Amit ODG761AM-0T1 User Manual Download Page 29

Outdoor

 

Cellular

 

Gateway

 

 

29 

 

Create/Edit

 

SIM

A

 

/

 

SIM

B

 

APN

 

Profile

 

List

 

You

 

can

 

add

 

a

 

new

 

APN

 

profile

 

for

 

the

 

connection,

 

or

 

modify

 

the

 

content

 

of

 

the

 

APN

 

profile

 

you

 

added.

 

It

 

is

 

available

 

only

 

when

 

you

 

select

 

Dial

Up

 

Profile

 

as

 

APN

 

Profile

 

List

.

 

 

List

 

all

 

the

 

APN

 

profile

 

you

 

created,

 

easily

 

for

 

you

 

to

 

check

 

and

 

modify.

 

It

 

is

 

available

 

only

 

when

 

you

 

select

 

Dial

Up

 

Profile

 

as

 

APN

 

Profile

 

List

.

 

When

 

Add

 

button

 

is

 

applied,

 

an

 

APN

 

Profile

 

Configuration

 

screen

 

will

 

appear.

 

 

 

SIM

A/

B

 

APN

 

Profile

 

Configuration

 

Item

 

Value

 

setting

 

Description

Profile

 

Name

 

1.

 

By

 

default

 

Profile

x

 

is

 

listed

 

2.

 

String

 

format

 

:

 

any

 

text

 

Enter

 

the

 

profile

 

name

 

you

 

want

 

to

 

describe

 

for

 

this

 

profile.

 

MCC

 

String

 

format

 

:

 

integer

 

Enter

 

the

 

MCC

(Mobile

 

Country

 

Code)

 

you

 

want

 

to

 

use

 

for

 

this

 

profile.

 

Note

:

 

the

 

MCC

 

should

 

be

 

related

 

to

 

the

 

MNC

,

 

this

 

filed

 

can’t

 

be

 

invalid

 

value

 

if

 

MNC

 

is

 

filled

in.

 

MNC

 

String

 

format

 

:

 

integer

 

Enter

 

the

 

MNC

(Mobile

 

Network

 

Code)

 

you

 

want

 

to

 

use

 

for

 

this

 

profile.

 

Note

:

 

the

 

MNC

 

should

 

be

 

related

 

to

 

the

 

MCC

,

 

this

 

filed

 

can’t

 

be

 

invalid

 

value

 

if

 

MCC

 

is

 

filled

in.

 

APN

 

String

 

format

 

:

 

any

 

text

 

Enter

 

the

 

APN

you

 

want

 

to

 

use

 

to

 

establish

 

the

 

connection.

 

Account

 

String

 

format

 

:

 

any

 

text

 

Enter

 

the

 

Account

you

 

want

 

to

 

use

 

for

 

the

 

authentication.

 

Value

 

Range

:

 

0

 

~

 

53

 

characters.

 

Password

 

String

 

format

 

:

 

any

 

text

 

Enter

 

the

 

Password

you

 

want

 

to

 

use

 

for

 

the

 

authentication.

 

Authentication

 

1.

 

A

 

Must

 

filled

 

setting

 

2.

 

By

 

default

 

Auto

 

is

 

Select

 

the

 

Authentication

 

method

 

for

 

the

 

3G/4G

 

connection.

It

 

can

 

be

 

Auto

,

 

PAP

,

 

CHAP

,

 

or

 

None

.

 

Summary of Contents for ODG761AM-0T1

Page 1: ...Outdoor Cellular Gateway ODG761AM 0T1 User Manual...

Page 2: ...ARNING 13 1 6 Hardware Installation 14 1 6 1 Mount the Unit 14 1 6 2 Insert the SIM Card 15 1 6 3 Connecting Power 16 1 6 4 Connecting to the Network or a Host 17 1 6 5 Setup by Configuring WEB UI 17...

Page 3: ...2 Dynamic Routing 100 2 6 3 Routing Information 108 2 7 DNS DDNS 109 2 7 1 DNS DDNS Configuration 109 2 8 QoS 113 2 8 1 QoS Configuration 113 Chapter 3 Object Definition 122 3 1 Scheduling 122 3 1 1 S...

Page 4: ...et Filter 185 5 2 2 URL Blocking 190 5 2 3 MAC Control 194 5 2 4 Content Filter 197 5 2 5 Application Filter 201 5 2 6 IPS 205 5 2 7 Options 209 5 3 Authentication 213 5 3 1 Captive Portal 213 Chapter...

Page 5: ...ling 266 7 2 1 Configuration 268 7 2 2 Managing Events 277 7 2 3 Notifying Events 279 Chapter 8 Status 281 8 1 Dashboard not supported 281 8 2 Basic Network 281 8 2 1 WAN Uplink Status 281 8 2 2 LAN V...

Page 6: ...Outdoor Cellular Gateway 6 8 5 2 Network Traffic not supported 301 8 5 3 Device Administration 302 8 5 4 Cellular Usage 303 Appendix A GPL WRITTEN OFFER 304...

Page 7: ...PoE Power over Ethernet PD it s easy to power up this outdoor gateway via an Ethernet cable and a standard PoE power supply unit In most situations the internal WiFi and cellular antennas should be p...

Page 8: ...on Contents Comments 1 802 3at Compliant PoE Power Injector Gigabit 30W Standard 802 3 af at compliant 2 Compatible Passive PoE Power Injector Gigabit 30W Passive PoE Injector AMIT ODG ODP series only...

Page 9: ...asy way to resort the default setting Press the RESET button continuously for 6 seconds and then release it The device will restore to factory default settings Reset Button SIM A Slot LED Indicators S...

Page 10: ...Outdoor Cellular Gateway 10 Rear View Wall Mounting Kit Brass for optional pole mounting kit Device Label...

Page 11: ...d All the outlets at bottom cover will be blocked by rubber pads when shipment Screw for fixing bottom cover Outlet for Ethernet Cable Outlet for RF cable if external cellular antenna is used Outlet f...

Page 12: ...y Red Device doesn t register on cellular network Steady Green Device register on LTE network Steady Amber Device register on 2G 3G network WLAN WiFi Green Steady ON Wireless radio is enabled Flash Da...

Page 13: ...tosh or Linux based operating system An installed Ethernet adapter Browser Requirements Internet Explorer 6 0 or higher Chrome 2 0 or higher Firefox 3 0 or higher Safari 3 0 or higher 1 5 2 WARNING On...

Page 14: ...er describes how to install and configure the hardware 1 6 1 Mount the Unit The ODG761 series can be mounted on wall or pole It has designed with wall mount bracket for attaching to the wall or fixing...

Page 15: ...screw and remove the outer bottom cover of housing before installing or removing the SIM cards Please follow the instructions to insert SIM cards After SIM cards are well placed screw back the outer b...

Page 16: ...y s passive PoE Injector is dangerous and may cause damage to the device Please follow instructions below to connect PoE power to this device Step 1 Unscrew bottom cover and remove it Step 2 Insert RJ...

Page 17: ...a IN port of PoE Injector to your computer s network port In this way you can use two RJ45 Ethernet cables to provide power source for the device and connect it to the host PC s Ethernet port for conf...

Page 18: ...d apply various connection protocols to let gateways or user s devices dial in ISPs and then link to the Internet via different kinds of transmit media So the WAN Connection lets you specify the WAN P...

Page 19: ...ll the available physical interfaces After clicking on the Edit button for the interface in Physical Interface List window the Interface Configuration window will appear to let you configure a WAN int...

Page 20: ...e inserted into the WAN packets from Gateway for specific services Please enable VLAN tagging and specify tag in the WAN physical interface Please be noted that only Ethernet and ADSL physical interfa...

Page 21: ...vailable to multiple WAN gateway Operation Mode A Must fill setting Define the operation mode of the interface Select Always on to make this WAN always active Select Disable to disable this WAN interf...

Page 22: ...Configuration and related configuration windows for each WAN type For the Internet setup of each WAN interface you must specify its WAN type of physical interface first and then its related parameter...

Page 23: ...one WAN interface This device has featured by using dual SIM cards for one module with special fail over mechanism It is called Dual SIM Failover This feature is useful for ISP switch over when locat...

Page 24: ...SIM A or SIM B card first And when the connection is broken the gateway will switch to use the other SIM card for an alternate automatically and will not switch back to use original SIM card except c...

Page 25: ...terface Physical Interface N A Physical Interface i e 3G 4G shows the type of interface configured to map with Interface Name Operation Mode N A Operation Mode shows the current setting of Connection...

Page 26: ...hecked by default Choose which SIM card you want to use for the connection When SIM A First or SIM B First is selected it means the connection is built first by using SIM A SIM B And if the connection...

Page 27: ...cription Network Type 1 A Must filled setting 2 By default Auto is selected Select Auto to register a network automatically regardless of the network type Select 2G Only to register the 2G network onl...

Page 28: ...up profile scheme PIN code String format interger Enter the PIN Personal Identification Number code if it needs to unlock your SIM card Authentication 1 A Must filled setting 2 By default Auto is sel...

Page 29: ...be for this profile MCC String format integer Enter the MCC Mobile Country Code you want to use for this profile Note the MCC should be related to the MNC this filed can t be invalid value if MNC is f...

Page 30: ...ned with the smallest number Value Range 1 16 Profile The box is checked by default Check the box to enable this profile Uncheck the box to disable this profile in dialing up action Save N A Click the...

Page 31: ...twork WAN Physical Interface Operation Mode is selected to Always on Time Schedule 1 A Must filled setting 2 By default 0 Always is selected When 0 Always is selected it means this WAN is under operat...

Page 32: ...k down status Enter a number of detecting disconnection times to be the threshold before disconnection is acknowledged Value Range 2 10 seconds Target1 DNS1 set by default specifies the first target o...

Page 33: ...of this device The network device s on your network must use the LAN IP address of this device as their Default Gateway You can change it if necessary Note It s also the IP address of web UI If you c...

Page 34: ...filled setting 2 Lo is set by default Specify the Interface type It can be Lo or Br0 IP Address 1 An Optional setting 2 192 168 123 254 is set by default Enter the addition IP address for this device...

Page 35: ...VLAN Port based VLAN function can group Ethernet ports Port 1 Port 4 and WiFi Virtual Access Points VAP 1 VAP 8 together for differentiated services like Internet surfing multimedia enjoyment VoIP ta...

Page 36: ...s Points VAP 1 VAP 8 together with different VLAN tags for deploying subnets in Intranet All packet flows can carry with different VLAN tags even at the same physical Ethernet port for Intranet These...

Page 37: ...oup is equipped with DHCP 3 server to construct a 192 168 12 x subnet He also configure Meeting Rooms segment with VLAN ID 11 The VLAN group is equipped with DHCP 2 server to construct a 192 168 11 x...

Page 38: ...an specify members of one VLAN group to be able to access Internet or not Following is an example that VLAN groups of VID is 2 and 3 can access Internet but the one with VID is 1 cannot access Interne...

Page 39: ...a communication pair and one VLAN group can join many communication pairs But communication pair doesn t have the transitive property That is A can communicate with B and B can communicate with C it...

Page 40: ...g based Tag based VLAN allows you to add VLAN ID and select member and DHCP Server for this VLAN ID Go to Tag based VLAN List table Save NA Click the Save button to save the configuration Port based V...

Page 41: ...4094 VLAN Tagging Disable is selected by default The rule is activated according to VLAN ID and Port Members configuration when Enable is selected The rule is activated according Port Members configu...

Page 42: ...ver assign a DHCP Server IP Address that the gateway will relay the DHCP requests to the assigned DHCP server DHCP Server Name A Must filled setting Define name of the DHCP Server IP Pool A Must fille...

Page 43: ...the DHCP Server wants to match IP Address A Must filled setting Define the IP Address that the DHCP Server will assign If there is a request from the MAC Address filled in the above field the DHCP Ser...

Page 44: ...ers are allow to access WAN interface If uncheck a certain VLAN ID box it means the VLAN ID member can t access Internet anymore Note VLAN ID 1 is available always it is the default VLAN ID of LAN rul...

Page 45: ...ng Description VALN ID A Must filled setting Define the VLAN ID number range is 6 4094 Internet Access The box is checked by default Click Enable box to allow the members in the VLAN group access to i...

Page 46: ...gateway LAN interface with its default Subnet Mask setting as 255 255 255 0 and its default IP Pool ranges is from 100 to 200 as shown at the DHCP Server List page on gateway s WEB UI User can add mo...

Page 47: ...gn fixed IP address to map the specific client MAC address by select them then copy when targets were already existed in the DHCP Client List or to add some other Mapping Rules by manually in advance...

Page 48: ...ies to assign IP Addresses to the devices on the local area network LAN Create Edit DHCP Server Policy The gateway allows you to custom your DHCP Server Policy If multiple LAN ports are available you...

Page 49: ...DHCP Server Primary DNS IPv4 format The Primary DNS of this DHCP Server Secondary DNS IPv4 format The Secondary DNS of this DHCP Server Primary WINS IPv4 format The Primary WINS of this DHCP Server S...

Page 50: ...e previous setting Back N A When the Back button is clicked the screen will return to the DHCP Server Configuration page View Copy DHCP Client List When DHCP Client List button is applied DHCP Client...

Page 51: ...onfiguration Item Value setting Description Option Name 1 String format can be any text 2 A Must filled setting Enter a DHCP Server Option name Enter a name that is easy for you to understand DHCP Ser...

Page 52: ...t 3 IP list 4 URL format 5 A Must filled setting Should conform to Type Type Value 66 Single IP Address IPv4 format Single FQDN FQDN format 72 IP Addresses List separated by IPv4 format separated by 1...

Page 53: ...nt dual bands of operation There are several wireless operation modes provided by this device They are AP Router Mode WDS Only Mode and WDS Hybrid Mode You can choose the expected mode from the wirele...

Page 54: ...ices with the wireless gateway make sure your application scenario for WiFi network and choose the most adequate operation mode AP Router Mode This mode allows you to get your wired and wireless devic...

Page 55: ...local Gateway 1 through WDS Both gateways connected by WDS need to setup the remote AP MAC for each other All client hosts under gateway 2 3 can request IP address from the DHCP server at gateway 1 Be...

Page 56: ...nt VAPs As shown in the diagram the clients in VAP 1 and VAP 2 can communicate to each other when VAP Isolation is disabled Wi Fi Security Authentication Encryption Wi Fi security provides complete au...

Page 57: ...peration band for the WiFi module Basically this setting is fixed and cannot be changed once the module is integrated into the product However there is some module with selectable band for user to cho...

Page 58: ...te this function By default the box is checked it means that stations which associated to different VAPs cannot communicate with each other Multiple AP Names 1 A Must filled setting 2 VAP1 and VAP8 ar...

Page 59: ...t For security there are several authentication methods supported Client stations should provide the key when associate with this device When Open is selected The check box named 802 1x shows up next...

Page 60: ...ead of WEP without upgrading hardware Enter a Pre shared Key for it The length of key is from 8 to 63 characters AES The newest encryption system in WiFi it also designed for the fast 802 11n high bit...

