Netgear WNDR3400v2 WNDR3400 User Manual - Page 80

Setting Up a Default DMZ Server, Default DMZ Server, Warning - nat

Page 80 highlights

N600 Wireless Dual Band Router WNDR3400 User Manual Table 5-2. WAN Setup Settings Setting NAT Filtering Disable SIP ALG Description Network Address Translation (NAT) determines how the router processes inbound traffic. Secured NAT provides a secured firewall to protect the computers on the LAN from attacks from the Internet, but might prevent some Internet games, point-to-point applications, or multimedia applications from functioning. Open NAT provides a much less secured firewall, but allows almost all Internet applications to function. Select this feature if you have a SIP (Session Initiation Protocol) telephone or other SIP base devices, and you want them to communicate with other people. If you have been unable to build a successful SIP connection, selecting this check box allows for such a connection without compromising other SIP ALG (Application-level gateway) firewall settings, such as Disable SPI Firewall. If you are not using SIP devices, leave this check box unchecked. Setting Up a Default DMZ Server The default DMZ server feature is helpful when you are using some online games and videoconferencing applications that are incompatible with Network Address Translation (NAT). The router is programmed to recognize some of these applications and to work correctly with them, but there are other applications that might not function well. In some cases, one local computer can run the application correctly if that computer's IP address is entered as the default DMZ server. Warning: DMZ servers pose a security risk. A computer designated as the default DMZ server loses much of the protection of the firewall and is exposed to exploits from the Internet. If compromised, the DMZ server computer can be used to attack other computers on your network. Incoming traffic from the Internet is usually discarded by the router unless the traffic is a response to one of your local computers or a service that you have configured in the Port Forwarding/Port Triggering screen. Instead of discarding this traffic, you can have it forwarded to one computer on your network. This computer is called the default DMZ server. The WAN Setup screen lets you configure a default DMZ server. To assign a computer or server to be a default DMZ server: 1. Click the Default DMZ Server check box. 2. Type the IP address. Customizing Your Network Settings 5-8 v1.0, August 2010

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149

N600 Wireless Dual Band Router WNDR3400 User Manual
Customizing Your Network Settings
5-8
v1.0, August 2010
Setting Up a Default DMZ Server
The default DMZ server feature is helpful when you are using some online games and
videoconferencing applications that are incompatible with Network Address Translation (NAT).
The router is programmed to recognize some of these applications and to work correctly with
them, but there are other applications that might not function well. In some cases, one local
computer can run the application correctly if that computer’s IP address is entered as the default
DMZ server.
Incoming traffic from the Internet is usually discarded by the router unless the traffic is a response
to one of your local computers or a service that you have configured in the Port Forwarding/Port
Triggering screen. Instead of discarding this traffic, you can have it forwarded to one computer on
your network. This computer is called the default DMZ server.
The WAN Setup screen lets you configure a default DMZ server.
To assign a computer or server to be a default DMZ server:
1.
Click the
Default DMZ Server
check box.
2.
Type the IP address.
NAT Filtering
Network Address Translation (NAT) determines how the router processes
inbound traffic. Secured NAT provides a secured firewall to protect the
computers on the LAN from attacks from the Internet, but might prevent some
Internet games, point-to-point applications, or multimedia applications from
functioning. Open NAT provides a much less secured firewall, but allows
almost all Internet applications to function.
Disable SIP ALG
Select this feature if you have a SIP (Session Initiation Protocol) telephone or
other SIP base devices, and you want them to communicate with other
people. If you have been unable to build a successful SIP connection,
selecting this check box allows for such a connection without compromising
other SIP ALG (Application-level gateway) firewall settings, such as Disable
SPI Firewall. If you are not using SIP devices, leave this check box
unchecked.
Warning:
DMZ servers pose a security risk. A computer designated as the default DMZ
server loses much of the protection of the firewall and is exposed to exploits
from the Internet. If compromised, the DMZ server computer can be used to
attack other computers on your network.
Table 5-2.
WAN Setup Settings
Setting
Description