TENDA ONT XPON HG10CV2.0 Manual
TENDA ONT XPON HG10CV2.0 Manual
This guide is for reference only and does not imply that the product supports all functions in the guide. The functions
1
may differ with different product models or different versions of the same model. The actual product prevails.
www.tendacn.com
Copyright statement
© 2022-2024 Shenzhen Tenda Technology Co., Ltd. All rights reserved.
is a registered trademark legally held by Shenzhen Tenda Technology Co., Ltd. Other
brand and product names mentioned herein are trademarks or registered trademarks of their
respective holders. Copyright of the whole product as integration, including its accessories and
software, belongs to Shenzhen Tenda Technology Co., Ltd. No part of this publication can be
reproduced, transmitted, transcribed, stored in a retrieval system, or translated into any language
in any form or by any means without the prior written permission of Shenzhen Tenda Technology
Co., Ltd.
Disclaimer
Pictures, images and product specifications herein are for references only. To improve internal
design, operational function, and/or reliability, Tenda reserves the right to make changes to the
products without obligation to notify any person or organization of such revisions or changes.
Tenda does not assume any liability that may occur due to the use or application of the product
described herein. Every effort has been made in the preparation of this document to ensure
accuracy of the contents, but all statements, information and recommendations in this document
do not constitute a warranty of any kind, express or implied.
Preface
Thank you for choosing Tenda! This guide is a complement to Quick Installation Guide. The Quick
Installation Guide provides instructions for quick internet setup, while this guide contains details of
each function and demonstrates how to configure them.
Applicable product
This user guide walks you through all functions of the HGU products. All the screenshots herein,
unless otherwise specified, are taken from HG15V2.0.
Conventions
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions supported by different models or different versions of the same model may
differ. The actual product prevails.
The product figures and screenshots in this guide are for examples only. They may be different
from the actual products you purchased, but do not affect the normal use.
If the function or parameter is displayed in gray on the product web interface, the product model is
not supported or cannot be modified.
The typographical elements that may be found in this document are defined as follows.
i
The symbols that may be found in this document are defined as follows.
Symbol Meaning
This format is used to highlight a procedure that will save time or resources.
Technical support
Contact us if you need more help. We will be glad to assist you as soon as possible.
Email address: [email protected]
Website: www.tendacn.com
Revision history
Tenda is constantly searching for ways to improve its products and documentation. The following
table indicates any changes that might have been made since this guide was first published.
1. Added the description of the View VoIP port status, Band steering and
Inform report function.
2. Optimized the description of Get to know your device, Basic settings of
V1.1 2023-12-08
WLAN, WAN and Obtain an IPv4/IPv6 address automatically with
computer.
3. Optimized sentence expression.
ii
Contents
Get to know your device 1
Web UI 4
2.1 Login 4
2.2 Logout 6
2.3 Web UI layout 6
2.4 Common buttons 7
Quick registration 8
3.1 Configure GPON or EPON settings 8
3.2 Configure INTERNET settings 9
3.3 Configure Wi-Fi settings 10
Status 11
4.1 ONT status 11
4.2 Device list 15
LAN 17
5.1 LAN interface settings 17
5.2 DHCP 18
WLAN 21
6.1 Band steering 21
6.2 Basic settings 22
6.3 Access control 28
6.4 WPS 30
6.5 Status 39
6.6 Mesh 40
WAN 45
7.1 Overview 45
7.2 Bridge mode 53
7.3 Router mode 58
7.4 NAT 64
Services 65
8.1 Service 65
8.2 Firewall 70
VoIP 88
9.1 Set VoIP proxy 88
iii
9.2 Change advanced SIP settings 90
9.3 Set the forward mode 92
9.4 Set speed dial rules 93
9.5 Abbreviated dial 94
9.6 Set a dial plan 94
9.7 Set coding type 95
9.8 Set a hotline 96
9.9 Set the Don't Disturb mode 97
9.10 Set an alarm 97
9.11 Set fax protocol 98
Advance 99
10.1 Advanced settings 99
10.2 IP QoS settings 105
10.3 IPv6 settings 112
10.4 Energy saving configuration 118
Diagnostics 119
11.1 Ping and Tracert 119
11.2 Execute Ping to test connectivity 120
11.3 Execute Traceroute to test routing 121
11.4 Inform report 121
Admin 122
12.1 GPON/EPON settings 122
12.2 OMCI information 122
12.3 Commit/Reboot 123
12.4 Backup/Restore 123
12.5 WAN user 125
12.6 System log 126
12.7 Password 128
12.8 Auto logout time 129
12.9 Firmware upgrade 129
12.10 ACL 130
12.11 Time zone 132
12.12 Auto system maintenance 133
12.13 TR-069 134
12.14 Logout 135
Statistics 136
13.1 Interface statistics 136
13.2 PON statistics 137
Appendixes 138
A.1 Obtain an IPv4/IPv6 address automatically 138
A.2 Acronyms and abbreviations 143
iv
Document Version: V1.2
The LED indicators may vary with models. The actual product prevails.
TEL Green Blinking The ONT is registered with IMS and is transmitting data.
Off The ONT is not registered with IMS.
1
Document Version: V1.2
Solid on for 2
A WPS connection is established.
minutes
WPS Green
Blinking The WPS negotiation is ongoing.
Off The WPS function is not activated.
Solid on The USB port is connected. No data is being transmitted.
USB Green Blinking The USB port is transmitting data.
Off The USB port is disconnected.
The ports and buttons may vary with models. The actual product prevails.
Port/Button Description
PON Optical fiber port. Used to connect to optical network through an optical fiber cable.
PWR Used to connect the ONT to a power source using the included power adapter.
USB USB 2.0 port. Used to connect to a USB storage for resource sharing.
WLAN Wi-Fi on/off button. Press the button to enable or disable the Wi-Fi function of the ONT.
Telephone port. Used to connect to a telephone for voice service using a telephone
TEL
cable.
Gigabit LAN ports. Used to connect to such devices as routers, switches, computers or
LAN1-4
IPTV set-top boxes.
WPS/Reset button.
WPS: WPS-supported devices can connect to the Wi-Fi networks of the ONT without
entering the password through WPS negotiation.
Press the button for about 1-3 seconds to start the WPS negotiation process of the
ONT. The WPS (marked WLAN/2.4G/5G/WPS) LED indicator blinks quickly. Within 2
minutes, enable the WPS function to establish a WPS connection on a WPS-
supported device. For details, see WPS.
WPS/RST Reset: Restore the ONT to the preset configurations or restore the ONT to factory
settings.
− For the ONT with the preset configurations: After the ONT completes startup,
press the reset button (WPS/RST) for 8 to 20 seconds, and the ONT is restored
to the preset configurations. Press the reset button (WPS/RST) for more than
20 seconds, and the ONT is restored to the factory settings.
− For the ONT without the preset configurations: After the ONT completes
startup, press the reset (WPS/RST) button for more than 8 seconds, and the
ONT is restored to the factory settings.
2
Document Version: V1.2
Port/Button Description
LED indicator on/off button. Press the button to turn on or off the LED indicators of the
LED
ONT.
1.1.2 Label
The label is located on the body of the ONT. See the following figure for details.
Example: HG15
◼ Model: Model of the ONT
◼ Power: Power supply for the ONT
◼ IP Address: Default IP address used to log in to the web UI of the ONT
◼ SSID & Key: Default Wi-Fi name and password of the ONT
◼ Username & Password: Default user name and password used to log in to the web UI of the
ONT
◼ MAC: MAC address of the ONT
◼ PON SN: PON serial number of the ONT
◼ Serial No: Product serial number
3
Document Version: V1.2
2 Web UI
2.1 Login
A maximum of three users can log in to the web UI at the same time.
Procedure:
Some models support ON/OFF button. Press ON/OFF button (if any) to turn on the ONT.
Step 2 Connect a computer to a LAN port of the ONT using an Ethernet cable, or connect your
smartphone to the Wi-Fi network of the ONT.
Smartphone
Internet
LAN1-LAN4
Step 3 Start a web browser on a connected device and visit the IP address of the ONT
(192.168.1.1 by default). Enter your User Name and Password, and click Login.
4
Document Version: V1.2
You can log in to the web UI of the ONT with user permissions or administrator permissions.
Administrator permissions are for the installation and maintenance personnel only. Some functions are
available only when you use the administrator permissions to log in to the web UI of the ONT.
User Permissions: Able to view and modify partial configurations of the ONT. The default login
user name is admin. You can get the password from the bottom label on the ONT.
Administrator Permissions: Able to view and modify all configurations of the ONT. Some
configurations changed by the installation and maintenance personnel will affect the normal
operation of the ONT. Therefore, use the administrator permissions with caution. The default
login user name and password are both admin (or root).
----End
If the above page does not appear, try the following solutions:
Ensure that the ONT is powered on properly.
If a wired device, such as a computer, is used for configuration, ensure that the wired device is
connected to a LAN port of the router properly, and is set to Obtain an IP address automatically
and Obtain DNS server address automatically.
If a wireless device, such as a smartphone, is used for configuration, ensure that the wireless
device is connected to the Wi-Fi network of the ONT and the cellular network (mobile data) of the
client is disabled.
Restore the ONT to factory settings and try again.
5
Document Version: V1.2
2.2 Logout
The ONT logs you out when you:
− Click the Logout button on the upper-right corner of the web UI, or click Logout in
Admin > Logout.
− Perform no operation within the Auto Logout Time.
6
Document Version: V1.2
Button Description
7
Document Version: V1.2
3 Quick registration
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions may differ with different product models or different versions of the same
model. The actual product prevails.
For initial registration of the ONT, you can register the ONT through the quick registration function with
administrator permissions. When all settings are completed, you must click Apply Changes for the
configurations to take effect. After the ONT is registered successfully, you will be automatically
redirected to the web UI of the ONT when the network is detected by the ONT. You can click Advance
on the upper-right corner of the page to complete related configurations.
To access the page, log in to the web UI of the ONT. In the GPON Settings (or EPON Settings)
module, you can enter the parameters provided by your ISP to register the ONT.
You can view the registration status of the ONT on the PON status page.
8
Document Version: V1.2
Parameter description
Parameter Description
Specifies the unique identifier assigned to an ONT by the ISP. LOID is abbreviated for
LOID
Line Operation Identification, which can be used to identify the ONT.
Specifies the ONT password assigned by the ISP for managing the ONT and authorizing
LOID Password
users to access the device.
PLOAM Password Specifies the password used for authentication between the ONT and the OLT.
Specifies the OLT manufacturer with which the settings are compatible with. The
OMCI OLT Mode
default mode is recommended.
You can set up WAN connections to access different types of services or a combination of them,
including internet, TR069, voice and others. For more information about setting up WAN connections,
see WAN.
Parameter description
Parameter Description
9
Document Version: V1.2
Parameter Description
Specifies the type that you used to set up the WAN connection.
− IPoE: Select this type when the ONT automatically obtains the IP address
from the upstream device or ISP through DHCP without entering the user
name and password.
Service Type − Bridge: Select this type when this device only serves as a modem, and you
want to set up a dial-up connection or enter other internet parameters
directly on your computer for internet access.
− PPPoE: Select this type when your ISP provides a user name and password
to you for internet access.
UserName
Specify the PPPoE user name and password provided by your ISP for settings up the
WAN connection.
Password
To access the page, log in to the web UI of the ONT. In the WIFI Settings module, you can set the
parameters as required.
Parameter description
Parameter Description
Pre-Shared Key Specifies the password for connecting to the Wi-Fi network.
10
Document Version: V1.2
4 Status
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions may differ with different product models or different versions of the same
model. The actual product prevails.
To access the page, log in to the web UI of the ONT and navigate to Status > Status > Device.
11
Document Version: V1.2
Parameter description
Parameter Description
Specifies the basic system information of the ONT, including the device
name, uptime, software version, hardware version, magic number, CPU
System
usage, memory usage, DNS servers, IPv4 default gateway and IPv6 default
gateway.
Specifies the LAN IP address of the ONT, which is also the IP address used
IP Address
to log in to the web UI of the ONT.
LAN Subnet Mask Specifies the LAN subnet mask of the ONT.
Configuration
DHCP Server Specifies whether to enable the DHCP server of the ONT.
MAC Address Specifies the MAC address of the ONT’s LAN port.
IP Address
Specify the IP address and gateway address that the ONT obtains after
you set up a WAN connection successfully.
Gateway
12
Document Version: V1.2
To access the page, log in to the web UI of the ONT and navigate to Status > Status > IPv6.
Parameter description
Parameter Description
Prefix Delegation Prefix Specifies the IPv6 prefix of the LAN port of ONT.
Interface Specifies the name of the interface or WAN when IPv6 is enabled.
Specifies the IP address that the ONT obtains after you set up a WAN
IP Address
connection successfully.
13
Document Version: V1.2
Parameter Description
To access the page, log in to the web UI of the ONT and navigate to Status > Status > PON.
Parameter description
Parameter Description
Voltage Specifies the current voltage of the optical module of the ONT.
PON
Status
Tx Power
Specify the transmitted and received optical power of the ONT over the PON
port.
Rx Power
Bias Current Specifies the current bias current of the optical module of the ONT.
14
Document Version: V1.2
Parameter Description
EPON Specifies the state of the ONT, including Unregistered and unauthorized,
Auth state
Status Registered and certified and Registered and unauthorized.
To access the page, log in to the web UI of the ONT and navigate to Status > Status > VOIP Port.
15
Document Version: V1.2
Parameter description
Parameter Description
Device Name Specifies the name of device connected to the LAN port of the ONT.
MAC Address Specifies the MAC address connected to the LAN port of the ONT.
Parameter description
Parameter Description
Device Name Specifies the name of wireless device connected to the ONT.
MAC Address Specifies the MAC address of the wireless device connected to the ONT.
IPv4 Address Specifies the IPv4 address of the wireless device connected to the ONT.
IPv6 Address Specifies the IPv6 address of the wireless device connected to the ONT.
16
Document Version: V1.2
5 LAN
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions may differ with different product models or different versions of the same
model. The actual product prevails.
To access the page, log in to the web UI and navigate to LAN > LAN > LAN Interface Settings.
Parameter description
Parameter Description
Specifies the IPv4 LAN address of the ONT, which is also the IPv4 address for logging in
IP Address
to the web UI of the ONT.
Subnet Mask Specifies the IPv4 LAN subnet mask of the ONT.
17
Document Version: V1.2
Parameter Description
5.2 DHCP
5.2.1 Overview
The DHCP server can automatically assign IP addresses, subnet masks, gateway addresses and DNS
to LAN clients. When it is disabled, you need to manually configure the IP address information on
the LAN device to access the internet. Disable it only when necessary.
To access the page, log in to the web UI of the ONT and navigate to LAN > LAN > DHCP.
Parameter description
Parameter Description
Specifies the current LAN IP address of the ONT, which is also the IP address used to
LAN IP Address
log in to the web UI of the ONT.
18
Document Version: V1.2
Parameter Description
IP Pool Range Specifies the range of IP addresses that a DHCP server can assign to LAN clients.
Specifies the valid time of the IP addresses assigned by the DHCP server of the ONT
Max Lease Time
to the DHCP clients.
Specifies how the ONT assigns DNS server addresses to LAN clients.
− Use DNS Proxy: The ONT forwards the DNS query packets from LAN clients
DNS option to an external DNS server.
− Set Manually: You need to set the DNS server address manually. You can
set three DNS servers at most, and at least one is required.
Used to configure the Port-Based Filtering. When the port is selected, it means that
Port-Based Filter
the address assigned by the gateway cannot be obtained through DHCP.
Used to assign fixed IP addresses to certain LAN clients based on their MAC
addresses. Devices with the MAC address connected to the ONT get the same IP
address every time.
MAC-Based
Assignment
Note the format of the MAC address. Use “-” to separate every two characters in the
MAC address.
Solution: You can reserve a fixed IP address for the FTP server to reach the requirement.
Assume that:
− Fixed IP address reserved for the FTP server: 192.168.1.136
− MAC address of the FTP server host: D4:61:DA:1B:CD:89
19
Document Version: V1.2
Procedure:
----End
Now you can access resources on the FTP server free from the influence of the dynamic IP address.
20
Document Version: V1.2
6 WLAN
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions may differ with different product models or different versions of the same
model. The actual product prevails.
Parameter description
Parameter Description
Band Steering Specifies whether to enable the band steering function.
SSID Name Specifies the Wi-Fi name (SSID) of the Wi-Fi network.
Password Specifies the password for connecting to the Wi-Fi network.
2.4GHz to 5GHz
Specifies the signal strength of switching 2.4 GHz to 5 GHz Wi-Fi networks.
WiFi RSSI
5GHz to 2.4GHz
Specifies the signal strength of switching 5 GHz to 2.4 GHz Wi-Fi networks.
WiFi RSSI
21
Document Version: V1.2
− WLAN settings are only available on ONTs with the wireless function. The dual-band ONT
supports both 2.4 GHz and 5 GHz, and the single-band ONT supports 2.4 GHz.
− WLAN (2.4 GHz) and WLAN (5 GHz) configurations are similar. WLAN (2.4 GHz) is used for
illustration in this part.
On this page, you can set basic parameters of the Wi-Fi network of the ONT, such as enabling or
disabling the Wi-Fi network, setting band and SSID (Wi-Fi name). You can also set password to
secure your Wi-Fi network.
To access the page, log in to the web UI of the ONT and navigate to WLAN > wlan1 (2.4 GHz) >
Basic Settings.
Parameter description
Parameter Description
Disable WLAN
Specifies whether to disable the Wi-Fi network.
Interface
SSID Index Used to select the corresponding SSID to configure the parameters. AP is the primary SSID.
22
Document Version: V1.2
Parameter Description
23
Document Version: V1.2
Parameter Description
WPA Cipher
Suite Specify the encryption algorithm used for WPA. Advanced Encryption Standard (AES) is
selected by default. When selected, clients adopting the corresponding encryption algorithm
WPA2 Cipher can connect to the Wi-Fi network.
Suite
Password Specifies the password for connecting to the Wi-Fi network.
Specifies whether to hide the SSID of the Wi-Fi network.
− Enabled means that the SSID is displayed.
Broadcast SSID
− Disabled means that the SSID is hidden, and you need to enter the SSID of the Wi-
Fi network manually to connect to it.
24
Document Version: V1.2
Parameter Description
Some models support Auto (DFS). With this function enabled, the ONT will automatically
detect the frequency of the radar system. When the ONT detects radar signals in the same
frequency as the ONT itself, the ONT will automatically switch to another frequency to avoid
interference with the radar system.
Radio Power You can set the intensity of the radio power of the ONT. A higher radio power brings a wider
(%) coverage of Wi-Fi coverage.
---End
25
Document Version: V1.2
After completing the configuration, you can search the SSID on your Wi-Fi-enabled devices and
connect to it to access the internet.
If the Broadcast SSID function is disabled, the WPS function is also disabled.
After the configuration is completed, the SSID (Wi-Fi name) of the 2.4 GHz network is hidden, but
you can connect to the Wi-Fi network by entering its SSID and other required parameters.
26
Document Version: V1.2
Step 7 (Optional) Repeat Step 2 to Step 6 to set the Wi-Fi password for other SSIDs.
Step 8 Click Apply Changes.
---End
After the configuration is completed, you can connect the Wi-Fi networks using the Wi-Fi password
you set.
27
Document Version: V1.2
Parameter description
Parameter Description
28
Document Version: V1.2
Step 3 Select Allow List for Mode, and click Apply Changes.
Step 4 Enter 8E5B54F6E100 in MAC Address, and click Add.
After the configuration is completed, the added devices are listed in Current Access Control List,
and only the smartphone and tablet can connect to the Wi-Fi network.
If the MAC address of a device is added in the Deny List mode, the device will fail to access the Wi-Fi
network and a message indicating incorrect password will be displayed on the device.
29
Document Version: V1.2
6.4 WPS
6.4.1 Overview
The Wi-Fi Protected Setup (WPS) function enables wireless clients that support WPS, such as
smartphones, to connect to the Wi-Fi network of the ONT quickly and easily.
There are four methods to connect to the Wi-Fi network of the ONT through WPS.
− Connect to the Wi-Fi network using the WPS/RST button
− Connect to the Wi-Fi network using PBC on the web UI
− Connect to the Wi-Fi network by entering PIN code of clients on the ONT
− Connect to the Wi-Fi network by entering PIN code of the ONT on clients
The WPS function can also be used to network the ONT with devices that support the standard
Mesh function using the following two methods:
− Network Mesh devices using the WPS/RST button
− Network Mesh devices using PBC on the web UI
30
Document Version: V1.2
---End
Wait a moment until the WPS negotiation is completed, and the smartphone is connected to the
Wi-Fi network.
If multiple wireless networks are enabled in a frequency band, the main network is connected by
default.
To use the WPS function, the encryption mode of the wireless network must be not encrypted,
WAP2 or encryption contains WPA2.
31
Document Version: V1.2
Step 2 Configure the WPS function on your wireless devices within 2 minutes. Configuration on
various devices may differ (Example: HUAWEI P10 smartphone).
1. Find Settings on the smartphone.
2. Choose WLAN.
32
Document Version: V1.2
---End
Wait a moment until the WPS negotiation is completed, and the smartphone is connected to the
Wi-Fi network.
If multiple wireless networks are enabled in a frequency band, the main network is connected by
default.
To use the WPS function, the encryption mode of the wireless network must be not encrypted,
WAP2 or encryption contains WPA2.
33
Document Version: V1.2
Connect to the Wi-Fi network by entering PIN code of clients on the ONT
Step 1 Find the PIN code of the client. (The method differs with devices. HUAWEI P10
smartphone is used for illustration here.)
1. Find Settings on the smartphone.
2. Choose WLAN.
3. Tap , and choose WLAN settings.
34
Document Version: V1.2
4. Choose WPS PIN connection, and record the PIN code of the client.
---End
After the ONT and the client finish WPS negotiation, the client connects to the Wi-Fi network of
the ONT successfully.
If multiple wireless networks are enabled in a frequency band, the main network is connected by
default.
To use the WPS function, the encryption mode of the wireless network must be not encrypted,
WAP2 or encryption contains WPA2.
35
Document Version: V1.2
Connect to the Wi-Fi network by entering PIN code of the ONT on clients
This method is usually used on Wi-Fi network adapters. Refer to the user guide of the Wi-Fi network
adapter for configuration details.
Step 3 Enter the PIN code on the wireless device that supports WPS connection using PIN code.
---End
Wait a moment until the WPS negotiation is completed, and the wireless device is connected to
the Wi-Fi network.
If multiple wireless networks are enabled in a frequency band, the main network is connected by
default.
To use the WPS function, the encryption mode of the wireless network must be not encrypted,
WAP2 or encryption contains WPA2.
36
Document Version: V1.2
The ONT with the Mesh function enabled can work only as the primary node (controller) to
network with devices that support the Mesh protocol. Mesh protocol includes EasyMesh and
Xmesh. EasyMesh function and Xmesh function cannot be configured at the same time.
Do not disable the Wi-Fi function after the Mesh networking is completed successfully. Otherwise,
the Mesh networking will fail.
A maximum of eight secondary nodes (Mesh devices) can be connected to the Mesh network.
If you want to network multiple devices, network them one by one.
Wait a moment and navigate to WLAN > Mesh > Topology. If the corresponding Mesh agent is
displayed on the page, the Mesh device is networked successfully. For details, see Mesh.
37
Document Version: V1.2
Step 2 Within 2 minutes, hold down the Mesh button of the Mesh device (as a secondary node)
to be networked, and the Mesh device will negotiate with the ONT for Mesh networking.
For more details, refer to the user guide of the corresponding Mesh device.
---End
Wait a moment and navigate to WLAN > Mesh > Topology. If the corresponding Mesh agent is
displayed on the page, the Mesh device is networked successfully. For details, see Mesh.
38
Document Version: V1.2
6.5 Status
On this page, you can check the information and status of the Wi-Fi network you set up, including
those virtual AP Wi-Fi networks.
To access the page, log in to the web UI of the ONT and navigate to WLAN > wlan1 (2.4 GHz) >
Status.
Parameter description
Parameter Description
Band Specifies the wireless band and protocol of the Wi-Fi network.
SSID
Channel Number Specifies the channel in which the Wi-Fi network works.
Basic Service Set Identifier (BSSID) is used to describe sections of a wireless local
BSSID area network. This service set is the MAC address of the AP’s radio for clients to
identify and connect to.
39
Document Version: V1.2
Parameter Description
You can view the clients that connect to the Wi-Fi network by clicking show clients.
− MAC Address: It specifies the MAC address of the client connected to the
Wi-Fi network.
− Tx Packets: It specifies the number of transmitted packets of the client
show client through the Wi-Fi network.
− Rx Packets: It specifies the number of received packets of the client
through the Wi-Fi network.
− Tx Rate (Mbps): It specifies the transmitting rate of the Wi-Fi network.
− RSSI: It specifies the signal strength of the client received by the AP.
6.6 Mesh
6.6.1 Mesh Interface Setup
The ONT with the Mesh function enabled can work only as the primary node (controller) to
network with devices that support the standard Mesh protocol. Mesh protocol includes EasyMesh
and Xmesh. EasyMesh and Xmesh function cannot be configured at the same time.
Do not disable the Wi-Fi function after the Mesh networking is completed successfully. Otherwise,
the Mesh networking will fail.
A maximum of eight secondary nodes (Mesh devices) can be connected in the Mesh network.
If you want to network multiple devices, network them one by one.
On this page, you can enable or disable the Mesh function, and set the Mesh mode and device
name when the Mesh function is enabled. By default, the Mesh function is enabled and the role of
the ONT is fixed to controller. For details, see Network Mesh devices using the WPS/RST button
and Network Mesh devices using PBC on the web UI.
To access the page, log in to the web UI of the ONT and navigate to WLAN > Mesh > Mesh
Interface Setup.
40
Document Version: V1.2
Parameter description
Parameter Description
Disable Mesh Specifies whether the Mesh function is enabled. It is enabled by default.
Specifies the Mesh mode of the ONT, including EasyMesh and Xmesh.
EasyMesh: It indicates a public authentication protocol. If the EasyMesh
standard followed by the router and ONT is consistent, networking can be
Mesh Mode
performed.
Xmesh: It is defined by Tenda, and can only be used with specific Tenda
routers for networking. The actual Tenda routers prevail.
Device Name Specifies the name of the controller, that is, the ONT.
Specifies the role of the ONT in the Mesh network. It is fixed to Controller and
Role
cannot be modified.
Specifies whether the frequency band roaming function is enabled when Xmesh is
selected. After the function is enabled, the ONT will automatically connect to the
Steerd
better frequency band roaming to realize the conversion between 2.4G roaming
and 5G roaming. It is disabled by default.
6.6.2 Topology
On this page, you can see the information of all nodes in the Mesh network, including the node
role, MAC address and IP address.
To access the page, log in to the web UI of the ONT and navigate to WLAN > Mesh > Topology.
For more details, click Show Details. The following page is displayed.
41
Document Version: V1.2
Parameter description
Parameter Description
Specifies the MAC address of the Mesh device networked with the
MAC Address
current node.
Specifies the name of the Mesh device networked with the current
Name
Neighbor RSSI node.
(excluding
parent AP) Specifies the signal strength of the Mesh device networked with the
RSSI
current node.
Specifies the band used for networking between the Mesh device
Connected Band
and the current node.
Specifies the band used for networking between the client (such as a
Station Info Connected Band
smartphone) and the current node.
42
Document Version: V1.2
To access the page, log in to the web UI of the ONT and navigate to WLAN > Mesh > Access
Control.
Parameter description
Parameter Description
Specifies the control mode of the client. It is Deny by default, which means that clients
Mode
with the MAC addresses added to the list cannot connect to the Wi-Fi network.
---End
43
Document Version: V1.2
After the configuration is completed, the added devices are listed in Current Access Control List,
and the smartphone cannot connect to the Wi-Fi network.
---End
After the configuration is completed, the smartphone can connect to the Wi-Fi network again.
If you want to remove all added devices from the blacklist, you can click Delete All.
44
Document Version: V1.2
7 WAN
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions may differ with different product models or different versions of the same
model. The actual product prevails.
7.1 Overview
After you have registered the ONT successfully, you can set up the WAN connection.
To access the page, log in to the web UI of the ONT and navigate to WAN > WAN > PON WAN.
Required settings for WAN connections differ with the service types, connection types and IP
protocols that you choose.
45
Document Version: V1.2
This part shows the common settings in all types of WAN connections.
Parameter description
Parameter Description
Enable VLAN
If the WAN connection you want to set up includes VLAN information, you can select
Enable VLAN and set the VLAN ID as required.
VLAN ID
This parameter is available only when the Enable VLAN function is enabled. It specifies
802.1p_Mark the 802.1P priority. Data with a larger priority value takes a higher priority to be
processed.
46
Document Version: V1.2
Parameter Description
Multicast Vlan ID: The VLAN ID should meet the VLAN range specified by 802.1Q. The ONT can only
[1-4094] forward multicast packets of this VLAN.
Specifies the type that you used to set up the WAN connection.
− Bridged: Select this type when this device only serves as a modem, and you
want to set up a dial-up connection or enter other internet parameters
directly on your computer for internet access.
− IPoE: Select DHCP if your ISP does not provide any parameters to you for
Service Type internet access, and select Fixed IP if your ISP provides a static IP address
and other related information to you for internet access.
− PPPoE: Select this type if your ISP provides a user name and password to you
for internet access.
Specifies the WAN connection type. Choose the proper connection type as required by
your ISP, including Other, TR069, INTERNET, INTERNET_TR069, VOICE, VOICE_TR069,
VOICE_INTERNET, and VOICE_INTERNET_TR069.
WAN Type
If Other is selected, certain interfaces in Port Mapping must be for the WAN
connection to forward packets. If INTERNET is selected, when certain interfaces in Port
Mapping are not selected, the packets will be forwarded according to the route table.
Maximum Transmission Unit (MTU) is the largest data packet transmitted by a network
device. When the service type is PPPoE, the default MTU value is 1492. When the
MTU: [1280-1492]
service type is IPoE, the default MTU value is 1500. Do not change the value unless
necessary.
Specifies whether to enable the Internet Group Management Protocol (IGMP) Proxy. If
you are not sure, keep the default setting or consult your ISP.
Enable IGMP-Proxy IGMP Proxy is used to manage multicast data and reduce traffic replication. IGMP
proxy enables a device to issue IGMP host messages on behalf of its users, reducing
IGMP messages and the load for the uplink device.
47
Document Version: V1.2
You can configure the WAN IPv4 address information in this part.
This part needs to be configured only when Service Type is set to IPoE and IP Protocol is set to
IPv4 or IPv4/IPv6.
Parameter description
Parameter Description
Specifies the method used by the ONT to obtain WAN IP address information.
− Fixed IP: You need to configure the local IP address, remote IP address (gateway
Type address) and other related information manually.
− DHCP: The ONT obtains WAN IP address information automatically. Choose this
type if your ISP does not provide related parameters.
Local IP
Address
If you select Fixed IP for Type, you should manually enter the IP address and related
Gateway information provided by your ISP.
Subnet Mask
If the IP address is obtained through DHCP, you can select Request DNS to obtain the DNS
Request DNS
server address automatically.
48
Document Version: V1.2
Parameter Description
Primary DNS If the IP address obtaining type is Fixed IP or Request DNS function is disabled when the IP
Server address obtaining type is DHCP, you should enter the DNS server address provided by your
ISP.
Secondary DNS
Server If the ISP only provides one DNS server address, you can leave the secondary DNS blank.
You can configure the WAN IPv6 address information in this part.
When IP Protocol is set to IPv6 or IPv4/IPv6, and Service Type is set to IPoE or PPPoE, these
parameters are required.
49
Document Version: V1.2
Parameter description
Parameter Description
Specifies how the WAN IPv6 address of the ONT is obtained, including Stateless
DHCPv6(SLAAC), Static, Stateful DHCPv6 and Auto Detect Mode.
− Stateless DHCPv6(SLAAC): Stateless Address Autoconfiguration (SLAAC) is a
dynamic allocation method of IPv6 address, which enables the ONT to auto-
generate IPv6 addresses with local information and those from the router
advertisement.
Address Mode − Static: You need to enter parameters related to IPv6 address manually.
− Stateful DHCPv6: The DHCPv6 server assigns IPv6 addresses to all DHCPv6
clients while keeping track of what IPv6 address has been assigned to what
client. In IPv6, only routers sending router advertisement messages can
provide a default gateway address dynamically.
− Auto Detect Mode: Network hosts get configured with IPv6 addresses
automatically.
Specifies the IPv6 address and prefix length provided by your ISP when you select Static
IPv6 Address
for Address Mode.
Specifies the IPv6 gateway address of the ONT when you select Static for Address
IPv6 Gateway
Mode.
Request Options You can enable the ONT to obtain the prefix as a DHCPv6 client.
Request DNS When Request DNS is set to on, the ONT obtains the IPv6 DNS server address from the
DHCPv6 server.
Primary IPv6 DNS
When Request DNS is set to off, you need to set the primary and secondary DNS server
addresses manually.
Secondary IPv6 DNS
50
Document Version: V1.2
Parameter description
Parameter Description
UserName
Specify the PPPoE user name and password for settings up the WAN connection.
Password
Specifies the PPPoE server name used by the PPPoE server to verify the legitimacy of the
ONT.
AC-Name
If your ISP did not provide the AC name, leave this field blank. Otherwise, a dial failure
may occur.
Specifies the PPPoE service name used by the PPPoE server to verify the legitimacy of
the ONT.
Service-Name
If your ISP did not provide a service name, leave this field blank. Otherwise, a dial failure
may occur.
51
Document Version: V1.2
− If the Service Type is set to Bridged and the Connection Type is set to Other, the corresponding
LAN port is required to be selected.
− If the Service Type is set to IPoE or PPPoE, you can leave this field blank.
− The actual service type and web UI of the product prevail
52
Document Version: V1.2
When the ONT is under bridge mode, you can only access the internet through the downstream device
used for setting up internet access.
Under bridge mode, the ONT acts as a bridging device between your LAN and your ISP. The ONT
works under bridge mode by default.
Internet
Computer Router
LAN1-LAN4
WAN port
Optical fiber cord Ethernet cable
When the ONT is set to the bridge mode, you can configure the related parameters of the ONT
according to your ISP and your own need.
Procedure:
Step 1 Log in to the web UI of the ONT, and navigate to WAN > WAN > PON WAN.
Step 2 Set WAN Name.
Step 3 Tick Enable VLAN.
Step 4 Enter the VLAN ID provided by your ISP.
53
Document Version: V1.2
---End
After the configuration is completed, you can configure a computer or a router to dial-up.
54
Document Version: V1.2
Configure your computer to access the internet according to the parameters provided by your ISP.
PPPoE is used for illustration here.
Procedure:
55
Document Version: V1.2
Step 7 Enter the PPPoE User name and Password provided by your ISP and click Connect.
---End
After the configuration is completed, you can access the internet on the computer.
56
Document Version: V1.2
Step 2 Connect the WAN port of router to a LAN port of the ONT using an Ethernet cable.
Internet Router
LAN1-LAN4
WAN port
Step 3 Refer to the quick installation guide or user guide of your router to configure the internet
access.
---End
After the configuration is completed, you can access the internet through the router.
57
Document Version: V1.2
Step 6 Configure WAN IP Settings or (and) IPv6 WAN Setting based on the IP protocol you
choose.
− In the WAN IP Settings part, set Type to Fixed IP and configure other parameters as
required.
58
Document Version: V1.2
− In the IPv6 WAN Setting part, set Address Mode to Static and configure other
parameters as required.
After the configuration is completed, you can access the internet through the LAN ports or Wi-Fi
networks of the ONT, or by connecting a router (connection type: DHCP or dynamic IP) to a LAN
port of the ONT.
59
Document Version: V1.2
Step 6 Configure WAN IP Settings or (and) IPv6 WAN Setting based on the IP protocol you
choose.
− In the WAN IP Settings part, set Type to DHCP and configure other parameters as
required.
− In the IPv6 WAN Setting part, set Type to Stateless DHCPv6(SLAAC) and configure
other parameters as required.
60
Document Version: V1.2
After the configuration is completed, you can access the internet through the LAN ports or Wi-Fi
networks of the ONT, or by connecting a router (connection type: DHCP or dynamic IP) to a LAN
port of the ONT.
61
Document Version: V1.2
Step 1 Log in to the web UI of the ONT, and navigate to WAN > WAN > PON WAN.
Step 2 Set WAN Name.
Step 3 Set Service Type to PPPoE.
Step 4 Choose an IP Protocol in the drop-down list.
Step 5 Set other common WAN parameters as required by your ISP.
Step 6 Enter the PPPoE UserName and Password provided by your ISP in PPP Settings.
62
Document Version: V1.2
Step 7 (Optional) If you set IP Protocol to IPv6 or IPv4/IPv6, enter required parameters in IPv6
WAN Setting.
Step 8 (Optional) Configure Port Mapping as required.
After the configuration is completed, you can access the internet through the LAN ports or Wi-Fi
networks of the ONT, or by connecting a router (connection type: DHCP or dynamic IP) to a LAN
port of the ONT.
63
Document Version: V1.2
7.4 NAT
NAT is abbreviated for Network Address Translation, which enables multiple devices in the LAN to
share one or more public IP addresses to access the internet and hide the LAN devices, so that the
internet cannot directly access the LAN devices, providing certain security for the LAN.
The NAT function is suitable for scenarios where there are few public network addresses but many
private network users need to access the internet. You can select the NAT type according to the
actual security level requirements. The security level is as follows: NAT4 > NAT2 > NAT1.
To access the page, log in to the web UI of the ONT and navigate to WAN > WAN > NAT.
Parameter description
Parameter Description
Specifies the full cone NAT, which maps all requests from the IP address and
port of the private network to the same IP address and port of the public
NAT1 network. Any host of the public network can communicate with the host of
the private network by sending the message to the mapped IP address and
port of the public network.
Specifies the restricted cone NAT, which maps all requests from the IP
address and port of the private network to the same IP address and port of
the public network. The host of the public network can send the message to
NAT2 the host of the private network only if the host of the private network has
Nat Type
sent the message to the host of the public network before. Compared with
NAT1, NAT2 has the address restrictions. IP address is restricted, but port is
not restricted.
Specifies the symmetric NAT. All requests sent from the IP address and port
of the same private network to the specific destination IP address and port
will be mapped to the same IP address and port. The host of the public
NAT4
network can send the message to the host of the private network only if the
host of the private network has sent the message to the host of the public
network before.
64
Document Version: V1.2
8 Services
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions may differ with different product models or different versions of the same
model. The actual product prevails.
8.1 Service
8.1.1 Dynamic DNS
Overview
The Dynamic DNS (DDNS) maps the WAN IP address (changeable public IP address) of the ONT to a
domain name for dynamic domain name resolution. This ensures proper operation of functions
that involve the WAN IP address of the ONT, such as port forwarding and Demilitarized Zone
(DMZ).
To access the page, log in to the web UI of the ONT and navigate to Services > Service > Dynamic
DNS.
65
Document Version: V1.2
Parameter description
Parameter Description
Enable Specifies whether the rule takes effect after being added.
Specifies the DDNS service provider. The ONT supports DynDNS.org and No-
IP.
DDNS Provider You need to register and purchase services from one of these service
providers and use the parameters provided by the service provider to
configure the function on the ONT.
Interface Specifies the WAN interface on which the dynamic DNS rule takes effect.
UserName Specify the user name and password registered on a DDNS service provider
for logging in to the DDNS service.
Password These fields are only available when the service provider is set to DynDNS.org
and No-IP.
Requirement: Open the FTP server to internet users and enable yourself to access the resources of
the FTP server from the internet using a domain name when you are not at home.
Solution: You can configure the DDNS plus port forwarding functions to reach the requirement.
Assume that the information of the FTP server includes:
− IP address: 192.168.1.136
− Service port: 21
66
Document Version: V1.2
Please ensure that the ONT obtains a public IP address. This function may not work on a host with an
IP address of a private network or an intranet IP address assigned by ISPs that start with 100. Common
IPv4 addresses are classified into class A, class B and class C. Private IP addresses of class A range from
10.0.0.0 to 10.255.255.255. Private IP addresses of class B range from 172.16.0.0 to 172.31.255.255.
Private IP addresses of class C range from 192.168.0.0 to 192.168.255.255.
Internet
Computer
Procedure:
67
Document Version: V1.2
7. Click Add.
After the configuration is completed, users from the internet can access the FTP server by visiting
“Intranet service application layer protocol name://Domain name”. If the remote port number is
not the same as the default intranet service port number, the accessing address should be:
“Intranet service application layer protocol name://Domain name:Remote port number”.
In this example, the address is ftp://o2849z7222.zicp.vip.
To access the FTP server from the internet with a domain name:
Open the file explorer on a computer that can access the internet, and visit
ftp://o2849z7222.zicp.vip.
Enter the user name and password to access the resources on the FTP server.
68
Document Version: V1.2
After the configuration is completed, if internet users still cannot access the FTP server, try the
following methods:
− Ensure that the local port number configured in the port forwarding function is the same as the
intranet service port number set on the server.
− Close the firewall, antivirus software and security guards on the host of the FTP server and try
again.
8.1.2 UPnP
UPnP is short for Universal Plug and Play. This function enables the ONT to open port automatically
for UPnP-based programs. It is generally used for P2P programs, such as BitComet and AnyChat,
and helps increase the download speed.
To access the page, log in to the web UI of the ONT and navigate to Services > Service > UPnP.
69
Document Version: V1.2
8.2 Firewall
8.2.1 ALG
Application Layer Gateway (ALG) is a software component that manages specific application
protocols such as Session Initiation Protocol (SIP) and File Transfer Protocol (FTP). The ALG acts as
an intermediary between the internet and an application server and allows or denies traffic of
certain types to the application server. It does this by intercepting and analyzing the specified
traffic, allocating resources, and defining dynamic policies to allow traffic to pass through.
To access the page, log in to the web UI of the ONT and navigate to Services > Firewall > ALG.
Parameter description
Parameter Description
The File Transfer Protocol (FTP) is a standard network protocol used for the transfer of
FTP computer files between a client and server on a computer network.
The users on LAN can share resources on the FTP server on WAN only when it is selected.
The Trivial File Transfer Protocol (TFTP) is a simple file transfer protocol that allows a client to
TFTP
get a file from or put a file onto a remote host.
70
Document Version: V1.2
Parameter Description
The Real Time Streaming Protocol (RTSP) is a network control protocol designed for use in
entertainment and communications systems to control streaming media servers. The
RTSP protocol is used for establishing and controlling media sessions between end points.
The users on LAN can view videos on demand when this function is enabled.
The Layer Two Tunneling Protocol (L2TP) is an extension of the Point-to-Point Tunneling
Protocol (PPTP) used by an Internet Service Provider (ISP) to enable the operation of a Virtual
L2TP Private Network (VPN) over the Internet.
If you select L2TP protocol when you create a VPN connection on your computer in the LAN
of the ONT, it takes effect only when this function is enabled.
The Internet Protocol Security (IPsec) is a secure network protocol suite that authenticates
and encrypts the packets of data to provide secure encrypted communication between two
IPSec computers over an IP network. It is used in Virtual Private Networks (VPNs).
If you select IPsec protocol when you create a VPN connection on your computer in the LAN
of the ONT, it takes effect only when this function is enabled.
The Session Initiation Protocol (SIP) is a signaling protocol used for signaling and controlling
multimedia communication sessions in applications of internet telephony for voice and video
calls, in private IP telephone systems, in instant messaging over IP networks as well as
SIP smartphone calling over LTE (VoLTE).
The IP phone function can be used on the computers connected to the ONT only when this
function is enabled.
The Point-to-Point Tunneling Protocol (PPTP) is an obsolete method for implementing virtual
private networks. PPTP has many well-known security issues.
PPTP
If you select the PPTP protocol when you create a VPN connection on your computer in the
LAN of the ONT, it takes effect only when this function is enabled.
To access the page, log in to the web UI of the ONT and navigate to Services > Firewall > IP/Port
Filtering. The rules added are shown in the Current Filter Table.
71
Document Version: V1.2
Parameter description
Parameter Description
Specify the default action for the outgoing (LAN -> WAN) or incoming (WAN ->
LAN) data.
Outgoing Default Action
− BlackList: By default, all incoming traffic is blocked. However, some
traffic can access by specific filtering rules. The incoming filtering rules
allow traffic to pass in some conditions.
− WhiteList: By default, all outgoing traffic from LAN is allowed, but
Incoming Default Action
some can be blocked by specific filtering rules. Outgoing filtering rules
can block outgoing traffic under some conditions.
72
Document Version: V1.2
Parameter Description
Specifies the source IP address of the packets. The settings of Source IP Address
and Subnet Mask determine which computers are affected by this rule.
− When Direction is set to Outgoing, this parameter specifies the LAN
Source IP Address computer’s IP address to be affected.
− When Direction is set to Incoming, this parameter specifies the
internet computer’s IP address to be affected.
− When this parameter is left blank, all IP addresses are covered.
Since the source port of the data packet is changeable, it is recommended that
the port be set to 1 to 65535 or left blank.
Specifies the destination port of the packets. Its setting determines which
Port services are affected by this rule.
The destination port is only for TCP and UDP protocol.
73
Document Version: V1.2
Parameter description
Parameter Description
Specify the default action for the outgoing (LAN -> WAN) or incoming (WAN ->
Outgoing Default Action LAN) data.
− BlockList: By default, all incoming traffic is blocked. However, some
traffic can access by specific filtering rules. The incoming filtering rules
allow traffic to pass in some conditions.
− WhiteList: By default, all outgoing traffic from LAN is allowed, but
Incoming Default Action
some can be blocked by specific filtering rules. Outgoing filtering rules
can block outgoing traffic under some conditions.
Source MAC Address Specify the source and destination MAC addresses of data packets.
74
Document Version: V1.2
Parameter Description
You can only enter one source MAC address and destination MAC address in
one MAC filtering rule.
Solution: You can configure the MAC address filter function to reach the requirement.
75
Document Version: V1.2
---End
In this example, after the configuration is completed, the device added cannot access the internet
through the ONT.
76
Document Version: V1.2
Parameter description
Parameter Description
Comment You can specify a comment for the rule for easy retrieval.
Local IP Specifies the IP address of the LAN host which runs the service to be accessed.
Local Port Specifies the port used for the LAN service.
Protocol Specifies the service protocol. Select Both if you are uncertain about the service type.
Specifies the IP address of the host which needs to access the local service.
Remote IP
When it is left blank, users with any IP address can access the local server.
Remote Port Specifies the port that internet users use to access the local service.
Interface Specifies the WAN interface through which internet users access the local service.
Solution: You can configure the port forwarding function to reach the requirement.
Assume that the information of the FTP server includes:
− Local IP address: 192.168.1.136
− Remote IP address: 192.168.2.100
− MAC address: D4:61:DA:1B:CD:89
− Service port: 21
− The WAN IP address of the router: 102.33.66.88
77
Document Version: V1.2
Please ensure that the router obtains an IP address from the public network. This function may
not work on a host with an IP address of a private network or an intranet IP address assigned by
ISPs that start with 100. Common IPv4 addresses are classified into class A, class B and class C.
Private IP addresses of class A range from 10.0.0.0 to 10.255.255.255. Private IP addresses of class
B range from 172.16.0.0 to 172.31.255.255. Private IP addresses of class C range from 192.168.0.0
to 192.168.255.255.
ISPs may block unreported web services to be accessed with the default port number 80.
Therefore, when the default LAN port number is 80, please manually change it to an uncommon
port number (1024–65535), such as 9999.
The LAN port number can be different from the WAN port number.
Internet
78
Document Version: V1.2
Step 3 Assign a fixed IP address to the host where the server locates.
1. Navigate to LAN > LAN > DHCP.
2. Click MAC-Based Assignment.
3. Set MAC Address of the host of the server, which is D4-61-DA-1B-CD-89 in this example.
4. Set Assigned IP Address for the server host, which is 192.168.1.136 in this example.
After the configuration is completed, users from the internet can access the FTP server by visiting
“Intranet service application layer protocol name://WAN IP address of the ONT”. If the remote port
number is different from the default intranet service port number, the visiting address should be:
“Intranet service application layer protocol name://WAN IP address of the ONT:Remote port
number”. In this example, the address is “ftp://102.33.66.88”. You can find the WAN IP address of
the ONT in Device status.
To access the FTP server from the internet:
Open the file explorer on a computer that can access the internet, and visit ftp://102.33.66.88.
79
Document Version: V1.2
Enter the user name and password to access the resources on the FTP server.
If you want to access the server within a LAN using a domain name, refer to the solution Dynamic
DNS + Port Forwarding.
80
Document Version: V1.2
After the configuration is completed, if internet users cannot access the FTP server, try the following
methods:
Ensure that the LAN port number configured in the port forwarding function is the same as the
service port number set on the server.
Close the firewall, antivirus software and security guards on the host of the FTP server and try
again.
Parameter description
Parameter Description
Specifies the domain name that you want to block LAN clients from accessing.
FQDN An FQDN, sometimes also referred to as an absolute domain name, is a domain name that
specifies its exact location in the tree hierarchy of the Domain Name System (DNS). It
specifies all domain levels, including the top-level domain and the root zone.
81
Document Version: V1.2
---End
After the configuration is completed, Facebook, Twitter and Instagram are not accessible through
the ONT.
8.2.6 DMZ
Overview
A DMZ host on a LAN is free from restrictions in communicating with the internet. It is useful for
getting better and smoother experiences in video conferences and online games. You can also set
the host of a server within the LAN as a DMZ host when in need of accessing the server from the
internet.
− A DMZ host is not protected by the firewall of the router. Hackers may leverage the DMZ host to
attack your LAN. Therefore, enable the DMZ function only when necessary.
− Hackers may leverage the DMZ host to attack the local network. Do not use the DMZ host
function randomly.
− Security software, antivirus software and the built-in OS firewall of the computer may cause
DMZ function failures. Disable them when using the DMZ function. If the DMZ function is not
required, you are recommended to disable it and enable your firewall, security and antivirus
software.
To access the page, log in to the web UI of the ONT and navigate to Services > Firewall > DMZ.
82
Document Version: V1.2
Parameter description
Parameter Description
DMZ Host IP Address Specifies the IP address of the LAN host to be set as the DMZ host.
Solution: You can configure the DMZ host function to reach the requirement.
Assume that the information of the FTP server includes:
− IP address: 192.168.1.136
− MAC address: D4:61:DA:1B:CD:89
− Service port: 21
− WAN IP address of the router: 102.33.66.88
Please ensure that the router obtains a public IP address public. This function may not work on a host
with an IP address of a private network or an intranet IP address assigned by ISPs that start with 100.
Common IPv4 addresses are classified into class A, class B and class C. Private IP addresses of class A
range from 10.0.0.0 to 10.255.255.255. Private IP addresses of class B range from 172.16.0.0 to
172.31.255.255. Private IP addresses of class C range from 192.168.0.0 to 192.168.255.255.
Internet
83
Document Version: V1.2
Procedure:
Step 1 Log in to the web UI of the ONT.
Step 2 Set the server host as the DMZ host.
1. Navigate to Services > Firewall > DMZ.
2. Select Enable for DMZ Host.
3. Enter the IP address of the server host, which is 192.168.1.136 in this example.
4. Click Apply Changes.
Step 3 Assign a fixed IP address to the host where the server locates.
1. Navigate to LAN > LAN > DHCP.
2. Click MAC-Based Assignment.
3. Enter the MAC Address of the host of the server, which is D4-61-DA-1B-CD-89 in this
example.
4. Enter the assigned IP Address for the server host, which is 192.168.1.136 in this example.
After the configuration is completed, users from the internet can access the FTP server by visiting
“Intranet service application layer protocol name://WAN IP address of the ONT”. If the intranet
service port number is not the default number, the accessing address should be: “Intranet service
application layer protocol name://WAN IP address of the ONT:Intranet service port number”.
If the default intranet service port number is 80, please change the service port number to an
uncommon one (1024–65535), such as 9999.
In this example, the address is “ftp://102.33.66.88”. You can find the WAN IP address of the ONT in
Device status.
84
Document Version: V1.2
Open the file explorer on a computer that can access the internet, and visit ftp://102.33.66.88.
Enter the user name and password to access the resources on the FTP server.
If you want to access the server within a LAN using a domain name, refer to the solution DMZ +
Dynamic DNS.
85
Document Version: V1.2
After the configuration is completed, if internet users still cannot access the FTP server, close the
firewall, antivirus software and security guards on the host of the FTP server and try again.
8.2.8 DDoS
DDoS is short for Distributed Denial of Service. DDoS attack indicates the distributed denial of
service attack. The attack allows an attacker to exhaust the resources of a system, making the
system unable to properly provide services.
To access the page, log in to the web UI of the ONT and navigate to Services > Firewall > DDOS.
Parameter description
Parameter Description
86
Document Version: V1.2
Parameter Description
Specifies the level of protection for the ARP flood attack filtering to prevent the
ARP Flood Attack Address Resolution Protocol (ARP) flood attack, including Low, Middle and High. The
Filtering higher the level, the less data packets that can pass through, which means the more
ARP packets will be filtered.
87
Document Version: V1.2
9 VoIP
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions may differ with different product models or different versions of the same
model. The actual product prevails.
The VoIP function enables telephone calls to be made and received over an IP network.
To access the page, log in to the web UI of the ONT and navigate to VoIP > VoIP > Basic.
In the Main Proxy and Backup Proxy modules, you can complete the registration. After the
parameters are properly configured, click Apply on the bottom of the page to enable the settings
to take effect.
88
Document Version: V1.2
Parameter description
Parameter Description
Display Name Specifies the caller name that will be displayed on the peer side.
Login ID
Specify the login ID and password to register with the SIP server.
Password
Proxy
You can choose to enable the SIP proxy server function as required.
Proxy Addr
When enabled, you need to enter the IP address and port of the SIP proxy server.
Proxy Port
Used to create a subscription between the client application that wishes to obtain
SIP Subscribe
service information and the information provider.
SIP Domain Specifies the domain name for SIP service registration.
Reg Expire (sec) Specifies the period after which the SIP registration expires.
Outbound Proxy When it is enabled, all outgoing requests will be sent to this outbound proxy server.
Enable Session timer When it is enabled, the ONT periodically checks the status of a SIP session.
Session Expire (sec) Specifies the interval at which the ONT checks the status of a SIP session.
89
Document Version: V1.2
In the SIP Advanced module, you can change advanced SIP settings.
Change the parameters as required by your ISP, or keep the default value if you are not sure. After
the parameters are properly configured, click Apply on the bottom of the page to enable the
settings to take effect.
Parameter description
Parameter Description
Media Port Specifies the port for voice streams using the Real-time Transport Protocol (RTP).
Dual-tone Multi-frequency (DTMF) Relay enables the ONT to send DTMF digits over IP.
DTMF Relay You can choose the DTMF relay type here, which includes RFC2833, SIP INFO, Inband
and DTMF_delete.
90
Document Version: V1.2
Parameter Description
DTMF RFC2833
Payload Type
DTMF RFC2833
Packet Interval
Fax/Modem
RFC2833 Payload
Type
Fax/Modem
RFC2833 Packet
Interval
Specifies whether to enable the call waiting function, which allows you to suspend a
Call Waiting
telephone call already in progress to accept a second call, or switch between calls.
Specifies how the caller ID is obtained. It is automatically set based on your country
Caller ID Mode
code. Do not modify it unless necessary.
Send Caller ID
Specifies whether to hide your caller ID when making phone calls.
hidden
Specifies whether to enable the call transfer function, which allows you to relocate an
call transfer
existing telephone call to another phone.
Specifies whether to enable the 3-way conference function, which allows you to talk
3 way conference
with 2 people at the same time using your telephone.
conference on
Specifies the location of conferences.
server/CPE
91
Document Version: V1.2
In the Forward Mode module, you can configure the forward mode. After the parameters are
properly configured, click Apply on the bottom of the page to enable the settings to take effect.
Parameter description
Parameter Description
You can enable or disable Immediate Forward. Immediate Forward prevails Busy
Immediate Forward to Forward and No Answer Forward.
− off: Immediate Forward is disabled.
− VoIP: Immediate Forward is enabled, and phone calls will be forwarded
Immediate Number
immediately to the phone number you specified in Immediate Number.
Busy Forward to You can enable or disable Immediate forward. To enable Busy Forward, disable
Immediate Forward first.
− off: Busy Forward is disabled.
Busy Number − VoIP: Busy Forward is enabled, and phone calls will be forwarded to the
phone number you specified in Busy Number when the line is busy.
No Answer Forward to You can enable or disable No Answer Forward. To enable No Answer Forward,
disable Immediate Forward and Busy Forward first.
No Answer Number − off: No Answer Forward is disabled.
− VoIP: No Answer Forward is enabled, and phone calls will be forwarded
No Answer Time (sec) to the phone number you specified in No Answer Number when the calls
are not answered after the time set in No Answer Time (sec) is reached.
92
Document Version: V1.2
In the Speed Dial module, you can set speed dial rules. After the parameters are properly
configured, click Apply on the bottom of the page to enable the settings to take effect.
Parameter description
Parameter Description
Speed Name You can set Speed Name for each commonly used number to facilitate making
phone calls. You only need to press the speed name plus # on the telephone to dial
Phone Number a certain phone number that you specify in Phone Number.
93
Document Version: V1.2
To access the page, log in to the web UI of the ONT and navigate to VoIP > VoIP > Advanced.
In the Abbreviated Dial module, you can set abbreviated dial rules. After the parameters are
properly configured, click Apply on the bottom of the page to enable the settings to take effect.
In the Dial plan module, you can set a dial plan. After the parameters are properly configured, click
Apply on the bottom of the page to enable the settings to take effect.
Parameter description
Parameter Description
94
Document Version: V1.2
Parameter Description
To access the page, log in to the web UI of the ONT and navigate to VoIP > VoIP > Advanced.
In the Codec module, you can set the codec type. After the parameters are properly configured,
click Apply on the bottom of the page to enable the settings to take effect.
Parameter description
Parameter Description
Specifies the coding type used to compress digital voice data, which has higher
Codec
priority over other coding types.
Payload Type Specifies the payload type value for digital voice data coding.
95
Document Version: V1.2
Parameter Description
Type Specifies the coding type used to compress digital voice data.
In the Hot Line module, you can set a hotline. After the parameters are properly configured, click
Apply on the bottom of the page to enable the settings to take effect.
Parameter description
Parameter Description
Specifies the hotline number to be dialed when no dialing action is performed within
Hot Line Number
a specific period after you pick up the phone set.
96
Document Version: V1.2
In the DND (Don’t Disturb) module, you can set the Don't Disturb mode. After the parameters are
properly configured, click Apply on the bottom of the page to enable the settings to take effect.
Parameter description
Parameter Description
From
Specify the period during which the DND mode is enabled when Enable is selected
for DND Mode.
To
97
Document Version: V1.2
Parameter description
Parameter Description
98
Document Version: V1.2
10 Advance
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions may differ with different product models or different versions of the same
model. The actual product prevails.
Routing is the act of choosing an optimal path to transfer data from a source address to a
destination address. A static route is a special route that is manually configured and has the
advantages of simplicity, efficiency and reliability. Proper static routing can reduce routing
problems and overload of routing data flow, and improve the forwarding speed of data packets.
After the static route is established, all data whose destination address is the destination network
of the static route are directly forwarded to the next hop through the static route interface.
To access the page, log in to the web UI of the ONT and navigate to Advance > Advance > Routing.
99
Document Version: V1.2
Parameter description
Parameter Description
Show Routes Used to display the commonly used routes of the ONT.
Specifies the ingress IP address of the next hop route after the data packet exits from
Next Hop
the WAN interface of the ONT.
Specifies the priority of the routing rule. The smaller the number, the higher the priority.
Metric When the destination networks of two rules are the same, packets will be forwarded
according to the rule with smaller metric.
Interface Specifies the interface of the ONT that the packet exits from.
100
Document Version: V1.2
---End
After the configuration is completed, the static rule will be displayed in Static Route Table.
101
Document Version: V1.2
After the configuration is completed, the updated parameters of the static rule will be displayed in
Static Route Table.
102
Document Version: V1.2
− The route with 0.0.0.0 as both destination and subnet mask is the default route. When no
perfectly matched route is found for a packet, the packet will be forwarded through the default
route.
− 0.0.0.0 as the next hop indicates that the ONT is directly connected to the destination network.
10.1.2 SNMP
The Simple Network Management Protocol (SNMP) is the most widely used network management
protocol in TCP or IP networks. SNMP enables you to remotely manage all your network devices
compliant with this protocol, such as monitoring the network status, changing network device
settings, and receiving network event alarms.
SNMP allows automatic management of devices from various vendors regardless of physical
differences among the devices.
SNMP management framework
The SNMP management framework consists of the SNMP manager, SNMP agent and Management
Information Base (MIB).
− SNMP manager: It is a system that controls and monitors network nodes using the
SNMP protocol. The SNMP manager most widely used in network environments is
Network Management System (NMS). An NMS can be a dedicated network
management server, or an application that implements management functions in a
network device.
− SNMP agent: It is a software module in a managed device. The module is used to
manage data about the device and report the management data to an SNMP manager.
− MIB: It is a collection of managed objects. It defines a series of attributes of managed
objects, including names, access permissions and data types of objects. Each SNMP
agent has its MIB. An SNMP manager can read and/or write objects in the MIB based
on the permissions assigned to the SNMP manager.
SNMP operations
An SNMP manager manages SNMP agents in an SNMP network. The SNMP manager exchanges
management information with the SNMP agents using the SNMP protocol. The ONT functions as
an SNMP agent.
103
Document Version: V1.2
The ONT is compatible with SNMP V1 and SNMP V2C and adopts the community authentication
mechanism.
To access the page, log in to the web UI of the ONT and navigate to Advance > Advance > SNMP.
Parameter description
Parameter Description
Specifies a description of the ONT, which can be anything you like and is used for
System Description
identification.
Specifies the object ID of the ONT in the MIB, which can be used by the SNMP manager
System Object ID
to identify and manage the ONT.
Specifies the destination IP address of the SNMP trap. Make sure that the ONT and the
Trap IP Address
SNMP manager are reachable to each other.
Community name Specify the community names which act as passwords for the interaction between the
(read-only) SNMP manager and SNMP agent.
− Community name (read-only): It is used to authenticate the Get request.
Community name
(write-only) − Community name (write-only): It is used to authenticate the Set request.
104
Document Version: V1.2
2 Configure the QoS queue Used to configure the QoS policy and queue.
Used to configure the bandwidth of different type of
3 Configure the QoS bandwidth
WAN.
Configure IP QoS traffic shaping rules Used to configure the speed limit of uplink traffic.
105
Document Version: V1.2
Parameter description
Parameter Description
IP QoS Specifies whether to enable the IP QoS function.
106
Document Version: V1.2
Parameter description
Parameter Description
Specifies the policy of the QoS queue including PRIO and WRR.
− PRIO: A unique priority is set for each queue with this policy.
The queues are serviced by priority from high to low. The
advantage of this policy is that high-priority services are always
Policy
processed before low-priority services.
− WRR: The Weighted Round Robin (WRR) algorithm schedules
the queues in a polling manner based on the weights, ensuring
QoS Queue
that all queues can be serviced with certain time.
Config
Queue Specifies the QoS queue.
Priority Specifies the QoS priority. It is available only when Policy is set to PRIO.
Specifies the weighted value which means the resource proportion for
Weight
each queue. It is available only when Policy is set to WRR.
Enable Specifies whether to apply the queue information.
107
Document Version: V1.2
Parameter description
Parameter Description
Specifies whether to allow the user to configure the specific
User Defined
bandwidth of WAN. It is disabled by default. It is recommended to
QoS Bandwidth Bandwidth
keep the default settings.
Config
Total Bandwidth Specifies the rate of the total uplink bandwidth. The value range is
Limit 64 to 1000000.
To access the page, log in to the web UI of the ONT and navigate to Advance > IP QoS > QoS
Classification.
Assign IP precedence/DSCP/802.1p
To access the page, log in to the web UI of the ONT and navigate to Advance > IP QoS > QoS
Classification.
On this page, you can configure the mapping relationship between the DSCP priority and queues,
and the mapping relationship between the 802.1p priority and queues. The IP QoS function is
disabled by default. You must enable the IP QoS function before configuration.
108
Document Version: V1.2
Parameter description
Parameter Description
RuleName Specifies the rule name of the QoS classification.
Specifies the 802.1P priority. Data with a larger priority value takes a higher
802.1p
priority to be processed.
109
Document Version: V1.2
Parameter description
Parameter Description
IP QoS Rule by type Specifies the type to perform QoS flow control.
Port Physical Port Specifies the LAN port connected to the ONT.
Ethery Type Ethernet Type Specifies the Ethernet type of the ONT.
Source Port
Destination Port
Source MAC
MAC Address Specify the source MAC address and destination MAC address.
Destination MAC
110
Document Version: V1.2
Parameter description
Parameter Description
IP Version Specifies the IP version, including IPv4 and IPv6.
Interface Specifies the WAN interface on which the traffic shaping rule takes effect.
Specifies the protocol type of data.
− NONE: It specifies that ICMP, TCP and UDP are all included.
− TCP: Abbreviated for Transmission Control Protocol. The connection is
established through the three-way handshaking. When the
communication is completed, the connection should be removed. It can
only be used for end-to-end communication, such as Telnet and FTP.
Protocol − UDP: Abbreviated for User Datagram Protocol. UDP data includes
destination port and source port information. The communication does
not require connection, and the broadcast transmission can be realized.
Services using UDP include DNS and SNMP.
− ICMP: Abbreviated for Internet Control Message Protocol. It is used to
transmit control messages between IP hosts and ONTs, including whether
the network or the host is reachable, and whether the route is available.
111
Document Version: V1.2
Parameter Description
Source IP
Source Mask
Destination IP
Destination Mask Specify the source IP address, source subnet mask, destination IP address,
Source Port destination subnet mask, source port, destination port, source prefix length and
destination prefix length.
Destination Port
Source Prefix Length
Destination Prefix
Length
Rate Limit Specifies the traffic rate limit.
10.3.1 RADVD
The Router Advertisement Daemon (RADVD) is used by system administrators in stateless auto-
configuration methods of network hosts on IPV6 networks.
When IPv6 hosts configure their network interfaces, they broadcast Router Solicitation (RS)
requests onto the network to discover available devices. The RADVD software answers requests
with Router Advertisement (RA) messages. In addition, RADVD periodically broadcasts RA packets
to the attached link to update network hosts.
To access the page, log in to the web UI of the ONT and navigate to Advance > IPv6 > RADVD.
112
Document Version: V1.2
Parameter description
Parameter Description
113
Document Version: V1.2
Parameter Description
Specifies the configuring mode of the prefix which is assigned to the IPv6 host,
including Auto and Manual.
Prefix Mode
− Auto: The ONT automatically assigns a prefix to the IPv6 host.
− Manual: You need to set the prefix manually.
Prefix
Specify the prefix information included in the RA message to hosts for generating
their IPv6 address.
Prefix Length
AdvValidLifetime Specify the Advertisement Valid Lifetime and Advertisement Preferred Lifetime.
When the preferred lifetime expires, the use of the prefix is not encouraged, but not
prohibited. When the valid lifetime expires, the prefix becomes invalid.
AdvPreferredLifetime
The valid lifetime must be greater than or equal to the preferred lifetime.
Specifies whether the prefix in the router advertisement can be used to generate IPv6
AdvAutonomous
address.
Specify the Recursive DNS Server (RDNSS) addresses assigned to IPv6 hosts for DNS
RDNSS 1/2
information configuration.
Enable ULA The purpose of ULA resembles that of the private network address in IPv4. It is only
used within the private network and increases stability for the IPv6 host and its use of
services.
Specifies whether to enable the ULA prefix. It is available only when Enable ULA is set
ULA Prefix Random
to on. When ULA Prefix Random is selected, ULA Prefix cannot be set.
ULA Prefix Specify the ULA prefix information advertised by the ONT to hosts for generating
unique local addresses. ULA Prefix is available only when Enable ULA is set to on and
ULA Prefix Random is deselected. ULA Prefix Len is available only when Enable ULA is
ULA Prefix Len set to on.
114
Document Version: V1.2
Parameter Description
Specify the valid time and preferred time of ULA prefix. It is available only when
Enable ULA is set to on.
ULA Prefix Valid Time
When the preferred time expires, the use of the ULA prefix is not encouraged, but not
prohibited. When the valid time expires, the ULA prefix becomes invalid. It is available
only when Enable ULA is set to on.
ULA Prefix Preferred
Time
The valid time must be greater than or equal to the preferred time.
115
Document Version: V1.2
10.3.2 DHCPv6
IPv6 hosts may automatically generate IP addresses internally using Stateless Address
Autoconfiguration (SLAAC), or they may be assigned configuration with Dynamic Host
Configuration Protocol version 6 (DHCPv6). When the DHCPv6 server is enabled, the ONT can
assign IPv6 hosts with IP addresses, IP prefixes and other configurations required for IPv6 internet
access.
To access the page, log in to the web UI of the ONT and navigate to Advance > IPv6 > DHCPv6.
116
Document Version: V1.2
Parameter description
Parameter Description
Specifies the IP address range within which the ONT can assign IPv6 addresses to the
IP Pool Range
IPv6 host.
Specify the valid lifetime and preferred lifetime of the IPv6 address assigned to IPv6
Valid Lifetime hosts.
When the preferred lifetime expires, communication using the IPv6 address is not
encouraged, but allowed. When the valid lifetime expires, the IPv6 address becomes
Preferred Lifetime
invalid.
Specifies the time before expiration when the host is expected to contact the DHCPv6
Renew Time server that did the assignment to renew the lifetimes of the addresses assigned to the
client.
Rebind Time Specifies the new valid time after the IPv6 address is renewed.
Client DUID The DUID is used by a client to get an IP address from a DHCPv6 server, and the server
compares the DUID with its database and delivers configuration data (such as the
address and DNS servers) to the client.
Name Server IP
You can add a DNS server address to obtain DNS information for address resolution.
Name Server Table
117
Document Version: V1.2
118
Document Version: V1.2
11 Diagnostics
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions may differ with different product models or different versions of the same
model. The actual product prevails.
To access the page, log in to the web UI of the ONT and click Diagnostics. Both tools include IPv4
(Ping/Tracert) and IPv6 (Ping6/Tracert6) versions. The IPv4 version is used for illustration.
Ping
Parameter description
Parameter Description
Specifies the IP address or domain name whose connectivity with the ONT is to be
Host Address
diagnosed.
WAN Interface Specifies the WAN interface through which the packet for diagnosis is forwarded.
119
Document Version: V1.2
Tracert
Parameter description
Parameter Description
Host Address Specifies the IP address or domain name of the tracert target.
Specifies the maximum number of times that the host tries to reach the host address.
Number Of Tries If all the attempts fail, it denotes network congestion and a reason for slow loading
web pages and dropped connections.
Max Hop Count When a packet cannot reach the destination and expires at an intermediate step, that
node returns the packet and identifies itself. It denotes network congestion and a
reason for slow loading web pages and dropped connections.
WAN Interface Specifies the WAN interface through which the packet for diagnosis is forwarded.
120
Document Version: V1.2
121
Document Version: V1.2
12 Admin
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions may differ with different product models or different versions of the same
model. The actual product prevails.
To access the page, log in to the web UI of the ONT and navigate to Admin > Admin > OMCI
Information. You can click Refresh to update the information.
122
Document Version: V1.2
12.3 Commit/Reboot
This page is used to commit any configuration changes you have made and reboot the ONT to put
the changes into effect. Click Commit and Reboot to save settings and reboot the ONT.
To access the page, log in to the web UI of the ONT and navigate to Admin > Admin >
Commit/Reboot.
12.4 Backup/Restore
On this page, you can back up the configuration of the ONT, restore the configuration from a
backup file, and reset the ONT.
To access the page, log in to the web UI of the ONT and navigate to Admin > Admin >
Backup/Restore.
123
Document Version: V1.2
Procedure:
Resetting the ONT will clear all previous personalized configurations. It is recommended to back up the
configuration of the ONT in advance.
Procedure:
124
Document Version: V1.2
The ONT starts rebooting. Wait until it finishes rebooting, and then you can log in to the
ONT again and perform settings.
---End
For network security, you should change the user name and the password of the WAN user function
after the WAN connection is set up.
Procedure:
125
Document Version: V1.2
---End
The time of the logs depends on the system time of the ONT. To make sure the time of the logs is
correct, set correctly Time zone of the ONT first.
To access the page, log in to the web UI of the ONT and navigate to Admin > Admin > System Log.
126
Document Version: V1.2
Parameter description
Parameter Description
System Log Specifies whether to enable the System Log function of the ONT.
Specify the lowest severity of the log level and which level you want to display.
− Emergency: The system has become unstable.
Log Level − Alert: Immediate action is required.
− Critical: Functionality is affected.
− Error: An error condition exists and functionality could be affected.
− Warning: Functionality might be affected.
− Notice: Information about normal events.
Display Level − Informational: General information about system operations.
− Debugging: Detailed information about the system that can be used to
troubleshoot unexpected behavior.
Specifies the mode of the system log.
− Local: Logs will be saved in the log buffer and log file.
− Remote: Logs will be saved in remote log servers. Remote logs facilitate you
Mode
to remotely monitor the running status of the network.
− Both: Logs will be saved in both the log buffer, log file and the remote log
server.
Server IP Address Specifies the IP address of the log server.
Specifies the UDP port used by the server to receive the log messages. It should be the
Server UDP Port
same port as the port configured by the log server.
Save Log to File Click it to save the log information to a file on your device.
127
Document Version: V1.2
12.7 Password
On this page, you can change the login password for the ONT. You can only change the password,
and the original password is required during the process.
You can log in to the web UI of the ONT with user permissions or administrator permissions.
Administrator permissions are for the installation and maintenance personnel only.
User Permissions: The default login user name is admin. You can get the password from the
bottom label on the ONT.
Administrator Permissions: The default login user name and password are both admin (or root).
Procedure:
The following message is displayed, indicating that the password is changed successfully.
---End
128
Document Version: V1.2
129
Document Version: V1.2
12.10 ACL
Access Control List (ACL) is a collection of permitting and denying rules that ensure security by
blocking unauthorized users from and allowing authorized users to access ONT.
To access the page, log in to the web UI of the ONT and navigate to Admin > Admin > ACL.
Parameter description
Parameter Description
ACL Capability Specifies whether to enable the ACL function of the ONT.
Specifies the interface that the access control rule applies to, including LAN and WAN.
− LAN: The ONT checks traffic from the LAN side according to the rule and decides
Interface to pass it or discard it.
− WAN: The ONT checks traffic from the WAN side according to the rule and
decides to pass it or discard it.
Start IP Address
Specify the IP address range or a certain IP address that is controlled by the rule.
End IP Address
130
Document Version: V1.2
Parameter Description
ACL Table Specifies all the ACL rules that are added.
Specifies the control mode of the rule. If you deselect Enable when setting an ACL rule,
State
the State shows Disable.
Interface Specifies the interface that the access control rule applies to, including LAN and WAN.
IP Address Specifies the IP address range or a certain IP address that is controlled by the rule.
Services Specifies the protocols adopted by the traffic, or the types of traffic.
131
Document Version: V1.2
Parameter description
Parameter Description
Current Time Specifies the current system time of the ONT. You can change it manually.
Time Zone Select Specifies the time zone where the ONT locates.
Daylight Saving Time (DST) is the practice of advancing clocks during warmer months so
that darkness falls later each day according to the clock.
Enable Daylight With it is enabled, the ONT sets the time forward by one hour in the spring ("spring
Saving Time forward") and sets the time back by one hour in autumn ("fall back") to return to standard
time. In other words, there is one 23-hour day in late winter or early spring and one 25-
hour day in the autumn.
Specifies the interface through which the ONT updates its system time with the SNTP
WAN Interface
server.
You can choose a preset SNTP server, or manually set the IP address for updating system
SNTP Server 1
time.
132
Document Version: V1.2
Parameter description
Parameter Description
Auto System
Specifies whether to enable the auto system maintenance function of the ONT.
Maintenance
Reboot at
Specify the time when the ONT reboots automatically.
Repeat
Delay Reboot Used to set the traffic limit for delayed reboot. It is available only when the delay reboot
Limit Traffic function is enabled.
133
Document Version: V1.2
12.13 TR-069
The Customer Premise Equipment (CPE) WAN Management Protocol (TR-069) allows an Auto-
Configuration Server (ACS) to perform auto-configuration, provision, collection and diagnostics to
the ONT from the internet. Generally, it is used by the ISP to manage the ONT.
To access the page, log in to the web UI of the ONT and navigate to Admin > Admin > TR-069.
Parameter description
Parameter Description
ACS UserName
Specify the user name and password used to authenticate the ONT when
the ONT connects to the ACS using the CPE WAN management protocol.
Password
134
Document Version: V1.2
Parameter Description
Periodic Inform Used to enable or disable the ONT to periodically inform ACS.
Periodic Inform
Specifies the interval that the ONT to inform the ACS.
Interval
Authentication Specifies whether to authenticate the connection request sent by the ACS.
UserName
Specify the user name and password used to authenticate the ACS when it
sends the connection request to the CPE.
Connection Password
Request
Specifies the path used to receive the connection request sent by the ACS.
Path
Keep the default value if you are not sure.
Port Specifies the port used to receive the connection request sent by the ACS.
CPE Certificate
Specifies an authentication password to ensure higher data security.
Password
Certificate
CPE Certificate Specifies an authentication of Customer Premise Equipment.
Management
12.14 Logout
To access the page, log in to the web UI of the ONT and navigate to Admin > Admin > Logout.
You can log out of the web UI of the ONT by clicking Logout on this page, or click Logout at the
upper-right corner of the web UI.
135
Document Version: V1.2
13 Statistics
This guide is for reference only and does not imply that the product supports all functions in the
guide. The functions may differ with different product models or different versions of the same
model. The actual product prevails.
In this part, you can view the packet statistics of the ports and interfaces of the ONT.
136
Document Version: V1.2
To access the page, log in to the web UI of the ONT and navigate to Statistics > Statistics > PON
Statistics.
137
Document Version: V1.2
Appendixes
A.1 Obtain an IPv4/IPv6 address automatically
Perform the configuration procedure in Windows 11 and Windows 10 as required. A computer
installed with a wired network adapter is used as an example to describe the procedure. The
procedures for configuring computers installed with Wi-Fi network adapters are similar.
A.1.1 Windows 11
Step 1 Click at the bottom right corner of the desktop and choose Network and Internet
settings.
138
Document Version: V1.2
139
Document Version: V1.2
---End
A.1.2 Windows 10
Step 1 Click at the bottom right corner of the desktop and choose Network settings.
140
Document Version: V1.2
141
Document Version: V1.2
Step 5 Select Obtain an IP address automatically and Obtain DNS server address automatically,
and click OK.
142
Document Version: V1.2
Acronym or
Full Spelling
Abbreviation
AP Access Point
CA Certificate Authority
143
Document Version: V1.2
Acronym or
Full Spelling
Abbreviation
IP Internet Protocol
144
Document Version: V1.2
Acronym or
Full Spelling
Abbreviation
OS Operating system
P2P Peer-to-peer
RA Router Advertisement
RS Router Solicitation
145
Document Version: V1.2
Acronym or
Full Spelling
Abbreviation
SC Subscriber connector
UI User interface
146
Document Version: V1.2
Acronym or
Full Spelling
Abbreviation
147