TP-Link TL-ER6120 manual Attack Defense, Traffic Monitoring, Port Mirror

Page 149

4.3.4.3Attack Defense

Choose the menu FirewallAttack DefenseAttack Defense to load the configuration page. Select the options desired to be enabled as Figure 4-21shows, and then click the <Save> button.

Figure 4-22 Attack Defense

4.3.4.4Traffic Monitoring

1)Port Mirror

Choose the menu NetworkSwitchPort Mirror to load the configuration page. Check the box before Enable Port Mirror and select the Ingress&Egress mode. Select the Port 5 for the Mirroring Port and the Port 3 and the Port 4 for the Mirrored ports. Click the <Save> button to apply.

-144-

Image 149
Contents TL-ER6120 Multi-WAN VPN Router Copyright & Trademarks FCC Statement Contents III Application 128Glossary 161 Hardware Specifications 158159 Package Contents Overview of this Guide Intended ReadersConventions Page Overview of the Router Multi-WAN Ports FeaturesEasy-to-use HardwareFront Panel AppearanceTraffic Control SecurityLEDs Reset buttonStatus Indication Interface DescriptionGrounding Terminal Power SocketRear Panel Status NetworkStatus System ModePage Non-NAT Mode NAT ModeClassic Mode WAN Mode¾ WAN Mode 3 WANStatic IP 3.2 WAN1Connection Type Default GatewayIP Address Subnet Mask¾ Dynamic IP WAN Dynamic IP Following items are displayed on this screenUnicast Get IP Address byUse the following DNS ServerPPPoE WAN PPPoE Following items are displayed on this screen ¾ PPPoE SettingsActive Mode PasswordSettings Service Name¾ PPPoE Status Subnet AddressDownstream Bandwidth L2TP 10 WAN L2TP Following items are displayed on this screen ¾ L2TP SettingsConnections Server IPSecondary Status IP Address Primary DNS Secondary DNS Primary DNS/Secondary DNS Upstream Bandwidth Downstream¾ L2TP Status 11 WAN Pptp Following items are displayed on this screen ¾ Pptp SettingsAccount Name DNS/Secondary DNS Primary¾ Pptp Status BigPond¾ BigPond Settings ¾ BigPond Status 4.1 LAN 4 LANDhcp ¾ Dhcp SettingsDhcp Reservation Dhcp Client¾ List of Reserved Address ¾ Dhcp Reservation5.1 DMZ 5 DMZMode MAC Address¾ DMZ Set the MAC Address for WAN port Set the MAC Address for LAN portSet the MAC Address for DMZ port ¾ MAC Address¾ Statistics SwitchStatistics Port Mirror ¾ Port Mirror ¾ GeneralApplication Example Rate Control¾ Rate Control Port ConfigPort Status ¾ Port Config¾ Port Vlan User GroupPort Vlan Group ¾ Group ConfigUser ¾ List of GroupView ¾ User Config¾ List of User Group Name Select the name of the desired Group1 NAT NAT SetupAdvanced Mapping IP Address One-to-One NATInterface DMZ Forwarding¾ Multi-Nets NAT Multi-Nets NATApplication Example Network Requirements Configuration procedure Protocol Virtual Server¾ Virtual Server Port Triggering ¾ Port Triggering 1.6 ALGTraffic Control Setup¾ ALG 323 ALG¾ Interface Bandwidth UseBandwidth Control Direction GuaranteedGroup Bandwidth Up Limited BandwidthSession Limit Session LimitLoad Balance ConfigurationSession List ¾ Session Limit39 Policy Routing Policy RoutingWAN Link Backup40 Link Backup Following items are displayed on this screen Protocol BackupTiming FailoverStatic Route Routing¾ Protocol ¾ List of ProtocolMetric Description Status ¾ Static RouteApplication Example 43 RIP Following items are displayed on this screen 5.2 RIP¾ List of RIP Route TableIP-MAC Binding FirewallAnti ARP Spoofing ¾ IP-MAC Binding 46 ARP Scanning ARP ScanningARP List Attack Defense¾ General ¾ MAC Filtering MAC FilteringNot sure URL Filtering Access ControlObject ¾ URL Filtering RuleWeb Filtering Access RulesPolicy ¾ Access RulesService Group on3.2.1 Group SourceDestination Priority53 Service ServiceControl Rules App ControlName Dest. PortApplication ¾ Control RulesDatabase VPNIKE Policy 1 IKE¾ IKE Policy 57 IKE Policy Following items are displayed on this screen¾ List of IKE Policy IKE Proposal¾ IKE Proposal 58 IKE Proposal Following items are displayed on this screen¾ List of IKE Proposal IPsecIPsec Policy Policy Name ¾ IPsec PolicyIKE Mode IPsec Proposal Manual ModeIncoming SPI Key-InOutgoing SPI IPsec ProposalKey-Out ¾ List of IPsec Policy IPsec¾ IPsec Proposal ¾ List of IPsec Proposal IPsec SA3.1 L2TP/PPTP Tunnel Protocol Media Tunnel Length of Header Authentication3 L2TP/PPTP ¾ L2TP/PPTP Tunnel VPN-to-InternetHello Interval Page IP Address Pool ¾ List of ConfigurationsIP Pool Remote SubnetPPPoE Server ServicesList of L2TP/PPTP Tunnel ¾ List of IP PoolPPPoE User Isolation GeneralPrimary/Secondary Max SessionsIP Address Pool IP Address Range AccountPool Name Expiration Date ¾ AccountExceptional IP Status MAC Binding MAC Address Session Timeout¾ List of Account ¾ Exceptional IPIP Address Range Description Status BulletinList of Account Enable Logs Enable E-BulletinInterval ¾ E-Bulletin¾ List of E-Bulletin Content Object Effective Time Publisher Description StatusDynamic DNS DynDNS Ddns Service¾ Dyndns Ddns Domain Name¾ No-IP Ddns No-IP¾ List of DynDNS Account ¾ PeanutHull Ddns PeanutHull¾ List of No-IP Account ¾ Comexe Ddns Comexe¾ List of PeanutHull Account ¾ List of Comexe Account UPnPAdmin Setup MaintenanceAdministrator ¾ List of UPnP Mapping¾ Administrator Login ParameterApplication Example Network Requirements Management Factory DefaultsRemote Management ¾ Remote Management¾ Configuration Version RebootExport and Import ¾ ExportLicense Firmware Upgrade¾ Interface Traffic Statistics StatisticsInterface Traffic Statistics Displays the rate for receiving data frames IP Traffic Statistics¾ Advanced WAN Information Interface Displays the interface IP Fragment RxDiagnostics Diagnostics¾ IP Traffic Statistics Sorted by¾ Ping 86 Diagnostics Following items are displayed on this screenDetecting Online Detection¾ Tracert Port Displays the detected WAN port Detection TimeWAN Status Display the detecting results System TimeGet GMT LogsManual Synchronize WithLevel Description Send System LogsNetwork Requirements ApplicationInternet Setting Network Topology ConfigurationsInternet Connection System ModeLink Backup 131 IPsec VPN VPN SettingDPD IPsec Policy IPsec SettingIPsec Proposal WAN WAN1 L2TP/PPTP Tunnel Pptp VPN SettingIP Address Pool Group Network ManagementUser Group View UserApp Control Enable Bandwidth ControlBandwidth Control Rule Interface Bandwidth16 Bandwidth Control Rule Network SecuritySet IP-MAC Binding Entry Manually LAN ARP DefenseScan and import the entries to ARP List Set Attack Defense WAN ARP DefensePort Mirror Attack DefenseTraffic Monitoring Statistics 23 Port MirrorPage CLI ConfigurationPage Connection Properties Settings 149 Mode Accessing Path Prompt Logout or Access the next Interface ModeOnline Help AdminGet Get the ip configuration Command Introduction3 sys Ip-mac1 ip TP-LINK # sys restore TP-LINK # sys import config History TP-LINK user set password Enter old passwordExit Standards PowerPorts Transmission MediumAppendix B FAQ Page Glossary Description Appendix C GlossaryAllows dissimilar communication devices to communicate By the Ieee Glossary Description
Related manuals
Manual 28 pages 33.55 Kb

TL-ER6120 specifications

The TP-Link TL-ER6120 is a robust and versatile gigabit router designed for small to medium-sized businesses, offering high-performance routing capabilities while ensuring secure network management. This device stands out for its user-friendly configuration, affordability, and rich feature set tailored for business needs.

One of the key features of the TL-ER6120 is its advanced routing capabilities. It supports load balancing and failover, ensuring reliable internet connectivity by distributing traffic across multiple WAN ports. This helps to maintain optimal performance even during high-traffic periods. The router can accommodate up to three WAN ports, providing flexibility in terms of connection options and redundancy.

Security is paramount in any business network, and the TL-ER6120 does not disappoint. It includes a robust firewall with stateful packet inspection, preventing unauthorized access and safeguarding sensitive data. The router also supports various VPN protocols, including PPTP, L2TP, and IPSec, enabling secure remote access for employees working from remote locations. This feature is particularly beneficial as remote work becomes more prevalent.

In addition to its security features, the TL-ER6120 offers support for VLAN configuration, allowing businesses to segment their networks for better performance and security. Dynamic Routing Protocols such as RIP v1/v2, and static routing are also supported, ensuring seamless data exchange across different network segments.

Another significant aspect of the TL-ER6120 is its Quality of Service (QoS) functionality. This feature enables users to prioritize bandwidth for critical applications, ensuring that services like VoIP and video conferencing maintain optimal performance. By managing the flow of data, businesses can enhance their operational efficiency.

The TL-ER6120 is equipped with several advanced management features, including a web-based user interface that simplifies network configuration and monitoring. Users can easily manage their network settings, view traffic statistics, and troubleshoot issues without advanced technical knowledge.

In conclusion, the TP-Link TL-ER6120 is an excellent choice for businesses seeking a reliable, feature-rich router. Its combination of security, performance, and ease of use makes it an ideal solution for managing business networks efficiently. Whether for load balancing, secure remote access, or network segmentation, the TL-ER6120 meets diverse business needs with sophistication and reliability.