background image

© Microhard Systems Inc.       

 

83 

4.0  Configuration  

Image 4-5-3:  Firewall >  Port Forwarding 

4.5.3 Firewall > Port Forwarding 
 

The  BulletPlus  can  be  used to  provide  remote  access to  connected  devices.  To  access  these  devices  a 
user must define how incoming traffic is handled by the BulletPlus. If all incoming traffic is intended for a 
specific  connected  device,  DMZ  could  be  used  to  simplify  the  process,  as  all  incoming  traffic  can  be 
directed towards a specific IP address.  
 
In the  case  where  there  is multiple  devices,  or only  specific  ports need  to  be  passed,  Port forwarding is 
used to forward traffic coming in from the WAN (Cellular) to specific IP Addresses and Ports on the LAN. 
Port forwarding can be used in combination with other firewall features, but the Firewall must be enabled 
for Port forwarding to be in effect. If the WAN Request is blocked on the General Tab, additional rules and/
or IP Lists must be set up to allow the port forwarding traffic to pass through the firewall. 
 
IP-Passthrough (Carrier > Settings) is another option for passing traffic through the BulletPlus, in this case 
all traffic is passed to a single device connected to the RJ45 port of the BulletPlus, The device must be set 
for DHCP, as the BulletPlus assigns the WAN IP to the device, and the modem enters into a transparent 
mode, routing all traffic to the RJ45 port. This option bypasses all firewall features of the BulletPlus, as well 
as all other features of the BulletPlus such as COM, VPN, GPS etc. 

If DMZ is enabled and an 
exception port for the WebUI 
is not specified,  remote 
management will not be 
possible. The default port for 
remote management is TCP 
80. 

Содержание BulletPlus

Страница 1: ...rial USB Gateway w WIFI Document BulletPlus Operating Manual v1 3 1 pdf FW v1 3 0 Build 1014 Operating Manual June 2016 150 Country Hills Landing NW Calgary Alberta Canada T3K 5P3 Phone 403 248 0028 F...

Страница 2: ...ED NO FUNCTIONAL WARRANTY Indemnification The Purchaser shall indemnify Microhard Systems Inc and its respective directors officers employees suc cessors and assigns including any subsidiaries related...

Страница 3: ...illustrations that further elaborate on the accompanying text but also several symbols which you should be attentive to Caution or Warning Usually advises against some action which could result in un...

Страница 4: ...name and FCC and Industry Canada identifiers of this product must appear on the outside label of the end user equipment WARNING SAMPLE LABEL REQUIREMENT EXIGENCE D TIQUETTE BulletPlus Contains Pour s...

Страница 5: ...tional CSA Classe 1 Division 2 est disponible uniquement sur les unit s particuli rement marqu es Si marqu cette Classe 1 Division 2 alors ce produit est disponible pour une utilisation en Classe 1 Di...

Страница 6: ...dated to firmware v1 3 0 r1010 Added Bandwidth Cloud Filter Webfilter MultiWAN GRE Misc updates to screenshots formatting PEH Dec 2015 1 2 Updated to firmware v1 3 0 r1012 Misc corrections added VRRP...

Страница 7: ...System 24 4 1 1 Summary 24 4 1 2 Settings 25 Host Name 25 Console Timeout 25 Date Time 26 NTP Server Settings 27 4 1 3 Services 28 FTP 28 Telnet 28 HTTP HTTPS 28 4 1 4 Keepalive 29 4 1 5 Maintenance 3...

Страница 8: ...3 Port Forwarding 83 4 5 4 MAC IP List 85 4 5 5 Rules 87 4 5 6 Firewall Default 89 4 6 VPN 90 4 6 1 Summary 90 4 6 2 Gateway to Gateway 91 4 6 3 Client to Gateway L2TP Client 96 4 6 4 OpenVPN 98 Open...

Страница 9: ...4 11 5 Websocket 143 4 12 Diag 145 4 12 1 Ping 145 4 12 2 Traceroute 145 4 12 3 Iperf 146 4 13 Admin 148 4 13 1 Users 148 4 13 2 Authentication RADIUS 150 4 13 3 NMS 151 4 13 4 SNMP 155 4 13 5 Discov...

Страница 10: ...nterface the BulletPlus can be used in a limitless types of applications such as 1 1 Performance Features Key performance features of the BulletPlus include High speed backbone IP video surveillance V...

Страница 11: ...WCDMA DL UL 384 kbps EDGE Class 33 DL UL 236 8 kbps GPRS Class 33 DL UL 85 6kbps BulletPlus Data Features LTE FDD UL 50Mbit s DL 150Mbit s 20M BW cat4 China LTE TDD UL 10Mbit s DL 112Mbit s 20M BW ca...

Страница 12: ...tivity Autonomous acquisition 145 dBm Tracking Sensitivity 158 dBm 50 valid fixes Position Accuracy Tracking L1 CA code 12 Channels Max update rate 1 Hz Error calculated location less than 11 6 meters...

Страница 13: ...less Carrier must be installed Insert the SIM Card into the slot as shown the bottom SIM slot is for SIM1 The contacts should face down and the notch to the right 2 2 Getting Started with Cellular Con...

Страница 14: ...he BulletPlus will then ask for a Username and Password Enter the factory defaults listed below 192 168 168 1 The factory default network settings IP 192 168 168 1 Subnet 255 255 255 0 Gateway 192 168...

Страница 15: ...ers or with private APN s To set or change the APN click on the Carrier Settings tab and enter the APN supplied by your carrier in the APN field Some carriers may also require a Username and Password...

Страница 16: ...fully connected to your Cellular Carrier To access devices connected to BulletPlus remotely one or more of the following must be configured IP Passthrough Port Forwarding DMZ Another option would be t...

Страница 17: ...The BulletPlus Hardware Features Include Standard Connectors for 3x 10 100 Ethernet Ports RJ45 1xWAN 2xLAN Data Port RS232 DB9 4 Pin MATE N LOK Type Connector for Power I O 1 2 Cellular Antenna SMA Fe...

Страница 18: ...awings Drawing 3 1 BulletPlus Top View Dimensions Drawing 3 2 BulletPlus Back View Dimensions Drawing 3 3 BulletPlus Side View Dimensions Note All dimension units Millimeter 55 2 12 5 14 5 14 5 14 5 2...

Страница 19: ...et Order Option Drawing 3 4 BulletPlus Top View Dimensions Shown with removable TS35 DIN Rail Mount Drawing 3 5 BulletPlus Mounting Bracket Dimensions Note All dimension units Millimeter 58 0 62 4 16...

Страница 20: ...static factory IP address This IP address is useable in a Web Browser for accessing the Web User Interface Receive Signal Strength Indicator RSSI As the received signal strength increases starting wi...

Страница 21: ...o power the unit The input Voltage range is 7 30 Vdc PoE The Bullet can also be powered using Passive PoE on the Ethernet Port WAN via a PoE injector 3 1 3 2 Rear Side View On the side of the Bullet i...

Страница 22: ...ing an Ethernet cable apply power to the BulletPlus and wait approximately 60 seconds for the system to load open a web browser and enter the factory default IP address 192 168 168 1 of the unit logon...

Страница 23: ...my password checkbox may be selected for purposes of convenience however it is recommended to ensure it is deselected particularly once the unit is deployed in the field for one primary reason securi...

Страница 24: ...re System keep alive to ensure network internet access Maintenance Remote firmware Upgrades reset to defaults configuration backup and restore Reboot Schedule reboots and or immediately reboot the sys...

Страница 25: ...en the unit is reporting into Microhard NMS System The description provides an additional field for text characters but is not displayed anywhere but in this field Host Name Description Values charact...

Страница 26: ...current setting of the Date and Time Setting Mode as seen below Image 4 1 3 System Settings Time Settings Network Time Protocol NTP can be used to synchronize the time and date or computer systems wit...

Страница 27: ...ys the POSIX TZ String used by the unit as determined by the timezone setting Values read only varies NTP Server Enter the IP Address or domain name of the desired NTP time server Values address pool...

Страница 28: ...lso be modified The default is 22 22 Values port Telnet Using the Telnet Service Enable Disable function you can disable the Telnet service from running on the modem The port used by the Telnet servic...

Страница 29: ...lection Enable Disable Monitors traffic on the Cell interface as well as the WAN interface if the WAN port is configured as independent in the Network Settings If the Bullet detects that there is no a...

Страница 30: ...to correct connection issues The default number is 20 and valid value is from 10 to 200 Keepalive Retry Values number 20 Specify a IP Address or Domain that is used to test the modems connection The m...

Страница 31: ...t Configuration Values check box unchecked Firmware Image Use the Browse button to find the firmware file supplied by Microhard Systems Select Upgrade Firmware to start the upgrade process This can ta...

Страница 32: ...en the option to restore the configuration is displayed as seen above The Keep Carrier Settings box can be selected before the restore process is started if it is selected the BulletPlus will retain t...

Страница 33: ...f enabled the BulletPlus is reboot at the interval defined below Status Values selection Disable Enable Schedule daily weekly or monthly reboots Setting up a reboot schedule can help keep the modem co...

Страница 34: ...4 2 1 Network Summary The Network Summary display gives a overview of the currently configured network interfaces including the Connection Type Static DHCP IP Address Net Mask Default Gateway DNS and...

Страница 35: ...oint DHCP server within a network Disadvantage The address of a particular device is not known and is also subject to change STATIC addresses must be tracked to avoid duplicate use yet they may be per...

Страница 36: ...gs IP 192 168 168 1 Subnet 255 255 255 0 Gateway 192 168 168 1 If Static Connection Type is selected the Network Mask must be entered for the Network If DHCP is chosen this field will not appear and i...

Страница 37: ...ERVER service The Server issues IP address information at the request of a DHCP Client which receives the information The option is used to enable or disable the DHCP service for devices connected to...

Страница 38: ...rred DNS Server Values IP Address IP Address Specify the alternate DNS server address to be assigned to DHCP devices Alternate DNS Server Values IP Address IP Address Enter the address of the WINS NBN...

Страница 39: ...cted VLAN switch use the same Native VLAN Image 4 2 5 Network VLAN VLAN names can be added to aid in VLAN identification purpose I e Engineering Accounting etc VLAN Name Values no default Assign port...

Страница 40: ...known and is also subject to change STATIC addresses must be tracked to avoid duplicate use yet they may be permanently assigned to a device Image 4 2 6 Network WAN Configuration If Static Connection...

Страница 41: ...ter allows you to set this interface as the default route in the routing table This is result in all data being sent to the WAN interface if there the destination network is not directly connected LAN...

Страница 42: ...the next field Must use the format AB CD DF 12 34 D3 It is not case sensitive but the colons must be present MAC Address Values MAC Address no default Enter the IP Address to be assign to the device s...

Страница 43: ...list of supported Dynamic DNS service providers Free and premium services are offered contact the specific providers for more information Service Values selection changeip dyndns eurodyndns hn noip En...

Страница 44: ...BulletPlus where to send data Image 4 2 9 Network Routes Routes can be names for easy reference or to describe the route being added Name Values characters no default Enter the network IP address for...

Страница 45: ...ty the lower the metric is the better the route The more hops it takes to get to a destination the higher the metric Metric Values Integer 255 255 255 0 Define the exit interface Is the destination a...

Страница 46: ...it will use whichever virtual router has the highest priority if that device is not available the next router with the higher priority will router the traffic Image 4 2 10 Network VRRP Internet Bullet...

Страница 47: ...s the IP Address of the virtual router this must be the same on all devices participating in VRRP This is the IP that any attached LAN PC device would use as its default gateway Virtual Router IP Valu...

Страница 48: ...to be able to help identify which interface or network is attached to the affected network interface Rule Name Values chars rule1 Select the physical interface to be affected by the Bandwidth Throttl...

Страница 49: ...ds have been allowed using the Download Bandwidth Enable Download Bandwidth Values kbps 30000 Image 4 2 13 Network Device List 4 2 10 Network Device List The Network Device List shows the current ARP...

Страница 50: ...sed filtering security OpenDNS Cloud Filter Values selection Enable Disable If enabled all clients connected through the BulletPlus will be forced to use OpenDNS and is subject to any and all content...

Страница 51: ...ess the BulletPlus allows content to be filtering regardless of the assigned IP address Filtering can also be applied on a entire network limiting access to any connected device Enable or Disable the...

Страница 52: ...company com Alternatively you can use an IP address or address range written in CIDR notation i e 8 8 8 0 24 Action Specify if the rule Allows access or Denies access to the specified address Rule Pri...

Страница 53: ...nnection as data is usually cheaper unlimited than a cellular connection The BulletPlus can provide automatic failover services switching the connection or default route used for outside data Enable o...

Страница 54: ...8 8 8 4 2 2 1 208 67 222 222 Health Monitor Interval This is the frequency at which the BulletPlus will send ICMP packets to the defined host to determine if the interface has failed Values seconds 20...

Страница 55: ...ore recovering the failed interface Values selection 1 2 5 10 15 20 Recovery Immediate Mode Wait Once the preferred connection is again deemed available it can be specified to wait a configurable amou...

Страница 56: ...variety of information can be found here such as Activity Status Network Name of Wireless Carrier connected Data Service Type WCDMA HSPA HSPA LTE etc Frequency band Phone Number etc Not all statistics...

Страница 57: ...as described below either slot can be specified as the primary slot and if a connectivity issue occurs the unit can be configured to automatically switch to the alternate SIM card Carrier Status is us...

Страница 58: ...ent and forwards all traffic to the device connected to the selected Ethernet port except that listed below The WebUI port Default Port TCP 80 this port is retained for remote management of the Bullet...

Страница 59: ...CDMA WCDMA LTE LTE GSM The SIM Pin is required for some international carriers If supplied and required by the cellular carrier enter the SIM Pin here SIM Pin Values characters none Advanced Sets the...

Страница 60: ...eft at the default value IP Address Values IP Address none When enabled DNS Passthrough will pass on the WAN assigned DNS information to the end device DNS Passthrough Values Selection Enable Disable...

Страница 61: ...the SMS Command History and view the SMS messages on the SIM Card Image 4 3 4 SMS SMS Configuration 4 3 4 Carrier SMS Config SMS messages can be used to remotely reboot or trigger events in the Bullet...

Страница 62: ...lter List Up to 6 numbers can be added Set Phone Filter Values Selection Enable Disable MSC REBOOT Reboot system MSC NMS Send NMS UDP Report MSC WEB Send web client inquiry MSC MIOP1 open I O ouput1 M...

Страница 63: ...n Enable Disable SMS Alerts can be sent to up to 6 different phone numbers that are listed here Received Phone Numbers Values Selection no default SMS alerts when active will be sent out at the freque...

Страница 64: ...SMS Alerts can be sent based on the state changes of the Digital I O lines I O Status Values Selection Disable IO Check Enable INPUT Changed Enable Output Changed Enable INPUT or OUTPUT Changed Set t...

Страница 65: ...ing daily and or monthly limits Notifications can be sent using SMS or Email allowing a early warning if configurable limits are about to be exceeded The usage data reported by the Data Usage Monitor...

Страница 66: ...cles begins On this day each month the BulletPlus will reset the data usage monitor numbers 1 Day of Month Phone Number Values phone If SMS is selected as the notification method enter the phone numbe...

Страница 67: ...username If Email is selected as the notification method enter the username of the Email account used to send Emails gmail com Password Values string If Email is selected as the notification method en...

Страница 68: ...ation Data Usage History The BulletPlus provides a Odometer that shows the total data used by the BulletPlus You can also click on the More link to get a data usage history summary as seen below Image...

Страница 69: ...g Mode Access Point Client the SSID being used frequency channel information and the type of security used Traffic Status shows statistics about the transmitted and received data The BulletPlus shows...

Страница 70: ...selection On Off The Mode defines which wireless standard to use for the wireless network The BulletPlus supports 802 11 b g n modes as seen here Select the appropriate operating mode from the list Th...

Страница 71: ...e data frames to be sent in a single transmission block allowing for acknowledging or retransmitting if errors occur Short GI Enable Disable GI guard interval is the time the receiver waits for any RF...

Страница 72: ...eshold will improve bandwidth while a smaller RTS Threshold will help the system recover from interference or collisions caused by obstructions RTS Thr 256 2346 Values selection On OFF The Fragmentati...

Страница 73: ...additional Network Interfaces have been defined in the Network LAN section the Interface name will also appear here Network Values selection LAN WAN Etc Additional Interfaces Access Point An Access Po...

Страница 74: ...15 Mbps mcs 1 14 4 30 0 Mbps mcs 2 21 7 45 0 Mbps mcs 3 28 9 60 0 Mbps mcs 4 43 3 90 0 Mbps mcs 5 57 8 120 0 Mbps mcs 6 65 0 135 0 Mbps mcs 7 72 2 150 0 Mbps Disabling the SSID broadcast helps secure...

Страница 75: ...rsion type This section describes all available options Export versions may not have all optional available to meet regulatory requirements set government policies Encryption Type Values selection Dis...

Страница 76: ...based terms of use or statement to connected users Simple External Display an external webpage RADIUS UAM Use a 3rd Party Authentication service to authenticate and or prompt users to agree to terms...

Страница 77: ...e used by devices connected to the Hotspot network Secondary DNS Values 208 67 222 220 When devices connect to the BulletPlus Wifi and Hotspot is enabled the Hotspot will assign the IP addresses to th...

Страница 78: ...radius hotspotsystem com As assigned by the Hotspot Service Provider the name or IP address of the alternate RADIUS Server Radius Server 2 Values radius2 hotspotsystem com The Radius Authentication P...

Страница 79: ...information is supplied by the hotspot service provider Radius CoA UDP Port Values port 3799 Specify the Radius Session Timeout In seconds 0 disabled Radius Session Timeout Values seconds 3600 Specify...

Страница 80: ...5 1 Firewall Status 4 5 Firewall 4 5 1 Firewall Summary The Firewall Summary allows a user to see detailed information about how the firewall is operating The All Filter Nat Raw and Mangle options ca...

Страница 81: ...Carrier Remote Management Allow remote management of the BulletPlus from the Cellular side of using the WebUI on port 80 HTTP and 443 HTTPS If disabled the configuration can only be accessed from the...

Страница 82: ...s to create some firewall rules assigned to the external interface WAN Cellular of the firewall that examines the source address of all packets crossing that interface coming from outside If the addre...

Страница 83: ...ith other firewall features but the Firewall must be enabled for Port forwarding to be in effect If the WAN Request is blocked on the General Tab additional rules and or IP Lists must be set up to all...

Страница 84: ...server on the LAN IP entered above Values Port 3000 Exception Port Enter a exception port number that will NOT be forwarded to the DMZ server IP Usually a configuration or remote management port that...

Страница 85: ...allowing connections based on the IP Address Subnet MAC IP List can be used alone or in combination with LAN to WAN 4G Access Control to provide secure access to the physical ports of the BulletPlus...

Страница 86: ...gth Values 10 chars IP_List Source IP Address Match incoming traffic from the specified source IP range Boxes accept single IP Addresses without network masks example 192 168 1 0 to 192 168 1 255 repr...

Страница 87: ...redictable data charges from the cellular carrier Rule Name The rule name is used to identify the created rule Each rule must have a unique name and up to 10 characters can be used Values 10 Chars cha...

Страница 88: ...nd the LAN LAN1 USB refers to local connections on the BulletPlus Values selection LAN LAN1 Cell WAN USB None Destination IPs Match incoming traffic from the specified destination IP range Boxes accep...

Страница 89: ...onfiguration Image 4 4 7 Firewall Firewall Default 4 5 6 Firewall Firewall Default The Firewall Default option allows a user to return the modems firewall setting back to the default values without ha...

Страница 90: ...en the BulletPlus and a remote network The BulletPlus supports VPN IPsec Gateway to Gateway site to site tunneling meaning you are using the BulletPlus to create a tunnel to a network with VPN capabil...

Страница 91: ...nnel between two VPN devices such as an BulletPlus and another device another BulletPlus or Cisco VPN Router or another vendor The local and remote group settings will need to be configured below to m...

Страница 92: ...rs automatically For the Remote Security Gateway Type an extra field appears If you know the IP address of the remote VPN router choose IP Address and then enter the address IP Server ID Choose this o...

Страница 93: ...y the method for identifying the router to establish the VPN tunnel The Local Security Gateway is on this router the Remote Security Gateway is on the other router At least one of the routers must hav...

Страница 94: ...Values selection md5 sha1 Phase 1 Encryption Select value to match the Phase 1 Encryption type used by the remote VPN router Values selection 3des aes aes128 aes256 IPsec Setup Phase 1 DH Group Selec...

Страница 95: ...te VPN router Values 3600 Preshared Key Set the Preshared Key required to authenticate with the remote VPN router Values characters password DPD Delay s Dead Peer Detection is used to detect if there...

Страница 96: ...an operate as a L2TP Client allowing a VPN connection to be made with a L2TP Server Tunnel Name Enter a name for the VPN Tunnel Up to 16 different tunnels can be created each requiring a unique name V...

Страница 97: ...bnet IP In order to communicate with the devices on the other side of the tunnel the BulletPlus must know which data to pass through the tunnel to do this enter the Remote Subnet network IP address he...

Страница 98: ...figuration of a OpenVPN Server Image 4 6 4 VPN OpenVPN Server OpenVPN Mode Enable Disable the OpenVPN Mode by selecting the mode to operate in Client or Server When the Server is enabled it will be li...

Страница 99: ...s server key The maximum resulting UDP send packet size after the OpenVPN has fully encapsulated data Packets exceeding this max value will be fragmented MSSFIX Fragment size Values size 1370 TLS Auth...

Страница 100: ...es Cipher Select a cryptographic cipher Must be the same on Server and Client Values selection DES CBC RC2 CBC DES EDE CBC DES EDE3 CBC DESX CBC BF CBC RC2 40 CBC CAST5 CBC RC2 64 CBC AES 128 CBC AES...

Страница 101: ...Client or Server When the Server is enabled it will be listening for incoming connection requests from OpenVPN Clients Values selection Client Server Disable Select the Tunnel Protocol to be used The...

Страница 102: ...1370 Cleint Certificate The Client Certificate which is the certificate file that resides on only the client Values chars client crt Client Key The private Client Key which should not be disclosed Va...

Страница 103: ...layer protocols not supported by traditional VPN This allows IP packets to travel from one side of a GRE tunnel to the other without being parsed or treated like IP packets Each GRE tunnel must have...

Страница 104: ...WAN IP Address of the BulletPlus this field should be populated with the current WAN IP address Values IP Address varies Tunnel IP Address This is the IP Address of the local tunnel Values IP Address...

Страница 105: ...h at the remote end Values IP Address varies Subnet Mask The subnet mask for the local network subnet Values IP Address varies Remote Setup The remote setup tells the BulletPlus about the remote end t...

Страница 106: ...vide a username and password Use the VPN Users menu to set up the required users Username Enter a username for the user being set up Values characters no default New Password Enter a password for the...

Страница 107: ...When using the VPN features of the BulletPlus it is possible to select X 509 for the Authentication Type If that is the case the BulletPlus must use the required x 509 certificates in order to establi...

Страница 108: ...on the BulletPlus If enabled the BulletPlus will exchange routing information on the specified interfaces attached networks Values selection Enable Disable Authentication Type Port Password Enable MD5...

Страница 109: ...be added in the Network Routes menu OSPF Status Enable or disable OSPF routing on the BulletPlus If enabled the BulletPlus will exchange routing information on the specified interfaces attached networ...

Страница 110: ...and troubleshooting of the RS232 or USB Serial Port General Status Port Lists available RS232 or USB Serial ports available Port Status Shows if the port has been enabled in the configuration Baud Rat...

Страница 111: ...for this port is to be configured as a console port and is used for diagnostics and configuration using a AT Command set 115200 8 N 1 USB The BulletPlus supports the use of USB to Serial converters an...

Страница 112: ...t of the data on the serial port The default is 8 data bits No parity and 1 Stop bit Data Format Values selection 8N1 8E1 8O1 Flow control may be used to enhance the reliability of serial data communi...

Страница 113: ...ate is 9600bps it takes approximately 1ms to move one character With the Character Timeout set to 4 the timeout period is 4ms When the calculated time is less than 3 5ms the serial server will set the...

Страница 114: ...ver Default 20001 Outgoing Connection Timeout This parameter determines when the BulletPlus will terminate the TCP connection if the connection is in an idle state i e no data traffic on the serial po...

