Vigor2910 Dual-WAN Security Router User’s Guide
 Table of Contents
 100
 Application and Examples 189
 Trouble Shooting 221
Page
 LED Indicators and Connectors
Web Configuration Buttons Explanation
 Connector Explanation
For Vigor2910
LED Explanation
 Wlan
For Vigor2910G
 Isdn
For Vigor2910i
 FXS1/FXS2
For Vigor2910V
 For Vigor2910VG
 For Vigor2910VGi
 Hardware Installation
 Open Start-Settings- Printer and Faxes
Printer Installation
 Vigor2910 Series User’s Guide
 Vigor2910 Series User’s Guide
 Vigor2910 Series User’s Guide
 Vigor2910 Series User’s Guide
 Vigor2910 Series User’s Guide
 Changing Password
Configuring Basic Settings
 Vigor2910 Series User’s Guide
 Quick Start Wizard
 PPPoE
 Vigor2910 Series User’s Guide
 Pptp
 Static IP
 4 L2TP
 Dhcp
 Online Status
 Displays the IP address of the default gateway
Online status for Dhcp
GW IP
 Saving Configuration
 Basics of Internet Protocol IP Network
WAN
What are Public IP Address and Private IP Address
Get Your Public IP Address from ISP
 Network Connection by 3G USB Modem
General Setup
 Physical Mode
Enable
Display Name
Physical Type
 Active Mode
Load Balance Mode
 Access Mode
Internet Access
Index
Details
 Details Page for PPPoE
 Ipcp
 Details Page for Static or Dynamic IP
 Keep WAN
Settings
Connection
RIP Protocol
 Address
DNS Server IP
 Details Page for PPTP/L2TP
 PPP Setup
Assignment
MethodIPCP
 Details Page for PPP
Load-Balance Policy
 WAN
 Interface Src IP Start
Binding WAN
 Basics of LAN
LAN
 What is Routing Information Protocol RIP
What is Static Route
What are Virtual LANs and Rate Control
 Subnet
1st IP Address 1st Subnet Mask For IP Routing Usage
 Configuration
Dhcp Server
Relay Agent 1st subnet/2nd subnet Specify which subnet that
 DNS Server
Static Route
 Destination Address
Add Static Routes to Private and Public Networks
Status
Viewing Routing Table
 Vigor2910 Series User’s Guide
 Bind IP to MAC
 Port Redirection
NAT
 Specific service, select Range
 Public Port
DMZ Host
Private IP
Private Port
 WAN1
 Choose PC
IP DMZ Host
 Comment
Open Ports
WAN Interface
Local IP Address
 WAN IP
Enable Open Ports
Local Computer
Start Port
 Set to Factory Default Clear all profiles
Objects and Groups
IP Object
 Start IP Address
Address Type
End IP Address
Subnet Mask
 IP Group
Available IP Objects
Selected IP Objects
 Service Type Object
 Service Type Group
 CSM Profile
 FirewallEdit Filter SetEdit Filter Rule
Pages of FirewallGeneral Setup
 Firewall
Basics for Firewall
Firewall Facilities
 Stateful Packet Inspection SPI
IP Filters
 Content Security Management CSM
Denial of Service DoS Defense
Content Filtering
 Web Filtering
 Call Filter
Filter Setup
Data Filter
Filter
 Filter Rule
Check to enable
Move Up/Down
Next Filter Set
 Direction
Service Type
 Filter only
Fragments
 Configured in Objects and GroupsCSM Profiles selected
Content Management
Example
Branch to other Filter
 Vigor2910 Series User’s Guide
 DoS Defense
 Block Land
Block IP options
Block Smurf
Block trace router
 Reject this kind of packets
Block Unknown
 Control
URL Content Filter
White List pass those
Matching keyword
 Exe, .com, .scr, .pif, .bas, .bat, .inf, .reg
Zip, rar, .arj, .ace, .cab, .sit
Inside to outside world to protect the local users privacy
Files downloading from web pages. Accordingly, files with
 Web Content Filter
 Sessions Limit
Bandwidth Management
 Bandwidth Limit
 Quality of Service
TX limit
RX limit
 General Setup for WAN Interface
 Vigor2910 Series User’s Guide
 On Line Statistics
Edit the Class Rule for QoS
 ACT
Check this box to invoke these settings
Rule
DiffServ CodePoint
 Edit the Service Type for Class Rule
 Port Configuration
Service Name
 Applications
Enable the Function and Add a Dynamic DNS Account
Dynamic DNS
Index WAN Interface
 Enable Dynamic
Force Update
Service Provider
Login Name
 Schedule
Set to Factory Default
 Idle Timeout
Enable Schedule Setup
Start Date yyyy-mm-dd
Start Time hhmm
 Server IP Address
Radius
Destination Port
Shared Secret
 UPnP
 Cant work with Firewall Software
Wake On LAN
 Wake by
MAC Address
Wake Up
 VPN and Remote Access
Remote Access Control
PPP General Setup
 PAP
 IPSec General Setup
IKE Authentication Method
IPSec Security Method
 IPSec Peer Identity
 Accept Any Peer ID
Profile Name
 User
Remote Dial-in User
 Isdn
Pptp
L2TP
 Check to enable Callback function -Enables the callback
Medium -Authentication Header AH means data will be
Check to enable callback budget control -By default,
User Name
 LAN to LAN
 Enable this profile
 Enable Ping to Keep Alive is used to handle abnormal
Call Direction
Ping to the IP
 IKE Authentication
PPP Authentication
Profiles set from VPN and Remote AccessIPSec Peer
Medium Authentication Header AH means data will be
 Advanced
 Perfect Forward Secret PFS- The IKE Phase 1 key will be
For i models only
Provide Isdn Number to Remote- In the case that
 Specify Clid or Remote
Allowed Dial-In Type
 VPN Gateway
AccessIPSec Peer Identity
Digital Signature X.509 Check the box of Digital
Callback Budget Unit minutes- Specify the time budget
 From first subnet to remote network, you have to do
Change default route to this VPN tunnel
 VPN Trunk Management
Features of VPN Trunk
 Type on Backup Profile
Field Member1 on Backup
Member2 on Backup
Configured in VPN and Remote Access LAN-to-LAN
 How can you set a VPN Trunk profile?
Time for activating VPN Trunk profile
 General Mode
Backup Mode
Connection Management
 Refresh Seconds
 Certificate Management
Local Certificate
Generate
 View
Import
 Trusted CA Certificate
 Certificate Backup
 Sip userpassword @ host port
VoIP
Calling via SIP Servers
 DialPlan
Phone Book
Peer-to-Peer
 SIP URL
Phone Number
 Loop through
 Prefix Number
Digit Map
 OP Number
SIP Accounts
Min Len
Max Len
 Domain/Realm
Profile
Proxy
Account Name
 SIP Port
Authentication ID
Act as Outbound Proxy
Account Number/Name
 Phone List
Phone Settings
 RTP
Detailed Settings for VoIP 1
 Hotline
Session Timer
Fax Function
Call Forwarding
 Play dial tone only when account registered Check this
Default SIP Account
Default Call Route
Call Waiting
 Region
Settings of Caller ID Type , Dial tone , Ringing tone , Busy
 Caller ID Type
Volume Gain
Misc
Dtmf
 Port
Detailed Settings for Isdn available for VGi model only
 DND Do Not Disturb
Index 1-15 in Schedule Enter the index of schedule
Clir hide caller ID
 Enable VoIP to Isdn Off-Net Calls -Check this box to
Settings of Caller ID Type, Dial tone, Ringing tone, Busy
Play dial tone only when
 Dtmp
Authentication PIN Code
 Disallow VoIP to Isdn Calls with the Following Prefixes
Status
 Isdn
 Country Code
Isdn Port
Own Number
Router
 Cbcp
Dialing to a Single ISP
 Virtual TA
Dialing to Dual ISPs
Fixed IP Address
Fixed IP Address Type the IP address
 Virtual TA User Profiles
Virtual TA Server
 Install a Virtual TA Client
Configure a Virtual TA Client/ Server
User Profile
 MSN Configuration
 Call Control
Dial Delay Interval
Dial Retry
Remote Activation
 High Water Mark
TCP Header Compression
 Wireless LAN
Basic Concepts
Security Overview
 Example
 Below shows the menu items for Wireless LAN
 Ssid
General Settings
 Long Preamble
Hide Ssid
 Security
 WPA
Pre-Shared Key PSK Either 8~63 Ascii characters
WEP
 Access Control
 Click it to save the access control list
Clear All Clean all entries in the MAC address list
12.5 WDS
 Choose the mode for WDS setting. Disable mode will not
 AP Discovery
 Station List
Into Access Contro l
 Wired Vlan
Vlan
Station Rate Control
 Wireless Vlan
P1 P4
VLAN0-3
 Login ID
 How can you wireless client access into Internet?
Disable broadcast
Multicast traffic
 167
 Vlan Cross Setup
 WVLAN0-15
Wireless Rate Control
Upload Rate
Download Rate
 System Status
System Maintenance
 Default Gateway
14.2 TR-069 Setting
DNS
Frequency Domain
 Administrator Password
Configuration Backup
Backup the Configuration
 173
 Syslog/Mail Alert
Restore Configuration
 Authentication
Enable syslog message
Smtp Server
Mail To
 Time and Date
 Management
 Reboot System
 Firmware Upgrade
 Diagnostics
Dial-out Trigger
Refresh Click it to reload
 ARP Cache Table
Routing Table
 NAT Sessions Table
Dhcp Table
Leased Time
Host ID
 Wireless Vlan Online Station Table
Data Flow Monitor
Peer IPPort
 TX rate kbps
Monitor
RX rate kbps
Sessions
 Traffic Graph
 Trace Route
Ping Diagnosis
Ping through
Ping to
 Host/IP Address
 This page is left blank
 Application and Examples
 190
 191
 192
 193
 194
 195
 Settings in VPN Router in the enterprise office
 197
 Settings in the remote host
 199
 QoS Setting Example
 201
 LAN Created by Using NAT
 203
 Calling via SIP Sever
Calling Scenario for VoIP function
CODEC/RTP/DTMF
John calls David
 SIP URL 4321@draytel.org
 Settings for Paulin
Settings for Arnor
Peer-to-Peer Calling
Arnor calls Paulin
 Upgrade Firmware for Your Router
 208
 Request a certificate from a CA server on Windows CA Server
 Go to Certificate Management and choose Local Certificate
 211
 212
 213
 Time and Date to reset current time of the router first
 VPN Trunk Application
Disable VPN Trunk profiles
Change the name of VPN Trunk profiles
Delete VPN Trunk profiles
 Web Page Changes for VPN Trunk
 Examples for VPN Trunk Backup Profile
 218
 None Mode Default Setting
To inquire current ERD setting
Resume Mode
AutoDrop Mode
 ¾ To set AutoDrop
 Checking If the Hardware Status Is OK or Not
Trouble Shooting
 For Windows
 For MacOs
 For MacOs Terminal
Pinging the Router from Your Computer
 225
 Checking If the ISP Settings are OK or Not
For PPPoE Users
For Static/Dynamic IP Users
 Problems for 3G Network Connection
Check if USB LED lights on or off
USB LED lights on but the network connection does not work
 Backing to Factory Default Setting If Necessary
Software Reset
Transmission Rate is not fast enough
 Contacting Your Dealer
Hardware Reset