Home
AC-FW0514W User Manual - Alt Ctrl‧Security Control
Contents
1. Enable System Log C Enable Remote Syslog Server Apply When you enable all logs you can choose Enable System Log to record system logs to the system Or you can choose Enable Remote Syslog Server to record system logs to the remote syslog server You need fill in a server name or IP address network port information of system log server so that all system logs will be passed to the assigned server Default syslog port 514 you can input port from 1 to 65535 You can enable Use UTC Time to use UTC Coordinated Universal Time Click Apply to validate the setting Log and Report Configuration System Log IV Enable all logs C Enable System Log Enable Remote Syslog Server Syslog Server 192 168 1 123 Name or IP Port Default 514 514 1 655535 Iv Use UTC Time Apply Note Enable System Log just record logs to the system all logs will erased if you reboot You need to choose Enable Remote Syslog Server if you want to record logs to remote syslog server c eRay Secure 71 5 10 2 Logs and Report Anti Virus AltCtrl FW Series Anti Virus Log records are distinguished into different protocols and listed Please check HTTP FTP SMTP POP3 IMAP4 TCP STREAM pages for each single protocol Enter Date information Format MM DD i e 09 30 or keyword and then click Search to view the logs You can click the Prev lt lt Next gt gt to view the prev
2. AltCtri FW Series AC FW0514W User Manual Version 1 0 101001 Release Date 2010 10 01 cy eRaySecure Alt Ctrl AltCtrl FW Series Table of Contents 1 GETTING STARTED WITH THE AC FWO514AWNV eee e eee eee eee enne 2 SECURITY FUNCTIONAL FEATURES renes rietra t raising 3 IDENTIFY COMPONENTS sasscsscssesicdesscsevscvavscccsssosssscvassessssccascecssnctesestcsssecsseces 4 1 SETUP AC FWO514W DEVICE ss sss sss sss sassa ee eee eee ee e e e oe e e e eese naaa naaa aasan 4 2 CONFIGURE YOUR COMPUTER ccceccccccccccccccccscccccccscccccccccccccccsccccsccscccccccscoccsccscecs 4 3 LOGIN ACHP VY OS TAN ees id e a en sss a RUXENEO Fe Ea ENTER REXEN EO E RE aaas aaa aaas aaas SEX Ee aana EROS 3 CONFIGURATION mem Didi DVS TEIN eee 5 11 System NNN 5 1 2 System Time Settings NG 5 1 3 System 7 Change Password sssssssssssssesesoooceecooossssoosssssssssssssosooosoo 5 1 4 System VDS 5 1 5 System 7 CMS Settings sccssssccccecscssssescsesssossssececcesessceseaceesecescasensessesseess 5 1 6 System ON 5 1 7 System Firmware Upgrade cccccccccssssscccccccccccccccccccccccscssssssscees 5 1 85 System ee SL NE 5 2 1 Network Config Wizard ccccssscccssscccsssccsssscccssscccsssccessscccssscccesess 5 2 2 Network Overview cccccccccccccccccccccccccccccccccccccccccccccccccccccccccc
3. The default setting is ON Destroy File Enable or disable the infected file destroy function If this function is on the infected files by viruses will be destroyed when AC FWOS14W detects them If this function is OFF then the destroy file function will not be administered The default setting is ON Click Restore to change the settings to factory default values gt Anti virus Configuration Action Configuration 5 Action Configuration FTP HTTP POP3 SMTP IMAP TCP STREAM X xl X 5I 1 S SI 5 RI RI XIE Action High Medium Low T Restore to factory defaults Restore to factory defaults c eRay Secure 53 Ignored File Type You can select or deselect multiple File Type Extensions such as AltCtrl FW Series Microsoft Word document doc dot to ignore anti virus scanning Click Apply to change the configuration Click Restore to change the settings to factory default values gt Anti Virus Configuration Action Configuration Ignored File Type Ignore Following File Extension Excutable file exe com Dynamic Link Library cll Web pages html htm xhtml shtml Text file txt Microsoft Word document doc dot Microsoft Excel document XIs Microsoft Power Point document ppt Screen saver Scr Microsoft Visual Basic scripts vbs Microsoft Hyper Text Template htt Apply Restore to factory defaults Restore to factory defaults Restore cy
4. amp x 2001 abcd c2dd 1400 8000 0080 ad1 c 0001 Gateway ex fe80 92e6 baff fed3 be2f Lan IP Address 164 ex 2001 abcd c2dd 1500 8000 0080 ad1c 0001 V Enable IPv6 DHCP Server Apply Router Mode c eRay Secure Network IPvG General Setup Enable IPv6 Wan IP Address i64 ex 2001 abcd c2dd 1400 8000 0080 ad1c 0001 Gateway ex fe80 92e6 baff fe43 be2f Lan IP Address i64 ex 2001 abcd c2dd 1500 8000 0080 ad1c 0001 Enable IPv6 DHCP Server Apply Bridge Mode 44 Router Mode AltCtrl FW Series Note Your client PC can get IPv6 address use DHCP and working in LAN area only in Router Mode with Static WAN IP With DHCP or PPPoe WAN IP in Router Mode can only Enable IPv6 for AC FW0514W your client PC can not work for IPv6 You can tick the Enable IPv6 and set IPv6 address to Wan IP Address Example 2001 abcd c2dd 1400 8000 0080 ad1c 0001 Gateway Example fe80 92e6 baff fe43 be2f Lan IP Address Example 2001 abcd c2dd 1500 8000 0080 ad1c 0001 And you can tick the Enable IPv6 DHCP Server to enable DHCP Server Click Apply to validate the setting You can connect to AC FWO514W LAN Port with your client PC and setting IPv6 use DHCP Your client PC will get IPv6 address from AC FW0514W When your client PC get IPv6 address try to ping ipv6 google com with DOS command ping6 ipv6 google com can get result
5. 170 Driver Link Layer Topology Discovery Responder Uninstall Descrinii Transmission Control Protacol Intemet Protocol The default wide area network protocol that provides communication across diverse interconnected networks 7 Ensure the box next to Internet Protocol Version 4 TCP IPv4 is selected 8 Click to highlight Internet Protocol Version 4 TCP IPv4 and click the Properties button cy eRay Secure 17 Internet Protocol Version 4 TCP IPv4 Properties AltCtrl FW Series General You can get IP settings assigned automatically if your network supports this capability Otherwise you need to ask your network administrator for the appropriate IP settings 3 Obtain an IP address automatically Use the following IP address IP address 192 168 Subnet mask 755 255 Default gateway Obtain DNS server address automatically Use the following DNS server addresses Preferred DNS server Alternate DNS server Validate settings if changed upon exit Advanced 9 Select Use the following IP address and enter IP address 192 168 1 150 Subnet mask 255 255 255 0 Click OK twice to exit and save your settings You can enter 192 168 1 2 192 168 1 254 as long as there is no IP confliction 10 You can also select Obtain an IP address automatically and click OK to save your settings c eRay Secure 18 Alt Ctrl AltCtrl FW Series 4 3 Log in
6. 80 WAR IP 192 168 2 1 I Enable WAN Web Access HTTFS amp HTTP 9 HTTPS Port 1 65535 443 Default 443 HTTP Port 1 85535 80 Default 80 Apply Note You can access Bridge IP or Management IP from internal LAN or external WAN when you choose Bridge mode Web Access page will not be showed when you choose Bridge mode c eRay Secure 24 Alt Ctrl AltCtrl FW Series 5 1 5 System CMS Settings CMS Settings CMS Central Management System You need to build CMS Server first to manage and receive logs for AC FWO514W In this page you can enable or disable CMS with Enable CMS Support check box and then click Apply Tick the Enable CMS Support check box and fill in Management Port 1 65535 Default 8000 Management Username Management Password Send keepalive message every xx minutes Click Apply to validate the setting System CMS Settings CMS Support Settings Y Enable CMS Support CMS Server Mane Management Port 1 555352 8000 Default S00 Management Username admin Management Password 990000 send keepalive message every 10 minutes Apply c eRay Secure 25 5 1 6 System Config Manager AltCtrl FW Series Config Manager In this page you can export or import config file to restore In the Config Export you can click Export to download config file to your computer In the Config
7. AC FW0514W This section will show you how to configure AC FW0514W by using the web based configuration utility Please be noted that the best supporting browsers are IE7 IE8 and Firefox 3 x IE6 and Firefox 2 x are not supported 1 To access the configuration utility open a web browser and enter http 192 168 1 1 or 192 168 1 1 S about blank Microsoft Internet Explorer File Edit View Favorites Tools Help 6 NAG seh Free Address 192 168 1 1 2 Once the log in page successfully appeared please continue to enter username and password For the first time please select your language and enter default username and password Username admin Password 123456 Loor c eRay Secure 19 Alt eu AltCtrl FW Series 5 Configuration 5 1 System The system menu is where you carry out the basic setup of AC FW0514W It includes Time Settings Change Password Web Access CMS Settings Config Manager Firmware Upgrade and Restart Device gt System Overview W co System Information Ch Time Settings Active Connection 10 3 Memory 61600 kB 9 Web Access Firmware Version 1 2 15902 CMS Settings zit sues C Change Password Security Service Status o Config Manager 5 Change Password weh Access C Firmware Upgrade Ant Virus fip file Scan B Restart Device M Intrusion Prevention 3 OMS Settings P Nm ER EE Application Guard ERN Config Manager eder ong Manager S Firewall URL Filter
8. NAT Suitable for Home SOHO and SMB users o o NSG NSG c eRay Secure Alt Ctrl AltCtrl FW Series 2 Security Functional Features Anti Virus Packet based Virus Scanning Support HTTP FTP SMTP POP3 IMAP4 TCP STREAM Packet Based Decoding for Base64 UUencode QP Packet Based Decompression for Zip Gzip Rar Detect Viruses Across in Multi Packets Intrusion Prevention System IPS Packet Based Intrusion Scanning Support TCP Reassembly Protocol Anomaly Detection Traffic Anomaly Detection URI Normalization Application Guard Detection for Well Known Protocols HTTP FTP SMTP POP3 AOL Jabber MSN QQ eDonkey Fasttrack Thunder Web Guard Website Hijacking Prevention Concise URL Malicious Website Database Smaller Database Size URL Path Only and URL Host Path Support URL Filter High Speed Filtering Category Based Blacklist Function Low Rates of Overblocking World s Best Site Coverage Comprehensive Categories c eRay Secure Alt Ctrl AltCtrl FW Series 3 Identify Components 3 1 Front Panel The LEDs indicate its operational status LED Description am olor coin ses A ww POWER Green or romen WiFi enabled WiFi WiFi not ready or failed En Firmware updating Orange Blinking Resetting to default Transmitting on Physical link ok Green M Ethernet not ready or failed of Ethernet not ready or failed C Phys
9. Reset Configuration Apply Note The orange LED WiFi lights on and the message System is upgrading firmware please don t power off or reboot now shows during the upgrading process DO NOT power off or prevent power cut off during the process of firmware upgrade it may cause the system breakdown and can not be recovered to normal operating condition c eRay Secure 27 5 1 8 System Restart Device AltCtrl FW Series Restart Device Click to the System menu and then goes to Restart Device icon In this screen click Reboot button to reboot your system 5 System Restart Device Restart Device Restat Device Reboot c eRay Secure 28 5 2 Network d System 3 Overview Configuration 3 Wireless gt Dynamic DNS 4 IPy6 M e Firewall Anti Virus m Intrusion Prevention Metwork c Configuration Ch Wireless C Dynamic DNS gt Network Overview AltCtrl FW Series Network Mode Router WAN 5 LAN Protocol Type IP Address Network Mask Primary DNS Server Secondary DNS Server IPv6 Link Address Received Transmitted Static 192 168 2 1 295 255 295 0 168 95 1 1 267131 pkts 28756 KB 29665 pkts 11084 KB IP Address Network Mask DHCP Server Received Transmitted 192 168 1 1 255 255 255 0 ON 297922 pkts 40810 KB 43529 pkts 18620 KB Default Network Settings N
10. Vizard Network Step 5 5 Summery Network Made Router Mode gt Vizard Network WAN eee ee eae NE WAR IP Setting Static IP Address 192 168 2 1 Subnet Mask 255 255 2851 Gateway 192 168 42 24 Static DNS Server Yes Primary 163 95 1 1 Secondary Network Mode Bridge Mode Bridge Mode IP WAN IP Setting Static IP Address 182 158 2 1 subnet Mask gig 2030 295 T Gateway 187 166 27 754 Static DNS Server Yas Primary 168 95 1 1 Secondary LAN IP Address 192 168 1 1 Subnet Mask 6 0505 255 0 Management IP IP Address 192 168 1 1 Subnet Mask 255 55 55 0 Enable DHCP Server Yes Start IP address 1982 168 1 10 Number of IP address 5 Enable Wireless ves Vyireless SSID Wireless SSID AC FAW Router Mode Bridge Mode Enable Wireless ves Next c eRay Secure 5 2 2 Network Overview Overview shows the current connecting status gt Network 7 Overview Network Mode Router SWAN Protocol Type Static IP Address 192 168 2 1 Renew Network Mask 25 755 2955 Primary DNS Server 168 95 1 1 Secondary DNS Server IPv6 Link Address Received 267131 pkts 28756 KB Transmitted 29665 pkts 11084 KB cy eRay Secure LAN IP Address Network Mask DHOP Server Fecelved Transmitted AltCtrl FW Series 192 168 1 1 255 255 255 0 ON 297922 pkts 40810 KB 43529 pkts 18620 KB 34 AltCtrl FW Series 5 2 3 Network Configuration Network Mode Cl
11. gt Firmware Upgrade ham Log Active S Anti Virus i O Restart Device c eRay Secure 20 5 1 1 System Overview AltCtrl FW Series Overview After you log in go to the System and click Overview to see the system information and security service status s System Overview System Information Active Connection 10 Memory 61600 kB Firmware Version 1 2 15902 j Security Service Status Anti Virus Ip file Scan Intrusion Prevention Application Guard Web Guard URL Filter Log Active cy eRay Secure 21 5 1 2 System Time Settings AltCtrl FW Series Time Settings To configure the correct time in the local zone of the internal system clock select your time zone from the drop down Select Timezone manual and then click Apply Also you can tick Enable NTP Client check bottom and input the NTP Servers or click Synchronize now button to correct system time immediately or input synchronization interval time seconds for auto time correction You can untick Enable NTP Client check bottom then setup date and time manually Also you can untick Enable NTP Client check bottom then click Get button to get time from your computer it will correct system time from your computer s system time System Time Settings j Time Settings Select Timezone GMT 08 001 Taipei Synchronize now NTP Server 1 pool ntp org Port 123 1 65535 NTP Server 2
12. manually signature update By assigning and browsing local signature file and then click Apply you can update new signature by yourself s Signature Update Manual Update Upload Signature Signature File Browse Apply Details Signature Version AntiVirus 3 0 193 Intrusion Prevention 2 0 58 Application Guard 2 0 56 Web Guard 1 0 267 c eRay Secure 69 AltCtrl FW Series 5 10 Log and Report ci System p Network e Firewall l Anti Virus C Intrusion Prevention a Application Guard Web Guard amp URL Filter amp Signature Update Configuration Anti virus 5 Intrusion Prevention G Application Guard Web Guard URL Filter Log and Report Configuration Anti Virus intrusion Prevention Application Guard Yeb Guard URL Filter COPSS E R ntr B c eRay Secure Log and Report Configuration s System Log I Enable all logs Enable System Log C Enable Remote Syslog Server Apply s System Log I Enable all logs C Enable System Log Enable Remote Syslog Server Syslog Server 192 168 1 123 Name or IP Port Default 514 514 1 65535 M Use UTC Time Apply 70 5 10 1 Logs and Report Configuration AltCtrl FW Series You can choose Enable all logs to Enable Disable all logs and click Apply to validate the setting Log and Report Configuration System Log I Enable all logs
13. provider You can click Check Doman to test your DDNS is Active or Inactive Network Dynamic DNS Dynamic DNS I Enable Dynamic DNS Client Service Type dyndns orz 9 Hostname altctrl ddns com Check Domain Active Username faltctrl Password 99000000 Apply c eRay Secure 43 5 2 6 Network IPv6 AltCtrl FW Series The AC FW0514W provides basic IPv6 function support Include IPv6 DHCP server and IPv6 routing All security protections of AC FW0514W are base on IPv4 not on IPv6 AC FW0514W can not filter and protect IPv6 network traffic Preparation Make sure your ISP has supported IPv6 Reference follow steps 1 Get all information about your IPv6 address from ISP PE ou c9 I Connect xDSL with your PC Only PC to xDSL Router Try to use ping6 ipv6 google com to get response Try to visit http ipv6 google com web site If you can see web page it s normally work on IPv6 6 If not pleases contact your ISP to enable IPv6 support IPv6 Feature The AC FW0514W providers based IPv6 support function In Bridge mode 1 All network interface to support IPv6 Agreement 2 AC FWOS14W can recognize IPv6 packets In Router mode 1 All network interface to support IPv6 Agreement 2 AC FWOS14W can recognize IPv6 packets 3 Provide IPv6 based DHCP server 4 Pv6 routing support Network IPv6 General Setup I Enable IPv amp Wan IP Address 164
14. 3 69 hutes 32 time 331me Reply from 2484 68HBH 8HH3 69 hytes 32 time 334ms Ping statistics for 24H4 688H 8HH3 67 Packets Sent 4 Received 4 Lost H CH loss Approximate round trip times in milli seconds Minimum 331ms Maximum 4466ms Average Open http ipv6 google com web site If you can see ipv6 google com web page it s normally work on your client PC If not Please re check your network setting c eRay Secure 46 Alt eu AltCtrl FW Series 5 3 Firewall The firewall category provides three kinds of function Port forwarding UPnP Access Control List Firewall Port Forwarding Add Port Forwarding Service Firewall Service Name Server IP Address Port Forwarding Start Port 1 65535 Add Service S End Port 1 65535 Access Control List Port Forwarding Service List Maximum Services 10 Service Name Start Port End Port Server IP Address 1 RDP 3389 3389 192 168 1 100 Apply Firewall art F Oran R 1 L o UPnP c eRay Secure 47 5 3 1 Firewall Port Forwarding AltCtrl FW Series Port Forwarding can help you to access those servers which are behind the LAN port of AC FWOS14W But the function is only enabled automatically when the network is set as Router mode Input the port forwarding information and click Add Service to add Port Forwarding Service List entry Tick Delete and click Apply to dele
15. 8 2 254 3DNS Server Configuration Iv Static DNS Server Primary 168 95 1 1 Secondary Done Reset Back Next Router Mode c eRay Secure gt Wizard Network Step 2 5 Bridge IP Bridge IP DHCP Static IP Address IP Address 192 168 2 1 Subnet Mask 255 255 255 0 Gateway 192 168 2254 DNS Server Configuration Iv Static DNS Server Primary 168 95 1 1 Secondary Bridge Mode 31 3 Step 3 5 LAN Management IP Configuration In Router Mode you can Enable DHCP Server for the LAN In Bridge Mode you can access AC FW0514W with Management IP even in the DHCP client for the WAN AltCtrl FW Series 2 Wizard Network Step 3 5 LAN Configuration IP Address 192 168 1 1 Subnet Mask 255 255 255 0 gt izard Network DHCP Server Step 3 5 Management IP M Enable DHCP Server Start IP address 192 168 110 IP Address 192 168 1 1 Number of IP address 5 1 240 Subnet Mask 255 255 255 0 Router Mode Bridge Mode 4 Step 4 5 Wireless Configuration gt Wizard Network si Step 4 5 WirelessConfiguration I Enable Wireless SSID AC FW We highly recommend you to change the wireless security settings You can go to the main menu Network Settings and change the wireless network security settings Reset Back Next Done c eRay Secure 32 5 Step 5 5 Summery AltCtrl FW Series
16. Date information Format MM DD i e 09 30 or keyword and then click Search to view the logs You can click the Prev lt lt Next gt gt to view the previous next page of log records or click any page number in the bottom page when the logs get more than one page lt 1234 gt gt Click the Clear Logs to erase log data Log and Report Access Control Clear Logs EH Log Date MM DD Keyword 113 31 30 144 Search 05 52 34 192 168 1 10 113 31 30 144 05 52 34 192 168 1 10 113 31 30 144 05 52 33 192 168 1 10 113 31 30 144 053725 192 168 1 10 113 31 30 144 c eRay Secure 77 AltCtrl FW Series 6 Trouble shooting Problem None of the LEDs turn on when you turn on the AC FWOS14W Cannot access the AC FWO514W from LAN Cannot access the internet c eRay Secure Corrective Action Make sure the connection of power adaptor to the AC FW0514W and plug the power lead to an appropriate power source Check all the cable connections If LED s still do not turn on you may have a hardware problem In this case please contact with vendor for product service Check the cable connection between the AC FW0514W and your computer Ping the AC FWO514W 192 168 1 1 from a LAN computer Make sure your computer s Ethernet card is installed and functioning properly Check the AC FW0514W s connection to the broadband devices such as ADSL cable m
17. EPT Allow access e REJECT Denies access and message will be sent to the source e DROP Silently discards Tick the Log to record ACL logs Specify description of the rule in Description Then click Add ACL to validate the setting Tick Delete and click Apply to delete the selected ACLs The maximum number of ACL is 10 rules gt Firewall Access Control List 7 Add ACL The Priority range is 1 10 1 is the highest priority Priority 5 lt Direction LAN WAN gt Source Address Any Specific CC 255255255255 Destination Address Any Specific sf 5 5S DES DS Protocol Tcr v Destination Port Any Range TT 65535 Action ACCEPT 2 Log Iv Description Max 32 characters Add ACL ACL Maximum Number 10 sr s lan gt wan 192 168 1 100 255 255 255 255 Any ACCEPT Yes Allow DNS 2 a j lan gt wan 192 168 1 100 255 255 255 255 Any tcp ACCEPT Yes Allow Http 1 Deny All 3 tu lan gt wan Any tcp DROP Yes TCP Deny All UDP 4 thal lan gt wan Any udp DROP Yes c eRay Secure 50 Alt Ctrl AltCtrl FW Series 5 4 Anti Virus With virus protection the Anti Virus screen lets you to setup your category of virus and check the infected severity gt Ant Virus Overview Network j General Setup e Firewall M Enable Anti Virus IZ Enable ZIP File Scan Apply Signature een Anti Virus GR Configuration MUERE P
18. G N gt pingh ipu6 google com Pinging ipv6 l gqoogle com 2484 6888 8B883 gt gt p 27 from 2081 5821 32 28 51f 69d6 982b 4 75f with 32 bytes of data 24H4 68B88H 8BH3 69 hytes 32 time 4HB6ms 24H4 68BH8H 8BH3 69 bytes 32 time 359ms Reply fro Reply fra m m Reply from 2484 68HH 8BHBH3 69 bytes 32 time 33ims m Reply from 2404 6800 8003 69 bytes 32 time 334ms Ping statistics for 2404 68 00 8003 69 Packets Sent 4 Received 4 Lost H amp Bz loss Approximate round trip times in milli seconds Minimum 33ims Maximum 4B6ms Average 357ms Open http ipv6 google com web site If you can see ipv6 google com web page it s normally work on your client PC If not Please re check your network setting c eRay Secure 45 Alt Ctrl AltCtrl FW Series Bridge Mode You just need to tick the Enable IPv6 Click Apply to validate the setting You can connect AC FW0514W WAN Port to xDSL Router and LAN Port with your client PC and client PC setting IPv6 address which get from ISP When your client PC get IPv6 address try to ping ipv6 google com with DOS command ping6 ipv6 google com can get result GIN ping6 ipu6 sgoogle com Pinging ipv6 1l google com 2404 6800 8 003 67 from 2881 h821 32 28 51 6906 982b 475f with 32 bytes of data Reply from 2484 68BBH 8HB3 69 butes 32 time 4H6ms Reply from 2484 68BHB8 8HB3 69 bytes 32 time 359ms Reply from 248H4 68BBH 8HH
19. Import you can assign and browse config file in your computer and then click Upload to upload profile and restore system In the Profile Manager you can save three profiles in the system by filling in profile name and click Create You can choose Factory Default Config or any profile you create and click Restore to restore system And you can choose any profile you create and click Export to download config file to your computer You can choose one profile and click Delete to delete the profile Note You cannot Export or Delete the Factory Default Config System Config Manager Config Export Download config file Export Config Import Upload profile and restore TGZ Browse Upload Profile Manager Default Profile Factory Default Confiq Restore Profile 2010 09 16 backup Restore Export Delete Profile 2010 08 20 backup Restore Export Delete Profile3 Create Restore Export Delete c eRay Secure 26 5 1 7 System Firmware Upgrade AltCtrl FW Series Firmware Upgrade Upgrade the firmware of AC FWOS14W when a new version of firmware releases When you got the new firmware file assign it at this page choose Keep Configuration or Reset Configuration then click Apply to complete the firmware upgrade System Firmware Upgrade Firmware Upgrade Upload Firmware Browse Keep Configuration
20. Pass Lowest c eRay Secure Alt Ctrl AltCtrl FW Series 5 10 4 Logs and Report Application Guard This page shows the log records of Application Guard function Enter Date information Format MM DD i e 09 30 or keyword and then click Search to view the logs You can click the Prev Next gt gt to view the previous next page of log records or click any page number in the bottom page when the logs get more than one page Click the Clear Logs to erase log data Log and Report Application Guard Clear Logs ElLog Date MM DD Keyword Search Date Destination COMMON HTTP 1004 13 31 37 192 160 7 132 50887 220 252 214 116 80 88000268 protocol method GEN COMMON HTTP 10 04 13 31 14 192 165 7 132 50888 220 252 214 116 50 86800028 protocol method GET SESSION Drop Lowest SESSION Drop Session Drop Session 10 04 13 30 38 192 168 7 136 1032 168 85 1 1 53 agendas Common DNS Query Lowest Lowest 10 04 13 30 32 192 168 7 136 1030 168 98 1 1 53 o000450 Common DNS Query c eRay Secure 74 5 10 5 Logs and Report Web Guard AltCtrl FW Series This page shows the log records of Web Guard function Enter Date information Format MM DD i e 09 30 or keyword and then click Search to view the logs You can click the Prev lt lt Next gt gt to view the previous next page of log records or click any page numb
21. Web Guard configuration O Keyword Filter 63 Alt Ctrl AltCtrl FW Series 5 7 2 Web Guard Configuration You can just log malicious URL only but don t blocking Tick Log only and not blocking and click Apply to validate the setting 5 Web Guard Configuration Configuration Log only and not blocking Apply 5 7 3 Web Guard Keyword Filter Keyword Filter allows you to set Keyword to block URL Click Apply to validate the setting The maximum number in Keyword Filter is 10 Keyword Web Guard Keyword Filter EJ Add Keyword Filter Keyword _ Add L Keyword Filter Maximum Number 10 attack hacker Apply c eRay Secure 64 5 8 URL Filter AltCtrl FW Series This screen lets you to enable URL Filter function and configure the rules of web control cu System J Network gt LRL Filter Overview S Overview Firewall M Enable URL Filter Apply Anti Virus Intrusion Prevention Application Guard Statistics Web Guard URL Filtered 3 Configuration en 5 8 1 URL Filter Overview Enable or Disable URL Filter and click Apply gt URL Filter COvervler 5 Overview I Enable URL Filter Apply Statistics URL Filtered amp e eRay Secure amp URL Filter Overview Configuration 65 AltCtrl FW Series 5 8 2 URL Filter Configuration Enable or disable the cat
22. acket Statistics gm Intrusion Prevention Inspected Packets 3a Application Guard scanned Files Signature zz Infected Files PEUT Web Guard Configuration 5 4 1 Anti Virus Overview This page displays the overview of the Anti Virus function please select the required function and click Apply Enable Anti Virus Enable Anti Virus function The default setting is ON Enable ZIP File Scan Enable ZIP file ZIP RAR GZ scan function The default setting is ON Anti Virus Overview gt General Setup M Enable Anti Virus M Enable ZIP File Scan Apply 7 Packet Statistics Inspected Packets scanned Files Infected Files cy eRay Secure 51 5 4 2 Anti Virus Signature You can check AV signature list here 2s Ant Virus 7 Signature EE Signature 1 131 Next gt gt gt 2053 EICAR Test File S000001 WS W Allaple S000008 Troj Game Thief Wa Magania S000008 Troj Spy W 32 VBStat S000014 W32 M Runfer 2000015 Adare Waz Agent S000016 Waz W Bagle S000017 WS2 NV DObaycal c eRay Secure Wirus Wirus Wirus Spy Wirus Wirus Wirus Wirus Outbreak Se Se R E AltCtrl FW Series 52 Alt Ctrl AltCtrl FW Series 5 4 3 Anti Virus Configuration Action Configuration Setup the action of Anti Virus which includes Log and Destroy file Log Virus detection and record log in the system you can check the log list at the Log and Report Anti Virus page
23. cccccccccccccccccccccccccccccccccccccccccccees 63 5 7 2 Web Guard Configuration ccccccccsssssccccccccccccccccccccccscccccsssseees 64 5 7 3 Web Guard Keyword Filter e eeeee eee eee eee eere e eee ee eeeo 64 BS URL FIER ce vecececevevescecevesscecscesecoessecccscecocsseccsssecesscecesescessssectsestcescveucecsseciests 65 5 8 1 URL Filter Overview cccccccccscccsccccccccccccccccccccccccccccccscccccccsccsees 65 5 8 2 URL Filter Configuration ccccccccsssssccccccccccccccccccccccccccccscscseecs 66 5 9 SEN 67 5 9 1 Signature Update Auto Update e eeeee e eee e eee ee eee e eese ee 68 5 9 2 Signature Update Manual Update cccccccssssccsscccccccccesssscccccees 69 510 106 pi iio 70 5 10 1 Logs and Report Configuration eee eee eee eee eee eee eee eee eee 71 5 10 2 Logs and Report Anti Virus ccccccccccccsssssssccccccccccccccsesccccscoees 72 5 10 3 Logs and Report Intrusion Prevention ccccccccccccsssssssccsccees 73 5 10 4 Logs and Report Application Guard eese ee eere eene eene 74 5 10 5 Logs and Report Web Guatd ccccccccccssssssssscscccccccccccseccsccssccees 75 5 10 6 Logs and Report URL Filter eeeeee esee e ee eee eere eee ettet eeeo 76 5 10 7 Logs and Report Access Control eee e eer
24. ccees 5 2 3 Network Configuration c eeee eee sss eee eee e eee teet ettet eee eee 5 2 4 Network VS 5 2 5 Network Dynamic DNS Le 5 2 6 Network POL SR 5 3 1 Firewall Port Forwarding c ccccccccccccccccccssssssssccccccccccccceescccccccees 532 Firewally PP 5 3 3 Firewall Access Control List cccccccccccssccccssccccccccccccccccccccccecees SPV c eRay Secure Alt Ctrl AltCtrl FW Series 5 4 2 Anti Virus SG 52 5 4 3 Anti Virus Configuration cccccccccssccsscccccccccccccccccccceeeccccsssssceecs 53 5 5 INTRUSION PREVENTION scsccsscvecesceccdscecsssvccecescUeceseccossteesesescsssevesecesevescsesescsesesss 55 5 5 1 Intrusion Prevention Overview ccccccccccscscccccsscccccscccccccccceeees 56 5 5 2 Intrusion Prevention CONFI ZUratiON cccccccsscccscccccccccssssssccsccees 57 Di Os APPLICATION GUARD ievcsccccovesssctsvecsvescvssecescvecetecessiseccesecessessscecussvouccessvesedessceces 58 5 6 1 Application Guard Overview e eee eee eene eene nette eee eese eee 58 5 6 2 Application Guard Schedule ecce eee eee eee e ee eene ee 59 5 6 3 Application Guard Configuration ecce eee eee eee eee anas 60 5 6 4 Application Guard MAC Whitelist ccccccsssssssssscccccccccccscccsccees 62 ET DIT m 63 5 7 1 Web Guard Overview cccccccccc
25. ck to highlight Internet Protocol TCP IP and click the Properties button cy eRay Secure 11 Alt Ctrl AltCtrl FW Series Internet Protocol TCP IP Properties ga X rms T General Tou can get IP settings assigned automatically if your network supports this capability Otherwize you need to ask your network administrator for the appropriate P settings Obtain an IP address automatically IF address Subnet mask 255 255 255 D Default gateway Use the following DNS server addresses Preferred ONS server lara Alternate DNS server ETE 8 Select Use the following IP address and enter IP address 192 168 1 150 Subnet mask 255 255 255 0 Click OK twice to exit and save your settings You can enter 192 168 1 2 192 168 1 254 as long as there is no IP confliction 9 You can also select Obtain an IP address automatically and click OK to save your settings cy eRay Secure 12 TE 1 Click Start Settings Control Panel or Start Control Panel Click Network and Internet oA 2 e HU Local Area Connection Status General Connection IPv4 Connectivity IPv6 Connectivity Media State Duration Speed Windows Vista configuration Click Network and Sharing Center Click Manage network connections Double click Local Area Connection Internet Local Enabled 00 16 08 100 0 Mbps Sent Rec
26. ction Then click the Add button 2 Tick the Add checkbox after the auto detected network devices in the Add Multiple MAC From Network Neighborhood section Then click Apply to add MAC Whitelist The MAC Whitelist section shows the current rules You can tick the Delete and click Apply to delete MAC Whitelist The maximum number in whitelist is 10 MAC addresses gt Application Guard MAC VVhitelist Add Single MAC MAC Ex 00 12 34 56 78 9A Description __ Add Multiple MAC From Network Neighborhood Refresh MAC Address Description 1 00 10 F3 09 F7 5C 192 168 33 10 Apply IMAC Whitelist Maximum Number 10 1 00 10 F3 0E 46 54 192 168 33 2 cy eRay Secure 62 5 7 Web Guard AltCtrl FW Series This screen lets you to enable Web Guard and overview the number of URL inspected and malicious URL blocked System gt Web Guard Overview Network Overview e Firewall IZ Enable Web Guard Anti Virus Apply ga Intrusion Prevention aa Application Guard 3 Statistics URL Inspected 636 Malicious URL blocked 0 Configuration Keyword Filter 5 7 1 Web Guard Overview Enable or disable Web Guard and click Apply gt Web Guard Overview 5 Overview I Enable Web Guard Apply Statistics URL Inspected 6365 Malicious URL blocked U e eRay Secure IH
27. e Log and Report signature Version AntiVirus Intrusion Prevention Application Guard Web Guard Network Update Server http acuptw1 altctrl com tw aus q kms auth Check Period 6 hours d Apply HTTP Proxy Disable Enable Apply L3License Serial Number amp Signature Update a Auto Update a Manual Update ec eRay Secure 67 5 9 1 Signature Update Auto Update AltCtrl FW Series This page shows auto update information Click Enable Disable to Enable Disable the Auto Updates Click Update to update signature automatically and view the signature update status Select the Check Period stroll for the auto update signature time period and click Apply to validate the setting Select the Enable radio button to and input the proxy server to text field then click Apply to enable HTTP Proxy setting Signature Update Auto Update Status Auto Update Enabled Disable J Details Last update check 2000 01 02 06 00 Update Signature Version AntiVirus Intrusion Prevention Application Guard Web Guard gd Network Update Server http acuptw1 altctrl com tw aus q kms auth Check Period 6 hours 9 Apply HTTP Proxy Disable Enable Apply License Serial Number c eRay Secure 68 5 9 2 Signature Update Manual Update AltCtrl FW Series Besides auto update method AC FWOS14W also supports
28. e ee eee eee eee eee TT 6 IROUBLE SHOOTING Je 78 c eRay Secure Alt Ctrl AltCtrl FW Series 1 Getting Started with the AC FW0514W The AC FWOS14W is a useful UTM device that provides L7 security protections to the connected equipments after internet access devices Any network equipments with standard WiFi connection or 10 100 Mbps fast Ethernet port can connect to it or to the switching device under its gateway coverage for protection It is suitable to home or SMB users who has broadband internet service provided by lease line xDSL cable modem or entry level of FTTX fiber optics AC FW0514W has friendly web based graphic user interface for system configuration inspection and management control Without additional host CPU resource or installation process AC FWOS14W provides transparent security features such as anti virus IPS instant messaging and peer to peer application control malicious web drive by download protection and category based URL filtering Features and Benefits The simplest and most cost effective security device No additional host CPU resources consumption No Installation needed High throughput that provides rapid network Download and Access Firewall Anti Virus IPS IM P2P Anti Malicious URL URL Protocol filterer o o NSG NSG NSG Friendly graphic user interface control inspection report and management Easy use with Network Config Wizard Support PPPoE DHCP
29. eRay Secure 54 Alt Ctrl AltCtrl FW Series 5 5 Intrusion Prevention Intrusion Prevention screen lets you to enable Intrusion Prevention function and check the infected severity vg System gt Intrusion Prevention 7 Overview Network General Setup em Firewall I Enable Intrusion Prevention I I Enable Protocol Anomaly Detection I Enable Traffic Anomaly Detection I Enable PortScan Prevention Ch Configuration Apply t Application Guard Packet Statistics 9 Web Guard Inspected TCP Packets URL Filter Inspected LIDP Packets Inspected URI Number amp Signature Update ip Intrusion Prevention SS Overview Configuration ce eRay Secure 55 5 5 1 Intrusion Prevention Overview AltCtrl FW Series Select Intrusion Prevention Overview to do General Setup Enable or disable Intrusion Prevention Protocol Anomaly Detection Traffic Anomaly Detection PortScan Prevention Click Apply to validate the setting gt Intrusion Prevention 7 Overview j General Setup I Enable Intrusion Prevention I Enable Protocol Anomaly Detection I Enable Traffic Anomaly Detection I Enable PortScan Prevention Apply j Packet Statistics Inspected TCP Packets Inspected UDP Packets Inspected URI Number c eRay Secure 56 AltCtrl FW Series 5 5 2 Intrusion Prevention Configuration Please follow the entry to configure detailed int
30. egories to be blocked You can select or deselect multiple categories and click Apply to change the configuration Click Select All will enable all categories Click Unselect All will disable all categories You can just log URL only but don t blocking Tick Log only and not blocking and click Apply to validate the setting URL Filter Configuration Configuration Log only and not blocking Apply Blocked Categories Adult Content Job Search Travel Tourism Entertainment Dating Sites Investment Sites Crime Terrorism Politics www Email Sites Malicious Health Sites Music Downloads Government Blocking List Advertising Computing IT Spam Select All c eRay Secure News Gambling Shopping M Chatrooms Game Sites E Banking Personal Beliefs Cults Sports Violence Undesirable Search Sites Clubs and Societies Business Oriented Educational Drugs Alcohol Swimsuit Lingerie Models Virus Unselect All Apply 66 Alt eu AltCtrl FW Series 5 9 Signature Update ci System gt 2 Network Signature Update Auto Update Status e Firewall Auto Update Enabled Disable Anti Virus l Intrusion Preventic 5 Details Last update check 2000 01 02 06 00 Application Guard Update 5 Web Guard S URL Filter Signature Update Auto Update Manual Updat
31. eived Bytes 382 207 1 832 368 f Properties Disable 6 Click the Properties button c eRay Secure AltCtrl FW Series Alt eu AltCtrl FW Series SI Local rea Connection Properties Networking Connect using KP Realtek RTL8138 810x Family Fast Ethemet NIC 2 This connection uses the following items o Client for Microsoft Networks JB 045 Packet Scheduler File and Printer Sharing for Microsoft Networks wk ntemet Protocol Version 6 TCP IPv6 2 Intemet Protocol Version TCP APv4 wi Link Layer Topology Discovery Mapper WO Driver wi Link Layer Topology Discovery Responder Install Uninstall Description Transmission Control Protocol Intemet Protocol The default wide area network protocol that provides communication across diverse interconnected networks 7 Ensure the box next to Internet Protocol Version 4 TCP IPv4 is selected 8 Click to highlight Internet Protocol Version 4 TCP IP v4 and click the Properties button e eRay Secure Alt Ctrl AltCtrl FW Series internet Protocol Version 4 TCP TPw4 Properties General You can get IP settings assigned automatically if your network supports this capability Otherwise you need to ask your network administrator for the appropriate IP settings 3 Obtain an IP address automatically Use the following IP address IP address Subnet mask Default gateway Obtain DNS server addre
32. er in the bottom page when the logs get more than one page lt lt 1234 gt gt Click the Clear Logs to erase log data Log and Report Web Guard Log Date MMOD Keyword 01 18 13 14 26 192 168 8 58 206 160 170 10 80 ardownload adobe com pub adobe cht AdbeRdr830 zh TW msi High 0118 12 17 35 192 168 8 58 61 219 38 141 80 61 219 398 141 gov htm High 0118 11 49 18 192 168 8 58 61 219 38 141 80 61 219 389 141 calculate 2 htm High c eRay Secure Fm 75 5 10 6 Logs and Report URL Filter AltCtrl FW Series This page shows the log records of URL Filter function Enter Date information Format MM DD i e 09 30 or keyword and then click Search to view the logs You can click the Prev lt lt Next gt gt to view the previous next page of log records or click any page number in the bottom page when the logs get more than one page lt 1234 gt gt Click the Clear Logs to erase log data gt Log and Report URL Filter E Log Clear Logs Date MM DD Keyword Search Date rime Source Destination furL 00 Ciassification 05 07 18 19 50 192 168 1 85 184 73 110 30 80 www sex com favicon ico Adult Content 05 07 18 19 50 192 168 1 85 184 73 110 30 80 www sex com Adult Content cy eRay Secure 76 5 10 7 Logs and Report Access Control AltCtrl FW Series This page shows the log records of Access Control function Enter
33. erver DHCP Server Start IP address Number af IP address Domain c eRay Secure 39 Alt Ctrl AltCtrl FW Series Bridge Mode Bridge IP Bridge Mode Select DHCP client to be assigned an IP address by DHCP server Or select Static to input effective static IP provided by network administrator or by ISP You may have to fill in subnet mask and gateway in this case Click Apply to activate the setting Network Configuration Network Mode Bridge Bridge IP WAN IP Setting Static IP Address IP address 192 168 2 1 Subnet Mask 255 255 255 0 Gateway 192 168 2 254 SA DNS Server Configuration M Static DNS Server Primary 192 168 2 253 Secondary c eRay Secure 40 AltCtrl FW Series Management IP Bridge Mode If you choose Bridge mode and select DHCP client to be assigned an IP address by DHCP server you do not know what IP address that AC FW0514W get So you can assign another Management IP on AC FWO514W You can access it with Management IP To change the default Management IP settings like IP address subnet mask then click Apply Network Configuration Network Mode Bridge Management IP Local Network IP Address 182 168 1 1 SUBNET Mask 255 255 255 0 DHCP Server Type MORE a c eRay Secure 41 5 2 4 Network Wireless AltCtrl FW Series Wireless comm
34. etwork Mode Router Mode WAN IP DHCP LAN IP 192 168 1 1 Enable DHCP Server c eRay Secure 29 5 2 1 Network Config Wizard AltCtrl FW Series When you log in AC FW0514W the browser will popup Network Config Wizard gt Wizard Network Step 1 5 Network Mode Router Mode Public Internet Network Mode Router Mode Bridge Mode Switch Reset Or you can click the Network Config Wizard manually on the top to start Wizard A Network Contig wizard Logout c eRay Secure 1 Step 1 5 Choose Network Mode AltCtrl FW Series You can choose Router Mode or Bridge Mode Ward Mabwork Step 1 5 Network Mode Router Mode Public Internet Hetwork Mode Router Mode anl d T i L1 Switch a i E Router Mode Wizard Mebwork qustep 1 5 Network Moda Bridge Mode Public Internet Firewall Nw eR e TE EE Network Made C Rouler Mode Bridge Mode Reset Back Nes Done Bridge Mode 2 Step 2 5 WAN Bridge IP Configuration In Router Mode you can select DHCP Static or PPPoe for the WAN IP In Bridge Mode you can select DHCP or Static for the Bridge IP gt Wizard Network agi Step 2 5 WAN Configuration WAN Configuration DHCP Static PPPoe XP Address IP Address 192 168 2 1 Subnet Mask 255 255 255 0 Gateway 192 16
35. europe pool ntp org Port 123 1 65535 l NTP Server 3 north america pool ntp org Port i22 1 65535 NTP Server 4 fasia pool ntp org Port 123 1 65535 Synchronization Interval 3600 Seconds Rooo sji pi Year Month Day setup Date amp Time M Ivy er EN 18 7 41 Hours Minutes Seconds Get time from this computer Get Apply c eRay Secure 22 5 1 3 System Change Password AltCtrl FW Series Change Password It is highly recommended you change the default password Enter a new password and confirm by entering the new password again And then click Apply to change System Change Password Change Password Old Password 990000 New Password Maximum length 16 Confirm Password Maximum length 16 Apply c eRay Secure 23 5 1 4 System Web Access AltCtrl FW Series Web Access LAN WAN web access means that you can connect to web GUI via LAN WAN IP address We provide both HTTPS and HTTP web access and you can change HTTPS port or HTTP port by entering a new port and then click Apply to change WAN port web access is disabled by default settings for security reason You can select Enable WAN Web Access and then click Apply to enable WAN web access e system Veb Access Web Access LAN IP 192 168 1 1 LAN VWeb Access HTTFS amp HTTP 9 HTTPS Port 1 65535 443 Default443 HTTP Port 1 65535 80 Default
36. ical link ok cy eRay Secure 6 Alt Ctrl AltCtrl FW Series 3 2 Back Panel Feature Demi The receptacle where you plug in the power adapter Using this port to connect your modem to AC FW0514W Using those ports to connect your PC or NB to AC FW0514W RESET Push and hold RESET button over 5 seconds and then release to reset to factory default settings Enable disable WiFi function Note Push RESET button can reset to factory default settings RESET button is not for Restart Device You can go to the System Restart Device to reboot system or power off and power on AC FW0514W for Restart Device c eRay Secure Alt Ctrl AltCtrl FW Series 3 3 Hardware Specification Feature Description 10 100Mbps Fast Ethernet X 5 LAN X 4 WAN X 1 Network IEEE 802 11b g n draft Switching Power Adapter has t 100 240V Output 12V 1A Supply nput Output Power Connector 5V DC in Lack Reset Push and hold RESET button over 5 seconds and then release to reset to factory default settings 3 4 Environment Conditions eter penan 09C 45 9c 0 OF 113 OF ambient temperature Operating Temperature 30 9c 70 C 86 OF 158 OF ambient temperature Storage Temperature Operating Humidity 90 maximum non condensing Storage Humidity 90 maximum non condensing c eRay Secure 8 4 Connect to the AC FW0514W 4 1 Setup AC FW0514W device AltCt
37. ick configuration and select your Network Mode You can choose Bridge mode or Router mode Default setting is Router mode gt Network Configuration Network Mode Router d WAN Configuration LAN Configuration WAN IP Setting DHCP d DNS Server Configuration Static DNS Server Primary nm Secondary c eRay Secure 35 Router Mode AltCtrl FW Series WAN Configuration Router Mode Select DHCP client to be assigned an IP address automatically by DHCP server and then click Apply to validate the setting gt Network Configuration Network Mode Router d WAN Configuration LAN Configuration WAN IP Setting DHCP d DNS Server Configuration Static DNS Server Primary nm Secondary c eRay Secure 36 Or select Static to input your own static IP that was provided by network AltCtrl FW Series administrator or by ISP You may have to fill in subnet mask and gateway in this case Then click Apply to validate the setting Network Configuration Network Mode Router WAN Configuration LAN Configuration WAN IP Setting Static IP Address IP address 192 168 2 1 Subnet Mask 255 255 255 0 Gateway 192 168 2 254 SA DNS Server Configuration M Static DNS Server Primary 192 168 2 255 secondary c eRay Secure 37 Or select PPPoE to access WAN IP by entering PPPoE informa
38. ious next page of log records or click any page number in the bottom page when the logs get more than one page Click the Clear Logs to erase log data gt Log and Report Anti Virus Clear Logs HTTP FTP POP3 SMTP IMAP4 TCP STREAM Log Date MM DD Keyword Search Date Time 05 07 17 46 20 188 40 238 250 80 192 168 1 85 2723 EICAR Test File anti virus test file htm Destroy Files c eRay Secure 72 5 10 3 Logs and Report Intrusion Prevention AltCtrl FW Series Intrusion Prevention Log records are separated into Intrusion Prevention Traffic Anomaly and Protocol Anomaly Enter Date information Format MM DD i e 09 30 or keyword and then click Search to view the logs You can click the Prev lt lt Next gt gt to view the previous next page of log records or click any page number in the bottom page when the logs get more than one page Click the Clear Logs to erase log data Log and Report Intrusion Prevention Clear Logs Intrusion Prevention Traffic Anomaly Protocol Anomaly 7 Log Date Time source Destination fio message action Severty 01 18 13 28 48 78 111 215 170 0 192 168 8 58 0 8003611 ICMP Time To Live Exceeded in Transit Pass Lowest 01 18 13 28 14 218 49102 2290 192 168 8 58 0 8003611 ICMP Time To Live Exceeded in Transit Pass Lowest 01 18 13 27 50 193 198 190 241 0 192 168 8 58 0 8003611 ICMP Time To Live Exceeded in Transit
39. odem Router device r Check WAN to verify setting 78 FCC Interference Statement This device complies with Part 15 of FCC rules Operation is subject to the following two conditions 1 This device may not cause harmful interference 2 This device must accept any interference received including interference that may cause undesired operations FCC Warning This equipment has been tested and found to comply with the limits for a Class A digital device pursuant to Part 15 of the FCC Rules These limits are designed to provide reasonable protection against harmful interference in a commercial environment This equipment generates uses and can raditate radio frequency energy and if not installed and used in accordance with the instruaction manual may cause harmful interference to radio communications Operation of this equipment in a residential area is likely to cause harmful interference in which cause the user will be required to correct the interference at his ownexpense AltCtrl FW Series c eRay Secure 79
40. ork j General Setup e Firewall Anti Virus m Intrusion Prevention Apply M Enable Application Guard Application Guard Application Guard C Wwe P Py Schedule Ch Configuration ew E 25 Configuration 5 MAC Vhitelist Web Guard CY MAC Whitelist 5 6 1 Application Guard Overview Enable or disable Application Guard and click Apply s Application Guard Overview General Setup I Enable Application Guard Apply c eRay Secure 58 5 6 2 Application Guard Schedule AltCtrl FW Series You can set Schedule to apply to Application Guard configurations You can tick multiple Week Days from Monday to Sunday then set Start Time and Stop Time for Day Time Choose Any or Specific one IP address or subnet for Source Address and Destination Address Click Add to add Schedule The maximum number of Schedule is 3 schedules gt Application Guard Schedule Add Schedule Monday Tuesday Wednesday Thursday Friday Saturday Sunday Start Time 00 00 HS bals Stop Time 00 00 Week Days Schedule Maximum Number 3 Start Time Stop Time Monday Tuesday Thursday Friday Saturday Delete Delete c eRay Secure 59 5 6 3 Application Guard Configuration You can search application by choosing AltCtrl FW Series Type and Applica
41. rl FW Series 1 Power the AC FW0514W device by power adaptor 2 Connect WAN to the Internet and then connect LAN to your networking devices e dn E Q c eRay Secure 4 2 Configure your computer Windows XP configuration 1 Click Start Settings Control Panel or Start Control Panel Click Network and Internet Connections Click Network Connection Double click Local Area Connection Local Area Connection 2 Status General Support AltCtrl FW Series Connection Status Duration Speed Activity Packetz Connected 00 19 45 100 0 Mbps Received 5 Click the Properties button c eRay Secure 10 Local rea Connection 2 Properties AltCtrl FW Series General Authentication Advanced Connect using Realtek RTL8129 Family PCI Fast Et This connection uses the following Items S Client for Microsoft Networks File and Printer Sharing for Microsoft Networks dos Packet Scheduler Internet Protocol TCP IP Install Uninstal Properties Description Transmission Control Frotocol Internet Protocol The default Wide area network protocol that provides communication across diverse interconnected networks Show icon in notification area when connected Notify me when this connection has limited or na connectivity 6 Ensure the box next to Internet Protocol TCP IP is selected 7 Cli
42. rusion prevention rules gt Intrusion Prevention Configuration Signature Outbreak i e severity High Policy Web Aneks Platform aa 1 ID or Namel Search WEB PHP shoutbox php directory traversal 8001190 attempt H ap VWEB PHP bz cafelog gm 2 b2 php remote file m PET include attempt 5 8001202 WEB PHP autohiml php directory traversal N attempt ES BO04734 WEB MISC newsscript pl admin attempt N EXPLCIT Novell GroupWise WebAccess L seri authentication averflow N WEB PHP file upload GLOBAL variable L BOGE Te overnite attempt M B 2000137 AML EPC f r PAP Command Inmecion M allernpi 1 45 AML ERPC for PHP Command Inecion R 8009138 atem N Severity Scan Polic d Virus Worm Web Attacks Others c eRay Secure High High High High High High High High Web Attacks Web Allacks Web Attacks Web Attacks Web Alacks Web Attacks Web Attacks Web Alacks Al Al Al Al Al Al Al Log Drop Packet Lox Drop Packet Lug Oop Fachal lag Dep Packet lor zap Packet oF Lor Deup Fachal Lo Dep Packet Log Leap Packet F Type in ID or Name to Search 57 Alt Ctrl AltCtrl FW Series 5 6 Application Guard This screen lets you to enable Application Guard function and configure the rules of application control a System Application Guard Overview Netw
43. ss automatically Use the following DNS server addresses Preferred DNS server Alternate DNS server 9 Select Use the following IP address and enter IP address 192 168 1 150 Subnet mask 255 255 255 0 Click OK twice to exit and save your settings You can enter 192 168 1 2 192 168 1 254 as long as there is no IP confliction 10 You can also select Obtain an IP address automatically and click OK to save your settings c eRay Secure 15 Windows 7 configuration AltCtrl FW Series TE 1 Click Start Settings Control Panel or Start Control Panel 2 Click Network and Internet 3 Click Network and Sharing Center 4 Click Change adapter settings 5 Double click Local Area Connection H Local rea Connection Status Connection IPv4 Connectivity Internet IPv6 Connectivity Limited Media State Enabled Duration 01 35 19 100 0 Mbps Received 29 537 G Properties 6 Click the Properties button c eRay Secure 16 Alt eu AltCtrl FW Series ij Local Area Connection Properties Connect using a Realtek RTL8138 810x Family Fast Ethemet NIC This connection uses the following items Re Client for Microsoft Networks QoS Packet Scheduler dal File and Printer Sharing for Microsoft Networks ntemet Protocol Version 6 TCP IPv amp sad Intemet Protocol Version 4 TCP Pvd wi Link Layer Topology Discovery Mapper
44. te the selected services The maximum port forwarding is 10 services gt Firewall Port Forwarding Add Port Forwarding Service Service Name Server IP Address Start Port 1 55535 Add Service End Port 1 65535 _ Port Forwarding Service List Maximum Services 10 ServiceName StartPort EndPort Server IP Address lll Delete 0 FIP 21 21 192 168 1 100 E 1 RDP 3389 3389 192 168 1 200 a Apply cy eRay Secure 48 5 3 2 Firewall UPnP UPnP can do automatically NAT traversal enumerate existing port mappings AltCtrl FW Series and adding and removing port mappings automatically The function is enabled automatically when the network is set as Router mode gt Firewall UPnP M Enable UPnP Apply c eRay Secure 49 5 3 3 Firewall Access Control List Access Control List ACL allows you to set firewall rules AltCtrl FW Series You need to choose Priority for ACLs first The Priority range is 1710 1 is the highest priority Choose LAN gt WAN or WAN gt LAN for Direction Choose Any or Specific one IP address or subnet for Source Address and Destination Address Choose TCP or UDP for Protocol Choose Any or Range to input port range for Destination Port Choose ACCEPT REJECT or DROP for Action e ACC
45. tion then choose Log or No and choose Action by Pass Block or Scheduled Block Click Apply to validate the setting gt Application Guard Configuration Rules COMMON Remote Controller Tunnel Social web site Game OTHER File Hosting Stock Toolbar Mail Database Streaming VoIP File Transfer Type ALL Application ALL ALL ALL ALL ALL ALL ALL ALL ALL ALL ALL ALL ALL ALL ALL ALL Pass Block Scheduled Block v Apply Rules Application yahoo yahoo yahoo yahoo yahoo Type IM vahoo Search Behavior Login Pass H Message No BM Block Fr File Transfer Log 2 Audio No 7 mss 3 Video No lt ras 3 Apply Reset c eRay Secure 60 AIL IO AltCtrl FW Series Here the supported applications are listed as below table DNS Social Men is E Bie Remote UltraVNC Clubbox lt 00 POP3 Rediff Skype SMTP Control AppletFLV Streaming HTTP Tunnel ae VarP Soulseek c eRay Secure 5 6 4 Application Guard MAC Whitelist AltCtrl FW Series MAC Whitelist allows you to set some exceptional network devices to pass Application Guard even you have blocked the category You can add a rule of white list by two methods 1 Specify MAC address and Description in the Add Single MAC se
46. tion AltCtrl FW Series User Name PPPoE user information Password PPPoE password Confirm Password Confirm user password Redial Period secs Re connection time period if failed Idle Time mins Auto disconnecting if network idle for some time MTU Maximum Transmission Unit is the size in bytes of the largest protocol data unit In PPPoE users can enter static IP address and network mask information if applicable gt Network Configuration Network Mode Router WAN Configuration WAN IP Setting PPPoE gt PPPoE Information User Name laltctri isp net Password sese its Confirm Password sese Redial Period Idle Time o set U to keep connection MTU 14922 4568 1499 Static IP IP Address Network Mask DNS Server Configuration I Static DNS Server Primary Secondary Click Apply to validate the setting c eRay Secure 38 LAN Configuration Router Mode To change the default LAN setting setup your IP address and subnet mask AltCtrl FW Series then click Apply AC FW0514W can function as a DHCP server in Router mode Please choose DHCP Server in Type and input the Start IP address and the number of DHCP client range from 1 to 240 Network Configuration Network Mode Router WAN Configuration LAN Configuration Local Network IPF Address 192 168 1 1 SUBNET Mask 255 255 255 0 DHCP S
47. unication is supported by 802 11b g n draft Enable Wireless Enable Disable Wireless function to display the setting Network Mode This identifies the networking standards available to your network SSID SSID is a 32 character alphanumeric key uniquely identifying a wireless LAN Hide SSID Enable this Hide SSID feature to improve the security of your WLAN Frequency Choose you wireless radio channel or auto Channel by default Security Mode We provide WEP WPAPSK WPA2PSK Encryption Protocols WPAPSK WPA2PSK is more secure than WEP WPA Algorithm WPA Algorithm is the encryption algorithm of Security mode You can choose TKIP AES TKIP AES encryption algorithm WEP WPA Key The WEP WPA key is used for authentication Click Apply to activate the wireless settings gt Network 7 Wireless s Wireless Iv Enable Wireless Network Mode 802 11 B G N mixed mode gt SSID A tCtrl 1 32 characters Hide SSID Disable lt Frequency AutoChannel Security Mode wer gt WEP Key vpete 5 or 13 ascii characters 10 or 26 hex numbers Show Password Apply c eRay Secure 42 5 2 5 Network Dynamic DNS AltCtrl FW Series Dynamic DNS is a domain name service allowing aliasing of dynamic IP addresses to static hostnames If you have registered with a DDNS service provider select the Enable Dynamic DNS Client check box and fill out hostname username password provided by DDNS service
Download Pdf Manuals
Related Search
Related Contents
安 全 デ ー タ シ ー ト 工業用のメンテナンスに必要な技術・技能のマニュアル Samsung MM-UC8 manual de utilizador Fwgbd-ver2 0 CSDP.3-Capitolato Speciale Descrittivo e Prestazionale Nintendo 3DS Downloadable Instruction Book CodeWarrior® IDE User Guide - International Science Olympiads HINWEIS: Wir bekommen des Öfteren Waren - E 第183号(平成25年6月) Copyright © All rights reserved.
Failed to retrieve file