Страница 115: ...his feature to function Mail Subject Enter a suitable e mail subject e mail heading Default COM1 Message Mail Server IP Name IP address or Name of SMTP Mail Server Default 0 0 0 0 Mail Recipient A va...

Страница 116: ...enerally this does not need to be changed Default CLIENTSERVER PPP LCP Echo Failure Number The PPP server will presume the peer to be dead if the LCP echo requests are sent without receiving a valid L...

Страница 117: ...0 Configuration IP Protocol Config Continued GPS Transparent Mode When in GPS Transparent Mode GPS data is reported out the serial port at 1 second intervals Sample output is shown below Image 4 8 3...

Страница 118: ...ebUI Alerts can be setup to send SMS Messages if I O Status changes as well SMS control messages can be sent to the device to trigger events SNMP and or Modbus can be used to poll for the status or se...

Страница 119: ...IH 1 5 3 3 30 V Input leakage current 3 3 VDC IN IIN 58 A Typical application input source is a dry switch contact to ground Pin includes an internal 56K resistor pull up to 3 3 VDC I O 1 2 Output Ope...

Страница 120: ...ccessful will use the Cell ID location reported by the Cellular Carrier Image 4 10 1 GPS Location Map The maps can be viewed with either Bing or Google maps by using the option located at the bottom r...

Страница 121: ...GPS polling function of the BulletPlus Values Disable Enable GPS Source The BulletPlus contains an standalone GPS module built into the unit To use the GPS features of the BulletPlus an antenna must b...

Страница 122: ...or Email Reporting Image 4 10 3 GPS GPS Report Report Define Enable UDP and or Email or disable GPS Reporting Up to 4 reports can be set up and configured independently Values selection Disable UDP R...

Страница 123: ...before an update is sent Values selection Only Timer Timer AND Distance Timer OR Distance Distance Set The distance parameter allows the GPS data to only be sent when a specified distance has been tra...

Страница 124: ...The BulletPlus and GpsGate software will communicate via TCP IP however if a connection is not available it will attempt to use SMS messaging Values selection Disable Enable Tracker Mode Enable TCP Se...

Страница 125: ...ction Disable Enable Motion Trigger When GPS Invalid Sending Data Specify what happens when the GPS data is invalid either use the last valid position or do not use the last valid position Values sele...

Страница 126: ...ver running the GpsGate application Values Port 30175 Server Interval Define the interval at which the BulletPlus will send data to the GpsGate Server Values seconds 60 Motion Distance Set the motion...

Страница 127: ...etPlus The total number of records that can be recorded varies between 16 000 and 36 000 depending on the number of GPS parameters that are recorded Values selection Disable Enable GPS Recorder Time I...

Страница 128: ...ecord the current orientation when a GPS entry is recorded Degree to North Values selection Record Don t Record Orientation Changed Record a GPS regardless of the time interval if the orientation of t...

Страница 129: ...or sent to a remote server in various formats The data recorded can also be viewed directly by selecting View Data and the data can be traced on a map internet access required by selecting Trace Map o...

Страница 130: ...a format protocol type for the data to be sent Values selection NMEA via UDP NMEA via TCP GpsGate via UDP GpsGate via TCP Plain Text via UDP Plain Text via TCP Server Address IP Enter the address or I...

Страница 131: ...e status Enable or disable TAIP service on the modem The unit can report TAIP to up to 4 different hosts Values selection Enable Disable Remote TAIP Server Enter the IP Address of the Remote TAIP Serv...

Страница 132: ...on Velocity RLN Long Navigation Message Values selection RPV RLN Interval Set the frequency at which TAIP messages are reported to the remote server The unit used is seconds and the default value is 6...

Страница 133: ...operate as a TCP IP or Serial COM Modbus slave and respond to Modbus requests and report various information as shown in the Data Map Status Disable or enable the Modbus service on the BulletPlus Valu...

Страница 134: ...Host System Values value 1 Coils Address Offset Enter the Coils Address offset as required by the Master Values value 0 Input Address Offset Enter the Input Address offset as required by the Master V...

Страница 135: ...In RTU mode communication is in binary format and in ASCII mode communication is in ASCII format Values selection Disable Enable COM ASCII Mode Enable COM RTU Mode Baud Rate The serial baud rate is t...

Страница 136: ...Microhard Systems Inc 136 4 0 Configuration 4 10 1 3 Modbus Modbus Data Map Image 4 11 3 Applications Modbus Data Map...

Страница 137: ...stand data needs Standard Netflow Filters can be applied to narrow down results and target specific data requirements Status Enable Disable Netflow Reporting Values selection Disable Enable Interface...

Страница 138: ...d If no expression is given all packets will be captured Otherwise only packets for which expression is true will be captured Example tcp port 80 The tcpdump manual available on the internet provides...

Страница 139: ...ct is selected the BulletPlus will detect and monitor DHCP assigned IP address Status Enable or disable the local device monitoring service Disable Enable Values selection Fixed local IP Auto Detected...

Страница 140: ...tc carrier info such as signal strength RSSI phone number RF Band or about the WAN such as if the assigned IP Address changes All events are reported in binary Event Type This box allows the selection...

Страница 141: ...ture Modem_event message structure fixed header fixed size 20 bytes Modem ID uint64_t 8 bytes Message type mask uint8_t 1 byte reserved packet length uint16_t 2 bytes Note packet length length of fixe...

Страница 142: ...hone number STRING 1 30 Bytes WAN Info Content length 2 BYTES UINT16_T IP address 4 BYTES UINT32_T DNS1 4 BYTES UINT32_T DNS2 4 BYTES UINT32_T Message Order Messages will be ordered by message type nu...

Страница 143: ...two purposes refreshing page information without refreshing the entire page to reduce network stream to integrate internet applications with xml to get required information in real time Currently we p...

Страница 144: ...n once started enabled The default is 60 mins a value of zero means the service with continue to run indefinitely Values minutes 60 GPS Coordinate If enabled the modem will report GPS coordinate data...

Страница 145: ...entering the IP address or host name of a destination device in the Ping Host Name field use Count for the number of ping messages to send and the Packet Size to modify the size of the packets sent 4...

Страница 146: ...ice with Iperf or PC running an Iperf client If set to Iperf client the BulletPlus will connect to or send packets to a specified Iperf server Iperf Mode Select between an Iperf Server listens for inc...

Страница 147: ...0 for recommended settings Values string 0 Remote Server Address When in Client mode select the Iperf Server by entering its IP Address here Values IP Address 192 168 168 100 Duration When in Client m...

Страница 148: ...can be defined and deleted as required as seen in the Users menu below Image 4 13 1 Users Password Change Enter a new password for the admin user It must be at least 5 characters in length The defaul...

Страница 149: ...of 32 character Changes will not take effect until the system has been restarted Username Values characters no default Min 5 characters Max 32 characters Password Confirm Password Passwords must be a...

Страница 150: ...User Service An authentication authorization and accounting protocol which may be used in network access applications A RADIUS server is used to verifying that information is correct Remote Server IP...

Страница 151: ...monitor online offline units retrieve usage data perform backups and centralized upgrades etc The following section describes how to get started with NMS and how to configure the BulletPlus to report...

Страница 152: ...by the NMS subscription page Domain Password This password is used to prevent misuse of the domain This needs to be entered into each 3G or 4G device for it to report to right zone Email Address The...

Страница 153: ...arrier Location Enable or Disable location estimation via carrier connection When enabled the BulletPlus will consume some data to retrieve location information from the internet Values chars Disable...

Страница 154: ...or disabled This service is used to remotely control the BulletPlus It can be used to schedule reboots firmware upgrade and backup tasks etc Values chars Disable Enable Server Port This is the port w...

Страница 155: ...on and processing of the information sent by a device either responses to queries or device sourced traps The MIB in the device relates subroutine addresses to objects in order to read data from or wr...

Страница 156: ...ate SNMP queries Being part of the community allows the SNMP agent to process SNMPv1 and SNMPv2c requests This community name has only READ priority Read Only Community Name Values string public Also...

Страница 157: ...entication Level set to AuthNoPriv or AuthPriv V3 User Authentication Password Values string 00000000 SNMPv3 user s encryption password Only valid when V3 User Authentication Level set to AuthPriv see...

Страница 158: ...employ a discovery service that can be used to detect other Microhard Radio s on a network This can be done using a stand alone utility from Microhard System s called IP Discovery or from the Admin D...

Страница 159: ...Microhard Systems Inc 159 4 0 Configuration 4 13 6 System Logout The logout function allows a user to end the current configuration session and prompt for a login screen Image 4 13 9 System logout...

Страница 160: ...program Hyperterminal Tera Term ProComm Putty etc can then be used to communicate with the BulletPlus The port settings of this port can be modified by changing the settings of the Console Port in the...

Страница 161: ...blishing a Telnet Session A session can be made to the WAN IP Address if allowed in the firewall settings for remote configuration or to the local RJ45 interface Once a session is established a login...

Страница 162: ...me Syntax for commands that can be used to query and set values AT command_name parameter1 parameter2 Sets Values AT command_name Queries the setting Query Syntax AT MSMNAME Enter MSMNAME Command Synt...

Страница 163: ...Immediate Echo OK AT enter Description Example Input AT enter Response OK ATE0 Command Syntax Effect Immediate Disables Local Echo ATE0 enter Description Example Input ATE0 enter Response OK ATE1 Com...

Страница 164: ...profile Reserved AT R enter Description Example Input AT R enter Response OK ATL Command Syntax Effect Immediate Show a list of all available AT Commands ATL enter Description Example Input ATL enter...

Страница 165: ...configurations changed recently ATA ATO Command Syntax Effect Immediate Quit Exits AT Command session and returns you to login prompt ATA enter Description Example Input ATA enter Response OKConnectio...

Страница 166: ...conds Description Example Input AT MSCNTO 300 enter Response OK AT MSPWD Command Syntax Effect Immediate Used to set or change the ADMIN password AT MSPWD New password confirm password password at lea...

Страница 167: ...P 192 168 168 1 MASK 255 255 255 0 Wan MAC 00 0F 92 FE 00 01 Wan IP 184 151 220 2 Wan MASK 255 255 255 255 System Device BulletPlus Test Product Bulletplus Image PWii Hardware Rev A Software v1 3 0 bu...

Страница 168: ...o retrieve value AT MSMNAME enter Response Host name BulletPlus Test OK AT MSRTF Command Syntax Effect Immediate Reset the modem to the factory default settings from non volatile memory AT MSRTF Actio...

Страница 169: ...dress or Name 0 0 0 0 Disable 1 to 256 characters Port 1 to 65535 Default is 514 Description Example Input AT MSSYSLOG 192 168 168 35 514 enter Response OK Input AT MSSYSLOG Response Syslog Server 192...

Страница 170: ...d Syntax Effect AT W Get Set WebUI protocol and port AT MSWEBUI Mode HTTP Port HTTPS Port Parameters Mode 0 HTTP HTTPS 1 HTTP 2 HTTPS HTTP Port 1 to 65535 80 by default HTTPS Port 1 to 65535 443 by de...

Страница 171: ...the network interface AT MNLAN LAN Name Operation Protocol STP IP Address Netmask LAN Name Name of Network LAN interface Operation SHOW Show the details of an exsiting LAN interface ADD Add a new LAN...

Страница 172: ...esses min 0 max 16777214 Lease Time The DHCP lease time in minutes min 0 max 214748364 Alt Gateway Alternate Gateway for DHCP assigned devices if the default gateway is not to be used Pre DNS Preferre...

Страница 173: ...enter Response OK AT MNLANDNS Command Syntax Effect AT W Get Set the network LAN interface DNS AT MNLANDNS LAN Name Mode Primary DNS Secondary DNS Usage AT MNLANDNS LAN Name AT MNLANDNS LAN Name Mode...

Страница 174: ...col Where Mode 0 2 and Protocol 1 AT MNWAN Mode Protocol Where Mode 2 and Protocol 2 AT MNWAN Mode Where Mode 1 Parameters Mode 0 Independent WAN 1 Bridge with LAN Port 2 Independent LAN Protocol 0 St...

Страница 175: ...NDR 1 enter Response OK AT MNWANDNS Command Syntax Effect AT W Get Set DNS Server when WAN port set as Independent WAN AT MNWANDNS Mode Primary DNS Secondary DNS Usage AT MNWANDNS AT MNWANDNS Mode Whe...

Страница 176: ...DNS Where Mode 1 Parameters Mode 0 Disable DHCP Server 1 Enable DHCP Server Start IP The starting address DHCP assignable IP Addresses Limit The maximum number of IP addresses min 0 max 16777214 Lease...

Страница 177: ...tive DHCP lease RELEASEALL Release all active DHCP leases Name Name of the MAC IP binding IP Address Valid IP address MAC Address The physical MAC address of the device or interface Usage AT MNIPMAC A...

Страница 178: ...AC 00 0F 92 00 40 9A OK AT MNPORT Command Syntax Effect AT W Get set the Ethernet port configuration AT MNPORT Ethernet Port Mode Auto Negotiation Speed Duplex Ethernet Port 0 WAN 1 LAN1 2 LAN2 Mode 0...

Страница 179: ...A MAC Address 00 0F 92 03 A8 E4 Traffic Status Receive bytes 0B Receive packets 0 Transmit bytes 684B Transmit packets 2 4G Port Status General Status IP Address 184 151 220 2 Connection Type static S...

Страница 180: ...onse MNDDNSE Mode 0 OK Input AT MNDDNSE 1 enter Response OK AT MNDDNS Command Syntax Effect AT W Get Set Dynamic DNS DDNS settings AT MNDDNS service type host user name password service type 0 changei...

Страница 181: ...Carrier Remote Management 6 Carrier Request 7 LAN to Carrier Access Control Mode 0 Disable Block 1 Enable Allow Description Example Input AT MFGEN 6 0 enter Response OK AT MFDMZ Command Syntax Get Set...

Страница 182: ...d IP address Internal Port Valid port number 1 65535 Protocol 0 TCP 1 UDP 2 TCPUDP External Port Valid port number 1 65535 Usage AT MFPORTFWD AT MFPORTFWD Name AT MFPORTFWD Name DEL AT MFPORTFWD Name...

Страница 183: ...dd a firewall MAC list EDIT Edit a firewall MAC list DEL Delete a firewall MAC list Action 0 Accept 1 Drop 2 Reject MAC Address Valid MAC address Usage AT MFMAC AT MFMAC Name AT MFMAC Name DEL AT MFMA...

Страница 184: ...1 Drop 2 Reject Source 0 LAN 1 Independent LAN 2 WAN 3 Carrier 4 WIFI Source IP Valid IP address Prefix 0 32 32 default single IP address Usage AT MFIP AT MFIP Name AT MFIP Name DEL AT MFIP Name ADD...

Страница 185: ...IP Format 0 IP Range 1 Subnet Prefix IP From Subnet Valid IP address 0 Set to blank IP To Prefix Valid IP address 0 Set to blank or 0 32 for Prefix Destination 0 LAN 1 Independent LAN 2 WAN 3 Carrier...

Страница 186: ...82064 OK AT MMIMSI Command Syntax Get modem s IMSI AT MMIMSI enter Description Example Input AT MMIMSI enter Response MMIMSI 302610012606734 OK AT MMNETRSSI Command Syntax Get modem s RSSI AT MMNETRSS...

Страница 187: ...AT MMPOWERIN enter Response MMPOWERIN 12 27 OK AT MMBOARDTEMP Command Syntax Get modem s temperature AT MMBOARDTEMP enter Description Example Input AT MMBOARDTEMP enter Response MMBOARDTEMP 46 65 OK...

Страница 188: ...t AT MMPIPP 1 enter Response OK Input AT MMPIPP Response MMPIPP 1 Ethernet OK AT MMNUM Command Syntax Get modem s phone number AT MMNUM enter Description Example Input AT MMNUM enter Response MMNUM 15...

Страница 189: ...ommand Syntax Immediate Send SMS message AT MMMGS Phone Number CR Phone Number Valid phone number Text is entered and ended by ctrl Z ESC Description Example Input AT MMMGS 4035555151 enter Test Messa...

Страница 190: ...3 15 07 04 16 This is also a test OK AT MMMGD Command Syntax Immediate Delete SMS messages from system AT MMMGD index Index the index of the message to be deleted Description Example Input AT MMMGD 12...

Страница 191: ...OMODE 1 0 enter Response OK Input AT MIOMODE Response MIOMODE IO port mode Mode1 0 Input Mode2 0 Input OK AT MIOOC Command Syntax Immediate Get Set output control I O point must be set as output AT MI...

Страница 192: ...val1 High iodigiinval2 High OK AT MIOMETER Command Syntax GET IO meter V AT MIOMETER enter Description Example Input AT MIOMETER enter Response MIOMETER IO meter V iovolts1 2 77 iovolts2 2 81 OK AT MC...

Страница 193: ...00 15 460800 16 921600 Description Example Input AT MCBR2 13 enter Response OK Input AT MCBR2 Response MCBR2 13 115200 OK AT MCDF2 Command Syntax Effect AT W Get Set Serial port data format AT MCDF2 d...

Страница 194: ...t AT MCCT2 0 enter Response OK AT MCMPS2 Command Syntax Effect AT W Get Set Serial port maximum packet size AT MCMPS2 size size 0 to 65535 Description Example Input AT MCMPS2 1024 enter Response OK AT...

Страница 195: ...ort IP Protocol Mode AT MCIPM2 Mode Mode 0 TCP Client 1 TCP Server 2 TCP Client Server 3 UDP Point to Point 7 SMTP Client 8 PPP 11 GPS Transparent Mode Description Example Input AT MCIPM2 1 enter Resp...

Страница 196: ...to TCP Client Server mode AT MCTCS2 Remote Server IP Remote Server Port Outgoning timeout_s Local Listener Port Remote Server IP valid IP address Remote Server Port 1 to 65535 Outgoning timeout_s 0 t...

Страница 197: ...ode Description AT MCPPP2 Command Syntax Effect AT W Get Set Serial port PPP configuration when IP protocol mode to set to PPP AT MCPPP2 Mode LCP Echo Failure Number LCP Echo Int erval Local IP Host I...

Страница 198: ...IO for Management Report For instant 0 0 0 0 0 to disable all interfaces Description Example Input AT MAEURD1 1 192 168 168 111 2010 10 enter Response OK AT MANMSR Command Syntax Effect AT W Define NM...

Страница 199: ...mple Input AT MADISS 1 enter Response OK AT MAWSCLIENT Command Syntax Effect AT W Get Set Web Service Client AT MAWSCLIENT Mode ServerType Port UserName Password Interval Mode 0 Disable 1 Enable Serve...

Страница 200: ...0 Disable 1 Enable ROCommunity Read Only Community Name 1 to 31 characters RWCommunity Read Write Community Name 1 to 31 characters Port Listening Port 0 to 65535 Default is 161 Version SNMP version 1...

Страница 201: ...uthPriv Auth V3 Authentication Protocol 0 MD5 1 SHA AuthPassword V3 Authentication Password 1 to 255 characters Privacy V3 Privacy Protocol 0 DES 1 AES PrivacyPassword V3 Privacy Password 1 to 255 cha...

Страница 202: ...MASNMPTRAP 1 enter Response OK Input AT MASNMPTRAP Response MASNMPTRAP Mode 1 Enable Name TrapUser IP 0 0 0 0 AuthFailureTraps 0 Disable OK AT MAAUTH Command Syntax Effect AT W Get Set authentication...

Страница 203: ...d Syntax Effect AT W Get Set radio mode AT MWMODE Mode Mode 0 802 11B ONLY 1 802 11BG 2 802 11NG High Throughput on 2 4GHz Description Example Input AT MWMODE 2 enter Response OK AT MWTXPOWER Command...

Страница 204: ...Effect AT W Set radio channel AT MWCHAN Channel Available radio channels for mode 11ng and high throughput mode HT20 0 auto 1 1 2 2 3 3 4 4 5 5 6 6 7 7 8 8 9 9 10 10 11 11 Description Example Input A...

Страница 205: ...escription Example Input AT MWMPDUAGG 1 enter Response OK AT MWSHORTGI Command Syntax Effect AT W Get Set radio short GI AT MWSHORTGI Short GI Short GI 0 Disable 1 Enable Description Example Input AT...

Страница 206: ...AMSDU byte 3839 OK AT MWAMPDU Command Syntax Get radio maximum AMPDU byte AT MWAMPDU Description Example Input AT MWAMPDU enter Response MWAMPDU Maximum AMPDU byte 65535 OK AT MWRTSTHRESH Command Syn...

Страница 207: ...Threshold CCA Threshold Range of values 4 127 Description Example Input AT MWCCATHRESH 28 enter Response OK AT MWIFACE Command Syntax Effect AT W List Add Delete radio virtual interface List one or al...

Страница 208: ...AN OK AT MWSSID Command Syntax Effect AT W Get Set radio virtual interface SSID AT MWSSID Index SSID Index Radio Virtual Interface Index 0 3 SSID Radio Virtual Interface SSID 1 63 character Descriptio...

Страница 209: ...15 mcs 14 16 mcs 15 Description Example Input AT MWTXRATE 0 0 enter Response OK AT MWWDS Command Syntax Effect AT W Get Set radio virtual interface WDS AT MWWDS Index WDS Index Radio Virtual Interface...

Страница 210: ...RADIUS 6 WPA WPA2 Enterprise RADIUS PSK Password Min 8 characters Max 63 characters RADIUS Server Key Min 4 characters Max 63 characters RADIUS IP Address Valid IP address RADIUS Port Valid port 0 655...

Страница 211: ...t radio WIFI RSSI AT MWRSSI enter Description Example Input AT MWRSSI enter Response MWRSSI 76 dBm OK AT WSCAN Command Syntax Get radio network scan information Must be in client mode scans for availa...

Страница 212: ...en hardware handshaking is used the RTS signal indicates to the DCE that the host can receive data CTS Clear to Send Output from Module A handshaking signal which is asserted by the DCE TTL low when i...

Страница 213: ...erial ports the GPS features VPN and much more The advantage of IP Passthrough is that the configuration is very simple In the example below we have a BulletPlus connected to a PC PC2 The application...

Страница 214: ...IP address In the screenshot to the right we can see that the Laptop connected to the BulletPlus has a IP Address of 74 198 186 193 which is the IP address assign by the cellular carrier for the modem...

Страница 215: ...ncoming traffic is destined for a single device It is also popular to use DMZ in cases where a single device is connected but several ports are forwarded and other features of the BulletPlus are requi...

Страница 216: ...r each of the lines above A rules does not need to be created for the first line as that was listed simply to show that the external port 80 was already used by default by the BulletPlus itself To cre...

Страница 217: ...map ports to each device Complete access to remote devices is available when using a VPN tunnel A VPN tunnel can be created by using two BulletPlus devices each with a public IP address At least one o...

Страница 218: ...Gateway to Gateway tunnel on each BulletPlus Step 4 Submit changes to both units It should be possible to ping and reach devices on either end of the VPN tunnel if both devices have been configured co...

Страница 219: ...by the following means Customizable Rules MAC and or IP List ACL Access Control List or Blacklist using the above tools Consider the following example An BulletPlus is deployed at a remote site to co...

Страница 220: ...e button once both rules are created select the Submit button to write the rules to the BulletPlus The Firewall Rules Summary should look like what is shown below Step 3 Test the connections The Bulle...

Страница 221: ...ze the internal Iperf capabilities of the modem while retaining the remaining features of IP Passthrough Step 1 Enable IP Passthrough After IP pass through mode is enabled the IP address of LAN networ...

Страница 222: ...th IP Passthrough Page 2 of 2 Method 2 Specify which source IP Address s are allowed The incoming request on port 5001 from the carrier will not forward to the device behind the modem the Iperf server...

Страница 223: ...o communicate with a wireless carrier Some carriers also require a username and password The APN username and password are only available from your wireless carrier Newer units may support an AUTO APN...

Страница 224: ...fic is passed through to that device As a result serials port will not work The only port not being passed through is the remote management port default port 80 which can be changed in the security se...

Страница 225: ...Microhard Systems Inc 225 150 Country Hills Landing NW Calgary Alberta Canada T3K 5P3 Phone 403 248 0028 Fax 403 248 2762 www microhardcorp com...

Отзывы: