background image

 

CCD-Dir DEFAULT file: 

Where you are using client config files, this is the default 

config to use when the CN is not listed in the CCD folder. 

 

Client connect script: 

the script to run when a client connects 

 

Static Key:

 When using a pre-shared key for authentication, put the key here 

 

PKCS12 Key: 

When using PKCS12 keys, put the key here 

 

These options are always available: 

 

 

Public Server Cert: 

The certificate the server is to use to identify itself 

 

Содержание Quadmax MA-6060

Страница 1: ...Revision History 12 Revision History 12 Introduction 13 Features and Benefits 13 Router chart 15 Specifications 15 Installation Introduction 20 Package Contents 20 Configuration and Management 26 Conn...

Страница 2: ...rding 95 DMZ 97 PPOE Server 97 Advanced Networking 100 Advanced Routing 100 Mac address Clone 102 VLANs 103 QOS Basic 104 QOS Classify 105 Security 106 Firewall 106 WAN Access 110 URL Filtering 114 Pa...

Страница 3: ...Shell Commands 124 Firmware upgrade 125 Backup and Restore 126 Factory Default 126 Reboot 127...

Страница 4: ......

Страница 5: ...from any use of information contained in this document Information in this document is subjected to change without any notice Life support This product is not designed for use in life support applianc...

Страница 6: ...rovide reasonable protection against harmful interference in an appropriate installation This modem generates uses and can radiate radio frequency energy and if not used in accordance with instruction...

Страница 7: ...Changes or modifications to the modem that are implemented without the express consent of RF Industries Pty Ltd void the product warranty and terminate the user s authority to use the modem...

Страница 8: ...e operation of your modem in the vicinity of inadequately protected personal medical devices such as hearing aids and pacemakers Please consult the manufacturers of the medical device to determine if...

Страница 9: ...Areas Posted Facilities Turn off the modem in any facility or area when posted notices require you to do so Blasting Areas Turn off the modem where blasting is in progress Observe restrictions and fo...

Страница 10: ...chemicals Vehicles using liquefied petroleum gas such as propane orbutane Areas when the air contains chemicals or particles such as grain dust or metal powders Any other area where you would normall...

Страница 11: ...simile 61 2 96300844 Email IOT support rfi com au Public holidays excluded Sales Hours of Operation Monday to Thursday 8 30am to 5 00pm Friday from 8 30am to 4 30pm Telephone 1300 000 734 Facsimile 61...

Страница 12: ...nt Type PDF Current Version Number 1 0 Status of the Document Public Release Revision Date August 2018 Total Number of Pages 125 Revision History Level Date History 1 0 August 2018 Release Version 1 1...

Страница 13: ...al configuration The MA 6060 has been widely used in M2M applications such as intelligent transportation smart grid industrial automation and telemetry and Residential home for its dual band Wi Fi wit...

Страница 14: ...upports local and remote firmware upgrade import and export config file Supports Remote SMS Supports NTP RTC embedded Supports multiple DDNS provider services Supports VLANs MAC Address clone PPPoE Se...

Страница 15: ...sitivity MA 6060 LTE WIFI ROUTER LTE FDD 1 2100MHz 3 1800MHz 5 850MHz 7 2600MHz 8 900MHz 18 800MHz 19 800MHz 21 1500MHz 28 700MHz LTE FDD Download speed Max 300Mbps Upload speed Max 50Mbps 23dBm 97 dB...

Страница 16: ...Download speed Max 21Mbps Upload speed Max 5 76Mbps HSDPA Download speed Max 7 2Mbps HSUPA Upload speed Max 5 76Mbps WIFI Specification Item Content Standard IEEE802 11b g n 2 4GHz and 802 11ac 5 8GHz...

Страница 17: ...RAM 512MB Interface Type Item Content WAN 1x 10 100 Mbps WAN port RJ45 auto MDI MDIX 1 5KV magnetic isolation protection LAN 4x 10 100 Mbps Ethernet ports RJ45 auto MDI MDIX 1 5KV magnetic isolation p...

Страница 18: ...l block reverse voltage and over voltage protection Reset Restore the router to its original factory default settings Power Input Item Content Standard Power DC 12V 1 5A Power Range DC 5 36V Consumpti...

Страница 19: ...acteristics Item Content Housing Iron providing IP30 protection Dimensions 207x135x28 mm Weight 790g Environmental Limits Item Content Operating Temperature 35 75 C 31 167 Storage Temperature 40 85 C...

Страница 20: ...1 WIFI antenna 2 Ethernet cable 1 Console cable 1 2 PIN Phoenix connector power supply 1 Wall mounting bracket 1 SIM card Installation Power off the router and unscrew the top cover press the eject b...

Страница 21: ......

Страница 22: ...ing intermittent signal loss RS232 Interface The router supports an RS232 interface that utilises an RJ45 connector and is labelled as Console on the router If required plug the RJ45 end of the serial...

Страница 23: ...Output 5 5 GND Common 6 3 TXD Input 7 4 DTR Input 8 7 RTS Input Power The input supply voltage range is 5 36VDC We recommend using the standard DC 12VDC 1 5A power adaptor available from RFI Indicator...

Страница 24: ...ing may be in the process of re booting Online ON Router has logged on network OFF Router hasn t logged on network SIM ON SIM is inserted note this light will be off when backup link is on OFF SIM is...

Страница 25: ...tore the router to factory default settings the user needs to press the Reset button and hold it until all the modem indicator lights go off the router will then restore its original factory default s...

Страница 26: ...re Ethernet LAN port The LAN card configuration should have the Internet Protocol v4 enabled and set to obtain an IP Address and DNS server address automatically DHCP or Automatic To check these setti...

Страница 27: ...P range automatically 3 In web browser type 192 168 0 1 in the Address URL field The Default IP Address of the Ethernet port is 192 168 0 1 The router will prompt to change the login credentials the d...

Страница 28: ...ware Version The firmware version and build date of the currently installed firmware MAC Address The LAN MAC address of Router LAN bridge MAC WAN IP The current main WAN IP as assigned by carrier Back...

Страница 29: ...emory minus free memory Buffers Used memory for buffers total available memory minus allocated memory Cached The memory used by high speed cache memory Active Active use of buffer or cache memory page...

Страница 30: ...DHCP clients connected to the LAN Interface The Connected PPTP and L2TP clients and server details are also listed in this page NOTE VPN client server status is only shown where that particular functi...

Страница 31: ...he client Ratio what percentage of the maximum allowed connections to the router this device is using DNCP Server Status of DHCP server enabled or disabled DHCP Daemon The DHCP server process DNSMasq...

Страница 32: ...e device to re negotiate its IP lease from the router Connected L2TP server This tab will only be displayed if L2TP Server is configured under Advanced feature L2TP VPN This will provide information o...

Страница 33: ...remote server Remote IP IP address of L2TP server the MA 6060 has connected to Delete Click to disconnect from this server Connected PPTP Server This tab will only be displayed if PPTP server is confi...

Страница 34: ...AN These pages display WAN connection information WAN for the main connection and Bkup WAN for backup failover connection Based on the WAN connection whether its 3G 4G or wired display details will ch...

Страница 35: ...nnection type Connection Uptime length of time this connection has been established If not connected displays Not available IP Address IP address of MA 6060 WAN connection Subnet Mask This display sub...

Страница 36: ...ailable on LTE WAN LTE CA state The carrier aggregation state LTE Scell band The band frequency in use by the secondary cell during aggregation LTE Scell bw Bandwidth available on secondary cell durin...

Страница 37: ...tistics download and upload direction Traffic by Month bar graph of the selected month data traffic Previous Month change graph to previous ie earlier month Next Month change graph to next ie later mo...

Страница 38: ...on the Wi Fi setup various information is displayed in this page MAC Address MAC address of the WiFi interface of the modem router WiFi Display overall status On or Off Mode Wireless mode Access Poin...

Страница 39: ...ed by wireless client Uptime Connection uptime of wireless client TX Rate Transmission bit rate of wireless client RX Rate Receive bit rate of wireless client Signal The signal strength of wireless cl...

Страница 40: ...hannel The channel of the wireless nearby RSSI Signal strength of the wireless nearby Noise The noise level of the wireless nearby Beacon Signal beacon of the wireless nearby Open The wireless nearby...

Страница 41: ...is page displays the bandwidth information on LAN and WAN Bandwidth Monitoring LAN Graph horizontal axis Time vertical axis Speed rate Bandwidth Monitoring WAN Graph horizontal axis Time vertical axis...

Страница 42: ...ers will be able to configure Local IP address Subnet Mask Gateway and Local DNS along with DHCP settings and NTP client settings under LAN setup For WAN Setup users can configure modem to connect to...

Страница 43: ...address of the routers LAN interface Subnet Mask The subnet mask of the routers LAN interface Gateway The default gateway address for LAN clients Local DNS If you want to use nameservers attached to o...

Страница 44: ...bnets DHCP Type select DHCP Server or DHCP Forwarder as appropriate When you select DHCP Forwarder you will see input fields for the IP address of the remote DHCP server as below DHCP Server Enable or...

Страница 45: ...S results in DHCP clients having their hostname added to DNS results for unqualified names This means that if you set the domain of the router to localnet DHCP client identifying itself as PC1 then re...

Страница 46: ...ptions Summer Time DST Set it depends on users location Server IP Name IP address of NTP server up to 32 characters If blank the system will find a server by default Adjust Time Where you are not usin...

Страница 47: ...ork For dual SIM devices there are two sets of parameters SIM1 and SIM2 the below descriptions apply to both WAN FAILOVER OPTION This option is for redundancy purpose When enabled Backup Wan connectio...

Страница 48: ...sses Note that for use in your own internal network your network administrator can supply these details Where you are using an ISP or other upstream service provider that supplier can supply you with...

Страница 49: ...figure with correct APN username password and authentication type provided by their ISP Username Network username if required Password Network password if required Network Provider Type select your ca...

Страница 50: ...rmally fine PIN Type select based on if your SIM card has a PIN applied Connection Type Normally default Auto is fine If you want or need to force either 3G or 4G you can do that here Band Select Auto...

Страница 51: ...Address where Fixed WAN GW Address is enabled enter GW address here Dial Failure to Restart Should modem reboot on PPPoE connection failure Force reconnect STP If you have multiple links STP helps pr...

Страница 52: ...d users should also configure Detection Interval Primary Detection Server IP and Backup Detection Server IP items PPP Detect connection with PPP method when choose this method users should also config...

Страница 53: ...etection servers should not also perform another required function that is you should not assign the same IPs as used for link detection to DNS server s or to be the target of serial port or GPS data...

Страница 54: ...Switch To Backup When these options allow you to control when to use the backup SIM Switch Back To Main Switch back to main SIM option Initial Timeout Time to switch back to main SIM Data Limit Mb da...

Страница 55: ...Maximum user data size in packets sent Usually auto however depending on your ISP and or local network settings you may need to reduce this please contact your network administrator and or ISP Service...

Страница 56: ...can set by entering them here for advanced users Static Leases if users want to assign certain hosts a specific address then they can define them here This is also the way to add hosts with a fixed a...

Страница 57: ...and backup WAN you should disable DNSMasq Local DNS enables DHCP clients on the LAN to resolve static and dynamic DHCP hostnames No DNS Rebind when enabled it can prevent an external attacker to acces...

Страница 58: ...ntact Contact this equipment management Name Device name RO Community SNMP RO community name the default is public Only to read RW Community SNMP RW community name the default is private Read write pe...

Страница 59: ...horized Keys here users paste their public keys to enable key based login more secure than a simple password System log Enable Syslogd to capture system messages By default they will be collected in t...

Страница 60: ...Out Mode Telnet Telnet enable a telnet server to connect to the router with telnet The username is admin and the password is the router s password Note If users use the router in an untrusted environm...

Страница 61: ...Wi Fi The MA 6060 WiFi is dual band 2 4 and 5GHz Each band is separately configurable as below Wi Fi Basic Wireless Network Enable or Disable the Wi Fi of the router...

Страница 62: ...ntroduces additional latency and constrains bandwidth Repeater Bridge as per repeater but also bridge WiFi network to wired LAN network Wireless Network Mode Disabled disable this interface You can us...

Страница 63: ...h may be any keyboard character Make sure this setting is the same for all devices in your wireless network Wireless Channel A total of 1 13 channels to choose more than one wireless device environmen...

Страница 64: ...Configuration Bridged Bridge to the router under normal circumstances please select the bridge In this mode WiFi clients and LAN clients appear as one network segment Unbridged There is no bridge to t...

Страница 65: ...to see all configuration options and may also result in a misconfigured modem Wi Fi Security Wireless security options used to configure the security of your wireless network This route is a total of...

Страница 66: ...t has known security issues it is strongly recommended only use WEP if you have clients that can only support WEP usually older 802 11b only clients Authentication Type Open or shared key Default Tran...

Страница 67: ...hexadecimal characters are 0 9 and A F ASCII HEX ASCII the keys is 5 bit ASCII characters 13bit ASCII characters HEX the keys is 10bit 26 bit hex digits Passphrase The letters and numbers used to gene...

Страница 68: ...er Address The IP address of the RADIUS server Radius AUTH Server Port The RADIUS Port default is 1812 Radius AUTH Shared Secret The shared secret from the RADIUS server Key Renewal Interval in second...

Страница 69: ...While configuring a hotspot is beyond the scope of this document the following screenshots show the available configuration for HOTSPOTSYSTEM and also for CHILLIHOTSPOT...

Страница 70: ......

Страница 71: ...r devices by name and have them continue to connect correctly even when the IP address of the device changes The MA 6060 router supports dynamic DNS updates automatically updating the DNS server when...

Страница 72: ...lue list varies depending on the setting of DDNS Service Wildcard Support wildcard or not the default is OFF ON means host 3322 org is equal to host 3322 org Do not use external ip check Enable or dis...

Страница 73: ...DDNS Status shows DDNS specific log information...

Страница 74: ...Users can configure modem as PPTP server with the following setting For more details information please contact Maxon Australia support team for application guides Broadcast support Enable or disable...

Страница 75: ...rets user name and password of the client using PPTP service Note client IP must be in a different range compared to the IP assigned by router DHCP The format of CHAP Secrets is user password PPTP Cli...

Страница 76: ...P server Remote Subnet Mask subnet mask of remote PPTP server MPPE Encryption enable or disable Microsoft Point to Point Encryption MTU maximum Transmission Unit MRU maximum Receive Unit NAT network A...

Страница 77: ...er interface this must be on a different subnet to modem LAN Client IP s IP address assigns to the client the format is xxx xxx xxx xxx xxx xxx xxx xxx CHAP Secrets User name and password of the clien...

Страница 78: ...Server Tunnel Authentication Password a pre shared authentication password Gateway L2TP Server L2TP server s IP Address or DNS Name Remote Subnet The network of remote L2TP server Remote Subnet Mask...

Страница 79: ...support the pap authentication Require Authentication Enable or disable support authentication protocol OPENVPN Start Type WAN UP start after on line System start when boot up Config via OpenVPN confi...

Страница 80: ...owed by OPENVPN server Netmask netmask of the client allowed by OPENVPN server Block DHCP across the tunnel filter drop DHCP packets in the tunnel Now back to common settings Port listen port of OPENV...

Страница 81: ...Compression enable or disable use LZO compression for data transfer Redirect default Gateway enable or disable redirect default gateway Allow Client to Client enable or disable allow client to client...

Страница 82: ...d in the CCD folder Client connect script the script to run when a client connects Static Key When using a pre shared key for authentication put the key here PKCS12 Key When using PKCS12 keys put the...

