Gebruiksaanwijzing /service van het product Wireless N300 ADSL 2 van de fabrikant Netgear
Ga naar pagina of 167
350 East Plumeria Drive San Jose, CA 95134 USA February 2011 202-10563-04 v1.0 N300 Wireless ADSL2+ Modem Router DGN2200 User Manual.
2 | N300 Wireless ADSL2+ Modem Router DGN2200 © 2011 NETGEAR, Inc. All rights reserved. No part of this publication may be reproduced, transmitted, transcribed, stored in a retrieval system, or translated into any language in any form or by any means without the written permission of NETGEAR, Inc.
Contents | 3 Contents Chapter 1 Hardware Setup Unpack Your Modem Router . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 9 Hardware Features . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 9 Label .
4 | Contents N300 Wireless ADSL2+ Modem Router DGN2200 Turn Off Wireless Connectivity . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 30 Disable SSID Broadcast . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 31 Restrict Access by MAC Address .
Contents | 5 N300 Wireless ADSL2+ Modem Router DGN2200 Run Diagnostic Utilities . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 61 Chapter 6 USB Storage USB Drive Requirements . . . . . . . . . . . . . . . . . . . . . .
6 | Contents N300 Wireless ADSL2+ Modem Router DGN2200 Overview of VPN Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 95 Client-to-Gateway VPN Tunnels. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 95 Gateway-to-Gateway VPN Tunnels .
Contents | 7 N300 Wireless ADSL2+ Modem Router DGN2200 Configuration Profile . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 146 Step-by-Step Configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
Chapter 1. Hardware Setup | 8 1 1. Hardware Setup Getting to know your modem router The N300 Wireless ADSL2+ Modem Router DGN2200 provides you with an easy and secure way to set up a wireless home network with fast access to the Internet over a high-speed digital subscriber line (DSL).
Chapter 1. Hardware Setup | 9 N300 Wireless ADSL2+ Modem Router DGN2200 Unpack Your Modem Router Your box should contain the following items: • N300 Wireless ADSL2+ Modem Router DGN2200 • AC power.
10 | Chapter 1. Hardware Setup N300 Wireless ADSL2+ Modem Router DGN2200 Back Panel The back panel has the On/Off button and port connections as shown in the figure. USB Ethernet LAN ADSL On/Off Power Figure 2. Back panel port connections Front Panel The modem router front panel has the status LEDs and icons shown in the figure.
Table 1. Front Panel LEDs Icon LED Activity Description Power Solid green Power is supplied to the modem router. Solid red POST (power-on self-test) failure or a device malfunction has occurred.
12 | Chapter 1. Hardware Setup N300 Wireless ADSL2+ Modem Router DGN2200 Modem Router Stand For optimal wireless network performance, use the stand (included in the package) to position your modem router upright. 1. Orient your modem router vertically.
Chapter 1. Hardware Setup | 13 N300 Wireless ADSL2+ Modem Router DGN2200 ADSL Microfilters If this is the first time you have cabled a router between a DSL phone line and your computer or laptop, you might not be familiar with ADSL microfilters. If you are, you can skip this section and proceed to Cable Your Modem Router on page 14.
14 | Chapter 1. Hardware Setup N300 Wireless ADSL2+ Modem Router DGN2200 microfilter into the wall outlet, plug your phone equipment into the jack labeled Phone, and plug the modem router into the jack labeled ADSL. Plugs into the DSL line Figure 5. Two-line ADSL microfilter with built-in splitter Summary • One-line ADSL microfilter.
Chapter 1. Hardware Setup | 15 N300 Wireless ADSL2+ Modem Router DGN2200 2. Use the included phone cable with RJ-11 jacks to connect the ADSL port (A) of the modem router to the ADSL port (B) of the two-line ADSL microfilter. B A Figure 7. Cable the modem modem router to the microfilter 3.
16 | Chapter 1. Hardware Setup N300 Wireless ADSL2+ Modem Router DGN2200 Verify the Cabling Verify that your modem router is cabled correctly by checking the modem router LEDs. Turn on the modem router by pressing the On/Off button on the back. • The Power LED is green when the modem routeris turned on.
Chapter 2. Modem Router Setup | 17 2 2. Modem Router Setup This chapter explains how to set up your Internet connection using one of three methods: NETGEAR Genie®, Setup Wizard, or manual setup. If you have already set up your modem router using one of these methods, the initial setup is complete.
18 | Chapter 2. Modem Router Setup N300 Wireless ADSL2+ Modem Router DGN2200 Modem Router Setup Preparation You can set up your modem router with the NETGEAR Genie as described in NETGEAR Genie Setup on page 19 , with the Setup Wizard as described in Setup Wizard on page 22 , or manually as described in Manual Setup (Basic Settings) on page 23 .
Chapter 2. Modem Router Setup | 19 N300 Wireless ADSL2+ Modem Router DGN2200 NETGEAR Genie Setup NETGEAR Genie is on the Resource CD and runs on a PC with Microsoft Windows 7, Windows Vista, Windows XP, or Windows 2000 with Service Pack 2 or later.
20 | Chapter 2. Modem Router Setup N300 Wireless ADSL2+ Modem Router DGN2200 Log In to the Modem Router Log in to the modem router to view or change settings or to set up the modem router. 1. Type http://192.168.0.1 in the address field of your browser and press Enter to display the login window.
Chapter 2. Modem Router Setup | 21 N300 Wireless ADSL2+ Modem Router DGN2200 Upgrade Modem Router Firmware When you log in, if you are connected to the Internet, the Firmware Upgrade Assistant screen displays so you can upgrade to the latest firmware.
22 | Chapter 2. Modem Router Setup N300 Wireless ADSL2+ Modem Router DGN2200 • Setup Wizard . Specify the language and location, and automatically detect the Internet connection. See Setup Wizard on page 22. • Add WPS Client . Add WPS-compatible wireless devices and other equipment to your wireless network.
Chapter 2. Modem Router Setup | 23 N300 Wireless ADSL2+ Modem Router DGN2200 It is important to specify the location where the modem router operates so that the Internet connection works correctly. 3. Select either Yes or No, I want to configure the Router myself .
24 | Chapter 2. Modem Router Setup N300 Wireless ADSL2+ Modem Router DGN2200 5. Click Test to test your Internet connection. If the NETGEAR website does not appear within 1 minute, and see Troubleshooting on page 128 . ISP does not require login ISP does require login Figure 10.
Chapter 2. Modem Router Setup | 25 N300 Wireless ADSL2+ Modem Router DGN2200 These fields display only if your ISP requires a login. Encapsulation Encapsulation is a method for enclosing multiple protocols.
26 | Chapter 2. Modem Router Setup N300 Wireless ADSL2+ Modem Router DGN2200 ADSL Settings DSL settings of your modem router work fine for most ISPs. However, some ISPs use a multiplexing method and virtual circuit number for the virtual path identifier (VPI) and virtual channel identifier (VCI).
Chapter 2. Modem Router Setup | 27 N300 Wireless ADSL2+ Modem Router DGN2200 Change Password and Login Time-Out For security reasons, the modem router has its own user name and password that default to admin and password. You can and should change these to a secure user name and password that are easy to remember.
28 | Chapter 2. Modem Router Setup N300 Wireless ADSL2+ Modem Router DGN2200 Log Out Manually The modem router interface provides a Logout command at the bottom of the modem router menus. Log out when you expect to be away from your computer for a relatively long period of time.
Chapter 3. Wireless Settings | 29 3 3. Wireless Settings Protecting your network This chapter describes how to use the Wireless Settings screens to view and change (if needed) your wireless network settings. Security features to prevent objectionable content from reaching your PCs are covered in Chapter 4, Content Filtering Settings .
30 | Chapter 3. Wireless Settings N300 Wireless ADSL2+ Modem Router DGN2200 Preset Security The modem router comes with preset security. This means that the Wi-Fi network name (SSID), passphrase, and security option (encryption protocol) are preset in the factory.
Chapter 3. Wireless Settings | 31 N300 Wireless ADSL2+ Modem Router DGN2200 Disable SSID Broadcast By default, the modem router broadcasts its Wi-Fi network name (SSID) so devices can find it. If you change this setting to not allow the broadcast, wireless devices will not find your modem router unless they are configured with the same SSID.
32 | Chapter 3. Wireless Settings N300 Wireless ADSL2+ Modem Router DGN2200 Manual Method 1. Open the software that manages your wireless connections on the wireless device (laptop computer, gaming device, iPhone) that you want to connect to your modem router.
Chapter 3. Wireless Settings | 33 N300 Wireless ADSL2+ Modem Router DGN2200 2. Click Next . The following screen lets you select the method for adding the WPS client.
34 | Chapter 3. Wireless Settings N300 Wireless ADSL2+ Modem Router DGN2200 Consider Every Device on Your Network Before you begin, check the following: • Every wireless computer has to be able to obtain an IP address by DHCP from the modem router as described in Use Standard TCP/IP Properties for DHCP on page 18.
Chapter 3. Wireless Settings | 35 N300 Wireless ADSL2+ Modem Router DGN2200 Note: The screen sections, settings, and procedures are explained in the following sections. 4. Set up and test your computers for wireless connectivity: a. Use your wireless computer or device to join your network.
36 | Chapter 3. Wireless Settings N300 Wireless ADSL2+ Modem Router DGN2200 Security Options Settings The Security Options section of the Wireless Settings screen lets you change the security option and passphrase. The primary network for your preset modem router is already set up with WPA2 and WPA security.
Chapter 3. Wireless Settings | 37 N300 Wireless ADSL2+ Modem Router DGN2200 2. Select the authentication type. The default is Automatic. Other choices are Open System (any client can authenticate itself to the network) and Shared Key (a passphrase and a four-way challenge are needed for authentication).
38 | Chapter 3. Wireless Settings N300 Wireless ADSL2+ Modem Router DGN2200 To set up a wireless guest network: 1. Select Setup > Wireless Settings .
Chapter 4. Content Filtering Settings | 39 4 4. Content Filtering Settings Keeping unwanted content out of your network This chapter explains how to use the basic firewall features of the modem router to prevent objectionable content from reaching the PCs and other devices connected to your network.
40 | Chapter 4. Content Filtering Settings N300 Wireless ADSL2+ Modem Router DGN2200 Logs The modem router logs security-related events such as denied incoming service requests, hacker probes, and administrator logins.
Chapter 4. Content Filtering Settings | 41 N300 Wireless ADSL2+ Modem Router DGN2200 Examples of Log Messages Following are examples of log messages. In all cases, the log entry shows the time stamp as day, year-month-date hour:minute:second.
42 | Chapter 4. Content Filtering Settings N300 Wireless ADSL2+ Modem Router DGN2200 Keyword Blocking of HTTP Traffic Use keyword blocking to prevent certain types of HTTP traffic from accessing your network. The blocking can be always or according to a scheduled.
Chapter 4. Content Filtering Settings | 43 N300 Wireless ADSL2+ Modem Router DGN2200 Specify Trusted Computer You can exempt one trusted computer from blocking and logging. The computer you exempt has to have a fixed IP address. 1. In the Trusted IP Address field, enter the IP address.
44 | Chapter 4. Content Filtering Settings N300 Wireless ADSL2+ Modem Router DGN2200 To set up firewall rules: 1. Select Security > Firewall Rules to display the following screen: 2. To add an inbound or outbound rule: • For an outbound rule, click Add under Outbound Services.
Chapter 4. Content Filtering Settings | 45 N300 Wireless ADSL2+ Modem Router DGN2200 Note: Some residential broadband ISP accounts do not let you run server processes (such as a Web or FTP server) from your location. Your ISP might periodically check for servers and suspend your account if it discovers any active services at your location.
46 | Chapter 4. Content Filtering Settings N300 Wireless ADSL2+ Modem Router DGN2200 • Log . You can select whether to log the traffic: - Never . No log entries are made for this service. - Always . Any traffic for this service type is logged. - Match .
Chapter 4. Content Filtering Settings | 47 N300 Wireless ADSL2+ Modem Router DGN2200 Outbound Rules (Service Blocking) You can block computers on your local network from using certain Internet services. This is called service blocking or port filtering.
48 | Chapter 4. Content Filtering Settings N300 Wireless ADSL2+ Modem Router DGN2200 Set Up Services Services are functions performed by server computers at the request of client computers. For example, Web servers serve Web pages, time servers serve time and date information, and game hosts serve data about other players’ moves.
Chapter 4. Content Filtering Settings | 49 N300 Wireless ADSL2+ Modem Router DGN2200 Set the Time Zone The modem router uses the Network Time Protocol (NTP) to obtain the current time and date from one of several network time servers on the Internet. 1.
50 | Chapter 4. Content Filtering Settings N300 Wireless ADSL2+ Modem Router DGN2200 Schedule Services If you enabled service blocking in the Block Services screen or port forwarding in the Ports screen, you can set up a schedule for when blocking occurs or when access is not restricted.
Chapter 4. Content Filtering Settings | 51 N300 Wireless ADSL2+ Modem Router DGN2200 Enable Security Event Email Notification To receive logs and alerts by email, provide your email information in the E-mail screen and specify which alerts you want to receive and how often.
52 | Chapter 4. Content Filtering Settings N300 Wireless ADSL2+ Modem Router DGN2200 • Send Alerts Immediately . Select the corresponding check box if you would like immediate notification of a significant security event, such as a known attack, port scan, or attempted access to a blocked site.
Chapter 5. Network Maintenance | 53 5 5. Network Maintenance Administering your network This chapter describes the modem router settings for administering and maintaining the modem router and home network.
54 | Chapter 5. Network Maintenance N300 Wireless ADSL2+ Modem Router DGN2200 Upgrade the Modem Router Firmware The modem router firmware (routing software) is stored in flash memory. By default, when you log in to your modem router, it checks the NETGEAR website for new firmware and alerts you if there is a newer version.
Chapter 5. Network Maintenance | 55 N300 Wireless ADSL2+ Modem Router DGN2200 Stop the Automatic Firmware Check You can turn the automatic firmware checking off and check for firmware updates manually if you prefer. See Manually Check for Firmware Upgrades on page 55 .
56 | Chapter 5. Network Maintenance N300 Wireless ADSL2+ Modem Router DGN2200 4. Select Maintenance > Router Upgrade to display the following screen: 5. Click Browse , and locate the firmware you downloaded (the file ends in .img). 6. Click Upload to send the firmware to the modem router.
Chapter 5. Network Maintenance | 57 N300 Wireless ADSL2+ Modem Router DGN2200 Restore 1. Enter the full path to the file on your network, or click the Browse button to find the file. 2. When you have located the .cfg file, click the Restore button to upload the file to the modem router.
58 | Chapter 5. Network Maintenance N300 Wireless ADSL2+ Modem Router DGN2200 LAN Port (Local Ports) MAC Address . The modem router LAN port Ethernet MAC address. IP Address . The modem router LAN port IP address. The default is 192.168.0.1. DHCP . If Off, the modem router does not assign IP addresses to PCs on the LAN.
Chapter 5. Network Maintenance | 59 N300 Wireless ADSL2+ Modem Router DGN2200 Show Statistics Click the Show Statistics button on the Router Status screen to display a screen similar to this: Port The statistics for the WAN (Internet), LAN (local), and wireless LAN (WLAN) ports.
60 | Chapter 5. Network Maintenance N300 Wireless ADSL2+ Modem Router DGN2200 Connection Status In the Router Status screen, click the Connection Status button to display a screen similar to this: • Connection Time . The time elapsed since the last connection to the Internet through the DSL port.
Chapter 5. Network Maintenance | 61 N300 Wireless ADSL2+ Modem Router DGN2200 Run Diagnostic Utilities The modem router has a diagnostics feature. Select Maintenance > Diagnostics to display the following screen. You can perform the following functions: • Ping an IP address to test connectivity to see if you can reach a remote host.
Chapter 6. USB Storage | 62 6 6. USB Storage This chapter describes how to access and configure a USB storage drive attached to your modem router. Figure 13. USB port on rear panel. The USB port on the modem router can be used only to connect USB storage devices like flash drives or hard drives.
Chapter 6. USB Storage | 63 N300 Wireless ADSL2+ Modem Router DGN2200 USB Drive Requirements The modem router works with 1.0 and 1.1 (USB Full Speed) and 2.0 (USB High Speed) standards. The approximate USB bus speeds are shown in the following table. Bus Speed/Second USB 1.
64 | Chapter 6. USB Storage N300 Wireless ADSL2+ Modem Router DGN2200 Share Large Files with FTP via Internet 1. To protect your network, set up security if someone else will be downloading the files. Create a user name and password with appropriate access.
Chapter 6. USB Storage | 65 N300 Wireless ADSL2+ Modem Router DGN2200 • Type readyshare in the address field of your Web browser. Network/device name: Share name: readyshare readyshareUSB_Storage If.
66 | Chapter 6. USB Storage N300 Wireless ADSL2+ Modem Router DGN2200 1. Click the Edit button to open the Edit Network Folder screen: 2. You can use this screen to select a folder, to change the share name, or to change read access or write access from All-no password to admin.
Chapter 6. USB Storage | 67 N300 Wireless ADSL2+ Modem Router DGN2200 USB Storage Advanced Settings To configure advanced USB settings, select USB > Advanced Settings . The USB Storage (Advanced Settings) screen displays: You can use this screen to specify access to the USB storage device.
68 | Chapter 6. USB Storage N300 Wireless ADSL2+ Modem Router DGN2200 Available Network Folders • Folder Name . Full path of the Network folder. • Volume Name . Volume name from the storage device (either USB drive or HDD). • Total Free Space . The space currently available on the storage device.
Chapter 6. USB Storage | 69 N300 Wireless ADSL2+ Modem Router DGN2200 Unmount a USB Drive To unmount a USB disk drive so that no users can access it, from the USB Settings screen, click the Safely Remove USB button. This takes the drive offline. CAUTION: Unmount the USB drive before physically unplugging it from the modem router.
70 | Chapter 6. USB Storage N300 Wireless ADSL2+ Modem Router DGN2200 Connect to the USB Drive from a Remote Computer To connect to the USB drive from remote computers using a Web browser, you use the modem router’s Internet port IP address. Locate the Internet Port IP Address The Router Status screen shows the Internet port IP address: 1.
Chapter 6. USB Storage | 71 N300 Wireless ADSL2+ Modem Router DGN2200 Note: In Windows 2000 and Windows XP, File and Printer Sharing is enabled by default. Configuring Windows 98SE and Windows ME The easiest way to get to your network properties is to go to your desktop, right-click Network Neighborhood and then select Properties .
Chapter 7. Advanced Settings | 72 7 7. Advanced Settings Configuring for unique situations This chapter describes the advanced features of your modem router.
Chapter 7. Advanced Settings | 73 N300 Wireless ADSL2+ Modem Router DGN2200 WAN Setup Select Advanced > WAN Setup to display the following screen: The following settings are available: • Disable Port Scan and DoS Protection . The firewall protects your LAN against port scans and denial of service (DoS) attacks.
74 | Chapter 7. Advanced Settings N300 Wireless ADSL2+ Modem Router DGN2200 Default DMZ Server The default demilitarized zone (DMZ) server feature is helpful when you use online games and video conferencing applications that are incompatible with NAT.
Chapter 7. Advanced Settings | 75 N300 Wireless ADSL2+ Modem Router DGN2200 Dynamic DNS If your network has a permanently assigned IP address, you can register a domain name that is linked to your IP address by public Domain Name Servers (DNS).
76 | Chapter 7. Advanced Settings N300 Wireless ADSL2+ Modem Router DGN2200 If your ISP assigns a private WAN IP address such as 192.168.x.x or 10.x.x.
Chapter 7. Advanced Settings | 77 N300 Wireless ADSL2+ Modem Router DGN2200 LAN Setup Screen Settings • IP Address . The LAN IP address of the modem router.
78 | Chapter 7. Advanced Settings N300 Wireless ADSL2+ Modem Router DGN2200 Quality of Service (QoS) Quality of Service (QoS) is an advanced feature that can be used to prioritize some types of traffic ahead of others. The modem router can provide QoS prioritization over the wireless link and on the Internet connection.
Chapter 7. Advanced Settings | 79 N300 Wireless ADSL2+ Modem Router DGN2200 2. Click Setup QoS rule . The QoS Priority Rule list displays: 3. To change a rule, select its radio button, scroll down and click Edit . 4. To add a custom rule, click Add Priority Rule .
80 | Chapter 7. Advanced Settings N300 Wireless ADSL2+ Modem Router DGN2200 Note: The advanced WPS settings section is not displayed if you selected WEP as the security option. 2. If you make changes, click Apply . Note that the WLAN settings come from the settings you made in the Wireless Settings screen (see Wireless Settings Screen on page 33).
Chapter 7. Advanced Settings | 81 N300 Wireless ADSL2+ Modem Router DGN2200 Wireless Card Access List The Wireless Card Access List lets you restrict access to your network to a specific list of devices based on their MAC addresses. This section explains how to set up the list.
82 | Chapter 7. Advanced Settings N300 Wireless ADSL2+ Modem Router DGN2200 Remote Management The Remote Management screen lets you allow a user or users on the Internet to configure, upgrade, and check the status of your modem router. 1. Select Advanced > Remote Management to display this screen: 2.
Chapter 7. Advanced Settings | 83 N300 Wireless ADSL2+ Modem Router DGN2200 Static Routes Static routes provide additional routing information to your modem router.
84 | Chapter 7. Advanced Settings N300 Wireless ADSL2+ Modem Router DGN2200 Add a Static Route 1. Select Advanced > Static Routes to display the following screen: 2. Click Add to open the following screen. 3. Fill in the fields: • In the Route Name field, enter a route name for this static route.
Chapter 7. Advanced Settings | 85 N300 Wireless ADSL2+ Modem Router DGN2200 Universal Plug and Play Universal Plug and Play (UPnP) helps devices, such as Internet appliances and computers, access the network and connect to other devices as needed.
86 | Chapter 7. Advanced Settings N300 Wireless ADSL2+ Modem Router DGN2200 Traffic Meter Traffic metering allows you to monitor the volume of Internet traffic passing through your modem router’s Internet port. With the Traffic Meter utility, you can set limits for traffic volume, set a monthly limit, and get a live update of traffic usage.
Chapter 7. Advanced Settings | 87 N300 Wireless ADSL2+ Modem Router DGN2200 Advanced USB Settings For added security, you can specify that only approved USB devices are shared. 1. Select Advanced > USB . The following screen displays: 2. Select No and click Apply .
88 | Chapter 7. Advanced Settings N300 Wireless ADSL2+ Modem Router DGN2200 Select Advanced > Wireless Repeating Function to display the following screen: • Enable Wireless Repeating Function . Select this check box if you want to use the wireless repeating function.
Chapter 7. Advanced Settings | 89 N300 Wireless ADSL2+ Modem Router DGN2200 Set Up a Point-to-Point Bridge In point-to-point bridge mode, the modem router communicates as an access point with another bridge-mode wireless station. As a bridge, wireless client associations are disabled.
90 | Chapter 7. Advanced Settings N300 Wireless ADSL2+ Modem Router DGN2200 Set Up a Multi-Point Bridge Multi-point bridge mode allows a router to bridge to multiple peer access points simultaneously. Wireless client associations are disabled. Only wired clients can be connected.
Chapter 7. Advanced Settings | 91 N300 Wireless ADSL2+ Modem Router DGN2200 2. Set up AP 2 and AP 3 to be wireless repeaters. a. In the Wireless Repeating Function screen for AP 2 and AP 3, select the Enable Wireless Repeating Function check box. b. Select the Wireless Repeater radio button.
92 | Chapter 7. Advanced Settings N300 Wireless ADSL2+ Modem Router DGN2200 The following figure shows an example of a repeater mode configuration. Internet PCs Wireless PC 192.
Chapter 7. Advanced Settings | 93 N300 Wireless ADSL2+ Modem Router DGN2200 • The access points are on the same LAN. That is, the LAN IP addresses for the access points are in the same network. • If you are using DHCP, access point devices are set to Obtain an IP address automatically (DHCP Client) in the Basic Settings screen.
Chapter 8. Virtual Private Networking | 94 8 8. Virtual Private Networking This chapter describes how to use the virtual private networking (VPN) features of the modem router. VPN communications paths are called tunnels. VPN tunnels provide secure, encrypted communications between your local network and a remote network or computer.
Chapter 8. Virtual Private Networking | 95 N300 Wireless ADSL2+ Modem Router DGN2200 Overview of VPN Configuration Two common scenarios for VPN tunnels are between a remote PC and a network gateway; and between two or more network gateways. The DGN2200 supports both types.
96 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 A VPN between two or more NETGEAR VPN-enabled routers is a good way to connect branch or home offices and business partners over the Internet. VPN tunnels also enable access to network resources across the Internet.
Chapter 8. Virtual Private Networking | 97 N300 Wireless ADSL2+ Modem Router DGN2200 page 146 ) can allow a VPN endpoint with a dynamic IP address to initiate or respond to a tunnel request. Otherwise, the side using a dynamic IP address has to always be the initiator.
98 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 • See Use Manual Policy to Configure VPN Tunnels on page 125 when the VPN Wizard and its VPNC defaults are not appropriate for your special circumstances and you have to specify each phase of the connection.
Chapter 8. Virtual Private Networking | 99 N300 Wireless ADSL2+ Modem Router DGN2200 The following worksheet identifies the parameters used in this procedure, which are highlighted in blue.
100 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 3. Select the radio button for the type of target end point, and click Next .
Chapter 8. Virtual Private Networking | 101 N300 Wireless ADSL2+ Modem Router DGN2200 To view or modify the tunnel settings, select its radio button and click Edit . Note: See Use Auto Policy to Configure VPN Tunnels on page 118 for information about how to enable the IKE keep-alive capability on an existing VPN tunnel.
102 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 b. From the Edit menu of the Security Policy Editor, select Add , and then click Connection .
Chapter 8. Virtual Private Networking | 103 N300 Wireless ADSL2+ Modem Router DGN2200 3. Configure the security policy in the NETGEAR ProSafe VPN Client software: a. In the Network Security Policy list, expand the new connection by double-clicking its name or clicking the + symbol.
104 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 c. In the ID Type drop-down list, select IP Address . If you are using a virtual fixed IP address, enter this address in the Internal Network IP Address field. Otherwise, leave this field empty.
Chapter 8. Virtual Private Networking | 105 N300 Wireless ADSL2+ Modem Router DGN2200 d. In the Encrypt Alg drop-down list, select the type of encryption that is configured for the Encryption Protocol in the modem router in Table 3 on page 96 . This example uses Triple DES.
106 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 To check the VPN connection, you can initiate a request from the remote PC to the modem router’s network by using the Connect option in the NETGEAR ProSafe menu bar.
Chapter 8. Virtual Private Networking | 107 N300 Wireless ADSL2+ Modem Router DGN2200 To launch this function, click the Windows Start button, then select Programs > NETGEAR ProSafe VPN Client > Log Viewer.
108 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 Set Up a Gateway-to-Gateway VPN Configuration This section describes how to use the VPN Wizard to set up the VPN tunnel using the VPNC default parameters listed in Table 4 on page 97 .
Chapter 8. Virtual Private Networking | 109 N300 Wireless ADSL2+ Modem Router DGN2200 The LAN IP address ranges of each VPN endpoint has to be different. The connection will fail if both are using the NETGEAR default address range of 192.168.0.x. To configure a gateway-to-gateway VPN tunnel using the VPN Wizard: 1.
110 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 The VPN Wizard Summary screen displays: To view the VPNC-recommended authentication and encryption settings used by the VPN Wizard, click the here link. 5. Click Done on the Summary screen.
