Planet Technology Router XRT-401E User Manual
Have a look at the manual Planet Technology Router XRT-401E User Manual online for free. It’s possible to download the document as PDF or print. UserManuals.tech offer 8 Planet Technology manuals and user’s guides for free. Share the user manual or guide on Facebook, Twitter or Google+.
36 Example: Special Applications If you need to run applications that require multiple connections, then specify the port (outbound) normally associated with that application in the Trigger Port field. Then select the protocol type (TCP or UDP) and enter the public ports associated with the trigger port to open them up for inbound traffic. Example: ID Trigger Port Trigger Type Public Port Public Type Comment 1 28800 UDP 2300-2400, 47624 TCP MSN Game Zone 2 6112 UDP 6112 UDP Battle.net In the example above, when a user trigger’s port 28800 (outbound) for MSN Game Zone then the router will allow incoming packets for ports 2300-2400 and 47624 to be directed to that user. Note: Only one LAN client can use a particular special application at a time. 3.4.3 Port Forwarding The Port Forwarding allows you to re-direct a particular range of service port numbers (from the Internet/WAN Ports) to a particular LAN IP address. It helps you to host some servers behind the router NAT firewall.
37 Parameter Description Server IP This is the private IP of the server behind the NAT firewall. Note: You need to give your LAN PC clients a fixed/static IP address for Port Forwarding to work properly. Mapping Ports The range of ports to be forward to the private IP. Type This is the protocol type to be forwarded. You can choose to forward “TCP” or “UDP” packets only or select “both” to forward both “TCP” and “UDP” packets. Comment The description of this setting. Enable To enable the rule of Port Forwarding 3.4.4 ALG Settings You can select applications that need “Application Layer Gateway” to support. Parameters Default Description Enable You can select to enable “Application Layer Gateway” of an application and then the router will let that application correctly pass though the NAT gateway.
38 3.4.5 DMZ If you have a local client PC that cannot run an Internet application (e.g. Games) properly from behind the NAT firewall, then you can open the client up to unrestricted two-way Internet access by defining a DMZ Host. The DMZ function allows you to re-direct all packets going to your WAN port IP address to a particular IP address in your LAN. The difference between the virtual server and the DMZ function is that the virtual server re-directs a particular service/Internet application (e.g. FTP, websites) to a particular LAN client/server, whereas DMZ re-directs all packets (regardless of services) going to your WAN IP address to a particular LAN client/server. Parameters Description Enable Enable/disable DMZ Public IP Address The IP address of the WAN port or any other Public IP addresses given to you by your ISP IP Address of Virtual DMZ Input the IP address of a particular host in your LAN that will receive all the packets originally going to the WAN port/Public IP address above. Action Press to add DMZ rule. 3.5 Firewall XRT-401E provides extensive firewall protection by restricting connection parameters, thus limiting the risk of hacker attack, and defending against a wide array of common Internet attacks. Parameters Description 2.5.1 Firewall Options XRT-401Es firewall can block common hacker attacks and can log the attack activities. 2.5.2 Client Filtering Client Filtering allows you to specify which hosts users can or cannot access to certain Internet applications by IP address.
39 2.5.3 URL Filtering URL Filtering allow you to specify which URLs can not be accessed by users. 2.5.4 MAC Control MAC Control allows you to specify which hosts users can or cannot access to Internet by MAC address. 3.5.1 Firewall Options XRT-401Es firewall can block common hacker attacks, including Denial of Service, Ping of Death, Port Scan and Sync Flood. If Internet attacks occur the router can log the events.
40 Parameters Description Firewall Options Enable Hacker Attack Protect Select it to enable Firewall Options function. Discard Ping From WAN The router’s WAN port will not respond to any Ping requests Unallow to Ping the Gateway The router’s LAN port will not respond to any Ping requests Drop Port Scan Packets Protection the router from Port Scan. Allow to Scan Security Port (113) Select to allow Identification Protocol (Port 113) to be scanned. Discard NetBIOS Packets Select to not allow NetBIOS protocol to pass through router. Accept Fragment Packets Select to allow Fragment Packets passing through. Send ICMP packets when error Select to allow sending ICMP error packets to the node who send out the wrong packets.. Advanced settings Hacker Attack Patterns IP Spoofing Protection the router from IP Spoofing attack. Smurf Attack Protection the router from Smurf Attack attack. Ping of Death Protection the router from Ping of Death attack. Land Attack Protection the router from Land Attack attack. Snork Attack Protection the router from Snork Attack attack. UDP Port Loop Protection the router from UDP Port Loop attack. Sync Flood Protection the router from Sync Flood attack. Short Packet Protection the router from Short Packet attack. 3.5.2 Client Filtering You can filter Internet access for local clients based on IP addresses, application types, (i.e., HTTP port), and time of day.
41 Parameters Description Enable Client Filter Select to enable “Client Filtering” function. IP Enter the IP address range that you wish to apply this rule. Port You can assign the specific port ranges. The router will block clients from accessing Internet services that use these ports. Type This allows you to select UDP, TCP or both protocols that you want to block. Block Time Select router will block the access forever. Select router will block the access according to the time schedule. Day Select a certain days in the week to block the access.
42 Time Select a certain time in a day that you want to block. Comment The description of this setting. Enable To enable the rule of Client Filtering 3.5.3 URL Filtering You can block access to some Web sites from particular PCs by entering a full URL address or just keyword of the Web site. Parameters Description Enable URL Blocking Enable/disable URL Blocking IP Enter the IP address range that you wish to apply this rule. URL filter string You can enter the full URL address or the keyword of the web site you want to block. Enable To enable the rule of URL Filtering. 3.5.4 MAC Control You can filter Internet access for local clients based on MAC Address.
43 Parameters Description MAC Address Control MAC Address Control Check “Enabled” to enable MAC Filtering. Select Filter out or only accept the following MAC address connects to Internet. Configure MAC Address MAC Address Fill in or “MAC Address” and “Comment” of the PC, or select the MAC Address from “Action”, and then click “Add”. 3.6 Routing This section allows you to set XRT-401E’s static route and check the current routing table. The routing is only for internal routing using, so you do not need to disable NAT function.
44 Parameters Description Destination LAN IP, Subnet Mask Specify the destination LAN IP where the packets will be routing to. Gateway Specify the other gateway IP that will route the packets to the destination. 3.7 UPnP With UPnP, all PCs in you Intranet will discover this router automatically. So you do not have to do any configuration for your PC and can access the Internet through this router easily. Parameters Description Enable UPnP After you enable the UPnP feature, all client systems that support UPnP, like Windows XP, can discover this router automatically and access the Internet through this router without any configuration. UPnP Port Number Specify the port number for UPnP service using. Advertise Time (60 ~ 1800) When UPnP service is working, router will broadcast a message to LAN that the specific port number has been used in a period of time. The maximum timing is up to 1800 seconds. Subscribe Timeout (60 ~ 1800) When client stops responding UPnP service for a period of time, router will break down the UPnP connection automatically and UPnP service will be in standby mode. The maximum time is up to 1800 seconds.
45 3.8 DDNS DDNS allows you to map the static domain name to a dynamic IP address. You must get an account, password and your static domain name from the DDNS service providers. Parameters Description Enable/Disable Enable/Disable the DDNS function of this router Host Name Your static domain name that use DDNS. DDNS Server Select a DDNS service provider. User Name The account that your DDNS service provider assigned to you. Password The password you set for the DDNS service account above. DDNS Retry Time To set up the time schedule to refresh DDNS setting.