Page 2 - Contents
2 Contents Introduction ..................................................................................... 7 Features and Benefits ........................................................................... 7 Introduction to Firewalls .................................................................
Page 7 - Introduction; Features and Benefits; DFL-700 features an extensive Traffic Shaper for bandwidth; Introduction to Firewalls
Introduction The DFL-700 provides three 10/100M Ethernet network interface ports, which are (1) Internal/LAN, (1) External/WAN, and (1) DMZ port. It also provides easily operated software WebUI that allows users to set system parameters or monitor network activities using a web browser. Features and...
Page 8 - Introduction to Local Area Networking; On the other hand, wireless networks do not use wires instead they
8 Introduction to Local Area Networking Local Area Networking (LAN) is the term used when connecting several computers together over a small area such as a building or group of buildings. LAN’s can be connected over large areas. A collection of LAN’s connected over a large area is called a Wide Area...
Page 11 - When a change is; Activate; Resetting the DFL700
Managing D-Link DFL-700 When a change is done to the configuration a new icon named Activate Changes will appear. When all changes and administrator would like to do is done the changes need to be saved and activated to take effect, this is done by clicking on the Activate Changes button on the Acti...
Page 12 - Administration Settings; Administrative Access
12 Administration Settings Administrative Access Ping – If enabled, specifies who can ping the interface IP of the DFL-700. Default if enabled is to allow anyone to ping the interface IP. Admin – If enabled allows all users with admin access to connect to the DFL-700 and change configuration, can be...
Page 13 - Add ping access to an interface; Ping; Add Admin access to an interface; Admin
Add ping access to an interface To add ping access click on the interface you would like to add it to. Follow these steps to add ping access to an interface. Step 1. Click on the interface you would like to add it to. Step 2. Enable the Ping checkbox. Step 3. Specify what networks are allowed to pin...
Page 14 - Add Read-only access to an interface; Enable SNMP access to an interface; Apply
14 Add Read-only access to an interface To add read-only access click on the interface you would like to add it to, note that if you only have read-only access enable on an interface all users only get read-only access, even if they are administrators. Follow these steps to add read-only access to a...
Page 15 - Interfaces; System; Change IP of the LAN or DMZ interface; LAN
System Interfaces Click on System in the menu bar, and then click interfaces below it. Change IP of the LAN or DMZ interface Follow these steps to change the IP of the LAN or DMZ interface. Step 1. Choose which interface to view or change under the Available interfaces list. Step 2. Fill in the IP a...
Page 17 - WAN Interface Settings – Using PPPoE; Username
WAN Interface Settings – Using PPPoE Use the following procedure to configure the DFL-700 external interface to use PPPoE (Point-to-Point Protocol over Ethernet). This configuration is required if your ISP uses PPPoE to assign the IP address of the external interface. You will have to fill the usern...
Page 18 - WAN Interface Settings – Using PPTP
18 WAN Interface Settings – Using PPTP PPTP over Ethernet connections are used in some DSL and cable modem networks. You need your account details, and possibly also IP configuration parameters of the actual physical interface that the PPTP tunnel runs over. Your ISP should supply this information. ...
Page 19 - WAN Interface Settings – Using BigPond; Traffic Shaping
WAN Interface Settings – Using BigPond The ISP Telstra BigPond uses BigPond for authentication; the IP is assigned with DHCP. • Username – The login or username supplied to you by your ISP. • Password – The password supplied to you by your ISP. Traffic Shaping When Traffic Shaping is enabled and the...
Page 20 - MTU Configuration; Click the
20 MTU Configuration To improve the performance of your Internet connection, you can adjust the maximum transmission unit (MTU) of the packets that the DFL-700 transmits from its external interface. Ideally, you want this MTU to be the same as the smallest MTU of all the networks between the DFL-700...
Page 21 - Routing
Routing Click on System in the menu bar, and then click Routing below it, this will give a list of all configured routes, it will look something like this: The Routes configuration section describes the firewall’s routing table. DFL-700 uses a slightly different way of describing routes compared to ...
Page 23 - Click on; in the menu bar, and then click; Logging; for automated processing and searching.
Logging Click on System in the menu bar, and then click Logging below it. Logging, the ability to audit decisions made by the firewall, is a vital part in all network security products. The D-Link DFL-700 provides several options for logging its activity. The D-Link DFL-700 logs its activities by se...
Page 25 - or port mapping, read more under; Policies; and; Port Mappings; in the Firewall section below.
Intrusion attacks will always be logged in the usual logs if IDS is enabled for any of the rules. For more information about how to enable intrusion detection and prevention on a policy or port mapping, read more under Policies and Port Mappings in the Firewall section below.
Page 26 - Time; below it. This will give you the
26 Time Click on System in the menu bar, and then click Time below it. This will give you the option to either set the system time by syncing to an Internet Network Time Server (NTP) or by entering the system time by hand.
Page 28 - Firewall; Policy; Policy modes; choose; No NAT; Action Types; Drop –; logged if logging has been enabled in the Logging Settings page.; Reject –
28 Firewall Policy The Firewall Policy configuration section is the "heart" of the firewall. The policies are the primary filter that is configured to allow or disallow certain types of network traffic through the firewall. The policies also regulate how bandwidth management, traffic shaping...
Page 31 - Add a new policy
Add a new policy Follow these steps to add a new outgoing policy. Step 1. Choose the LAN->WAN policy list from the available policy lists. Step 2. Click on the Add new link. Step 3. Fill in the following values: Name: Specifies a symbolic name for the rule. This name is used mainly as a rule refe...
Page 33 - Configure Intrusion Prevention; Edit
Configure Intrusion Prevention Follow these steps to configure IDP on a policy. Step 1. Choose the policy you would like have IDP on. Step 2. Click on the Edit link on the rule you want to delete. Step 3. Enable the Intrusion Detection / Prevention checkbox. Step 4. Choose Prevention from the mode d...
Page 34 - Port mapping / Virtual Servers; Add a new mapping; WAN
34 Port mapping / Virtual Servers The Port mapping / Virtual Servers configuration section is where you can configure virtual servers like Web servers on the DMZ or similar. It’s also possible to regulate how bandwidth management, traffic shaping, is applied to traffic flowing through the WAN interf...
Page 35 - Delete mapping
Delete mapping Follow these steps to delete a mapping. Step 1. Choose the mapping list (WAN, LAN or DMZ) you would like do delete the mapping from. Step 2. Click on the Edit link on the rule you want to delete. Step 3. Enable the Delete mapping checkbox. Click the Apply button below to apply the cha...
Page 36 - Administrative users; Administrator; Add Administrative User; add
36 Administrative users Click on Firewall in the menu bar, and then click Users below it. This will show all the users, and the first section is the administrative users. The first column show the access levels, Administrator and Read-only . An Administrator user can add, edit and remove rules, chan...
Page 38 - Delete Administrative User; Delete user; irreversible once the user is deleted, it cannot be
38 Delete Administrative User To delete a user click on the user name and you will see the following screen. Follow these steps to delete an Administrative User. Step 1. Click on the user you would like to change level of. Step 2. Enable the Delete user checkbox. Click the Apply button below to appl...
Page 39 - Users; specific IP addresses, based on their user credentials.; The DFL-700 RADIUS Support; CHAP; (Password Authentication Protocol) might
Users User Authentication allows an administrator to grant or reject access to specific users from specific IP addresses, based on their user credentials. Before any traffic is allowed to pass through any policies configured with username or groups, the user must first authenticate him/her-self. The...
Page 40 - Enable User Authentication via HTTP / HTTPS; Enable RADIUS Support
40 Enable User Authentication via HTTP / HTTPS Follow these steps to enable User Authentication. Step 1. Enable the checkbox for User Authentication. Step 2. Specify if HTTP and HTTPS or only HTTPS should be used for the login. Step 3. Specify the idle-timeout, the time a user can be idle before bei...
Page 42 - Delete User
42 Delete User To delete a user click on the user name and you will see the following screen. Follow these steps to delete a user. Step 1. Click on the user you would like to change level of. Step 2. Enable the Delete user checkbox. Click the Apply button below to apply the setting or click Cancel t...
Page 43 - Schedules; Add new recurring schedule
Schedules It is possible to configure a schedule for policies to take affect. By creating a schedule, the DFL-700 is allowing the firewall policies to be used at those designated times only. Any activities outside of the scheduled time slot will not follow the policies and will therefore likely not ...
Page 44 - Services; Go to Firewall and Service and choose add new.; button below to apply the change or click; Cancel; to discard changes.
44 Services A service is basically a definition of a specific IP protocol with corresponding parameters. The service http, for instance, is defined as to use the TCP protocol with destination port 80. Services are simplistic, in that they cannot carry out any action in the firewall on their own. Thu...
Page 45 - Adding IP Protocol; Grouping Services
Adding IP Protocol When the type of the service is IP Protocol, an IP protocol number may be specified in the text field. To have the service match the GRE protocol, for example, the IP protocol should be specified as 47. A list of some defined IP protocols can be found in the appendix named “IP Pro...
Page 46 - Protocol-independent settings; Allow ICMP errors from the destination to the source; – ICMP error messages are sent; ALG
46 Protocol-independent settings Allow ICMP errors from the destination to the source – ICMP error messages are sent in several situations: for example, when an IP packet cannot reach its destination. The purpose of these error control messages is to provide feedback about problems in the communicat...
Page 47 - VPN; Introduction to IPsec; IPSec
VPN Introduction to IPsec This chapter introduces IPsec, the method, or rather set of methods used to provide VPN functionality. IPSec, Internet Protocol Security, is a set of protocols defined by the IETF, Internet Engineering Task Force, to provide IP security at the network layer. An IPsec based ...
Page 49 - Authentication Protocols; PAP; secure then MS-CHAP v1 as it provides two –way authentication.
Authentication Protocols PPP supports different authentication protocols, PAP, CHAP, MS-CHAP v1 and MS- CHAP v2 is supported. Which authentication protocol to use is negotiated during LCP negotiation. PAP PAP (Password Authentication Protocol) is a simple, plaintext authentication scheme, which mean...
Page 52 - MPPE encryption; If MPPE encryption is going to
52 MPPE encryption If MPPE encryption is going to be used, this is where the encryption level is configured. If L2TP or PPTP over IPSec is going to be used it has to be enabled and configured to either use a Pre-Shared Key or a Certificate.
Page 53 - VPN between two networks; Add new
VPN between two networks In the following example users on the main office internal network can connect to the branch office internal network vice versa. Communication between the two networks takes place in an encrypted VPN tunnel that connects the two DFLs Network Security Firewall across the Inte...
Page 56 - VPN – Advanced Settings
56 VPN – Advanced Settings Advanced settings for a VPN tunnel is used when one need change some characteristics of the tunnel when using for example trying to connect to a third party VPN Gateway. The different settings to set per tunnel is the following: Limit MTU Whit this setting it’s possible to...
Page 58 - Certificates; Trusting Certificates; Construct a certification path up to the trusted root CA.; Local identities; web interface to provide HTTPS access.; Certificates of remote peers; This is a list of all certificates of individual remote peers.
58 Certificates A certificate is a digital proof of identity. It links an identity to a public key in a trustworthy manner. Certificates can be used to authenticate individual users or other entities. These types of certificates are commonly called end-entity certificates. Before a VPN tunnel with c...
Page 59 - If no Identity List is used, no identity matching is done.
Certificate Authorities This is a list of all CA certificates. To add a new Certificate Authority certificate, click Add new. The following pages will allow you to specify a name for the CA certificate and upload the certificate file. This certificate can be selected in the Certificates field on the...
Page 60 - Content Filtering; streams for URLs or for web page content.; Active content handling
60 Content Filtering DFL-700 HTTP content filtering can be configured to scan all HTTP content protocol streams for URLs or for web page content. You can configure URL blacklist to block all or just some of the pages on a website. Using this feature you can deny access to parts of a web site without...
Page 61 - Edit the URL Global Whitelist; Go to; to discard
Edit the URL Global Whitelist Follow these steps to add or remove a url. Step 1. Go to Firewall and Content Filtering and choose Edit global URL whitelist Step 2. Add/edit or remove the URL that should never be checked with the Content Filtering. Click the Apply button below to apply the change or c...
