background image

 

Nivis Versa Router 1100 Titan - User Guide 

v1.2 

Page 100 of 111

 

6.1.2.3

 

Cleaning up the remote access to NMS from Windows PC  

In order to clean up the settings after the connectivity test was done, the following steps are necessary: 

1.

 

Disconnect from NMS: 

a.

 

On 

Windows PC

 (on administrator console), close 6in4 tunnel: 

i.

 

netsh interface ipv6 delete address remote_user_tunn <

client_IPv6

>/128 

ii.

 

netsh interface ipv6 delete route ::/0 remote_user_tunn 

iii.

 

netsh interface ipv6 delete remote_user_tunn 

b.

 

On 

NMS,

 remove route to Windows PC: 

i.

 

sudo ip route del <

client_IPv6

>/128 via ::<

client_IPv4

Example

 using the variables chosen above: 

c.

 

On 

Windows PC

 (on administrator console), close 6in4 tunnel: 

ii.

 

netsh interface ipv6 delete address remote_user_tunn FD00::0A20:0483/128 

iii.

 

netsh interface ipv6 delete route ::/0 remote_user_tunn 

iv.

 

netsh interface ipv6 delete remote_user_tunn 

d.

 

On 

NMS,

 remove route to Windows PC: 

i.

 

sudo ip route del FD00::0A20:0483/128 via :: 10.32.4.131 

 

 

Содержание Versa Router 1100 Titan

Страница 1: ...Nivis Versa Router 1100 Titan User Guide v1 2 Page 1 of 111 Nivis Versa Router 1100 Titan User Guide Version 1 2...

Страница 2: ...Configure the PC static IP address to access the Edge Router 17 3 7 Optional Ensure the Edge Router is accessible from PC over ETH 19 3 8 Versa Router 1100 Titan US hardware description 20 3 8 1 Gene...

Страница 3: ...ed Join Key 81 5 6 Change the Network ID 82 5 7 Set up Edge Router Cloud Based NOC communication 83 5 7 1 Add Edge Router in the Cloud Based NOC Whitelist 83 5 7 2 Set up Edge Router and NMS communica...

Страница 4: ...attery backup ability to detect and report tamper and power outage outdoor enclosure and 3G cell connectivity VR1000 Short name for Versa Router 1000 Quark VR1100 Short name for Versa Router 1100 Tita...

Страница 5: ...ditional features on top of Quark s NOTE For a more detailed description of the Versa Router 1100 Titan hardware platform please consult section Versa Router 1100 Titan US hardware description 2 2 Pla...

Страница 6: ...MUST have publicly available IPv4 Backhaul Manager IPv6 over IPv4 tunnel VPN FWD Event based FWD Event based 6LoWPAN RPL 4e 4g Web Server Windows VPN IPv6 over IPv4 tunnel Network Events Data Commands...

Страница 7: ...Network Composed of Smart Objects Network and Application Monitoring Tool NAMT IP enabled backbone infrastructure SO SO SO SO SO SO SO SO NOTE The NAMT uses a large amount of bandwidth for its operati...

Страница 8: ...eighbor related statistics 3 Routing RPL related information such as the topology of the network Network and communication related statistics and parameters are displayed in the NAMT Acts as the link...

Страница 9: ...pplication layer payloads for at least 1 year for up to 4000 Smart Objects with a reporting interval of 6 hours Historical data can be retrieved from HTTP COAP Proxy using XML over HTTP requests SD ca...

Страница 10: ...sa Router VR1100 Titan US The Versa Router VR1100 Titan US package includes the components listed below Component Quantity Picture Versa Router 1100 Titan Pictured here with antenna mounted The Titan...

Страница 11: ...Versa Router VR1100 Titan US OEM The Versa Router VR1100 Titan US OEM package includes the components listed below Component Quantity Picture Versa Router 1100 Titan board 1 RF Amplifier with associa...

Страница 12: ...tective bubble wrap 2 Open Titan case The Titan is delivered with a Antenna bubble wrapped and placed inside Titan enclosure b Battery positive connector disconnected from battery and insulated c Both...

Страница 13: ...el below the connectors 7 Optional while in the lab but mandatory at deployment unwrap the RF antenna and mount it on top of the enclosure 8 Optional if necessary connect the ETH connector to Titan Th...

Страница 14: ...from the mains and the battery gets charged from the mains 12 Titan is fully powered on now NOTE Titan is delivered without a mains power plug power connector as the method to connect to the mains dep...

Страница 15: ...Use Titan admin UI section Edit Versa Router 1100 Titan SIM Settings Titan ONLY 5 Titan is delivered preconfigured with a set of APN user pass for US cell carriers If the APN user pass for carrier spe...

Страница 16: ...3 Power on Titan 4 Set Titan in transparent mode connecting it to the instance mentioned above 5 Power off Titan 6 Remove Titan ETH connection 7 Make sure a properly configured and activated SIM card...

Страница 17: ...Guide v1 2 Page 17 of 111 3 6 Configure the PC static IP address to access the Edge Router Step by step instructions for Windows 7 1 Open Control Panel Network and Sharing Center and click on Local Ar...

Страница 18: ...rnet Protocol Version 4 TCP IPv4 and then click on Properties 4 Enter IPv4 192 168 0 201 Subnet Mask 255 255 255 0 Default Gateway 192 168 0 1 NOTE Any other available IPv4 EXCEPT 192 168 0 101 192 16...

Страница 19: ...de v1 2 Page 19 of 111 3 7 Optional Ensure the Edge Router is accessible from PC over ETH Use ping to verify Edge Router connectivity from the PC 1 Click Start Run and type cmd 2 Type ping 192 168 0 1...

Страница 20: ...as the Versa Router 1000 Quark The Titan packs more memory and flash space and runs at a higher frequency compared to Quark The Versa Router 1100 Titan requires only a 3G SIM card and a power cord con...

Страница 21: ...sa Router 1100 Titan US The standard version includes the OEM version enclosed in an IP65 enclosure adding battery back up and power supply RF antenna 3G antenna plus accessories circuit breakers powe...

Страница 22: ...1100 Titan US OEM version includes the Titan board with VN400 radio on it the RF amplifier and the RF cable to connect the VN400 radio to the amplifier The VR1100 Titan OEM fully connected Power Sourc...

Страница 23: ...On the Titan enclosure is the antenna connector 1 The antenna is shown connected in the picture below Titan is delivered with cell antenna 2 already mounted There user should not operate the cell ante...

Страница 24: ...3 green lights solid on when there is a NAMT or a browser connected to the Versa Router 1100 Titan The CELL LED 4 blue lights solid on when the cell link is established To the left is the RJ 45 conne...

Страница 25: ...d with PIN disabled in order to activate the cell backhaul link It also requires coverage from the SIM card provider for the same purpose On titan board amplifier or power supply there are several oth...

Страница 26: ...ll reset the following setting to their factory default value IPv4 settings All Application settings OpenVPN DTLS certificates configurations Communication profiles including Vendor Network ID A Reset...

Страница 27: ...sending the queries as XML on top of HTML The proxy on the Edge Router will serve the resource from the cache or query the SO if necessary at the same time it will translate from COAP to HTTP If confi...

Страница 28: ...Not Modified 68 204 No Content 69 200 OK 128 400 Bad Request 129 401 Unauthorized 130 400 Bad Request 131 403 Forbidden 132 404 Not Found 133 405 Method Not Allowed 134 406 Not Acceptable 140 412 Prec...

Страница 29: ...ponse string Can t AddReqRspResource 502 Bad Gateway Decoding error Response string Can t convert Coap response to Http response Exi to Xml failed 409 Conflict A no cache HTTP request was made for an...

Страница 30: ...rocessing Xml Observation List elements Response string Request is bad formed Xml Observation List invalid finish Storage data retrieval request 400 Bad Request The request query has invalid or confli...

Страница 31: ...LEMENT Value PCDATA ATTLIST Value Name CDATA IMPLIED ATTLIST Value Type CDATA IMPLIED ResourceList CoAPResource Value Name IPv6Addr Type BinHex Value Value Name CoRELinkFormat Type String Value CoAPRe...

Страница 32: ...LIED ATTLIST Value Type CDATA IMPLIED DeviceList Device Value Name MAC Type BinHex Value Value Name IPv6Addr Type BinHex Value Value Name DeviceType Type Number Value Value Name Status Type Number Val...

Страница 33: ...or APP was received from device LastRegistraton UTC time in seconds since 1970 time when last DAO message was received from device DeviceType 0 Any 1 TypeNMS 2 reserved 3 TypeER 4 reserved 5 reserved...

Страница 34: ...Topology Device Value Name MAC Type BinHex Value Value Name IPv6Addr Type BinHex Value Parents Parent Value Name MAC Type BinHex Value Value Name IPv6Addr Type BinHex Value Value Name ExpirationTime...

Страница 35: ...h the exception of the cache control options Pragma no cache Cache Control no cache which may be used to indicate cache bypass to the proxy itself and otherwise has no CoAP equivalent The HTTP payload...

Страница 36: ...search can be MAC HHHHHHHHHHHH or IPv6Addr HHHHHHHHHHHHHHHHHHHHHH HTTP response List of resources which are are put under observation by HttpCoapProxy at that moment This is actually the HttpCoapProx...

Страница 37: ...rce doesn t exist Resource is not observable Subscribed Unsubscribed The PubPeriod field value is a number that describes the publication period set by the user for that observed resource If 0 it mean...

Страница 38: ...If that resource does not exist in the HttpCoapProxy Observation Cache the normal flow will be followed Send Coap request wait for Coap response translate to Http and send back to Http client NOTE ht...

Страница 39: ...ion request for UNSUBSCRIPTION passed forward message will be retrieved to the client This is a sign that the request was processed and the HttpCoapProxy will unsubscribe from observing specified reso...

Страница 40: ...ame DeviceIPv6Addr Type BinHex Value Value Name UriPath Type String Value Value Name Action Type String Value Resource ObservationListSet NOTE Action is a string which defines the type of action that...

Страница 41: ...st query is specified the XML report will contain only first N records from X or X if N X which represent the oldest records from the initial report If newest query is specified the XML report will co...

Страница 42: ...mestamp Application v value e Record Device Device uriHost device_ip Record uriPath path uriPath e t timestamp Application v value e Record Record uriPath path uriPath e t timestamp Application v valu...

Страница 43: ...Nivis Versa Router 1100 Titan User Guide v1 2 Page 43 of 111 EXAMPLE of a record in response XML Record uriPath app sw uriPath e t 1358831522 Sw v 1 e Record...

Страница 44: ...rsa Router 1100 Titan must be powered on and either connected to the local LAN or connected to 3G cell The IPv4 of the Edge Router must be accessible from the PC where the browser is running The admin...

Страница 45: ...6 and dynamically allocated IPv4 IPv6 by DHCP for the Edge Router set the static IPv4 IPv6 network mask gateway and DNS and change the HTTP COAP Proxy port WARNING This page is for advanced users only...

Страница 46: ...respective join keys Devices are specified by their MAC addresses There are two ways to specify the whitelist by specifying each MAC individually or by using a MAC range WARNING The Transceiver MAC mu...

Страница 47: ...dard setup average network size up to 100 devices average join Large setup large network size up to 500 devices This also enables users to load a custom profile file The Versa Router 1100 Titan has tw...

Страница 48: ...ection The default setup identifiers need to be changed only if you have several collocated networks Quarks or Titans In this case each collocated Edge Router must have its own unique set of identifie...

Страница 49: ...d and a new entry will be added to the table Remove The rows with the checkbox checked will be removed Apply The changes will be saved on the router Cancel The pending changes will be removed and the...

Страница 50: ...Keys will be used only if the Cipher Suite is one of the following PSK_NULL_SHA256 PSK_AES128_CCM_SHA256 PSK_AES128_CCM8_SHA256 The Cipher Suite ECDHE_ECDSA_AES128_CCM8_SHA256 uses a Certificate not...

Страница 51: ...a caching and storage Support for nodes firmware upgrade Support for NAMT for network monitoring management configuration topology view etc When operating connected to Nivis NMS the functionalities ab...

Страница 52: ...1100 Titan User Guide v1 2 Page 52 of 111 When transparent mode is ON the user cannot do the following actions Modify whitelists in Whitelists page Modify DTLS lists in DTLS List page Load certificate...

Страница 53: ...use on Network Sniffer The settings will configure the Network Sniffer to be able to monitor the network controlled by current Titan WARNING The settings will match only the network joined to this Tit...

Страница 54: ...the end of the process the board will restart rendering the Edge Router and the Edge Router Website unavailable for up to several minutes WARNING The Titan and Quark software files are NOT interoperab...

Страница 55: ...e main Edge Router software Click on Transceiver Upgrade in the Administration section User actions available on this page Upload and activate a Titan or Quark Transceiver firmware file Browse to the...

Страница 56: ...Administration section and then choose the desired shutdown type User actions available on this page Soft Reset restart the Titan applications without rebooting the board Power Off shut down Titan gr...

Страница 57: ...Router Website password User actions available on this page Change the Website user password Click on Change Password in the Session section Type the old password and new password re type the new pass...

Страница 58: ...IPv4 of the Edge Router must be accessible from the PC where the browser is running The administration website for the Edge Router can be accessed by pointing a web browser to the Edge Router IP NOTE...

Страница 59: ...ks By default the Log Files link is selected NOTE Depending on the web browser you are using to log into the Edge Router Administration the graphical representation of the page and some buttons relate...

Страница 60: ...ded by Nivis 1 Click Edge Router Firmware The following screen shows the version currently installed 2 Click Browse to locate and select new firmware file then click Load the version must be different...

Страница 61: ...ES Contact Nivis support if the upgrade operation does not succeed For faster rejoin power cycle all Smart Object devices after performing an Edge Router firmware upgrade Wait about 5 minutes before a...

Страница 62: ...ware file then click Load the version must be different from the previous one 3 Wait until the firmware is activated This process will take few minutes Do not power cycle the board or interrupt the up...

Страница 63: ...en click Load the version must be different from the previous one 3 Wait until the website is activated This process will take few minutes Do not power cycle the board or interrupt the upgrade process...

Страница 64: ...ownload the Edge Router logs snapshot when requested for troubleshooting purposes Set up Edge Router FTP logs upload 1 Log in into admin website or click on Log Files if already logged in 2 Click Down...

Страница 65: ...ver must meet the following conditions 1 Be in the same network with the Edge Router It must be available in the network all the time otherwise the Edge Router may not function correctly 2 Be UNIX com...

Страница 66: ...ay cause difficult to trace malfunctions 1 Click on Advanced Settings The following form will open to the right of the operation list 2 In the form select a Section in the drop down list The Variable...

Страница 67: ...iew set mesh network Prefix Restart the Router to activate the changes WARNING This page is for advanced users only do not use it unless you know precisely how to configure the network Any invalid val...

Страница 68: ...for Mesh network Prefix or Prefix Length 7 When you are done click Set to save the settings 8 Preform a Hard Restart too activate the settings modified above Clicking the Soft Restart button will rest...

Страница 69: ...CC MNC Separate page sections are provided for regular cell providers and virtual providers MNVO Assign a symbolic name to the set of configuration recommended using the same name as provider name Opt...

Страница 70: ...rom the cell provider 12 Optionally enter a ping target which is accessible via ping from within the cellular data network Titan will verify the cell connection health by periodically sending pings to...

Страница 71: ...he SIM card must be active with PIN disabled associated with an active data plan see details at section Configure the SIM card above 2 Have the Ethernet connected and the PC properly configured to be...

Страница 72: ...s not restarted after inserting the ETH Make sure to reboot the board after inserting the ETH NOTES This section is specific to Titans only Quarks do not have SIM cards It is mandatory to perform SIM...

Страница 73: ...age 73 of 111 3 9 1 3 11 Checking the Edge Router System status WARNING This page is for advanced users only do not use it unless instructed by a Nivis representative User actions available on this pa...

Страница 74: ...an SNMP Agent listening on port 161 UDP The HTTP COAP proxy listens on port 9999 TCP for HTTP queries The Edge Router utilizes the NTP protocol on port 123 UDP to synchronize time with Internet time s...

Страница 75: ...dge Router Transceiver firmware using Edge Router web interface Follow the steps in section Upgrading the Edge Router Transceiver 4 3 Upgrading the Edge Router Transceiver firmware using Edge Router a...

Страница 76: ...ble PANA DTLS and other parameters The section also describes the steps to be taken to connect to the Cloud Based NOC NMS NOTES The end user is NOT allowed to convert system configured for US to a sys...

Страница 77: ...e missing from the list add the MAC Then choose the cipher suite enter the DTLS key if necessary click Add then click Apply NOTES If you are configuring more than a single device please update the set...

Страница 78: ...tes require a pre shared Key and which cipher suites require a Certificate 5 4 2 Change the DTLS Key Certificate Click on DTLS List in the Configuration section on the Quark website to access the DTLS...

Страница 79: ...mart Object MAC or select a range including the Smart Object MAC or if this is a device missing from the list add the MAC Then choose the cipher suite a suite using a pre shared Key enter the DTLS key...

Страница 80: ...cate Click on DTLS List in the Configuration section on the Edge Router website to access the DTLS configuration page The PANA certificates are loaded using the same page as for DTLS Select the file t...

Страница 81: ...bled Click on Whitelist in the Configuration section on the Edge Router website Select the Smart Object MAC or select a range including the Smart Object MAC or if this is a device missing from the lis...

Страница 82: ...tup Identifiers in the Configuration section on the Edge Router website Modify the Vendor Network ID then click Apply NOTE Please be aware the Edge Router will reboot and the network will unjoin The S...

Страница 83: ...tion is to use VPN for Edge Router NMS connectivity Non VPN communication is only acceptable for laboratory tests 5 7 1 Add Edge Router in the Cloud Based NOC Whitelist Before trying to connect an Edg...

Страница 84: ...f 111 4 Point a web browser to the Cloud Based NOC website enter credentials 5 Go to on Networks page 6 Press Register Network button 7 Provide a network Name 8 Use the Edge Router FAR ID identified a...

Страница 85: ...to a different cloud Based NOC with a different root CA the Edge Router will need to load a new certificate generated using the new root CA NOTE The certificate sets for Edge Router and NMS must be d...

Страница 86: ...e NMS admin website http nms_ip admin enter credentials 11 Go to Upload Certificates page 12 Press Choose File button 13 Select the archive holding the NMS certificate set 14 Press Upload button NOTE...

Страница 87: ...les to use OpenVPN 1 Point a web browser to the NMS admin website http nms_ip admin enter credentials 2 Go to Edit configuration page 3 Choose NMS_Dispatcher from Section drop down 4 Choose SECURITY i...

Страница 88: ...n User Guide v1 2 Page 88 of 111 6 Choose IPGateway from Section drop down 7 Choose SECURITY in Variable drop down 8 Make sure the Value edit reads openvpn no quotes not other char 9 Go to Restart pag...

Страница 89: ...certificates 1 Point a web browser to the Edge Router website http router_ip enter credentials 2 Go to Cloud Based NOC page 3 Press the Choose File button corresponding to NOC Open VPN label 4 Browse...

Страница 90: ...er to the Edge Router website http router_ip enter credentials 2 Go to Cloud Based NOC page 3 Click to Enable the transparent mode 4 Fill in the NMS Public IPv4 5 Fill in the NMS port default 40000 6...

Страница 91: ...ch time the Quark is switched between standalone and transparent mode because setting the transparent mode automatically enable VPN communication and this step disables it 5 7 3 1 Configure NMS module...

Страница 92: ...0 Titan User Guide v1 2 Page 92 of 111 6 Choose IPGateway from Section drop down 7 Choose SECURITY in Variable drop down 8 Set the field Value to none no quotes not other char 9 Go to Restart page 10...

Страница 93: ...ntials 2 Go to Cloud Based NOC page 3 Click to Enable the transparent mode 4 Fill in the NMS Public IPv4 5 Fill in the NMS port default 40000 6 Press Apply button NOTE Enabling transparent mode on Edg...

Страница 94: ...g the transparent mode the Edge Router software restarts rendering the web interface inaccessible for few tens of seconds Wait until the web interface is accessible 1 Point a web browser to the Edge R...

Страница 95: ...ased on real deployments but for lab tests it can be non VPN Setting up the NMS VR1000 communication was covered above The sections below describe possible combinations to set up the remaining segment...

Страница 96: ...crt key nms_remote_user key comp lzo ns cert type server verb 3 3 Start as administrator the OpenVPN by executing the exe file C Program Files OpenVPN bin openvpn gui exe 4 After it was started right...

Страница 97: ...n client_VPN_IPv4 server_VPN_IPv4 ii netsh interface ipv6 add address remote_user_tunn client_VPN_IPv6 128 iii netsh interface ipv6 add route 0 remote_user_tunn b On NMS create route to remote user ma...

Страница 98: ...ser_tunn iii netsh interface ipv6 delete remote_user_tunn b On NMS remove route to Windows PC i sudo ip route del client_VPN_IPv6 128 via client_VPN_IPv4 Example using the variables chosen above a On...

Страница 99: ...IPv6 FD00 0A20 0483 1 FD00 is a MUST 2 0A20 0483 is 10 32 4 131 converted to hex 3 Connect to NMS a On Windows PC on administrator console create 6in4 tunnel i netsh interface ipv6 add v6v4tunnel rem...

Страница 100: ...Pv6 128 ii netsh interface ipv6 delete route 0 remote_user_tunn iii netsh interface ipv6 delete remote_user_tunn b On NMS remove route to Windows PC i sudo ip route del client_IPv6 128 via client_IPv4...

Страница 101: ...OpenVPN on Linux 1 Go to https openvpn net select VPN Solution option and choose Community Downloads tab option 2 Download the release tar gz that suits user computer For example openvpn for 32 bit Li...

Страница 102: ...infinite nobind ca nms_ca crt cert nms_remote_user crt key nms_remote_user key comp lzo ns cert type server verb 3 3 Start as administrator the OpenVPN a sudo openvpn path_to_config_file 4 Test the V...

Страница 103: ...i sudo ip addr add client_VPN_IPv6 128 dev remote_user_tunn iii sudo ip route add 0 dev remote_user_tunn iv sudo ip link set dev remote_user_tunn up b On NMS create route to remote user machine i sudo...

Страница 104: ...sudo ip route del 0 dev remote_user_tunn iii sudo ip tunnel del remote_user_tunn b On NMS remove route to Windows PC i sudo ip route del client_VPN_IPv6 128 via client_VPN_IPv4 Example using the varia...

Страница 105: ...ent_IPv4 converted to hex as postfix For example i Computed IPv6 FD00 0A20 0411 1 FD00 is a MUST 2 0A20 0483 is 10 32 4 17 converted to hex 3 Connect to NMS a On client Linux PC create 6in4 tunnel i s...

Страница 106: ...tunnel i sudo ip addr del client_VPN_IPv6 128 dev remote_user_tunn ii sudo ip route del 0 dev remote_user_tunn iii sudo ip tunnel del remote_user_tunn b On NMS remove route to Windows PC i sudo ip ro...

Страница 107: ...e_user_tunn iii netsh interface ipv6 delete remote_user_tunn b On VR1000 remove route to Windows PC i sudo ip route del client_VPN_IPv6 128 via client_VPN_IPv4 Example using the variables chosen above...

Страница 108: ...last byte of Edge Router IPv6 Network unstable after connecting NAMT in Development Kit mode Too aggressive interrogation rate Reduce the number of devices or increase the interrogation interval Sett...

Страница 109: ...ks IETF RFC 6775 Final Neighbor Discovery Optimization for IPv6 over Low Power Wireless Personal Area Networks 6LoWPANs IETF RFC 6550 Final RPL IPv6 Routing Protocol for Low Power and Lossy Networks I...

Страница 110: ...PPROVED BY THE PARTY RESPONSIBLE FOR COMPLIANCE SUCH MODIFICATIONS COULD VOID THE USER S AUTHORITY TO OPERATE THE EQUIPMENT This equipment complies with the FCC RF radiation exposure limits set forth...

Страница 111: ...nt d une communication satisfaisante This equipment complies with the ICES RF radiation exposure limits set forth for an uncontrolled environment This equipment should be installed and operated with a...

Отзывы: