BIPAC 6500 Broadband VPN Firewall Router with 4-port 10/100M Switch User Manual
Table of Content Chapter 1 ................................................................................................................................1 1.1 An Overview of BIPAC 6500 ........................................................................................................................ 1 1.2 Package Contents ........................................................................................................................................ 2 1.3 BIPAC 6500 Features...................
Billion BIPAC 6500 Broadband VPN Firewall Router Why do I get IP conflict information in my computer? ...................................................................................... 49 Why won't my Internet application work? ......................................................................................................... 50 Can I upgrade the gateway’s firmware? ...........................................................................................................
Chapter 1 Introduction 1.1 An Overview of BIPAC 6500 BIPAC 6500 functions as an IEEE 802.3 Ethernet-based router. It provides four 10/100Mbps Dual Speed Ethernet ports for connection to a home or small office network and one 10/100Mbps Ethernet port for a DSL Modem, Cable Modem, or other broadband access device. The product is an integrated Internet IP sharing device with a built-in 4-port 10/100Mbps Base-T N-Way Ethernet switch.
Billion BIPAC 6500 Broadband VPN Firewall Router 1.2 Package Contents 1. BIPAC 6500 2. One CD containing the on-line manual and application program 3. One Quick Start Guide 4. One CAT5 cable 5. One power adapter 1.
Chapter 1 Introduction • Packet filtering – port, source IP address, destination IP address, MAC address • URL filtering – string or domain name detection in URL string Virtual Private Network (VPN) • Embedded IPSec & PPTP client • Embedded L2TP and L2TP over IPSec (future release) • IKE key management • DES and 3DES encryption for IPSec • L2TP/PPTP/IPSec pass through 3
Billion BIPAC 6500 Broadband VPN Firewall Router 1.4 BIPAC 6500 Application Be noted, BIPAC 6500 provides a 10/100Mbps Ethernet port (10Base-T) in the WAN site, it will not detect MDI and MDIX automatically. Therefore, an Ethernet cross-over cable should be used to connect to DSL/CABLE modem.
Chapter 2 Using BIPAC 6500 2.1 Cautions for Using BIPAC 6500 Do not place BIPAC 6500 under high humidity and high temperature. Do not use the same power source for BIPAC 6500 with other equipment. Do not open or repair the case yourself. If BIPAC 6500 is too hot, turn off the power immediately and have a qualified serviceman repair it. Place BIPAC 6500 on the stable surface. Only use the power adapter that comes with the package. 2.2 The Front LEDs LED Meaning 1 Power Lit green when power ON.
Billion BIPAC 6500 Broadband VPN Firewall Router 2.3 The Rear Ports WAN Connect an UTP Ethernet cable to this port when connecting to a hub. (RJ-45 connector) Connect a crossover cable to this port when connecting to a DSL/Cable bridge or modem for establishing WAN connections. LAN (RJ-45 connector) Connect an UTP Ethernet cable to these four ports when connecting to a LAN of 10Mbps or 100Mbps such as an office or home network.
Chapter 3 Configuration BIPAC 6500 can be configured with your Web browser. The web browser is included as a standard application in following operation systems, UNIX, Linux, Mac OS, Windows 95/98/NT/2000/Me/XP, etc. The product provides a very easy and user-friendly interface for configuration. 3.1 Before Configuration This section describes the configuration required by LAN-attached PCs that communicate with BIPAC 6500, either to configure the device, or for network access.
Billion BIPAC 6500 Broadband VPN Firewall Router 3. In the Local Area Connection Status window, click Properties. 4. Select Internet Protocol (TCP/IP) and click Properties.
Chapter 3 Configuration 5. Select the Obtain an IP address automatically and the Obtain DNS server address automatically radio buttons. 6. Click OK to finish the configuration. Configuring PC in Windows 2000 1. Go to Start / Settings / Control Panel. In the Control Panel, double-click on Network and Dial-up Connections. 2. Double-click Local Area Connection.
Billion BIPAC 6500 Broadband VPN Firewall Router 3. In the Local Area Connection Status window, click Properties. 4. Select Internet Protocol (TCP/IP) and click Properties.
Chapter 3 Configuration 5. Select the Obtain an IP address automatically and the Obtain DNS server address automatically radio buttons. 6. Click OK to finish the configuration. Configuring PC in Windows 95/98/ME 1. Go to Start / Settings / Control Panel. In the Control Panel, double-click on Network and choose the Configuration tab. 2. Select TCP / IP -> NE2000 Compatible, or the name of your Network Interface Card (NIC) in your PC. 3. Click Properties.
Billion BIPAC 6500 Broadband VPN Firewall Router 4. Select the IP Address tab. In this page, click the Obtain an IP address automatically radio button. 5. Then select the DNS Configuration tab. 6. Select the Disable DNS radio button and click OK to finish the configuration.
Chapter 3 Configuration Configuring PC in Windows NT4.0 1. Go to Start / Settings / Control Panel. In the Control Panel, double-click on Network and choose the Protocols tab. 2. Select TCP/IP Protocol and click Properties. 3. Select the Obtain an IP address from a DHCP server radio button and click OK.
Billion BIPAC 6500 Broadband VPN Firewall Router 3.2 Factory Default Settings Before you configure BIPAC 6500, you need to know the following default settings. 1. Web Configurator Password : BLANK means user does not need to input any characters. 2. Device IP Network settings in LAN site IP Address : 192.168.1.254 Subnet Mask : 255.255.255.0 3. ISP setting in WAN site Obtain an IP address automatically 4. DHCP server DHCP server is enabled. IP address pool from IP Address : 192.168.1.
Chapter 3 Configuration 3.2.2 LAN and WAN Port Addresses The parameters of LAN and WAN ports are pre-set in the factory. The default values are shown below. LAN Port IP address 192.168.1.254 Subnet Mask 255.255.255.0 DHCP server function Enabled IP addresses for distribution to PCs 100 IP addresses continuing from 192.168.1.100 through 192.168.1.199 WAN Port Obtain an IP address automatically. This IP address is assigned by ISP. (Actually, it can supports up to 253 users.) 3.
Billion BIPAC 6500 Broadband VPN Firewall Router 3.4 Configuring with Web Browser Open the web browser, enter the local port IP address of this router, which default at 192.168.1.254, and click “Go” to get the login page. No user name is required. The default password is left blank. If you have set a password, enter that and click “OK” to continue.
Chapter 3 Configuration 3.4.1 Main Navigation Pane Save Config : After configuring this network router, you have to save all of the configuration parameters to FLASH. Restart : In case the router stops responding correctly or in some other way stops functioning, you can perform the reboot. Your setting won’t be changed. Performing the reboot, click on the Restart button. Each time you reboot your Router, the following figure will appear. Please wait seconds for auto-reconnection.
Billion BIPAC 6500 Broadband VPN Firewall Router 3.4.3 Configuration When you click this item, you get following sub-items to configure BIPAC 6500. LAN, WAN, Firewall, System, VPN, Virtual Server, Advanced and Help 3.4.3.1 LAN This screen contains settings for LAN interface attached to the LAN port.
Chapter 3 Configuration IP Address: Default at 192.168.1.254. This is the device IP address in LAN site. If you plan to change it to another IP address to a different range of IP subnet. Please make sure your PC is also located at the same IP subnet. Otherwise, you may not be able to access the router. Subnet Mask: Default at 255.255.255.0. If you ever forget the LAN IP address, we provide an utility running in MS Windows to find it automatically. It is included in the installation CD, named RouterFinder.
Billion BIPAC 6500 Broadband VPN Firewall Router DHCP Server Check DHCP Server to enable the router to distribute IP Addresses, subnet mask and DNS setting to computers. Hence, the following fields will be activated. If you check this selection, Disable, remember to specify a static IP address, subnet Mask, and DNS setting for each of your local computers. Be careful not to assign the same IP address to different computers.
Chapter 3 Configuration Obtain an IP Address Automatically Configure this WAN interface to use DHCP client protocol to get an IP address from ISP automatically. In other words, the ISP provides an IP address to the router dynamically when logon. Host Name: Enter the host name provided by your ISP. The maximum input is 20 alphanumeric characters (case sensitive). Domain Name: Enter the domain name provided by your ISP. The maximum input is 20 alphanumeric characters (case sensitive).
Billion BIPAC 6500 Broadband VPN Firewall Router PPPoE (PPP over Ethernet) is known as a dial-up DSL or cable service. It is designed to integrate the broadband services into the current widely deployed, easy-to-use, and low-cost dial-up-access networking infrastructure. Therefore, users can get greater access speed without changing the operation concept, sharing the same ISP account and paying for one access account. No PPPoE client software is required for local computer if you select this configuration.
