Vigor2800 Series ADSL2/2+ Security Router User’s Guide
 Table of Contents
 102
 Trouble Shooting 187
Application and Examples 159
 LED Indicators and Connectors
Preface
 For Vigor2800
Connector Explanation
LED Explanation
 For Vigor2800G
P2P
 For Vigor2800i
Isdn
 For Vigor2800Gi
Isdn
 For Vigor2800V
FXS2 & FXS1
 For Vigor2800VG
Wlan
 For Vigor2800VGi
 Hardware Installation
 This page is left blank
 Configuring Basic Settings
Changing Password
 Vigor2800 Series User’s Guide
 Quick Start Wizard
Adjusting Protocol/Encapsulation
VPI
 PPPoE/PPPoA
VCI
 Idle Timeout
Password
Confirm Password
User Name
 Bridged IP
 Routed IP
 Online Status
Online status for PPPoA/PPPoE Online status for Bridge
 IP Address in LAN
Online status for Routed IP Primary DNS
Secondary DNS
TX Packets
 Saving Configuration
 What are Public IP Address and Private IP Address
Internet Access
Basics of Internet Protocol IP Network
Get Your Public IP Address from ISP
 Below shows the menu items for Internet Access
 PPP Authentication Select PAP only or PAP or Chap for
PPP
 Vigor2800 Series User’s Guide
 Ports
 MPoA RFC1483/2684
 Subnet Mask Type in the subnet mask
Data
IP Address Type in the private IP address
Gateway IP Address Type in gateway IP address
 Multi-PVCs
Enable
Type in the value provided by your ISP
 LAN
Basics of LAN
 What is Static Route
What is Routing Information Protocol RIP
What are Virtual LANs and Rate Control
 General Setup
Subnet
 Dhcp Server
Configuration
Relay Agent 1st subnet/2nd subnet Specify which subnet that
 Index
Static Route
DNS Server
Destination Address
 Add Static Routes to Private and Public Networks
 Delete Static Route
 Disable Static Route
NAT
 Service Name
Port Redirection
 Private IP
DMZ Host
Public Port
Private Port
 Choose PC
 Aux. WAN IP
Open Ports
Comment
Local IP Address
 Local Computer
Enable Open Ports
Inactive or Active state
Start Port
 Basics for Firewall
Firewall
Firewall Facilities
 IP Filters
Stateful Packet Inspection SPI
 Denial of Service DoS Defense
Content Filtering
 Web Filtering
 Data Filter
Filter Setup
Call Filter
Log Flag
 Filter Rule
Next Filter Set
 Log
Branch to other Filter
Set
Direction
 Example
 5 P2P Blocking
IM Blocking
Action
 DoS Defense
 Block Smurf
Block IP options
Block Land
Block trace router
 URL Content Filter
Block Unknown
 White List pass those
Prevent web access
Control
Matching keyword
 Inside to outside world to protect the local users privacy
Zip, rar, .arj, .ace, .cab, .sit
Exe, .com, .scr, .pif, .bas, .bat, .inf, .reg
Files downloading from web pages. Accordingly, files with
 Web Content Filter
 Bind IP to MAC
 Bandwidth Management
Limit Session
 Limitation List
Default session limit
Setup
Start IP
 Limit Bandwidth
Default TX limit
Default RX limit
TX limit
 Quality of Service
 Reserved Bandwidth Ratio
Enable the QoS Control
Class Name
Reserved bandwidth to upstream speed and reserved
 Enable UDP Bandwidth
Basic Settings for QoS
Advanced Settings for QoS
On Line Statistics
 SrcEdit It allows you to edit source address information
 DiffServ CodePoint
 Service Type
 Dynamic DNS
Enable the Function and Add a Dynamic DNS Account
Applications
Index WAN Interface Domain Name
 Active Display if this account is active or inactive
Enable Dynamic
Disable the Function and Clear all Dynamic DNS Accounts
Delete a Dynamic DNS Account
 Enable Schedule Setup
Schedule
 Radius
 Shared Secret
Server IP Address
Destination Port
Re-type Shared Secret
 UPnP
 Cant work with Firewall Software
 MAC Address
Wake On LAN
Wake by
Wake Up
 Remote Access Control
VPN and Remote Access
PPP General Setup
 PAP
 IPSec General Setup
 Name
Set to Factory Default
IPSec Peer Identity
Next
 Vigor2800 Series User’s Guide
 Remote User Profiles
User
 Pptp
Isdn
L2TP
 Check to enable callback budget control -By default,
Medium -Authentication Header AH means data will be
Check to enable Callback function -Enables the callback
Callback Function
 LAN to LAN
 Profile Name
Enable this profile
Enable Ping to Keep Alive is used to handle abnormal
Call Direction
 Medium Authentication Header AH means data will be
PPP Authentication
IKE Authentication
L2TP with …
 High ESP-Encapsulating Security Payload- means
3DES without Authentication -Use triple DES encryption
3DES with Authentication- Use triple DES encryption
Advanced
 Provide Isdn Number to Remote- In the case that
Perfect Forward Secret PFS- The IKE Phase 1 key will be
For I models only
Allowed Dial-In Type
 VPN Gateway
Specify Clid or Remote
Digital Signature X.509 Check the box of Digital
 Remote Gateway IP
Callback Budget Unit minutes- Specify the time budget
My WAN IP
Remote Network IP
 Dial
Certificate Management
Connection Management
Refresh Seconds
 Import
Local Certificate
Generate
View
 Trusted CA Certificate
 Vigor2800 Series User’s Guide
 VoIP
Sip userpassword @ host port
Calling via SIP Servers
 Scenario Peer-to-Peer
Concepts of Isdn On-Net and Off-Net for 2800VGi only
Scenario
 DialPlan
Phone Book
 Display Name
Digit Map
Phone Number
SIP URL
 Prefix Number
OP Number
 SIP Accounts
 SIP Port
SIP Ping interval
Register via
Act as Outbound Proxy
 Expiry Time
Authentication ID
Account Number/Name
NAT Traversal Support
 Phone Settings
Phone List
 RTP
 Hotline
Detailed Settings for VoIP 1
Session Timer
Fax Function
 Call Waiting Call Transfer Prefer Codec Default SIP Account
Default Call Route
 Settings of Caller ID Type , Dial tone , Ringing tone , Busy
Region
 Misc
Volume Gain
Caller ID Type
Dtmf
 Detailed Settings for Isdn available for VGi model only
 Clir hide caller ID
DND Do Not Disturb
Play dial tone only when
 110
 Authentication PIN Code
Dtmp
 Disallow VoIP to Isdn Calls with the Following Prefixes
Status
Port
 Isdn
 Own Number
Isdn Port
Country Code
MSN Numbers for the Router
 Dialing to a Single ISP
Cbcp
 Fixed IP Address
Dialing to Dual ISPs
Virtual TA
Fixed IP Address Type the IP address
 117
 Virtual TA Server
User Profile
MSN1/ MSN2/MSN3
 MSN Configuration
 Dial Retry
Dial Delay Interval
Call Control
Remote Activation
 Basic Concepts
Wireless LAN
High Water Mark
 Security Overview
 Below shows the menu items for Wireless LAN
 Mixed 11b+11g+SuperG The radio can support
General Settings
Enable Wireless LAN
Index1-15
 Hide Ssid
Ssid
Channel
Long Preamble
 Security
 Pre-Shared Key PSK Either 8~63 Ascii characters
WPA
WEP
 Access Control
 11.5 WDS
 Choose the mode for WDS setting. Disable mode will not
 AP Discovery
 Into Access Contro l
Station List
 Vlan
Wired Vlan
Station Rate Control
 P1 P4
Wireless Vlan
VLAN0-3
 Login ID
Details
 How can you wireless client access into Internet?
 Vlan Cross Setup
 WVLAN0-15
 Wired Rate Control
Out
 Upload Rate
Wireless Rate Control
Download Rate
 System Maintenance
System Status
 Backup the Configuration
Administrator Password
Configuration Backup
DNS
 143
 Restore Configuration
Syslog/Mail Alert
 Authentication
 Time and Date
 Management
 Reboot System
 Firmware Upgrade
 WAN Connection
Diagnostics
Connection
 Routing Table
Dial-out Trigger
Refresh Click it to reload
 Leased Time
ARP Cache Table
Dhcp Table
Host ID
 NAT Sessions Table
Status
 Adsl Spectrum Analysis
 Ping to
Wireless Vlan Online Station Table
Ping Diagnosis
Run
 Data Flow Monitor
 RX rate kbps
Trace Route
TX rate kbps
Sessions
 158
 Application and Examples
 160
 161
 162
 163
 164
 165
 Settings in VPN Router in the enterprise office
 167
 Settings in the remote host
 169
 QoS Setting Example
 171
 LAN Created by Using NAT
 173
 174
 Calling via SIP Sever
Calling Scenario for VoIP function
CODEC/RTP/DTMF
 SIP URL 4321@draytel.org
 Peer-to-Peer Calling
Settings for Arnor
Settings for Paulin
Arnor calls Paulin
 Upgrade Firmware for Your Router
 179
 Request a certificate from a CA server on Windows CA Server
 Go to Certificate Management and choose Local Certificate
 182
 183
 184
 Time and Date to reset current time of the router first
 186
 Trouble Shooting
Checking If the Hardware Status Is OK or Not
 For Windows
 For MacOs
 Pinging the Router from Your Computer
For MacOs Terminal
 Checking If the ISP Settings are OK or Not
For PPPoE/PPPoA Users
 For MPoA Users
 Hardware Reset
Backing to Factory Default Setting If Necessary
Software Reset
Contacting Your Dealer