
Full Outdoor 2+0 XPIC IP Link
Page 28 of 39
Version
1.0
•
HTTPS with Client Certificate – https access is possible only if the client (browser) has installed cli-
ent certificate (CC) signed by certification authority (CA). This option is available only if the device has the
CA certificate uploaded. Reset of the CA certificate is possible only if this option is not selected.
•
HTTP, TELNET, SNMP – to increase security of device you can disable unencrypted access (http,
Telnet, SNMP v2) and turn on only SSL, HTTPS, SNMP v3 (SNMP can be set on
IP/SNMP
page).
•
SSH with KEY – You can define secure login to the device without username/password login prompt.
It is required to have a public part of your SSH key loaded in the device. Multiple keys can be used. By de-
fault is this option switched on.
•
SSH user/password login enabled – You can switch off SSH username/password login. You must be
sure login without password is working! Reset of the SSH keys is possible only if this option is checked.
4.7.2
Route/NAT
For a specific configuration of management access, it is sometimes necessary to add/change/delete static
routes or NAT records. This is especially required for Out of band type of management access.
STATIC ROUTES
•
Routed IP / MASK – the IP address from routed network and the appropriate network mask must
be inserted. Routed network range is calculated from inserted values.
•
Gateway IP – the correct IP address gateway for above mentioned network must be inserted.
NAT
•
LocalPort DestIP:Port – the NAT record must be inserted in the following format:
local_port destina-
tion_ip:port
(example: ‘10443 192.168.1.2:443’ => local port 10443 redirects to the port 443 (secure web -
https) of the unit with IP 192.168.1.2)
RADIUS
•
IP:destport SecString timeout – the definition of remote Radius server
◦
IP – IP address of the Radius server
◦
destport – Destination port. This is an optional parameter
◦
secString – password of Radius Server login. The recommended length of the password is from 4 to
50 characters
◦
timeout – connection time-out between the device and Radius Server. Recommended value is 1 – 5
second
SETTINGS
This frame informs the user about the
CONFIGURED
and
ACTUAL IP
settings. In order to activate the new
setting please use the
APPLY & WRITE
button (you will be logged out) or
WRITE
the settings and reboot the
device.
www.hypercable.fr www.e-rake.fr