNS 13 10. What IP/Port mapping does Multi-NAT support 9 13. How do ...I update the firmware and configuration file 6 4. What is content filter 16 ADSL FAQ ...17 2 All contents copyright © 2010 ZyXEL Communications Corporation. The P-660HN-T1A supports Bridge and Router mode, what's the difference between them 13 7. What is the difference between 'Common User Account' and 'Administrator ...
Support Guide
Page 3
... in 21 6. What is the disadvantage of Service (DoS) attack 21 7. What is Denials of Wireless LAN 28 3 All contents copyright © 2010 ZyXEL Communications Corporation. When does the P-660HN-T1A generate the firewall log? ..... 26 2. How does ADSL compare to us 26 3. What is Teardrop attack 22 9. Why do I prevent others from...
... in 21 6. What is the disadvantage of Service (DoS) attack 21 7. What is Denials of Wireless LAN 28 3 All contents copyright © 2010 ZyXEL Communications Corporation. When does the P-660HN-T1A generate the firewall log? ..... 26 2. How does ADSL compare to us 26 3. What is Teardrop attack 22 9. Why do I prevent others from...
Support Guide
Page 4
... the SSID be encrypted 34 8. Internet Access Using P-660HN-T1A under Bridge mode.... 36 2. What is Ad Hoc mode 32 2. Setup the P-660HN-T1A as a DHCP Relay 42 4 All contents copyright © 2010 ZyXEL Communications Corporation. Is it possible to use the 2.4GHz Band 29 9. Does P-660HN-T1A support auto rate adaption 31 Advanced FAQ 32 1. What...
... the SSID be encrypted 34 8. Internet Access Using P-660HN-T1A under Bridge mode.... 36 2. What is Ad Hoc mode 32 2. Setup the P-660HN-T1A as a DHCP Relay 42 4 All contents copyright © 2010 ZyXEL Communications Corporation. Is it possible to use the 2.4GHz Band 29 9. Does P-660HN-T1A support auto rate adaption 31 Advanced FAQ 32 1. What...
Support Guide
Page 5
...; Offline Trace 109 Capture the detailed logs by Hyper Terminal 110 2. Using IP Policy Routing 72 12. P-660HN Series Support Notes 4. Using IP Multicast 78 14. Configure a Wireless Client to configure packet filter on UNIX 114 3. ... Using TFTP client software 112 Using TFTP command on Windows NT 114 Using TFTP command on P-660HN-T1A 81 16. Using the Dynamic DNS (DDNS 64 7. Using Call Scheduling 75 13. The WPS/WLAN Button 106 Support... and General User Interface 118 5 All contents copyright © 2010 ZyXEL Communications Corporation.
...; Offline Trace 109 Capture the detailed logs by Hyper Terminal 110 2. Using IP Policy Routing 72 12. P-660HN Series Support Notes 4. Using IP Multicast 78 14. Configure a Wireless Client to configure packet filter on UNIX 114 3. ... Using TFTP client software 112 Using TFTP command on Windows NT 114 Using TFTP command on P-660HN-T1A 81 16. Using the Dynamic DNS (DDNS 64 7. Using Call Scheduling 75 13. The WPS/WLAN Button 106 Support... and General User Interface 118 5 All contents copyright © 2010 ZyXEL Communications Corporation.
Support Guide
Page 6
... FTP or TFTP client software. You can display with English, and you can upload the firmware and configuration file to P-660HN-T1A using TFTP client program via LAN. In this case, ZyXEL will upload the firmware to its flash at this if you to transfer the firmware to Prestige from Web Configurator. Please...
... FTP or TFTP client software. You can display with English, and you can upload the firmware and configuration file to P-660HN-T1A using TFTP client program via LAN. In this case, ZyXEL will upload the firmware to its flash at this if you to transfer the firmware to Prestige from Web Configurator. Please...
Support Guide
Page 7
...for the cost of the 7 All contents copyright © 2010 ZyXEL Communications Corporation. To restore the P-660HN-T1A configurations, use TFTP client program to put your P-660HN-T1A. How to blink, the default configuration has been restored and the P-660HN-T1A restarts. 8. If the POWER LED begins to use SUA? ...are received by using the IP address assigned by Prestige router which allows multiple people to your configuration in file rom-0 in your P-660HN-T1A on (not blinking) b. d. Turn your PC to login to access Internet concurrently for the outside Internet, it . Press the...
...for the cost of the 7 All contents copyright © 2010 ZyXEL Communications Corporation. To restore the P-660HN-T1A configurations, use TFTP client program to put your P-660HN-T1A. How to blink, the default configuration has been restored and the P-660HN-T1A restarts. 8. If the POWER LED begins to use SUA? ...are received by using the IP address assigned by Prestige router which allows multiple people to your configuration in file rom-0 in your P-660HN-T1A on (not blinking) b. d. Turn your PC to login to access Internet concurrently for the outside Internet, it . Press the...
Support Guide
Page 8
... local server accessible to different ports, since the servers share only one set with multiple global IP addresses 8 All contents copyright © 2010 ZyXEL Communications Corporation. Therefore, to make special application when you : None SUA Only Full Feature SUA (Single User ...accessible from the outside with 2 rules: Many-to a SUA server table. They are 8 remote nodes. P-660HN Series Support Notes packet (since it ? What is possible because P-660HN-T1A delivers the packet to the local server by looking up to -One and Server. With SUA, 'visible'...
... local server accessible to different ports, since the servers share only one set with multiple global IP addresses 8 All contents copyright © 2010 ZyXEL Communications Corporation. Therefore, to make special application when you : None SUA Only Full Feature SUA (Single User ...accessible from the outside with 2 rules: Many-to a SUA server table. They are 8 remote nodes. P-660HN Series Support Notes packet (since it ? What is possible because P-660HN-T1A delivers the packet to the local server by looking up to -One and Server. With SUA, 'visible'...
Support Guide
Page 9
..., you want to map each ILA to unique IGA. Server: In Server mode, the P-660HN-T1A maps multiple inside servers to -One (SUA/PAT) IP Mapping ILA1IGA1 ILA1IGA1 ILA2IGA1 ... 9 All contents copyright © 2010 ZyXEL Communications Corporation. Multi-NAT supports five types of IP/port mapping: One to One, Many to... as the Inside Global Address (IGA), One to One: In One-to-One mode, the P-660HN-T1A maps one ILA to one IGA. Many to One: In Many-to-One mode, the P-660HN-T1A maps multiple ILA to the server using the same IP address. Thus, users on the LAN accessible...
..., you want to map each ILA to unique IGA. Server: In Server mode, the P-660HN-T1A maps multiple inside servers to -One (SUA/PAT) IP Mapping ILA1IGA1 ILA1IGA1 ILA2IGA1 ... 9 All contents copyright © 2010 ZyXEL Communications Corporation. Multi-NAT supports five types of IP/port mapping: One to One, Many to... as the Inside Global Address (IGA), One to One: In One-to-One mode, the P-660HN-T1A maps one ILA to one IGA. Many to One: In Many-to-One mode, the P-660HN-T1A maps multiple ILA to the server using the same IP address. Thus, users on the LAN accessible...
Support Guide
Page 10
... 13. The P-660HN-T1A supports 4k sessions that is not spoofing us Filter rule setup: Filter type =TCP/IP Filter Rule Active =Yes Source IP Addr =a.b.c.d Source IP Mask =w.x.y.z Action Matched =Drop 10 All contents copyright © 2010 ZyXEL Communications Corporation. You...IP and IPX filters belong to be from the inside Allow everything that you can I protect against IP spoofing attacks. The P-660HN-T1A's filter sets provide a means to view the current active NAT sessions. 14. One group is called 'device filter group', and the...
... 13. The P-660HN-T1A supports 4k sessions that is not spoofing us Filter rule setup: Filter type =TCP/IP Filter Rule Active =Yes Source IP Addr =a.b.c.d Source IP Mask =w.x.y.z Action Matched =Drop 10 All contents copyright © 2010 ZyXEL Communications Corporation. You...IP and IPX filters belong to be from the inside Allow everything that you can I protect against IP spoofing attacks. The P-660HN-T1A's filter sets provide a means to view the current active NAT sessions. 14. One group is called 'device filter group', and the...
Support Guide
Page 12
... this IP address. 12 All contents copyright © 2010 ZyXEL Communications Corporation. You can I know the P-660HN-T1A's WAN IP address assigned by the ISP? By factory default the password for P-660HN-T1A Web Configurator: Common User Account and Administrator Account. For Common...upgrade and configuration backup and restore are : Common User Account: user Administrator Account: 1234. How do I manage P-660HN-T1A? Multilingual Embedded Web GUI for Local and Remote management CLI (Command-line interface) Telnet support (Administrator Password ...
... this IP address. 12 All contents copyright © 2010 ZyXEL Communications Corporation. You can I know the P-660HN-T1A's WAN IP address assigned by the ISP? By factory default the password for P-660HN-T1A Web Configurator: Common User Account and Administrator Account. For Common...upgrade and configuration backup and restore are : Common User Account: user Administrator Account: 1234. How do I manage P-660HN-T1A? Multilingual Embedded Web GUI for Local and Remote management CLI (Command-line interface) Telnet support (Administrator Password ...
Support Guide
Page 13
...How do not interfere with your voice transmissions. Why does my provider use bridge mode which works as the encapsulation type in the P-660HN-T1A if the ISP uses PPPoE. 8. Besides, PPPoE supports a broad range of existing applications and service including authentication, accounting, secure ...a familiar Dial-Up connection. Generally, the voice band uses the lower frequency ranging from various 13 All contents copyright © 2010 ZyXEL Communications Corporation. The ISP will be more easily accessed from 0 to the provider's server. PPPoE requires a user account to login to...
...How do not interfere with your voice transmissions. Why does my provider use bridge mode which works as the encapsulation type in the P-660HN-T1A if the ISP uses PPPoE. 8. Besides, PPPoE supports a broad range of existing applications and service including authentication, accounting, secure ...a familiar Dial-Up connection. Generally, the voice band uses the lower frequency ranging from various 13 All contents copyright © 2010 ZyXEL Communications Corporation. The ISP will be more easily accessed from 0 to the provider's server. PPPoE requires a user account to login to...
Support Guide
Page 14
...the server can update its updates. 11. When using the www.zyxel.com.tw regardless of the WAN IP of the P-660HN-T1A. If there are serveral VCs in the P-660HN-T1A but only one VC activated at boosting the efficiency of the P-660HN-T1A to -DNS table in Menu 1.1 Configure Dynamic DNS. 12. ...such as www.yourhost.dyndns.org and still reach your internal server to other VCs after ward. 14 All contents copyright © 2010 ZyXEL Communications Corporation. Does the P-660HN-T1A support DDNS wildcard? If another VCs are multiple servers inside and you want users to be accessed by the...
...the server can update its updates. 11. When using the www.zyxel.com.tw regardless of the WAN IP of the P-660HN-T1A. If there are serveral VCs in the P-660HN-T1A but only one VC activated at boosting the efficiency of the P-660HN-T1A to -DNS table in Menu 1.1 Configure Dynamic DNS. 12. ...such as www.yourhost.dyndns.org and still reach your internal server to other VCs after ward. 14 All contents copyright © 2010 ZyXEL Communications Corporation. Does the P-660HN-T1A support DDNS wildcard? If another VCs are multiple servers inside and you want users to be accessed by the...
Support Guide
Page 15
... is often used when transmitting data that the data can tolerate delays, such as e-mail. 15 All contents copyright © 2010 ZyXEL Communications Corporation. However, as the other VC asking the bandwidth, the MBS defines the maximum number of cells transmitted through this VC ...does not guarantee any throughput levels and uses only available bandwidth. Why do the parameters (PCR, SCR, MBS) mean ? The P-660HN-T1A must manage traffic fairly and provide bandwidth allocation for shaping the traffic among different virtual connections. What do we perform traffic shaping in...
... is often used when transmitting data that the data can tolerate delays, such as e-mail. 15 All contents copyright © 2010 ZyXEL Communications Corporation. However, as the other VC asking the bandwidth, the MBS defines the maximum number of cells transmitted through this VC ...does not guarantee any throughput levels and uses only available bandwidth. Why do the parameters (PCR, SCR, MBS) mean ? The P-660HN-T1A must manage traffic fairly and provide bandwidth allocation for shaping the traffic among different virtual connections. What do we perform traffic shaping in...
Support Guide
Page 16
... evenly. You can configure the details about it in the URL. You can also specify trusted IP Addresses on LAN for when the P-660HN-T1A performs content filtering. Internet Content filter allows you to create and enforce Internet acces s policies tailored to specify a throughput capacity (i.e., a ...2010 ZyXEL Communications Corporation. You can select VBR for bursty traffic and bandwidth sharing with other applications. Content filter gives you the ability to block web sites that contain key words (that allows users to your needs. You can set a schedule for which the P-660HN-T1A ...
... evenly. You can configure the details about it in the URL. You can also specify trusted IP Addresses on LAN for when the P-660HN-T1A performs content filtering. Internet Content filter allows you to create and enforce Internet acces s policies tailored to specify a throughput capacity (i.e., a ...2010 ZyXEL Communications Corporation. You can select VBR for bursty traffic and bandwidth sharing with other applications. Content filter gives you the ability to block web sites that contain key words (that allows users to your needs. You can set a schedule for which the P-660HN-T1A ...
Support Guide
Page 17
... not catch up with your telephone set to ensure that can see the DSL LED Green on the P-660HN-T1A's front panel is up to the user's manual. 4. How does the P-660HN-T1A work on when the ADSL physical layer is on a noisy ADSL? For the details about 1.6Mbps data... used for your voice transmissions. There are not capable of lines available to automatically adjust the date rate. 17 All contents copyright © 2010 ZyXEL Communications Corporation. In our test, we can offer high bandwidth services. 2. Generally, the voice band uses the lower frequency ranging from 0 to ...
... not catch up with your telephone set to ensure that can see the DSL LED Green on the P-660HN-T1A's front panel is up to the user's manual. 4. How does the P-660HN-T1A work on when the ADSL physical layer is on a noisy ADSL? For the details about 1.6Mbps data... used for your voice transmissions. There are not capable of lines available to automatically adjust the date rate. 17 All contents copyright © 2010 ZyXEL Communications Corporation. In our test, we can offer high bandwidth services. 2. Generally, the voice band uses the lower frequency ranging from 0 to ...
Support Guide
Page 18
...pin 4. The middle two pins for carrying each protocol but it does not need the extra headers. P-660HN Series Support Notes 6. Though the LLC-based multiplexing can also do I know the details of services (...near You can carry multiple protocols over one existing ADSL connection. 18 All contents copyright © 2010 ZyXEL Communications Corporation. The VC-based multiplexing needs a separate VC for a RJ11 cable. 9. How do it requires ... CI commands to identify the protocol being carried on the P-660HN-T1A's ADSL connector are the signaling pins of the ADSL connector?
...pin 4. The middle two pins for carrying each protocol but it does not need the extra headers. P-660HN Series Support Notes 6. Though the LLC-based multiplexing can also do I know the details of services (...near You can carry multiple protocols over one existing ADSL connection. 18 All contents copyright © 2010 ZyXEL Communications Corporation. The VC-based multiplexing needs a separate VC for a RJ11 cable. 9. How do it requires ... CI commands to identify the protocol being carried on the P-660HN-T1A's ADSL connector are the signaling pins of the ADSL connector?
Support Guide
Page 20
... with secure systems by requiring users to protect a trusted network from an untrusted network. What makes P-660HN-T1A secure? It also uses stateful packet inspection to determine if an inbound connection is an application gateway or...general operating system such as Ping of Service (DoS) attacks such as UNIX or Windows NT. The P-660HN-T1A supports Network Address Translation (NAT), which permit no traffic directly between two networks. Application-level Firewall 3.... public addresses. What is performance. 20 All contents copyright © 2010 ZyXEL Communications Corporation.
... with secure systems by requiring users to protect a trusted network from an untrusted network. What makes P-660HN-T1A secure? It also uses stateful packet inspection to determine if an inbound connection is an application gateway or...general operating system such as Ping of Service (DoS) attacks such as UNIX or Windows NT. The P-660HN-T1A supports Network Address Translation (NAT), which permit no traffic directly between two networks. Application-level Firewall 3.... public addresses. What is performance. 20 All contents copyright © 2010 ZyXEL Communications Corporation.
Support Guide
Page 21
...DoS) attack? Thus, for that enhance the filtering process and control the network session rather than control individual packets in the P-660HN-T1A? 1. The flexible nature of firewall in a session. 4. Their goal is considered. 6. Denial of going through every individual rule...security threats. The P-660HN-T1A's firewall uses session filtering, i.e., smart rules, that packet and allowed in the packet is Denials of the connection and to adapt to network resources. 21 All contents copyright © 2010 ZyXEL Communications Corporation. P-660HN Series Support Notes Stateful...
...DoS) attack? Thus, for that enhance the filtering process and control the network session rather than control individual packets in the P-660HN-T1A? 1. The flexible nature of firewall in a session. 4. Their goal is considered. 6. Denial of going through every individual rule...security threats. The P-660HN-T1A's firewall uses session filtering, i.e., smart rules, that packet and allowed in the packet is Denials of the connection and to adapt to network resources. 21 All contents copyright © 2010 ZyXEL Communications Corporation. P-660HN Series Support Notes Stateful...
Support Guide
Page 23
...ZyXEL Communications Corporation. IP Spoofing may be allowed through the router or firewall. 13. You can access Web Configurator via „http://192.168.1.1‟. There are the default ACL firewall rules in the IP specification known as directed or subnet broadcasting, to the LAN Interface of P-660HN-T1A...WAN and the other blocks all available bandwidth, making communications impossible. 12. Note: Don't forget to type in the P-660HN-T1A, one allows all connections from LAN to LAN except of broadcast traffic consumes all connections from configuring my firewall? There ...
...ZyXEL Communications Corporation. IP Spoofing may be allowed through the router or firewall. 13. You can access Web Configurator via „http://192.168.1.1‟. There are the default ACL firewall rules in the IP specification known as directed or subnet broadcasting, to the LAN Interface of P-660HN-T1A...WAN and the other blocks all available bandwidth, making communications impossible. 12. Note: Don't forget to type in the P-660HN-T1A, one allows all connections from LAN to LAN except of broadcast traffic consumes all connections from configuring my firewall? There ...
Support Guide
Page 24
...IP= router' WAN IP Service= TCP/23 Action=Forward 24 All contents copyright © 2010 ZyXEL Communications Corporation. There are blocked by the default ACL rule. You can 't I configure my P-660HN-T1A using Web Configurator/Telnet over WAN? To enable Telnet from WAN, you must turn the firewall ...off, or create a firewall rule to allow special access to telnet your P-660HN-T1A: The default value in Web Configurator, Advanced Setup, Advanced -> Remote MGNT -> [Service] ->Secured Client IP to allow WWW/Telnet connection from...
...IP= router' WAN IP Service= TCP/23 Action=Forward 24 All contents copyright © 2010 ZyXEL Communications Corporation. There are blocked by the default ACL rule. You can 't I configure my P-660HN-T1A using Web Configurator/Telnet over WAN? To enable Telnet from WAN, you must turn the firewall ...off, or create a firewall rule to allow special access to telnet your P-660HN-T1A: The default value in Web Configurator, Advanced Setup, Advanced -> Remote MGNT -> [Service] ->Secured Client IP to allow WWW/Telnet connection from...