Vigor2910 Dual-WAN Security Router User’s Guide
 Table of Contents
 100
 Application and Examples 189
 Trouble Shooting 221
Page
 Web Configuration Buttons Explanation
LED Indicators and Connectors
 LED Explanation
Connector Explanation
For Vigor2910
 For Vigor2910G
Wlan
 For Vigor2910i
Isdn
 For Vigor2910V
FXS1/FXS2
 For Vigor2910VG
 For Vigor2910VGi
 Hardware Installation
 Printer Installation
Open Start-Settings- Printer and Faxes
 Vigor2910 Series User’s Guide
 Vigor2910 Series User’s Guide
 Vigor2910 Series User’s Guide
 Vigor2910 Series User’s Guide
 Vigor2910 Series User’s Guide
 Configuring Basic Settings
Changing Password
 Vigor2910 Series User’s Guide
 Quick Start Wizard
 PPPoE
 Vigor2910 Series User’s Guide
 Pptp
 Static IP
 4 L2TP
 Dhcp
 Online Status
 GW IP
Displays the IP address of the default gateway
Online status for Dhcp
 Saving Configuration
 WAN
Basics of Internet Protocol IP Network
What are Public IP Address and Private IP Address
Get Your Public IP Address from ISP
 General Setup
Network Connection by 3G USB Modem
 Enable
Physical Mode
Display Name
Physical Type
 Load Balance Mode
Active Mode
 Internet Access
Access Mode
Index
Details
 Details Page for PPPoE
 Ipcp
 Details Page for Static or Dynamic IP
 Settings
Keep WAN
Connection
RIP Protocol
 DNS Server IP
Address
 Details Page for PPTP/L2TP
 MethodIPCP
PPP Setup
Assignment
 Load-Balance Policy
Details Page for PPP
 WAN
 Binding WAN
Interface Src IP Start
 LAN
Basics of LAN
 What are Virtual LANs and Rate Control
What is Routing Information Protocol RIP
What is Static Route
 1st IP Address 1st Subnet Mask For IP Routing Usage
Subnet
 Relay Agent 1st subnet/2nd subnet Specify which subnet that
Configuration
Dhcp Server
 Static Route
DNS Server
 Add Static Routes to Private and Public Networks
Destination Address
Status
Viewing Routing Table
 Vigor2910 Series User’s Guide
 Bind IP to MAC
 NAT
Port Redirection
 Specific service, select Range
 DMZ Host
Public Port
Private IP
Private Port
 WAN1
 IP DMZ Host
Choose PC
 Open Ports
Comment
WAN Interface
Local IP Address
 Enable Open Ports
WAN IP
Local Computer
Start Port
 IP Object
Set to Factory Default Clear all profiles
Objects and Groups
 Address Type
Start IP Address
End IP Address
Subnet Mask
 Selected IP Objects
IP Group
Available IP Objects
 Service Type Object
 Service Type Group
 CSM Profile
 Pages of FirewallGeneral Setup
FirewallEdit Filter SetEdit Filter Rule
 Firewall Facilities
Firewall
Basics for Firewall
 IP Filters
Stateful Packet Inspection SPI
 Content Filtering
Content Security Management CSM
Denial of Service DoS Defense
 Web Filtering
 Filter Setup
Call Filter
Data Filter
Filter
 Check to enable
Filter Rule
Move Up/Down
Next Filter Set
 Service Type
Direction
 Fragments
Filter only
 Content Management
Configured in Objects and GroupsCSM Profiles selected
Example
Branch to other Filter
 Vigor2910 Series User’s Guide
 DoS Defense
 Block IP options
Block Land
Block Smurf
Block trace router
 Block Unknown
Reject this kind of packets
 URL Content Filter
Control
White List pass those
Matching keyword
 Zip, rar, .arj, .ace, .cab, .sit
Exe, .com, .scr, .pif, .bas, .bat, .inf, .reg
Inside to outside world to protect the local users privacy
Files downloading from web pages. Accordingly, files with
 Web Content Filter
 Bandwidth Management
Sessions Limit
 Bandwidth Limit
 RX limit
Quality of Service
TX limit
 General Setup for WAN Interface
 Vigor2910 Series User’s Guide
 Edit the Class Rule for QoS
On Line Statistics
 Check this box to invoke these settings
ACT
Rule
DiffServ CodePoint
 Edit the Service Type for Class Rule
 Service Name
Port Configuration
 Enable the Function and Add a Dynamic DNS Account
Applications
Dynamic DNS
Index WAN Interface
 Force Update
Enable Dynamic
Service Provider
Login Name
 Set to Factory Default
Schedule
 Enable Schedule Setup
Idle Timeout
Start Date yyyy-mm-dd
Start Time hhmm
 Radius
Server IP Address
Destination Port
Shared Secret
 UPnP
 Wake On LAN
Cant work with Firewall Software
 Wake Up
Wake by
MAC Address
 PPP General Setup
VPN and Remote Access
Remote Access Control
 PAP
 IPSec Security Method
IPSec General Setup
IKE Authentication Method
 IPSec Peer Identity
 Profile Name
Accept Any Peer ID
 Remote Dial-in User
User
 L2TP
Isdn
Pptp
 Medium -Authentication Header AH means data will be
Check to enable Callback function -Enables the callback
Check to enable callback budget control -By default,
User Name
 LAN to LAN
 Enable this profile
 Ping to the IP
Enable Ping to Keep Alive is used to handle abnormal
Call Direction
 PPP Authentication
IKE Authentication
Profiles set from VPN and Remote AccessIPSec Peer
Medium Authentication Header AH means data will be
 Advanced
 Provide Isdn Number to Remote- In the case that
Perfect Forward Secret PFS- The IKE Phase 1 key will be
For i models only
 Allowed Dial-In Type
Specify Clid or Remote
 AccessIPSec Peer Identity
VPN Gateway
Digital Signature X.509 Check the box of Digital
Callback Budget Unit minutes- Specify the time budget
 Change default route to this VPN tunnel
From first subnet to remote network, you have to do
 Features of VPN Trunk
VPN Trunk Management
 Field Member1 on Backup
Type on Backup Profile
Member2 on Backup
Configured in VPN and Remote Access LAN-to-LAN
 Time for activating VPN Trunk profile
How can you set a VPN Trunk profile?
 Connection Management
General Mode
Backup Mode
 Refresh Seconds
 Generate
Certificate Management
Local Certificate
 Import
View
 Trusted CA Certificate
 Certificate Backup
 Calling via SIP Servers
Sip userpassword @ host port
VoIP
 Peer-to-Peer
DialPlan
Phone Book
 Phone Number
SIP URL
 Loop through
 Digit Map
Prefix Number
 SIP Accounts
OP Number
Min Len
Max Len
 Profile
Domain/Realm
Proxy
Account Name
 Authentication ID
SIP Port
Act as Outbound Proxy
Account Number/Name
 Phone Settings
Phone List
 Detailed Settings for VoIP 1
RTP
 Session Timer
Hotline
Fax Function
Call Forwarding
 Default SIP Account
Play dial tone only when account registered Check this
Default Call Route
Call Waiting
 Settings of Caller ID Type , Dial tone , Ringing tone , Busy
Region
 Volume Gain
Caller ID Type
Misc
Dtmf
 Detailed Settings for Isdn available for VGi model only
Port
 Clir hide caller ID
DND Do Not Disturb
Index 1-15 in Schedule Enter the index of schedule
 Play dial tone only when
Enable VoIP to Isdn Off-Net Calls -Check this box to
Settings of Caller ID Type, Dial tone, Ringing tone, Busy
 Authentication PIN Code
Dtmp
 Status
Disallow VoIP to Isdn Calls with the Following Prefixes
 Isdn
 Isdn Port
Country Code
Own Number
Router
 Dialing to a Single ISP
Cbcp
 Dialing to Dual ISPs
Virtual TA
Fixed IP Address
Fixed IP Address Type the IP address
 Virtual TA Server
Virtual TA User Profiles
 User Profile
Install a Virtual TA Client
Configure a Virtual TA Client/ Server
 MSN Configuration
 Dial Delay Interval
Call Control
Dial Retry
Remote Activation
 TCP Header Compression
High Water Mark
 Security Overview
Wireless LAN
Basic Concepts
 Example
 Below shows the menu items for Wireless LAN
 General Settings
Ssid
 Hide Ssid
Long Preamble
 Security
 WEP
WPA
Pre-Shared Key PSK Either 8~63 Ascii characters
 Access Control
 12.5 WDS
Click it to save the access control list
Clear All Clean all entries in the MAC address list
 Choose the mode for WDS setting. Disable mode will not
 AP Discovery
 Into Access Contro l
Station List
 Station Rate Control
Wired Vlan
Vlan
 VLAN0-3
Wireless Vlan
P1 P4
 Login ID
 Multicast traffic
How can you wireless client access into Internet?
Disable broadcast
 167
 Vlan Cross Setup
 Wireless Rate Control
WVLAN0-15
Upload Rate
Download Rate
 System Maintenance
System Status
 14.2 TR-069 Setting
Default Gateway
DNS
Frequency Domain
 Backup the Configuration
Administrator Password
Configuration Backup
 173
 Restore Configuration
Syslog/Mail Alert
 Enable syslog message
Authentication
Smtp Server
Mail To
 Time and Date
 Management
 Reboot System
 Firmware Upgrade
 Refresh Click it to reload
Diagnostics
Dial-out Trigger
 Routing Table
ARP Cache Table
 Dhcp Table
NAT Sessions Table
Leased Time
Host ID
 Peer IPPort
Wireless Vlan Online Station Table
Data Flow Monitor
 Monitor
TX rate kbps
RX rate kbps
Sessions
 Traffic Graph
 Ping Diagnosis
Trace Route
Ping through
Ping to
 Host/IP Address
 This page is left blank
 Application and Examples
 190
 191
 192
 193
 194
 195
 Settings in VPN Router in the enterprise office
 197
 Settings in the remote host
 199
 QoS Setting Example
 201
 LAN Created by Using NAT
 203
 Calling Scenario for VoIP function
Calling via SIP Sever
CODEC/RTP/DTMF
John calls David
 SIP URL 4321@draytel.org
 Settings for Arnor
Settings for Paulin
Peer-to-Peer Calling
Arnor calls Paulin
 Upgrade Firmware for Your Router
 208
 Request a certificate from a CA server on Windows CA Server
 Go to Certificate Management and choose Local Certificate
 211
 212
 213
 Time and Date to reset current time of the router first
 Disable VPN Trunk profiles
VPN Trunk Application
Change the name of VPN Trunk profiles
Delete VPN Trunk profiles
 Web Page Changes for VPN Trunk
 Examples for VPN Trunk Backup Profile
 218
 To inquire current ERD setting
None Mode Default Setting
Resume Mode
AutoDrop Mode
 ¾ To set AutoDrop
 Trouble Shooting
Checking If the Hardware Status Is OK or Not
 For Windows
 For MacOs
 Pinging the Router from Your Computer
For MacOs Terminal
 225
 For Static/Dynamic IP Users
Checking If the ISP Settings are OK or Not
For PPPoE Users
 USB LED lights on but the network connection does not work
Problems for 3G Network Connection
Check if USB LED lights on or off
 Transmission Rate is not fast enough
Backing to Factory Default Setting If Necessary
Software Reset
 Hardware Reset
Contacting Your Dealer