Netgear WNR2500 User Manual - Page 48

Default DMZ Server, Disable SIP ALG

Page 48 highlights

N450 Wireless Router WNR2500 • Disable IGMP Proxying. IGMP proxying allows computers on the LAN to receive the multicast traffic they are subscribed to from the Internet. By default, this check box is selected, and the IGMP proxy is disabled, preventing multicast traffic from the Internet to the LAN. Clear the Disable IGMP Proxying check box to allow multicast traffic from the Internet to the LAN. • MTU Size (in bytes). The normal MTU (maximum transmit unit) value for most Ethernet networks is 1500 bytes, or 1492 bytes for PPPoE connections. For some ISPs, you might need to reduce the MTU. This change is rarely required. Do not make this change unless you are sure that it is necessary for your ISP connection. For more information, see Change the MTU Size on page 49. • NAT Filtering. Network Address Translation (NAT) determines how the router processes inbound traffic: - Secured NAT provides a secured firewall to protect the computers on the LAN from attacks from the Internet, but might prevent some Internet games, point-to-point applications, or multimedia applications from functioning. By default, the Secured radio button is selected. - Open NAT provides a much less secured firewall, but allows almost all Internet applications to function. • Disable SIP ALG. Some Voice over IP (VoIP) applications do not function well with the Session Initiation Protocol (SIP) Application Layer Gateway (ALG). Selecting the check box to turn off the SIP ALG might enable connected VoIP devices to create and accept a VoIP call through the router. By default, this check box is cleared. Default DMZ Server The default DMZ server feature is helpful when you use some online games and videoconferencing applications that are incompatible with Network Address Translation (NAT). The router is programmed to recognize some of these applications and to function correctly with them, but other applications exist that might not function well. In some cases, one local computer can run the application correctly if that computer's IP address is entered as the default DMZ server. WARNING: DMZ servers pose a security risk. A computer designated as the default DMZ server loses much of the protection of the firewall and is exposed to exploits from the Internet. If compromised, the DMZ server computer can be used to attack other computers on your network. The router discards incoming traffic from the Internet unless the traffic is a response to one of your local computers or a service that you have configured on the Port Forwarding / Port Triggering screen (see Set Up Port Forwarding to Local Servers on page 90 and Set Up Port Triggering on page 93). Instead of discarding this traffic, you can forward it to one computer on your network. This computer is called the default DMZ server. genie ADVANCED Home 48

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143

genie ADVANCED Home
48
N450 Wireless Router WNR2500
Disable IGMP Proxying
. IGMP proxying allows computers on the LAN to receive the
multicast traffic they are subscribed to from the Internet. By default, this check box is
selected, and the IGMP proxy is disabled, preventing multicast traffic from the Internet to
the LAN. Clear the
Disable IGMP Proxying
check box to allow multicast traffic from the
Internet to the LAN.
MTU Size (in bytes)
. The normal MTU (maximum transmit unit) value for most Ethernet
networks is 1500 bytes, or 1492 bytes for PPPoE connections. For some ISPs, you might
need to reduce the MTU. This change is rarely required. Do not make this change unless
you are sure that it is necessary for your ISP connection. For more information, see
Change the MTU Size
on page
49.
NAT Filtering
. Network Address Translation (NAT) determines how the router processes
inbound traffic:
-
Secured NAT provides a secured firewall to protect the computers on the LAN from
attacks from the Internet, but might prevent some Internet games, point-to-point
applications, or multimedia applications from functioning. By default, the Secured
radio button is selected.
-
Open NAT provides a much less secured firewall, but allows almost all Internet
applications to function.
Disable SIP ALG
. Some Voice over IP (VoIP) applications do not function well with the
Session Initiation Protocol (SIP) Application Layer Gateway (ALG). Selecting the check
box to turn off the SIP ALG might enable connected VoIP devices to create and accept a
VoIP call through the router. By default, this check box is cleared.
Default DMZ Server
The default DMZ server feature is helpful when you use some online games and
videoconferencing applications that are incompatible with Network Address Translation
(NAT). The router is programmed to recognize some of these applications and to function
correctly with them, but other applications exist that might not function well. In some cases,
one local computer can run the application correctly if that computer’s IP address is entered
as the default DMZ server.
WARNING:
DMZ servers pose a security risk. A computer designated as the
default DMZ server loses much of the protection of the firewall and
is exposed to exploits from the Internet. If compromised, the DMZ
server computer can be used to attack other computers on your
network.
The router discards incoming traffic from the Internet unless the traffic is a response to one of
your local computers or a service that you have configured on the Port Forwarding / Port
Triggering screen (see
Set Up Port Forwarding to Local Servers
on page
90 and
Set Up Port
Triggering
on page
93). Instead of discarding this traffic, you can forward it to one computer
on your network. This computer is called the default DMZ server.