User's Manual
Chapter 3: Connections and setup
22
Illustrationscontainedinthisdocumentareforrepresentationonly.
IPsecPassThroughenablesIPsectypepacketstopassbetweenWANandLAN.IPsec(IPSecurity)isa
securitymechanismusedinVirtualPrivateNetworks(VPNs).
PPTPPassThroughenablesPPTPtypepacketstopassbetweenWANandLAN.PPTP(PointtoPoint
TunnelingProtocol)isanothermechanismsometimesusedinVPNs.
RemoteConfigManagementmakestheconfigurationwebpagesinyourgatewayaccessiblefromthe
WANside.Notethatpageaccessislimitedtoonlythosewhoknowthegatewayaccesspassword.When
accessingyourgatewayfromaremotelocation,yourmustuseHTTPport8080andtheWANIPaddress
ofthegateway.e.g.,iftheWANIPaddressis157.254.5.7,youwouldnavigateto
http://157.254.5.7:8080toreachyourgateway.
MulticastEnableenablesmulticasttraffictopassthroughWANandLAN.Youmayneedtoenablethis
toseesometypesofbroadcaststreamingandcontentontheInternet.
UPnPUniversalPlugandPlay(UPnP)helpsdevices,suchasInternetappliancesandcomputers,access
thenetworkandconnecttootherdevicesasneeded.UPnPdevicescanautomaticallydiscoverthe
servicesfromotherregisteredUPnPdevicesonthenetwork.
NATALGenableNATALG(applicationlayergateways)allowscustomizedNATtraversalfilterstobe
pluggedintothegatewaytosupportaddressandporttranslationforcertainapplicationlayer
"control/data"protocolssuchasRSVP,FTP,TFTP,Kerb88,NetBios,IKE,RTSP,Kerb1293,H225,PPTP,
MSN,SIP,ICQ,IRC666x,ICQTalk,Net2Phone,IRC7000,IRC8000filetransferinIMapplicationsetc.In
orderfortheseprotocolstoworkthroughNATorafirewall,eithertheapplicationhastoknowaboutan
address/portnumbercombinationthatallowsincomingpackets,ortheNAThastomonitorthecontrol
trafficandopenupportmappings(firewallpinhole)dynamicallyasrequired.Legitimateapplicationdata
canthusbepassedthroughthesecuritychecksofthefirewallorNATthatwouldhaveotherwise
restrictedthetrafficfornotmeetingitslimitedfiltercriteria.