Configuring A SOHO Router Flashcards
1
Q
Wireless Channels & Encryptions
A
- Configure for the highest encryption
- WPA2 - AES
- Choose WPA2 over WPA
-WEP is not an appropriate option
- Check your devices
- Not all allow highest encryption
-Use an open frequency
2
Q
Configuring NAT
A
- NAT = Network Address Translation
- For SOHO devices , this is automatic
- Source NAT , also called PAT (Port Address Translation)
- All internal devices are translated to a single external address
3
Q
Port Forwarding
A
- 24/7 Access to a service hosted internally
- Web server , gaming , server , etc
- External IP / port numbers maps to an internal IP / port
- Doesn’t have to be same port numbers
- Also called destination NAT or static NAT
- Destination address translated from public to private IP (Does not expire or timeout)
4
Q
Port Triggering
A
- Similar to port forward (not static)
- Internal client communication externally on a particular port
- Reverse port forward is dynamically created
- Only one person can trigger at a time
5
Q
Firewall & DMZ Ports
A
-Every SOHO router is also firewall
-No external device can directly access internal network
Normally cannot disable
- DMZ ports can be configured to allow unrestricted access
- Almost always a bad idea
- Consider creating more specific port forwarding rules
6
Q
Managing QoS
Quality of Service
A
- Change the priority of you r traffic
- Prioritize applications , ports or MAC address
- May cause applications to slow down
7
Q
Firmware Update
A
- Wireless firmware updates
- Doesn’t happen often
- Can have dramatic changes on wireless performance
- Can improve performance
- Can decrease performance
-May improve compatibility with chipsets from other devices
8
Q
Universal Plug & Play
UPnP
A
- Allows network devices to automatically configure & find other network devices
- Zero configuration
- Application on internal networks can open inbound parts using UPnP
- No approval needed
- Used for peer-to-peer (P2P) apps
-Best practice is to disable UPnP