Страница 83: ...ient certs Private Server Key the key used by the server key to Public Server Cert DH PEM Duffie Hillman parameter file for the server certificate Additional Config additional configurations of the se...

Страница 84: ...Certificate Revoke List You can add certificates that have been compromised here they will be rejected even though they pass all other authentications...

Страница 85: ...N server is listening on Tunnel Device TUN Router mode TAP Bridge mode Tunnel Protocol use UDP or TCP protocol for transport Encryption Cipher Blowfish CBC AES 128 CBC AES 192 CBC AES 256 CBC AES 512...

Страница 86: ...P to br0 IP Address Subnet Mask the modems LAN subnet TUN MTU Setting set MTU value of the tunnel MSS Fix Fragment across the tunnel Force TCP MSS low enough to fit in tunnel without fragmenting packe...

Страница 87: ...specified on the web page here Policy Based Routing specify which hosts have traffic down the tunnel source based routing TO the tunnel default is all traffic where the destination route points to the...

Страница 88: ...address opposite end address and opposite end subnet of current connection Status connection status closed negotiating establish Closed this connection does not launch a connection request to opposit...

Страница 89: ...connection is enable it will launch tunnel establish request when the system reboot or reconnect otherwise the connection will not do it Add to add a new IPSEC connection Add IPSEC connection or edit...

Страница 90: ...ailable Remote ID tunnel opposite end identification IP and domain name are available Detection Detect dead no longer responding peers Enable DPD Detection Enable or disable this function tick means e...

Страница 91: ...ption ESP encryption type ESP Integrity ESP authentication algorithm ESP Key life Set ESP key life current unit is hour the default is 0 IKE aggressive mode allowed Allow aggressive mode connections t...

Страница 92: ......

Страница 93: ...sion GRE Tunnel tunnel technology Layer Two Tunnelling Protocol VPN Virtual Private Network GRE Tunnel enable or disable ALL GRE tunnels Number Select the tunnel definition you want to view edit Statu...

Страница 94: ...ng alive failed Click on View GRE tunnels keys can view the information of GRE Port Forwarding Port Forwarding allows you to set up public services on your network such as web servers ftp servers e ma...

Страница 95: ...al port the port number seen by users on the Internet IP Address Enter the IP Address of the PC running the application Port to Enter the number of the internal port the port number used by the applic...

Страница 96: ...the first port of the range you want to be seen by users on the Internet and forwarded to your PC End Enter the number of the last port of the range you want to be seen by users on the Internet and fo...

Страница 97: ...all the ports of one computer exposing the computer so the Internet can see it Any PC whose port is being forwarded should have a static IP address assigned to it because its IP address may change wh...

Страница 98: ...ient in the format xxx xxx xxx xxx xxx Deflate Compression Enable or disable Deflate Compression BSD Compression Enable or disable BSD Compression LZS Stac Compression Enable or disable LZS Stac Compr...

Страница 99: ...tion Dial In User Local User Management CHAP Secrets User Set PPPOE client s user name Password Set PPPOE client s user password IP Address Set PPPOE client s user IP address Enable Enable or disable...

Страница 100: ...select router Dynamic Routing If you want the router to participate in dynamic routing protocols such as RIP etc running on your network s you should enable this option To enable the Dynamic Routing...

Страница 101: ...NET the new route destination address Subnet Mask the subnet mask for the new route Gateway IP address of the gateway device that forwards packets to the destination host or network Interface The inte...

Страница 102: ...date your MAC address with your ISP Clone MAC address can clone three parts Clone LAN MAC Clone WAN MAC Clone Wireless MAC Note MAC addresses are 48 characters they cannot be set to a multicast addres...

Страница 103: ...ach LAN port or group of LAN ports Note that although there are 15 VLAN s available there are only 5 ports 4 x LAN 1 x WAN Note also that the WAN port should be on a separate VLAN or routing to the WA...

Страница 104: ...urbing more critical things All of this is automatic QoS allows control of the bandwidth allocation to different services netmasks MAC addresses and the four LAN ports Uplink kbps To use bandwidth man...

Страница 105: ...several slower links and to send different kinds of traffic on different simulated links In both cases users must specify how to divide the physical link into simulated links and how to decide which s...

Страница 106: ...ton to cancel unsaved changes MAC Priority Users may also specify priority based on the client MAC address this is more specific and harder to spoof than IP addresses Security Firewall Users can enabl...

Страница 107: ...be used You can block cookies by enabling Filter Cookies Filter Java Applets Java Applets are scripts that run on your browser these may present a security risk You can prevent the browser form downl...

Страница 108: ...e the changes click the Save Settings button to save your changes Click the Cancel Changes button to cancel unsaved changes Impede WAN DoS Bruteforce Limit ssh Access This feature limits the access fr...

Страница 109: ...ur Internet connection Log To keep activity logs select Enable To stop logging select Disable When select enable the following page will appear Log Level Set this to the required log level Set Log Lev...

Страница 110: ...r changes Click the Cancel Changes button to cancel unsaved changes WAN Access Users can block or allow specific types of Internet applications They can set specific PC based Internet access policies...

Страница 111: ...g specific PCs access Internet services at a particular time period Access Policy Users may define up to 10 access policies Click Delete to delete a policy or Summary to see a summary of the policy St...

Страница 112: ...k access to certain websites by entering their URL Website Blocking by Keyword You can block access to certain website by the keywords contained in their webpage set up Internet access policy 1 Select...

Страница 113: ...ss during the designated days and time then keep the default setting Deny If you want the listed PCs to have Internet filtered during the designated days and time then click the radio button next to F...

Страница 114: ...chronized NTP time server you need to recalibrate to ensure the correct implementation of the relevant period control function URL Filtering Users can block access to certain websites by entering thei...

Страница 115: ...s black list Only Accept the Following Accept only the data packets conform to the following rules discard all other packets white list Direction Input packet from WAN to LAN output packet from LAN to...

Страница 116: ...le for the modem kernel By enabling the serial application you can assign this port to an application such as UDP to serial gateway Modbus TCP device etc Serial Applications enable or disable serial a...

Страница 117: ...mber Device ID Custom additional data in standard format maXconnect maXconnectsettings maXconnet is device management portal It is a cloud based M2M management portal which allows you to access monito...

Страница 118: ...nd SMS based notification and control on this page NOTE When serial application is running and set to Modbus TCP Modbus commands can read write the digital I O pins See the Modbus section for more det...

Страница 119: ...state of the 2 inputs and 2 outputs is listed To update the web page with current values click the Refresh button Web Control Click the Output 1 or Relay Output buttons to toggle the output to the opp...

Страница 120: ...If users choose to disable this feature a manual reboot will be required You can also activate or not the router information web page It s now possible to password protect this page same username and...

Страница 121: ...n your web browser s address field You will be asked for the router s password If users use https you need to specify the URL as https xxx xxx xxx xxx 8080 not all firmware s does support this without...

Страница 122: ...rs can schedule regular shutdown and reboot for the router For date based shutdown and reboot the Cron service must be activated See Management for Cron activation Users can schedule regular reboots o...

Страница 123: ...l be accepted If no phone numbers are configured the modem accepts message from any phone number and process it accordingly Modem will send acknowledgement of SMS message The phone numbers must be in...

Страница 124: ...t area with your command and click Run Commands to submit Startup Fill the text area with commands only one command by row and click Save Start up Script will run on modem startup Shutdown Fill the te...

Страница 125: ...s instructions only one command by row and click Save Custom Script Firmware upgrade Firmware upgrade allows users to upgrade or downgrade firmware It may take a few minutes to upgrade the firmware t...

Страница 126: ...r as the original and that the firmware versions match Factory Default Factory default settings allow user to revert setting to factory settings The modem erases the current configuration and loads th...

Страница 127: ...the modem In most cases you should re boot the router after making a configuration change this ensures that the saved configuration is how you desire so the router will come up from a power interrupt...

Отзывы: