Zyxel P-312 - Manual

Zyxel P-312

Zyxel P-312 – Manual, read for free online in PDF format. We hope this helps you resolve any issues you may have. If you have further questions, please contact us through the contact form.

1 Page 1
2 Page 2
3 Page 3
4 Page 4
5 Page 5
6 Page 6
7 Page 7
8 Page 8
9 Page 9
10 Page 10
11 Page 11
12 Page 12
13 Page 13
14 Page 14
15 Page 15
16 Page 16
17 Page 17
18 Page 18
19 Page 19
20 Page 20
21 Page 21
22 Page 22
23 Page 23
24 Page 24
25 Page 25
26 Page 26
27 Page 27
28 Page 28
29 Page 29
30 Page 30
31 Page 31
32 Page 32
33 Page 33
34 Page 34
35 Page 35
36 Page 36
37 Page 37
38 Page 38
39 Page 39
40 Page 40
41 Page 41
42 Page 42
43 Page 43
44 Page 44
45 Page 45
46 Page 46
47 Page 47
48 Page 48
49 Page 49
50 Page 50
51 Page 51
52 Page 52
53 Page 53
54 Page 54
55 Page 55
56 Page 56
57 Page 57
58 Page 58
59 Page 59
60 Page 60
61 Page 61
62 Page 62
63 Page 63
64 Page 64
65 Page 65
66 Page 66
67 Page 67
68 Page 68
69 Page 69
70 Page 70
71 Page 71
72 Page 72
73 Page 73
74 Page 74
75 Page 75
76 Page 76
77 Page 77
78 Page 78
79 Page 79
80 Page 80
81 Page 81
82 Page 82
83 Page 83
84 Page 84
85 Page 85
86 Page 86
87 Page 87
88 Page 88
89 Page 89
90 Page 90
91 Page 91
92 Page 92
93 Page 93
94 Page 94
95 Page 95
96 Page 96
97 Page 97
98 Page 98
99 Page 99
100 Page 100
101 Page 101
102 Page 102
103 Page 103
104 Page 104
105 Page 105
106 Page 106
107 Page 107
108 Page 108
109 Page 109
110 Page 110
111 Page 111
112 Page 112
113 Page 113
114 Page 114
115 Page 115
116 Page 116
117 Page 117
118 Page 118
119 Page 119
120 Page 120
121 Page 121
122 Page 122
123 Page 123
124 Page 124
125 Page 125
126 Page 126
127 Page 127
128 Page 128
129 Page 129
130 Page 130
131 Page 131
132 Page 132
133 Page 133
134 Page 134
135 Page 135
136 Page 136
137 Page 137
138 Page 138
139 Page 139
140 Page 140
141 Page 141
142 Page 142
143 Page 143
144 Page 144
145 Page 145
146 Page 146
147 Page 147
148 Page 148
149 Page 149
150 Page 150
151 Page 151
152 Page 152
153 Page 153
154 Page 154
155 Page 155
156 Page 156
157 Page 157
158 Page 158
159 Page 159
160 Page 160
161 Page 161
162 Page 162
163 Page 163
164 Page 164
165 Page 165
166 Page 166
167 Page 167
168 Page 168
169 Page 169
170 Page 170
171 Page 171
172 Page 172
173 Page 173
174 Page 174
175 Page 175
176 Page 176
177 Page 177
178 Page 178
179 Page 179
180 Page 180
181 Page 181
182 Page 182
183 Page 183
184 Page 184
185 Page 185
186 Page 186
187 Page 187
188 Page 188
189 Page 189
190 Page 190
191 Page 191
192 Page 192
193 Page 193
194 Page 194
195 Page 195
196 Page 196
197 Page 197
198 Page 198
199 Page 199
200 Page 200
201 Page 201
202 Page 202
203 Page 203
204 Page 204
205 Page 205
206 Page 206
207 Page 207
208 Page 208
209 Page 209
210 Page 210
211 Page 211
212 Page 212
213 Page 213
214 Page 214
215 Page 215
216 Page 216
217 Page 217
218 Page 218
219 Page 219
220 Page 220
221 Page 221
222 Page 222
223 Page 223
224 Page 224
225 Page 225
226 Page 226
227 Page 227
228 Page 228
229 Page 229
230 Page 230
231 Page 231
232 Page 232
233 Page 233
234 Page 234
235 Page 235
236 Page 236
237 Page 237
238 Page 238
239 Page 239
240 Page 240
241 Page 241
242 Page 242
243 Page 243
244 Page 244
245 Page 245
246 Page 246
247 Page 247
248 Page 248
249 Page 249
250 Page 250
251 Page 251
252 Page 252
253 Page 253
254 Page 254
Page: / 254

Table of Contents:

  • Page 2 – Broadband Security Gateway; Copyright; Disclaimer
  • Page 3 – Federal Communications Commission (FCC) Interference Statement; Notice 1
  • Page 4 – Information for Canadian Users; Caution
  • Page 5 – Declaration of Conformity; ZyXEL Communications Corp; is in conformity with; Standard; Standard Item; Version
  • Page 7 – ZyXEL Limited Warranty; Note; Please register your Prestige (fast, easy online registration at
  • Page 8 – Customer Support; Prestige Model and serial number.
  • Page 9 – Table of Contents; Chapter 1
  • Page 16 – List of Figures
  • Page 23 – List Of Tables
  • Page 27 – Preface; About Your Router; Multiple office/department connections via access devices.; About This User's Manual; such as Remote Node Setup IP Static routes and NAT.
  • Page 28 – Related Documentation; The SMT menu titles and labels are in; Bold Times; font. The choices of a menu item are in; Bold Arial; ENTER
  • Page 29 – Getting Started; Prestige
  • Page 31 – The Prestige 312 Broadband Security Gateway; The following are the essential features of the Prestige 312.; Firewall
  • Page 33 – Logging and Tracing; The Prestige has the following features:; Upgrade Prestige Firmware via LAN; The firmware of the Prestige 312 can be upgraded via the LAN.; Embedded FTP and TFTP Servers; Applications for Prestige 312; Broadband Internet Access via Cable or xDSL Modem; Secure Internet Access via Cable
  • Page 34 – Secure Internet Access via DSL
  • Page 35 – Chapter 2; Front Panel LEDs and Back Panel Ports; Front Panel; The following table describes the LED functions:; LED functions; LEDs
  • Page 36 – Prestige 312 Rear Panel and Connections
  • Page 37 – OR; Connect the power adapter to the port labeled; Installation; A computer with an Ethernet NIC (Network Interface Card) installed.
  • Page 38 – Power Up Your Prestige; Enter; Initial Screen; The login screen appears after you press [
  • Page 39 – Password Screen; Navigating the SMT Interface; Main Menu Commands; Operation
  • Page 40 – Menu; After you enter the password, the SMT displays the; System Management Terminal Interface Summary; Main Menu Summary; Menu Title
  • Page 41 – Changing the System Password; Enter 23 in the Main Menu to open; Enter your existing password and press
  • Page 42 – Setup; DNS; NetMeeting; DYNDNS Wildcard; Menu 1 – General Setup
  • Page 43 – General Setup Menu Field; To configure Dynamic DNS, go to; and press select; Yes; in the; Edit Dynamic; Pressing; Menu 1.1– Configure Dynamic DNS
  • Page 44 – Configure Dynamic DNS Menu Fields; This section describes how to configure the WAN using
  • Page 45 – Menu 2 – WAN Setup; or upload a different rom file.; WAN Setup Menu Fields; This section describes how to configure the LAN using
  • Page 46 – Menu 3.1 – LAN Port Filter Setup
  • Page 47 – Chapter 3; LAN; not
  • Page 48 – IP
  • Page 49 – Configuration; You can configure the Prestige as; None; LAN, or else the workstation must be manually configured.; IP Pool Setup; fields in; Example of network properties for LAN servers with fixed IP#:; Multicast; a group
  • Page 50 – to disable IP Multicasting on these; Alias; Physical Network; From the Main Menu, enter 3
  • Page 52 – LAN DHCP Setup Menu Fields
  • Page 53 – Edit IP Alias
  • Page 54 – Access; PPPoE; Encapsulation; You must choose the; is for a dial-up connection using PPPoE. If you choose; Ethernet; in; Menu 4 – Internet Access Setup (Ethernet)
  • Page 55 – Internet Access Setup Menu Fields
  • Page 56 – PPTP
  • Page 58 – Basic Setup Complete; to operate on your network; See
  • Page 59 – Advanced Applications
  • Page 60 – Chapter 4; This chapter shows you how to configure a remote node.; Remote Node Profile, Menu 11.3 - Remote Node Network Layer Options; Remote Node Profile
  • Page 62 – to; Menu 11.1 Remote Node Profile for PPPoE Encapsulation
  • Page 63 – Allocated Budget; Idle Timeout; If you change the
  • Page 64 – Remote Node Profile for PPTP Encapsulation
  • Page 65 – Edit IP; field in; to open; Remote Node Network Layer Options
  • Page 68 – Remote Node Filter
  • Page 69 – Remote Node Filter (Ethernet Encapsulation)
  • Page 70 – Chapter 5; Example of Static Routing Topology
  • Page 71 – IP Static Route Setup; You configure IP static routes in; `The following table describes the IP Static Route Menu fields.
  • Page 72 – IP Static Route Menu Fields; Field
  • Page 74 – Chapter 6; This chapter discusses how to configure NAT on the Prestige.; Definitions; Inside; Table 6-1 NAT Definitions; Term
  • Page 75 – How NAT Works
  • Page 76 – The following table summarizes these types.; Table 6-2 NAT Mapping Types; Type; and; Server; for a detailed description of the NAT set for SUA.; Full Feature; NAT support to map global IP addresses to local IP addresses of
  • Page 77 – SUA Only; see section; NAT Application; Menus
  • Page 78 – Applying NAT for Internet Access; This figure shows how you apply NAT to the remote node in Menu 11.1.
  • Page 79 – NAT; Menu 15 NAT Setup; in menu 4 or 11.3, the SMT will use Set 1, which supports all; for; Menu 15.1 – Address Mapping Sets
  • Page 80 – Menu 15.1 Address Mapping Sets; SUA Address Mapping Rules; The following table explains the fields in this screen.
  • Page 81 – Action; Select Rule; field means that this is a required field and you must enter a
  • Page 82 – Ordering Your Rules
  • Page 83 – Selecting; Edit; field and then selecting a rule brings up the following menu,; Address Mapping Rule; The following table describes the fields in this screen.
  • Page 84 – Menu 15.2 – NAT Server Sets; is used to configure these servers. If you’re using; with either; Service Type
  • Page 85 – Multiple Servers Behind NAT
  • Page 86 – Menu 15.2 – NAT Server Setup; Services
  • Page 87 – NAT Example 1; From Menu 4 shown above, simply choose the; option from the; The; read only option from; Network Address Translation
  • Page 88 – Example 2 – Internet Access with an Inside Server; NAT Example 2
  • Page 90 – Start IP
  • Page 92 – Example 4 –NAT Unfriendly Application Programs; mapping as port numbers do; No Overload
  • Page 94 – Advanced Management; Transferring Files and Telnet.
  • Page 96 – Chapter 7; Filtering; the following figure.; Outgoing Packet Filtering Process
  • Page 97 – The Filter Structure of the Prestige; for the
  • Page 98 – Execute; Filter Set; Filter Rule Process
  • Page 99 – Configuring a Filter Set; Filter Set Configuration; Summary
  • Page 100 – NetBIOS_WAN Filter Rules Summary
  • Page 101 – Abbreviations Used in the Filter Rules Summary Menu
  • Page 102 – Abbreviations Used If Filter Type Is IP; Abbreviations Used If Filter Type Is GEN; Abbreviation
  • Page 103 – TCP/IP Filter Rule Menu Fields
  • Page 105 – The following diagram illustrates the logic flow of an IP filter.
  • Page 106 – Executing an IP Filter
  • Page 108 – Generic Filter Rule Menu Fields
  • Page 109 – Filter; see Figure; Telnet Filter Example
  • Page 111 – Example Filter Rules Summary – Menu 21.1.3; Filter Types and NAT; Generic Filter
  • Page 112 – Protocol and Device Filter Sets; Firewall configuration is discussed in; Applying a Filter and Factory Defaults; traffic; protocol; field under; Input Filter Sets
  • Page 113 – Filtering LAN Traffic; protocol filters; Output; Call
  • Page 114 – Chapter 8; SNMP; from the Main Menu to open
  • Page 115 – SNMP Configuration Menu Fields
  • Page 116 – Chapter 9
  • Page 117 – Status; System Maintenance - Status
  • Page 118 – System Maintenance - Status Menu Fields
  • Page 119 – System Information and Console Port Speed; Menu 24 – System Maintenance; Menu 24.2 - System Information and Console Port Speed; From this Menu you have two choices as shown in the next figure:; Menu 24.2 – System Information and Console Port Speed; Information
  • Page 120 – Fields in System Maintenance; Menu 24.2.2 – System Maintenance – Change
  • Page 121 – From Menu 24, select option 3 to open; Examples of Error and Information Messages; Syslog; and Accounting
  • Page 122 – System Maintenance Menu Syslog Parameters
  • Page 123 – Packet triggered
  • Page 125 – Packet; in hex format. An example is shown; Call-Triggering Packet Example
  • Page 126 – DHCP; IP Address Assignment
  • Page 127 – System Maintenance Menu Diagnostic; Number
  • Page 128 – Transferring Files; firmware and a new configuration file.; Filename conventions
  • Page 129 – Filename Conventions; Backup Configuration; Option 5 from; allows you to backup the current Prestige configuration to
  • Page 130 – Restore Configuration; - Restore Configuration; atur
  • Page 131 – Uploading Router Configuration File; atlc
  • Page 132 – TFTP File Transfer; Menu 24 – System; sys stdio 0
  • Page 133 – Third Party TFTP Clients –General fields; Host; Binary; Abort; You have disabled Telnet service in Menu 24.11.
  • Page 134 – FTP File Transfer; You see the following screen when you telnet into Menu 24.7.2.
  • Page 135 – Using the FTP command from the DOS Prompt; open
  • Page 136 – FTP Session Example; Third Party FTP Clients –General fields
  • Page 138 – System Maintenance & Information; Command Interpreter Mode; from; System Maintenance; prompt. Type “exit” to return to the SMT main menu when finished.; Command Mode in Menu 24
  • Page 139 – Call Control Support; Management; Maintenance - Call Control
  • Page 140 – Budget Management; This is the second option in; Call History
  • Page 141 – Call History Fields; Time and Date Setting
  • Page 142 – System Maintenance – Time and Date Setting
  • Page 143 – Remote Management Setup
  • Page 144 – Option to Enter Debug Mode
  • Page 145 – Boot Module Commands
  • Page 146 – Telnet Configuration and Capabilities; About Telnet Configuration; Telnet Configuration on a TCP/IP Network; Telnet Under NAT
  • Page 147 – Telnet Under the Firewall
  • Page 148 – Firewall and Content Filters
  • Page 149 – P312 Broadband Security Gateway; What is a Firewall; This chapter gives some background information on firewalls.; Types of Firewalls
  • Page 150 – Introduction to ZyXEL’s Firewall
  • Page 151 – Prestige Firewall Application; Denial of Service
  • Page 152 – Common IP Ports; There are four types of DoS attacks:
  • Page 153 – SYN Flood
  • Page 154 – Smurf Attack; Stateful Inspection; saving the
  • Page 155 – Stateful Inspection; The packet travels from the firewall's LAN to the WAN.
  • Page 157 – Guidelines For Enhancing Security With Your Firewall; Change the default password on the SMT and Web Configurator.
  • Page 161 – Introducing the Prestige Firewall; some background information on firewalls.; Menu 21 - Filter Set and Firewall Configuration.
  • Page 162 – Menu 21.2 – Firewall Setup; Maintenance - UNIX Syslog
  • Page 163 – ICMP Echo; MESSAGE; Legal SMTP Commands
  • Page 164 – Traceroute
  • Page 165 – View Firewall Log; The Big Picture – Filtering, Firewall and NAT
  • Page 166 – Big Picture - Filtering, Firewall and NAT; Packet Filtering Vs Firewall
  • Page 167 – When To Use Filtering; To block/allow LAN packets by their MAC address.; When To Use The Firewall; To prevent DoS attacks and prevent hackers cracking your network.
  • Page 169 – Introducing the Prestige Web Configurator; Web Configurator Login and Welcome Screens; Login screen as seen in Netscape; You have an SMT console session running.
  • Page 170 – Prestige Web Configurator Welcome Screen; Enabling the Firewall
  • Page 171 – Enabling the Firewall; screen
  • Page 172 – To; field and schedule times for sending alerts in the; Alert Timer; . You can also choose not to create a log for a rule in
  • Page 174 – SMTP Error Messages
  • Page 176 – TCP Maximum Incomplete And Blocking Time
  • Page 177 – Blocking Time
  • Page 178 – Attack Alert
  • Page 181 – Creating Custom Rules; Allow access to a Web server to everyone but competitors.; Rule Logic Overview; Is the intent of the rule to forward or block traffic?
  • Page 183 – Connection Direction; LAN to WAN Traffic
  • Page 184 – WAN to LAN Traffic; Services Supported; Rule Config
  • Page 185 – Services Supported
  • Page 186 – Click on; to bring up the following screen. This screen is a summary of the; Firewall Rules Summary – First Screen
  • Page 188 – button from the screen above to display the
  • Page 189 – Creating/Editing A Firewall Rule
  • Page 190 – SrcAdd
  • Page 191 – Adding/Editing Source & Destination Addresses
  • Page 192 – Apply; Cancel; Help; Click on either
  • Page 193 – Timeout Screen
  • Page 194 – Timeout Menu
  • Page 195 – . For further information on these services, please read; Custom Ports; to bring up the following screen.; Custom Ports; The next table describes the fields in this screen.
  • Page 197 – Creating/Editing A Custom Port
  • Page 199 – Logs; to bring up the next screen. Firewall logs may also be viewed in; and the old logs are lost.; Log Screen
  • Page 203 – Example Firewall Rules; for a; tab, then check the; Firewall Enabled; see the Appendix
  • Page 204 – Activate The Firewall; Now we configure our
  • Page 205 – Example 1 – E-Mail Screen; Figure
  • Page 206 – Example 1 – Configuring A Rule; Click; DestAdd
  • Page 208 – Example 1 - Rule Summary Screen; Example 2 – Small Office With Mail, FTP and Web Servers
  • Page 209 – Configure the E-Mail screen as shown in example 1; and configure the screen as follows.
  • Page 210 – Configuring A POP Custom Port; Source Address; Single
  • Page 211 – Example 2 - Local Network Rule 1 Configuration
  • Page 212 – Example 2 - Local Network Rule Summary; Destination Address
  • Page 213 – Example 2 - Internet to Local Network Rule Summary
  • Page 214 – Custom Port for Syslog
  • Page 215 – Syslog Rule Configuration
  • Page 216 – Example 3 Rule Summary; to save your
  • Page 217 – Content Filtering; Restrict Web Features
  • Page 218 – Domain Name; field. The Prestige looks at the; Content Filtering Using the Web Configurator; Main Menu
  • Page 219 – Figure 20-1 Content Filtering Screen
  • Page 220 – Troubleshooting, Appendices, Glossary and Index; a Glossary of Terms and an Index.
  • Page 222 – Troubleshooting; problem. Please see our supporting disk for further information.; Problems Starting Up the Prestige; Troubleshooting the Start-Up of your Prestige; Problem
  • Page 223 – Problems with the LAN Interface; Troubleshooting the LAN Interface; Problems with the WAN interface; Troubleshooting the WAN interface
  • Page 224 – Problems with Internet Access; Troubleshooting Internet Access; Problems with the Firewall
  • Page 226 – Appendix A; PPPoE in Action; PPPoE offers the following benefits:; Traditional Dial-up Scenario
  • Page 227 – How PPPoE Works
  • Page 228 – Appendix B; PPTP and the Prestige; . In the case above as; PPTP Protocol Overview
  • Page 229 – Control & PPP connections; Call ID
  • Page 230 – Appendix C
  • Page 231 – Appendix D; Be sure to read and follow all warning notices and instructions.
  • Page 232 – Appendix E; Command Interpreter Mode; from the Main Menu to go into CLI
  • Page 237 – Appendix F; AC Power Adapter Specifications
  • Page 239 – Glossary of Terms
  • Page 250 – Index
Loading the manual

Prestige 312

Broadband Security Gateway

User’s Guide

Version 3.20

November 2000

"Loading the manual" means you need to wait until the file loads and becomes available for online reading. Some manuals are very large, and the time they take to appear depends on your internet speed.

Summary

Page 2 - Broadband Security Gateway; Copyright; Disclaimer

P312 Broadband Security Gateway ii Copyright Prestige 312 Broadband Security Gateway Copyright Copyright © 2000 by ZyXEL Communications Corporation. The contents of this publication may not be reproduced in any part or as a whole, transcribed, stored in aretrieval system, translated into any languag...

Page 3 - Federal Communications Commission (FCC) Interference Statement; Notice 1

P312 Broadband Security Gateway FCC Statement iii Federal Communications Commission (FCC) Interference Statement This device complies with Part 15 of FCC rules. Operation is subject to the following two conditions: This device may not cause harmful interference. This device must accept any interfere...

Page 4 - Information for Canadian Users; Caution

P312 Broadband Security Gateway iv Canadian Users Information for Canadian Users The Industry Canada label identifies certified equipment. This certification means that the equipment meetscertain telecommunications network protective, operation, and safety requirements. The Industry Canadadoes not g...

Other Zyxel Models

All Zyxel Other