Netgear DGND3300 DGND3300 User Manual - Page 91

Setting Up a Default DMZ Server, Warning - nat settings

Page 91 highlights

RangeMax Dual Band Wireless-N Modem Router DGND3300 User Manual Table 6-2. WAN Setup Settings Setting Description Default DMZ Server This feature is sometimes helpful when you are using some online games and videoconferencing. Be careful when using this feature because it makes the firewall security less effective. See the following section, Configuring Static Routes. Respond to Ping on Internet If you want the modem router to respond to a ping from the Internet, select this WAN Port check box. This should be used only as a diagnostic tool, since it allows your modem router to be discovered. Do not select this check box unless you have a specific reason to do so. MTU Size (in bytes) The normal MTU (Maximum Transmit Unit) value for most Ethernet networks is 1500 bytes, or 1492 Bytes for PPPoE connections. For some ISPs you might need to reduce the MTU. This is rarely required, and should not be done unless you are sure it is necessary for your ISP connection. See "Changing the MTU Size" on page 7-6. Disable SIP ALG The Session Initiation Protocol (SIP) Application Level Gateway (ALG) is enabled by default to optimize VoIP phone calls that use the SIP. The Disable SIP ALG check box allows you to disable the SIP ALG. Disabling the SIP ALG might be useful when running certain applications. Setting Up a Default DMZ Server The default DMZ server feature is helpful when using some online games and videoconferencing applications that are incompatible with Network Address Translation (NAT). The modem router is programmed to recognize some of these applications and to work correctly with them, but there are other applications that might not function well. In some cases, one local computer can run the application correctly if that computer's IP address is entered as the default DMZ server. Warning: DMZ servers pose a security risk. A computer designated as the default DMZ server loses much of the protection of the firewall and is exposed to exploits from the Internet. If compromised, the DMZ server computer can be used to attack other computers on your network. Incoming traffic from the Internet is usually discarded by the modem router unless the traffic is a response to one of your local computers or a service that you have configured in the Port Forwarding screen. Instead of discarding this traffic, you can have it forwarded to one computer on your network. This computer is called the default DMZ server. The WAN Setup screen lets you configure a default DMZ server. To assign a computer or server to be a default DMZ server: 6-8 Customizing Your Network Settings v1.0, September 2009

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129

RangeMax Dual Band Wireless-N Modem Router DGND3300 User Manual
6-8
Customizing Your Network Settings
v1.0, September 2009
Setting Up a Default DMZ Server
The default DMZ server feature is helpful when using some online games and videoconferencing
applications that are incompatible with Network Address Translation (NAT). The modem router is
programmed to recognize some of these applications and to work correctly with them, but there
are other applications that might not function well. In some cases, one local computer can run the
application correctly if that computer’s IP address is entered as the default DMZ server.
Incoming traffic from the Internet is usually discarded by the modem router unless the traffic is a
response to one of your local computers or a service that you have configured in the Port
Forwarding screen. Instead of discarding this traffic, you can have it forwarded to one computer on
your network. This computer is called the default DMZ server.
The WAN Setup screen lets you configure a default DMZ server.
To assign a computer or server to be a default DMZ server:
Default DMZ Server
This feature is sometimes helpful when you are using some online games and
videoconferencing. Be careful when using this feature because it makes the
firewall security less effective. See the following section,
Configuring Static
Routes
.
Respond to Ping on Internet
WAN Port
If you want the modem router to respond to a ping from the Internet, select this
check box. This should be used only as a diagnostic tool, since it allows your
modem router to be discovered. Do not select this check box unless you have
a specific reason to do so.
MTU Size (in bytes)
The normal MTU (Maximum Transmit Unit) value for most Ethernet networks
is 1500 bytes, or 1492 Bytes for PPPoE connections. For some ISPs you
might need to reduce the MTU. This is rarely required, and should not be done
unless you are sure it is necessary for your ISP connection. See
“Changing
the MTU Size” on page 7-6
.
Disable SIP ALG
The Session Initiation Protocol (SIP) Application Level Gateway (ALG) is
enabled by default to optimize VoIP phone calls that use the SIP. The
Disable
SIP ALG
check box allows you to disable the SIP ALG. Disabling the SIP ALG
might be useful when running certain applications.
Warning:
DMZ servers pose a security risk. A computer designated as the default DMZ
server loses much of the protection of the firewall and is exposed to exploits
from the Internet. If compromised, the DMZ server computer can be used to
attack other computers on your network.
Table 6-2.
WAN Setup Settings
Setting
Description