KB 176: Difference between revisions

From SWCP Support Wiki
Jump to navigationJump to search
 
Line 115: Line 115:
    
    
     * Do I have a router or a bridge?
     * Do I have a router or a bridge?
       There's no way to tell by inspecting the box. But if you run the "version" command you can tell whether the box is configured for routing or not:
       There's no way to tell by inspecting the box. But if you run the "version" command you
      can tell whether the box is configured for routing or not:
    
    
  # version
  # version
Line 126: Line 127:
        
        
    
    
      A tilde indicates that the option is not available in this router. So the above router has IP ROUTING but not IPSEC. The bridging-only devices will have a tilde on the IP ROUTING feature.
A tilde indicates that the option is not available in this router. So the above router has IP ROUTING but not IPSEC. The bridging-only devices will have a tilde on the IP ROUTING feature.
    
    
     * General Notes:
     * General Notes:
Line 132: Line 133:
           o Adding port forwarding does not require a reboot.
           o Adding port forwarding does not require a reboot.
           o Turning off RIP net IP does require a reboot.
           o Turning off RIP net IP does require a reboot.
     o The "save all" command commits your changes but does not save them. You must issue the "sync" command to get them saved. "reboot" automatically does a sync.
     o The "save all" command commits your changes but does not save them. You must issue the  
 
      "sync" command to get them saved. "reboot" automatically does a sync.
    *

Latest revision as of 14:29, 4 June 2008

Efficient Router cheat-sheet

Article:176
Created:2002-08-13 13:32:10
Categories:
  DSL

Question or Symptom

Common commands used on the efficient router


Resolution

 Efficient Router Cheat Sheet
 
   * List the contents of the packet filter:
 
      rem ipfilter list wan
      
 
   * Set up port forwarding:
     To simply forward port 80 to an internal machine with IP address 192.168.1.2, use this:
 
      rem addserver 192.168.1.2 tcp 80 wan
      
 

If you want to forward port A on the router to port B on the internal machine. you have to specify a range of ports on the router and a starting port on the internal machine. If you just want one port, then the range will have the same starting and ending port number. For example, to forward port 9000 to the telnet port of an internal machine (so you don't kill telnet access to the router), use this:

      rem addserver 192.168.1.2 tcp 9000 9000 23 wan
      
 
   * Change the telnet password:
 
      system admin <new password>
      
 
   * Recover lost telnet password:
 
      Connect to the router on the console port.
      
      There is a small hole in the back of the router which is the reset
      button.  Use a paperclip to hold down that reset button for about 3-5
      seconds.  The status lights will change and the console will print
      a message (don't remember what it says, but it has to do with being in
      password bypass mode).  At this point you can log in using the router's
      serial number as a password  (found on a sticker on the underside of
      the router).
 
      After logging in you can change the password with:
 
        system admin <new password>
        save all
        reboot
      
      NOTE: Pressing the reset button on the newer firmware will erase the 
            entire config and you will have to restore it.
 
   * View system log while connected with telnet instead of serial console:
 
      sys log start
      
 
   * Set up DHCP:
 
      dhcp add 192.168.1.0 255.255.255.0
      dhcp set valueoption domainname swcp.com
      dhcp set valueoption domainnameserver 198.59.115.2
      dhcp set valueoption domainnameserver 129.121.254.2
      dhcp set lease 192.168.1.0 48
      dhcp set addresses 192.168.1.100 192.168.1.199
      dhcp enable all
      
 
   * How to set up PPTP pass-through on an Efficient router with NAT
 
      system addserver <PPTP server IP address> tcp 1723
      system addserver <PPTP server IP address> 47 0
      
 
   * How to turn off RIP
 
      # Do not send/receive RIP, and even if we do, don't include default route
      eth ip options rxrip off
      eth ip options rxdef off
      eth ip options txrip off
      eth ip options avdfr off
      save all
      reboot
      
 
   * How to turn off NAT:
 
      rem setIPTranslate off wan
      save all
      reboot
      
 
   * Change the ethernet IP address:
 
      eth ip addr <IP-ADDRESS> <SUBNET-MASK>
      Example: eth ip addr 192.168.10.4 255.255.255.0
      
 
   * How to convert from "static" to PPP-over-ATM (PPPoA):
 
      remote setprotocol pppllc wan
      remote setpppoptions ipslavemode on wan
      remote setauthen pap wan
      remote disauthen wan
      remote setsrcipaddr 0.0.0.0 0.0.0.0 wan
      remote setrmtipaddr 0.0.0.0 0.0.0.0 wan
      remote addiproute 0.0.0.0 255.255.255.255 1 wan
      remote blocknetbios on wan
      remote setoursysname <USERNAME@swcp.com> wan
      remote setourpasswd <PASSWORD> wan
      
 
   * Do I have a router or a bridge?
     There's no way to tell by inspecting the box. But if you run the "version" command you
     can tell whether the box is configured for routing or not:
 
# version
SpeedStream 5851 SDSL [ATM] Router (120-5851-012)
Efficient-5000 BOOT/POST V6.0.0 (18-Aug-00 16:15)
Software version v4.0.5.1 built Tue Sep 19 12:04:16 PDT 2000
Maximum users: unlimited
Options: SDSL, RFC1483, IP ROUTING, IP FILTERING, WEB, ~IPSEC, ~3DES,
         ~L2TP, ~ENCRYPT, BRIDGE, IPX
      
 

A tilde indicates that the option is not available in this router. So the above router has IP ROUTING but not IPSEC. The bridging-only devices will have a tilde on the IP ROUTING feature.

   * General Notes:
         o Changing the ethernet IP does require a reboot.
         o Adding port forwarding does not require a reboot.
         o Turning off RIP net IP does require a reboot.
   o The "save all" command commits your changes but does not save them. You must issue the 
     "sync" command to get them saved. "reboot" automatically does a sync.