Home

User Manual

image

Contents

1. a 7 LANconfgure Queue Nameltest 1 Add Queue Timeout to rety e vV Load balance te D Firewall Quality control Advance System Subscribers Group Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot Then user will see the result as below SHS 3830 System status WAN configure Add Queue LAN configure Queue Name Timeout to rety SIP Acount Load balance Firewall 001 002 003 Quality control Advance v System Subscribers Gr Queue em Paging SIPTrunk Welcome Queue af 3 eOnnunguun DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot IP PBX Queue 192 168 1 253 S H S 3 8 3 0 Queue configure saved success so 4 Welcome System status WAN configure LAN configure Load balance Firewall Quality control Advance System Subscribers ILLIS Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX 38 Save amp reboot 2 5 3 7 Paging In the page
2. E T TT 3 6 System 3 6 1 Password 9 6 8 IMIG 3 6 3 alert 3 6 4 System log E UU S DL I 3 6 6 Load default 3 6 7 Config backu m 9 6 9 Firmware UCAS o tuse 3 7 Save amp Reboot Chapter 4 In bound TRE Chapter 5 Hardware load 2 2 2 1 Chapter 6 Appendix 6 1 TCP IP Protocol Port Number 888 Chapter 1 Introduction SHS 3830 is an embedded server that provides IP PBX functions and two WAN ports Router features The Firewall and QoS improves VoIP network voice quality The IP PBX module of SHS 3830 is a SIP based IP PBX that can create telephony systems for home and small to medium enterprises It is also designed to operate on a variety of VoIP applications such as auto attendant call transfer and IP based communications Since it supports industry standard SIP it works with all SIP supported products and devices available today The key features of SHS 3830 are quiet power saving stability and small volume box 1 1 SHS 3830 Specification 1 1 1 SIP IP PBX Function HFC3261 compliance SIP UDP TCP Protocol MD5 Digest Authentication RFC2069 RFC261 7 Allow FXO FXS gateway IP Phone and the DP 104 SIP IP video door phone to register Support 50 regist
3. IP PBX Save amp reboot 80 3 4 2 Bandwidth Control This is a very useful function it can let you to control WAN port bandwidth usage by each protocol Like FTP When someone uses FTP to transfer file it will occupied heavy bandwidth by using this function you can limit allocated bandwidth Dedicated application bandwidth For example In following display FTP HTTP amp Mail bandwidth will be limit in certain percentage This router provide 3 most often use protocol in the table Just fill in port number and usage for each application Protocol name of protocol data packet will be limit Port protocol port number Usage of WAN speed can be used Protocol usage cannot exceed 100 for each WAN port Router provides another 4 user self define port number for easy use just fill in port number for each protocol Step 1 Enter Quality Control web page Quality Control Bandwidth usage control SHS 3830 Bandwidth Usage Control Usage Control Using this function need to enable QoS Description PROTO PORT Upload rate k bits MAX Download rate k bits Enable Edit HTTP TCP 80 0 0 L 1 110 0 0 Fi 11 SMTP TCP 25 0 0 21 0 0 Bandwidth control Add Apply Step 2 Clink the Edit check square of Then enter its edit page 81 5 5 3830 Welcome System status WAN configure Edit Bandwidth U
4. 9 9 2 4 Open Web 9 2 5 Basic and Advance Configurations for IP PBX sees 10 2 5 1 WAN configuration 10 2 5 2 LAN 9 20 CODIO 20 DHCP reserved 21 2 5 IPSIS e sitam MEUM EPIRI MES EE 23 ZAR m TT 23 serre 27 IDE N E 32 PAESE ee DO 33 ctore 36 1 NG rc 37 Dee ul telo O O 39 QOO FV OWN NIMIUM NIMIRUM VM 42 255230 m 44 2029 OJIOWMOAG 45 RR 46 2200412 Gale PI BX sucks 49 Chapter 3 Web configuration for Router 50 SA elu MEMINI EE 50 SES SIS Sa US 50 o Vaz 50 oS NE IS I 51 RI 52 e MT Nm 52 S2 Load palanc 2 3 9 9 9 r
5. DHCP Reserved IP_ Reserved Welcome System status Item MAC address IP address Edit WAN configure 22 1 00 02 45 12 5B 7C 192 168 1 99 KJ LAN configure LAdd Apply DHCP reserved IP Load balance Firewall Quality control Advance System v IP PBX Save amp reboot 22 5 5 3830 Welcome DHCPResemedIP Reserved System status gt WANconfigure Edit DHCP Reserved IP Item EUER 71 61 89 LAN configure IP address DHCP reserved IP Delete C Apply Load balance 9 Firewall Y Quality control Advance Y System IP PBX Save amp reboot 2 5 3 IP PBX At first user needs to create call group User can select IP PBX in the menu bar on the left side of screen as shown below 2 5 3 1 Group Then step by step to set up call group as shown below IP PBX Group SHS 3830 KC Create Call Group Y System status Item Group Name Note Edit WAN configure LAN configure Load balance Firewall Quality control Advance Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot 23 Then user will see the screen of add group Please input group name and note to create a SIP group IP PBX Group Add SIP Group SHS 3830 Welcome System status
6. Password length can up to 30 alphanumeric characters with case sensitive WE SUGGESTED YOU TO CHANGE SHS 3830 PASSWORD AND KEEP IT IN SAFETY PLACE AFTER YOU RECEIVED SHS 3830 AND FINISH ALL ROUTER PARAMETER SETTING 3 6 2 Time The SHS 3830 will obtain the GMT Greenwich Mean Time after connected to Internet You need to indicate the local time so that the system could show the correct time For example Taiwan s local time is GMT 8 hours Select Automatic adjust clock for daylight saving changes will display the time one hour earlier than local time 112 5 5 3830 System System time 3956 Time zone 0 00 Update mode NTP PC Update Interval 1440 Minutes Range 30 1440 Select NTP server User define NTP server rol Primary server time nist gov Second server stdtime gov hk Current time Sun Jan 4 1970 01 54 56 Apply 3 6 3 Mail alert Enter the Receiver Sender e mail Address in the fields and check the items you want System will send e mails to Receiver address once the conditions meet the setting Receiver mail address The mail address that will receive alert mail Sender mail address The mail address that send out alert mail you should fill in a legal format address ex router yahoo com The SHS 3830 provides four condition selections will send the mail once WAN port s is connected to Internet will send the mail once
7. SHS 3830 Welcome Remote IP Filtering System status Remate start IP address Remote stop address Proto Destination start part Destination stop pot Enable Edit WAN configure 1 172 16 1 13 172 15 1 15 1000 1010 LAN configure 2 172 16 1 100 172 16 1 200 2000 2010 Load balance 3 172 15 1 30 172 15 1 50 ALL 1700 1800 Super Users B Apply DoS defense ARP protection Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IF session limit Step 2 User can edit or delete it If user wants to delete it click Delete Then router goes back to Remote IP filtering list table If users want to edit click add when user finish editing job Then router goes back to Remote IP filtering list table 69 5 5 3830 Welcome Remote IP Filtering v System status Edit Remote IP Filtering Item 2 v WAN configure Remote start IP address 16 1 80 Vv LAN configure Remote stop IP address 16 1 90 v Load balance Destination start port Super Users me Destination stop port DoS defense ARP protection Delete LApply Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit Step 3 Router go back to Remote IP filtering list table 5
8. LAN configure Load balance Step 3 Click Yes button to complete the procedure of Firewall call group updating Quality control Advance System Subscribers Group Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture 26 Update IPPBX Save amp reboot 2 5 3 2 Subscribers In the next step user has to create new subscriber for IP PBX operating The operation procedure is shown as following diagrams IP PBX Subscribers 5 5 3830 f Subscribers Create Subscribers SIP Account User Name Pickup Group Edit 2001 test lt Advance system Em mmm mmm mmmmmmmmmmmnm E m Subscriber a a uunamEEEEEEEEREREREREM Group Queue DialPlar P1 tatu vnload L Downl el aptur te IPPBX After click Add button user can see the screen as below SHS 3830 we tet t F Add SIP Account ni LANconfigure SIP Account 2002 Password mE L 1 1 User 2002 test v Tienen Mobile Extension t ntr Advance NAT Yes Routing Group R1 v P 1 Audio Codec G711u U G711a Video Codec h264 mpeg4 h263p O h263 Voice Mail Enable ON OFF User Mail Call Limit 2 Qualify Paging rr runi s Apply anRRARERNM DialPlar Vie tatu nlo Downl 192 168 1 2
9. Save amp reboot User also can edit and modify the call group by clicking the check square under Edit item SHS 3830 Welcome System status Item Group Name Note Edit WAN configure 1 test LANconfigure e 2 123 11 rH Load balance vV Firewall _ Add Quality control Step 1 User can edit and modify Advance Vv System the call group by clicking the check square under Edit item Subscribers SIPStatus Download Log Download CDR Debug Capture Update IPPBX 25 Save amp reboot Then user can see the screen of update SIP group as below User modify or delete the group to meet user s requirement When the edit work has finished user need to click on Apply button to save the updated data IP PBX Group Updated SIP Group SHS 3830 Welcome System status WAN configure Update SIP Group LAN configure Group Name test Note 23 Load balance Firewall Delete CD Quality control Advance System Subscribers Step 2 When the edit work has finished user need xl to click on Apply button to save the updated Queue Paging d at a SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot 192 168 1 253 S H S 3 8 3 7 Group configure saved success Welcome System status WAN configure
10. 1 LL 1 S TT gt configure Add SIP Group ee ee ey ie eee TY LANconfigure 5 Name Note 11 PPP Load balance Firewall Quality control Advance System Subscribers Group 5 Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot a i SHS 3830 Welcome System status WAN configure LAN configure Load balance Firewall Quality control Advance LI System Subscribers p UEHBNEHHBHEHBERBENHSEA Group Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot 4 192 168 1 253 8 Group configure saved success 24 Then user will see a new call group and note was created successful and display on the screen as below 5 5 3830 Welcome System status Item Group Name Note Edit WAN configure 2222 1 test LAN configure t gt t gt 2 123 11 Load balance Y Firewall Add Quality control Advance System Subscribers Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX
11. Advance Share IP DMZ SHS 3830 Share IP DMZ Multi DMZ Host IP address Enable Apply When using this function the WAN port IP need to be FIX IP assigned by ISP Example Add a new item otep 1 Enter Multi DMZ web page Then click Add to enter the added page 92 Advance Multi DMZ SHS 3830 WAN configure LAN configure Load balance Firewall Quality control VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routmg configure VY System IP PBX Share IP DMZ ALIA Item DMZ host IP address ISP provided IP address WAN Enable X Edit LAdd _ Apply _ otep 2 Fill data to DMZ host IP address ISP provided IP address and WAN Then Click Add then router goes back to Multi DMZ list table SHS 3830 WAN configure LAN configure Load balance Firewall Quality control VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure v System IP PBX o 95 Edit Multi DMZ Item 1 DMZ host IP address 192 168 1 31 ISP provided IP address 172 16 1 10 WAN WAN1 v Delete Apply Step 3 Click the Enable check square of item 1 Then click Apply to save and enable 93 5 5 3830 WAN configure Share IP DMZ 7 LAN configure e Item DMZ host IP address ISP provi
12. Inbound Apply Firewall Quality control Advance System IP PBX Save amp reboot Weight Round Robin mode Configure the WAN ports bandwidth rate manually means you can distribute each coming session from users to each WAN port following the rate that you assign in each WAN port The session number in each WAN can be numbered from 1 to 100 the suggest number is under 1 10 If rate is 1 1 for each WAN port the router function will act like Session mode LOAD BALANCE Outbound 2 SHS 3830 Outbound Load balance Load balance Load balance by Session by IP Welcome System status WAN configure LAN configure wW1 W2 W3 W4 1 1 1 1 Weight round robin mode ex x 2x 2x 3x Outbound inbound v Firewall WAN2 80000000000 us 6 Advance System IP PBX Save amp reboot 54 3 2 2 Inbound Inbound function allows incoming traffic to be allocated by inbound load balance policy so that increasingly all broadband bandwidth usage and balancing load among connected lines Refer to Chapter 4 for more information For example please follow these steps as below for adding an item otep 1 Enter inbound web page Then click Add to enter the added page LOAD BALANCE Inbound SHS 3830 Welcome Inbound Load balance System status Item Domain Seq Address Weight Enable Edit WAN configure LAN configure Add
13. LAN configure Item Domain name IP address Enable Edit 1 www test dns 192 168 1 130 oO 2 wwiw tl dns 192 168 1 131 M c 3 www t2 dns 192 168 1 132 mu VPN pass through DMZ Virtual server 2 DDNS MAC clone Multi NAT Inner DNS Routing configure v System otep 2 User can edit or delete it If user wants to delete it click Delete Then router goes back to Inner DNS list table If users want to edit click add when user finish editing job Then router goes back to Inner DNS list table 106 SHS 3830 wy w WAN configure LAWN configure 3 Edit Inner DNS Item 2 Load balance Domain name Firewall IP address 192 168 1 141 v Quality control YPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure v System Step 3 Router go back to Inner DNS list table SHS 3830 i LUI LAN configure Iter Domain name Load balance www test dins Firewall T wy tf drs Yo Quality control pass through DMz Virtual server DONS clone Multi NAT Routing configure System 3 5 8 Routing configure me C Apply WAN configure inner DNS IF address 192 166 1 130 192 168 1 141 132 158 1 132 e Enable O There are two routing methods can b
14. Local stop IP address Proto TCP Local IP Filtering IP Filtering Destination start port Destination stop port Enable Edit 5000 5020 CJ Apply otep 1 Enter Local IP filtering web page Then click Enable check square of item 2 to enter the edited page SHS 3830 Welcome v System status Item Local start IP address Local stop IP address v WAN configure 1 192 168 1 13 192 168 1 15 Vv LAN configure 2 192 168 1 30 192 168 1 50 v Load balance Super Users 192 168 1 100 192 168 1 200 C Add 2 DoS defense ARP protection Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit Proto Destination start port Destination stop port Enable Edit 5000 5020 7000 7020 0 L1 10000 11000 otep 2 User can edit or delete it If user wants to delete it click Delete Then router goes back to Local IP filtering list table If users want to edit click add when user finish editing job Then router goes back to Local IP filtering list table 66 5 5 3830 Welcome v System status Edit Local IP Filtering Item 2 v WAN configure Local start IP address 92 168 1 30 Vv LAN configure Local stop IP address v Load balance 192 168 1 50 Destination start port Super Users Destination stop port DoS defense ARP protection Delete Apply Local IP filteri
15. SHS 3830 1 User Manual SHS 3830 is an embedded server that provides IP PBX functions and two WAN ports Router features Avadesign Technology Co Ltd www avadesign com tw 2014 11 25 WELCOME Congratulations on purchasing the SHS 3830 The SHS 3830 is an embedded server that provides IP PBX functions and two WAN ports Router features The SIP based IP PBX can create telephony systems for home and small to medium enterprises Manual version V1 00 25 11 2014 Avadesign Technology Co Ltd 4F 10 No 351 Sec 2 Zhongshan Rd Zhonghe Dist New Taipei City 23504 Taiwan R O C www avadesign com tw Table of Contents Chapter T Intro dU HOP hesterna temm UM Mmm nS PUE 5 5 5 tte ee 5 IP NOBNORSCOPIEIGOIOF 6 21 NT VION IMC 7 BESA 7 tec AW SO Ri 7 1 2 1 Front Panel LED 7 BICK I ANIC 8 Chapter 2 Start to configure 5 53830 22 222222211 9 mmm 9 2 2 Plug in DC power adapter to SHS 3830
16. Step 3 Click the Enable check square of item 1 Then click Apply to save and enable SHS 3830 Welcome mem System status Item IP address Enable Edit WAN configure 1 192 168 1 99 CJ LAN configure Load balance C Add 6 Apply Super Users DoS defense ARP protection Local IP filtermg Remote IP filtermg URL filtermg Intrusion security Messenger blockmg IP session Quality control Option Edit or Delete Step 1 Enter Super Users web page Then click Enable check square of item 2 to enter the edited page 59 5 5 3830 Welcome v System status vy WAN configure Vv LAN configure Load balance Super Users Dos defense ARP protection Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit Item IP address Enable Edit 1 192 168 1 99 2 192 168 1 100 3 192 168 1 200 o o Add Apply Step 2 User can edit or delete it If user wants to delete it click Delete Then router goes back to Super Users list table If users want to edit click add when user finish editing job Then router goes back to Super Users list table SHS 3830 Welcome System status v WAN configure LAN configure Load balance Super Users Dos defense ARP protection Local IP filter
17. WAN configure x COR LAN configure Load balance Edit Multi NAT Item 1 7 Firewall LAN IP address Y Quality control Subnet mask VPN pass through Select WAN Delete Add Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure System Step 3 Click the Enable check square of item 1 Then click Apply to save and enable 102 5 5 3830 WAN configure Y LAN configure Load balance Y Firewall Quality control VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routmg configure System 7 IP PBX 0 Item LAN IP address Subnet mask 1 192 168 1 2 255 255 255 248 Add Example Edit or Delete Step 1 Enter Multi NAT web page Then click Edit check square of item 2 to enter the edited page SHS 3830 WAN IP Select WAN Enable Edit 172 16 1 10 AUTO CJ Applv Y WAN configure v LAN configure Load balance Firewall Quality control VPN pass through DMZ Virtual server DDNS clone Multi NAT Inner DNS Routing configure System Item LAN IP address Subnet mask 1 192 158 1 2 255 255 255 248 2 192 158 1 5 255 255 255 248 3 192 158 1 7 255 255 255 248 Add WAN IP Select WWAN Enable Edit 172 16 1 10 AUTO 172 16 1 11 WANT 117216112 WAN2 C Apply Step 2 User can edit or delete
18. 5 3830 Welcome Remote IP Filtering v System status Item Remote start IP address Remote stop address Proto Destination start port Destination stop port Enable Edit v WAN configure 1 172 16 1 13 172 16 1 15 TCP 1000 1010 EH Vv LAN configure 2 172 16 1 80 172 16 1 90 UDP 2000 2010 P Load balance Vui 3 172 16 1 30 172 16 1 50 ALL 1700 1800 EH Super Users Add C Apply DoS defense ARP protection Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit 70 3 3 6 URL filtering Besides restrict users by local destination IP the SHS 3830 provides you to do accessed restriction for user by URL as well You may restrict some URL address that are not allow to reach Option Add a new item otep 1 Enter URL filtering web page Then click Add to enter the added page Firewall URL filtering SHS 3830 Welcome URL filtering System statu Item Keyword Filter Port Enable Edit v WAN configure Y LAN configure Add Apt Load balance Super ARP protecti ocal IP filter cemote IP i JRL filt Step 2 Fill data to Keyword and Filter Port You can write a number or ALL to Filter Port Then Click Add then router goes back to URL filtering list table 71 5 5 3830 Welcome System status WAN configure LAN configure Load balance Super Users DoS defense ARP
19. Load balance Firewall Quality control 7 Advance VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure System IP PBX mom WAN TCP UDP Globalstartport Global end port Local server IP address Allow remote IP Enable Edit WAN1 TCP 100 102 100 192 168 1 9 pA WAN2 1200 1202 1200 192 168 1 10 B Sumo USB3G TCP 3000 3005 3010 192 168 1 111 GB Apply Step 2 User can edit or delete it If user wants to delete it click Delete Then router goes back to Virtual server list table If users want to edit click add when user finish editing job Then router goes back to Virtual server list 98 table SHS 3830 WAN configure Y Load balance Firewall LAN configure Quality control VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure Y System 7 IP PBX rn n Edit virtual server Item 2 WAN TCP UDP v Global start port Global end port Local por Local server IP address Allow remote IP address Delete otep 3 Router go back to Virtual server list table SHS 3830 4 WAN configure LAN configure Load balance Y Firewall v Quality control Rc NNNM VPN pass through DMZ V
20. Password Time Mail alert System log Remote configure Load default Config backup 114 System Log content SHS 3830 Welcome System Log configure Log content System statu v WAN configure Item Time LAN configure Hn Jan 1 00 00 15 LAN interface bootup IFzeth0 40 IP 192 168 1 253 balance 2 Jan 1 00 00 15 WAN interface bootup IFzeth0 1 IP2192 168 11 100 1 00 00 15 WAN interface bootup IFzeth0 2 1 192 168 12 100 mn Jan 1 00 00 38 LAN port start up 3 6 5 Remote Configure The SHS 3830 can be managed from any PC from INTERNET If enable Remote configure function in this display access to the Web based interface is available via the INTERNET If not enabled access is only available to PCs from LAN Access from LAN specific 192 168 1 254 in the URL field Access from INTERNET specific WAN port IP address in the URL field ROUTER provide easy method to access from INTERNET via Dynamic IP amp Dynamic port Remote IP specific dedicated PC can be remote access ROUTER Leaving these fields blank will allow access by all PCs if enter specific IP address only this address PC can access from remote The address must be Internet IP addresses Remote Port port number used when connecting remotely Example If the local user Enable the Remote configure function Remote port is 8888 default is 8888 can
21. Router go back to Multi DMZ list table SHS 3830 v System status A Share IP DMZ v WAN configure LAN configure Item DMZ host IP address ISP provided IP address WAN Enable Edit Load balance 1 192 168 1 31 172 16 1 10 WANT Firewall 2 192 168 1 51 172 19 1 2 WAN v Quality control VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure v System 3 5 3 Virtual server You may have FTP MAIL VPN or other server on your LAN If you would like to allow the global users access some servers providing special services on your LAN This function can help you to do this Provide with global port amp local port mapping function let you easily configure internal server with same port number mapping to WAN IP different port number 95 Global port WAN virtual protocol number Local port used by internal server port number Local IP local server IP address For multi wan port router no matter data packet coming in from which WAN port WAN IP address router will check incoming data port number only For example Global port number 1021 map into local server IP 192 168 1 10 port 21 Global port number 8080 map into local server IP 192 168 1 10 port 80 Global port number 2323 map into local server IP 192 168 1 25 port 23 Global port number 1100 map into local server IP 192 168 1 13 port 21 You also can configure Global port number 1022
22. add when user finish editing job Then router goes back to URL filtering list table SHS 3830 Welcome LLL System status WAN configure LAWN configure Load balance Super Users DoS defense ARP protection Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit Edit URL filtering 2 Keyword t Filter Port a c NNI Certe otep 3 Router go back to URL filtering list table 73 5 5 3830 Welcome w System status Item 7 WAN configure v LAN configure Y Load balance Firewall Super Users Dos defense ARP protection Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit 3 3 7 Intrusion security Keyword Sexy ALL hit 80 1000 Add Filter Port Enable Edit Cappy Pre setting IP amp MAC mapping to prevent from not anticipate association for security consideration By setting up this table router will perform BLOCK or PASS function according to the option Option Add a new item Step 1 Enter Intrusion security web page Then click Add to enter the added page SHS 3830 Firewall Intrusion security Welcome System status Intrusion security Y WAN configure
23. you have to configure WAN and LAN IP for network enable 2 5 1 WAN configuration There are two WAN ports for the SHS 3830 You can select WAN configure in the menu bar on the left side of screen to configure WAN1 WANO as shown below There are several WAN functions can be made in this display you can configure functions to each WAN port separately 10 WAN Configure WAN1 Dynamic IP SHS 3830 me arc WAN1 Dynamic IP PPPoE Static IP Do configure ee JC VPN client Disable 2 L2TP PSK WAN2 3G USB modem Internet Schedule Enable Disable LAN configure Healthy check Enable Disable Load balance Apply WAN1 WAN TYPE Three kinds of WAN types to let you select for each WAN port Dynamic IP connect to Cable Modem Obtain an IP address from ISP automatically Usually it s used to connect CABLE modem You won t need to assign an IP address The SHS 3830 will get the IP address for user automatically PPPoE connect to Dial Up DSL some ISPs require use of PPPoE to connect to their service Connect to ISP via dial up connecting ISP will assign a legal IP to you after the user ID and password had been passed when the connection is made The user ID and password here are provided by your ISP Static IP Connect to Leased DSL ISP assigns you a static IP address When used the leased line of A
24. 5 3830 Welcome LAN IP speed limit tem IP address MAX download rate kbits MAX upload rate kbits MIN download rate kbits MIN upload rate kbits Enable Edit v system status Using this function need to enable QoS v WAN configure LAWN configur 1 192 168 1 11 1000 Load balance 2 192 158 1 12 1200 Firewall Bandwidth contro Outgoing Route LAN IP Speed limit 3 5 Advance VPN pass through e DMZ Virtual server e DDNS MAC clone e Multi NAT e Inner DNS Routing configure 3 5 1 VPN pass through 1000 2000 2000 F 1200 3000 3000 EL 1300 1200 1200 VPN is the abbreviation for Virtual Private Network which provide a secured link through public network by encrypting data between local and remote sides In order to pass through VPN traffic router needs to recognize VPN packets and pass them in transparent way VPN packets like IP Sec PPTP and L2TP will not be affected and passed to the destination for appropriate process as desired Example Select Pass through protocol and fill its local IP 90 Advance VPN pass through SHS 3830 WAN configure VPN pass through configure VPN pass through Enable Disable VPN server local IP PPTP pass through Enable Disable PPTP server local IP Quality contro P Advance L2TP pass through Enable Disable VPN pass through L2TP server local IP Virtual servet Apply 3 5 2 DMZ The Demilitarized Z
25. Apply Outbound Inbound Firewall Quality control Advance Vv System IP PBX Save amp reboot Step 2 Fill data to Domain name If Type is IP user must fill an IP for selected WAN port If Type is WAN User does NOT fill IP address Then Click Add then router go back to Inbound list table SHS 3830 Welcome inbound Load balance System status Edit Inbound Item 1 WAN configure Domain name v LAN configure Outbound 1 ONone Wan v 172 168 1 10 H Inbound 2 None CO wan WAN2 172 168 1 1 EN 3 O None wan Ip WAN1 121 H Firewall 4 O None 9 wan WAN2 v Quality control 5 O None 9 wan USB3G B Advance 6 None Owan WANT vj o NN v System 7 None Wan Ip v 1 8 None Owan WANT vj NN Save amp reboot 55 Step 3 Click the Enable check square of item 1 Then click Apply to save and enable 5 5 3830 Inbound Load balance Load balance Item Domain Seq Address Weight Enable Edit Welcome System status WANconfigure m 1 www tlin 1 172 168 1 10 1 CJ LAN configure 3 WAN1 1 Outbound 4 WAN2 2 Inbound Firewall Add Apply Quality control Advance System v IP PBX Save amp reboot Option Edit or Delete otep 1 Enter Inbound web page Then click Enable check square of item 2 to enter the e
26. Callee ID Source SIP ID Destination SIP ID Command 2002 rl 2002 rl 2001 rl 2001 rl 2 1 70 22 00 2 1 70 22 01 2 1 70 22 01 2 1 70 22 09 2001 2001 2001 2001 2002 2002 End time Duration Billsec 2 1 70 21 56 2 1 70 22 00 2 1 70 22 00 2 1 70 22 01 2 1 70 22 01 2 1 70 22 09 SIP 2002 00000010 SIP 2001 00000012 SIP 2002 00000014 SIP 2001 00000016 SIP 2002 00000018 SIP 2002 0000001a SIP 2002 0000001 1 SIP 2002 00000013 SIP 2001 00000015 SIP 2002 00000017 SIP 2001 00000019 SIP 2001 0000001b Status 0 BUSY 7 ANSWERED 0 BUSY 3 ANSWERED 2 ANSWERED 15 ANSWERED Hangup Dial Hangup Dial Dial Dial SIP 2002 rt T k SIP 2002 1tTk SIP 2001 1tTk SIP 2001 1tTk DOCUMENTATION 2757373 16 DOCUMENTATION 2757628 18 DOCUMENTATION 2757646 2 DOCUMENTATION 2757667 22 DOCUMENTATION 2757690 24 DOCUMENTATION 2758146 26 Start time Answer time 2 1 70 21 56 2 1 70 22 00 2 1 70 22 00 2 1 70 22 00 2 1 70 22 01 2 1 70 22 01 2 1 70 22 01 2 1 70 22 01 2 1 10 22 09 2 1 70 22 09 2 5 3 11 Debug Capture When you have finished the configuration of SHS 3830 but the IP PBX can NOT work smoothly or you get trouble in the usage of SHS 3830 Please select the function of Debug Capture to download the capture file for the network packet analysis and troubleshooting The capture file will be open and read by Wireshark software package Wireshark is a free and open
27. Item Mac Address IP Address Host Name Expires In Data monitor DHCP clients table NAT table Current routing table WAN configure LAN configure Load balance Firewall Quality control Advance System Save amp reboot 4 51 3 1 4 NAT table Display NAT Network Address Translation sessions occurred at the moment in router NAT is widely implemented in router in order to resolve not sufficient IPs in IPv4 and functions as IP translation between public IP and private IP Time means life time for each session type while session active System status NAT table SHS 3830 Welcome NATtable table TT Protocol Time Local IP Local Port Destination IP Destination Port Gateway IP Gateway Port Link statu UDP 12 192 168 1249 5060 192 168 1 253 5060 192 168 1 249 5060 Data monitor UDP 10 192 168 1 50 138 192 168 1 255 138 192 168 1 50 138 a UDP 13 192 168 1 169 17500 255 255 255 255 17500 192 168 1 169 17500 is UDP 1 192 168 1 44 56219 192 168 1 255 8612 192 168 1 44 56219 routme table UDP 5 192 168 1 44 17500 255 255 255 255 17500 192 168 1 44 17500 WAN configure UDP 9 192 168 1 44 54306 224 0 0 1 8612 192 168 1 44 54306 LANconfigure UDP 59 192 168 1253 5060 85 25 73 181 5060 192 168 1 253 5060 Load balance UDP 9 192 168 1 76 17500 255 255 255 255 17500 192 168 1 76 17500 Y Firewall UDP 3 192 168 1 50 137 192 168 1 255 137 19
28. Preview SHS 3830 Quality control me Update Preview Advance System Preview Number 99991 Subscribers SIP Acount member Group Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Shift one or some SIP Update IPPBX accounts to be member at the right side Save amp reboot 43 Then you will see a member 3001 already add on the screen SHS 3830 Quality control LLL Advance System Preview Number Member Edit e EHEHEHE Subscribers 99991 7 3 Ir Group 99992 Queue 99993 1 Paging 99994 DialPlan S FPPPPPEPPTTTTTTTITITIT 99996 Add a new member in m 99997 CJ 1 SIPStatus preview group 99991 99998 CJ Download Log 99999 CJ Download CDR Debug Capture Update IPPBX Save amp reboot 2 5 3 9 Download Log You can download the log file of system by clicking Download button IP PBX Download Log SHS 3830 Quality control Download Log Log ownlad amp Delete Sau e Subscribers Group Queue Pagmg SIPTrunk DialPlan Download CDR Debug Capture Update IPPBX Save amp reboot m 44 The log file is shown as below for your reference The maximum number of records is 1 000 Example of System Log file Jan 31 22 25 51 NOTICE 1772 chan sip c Registration from
29. and dynamically assigned when a station powers on You will need to indicate the range of DHCP server and DNS address if you enable DHCP server function When enable DHCP Server in From field user assigns class A B C IP which suit for network topology Fill in local DNS Server IP address in DNS Address field you can ask your local ISP to provide this information LAN Configure LAN Configure SHS 3830 5 Welcome LAN Configure Configure Y System status LAN IP address 192 168 1 253 Y WAN configure rcm Subnet Mask 255 255 255 0 DHCP server Enable Disable LAWN configure Start IP address 192 168 1 10 DHCP reserved IP End IP address 192 168 1 249 Load balance Primary DNS 168 95 1 1 Y Firewall Secondary DNS 168 95 192 1 Y Quality control DHCP release time seconds 664000 Advance Gateway IP 192 168 1 254 Y System Apply Y 5 amp reboot LAN IP address Input IP address for LAN port of SHS 3830 If user set up SHS 3830 be static IP mode user need to input IP address of LAN and Subnet Mask 20 Subnet Mask Input Subnet Mask for LAN port of SHS 3830 DHCP server User can select either Enable or Disable Start IP address Input Start IP address End IP address Input End IP address Primary DNS Input Primary DNS address Secondary DNS Input Secondary DNS address DHCP release time seconds Input the number of seconds Gateway IP If user set up SHS 3830 be s
30. disconnected e Always on WAN port will try to establish the connection as long as it is disconnected no matter this port is used or not 13 LCP echo To send LCP Link Control Protocol echo request at regular interval to ISP for checking PPPoE connection active Interval Editable for need between 0 65535 Counter the number of LCP echo request to be sent about always on function normally you need to combine Health check function together then always on will be work more prefect because there have a ADSL modem between router amp ISP equipment in physical layer if ADSL line fail but ADSL modem still alive SHS 3830 can t detect line is broken unless ISP send a disconnect packet to SHS 3830 so if ADSL line is in abnormal up down sometimes router module of SHS 3830 does not get disconnect message from ISP so connected line is deemed to still connection by SHS 3830 If you enable Health check in each line then the SHS 3830 can automatically send packet out through WAN to detect whether line is active or not 1 packet 30 sec this function will cover entire network to secure packet will not lose in defect line include router gt ADSL modem gt ADSL line gt ISP Equipment gt Interest It s better to enable at least 2 options in Health Check in order to avoid misjudgments when only 1 option selected and that option Server fail Static IP Leased DSL Type If you select Static IP you will ne
31. follow below steps otep 1 Enter Bandwidth control web page Step 2 Clink the Add then enter its added page Set parameters in below page Then click Apply SHS 3830 Welcome Bandwidth Usage control System status Edit Bandwidth Usage control Item 5 WAN configure Description APP 1 7 LAN configure TCPIUDP Load balance Firewall MAX Upload speed k bits s 2000 MAX Download speed k bits s 2000 QoS Bandwidth control Delete Apply Outgomg Route LAN IP Speed limit Advance System 7 IP PBX Save amp reboot otep 3 Clink the Enable check square of APP1 Then Click Apply SHS 3830 Welcome Bandwidth Usage Control System status Using this function need to enable QoS WAN configure Description PROTO PORT MAX Upload rate k bits MAX Download rate k bits Enable Edit 7 LAN configure 80 0 0 Load balance POP3 TCP 110 0 0 UO Firewall FTP 21 10000 10000 JO QoS APP1 UDP 1000 2000 2000 8g Bandwidth control Outgoing Route Add 9 Apply LAN IP Speed limit Advance System IP PBX Save amp reboot 83 3 4 3 Outgoing route This function can let you arrange data packet from specific IP address to access Internet by designated WAN port With this function you can easily let VOIP packet or other special applicati
32. protection Local IP filtermg Remote IP filtermg URL filtermg Intrusion security Messenger blocking IP session limit Quality control IH h 3 hA Edit URL filtering Item 1 Keyword Filter Port ALL otep 3 Click the Enable check square of item 1 Then click Apply to save and enable SHS 3830 Welcome System status WAN configure LAN configure Load balance Super Users DoS defense ARP protection Local IP filtermg Remote IP filtermg URL filtermg Intrusion security Messenger blockmg IP session Quality control o L Item Keyword Filter Port Enable Edit 1 Sexy ALL C Option Edit or Delete otep 1 Enter URL filtering web page Then click Enable check square of item 2 to enter the edited page 72 5 5 3830 Welcome v System status EE coc RE LU DD vy WAN configure Vv LAN configure Load balance Item Keyword Filter Port Enable Edit 1 Sexy ALL 2 80 L1 m B i Super Users Dos defense ARP protection Local IF filtering Remote IF filtering URL filtering Intrusion security Messenger blocking IP session limit LApply Step 2 User can edit or delete it If user wants to delete it click Delete Then router goes back to URL filtering list table If users want to edit click
33. redundant fault tolerant accesses WANe should also be a static address It would take approximately 24 48 hours for this change to take effect throughout the Internet 121 Chapter 5 Hardware load default If you need to reset the settings of the SHS 3830 to factory default values or back to latest configuration file please follow the description step by step to load the factory default settings or back to latest configuration file for the device Please be careful Do not press the Factory Reset button unless you want to clear the current data 1 Plug in the power code and then press on the Factory Reset button 3 seconds 2 Release the Factory Reset button 3 The SHS 3830 will load the default settings or back to latest configuration file and do self test 4 Complete the reset procedure 122 Chapter 6 Appendix 6 1 TCP IP Protocol Port Number List Protocol Port No List POP3 NNTP UDP 5631 5632 TCP XWINDOW 6000 6063 Real Media 7070 123
34. the button over 3 seconds or reset back to latest configuration file while pushing the button USB 5 5 3830 provides two USB 2 0 ports Light on when SHS 3830 detects USB device and active LAN 5 5 3830 provides three RJ45 type LAN ports connecting to your computer or network device such as Hub Switch via RJ45 cable Light on means link 100 Mbps Flash when data is transmitting or receiving with 100 Mbps Light off means 7 disconnected or undetected WAN 5 5 3830 provides two RJ45 type WAN ports connecting to broadband transmission equipment such as ADSL or Fiber or CABLE Modem via RJ45 cable Light on means link 100 Mbps Flash when data is transmitting or receiving with 100 Mbps Light off means disconnected or undetected POWER Light on when 5 53830 is powered by on 1 2 2 Back Panel g NEN H 2 POWER DC 12V WAN1 WAN2 LAN1 LAN2 LAN3 USB POWER A switch for power on or off DC 12 2 Connecting to AC adapter Input AC 100V 240V 50 60Hz 0 8A Output DC12V 2 0A LAN WAN RU 45 socket complied with Ethernet 10 100base T USB USB 2 0 ports USB Type A Chapter 2 Start to configure SHS3830 2 1 Unpacking Unpack the items Your package should include e One SHS 3830 One external power adaptor INPUT AC100V 240V 50 60Hz 0 8A OUTPUT DC 12V 2 0A If items are missing or damaged notify your Avadesign representative Keep the carton and packing material 2 2 Plug in DC power adapter to SHS 3830 2 3
35. 0 Disconnected Connect wv x Firmware Version number Release date v I SHS3830 V0028 2014 09 25 10 10 46 08 00 11 Reflash 1 3 1 2 Data monitor Differ from Link status Data monitor indicates detailed packets transmitted and received status and system status at the moment System status CPU usage Memory usage Live time Packet transfer status Current Session TCP Session UDP Session Accumulative Session Bandwidth 50 Current Bandwidth Download Speed Upload Speed Load Balance Load balance Byte Received Byte Transmitted Total Bytes System status Data monitor SHS 3830 A Welcome Data Monitor CPU usage 6 Memory usage 6 Live time Link status 0 096 66 996 20 19 27 up 20 19 Data monitor cnm Current session TCP Session UDP Session Accumulative session NAT table WAN1 0 0 0 Current routing table WAN2 0 0 0 7 WAN configure Current Bandwidth Download Speed bytes sec Upload Speed bytes sec LAN configure WAN1 0 0 Load balance WAN2 0 0 Firewall ster tuy c Load balance Rate Bytes Received bytes Bytes Transmitted bytes Total Bytes bytes m mee WAN1 0 0 0 0 el cius WAN2 0 0 0 0 IP PBX 1K bytes 8K bits Save amp reboot 3 1 3 DHCP Clients table You can get the detail information of DHCP clients in following window System status DHCP Clients table SHS 3830 Welcome DHCP clients Table Link status
36. 020 AUTO LAN configure 7 Loadbalance 00 Add _ Apply Firewall Quality contol QoS Bandwidth control Outgoing Route LAN IP Speed limit Advance System v IP PBX Save amp reboot Example Edit or Delete otep 1 Enter Outgoing route web page Then click Enable check square of 2 to enter the edited page 85 5 5 3830 Welcome Outgoing route w System status Item StartIP address End IF address PROTO Destination start port Destination stop port SelectWAN Enable Edit v WAN configure 1 1 192 168 1 10 192 168 1 12 TCP 3000 3020 AUTO Vv LAN configure 2 192 168 100 192 168 1 102 UDP 4000 4040 WAN1 first v Load balance 3 192 168 1 200 192 168 1 220 TCP 5000 5010 WAN20nly Y Firewall aT ME QoS Bandwidth control Outgoing Route LAN IP Speed limit Advance v System Save amp reboot Step 2 User can edit or delete it If user wants to delete it click Delete Then router goes back to Outgoing route list table If users want to edit click add when user finish editing job Then router goes back to Outgoing route list table SHS 3830 Welcome Outgoing route Y System status Edit Outgoing route Item 2 WAN configure Start IP address 192 168 100 LAN configure Stop IP address 1921691120 Load balance TCP UDP UDP Firewall Destination st
37. 2 168 1 50 137 Quality control 1799 192 168 145 49658 192 168 1 253 80 192 168 1 45 49658 gt Advance UDP 5 192 168 1 44 17500 192 168 1 255 17500 192 168 1 44 17500 gt System UDP 16 192 168 1 44 56603 224 0 0 1 8612 192 168 1 44 56603 UDP 15 192 168 1 45 17500 255 255 255 255 17500 192 168 1 45 17500 Save amp reboot UDP 16 192 168 1 44 59131 192 168 1 255 8612 192 168 1 44 59131 5 3 1 5 Current routing table This display shows the valid routing paths in router Users can view the information about current routing paths 52 System status Current touting table SHS 3830 P Welcome Current Routing Table Lmk statu Destination network Subnet mask Gateway 192 168 1 0 255 255 255 0 0 0 0 0 Data monitor M 0 0 0 0 0 0 0 0 192 168 1 1 DHCP clients table 3 2 Load balance 3 2 1 Outbound Load Balance Router provides two load balance work modes All the enabled WAN ports have the same 1 1 bandwidth rate Weight round robin Configure the WAN ports bandwidth rate manually Session mode When choose this mode the router will assign each coming session to each WAN port one by one no matter how traffic loading on each WAN port 53 LOAD BALANCE Outbound 1 SHS 3830 Welcome Outbound Load balance System status e i v WAN configure Load balance by Session by IP LAN configure Outbound w1 w2 w3 W4 1 1 1 1 Weight round robin mode ex x 2x 2x 3x
38. 2006 lt 51 20060192 168 1 253 gt failed for 192 168 1 249 5060 No matching peer found Jan 31 22 26 51 NOTICE 1772 chan sip c Registration from 2006 lt sip 2006 192 168 1 253 gt failed for 192 168 1 249 5060 No matching peer found Jan 31 22 26 52 NOTICE 1772 chan sip c Registration from 2006 lt 51 20060192 168 1 253 gt failed for 192 168 1 249 5060 No matching peer found Jan 31 22 27 52 NOTICE 1772 chan sip c Registration from 2006 lt 51 20060192 168 1 253 gt failed for 192 168 1 249 5060 No matching peer found Jan 31 22 27 52 NOTICE 1772 chan sip c Registration from 2006 lt sip 2006 192 168 1 253 gt failed for 192 168 1 249 5060 No matching peer found 2 5 3 10 Download CDR You can download the Call Detail Record file by clicking Download button Download 5 5 3830 Quality control A Download CDR CDR Advance System Downlad Downlad amp Delete Step 1 Select IP PBX Qu Step 3 Click You also can delete the iii Download CDR file from server DialPlan button Pre Download Download CDR otep 2 Select Download CDR 45 Caller ID s BUSY DialState s BUSY DialState Start time Answer time 2 1 70 21 56 2 1 70 22 00 2 1 70 22 00 2 1 70 22 01 2 1 70 22 01 2 1 70 22 09 The CDR file is shown as below for your reference The maximum number of records is 1 000 Example of CDR file
39. 53 WARR 3 8 3 7 SIP Account configure saved success Welcome Subscribers System status WAN configure Y LANconfigure Load balance Firewall I Quality control Advance v System Subscribers Group Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot v Then user will see a new SIP account with user name and pickup group was created successful and display on the screen as below SHS 3830 Welcome System status SIP Account User Name Pickup Group Edit WAN configure 222 777 2001 test v LAN configure Q UEEREERREEREREERERREREREREEREEREEREREREERNHe 9 2002 2002 test p v Load balance Firewall Quality control 3 Advance System Subscribers Group Queue Paging SIPTrunk Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot 28 4 User can edit and modify the subscriber data by clicking the check square under Edit item as shown above Then user will see the screen of update SIP account as below IP PBX Subscribers Update SIP account SHS 3830 mt Load balance Us
40. Connect to LAN Port LAN port of SHS3830 connects to user s computer or Hub Switch port via RJ45 cable Then plug in AC power cord to power source and switch on the SHS 3830 2 4 Open Web Browser Type the default IP address http 192 168 1 254 in the address bar of the Chrome browser to open web configuration The screen shows as below Please type 192 168 1 254 Please input with username admin and password admin then click Login button on the screen After login SHS3830 user can start to do basic and advance configurations After Login SHS 3830 user will see screen as below and there are ten main categories user can click on each category to extend detail items 9 Welcome System Status WAN configure LAN configure Load balance Firewall Quality control Advance system IP PBX Save amp reboot The various configuration menus are explained below You can select various function listed in the left side of Welcome page display Welcome Home Page SHS 3830 LLL 955 Congratulations on purchasing the SHS 3830 The SHS 3830 is an embedded server that provides IP PBX functions and two WAN ports Router features The SIP based IP PBX can create telephony systems for home and small to medium enterprises 2 5 Basic and Advance Configurations for IP PBX To make SHS 3830 work smoothly you have to set up some basic and advance configurations that include router and IP PBX features The first
41. DSL ISP will provide you the relative IP Subnet Mask Gateway and DNS You need to indicate the static IP manually VPN Client User can select either Disable or PPTP or L2TP or L2TP over IPSec With PPTP L2TP L2TP PSK dial up features to help construct a complete Client Server topology for need of enterprise network it improves security in connecting links in public network Internet Schedule This function allows you to control each WAN port link up down time by 11 daily weekly Available time WAN port link up time For example The link time is from AM 9 30 PM 6 30 User can fill 09 30 18 30 Select Weekly choose by day Note When enable SCHEDULE function the line will up down following the timer set no matter DOD function is enable or not Healthy check User can select either Enable or Disable When choose Dynamic IP you only need to save this selection by clicking on Apply button shown as below When finish setting all parameter reboot SHS 3830 WAN Configure WAN2 Dynamic SHS 3830 1I Svstem statu WAN configure WAN2 TYPE Dynamic IP PPPoE Static IP aaa VPN client Disable O PPTP L2TP O L2TP PSK le T Internet Schedule Enable Disable Healthy check Enable Disable The content and usage of WAN is the same as WANT 12 WAN Configure WAN1 PPPoE 5 5 3830 Welcome WANI S n status acr WAN 1
42. Dynamic PPPoE Static IP Account Password Service name option Max idle time mins 0 Connect mode Manual Dial on demand Always on echo 7 Enable Interval 20 Counter 3 VPN client Disable PPTP L2TP L2TP PSK Internet Schedule Enable Disable Healthy check Enable Disable Apply PPPoE Dial up DSL Type Select PPPoE and you will need to enter the ID and Password Sometimes you also need to input the Service Name if ISP requires for it Max Idle Time is using to disconnect the ADSL connection automatically after the idle period you define The unit is minute and the default is O This default value let SHS 3830 remain connecting all the time unless disconnected by user manually or ISP If you define the period as 3 and the SHS 3830 will auto disconnect after idling 3 minutes Supposing that you don t have the Service Name you may ask your ISP for it Account User Name provide by ISP up to 60 characters can be enter Password provide by ISP up to 60 characters can be enter Max Idle Time 0 check check by minutes Connect mode e Manual You need to initiate WAN connection manually by clicking WAN 1 connect or WAN2 connect button in System Status Link status menu However power up or reset also can initiate the WAN connection e Dial on demand Whenever a user is trying to access the Internet from his computer this WAN port will start connection automatically if it is
43. LAN configure v Load balance Super Users DoS defense ARP protection Local IP filtermg Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit v Quality control Users IP amp MAC address not in following list MAC address Add Scan 74 Intrusion security security O Enable Disable Block Pass IP address Edit Apply otep 2 Fill data to MAC address and IP Then Click Add then router go back to Intrusion security list table 5 5 3830 Welcome Intrusion Security w System status WANcon amp eur Add Intrusion Security Item LANconfigure MAC address 8 o jc 4 Load balance IP address 192 168 19 168 1 99 super Users Apply DoS defense ARP protection Local IP filtermg Remote IP filtermg URL filtermg Intrusion security Messenger blockmg IP session Y Quality control Y Step 3 Click the Enable check square of item 1 Then click Apply to save and enable SHS 3830 z Welcome Intrusion security v System status Intrusion security O Enable Disable Y WAN configure User s IP amp MAC address not in following list Block Pass v LAN configure Load balance Super Users Item MAC address IP address Edit 1 00 01 02 45 5 2 192 168 1 99 C sen Apply DoS defense ARP protection
44. Local IP filtermg Remote IP filtermg URL filtermg Intrusion security Messenger blocking IP session lmut Y Quality control 75 Option Edit or Delete otep 1 Enter Intrusion security web page Then click Enable check square of item 2 to enter the edited page SHS 3830 Welcome Intrusion security v System status Intrusion security OEnable Disable v WAN configure User s IP amp MAC address not in following list OBlock O Pass Vv LAN configure v Load balance Item MAC address IP address Edit Firewall O qn 5 Super Users 2 00 03 02 46 6B 7 C 192 168 1 199 DoS defense 3 00 12 45 57 8B 2C 192 168 1 100 ARP protection Local IP filtering Add Sean Apply 7 Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit Step 2 User can edit or delete it If user wants to delete it click Delete Then router goes back to Intrusion security list table If users want to edit click add when user finish editing job Then router goes back to Intrusion security list table SHS 3830 Welcome Intrusion Security v System status Edit Intrusion Security Item 2 MAC address 0 wv WAN configure LAN configure v Load balance Super Users Delete 7 DoS defense ARP protection Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit otep 3 R
45. Server Multiple NAT function Protocol Route Control IP Binding Function by IP amp port number Protocol Bandwidth Control by application protocol port number IP URL Blocking User Bandwidth control Function by user IP address Outgoing wan link selected by user IP address Remote Configuration through Internet Mail Alert H32 WAN up WAN down oystem Log oystem Log local event logging log send to remote server Firewall Backup Restore Router configuration file from PC Outbound Load Balance provide 2 working mode 1 session 2 weight round robin Inbound Load Balance provide 2 working mode 1 session 2 weight round 6 robin B TCP UDP RFC 793 768 B RIP RICP RFC 1889 1890 1 1 3 Management Administrative HTTP and port number configuration Subscriber information display HTTP port and user ID Password control Firmware and Library upload Configuration Backup Restore Reset to Factory default setting Soft Reset or Reboot System Status display Network Line SIP Trunk status 1 1 4 Environmental B Dimensions 155 W x 106 H x 29 D mm B Weight 300g B Power Adaptor INPUT AC100V 240V 50 60Hz 0 8A OUTPUT DC 12V 2 0A 1 1 5 Approvals B CE B FCC B RoHS 1 2 Hardware Overview 1 2 1 Front Panel and LED Indicator SHS3830 USB LAN WAN POWER 24 5 RESET 3 2 1 2880 RESET If SHS 3830 encounters any system crash you may press this button to reload factory default value as press
46. WAN port s is disconnected from Internet Router Reboot System will send the mail once the router reboot CONFIG save oystem will send the mail of log information once the system configuration is saved Port status is DCHP and it can t get an IP from DHCP server PPPoE Fail oystem will send the mail of log information once the WAN Port status is PPPoE and its connect is fail 113 System Mail alert SHS 3830 b Welcome ZB 7 Y System status Enable mail alert v TAN SOT Sender mail address Cd LAN confi server address Load balance Authentication Firewall Quality control Advance mmm UU Enable Alert condition Password af Time WAN up Mail alert WAN down System log Router reboot Remote configure CONFIG save Load DHCP fail mic PPPOE fail Apply 3 6 4 System log Show all the records after SHS 3830 Power on such as WAN port up down WAN IP address the obtained time DDNS current corresponding WAN IP address and so forth You can also save these data to files System System log configure SHS 3830 ES Welcome System Log configure Log configure Log content System status WAN configure Send log to specify PC O Enable Disable PC IP address 4 v Load balance Remote port Y Firewall Interval seconds 5 Quality control Advance
47. alls Video Codec h264 U mpeg4 U h263p U h263 ul e a u E Forward Trunk Reg Qualify BEB BB BeBe e Step 5 Click Apply button to save the configuration 2 5 3 4 Dial Plan Define the dialing plan for Extension It specifies the location of the instruction used to control what the phone is allowed to do and what to do with incoming calls for this extension When users want to create their dial plan please select DialPlan under IP PBX item of menu bar Then click Add button In the Dial Plan page you should define the destination of prefix route When you define the prefix route you should set the Alias Trunk ID in the SIP Trunk page first then you could input the correct Trunk ID in the Destination field You also can input IP Phone or Queue name or DISA Routing group allows you to set up call routing from route level 1 to 7 and DISA The application of DISA performs as automated attendant The SHS 3830 supports Automated Attendant You can record the default greeting and the other announcements for example invalid call or call is busy or no answer for use And click the check square of DISA So the caller will hear greeting because the called number will be routed to auto attendant 33 IP PBX Dial Plan SHS 3830 Welcome Create Dial Plan 1 System status WAN configure Prefix Add Front Add Back Drop Rout
48. amp reboot 1 Add Back Routing Group Edit r1 CJ B L S Add User can edit and modify the dial plan by clicking the check square Now we described each field of Dial Plan page as follows SHS 3830 2 All accounts with the first number is 2 Exclude 2 only Welcome Dial Plan System status WAN configure vV LANconfigure a 2 Sanne EEE EEE EERO Load balance f Add Front 886 Firewall Update Dial Plan 1 Delete the first digit 1 Delete the last digit g uuuEWEMNREREMETRENMNM Drop n 0 n Add Back P TTTS Add identified numbers Quality control p Advance Destination P Phone 7 System Subscribers Ring Timer Group Queue Paging SIPTrunk BEHNEBNHEHNHEHEEEHEHEHEHEEEEEEEEHEHG Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot a W r1 D 24215260142 DISA the end telephone number Add identified number code before the telephone number for example 886 35 The rule of Prefix is described as follows 0 9 number for telephone number x any number from O to 9 For example 02 2222 12xx means the telephone number range is from 02 2222 1200 to 02 2222 1299 2 all accounts i e telephone number with the fi
49. ap 4040 aas Select WAN WANL first Bandwidth control Outgoing Route Delete Apply LAN IP Speed limit Advance Y System Save amp reboot Step 3 Router go back to Outgoing route list table 86 5 5 3830 Welcome Outgoing route v System status Item address End IP address PROTO Destination start port Destination stop port Select Enable Edit w WAN configure 1 192 168 1 10 192 168 1 12 3000 3020 AUTO configure 2 192 168 100 192 168 1 120 UDP 4000 4040 WANTfirst Load balance 3 192 168 1 200 192 168 1 220 TCP 5000 5010 WAN 2only Firewall Z Oualty control er Canny Qos Bandwidth control Outgoing Route LAN IP Speed limit Advance v System Save amp reboot 3 4 4 LAN IP Speed limit To limit each IP bandwidth allocation in LAN so that an IP may need high data rates for specific application can be satisfied to fulfill all demands Before the feature is effective then user need to enable QoS first Example Add a new item Step 1 Enter LAN IP Speed limit web page Then click Add to enter the added page Quality Control LAN IP Speed limit SHS 3830 Welcome LAN IP speed limit System status Using this function need to enable QoS WAN configure Item address MAX download rate kbits MAX upload rate kbits MIN download rate kbits MIN upload rate kbits Ena
50. be different port number Remote IP is blank ROUTER WAN port IP is 110 111 112 1 115 When the user of remote side want to access the ROUTER web configure the remote user only need to enter http 110 111 112 1 8888 System Remote configure SHS 3830 Welcome Remote configure configure System status Remote configure Enable Disable WAN configure Service port 8888 LAN configure Load balance Apply Firewall Quality control Advance Password Time Mail alert System log Remote configure Load default Config backup 116 3 6 6 Load default Use this function to reset all the settings to their factory default values or latest configuration file Click Apply after selection the ROUTER will restart automatically System Load default 5 5 3830 gt Welcome Load Default Default w System status Y WAN configure Attention LAN configure This function will load factory default value and LAN IP will be back to 192 168 1 254 Y Load balance Y Firewall Y Quality control Advance Password Time alert System log Remote configure Load default Config backup 117 3 6 7 Configure backup Use Configure backup function to save all the settings parameter to PC for safety issue in order to avoid all parameters lose when system crush or SHS 3830 is loaded the default
51. ble Edit LAN configure Load balance Add Apply Firewall QoS Bandwidth control Outgomg Route LAN IP Speed limit Advance Vv System IP PBX Save amp reboot 87 otep 2 Fill data to IP address upload speed and Download speed Then Click Add then router goes back to LAN IP Speed limit list table SHS 3830 LAN IP speed limit IP speed limit Edit LAN IP speed limit Item 1 Welcome System status WAN configure IP address 192 168 1 11 LAN configure MAX download rate kbits Load balance m MAX upload rate kbits Firewall ee MIN download rate kbits _ MIN upload rate kbits QoS Bandwidth control Delete Apply Outgoing Route LAN IP Speed limit V Advance System Save amp reboot otep 3 Click the Enable check square of item 1 Then click Apply to save and enable SHS 3830 Welcome LAN IP speed limit System status Using this function need to enable QoS WAN configure Item address download rate kbits upload rate kbits MIN download rate kbits MIN upload rate kbits Enable Edit LAN configure 1 192 168 1 11 1000 1000 2000 2000 C Load balance Firewall Add Apply QoS Bandwidth control Outgomg Route LAN IP Speed limit Advance System v IP PBX Save amp reboot Example Edit or Delete Step 1 Enter LAN IP Speed l
52. c address in each WAN port Hemove all Ethernet cable on Load Balance Router LAN port except for the PC you want to clone Then press Ok when you ready Example Select LAN or WAN1 or WAN2 Then fill a new MAC to MAC address 100 Advance MAC Clone SHS 3830 LL A LA AKA ww Load balance Select port LAN1 v Y Firewall MAC address default value 00 09 2C 10 1B 6D Quality control MAC address 00 09 2C 10 1B 6D Apply 3 5 6 Multi NAT Multi NAT function allow you to configure multiple LAN IP Domain to each WAN port after configure multiple NAT function It will act like have virtual router connect to SHS 3830 LAN port all traffic between each LAN IP domain will send and receive through SHS 3830 SHS 3830 provides following benefit Example Add a new item Step 1 Enter Multi NAT web page Then click Add to enter the added page 101 Advance Multi NAT SHS 3830 WANconfigure EB 0 Load balance Item LAN IP address Subnet mask WAN IP Select WAN Enable Edit Add Apply LAN configure Firewall Quality control VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure System v IP PBX Step 2 Fill data to LAN IP address Subnet mask WAN IP and Select WAN Then Click Add then router goes back to Multi NAT list table SHS 3830
53. d Capture FilesDownload 4 pture FilesDownload Subscribers Group Queue Start Capture Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot 48 2 5 3 12 Update IPPBX You can update your SHS 3830 IP PBX by clicking Update IPPBX in the main menu of IP PBX as described below IP PBX Update IPPBX SHS 3830 otep 3 Choose file to update by clicking choose file button otep 4 Click Update button a 4 F Step 2 Select Update IPPBX 49 Chapter 3 Web configuration for Router functions 3 1 System status 3 1 1 Link status You can get the following information in Link status window LAN Status WAN Status Firmware Version LAN Status Shows the information of MAC Address IP Address Subnet Mask and DHCP Status Enable Disable WAN Status Shows the information of MAC Address IP Address and Subnet Mask on each or all WAN ports Firmware version version of software and its released date System status Link status SHS 3830 elcome Linkstatus Port IP address MAC address Subnet mask DHCP LAN 192 168 1 253 00 09 2C 10 1B 6D 255 255 255 0 Disable Port IP address MAC address Subnet mask Status Button S WAN1 DHCP 00 09 2C 10 1B 6B 255 255 255 0 Disconnected Connect table WAN2 00 09 2 10 1 6 255 255 255
54. ded IP address WAN Enable Edit EN Firewall 1 192 168 1 31 172 16 1 10 WAN1 O Quality control Appi VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routmg configure System IP PBX Example Edit or Delete Step 1 Enter Multi DMZ web page Then click Enable check square of item 2 to enter the edited page SHS 3830 gt System status Share IP DMZ v VAN configure Vv configure Item DMZ host IP address ISP provided IP address WAN Enable Edit Load balance 1 192 168 1 31 172 16 1 10 WANT Fi Firewall 2 192 168 1 41 172 19 1 2 WAN L1 v Quality control Ada 9 Apply VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure v System Step 2 User can edit or delete it If user wants to delete it click Delete Then router goes back to Multi DMZ list table If users want to edit click add when user finish editing job Then router goes back to Multi DMZ list table 94 5 5 3830 Tw System status w WAN configure LAN configure Edit Multi DMZ Item 2 7 Load balance DMZ host IP address Firewall ISP provided IP address Quality control WAN WAN2w VPN pass through DMZ Virtual server DDNS clone Multi NAT Inner DNS Routing configure Y System otep 3
55. dit or Delete Step 1 Enter Static routing web page Then click Edit check square of item 2 to enter the edited page SHS 3830 v Quality control VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure Step 2 User can edit or delete it If user wants to delete it click Delete Then router goes back to Static routing list table If users want to edit click add when user finish editing job Then router goes back to Static routing list table Netmask 255 255 0 0 255 255 0 0 255 255 0 0 Add J 109 Gateway 192 168 3 254 192 168 4 254 192 168 5 254 Apply 7 Enable Static routing Dynamic routing Welcome v System status Y WAN configure Item Destination network LAN configure 1 192 168 2 100 Load balance 2 192 168 2 102 v Firewall 3 192 168 2 104 Edit 5 5 3830 Welcome Static Routing configure w System status Edit static Routing configure item 2 w WAN configure Destination network 192 168 2 102 configure 255 255 0 0 Load balance Gateway IP 192 168 4254 v Firewall Quality control Delete Add VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT B Inner DNS Routing configure Dynamic routing Dynamic routing allows router learns of path to destination by receiving periodic updates from othe
56. dited page SHS 3830 Welcome Inbound Load balance v System status Item Domain Seq Address Weight Enable Edit v WAN configure MEM 1 www in 1 172 158 1 10 1 LAN configure 3 WANT 1 Inbound v Firewall 2 wwwt2 in 1 WANT 1 Quality control 2 WAN2 2 v Advance 3 172 16 1 100 3 v System Step 2 User can edit or delete it If user wants to delete it click Delete Then router go back to Inbound list table If users want to edit click add when user finish editing job Then router go back to Inbound list table 56 5 5 3830 Welcome Inbound Load balance v System status Edit Inbound Item 2 v WAN configure Dornain name LAWN configure Outbound 1 ONone wan WANI Inbound 2 ONone wan 3 Onone Owan WANI v 172 16 1 200 1 Firewa 4 Gone Owan WANI v 1 v Quality control 5 Gone Owan WANI v vance Owan WANI v 4 j v ystem E _ 7 Gone Owan WANI v Save amp reboot Owan WANI v 1 Delete C Add otep 3 Go back to Inbound list table SHS 3830 Welcome Inbound Load balance v System status Item Domain Seq Address Weight Enable Edit v WAN configure 1 wwwtl in 1 172 168 1 10 1 configure 3 WANT 1 Outbound 4 WAN2 2 Inbound v Firewall 2 www t2 in 1 WANT 3 v Quality control 2 WAN2 2 Advance 3 172 15 1 200 1
57. e applied in various network environments so choose one of them Static routing Dynamic routing for need Static routing This function allows manually defined by users as the only path to the 107 destination Users can configure the static routing path to Load Balance Router Example Add a new item Step 1 Enter Static routing web page Then click Add to enter the added page Advance Static routing SHS 3830 WAN configure Static Routing configure Routing configure LAN configure Load balance Edit static Routing configure item 1 Firewall Destination network Quality control Netmask VPN pass through Delete Add DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure System IP PBX Step 2 Fill data to Destination network Netmask and Gateway IP Then Click Add then router goes back to Static routing list table rn SHS 3830 WAN configure E Static routing routing Dynamic routing LAN configure Y Load balance Item Destination network Netmask Gateway IP Enable Edit Firewall 1 192 168 2 100 255 255 0 0 192 168 3 254 C 9 Quality control VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure System IP PBX v Step 3 Click the Enable check square of item 1 Then click Apply to save and 108 enable Example E
58. ed Ping UDP Flooding Firewall DoS defense WAN DoS Defense SHS 3830 LAN configure Load balance Super Users DoS defense ARP protection Local IP filtering Remote IP filtermg URL filtering Intrusion security Messenger blocking IP session limit Quality control Advance System I TP PRY A LAN DoS Defense WAN DoS Defense DoS Defense Parameter times sec Parameter times sec times sec 1 times sec Disable Enable O Enable Disable O Enable Disable Lock Time Enable E je Burst Enable mes 1 1 times times Enable Disable WAN DoS Defense Function Disable Ping ICMP respond IP Fragments Checking IP Address spoofing Function Parameter Port Scan times sec Function Parameter TCP SYN Flooding times sec ICMP Flooding times sec Oversized Ping 1 Jjtimes sec UDP Flooding times sec E 62 Enable Enable Disable Enable Disable O Enable Disable Lock Time Enable 6 Burst Enable times 82 mes 4 b Some virus are using PING command to attack network this Router can be defined as accept or reject PING command from WAN or LAN Function Description IP Fragments Checking the IP fragments When it finds someone from WAN side tries to attack your network using overlap IP fragments in a bad attention this f
59. ed to input the IP address Subnet Mask Primary DNS Secondary DNS and Gateway provided by your ISP The picture below is an example of static IP s settings WAN Configure WAN1 Static IP SHS 3830 Welcome WANI System status ar WAN1 TYPE Dynamic PPPoE Static IP IP address 192 168 11 100 Subnet mask 255 255 255 0 Primary DNS 168 95 1 1 Secondary DNS 168 95 192 1 Gateway 192 168 11 254 VPN client Disable 12 L2TP PSK Internet Schedule Enable Disable Healthy check Enable Disable Apply 14 3G Access 3G USB Modem In order to prevent any case in losing wired line connections 3G wireless line for backup seems the best way to keep line alive to make your business not affected Just a few steps for configured page as below and then it soon can be online with no obstacle Disable Enable of 3G USB modem is subject to be deactivated or activated all the time since the device turns on so make sure 3G USB modem attached before device power on All necessary parameters for configuration can be acquired from ISPs offering for account WAN configure 3G USB modem configure SHS 3830 Welcome 3G USB modem Configure System statu AT m 3G USB modem Enable Disable Device name Device NOT found SIM card PIN code 0000 APN User Name Password AT dial scripts 99 Connect mode Manual Always on Apply PPTP Dial Up PPTP dial up for WAN access type as below need
60. er Name Group test Mobile Extension Yes ONO Routing Group Firewall Quality control Advance System Subscribers s Voice Mail Enable ON OFF User Mail E oup Queue Call Limit 2 Qualify Paging Audio Codec G711p G711a Video Codec O 1264 mpeg4 h263p O h263 Welcome Y System status Y WAN configure Update SIP 2002 LANconfigure SIP Account Password C Apply ennuuuuus SIPTrunk Delete DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot 192 168 1 253 HAAHR S H S 3 8 3 0 SIP Account configure saved success Welcome Subscribers Vv System status WAN configure LAN configure v Load balance te Firewall Quality control Advance System SIPStatus Download Log Download CDR Debug Capture Update IPPBX 2 9 Save amp reboot Mobile extension setting Except create and edit subscribers as above description now we would like to introduce how to set up mobile extension for user For example there are two SIP account 2002 and 2003 f user wants to use account 2002 as mobile extension please set up it as following steps SHS 3830 Welcome CZ Mobile Extension Setting Y System status SIP Account User Name Pickup Group Edit WAN configure 2001 t
61. ered extensions Easy install APP on smart phone to become SIP IP PBX client extension Support SIP Trunk Support Audio Codec G 711 A law u law Support pass through Video Call Out Band DTMF RFC4733 RFC2833 SIP INFO Adaptive Jitter Buffer Automatic voice attendant Record your own greeting voice messages via voice file up load from Web NAT Traversal configurable Blind Transfer Configurable Call and Pickup group Block Anonymous Call Call Hold Call Transfer Call Park Call Queuing Call Routing DID amp ANI in dial plan function Caller ID Route by Caller ID in dial plan function Music On Hold Music On Transfer Time and Date Flexible Dial Plan Support Multi call rule to configure Outgoing Routing Rule Drop Replace Add and Routes selection Incoming Routing Rule Drop Replace Add Dial Group Setting Call Group Pick up group setting Configure maximum concurrent SIP calls RTP Routed or Direct mode selection SIP Trunk setting Cellular Phone resonance setting Video preview setting Flexible Routing Plan Voice broadcasting over IP Phone with separated group Provide CDR log file 1 1 2 IP Network connection IPv4 RFC 791 for WAN and LAN ports IP ICMP ARP RARP SNTP NTP Server and Time Zone setting WAN DHCP Fixed PPPoE DDNS LAN Static Private IP or DHCP Server NAT allows users to surf internet by means of a single broadband user account Multiple DMZ Host PPPoE static IP Multiple Virtual
62. est LAN configure 2002 2002 test Load balance 227 2003 2003 test tO Firewall ae Quality control Add Advance Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot 30 SHS 3830 Welcome ELLA System status w WAN configure Update SIP 2003 LAN configure SIP Account 2003 Password Load balance User Name 2003 Group test Y wv Firewall Mobile Extension 2002 Quality control hassaunaunausaxazauuauuuuuua 9 vV Adva NAT Yes UNO Routing Group R1 v System Audio Codec G711u U G711a Video Codec h264 mpeg4 h263p h263 Subscribers Group Voice Mail Enable ON OFF User Mail Call Limit 2 Qualify 7 ANN a a SIPTrunk Delete Apply a EEHEEHE B DialPlan Previ SIPStatus Download L Download CDR Debug Capture Update IPPBX Save amp reboot Once user has finished above configuration someone call 2003 the extension 2002 will ring too One of call answer the other call will hang up automatically Call Transfer The SHS 3830 supports call transfer now During talk over the phone you can press and 9 for call transfer After hearing the transfer voice dial the extension number that you want to transfer Blind Transfer The SHS 3830 supports blind transfer now You can press and 0 for blind transfer Call Group You can u
63. imit web page Then click Enable check square of item 2 to enter the edited page 88 5 5 3830 Welcome LAN IP speed limit v System status Using this function need to enable 205 w WAN configure Item address MAX download rate kbits MAX upload rate kbits MIN download rate kbits MIN upload rate kbits Enable Edit LAN configure 1 192 168 1 11 1000 1000 2000 2000 L1 Load balance 2 192 168 1 100 1200 1200 3000 3000 L1 Firewall 3 192 168 1 13 1300 1300 1200 1200 Add apply Bandwidth control Outgoing Route LAN IP Speed limit Advance v System Save amp reboot otep 2 User can edit or delete it If user wants to delete it click Delete Then router goes back to LAN IP Speed limit list table If user wants to edit click add when user finish editing job Then router goes back to LAN IP Speed limit list table SHS 3830 Welcome LAN IP speed limit System status Edit LAN IP speed limit Item 2 w WAN configure IP address 192 168 1 12 Vv LAN configure MAX download rate kbits Load balance MAX upload rate kbits Firewall E MIN download rate kbits MIN upload rate kbits Qos Bandwidth control Delete Apply Outgoing Route LAN IP Speed limit Advance v System Save amp reboot Step 3 Router go back to LAN IP Speed limit list table 89 5
64. ing Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit LLLLLLIIILLLLILLLLLLL Edit Super Users Item 2 192 168 1 150 E IP address Delete otep 3 Router go back to Super Users list table 60 5 5 3830 v system status Item IP address Enable Edit v WAN configure 1 192 168 1 99 Vv configure 2 192 158 1 150 Load balance Super Users _ DoS defen ARP protection Lacal IP filterind Remote IP filtering JRL filtering ntrusion security 3 3 2 DoS defense The SHS 3830 also provides with DoS Denial of Service Defense function to protect your network servers hosts routers and other devices from the attacking of villain using mass data transmission The default value in the display is the optimize parameter for Router Dos Defense SOHO Gateway 61 Firewall DoS defense LAN DoS Defense SHS 3830 LAN configure Load balance Super Users DoS defense ARP protection Local IP filtermg Remote IP filtermg URL filtermg Intrusion security Messenger blocking IP session limit Quality control Advance v System nner LAN DoS Defense DoS Defense WAN DoS Defense LAN DoS Defense Enable Function Disable Ping ICMP respond IP Fragments Checking Function Port Scan Function TCP SYN Flooding ICMP Flooding Oversiz
65. ing Group Edit Y LAN configure 2XXX ri Load balance Firewall Quality control Advance System e Subscribers Group Queue Pagmg SIPTrunk 2 Ye DialPlan BEB BBB RBBB Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot Then user will see the following screen Add Dial Plan 5 5 3830 Welcome System status WAN configure LAN configure Load balance Firewall Quality control Advance Vv System Subscribers Group Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot Dial Plan Iv Prefix 124 ja Add Front Add Dial Plan Drop Routing Group 1 28 30 40 r5 0 60 r7 0 DISA 7 2 test2 Queue v nnuuunuuuan Destination 19 Ring Timer me 34 5 5 3830 Welcome System status Prefix Drop Add Front WAN configure 2XXX EENEN 3234 5 LAN configure Load balance Firewall Quality control Advance System Subscribers Group Queue Pagmg SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save
66. irtual server DDNS MAC clone Multi NAT Inner DNS Routmg configure System IP PBX Step 2 Fill data to WAN TCP UDP Global port local port and local server address IP Then Click Add then router goes back to Virtual server list table SHS 3830 WAN configure SCELTA LAN configure Load balance Edit virtual server Item 1 Y Firewall WAN Y Quality control TCP UDP Advance Global start port VPN pane dion Global end port DMZ Local port Local server IP address 3216819 8 DDNS Allow remote IP address MAC clone EN Multi NAT Inner DNS Routing configure System Y IP PBX m n Step 3 Click the Enable check square of item 1 Then click Apply to save and enable SHS 3830 WAN configure LAN configure Load balance Firewall Quality control VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure System IP PBX 11 11 Item 1 1 Allow remote IP Enable Edit WAN TCP UDP Globalstartport X Globalend Local server IP address TCP 100 102 100 192 168 1 9 Apply Example Edit or Delete Step 1 Enter Virtual server web page Then click Edit check square of item 2 to enter the edited page SHS 3830 WAN configure lt LAN configure
67. irtual server DDNS MAC clone Multi NAT Inner DNS Routing configure System IP PBX 3 5 4 DDNS mm Item WAN TCP UDP Globalstartport Globalendport Localport Local server IP address Allow remote IP Enable Edit 1 1 TCP 100 102 100 192 168 1 9 74 Da 2 WAN2 ALL 1200 1202 1200 192 168 1 10 B 3 USB3G 3000 3005 3010 192 168 1 111 8 T EH You need to apply for a free DNS domain name from DNS provider Example dyndns org The SHS 3830 will update the WAN IP address to DDNS s 99 database once a WAN port was connected to Internet if DDNS function is enabled And the users in Internet can find out the SHS 3830 via this domain name User Name please apply from DNS provider Password please apply from DNS provider User Hostname please apply from DNS provider Advance DDNS Configure SHS 3830 DDNS configure configure Load balance DDNS Enable Disable Firewall Provider dyndns org Y Qualitv control Account statdns dyndns org customdns dyndns org Mc Password freedns afraid org zoneedit com m User host name no ip com A easydns com 3322 org DMZ Applv Virtual se DDNS MAC clc fulti N A ier D w t 3 5 5 MAC clone If your ISP blocked the MAC address of WAN port in router you may use MAC Address Clone to duplicate the MAC address of PC in LAN to replace the Ma
68. it If user wants to delete it click Delete Then router goes back to Multi NAT list table If users want to edit click add when user finish editing job Then router goes back to Multi NAT list table 103 SHS 3830 v WAN configure Vv LAN configure Edit Multi NAT 2 Load balance LAN IP address 192 168 1 7 v Firewall Subnet mask 255 255 255 248 v Quality control WAN IP 17216111 Select WAN VPN pass through DMZ Delete Add Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure System Step 3 Router go back to Multi NAT list table SHS 3830 WAN configure LAM configure Item LAN IP address Subnet mask WAN IP Select WAN Enable Edit Load balance 1 192 168 1 2 255 255 255 248 172 16 1 10 AUTO Firewall 2 192 168 1 7 255 255 255 248 172 16 1 11 WANT L1 Quality control ww 3 192 168 1 7 255 255 255 248 172 16 1 12 WAN2 Add S VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure System 3 5 7 Inner DNS In order to speed out DNS request process for quick surfing internet Inner DNS works as a cache to retain DNS information for hosts DNS lookup Example Add a new item otep 1 Enter Inner DNS web page Then click Add to enter the added page 104 Advance Inner DNS SHS 3830 WAN configu
69. item of IP PBX menu you can add the extension number to perform broadcast function IP PBX Paging SHS 3830 Welcome System status WAN configure LAN configure Load balance Firewall Quality control Advance Subscribers Group Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot Paging Paging Number Routing Group 111 r1 a de Add Paging Group Edit test 27 ast You also can modify or delete the paging number by clicking the check square under Edit item Then you will see the screen as below 39 5 5 3830 4 Quality control m IG Paging Advance 4 Add Paging Paging Number Subscribers Routing Group r1 r2 BJ r3 r4 BJ r5 re DJ r7 CJ DI Queue Paging Group test Pagmg SIPTrunk Apply DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot 192 168 1 253 BARS S H S 3 8 3 0 Paging configure saved success Quality control Advance System Subscribers Group Queue ETE EE n Paging mummuumumuumuumumuEEEEENHMNH SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot Then you will see the extension 122 set up as paging number successfully
70. map into local server IP 192 168 1 20 port 21 same port number in local server with different global port number Virtual server 192 168 1 10 192 168 1 11 FTP Server Telnet Server SOHO Gateway Remote User HTTP Server Server 192 160 1254 i192 168 1 12 192 188 1 113 WAN 203 74 34 30 For example Supposing you want to have four servers providing FTP HTTP Mail and Telnet services you must enter four virtual servers and enable them If users key in ftp 203 74 94 30 Load Balance Router will send the data of FTP protocol to the server of 192 168 1 10 If users use telnet software to connect to203 74 94 30 they will connect to the server of 192 168 1 11 If users key in http 203 74 94 30 Load Balance Router will send the data of HTTP protocol to the server of 192 168 1 12 If users use the email to connect to 203 74 94 30 they can receive the mails in Mail server of 192 168 1 13 Group Virtual server eases user to configure a range of ports for some applications Example Add a new item 96 otep 1 Enter Virtual server web page Then click Add to enter the added page Advance Virtual server SHS 3830 WAN configure SCELTA LAN configure Load balance Item WAN TCP UDP Globalstartport Globalendport Localport server IP address Allow remote IP Enable Edit Firewall Add Apply Quality control EINEN VPN pass through DMZ V
71. ng Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit Step 3 Router go back to Local IP filtering list table SHS 3830 Welcome SCIAS System status Item Local start IP address Local stop address Proto Destination start port Destination stop port Enable Edit v WAN configure 1 2 3 192 168 1 13 192 168 1 15 TCP 5000 5020 LAN configure 192 168 1 30 192 158 1 50 UDP 7000 8000 Load balance Super Users 192 168 1 100 192 168 1 200 TCP 10000 11000 F DoS defense ARP protection Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit 3 3 5 Remote IP filtering As name implied router filters remote IP user desire to and set below Option Add a new item otep 1 Enter Remote IP filtering web page Then click Add to enter the added page 67 Firewall Remote IP filtering SHS 3830 o Welcome Remote IP Filtering IP Filtering Item Remote start IP address Remote stop IP address Proto Destination start port Destination stop port Enable Edit System status v WAN configure Y LAN configure Add Apply Load balance Super Users DoS defense ARP protection Local IP filtermg Remote IP filtering URL filtering Intrusion security Messenger blocking IP session Qualit
72. oa nea du e E aha aia eles 53 32 OO 53 222 T 55 Omar Wall EOD Goes tee 57 SES Melle ICE T UL Um 58 ETE 61 64 SRM sails dina 64 67 OO EODEM 71 9 9 MUSON SECUTI a vu au uu euentu auo stre bete aus unus 74 Sos qe iMeles 54 2 G aa 78 3 39 P SESSIONI rd rr 79 Kei een P 79 RR 79 34 2 BINAWI CONTO a 81 ROUE uiae acuti asado ito d n ph bro tu tu o ca 84 RII OL Lm 87 AUIS EUER 90 PASS OUG E 90 Gn Dir rape 91 Be WEAN ON UU E 95 SOON ppl 99 lt OO OO OLOR 100 3 9 6 MUNA Trier ar 101 3 5 7 Inner DNS JO S
73. ocking Router can block below traffic packet from LAN to WAN For some exception Router allow Super users IP can access Internet without limitation when enable block function Instant Message Blocking P2P BT Blocking Firewall Messenger blocking SHS 3830 Messenger Blocking Blocking Welcome System status YAHOO Blocking WAN configure QQBlocking LAN configure 1 QQGAME Blocking Load balance eMUTE Blocking Super U T LJ BTBlocking DoS defense ARP protection Apply Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit Quality control 78 3 3 9 IP session limit For each user IP default session limit is 200 Session amounts per each IP can be change from 200 to 65 000 Firewall IP session limit SHS 3830 Session limit Item IP address Session Limit 50 65535 Enable 0 AIl IP 200 L Item Exception IP Session Limit 50 65535 Enable Load balance 2 200 Super 3 200 m 4 200 protect 5 200 al IP filters emote IP i Apply 4 JRL blockin n hm b d e QoS e Bandwidth control Outgoing route LAN IP speed limit 3 4 1 QoS With this function you can set up USER BANDWIDTH with Maximum amp Minimum bandwidth value Configure WAN Speed The WAN speeds must be configured for the QoS configuration
74. one DMZ function provides a way for public servers Web e mail FTP etc to be visible to the outside world while still being protected from DoS Denial of Service attacks such as SYN flooding and Ping of Death These public servers can also still be accessed from the secure LAN By default the firewall allows traffic between the WAN and the DMZ traffic from the DMZ to the LAN is denied and traffic from the LAN to the DMZ is allowed Internet users can have access to host servers configured in DMZ Host list but no access to the LAN unless special filter rules allowing access were configured by the administrator or the user is an authorized remote user It is highly recommended that you keep all sensitive information off of the public servers Please store sensitive information in computers on LAN If you would like to grant remote users the right to access one of your computers on LAN to perform some actions such as Internet games you must enable the function of DMZ When remote users access your legal IP s Load Balance Router will transmit these packets to the corresponding virtual IP s Share IP DMZ WAN Host IP Address PPPoe Mode When WAN port IP assigned by ISP obtained by PPPoE Dynamic IP you can fill 91 in DMZ host that inside the network the router will mapping WAN IP to internal DMZ host automatically Example Set the IP of WAN1 or WAN2 Click the Enable check square then Multi DMZ click Apply
75. one second Load Balance Router will close this address for 5 minutes default value temporarily UDP Flooding When an IP in LAN of Load Balance Router tries to send UDP LAN over 10000 times default value in one second Load Balance Router will close this source address for 5 minutes default value temporarily 63 3 3 3 ARP protection It prevents network hosts from ARP spoofing attack so that enable the function to immune any ARP spoofing So router updates ARP message for hosts to keep accurate ARP table restoring in hosts due to attacker sending spoofed ARP while attacking Firewall ARP protection SHS 3830 LAN configure ARP Protection Load balance ARP Protection Enable Disable Frequency 1 17 100times sec axes ins DoS defense LAppiv 3 3 4 Local IP filtering SHS 3830 allows you to do accessed restriction of block allow outgoing packets by protocol port number You may restrict some IP s only to perform limited protocols or allow them to execute partial protocols And the first thing you have to know is the port numbers and their usages Option Add a new item otep 1 Enter Local IP filtering web page Then click Add to enter the added page 64 Firewall Local IP filtering SHS 3830 _ gt LAN configure Local IP Filtering IP Filtering Y Load balance Item Local start IP address Local stop address Pro
76. ons with high bandwidth in designated WAN port in order to have best performance Example Add a new item Step 1 Enter Outgoing route web page Then click Add to enter the added page Quality Control Outgoing route SHS 3830 Outgoing route route Item StartIP address End address PROTO Destination start port Destination stop port SelectWAN Enable Edit LAN configure Add Apply Step 2 Fill data to Destination network Netmask and Gateway IP Then Click Add then router goes back to Outgoing route list table 84 5 5 3830 Welcome Outgoing route System status Edit Outgoing route Item 1 WAN configure Start IP address 192 168 1 10 LAN configure Stop IP address 192 168 1 12 Load balance TCP UDP Firewall ee Destination start port Destination stop port 3020 5 Select WAN AUTO Y Bandwidth control Outgoing Route Delete Apply LAN IP Speed limit Advance System IP PBX Save amp reboot Note Select WAN has 7 items They are AUTO WAN1 first WAN2 first USB3G first WAN1 only WAN2 only and USB3G only otep 3 Click the Enable check square of item 1 Then click Apply to save and enable SHS 3830 Welcome Outgoing route System status Item StartiIP address End IP address PROTO Destination start port Destination stop port Select WAN Enable Edit WAN configure 1 192 168 1 10 192 168 1 12 TCP 3000 3
77. ortable devices outside to online import and export data for business Basically the SHS 3830 does NOT provide this feature User has to pay for this option Internet Schedule scheduling Internet connection with time period to save cost and manage access internet for workers to improve efficiency 17 WAN Configure Internet schedule SHS 3830 i arcc WAN1 Dynamic IP PPPoE Static IP cnnfisure CLA Tm WPN client Disable LZTP L2TP PSK Y Load balance Y Firewall Internet Schedule Enable Disable Advance Available Time 0 10 23 59 w System Select Week SUN MON TUE WED THU W SAT IP PBX Healthy check Enable Disable eboat Healthy check 1 Enable SHS 3830 will check ADSL link automatically to check whether link alive or not if link fail the Router will switch packet to another exist link except TCP packet the router will switch back to ADSL link again after router check ADSL line link again SHS 3830 provides 3 methods to check ADSL link You can choose it with each method or both as follows v DNS test DNS in Internet v Ping IP to test IP in Internet v Time Server Suggest select at least 2 method to check ADSL link in order to avoid router making wrong action due to Internet Server disable 2 Disable no Healthy check function If without Time Server existing this function will disable automatically Healthy check can be
78. outer go back to Intrusion security list table 76 _SHS 3830 7 Welcome w System status Intrusion security OEnable 9 Disable v WAN configure User s IP amp MAC address notin following list Pass Vv LAN configure v Load balance Item MAC address IP address Edit Firewall 1 00 01 02 45 5 2 192 168 1 99 Super Users 2 00 03 02 46 68 7 192 168 1 150 DoS defense 3 00 12 45 67 9B 2C 192 168 1 100 ARP protection Local IP filtering 005 scan 7 Apply 7 Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit Example Scan all PC connect with Router Directly click scan It will clear all old data Replace it with scanned data But it need some time to scan all PC The delay time depend on PC quantity 5530 Intrusion Security auto scan configure saved success 77 5 5 3830 Welcome Intrusion security System status Intrusion security Enable Disable WAN configure User s IP amp MAC address not in following list OBlock 5 configure 7 Load balance Item MAC address IP address Edit AMI CHEN 1 00 23 54 74 DB EB 192 168 1 10 Super Users E Add Scan Apply Cadi Apply ARP protection Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IP session limit 3 3 8 Messenger Bl
79. parameters System Configure backup SHS 3830 LAN configure Contig in Oul volest balance IN contig file save to router amp reboot Firewall GUT save contig file t PC Quality control Advance E Password lane 311553 log Remote configure Load Fzumoe update amp rebooe 118 3 6 8 Firmware update The SHS 3830 allows you to easily update the embedded firmware We will occasionally provide new firmware on the web site to help you updating the firmware of your SHS 3830 Follow the procedure to update your firmware after downloaded the new code System Firmware update SHS 3830 fp Update Attention router will reboot after firmware updated Firmware filename Select file You will see the updating processing After finishing update procedure you must reboot SHS 3830 to run new code 119 3 7 Save amp Reboot In order to save the configuration changes that have been made to the SHS 3830 you must save them to the SHS 3830 s Flash memory If you do not save the changes the configuration settings will be lost in the event of a power loss or system reboot to the SHS 3830 Save and reboot SHS 3830 Welcome Save and reboot and reboot System status Save and reboot Save new parameters and reboot router WAN configure Save new parameters Save new
80. parameters without reboot router LAN configure Load balance Apply Firewall Quality control Advance System v IP PBX 120 Chapter 4 In bound function Authorities DNS is just a fancy term for the official IP address keeper provider of particular Domain or Internet name such as www example com is analogous to a telephone book where a person s name is associated with his telephone number Wikipedia the free encyclopedia has a good general discussion of DNS http en wikipedia org wiki Domain Name System This IN NBOUND ROUTER DNS server contains the names and Internet addresses of servers that you wish to host order for all DNS requests for your domain names to be ultimately routed to your IN BOUND ROUTER it has to be setup at the registrar of your Internet name In general logon to your registrar site and manage your domain name For example www example com Current is located at a WEBhosting company Domain servers in listed order NSO DNSMADEEASY COM NS1 DNSMADEEASY COM NS2 DNSMADEEASY COM NS3 DNSMADEEASY COM NS4 DNSMADEEASY COM We need to change www example com to be hosted by IN BOUND ROUTER so we follow the registrar s instructions and delete 52 NS3 and NS4 and assign Domain servers as below IP address NSO EXAMPLE COM WANI NS1 EXAMPLE COM WAN2 The name is arbitrary what are important are the IP addresses It is absolutely necessary for 1 to be a static address and for
81. re LAN configure Load balance Firewall Quality control VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routmg configure Y System IP PBX me Item Domain name IP address Enable Edit E S otep 2 Fill data to Domain Name and its IP Then Click Add then router goes back to Inner DNS list table SHS 3830 WAN configure LAN configure Load balance Firewall Quality control VPN pass through DMZ Virtual server DDNS MAC clone Mult NAT Inner DNS Routmg configure System v IP PBX me Edit Inner DNS Item 1 Domain name IP address 192 168 1 130 Delete Apply Step 3 Click the Enable check square of item 1 Then click Apply to save and enable 105 SHS 3830 WAN configure 21222222 EB 0 LAN configure Load balance Domain name IP address Enable Edit Firewall 1 www test dns 192 168 1 130 9 vY Quality control lt Add _ Apply VPN pass through DMZ Virtual server DDNS MAC clone Mult NAT Inner DNS Routing configure System v IP PBX Example Edit or Delete Step 1 Enter Inner DNS web page Then click Edit check square of item 2 to enter the edited page SHS 3830 wy 7 WAN configure 811
82. rs The protocol used in communication between routers is RIP 1 2 Routing Information Protocol RIP1 supports only broadcast mode while RIP2 supports broadcast and multicast mode Advance Dynamic routing SHS 3830 WAN configure Static routing Dynamic routing LAN configure Load balance Enable Enable Disable Firewall RIP verion RIP2 9 Quality control VPN pass through DMZ Virtual server DDNS MAC clone Multi NAT Inner DNS Routing configure System 7 IP PBX 110 3 6 System 3 6 1 Password Use this function to change the Password that is used for access the web configuration otep 1 Type in the Original username and Original Password then click Apply button Router will display a change password web page System password 1 SHS 3830 Change Password Password Load balance Original username admin vV Firewall Original password Apply Step 2 Type in the Input new username Input new Password and Re input new Password in their respective fields and then click Apply the password will be changed to new one after re boot 111 System password 2 SHS 3830 Change Password Password vV Load balance Change system username amp password Y Firewall Input new username admin Quality control Inputnewpassword vV Advance Reinput new password meme Apply
83. rst digit is 2 and exclude 2 only 2 all accounts i e telephone number with the first digit is 2 and include 2 Add Front To add assigned number before the telephone number For example you set 886 here and the called number is 0222221266 the SHS 3830 will add 886 then send 8860222221266 as the called number Add Back To add assigned number at the end of telephone number For example you set 66 here and the called number is 02222212 the SHS 3830 will add 66 then send 0222221266 as the called number 2 5 3 5 SIP status User can select status to look all of accounts on line e IP PBX SIP Status SHS 3830 Account UserName IP PORT Status 2001 0 0 0 0 0 2002 2002 0 0 0 0 0 UNKNOWN 8 kA 2003 2003 0 0 0 0 0 UNKNOWN 9 Q 2 5 3 6 Queue You can set up some extensions in the queue When a call is coming all extensions in the queue will ring together You can pick up anyone of extensions to answer The other extensions will hang up automatically SHS 3830 Welcome Vv System status Queue Name WAN configure LAN configure Add 24 Load balance Firewall Quality control Advance System Subscribers Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot IP PBX Queue 5 5 3830 Welcome v System status WAN configure EMI t
84. sage control Item 4 Bandwidth Usage control Usage control Description LAN configure mE TCP UDP Load balance Port Firewall MAX Upload bits s MAX Download speed bits s 0771 5 Bandwidth control Delete Apply Outgomg Route LAN IP Speed limit Advance System IP PBX Save amp reboot otep 3 There are 5 fields in the page Description It will be display in bandwidth table TCP UDP The AP use protocol Example FTP use TCP Port The AP use port MAX Upload speed The AP s maximum upload speed Its unit is kbit MAX Download speed The AP s maximum download speed Its unit is kbit Finish the job then click Apply to save parameter and go back Bandwidth control table SHS 3830 Welcome System status Y WAN configure LAN configure Bandwidth Usage Control Usage Control Using this function need to enable QoS Description PROTO PORT Upload rate bits MAX Download rate k bits Enable Edit Load balance HTTP TCP 80 0 0 C Y Firewall POP3 110 0 0 QoS Bandwidth control Outgomg Route LAN IP Speed limit CJ FTP TCP 21 10000 10000 Advance System v IP PBX Save amp reboot 82 Step 4 Clink the Enable check square of Then Click Apply If user would like to create a new protocol please
85. se the Call Group parameter to assign an Extension to one or more groups Pick up Group The SHS 3830 supports call pickup to allow a ringing phone to be answered from another extension If you set up some extensions in the same group one of extension is ringing but nobody answer then you can pick up this call on your extensions by press 8 to answer For example Ext A is ringing Ext B can press and 8 for call pick up 31 2 5 3 3 SIP Trunk User has to set up set up some necessary configuration for SIP trunk Please select SIPTrunk under IP PBX item of menu bar Then click Add button as below Alias is also a Trunk name User also can click the check square of Edit to delete the specified Trunk or modify configured Trunk data IP PBX SIP Trunk 5 5 3830 EXTA Create SIP Trunk Alias Account Proxy Port Status Edit test trunk 2002 State e 9 1 n Add 5 9 otep 3 Please click Add button to create SIP Trunk i al 51 otep 2 Select SIP Trunk item E Bp Then user will see the following screen 32 IP PBX SIP Trunk Add Trunk SHS 3830 otep 4 Please input date to each field Add SIP Trunk LAN configure Alias Host Port Domain Port Account Password Advance Numbers Routing Group R1 v Svstem m AudioCodec G711p a Max C
86. set up to test 3 different destination IP in order to avoid wrong operation in case destination server is fail 18 WAN Configure Healthy check SHS 3830 Welcome COR System status WAN1 Dynamic IP PPPoE O Static IP WANI VPN client Disable 2 2 12 2 L2TP PSK WAN2 P EHEHEHE 3G USB mod Internet Schedule Enables Disable LAN configure Healthy check Enables Disable Load balance ennuumuunu d counter Quality control Advance Mode DNS server URL Enable Test v System DNS fo v Mode IP address Gateway Enable Test Save amp reboot Ping sid User define NTP server NTP server Enable Test NTP Mode IP address Gateway Enable Test ARP gateway Apply 19 2 5 2 LAN configuration LAN configure includes two functions One configures LAN port Include DHCP The other set the DHCP Reserved IP 2 5 2 1 LAN Configure This function configures the LAN ports IP address Subnet Mask DHCP You can choose using DHCP server or not the Dynamic Host Configuration Protocol DHCP allows the SHS 3830 to dynamically assign IP addresses to network devices Dynamic IP assignment alleviates the need for the network administrator to maintain and monitor IP address assignments and simplifies IP use because the IP addresses are automatically
87. some parameters from ISPs to complete configuration page Ensure to key in user name and password as same as ISP offering PPTP server IP can be URL type or IP address that both are acceptable for device due to able to distinguish which one of them 15 WAN Configure WAN1 Dynamic IP PPTP SHS 3830 Welcome System status WANI WAN2 3G USB modem LAN configure Load balance Firewall Quality control Advance System IP PBX Save amp reboot msma WAN1 TYPE VPN client User Name Password PPTP Server IP Request options Pap Chap Mschap Mschap_v2 Mppe_128 Internet Schedule Healthy check Dynamic IP Static IP Disable PPTP O L2TP O L2TP PSK Require refuse Require refuse Require O refuse Require refuse Require refuse O Enable Disable O Enable Disable Below status shown established PPTP links for example SHS 3830 Welcome REHEEHEEEEEEEREEEENHEHe Link status Data monitor DHCP clients table NAT table Current routing table WAN configure LAN configure Load balance Firewall Quality control Advance System IP PBX Save amp reboot m mm Port IP address MAC address Subnet mask DHCP LAN 192 168 1 253 00 09 2C 10 1B 6D 255 255 255 0 Disable Port IP address MAC address S
88. source packet analyzer It is used for network troubleshooting and analysis You can free download from website www wireshark org Following diagrams will tell you how to download the capture file step by step 46 IP PBX Debug Capture SHS 3830 Quality control a Debug Capture Capture Start Capture 4 Advance System a CORPO Subscribers Group Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot SHS 3830 v lity 1 Quality contro tcpdump listening on link type LINUX SLL Linux cooked capture size 65535 bytes Advance System LStopCaplure Subscribers Group Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot 4 47 192 168 1 253 8 S H S 3 8 3 0 Capture Done Ex Quality control Advance v System Subscribers Group Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot SHS 3830 Quality control E Debug Capture Advance Filename hg3830 v702010 702012306 cap System Size 216 4K a EHEHEHEH Downloa
89. tatic IP mode user need to input IP address of Gateway The default Gateway IP address is 192 168 1 254 At last user needs to click on Apply button to save configuration 2 5 2 2 DHCP reserved IP The second submenu of LAN configure is DHCP reserved IP You can also reserve some IP s to specific computers You need to enter the name MAC address of the network card installed in your computer to assign a particular IP to it Click ADD to enter a new web page for adding a reserved IP For example Add a new item Step 1 Enter DHCP reversed IP web page Then click Add to enter the added page LAN Configure DHCP reserved IP SHS 3830 DHCP Reserved IP_ Reserved IP Item MAC address IP address Edit WAN configure Apply I ul Step 2 Fill data to MAC address and IP Then Click Add then SHS 3830 goes back to DHCP reversed IP list table The input screen shows as follows 21 LAN Configure DHCP reserved IP ADD SHS 3830 Welcome DHCP Reserved System status WANconfigure Add DHCP Reserved IP Item 4 126 2 1 48 1 46 IP address DHCP reserved IP Apply Load balance Firewall Quality control Advance 4 System IP PBX 4 Save amp reboot Step 3 Then click Apply to save You will see the screen of DHCP reversed IP list table as below SHS 3830
90. that display on the screen as below 40 SHS 3830 Quality control Paging Advance M System Paging Number Routing Group Paging Group Edit aX m a z 2 122 F r1 test C Group Paging SIPTrunk Edit step 1 You modify or delete the Preview i TEE paging number by clicking Download Log the check square under Edit Download CDR item Debug Capture Update IPPBX Save amp reboot You also can modify or delete the paging number by clicking the check square under Edit item IP PBX Paging Update Paging SHS 3830 Quality control Paging M Update Paging Subscribers Edit Step 2 Routing Group r1 r2 r3 B r4 r5 BJ re BJ r7 DISA lt You can modify the paging Advance Group number or routing group or Paging m SIPTrunk T Apply T paging group DialPlan SIPStatus T Edit Step 3 Download CDR TC Please click Apply button Update IPPBX to save the configuration Save amp reboot 41 192 168 1 253 HARER S S 3 8 3 0 Paging configure saved success Quality control Advance System Subscribers Group Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Sa
91. to Destination start port Destination stop port Enable Edit C Add Apply Super Users DoS defense ARP protection Local IP filtermg Remote IP filtermg URL filtering Intrusion security Messenger blocking IP session limit v Quality control V Advance v System IP PBX Step 2 Fill data to Local Start IP Local Stop IP Protocol Local Port and Local Stop Port Then click Add then router goes back to Local IP filtering list table SHS 3830 EE LAN configure Local IP filtering IP filtering Load balance Local start IP address 192 168 1 13 Local stop IP address 192 168 1 15 DoS deft TCPIUDP ARP protection Destination start port Local IP filtering Destination stop port 5020 Remote IP filtermg um ng Delete Apply Intrusion security Messenger blockmg IP session limit 7 Quality control Advance System otep 3 Click the Enable check square of item 1 Then click Apply to save and enable 65 SHS 3830 A Welcome System status Item Local start IP address WAN configure 1 192 168 1 13 192 168 1 15 Y LAN configure Load balance Super Users Add DoS defense ARP protection Local IP filtering Remote IP filtermg URL filtering Intrusion security Messenger blocking IP session limit Quality control Option Edit or Delete
92. to take effect IP MAX MIN Limit Allocate bandwidths to users e address of specified user e MAX Bandwidth limitation to this user e MIN Minimal Bandwidth kept for this user before allocating any bandwidth from this user to others e Down Rate Download speed 79 e Up Rate Upload speed e WAN Apply Which WAN you want the allocation to take effect Do not use this option to specify which WAN to use for this user Quality Control QoS SHS 3830 Welcome QoS System status configure When QoS enabled router allocated average WAN bandwidth to each IP automatically LANconfigure QoS Enable Disable I Load balance Firewall QoS Bandwidth control Outgoing Route LAN IP Speed limit Advance Y System v IP PBX Save amp reboot Quality control QoS Enable SHS 3830 Welcome Y System status When QoS enabled router allocated average WAN bandwidth to each IP automatically WAN configure LAN configure QoS Enable Disable Load balance Y Firewall Please fill in each WAN real speed acr WAN WAN speed Upload k bits s WAN speed Download k bits s WAN 1 100000 100000 QoS WAN 2 100000 100000 Bandwidth control Outgoing Route USB 3G modem 100000 100000 LAN IP Speed limit Default WAN speed is 100M bits s Advance SR System
93. ubnet mask Status Button WAN1 DHCP 00 09 2C 10 1B 6B 255 255 255 0 Disconnected Connect WAN1 PPTP 0000 Remote IP address 0 0 0 0 Disconnected WAN2 DHCP 00 09 2C 10 1B 6C 255 255 255 0 Disconnected Firmware Version number Release date SHS3830 V0028 2014 09 25 10 10 46 08 00 L2TP Dial Up If ISPs ask for L2TP for dial up then user can choose and enable it just follow below page to fill in necessary items to launch Internet service Reflash 16 WAN Configure WAN1 Dynamic IP L2TP SHS 3830 System statu WAN1 Dynamic IP PPPoE Static IP CIC UI VPN client Disable PPIP L2TP L2TP PSK 3G USB modem User Name 2 Password v L2TP Server IP 123 123 123 123 Request options Require refuse 1 Require refuse Authentication Require refuse w IP PBX Internet Schedule Enable Disable rebc Healthy check Enable Disable _ Apply L2TP over IPSec Dial up L2TP PSK Option It is L2TP over IPSec dial up to offer a better protection for Internet access Although not many devices support the feature in market it is a choice for user to adopt for specific requirement if necessary Regarding above various VPN Clients for dial up to Server to establish secured connection to access data or contents many of them have been wildly adopted by enterprises for their resources share no matter in between branch and headquarter or employee carry p
94. unction will check over these packets and drop them IP Address Finding out whether the source address s and destination spoofing address s are legal IP s or not If they are illegal IP s or multicast addresses this function will cast these packets away Port Scan When an IP from Internet tries to scan the IP of Load Balance Router up to 10000ports sec default value this function will drop all the packets from this IP within 5 minutes default value When a destination address and destination port of Load Balance Router receives TCP SYN packet from WAN over 10000 times default value in one second Load Balance Router will close this address and port for 5 minutes default value temporarily When an IP in LAN of Load Balance Router tries to send TCP SYN packet over 10000 times default value in one second Load Balance Router will close this source address for 5 minutes default value temporarily When a destination address of Load Balance Router receives ICMP from WAN over 10000 times default value in one second Load Balance Router will close this address for 5 minutes default value temporarily When an IP in LAN of Load Balance Router tries to send ICMP over 10000 times default value in one second Load Balance Router will close this source address for 5 minutes default value temporarily UDP Flooding When a destination address of Load Balance Router receives WAN UDP from WAN over 10000 times default value in
95. v System Save amp reboot Apply 7 3 3 Firewall Firewall indeed is a big issue in networking not only protect router from attack but also complex inspection cause not so friendly usage experience while configured Therefore how to make it easily and highly workable by user is an important issue for designer Below supported functions by router are the most useful for deployment in real networking environment e Super Users 57 defense ARP protection Local IP filtering e Remote IP filtering e Intrusion security e Messenger blocking e session limit 3 3 1 Super Users The SHS 3830 allows super users IP can access Internet without limitation when enable block function Option Add a new item Step 1 Enter Super Users web page Then click Add to enter the added page Firewall Super users SHS 3830 LL Item IP address Enable Edit Add Apply Step 2 Fill data to IP address Then Click Add then router goes back to Super Users list table 58 5 5 3830 Welcome LLLL LLL LLLI Edit Super Users Item 1 IP address 192 168 1 99 System status WAN configure LAN configure Load balance 6 Delete Apply Super Users DoS defense ARP protection Local IP filtermg Remote IP filtermg URL filtermg Intrusion security Messenger blockmg IP session Quality control
96. ve amp reboot Then you will see the extension 122 was already deleted from paging number listing SHS 3830 Quality control 7 Paging System Paging Number Routing Group Paging Group Edit Subscribers Advance Add Group Queue Paging SIPTrunk DialPlan Preview SIPStatus Download Log Download CDR Debug Capture Update IPPBX Save amp reboot 2 5 3 8 Preview The preview function is used with IP door phone You can arrange some 42 extensions as member of preview group You need to give a preview name for a preview group The preview name listing is shown as below diagram When an IP door phone dial to a preview group all of extensions member will ring And you can answer the call from IP door phone by anyone of extensions to talk the person who at your door and open the door The other extensions will hang up automatically IP PBX Preview SHS 3830 Quality control m m h M SEP os zaras Preview Number Member Edit 5 Subscribers 99991 Select m G IP PBX Queue 2 99993 Paging 99994 99995 e lan BEB BEBE otep 2 s 99995 BEN I select 99997 Preview in Download Log Download CDR Debug Capture Update IPPBX You also can edit and modify the preview Save amp reboot data by clicking the check square IP PBX Preview Update
97. y control Step 2 Fill data to Remote Start IP Remote Stop IP Protocol Remote Port and Remote Stop Port Then Click Add then router goes back to Remote IP filtering list table SHS 3830 Welcome Remote IP Filtering IP Filtering 9 System status Edit Remote IP Filtering Item 1 WAN configure Remote start IP address 172 16 1 13 LAN configure Remote stop IP address 172 16 1 15 Load balance Destnation starpon Super User DoS defense ARP protection Delete Apply Local IP filtering Remote IP filtermg URL filtering Intrusion security Messenger blocking IP session limit 7 Quality control Step 3 Click the Enable check square of item 1 Then click Apply to save and enable 68 5 5 3830 o Welcome Remote IP Filtering IP Filtering Item Remote start IP address Remote stop IP address Proto Destination start port Destination stop port Enable Edit System status WAN configure 1 172 16 1 13 172 16 1 15 TCP 1000 1010 9 Y LAN configure Load balance Add Apply a c NN Super Users DoS defense ARP protection Local IP filtering Remote IP filtering URL filtering Intrusion security Messenger blocking IP session Quality control Option Edit or Delete otep 1 Enter Remote IP filtering web page Then click Enable check square of 2 to enter the edited page

Download Pdf Manuals

image

Related Search

Related Contents

取扱説明書  Merlin User Manual 4401KB Mar 11 2009 04:48:54  4 Feedforward Neural Networks, Binary XOR, Continuous XOR      AQUARIUM KIT PURE  Servovariadores Kinetix 5500  PHASE 1 le fil conducteur du PARAMETRAGE  

Copyright © All rights reserved.
Failed to retrieve file