background image

© Microhard  

  

62 

 

4.0  Configuration 

 

Image 4

-

4

-

1:  Firewall >  Status

 

4.4 Firewall

 

 

4.4.1 Firewall > Summary

 

 

The Firewall Summary allows a user to see detailed information about how the firewall is operating. The 

All, Filter, Nat, Raw, and Mangle options can be used to view different aspects of the firewall.

 

Summary of Contents for pMDDL5824

Page 1: ...z Digital Data Link Document pMDDL5824 Operating Manual v1 1 0 pdf FW v1 4 0 Build 1013 13 Operating Manual 150 Country Hills Landing NW Calgary Alberta Canada T3K 5P3 Phone 403 248 0028 Toll Free 1 8...

Page 2: ...FUNCTIONAL WARRANTY Indemnification The Purchaser shall indemnify Microhard Systems Inc and its respective directors officers employees suc cessors and assigns including any subsidiaries related corpo...

Page 3: ...trations that further elaborate on the accompanying text but also several symbols which you should be attentive to Caution or Warning Usually advises against some action which could result in undesire...

Page 4: ...end users from replacing them with non approved antennas Antennas not listed in the tables must be tested to comply with FCC Section 15 203 unique antenna connectors and Section 15 247 emissions WARN...

Page 5: ...ent une installation emp chant les utilisateurs finaux de les remplacer par des antennes non approuv es Antennes ne figurant pas dans les tableaux doivent tre test s pour se conformer la Section 15 20...

Page 6: ...Description Initials Date 1 0 0 Preliminary Release Based on Firmware v1 4 0 Build 1013 2 PEH Nov 2018 1 1 0 Updated to firmware 1 4 0 Build 1013 13 Updated pictures drawings to reflect hardware chan...

Page 7: ...ding 24 3 1 3 OEM Pin Descriptions 25 3 1 4 USB Device Mode 27 3 2 pMDDL5824 Development Board Enclosed 28 3 2 1 Development Board Mechanical Drawings 29 3 2 2 Enclosed Mechanical Drawings 30 3 2 3 Co...

Page 8: ...ng 64 4 4 4 MAC IP List 66 4 4 5 Rules 68 4 4 4 Default 70 4 5 Serial 71 4 5 1 Summary 71 4 5 2 Data Console Port Settings 72 Data Baud Rate 73 IP Protocol Config 75 TCP Client 75 TCP Server 75 TCP Cl...

Page 9: ...6 1 Path Calculation 109 6 2 Installation of Antenna System Components 110 6 2 1 Antennas 110 6 2 2 Antenna Selection Placement Orientation 111 6 2 3 Coaxial Cable 112 6 2 4 Surge Arrestors 112 6 2 5...

Page 10: ...service for most equipment types which employ a serial RS232 485 interface the pMDDL5824 can be used in various types of applications such as 1 1 Performance Features Key performance features of the...

Page 11: ...rmit Operating Modes Master Slave Remote Repeater Mesh Node Management Local Serial Console Telnet WebUI SNMP FTP Wireless Upgrade Diagnostics Status LED s RSSI remote diagnostics SNR Input Voltage OE...

Page 12: ...X 2 25 57mm X 0 2 5 mm Development Board 2 75 70 mm X 3 25 83 mm X 0 0 75 19 mm Weight OEM Approx 20 grams Development Board Approx 65 grams 85 grams with radio installed Connectors OEM Antenna UFL x2...

Page 13: ...2 5 8 95 5 30dBm 16QAM_3 4 8 6 93 30dBm 64QAM_2 3 11 4 88 30dBm 64QAM_3 4 12 8 86 30dBm 64QAM_5 6 14 83 5 30dBm Table 1 2 pMDDL5824 Performance Specifications MIMO OFF Modulation IPerf Throughput Mbps...

Page 14: ...setting configured as Static IP Address 192 168 168 1 Subnet Mask 255 255 255 0 DHCP is enabled by default and will assign an IP to a connected device or computer with DHCP enabled 2 1 Getting Started...

Page 15: ...logged in the System Summary window will be displayed The factory default login User name admin Subnet admin You will be forced to change the default password upon logging in for the first time The F...

Page 16: ...de Master Network ID pMDDL Channel Bandwidth 8 MHz Channel Frequency 76 2477 MHz Slave Ensure the pMDDL5824 is fully booted solid blue CPU LED then press and hold the CFG button Once the CPU LED begin...

Page 17: ...multiple remotes could be used to view the video from multiple locations 2 3 1 Configuring the Master Use Section 2 1 Getting Started to connect power up and log in to a pMDDL5824 unit Give the pMDDL5...

Page 18: ...ation and then RF from the submenu list For bench or close proximity testing it is best to use a lower power setting to prevent RF saturation Select 20dBm from the TX Power setting The remaining setti...

Page 19: ...nd pMDDL5824 unit Give the pMDDL5824 unit an unique IP address Choose Static IP for the Connection Type Enter the following Network Information IP Address 192 168 168 12 IP Subnet Mask 255 255 255 0 D...

Page 20: ...igation and then RF from the submenu list For bench or close proximity testing it is best to use a lower power setting to prevent RF saturation Select 20dBm from the TX Power setting The remaining set...

Page 21: ...tart If any additional settings need to be changed ensure they are also changed on all radios The RSSI LED s represent signal strength the more LED s that are illuminated the stronger the signal The W...

Page 22: ...irements The Microhard development board can provide a convenient evaluation platform to test and design with the module Contact Microhard Systems for details Any pMDDL5824 module may be configured as...

Page 23: ...Microhard 23 3 1 1 pMDDL5824 OEM Mechanical Drawing 3 0 Hardware Features...

Page 24: ...Microhard 24 3 1 2 pMDDL5824 PCB PAD Placement 3 0 Hardware Features...

Page 25: ...83 81 79 77 75 73 71 69 67 65 63 61 GND GND NC NC GND NC NC GND NC NC NC NC NC USB_Mode Reset NC NC VRF 5 0v VRF 5 0v VRF 5 0v VRF 5 0v VCC 3 3V VCC 3 3V VCC 3 3V VCC 3 3V NC NC NC NC NC NC NC NC NC...

Page 26: ...rrent limiting resistor 8mA maximum O RSSI2 20 Receive Signal Strength Indicator 2 Active high cannot drive LED directly Requires current limiting resistor 8mA maximum O RSSI3 22 Receive Signal Streng...

Page 27: ...ted through 1K resistor to GND 1 Host I VCC 85 87 89 91 Positive voltage supply voltage for the digital section of the module 3 3V I VRF 93 95 97 99 Positive voltage supply voltage for the radio modul...

Page 28: ...e pMDDL5824 without the need to design a custom interface PCB right from the start The pMDDL5824 motherboard to be plugged in and provides standard interfaces indicators for Ethernet RJ45 x2 RS232 485...

Page 29: ...Microhard 29 3 0 Hardware Features 3 2 1 pMDDL5824 Development Board Mechanical Drawings...

Page 30: ...Microhard 30 3 0 Hardware Features 3 2 2 pMDDL5824 Enclosed Mechanical Drawings...

Page 31: ...work devices The default IP address for this port is 192 168 168 1 Ethernet WAN The Ethernet WAN port is a standard RJ45 Port that can be used as a separate WAN port for Router functions or can be bri...

Page 32: ...TP Recovery Set an IP on a PC to 192 168 1 1 Use a TFTP session to push the firmware file to the modems recovery IP of 192 168 1 39 See Appendix for Firmware Recovery Procedure Master Reset Runs Maste...

Page 33: ...sing an Ethernet cable apply power to the pMDDL5824 and wait approximately 60 seconds for the system to load open a web browser and enter the factory default IP address 192 168 168 1 of the unit logon...

Page 34: ...ay format prohibits others from viewing the password The Remember my password checkbox may be selected for purposes of convenience however it is recommended to ensure it is deselected particularly onc...

Page 35: ...Name System Log Settings System Time Date Services Enable Disable and configure port numbers for SSH Telnet HTTP and HTTPS services Maintenance Remote firmware Upgrades reset to defaults configuratio...

Page 36: ...d when accessing units remotely a convenient cross reference for the unit s WAN IP address This name appears when logged into a telnet session Host Name Values characters pMDDL5824 varies up to 64 cha...

Page 37: ...ting Mode as seen below Image 4 1 3 System Settings Time Settings Network Time Protocol NTP can be used to synchronize the time and date or computer systems with a centralized referenced server This c...

Page 38: ...the dropdown list Values selection varies POSIX TZ String This displays the POSIX TZ String used by the unit as determined by the Timezone setting Values read only varies NTP Server Enter the IP Addre...

Page 39: ...port Telnet Using the Telnet Service Enable Disable function you can disable the Telnet service from running on the pMDDL5824 The port used by the Telnet service can also be modified The default is 2...

Page 40: ...ms Select Upgrade Firmware to start the upgrade process This can take several minutes no default Values file Firmware Upgrade Occasional firmware updates may be released by Microhard Systems which may...

Page 41: ...n above If the selected file is password protected the password must be set before restoring the file using the Set Password field under Security for Configurations Security for Configurations Backup...

Page 42: ...mage 4 1 7 System Reboot Enable or disable the Scheduled Reboot Status Values selection Enable Disable Set the reboot schedule to reboot the modem once a day week or month at a time and date specified...

Page 43: ...1 Network Status The Network Summary display gives a overview of the currently configured network interfaces including the Connection Type Static DHCP IP Address Net Mask Default Gateway DNS and IPv4...

Page 44: ...tage Ensures unique IP addresses are assigned from a central point DHCP server within a network Disadvantage The address of a particular device is not known and is also subject to change STATIC addres...

Page 45: ...able the information required to identify the various devices on the subnet If the pMDDL5824 is integrated into a network which has a defined gateway then as with other hosts on the network this gatew...

Page 46: ...e The Server issues IP address information at the request of a DHCP Client which receives the information The option is used to enable or disable the DHCP service for devices connected to the LAN Port...

Page 47: ...pecify the alternate DNS server address to be assigned to DHCP devices Alternate DNS Server Values IP Address IP Address Enter the Domain Name for the DHCP devices Domain Name Values string IP Address...

Page 48: ...n and is also subject to change STATIC addresses must be tracked to avoid duplicate use yet they may be permanently assigned to a device Image 4 2 6 Network WAN Configuration If Static Connection Type...

Page 49: ...uting table This is result in all data being sent to the WAN interface if there the destination network is not directly connected LAN Wireless etc and no other route has been specified In cases where...

Page 50: ...drivers are available from Microhard Systems Image 4 2 7 Network USB The RNDIS Ethernet USB port can be configured to operate as an additional LEN Ethernet Port with the current LAN Bridged or it can...

Page 51: ...ss for DHCP Server features MAC binding to allow connected devices to automatically obtain a specific IP address For configuration of the LAN DHCP Service see Network LAN Edit LAN DHCP Image 4 2 8 Net...

Page 52: ...L5824 where to send data Image 4 2 9 Network Routes Routes can be names for easy reference or to describe the route being added Name Values characters no default Enter the network IP address for the d...

Page 53: ...outes priority the lower the metric is the better the route The more hops it takes to get to a destination the higher the metric Metric Values Integer 0 Define the exit interface Is the destination a...

Page 54: ...x Full Half can all be configured on the pMDDL5824 If set to Auto the pMDDL5824 will negotiate and determine the best connection speed and mode Mode Values selection Auto Manual Enable or disable auto...

Page 55: ...d IP address are shown however not only DHCP assigned devices are listed in the device list any devices even those statically assigned that are connected through the local network interface s are disp...

Page 56: ...ating Mode Master Slave etc the Network ID being used the Compatibility Mode Channel Bandwidth and frequency information and the type of security used Traffic Status shows statistics about the transmi...

Page 57: ...es selection On Off The pMDDL5824 is a dual frequency modem that can operate in the 5 8 GHz RF band OR the 2 4 GHz band Use this field to toggle which mode is currently in use It is recommended to use...

Page 58: ...ireless Distance parameter allows a user to set the expected distance the wireless signal needs to travel The pMDDL5824 sets various internal timeouts to account for this travel time Longer distances...

Page 59: ...s See the diagram below for an example M S Wireless Ethernet Ethernet S Ethernet Wireless The Video source should always be connected to the Master radio Diagram 4 3 2 Video Application Mesh In a Mesh...

Page 60: ...r to multiple receivers it is recommended to configure the system with Extended Addressing disabled and also select a proper multicast rate defined by the link budget In this case the multicast traffi...

Page 61: ...w the correct Encryption Key Security options are dependent on the version type Export versions may not have all optional available to meet regulatory requirements set government policies Encryption T...

Page 62: ...irewall Status 4 4 Firewall 4 4 1 Firewall Summary The Firewall Summary allows a user to see detailed information about how the firewall is operating The All Filter Nat Raw and Mangle options can be u...

Page 63: ...ess disabled in the WAN Remote Management option Values Block Allow LAN to WAN Access Control Allows or Blocks traffic from the LAN accessing the WAN unless specified otherwise using the Access Rules...

Page 64: ...ific IP Addresses and Ports on the LAN Port forwarding can be used in combination with other firewall features but the Firewall must be enabled for Port forwarding to be in effect If the WAN Request i...

Page 65: ...ress of the device you are forwarding traffic to Values IP Address 192 168 2 1 Internal Port Target port number of the internal server on the LAN IP entered above Single port or port ranged can be spe...

Page 66: ...wing connections based on the IP Address Subnet MAC IP List can be used alone or in combination with LAN to WAN Access Control to provide secure access to the physical ports of the pMDDL5824 Firewall...

Page 67: ...asks example 192 168 1 0 to 192 168 1 255 represents all IP Addresses in the 192 168 1 0 24 network Put same IP in both boxes for a single IP match Values IP Address 192 168 0 0 Action The Action is u...

Page 68: ...arges from your provider Rule Name The rule name is used to identify the created rule Each rule must have a unique name and up to 10 characters can be used Values 10 Chars characters Action The Action...

Page 69: ...s Match incoming traffic from the specified destination IP range Boxes accept single IP Addresses without network masks example 192 168 1 0 to 192 168 1 255 represents all IP Addresses in the 192 168...

Page 70: ...6 Firewall Default 4 4 6 Firewall Default The firewall can be returned to default setting without requiring the entire modem to be reset to defaults It is recommended to restart the modem once change...

Page 71: ...ed The USB port will appear as a serial device on the host system The Summary window shows a number of status items that aid in viewing the operation statistics and troubleshooting of the Serial USB S...

Page 72: ...serial communications port Serial device data may be brought into the IP network through TCP UDP or multicast it may also exit the pMDDL5824 network on another pMDDL5824 serial port The fully featured...

Page 73: ...port The default is 8 data bits No parity and 1 Stop bit Data Format Values selection 8N1 8E1 8O1 Enabling the escape sequence allows users to temporarily exit data mode and enter console mode for the...

Page 74: ...ransmit As per the MODBUS standard frames will be marked as bad if the time gap between frames is greater than 1 5 characters but less than the Character Timeout value Character Timeout Values charact...

Page 75: ...s recover faster in environments where the wireless link is weak unstable This is ideal for critical near real time applications such as flight control data Data is not buffered during outages Default...

Page 76: ...receiving data from the serial port The default value is a good example of a valid multicast address Default 224 1 1 2 Multicast Port A UDP port that this Nano IP will send UDP packets to The Multipo...

Page 77: ...will use to receive multicast UDP packets sent by a UDP Point to Multipoint P unit Note that the default value for this field matches the default Multicast IP Address of the UDP Point to Multipoint P...

Page 78: ...received Generally this does not need to be changed Default CLIENTSERVER PPP LCP Echo Failure Number The PPP server will presume the peer to be dead if the LCP echo requests are sent without receiving...

Page 79: ...USB Serial Composite Drivers are available which allow the pMDDL5824 to appear as a serial device to a USB Host PC etc The USB port can be set to Idle or to operate as a Data port as seen below Gadge...

Page 80: ...ntering the IP address or host name of a destination device in the Ping Host Name field use Count for the number of ping messages to send and the Packet Size to modify the size of the packets sent 4 6...

Page 81: ...th Iperf or PC running an Iperf client If set to Iperf client the pMDDL5824 will connect to or send packets to a specified Iperf server Iperf Mode Select between an Iperf Server listens for incoming c...

Page 82: ...ng Mode Enable USB Tethering Enabling USB Tethering with open all WAN requests on the firewall to allow for proper operation Values selection ON OFF Forward Video If enabled the pMDDL5824 will allow v...

Page 83: ...been reset to factory defaults it is mandatory to change the default password for admin the modem will prompt a user to do so upon the first login Image 4 7 1 Users Password Change Enter a new passwo...

Page 84: ...Users Enter the desired username Minimum or 5 character and maximum of 32 character Changes will not take effect until the system has been restarted Username Values characters no default Min 5 charac...

Page 85: ...rocessing of the information sent by a device either responses to queries or device sourced traps The MIB in the device relates subroutine addresses to objects in order to read data from or write data...

Page 86: ...lows the SNMP agent to process SNMPv1 and SNMPv2c requests This community name has only READ priority Read Only Community Name Values string public Also a plain text password mechanism used to weakly...

Page 87: ...ser Authentication Password Values string 00000000 SNMPv3 user s encryption password Only valid when V3 User Authentication Level set to AuthPriv see above V3 User Privacy Password Values string 00000...

Page 88: ...ame Values string TrapUser Enter the IP address of the SNMP host to which SNMP traps are sent from the device Trap Manage Host IP Values IP Address 0 0 0 0 Enable or Disable authentication requirement...

Page 89: ...icrohard 89 4 0 Configuration Enable or Disable WAN IP Traps Device will send a trap any time the WAN IP has been changed Generally used with dynamic IP addresses WAN IP Values selection Disable Enabl...

Page 90: ...y service will report the MAC Address IP Address Description Product Name Firmware Version Operating Mode and the Network ID Specify the port running the discovery service on the pMDDL5824 unit Server...

Page 91: ...Microhard 91 4 0 Configuration 4 7 4 Admin Logout The logout function allows a user to end the current configuration session and prompt for a login screen Image 4 7 6 Admin logout...

Page 92: ...P Address if allowed in the firewall settings for remote configuration or to the local RJ45 interface Once a session is established a login is required to continue As seen in the Serial port setup the...

Page 93: ...that can be used to query and set values AT command_name parameter1 parameter2 Sets Values AT command_name Queries the setting Query Syntax AT MSCNTO Enter MSCNTO Command Syntax AT MSCNTO Timeout_s P...

Page 94: ...1 to 65535 Default is 20097 AT W AT MASNMP Get Set SNMP service AT MASNMP Mode ROCommunity RWCommunity Port Version Mode 0 Disable 1 Enable ROCommunity Read Only Community Name 1 to 32 characters RWC...

Page 95: ...300 1 600 2 1200 3 2400 4 3600 5 4800 6 7200 7 9600 8 14400 9 19200 10 28800 11 38400 12 57600 13 115200 14 230400 15 460800 16 921600 AT W AT MCDF2 Get Set Serial port data format AT MCDF2 Data Form...

Page 96: ...to point AT MCUPP2 Remote IP Remote Port Listening Port UDP Timeout Parameters Remote IP valid IP address Remote Port 1 to 65535 Listening Port 1 to 65535 UDP Timeout 1 to 65535 in seconds AT W AT MC...

Page 97: ...ge AT MFPORTFWD AT MFPORTFWD Name AT MFPORTFWD Name DEL AT MFPORTFWD Name ADD Source Internal IP Internal Port Protocol External Port SNAT AT MFPORTFWD Name EDIT Source Internal IP Internal Port Proto...

Page 98: ...ame DEL AT MNLAN LAN Name ADD EDIT Protocol IP Netmask Gateway Where Protocol 0 AT MNLAN LAN Name ADD EDIT Protocol Where Protocol 1 or 3 AT MNLAN LAN Name EDIT Protocol IP Netmask Where Protocol 2 an...

Page 99: ...ode Protocol Where Mode 2 and Protocol 2 AT MNWAN Mode Where Mode 1 Parameters Mode 0 Independent WAN 1 Bridge with LAN Port 2 Independent LAN Protocol 0 Static IP 1 DHCP 2 None IP Valid IP address Ne...

Page 100: ...e Output MNEMAC 00 0F 92 02 F9 0F OK Immediate AT MNPORT Get Set the Ethernet port configuration AT MNPORT Ethernet Port Mode Auto Negotiation Speed Duplex Parameters Ethernet Port 0 WAN 1 LAN Mode 0...

Page 101: ...sable DHCP Server 1 Enable DHCP Server Start IP The starting address DHCP assignable IP Addresses Limit The maximum number of IP addresses Lease Time The DHCP lease time in minutes 2 2147483647 minute...

Page 102: ...18 09 20 14 26 19 Immediate AT MSMNAME Get Set modem Name setting AT MSMNAME Modem_Name Parameter Modem_Name 1 64 characters Must be alphanumeric or dots or dashes or underscores _ AT W AT MSRTF Reset...

Page 103: ...Serial 0 GS0 Flow Control 0 none 1 RTS CTS AT W AT MUSBDM Get Set Serial USB port data mode AT MUSBDM USB Serial Data Mode Parameters USB Serial 0 GS0 Data Mode 0 Seamless 1 Transparent AT W AT MUSBCT...

Page 104: ...Server Port 1 to 65535 Outgoing timeout 1 to 65535 in seconds Server Mode 0 Monitor 1 Polling Polling timeout 1 to 65535 in seconds Local Listening Port 1 to 65535 Incoming timeout 1 to 65535 in secon...

Page 105: ...Bandwidth Symbol Rate Available radio channel bandwidth for pDDL mode 0 8 MHz 1 4 MHz 2 2 MHz 3 1 MHz Symbol Rate Only need to set for 2MHz and 1MHz bandwidth 0 Normal 1 Fast AT W AT MWRBAND Get Set r...

Page 106: ...Type Key AT MWVENCRYPT Encryption Type Key Encryption Type Radio Virtual Interface Encryption Type 0 Disabled 1 AES 128 Key Min 8 characters Max 64 characters AT W AT MWRESYNC RF Re Sync from the sla...

Page 107: ...not enough to completely satisfy RF path require ments for a robust communications link Transmit Power Having read thus far through the factors to be considered it should be clear that they are all i...

Page 108: ...some may choose to scrimp on the physical deployment particularly when it comes to antenna tower heights Path calculations provide results which specify required antenna heights For cost savings and...

Page 109: ...are expressed in dB dBi or dBm as applicable Assuming a path loss of 113dB for this example the fade margin 143 113 30dB 30dB exceeds the desired fade margin of 20dB therefore this radio communication...

Page 110: ...rpendicular to the ground most common orienta tion the radiated signal will be vertically polarized if parallel to the ground the polarization is horizontal The network topology application and path c...

Page 111: ...rer for accurate wavelength calculations Circular Polarized Antenna Linear Orthogonal Antenna LOS Line of Sight Environments In good LOS applications where the main LOS signal is much stronger than ot...

Page 112: ...he interface with the equipment The surge arrestor grounding system should be fully interconnected with the transmission tower and power ground ing systems to form a single fully integrated ground cir...

Page 113: ...uest timed out Request timed out Reply from 192 168 1 39 bytes 32 time 1ms TTL 128 Reply from 192 168 1 39 bytes 32 time 1ms TTL 128 Reply from 192 168 1 39 bytes 32 time 1ms TTL 128 Reply from 192 16...

Page 114: ...Microhard 114 Appendix B Sample Interface Schematic...

Page 115: ...Port Extension The pMDDL5824 can support a second serial port by utilizing a FT234XD USB to serial UART interfaced to the USB lines of the pMDDL5824 The sample circuit below shows how this is done Dra...

Page 116: ...ou login using the default ________________________________________________________________ Question How do I reset my modem to factory default settings Answer If you are logged into the pMDDL5824 nav...

Page 117: ...Microhard 117 150 Country Hills Landing NW Calgary Alberta Canada T3K 5P3 Phone 403 248 0028 Toll Free 1 855 353 0028 www microhardcorp com...

Reviews: