Inhaltszusammenfassung zur Seite Nr. 1 
                    
                        LANCOM 3550 Wireless                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                
                    
                    Inhaltszusammenfassung zur Seite Nr. 2 
                    
                        © 2006 LANCOM Systems GmbH, Wuerselen (Germany). All rights reserved. While the information in this manual has been compiled with great care, it may not be deemed an assurance of product characteristics. LANCOM Systems shall be liable only to the degree specified in the terms of sale and delivery. The reproduction and distribution of the documentation and software included with this product is subject to written per- mission by LANCOM Systems. We reserve the right to make any alterations that ar
                    
                    Inhaltszusammenfassung zur Seite Nr. 3 
                    
                        LANCOM 3550 Wireless  Preface Preface Thank you for placing your trust in this LANCOM product. The combination of UMTS/HSDPA, WLAN, DSL and VPN opens up a completely new range of possibilities in enterprise connectivity—for example, mobile conferen-ce rooms that are connected via UMTS/HSDPA and offer Internet access over WLAN or access to the company network via VPN.  As a back-up connection for site coupling, UMTS/HSDPA is cheaper and faster than the conventional alternative, ISDN. Furthermore
                    
                    Inhaltszusammenfassung zur Seite Nr. 4 
                    
                        LANCOM 3550 Wireless  Preface  Systems design of the LCOS operating system  Configuration  Management  Diagnosis  Security  Routing and WAN functions  Firewall  Quality of Service (QoS)  Virtual Private Networks (VPN)  Virtual Local Networks (VLAN)  Wireless Networks (WLAN)  Backup Solutions  LANCAPI  Further server services (DHCP, DNS, charge management) This documentation was compiled … ...by several members of our staff from a variety of departments in order to ensure you the b
                    
                    Inhaltszusammenfassung zur Seite Nr. 5 
                    
                        LANCOM 3550 Wireless  Preface numbers and contact information for LANCOM Systems support can be found on a separate insert, or at the LANCOM Systems website.   Notes symbols Very important instructions. If not followed, damage may result.  Important instruction that should be followed.  Additional instructions which can be helpful, but are not  required. 5 EN                                                                                                                                       
                    
                    Inhaltszusammenfassung zur Seite Nr. 6 
                    
                        LANCOM 3550 Wireless  Contents Contents 1  Introduction 9 1.1  What is a Wireless LAN? 9 1.1.1  Which hardware to use? 9 1.1.2  Operation modes of Wireless LANs and base stations 9 1.2  The advantages of the UMTS/HSPDA solution 10 1.2.1  “Last mile“ via UMTS/HSPDA 10 1.2.2  Mobile conference room 11 1.2.3  UMTS/HSPDA Backup 12 1.3  What can your LANCOM Router do? 14 2  Installation 17 2.1  Package contents 17 2.2  System preconditions 17 2.3  Status displays, interfaces an hardware installation
                    
                    Inhaltszusammenfassung zur Seite Nr. 7 
                    
                        LANCOM 3550 Wireless  Contents 4  Setting up Internet access 38 4.1  Instructions for LANconfig 39 4.2  Instructions for WEBconfig 39 5  Setting up the UMTS profile 41 5.1  Internet access 41 5.2  VPN site coupling 44 5.3  Other settings 46 5.3.1  Choosing the mobile telephone network 46 5.3.2  Activate UMTS/GPRS profile 47 5.3.3  UMTS/HSPDA only or automatic UMTS/HSPDA/GPRS  selection 48 5.3.4  Set up a time limit 49 6  Point-to-point connections 50 6.1  Antenna alignment for P2P operations 51
                    
                    Inhaltszusammenfassung zur Seite Nr. 8 
                    
                        LANCOM 3550 Wireless  Contents 7  Security settings 56 7.1  Security for the Wireless LAN 56 7.1.1  Closed network 56 7.1.2  Access control via MAC address 57 7.1.3  LANCOM Enhanced Passphrase Security 57 7.1.4  Encryption of the data transfer 58 7.1.5  802.1x / EAP 59 7.1.6  IPSec over WLAN 60 7.2  Tips for handling keys 60 7.3  The security settings wizard 61 7.3.1  Wizard for LANconfig 61 7.3.2  Wizard for WEBconfig 62 7.4  The firewall wizard 62 7.4.1  Wizard for LANconfig 63 7.4.2  Configu
                    
                    Inhaltszusammenfassung zur Seite Nr. 9 
                    
                        LANCOM 3550 Wireless  Chapter 1: Introduction 1Introduction 1.1 What is a Wireless LAN? The following sections describe the functionality of wireless networks  in general. The functions supported by your device are listed in the table 'What can your LANCOM Router do?'. Detailed information on Wireless LANs can be found in the LCOS reference manual. A Wireless LAN connects single terminals (e.g. PCs or notebooks) to a local network (also LAN – Local Area Network). In contrast to a conventional 
                    
                    Inhaltszusammenfassung zur Seite Nr. 10 
                    
                        LANCOM 3550 Wireless  Chapter 1: Introduction  Larger Wireless LANs, connection to LANs with one or more base stations (infrastructure network)  Setting-up of an Internet access  Connecting two LANs via a direct radio link (point-to-point mode)  Connecting of devices with Ethernet interface via base stations (client mode)  Extending an existing Ethernet network with WLAN (bridge mode)  Relay function for connecting networks via multiple access points. 1.2 The advantages of the UMTS/HSPDA 
                    
                    Inhaltszusammenfassung zur Seite Nr. 11 
                    
                        LANCOM 3550 Wireless  Chapter 1: Introduction Internet Internet connection over UMTS/HSPDA For a regular Internet connection over UMTS/HSPDA, various net providers offer so called “homezone“ tariffs. With this tariff the data transfer within the homezone radio cell is usually far below the costs of the usual mobile tariffs where the data card is used in multiple radio cells. A special application is the use of a WLAN Access Point with UMTS/  HSPDA connection and LANCOM UMTS/VPN Option as a Hot
                    
                    Inhaltszusammenfassung zur Seite Nr. 12 
                    
                        LANCOM 3550 Wireless  Chapter 1: Introduction Internet connection over UMTS/HSPDA Internet VPN connection to headquarters Mobile WLAN, e.g. for a „mobile  conference room“. For a group of staff members, who e.g. often work together on projects at a customer’s location, a so-called mobile conference room can be established. The access point then only has to be configured once by the administrator; the staff members on location simply have to supply the device with power and slot in the data card
                    
                    Inhaltszusammenfassung zur Seite Nr. 13 
                    
                        LANCOM 3550 Wireless  Chapter 1: Introduction Internet connection over DSL Internet VPN connection to headquarters Brach office with VPN over DSL Backup connection over  and backup over UMTS/HSPDA UMTS/HSPDA As an alternative to the ISDN or analog backup method, a UMTS/HSPDA con- nection can assure the availability of the data connection. If the connection to the Internet is established by a router with LANCOM UMTS/VPN Option, the UMTS/HSPDA connection can directly replace the DSL connection in
                    
                    Inhaltszusammenfassung zur Seite Nr. 14 
                    
                        LANCOM 3550 Wireless  Chapter 1: Introduction LANCOM devices with more than one WAN interface (e.g. DSL and UMTS/ HSPDA interface) can be implemented flexibly in backup solutions. The backup event is triggered for example, when the default route is no longer available via the DSL interface. The device's UMTS/HSPDA interface can take its place further along in the backup chain should the the backup router also fail. Branch Headquarters Internet DSL UMTS/ HSPDA ISDN Further information to the con
                    
                    Inhaltszusammenfassung zur Seite Nr. 15 
                    
                        LANCOM 3550 Wireless  Chapter 1: Introduction LANCOM 3550  Wireless UMTS/HSPDA function for minternet connection, as mobile conference  ✔ room or as backup solution Wireless LAN Wireless transmission by IEEE 802.11g / IEEE 802.11b or wireless  ✔ transmission by IEEE 802.11a Simultaneous dual band operation possible with additional radio card ✔ Point-to-point mode (six P2P paths can be defined per WLAN inter- ✔ face) Relay function to link two P2P connections ✔ Turbo Mode: Double the bandwidth a
                    
                    Inhaltszusammenfassung zur Seite Nr. 16 
                    
                        LANCOM 3550 Wireless  Chapter 1: Introduction LANCOM 3550  Wireless DHCP and DNS server ✔ Connection to the WAN WAN connection for DSL or cable modem ✔ UMTS/HSPDA  connection via UMTS card in CardBus slot ✔ Internet access (IP router) Stateful Inspection Firewall ✔ Firewall filter (address, port) ✔ IP masquerading (NAT, PAT) ✔ Quality of Service ✔ VPN gateway 4 Digital certificates (X.509) incl. PKCS#12 4 Power supply 12 V via seperate power adapter (AC) ✔ Power-over-Ethernet (PoE) : proprietar
                    
                    Inhaltszusammenfassung zur Seite Nr. 17 
                    
                        LANCOM 3550 Wireless  Chapter 2: Installation 2 Installation This chapter will assist you to quickly install hardware and software. First, check the package contents and system requirements. The device can be installed and configured quickly and easily if all prerequisites are fulfilled. 2.1 Package contents Please check the package contents for completeness before starting the installation. In addition to the base station itself, the package should contain the following accessories: LANCOM 355
                    
                    Inhaltszusammenfassung zur Seite Nr. 18 
                    
                        LANCOM 3550 Wireless  Chapter 2: Installation 2.3 Status displays, interfaces an hardware installation 2.3.1 Status display Meanings of the LEDs In the following sections we will use different terms to describe the behaviour of the LEDs:  Blinking means, that the LED is switched on or off at regular intervals in the respective indicated colour.   Flashing means, that the LED lights up very briefly in the respective col- our and stay then clearly longer (approximately 10x longer) switched off.
                    
                    Inhaltszusammenfassung zur Seite Nr. 19 
                    
                        LANCOM 3550 Wireless  Chapter 2: Installation  Power   WLANLink   Power This LED indicates that the device is operational. After the device has been switched on, it will flash green for the duration of the self-test. After the self- test, either an error is output by a flashing red light code or the device starts and the LED remains lit green. off Device off green blinking Self-test when powering up green Device ready for use red/ blinking alternately Device insecure: configuration password 
                    
                    Inhaltszusammenfassung zur Seite Nr. 20 
                    
                        LANCOM 3550 Wireless  Chapter 2: Installation circumstances, you would assign a configuration password during the basic configuration (see instructions in the following chapter). Flashing Power-LED but no connection? There's no need to worry if the Power-LED blinks red and you can no longer connect to the WAN.This simply indicates that a preset time or connect-charge limit has been reached. There are three methods available for unlocking: Signal for reached time  or connect-charge   Reset conn