occurs if the computer’s SSID is set to “ANY”. Your Belkin Router can block
this random search for a network. If you disable the “ESSID Broadcast”
feature, the only way a computer can join your network is by its SSID being
set to the specific name of the network (like WLAN). Be sure that you know
your SSID (network name) before enabling this feature. It is possible to
make your wireless network nearly invisible. By turning off the broadcast of
the SSID, your network will not appear in a site survey. Obviously, turning
off the broadcast feature of the SSID helps increase security.
Encryption
Setting encryption can help keep your network secure. The Router
uses Wired Equivalent Privacy (WEP) and WIFI protested Access
(WPA) encrytion to protect to protect your data and features two rates
of encryption: 64-bit and 128-bit. Encryption works on a system of
keys. The key on the computer must match the key on the Router,
and there are two ways to make a key. The easiest is to let the
Router’s software convert a passphrase you’ve created into a key.
The advanced method is to enter the keys manually.
Virtual Servers
This function will allow you to route external (Internet) calls for services
such as a web server (port 80), FTP server (Port 21), or other applications
through your Router to your internal network. Since your internal computers
are protected by a firewall, machines from the Internet cannot get to them
because they cannot be “seen”. If you need to configure the virtual server
function for a specific application, you will need to contact the application
vendor to find out which port settings you need.
To manually enter settings, enter the IP address in the space provided for
the internal machine, the port type (TCP or UDP), and the LAN and public
port(s) required to pass. Then select “Enable” and click “Set”. You can only
pass one port per internal IP address. Opening ports in your firewall can
pose a security risk. You can enable and disable settings very quickly. It
is recommended that you disable the settings when you are not using a
specific application.
Client IP Filters
The Router can be configured to restrict access to the Internet,
email, or other network services at specific days and times.
Restriction can be set for a single computer, a range of computers,
or multiple computers.
MAC Address Filtering
The MAC address filter is a powerful security feature that allows
you to specify which computers are allowed on the network. Any
computer attempting to access the network that is not specified in
the filter list will be denied access. When you enable this feature, you
must enter the MAC address of each client on your network to allow
network access to each or copy the MAC address by selecting the
name of the computer from the “DHCP Client List”. To enable this
feature, select “Enable”. Next, click “Apply Changes” to save
the settings.
DMZ
If you have a client PC that cannot run an Internet application
properly from behind the firewall, you can open the client up to
unrestricted two-way Internet access. This may be necessary if the
NAT feature is causing problems with an application such as a game
or video conferencing application. Use this feature on a temporary
basis. The computer in the DMZ is not protected from hacker
attacks. To put a computer in the DMZ, enter the last digits of its
LAN IP address in the “Static IP” field and click “Apply Changes” for
the change to take effect.
If you have only one public (WAN) IP address, then you can leave
the public IP to “0.0.0.0”. If you are using multiple public (WAN) IP
addresses, it is possible to select which public (WAN) IP address the
DMZ host will be directed to. Type in the public (WAN) IP address
you wish the DMZ host to direct to, enter the last two digits of the IP
address of the DMZ host computer, and click “Apply Changes”.
Administrator Password
The Router ships with NO password entered. If you wish to add
a password for more security, you can set a password from your
Router’s web-based user interface. Keep your password in a safe