Chapter 3 Configuration Configure this WAN interface with a specific IP address. This IP address should be given from ISP directly. IP Address: Enter the information provided by your ISP. Subnet Mask: Enter the information provided by your ISP. Gateway Address: Enter the information provided by your ISP. NAT: The NAT feature allows multiple users to access Internet through a single IP account, sharing the single IP address.
Billion BIPAC 6500 Broadband VPN Firewall Router Some DSL/Cable modems only support PPTP tunnel method to access Internet such as Alcatel’s DSL modem. Therefore, configure this WAN interface to use PPTP client carrying PPP information to make a tunnel with the DSL modem, then DSL modem will forward PPP information to ISP to establish a connection. When it is established, users can share this connection to access Internet. Username: Enter the username.
Chapter 3 Configuration DNS Server A Domain Name System (DNS) contains a mapping table for domain name and IP address. In the Internet, every host has a unique and friendly name such as www.yahoo.com and IP address. The IP address is very hard to remember, so that you may just enter the friendly name www.yahoo.com and DNS converts it to its equivalent IP address. You can obtain Domain Name System (DNS) IP address automatically if ISP provides it when you logon.
Billion BIPAC 6500 Broadband VPN Firewall Router Please note that the maximum input for password is 16 alphanumeric characters long. Since it is case sensitive, be sure that you remember whether a letter is in upper or lower case and make sure that your Caps Lock is off. 3.4.3.3.2 Time Zone BIPAC 6500 does not have a real time clock on board; instead, it uses the simple network time protocol (SNTP) to get the current time from the SNTP server in outside network.
Chapter 3 Configuration Automatically adjust clock for daylight saving changes: It is optional for different time zone area. SNTP Server IP Address: Specify the IP address if you want to use your familiar SNTP server. 3.4.3.3.3 Upgrade To upgrade the firmware of BIPAC 6500, you should download or copy the firmware to your local environment first. Press the “Browse…” button to specify the path of the firmware file. Then, click “Upgrade” to start upgrading.
Billion BIPAC 6500 Broadband VPN Firewall Router 3.4.3.4 Firewall User can decide to enable this firewall function including Packet Filter, Block Hacker Attack, and Block WAN request features for better security control or not. But be noted, it wastes network processor computation power. The performance will be lower about 5% to 10%. More firewall features will be added continually, please visit our web site to download latest firmware. 3.4.3.4.
Chapter 3 Configuration Add: Click this button to add a new packet filter rule. After click, next figure will appear. Edit: Check the Rule No. you want to edit. Then, click the “Edit” button. Delete: Check the Rule No. you want to delete. Then, click the “Delete” button. Outgoing packets. Incoming: Determine whether the rule is for outgoing packets or for incoming Active: Choose “Yes” to enable the rule, or choose “No” to disable the rule.
Billion BIPAC 6500 Broadband VPN Firewall Router Select TCP if you want to scope for the connection-based application service on the remote server using the port number. Or select UDP if you want to scope for the connectionless application service on the remote server using the port number. Log: Choose “Yes” if you want to generate logs when the filer rule is applied to a packet. Action When Matched: If any packet matches this filter rule, Forward or Drop this packet.
Chapter 3 Configuration already set from the address list, select the MAC address in the list table and click the “Delete” button. The MAC address will no longer exist. MAC Address List Blocked: Select this radio button if you want the MAC addresses in the list to be blocked from accessing the Internet. Allowed: Select this radio button if you want to block all the PCs in the LAN from Internet access except for those with MAC address listed in the list. 3.4.3.4.
Billion BIPAC 6500 Broadband VPN Firewall Router Alert Mail: Check if you want to be informed by emails when hackers attack the router. E-mail address: The alert mail will be sent to this address. SMTP server: Enter the SMTP server of the above E-mail address. 3.4.3.4.4 Block WAN Request Check “Enable” if you want to exclude outside PING request from reaching on this router.
Chapter 3 Configuration 3.4.3.4.5 URL Blocking URL blocking function enables you to avoid your LAN PCs from accessing some URLs. You must check the “Enable” radio button to make the following figure appear for further configuration. Always Block Check this button, if you wish not to access this website through out the entire time. Block ( From to ) Check this button, if you only wish to block a URL in a specific time interval.
Billion BIPAC 6500 Broadband VPN Firewall Router Domains Filter If the router is configured to allow internal users to access only certain specified domains, check the Disable all web traffic except for Trusted Domains and add domain name into the domain list. If the router is configured to allow internal users to access all websites except for some forbidden domain, add the forbidden domain name into the domain list. Users will no longer be able to access the websites from the LAN.
Chapter 3 Configuration Keywords Filter BIPAC 6500 allows the administrator to block some WEB URLs containing certain keywords in this page. For example, if the keyword “xxx” is listed, the URL http://www.new-site.com/xxx.html would be blocked, even if it is not included in the domain filtering list. Keywords presented as site name are also blocked; that is, http://www.xxxsite.com can not be accessed from LAN. To add a keyword, enter it in the Keyword field and click Add.
Billion BIPAC 6500 Broadband VPN Firewall Router Telnet (23), SMTP (25), POP3 (110), DNS (53), ECHO (7), NNTP (119). When an incoming access request to the router for specified port is received, it will be forwarded to the corresponding internal server. For example, if you set the Service Port number 80 (Web) to be mapped to the IP Address 192.168.1.2, then all the http requests to the router from outside users will be forwarded to the local server with IP address of 192.168.1.2.
Chapter 3 Configuration 3.4.3.7 Advanced There are six items under the Advanced section: Remote Config, Dynamic Routing, Static Routing, Dynamic DNS, Check Email and UPnP . 3.4.3.7.1 Remote Config Check “Enable” if you want to configure your router from any PC in the Internet world with a web browser, such as Internet Explorer. To configure this router remotely, use the URL ”http://WAN IP address:52520” where WAN IP address is the IP address of the router’s WAN port.
Billion BIPAC 6500 Broadband VPN Firewall Router ─ RIP1 or RIP1+RIP2 ─ you want the router to use to transmit / receive data on / from the network. 3.4.3.7.3 Static Routing If you have another router with a LAN-to-LAN connection, you may create a static routing on the router that is the gateway to Internet. Add: Click this button to add a new static routing. When you click this button, the next figure appears. Edit: Check the item you want to edit. Then, click the “Edit” button.
Chapter 3 Configuration Delete: Check the item you want to delete. Then, click the “Delete” button. Destination Subnet / Dest. Subnet Mask / Gateway Address: Fill in these fields required by this Static Routing function. 3.4.3.7.4 Dynamic DNS With Dynamic DNS service, a domain name can be translated into a dynamic IP address, which is often issued by ISP for dial-up service. A local server, such as Web server, Email server or FTP server, can then be easily accessed without knowing the changing IP address.
Billion BIPAC 6500 Broadband VPN Firewall Router You may sign up Dynamic DNS service at http://www.dyndns.org and there you can also register domain names. Host: Enter one domain name you have registered. User Name: Enter the username used for sign-up. Password: Enter the password used for sign-up. Period: Set the time period for the Router to exchange information with the DDNS server.
Chapter 3 Configuration devices to automatically connect with one another and work together to make networking particularly home networking - possible for more people. The UPnP aware applications such as MSN Messenger will discover that they are behind a NAT router, learn the external IP address and configure port mappings on the router to forward packets from the external ports of the router to the internal ports used by the application. 3.4.3.
Billion BIPAC 6500 Broadband VPN Firewall Router 3.4.4 Status The Status section provides and contains many items including device H/W and S/W information, LAN, WAN, Port status and all defined interfaces. It also provides useful information for users to review the status of the device. 3.4.4.1 System Status Display the current LAN and WAN connection status. The first line under the WAN segment displays the ISP protocol you set. You can see the status of connection from its right-side column.
Chapter 3 Configuration As for “PPPoE” protocol, its right column seems some kind different. When the PPPoE status is disconnected, you can click the “Connect” button to logon your ISP. You will see the system status changing from connecting, authenticating to connected if the procedure of connecting works smoothly. When you want to disconnect from your ISP under connected status, just click the “Disconnect” button.
Billion BIPAC 6500 Broadband VPN Firewall Router This page will refresh automatically every 15 seconds, which enables you to get the most updated status of your system. You can also click the “Refresh” button to get the latest information of system status manually. 3.4.4.2 Device Info Display the current Firmware version and MAC addresses of your router.
