3Com 11.1 Bedienungsanleitung
- Schauen Sie die Anleitung online durch oderladen Sie diese herunter
- 73 Seiten
- 0.19 mb
Zur Seite of
Ähnliche Gebrauchsanleitungen
-
Network Router
3Com 3CRWE754G72-A/B
2 Seiten 1.58 mb -
Network Router
3Com 3C888
6 Seiten 0.9 mb -
Network Router
3Com 812
144 Seiten 0.79 mb -
Network Router
3Com 10014303
63 Seiten 1.27 mb -
Network Router
3Com 3CRWE454A72
2 Seiten 1.59 mb -
Network Router
3Com Lynx L-510
25 Seiten 0.78 mb -
Network Router
3Com WL-537S
128 Seiten 3.98 mb -
Network Router
3Com V7000
344 Seiten 2.09 mb
Richtige Gebrauchsanleitung
Die Vorschriften verpflichten den Verkäufer zur Übertragung der Gebrauchsanleitung 3Com 11.1 an den Erwerber, zusammen mit der Ware. Eine fehlende Anleitung oder falsche Informationen, die dem Verbraucher übertragen werden, bilden eine Grundlage für eine Reklamation aufgrund Unstimmigkeit des Geräts mit dem Vertrag. Rechtsmäßig lässt man das Anfügen einer Gebrauchsanleitung in anderer Form als Papierform zu, was letztens sehr oft genutzt wird, indem man eine grafische oder elektronische Anleitung von 3Com 11.1, sowie Anleitungsvideos für Nutzer beifügt. Die Bedingung ist, dass ihre Form leserlich und verständlich ist.
Was ist eine Gebrauchsanleitung?
Das Wort kommt vom lateinischen „instructio”, d.h. ordnen. Demnach kann man in der Anleitung 3Com 11.1 die Beschreibung der Etappen der Vorgehensweisen finden. Das Ziel der Anleitung ist die Belehrung, Vereinfachung des Starts, der Nutzung des Geräts oder auch der Ausführung bestimmter Tätigkeiten. Die Anleitung ist eine Sammlung von Informationen über ein Gegenstand/eine Dienstleistung, ein Hinweis.
Leider widmen nicht viele Nutzer ihre Zeit der Gebrauchsanleitung 3Com 11.1. Eine gute Gebrauchsanleitung erlaubt nicht nur eine Reihe zusätzlicher Funktionen des gekauften Geräts kennenzulernen, sondern hilft dabei viele Fehler zu vermeiden.
Was sollte also eine ideale Gebrauchsanleitung beinhalten?
Die Gebrauchsanleitung 3Com 11.1 sollte vor allem folgendes enthalten:
- Informationen über technische Daten des Geräts 3Com 11.1
- Den Namen des Produzenten und das Produktionsjahr des Geräts 3Com 11.1
- Grundsätze der Bedienung, Regulierung und Wartung des Geräts 3Com 11.1
- Sicherheitszeichen und Zertifikate, die die Übereinstimmung mit entsprechenden Normen bestätigen
Warum lesen wir keine Gebrauchsanleitungen?
Der Grund dafür ist die fehlende Zeit und die Sicherheit, was die bestimmten Funktionen der gekauften Geräte angeht. Leider ist das Anschließen und Starten von 3Com 11.1 zu wenig. Eine Anleitung beinhaltet eine Reihe von Hinweisen bezüglich bestimmter Funktionen, Sicherheitsgrundsätze, Wartungsarten (sogar das, welche Mittel man benutzen sollte), eventueller Fehler von 3Com 11.1 und Lösungsarten für Probleme, die während der Nutzung auftreten könnten. Immerhin kann man in der Gebrauchsanleitung die Kontaktnummer zum Service 3Com finden, wenn die vorgeschlagenen Lösungen nicht wirksam sind. Aktuell erfreuen sich Anleitungen in Form von interessanten Animationen oder Videoanleitungen an Popularität, die den Nutzer besser ansprechen als eine Broschüre. Diese Art von Anleitung gibt garantiert, dass der Nutzer sich das ganze Video anschaut, ohne die spezifizierten und komplizierten technischen Beschreibungen von 3Com 11.1 zu überspringen, wie es bei der Papierform passiert.
Warum sollte man Gebrauchsanleitungen lesen?
In der Gebrauchsanleitung finden wir vor allem die Antwort über den Bau sowie die Möglichkeiten des Geräts 3Com 11.1, über die Nutzung bestimmter Accessoires und eine Reihe von Informationen, die erlauben, jegliche Funktionen und Bequemlichkeiten zu nutzen.
Nach dem gelungenen Kauf des Geräts, sollte man einige Zeit für das Kennenlernen jedes Teils der Anleitung von 3Com 11.1 widmen. Aktuell sind sie genau vorbereitet oder übersetzt, damit sie nicht nur verständlich für die Nutzer sind, aber auch ihre grundliegende Hilfs-Informations-Funktion erfüllen.
Inhaltsverzeichnis der Gebrauchsanleitungen
-
Seite 1
http://www.3com.com/ NETBuilder ® Family Softwar e V ersion 11.1 Release Notes 3Com provides a documentation CD-ROM that includes all NETBuilder ® software version 11.1 manuals. T o obtain a har dcopy version of the 11.1 documentation, or der part number 3C6460P . Y ou can order the documentation CD-ROM using part number 3C6461P . Additionally , [...]
-
Seite 2
3Com Corporation 5400 Bayfront Plaza Santa Clara, California 95052-8145 Copyright © 3Com Corporation, 1998. All rights reserved. No part of this documentation may be repr oduced in any form or by any means or used to make any derivative work (such as translation, transformation, or adaptation) without permission from 3Com Corporation. 3Com Corpora[...]
-
Seite 3
C ONTENTS NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES Encryption Packages Notice 9 Supported Platforms 10 New Products 10 SuperStack II SI 5xx (4-port) 10 Supported PC Flash Memory Cards 10 Approved DRAM SIMMs 11 New Features 11 VPN Features 11 New and Enhanced Protocol Featur es 13 System Features 15 Legacy/A TM Featur es 15 Network Manage[...]
-
Seite 4
bcmfdinteg 32 File Conversion Considerations 33 Upgrading From Release 8.3 or Earlier 33 Upgrade Link and Netscape Browser Scr oll Bars 34 Upgrade Link Window Resizing 34 Notes and Cautions 34 APPN Connections to 3174 through T oken Ring 34 Asynch T unnelling on Serial Ports 34 A TM LAN Emulation Clients and Large 802.3 Frames 34 Automatic Line Det[...]
-
Seite 5
DHCP Address Pool Changes 41 Displaying Configuration Profiles 41 Dynamic Paths 41 Extensible Authentication Protocol 41 File System Error 41 Frame Relay Congestion Control 41 History-Based Compression Negotiation Failur e 42 IPX to Non-IPX Configuration Error 42 MBRI Ownership During Board Swapping 42 Microsoft MPPE Patches and Updates 42 MOSPF[...]
-
Seite 6
SDLC Ports and NetView Service Point 48 Source-Route T ranspar ent Gateway 48 T oken Ring+ Modules 48 VRRP Configuration 48 C ONFIGURING IP SEC Configuring IPsec 51 Creating Policies 51 Creating Key Sets 52 Configuring Manual Key Information 53 Enabling IPsec 54 Setting up a VPN PPTP T unnel 54 Establishing the Dialup T unnel 56 How IPsec Works [...]
-
Seite 7
WEBL INK S ERVICE P ARAMETERS StatPollInterval 75[...]
-
Seite 8
Part No. 86-0595-001 Published July 1998 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES These release notes pr ovide information on the following topics for NETBuilder ® software version 11.1: ■ Encryption Packages Notice ■ Supported platforms ■ New products ■ Supported PC flash memory cards ■ Approved DRAM SIMMs for the DPE Module[...]
-
Seite 9
10 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES Multi-protocol Router with 56-bit Encryption (DE) Multi-protocol Router with 128-bit Encryption (DS) ■ SuperStack ® II IP/IPX/A T Router with 56-bit Encryption (NE) (SI model) IP/IPX/A T Router with 128-bit Encryption (NS) (SI model) Multi-protocol Router with 56-bit Encryption (CE) (SI mode[...]
-
Seite 10
Approved DRAM SIMMs 11 Approved DRAM SIMMs T able 2 lists 3Com–approved vendors of the 32 MB DRAM SIMM for upgrading the DPE 40 module. New Featur es This section describes new featur es in software version 11.1 for the NETBuilder II, SuperStack II, and Of ficeConnect NETBuilder bridge/routers. VPN Features Layer T wo T unneling Protocol Layer T[...]
-
Seite 11
12 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES Additional RAS Enhancements The RAS service has been enhanced in this r elease to add support for routers acting as RAS clients. Support was added for the RADIUS attributes “Framed_Route” and “Framed_Netmask.” Pr evious releases of softwar e ignored these attributes when/if the RADIUS s[...]
-
Seite 12
New Features 13 < 56 bit support packages/kits contain: ■ A package identifier ending in ‘E’ (example, NE) ■ A 3CR number containing/ending in ‘91’ (examples, 3CR856791, 3CR 6452P91FLASH) T able 3 contains a summary of the encryption strengths and the associated package ids. RSVP RSVP is a dynamic quality of service (QoS) setup pr o[...]
-
Seite 13
14 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES of the queue policies, Priority Queuing, and Pr otocol Reservation ar e supported. In addition to the curr ently supported policies, a metering algorithm has been added. If the queue handler detects that the underlying bandwidth exceeds a certain threshold specified, then the queueing and mete[...]
-
Seite 14
New Features 15 OSPF Not-So-Stubby-Ar ea (NSSA) For inter -ar ea routing, the Ar ea Border Router (the only attachment to the backbone for leaf sites) advertised a default r oute. However , when fairly complex leaf sites are connected to the backbone via a Stub Ar ea, inter -ar ea routing into and out of the leaf site is not optimal with only a def[...]
-
Seite 15
16 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES the two edge devices ar e both physically attached to the same A TM network fabric, then the edge devices should be able to communicate dir ectly with each other , bypassing one or mor e intermediate routers in the data path. Multiprotocol Over A TM (MPOA) is used to bypass the intermediate r o[...]
-
Seite 16
New Features Application Notes 17 ■ Improved err or handling ■ Help frame resizing now persists acr oss page changes ■ A logout icon for impr oved security ■ Port list support ■ Support for user -level passwor d changing Upgrade Management Utilities and NETBuilder Upgrade Link The remote upgrade pr ocess consists of providing customers wi[...]
-
Seite 17
18 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES needed to disable any echo cancellers on the line. Consult with the owner of the destination equipment to see whether it has this capability . In order to configur e this featur e, you must define the DialNoList entry with a type of BriV , by entering: ADD !<port> -POrt DialNoList "[...]
-
Seite 18
New Features Application Notes 19 WARNING: For network security , do not include security sensitive information such as passwords. The ASCII text file is not encyrpted, which means the passwords are readable by anyone who has access to the file. When the router is booted and the BOOT .CFG file is detected in the configuration directory , all ex[...]
-
Seite 19
20 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES 11.1 Softwar e Packages The tables in this section list the featur es in the packages available in software version 11.1 for the NETBuilder bridge/r outer platforms. NETBuilder II T able 4 lists the softwar e featur es of each package for NETBuilder II bridge/r outers. T able 4 NETBuilder II So[...]
-
Seite 20
11.1 Software Packages 21 NETBuilder II Firmwar e Requirements The NETBuilder II I/O modules r equire firmware upgrades to support the NETBuilder software version 11.1 (see T able 5 for firmware r equirements). Y ou can determine your I/O module firmwar e version through the softwar e by entering: SHow -SYS IOI Frame Relay X X X X SMDS X X X X X[...]
-
Seite 21
22 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES SuperStack II SI T able 6 lists the softwar e features of each package for SuperStack II SI bridge/routers. HSS 3-port (V.35) FW/HSS3-V35,1.1.9 HSS 3-port (RS449) FW/HSS3-449,1.1.9 HSS 3-port (RS232) FW/HSS3-232,1.1.9 HSS 4-port FW/4PORTWAN-FW,1.2 T able 5 NETBuilder II Firmwar e Requirements M[...]
-
Seite 22
11.1 Software Packages 23 RAS Traps X X X X X IPX X X X X X X X XNS X X X X OSI X X X X OSI connection services X VINES X X X DECnet X X X AppleTalk X X X X X X X BR Remote LAN Detection X W AN Protocols PPP/Multilink PPP X X X X X X X X PPTP X X X X X X X L2TP X X X X X X X EAP X X X X X Frame Relay X X X X X X X X SMDS X X X X X X X.25 X X X X X [...]
-
Seite 23
24 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES SuperStack II T oken Ring T able 7 lists softwar e features for each package for the SuperStack II bridge/routers. Flash Load X X X X X X X X Virtual Ports (48 max.) X X X X X X X X Memory Requirements DRAM: 16 MB 16 MB 16 MB 16 MB 16 MB 16 MB 16 MB 16 MB Flash memory: 8 MB 8 MB 8 MB 8 MB 8 MB [...]
-
Seite 24
11.1 Software Packages 25 OfficeConnect T able 8 and T able 9 list software features for each package for Of ficeConnect bridge/routers. W AN Protocols PPP/Multilink PPP X X PPTP X X L2TP X X Frame Relay X X SMDS X X X.25 X X X.25 switching/tunneling X X IBM Protocols DLSw X X BRITSS X X LAA X X Polled ASYNC/BISYNC Passthrough X X SDLC X X SHDLC [...]
-
Seite 25
26 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES Routing Protocols IPv4 X X X X X IP services: Multicast IP X X X X X OSPF X X X X X Network Address Translation (NAT) X X X X X VRRP X X X X DHCP X X X X RIP/RIP v2/NTP X X X X X X DHCP Proxy X X X X IPCP X X X X IP security: IPsec X X X DES X X X 3DES X RC5 X X X Firewall X X X X X IPX X X X X[...]
-
Seite 26
11.1 Software Packages 27 T able 9 Additional Of ficeConnect NETBuilder Models Software Featur es SHDLC X X BSC conversion X QLLC/LLC2 conversion X X Other Features FTP X X X X X X Data over Voice X X X X X X CSU/DSU Loopback X X X X Zmodem X X X X X X Dial-on-demand X X X X X X Quick Step VPN application X ASCII Boot X X X X X X Flash Load X X X [...]
-
Seite 27
28 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES Multicast IP X X X X OSPF X X X X Network Address Translation (NAT) X X X X VRRP X X X X DHCP X X X X DHCP Proxy X X X X RIP/RIP v2/NTP X X X X IPCP X X X X IP security: IPsec X X DES X X 3DES X RC5 X X Firewall X X X X IPX X X X X XNS X X X OSI X X X VINES X X X DECnet X X X AppleTalk X X X X [...]
-
Seite 28
11.1 Software Packages 29 Zmodem X X X X Dial-on-demand X X X X Quick Step VPN application ASCII Boot X X X X Flash Load X X X X Web Link X X X X Virtual Ports (28 max.) X X X X Memory Requirements DRAM: 16 MB 16 MB 16 MB 16 MB Flash memory for automatic recovery when upgrading: 8 MB 8 MB 8 MB 8 MB Flash memory for manual recovery when upgrading: 4[...]
-
Seite 29
30 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES Item Not Supported The NETBuilder software version 11.1 does not support the following bridge/routers: ■ SuperStack II NETBuilder 227 Full Router (Ethernet) ■ SuperStack II NETBuilder 427 Router (Ethernet, ISDN) NETBuilder Upgrade Management Utilities This section includes information about[...]
-
Seite 30
NETBuilder Upgrade Management Utilities 31 or http://infodeli.3com.com/infodeli/swlib For instructions on how to decompr ess and install the utilities, see the ruu111.txt file. The Windows files are as follows: Executing profile.bat When using the 11. 1 NETBuilder Upgrade Management Utilities from a Windows command line, you must execute the pr [...]
-
Seite 31
32 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES Upgrade Management Known Issues This section contains known upgrade management issues. bcmdiagnose Error Message When you execute bcmdiagnose on HP-UX and the TFTP server is configur ed to use the Safe Directory method, the err or message "No TFTP user found in /etc/passwd. Y ou must add [...]
-
Seite 32
Upgrade Management Known Issues 33 WARNING: Do not use the bcmfdinteg utility . The bcmfdinteg utility is used internally by the bcminstall utility . The bcmfdinteg utility should not be used by itself, because by default it removes all files from the current directory . File Conversion Considerations This section describes file conversion consid[...]
-
Seite 33
34 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES or UpgradeLink -NA Otherwise, an error dialog box is r eturned with the message “Could not verify user .” If you use tftp, the “V erify Upgrade Services” step does not need the user or password to be verified, so those entries as well as the FTP Client User Name and Password, should be[...]
-
Seite 34
Notes and Cautions 35 Baud Rates for W AN Ports in DCE Mode The following baud rates are supported in DCE mode (synchr onous, internal clocking): If you configure a baud rate that is dif ferent from those listed, the system will fall back to the nearest lower supported rate. Supported Modems T able 10 lists asynchr onous and T able 11 list synchro[...]
-
Seite 35
36 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES Boundary Routing and NetView Service Point When configuring NetView Service Point in a Boundary Routing envir onment, note that the SSCP-PU session actually flows over LLC2 rather than DLSw , even though the -SNA PortDef parameter is defined as DLSw . As a result, the session does not show u[...]
-
Seite 36
Notes and Cautions 37 These messages do not indicate a pr oblem and can be ignored. IBM-Related Services in T oken Ring IBM-related services such as DLSw and APPN ar e affected by parameter settings in the BRidge, SR, and LLC2 Services. T able 12 shows the requir ed settings in source route (SR), sour ce route transpar ent (SRT), and transparent br[...]
-
Seite 37
38 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES and route discovery ar e configured, bridge numbers must be unique for each bridge/router on the same ring, and LLC2 is enabled on token ring ports. T oken Ring Frame Copy Errors For transparent bridge or sour ce route transparent configurations, token ring end systems may generate a small nu[...]
-
Seite 38
Known Problems 39 LAN Network Manager with NETBuilder II Systems If you have previously configur ed your LAN Network Manager to use the NETBuilder II system as a virtual ring, and you want to use it as a physical ring, you must set your virtual ring number back to None. LLC2 Frames and PPP LLC2 frames are not sent or r eceived over PPP unless glob[...]
-
Seite 39
40 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES NETBuilder II port at the central site. An alternative work around is to configur e APPN with DLSw at the central site and to use the CEC’ s MAC address at the remote site. APPN CP-CP Sessions on Parallel TGs When parallel transmission groups (TGs) ar e configured between 3Com network nodes[...]
-
Seite 40
Known Problems 41 The path will still come up and be bound to a virtual port based on the SysCallerID. This false warning appears only if no AuthLocalUser is defined on the port. CPU Utilization Statistic For the NETBuilder Remote Office bridge/r outers, the CPU utilization statistic indicates a high percentage of utilization r egardless of actua[...]
-
Seite 41
42 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES <Bc>/<cir>. If T c is not 1 second, the Frame Relay frames may be erroneously dropped due to the incorr ect calculation of the throughput rate thr eshold. History-Based Compression Negotiation Failur e If you are using history-based compr ession on a line with excessive errors and t[...]
-
Seite 42
Known Problems 43 PPTP T unnel Security V alidation Authentication problems may occur when connecting a Windows 95 or NT client via a T otal Control Hub to a NETBuilder II bridge/r outer where the T otal Control Hub is setting up a PPTP tunnel to the bridge/r outer . This problem is a combination of the security pr otocol between the client and the[...]
-
Seite 43
44 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES Syntax Checking in PPP AuthRemoteUser Command The ADD !<port> -PPP AuthRemoteUser command does not completely check for syntactical correctness. If the trailing quotation mark is omitted fr om or misplaced in the user’ s password, the system interpr ets the passwor d as the string exten[...]
-
Seite 44
Limitations 45 Limitations This section describes limitations of NETBuilder softwar e version 11.1. T opics are in alphabetical order . ACCM Not Configurable The ACCM (Async Control Character Map) used for Async PPP cannot be configured. During LCP negotiation, the NETBuilder bridge/r outer always pr oposes an ACCM of all zeros and agr ees to wha[...]
-
Seite 45
46 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES parameter settings. The practical limit may be lower and depends on the traf fic load, CPU, and memory usage by other services. Number of TCP Connections 3Com LLC2 tunneling uses one TCP connection for each LLC2 session. DLSw scales to large networks better than LLC2 tunneling because it multi[...]
-
Seite 46
Limitations 47 NetBIOS sessions occurs if the primary link fails and the r edundant link is activated. If this happens, end users need to log on and initiate another session. Maximum BSC Line Speed For V .35 and RS-232 links, the maximum baud rate supported for BSC traf fic is 38.4. If the baud rate is higher , BSC traf fic suffers err ors and re[...]
-
Seite 47
48 NETB UILDER S OFTWARE V ERSION 11.1 R ELEASE N OTES ■ SDLC end-to-end thr ough local switching (conversion to a single LLC2 LAN connection between two NETBuilder bridge/r outers) requir es differ ent virtual ring numbers in the LLC2 Service. SDLC Adjacent Link Stations for APPN When you configure SDLC adjacent link stations for APPN, if an ac[...]
-
Seite 48
U SING NETB UILDER F AMILY S OFTWARE U PDATE P AGES This section includes update pages with changes and additions to Using NETBuilder Family Software , softwar e version 11.1. Place the update pages at the front of each specified chapter .[...]
-
Seite 49
17 C ONFIGURING IP SEC 11.1 Release Notes, Using NETBuilder Family Software V ersion 11.0 Replace Chapter 17 with this chapter . This chapter describes how to configur e the IP Security Protocol (IPsec) on your IP router . IPsec provides security at the network layer . Because IPsec is integrated into IP itself, IPsec adds security to any link, r [...]
-
Seite 50
52 C HAPTER 17: C ONFIGURING IP SEC <auth_algorithm> : MD5 | SHA <portlist >: 1-65535 | * | Archie | DNS | Finger | FTP | FTPData | Gopher | HTTP | NFS | NNTP | NTP | POP2 | POP3 | PortMap | RIP | SMTP | SNMP | SNMPTrap | Syslog | Telnet | TFTP | WAIS The default for encrypt_algorithms is DES. The default for auth_algorithms is MD5. Cre[...]
-
Seite 51
Configuring IPsec 53 <encrypt_key> and <auth_key> can be 1 to 128 bytes enter ed as either ASCII text strings or as a series of hexadecimal digits. See “Configuring Manual Key Information” next for more information about key set usage. T o delete a key set, use: DELete -IPSEC KeySet [<key_set_name> | ALL] For example, to cr e[...]
-
Seite 52
54 C HAPTER 17: C ONFIGURING IP SEC When you specify a key that is too short, the policy binding operation generates an error message informing you of the key length discr epancy and the key is rejected. If this should occur you will need to delete the specifi ed key and reenter a key of the appropriate length. During boot, any pr eviously config[...]
-
Seite 53
Configuring IPsec 55 Figure 1 VPN PPTP T unnel On router 1, set up the tunnel fr om 170.0.0.1 to 180.0.0.1 by following these steps. 1 Set the system name to "r outer1" by entering: SETDefault scid = "router1" 2 Create a virtual port to accept connection r equests from only r outer 2 by entering: ADD !v1 -POrt VirtualPort scid &[...]
-
Seite 54
56 C HAPTER 17: C ONFIGURING IP SEC On router 2, setup the PPTP tunnel fr om 170.0.0.1 to 180.0.0.1 by following these steps: 1 Set the system name of r outer 2 to "router2" by entering: SETDefault scid="router2" 2 Create a virtual port that will accept connection r equests from only r outer1 by entering: ADD !v1 -POrt VirtualPo[...]
-
Seite 55
How IPsec Works 57 IPsec works with the existing Internet infrastructure using encapsulation. It secur es a packet of data by encrypting it befor e sending it over the Inter net. On the receiving end, an IPsec-compliant device decrypts the data. On each end of the link (systems at both ends comprise a security association), IPsec is configured wit[...]
-
Seite 56
58 C HAPTER 17: C ONFIGURING IP SEC DES-CBC CANNOT be exported without a legal export license. See the release notes for your software for export restrictions. ESP can be applied alone or with authentication headers. Authentication Header (AH) AH is used to provide data integrity and data origin authentication and to pr ovide protection against r e[...]
-
Seite 57
R EFERENCE FOR NETB UILDER F AMILY S OFTWARE U PDATE P AGES This section includes update pages with changes and additions to Reference for NETBuilder Family Software V ersion 11.1. Place the update pages at the fr ont of each specified chapter .[...]
-
Seite 58
33 IPSEC S ERVICE P ARAMETERS 11.1 Release Notes, Reference for NETBuilder Family Software Replace Chapter 33 with this chapter . This chapter describes the IPSEC Service parameters. T able 1 lists the IPSEC Service parameters and commands. CONFiguration Syntax SHow -IPSEC CONFiguration Default No default Description The CONFiguration parameter dis[...]
-
Seite 59
62 C HAPTER 33: IPSEC S ERVICE P ARAMETERS Default No Default Description All keysets are encrypted and pr otected with the current KeyEncryptionKey and stored in the IPSEC confi guration file. The value of the KeyEncryptionKey parameter which is stored in the EEPROM, can be updated by r oot, but is not readable by anyone. An embedded key is used[...]
-
Seite 60
ManualKeyInfo 63 When you specify a key that is too short, the policy binding operation generates an error message informing you of the key length discr epancy and the key is rejected. If this should occur you will need to delete the specifi ed key and reenter a key of the appropriate length. V alues ManualKeyInfo Syntax SETDefault !<portlist&g[...]
-
Seite 61
64 C HAPTER 33: IPSEC S ERVICE P ARAMETERS UDP [(<src_port>, <dst_port>)...up to 16 pairs] <encrypt_algorithm> : 3DES2key | DES | RC5 <auth_algorithm> : MD5 | SHA <portlist >: 1-65535 | * | Archie | DNS | Finger | FTP | FTPData | Gopher | HTTP | NFS | NNTP | NTP | POP2 | POP3 | PortMap | RIP | SMTP | SNMP | SNMPTrap | [...]
-
Seite 62
manualPOLicy 65 The mask is a number in the range of 0-32, which indicates the number of bits in the IP addr ess that remain unchanged for the IP addr esses in that block. The remaining bits in the IP addr ess should be all 0s. The address block includes all addr esses except for the first address and the last (x.x.x.255) addr ess. For example: 14[...]
-
Seite 63
66 C HAPTER 33: IPSEC S ERVICE P ARAMETERS[...]
-
Seite 64
60 RSVP S ERVICE P ARAMETERS 11.1 Release Notes, Reference for NETBuilder Family Software Replace Chapter 60 with this chapter . This chapter describes the Resour ce Reservation Protocol (RSVP) Service parameters. RSVP is used in multicasting applications like video confer encing, multimedia, and virtual private network (VPN) network management. RS[...]
-
Seite 65
68 C HAPTER 60: RSVP S ERVICE P ARAMETERS MaxFlowRate Syntax SETD !<port> -RSVP MaxFlowRate = <bytes/sec>(0-562500) SHow [ !<port> | !* ] -RSVP MaxFlowRate Default Amount of bandwidth r eserved for RSVP . Description The MaxFlowRate parameter specifies the maximum amount of bandwidth in bytes/sec that can be allocated to a single[...]
-
Seite 66
69 SR S ERVICE P ARAMETERS 11.1 Release Notes, Reference for NETBuilder Family Software Place this page in fr ont of Chapter 69. AllRoutes Syntax FLush [!<port> | !*] -SR AllRoutes [Dec | Hex] [<Transparent | Null | route segment>] [Discover | Static] SHow [!<port> | !*] -SR AllRoutes [Dec | Hex] [<Transparent | Null | route se[...]
-
Seite 67
70 C HAPTER 69: SR S ERVICE P ARAMETERS ROUte Syntax ADD !<port> -SR ROUte <media address> [Override] [Dec | Hex] [ Transparent | {Null | <source route> [<largestframesize>]}] DELete !<port> -SR ROUte <media address> SHow [!<port> | !*] -SR ROUte [[Cmac | Ncmac] %<media address>] [Dec | Hex] SHowDefau[...]
-
Seite 68
ROUte 71 <largestframesize> Specifies the largest size MAC frame that can be transmitted to the indicated end system using this r oute. An integer value of 0 through 7 may be assigned. The default value is 3. The base values specified in IEEE 802.1D ar e supported; however , extended values are not curr ently supported. Enter one of the fol[...]
-
Seite 69
72 C HAPTER 69: SR S ERVICE P ARAMETERS[...]
-
Seite 70
71 SYS S ERVICE P ARAMETERS 11.1 Release Notes, Reference for NETBuilder Family Software Place this page in fr ont of Chapter 71. CONFiguration Syntax SHow -SYS CONFiguration Description The CONFiguration parameter displays various SYS Service parameter values. The display generated with this parameter is the same as the display generated by the SH[...]
-
Seite 71
74 C HAPTER 71: SYS S ERVICE P ARAMETERS[...]
-
Seite 72
77 WEBL INK S ERVICE P ARAMETERS 11.1 Release Notes, Reference for NETBuilder Family Software Place this page in fr ont of Chapter 77. StatPollInterval Syntax SETDefault -WEBLink StatPollInterval = <value> (0-120) SHow -WEBLink StatPollInterval Default 60 (minutes) Description The StatPollInterval parameter specifies the time interval in min[...]
-
Seite 73
76 C HAPTER 77: WEBL INK S ERVICE P ARAMETERS[...]