Page 62 - Edit the URL Global Blacklist
62 Edit the URL Global Blacklist Follow these steps to add or remove a url. Step 1. Go to Firewall and Content Filtering and choose Edit global URL blacklist Step 2. Add/edit or remove the URL that should be checked with the Content Filtering. Click the Apply button below to apply the change or clic...
Page 63 - service with the HTTP ALG.
Active content handling Active content handling can be enabled or disabled by checking the checkbox before each type you would like to strip. For example to strip ActiveX and Flash enable the checkbox named Strip ActiveX objects. It’s possible to strip ActiveX, Flash, Java, JavaScript and VBScript, ...
Page 64 - Servers; DHCP Server Settings
64 Servers DHCP Server Settings The DFL-700 contains a DHCP server; DHCP (Dynamic Host Configuration Protocol) is a protocol that lets network administrators to automatically assign IP numbers to computers on a network. The DFL-700 DHCP Server helps to minimize the work necessary to administer a net...
Page 66 - DNS Relayer Settings; Enable DNS Relayer
66 DNS Relayer Settings Click on Servers in the menu bar, and then click DNS Relay below it. The DFL-700 contains a DNS relayer that you can be configured to relay DNS queries from the internal LAN to the DNS servers used by the firewall itself. Enable DNS Relayer Follow these steps to enable the DN...
Page 67 - Disable DNS Relayer; Follow these steps to disable the DNS Relayer.; button below to apply the setting or click
Disable DNS Relayer Follow these steps to disable the DNS Relayer. Step 1. Disable by un-checking the Enable DNS Relayer box. Click the Apply button below to apply the setting or click Cancel to discard changes.
Page 68 - Tools; Ping Example
68 Tools Ping Click on Tools in the menu bar, and then click Ping below it. This tool is used to send a specified number of ICMP Echo Request packets to a given destination. All packets are sent in immediate succession rather than one per second. This behavior is the best one suited for diagnosing c...
Page 69 - Dynamic DNS; Add Dynamic DNS Settings
Dynamic DNS The Dynamic DNS (require Dynamic DNS Service) allows you to alias a dynamic IP address to a static hostname, allowing your device to be more easily accessed by specific name. When this function is enabled, the IP address in Dynamic DNS Server will be automatically updated with the new IP...
Page 70 - Backup; Exporting the DFL-700’s Configuration
70 Backup Click on Tools in the menu bar, and then click Backup below it. Here a administrator can backup and restore the configuration. The configuration file stores system settings, IP addresses of Firewall’s network interfaces, address table, service table, IPSec settings, port mapping and polici...
Page 71 - Restarting the DFL-700; . Choose if you want to do a quick or full restart.; Restart Unit; and the unit will restart.; Restoring system settings to factory defaults; Follow these steps reset the DFL-700 to factory default.
Restart/Reset Restarting the DFL-700 Follow these steps restart the DFL-700. Step 1 . Choose if you want to do a quick or full restart. Step 2 . Click Restart Unit and the unit will restart. Restoring system settings to factory defaults Use the following procedure to restore system settings to the v...
Page 73 - Upgrade; Upgrade IDS Signature-database
Upgrade The DFL-700’s software, IDS signatures and system parameters are all stored on a flash memory card. The flash memory card is re-writable and re-readable. Upgrade Firmware To upgrade the firmware first download the correct firmware image from D-Link. After having the newest version of softwar...
Page 74 - Status
74 Status In this section, the DFL-700 displays the status information about the Firewall. Administrator may use Status to check the System Status, Interface statistics, VPN, connections and DHCP Servers. System Click on Status in the menu bar, and then click System below it. A window will appear pr...
Page 77 - Connections
Connections Click on Status in the menu bar, and then click Connections below it. A window will appear providing information about the content of the state table. Shows the last 100 connections opened through the firewall. Connections are created when traffic is permitted to pass via the policies. E...
Page 78 - DHCP Server
78 DHCP Server Click on Status in the menu bar, and then click DHCP Server below it. A window will appear providing information about the configured DHCP Servers. By default information about the LAN interface will be show, to see another one click on that interface. Interface – Name of the interfac...
Page 80 - How to read the logs; machine that sent the log data:; USAGE events; connections and amount of traffic.; DROP events; most common source is probably the policies.; CONN events; These events are generated if auditing has been enabled.
80 How to read the logs Although the exact format of each log entry depends on how your syslog recipient works, most are very much alike. The way in which logs are read is also dependent on how your syslog recipient works. Syslog daemons on UNIX servers usually log to text files, line by line. Most ...
Page 81 - In this line, the connection in the other example is closed.
One event will be generated when a connection is established. This event will include information about protocol, receiving interface, source IP address, source port, destination interface, destination IP address and destination port. Open Example: Oct 20 2003 09:47:56 gateway EFW: CONN: prio=1 rule...
Page 82 - Step by step guides
82 Step by step guides In the following guides example IPs, users, sites and passwords are used. You will have to exchange the IP addresses and sites to your own. Passwords used in these examples are not recommended for real life use. Passwords and keys should be chosen so that they are impossible t...
Page 83 - Settings for Branch office; ToMainOffice
LAN-to-LAN VPN using IPsec Settings for Branch office 1. Setup interfaces, System->Interfaces : WAN IP: 193.0.2.10 LAN IP: 192.168.4.1 , Subnet mask: 255.255.255.0 2. Setup IPsec tunnel, Firewall->VPN: Under IPsec tunnels click Add new Name the tunnel ToMainOffice Local net: 192.168.4.0/24 PSK...
Page 84 - Automatically add a route for the remote network
84 Retype PSK: 1234567890 Select Tunnel type: LAN-to-LAN tunnel Remote Net: 192.168.1.0/24 Remote Gateway: 194.0.2.20 Enable Automatically add a route for the remote network Click Apply 3. Setup policies for the new tunnel, Firewall->Policy: Click Global policy parameters Enable Allow all VPN tra...
Page 85 - Settings for Main office; add new; ToBranchOffice
4. Click Activate and wait for the firewall to restart Settings for Main office 1. Setup interfaces, System->Interfaces : WAN IP: 193.0.2.20 LAN IP: 192.168.1.1 , Subnet mask: 255.255.255.0 2. Setup IPsec tunnel, Firewall->VPN: Under IPsec tunnels click add new Name the tunnel ToBranchOffice L...
Page 87 - toMainOffice
LAN-to-LAN VPN using PPTP Settings for Branch office 1. Setup interfaces, System->Interfaces : WAN IP: 193.0.2.10 LAN IP: 192.168.4.1 , Subnet mask: 255.255.255.0 2. Setup PPTP client, Firewall->VPN: Under PPTP/L2TP clients click Add new PPTP client Name the tunnel toMainOffice
Page 89 - Use IPsec encryption
Under MPPE encryption 128 bit should be the only checked option. Leave Use IPsec encryption unchecked Click Apply 3. Setup policies for the new tunnel, Firewall->Policy: Click Global policy parameters Enable Allow all VPN traffic: internal->VPN, VPN->internal and VPN->VPN Click Apply 4. ...
Page 90 - Add new PPTP server
90 Settings for Main office 1. Setup interfaces, System->Interfaces : WAN IP: 193.0.2.20 LAN IP: 192.168.1.1 , Subnet mask: 255.255.255.0 2. Setup PPTP server, Firewall->VPN: Under L2TP / PPTP Server click Add new PPTP server Name the server pptpServer Leave Outer IP and Inner IP blank Set cli...
Page 92 - Local database; Users in local database; BranchOffice
92 4. Set up authentication source, Firewall->Users : Select Local database Click Apply 5. Add a new user, Firewall->Users : Under Users in local database click Add new Name the new user BranchOffice Enter password: 1234567890 Retype password: 1234567890 Leave static client IP empty (could als...
Page 93 - all
Click Apply 6. Click Activate and wait for the firewall to restart. This example will allow all traffic between the two offices. To get a more secure solution read the A more secure LAN-to-LAN VPN solution section in this chapter.
Page 94 - Add new L2TP client; Name the server
94 LAN-to-LAN VPN using L2TP Settings for Branch office 1. Setup interfaces, System->Interfaces : WAN IP: 193.0.2.10 LAN IP: 192.168.4.1 , Subnet mask: 255.255.255.0 2. Setup L2TP client, Firewall->VPN: Under L2TP / PPTP client click Add new L2TP client Name the server toMainOffice
Page 97 - Add new L2TP server
4. Click Activate and wait for the firewall to restart Settings for Main office 1. Setup interfaces, System->Interfaces : WAN IP: 193.0.2.20 LAN IP: 192.168.1.1 , Subnet mask: 255.255.255.0 2. Setup L2TP server, Firewall->VPN: Under L2TP / PPTP Server click Add new L2TP server Name the server ...
Page 101 - Global policy parameters; Show
A more secure LAN-to-LAN VPN solution Go get a more secure solution, policies should be created instead of allowing all traffic between the two offices. The following steps will show how to enable some common services. In this example we have a mail server, ftp server and a web server (intranet) in ...
Page 102 - Setup the new rule:; Allow; Click
102 4. Setup the new rule: Name the new rule: allow_pop3 Select action: Allow Select service: pop3 Select schedule: Always We don’t want any Intrusion detection or traffic shaping for now, so leave these options unchecked. Click Apply
Page 104 - toBranchOffice
104 Settings for Main office 1. Setup policies for the new tunnel, Firewall->Policy: Click Global policy parameters Disable Allow all VPN traffic: internal->VPN, VPN->internal and VPN->VPN Click Apply 2. Now is it possible to create policies for the VPN interfaces. Select from toBranchOf...
Page 105 - Windows XP client and PPTP server; Settings for the Windows XP client; next
Windows XP client and PPTP server Settings for the Windows XP client 1. Open the control panel (Start button -> Control panel). 2. If you are using the Category view, click on the Network and Internet Connections icon. Then click Create a connection to the network on your workplace and continue t...
Page 106 - Select; Connect to the network at my workplace; and click
106 5. Select Connect to the network at my workplace and click Next
Page 107 - Virtual Private Network connection
6. Select Virtual Private Network connection and click Next
Page 108 - Name the connection; MainOffice
108 7. Name the connection MainOffice and click Next
Page 109 - Do not dial the initial connection
8. Select Do not dial the initial connection and click Next
Page 111 - Type user name; HomeUser; and password
11. Type user name HomeUser and password 1234567890 (Note! You should use a password that is hard to guess) 12. Click Properties
Page 112 - Select the; Networking tab; and change; Type of VPN; to; PPTP VPN; OK; Connect; to establish the connection to the Main office
112 13. Select the Networking tab and change Type of VPN to PPTP VPN . Click OK . All settings needed for the XP client is now done. When we have set up the server on the firewall you can click Connect to establish the connection to the Main office
Page 114 - Settings for the Main office
114 Leave static client IP empty (could also be set to eg 192.168.1.200. If no IP is set here the IP pool from the PPTP server settings are used). Click Apply 6. Click Activate and wait for the firewall to restart. This example will allow all traffic from the client to the main office network. To ge...
Page 115 - Windows XP client and L2TP server; In step 13, change the; L2TP IPsec VPN
Windows XP client and L2TP server The Windows XP client to L2TP server setup is quite similar to the PPTP setup above. Settings for the Windows XP client To setup a L2TP connection from Windows XP to the Main office firewall, you can follow the steps in the PPTP guide above for the client side. The ...
Page 116 - Security; tab and click; IPsec Settings; , type the key and click
116 2. Select the Security tab and click IPsec Settings 3. Check Use pre-shared key for authentication , type the key and click OK
Page 119 - Content filtering; To enable content filtering, follow these steps:; Edit global URL; * in this list. This will allow for example; Edit global; in this
Content filtering To enable content filtering, follow these steps: 1. Update the content filtering settings, Firewall->Content Filtering : Select what content that should be filtered out. ActiveX, Java applets, JavaScript/VBScript and cookies can be blocked or filtered out. Note that some web pag...
Page 120 - TCP
120 2. Make sure the http-outbound service exists and is using the HTTP ALG, Firewall->Services : Find the http-outbound service in the list and click Edit . If there is no service with that name you will have to create one by clicking Add new at the bottom of the list. TCP / UDP Service should b...
Page 123 - Intrusion detection and prevention; connected to the DMZ interface on the firewall.; Configured mappings
Intrusion detection and prevention Intrusion detection and prevention can be enabled for both policies and port mappings. In this example we are using a port mapping. The policy setup is quite similar. In this example a mail server with IP 192.168.2.4 and a web server with IP 192.168.2.5 is connecte...
Page 126 - Traffic shaping; Limit bandwidth to a service; allow; Limit bandwidth to one or more IP addresses
126 Traffic shaping In these examples we assume that the WAN port of the firewall is connected to Internet with an up and downstream bandwidth of 2 mbps. Limit bandwidth to a service To limit bandwidth a service (in this case FTP) can use, follow these steps: 1. Create a new policy rule. Under Firew...
Page 127 - Guarantee bandwidth to a service
Now all FTP traffic from 192.168.1.125 on the LAN network will be limited to 400kbit/s in both directions. If more than one IP is required, a comma-separated list or a network can be entered (eg 192.168.1.125, 192.168.1.126 or 192.168.1.0/24 ). Guarantee bandwidth to a service To set up traffic shap...
Page 129 - Appendixes; Appendix A: ICMP Types and Codes
Appendixes Appendix A: ICMP Types and Codes The Internet Control Message Protocol (ICMP) has many messages that are identified by a “type” field; many of these ICMP types have a "code" field. Here we list the types with their assigned code fields. Type Name Code Description Reference 0 Echo ...
Page 131 - Appendix B: Common IP Protocol Numbers
Appendix B: Common IP Protocol Numbers These are some of the more common IP Protocols, for all follow the link after the table. Decimal Keyword Description Reference 1 ICMP Internet Control Message RFC792 2 IGMP Internet Group Management RFC1112 3 GGP Gateway-to-Gateway RFC823 4 IP IP in IP (encapsu...
Page 132 - LIMITED WARRANTY; Limited Hardware Warranty:; Product Type; Product (excluding power supplies and fans); Limited Software Warranty:; D-Link warrants that the software portion of the product (“Software”); What You Must Do For Warranty Service:
132 LIMITED WARRANTY D-Link provides this limited warranty for its product only to the person or entity who originally purchased the product from D-Link or its authorized reseller or distributor. Limited Hardware Warranty: D-Link warrants that the hardware portion of the D-Link products described be...
Page 133 - TO THE MAXIMUM EXTENT PERMITTED BY LAW, D-LINK IS NOT
Registration Card. The Registration Card provided at the back of this manual must be completed and returned to an Authorized D-Link Service Office for each D-Link product within ninety (90) days after the product is purchased and/or licensed. The addresses/telephone/fax list of the nearest Authorize...
Page 134 - GOVERNING LAW; Wichtige Sicherheitshinweise
134 PRODUCT RETURNED TO D-LINK FOR WARRANTY SERVICE) RESULTING FROM THE USE OF THE PRODUCT, RELATING TO WARRANTY SERVICE, OR ARISING OUT OF ANY BREACH OF THIS LIMITED WARRANTY, EVEN IF D-LINK HAS BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES. THE SOLE REMEDY FOR A BREACH OF THE FOREGOING LIMITED W...
Page 135 - Trademarks; Copyright; Copyright Statement
Somit stellen Sie die Betriebssicherheit des Gerätes sicher. 18. Zum Netzanschluß dieses Gerätes ist eine geprüfte Leitung zu verwenden, Für einen Nennstrom bis 6A und einem Gerätegewicht gr ßer 3kg ist eine Leitung nicht leichter als H05VV-F, 3G, 0.75mm2 einzusetzen. Trademarks Copyright . 2002 D-L...
Page 136 - VCCI Warning
136 -Consult the dealer or an experienced radio/ TV technician for help. VCCI Warning
Page 137 - Offices
Offices AUSTRALIA D-LINK AUSTRALIA 1 Giffnock Ave,North Ryde, NSW 2113, Australia TEL: 61-2-8899-1800 FAX: 61-2-8899-1868 TOLL FREE: 1800-177-100 (Australia), 0800-900900 (New Zealand) E-MAIL: [email protected], [email protected] URL: www.dlink.com.au BENELUX D-LINK BENELUX Fellenoord 130, 5611 Z...