4 packing list, 5 hardware dmz – AirLive IP-2000VPN User Manual

Page 14

Advertising
background image

AirLive IP-2000VPN User’s Manual

11

1.4 Packing List

The following items should be included:

IP-2000VPN Internet VPN Router

• Installation

CD-ROM

Quick Installation Guide

• AC

Adapter

When you open your package, make sure all of the above items are included and not damaged. If you

see that any components are damaged, please notify your dealer immediately.

1.5 Hardware DMZ

Using the DMZ Port

The DMZ port is intended for connection of a server you wish to make available to the public. To use multiple

servers, use a standard LAN cable to connect the DMZ port to a normal port on another switch, and connect

your servers to the switch.

Please note the following points regarding the DMZ port:

• Although physically attached to the switch ports, the DMZ port is not part of the built-in switch. It is a

separate single port which is isolated from the switch.

• PCs connected to the DMZ port are on the same LAN segment as PCs connected to the LAN ports.

They must use the same IP address range.

• PCs connected to the DMZ port are NOT visible to PCs on the LAN ports. So you cannot use

Microsoft networking or other networking protocols to connect to PCs on the DMZ. The connection

must be made via the Internet.

• PCs connected to the DMZ port still share the WAN port IP address for Internet access.

• To make PCs on the DMZ port available from the Internet, the "Virtual Server" (Port Forwarding)

feature must be configured to send incoming traffic to the appropriate server.

Advantages of the DMZ Port

If running any Servers on your LAN, you should connect them to the DMZ port, for the following reasons:

• Traffic passing between the DMZ and LAN passes through the firewall. The firewall will protect your

LAN if your Server is compromised and used to launch an attack on your LAN.

• When using the Virtual Servers feature, a firewall rule to allow incoming traffic from the Internet to the

DMZ is automatically created. If the Server is connected to the LAN ports, you must add the firewall

rule manually.

Advertising