background image

3.6

IPSEC VPN

fat

box G3 

fat

box G3 

MENU OPTIONS

Site-to-Site IKE PSK IPSEC Settings

3G IPSEC 

1 = enable  0 = disable

1

start

aes128

aes128

sha1

sha1

modp1024

no

10800

3600

restart

30

150

VPN Server IP address

VPN Server Subnet IP Address/ Mask

Local VPN Subnet IP Address/ Mask

PSK Phasephrase

ISAKMP Phase 1

Phase 2

Start Mode (auto)

Encryption

Encryption

Hash Algorithm

Authentication (HMAC)

D-H Group

PFS Group

IKEv1 Agressive Mode

IKE SA Lifetime (s)

IPSEC Lifetime (s)

DPD Action

DPD Delay (s)

DPD Timeout (s)

start or route

Quick Start

LAN Ethernet
WAN Cellular
Port Forwarding
Dynamic DNS
IPSEC VPN
Serial Port
Management
System Status
Logout

FATBOX G3 configuration 
for Site-to-Site IPSEC VPN 
(as of the example in the 
previous page)

WEB
MANAGEMENT

1 = IPSEC enabled, 0 = IPSEC disabled

202.200.XXX.XXX (according to public IP 
assigned)

192.168.1.0/24 (according to network set-
tings)
10.1.1.0/24 (according to network settings)

Set to match remote end settings

Settings to correspond with remote end 
settings

UPDATE and restart FATBOX

start = IPSEC tunnel will automatically be 
connected;
route = IPSEC tunnel will be connected 
when data is present

UPDATE

E.g. 3des, aes128, aes192, aes256

E.g. 3des, aes128, aes192, aes256

E.g. 3des, aes128, aes192, aes256

E.g. md1, sha1, sha256

E.g. 1, 2, 5, 14..

no = main mode yes = agressive

E.g. 10800

E.g. 3600

none, clear, hold or restart

E.g. 30

E.g. 150

Содержание fatbox G3

Страница 1: ...at require Security with Smart Remote access the FATBOX G3 router is a hardy and robust gateway suited for Ethernet and Serial Port equipped devices Lab tested and certified for CE and FCC part 15 EDITION 01 2 DEC 2015 DESIGNED IN AUSTRALIA ASSEMBLED IN USA fatbox G3 ...

Страница 2: ...ARE 5 BOARD INTERFACE 6 SETTING UP 7 SIM INSTALLATION 7 LOGGING IN 8 WEB MANAGEMENT 9 QUICK START 9 LAN ETHERNET 10 WAN CELLULAR 11 PORT FORWARDING 12 DYNAMIC DNS 13 IPSEC VPN 14 SERIAL PORT 16 MANAGEMENT 17 SYSTEM STATUS 19 CONTACT US 20 fatbox G3 SECURITY INTEGRATION ...

Страница 3: ...ENTIALLY EXPLOSIVE GASES OR LIQUIDS EXAMPLE GAS STATIONS AND CHEMICAL PLANTS AND EXPLOSIVE STORES Inadequate current or dips in voltage may cause the device to fail to connect to data services even if the LEDs are lighted up Supply over 30 VDC will damage the device Never remove or insert SIM card when device has PWR switched in ON position Damage caused to device or SIM in such case will not be w...

Страница 4: ...ature NETWORK ROBUSTNESS SECURITY NETWORKING MANAGEMENT POWER TEMPERATURE OPERATING SYSTEM Linux on ARM Cortex A9 IMX6 Solo Dual Quad options SERIAL INTERFACE RS 232 RS 485 15kV ESD Protected Integrated TCP Serial server LAN INTERFACE 2 X 10 100BaseT Ethernet port 24VDC POE Passive Input USER CUSTOM PROGRAMMING Lua scripting for user programed functionalities Available 2GB of on board flash data s...

Страница 5: ...TING WEIGHT GSM antenna with 2M wire High gain outdoor antenna option CAT 5 LAN cable 3M Power supply unit 230 110VAC to 24VDC 0 5A OEM 114mm 108mm 19mm 110g STANDARD 149mm 111mm 37mm 375g 101mm 129mm STANDARD VERSION With rugged anodized aluminium chassis NOTE The client is required to have their own mounting screws M3 size to suit the surfaces the G3 will be on OEM VERSION ...

Страница 6: ... up During TEST MODE after power up is stable e g 1 minute a program will monitor a switch contact between 3 and 4 of Serial Input Port Press 1 if INPUT 3 of Serial Input Port is working LED YES will blink once Press 2 with a loop back wire connected between 1 TX and 2 RX of the Serial Input Port The LED YES will blink twice Press 3 once a 3G GPRS EDGE session is established LED YES will blink thr...

Страница 7: ...SERTING THE SIM CARD STEP 1 of 6 Dismantle the casing cover and slide out the PCB Avoid touching the electronics handle the board by the edges STEP 2 of 6 Insert your micro SIM card into the SIM card slot Push the metal latch left right to lock unlock Reassemble the metal casing STEP 3 of 6 Connect the power adapter antenna and plug the Ethernet cable to your pc STEP 4 of 6 Power up the FATBOX G3 ...

Страница 8: ...ardware to the box the web console can be accessed at the address 192 168 1 1 For Security after your first successfull log in you will be prompted to change your username password The default username is admin The default password is fatbox12345 STEP 5 of 6 Launch your browser and enter address as 192 168 1 1 STEP 6 of 6 Log in fatbox12345 admin ...

Страница 9: ...eth1 and eth0 Port Settings 3G HSUPA Cellular Settings your_apn APN User Name PAP CHAP only Password PAP CHAP only SIM PIN Code If required only UPDATE Sets the IP address of LAN port on FATBOX G3 Mask for setup range of subnet IP addresses Please check with your operator on this Setup the PIN code usually 4 8 digit numerics if SIM PIN lock is enabled This saves the settings onto the G3 The Quick ...

Страница 10: ... Logout Sets the IP address of LAN port on FATBOX G3 Setup the FATBOX G3 to automatically assign IP addresses to your connected LAN devices This would be the starting address for con nected devices For the example above the first device connected would be assigned 192 168 1 100 This would be the limit for number of con nected devices For the example above the last device connected would be assigne...

Страница 11: ...gned DNS Remote PING Host IP address PING Retry Time Period s PING retries Get this information from your operator Setup the PIN code usually 4 8 digit numerics if SIM PIN lock is enabled Please check with your operator on this It is usually 99 or 99 1 To override domain name server e g Google DNS server 8 8 8 8 This is the time taken before each ping would be sent This is the number of times it r...

Страница 12: ...t up earlier Enter the port number of your device where you would want the incoming data to go to If you entered a range of ports you would need to enter the same range here You would need to check on the ports for this depending on your application device Select a Protocol to be used for your device Common options found are UDP TCP or Both In most cases you will need to select the protocol option...

Страница 13: ...e Username Quick Start LAN Ethernet WAN Cellular Port Forwarding Dynamic DNS IPSEC VPN Serial Port Management System Status Logout Key 1 here to enable a dynamic DNS capability Enter in the host name with which you have registered a DDNS service eg dyn com Key in your DNS Service Username Key in your DNS Service Password Update to save your settings The FATBOX G3 would connect to your account and ...

Страница 14: ...ates Strongswan 5 0 IPSEC VPN client to enable secure encrypted networking and communications to your remote Ethernet and serial port devices IPSEC VPN configuration can be extremely complex to deploy successfully especial ly for users not from network security sectors NET R eth1 dc eth0 serial dip 1 2 3 4 TX RX IN GND D D amplifie d engineerin g fatbox G3 Workstation Switch Firewall e g CISCO ASA...

Страница 15: ...mic DNS IPSEC VPN Serial Port Management System Status Logout FATBOX G3 configuration for Site to Site IPSEC VPN as of the example in the previous page WEB MANAGEMENT 1 IPSEC enabled 0 IPSEC disabled 202 200 XXX XXX according to public IP assigned 192 168 1 0 24 according to network set tings 10 1 1 0 24 according to network settings Set to match remote end settings Settings to correspond with rem...

Страница 16: ...S 1S Port 77 Port Mode Selection Enable Port Mode Selection Stop Bits Data Bits 0 RS232 1 RS485 1 enable 0 disable 1 enable 0 disable E g 1 E g 8 1 1 1 1 8 115200 10800 Speed Parity Quick Start LAN Ethernet WAN Cellular Port Forwarding Dynamic DNS IPSEC VPN Serial Port Management System Status Logout 1 TCP Server Enable 0 TCP Server Disable FATBOX G3 also allows messages e g modem AT commands to b...

Страница 17: ...stable condition e g signal strength LEDs are functioning insert the thumb drive into USB port at antenna end of box 3 Click Upload from FATBOX wait 5 sec remove thumb drive 4 Insert thumb drive into new FATBOX in stable operating condition and click Download to FATBOX wait 5 sec and remove thumb drive 5 Check in new FATBOX that parameters from other FATBOX has been copied over Disabled by default...

Страница 18: ...drive drive labelled FATBOX 3 Insert the thumb drive into FATBOX in stable operating condition 4 Click Download to FATBOX wait 5 sec remove thumb drive 5 You can click Execute Program to test you program Your user lua program will automatically be executed after complete boot up of the FATBOX Click Reboot to soft reset the FATBOX device Cick Factory Settings to revert all parameters to factory def...

Страница 19: ...space and time efficient for example the cus tom program can be written to check serial data read from a PLC and trigger an SMS to a technician for support or the program can check for I O trigger from a relay to reboot the router 1 Write your LUA program and name it as user lua 2 Save the program in user folder in your thumb drive drive labelled FATBOX 3 Insert the thumb drive into FATBOX in stab...

Страница 20: ...e security and integration of the network our responsibility TECHNICAL SUPPORT SUPPORT AMPLIFIED COM AU SALES SALES AMPLIFIED COM AU fatbox G3 amplified engineering No 5 Turner Avenue Unit 1 Albridge Building Bentley Technology Park WA 6102 Australia w amplified com au ...

Отзывы: