User's Manual
Table Of Contents
- Preface
- Product Overview
- Installation
- Configuration
- Web-based Configuration Utility
- Setup Wizard
- Manual Configuration
- Internet Setup
- Wireless Settings
- Network Settings
- Media Server
- IPv6 Internet Connection
- IPv6 Manual Setup
- Auto Detection
- Static IPv6 (Stateful)
- Static IPv6 (Stateless)
- Autoconfiguration (Stateful)
- Autoconfiguration (Stateless)
- PPPoE (Stateful)
- PPPoE (Stateless)
- IPv6 in IPv4 Tunneling (Stateful)
- IPv6 in IPv4 Tunneling (Stateless)
- 6 to 4 Tunneling (Stateful)
- 6 to 4 Tunneling (Stateless)
- 6rd (Stateless)
- 6rd (Stateful)
- Link-Local Connectivity
- Parental Controls
- Virtual Server
- Port Forwarding
- Application Rules
- QoS Engine
- Network Filters
- Access Control
- Website Filters
- Inbound Filters
- Firewall Settings
- Application Level Gateway Configuration
- Routing
- Advanced Wireless Settings
- WISH Settings
- Wi-Fi Protected Setup (WPS)
- Advanced Network Settings
- Guest Zone
- IPv6 Firewall
- IPv6 Routing
- Administrator Settings
- Time Settings
- SysLog
- Email Settings
- System Settings
- Update Firmware
- DDNS
- System Check
- Schedules
- Device Information
- Log
- Stats
- Active Sessions
- Wireless
- IPv6
- Support
- Web-based Configuration Utility
- Wireless Security
- Connect to a Wireless Network
- Troubleshooting
- Wireless Basics
- Networking Basics
- Technical Specifications
- Contacting Technical Support
- Warranty
- Registration
57D-Link DIR-657 User Manual
Section 3 - Conguration
SPI (Stateful Packet Inspection, also known as dynamic
packet ltering) helps to prevent cyber attacks by tracking
more state per session. It validates that the trac passing
through the session conforms to the protocol.
Select one of the following for TCP and UDP ports:
Endpoint Independent - Any incoming trac sent to
an open port will be forwarded to the application that
opened the port. The port will close if idle for 5 minutes.
Address Restricted - Incoming trac must match the IP
address of the outgoing connection.
Address + Port Restriction - Incoming trac must match
the IP address and port of the outgoing connection.
If an application has trouble working from behind the
router, you can expose one computer to the Internet and
run the application on that computer.
Note: Placing a computer in the DMZ may expose that
computer to a variety of security risks. Use of this option is
only recommended as a last resort.
Specify the IP address of the computer on the LAN that
you want to have unrestricted Internet communication. If
this computer obtains it’s IP address automatically using
DHCP, be sure to make a static reservation on the Basic
> DHCP page so that the IP address of the DMZ machine
does not change.
Enable SPI:
NAT Endpoint
Filtering:
Enable DMZ Host:
IP Address:
Firewall Settings
A rewall protects your network from the outside world. The D-Link DIR-657 oers a rewall type functionality. The SPI feature helps prevent cyber
attacks. Sometimes you may want a computer exposed to the outside world for certain types of applications. If you choose to expose a computer,
you cam enable DMZ. DMZ is short for Demilitarized Zone. This option will expose the chosen computer completely to the outside world.