HotBrick VPN 800 manual

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89

Go to page of

A good user manual

The rules should oblige the seller to give the purchaser an operating instrucion of HotBrick VPN 800, along with an item. The lack of an instruction or false information given to customer shall constitute grounds to apply for a complaint because of nonconformity of goods with the contract. In accordance with the law, a customer can receive an instruction in non-paper form; lately graphic and electronic forms of the manuals, as well as instructional videos have been majorly used. A necessary precondition for this is the unmistakable, legible character of an instruction.

What is an instruction?

The term originates from the Latin word „instructio”, which means organizing. Therefore, in an instruction of HotBrick VPN 800 one could find a process description. An instruction's purpose is to teach, to ease the start-up and an item's use or performance of certain activities. An instruction is a compilation of information about an item/a service, it is a clue.

Unfortunately, only a few customers devote their time to read an instruction of HotBrick VPN 800. A good user manual introduces us to a number of additional functionalities of the purchased item, and also helps us to avoid the formation of most of the defects.

What should a perfect user manual contain?

First and foremost, an user manual of HotBrick VPN 800 should contain:
- informations concerning technical data of HotBrick VPN 800
- name of the manufacturer and a year of construction of the HotBrick VPN 800 item
- rules of operation, control and maintenance of the HotBrick VPN 800 item
- safety signs and mark certificates which confirm compatibility with appropriate standards

Why don't we read the manuals?

Usually it results from the lack of time and certainty about functionalities of purchased items. Unfortunately, networking and start-up of HotBrick VPN 800 alone are not enough. An instruction contains a number of clues concerning respective functionalities, safety rules, maintenance methods (what means should be used), eventual defects of HotBrick VPN 800, and methods of problem resolution. Eventually, when one still can't find the answer to his problems, he will be directed to the HotBrick service. Lately animated manuals and instructional videos are quite popular among customers. These kinds of user manuals are effective; they assure that a customer will familiarize himself with the whole material, and won't skip complicated, technical information of HotBrick VPN 800.

Why one should read the manuals?

It is mostly in the manuals where we will find the details concerning construction and possibility of the HotBrick VPN 800 item, and its use of respective accessory, as well as information concerning all the functions and facilities.

After a successful purchase of an item one should find a moment and get to know with every part of an instruction. Currently the manuals are carefully prearranged and translated, so they could be fully understood by its users. The manuals will serve as an informational aid.

Table of contents for the manual

  • Page 1

    Dual WAN Firewall Router VPN 800 / 2 User’s Guide HotBrick Network Solutions[...]

  • Page 2

    [...]

  • Page 3

    HotBrick Network Solutions i T ABLE OF C ONTENTS 1: INTRODUCTION .............................................................................................................................. 1 Internet Features .............................................................................................................. ............ 1 Other Featur[...]

  • Page 4

    HotBrick Network Solutions ii 9: ADVANCED LAN CONFIGURAT ION ………………………………………………………………...67 Overview ....................................................................................................................... ............... 67 Existing DHCP Server ……………………… …………?[...]

  • Page 5

    HotBrick Network Solutions Page 1 1: Introduction Congratulations on the purchase of your new HotBrick VPN 800/2 Firewall Router. The VPN 800/2 Firewall Router provides Shared Broadband Internet Access and VPN tunnels for LAN users. Figure 1-1: VPN 800/2 Firewall Router Internet Features • Shared Broadband Internet Access All LAN users can access[...]

  • Page 6

    HotBrick Network Solutions Page 2 • PPPoE Session Management Multiple PPPoE sessions are supported and you can choose to “map” sessions to individual PCs if desired. • Multiple IP Address Support If your ISP allocates you multiple IP addresses, these are also supported and you can “map” IP addresses to individual PCs if desired. • Spe[...]

  • Page 7

    HotBrick Network Solutions Page 3 Other Features • 8-Port Switching Hub The VPN 800/2 Firewall Router incorporates with 8-port 10 /100BaseT switching hub, making it easy to create or extend your LAN. • DHCP Server Support D ynamic H ost C onfiguration P rotocol provides a dynamic IP address to PCs and other devices upon request. The VPN 800/2 F[...]

  • Page 8

    HotBrick Network Solutions Page 4 Package Contents The following items should be included: • The VPN 800/2 Firewall Router Unit • Power Core. • Quick Installation Guide • CD-ROM containing the on-line manual. If any of the above items are damaged or missing , please contact your dealer immediately. Physical Details Front Panel Operation of [...]

  • Page 9

    HotBrick Network Solutions Page 5 Also, some Status and Error condit ions are indicated by combinations of LEDs, as shown below LED Action Condition WAN, LAN Status LEDs flash alternatively. Firmware Download in progress. WAN & LAN LEDs flash concurrently. MAC address not assigned.[...]

  • Page 10

    HotBrick Network Solutions Page 6 Rear Panel VPN 800/2 Firewall Router Figure:1-2: Rear Panel VPN 800/2 Firewall Router AC power socket Connect the supplied power here. Default Settings When the VPN 800/2 Firewall Router has finished booting, all configurati on settings will be set to the factory defaults, including: • IP Address set to its defau[...]

  • Page 11

    HotBrick Network Solutions Page 7 Note: The supplied Windows TFTP utility also allows you to perform three (3) other operat ions: • Save the current configuration settings to your PC (use the "Upload" button). • Restore a previously saved configuration file to the VPN 800/2 Firewall Router (use the "Download" button). • VP[...]

  • Page 12

    HotBrick Network Solutions Page 8 2: Basic Setup Overview Basic Setup of your HotBrick VPN 800/2 Firewall Router involves the following steps: 1. Attach the HotBrick VPN 800/2 Firewall Router to one (1) PC, and configure it for your LAN. 2. Install your HotBrick VPN 800/2 Firewall R outer in your LAN, and connect the Broadband Modem or Modems. 3. C[...]

  • Page 13

    HotBrick Network Solutions Page 9 7. Enter admin for the "User Name" and leave the "Password" blank. • The "User Name" is always admin • You can and should set a password, using the following Admin Password screen. No Response? • Is your PC using a Fixed IP address? If so, you must configure your PC to use an IP [...]

  • Page 14

    HotBrick Network Solutions Page 10 9. Select LAN & DHCP from the menu. You will see a screen like the example below. Figure 2-3: LAN & DHCP 10. Ensure these settings are suitable for your LAN: • The default settings are suitable for many situations. • See the following table for details of each setting. 11. Save your data, then go to St[...]

  • Page 15

    HotBrick Network Solutions Page 11 DHCP Server Configuration • DHCP Server Setup - If enabled , the VPN 800/2 Firewall Router will allocate IP Addresses to PCs (DHCP clients) on your LAN when they start up. The default and recommended value is "Enable". (Windows systems, by default, act as DHCP clients. This setting is called Obtain an [...]

  • Page 16

    HotBrick Network Solutions Page 12 2. Installing the HotBrick VPN 800/2 Firewall Router in your LAN 1. Ensure the HotBrick VPN 800/2 Firewall Router and the DSL/Cable modem are powered OFF. Leave the modem or modems connected to their data line. 2. Connect the Broadband modem or modems to the VPN 800/2 Firewall Router. • If using only one (1) Bro[...]

  • Page 17

    HotBrick Network Solutions Page 13 Figure 2-4: Primary Setup Screen VPN 800/2 Firewall Router Settings – Primary Setup Connection Mode Select the appropriate setting: • Enable – Select this if you have connected a broadband modem to this port. • Disable – Select this if there is no broadband modem connected to this port. • Backup – Us[...]

  • Page 18

    HotBrick Network Solutions Page 14 Connection Type Check the data supplied by your ISP, and select the appropriate option. • Static IP – Select this if your ISP has provided a Fixed or Static IP address. Then enter the data into the Address Info fields. • Dynamic IP – Select this if your ISP provides an IP address automatically, when you co[...]

  • Page 19

    HotBrick Network Solutions Page 15 4: Configure PCs on your LAN Overview For each PC, the following may need to be configured: • TCP/IP network settings • Internet Access configuration TCP/IP Settings If using the default VPN 800/2 Firewall Router settings, and the default Windows 95/98/ME/2000/XP TCP/IP settings, no changes need to be made. Ju[...]

  • Page 20

    HotBrick Network Solutions Page 16 6. Select "Connect to the Internet" and click Next . 7. Select "Set up my connection manually" and click Next . 8. Check "Connect using a broadband connection t hat is always on" and click Next . 9. Click Finish to close the New Connection Wizard. Setup is now completed. Accessing AOL[...]

  • Page 21

    HotBrick Network Solutions Page 17 Fixed IP Address By default, most Unix installations use a fixed IP Address. If you wish to continue using a fixed IP Address, make the following changes to your configuration. • Set your Default Gateway to the IP Address of the VPN 800/2 Firewall Router. • Ensure your DNS (Name server) settings are correct. T[...]

  • Page 22

    HotBrick Network Solutions Page 18 3: Advanced Port Setup Overview • Port Options contains some options, which can be set on either or both WAN ports. For most situations, the default values are satisfactory. • Load Balance screen is only functional if you are using both WAN ports. It allows you to determine the proportion of WAN traffic sent t[...]

  • Page 23

    HotBrick Network Solutions Page 19 Settings – Port Options Connection Validation • Health Check – Disable will not do Alive Indicator Check. By default health check is enable. Health checking is performing an ICMP echo request and HTTP packets to the specific destination that could be either: 1. Name or IP Address user specified in the “Ali[...]

  • Page 24

    HotBrick Network Solutions Page 20 Load Balance This screen is only operational if using Internet connections on both WAN ports. Figure 3-2: Load Balance These settings are only functional if using both WAN ports. If using both WAN ports, these settings determine the proportion of traffic sent over each port.[...]

  • Page 25

    HotBrick Network Solutions Page 21 Settings – Load Balance Load Balance Configuration • Enable – Use this to enable your Load Balance settings. Unless this is checked, the other settings on this screen have no effect. • Balance Type – Select the desired option: • Bytes rx+tx – Traffic is measured by Bytes. • Packets rx+tx – Traffi[...]

  • Page 26

    HotBrick Network Solutions Page 22 Advanced PPPoE The screen is required in order to use multiple PPPoE sessions on the same WAN port. It can also be used to manually co nnect or disconnect a PPPoE session. Figure 3-3: Advanced PPPoE Settings – Advanced PPPoE WAN Port PPPoE Session Select the desired Port and Session, then click the "Select&[...]

  • Page 27

    HotBrick Network Solutions Page 23 Action Use the "Connect" and "Disconnect" buttons to establish or t erminate a connection on this session, if required. Connection Status This displays the current connection status for each session.[...]

  • Page 28

    HotBrick Network Solutions Page 24 Advanced PPTP This screen is only useful if using the PPTP connection method. Figure 3-4: Advanced PPTP Settings – Advanced PPTP WAN Port Select the desired Port, and then click the "Select" button. The data for t he selected Port will then be displayed in the WAN IP Account section. WAN IP Account •[...]

  • Page 29

    HotBrick Network Solutions Page 25 4: Advanced Setup Overview The following advanced features are provided. • Host IP Setup • Virtual Servers • Custom Virtual Server • Special Applications • Dynamic DNS • Multi DMZ • Advanced Features • UpnP • NAT Setting This chapter contains details of the configuration and use of each of these [...]

  • Page 30

    HotBrick Network Solutions Page 26 Figure 4: Host IP Setup Settings – Host IP Setup Host Network Identity This section identifies each Host (PC) • Host List – When adding a new Host, ignore this list. To edit an existing entry, select it from the list, and click the "Select" button. The data fields will then be updated with data for[...]

