XW-210 WiFi™ Users Manual
containing the text “ACK”. If the “ACK” is not received within 10 seconds of sending the connection
string, the XW-210 will close the connection. Version 2 continues to send the connection string and the
state.xml file periodically per the connection interval specified.
Use SSL Certificate
This option enables encryption of the remote services' connection with the remote services' server as
well as authentication of the XW-210 to the server by a client certificate and key. Custom certificates and
keys can be loaded into the XW-210 for this purpose. (See
Remote Services
at the end of this section
for
more information.)
By default, the XW-210 does not come with any SSL certificates already installed. The certificates will
need to be installed either manually by uploading the files or automatically with a token. The SSL
certificates must be in the PEM format.
Certificate Request Token
When the XW-210 has a valid Certificate Request Token entered, it will automatically attempt to request
and download its Client Certificate, Key, and CA. Once successful, the token will be erased and the XW-
210 will stop its requests. (See
Remote Services
at the end of this section
for more information.)
Certificate Request Port
The certificate server is a server that has been configured to deliver the Client Certificate, Key, and CA
when requested by the XW-210. For the XW-210 to request a Certificate, Key, and CA from the
certificate server, it must have a previously issued Certificate Request Token. This field specifies what
port the Certificate Server listens on. The server is found at the same host name as the remote services'
server. (See
Remote Services
at the end of this section for more information.)
Manual Certificate Upload
Client Certificate
A client certificate is used with custom remote services' servers for device authentication. To upload a
custom client certificate to the XW-210, click the
Browse
button, find the PEM formatted certificate file,
and select
Submit
.
Client Key
A client key is used with custom remote services' servers for device authentication. The key that is
uploaded must be the correct key associated with the Client Certificate. Care should be taken with where
this client key is stored as it is meant only to be known to the XW-210. To upload a custom client key to
the XW-210, click the
Browse
button, find the PEM formatted file, and select
Submit
.
Client CA
A CA (Certificate Authority) is used by the XW-210 to verify the authenticity of the remote services' server
it is connecting to. It is important to note that this CA does not need to be the CA that signed the Client
Certificate used by the XW-210. Rather the CA needs to be the one used to sign the certificate used by
the remote services server. To upload a custom CA to the XW-210, click the
Browse
button, find the PEM
formatted file, and select
Submit
.
Remote Services Notes:
Remote services initiates an outgoing connection to a server at a remote
location. This can be used in an environment where a web server on the Internet provides a custom web
page to XW-210 and other ControlByWeb products. Users access the XW-210 through the web server
rather than communicating directly with it. This method is sometimes referred to as “web services” and
allows programmers to create powerful, custom web pages to multiple devices using the web
programming languages of their choice.
Remote services initiates the connection to the external web server (rather than the web server initiating
communications to the XW-210). This has two main benefits. First, the web server does not need to
Xytronix Research & Design, Inc.
Page 27
Содержание WebRelay Wireless XW-210I
Страница 1: ......