HotBrick VPN 800 Manuel utilisateur

Dual WAN Firewall Router
VPN 800 / 2
User’s Guide
HotBrick Network Solutions


HotBrick Network Solutions
i
TABLE OF CONTENTS
1: INTRODUCTION ..............................................................................................................................1
Internet Features ..........................................................................................................................1
Other Features ..............................................................................................................................3
Package Contents ........................................................................................................................4
Physical Details ............................................................................................................................4
2: BASIC SETUP..................................................................................................................................8
Overview........................................................................................................................................8
Procedure......................................................................................................................................8
3: ADVANCED PORT SETUP............................................................................................................18
Overview......................................................................................................................................18
Port Options................................................................................................................................19
Load Balance ..............................................................................................................................20
Advanced PPPoE........................................................................................................................22
Advanced PPTP ..........................................................................................................................24
4: ADVANCED SETUP.......................................................................................................................25
Overview......................................................................................................................................25
Host IP Setup ..............................................................................................................................25
Virtual Server ..............................................................................................................................28
Custom Virtual Server................................................................................................................30
Special Application ....................................................................................................................32
Dynamic DNS ..............................................................................................................................34
Multi DMZ ....................................................................................................................................37
UPnP ............................................................................................................................................39
NAT ..............................................................................................................................................40
Advanced Features ....................................................................................................................42
5: SECURITY MANAGEMENT ……………………………………………………………………………..45
Overview......................................................................................................................................45
Block URL ...................................................................................................................................45
Access Filter ...............................................................................................................................47
Session Limit ..............................................................................................................................49
System Filter Exception……….……………………………………………………………………….50
6: VPN CONFIGURATION …...……………………………………………………………………………..51
Overview......................................................................................................................................51
IPSec Global Setting ..................................................................................................................52
Policy Setup ................................................................................................................................54
7: QOS CONFIGURATION ………………………………………………………………………………….57
Overview ………………………………………………………………………………………………...57
QoS Setup ...................................................................................................................................57
Policy Configuration...................................................................................................................58
8: MANAGEMENT ASSISTANT ........................................................................................................60
Overview......................................................................................................................................60
SNMP ...........................................................................................................................................60
Email Alert...................................................................................................................................61
Syslog..........................................................................................................................................63
Admin Password ........................................................................................................................65
Upgrade Firmware ......................................................................................................................65

HotBrick Network Solutions
ii
9: ADVANCED LAN CONFIGURATION ………………………………………………………………...67
Overview......................................................................................................................................67
Existing DHCP Server ………………………………………………………………………………...67
Routing ........................................................................................................................................67
10: OPERATION AND STATUS .......................................................................................................70
Operation.....................................................................................................................................70
System Status.............................................................................................................................70
WAN Status .................................................................................................................................73
NAT Status ..................................................................................................................................74
APPENDIX A SPECIFICATIONS .......................................................................................................76
APPENDIX B WINDOWS TCP/IP SETUP .........................................................................................77
Overview......................................................................................................................................77
TCP/IP Settings...........................................................................................................................77
APPENDIX C TROUBLESHOOTING.................................................................................................83
Overview......................................................................................................................................83
General Problems.......................................................................................................................83
Internet Access...........................................................................................................................83
Copyright 2004. All Rights Reserved.
Document Version: 1.4
All trademarks and trade names are the properties of their respective owners.

HotBrick Network Solutions
Page 1
1: Introduction
Congratulations on the purchase of your new HotBrick VPN 800/2 Firewall Router. The VPN 800/2
Firewall Router provides Shared Broadband Internet Access and VPN tunnels for LAN users.
Figure 1-1: VPN 800/2 Firewall Router
Internet Features
•Shared Broadband Internet Access
All LAN users can access the Internet through the VPN 800/2 Firewall Router, by sharing one (1)
or two (2) Broadband modems and connections.
•High-Performance Dual Modem Support
The VPN 800/2 Firewall Router has two (2) WAN ports, allowing connection of two (2) Broadband
modems.
This gives twice the bandwidth of a single modem.
Flexible configuration allows each port to use a different type of modem and connection method.
Also, you can determine how the Internet traffic is shared between the 2 modems.
•Supports all common Connection Methods
All popular DSL and Cable Modems and connection methods are supported, including Fixed IP,
Dynamic IP, PPPoE, and PPTP.

HotBrick Network Solutions
Page 2
•PPPoE Session Management
Multiple PPPoE sessions are supported and you can choose to “map” sessions to individual PCs
if desired.
•Multiple IP Address Support
If your ISP allocates you multiple IP addresses, these are also supported and you can “map” IP
addresses to individual PCs if desired.
•Special Applications
This feature allows you to use some non-standard applications, where the port number used for
the response is different to the port number used by the sender.
•Virtual Servers
This feature allows Internet users to access Internet servers on your LAN. For standard servers
such as Web, FTP or E-Mail servers, only the IP address of the server PC is required. You can
also define you own Server types if required.
•Multiple DMZ
A "DMZ" PC will receive incoming connection requests, which would otherwise be blocked. For
each IP address allocated by your ISP, a separate "DMZ" PC can be specified. So if your ISP has
given you multiple IP addresses, you can have multiple “DMZ” PCs. Each “DMZ” PC has
unrestricted 2-way Internet access, providing the ability to run programs that are otherwise
incompatible with NAT routers like the Load Balancer.
•Access Filter
The network Administrator can use the Access Filter to gain fine control over the Internet access
and applications available to LAN users. Five (5) user groups are available, and each group can
have different access rights.
•Block URL
Use this feature to block access to undesirable Web sites by LAN users. You can even have
different settings for different groups of PCs.
•Session Limit
With Session Limit feature, if the numbers of new sessions for system exceed the maximum in
the sampling time, any new session in the system will be drop.
•System Filter Exception
With firewall exception, the packets will not be processed by firewall or NAT module, but be
processed directly by system protocol stack.

HotBrick Network Solutions
Page 3
Other Features
•8-Port Switching Hub
The VPN 800/2 Firewall Router incorporates with 8-port 10 /100BaseT switching hub, making it
easy to create or extend your LAN.
•DHCP Server Support
Dynamic Host Configuration Protocol provides a dynamic IP address to PCs and other devices
upon request. The VPN 800/2 Firewall Router acts as a DHCP Server for devices on your local
LAN.
•Multi Segment LAN Support
LANs containing one or more segments are supported, via the VPN 800/2 Firewall Router's built-
in static routing table.
•ARP proxy
The ARP proxy feature allows you to assign an external (Internet) IP address to the VPN 800/2
Firewall Router's LAN port. This allows Servers on your LAN to have external (Internet) IP
addresses.
•Easy Setup
Use your favorite WEB browser for configuration.
•Remote Management
The VPN 800/2 Firewall Router can be managed from any PC on your LAN. And, if the Internet
connection exists, it can also (optionally) be configured via the Internet.
•Password - protected Configuration
Optional password protection is provided to prevent unauthorized users from modifying the
configuration data and settings.
•HTTP Firmware Upgrade and backup
The web management feature allows you to use HTTP upgrade new firmware and backup
system configuration from local or even from remote site. As long as you enable “Remote
upgrade” and “Remote web-based setup” from Advanced feature web page.
•Email Alert
It will send a warning email to the system administrator, if one of the WAN ports was
disconnected when both WAN ports are enabled.
•Syslog
It can generate real time system information on the web page or a particular machine. It is useful
to monitor the device.
•QoS Configuration.
This function will make some specified packets with higher priority for pass-through. Especially
you use real-time applications like Internet phone, videoconference, etc.
•UPnP
To “Enable” UpnP (Universal Plug & Play), the load balancer will become one of the network
devices. It is useful to discovery and control network devices, such as Internet gateway.

HotBrick Network Solutions
Page 4
Package Contents
The following items should be included:
•The VPN 800/2 Firewall Router Unit
•Power Core.
•Quick Installation Guide
•CD-ROM containing the on-line manual.
If any of the above items are damaged or missing, please contact your dealer immediately.
Physical Details
Front Panel
Operation of the Front Panel LEDs is as follows:
LAN LED
100M (Green)
10M (Yellow)
ON – The corresponding LAN port is using 100BaseT.
OFF – No physical connection.
ON – The corresponding LAN port is using 10BaseT.
OFF – No physical connection.
WAN LED Green : 100M
Yellow: 10M
Flash: Active
Status LED
WAN Status
LAN Status
Green Flash: WAN Active
Yellow: Error
Green Flash: LAN Active
Yellow: Error
Blinking – Data in/out
Reset Button When pressed the reset button around 3 seconds, and release it. The VPN 800/2
Firewall Router will reset to factory default value.

HotBrick Network Solutions
Page 5
Also, some Status and Error conditions are indicated by combinations
of LEDs, as shown below
LED Action Condition
WAN, LAN Status LEDs flash alternatively. Firmware Download in progress.
WAN & LAN LEDs flash concurrently. MAC address not assigned.

HotBrick Network Solutions
Page 6
Rear Panel VPN 800/2 Firewall Router
Figure:1-2: Rear Panel VPN 800/2 Firewall Router
AC power socket Connect the supplied power here.
Default Settings
When the VPN 800/2 Firewall Router has finished booting, all configuration settings will be set to
the factory defaults, including:
•IP Address set to its default value of 192.168.1.1, with a Network Mask of 255.255.255.0
•DHCP Server is enabled
•User Name: admin
•Password cleared (no password)
TFTP Download
This setting should be used only if your VPN 800/2 Firewall Router is unusable, and you wish to
restore it by downloading new firmware. Follow this procedure:
1. Power On the VPN 800/2 Firewall Router.
2. Use the supplied Windows utility or a TFTP client program applies the new firmware. If using the
supplied Windows TFTP program, the screen will look like the following example.
Figure 1-3: Windows TFTP utility VPN F 800/2 Firewall Router
•Enter the name of the firmware upgrade file on your PC, or click the "Browse" button to locate
the file.
•Enter the LAN IP address of the VPN 800/2 Firewall Router in the "Server IP" field.
•Click "Download" to send the file to the VPN 800/2 Firewall Router.
3. When downloading is finished. It should then work normally, using the default settings.
Ce manuel convient aux modèles suivants
1
Table des matières
Autres manuels HotBrick Routeur réseau
Manuels Routeur réseau populaires d'autres marques

NETGEAR
NETGEAR FS526T - Switch Manuel utilisateur

Korenix
Korenix JetNet 5710G Series Manuel utilisateur

Automated Logic
Automated Logic ZN551 Manuel du propriétaire

Cisco
Cisco ASR 1000 Series Manuel de l'opérateur

EnGenius
EnGenius ESR-9710 Manuel utilisateur

Cisco
Cisco 805 Series Instructions d'utilisation et de sécurité