  • Page 31

    HotBrick Network Solutions Page 27 Host Network Binding • Bind WAN port/Session – Select Enable if you wish to associate this PC with a particular PPPoE Session. All traffic for that PC will then use the selected PPPoE port and session. • Binding Method – Suppose your PC is bound to WAN1 port, now you are selecting “Strict Binding”. If [...]

  • Page 32

    HotBrick Network Solutions Page 28 Virtual Servers This feature allows you to make Servers on your LAN accessible to Internet users. Normally, Internet users would not be able to access a server on your LAN because: • Your Server's IP address is only valid on your LAN, not on the Internet. • Attempts to connect to devices on your LAN are b[...]

  • Page 33

    HotBrick Network Solutions Page 29 • This address should be static, rather than dynamic, to make it easier for Internet user s to connect to your Servers. However, you can use the Dynamic DNS feature (explained later in this chapter) to allow users to connect to your Virtual Servers using a URL, instead of an IP Address. e.g. HTTP://my_domain_ na[...]

  • Page 34

    HotBrick Network Solutions Page 30 Custom Virtual Servers This screen allows you to define your own Server types, for situations when the desired Server type is not listed on the Virtual Servers screen. Figure 4-4:Custom Virtual Servers Settings – Custom Virtual Servers Select Custom Server Name Server List If creating a new entry, ignore this li[...]

  • Page 35

    HotBrick Network Solutions Page 31 Each PC must be running the appropriate Server software. • Protocol Type – Select the network protocol used by this sever type. • LAN Port Range – Enter the range of port number used for outgoing traffic from this Server. If only a single port is required, enter it in both fields. • WAN Port Range - – [...]

  • Page 36

    HotBrick Network Solutions Page 32 Special Applications If you use Internet applications which have non-st andard connections or port numbers, you may find that they do not function correctly because they are blocked by the firewall in the Load Balancer . In this case, you can define the application as a "Sp ecial Application" in order to[...]

  • Page 37

    HotBrick Network Solutions Page 33 Special Application Configuration Use this to Enable or Disable this Special Application as required. Enable Name Enter a descriptive name to identify this Special Application. Outgoing Protocol Select the protocol used by this application, when sending data to the remote server or PC. Outgoing Port Range Enter th[...]

  • Page 38

    HotBrick Network Solutions Page 34 Dynamic DNS Dynamic DNS is very useful when combined with the Virtual Server feature. It allows Internet users to connect to your Virtual Servers using a URL, rather than an IP Address. This also solves the problem of having a dynamic IP address. With a dynamic IP address, your IP address may change whenever you c[...]

  • Page 39

    HotBrick Network Solutions Page 35 Figure 4-6: Dynamic DNS Settings – Dynamic DNS Dynamic DNS Service Use this to Enable/Disable the Dynamic DNS feature, and select the required service provider. • Disable – Dynamic DNS is not used. • DNS4BIZ Hotbrick Premium – It provides reliability for normal business requirement. • DNS4BIZ Hotbrick [...]

  • Page 40

    HotBrick Network Solutions Page 36 WAN Port Binding • Select the WAN port on which the Dynamic DNS is used. • The "Force Update" button will update your record on the Dynamic DNS Server immediately. Additional Standard Client or 3322 Settings These options are available if using the standard client. • Enable Wildcard – If selected[...]

  • Page 41

    HotBrick Network Solutions Page 37 Multi DMZ This feature allows each WAN port IP address to be associated with one (1) computer on your LAN. All outgoing traffic from that PC will be associated with that WAN port IP address. Any traffic sent to that IP address will be forwarded to the specified PC, allowing unrestrict ed 2-way communication betwee[...]

  • Page 42

    HotBrick Network Solutions Page 38 Settings – Multi DMZ Enable Use this to enable or disable the DMZ setting, as required. Name Enter a name to assist you to remember this setting. This name has no effect on the operation. For Static IP Public IP address Enter the WAN port (Internet) IP address you wish to associate to a PC. This IP address must [...]

  • Page 43

    HotBrick Network Solutions Page 39 UPnP With UPNP (Universal Plug & Play) function, it can easily setup and configure an entire network, enable discovery and control of networked devices and services. Figure 4-8: UPnP Settings – UPnP UPnP Option If you Enable UPnP, then this two wan router will become one of the entire local network. You can [...]

  • Page 44

    HotBrick Network Solutions Page 40 NAT Setting NAT (Network Address Translation) is the technology which allows one (1) WAN (Internet) IP address to be used by many LAN users. Figure 4-9: NAT[...]

  • Page 45

    HotBrick Network Solutions Page 41 Settings – NAT NAT Configuration • NAT Routing – You can enable or disable NAT through the check box. If you disable NAT checkbox, it will act as a bridge or Static Router. Most features will be unavailable. • TCP Timeout – Enter the desired value to use on both WAN ports. The default is 300. • UDP Tim[...]

  • Page 46

    HotBrick Network Solutions Page 42 Advanced Features This screen allows you to change some advanced settings: • Remote Access Configuration – This feature allows you to manage the VPN 800/2 Firewall Router via the Internet. You can restrict access to a specified IP address or address range. • External Filters Configuration – These settings [...]

  • Page 47

    HotBrick Network Solutions Page 43 Settings – Advanced Features Remote Access Configuration • Remote Upgrade – If enabled, you can use the supplied Windows program to remotely upgrade the Firmware. If not enabled, upgrades must be performed by a PC on the LAN. • Remote Web-based setup - – If enabled, access to the Web-based interface is a[...]

  • Page 48

    HotBrick Network Solutions Page 44 Interface Binding SMTP (Simple Mail Transport Protocol) Binding Unless you are using E-mail accounts from different ISPs on each port, you can ignore these settings. Some ISPs configure their E-mail Servers so they will not accept E-mail from IP addresses not allocated by themselves. If you are using accounts from[...]

  • Page 49

    HotBrick Network Solutions Page 45 5: Security Management Overview • Block URL It can block specific website by configure IP address, URL or Key words • Access filter You can block all Internet access or select blo ck well-known port or block user define ports by groups. • Session Limit It can eliminate users access Internet, and send email a[...]

  • Page 50

    HotBrick Network Solutions Page 46 Figure 5-1: Block URL Settings – Block URL Access Group This allows you have different blocking rules for different Groups of PCs. • All PCs (users) are in the Default Group unless moved to another group on the Host IP screen. • If you want the same restrictions to apply to everyone, select Default for the G[...]

  • Page 51

    HotBrick Network Solutions Page 47 Access Filter The network Administrator can use the Access Filter to gain fine control ov er the Internet access and applications available to LAN users. • Five (5) user groups are available, and each group can have different access rights. • All PCs (users) are in the Default group, unless assigned to another[...]

  • Page 52

    HotBrick Network Solutions Page 48 Filter Setting Select the desired option for this Group: • No filtering – Nothing is blocked, Internet access is not restricted. • Block All Access – Everything is blocked, Internet access is not available. • Block selected items – Items selected on this screen are blocked. You can block well known ser[...]

  • Page 53

    HotBrick Network Solutions Page 49 Session Limit This new feature allows to drop the new sessions from both WAN and LAN side. If the new sessions number are exceed the maximum sessions in a sampling time. Figure 5-3: Session Limit Session Limit Sampling Time The period to count the new session. Only those new sessions occurred in the most recently [...]

  • Page 54

    HotBrick Network Solutions Page 50 System Filter Exception System Firewall Exception Rules: The rules with which any received packets is complied, the packets will not processed by Firewall or NAT module, but to be processed directly by system protocol stack. Figure 5-4: System Filter Exception Setting - System Filter Exception Enable The check box[...]

  • Page 55

    HotBrick Network Solutions Page 51 6: VPN Configuration Overview Virtual Private Network (VPN), is a connection between two end points. It allows private data to be sent securely over a public network, such as Internet. VPN establishes a private network that can send data securely between two networks. We call this is by creating a “tunnel”. A [...]

  • Page 56

    HotBrick Network Solutions Page 52 IPSec Global Setting Figure 6-1 IPSec Global Setting[...]

  • Page 57

    HotBrick Network Solutions Page 53 IP Global Setting IP Global Setting Enable –If you enable check box either WAN1,WAN2 or both, this will start VPN global setting ISAkmp Port – Internet Security Association and Key Protocol Management (ISAkmp) is designed to negotiate, establish, modify and delete security associations and their attributes. In[...]

  • Page 58

    HotBrick Network Solutions Page 54 Policy Setup Policy Setup Figure 6-2 Policy Setup[...]

  • Page 59

    HotBrick Network Solutions Page 55 VPN Policy Setup IPSec Traffic Binding VPN Tunnel List – It shows the tunnels that you have entered. The router can setup up to 20 tunnels Tunnel Name – In order to distinguish the tunnel, you have to give “Tunnel” a name.. Tunnel – Only enable tunnel check box, the tunnel can be connected. WAN port – [...]

  • Page 60

    HotBrick Network Solutions Page 56 Key Management Key – Key Type: there are two key types (manual key and auto key) available for the key exchange management. Manual Key: If manual key is selected, no key negotiation is needed. Encryption Key- This field specifies a key to encrypt and decrypt IP traffic. Authentication Key – This field specifie[...]

  • Page 61

    HotBrick Network Solutions Page 57 IPSec Policy options Tunnel Attribute The current tunnel attribute that you just setup Dead Peer Detection If you like to utilize one of the wan port as a backup or plan failover function, you can enable Dead Peer Detection function. Set Options NetBIOS Broadcast- This is used to forward NetBIOS broadcast across t[...]

  • Page 62

    HotBrick Network Solutions Page 58 7: QoS Configuration Overview The VPN 800/2 Firewall Router provides QoS, which supports the high quality of network service. Because it will classify outgoing packets ba sed on some policies defined by users, make some real-time applications to get better response or performance. QoS Setup The following web page [...]

  • Page 63

    HotBrick Network Solutions Page 59 Data – QoS Setup. QoS Feature  Enable QoS – This will allow users enable QoS function. • Queuing Method – The methods that how you manage your queue.” Priority queuing”. It is one of the first queuing variations to be wildly implemented. IP TOS ( Type of Service) Feature • Process TOS Field –An [...]

  • Page 64

    HotBrick Network Solutions Page 60 Data – Policy Confi guration. Network Admission Policy This section identifies each policy • Policy Name List – When adding a new Policy, ignore this list. To edit an existing entry, select it from the list, and click the "Select" button. The data fields will then be updated with data for the selec[...]

  • Page 65

    HotBrick Network Solutions Page 61 8: Management Assistant Overview The following advanced features are provided. • SNMP • Email Alert • SNMP • Syslog • Upgrade Firmware This chapter contains details of the configuration and use of each of these features. SNMP This section is only useful if you have SNMP (Simple Network Management Protoco[...]

  • Page 66

    HotBrick Network Solutions Page 62 Settings – SNMP System Information • Contact Person – The name of the person responsible for this device. • Device name – The name of VPN 800/2 Firewall Router. • Physical Location – The location of the VPN 800/2 Firewall Router. Trap Targets Enter the IP address of any targets (PCs running SNMP soft[...]

  • Page 67

    HotBrick Network Solutions Page 63 Settings – Email Alert Email Alert • Enable – This will enable email alert to send a warning email when WAN port was disconnected. • Disable – This will disable email alert not to send a warning email when WAN port was disconnected. Email Sender Address Email Sender Address - It is an email address that [...]

  • Page 68

    HotBrick Network Solutions Page 64 Syslog This feature can send real time system information on the web page or to the specifie d PC. Syslog Configuration – Syslog Configuration allow you where to send system information to other machine or not. There are up to three machines you can choose to send your system log. Message Status– Messages send[...]

  • Page 69

    HotBrick Network Solutions Page 65 Syslog Confi guration Syslog Global • Enable – Set to “enable”, if you want to send system log messages to other machine. Keep Sent Messages • Enable – Checked this, if you want to keep sent messages, otherwise the sent messages will be deleted. Syslog Server • IP address: Up to 3 syslog servers can [...]

  • Page 70

    HotBrick Network Solutions Page 66 Admin Password The password screen allows you to assign a password to the Firewall Router. Figure 8-4: Admin Password Screen Enter the desired password, re-enter it in the Verify Password field, then save it. When you connect to the Load Balancer with your Browser, you will be prompted for the password when you co[...]

  • Page 71

    HotBrick Network Solutions Page 67 • Enter the password for the VPN 800/2 Firewall Router, as set on the Admin Password screen above. Upgrade Firmware This Upgrade Firmware Screen allows you to upgrade firmware or backup system configuration by using HTTP upgrade. Figure 8-6: Upgrade Firmware  You can backup your system configuration by press [...]

  • Page 72

    HotBrick Network Solutions Page 68 9: Advanced LAN Configuration Overview These screens and settings are provided to deal with non-standard situations, or to provide additional options for advanced users. Existing DHCP Server If your LAN already has a DHCP Server, and you wish to continue using it, the following configuration is required. • The D[...]

  • Page 73

    HotBrick Network Solutions Page 69 Note: If there is an entry or entries in the Routing table with an Inde x of zero ( 0 ), these are System entries. You cannot modify or delete these entries. Settings – Routing Dynamic Routing • RIP v2 – This acts as “master” switch. If enabled, the selected WAN or LAN will run RIPv1/v2, otherwise they d[...]

  • Page 74

    HotBrick Network Solutions Page 70 For the VPN 800/2 Firewall R out er Gateway 's Routing Table For the LAN shown above, with 2 routers and 3 LAN segments, the VPN 800/2 Firewall Router requires 2 entries as follows. Entry 1 (Segment 1) Destination IP Address 192.168.2.0 Network Mask 255.255.255.0 Gateway IP Address 192.168.1.100 Interface LAN[...]

  • Page 75

    HotBrick Network Solutions Page 71 10: Operation and Status Operation Once both the VPN 800/2 Firewall Router and the PCs are configured, operation is automatic. However, there are some situations where additional Internet configuration may be required: Refer to Chapter 4 - Advanced Features for further details. System Status Use the System Status [...]

  • Page 76

    HotBrick Network Solutions Page 72 Data – System Stat us WAN Information • Connection Status – Current status – either "Connected" or "Not connected". • Connection Type – The type of connection used – DHCP, Fixed IP, PPPoE, or PPTP. • "Force Renew" button– Only available if using a dynamic IP address [...]

  • Page 77

    HotBrick Network Solutions Page 73 Buttons • Refresh – Update the data on screen. • Restart – Restart (reboot) the VPN 800/2 Firewall Router. • Restore Factory Defaults – This will delete all existing settin gs, and restore the factory default settings. See below for details. Restore Factory Defaults When the "Restore Factory Defau[...]

  • Page 78

    HotBrick Network Solutions Page 74 These changes may mean that the current connection is invalid, and you will have to re-connect to the VPN 800/2 Firewall Router using its default IP address ( 192.168.1.1). WAN Status Use the WAN Status link on the main menu to view this screen. Figure 10-3: WAN Status Data – System Stat us NAT Statistics This s[...]

  • Page 79

    HotBrick Network Solutions Page 75 NAT Status This screen is displayed when you click the "Check NAT Detail" button o n the WAN Status screen. Figure 10-4: NAT Status Data – NAT Status LAN IP Info • IP Address – The LAN IP Address of the VPN 800/2 Firewall Router. • Mask Address – The Network Mask (Subnet Mask) for the IP Addres[...]

  • Page 80

    HotBrick Network Solutions Page 76 NAT Traffic This section displays statistics for both outgoing (LAN to Internet) and Incoming (Internet to Local) traffic. NAT Connections This displays the current number of active connections. For further details, click the "View Connection" list button. Errors Statistics are displayed for Checksum err[...]

  • Page 81

    HotBrick Network Solutions Page 77 Appendix A Specifications Model Hotbrick VPN 800/2 Firewall Router Dimensions 120mm (W) x 427mm (D) x 43.4mm (H) Operating Temperature 0 ° C to 40 ° C Storage Temperature -10 ° C to 70 ° C Network Protocol: TCP/IP Network Interface: 10 Ethernet: 8 * 10/100BaseT (RJ45) auto-Switching Hub ports for LAN devices 2[...]

  • Page 82

    HotBrick Network Solutions Page 78 Appendix B Windows TCP/IP Setup Overview TCP/IP Settings If using the default Load Balancer setti ngs, and the default Windows 95/98/ME/2000 TCP/IP settings, no changes need to be made. • By default, the VPN 800/2 Firewall Router will ac t as a DHCP Server, automatically providing a suitable IP Address (and rela[...]

  • Page 83

    HotBrick Network Solutions Page 79 Figure B-2: IP Address (Win 95) Ensure your TCP/IP settings are correct, as follows: Using DHCP To use DHCP, select the radio button Obtain an IP Address automatically . This is the default Windows settings. Restart your PC to ensure it obtains an IP Address from the VPN 800/2 Firewall Router. Using "Specify [...]

  • Page 84

    HotBrick Network Solutions Page 80 • On the DNS Configuration tab, ensure Enable DNS is selected. If the DNS Server Search Order list is empty, enter the DNS address provided by your ISP in the fields beside the Add button, then click Add . Figure B-4: DNS Tab (Win 95/98) Checking TCP/IP Settings - Windows 2000: 1. Select Control Panel - Network [...]

  • Page 85

    HotBrick Network Solutions Page 81 Figure B-6: TCP/IP Properties (Win 2000) 5. Ensure your TCP/IP settings are correct: Using DHCP To use DHCP, select the radio button obtain an IP Address automatically . This is the default Windows settings. Restart your PC to ensure it obtains an IP Address from the VPN 800/2 Firewall Router. Using a fixed IP Add[...]

  • Page 86

    HotBrick Network Solutions Page 82 Checking TCP/IP Settings - Windows XP: 1. Select Control Panel - Network Connection. 2. Right click the Local Area Connection and choose Properties . You should see a screen like the following: Figure B-7: Network Configura tion (Windows XP) 3. Select the TCP/IP protocol for your network card. 4. Click on the Prop[...]

  • Page 87

    HotBrick Network Solutions Page 83 Figure B-8: TCP/IP Properties (Windows XP) 5. Ensure your TCP/IP settings are correct. Using DHCP To use DHCP, select the radio button obtain an IP Address automatically . This is t he default Windows settings. Restart your PC to ensure it obtains an IP Address from the VPN 800/2 Firewall Router. Using a fixed IP [...]

  • Page 88

    HotBrick Network Solutions Page 84 Appendix C Troubleshooting Overview This chapter covers some common problems that may be encountered while using the VPN 800/2 Firewall Router and some possible solutions to them. If you follow the suggested steps and the VPN 800/2 Firewall Router still does not function prop erly, contact your dealer for further [...]

  • Page 89

    HotBrick Network Solutions Page 85 Solution 2: The VPN 800/2 Firewall Router processes the data passing through it, so it is not transparent. Use the Special Applications feature to allow the use of Internet applicatio ns which do not function correctly. If this does solve the problem you can use the DMZ function. This should work with most applica[...]