Chapter 8. Virtual Private Networking | 111 N300 Wireless ADSL2+ Modem Router DGN2200 Note: The VPN Status screen is only one of three ways to active a VPN tunnel. See Activate a VPN Tunnel on page 112 for information about the other ways. a. On the modem router menu, select VPN Status .
112 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 VPN Tunnel Control Activate a VPN Tunnel There are three ways to activate a VPN tunnel: • Use the VPN Status screen. • Ping the remote endpoint. • Start using the VPN tunnel.
Chapter 8. Virtual Private Networking | 113 N300 Wireless ADSL2+ Modem Router DGN2200 2. Click VPN Status to display the Current VPN Tunnels (SAs) screen: 3. Click Connect for the VPN tunnel that you want to activate. Activate the VPN Tunnel by Pinging the Remote Endpoint Note: This section uses 192.
114 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 This causes a continuous ping to be sent to the first DGN2200. Within 2 minutes, the ping response should change from timed out to reply. Note: You can use Ctrl-C to stop the pinging.
Chapter 8. Virtual Private Networking | 115 N300 Wireless ADSL2+ Modem Router DGN2200 Verify the Status of a VPN Tunnel 1. Select Advanced - VPN > VPN Status to display the VPN Status/Log screen. This log shows the details of recent VPN activity, including the building of the VPN tunnel.
116 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 • HLifeTime (Secs) . The remaining hard lifetime for this SA in seconds. When the hard lifetime becomes 0 (zero), the SA (wecurity association) is terminated. (It is re-established if required.
Chapter 8. Virtual Private Networking | 117 N300 Wireless ADSL2+ Modem Router DGN2200 Use the VPN Status Screen to Deactivate a VPN Tunnel 1. Select Advanced - VPN > VPN Status to display the VPN Status screen. 2. Click VPN Status . The Current VPN Tunnels (SAs) screen displays: 3.
118 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 Delete a VPN Tunnel 1. Select Advanced - VPN > VPN Policies to display the VPN Policies screen. 2. In the Policy Table, select the radio button for the VPN tunnel to be deleted, and then click Delete .
Chapter 8. Virtual Private Networking | 119 N300 Wireless ADSL2+ Modem Router DGN2200 The most common configuration scenarios use IKE to manage the authentication and encryption keys. The IKE protocol performs negotiations between the two VPN endpoints to automatically generate and update the required encryption parameters.
120 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 The ping IP address has to be associated with the remote endpoint. You have to use the remote LAN address. This IP address will be pinged periodically to generate traffic for the VPN tunnel.
Chapter 8. Virtual Private Networking | 121 N300 Wireless ADSL2+ Modem Router DGN2200 • Diffie-Hellman (DH) Group . The Diffie-Hellman algorithm is used when keys are exchanged. The DH Group setting determines the bit size used in the exchange. This value needs to match the value used on the remote VPN gateway.
122 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 This setting applies to both IKE and IPSec SAs. When configuring the remote endpoint to match this setting, you might have to specify the key group used. For this device, the key group is the same as the DH Group setting in the IKE section.
Chapter 8. Virtual Private Networking | 123 N300 Wireless ADSL2+ Modem Router DGN2200 2. Select Advanced - VPN > VPN Policies and click the Add Auto Policy button.
124 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 4. Click Apply . The VPN Policies screen displays: 5. Repeat these steps for the DGN2200 on LAN B. Pay special attention to the following network settings: • General, Remote Address Data (for example, 14.
Chapter 8. Virtual Private Networking | 125 N300 Wireless ADSL2+ Modem Router DGN2200 a. Select VPN > VPN Status to display the VPN Status/Log screen. Then click VPN Status to display the Current VPN Tunnels (SAs) screen: b. Click Connect for the VPN tunnel that you want to activate.
126 | Chapter 8. Virtual Private Networking N300 Wireless ADSL2+ Modem Router DGN2200 Select Advanced - VPN > VPN Policies , and then click the Add Manual Policy radio button to display the VPN - Manual Policy screen: The following sections explain the fields in the VPN Manual Policy screen.
Chapter 8. Virtual Private Networking | 127 N300 Wireless ADSL2+ Modem Router DGN2200 • Single/Start IP Address . The IP address for a single address, or the starting address for an address range used on the LAN. If you want to make a single server on your LAN available to remote users, use a single address Any settings.
Chapter 9. Troubleshooting | 128 9 9. Troubleshooting Diagnosing and Solving Problems This chapter provides information to help you diagnose and solve problems you might have with your modem router. If you do not find the solution here, check the NETGEAR support site at http://support.
Chapter 9. Troubleshooting | 129 N300 Wireless ADSL2+ Modem Router DGN2200 Troubleshooting with the LEDs When you turn the power on, the power, LAN, and DSL LEDs should light as described here. If they do not, refer to the sections that follow for help.
130 | Chapter 9. Troubleshooting N300 Wireless ADSL2+ Modem Router DGN2200 If the Power LED turns red to indicate a modem router fault, turn the power off and on to see if the modem router recovers. If the power LED is still red 1 minute after power-up: • Turn the power off and on one more time to see if the modem router recovers.
Chapter 9. Troubleshooting | 131 N300 Wireless ADSL2+ Modem Router DGN2200 • Make sure you are using the correct login information. The factory default login name is admin , and the password is password . Make sure that Caps Lock is off when you enter this information.
132 | Chapter 9. Troubleshooting N300 Wireless ADSL2+ Modem Router DGN2200 Internet LED Is Red If the Internet LED is red, the device was unable to connect to the Internet. Verify the following: • Check that your login credentials are correct, or that the information you entered on the Basic Settings screen is correct.
Chapter 9. Troubleshooting | 133 N300 Wireless ADSL2+ Modem Router DGN2200 Troubleshooting PPPoE or PPPoA The PPPoE or PPPoA connection can be debugged as follows: 1. Access the main menu of the modem router at http://192.168.0.1. 2. Select Maintenance > Router Status .
134 | Chapter 9. Troubleshooting N300 Wireless ADSL2+ Modem Router DGN2200 Test the LAN Path to Your Modem Router You can ping the modem router from your computer to verify that the LAN path to your modem router is set up correctly. To ping the modem router from a PC running Windows 95 or later: 1.
Chapter 9. Troubleshooting | 135 N300 Wireless ADSL2+ Modem Router DGN2200 • Check that your PC has the IP address of your modem router listed as the default modem router. If the IP configuration of your PC is assigned by DHCP, this information is not visible in your PC’s Network Control Panel.
136 | Chapter 9. Troubleshooting N300 Wireless ADSL2+ Modem Router DGN2200 Changes Not Saved If the modem router does not save the changes you make in the modem router interface, check the following: • When entering configuration settings, always click the Apply button before moving to another screen or tab, or your changes are lost.
Appendix A. Supplemental Information | 137 A A. Supplemental Information This appendix includes the factory default settings and technical specifications for the N300 Wireless ADSL2+ Modem Router DGN2200, and instructions for wall-mounting the unit.
138 | Appendix A. Supplemental Information N300 Wireless ADSL2+ Modem Router DGN2200 Factory Settings You can return the modem router to its factory settings. On the bottom of the modem router, use the end of a paper clip or some other similar object to press and hold the Restore Factory Settings button for at least 7 seconds.
Appendix A. Supplemental Information | 139 N300 Wireless ADSL2+ Modem Router DGN2200 Wireless Wireless communication Enabled SSID name Can be found on the label on the bottom of the unit.
140 | Appendix A. Supplemental Information N300 Wireless ADSL2+ Modem Router DGN2200 Specifications Specification Description Network protocol and standards compatibility TCP/IP, RIP-1, RIP-2, DHCP, P.
Appendix A. Supplemental Information | 141 N300 Wireless ADSL2+ Modem Router DGN2200 Wall-Mount Your Modem Router Your modem router’s location can affect wireless connections. For example, the thickness and number of walls the wireless signal passes through might limit its range.
142 | Appendix A. Supplemental Information N300 Wireless ADSL2+ Modem Router DGN2200 3. Insert screws into the wall anchors, leaving 3/16 in. (0.5 cm) of each screw exposed.
Appendix B. NETGEAR VPN Configuration | 143 B B. NETGEAR VPN Configuration This appendix is a case study on how to configure a secure IPSec VPN tunnel from a NETGEAR DGN2200 to a FVL328. This case study follows the VPN Consortium interoperability profile guidelines (found at http://www.
Gateway A WAN IP Internet 10.506.0/24 (DGN2200) LAN IP 10.5.6.1 14.15.16.17 WAN IP 22.23.24.25 Gateway B LAN IP 172.23.9.1 172.23.9.0/24 144 | Appendix B. NETGEAR VPN Configuration N300 Wireless ADSL2+ Modem Router DGN2200 Figure 28. VPNC Example, Network Interface Addressing Step-by-Step Configuration 1.
Appendix B. NETGEAR VPN Configuration | 145 N300 Wireless ADSL2+ Modem Router DGN2200 3. On the Gateway B router menu, under VPN, select IKE Policies, and click the Edit button to display the IKE Policy Configuration screen: toGW_A 14.15.16.17 22.23.24.
146 | Appendix B. NETGEAR VPN Configuration N300 Wireless ADSL2+ Modem Router DGN2200 Modem Router with FQDN to Gateway B This section is a case study on how to configure a VPN tunnel from a NETGEAR modem router to a gateway using a fully qualified domain name (FQDN) to resolve the public address of one or both routers.
Appendix B. NETGEAR VPN Configuration | 147 N300 Wireless ADSL2+ Modem Router DGN2200 retrieved. Now, a gateway can be configured to use a third-party service instead of a permanent and unchanging IP address to establish bi-directional VPN connectivity.
148 | Appendix B. NETGEAR VPN Configuration N300 Wireless ADSL2+ Modem Router DGN2200 d. Click Show Status . The resulting screen should show Update OK: good: 3. On NETGEAR Gateway B, configure the Dynamic DNS settings. Assume a correctly configured DynDNS account.
Appendix B. NETGEAR VPN Configuration | 149 N300 Wireless ADSL2+ Modem Router DGN2200 The LAN addresses used in this example are as follows: Table 12. Device LAN IP Address LAN Subnet Mask DGN2200 10.5.6.1 255.255.255.0 FVL328 172.23.6.1 255.255.255.0 a.
150 | Appendix B. NETGEAR VPN Configuration N300 Wireless ADSL2+ Modem Router DGN2200 Verify that the firmware is up to date, and make sure you have all the addresses and parameters to be set on both sides. Assure that there are no firewall restrictions Table 13.
Appendix B. NETGEAR VPN Configuration | 151 N300 Wireless ADSL2+ Modem Router DGN2200 Step 1: Configure Gateway A (the NETGEAR VPN Router at the Main Office) 1. Log in to the VPN router. Select VPN Policies to display the VPN Policies screen. Click Add Auto Policy to proceed and enter the information.
152 | Appendix B. NETGEAR VPN Configuration N300 Wireless ADSL2+ Modem Router DGN2200 Step 2: Configure Gateway B (the Modem Router at the Regional Office) This procedure assumes that the PC running the client has a dynamically assigned IP address.
Appendix B. NETGEAR VPN Configuration | 153 N300 Wireless ADSL2+ Modem Router DGN2200 d. Select Secure in the Connection Security section. toGW_A e. Select IP Subnet in the ID Type drop-down list. f. In this example, type 192.168.0.1 in the Subnet field as the network address of the modem router.
154 | Appendix B. NETGEAR VPN Configuration N300 Wireless ADSL2+ Modem Router DGN2200 a. In the Network Security Policy list on the left side of the Security Policy Editor window, click My Identity . b. Select None in the Select Certificate field. c. Select Domain Name in the ID Type field, and enter toGW_A.
Appendix B. NETGEAR VPN Configuration | 155 N300 Wireless ADSL2+ Modem Router DGN2200 b. Expand the Authentication subheading by double-clicking its name or clicking the + symbol. Then select Proposal 1 below Authentication. c. In the Authentication Method drop-down list, select Pre-Shared Key .
156 | Appendix B. NETGEAR VPN Configuration N300 Wireless ADSL2+ Modem Router DGN2200 To check the VPN connection, you can initiate a request from the remote PC to the VPN router’s network by using the Connect option in the modem router screen: Right-click the system tray icon to open the pop-up menu.
Appendix B. NETGEAR VPN Configuration | 157 N300 Wireless ADSL2+ Modem Router DGN2200 This causes a continuous ping to be sent to the VPN router. Within 2 minutes, the ping response should change from timed out to reply . Once the connection is established, you can open the browser on the PC and enter the LAN IP address of the VPN router.
158 | Appendix B. NETGEAR VPN Configuration N300 Wireless ADSL2+ Modem Router DGN2200 While the connection is being established, the connection name listed in this screen shows SA before the name of the connection. When the connection is successful, the SA changes to the yellow key symbol.
Appendix C. Notification of Compliance | 159 C C. Notification of Compliance Wireless Routers, Gateways, and Access Points Regulatory Compliance Information This section includes user requirements for operating this product in accordance with National laws for usage of radio spectrum and operation of radio devices.
160 | Appendix C. Notification of Compliance N300 Wireless ADSL2+ Modem Router DGN2200 FCC Caution • Any changes or modifications not expressly approved by the party responsible for compliance could void the user’s authority to operate this equipment.
Appendix C. Notification of Compliance | 161 N300 Wireless ADSL2+ Modem Router DGN2200 EDOC in Languages of the European Community Cesky [Czech] NETGEAR Inc. tímto prohlašuje, že tento Radiolan je ve shode se základními požadavky a dalšími príslušnými ustanoveními smernice 1999/5/ES.
162 | Appendix C. Notification of Compliance N300 Wireless ADSL2+ Modem Router DGN2200 Português [Portuguese] NETGEAR Inc. declara que este Radiolan está conforme com os requisitos essenciais e outras disposições da Directiva 1999/5/CE. Slovensko [Slovenian] NETGEAR Inc.
Index | 163 Index A access lists 81 adapter, wireless 29 addresses, DNS 25 ADSL see also DSL settings ADSL microfilter cabling, described 14 filter, described 13 ADSL settings 26 ADSL statistics, view.
164 | Index N300 Wireless ADSL2+ Modem Router DGN2200 file sharing 63 filtering content 39 firewalls CU-SeeMe connection 46 IM ports 44 inboudn rules 46 inbound rules 44 , 45 rules 43 firmware, upgrad.
Index | 165 N300 Wireless ADSL2+ Modem Router DGN2200 NETGEAR genie 19 NETGEAR ProSafe VPN Client 101 Network Address Translation (NAT) 25 network folder creating 68 editing 65 Network Time Protocol (.
166 | Index N300 Wireless ADSL2+ Modem Router DGN2200 network troubleshooting 133 no Internet connection 26 technical specifications 140 technical support 2 time of day 136 time zone, setting 49 time-.
Index | 167 N300 Wireless ADSL2+ Modem Router DGN2200 wrong date or time 136.
Een belangrijk punt na aankoop van elk apparaat Netgear Wireless N300 ADSL 2 (of zelfs voordat je het koopt) is om de handleiding te lezen. Dit moeten wij doen vanwege een paar simpele redenen:
Als u nog geen Netgear Wireless N300 ADSL 2 heb gekocht dan nu is een goed moment om kennis te maken met de basisgegevens van het product. Eerst kijk dan naar de eerste pagina\'s van de handleiding, die je hierboven vindt. Je moet daar de belangrijkste technische gegevens Netgear Wireless N300 ADSL 2 vinden. Op dit manier kan je controleren of het apparaat aan jouw behoeften voldoet. Op de volgende pagina's van de handleiding Netgear Wireless N300 ADSL 2 leer je over alle kenmerken van het product en krijg je informatie over de werking. De informatie die je over Netgear Wireless N300 ADSL 2 krijgt, zal je zeker helpen om een besluit over de aankoop te nemen.
In een situatie waarin je al een beziter van Netgear Wireless N300 ADSL 2 bent, maar toch heb je de instructies niet gelezen, moet je het doen voor de hierboven beschreven redenen. Je zult dan weten of je goed de alle beschikbare functies heb gebruikt, en of je fouten heb gemaakt die het leven van de Netgear Wireless N300 ADSL 2 kunnen verkorten.
Maar de belangrijkste taak van de handleiding is om de gebruiker bij het oplossen van problemen te helpen met Netgear Wireless N300 ADSL 2 . Bijna altijd, zal je daar het vinden Troubleshooting met de meest voorkomende storingen en defecten #MANUAl# samen met de instructies over hun opplosinge. Zelfs als je zelf niet kan om het probleem op te lossen, zal de instructie je de weg wijzen naar verdere andere procedure, bijv. door contact met de klantenservice of het dichtstbijzijnde servicecentrum.