Planet Technology Router XRT-401D User Manual
Have a look at the manual Planet Technology Router XRT-401D User Manual online for free. It’s possible to download the document as PDF or print. UserManuals.tech offer 8 Planet Technology manuals and user’s guides for free. Share the user manual or guide on Facebook, Twitter or Google+.
36 Remove Virtual Server If you want to remove some Virtual Server settings from the Current Virtual Server Table, select the Virtual Server settings you want to remove in the table and then click Delete Selected. If you want remove all Virtual Server settings from the table, just click Delete All button. Click Reset will clear your current selections. Click at the bottom of the screen to save the above configurations. You can now configure other advance sections or start using the router (with the advance settings in place) 3.4.3 Special Applications Some applications require multiple connections, such as Internet games, video conferencing, Internet telephony and others. In this section you can configure the router to support multiple connections for these types of applications. Parameters Description Enable Trigger Port Enable the Special Application function. Trigger Port This is the out going (Outbound) range of port numbers for this particular application Trigger Type Select whether the outbound port protocol is “TCP”, “UDP” or both.
37 Public Port Enter the In-coming (Inbound) port or port range for this type of application (e.g. 2300-2400, 47624) Note: Individual port numbers are separated by a comma (e.g. 47624, 5775, 6541 etc.). To input a port range use a “dash” to separate the two port number range (e.g. 2300-2400) Public Type Select the Inbound port protocol type: “TCP”, “UDP” or both Comment The description of this setting. Popular applications This section lists the more popular applications that require multiple connections. Select an application from the Popular Applications selection. Once you have selected an application, click the Add button. This will automatically copy the Port Trigger information required for this popular application in into the input fields. Add Special Application Fill in the Trigger Port, Trigger Type”, “Public Port”, Public Type, Public Port and Comment of the setting to be added and then click Add. Then this Special Application setting will be added into the Current Trigger-Port Table below. If you find any typo before adding it and want to retype again, just click Clear and the fields will be cleared. If you want to add a popular application, select one “Popular Application” and then click “Add”. Remove Special Application If you want to remove some Special Application settings from the Current Trigger-Port Table, select the Special Application settings you want to remove in the table and then click Delete Selected. If you want remove all Special Application settings from the table, just click Delete All button. Click Reset will clear your current selections. Click at the bottom of the screen to save the above configurations. You can now configure other advance sections or start using the router (with the advance settings in place) Example: Special Applications If you need to run applications that require multiple connections, then specify the port (outbound) normally associated with that application in the Trigger Port field. Then select the protocol type (TCP or UDP) and enter the public ports associated with the trigger port to open them up for inbound traffic. Example: ID Trigger Port Trigger Type Public Port Public Type Comment 1 28800 UDP 2300-2400, 47624 TCP MSN Game Zone 2 6112 UDP 6112 UDP Battle.net In the example above, when a user trigger’s port 28800 (outbound) for MSN Game Zone then the
38 router will allow incoming packets for ports 2300-2400 and 47624 to be directed to that user. Note: Only one LAN client can use a particular special application at a time. 3.4.4 ALG Settings You can select applications that need “Application Layer Gateway” to support. Parameters Default Description Enable You can select to enable “Application Layer Gateway” of an application and then the router will let that application correctly pass though the NAT gateway. Click at the bottom of the screen to save the above configurations. You can now configure other advance sections or start using the router (with the advance settings in place) 3.5 Firewall XRT-401D provides extensive firewall protection by restricting connection parameters, thus limiting the risk of hacker attack, and defending against a wide array of common Internet attacks. However, for applications that require unrestricted access to the Internet, you can configure a specific client/server as a Demilitarized Zone (DMZ). Note: To enable the Firewall settings select Enable and click Apply
39 Parameters Description 2.5.1 Access Control Access Control allows you to specify which hosts users can or cannot have access to certain Internet applications 2.5.2 URL Blocking URL Blocking allow you to specify which URLs can not be accessed by users. 2.5.3 DoS XRT-401Ds firewall can block common hacker attacks and can log the attack activities. 2.5.4 DMZ The DMZ function allows you to re-direct all packets going to your WAN port IP address to a particular IP address in your LAN. Click on one of the firewall selections and proceed to the manual’s relevant sub-section 3.5.1 Access Control If you want to restrict users from accessing certain Internet applications/services (e.g. Internet websites, email, FTP etc.), then this is the place to set that configuration. Access Control allows users to define the traffic type permitted in your LAN. You can control which PC client can have access to these services.
40 Parameters Description Filter client PCs by IP Fill “IP Filtering Table” to filter PC clients by IP. Add PC You can click Add PC to add an access control rule for users by IP addresses. Remove PC If you want to remove some PC from the IP Filtering Table, select the PC you want to remove in the table and then click Delete Selected. If you want remove all PCs from the table, just click Delete All button. Filter client PC by MAC address Check “Enable MAC Filtering” to enable MAC Filtering. Add PC Fill in “Client PC MAC Address” and “Comment” of the PC that is allowed to access the Internet, and then click “Add”. If you find any typo before adding it and want to retype again, just click Reset and the fields will be cleared. Remove PC If you want to remove some PC from the MAC Filtering Table, select the PC you want to remove in the table and then click Delete Selected. If you want remove all PCs from the table, just click Delete All button. If you want to clear the selection and re-select again, just click “Reset”. You can now configure other advance sections or start using the router (with the advance settings in place)
41 Add PC Parameters Description Client PC Description The description for this client PC rule. Client PC IP Addresses Enter the IP address range that you wish to apply this Access Control rule. This is the user’s IP address(es) that you wish to setup an Access Control rule. You can select a range of users simply by inputting the starting users’ IP address and the last user’s IP address in the appropriate boxes. If you want to select only one user then input the user’s IP address in both boxes. Note: You need to give your LAN PC clients a fixed/static IP address for the Access Control rule to work properly.
42 Client PC Service You can block the clients from accessing some Internet services by checking the services you want to block. Protocol This allows you to select UDP, TCP or both protocol type you want to block. Port Range You can assign up to five port ranges. The router will block clients from accessing Internet services that use these ports. Apply Changes Click “Apply Changes” to save the setting. Reset Click “Reset” to clear all fields. Click at the bottom of the screen to save the above configurations. You can now configure other advance sections or start using the router (with the advance settings in place) 3.5.2 URL Blocking You can block access to some Web sites from particular PCs by entering a full URL address or just keyword of the Web site. Parameters Description Enable URL Blocking Enable/disable URL Blocking Add URL Keyword Fill in “URL/Keyword” and then click “Add”. You can enter the full URL address or the keyword of the web site you want to block. If you find any typo before adding it and want to retype again, just click Reset and the field will be cleared. Remove URL Keyword If you want to remove some URL keyword from the Current URL Blocking Table, select the URL keyword you want to remove in the table and then click Delete
43 Selected. If you want remove all URL keyword from the table, just click Delete All button. If you want to clear the selection and re-select again, just click “Reset”. You can now configure other advance sections or start using the router (with the advance settings in place) 3.5.3 Denial of Service (DoS) XRT-401Ds firewall can block common hacker attacks, including Denial of Service, Ping of Death, Port Scan and Sync Flood. If Internet attacks occur the router can log the events. Parameters Description Intrusion Detection Feature Ping of Death Protections from Ping of Death attack Discard Ping From WAN The router’s WAN port will not respond to any Ping requests Port Scan Protection the router from Port Scan. Sync Flood Protection the router from Sync Flood attack. Click at the bottom of the screen to save the above configurations. You can now configure other advance sections or start using the router (with the advance settings in place)
44 3.5.4 DMZ If you have a local client PC that cannot run an Internet application (e.g. Games) properly from behind the NAT firewall, then you can open the client up to unrestricted two-way Internet access by defining a DMZ Host. The DMZ function allows you to re-direct all packets going to your WAN port IP address to a particular IP address in your LAN. The difference between the virtual server and the DMZ function is that the virtual server re-directs a particular service/Internet application (e.g. FTP, websites) to a particular LAN client/server, whereas DMZ re-directs all packets (regardless of services) going to your WAN IP address to a particular LAN client/server. Parameters Description Enable DMZ Enable/disable DMZ Note: If there is a conflict between the Virtual Server and the DMZ setting, then Virtual Server function will have priority over the DMZ function. Public IP Address The IP address of the WAN port or any other Public IP addresses given to you by your ISP Client PC IP Address Input the IP address of a particular host in your LAN that will receive all the packets originally going to the WAN port/Public IP address above Note: You need to give your LAN PC clients a fixed/static IP address for DMZ to work properly. You can now configure other advance sections or start using the router (with the advance settings in place)
45 Chapter 4 Status The Status section allows you to monitor the current status of your router. You can use the Status page to monitor: the connection status of XRT-401Ds WAN/LAN interfaces, the current firmware and hardware version numbers, any illegal attempts to access your network, and information on all DHCP client PCs currently connected to your network. Parameters Description 4.1 Status and Information Shows the router’s system information 4.2 Internet Connection View XRT-401D’s current Internet connection status and other related information 4.3 Device Status View XRT-401D’s current setting status 4.4 Security Log View any attempts that have been made to illegally gain access to your network. 4.5 DHCP Client Table View your LAN clients information that is currently linked to XRT- 401Ds DHCP server 4.6 Statistics Display the network packet statistics Select one of the above six Status selections and proceed to the manual’s relevant sub-section. 4.1 Status and Information The Status and Information section allows you to view the router’s system information