TRENDnet TEW-671BR manual Firewall, Enable, Demilitarized Zone DMZ

Page 32

7. Firewall

7.1. Enable

The Broadband router provides extensive firewall protection by restricting connection parameters, thus limiting the risk of hacker attacks, and defending against a wide array of common Internet attacks. However, for applications that require unrestricted access to the Internet, you can configure a specific client/server as a Demilitarized Zone (DMZ).

7.2. Advanced

If you are using some VPN access for your work or other purpose, you can enable the options here to pass the VPN packets correctly. These options are enabled by default, the router is not a VPN server or client, it only pass through the packets.

Note: For VPN connections, it might require to open some ports when you run your PC behind a router. For port information, please refer to each VPN software’s help site.

7.3. Demilitarized Zone (DMZ)

If you have a client PC that cannot run an Internet application (e.g. Games) properly from behind the NAT firewall, then you can open up the firewall restrictions to unrestricted two-way Internet access by defining a DMZ Host. The DMZ function allows you to re-direct all packets going to your WAN port IP address to a particular IP address in your LAN. The difference between the virtual server and the DMZ function is that the virtual server re-directs a particular service/Internet application (e.g. FTP, websites) to a particular LAN client/server, whereas DMZ re-directs all packets (regardless of services) going to your WAN IP address to a particular LAN client/server.

29

Image 32
Contents Page Table of Content Tools Setup Introduction Wireless Performance Considerations Package Contents Product LayoutLAN & WAN InstallationSystem Requirements Login to TEW-671BR System StatusLAN Dhcp ServerDhcp Schedule Event LogMonitor Invalid WAN Connection WizardValid WAN Connection Wlan Setups Internet Dynamic IP Static IPPPPoE Pptp Wireless 2.4GHz & 5GHz Basic4G Band Mode WDS Advanced Security Enable 802.1x Authentication WEP EncryptionWPA Pre-Shared Key Encryption WPA-Radius Encryption Remove an address from the list FilterAdding an address into the list WPS Wi-Fi Protected Setup Client List Isolation Demilitarized Zone DMZ EnableFirewall Denial of Service DoS Remove PC MAC Address MAC FilterAdd PC MAC Address Remove PC IP Address IP FilterAdd PC IP Address Remove URL Keyword URL FilterAdd URL Keyword Port Mapping AdvancedNetwork Address Translation NAT Remove Port Mapping Port Forwarding Virtual ServerAdd Port Mapping Add Port Forwarding Remove Port ForwardingPort Triggering Special Applications Add Port TriggeringApplication Layer Gateway ALG Remove Port TriggeringUpnp Quality of Service QoS Priority Queue TypeBandwidth Allocation Routing Remote management Tools SetupPassword Time DdnsPower Savings DiagnosisBackup FirmwareRestart Appendix a FCC Interference Statement Appendix B IC Interference StatementFederal Communication Commission Interference Statement Industry Canada statementLimited Warranty PWP05202009v2