Page 1
Reference Manual for the RangeMax Wireless Router WPN824 NETGEAR, Inc. 4500 Great America Parkway Santa Clara, CA 95054 USA 202-10072-01 March 2005 202-10072-01, March 2005...
Page 2
In the interest of improving internal design, operational function, and/or reliability, NETGEAR reserves the right to make changes to the products described in this document without notice. NETGEAR does not assume any liability that may occur due to the use or application of the product(s) or circuit layout(s) described herein.
Page 3
Refer to the Support Information Card that shipped with your RangeMax Wireless Router WPN824. World Wide Web NETGEAR maintains a World Wide Web home page that you can access at the universal resource locator (URL) http://www.netgear.com. A direct connection to the Internet and a Web browser such as Internet Explorer or Netscape are required.
Autosensing Ethernet Connections with Auto Uplink ...2-4 Extensive Protocol Support ...2-4 Easy Installation and Management ...2-5 Maintenance and Support ...2-5 NETGEAR Related Products ...2-6 Package Contents ...2-6 The Router’s Front Panel ...2-6 The Router’s Rear Panel ...2-7 A Road Map for ‘How to Get There From Here’ ...2-8...
Page 6
How to Bypass the Configuration Assistant ...3-8 How to Manually Configure Your Internet Connection ...3-9 Using the Smart Setup Wizard ... 3-11 NETGEAR Product Registration, Support, and Documentation ...3-12 Chapter 4 Wireless Configuration Observe Performance, Placement, and Range Guidelines ...4-1 Implement Appropriate Wireless Security ...4-2...
Page 7
Chapter 7 Troubleshooting Basic Functioning ...7-1 Power Light Not On ...7-1 Lights Never Turn Off ...7-2 LAN or WAN Port Lights Not On ...7-2 Troubleshooting the Web Configuration Interface ...7-3 Troubleshooting the ISP Connection ...7-4 Troubleshooting a TCP/IP Network Using a Ping Utility ...7-5 Testing the LAN Path to Your Router ...7-5 Testing the Path from Your Computer to a Remote Device ...7-6 Restoring the Default Configuration and Password ...7-7...
Page 8
Configuring Static Routes ...8-17 Enabling Remote Management Access ...8-19 Using Universal Plug and Play (UPnP) ...8-20 Appendix A Technical Specifications Appendix B Network, Routing, Firewall, and Basics Related Publications ... B-1 Basic Router Concepts ... B-1 What is a Router? ... B-1 Routing Information Protocol ...
Page 9
Record Your Internet Connection Information ... C-3 Preparing Your Computers for TCP/IP Networking ... C-3 Configuring Windows 95, 98, and Me for TCP/IP Networking ... C-4 Install or Verify Windows Networking Components ... C-4 Enabling DHCP to Automatically Configure TCP/IP Settings in Windows 95B, 98, and Me ...
Page 10
Key Size ... D-6 WEP Configuration Options ... D-7 Wireless Channels ... D-7 WPA and WPA2 Wireless Security ... D-8 How Does WPA Compare to WEP? ... D-9 How Does WPA Compare to WPA2 (IEEE 802.11i)? ... D-10 What are the Key Features of WPA and WPA2 Security? ... D-10 WPA/WPA2 Authentication: Enterprise-level User Authentication via 802.1x/EAP and RADIUS ...
This guide uses the following formats to highlight special messages: Note: This format is used to highlight information of importance or special interest. This manual is written for the WPN824 router according to these specifications: Table 1-2. Manual Scope...
• button to access the full NETGEAR, Inc. online knowledge base for the product model. • Links to PDF versions of the full manual and individual chapters.
Click the print icon in the upper left of the window. Tip: If your printer supports printing two pages on a single sheet of paper, you can save paper and printer ink by selecting this feature. About This Manual Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005...
Page 14
Reference Manual for the RangeMax Wireless Router WPN824 About This Manual 202-10072-01, March 2005...
Congratulations on your purchase of the NETGEAR WPN824 router provides connection for multiple computers to the Internet through an external broadband access device (such as a cable modem or DSL modem) that is normally intended for use by a single computer. This chapter describes the features of the NETGEAR RangeMax Wireless Router WPN824.
Centrino, and SuperG™ wireless clients) and boosts their range and speed by up to 50%. 802.11g Wireless Networking The WPN824 router includes an 802.11g wireless access point, providing continuous, high-speed 108 Mbps access between your wireless and Ethernet devices. The access point provides: •...
Wireless network name broadcast can be turned off so that only devices that have the network name (SSID) can connect. A Powerful, True Firewall with Content Filtering Unlike simple Internet sharing NAT routers, the WPN824 is a true firewall, using stateful packet inspection to defend against hacker attacks. Its firewall features include: •...
Autosensing Ethernet Connections with Auto Uplink With its internal 4-port 10/100 switch, the WPN824 can connect to either a 10 Mbps standard Ethernet network or a 100 Mbps Fast Ethernet network. Both the LAN and WAN interfaces are autosensing and capable of full-duplex or half-duplex operation.
ISP account. • Firmware Update The WPN824 router can be updated if a newer version of firmware is available. This lets you take advantage of product enhancements for your WPN824 as soon as they become available. •...
• Warranty and Support Information Card. If any of the parts are incorrect, missing, or damaged, contact your NETGEAR dealer. Keep the carton, including the original packing materials, in case you need to return the router for repair. The Router’s Front Panel The front panel of the WPN824 router contains the status lights described below.
On (Green) Blink (Green) On (Amber) Blink (Amber) The Router’s Rear Panel The rear panel of the WPN824 router contains the items listed below. Power 4 LAN Ports Figure 1-2: WPN824 Rear Panel Introduction Reference Manual for the RangeMax Wireless Router WPN824 Description Power is supplied and the router it has passed its diagnostic test.
Reference Manual for the RangeMax Wireless Router WPN824 Viewed from left to right, the rear panel contains the following features: • AC power adapter outlet for • Four Local (LAN) 10/100 Mbps Ethernet ports for connecting the router to the local computers •...
Page 23
Setup feature to computers. direct your print output to the printer in the network. Introduction Reference Manual for the RangeMax Wireless Router WPN824 What’s Needed? • A wireless network WEP or WPA security enabled. • Wireless networking equipment that supports WEP or WPA, such as the WPN824.
Page 24
Reference Manual for the RangeMax Wireless Router WPN824 2-10 Introduction 202-10072-01, March 2005...
This chapter describes how to set up the router on your local area network (LAN) and connect to the Internet. You will find out how to configure your RangeMax Wireless Router WPN824 for Internet access using the Setup Wizard, or how to manually configure your Internet connection.
Reference Manual for the RangeMax Wireless Router WPN824 First, Use the Smart Wizard to Configure the Wireless Router Insert the Resource CD in the CD drive of your PC. The following screen appears. Click Setup and follow the prompts. Figure 3-1: NETGEAR Smart Wizard installation assistant...
For a non-NETGEAR wireless adapter, configure it to match your settings exactly. If you changed the default Network Name (SSID), be sure to use the correct Network Name (SSID) you set in the wireless router.
Reference Manual for the RangeMax Wireless Router WPN824 Troubleshooting Tips Here are some tips for correcting simple problems you may have. Be sure to restart your network in this sequence: 1) Turn off the modem, wireless router, and computer; 2) Turn on the modem, wait two minutes;...
Connecting the Router to the Internet Reference Manual for the RangeMax Wireless Router WPN824 Description Any time a browser is opened on any computer connected to wireless router , the automatically connect to that browser and display the Configuration Assistant welcome page.
Internet connection. Figure 3-4: Login window Once you have entered your user name and password, your Web browser should find the WPN824 router and display the home page as shown in below. http://www.routerlogin.net password for the router password, both in lower case “Changing the Administrator Password”...
Page 31
Reference Manual for the RangeMax Wireless Router WPN824 Figure 3-5: Login result: WPN824 home page The browser will then display the WPN824 settings home page. When the wireless router is connected to the Internet, click the Knowledge Base or the Documentation link under the Web Support menu to view support information or the documentation for the wireless router.
When the wireless router is in the factory default state, a user name and password are not required. The browser will then display the WPN824 settings home page shown in WPN824 home page” on page If you do not click Logout, the wireless router will wait 5 minutes after there is no activity before it automatically logs you out.
You can manually configure the router using the Basic Settings menu shown in these steps: Connect to the wireless router by typing browser, then click Enter. Connecting the Router to the Internet Reference Manual for the RangeMax Wireless Router WPN824 ISP Does Require Login http://www.routerlogin.net 202-10072-01, March 2005 Figure 3-6...
Page 34
Reference Manual for the RangeMax Wireless Router WPN824 For security reasons, the wireless router has its own user name and password. When prompted, enter for the router user name and admin case letters. Click Basic Settings on the Setup menu.
Connect to the wireless router by typing browser, then click Enter. Connecting the Router to the Internet Reference Manual for the RangeMax Wireless Router WPN824 http://www.routerlogin.net 202-10072-01, March 2005 in the address field of your...
Note: The router user name and password are not the same as any user name or password you may use to log in to your Internet connection. Once you have entered your user name and password, your Web browser should find the WPN824 router and display the home page as shown in on page 3-7.
This chapter describes how to configure the wireless features of your WPN824 router. In planning your wireless network, you should consider the level of security required. You should also select the physical placement of your firewall in order to maximize the network speed. For further...
For this reason, use the security features of your wireless equipment. The WPN824 router provides highly effective security features which are covered in detail in this chapter. Deploy the security features appropriate to your needs.
Page 39
Restrict Access Based on MAC address. You can restrict access to only trusted computers so that unknown computers cannot wirelessly connect to the WPN824. MAC address filtering adds an obstacle against unwanted access to your network, but the data broadcast over the wireless link is fully exposed.
The WPN824 default SSID is: NETGEAR. • Region. This field identifies the region where the WPN824 can be used. It may not be legal to operate the wireless features of the wireless router in a region other than one of those identified in this field.
Page 41
Mode. This field determines which data communications protocol will be used. You can select “g only,” “b only,” or “g and b.” “g only” dedicates the WPN824 to communicating with the higher bandwidth 802.11g wireless devices exclusively. “b only” dedicates the WPN824 to communicating with the higher bandwidth 802.11b wireless devices exclusively.
Page 42
WPN824. • Wireless Card Access List. When the Trusted PCs Only radio button is selected, the WPN824 checks the MAC address of the wireless station and only allows connections to computers identified on the trusted computers list. 202-10072-01, March 2005...
WPA-PSK as well and are configured with the correct Passphrase. Use the procedures described in the following sections to configure the WPN824. Store this information in a safe place.
When you first receive your WPN824, the default factory settings are shown below. You can restore these defaults with the Factory Default Restore button on the rear panel. After you install the WPN824 router, use the procedures below to customize any of the settings to better meet your networking needs.
Page 45
SSID you configure in the RangeMax Wireless Router WPN824. If they do not match, you will not get a wireless connection to the WPN824. Set the Region. Select the region in which the wireless interface will operate.
Check that they have a wireless link and are able to obtain an IP address by DHCP from the firewall. Warning: The Network Name (SSID) is case sensitive. If NETGEAR is the Network Name (SSID) in your wireless router, you must enter NETGEAR in your computer's wireless settings.
Page 47
Automatic - Enter a word or group of printable characters in the Passphrase box and click the Generate button. The passphrase is case sensitive; NETGEAR is not the same as nETgear. The four key boxes will be automatically populated with key values.
Reference Manual for the RangeMax Wireless Router WPN824 How to Configure WPA-PSK Wireless Security Note: Not all wireless adapters support WPA. Furthermore, client software is also required. Windows XP and Windows 2000 with service pack 3 do include WPA support. Nevertheless, the wireless adapter hardware and driver must also support WPA.
How to Restrict Wireless Access by MAC Address To restrict access based on MAC addresses, follow these steps: Log in to the WPN824 firewall at its default LAN address of its default user name of admin and default password of password, or using whatever LAN address and password you have set up.
Page 50
Click the Turn Access Control On check box. Then, either select from the list of available wireless cards the WPN824 has found in your area, or enter the MAC address and device name for a device you plan to use. You can usually find the MAC address printed on the wireless adapter.
This chapter describes how to use the content filtering features of the RangeMax Wireless Router WPN824 to protect your network. These features can be found by clicking on the Content Filtering heading in the Main Menu of the browser interface.
Reference Manual for the RangeMax Wireless Router WPN824 Blocking Access to Internet Sites The WPN824 router allows you to restrict access based on Web addresses and Web address keywords. Up to 255 entries are supported in the Keyword list. The Block Sites menu is shown in...
PC with a fixed IP address. Blocking Access to Internet Services The WPN824 router allows you to block the use of certain Internet services by PCs on your network. This is called services blocking or port filtering. The Block Services menu is shown...
Reference Manual for the RangeMax Wireless Router WPN824 To specify a service for blocking, click Add. The Add Services menu will appear, as shown below: Figure 5-3: Add Services menu From the Service Type list, select the application or service to be allowed or blocked. The list already displays several common services, but you are not limited to these choices.
Under “Filter Services For”, you can block the specified service for a single computer, a range of computers (having consecutive IP addresses), or all computers on your network. Scheduling When Blocking Will Be Enforced The WPN824 router allows you to specify when blocking will be enforced. The Schedule menu is shown below: Figure 5-4: Schedule menu •...
Reference Manual for the RangeMax Wireless Router WPN824 Viewing Logs of Web Access or Attempted Web Access The log is a detailed record of what Web sites you have accessed or attempted to access. Up to 128 entries are stored in the log. Log entries will only appear when keyword blocking is enabled, and no log entries will be made for the Trusted User.
In order to receive logs and alerts by E-mail, you must provide your E-mail information in the E-Mail menu, shown below: Figure 5-6: Email menu Content Filtering Reference Manual for the RangeMax Wireless Router WPN824 Table 5-2 202-10072-01, March 2005...
Page 58
In this case, the router overwrites the log and discards its contents. The WPN824 router uses the Network Time Protocol (NTP) to obtain the current time and date from one of several Network Time Servers on the Internet. In order to localize the time for your log entries, you must specify your Time Zone: •...
Maintenance This chapter describes how to use the maintenance features of your RangeMax Wireless Router WPN824. These features can be found by clicking on the Maintenance heading in the Main Menu of the browser interface. Viewing Wireless Router Status Information The Router Status menu provides status and usage information.
Page 60
Reference Manual for the RangeMax Wireless Router WPN824 This screen shows the following parameters: Table 6-1. Wireless Router Status Fields Field Account Name Firmware Version Internet Port MAC Address IP Address DHCP IP Subnet Mask LAN Port MAC Address IP Address...
Page 61
Subnet Mask The WAN (Internet) Subnet Mask assigned to the router. Maintenance Reference Manual for the RangeMax Wireless Router WPN824 Description These parameters apply to the Wireless port of the router. This field displays the Media Access Control address being used by the Wireless port of the router.
Page 62
Reference Manual for the RangeMax Wireless Router WPN824 Table 6-2: Connection Status Items Item Description Default Gateway The WAN (Internet) default gateway the router communicates with. DHCP Server The IP address of the DHCP server which provided the IP configuration addresses.
MAC address. Note that if the router is rebooted, the table data is lost until the router rediscovers the devices. To force the router to look for attached devices, click the Refresh button. Maintenance Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005...
Reference Manual for the RangeMax Wireless Router WPN824 Configuration File Management The configuration settings of the WPN824 router are stored within the router in a configuration file. This file can be saved (backed up) to a user’s PC, retrieved (restored) from the user’s PC, or cleared to factory default settings.
Any router upgrade will revert the router settings back to the factory defaults. After completing the upgrade, you can restore your settings from the backup. Maintenance Reference Manual for the RangeMax Wireless Router WPN824 7-7. 202-10072-01, March 2005 “Restoring the...
Page 66
Reference Manual for the RangeMax Wireless Router WPN824 The routing software of the WPN824 router is stored in FLASH memory, and can be upgraded as new software is released by NETGEAR. Upgrade files can be downloaded from the NETGEAR Web site. If the upgrade file is compressed (.ZIP file), you must first extract the file before sending it to the router.
If you ever have to reset the router back to the factory defaults, you can restore your settings from the backup. The default password for the router’s Web Configuration Manager is password. NETGEAR recommends that you change this password to a more secure password.
Page 68
Reference Manual for the RangeMax Wireless Router WPN824 6-10 Maintenance 202-10072-01, March 2005...
• Check that you are using the 12 V DC 1A power adapter supplied by NETGEAR for this product. If the error persists, you have a hardware problem and should contact technical support.
Reference Manual for the RangeMax Wireless Router WPN824 Lights Never Turn Off When the router is turned on, the lights turns on for about 10 seconds and then turn off. If all the lights stay on, there is a fault within the router.
Click the Refresh or Reload button in the Web browser. The changes may have occurred, but the Web browser may be caching the old configuration. Troubleshooting Reference Manual for the RangeMax Wireless Router WPN824 “Verifying TCP/IP Properties” on page C-8 Appendix C “Restoring the Default Configuration and...
Web Configuration Manager. To check the WAN IP address: Launch your browser and select an external site such as www.netgear.com Access the Main Menu of the router’s configuration at http://www.routerlogin.net. Under the Maintenance heading, select Router Status Check that an IP address is shown for the WAN Port If 0.0.0.0 is shown, your router has not obtained an IP address from your ISP.
In the field provided, type Ping followed by the IP address of the router, as in this example: ping 192.168.1.1 Troubleshooting Reference Manual for the RangeMax Wireless Router WPN824 “Install or Verify Windows C-9. Alternatively, you may configure your computer “Install or Verify Windows Networking...
Reference Manual for the RangeMax Wireless Router WPN824 Click on OK. You should see a message like this one: Pinging <IP address> with 32 bytes of data If the path is working, you see this message: Reply from < IP address >: bytes=32 time=NN ms TTL=xxx...
If the wireless router fails to restart or the power light continues to blink or turns solid amber, the unit may be defective. If the error persists, you might have a hardware problem and should contact technical support. Troubleshooting Reference Manual for the RangeMax Wireless Router WPN824 3-8. “Erasing the Configuration” on page 202-10072-01, March 2005...
The E-Mail menu in the Content Filtering section displays the current date and time of day. The WPN824 router uses the Network Time Protocol (NTP) to obtain the current time from one of several Network Time Servers on the Internet. Each entry in the log is stamped with the date and time of day.
Advanced Configuration of the Router This chapter describes how to configure the advanced features of your RangeMax Wireless Router WPN824. These features can be found under the Advanced heading in the Main Menu of the browser interface. Note: If you are unfamiliar with networking and routing, refer to “Network, Routing, Firewall, and...
Page 78
Reference Manual for the RangeMax Wireless Router WPN824 Warning: The Wireless Router is already configured with the optimum settings. Do not alter these settings unless directed by NETGEAR support. Incorrect settings may disable the Wireless Router unexpectedly. Program the advanced wireless settings as follows: •...
The MAC address can usually be found on the bottom of the wireless device. If no Device Name appears, you can type a descriptive name for the PC that you are adding. Advanced Configuration of the Router Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005 Figure 8-3). This menu displays...
Reference Manual for the RangeMax Wireless Router WPN824 When you have finished entering the MAC address, return to the Wireless Access List menu by clicking the Add button. Note: Repeat steps a - d for each wireless PC. Click the Turn Access Control On box to enable Access Control.
Internet after a designated port is 'triggered'. Port triggering applies to chat and Internet games. Advanced Configuration of the Router Reference Manual for the RangeMax Wireless Router WPN824 “Using Universal Plug and Play (UPnP)“ 202-10072-01, March 2005...
Page 82
Reference Manual for the RangeMax Wireless Router WPN824 Figure 8-4: Port Triggering Menu Note: If Disable Port Triggering box is checked after configuring port triggering, port triggering will be disabled but any port triggering configuration information you added to the router will be retained even though it will not be used.
Page 83
Ending Port boxes. This information can be obtained from the game or applications manual or support Web site. Click Apply to save your changes. Advanced Configuration of the Router Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005...
Reference Manual for the RangeMax Wireless Router WPN824 Configuring Port Forwarding to Local Servers Although the router causes your entire local network to appear as a single machine to the Internet, you can make a local server (for example, a Web server or game server) visible and available to the Internet.
Ending Port box. Type the IP address of the computer in the Server IP Address box. Click Apply to save your changes. Advanced Configuration of the Router Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005 “Adding a Custom...
Reference Manual for the RangeMax Wireless Router WPN824 Editing or Deleting a Port Forwarding Entry To edit or delete a Port Forwarding entry, follow these steps. In the table, select the button next to the service name. Click Edit or Delete.
Type the IP address of the additional computer in the Server IP Address box. Click Apply. Some online games and videoconferencing applications are incompatible with NAT. The WPN824 router is programmed to recognize some of these applications and to work properly with them, but there are other applications that may not function well.
Reference Manual for the RangeMax Wireless Router WPN824 If disabled, you must connect manually, using the “Connection Status” button on the Router Status screen. This manual connection will stay up all the time without time outs. Disabling the SPI Firewall The SPI (Stateful Inspection) Firewall protects your LAN against Denial of Service attacks.
Advanced, click on LAN IP Setup to view the LAN IP Setup menu, shown below. Figure 8-9: LAN IP Setup Menu Advanced Configuration of the Router Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005 8-13...
Reference Manual for the RangeMax Wireless Router WPN824 Configuring LAN TCP/IP Setup Parameters The router is shipped preconfigured to use private IP addresses on the LAN side, and to act.as a DHCP server. The router’s default LAN IP configuration is: •...
Secondary DNS Server (if you entered a Secondary DNS address in the Basic Settings menu Advanced Configuration of the Router Reference Manual for the RangeMax Wireless Router WPN824 for an explanation of DHCP and information about how to 202-10072-01, March 2005 “IP...
Reference Manual for the RangeMax Wireless Router WPN824 Using Address Reservation When you specify a reserved IP address for a computer on the LAN, that computer will always receive the same IP address each time it access the router’s DHCP server. Reserved IP addresses should be assigned to servers that require permanent IP settings.
IP subnets located on your network. From the Main Menu of the browser interface, under Advanced, click on Static Routes to view the Static Route menu, shown below. Advanced Configuration of the Router Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005 8-17...
Page 94
Reference Manual for the RangeMax Wireless Router WPN824 Figure 8-10: Static Route Summary Table To add or edit a Static Route: Click the Add button to open the Add/Edit Menu, shown below. Figure 8-11. Static Route Entry and Edit Menu Type a route name for this static route in the Route Name box under the table.
Enabling Remote Management Access Using the Remote Management page, you can allow a user or users on the Internet to configure, upgrade and check the status of your WPN824 router. Advanced Configuration of the Router Reference Manual for the RangeMax Wireless Router WPN824...
Reference Manual for the RangeMax Wireless Router WPN824 Note: Be sure to change the router's default configuration password to a very secure password. The ideal password should contain no dictionary words from any language, and should be a mixture of letters (both upper and lower case), numbers, and symbols.
Page 97
Reference Manual for the RangeMax Wireless Router WPN824 Figure 8-12. UPnP Menu From the Main Menu of the browser interface, under Advanced, click on UPnP. Set up UPnP according to the guidelines below. Turn UPnP On: UPnP can be enabled or disabled for automatic device configuration. The default setting for UPnP is enabled.
Page 98
Reference Manual for the RangeMax Wireless Router WPN824 UPnP Portmap Table: The UPnP Portmap Table displays the IP address of each UPnP device that is currently accessing the router and which ports (Internal and External) that device has opened. The UPnP Portmap Table also displays what type of port is opened and if that port is still active for each IP address.
This appendix provides technical specifications for the RangeMax Wireless Router WPN824. Network Protocol and Standards Compatibility Data and Routing Protocols: Power Adapter North America: United Kingdom, Australia: Europe: Japan: All regions (output): Physical Specifications Dimensions: Weight: Environmental Specifications Operating temperature:...
Page 100
Reference Manual for the RangeMax Wireless Router WPN824 Wireless Radio Data Rates Frequency Data Encoding: Maximum Computers Per Wireless Network: Operating Frequency Ranges: 802.11 Security: 1, 2, 5.5, 6, 9, 12, 18, 24, 36, 48, 54, and 108 Mbps Auto Rate Sensing 2.4-2.5Ghz...
Routers vary in performance and scale, number of routing protocols supported, and types of physical WAN connection they support. The RangeMax Wireless Router WPN824 is a small office router that routes the IP protocol over a single-user broadband connection.
Information Protocol (RIP). Using RIP, routers periodically update one another and check for changes to add to the routing table. The WPN824 router supports both the older RIP-1 and the newer RIP-2 protocols. Among other improvements, RIP-2 supports subnet and multicast protocols. RIP is not required for most home applications.
Page 103
Class D addresses are used for multicasts (messages sent to many hosts). Class D addresses are in this range: 224.0.0.0 to 239.255.255.255. • Class E Class E addresses are for experimental use. Network, Routing, Firewall, and Basics Reference Manual for the RangeMax Wireless Router WPN824 Node Node Node 7261 202-10072-01, March 2005...
Reference Manual for the RangeMax Wireless Router WPN824 This addressing structure allows IP addresses to uniquely identify each physical network and each node on each physical network. For each unique value of the network portion of the address, the base address of the range (host address of all zeros) is known as the network address and is not usually assigned to a host.
Page 105
Note: The number 192.68.135.127 is not assigned because it is the broadcast address of the first subnet. The number 192.68.135.128 is not assigned because it is the network address of the second subnet. Network, Routing, Firewall, and Basics Reference Manual for the RangeMax Wireless Router WPN824 Subnet Node 7262...
Page 106
Reference Manual for the RangeMax Wireless Router WPN824 The following table lists the additional subnet mask bits in dotted-decimal notation. To use the table, write down the original class netmask and replace the 0 value octets with the dotted-decimal value of the additional subnet bits. For example, to partition your Class C network with subnet mask 255.255.255.0 into 16 subnets (4 bits), the new subnet mask becomes 255.255.255.240.
172.16.0.0 - 172.31.255.255 192.168.1.0 - 192.168.255.255 Choose your private network number from this range. The DHCP server of the WPN824 router is preconfigured to automatically assign private addresses. Regardless of your particular situation, do not create an arbitrary IP address; always follow the guidelines explained here.
Reference Manual for the RangeMax Wireless Router WPN824 The following figure illustrates a single IP address operation. Private IP addresses assigned by user 192.168.0.2 192.168.0.3 192.168.0.1 192.168.0.4 192.168.0.5 Figure B-3: Single IP Address Operation Using NAT This scheme offers the additional benefit of firewall-like protection because the internal LAN addresses are not available to the Internet through the translated connection.
Many of the resources on the Internet can be addressed by simple descriptive names such as www.NETGEAR.com. This addressing is very helpful at the application level, but the descriptive name must be translated to an IP address in order for a user to actually contact the resource. Just as...
The WPN824 router has the capacity to act as a DHCP server. The WPN824 router also functions as a DHCP client when connecting to the ISP. The firewall can automatically obtain an IP address, subnet mask, DNS server addresses, and a gateway address if the ISP provides this information by DHCP.
Reference Manual for the RangeMax Wireless Router WPN824 Stateful Packet Inspection Unlike simple Internet sharing routers, a firewall uses a process called stateful packet inspection to ensure secure firewall filtering to protect your network from attacks and intrusions. Since user-level applications such as FTP and Web browsers can create complex patterns of network traffic, it is necessary for the firewall to analyze groups of network connection states.
Reference Manual for the RangeMax Wireless Router WPN824 Table B-1. UTP Ethernet cable wiring, straight-through Wire color Signal Orange/White Transmit (Tx) + Orange Transmit (Tx) - Green/White Receive (Rx) + Blue Blue/White Green Receive (Rx) - Brown/White Brown Category 5 Cable Quality Category 5 distributed cable that meets ANSI/EIA/TIA-568-A building wiring standards can be a maximum of 328 feet (ft.) or 100 meters (m) in length, divided as follows:...
Reference Manual for the RangeMax Wireless Router WPN824 Figure B-6: Category 5 UTP Cable with Male RJ-45 Plug at Each End Note: Flat “silver satin” telephone cable may have the same RJ-45 plug. However, using telephone cable results in excessive collisions, causing the attached port to be partitioned or disconnected from the network.
Page 115
Reference Manual for the RangeMax Wireless Router WPN824 The WPN824 router incorporates Auto Uplink technology (also called MDI/MDIX). Each LOCAL Ethernet port will automatically sense whether the Ethernet cable plugged into the port should have a normal connection (e.g. connecting to a computer) or an uplink connection (e.g.
Page 116
Reference Manual for the RangeMax Wireless Router WPN824 B-16 Network, Routing, Firewall, and Basics 202-10072-01, March 2005...
You need to prepare these three things before you begin: Cabling and Computer Hardware To use the WPN824 router on your network, each computer must have an 802.11g or 802.11b wireless adapter or an installed Ethernet Network Interface Card (NIC) and an Ethernet cable. If the computer will connect to your network using an Ethernet NIC at 100 Mbps, you must use a Category 5 (Cat 5) cable such as the one provided with your router.
— For Macintosh computers, record the settings in the TCP/IP or Network control panel. • You may also refer to the NETGEAR RangeMax Wireless Router WPN824 Resource CD for the NETGEAR Router ISP Guide which provides Internet connection information for many ISPs.
Internet Protocol). Each computer on your network must have TCP/IP installed and selected as its networking protocol. If a Network Interface Card (NIC) is already installed in your computer, then TCP/IP is probably already installed as well. Preparing Your Network Reference Manual for the RangeMax Wireless Router WPN824 aaa@yyy.com mail.xxx.yyy.com , then use xxx.yyy.com...
Firewall, and Basics.” The WPN824 router is shipped preconfigured as a DHCP server. The firewall assigns the following TCP/IP configuration information automatically when the PCs are rebooted: • PC or workstation IP addresses—192.168.1.2 through 192.168.1.254 •...
Page 121
Select the manufacturer and model of your Ethernet adapter, and then click OK. If you need TCP/IP: Click the Add button. Select Protocol, and then click Add. Preparing Your Network Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005...
Reference Manual for the RangeMax Wireless Router WPN824 Select Microsoft. Select TCP/IP, and then click OK. If you need Client for Microsoft Networks: Click the Add button. Select Client, and then click Add. Select Microsoft. Select Client for Microsoft Networks, and then click OK.
Page 123
Ethernet adapter is present • TCP/IP is present • Primary Network Logon is set to Windows logon Click on the Properties button. The following TCP/IP Properties window will display. Preparing Your Network Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005...
Reference Manual for the RangeMax Wireless Router WPN824 • By default, the IP Address tab is open on this window. • Verify the following: Obtain an IP address automatically is selected. If not selected, click in the radio button to the left of it to select it. This setting is required to enable the DHCP server to automatically assign an IP address.
From the drop-down box, select your Ethernet adapter. The window is updated to show your settings, which should match the values below if you are using the default TCP/IP settings that NETGEAR recommends for connecting through a router or gateway: •...
Reference Manual for the RangeMax Wireless Router WPN824 DHCP Configuration of TCP/IP in Windows XP, 2000, or NT4 You will find there are many similarities in the procedures for different Windows systems when using DHCP to configure TCP/IP. The following steps will walk you through the configuration process for each of these versions of Windows.
Page 127
• The TCP/IP details are presented on the Support tab page. • Select Internet Protocol, and click Properties to view the configuration information. Preparing Your Network Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005 C-11...
Reference Manual for the RangeMax Wireless Router WPN824 • Verify that the Obtain an IP address automatically radio button is selected. • Verify that Obtain DNS server address automatically radio button is selected. • Click the OK button. This completes the DHCP configuration of TCP/ IP in Windows XP.
Page 129
“Components checked are used by this connection:” • Client for Microsoft Networks and • Internet Protocol (TCP/IP) • Click OK. Preparing Your Network Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005 C-13...
Page 130
Reference Manual for the RangeMax Wireless Router WPN824 • With Internet Protocol (TCP/IP) selected, click on Properties to open the Internet Protocol (TCP/IP) Properties dialogue box. • Verify that • Obtain an IP address automatically is selected. • Obtain DNS server address automatically is selected.
This will display Control Panel window. • Double-click the Network icon in the Control Panel window. The Network panel will display. • Select the Protocols tab to continue. Preparing Your Network Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005 C-15...
Page 132
Reference Manual for the RangeMax Wireless Router WPN824 • Highlight the TCP/IP Protocol in the Network Protocols box, and click on the Properties button. C-16 202-10072-01, March 2005 Preparing Your Network...
Type ipconfig /all Your IP Configuration information will be listed, and should match the values below if you are using the default TCP/IP settings that NETGEAR recommends for connecting through a router or gateway: • The IP address is between 192.168.1.2 and 192.168.1.254 •...
Reference Manual for the RangeMax Wireless Router WPN824 • The default gateway is 192.168.1.1 Type exit Configuring the Macintosh for TCP/IP Networking Beginning with Macintosh Operating System 7, TCP/IP is already installed on the Macintosh. On each networked Macintosh, you will need to configure TCP/IP to use DHCP.
If you do not see these values, you may need to restart your Macintosh or you may need to switch the “Configure” setting to a different option, then back again to “Using DHCP Server”. Preparing Your Network Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005 C-19...
Reference Manual for the RangeMax Wireless Router WPN824 Verifying the Readiness of Your Internet Account For broadband access to the Internet, you need to contract with an Internet service provider (ISP) for a single-user Internet access account using a cable modem or DSL modem. This modem must be a separate physical box (not a card) and must provide an Ethernet port intended for connection to a Network Interface Card (NIC) in a computer.
As mentioned above, you may need to collect configuration information from your PC so that you can use this information when you configure the WPN824 router. Following this procedure is only necessary when your ISP does not dynamically supply the account information.
As mentioned above, you may need to collect configuration information from your Macintosh so that you can use this information when you configure the WPN824 router. Following this procedure is only necessary when your ISP does not dynamically supply the account information.
Restart any computer that is connected to the firewall. After configuring all of your computers for TCP/IP networking and restarting them, and connecting them to the local network of your WPN824 router, you are ready to access and configure the firewall.
Page 140
Reference Manual for the RangeMax Wireless Router WPN824 C-24 Preparing Your Network 202-10072-01, March 2005...
This chapter provides an overview of Wireless networking. Wireless Networking Overview The WPN824 router conforms to the Institute of Electrical and Electronics Engineers (IEEE) 802.11b and 802.11g standards for wireless LANs (WLANs). On an 802.11b or g wireless link, data is encoded using direct-sequence spread-spectrum (DSSS) technology and is transmitted in the unlicensed radio spectrum at 2.5GHz.
Reference Manual for the RangeMax Wireless Router WPN824 Ad Hoc Mode (Peer-to-Peer Workgroup) In an ad hoc network, computers are brought together as needed; thus, there is no structure or fixed points to the network - each node can generally communicate with any other node. There is no Access Point involved in this configuration.
The 802.11 standard defines several services that govern how two 802.11 devices communicate. The following events must occur before an 802.11 Station can communicate with an Ethernet network through an access point, such as the one built in to the WPN824: Turn on the wireless station.
Reference Manual for the RangeMax Wireless Router WPN824 The access point authenticates the station. The station associates with the access point and joins the network. This process is illustrated below. 802.11b Authentication Open System Steps 1) Authentication request sent to AP...
Authentication. Note: Some 802.11 access points also support Use WEP for Authentication Only (Shared Key Authentication without data encryption). Wireless Networking Basics Reference Manual for the RangeMax Wireless Router WPN824 Access Point IN TER N ET W LA N LO CA L...
Reference Manual for the RangeMax Wireless Router WPN824 Key Size The IEEE 802.11 standard supports two types of WEP encryption: 40-bit and 128-bit. The 64-bit WEP data encryption method allows for a five-character (40-bit) input. Additionally, 24 factory-set bits are added to the forty-bit input to generate a 64-bit encryption key. The 24 factory-set bits are not user-configurable).
Reference Manual for the RangeMax Wireless Router WPN824 Table D-4: 802.11b/g Radio Frequency Channels Channel Center Frequency 2427 MHz 2432 MHz 2437 MHz 2442 MHz 2447 MHz 2452 MHz 2457 MHz 2462 MHz 2467 MHz 2472 MHz Note: The available channels supported by the wireless products in various countries are different.
The Wi-Fi Alliance is now performing interoperability certification testing on Wi-Fi Protected Access products. Starting August of 2003, all new Wi-Fi certified products have to support WPA. NETGEAR is implementing WPA and WPA2 on client and access point products. The 802.11i standard was ratified in 2004.
Reference Manual for the RangeMax Wireless Router WPN824 How Does WPA Compare to WPA2 (IEEE 802.11i)? WPA is forward compatible with the WPA2 security specification. WPA is a subset of WPA2 and used certain pieces of the early 802.11i draft, such as 802.1x and TKIP. The main pieces of WPA2 that are not included in WPA are secure IBSS (Ad-Hoc mode), secure fast handoff (for specialized 802.11 VoIP phones), as well as enhanced encryption protocols, such as AES-CCMP.
Page 151
• Data integrity. TKIP includes a message integrity code (MIC) at the end of each plaintext message to ensure messages are not being spoofed. Wireless Networking Basics Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005 D-11...
WPA supports Extensible Authentication Protocol (EAP). For environments without a RADIUS infrastructure, WPA supports the use of a pre-shared key. Together, these technologies provide a framework for strong user authentication. Windows XP implements 802.1x natively, and several NETGEAR switch and wireless access point products support 802.1x. D-12 Wired Network with Optional 802.1x Port Based Network...
Page 153
EAP-start message. This begins a series of message exchanges to authenticate the client. The access point replies with an EAP-request identity message. Wireless Networking Basics Reference Manual for the RangeMax Wireless Router WPN824 For example, a WPA/WPA2-enabled For example, a...
Reference Manual for the RangeMax Wireless Router WPN824 The client sends an EAP-response packet containing the identity to the authentication server. The access point responds by enabling a port for passing only EAP packets from the client to an authentication server located on the wired side of the access point. The access point blocks all other traffic, such as HTTP, DHCP, and POP3 packets, until the access point can verify the client's identity using an authentication server (for example, RADIUS).
Page 155
NIC’s hardware in both the station and the access point. TKIP is a pragmatic compromise that allows organizations to deploy better security while AES capable equipment is being designed, manufactured, and incrementally deployed. Wireless Networking Basics Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005 D-15...
Product Support for WPA/WPA2 Starting in August, 2003, NETGEAR, Inc. wireless Wi-Fi certified products will support the WPA standard. NETGEAR, Inc. wireless products that had their Wi-Fi certification approved before August, 2003 will have one year to add WPA so as to maintain their Wi-Fi certification.
Windows Server 2003, the updated network adapter driver must be able to pass the adapter's WPA capabilities and security configuration to the Wireless Zero Configuration service. Wireless Networking Basics Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005 D-17...
Reference Manual for the RangeMax Wireless Router WPN824 Microsoft has worked with many wireless vendors to embed the WPA driver update in the wireless adapter driver. So, to update your Microsoft Windows wireless client, all you have to do is obtain the new WPA/WPA2-compatible driver and install the driver.
Reference Manual for the RangeMax Wireless Router WPN824 Glossary Use the list below to find definitions for technical terms used in this manual. 802.11 Standard 802.11, or IEEE 802.11, is a type of radio technology used for wireless local area networks (WLANs). It is a standard that has been developed by the IEEE (Institute of Electrical and Electronic Engineers), http://standards.ieee.org .
Page 160
Reference Manual for the RangeMax Wireless Router WPN824 The purpose of 11d is to add features and restrictions to allow WLANs to operate within the rules of these countries. Equipment manufacturers do not want to produce a wide variety of country-specific products and users that travel do not want a bag full of country-specific WLAN PC cards.
Page 161
Reference Manual for the RangeMax Wireless Router WPN824 Access Point (AP) A wireless LAN transceiver or "base station" that can connect a wired LAN to one or many wireless devices. Access points can also bridge to each other. There are various types of access points, also referred to as base stations, used in both wireless and wired networks.
Page 162
Reference Manual for the RangeMax Wireless Router WPN824 for cables or wires. Bluetooth is a frequency-hopping technology in the 2.4 GHz frequency spectrum, with a range of 30 feet and up to 11Mbps raw data throughput. Bridge A product that connects a local area network (LAN) to another local area network that uses the same protocol (for example, wireless, Ethernet or token ring).
Page 163
Reference Manual for the RangeMax Wireless Router WPN824 CSMA/CD (Carrier Sense Multiple Action/Collision Detection) A method of managing traffic and reducing noise on an Ethernet network. A network device transmits data after detecting that a channel is available. However, if two devices transmit data simultaneously, the sending devices detect a collision and retransmit after a random time delay.
Page 164
Reference Manual for the RangeMax Wireless Router WPN824 ESSID (more commonly referred to as SSID – Short Set Identifier) The identifying name of an 802.11 wireless network. When you specify your correct ESSID in your client setup you ensure that you connect to your wireless network rather than another network in range. (See SSID.) The ESSID can be called by different terms, such as Network Name, Preferred Network, SSID or...
Page 165
The IEEE 802.11 Standard encompasses the physical layer (PHY) and the lower portion of the data link layer. The lower portion of the data link layer is often referred to as the Medium Access Controller (MAC) sublayer. Glossary Reference Manual for the RangeMax Wireless Router WPN824 202-10072-01, March 2005...
Page 166
Reference Manual for the RangeMax Wireless Router WPN824 MAC (Media Access Control) Every wireless 802.11 device has its own specific MAC address hard-coded into it. This unique identifier can be used to provide security for wireless networks. When a network uses a MAC table, only the 802.11 radios that have had their MAC addresses added to that network's MAC table will be able to get onto the network.
Page 167
Reference Manual for the RangeMax Wireless Router WPN824 NIC (Network Interface Card) A type of PC adapter card that either works without wires (Wi-Fi) or attaches to a network cable to provide two-way communication between the computer and network devices such as a hub or switch. Most office wired NICs operate at 10 Mbps (Ethernet), 100 Mbps (Fast Ethernet) or 10/100 Mbps dual speed.
Page 168
Reference Manual for the RangeMax Wireless Router WPN824 Range The distance away from your access point that your wireless network can reach. Most Wi-Fi systems will provide a range of a hundred feet or more. Depending on the environment and the type of antenna used,...
Page 169
Reference Manual for the RangeMax Wireless Router WPN824 Site survey The process whereby a wireless network installer inspects a location prior to putting in a wireless network. Site surveys are used to identify the radio- and client-use properties of a facility so that access points can be optimally placed.
Page 170
Reference Manual for the RangeMax Wireless Router WPN824 TCP/IP The underlying technology behind the Internet and communications between computers in a network. The first part, TCP, is the transport part, which matches the size of the messages on either end and guarantees that the correct message has been received.
Page 171
Reference Manual for the RangeMax Wireless Router WPN824 As a recent development, the debate over the legality of warchalking is still going on. The practice stems from the U.S. Depression-era culture of wandering hobos who would make marks outside of homes to indicate to other wanderers whether the home was receptive to drifters or was inhospitable.
Page 172
Reference Manual for the RangeMax Wireless Router WPN824 does not offer. With this feature, WPA provides roughly comparable security to VPN tunneling with WEP, with the benefit of easier administration and use. This is similar to 802.1x support and requires a RADIUS server in order to implement.
Page 173
Reference Manual for the RangeMax Wireless Router WPN824 secure transmission and authentication is particularly important to users unknown to each other. The authentication capability defined in the specification enables a secure access control mechanism for the service providers and for mobile users not utilizing VPN connections.
Page 174
Reference Manual for the RangeMax Wireless Router WPN824 Glossary 202-10072-01, March 2005...