Chapter 3 Configuration 3.4.4.3 System Logs Display the system logs cumulated till the present time. You can trace the historical information through this function. Refresh: Click “Refresh” to get the latest information of system logs. 3.4.4.4 Security Logs Display the information of security logs. If hacker attacks your sever, he will be isolated by the firewall function and the router will record related information. Hence, you know where the hacker comes from.
Billion BIPAC 6500 Broadband VPN Firewall Router Refresh: Click “Refresh” to get the latest information of system logs. 3.4.4.5 ARP Cache Table From this table, you can see the IP address of each PC in your LAN as well as its associated MAC address. 3.4.4.6 DHCP Table If you enable the DHCP server function of this device, you can see the assigned IP addresses and their associated MAC addresses from this table.
Chapter 3 Configuration 3.4.4.7 Routing Table Display the current routing paths of BIPAC 6500. 3.4.4.8 VPN Connect Status Display the current VPN connection status.
Billion BIPAC 6500 Broadband VPN Firewall Router 48
Chapter 4 Troubleshooting If BIPAC 6500 is not functioning properly, you can refer first to this chapter for simple troubleshooting before contacting your service provider. This could save you time and effort but if the symptoms persist, then consult your service provider. How to do a factory reset? If for any reason, you have to reset this device to factory default settings, be careful that the current settings will be lost and the settings are reset back to it’s default state.
Billion BIPAC 6500 Broadband VPN Firewall Router Why won't my Internet application work? To protect your computer from Hackers, the product uses port blocking algorithm. A port likes a door into your computer. Each service on the Internet has an associated port. The product protects your computer by closing certain ports off so that malicious programs can't access your computer. Sometimes, however, you are using an application on purpose that uses one of these blocked ports.
Chapter 4 Troubleshooting Is there a tool to check my PC’s TCP/IP settings in MS Windows? There are two programs we can use to display your current PC’s TCP/IP settings. WINIPCFG.EXE For Win95, 98, ME, the WINIPCFG program is used to gather information about the TCP/IP connections that are active on your system. It cannot be used to dynamically adjust TCP/IP connections. You can also renew leases (if allowed by the network), and get the current IP address assignments through this program. 1.
Billion BIPAC 6500 Broadband VPN Firewall Router Click here to reveal more. 4. On the top, the “Host Name” and “DNS server” of the computer are configured to call when it is looking for a named resource. The default gateway is the server through which the client connects to the Internet. The DHCP Server identifies the network server (i.e. BIPAC 6500) that assigns IP addresses to computers on the network.
Chapter 4 Troubleshooting For example, you can enter PING command in MS-DOS prompt (or after choosing START_ RUN from the Start menu) as below in sequence. PC to Router ( e.g. ping 192.168.1.254 ) If there is no reply from router, please verify the PC, cables, HUB/Switch and router. PC to external station with IP address (e.g. ping 168.95.192.1 ) If there is no reply from external station, please verify the router, cables, DSL/Cable modem, and connection protocols.
Billion BIPAC 6500 Broadband VPN Firewall Router Web (80), FTP (21), Telnet (23), SMTP (25), POP3 (110), DNS (53), ECHO (7), NNTP (119). Details are described in section 3.4.3.6 “Virtual Server”. When an incoming access request to the router for specified port is received, it will be forwarded to the corresponding internal server. For example, if you set the Service Port number 80 (Web) to be mapped to the IP Address 192.168.1.
Chapter 4 Troubleshooting How can I do if there is already a DHCP server in LAN? If there are two DHCP servers existing in the same network, it may cause conflict and generate trouble. In this situation, we suggest to disable DHCP server in router and configure your PC manually as described in Question 5 “Can I set a fixed IP address on my PC?”. How many PCs can share this single BIPAC 6500 simultaneously? Basically, it is depended on your subnet mask setting in router. For example, if you set 255.255.
Billion BIPAC 6500 Broadband VPN Firewall Router APPENDIX A Internet Applications There are many popular Internet applications, we list some of them here to configure the port numbers in NAT and virtual server functions to enable the services, please refer below for details. Application ICQ98a,99b None None Netmeeting 2.1 & 3.
APPENDIX B Product Support Most problems can be solved by using the Troubleshooting in Chapter 4. If you continue to have problems, you should contact the dealer where you bought this product. For further assistances with the product, please feel free to contact and visit us at: http://www.billion.