background image

- Switch to Secondary SIM when roaming is detected 

- Switch to Secondary SIM when data limit is exceeded 

The  data  limit  has  three  options:  Uplink,  Downlink,  and 

Combined for each SIM and have to be activated to use this 
policy.  

Primary SIM Recover:

 the conditions when router is to switch back to the 

primary SIM, which include 

- Switch to Primary SIM when connection fails 

- Switch to Primary SIM when roaming is detected 

- Switch to Primary SIM when data limit is exceeded 

The Data limit will have  three options: Uplink, Downlink, and 

Combined. 

- Switch to Primary SIM after timeout 

Allow a maximum time in minutes for the router to operate on 

secondary SIM and will switch back to primary SIM after. 

 

SIM 1 / SIM 2 

This Tab is used to set up the mobile network parameters for SIM 1. 

APN:

 Access Point Name for the mobile network. 

Authentication:

  the  authentication  method  used  for  the  mobile 

network.  Can  be  either  PAP  or  CHAP  depending  on  the  network 
provider. 

Username:

 the username for the mobile network access if applicable. 

Can be left blank if not required. 

Password:

  the  password  for  the  mobile  network access  if  applicable. 

Can be left blank if not required. 

Summary of Contents for MA-2080-B

Page 1: ......

Page 2: ...IEW 13 DEVICE INSTALLATION 16 Device Mounting 16 SIM Card 16 Antennas 17 Ethernet Interface 17 Serial Interface 18 Digital I Os 18 Power Interface 19 LED Indication 20 Reset Button 21 DEVICE MANAGEMEN...

Page 3: ...Contacts 50 Digital I O 52 LED Display Control 57 ADVANCED NETWORKING 58 Dynamic DNS 58 Cloud Service 59 IP Routing 61 NAT 63 DMZ 64 Port Forwarding 65 Security 66 VPN Tunnelling 68 X 509 89 VRRP 91 S...

Page 4: ...System Logs 117 Firmware Upgrade 119 REBOOT LOGOUT 120 SMS COMMANDS 121...

Page 5: ...from any use of information contained in this document Information in this document is subjected to change without any notice Life support This product is not designed for use in life support applianc...

Page 6: ...d to provide reasonable protection against harmful interference in an appropriate installation This modem generates uses and can radiate radio frequency energy and if not used in accordance with instr...

Page 7: ...Changes or modifications to the modem that are implemented without the express consent of RF Industries Pty Ltd void the product warranty and terminate the user s authority to use the modem...

Page 8: ...e operation of your modem in the vicinity of inadequately protected personal medical devices such as hearing aids and pacemakers Please consult the manufacturers of the medical device to determine if...

Page 9: ...has been carried out by qualified personnel Verification of the protection and interference free performance of vehicle electronics should be a part of the installation procedure Potentially Unsafe A...

Page 10: ...um gas such as propane orbutane Areas when the air contains chemicals or particles such as grain dust or metal powders Any other area where you would normally be advised to turn off machinery of any k...

Page 11: ...844 Email support maxon com au iot support rfi com au Public holidays excluded SALES Hours of Operation Monday to Friday 8 30am to 5 00pm Telephone 61 2 8814 2300 Facsimile 61 2 9630 0844 Email sales...

Page 12: ...Hub Celluar Ethernet Modem Router Model MA 2080 B Document Type PDF Current Revision 0 1 Status of the Document Preliminary Release Revision Date March 2019 Total Number of Pages 130 Revision History...

Page 13: ...w have faster internet connections and an array of connectivity options including RS232 RS485 2 x Ethernet Ports and 4 x Digital IO s make the device a rugged cellular modem router suitable for a dive...

Page 14: ...GNSS function with GPS GLONASS support Multiple VPN and tunnel protocols including PPTP L2TP IPSEC OPENVPN and GRE Up to six 6 simultaneous VPN Tunnel instances Server Client Supported network protoc...

Page 15: ...Package Contents Standard Package Item Quantity Remark Router 1 Cellular antenna Male SMA 2 GNSS antenna Male SMA 1 Ethernet cable 1 Power lead with 3 way terminal block plug and inline fuse 1 6 way...

Page 16: ...ed Failure to do so may result in unauthorized access to your equipment Device Mounting Units mm With wall mounting option SIM Card Make sure the router is powered off the router Holding the SIM card...

Page 17: ...na Attach the GNSS antenna with SMA male connector to the antenna connector on the router which is located between the two cellular antenna connectors and labelled with GNSS Please avoid using excessi...

Page 18: ...for pinouts when making the cables The cable is also offered as optional accessory and can be ordered from RFI Digital I Os A 6 way terminal block for digital I O connectivity is included in the stand...

Page 19: ...power adaptor available from RFI which can be ordered as an optional accessory Power Interface The device is protected against reverse polarity voltage input and will not be powered However please do...

Page 20: ...h Indication Table for details DAT WAN Data Indication ON WAN connection is active BLINKING WAN data activity USER User Defined Function Indication Can used for indication of status of GNSS DDNS VPN a...

Page 21: ...hold for more than 5s but less than 20 seconds the router will restore a pre saved profile and restart automatically To restore the router to factory default settings press and hold the button more t...

Page 22: ...hese settings users need to go to Ethernet adaptor properties and check the Internet Protocol TCP IP settings which should look as below in a Windows OS Connection Steps 1 Connect the Ethernet cable s...

Page 23: ...tials at least the password before deploying the device in the field to avoid security risks This is especially critical if the router has a public accessible IP address over the internet Once logging...

Page 24: ...tus pages display the device information hardware Software and the status of the network interfaces and services Overview The overview page lists the key information of the router for the hardware net...

Page 25: ...Device This page shows the device hardware related information and cellular network information The input voltage board and cellular module temperature will be displayed in this page...

Page 26: ...k connections of the device It has two tabs Interfaces and DHCP Clients The Interfaces tab shows the information of the WAN and LAN connections and the DHCP Client tab shows the DHCP clients that are...

Page 27: ...VPN Tunnels This page shows the status of VPN and tunnels that are configured to use within the router If an VPN tunnel is up and connected the client IP local or remote will be shown...

Page 28: ...Service This page shows the status of Services provided by the router including IP socket connect dynamic DNS GNSS and VRRP...

Page 29: ...gital input is configured as a counter the Clear button will be available to manually clear the counter value The state of the output ports can also be toggled by the buttons associated with the port...

Page 30: ...TH0 WiFi is not support in this model Backup Interface the backup WAN interface for the router when the primary interface becomes unavailable It can be either Cellular or Ethernet ETH0 that is differe...

Page 31: ...eave blank if not used Second Server WAN the IP address of the second server for the ping check on LAN interface Leave blank if not used Interval the interval in seconds between two consecutive ping c...

Page 32: ...IM card if Auto is selected Router will use whichever is available after start If both SIM are presented SIM1 will be used If the current SIM connection is failed the router will try the other SIM if...

Page 33: ...a limit will have three options Uplink Downlink and Combined Switch to Primary SIM after timeout Allow a maximum time in minutes for the router to operate on secondary SIM and will switch back to prim...

Page 34: ...o select 3G and or 4G bands used by the cellular module to access mobile network Default is Auto which means all the supported bands are allowed and automatically chosen via network negotiation Users...

Page 35: ...ximum Data the maximum data allowance for the SIM in kB Connection Mode the mobile network connection mode which can be RNDIS PPP or Bridge RNDIS Remote Network Driver Interface for cellular WAN conne...

Page 36: ...0 DHCP service and MAC binding ETH0 Ethernet Port 0 ETH0 can be used as either a LAN port in switch mode or separate LAN or a Wired WAN interface Mode the working mode for ETH0 LAN or WAN WAN Connecti...

Page 37: ...router s Ethernet ports are acting as a 2 port switch All LAN settings are configured in in ETH1 This is the default mode for ETH0 Separate LAN if Bridge mode is not selected the ETH0 will be as a sep...

Page 38: ...ETH1 Ethernet Port 1 ETH1 can only be used as a LAN port in switch mode or separate LAN The settings associated with ETH1 are similar to those for ETH0...

Page 39: ...working mode for the serial interface Three working mode are supported RS232 RS485 and RS422 Baudrate the baudrate of the serial port Supported options include 1200 2400 4800 9600 19200 38400 57600 an...

Page 40: ...messages received from serial port and send by SMS Can be one of None CR LF CR LF and LF CR If None the message length will be the serial interface buffer size Phone Group the group of phone numbers t...

Page 41: ...rver or Client Protocol the socket protocol in use either TCP or UDP Primary Server Address the IP URL of the primary socket server when acting as set as a client Secondary Server Address the IP URL o...

Page 42: ...o dormancy in case of no data activity during the period For UDP protocol only Keep Alive when enabled the router will send a dummy UDP packet to the remote device to avoid dormancy in the remote devi...

Page 43: ...serial interface IP socket or both Update Interval the time interval in seconds for updating the GNSS information over the output interface Minimum time interval is 5 seconds Device ID if enabled the...

Page 44: ...DIO 62 2019 03 07 12 56 23 Open Open Off Off ANA 2730 749 1870 1149 989 1307 1530 36 50 12 24 NET 123 209 64 105 00 05 51 103 Network This page configures the IP socket connection for the GNSS inform...

Page 45: ...the designated geographic boundary either a circle by radius or a rectangle by two coordinates Update Interval the time interval in seconds to check if the current location is within the pre defined...

Page 46: ...ngs manage the SMS commands and alarms as well as the contact group who can send receive SMSs Site ID the site name of the device that will be added to the start of each SMS messages sending from the...

Page 47: ...when enabled an SMS will be sent to the specified contact s when the device has lost WAN connection Disabled by default SMS on Board Temperature when enabled an SMS will be sent to the specified conta...

Page 48: ...s Email on WAN Connected when enabled an Email will be sent to the specified contact s when the device is getting a WAN IP Disabled by default Email on Board Temperature when enabled an SMS will be se...

Page 49: ...alue Disabled by default Allow sending alarm every hour when alarms persist when enabled an SMS will be sent once per hour to the specified contact s when the alarms persist more than an hour Enabled...

Page 50: ...age is for storing all the required individual contact information including phone numbers and email addresses Up to 20 contacts can be setup in the device Name the name of the contact Phone Number th...

Page 51: ...Group Name the name of the group Contact List a list of contacts that have been set up in the router and can be selected for the new group...

Page 52: ...upported by the device include Input state change alarm input counter and alarm Output control by SMS and scheduling pulsed output Local and remote I O automation INPUT 0 1 The Input page provides the...

Page 53: ...ed ON OFF change only BOTH counted on both OFF ON and ON OFF changes default Counter Alarm Threshold an alarm SMS and or Email will be sent when the counter reaches the defined threshold value The max...

Page 54: ...ed Remote Control the option to enable the secured communication for the IO automation if the remote device requires it A pre shared key will be required Disabled by default ON OFF Action the action t...

Page 55: ...tput to be controlled by a remote device Disabled by default Secured Remote Control the option to require a secured IP communication for the remote IO control automation The TLS with a pre shared key...

Page 56: ...for the output schedular Number of Pulse the number of pulses to generate when the output is configured for pulse output Range is from 0 100 Delay the time delay in unit of 100 milliseconds before th...

Page 57: ...nal strength for the SIG LED to be solid ON USER LED this is the define which function will drive the USR LED The available functions include GNSS DDNS VPN and PPPoE If selected the LED will be blinki...

Page 58: ...en in real time It solves the problem of having a dynamic IP address by associating the address with a consistent domain name eliminating the need of a static IP Enable option to disable enable the DD...

Page 59: ...mmunicate with the maXconnect Remote Management portal The maXconnect FTP server is needed to perform FOTA via the portal Remote Management option to enable the maXconnect remote management function i...

Page 60: ...FTP Server URL the URL of the maXconnect FTP server It must be updates maxconnect com au If maXwan is used for the WAN connection it should use IP address of 10 0 0 32...

Page 61: ...routing policies and using OSPF protocol System Route The page shows the current system routing table Static Route The page allows to manually add extra static routing rules to the default system rou...

Page 62: ...l be listed in a table and loaded to the system routing table every time the router restarts OSPF OSPF Open Shortest Path First is a routing protocol for IP network used to find the best path for pack...

Page 63: ...rade one to many NATing services in the router Once disabled the LAN device will not be able to access WAN if the LAN devices are with private IPs This service should be enabled in most applications u...

Page 64: ...secure an internal network from interaction with and exploitation and access by external nodes and networks Enable option to enable the DMZ function Local IP Address the local destination that all the...

Page 65: ...ation IP port Up to 20 rules can be set up in the router Protocol the IP protocol allowed for the port forwarding rule Can be TCP UDP or both Source IP Address the source IP address of the communicati...

Page 66: ...ccess Controls Anti DoS Option to activate Anti DoS function When in use TCP SYN packets TCP UDP New Connections and ICMP requested can be filtered to avoid DoS attacks Drop Remote Access option to re...

Page 67: ...sted in the URL Filtering Table Keyword Filtering The page provides settings for restricting access to certain internet sites by the keywords Keyword the WAN Internet sites containing the defined keyw...

Page 68: ...int connection between network nodes over an Internet Protocol network Once a GRE protocol is select for a VPN tunnel the following set up page will be shown Tunnel name a name of the tunnel used for...

Page 69: ...All Traffic by enabling this option all the IP traffic will be forced via this VPN tunnel Enable NAT by enabling this option...

Page 70: ...t has serious security vulnerabilities PPTP Sever The Universal Hub can be configured as a PPTP server When PPTP Sever is selected for a VPN tunnel the following settings will be shown Tunnel name a n...

Page 71: ...s 0x0 by default ACCM Option to enable disable the use of Asyncmap Asynchronous Control Character Map setting MRU Maximum Receive Unit Use 1450 as default MTU Maximum Transmission Unit Use 1450 as def...

Page 72: ...fying the tunnels User name Password the log in credentials set by the PPTP server Remote IP Address The IP address or URL of the PPTP server Authentication the authentication method used by the PPTP...

Page 73: ...ng ACCM Option to enable disable the use of Asyncmap Asynchronous Control Character Map setting Must use the option that matches the PPTP server setting MRU Maximum Receive Unit Use 1450 as default MT...

Page 74: ...it passes within the tunnel such as IPSec to provide security L2TP Sever The Universal Hub can be configured as a L2TP server When L2TP Sever is selected for a VPN tunnel the following settings will...

Page 75: ...aximum Receive Unit Use 1450 as default MTU Maximum Transmission Unit Use 1450 as default Link Detection Interval s the interval in seconds between link checks Link Detection Retries the number of ret...

Page 76: ...2TP server Remote IP Address The IP address or URL of the L2TP server Authentication the authentication method used by the L2TP server All Traffic by enabling this option all the IP traffic will be fo...

Page 77: ...interval in seconds between link checks Link Detection Retries the number of retries if PPTP link detection is failed If all retires are exhausted the device will restart the VPN tunnel PFC Protocol F...

Page 78: ...d to allow the secure transmission of data voice and video between two sites e g offices or branches The Universal Hub can be configured as a router for an IPSec Site to Site VPN To do this go to Adva...

Page 79: ...are managed within the IPSec tunnel It can be one of the three options Subnet IP or IP Range Each option comes with its associated IP settings Both local and remote devices have to configured Preshare...

Page 80: ...PFS DH group will be needed if PFS is enabled A Site to Site Client set up is very similar to that of a Gateway with additional setting of a Remote Server IP address All the client settings must match...

Page 81: ...rking IPSec and select IPSec Gateway for L2TP Server or IPSec Client for L2TP Client in one of the IPSec tunnels For gateway settings Mode the working modes of the IPSec Tunnel must be Gateway when us...

Page 82: ...ash defines the Hash function used in the IKEv2 protocol ESP Encryption defines the encryption algorithm used in the Encapsulating Security Payload ESP ESP Authentication defines the cryptography func...

Page 83: ...DH Group the Diffie Hellman DH group used in the Internet Key Exchange IKEv2 protocol IKE Encryption defines the encryption algorithm used in the IKEv2 protocol IKE Hash defines the Hash function used...

Page 84: ...nnections The project was started by James Yonan and is published under the GNU General Public License GPL The OpenVPN in Universal Hub utilises certificate based authentication OpenVPN Server The Uni...

Page 85: ...t the subnet of the OpenVPN client LAN Client Subnet Mask the IP netmask of the OpenVPN client LAN Renegotiation Interval s the interval in seconds for the server to periodically renegotiate the sessi...

Page 86: ...be useful Multiple strings can be separated by a space Default is Null Valid strings include nodeflate nobsdcomp novj novjccomp noccp Enable Client to Client option to enable communications between c...

Page 87: ...the IP protocol used for the OpenVPN tunnel either UDP or TCP Port the port number used for the VPN tunnel 1194 is the default port number used for the OpenVPN Interface the interface of the tunnel e...

Page 88: ...sed in the OpenVPN server Hash defines the Hash function used in the OpenVPN server MTU defines the Maximum Transmission Unit Use 1500 as default Max Frame Size defines the Maximum Frame Size for tran...

Page 89: ...in both Linux and Windows OS users can search online or refer to relevant RFI Maxon Application Notes for more details The files request by an OpenVPN server include ca crt dh2048 pem server crt serv...

Page 90: ...The imported certificates can also be exported for backup or other devices if required...

Page 91: ...er within the VRRP group Valid from 1 to 255 The larger value has the higher priority Interval the interval in seconds at which the master router with the highest priority sends keepalive packets to t...

Page 92: ...vice behaviour Enable option to activate the SNMP function in the router System Name the system name of the rouer Read Community Name the public community name for read only Write Community Name the p...

Page 93: ...can only be activated after a valid device locked license is embedded in the device Please contact RFI Maxon sales for licensing arrangements Enter License Key option to allow users to enter license k...

Page 94: ...and relevant TCP IP network configurations Start Stop DNP3 Protocol option to run stop the DNP3 protocol in the Universal Hub Stop by default Device Address the field sets the Local or Slave DNP3 Add...

Page 95: ...nly be used for Link Test Frame and Request Link Status if they are sent The configured value is in milliseconds and defaults to 5 seconds 5 000ms Link Retries the field specifies the maximum number o...

Page 96: ...ng a Close control code will be redirected to the next highest Binary Output channel Site ID the field is a user assigned string that can be read by the DNP3 master station as part of the Device Attri...

Page 97: ...nnections by doing an active open The advantage of this mode is any side participating in the communication can send or receive data Master uses this to poll a remote outstation while outstation may d...

Page 98: ...Local UDP Port Number when using UDP the field defines the port number to use to send and receive UDP datagrams on Default port number is 20000 Please note that this number will often have to be chang...

Page 99: ...ost modern master stations will enable them upon initial connection Unsolicited Max Retries the field specifies the maximum number of unsolicited retries before changing to offline retry period descri...

Page 100: ...table lists the valid types for Analogue Input Integer point types Static Object Type Group Variation Description g32v1 32b Analog Input No Time 32 1 Analogue Input Change Event 32 bit without time g3...

Page 101: ...Change Event 32 bit with flag and time g22v6 16b Counter with Time 22 6 Counter Change Event 16 bit with flag and time Frozen Counter Event Variation the field defines the default Variation used to re...

Page 102: ...illiseconds before an unsolicited response is generated in case an event in the corresponding class is received The default value is 5 seconds 5 000ms Input This section is used to set up DNP3 points...

Page 103: ...e to a Class 0 poll request If a point configuration has a point data class of Local it is not available to the SCADA master through the Class 0 1 2 3 mechanisms Points configured as Local are accessi...

Page 104: ...Output Status 10 2 Binary Output with Status Information Data Class the Data Class attribute affects the way the data is reported externally from the Universal Hub If a point configuration has a poin...

Page 105: ...e Point Number must be unique for each Analogue Input channel Static Variation the Static Variation attribute defines the data object returned in response to a DNP3 static data poll request i e Class...

Page 106: ...used to detect changes on an analogue input point A change exceeding the deviation specified in this field will result in a DNP3 event to be generated subject to the point being configured in a DNP3 e...

Page 107: ...the valid types for Binary Input point types Static Object Type Group Variation Description g20v1 32b Counter 20 1 32 bit Counter with Status g20v2 16b Counter 20 2 16 bit Counter with Status g20v5 32...

Page 108: ...r Static Variation each of the counter points has a matching DNP3 Frozen Counter point The field defines the Frozen Counter data object returned in response to a DNP3 static data poll request i e Clas...

Page 109: ...h includes Input Voltage Board Internal Temperature Module Cellular Temperature Mobile Signal Strength and Registration Status Point Number the field specifies the DNP3 identifier for each status poin...

Page 110: ...logue or Binary I O points described previously Value Deadband the Value Deadband attribute as per the Analogue points described previously The default deadband for device status is 0 meaning that any...

Page 111: ...rade System The system settings provide configurations for the device access controls System The System settings manages the device access via the LAN or WAN interfaces and reboot scheduling HTTP opti...

Page 112: ...llow sending AT commands to the device via TCP IP protocol The port number is configurable and default is 12521 Periodic Reboot the settings for the device to perform a periodic reboot at a pre define...

Page 113: ...an be configured with correct entries of current login credentials It is strongly recommended that users change the default login credentials at least the password before deploying the device in the f...

Page 114: ...as factory default reset Save Settings to File option to save the current device configuration to an encrypted binary file Load Settings from File option to load a device configuration from a previous...

Page 115: ...its internal system clock The source can be Cellular Network NTP Server or Manually Input NTP Server the IP URL of the NTP server if using NTP server for clock source Time Zone option to specify the...

Page 116: ...Ping Tool The Ping Tool page provides the ping check function over the Web interface for some debugging purposes More useful debugging tools may be available in further firmware releases...

Page 117: ...em Logs This page displays the current system log that may be helpful for some trouble shooting The log can be downloaded locally via the download button There is also a setting for remote syslog func...

Page 118: ...Logs option to enable the System log functions Enabled by default Remote Syslog option to activate the remote syslog function Disabled by default Remote Syslog Server the IP URL of the remote syslog...

Page 119: ...p up windows asking for the binary firmware image BIN file Once selected the router will upload the file into its internal memory and perform firmware upgrade The router will start internal reflash pr...

Page 120: ...REBOOT LOGOUT Two buttons are provided in the router Web GUI for quit the user interface or manually reboot the device...

Page 121: ...ollow are the list of SMS commands that are currently built in WAN Status Syntax RFIM SMS WANIP Return siteID IP x x x x APN xxxxxxxx ID xxxxxxxx Auth PAP Reg 1 Sig xx SIM Switch Syntax RFIM SMS SIMSW...

Page 122: ...N1 state OUT0 stat OUT1 stat BT xx xx BV xx xx MT xx xx P0 xxxx P1 xxxx IN0 IN1 INPUT OUT1 OUT1 OUTPUT BT Board temperature BV Board supply voltage MT Module temperature P0 P1 Pulse counter only when...

Page 123: ...1 or 2 Authentication 0 None 1 PAP 2 CHAP Return siteID SIM SIMNo APN APNname AUTH Authentication ID Username PASSWD Current GNSS data Syntax RFIM SMS GNSS Return SatelliteNumber Degree minutes secon...

Page 124: ...SMS settings for notifications Input Counter Settings Syntax RFIM SMS COUNTER INx option TM Mode AT threshold INx 1 or 2 Mode trigger mode one of ON OFF or BOTH threshold counter alarm threshold Retur...

Page 125: ...mand unless the interface password is entered first Otherwise any AT command will return an ERROR response AT SERIALPWD 0 1 PWD 0 1 0 disable 1 enable PWD set password Once the command has been entere...

Page 126: ...30C_02 24 05 06 r7040 CARMD EV FRMWR2 2017 05 19 06 23 09 LAI XXXXXX LAC XXXX Cell ID XXXXXXXX IMEI XXXXXXXXXXXXXXX OK Manufacturer Information AT CGMI RF Industries Pty Ltd OK Firmware version AT CGM...

Page 127: ...rest 0 disable periodic reset Query Command AT RESET RESET num OK Configuration Save Restore Factory Reset AT FACTORY When entered the device will restore its factory default configurations and perfo...

Page 128: ...urations will be saved as a Profile Cellular Network Status AT CSQ CSQ rssi ber OK rssi Received Signal Strength Indicator ranges 0 31 99 means unknow or not detectable ber Bit Error Rate ranges 0 7 9...

Page 129: ...ssage must be entered after the prompt and ended with ASCII character SUB keyboard entry Ctrl Z If the message is sent successfully the device will return CMGS mr OK mr Message Reference Sending SMS i...

Page 130: ...the specified message status as below CMGL index stat sender timestamp message body OK Read SMS Messages AT CMGR index index the index of the SMS messages received The command will return the message...

Reviews: