RVS4000 & RV042G Questions

Seeking advice of Cisco Small Business gurus. I used a RVS4000 v1 for a few years now as part of my home network. In particular, I have a large audio Sonos distributed system, and I use the static IP mapping feature of the RVS4000 to assign a fixed IP address to each box of Sonos. Everything works perfectly.

However, earlier this year my ISP (Virgin Media) upped my service to wide band 20Mbps to 60Mbps, without additional cost. Kind of them, great! Their new SuperHub was initially installed in its default factory State, mainly because technicians several who are involved with its installation did not know how to put it in Stand Alone mode Cable Modem. I didn't use his router, switch, or wireless access point, preferring to stick to my perfectly good alternative to Cisco {RVS4000 + 3xWAP4410Ns}.

After that they gave up, I changed the firmware revision and the parameters of the box set mode SACM successfully. But first, I checked its speed. As provided, he settled at any 63Mbps download and download 2.8Mbps. The same test of speedtest.net once defined as SACM and connected to my RVS4000 am just around 21 Mbps download, download the 2.8Mbps. Disable System Protection from intruders RVS4000 (IPS) and debit is the SuperHub on its own, 67Mbps down, 2.8Mbps.

My conclusions...

(1) the download speed is almost a constant regardless of my hardware configuration, and will be ignored for the rest of this post.

(2) in view of the need to open all the packages for inspection, my RVS4000 processor just can't handle that amount of data and effectively limits the my flow down to the same price that I got before my ISP upgraded service. So now, I have a service of 60Mbps, but at least I got disabling IPS, can't actually get the benefit of it. Not good enough!

After a lot of reading on the different sites of Cisco, I recently bought a router Cisco RV042G. His spec 800Mbps suggests speed won't be a problem. One confirmed in fact by running speedtest.net, where the results of the 62Mbps / 2.8Mbps are surprisingly slightly less than people with disabilities RVS4000/IPS, but OK. Now, I also discovered that the RV042G is not IPS.

My colleague said-savvy network 'to be honest IPS is a luxury that you don't really have in my humble OPINION. You're in a tiny minority with regard to users with a feature. It's such a drain on resources because it examines the contents of each package and see if it recognizes a signature of attack. Standard residential gateway routers do not. They have a classic NAT function, which automatically blocks all inbound connections not solicited and a firewall to prevent any broadcast traffic. »

Given his comment and my experience with both routers, I'm about to return the RV042G for a refund, as seems to be adding anything new that I need. But first of all, I would like to hear reasoned opinions of community users: -.

(1) short, should I just stick with my RVS4000 and run it with IPS, as I install it now?

(2) how important is IPS in a home?

(3) is there another product of similar businesses that I should look at? I don't particularly want a router with wifi built-in, but I might consider replacing both the RVS4000 and the adjacent WAP4410N with a suitable all-in-one.

Comments to please as soon as POSSIBLE, because I am running out of time to return the RV042G to my provider.

Hi Norrie, the PPE is not particularly of any concern for most cases, it is a luxury. This is to reflect

https://supportforums.Cisco.com/thread/2169363

But to answer your question, if the RVS4000 was works fine and no problem, stick with it. If you want to replace it with an all-in-one device, examine the RV180, models RV180W (but it isn't IPS).

-Tom
Please mark replied messages useful

Tags: Cisco Support

Similar Questions

  • RV042G newbie questions

    I have the new Cisco RV042G router, and I have some "beginner questions" on this subject that I started to use it:

    The firmware is v4.2.1.02. As it is a brand new router, which is the latest firmware?

    Under time > DST Dates, that I have to configure in there? I'm in the U.S., Central time.

    I want to use Back to My Mac to iCloud (formerly MobileMe). Under the flap of suggestions iCloud on my Mac, it says: "back to my Mac can be slow because the mapping of Port NAT (NAT - PMP) or Universal Plug and Play (UPnP) is disabled on your router. Activate the NAT - PMP or UPnP protocol. "What should I use on my router for Back to My Mac can better function?

    I use a VOIP phone on the network (only 1 device with two phones). Are there settings QoS I need to change to improve the performance of my VOIP phone? I change the port phone VOIP refers to high (instead of Normal) under Port settings. What is this help boost performance?

    I also want to configure a VLAN on a port for clients to access the Internet, but no matter what access to my personal network. Here are the steps I've done so far. Is this sufficient or is there anything else I need to do?

    I went to Setup > Network, enabled several subnets.

    I have added 192.168.254.1/255.255.255.0 as a subnet.

    I went to the management of ports > Port configuration, set the port that I wanted to use (Port 4) to VLAN2.

    I went to the firewall > access rules, has added two rules:

    Deny all traffic from 192.168.254.0 to 192.168.1.0.

    Deny all traffic from 192.168.1.0 to 192.168.1.0.

    Thanks for all your help!

    Firmware... it's the last Yes.

    http://www.Cisco.com/Cisco/software/release.html?mdfid=284170426&flowid=32902&softwareid=282465789&release=4.2.1.02&relind=available&rellifecycle=&RelType=latest

    DST - you need to google and find what is your time zone DST. - http://www.timeanddate.com/time/dst/

    Preferable to open ports (access rules) that the iCloud service use rather than using UPnP

    Priority or rate control is the only QoS on the RV042G.  This high setting should help.

    would need to look at my own RV on VLAN. am at work right now.

    What about Simon
    http://www.linksysinfo.org

  • Question: RVS4000 reduce my bandwidth...

    Howdy,

    I've recently upgraded to a new internet service from Qwest here in the Denver area that offers 40 MB/s down and 20 MB/sec upward.  I have two questions:

    1. When I connected my laptop directly to the DSL Modem (ZyXEL model Qwest Q100), I've had about this speed.  But when I connect my computer to the RVS-4000, I get only about 50% of the width of this band.  I use a cat5/5 10/100 ethernet cable.  My question is why my download speed has certainly declined from 40 MB/s to 20 mB/s?  I have NOT turned on QoS. The RVS4000 has firmware installed V1.3.2.0.
    2. I have a laptop and a desktop computer connected to the RVS4000 via a NetGear FS605v2 Ethernet switch.  When I run SpeedTest.com on the desktop, I get a latency of 20 to 30 ms.  When I run SpeedTest.com on the laptop, I get about the same download speed, about 50% of the upload speed of the computer desk and more 500ms latency.  Why is this?  And it is repeatable.  And no, I have not turned on QoS.   Any ideas?

    Thanks in advance for any help or suggestion!

    Doug

    First of all, I would like to start by disabling the IPS feature on the router. Try this and see if you get a speed increase.

    Thank you

  • SA520 and Question IPSec VPN RVS4000

    Hello

    I installed an IPSec VPN for one of my friends for his company. At its principal office, I installed a Cisco SA520 and he uses to connect devices such as the iPhone and iPad via the IPSec VPN. He uses this fact because he travels abroad a lot and he has problems with services such as Skype is blocked in some countries. This configuration works very well.

    It also has a Cisco RVS4000, which he would like to install at his place of business to the Mexico. He would like the RVS4000 VPN configuration to the SA520 in his office. The SA520 in his office has a static IP address. The RVS4000 to the Mexico does not work.

    Is it possible to Setup IPSec VPN between a SA520 with a static IP and RVS4000 address that does not have a static IP address? If so, examples of configuration would be greatly appreciated.

    Thank you!

    Hi William, simply sign up for a dyndns account or similar service, the RVS4000 configuration will be the same, instead of the IP, you'd be using the dyndns name.

    -Tom
    Please mark replied messages useful

  • RVS4000 Firewall ACL Question

    I work to install and configure a RVS4000 for a friend and wanted to check my understanding of the firewall section.  He by default the firewall allows traffic from any source to any destination, including Wan.  I realize with NAT, this isn't a huge concern / should not be the case... but I tend to prefer the highest standards rather than more flexible.

    I wanted to make sure that it permits launched in-house traffic outgoing and inbound external traffic dropped, so I created the rules as an attachment shows.  I look at this properly?  Is the firewall ACL section to implement a dynamic firewall or what a pure ACL and the rule of the last of the WAN is required for the return of traffic which has already been in the NAT search engine?

    If someone could help me please clear this one small detail I would greatly appreciate.

    Thanks in advance.

    The ACL is just this ACL. The rules that you are fine, the difference with your implementation and the default value is that you explicitly deny traffic; that is not an idea of bed. On that note, this does not mean that traffic has been explicitly allowed before (default configuration).

    Before the creation of all the rules are a "deny an entire" is already in place but not displayed. This is typical routers small businesses and consumers. The only thing I would change is to supplement the subnet, right on it "any."

    I hope this helps.

  • Question of WRV210 VPN RVS4000

    Hello all,.

    I have a client configuration with a WRV210 VPN router wireless home internet (cox cable) and a VPN RVS4000 router at his office (comcast cable internet).

    VPN has been in service for about 6 months, with the occasional drop-outs requiring a reboot of the two endpoints to re-establish the VPN.

    The WRV210 home recently 'died', requiring a replacement. The client is the swap itself and called for assistance to small businesses (?) where they walked him through the router configuration.  Since this morning when I checked, the VPN is connected, but I can't ping between the internal interface on the DESKTOP to the internal interface on the HOUSE.

    I'm deleting the entry IPSEC on the RVS4000 (apparently no option to remove an entry on the WRV210!) and the deactivation/creation of new entry on the WRV210.

    Any thoughts out there on how to make this diagnosis?

    Kind regards

    John Knapp

    Cisco SMB Select

    Hello

    I would watch your setting on the tunnel, you can check the LAN IP local and remote do they read X.X.X.0

    I would like to know if it is the problem, if it is not remembered the HWC to solve the problem

  • Port vulnerability 32764 Linksys RVS4000

    I have the Linksys RVS4000 router with firmware 1.3.3.5 version. I see that Cisco has released an update (http://software.cisco.com/download/release.html?mdfid=282414013&softwareid=282465789&release=2.0.3.2... to address the vulnerability port 32764 but it's only for the RVS4000 v2.) Does anyone know if there will be an update of the older RVS4000 router?

    Thank you

    Jim

    Hello.

    These products are handled by the Cisco Small Business Support community.

    * If my post answered your question, please mark it as "acceptable Solution".

    Thank you!

  • RVS4000 V02 IP based ACL does not

    Hello

    I have a RVS4000 v02 and created 3 VLAN - 192.168.70.0/24, 192.168.80.0/24 and 192.168.90.0/24.  I tired to created list IP based to deny network access 192.168.80.0/24 and 192.168.90.0/24 access to 192.168.70.0/24; and deny access 192.168.80.0/24 192.168.90.0/24.  Can you help me check my list of ip-based access?

    MY RVS4000 access LIST

    Refuse any protocol LAN 192.168.80.0/255.255.255.0 192.168.70.0/255.255.255.0 at all times every day

    Refuse any protocol LAN 192.168.90.0/255.255.255.0 192.168.70.0/255.255.255.0 at all times every day

    Refuse any protocol LAN 192.168.90.0/255.255.255.0 192.168.80.0/255.255.255.0 at all times every day

    Allow to All services LAN ANY ANY Anywhere, anytime Daily

    Allow to All services   WANALL ALLall timeevery day        

    * all access list is enabled.

    Network time 192.168.80.0 and 192.168.90.0 can still reach 192.168.70.0 network.

    Hope you can help me understand this.


    Hello.

    These products are processed by the Cisco Small Business Support Community.

    * If my post answered your question, please mark it as "acceptable Solution".

    * Do not forget to give a 'congratulations '. Thank you!

  • Help with the VLAN and RVS4000

    I am trying to Setup VLAN on a RVS4000 to share our Internet connection with another office but do not allow access to our network of the other network. We have a BEFSX41 connected to Internet and also connected to our other site via a virtual private network to another BEFSX41. Port 1 on the BEFSX41 connects to Port 1 on an EZXS88W switch.

    The other company has provided the RVS4000 and also provides a WRT54GS router. I want to connect 2 ports on the BEFSX41 to Port 1 on the RVS4000 and 2 ports on the RVS4000 to track 1 on the WRT54GS.

    Port 1 on the RVS4000 is member of the default VLAN1 and Port 2 will be a member of VLAN2.

    Our IP network is 192.168.20.0/24

    BEFSX41 is 192.168.20.1

    The DHCP service is disabled

    The RVS4000 has a static IP address of 192.168.20.254 and is configured as a router

    DHCP is also disabled

    The wireless network is as follows:

    IP network is 192.168.21.0/24

    The address IP of WRT54GS is 192.168.21.254 and is static and also configured as a router.

    I don't know how to actually Setup the VLAN from here and the instructions are not useful. My questions are:

    1 port 1 on the RVS4000 must be safe, with label or Untagged?

    2 If the interval routing disabled?

    3. If so, how do I route between the RVS4000 and WRIGHT so the two networks have access to the Internet, but not to other networks?

    The befsx41 should be one that is connected to the internet so that your final point so that the vpn tunnel work. The wan port on the wrt54g must be connected to the lan of the befsx41 port.

    If your server is located behind the befsx41, you should be able to port forwarding. If your server is located behind the wrt54g you may experience the problem with the redirect because you need to forward ports on both routers and according to me, there are some applications that do not work on double NAT.

    If you want to have access to the internet on both VLAN of the rvs4000, it should work as a router so its internet port must be connected to the port the befsx41 lan.

  • RV042G Portmapping to different subnets

    Hello!

    We have the following situation:

    172.16.0.0 / 255.255.248.0 network

    the RV042G has an IP address of 172.16.7.254 with subnet 255.255.255.0

    We have added an additional subnet/IP: 172.16.0.254 / 255.255.248.0

    We want only 1 port WAN portmapping several subnets in our local network.

    Example:

    Address WAN: 84.44.33.11

    SERVICE: RDP_TO_SERVER_01-online external port: 3389; internal port: 3389; internal IP address: 172.16.0.44

    SERVICE: RDP_TO_SERVER_02-online external port: 3399; internal port: 3390; internal IP address: 172.16.3.150

    SERVICE: HTTP_TO_SERVER_03-online external port: 8555; internal port: 80; internal IP address: 172.16.7.51

    The portforwarding and portmapping does not an external address.

    In the past, we used the RV042G with a single subnet (192.168.0.1/255.255.255.0). But now, we have expanded our network to a network 172.16.x.x and portforwarding/mapping/UPNP does not work with the current settings.

    Please, help us to accomplish the above.

    Kind regards

    Martin

    Hi Martin,

    Yes RV0xx traversed NAT on its default network, I can confirm this.

    For One to One NAT cannot help, firstly because we have a single WAN and does not allow it to NAT one-to-one, secondly even if we have two public IP addresses we can NAT the second only to the value default network not the additional subnet.

    Martin is my opinion and my suggestion just because I can not have all the information about your network, therefore:

    In conclusion: I see two solution, or you migrate the server to the default network and let the extra for internet connection or other subnet think if you care about the DHCP, you can have DHCP external regarding the example Microsoft server or our Sx300 switch or 500 series that had fully implemented DHCP features.

    Second Solution is to have another such ISA500 router where Vlan not support as Port of RV042 service Vlan and guests you can get your condition.

    Hope that I was clear on my explanation, please do not hesitate to contact also FRO a pre-sales questions and you can expose your need and we can help you

    Thank you

    Best regards

    Mehdi

  • RV042G and VOIP

    I have a RV042G in a simple configuration.  WAN1 is cable and DSL WAN2.  The cable is 200 down and 10, DSL is 25 down and 10 upwards.

    We are a financial services company, so we have a lot of services that require a constant time and disruption in these services seems to cause a lot of problems (by example, if I use the smart-link failover and WAN1 is primary and it breaks down, even if WAN2 captures correctly for these services can not restart correctly).  WAN2 is more reliable, but WAN1 is faster.  We use WAN2 WAN1 as the backup, as principal however do to WAN2 expansion is no longer sufficient for our needs and we are experiencing problems with call quality on our VOIP lines.

    My question is this:

    Is it possible to installation mode the RV042G of load balancing, but have only certain types of traffic to WAN1 and WAN2 on other types?  For example, all VOIP on WAN1 all quotes (like Bloomberg, Thomson One, etc) on WAN2 (provided that I know that the ports that use these services)?

    Thank you.

    Nick,

    It is certainly possible and it is quite common. When you enable load balancing, you will see an option called protocol binding. Select the service (or create a service custom) and bind it to according to the WAN is suitable. If the WAN connection fails, all traffic will return to the other WAN port until the original WAN port is back.

    Answer please if you have any questions.

    -Marty

  • Question of VPNS and router

    Hello

    I currently have a RV042G in my company.  It works fine, but I was looking for a solution that would allow me to use VPN so that I can tunnel inside and then again connect to the internet via the tunnel.  I want to have a way secure to connect to internet from my laptop while I am travelling and prefer to build my own VPN and do it myself.

    If I understand correctly, the RV042G does not allow this and it only access to the local network via the tunnel. What would be the next router allowing him to fill this purpose?

    Thank you!

    Hi rodman

    These devices work fine, you can also use third-party software not only software from Cisco to use the VPN features. On subscriptions, IAPH supports more special features such link Protect and IP addresses and you can have and buy a subscription in order to add these features to your device, however, if Don t you want what they you don t have to buy.

    Cisco provide one of the best support, it has plenty of support, it is possible via chat, email or telephone, it also provide assistance free of charge for the users of this forum if you don t buy a warranty

    I hope you find this answer useful,

    * Please answer question mark or note the fact other users can benefit from the TI *.

    Greetings,

    Johnnatan Rodriguez Miranda.

    Support of Cisco network engineer.

  • A question of router router vs

    Hye, sorry for the newbie question.

    When having a small bussiness composed of ~ 40 clients that I want to connect to one of these two routers ' router RV042G or a tp-link WR841N.

    On the other one I should get and why?

    Thank you

    The Cyberoam cr50ia resembles a piece of hardware. It should be a lot.

    -Tom
    Please mark replied messages useful

  • Router-on-a-stick with RVS4000

    Hi all

    I intend to reshape our network topology and the creation of at least three VLANs using a router-on-a-stick of the installation type. We have two switches Cisco Small Business sg200-50 and a small RVS 4000 router business. I haven't implemented the configurations of router-on-a-stick in IOS, but I was unable to figure out if it is possible to do with small business of operating systems on the router and switches, we have. Does anyone have an experience with this? It is even possible with the equipment of small businesses?

    Sorry if this question is already answered elsewhere on the forums; I searched around, but can't find anything.

    See you soon,.

    Curtis

    Hi Curtis,.

    Without having the RVS4000 in front of me, it looks like you can. I suppose that you have several VLANs on your SG200 and want to route between them as the SG200 is only a layer 2 switch. You can connect the RVS 4000 via trunk on the switch and the router port (its in L2 Switch-> vlan configuration of the port on the rvs4000) and add each vlan of the trunk (under L2 switch-> belonging to a vlan on the rvs). Please note that the RVS4000 is limited to 4 virtual local networks, including the vlan by default. I think that the router will automatically create the static routes appropriate when you create them VLAN (vlan create a L2 Switch->). The default value on the RVS4000 is for intervlan routing be enabled under Setup-> routing advanced but double check if you encounter any problems. Also, check the routing table and add static routes as needed.

    You can also switch a switch to a SG300, which is a layer 3 switch.

    Best,

    David

    Do not forget to note resonses useful and identify the right answers.

  • I would like to help with what I believe, it is a problem of routing VLANS on a SLM2008 and RVS4000

    Please see attached Word documentfor a full description.  Thank you!

    Hi Michael,

    All those who say the VLANS within the first hour is a person much smarter than me.

    I have to admit with great humility, I think it took me nagging questions for some patients (AR) and weeks and weeks until finally I have a bit of understanding of the functioning of VLAN.

    So don't feel concerned, many people there are in the same "boat" as you.

    But VLAN, when you get the feel for them, are so so helpful.

    I like under 'acceptable frame type' tick 'all '.

    The value PVID tells me basically what VLAN not signposted port is underway.

    This means that in the image below, 3 ports, 6-8 will be I hope, expecting to received and transmit frames Ethernet labeled with a tag VLAN 2.

    But on the diagram above, I can now make room for the following table.

    without tag vlan tagged vlan

    3-1-2 switch port

    6 2 2 switch port can not be marked and unidentified on the same switch port

    7 2 2 switch port can not be marked and unidentified on the same switch port

    8-1-2 switch port

    In the diagram above, I can see that 1 and 2 switch ports are ifor untagged VLAN 3 so the packages roll inside the switch for VLAN 3 will have their VLAN TAGs removed from the Ethernet frame as the traver packets on the switch to an IP host.

    I also see that the switch port 3 unidentified in the VLAN 1, but you have set the acceptable frame on tagged only type.

    Unless I read this all in fact wrong.

    Note: I have to admit that has the big brother to the SG200 SG300 series switch,

    Don't forget about PC / security cameras (except Cisco, hey I'm system engineer have to give my equipment fitted with a plug) in most of the cases do not send frames labeled Ethernet in the switch, which is why I like the idea of accepting all types of frames. I guess that the default VLAN settings are the acceptable frame types = all

    When we add a vlan to a switch port, as the image below, switch to these ports are added as a vlan tagged, because the port if already reside in one VLAN not tagged...  This means that in the case below, 3 ports, 6-8 will be I hope, expecting to received and transmit frames ethernet labeled with a tag VLAN 2.

    You said it, not easy, you need to play and practice with switching and routing

    .  But the general rule that I follow for VLAN's.

    A switch port can be untagged in a single vlan, but at the same time marked on several VLANs.

    With respect to the limitation of the camera, my camera, I have not used my filters. But there is the possibility of limiting access by IP address or network.

    I guess you can find an article on your DLINK camera to filter. Reset the default camera and try to add it again.

    Routing between VLANS will occur at the RVS4000, it routes packets between different VLANs, the SG200 cannot be put in Layer 3 mode like its big brother the 300 series (SRWXXX-K9-NA)...

    Best regards, Dave

Maybe you are looking for