Page 61: ...veral authentication methods supported Client stations should provide the key when associate with this device When Open is selected The check box named 802 1x shows up next to the dropdown list 802 1x...

Page 62: ...for it The length of key is from 8 to 63 characters AES The newest encryption system in WiFi it also designed for the fast 802 11n high bitrates schemes Enter a Pre shared Key for it The length of ke...

Page 63: ...of VAP to configure its setting at a time Enable Check the enable box to activate the selected VAP Max STA Limit the maximum number of client station Check this box and enter a limitation The box is u...

Page 64: ...er Port The default value is 1812 RADIUS Shared Key When Shared is selected The pre shared WEP key should be set for authenticating When Auto is selected The device will select Open or Shared by reque...

Page 65: ...for it The length of key is from 8 to 63 characters You are recommended to use AES encryption instead of any others for security Save N A Click the Save button to save the current configuration Undo...

Page 66: ...ct However there is some module with selectable band for user to choose according to his network environment Under such situation you can specify which operation band is suitable for the application M...

Page 67: ...h this device Rate N A It shows the data rate between client and this device RSSI0 RSSI1 N A It shows the RX sensitivity RSSI value for each radio path Signal N A The signal strength between client an...

Page 68: ...o to Basic Network WiFi Advanced Configuration Tab Select Target WiFi Target Configuration Item Value setting Description Module Select A Must filled setting Select the WiFi module to check the inform...

Page 69: ...cy and jitter when transmitting multimedia content over a wireless connection Short GI By default 400ns is selected Short GI Guard Interval is defined to set the sending interval between each packet N...

Page 70: ...implifies aspects of address assignment stateless address auto configuration network renumbering and router announcements when changing Internet connectivity providers 2 4 1 IPv6 Configuration The IPv...

Page 71: ...IP addressing type in the information provided by your ISP to setup the IPv6 network DHCPv6 DHCP in IPv6 does the same function as DHCP in IPv4 The DHCP server sends IP address DNS server addresses a...

Page 72: ...erver DSLAM on the ISP side provides IPv6 configuration upon receiving PPPoEv6 client request When PPPoEv6 server gets client request and successfully authenticates it the server sends IP address DNS...

Page 73: ...Internet IPv4 to IPv6 migration 6in4 uses tunneling to encapsulate IPv6 traffic over explicitly configured IPv4 links As defined in RFC 4213 the 6in4 traffic is sent over the IPv4 Internet inside IPv...

Page 74: ...2 A Must filled setting Define the selected IPv6 WAN Connection Type to establish the IPv6 connectivity Select Static IPv6 when your ISP provides you with a set IPv6 addresses Then go to Static IPv6 W...

Page 75: ...Server Secondary DNS An optional setting Enter the WAN secondary DNS Server MLD Snooping The box is unchecked by default Enable Disable the MLD Snooping function LAN Configuration LAN Configuration It...

Page 76: ...odified by default Enter the WAN secondary DNS Server MLD The box is unchecked by default Enable Disable the MLD Snooping function LAN Configuration LAN Configuration Item Value setting Description Gl...

Page 77: ...Ev6 connection If you want more information please contact your ISP Value Range 0 45 characters Connection Control Fixed value The value is Auto reconnect Always on MTU A Must filled setting Enter the...

Page 78: ...S An optional setting Enter the WAN secondary DNS Server MLD The box is unchecked by default Enable Disable the MLD Snooping function LAN Configuration LAN Configuration Item Value setting Description...

Page 79: ...ss A Must filled setting Filled Client IPv6 Address gotten from tunnel broker in this field Primary DNS An optional setting Enter the WAN primary DNS Server Secondary DNS An optional setting Enter the...

Page 80: ...Advertisement Lifetime A Must filled setting Enter the Router Advertisement Lifetime in seconds 200 is set by default Value Range 0 65535 Select Stateful to manage the Local Area Network to be Statef...

Page 81: ...Type Configuration page Usually all local hosts or servers behind corporate gateway are protected by NAT firewall NAT firewall will filter out unrecognized packets to protect your Intranet So all loca...

Page 82: ...On either side are you in accessing the email server at the LAN side or at the WAN side you don t need to change the IP address of the mail server Configuration Setting Go to Basic Network Port Forwar...

Page 83: ...ers behind office gateway You can set up those servers by using Virtual Server feature After trip if want to access those servers from LAN side by global IP without change original setting NAT Loopbac...

Page 84: ...ows you to access the WAN global IP address from your inside NAT local network It is useful when you run a server inside your network For example if you set a mail server at LAN side your local device...

Page 85: ...box to activate this port forwarding function Virtual Computer The box is checked by default Check the Enable box to activate this port forwarding function Save N A Click the Save button to save the s...

Page 86: ...ce setting above Protocol A Must filled setting When ICMPv4 is selected It means the option Protocol of packet filter rule is ICMPv4 Apply Time Schedule to this rule otherwise leave it as Always refer...

Page 87: ...a port range and Private Port can be selected Single Port or Port Range Value Range 1 65535 for Public Port Private Port When GRE is selected It means the option Protocol of packet filter rule is GRE...

Page 88: ...pplied Virtual Computer Rule Configuration screen will appear Virtual Computer Rule Configuration Item Value setting Description Global IP A Must filled setting This field is to specify the IP address...

Page 89: ...are not expected to receive by applications in the gateway or by other client hosts in the Intranet Certainly the DMZ host is also protected by the gateway firewall Activate the feature and specify t...

Page 90: ...eck the corresponding checkbox to activate it DMZ Pass Through Setting Go to Basic Network Port Forwarding DMZ Pass Through tab The DMZ host is a host that is exposed to the Internet cyberspace but st...

Page 91: ...the number of WAN interfaces for the product Pass Through Enable The boxes are checked by default Check the box to enable the pass through function for the IPSec PPTP and L2TP With the pass through f...

Page 92: ...ent SIP RTSP file transfer in IM applications etc In order for these protocols to work through NAT or a firewall either the application has to know about an address port number combination that allows...

Page 93: ...lowing diagram The NAT Gateway enables the SIP ALG feature so it will monitor the SIP Phone 1 actions open up the required ports and make the address and port translation in a SIP voice communication...

Page 94: ...cial AP The box is checked by default Check the Enable box to activate the Special AP function ALG Enable The box is checked by default Check the Enable box to activate the SIP ALG function Save N A C...

Page 95: ...Range 1 65535 Incoming Ports 1 A Must filled setting Enter the expected Incoming ports if User defined is selected in the Trigger Port dropdown list If you select other popular application from the d...

Page 96: ...utes to various network destinations Thus constructing routing tables which are held in the router s memory is very important for efficient routing Most routing algorithms use only one network path at...

Page 97: ...s of packets to be transferred via which gateway interface and which peer gateway to their destination It can be carried out by the Static Routing feature Dedicated packet flows from the Intranet will...

Page 98: ...isted one When Add or Edit button is applied the Static Routing Rule Configuration window will appear to let you define a static routing rule Enable Static Routing Just check the Enable box to activat...

Page 99: ...IPv4 Format 2 A Must filled setting Specify the Gateway IP of this static routing rule Interface Auto is set by default Select the Interface of this static routing rule It can be Auto or the available...

Page 100: ...way supports dynamic routing protocols including RIPv1 RIPv2 Routing Information Protocol OSPF Open Shortest Path First and BGP Border Gateway Protocol for you to establish routing table automatically...

Page 101: ...a routing protocol that uses link state routing algorithm It is the most widely used interior gateway protocol IGP in large enterprise networks It gathers link state information from available routers...

Page 102: ...te AS0 self IP is 10 100 0 1 and self ID is 100 It links with other BGP gateways in the Internet The scenario is like Subnet in one ISP to be linked with the ones in other ISPs By operating with BGP p...

Page 103: ...gured individually The RIP Configuration window lets you choose which version of RIP protocol to be activated or disable it The OSPF Configuration window can let you activate the OSPF dynamic routing...

Page 104: ...The OSPF configuration setting allows user to customize OSPF protocol through the router based on their office setting OSPF Configuration Item Value setting Description OSPF Disable is set by default...

Page 105: ...ea List rules It supports up to a maximum of 32 rule sets When Add button is applied OSPF Area Rule Configuration screen will appear OSPF Area Configuration Item Value setting Description Area Subnet...

Page 106: ...filled setting The ASN Number of this router on BGP protocol Value Range 1 4294967295 Router ID 1 IPv4 Format 2 A Must filled setting The Router ID of this router on BGP protocol Create Edit BGP Netw...

Page 107: ...s up to a maximum of 32 rule sets When Add button is applied BGP Neighbor Rule Configuration screen will appear BGP Neighbor Configuration Item Value setting Description Neighbor IP 1 IPv4 Format 2 A...

Page 108: ...on IP IPv4 Format Subnet Mask N A Routing record of Subnet Mask IPv4 Format Gateway IP N A Routing record of Gateway IP IPv4 Format Metric N A Routing record of Metric Numeric String Format Interface...

Page 109: ...amic DNS you can refer to Wikipedia website3 4 2 7 1 DNS DDNS Configuration DNS The gateway supports DNS server function for the connected local clients which get the LAN IP from dynamic IP scheme So...

Page 110: ...address to a static domain name allowing the gateway to be more easily accessed from various locations on the Internet As shown in the diagram user registered a domain name to a third party DDNS servi...

Page 111: ...een will appear Pre defined Domain Name Configuration Item Value setting Description Domain Name 1 String format can be any text 2 A Must filled setting Enter a domain name that mapping the IP Address...

Page 112: ...et by default Select your DDNS provider of Dynamic DNS It can be DynDNS org Dynamic DynDNS org Custom NO IP com etc Host Name 1 String format can be any text 2 A Must filled setting Your registered ho...

Page 113: ...to access It is indeed required that an access gateway satisfies the requirements of latency critical applications minimum access right guarantee fair bandwidth usage for same subscribed condition and...

Page 114: ...egory can be based on VLAN ID MAC Address IP Address Host Name or Packet Length Differentiated Services Specify the service type in a QoS rule for the target packets to be applied on Differentiated se...

Page 115: ...eature depends on model Outbound Inbound Control One QoS rule can be applied to the outbound or inbound direction of packet flow even them both This feature depends on model Two QoS rule examples are...

Page 116: ...6 199 to the code value AF Class2 High Drop he can use the Rule based QoS function to carry out this rule by defining an QoS rule as shown in above configuration Under such configuration all packets f...

Page 117: ...oS Function Configuration Item Value Setting Description QoS Type 1 Software is selected by default 2 The box is unchecked by default Select the QoS Type from the dropdown list and then click Enable b...

Page 118: ...d then the following WAN Interface Resource screen will show the related resources for configuration Bandwidth of Upstream Downstream Specify total upload download bandwidth of the selected WAN Value...

Page 119: ...y the WAN interface to apply the QoS rule Select All WANs or a certain WAN n to filter the packets entering to or leaving from the interface s Group 1 A Must filled setting 2 Src MAC Address is select...

Page 120: ...gn the min rate max rate and rate unit as the bandwidth settings in the Control Function Set MINR MAXR field Connection Sessions Select Connection Sessions as the resource type for the QoS Rule and yo...

Page 121: ...the group will have his own QoS service resource as specified in the rule Group Control If Group Control is selected all the group hosts share the same QoS service resource Time Schedule 1 A Must fill...

Page 122: ...n description Item Value setting Description Add N A Click the Add button to configure time schedule rule Delete N A Click the Delete button to delete selected rule s When Add button is applied Time S...

Page 123: ...u Select everyday or one of weekday Start Time Time format hh mm Start time in selected weekday End Time Time format hh mm End time in selected weekday Save N A Click Save to save the settings Undo N...

Page 124: ...Outdoor Cellular Gateway 124 3 2 User not supported Not supported feature for the purchased product leave it as blank...

Page 125: ...roup Name 1 String format can be any text 2 A Must filled setting Enter a group name for the rule It is a name that is easy for you to understand Member List NA This field will indicate the hosts memb...

Page 126: ...in N A Add the members to the group in this field You can enter the member information as specified in the Member Type above and press the Join button to add Only one member can be add at a time so yo...

Page 127: ...ternal Server Go to Object Definition External Server External Server tab The External Server setting allows user to add external server Create External Server When Add button is applied External Serv...

Page 128: ...CHAP is selected Session Timeout By default 1 The values must be between 1 and 60 Idle Timeout By default 1 The values must be between 1 and 26 Secondary Shared Key String format any text Authenticati...

Page 129: ...nsfer mode Select Passive or Active Server IP FQDN A Must filled setting Specify the IP address or FQDN used for the external server Server Port A Must filled setting Specify the Port used for the ext...

Page 130: ...users endorsements whom the person examining the certificate might know and trust The device also plays as a CA role Certificates are an important component of Transport Layer Security TLS sometimes c...

Page 131: ...identifier in the signature algorithm identifier of certificates Subject Name A Must filled setting This field is to specify the information of certificate Country C is the two letter ISO code for the...

Page 132: ...on Automatically re enroll aging certificates The box is unchecked by default When SCEP is activated check the Enable box to activate this function It will be automatically check which certificate is...

Page 133: ...nd Clients In addition since it has the root CA it also can sign Certificate Signing Requests CSR to form corresponding certificates for others These certificates can be used for two remote peers to m...

Page 134: ...bject Name Country C TW State ST Taiwan Location L Tainan Organization O AMITHQ Organization Unit OU HQRD Common Name CN HQRootCA E mail hqrootca amit com tw Configuration Path My Certificate Local Ce...

Page 135: ...sections to complete the whole user scenario Use default value for those parameters that are not mentioned in the tables Configuration Path My Certificate Local Certificate Configuration Name BranchC...

Page 136: ...N 1 interface They both serve as the NAT security gateways Gateway 1 generates the root CA and a local certificate HQCRT that is signed by itself Import the certificates of the root CA and HQCRT into...

Page 137: ...ficates or CSRs for representing the gateway The Local Certificate Configuration window can let you fill required information necessary for corresponding certificate to be generated by itself or corre...

Page 138: ...xtra Attributes A Must filled setting This field is to specify the extra information for generating a certificate Challenge Password for the password you can use to request certificate revocation in t...

Page 139: ...ring format can be any text 2 A Must filled setting This is an alternative approach to import a certificate You can directly fill in Copy and Paste the PEM encoded certificate string and click the App...

Page 140: ...can be used for two remote peers to make sure their identity during establishing a VPN tunnel Scenario Description same as the one described in My Certificate section Gateway 1 generates the root CA...

Page 141: ...and Issued Certificate sections to complete the setup for the whole user scenario Configuration Path Trusted Certificate Trusted CA Certificate List Command Button Import Configuration Path Trusted Ce...

Page 142: ...nature into the Trusted Client Certificate List of the Gateway 1 and the Local Certificate List of the Gateway 2 For more details refer to the Network B operation procedure in My Certificate section o...

Page 143: ...to import the specified CA certificate file to the gateway Import from a PEM 1 String format can be any text 2 A Must filled setting This is an alternative approach to import a CA certificate You can...

Page 144: ...button to generate CA Identifier 1 String format can be any text Fill in optional CA Identifier to identify which CA could be used for signing certificates Save N A Click Save to save the settings Clo...

Page 145: ...page Import Trusted Client Key When Import button is applied a Trusted Client Key Import screen will appear You can import a Trusted Client Key from an existed file or directly paste a PEM encoded st...

Page 146: ...one described in My Certificate section When the enterprise gateway owns the root CA and VPN tunneling function it can generate its own local certificates by being signed by itself Also imports the tr...

Page 147: ...et of its Intranet is 10 0 76 0 24 It has the IP address of 10 0 76 2 for LAN interface and 203 95 80 22 for WAN 1 interface The Gateway 2 is the gateway of Network B in branch office and the subnet o...

Page 148: ...ile Item Value setting Description Certificate Signing Request CSR Import from a File A Must filled setting Select a certificate signing request file you re your computer for importing to the gateway...

Page 149: ...Outdoor Cellular Gateway 149 Chapter 4 Field Communication not supported Not supported feature for the purchased product leave it as blank...

Page 150: ...r a combination of the two The tunnel technology supports data confidentiality data origin authentication and data integrity of network information by utilizing encapsulation protocols encryption algo...

Page 151: ...PN client as the initiator and the IPSec VPN server as the responder This gateway can be configured as different roles and establish number of tunnels with various remote devices Before going to setup...

Page 152: ...to be routed via this IPSec tunnel including HQ server access and Internet access you can just enable the Full Tunnel setting As a result every time users surfs web or searching data on Internet chec...

Page 153: ...nder and it must have a Static IP or FQDN It can allow many VPN clients initiators to connect to with various tunnel scenarios In short with a simple Dynamic VPN server setting many VPN clients can co...

Page 154: ...nds on Product specification The specified value will limit the maximum number of simultaneous IPSec tunnel connection The default value can be different for the purchased model Save N A Click Save to...

Page 155: ...perates in transport mode Hub and Spoke 1 An optional setting 2 None is set by default Select from the dropdown box to setup your gateway for Hub and Spoke IPSec VPN Deployments Select None if your de...

Page 156: ...s is set by default Check the Enable box to enable Keep alive function Select Ping IP to keep live and enter the IP address to ping Enter the ping time interval in seconds Value Range 30 999 seconds N...

Page 157: ...icate section of this manual and also Object Definition Certificate in web based utility Manually user needs to enter key ID to authenticate Manual key configuration will be explained in the following...

Page 158: ...ct Server Client or None Selected None no X Auth authentication is required Selected Server this gateway will be an X Auth server Click on the X Auth Account button to create remote X Auth client acco...

Page 159: ...3DES Specify the Authentication method It can be None MD5 SHA1 SHA2 256 SHA2 512 Specify the DH Group It can be None Group1 Group2 Group5 Group14 Group15 Group16 Group17 Group18 Check Enable box to e...

Page 160: ...tion is selected for Key Management as described in Authentication Configuration Window a series of configuration windows for Manual IPSec Tunnel configuration will appear The configuration windows ar...

Page 161: ...nder the Manually Key Management authentication configuration only one subnet is supported for both Local and Remote IPSec peer Manual Proposal Window Item Value setting Description Outbound SPI Hexad...

Page 162: ...el for site host to site host scenario when Edit button is applied a series of configuration screen will appear They are Tunnel Configuration Local Remote Configuration Authentication IKE Phase IKE Pr...

Page 163: ...ESP and AH Local Remote Configuration Window Item Value setting Description Local Subnet A Must fill setting Specify the Local Subnet IP address Local Netmask A Must fill setting Specify the Local Su...

Page 164: ...bers Select FQDN for Local ID and enter the FQDN Select User FQDN for Remote ID and enter the User FQDN Select Key ID for Remote ID and enter the Key ID English alphabet or number Note Remote ID will...

Page 165: ...Outdoor Cellular Gateway 165 5 1 2 OpenVPN not supported Not supported feature for the purchased product leave it as blank...

Page 166: ...ocol that it passes within the tunnel to provide privacy This Gateway can behave as a L2TP server and a L2TP client both at the same time L2TP Server It must have a static IP or a FQDN for clients to...

Page 167: ...ay Remote Subnet configuration item When you choose Remote Subnet you need to specify one more setting the remote subnet It is for the Intranet of L2TP VPN server So at L2TP client peer the packets wh...

Page 168: ...n L2TP Unchecked by default Click the Enable box to activate L2TP function Client Server A Must fill setting Specify the role of L2TP Select Server or Client role your gateway will take Below are the...

Page 169: ...L2TP client Value Range 1 255 Authentication Protocol A Must filled setting Select single or multiple Authentication Protocols for the L2TP server with which to authenticate L2TP clients Available au...

Page 170: ...k the enable box to enable the user Click Save button to save new user account The selected user account can permanently be deleted by clicking the Delete button Value Range 1 32 characters As a L2TP...

Page 171: ...tunnel name Enter a name that is easy for you to identify Value Range 1 32 characters Interface A Must filled setting Define the selected interface to be the used for this L2TP tunnel Select WAN 1 for...

Page 172: ...o authenticate Default Gateway Remote Subnet A Must filled setting Specify a gateway for this PPTP tunnel to reach PPTP server When you choose Remote Subnet you need to specify one more setting the re...

Page 173: ...the Interval and Max Failure Time Disable disable the LCP Echo Value Range 1 99999 for Interval Time 1 999 for Failure Time Service Port A Must filled setting Specify the Service Port for this L2TP t...

Page 174: ...for PPTP tunneling usually natively as standard features of the Windows PPTP stack The security gateway can play either PPTP Server role or PPTP Client role for a PPTP VPN tunnel or both at the same...

Page 175: ...efault Gateway and Remote Subnet for the Default Gateway Remote Subnet configuration item When you choose Remote Subnet you need to specify one more setting the remote subnet It is for the Intranet of...

Page 176: ...le box to activate PPTP function Client Server A Must fill setting Specify the role of PPTP Select Server or Client role your gateway will take Below are the configuration windows for PPTP Server and...

Page 177: ...erver User can specify the last IP address for the subnet from which the PPTP client s IP address will be assigned Value Range 1 255 Authentication Protocol 1 A Must fill setting 2 Unchecked by defaul...

Page 178: ...t The selected user account can permanently be deleted by clicking the Delete button Value Range 1 32 characters As a PPTP Client When select Client in Client Server a series PPTP Client Configuration...

Page 179: ...Always on Failover Load Balance Failover Always on Define whether the PPTP client is a failover tunnel function or an always on tunnel Note If this PPTP is a failover tunneling you will need to selec...

Page 180: ...e packets come through the PPTP VPN tunnel The Remote Subnet format must be IP address netmask e g 10 0 0 2 24 Authentication Protocol 1 A Must fill setting 2 Unchecked by default Specify one ore mult...

Page 181: ...e server must have a Static IP or a FQDN Any peer gateway can be worked as either a client or a server even using the same set of configuration rule GRE Tunnel Scenario To setup a GRE tunnel each peer...

Page 182: ...Setting Go to Security VPN GRE tab The GRE setting allows user to create and configure GRE tunnels Enable GRE Enable GRE Window Item Value setting Description GRE Tunnel Unchecked by default Click th...

Page 183: ...Failover Always Define whether the GRE tunnel is a failover tunnel function or an Always on tunnel Note If this GRE is a failover tunneling you will need to select a primary GRE tunnel from which to...

Page 184: ...e subnet if the default gateway is not used to connect to the GRE server The Remote Subnet format must be IP address netmask e g 10 0 0 2 24 DMVPN Spoke Unchecked by default Specify whether the gatewa...

Page 185: ...2 Firewall The firewall functions include Packet Filter URL Blocking Content Filter MAC Control Application Filter IPS and some firewall options The supported function can be different for the purchas...

Page 186: ...ite list Allow those match the following rules and define the rules Rule 1 is to allow HTTP packets to pass and Rule 2 is to allow HTTPS packets to pass Under such configuration the gateway will allow...

Page 187: ...cked Log Alert The box is unchecked by default Check the Enable box to activate Event Log Save N A Click Save to save the settings Undo N A Click Undo to cancel the settings Create Edit Packet Filter...

Page 188: ...ned before this option become available Refer to Object Definition Grouping Host grouping You may also access to create a group by the Add Rule shortcut button Destination IP 1 A Must filled setting 2...

Page 189: ...d otherwise select User defined Service and specify a port range Then for Destination Port select a predefined port dropdown box when Well known Service is selected otherwise select User defined Servi...

Page 190: ...ts listed in the rule list will be blocked if one pattern in the requests matches to one rule Other Web requests can pass through the gateway In contrast when you choose Deny all to pass except those...

Page 191: ...URL Domain Name Keyword the destination service ports the integrated time schedule rule and the rule activation Enable URL Blocking Configuration Item Value setting Description URL Blocking The box is...

Page 192: ...te group must be pre defined before this option become available Refer to Object Definition Grouping Host grouping Source MAC 1 A Must filled setting 2 Any is set by default This field is to specify t...

Page 193: ...ecific range of Ports entered in this field Time Schedule Rule A Must filled setting Apply a specific Time Schedule to this rule otherwise leave it as 0 Always If the dropdown list is empty ensure Tim...

Page 194: ...MAC addresses he can use the MAC Control function to reject with the black list configuration MAC Control with Black List Scenario As shown in the diagram enable the MAC control function and specify t...

Page 195: ...ite List Deny MAC Address Below is set by default When Deny MAC Address Below is selected as the name suggest packets specified in the rules will be blocked black listed In contrast with Allow MAC Add...

Page 196: ...hat is easy for you to remember MAC Address Use to Compose 1 MAC Address string Format 2 A Must fill setting Specify the Source MAC Address to filter rule Time Schedule A Must fill setting Apply Time...

Page 197: ...enario When the administrator of the gateway wants to block the Web requests for dedicated contents or objects he can use the Web Content Filters function to carry out such request blocking As shown i...

Page 198: ...ate this filter function as the name suggests this pattern matching rule define as the packet with the keyword Cookie Check the Java box to activate this filter function as the name suggests this patt...

Page 199: ...lect IP Range to filter packets coming from a specified range of IP address entered in this field Select IP Address based Group to filter packets coming from a pre defined group selected Note Group mu...

Page 200: ...a rule by using the delimiter If a matching rule is found the packets with http header will be dropped Time Schedule 1 A Must filled setting 2 0 Always is selected by default Apply Time Schedule to th...

Page 201: ...P2P or Stream applications he can use the Application Filters function As shown in the diagram the Gateway is the gateway as a NAT router Specify IP Range 192 168 123 200 250 and enable the Applicatio...

Page 202: ...g Create Edit Application Filter Rules The gateway supports up to a maximum of 20 filter rule sets Ensure that the Application Filers is enabled before we can create filter rules When Add button is ap...

Page 203: ...fore this selection become available Refer to Object Definition Grouping Host Grouping Tab You may also access to create a group by the Add Rule shortcut button Setting done through the Add Rule butto...

Page 204: ...Gateway 204 Undo N A Click the Undo button to restore what you just configured back to the previous setting Back N A When the Back button is clicked the screen will return to the Application Filter Co...

Page 205: ...ion about this activity attempt to block stop it and report it You can enable the IPS function and check the listed intrusion activities when needed You can also enable the log alerting so that system...

Page 206: ...scription IPS The box is unchecked by default Check the Enable box to activate IPS function Log Alert The box is unchecked by default Check the Enable box to activate to activate Event Log Save N A Cl...

Page 207: ...r the traffic threshold in this field ICMP Flood Defense Click Enable box to activate this intrusion prevention rule and enter the traffic threshold in this field Value Range 10 10000 Port Scan Defect...

Page 208: ...is unchecked by default 3 Traffic threshold is set to 300 by default 4 The value range can be from 10 to 10000 Click Enable box to activate this intrusion prevention rule and enter the traffic thresh...

Page 209: ...to record the packet information like IP address port address ACK SEQ number and so on while they pass through the gateway and the gateway checks every incoming packet to detect if this packet is vali...

Page 210: ...k such packets from unknown users Discard Ping from WAN Remote Administrator Hosts Scenario Discard Ping from WAN makes any host on the WAN side can t ping this gateway reply any ICMP packets Enable t...

Page 211: ...he router allows network administrator to manage router remotely The network administrator can assign specific IP address and service port to allow accessing the router Remote Administrator Host Defin...

Page 212: ...t This field is to specify a Service Port to HTTP or HTTPS connection Value Range 1 65535 Enabling the rule The box is unchecked by default Click Enable box to activate this rule Save N A Click Enable...

Page 213: ...tion to ask guests or passengers to pass the authentication process before they can surf the Internet via the gateway There are two approaches including external captive portal and internal captive po...

Page 214: ...ded one an external LDAP server or an external AD server from the pre defined external server object list NOTE All Internet Packets will be forwarded to Captive Portal Web site of the gateway when Cap...

Page 215: ...ration Item Value setting Description Captive Portal The box is unchecked by default Check the Enable box to activate the Captive Portal function WAN Interface 1 A Must filled setting 2 WAN 1 is selec...

Page 216: ...Optional setting Specify the host IP s for the devices that will not be subjected to the captive portal authentication function The IP s filled in this field can access Internet directly instead of b...

Page 217: ...ly in practice computer systems Centralized management has a time and effort trade off that is related to the size of the company the expertise of the IT staff and the amount of technology being used...

Page 218: ...t You can edit the plain text configuration settings in the configuration screen as above Plain Text Configuration Item Value setting Description Clean NA Clean text area You should click Save button...

Page 219: ...ERT A Must filled Setting Specify the Trusted CA certificate for the OpenVPN client It will go through Base64 Conversion OPENVPN_LOCAL_CERT A Must filled Setting Specify the local certificate for Open...

Page 220: ...red as a configuration file ex txtConfig clone tmp config The contents in the configuration file are the same as the plain text commands mentioned above This action is exactly the same as performing t...

Page 221: ...act with your ISP or the ACS provider for help At the right upper corner of TR 069 Setting screen one Help command let you see the same message about that Scenario Managing deployed gateways through a...

Page 222: ...ario Operation Procedure In above diagram the ACS server can manage multiple gateways in the Internet The Gateway 1 is one of them and has 118 18 81 33 IP address for its WAN 1 interface When all remo...

Page 223: ...r the service port and the account information for connection requesting from the ACS server and the time interval for job inquiry Except the inquiry time there are no activities between the ACS serve...

Page 224: ...ACS password and manually set ConnectionRequest Port 1 A Must filled setting 2 By default 8099 is set You can ask ACS manager provide ACS ConnectionRequest Port and manually set Value Range 0 65535 Co...

Page 225: ...ment data on the managed systems as variables The protocol also permits active management tasks such as modifying and applying a new configuration through remote modification of these variables The va...

Page 226: ...privilege IP address can manage the devices but other remote NMS can t Parameter Setup Example Following tables list the parameter configuration as an example for the Gateway 1 in above diagram with S...

Page 227: ...d if the manager uses SNMPv3 protocol for configuring the Gateway 1 Only the UserName1 account can let the Gateway 1 accept the configuration from the NMS since the authority of the account is Read Wr...

Page 228: ...by default Select the version for the SNMP When Check the v1 box It means you can access SNMP by version 1 When Check the v2c box It means you can access SNMP by version 2c When Check the v3 box It me...

Page 229: ...text Specify this version 1 or version v2c user s community that will be allowed Read Only GET and GETNEXT or Read Write GET GETNEXT and SET access respectively The maximum length of the community is...

Page 230: ...cters Password 1 String format any text When your Privacy Mode is authNoPriv or authPriv you must specify the Password for this version 3 user Value Range 8 64 characters Authentication 1 None is sele...

Page 231: ...format any legal OID The OID Filter Prefix restricts access for this version 3 user to the sub tree rooted at the given OID Value Range 1 2080768 Enable 1 The box is checked by default Click Enable to...

Page 232: ...Item Value setting Description Server IP 1 A Must filled setting 2 String format any Ipv4 address Specify the trap Server IP The DUT will send trap to the server IP Server Port 1 String format any por...

Page 233: ...ected the authNoPriv You must specify the Authentication and Password Selected the authPriv You must specify the Authentication Password Encryption and Privacy Key Authentication 1 A v3 Must filled se...

Page 234: ...se Number 2 A Must filled setting 3 String format any number Specify the Enterprise Number for the particular private MIB Value Range 1 2080768 Enterprise OID 1 The default value is 1 3 6 1 4 1 12823...

Page 235: ...he device supports both Telnet and SSH Secure Shell CLI with default service port 23 and 22 respectively Telnet SSH Scenario Scenario Application Timing When the administrator of the gateway wants to...

Page 236: ...t 22 Enable Scenario Operation Procedure In above diagram Local Admin or Remote Admin can manage the Gateway in the Intranet or Internet The Gateway is the gateway of Network A and the subnet of its I...

Page 237: ...with CLI 1 The LAN Enable box is checked by default 2 The WAN Enable box is unchecked by default Check the Enable box to activate the Telnet with CLI function for connecting from WAN LAN interfaces Co...

Page 238: ...racter 2 The default password for telnet is m2mamit Type old password and specify new password to change root password Note You are highly recommended to change the default telnet password with yours...

Page 239: ...ccess gateway Change Password Item Value Setting Description Old Password 1 String any text 2 The default password for web based MMI is admin Enter the current password to enable you unlock to change...

Page 240: ...than the counting value an warning message Already reaching maximum Password Guessing times please wait a few seconds will be displayed and ignore the following login trials Login Timeout The Enable...

Page 241: ...nter the system name for identification purpose It can be the manufacture or any name for a device deployment System Information Item Value Setting Description WAN Type N A It displays the WAN Type of...

Page 242: ...it as auto mode so that the available server will be used for time synchronization one by one Daylight Saving Time 1 It is an optional item 2 Un checked by default Check the Enable button to activate...

Page 243: ...by NTP Protocol to get system date and time after you click on the Sync with Timer Server button Note Remember to select a correct time zone for the device otherwise you will just get the UTC Coordin...

Page 244: ...tion System Log tab View Email Log History View button is provided for network administrator to view log history on the gateway Email Now button enables administrator to send instant Email for analysi...

Page 245: ...Click the First button to jump to the first page Last N A Click the Last button to jump to the last page Download N A Click the Download button to download log to your PC in tar file format Clear N A...

Page 246: ...Alert Setting Window Item Value Setting Description Enable Un checked by default Check Enable box to enable sending event log messages to destined Email account defined in the E mail Addresses blank...

Page 247: ...e and Debug Log to Storage Log to Storage screen allows network administrator to select the type of events to log and be stored at an internal or an external storage Log to Storage Setting Window Item...

Page 248: ...need to specify the file name of new firmware by using Browse button and then click Upgrade button to start the FW upgrading process on this device If you want to upgrade a firmware which is from GPL...

Page 249: ...eboot this device by clicking the Reboot button and reset this device to default settings by clicking the Reset button System Operation Window Item Value Setting Description Reboot Now is selected by...

Page 250: ...mmunicating with carrier ISP by USSD command or doing a cellular network scan for diagnostic purpose In Cellular Toolkit section it includes several useful features that are related to cellular config...

Page 251: ...switch to secondary SIM and establish another cellular data connection with secondary SIM automatically If Data Usage feature is enabled all history of cellular data usage can be viewed at Status Stat...

Page 252: ...m Setting Value setting Description SIM Select 3G 4G 1 and SIM A by default Choose a cellular interface 3G 4G 1 or 3G 4G 2 and a SIM card bound to the selected cellular interface to configure its data...

Page 253: ...Restrict Un Checked by default Check the Enable box to activate the connection restriction function During the specified cycle period if the actual data usage exceeds the allowable data limitation th...

Page 254: ...do on a cellular phone Setup SMS Configuration Configuration Item Value setting Description Physical Interface The box is 3G 4G 1 by default Choose a cellular interface 3G 4G 1 or 3G 4G 2 for the foll...

Page 255: ...received the new SMS this value plus one Remaining SMS N A This value is SMS capacity minus received SMS When received the new SMS this value minus one New SMS N A Click New SMS button a New SMS scre...

Page 256: ...S Inbox List You can read or delete SMS reply SMS or forward SMS from this screen SMS Inbox List Item Value setting Description ID N A The number or SMS From Phone Number N A What the phone number fro...

Page 257: ...and manage PIN code on a SIM card through its web GUI Activate PIN code on SIM Card This gateway device allows you to activate PIN code on SIM card This example shows how to activate PIN code on SIM A...

Page 258: ...hange the SIM PIN setting for the selected SIM Card The number of physical modems depends on the gateway model you purchased SIM Status N A Indication for the selected SIM card and the SIM card status...

Page 259: ...N code password If the SIM Lock function is not enabled the Change PIN code button is disabled In the case if you still want to change the PIN code you have to enable the SIM Lock function first fill...

Page 260: ...e PUK status The status could be PUK Lock or PUK Unlock As mentioned earlier the SIM card will be locked by PUK code after too many trials of failure PIN code In this case the PUK Status will turns to...

Page 261: ...182 alphanumeric characters in length Unlike Short Message Service SMS messages USSD messages create a real time connection during an USSD session The connection remains open allowing a two way excha...

Page 262: ...e in the correct pre command and then click on the Send button for the session The responses from the USSD server will be displayed beneath the USSD Command line When commands typed in the USSD Comman...

Page 263: ...ls Comments N A Enter a brief comment for the profile Send USSD Request When send the USSD command the USSD Response screen will appear When click the Clear button the USSD Response will disappear USS...

Page 264: ...le You can configure each 3G 4G WAN interface by executing the network scanning one after another You can also specify the connection sequence of the targeted generation of mobile system 2G 3G LTE Net...

Page 265: ...etwork Provider List window and it appears when the Manually Scan Approach is selected in the Configuration window By clicking on the Scan button and wait for 1 to 3 minutes the found mobile operator...

Page 266: ...e specific functionality of the gateway On receiving the managing event the gateway will take action to change the functionality collect the required status for administration and also change the stat...

Page 267: ...connected Modbus devices Notifying Events Trigger Type Digital Input Power Change Connection Change WAN LAN VLAN WiFi DDNS Administration Modbus and Data Usage Actions Notify the administrator with S...

Page 268: ...e box to activate the Event Management function Enable SMS Management To use the SMS management function you have to configure some important settings first SMS Configuration Item Value setting Descri...

Page 269: ...through the SMS It supports up to a maximum of 5 accounts You can click the Add Edit button to configure the SMS account SMS Account Configuration Item Value setting Description Phone Number 1 Mobile...

Page 270: ...nt Email Service Configuration Item Value setting Description Email Server Option Select an Email Server profile from External Server setting for the email account setting Email Addresses 1 Internet E...

Page 271: ...1 32 characters Description 1 Any text 2 An Optional setting Specify a brief description for the profile DI Source ID1 by default Specify the DI Source It could be ID1 or ID2 The number of available D...

Page 272: ...cription for the profile DO Source ID1 by default Specify the DO Source It could be ID1 Normal Level Low by default Specify the Normal Level It could be Low or High Total Signal Period 1 Numberic Stri...

Page 273: ...Add Edit button to configure the profile Modbus Notifying Events Profile Item Value setting Description Modbus Name 1 String format 2 A Must filled setting Specify the Modbus profile name Value Range...

Page 274: ...g Specify the Device ID of the modbus device It could be from 1 to 247 Register 1 Numberic String format 2 A Must filled setting Specify the Register number of the modbus device Value Range 0 65535 Lo...

Page 275: ...ue setting Description Modbus Name 1 String format 2 A Must filled setting Specify the Modbus profile name Value Range 1 32 characters Description 1 Any text 2 An Optional setting Specify a brief desc...

Page 276: ...ID of the modbus device Value Range 1 247 Register 1 Numberic String format 2 A Must filled setting Specify the Register number of the modbus device Value Range 0 65535 Value 1 Numberic String format...

Page 277: ...the Managing Events function Create Edit Managing Event Rules Setup the Managing Event rules It supports up to a maximum of 128 rules When Add button is applied the Managing Event Configuration screen...

Page 278: ...settings as the action for the event VPN Select VPN Checkbox and the interested sub items IPSec Tunnel ON Off PPTP Client On Off L2TP Client On Off OpenVPN Client On Off the gateway will change the s...

Page 279: ...t trigger and handlers Enable Notifying Events Configuration Item Value setting Description Notifying Events The box is unchecked by default Check the Enable box to activate the Notifying Events funct...

Page 280: ...purchased product Description String format any text Enter a brief description for the Notifying Event Action All box is unchecked by default Specify at least one action to take when the expected eve...

Page 281: ...WAN interface IPv4 Network Status Item Value setting Description ID N A It displays corresponding WAN interface WAN IDs Interface N A It displays the type of WAN physical interface Depending on the mo...

Page 282: ...ase button is available when DHCP WAN Type is used and WAN connection is connected Connect button allows user to manually connect the device to the Internet Note Connect button is available when Conne...

Page 283: ...Description IPv4 Address N A It displays the current IPv4 IP Address of the gateway This is also the IP Address user use to access Router s Web based Utility IPv4 Subnet Mask N A It displays the curre...

Page 284: ...nctional buttons Detail Button when press windows of detail information will appear They are the Modem Information SIM Status and Service Information Refer to next page for more When the Detail button...

Page 285: ...this gateway LAN Client List Item Value setting Description LAN Interface N A Client record of LAN Interface String Format IP Address N A Client record of IP Address Type and the IP Address Type is S...

Page 286: ...whether the VAP wireless signal is enabled or disabled Op Mode N A The Wi Fi Operation Mode of VAP Depends of device model modes are AP Router WDS Only and WDS Hybrid Universal Repeater and Client SSI...

Page 287: ...tatistic shows all the received and transmitted packets on WiFi network WiFi IDS Status Item Value setting Description Authentication Frame N A It displays the receiving Authentication Frame count Ass...

Page 288: ...kets on WiFi network WiFi Traffic Statistic Item Value setting Description Op Band N A It displays the Wi Fi Operation Band 2 4G or 5G of VAP ID N A It displays the VAP ID Received Packets N A It disp...

Page 289: ...Outdoor Cellular Gateway 289 8 2 4 DDNS Status not supported Not supported feature for the purchased product leave it as blank...

Page 290: ...identify Tunnel Scenario N A It displays the Tunnel Scenario specified Local Subnets N A It displays the Local Subnets specified Remote IP FQDN N A It displays the Remote IP FQDN specified Remote Sub...

Page 291: ...nected OpenVPN Client Status OpenVPN Client Status Item Value setting Description OpenVPN Client Name N A It displays the Client name you have entered for identification Interface N A It displays the...

Page 292: ...ity VPN L2TP tab L2TP Client Status Item Value setting Description Client Name N A It displays Name for the L2TP Client specified Interface N A It displays the WAN interface with which the gateway wil...

Page 293: ...rity VPN PPTP tab PPTP Client Status Item Value setting Description Client Name N A It displays Name for the PPTP Client specified Interface N A It displays the WAN interface with which the gateway wi...

Page 294: ...ue setting Description Activated Filter Rule N A This is the Packet Filter Rule name Detected Contents N A This is the logged packet information including the source IP destination IP protocol and des...

Page 295: ...ng Web Content Filter Status Web Content Filter Status Item Value setting Description Activated Filter Rule N A Logged packet of the rule name String format Detected Contents N A Logged packet of the...

Page 296: ...nabled Refer to Security Firewall MAC Control tab Check Log Alert and save the setting Application Filters Status Application Filters Status Item Value setting Description Filtered Application Categor...

Page 297: ...e on Firewall Options String Format Disable or Enable SPI N A Enable or Disable setting status of SPI on Firewall Options String Format Disable or Enable Discard Ping from WAN N A Enable or Disable se...

Page 298: ...ly available for SNMP version 3 IP Address N A It displays the IP address of SNMP manager Port N A It displays the port number used to maintain connection with the SNMP manager Community N A It displa...

Page 299: ...t connection status with the TR 068 server TR 069 Status Item Value setting Description Link Status N A It displays the current connection status with the TR 068 server The connection status is either...

Page 300: ...revious button you will see the previous page of track list Next N A Click the Next button you will see the next page of track list First N A Click the First button you will see the first page of trac...

Page 301: ...Outdoor Cellular Gateway 301 8 5 2 Network Traffic not supported Not supported feature for the purchased product leave it as blank...

Page 302: ...of login statistics Next N A Click the Next button you will see the next page of login statistics First N A Click the First button you will see the first page of login statistics Last N A Click the La...

Page 303: ...303 8 5 4 Cellular Usage Go to Status Statistics Reports Cellular Usage tab Cellular Usage screen shows data usage statistics for the selected cellular interface The cellular data usage can be accumul...

Page 304: ...1995 1998 Eric Young eay cryptsoft com GPL License https www openssl org brctl ethernet bridge administration Stephen Hemminger shemminger osdl org Lennert Buytenhek buytenh gnu org version 1 1 GNU G...

Page 305: ...on MA 02111 1307 USA https sourceforge net projects mrts Openswan Version v2 6 38 GNU GENERAL PUBLIC LICENSE Version 2 June 1991 Copyright C 1989 1991 Free Software Foundation Inc 59 Temple Place Suit...

Page 306: ...t PPTPServ Version 1 3 4 GNU GENERAL PUBLIC LICENSE Version 2 June 1991 Copyright C 1989 1991 Free Software Foundation Inc 675 Mass Ave Cambridge MA 02139 USA Everyone is permitted to copy and distrib...

Page 307: ...client on the network Version 1 7 Copyright c 2006 2011 Thomas BERNARD CoovaChilli is an open source software access controller for captive portal UAM and 802 1X access provisioning Version 1 3 0 Copy...

Page 308: ...Fifth Floor Boston MA 02110 1301 USA mysql 5_1_72 a release of MySQL a dual license SQL database server Version 5 1 72 Copyright c 2000 2013 Oracle and or its affiliates FreeRadius a high performance...

Reviews: