Page 1
HY-LINE truecon Router Handbuch Seite 1 HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
Page 2
We are always grateful for information regarding errors in this documentation. Our technical support pages are on our website www.hy-line.de. New manuals and data sheets are also available there. FAQ pages are also available on our website. If you have further questions please direct them at systems@hy-line.de Only clean the case with a dry towel, do not use water or any other cleaning agents.
HY-LINE truecon Router Handbuch Seite 4 Product description M2M Industrial Router with modem, VPN and Firewall The M2M-Industrial router is a simple, secure and global communications solution that will connect you to your systems and machines where ever you are! Connections to your systems and machines are made through the integrated firewall, VPN and automated call center.
HY-LINE truecon Router Handbuch Seite Access to the router through a web browser: http://192.168.101.222/ https://192.168.101.222/ Administration access: login: manager password: changemetoo (Password can be changed through this account) Visitors access: login: operator password: changeme (Password can only be changed through the administrators...
HY-LINE truecon Router Handbuch Seite 6 The start page holds a general oversight of the router; Firmware version, System updates, serial number, modem type, band type, gsm signal strength, router uptime, PPP-Data Counter (max. 2GB) as well as the status of the digital inputs and outputs...
HY-LINE truecon Router Handbuch Seite 7 Device Name: Name of the router with a maximum character length of 35 (Special characters allowed) Location: Location of the router (for informational purposes only) Manager: E-Mail Address of the system manager (Recipient of the dynamic IP address, once the router is...
HY-LINE truecon Router Handbuch Seite 8 IP-Address: Network IP address of the router Network mask: Subnetmask DNS Server: DNS server address (Default is an open DNS server) Gateway: Network Gateway Address Commit rules: check, in order to activate changes then press SAVE IP-Addresses allow a logical addressing of devices in an IP network;...
Page 9
HY-LINE truecon Router Handbuch Seite 9 The DNS system exists for simplicities sake, such that people are able to remember words better than a bunch of numbers. For example it would be much easier to remember the domain name www.wikimedia.org in comparison to the IP-Address 207.142.131.236.
HY-LINE truecon Router Handbuch Seite 10 & & Date, Time: Date and time of the router Timezone: Timezone in which the router is (Please be aware that the summer and winter time will be automatically switched only in Germany. Settings: Berlin) Time-Server (IP) Time server, standard: ptbtime1.ptb.de...
HY-LINE truecon Router Handbuch Seite 11 – – Phone number: Telephone number of the router: only important when it is an ISDN connection: the MSN must be included here. Die MSN (Multiple subscriber Number) is either the dialing number without area code or only the extension number.
Page 12
HY-LINE truecon Router Handbuch Seite 12 – – HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
Page 13
HY-LINE truecon Router Handbuch Seite 13 Internet Service Provider: Choose an ISP in order to enable Call-by-Call option GPRS-GSM: default T-Mobile Analog-ISDN 1: default Arcor Analog-ISDN 2: default Freenet Analog-ISDN 3: default T-Online Analog-ISDN 4: default Schweiz Provider number: Telephone number of the ISPs Call-by-Call center (2 seconds for every comma, i.e.
Page 14
PPP connection. Please wait 30 seconds after cutting the connection in order to build another connection. Internet by call/ Ringing function: Calling the M2M router from any phoneline (don’t wait until the router connect the line!) activates the router to log in to the internet.
TCP/IP but many others as well. Configuring Direct Connection to M2M Router over PPP: There is one PPP-User on the router is a permanent account with user name pppuser. This account is not displayed in the User Management.
Page 16
HY-LINE truecon Router Handbuch Seite 16 No login needed, costs are over the standard telephone bill. Call costs can be found at the website of your provider. ARCOR User: arcor-ibc Password: internet Tel-Nummer: 0192075 Arcor-DNS: 145.253.2.11 MSN (Microsoft Network) User: msn@easysurfer-eco.de...
HY-LINE truecon Router Handbuch Seite 17 HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
Page 18
HY-LINE truecon Router Handbuch Seite 18 E-Mail recipient for root: E-Mail address of the system managers, it can also be set to administrator, in which case copies of all E-Mails would be sent there. SMTP-Server: Address of the SMTP server for the sending of E-Mails (supports DNS addresses as well as IP addresses).
Page 19
HY-LINE truecon Router Handbuch Seite 19 – – Port state: If checked the I/O port is monitored for input data Signal action: System reboot: Restart (Softreset) Internet dial-in: Dial in to the internet Alarm send E-Mail: Sends an E-Mail with message text to recipient 1-3 Alarm once (high) –...
Page 20
HY-LINE truecon Router Handbuch Seite 20 – – Port state: If checked the I/O port is used for data output Map digital output: o Digital Input 1 active: With impulse intervals of 10sec, the digital input 1 will be mapped on to the digital output.
HY-LINE truecon Router Handbuch Seite 21 The firewall configuration allows the opening and closing of specific services from the internet to the router (arrows left) and from the router to the internet (arrows right. Three standard profiles are available: Default – Standard, applicable for most uses Custom –...
Page 22
HY-LINE truecon Router Handbuch Seite 22 NAT (Network Address Translation) is a network procedure where an IP-Address in a data pack is changed in to another. This is usually done to support private IP addresses on to public networks such as the internet.
Page 23
HY-LINE truecon Router Handbuch Seite 23 Protocol type: Protocol TCP or UDP Forwarded Port: Incoming port Dest. Address: IP-Address of device the paket is send to Dest. Port: Destination Port To take affect of the changes the router must be reboot.
Page 24
HY-LINE truecon Router Handbuch Seite 24 - the configuration can be found in the folder: /etc/amsel/firewall.conf - easy editing is doen with the WinSCP software (http://winscp.net) - or login over serial or TCP/IP-SSH - input the following commands: 1) sys sh 2) cd /etc/amsel 3) vi firewall.conf Keyboard commands in editor: (i=insert, r=overwrite, esc, :=consol;...
HY-LINE truecon Router Handbuch Seite 28 How Dynamic DNS works Once you setup a Dynamic DNS hostname, the hostname you make will point to your new IP. You can run an update client to keep this hostname up to date 24x7, so you never lose access, even if your IP ®...
HY-LINE truecon Router Handbuch Seite 29 Destination host: IP-Adress or host name - Layout: www.name.endung Maximum retries: Number of ping trials before router restart Interval: Interval in seconds für ping request HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
Page 30
HY-LINE truecon Router Handbuch Seite 30 – – NTP Timeserver 1/2: IP adress or hostname. Timeserver 2 is automatically used if connection to timeserver 1 failed. Listen on internal IP address: Activate the NTP Server Mode for the local network. Any ip device can update their time over the router via NTP.
Page 31
HY-LINE truecon Router Handbuch Seite 31 HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
Page 32
HY-LINE truecon Router Handbuch Seite 32 HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
Page 33
HY-LINE truecon Router Handbuch Seite 33 Pleae contact HY-LINE technical support to receive the MIB (Management Information Base). HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
Page 34
HY-LINE truecon Router Handbuch Seite 34 Menu for the configuration for access to the router over SSH (Secure Shell TCP/IP Terminal) Secure Shell – secured communication over unsecured networks : Secure Shell (SSH) is a program that allows the communication of computers over unsecured networks through a secure means. It closes many security risks, this is done through the encryption of data.
HY-LINE truecon Router Handbuch Seite 35 The menu for the configuration of the log files size, number of logs and remote logins. approx.. 3MB Flash-Memory (persistent, root directory) approx. 8MB RAM-Memory ( ..\tmp) HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de...
Page 36
Secure VPN technologies may also be used to enhance security as a "security overlay" within dedicated networking infrastructures. Secure VPN protocols includud in the M2M Router are following: IPsec (IP security) - commonly used over IPv4, and an obligatory part of IPv6.
Page 37
HY-LINE truecon Router Handbuch Seite 37 Use IPsec damon: Enables IPSec server when connected to the internet Use PPTP daemon: Enables PPTP server when connected to the internet Use PPTP client: Enables PPTP clien when connected to the internet HY-LINE Systems GmbH Inselkammerstr.
Page 38
HY-LINE truecon Router Handbuch Seite 38 – – HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
HY-LINE truecon Router Handbuch Seite 39 – – Server address: IP-adress or host name of VPN-PPTP server User name: vpn pptp user name, add/edit in ..\Advanced\user management Enable network mode: activate routing to remote network (server subnet) Network address: network ip range on server side (for routing), syntax: xxx.xxx.xxx.0 Route netmask: subnet for routing, syntax: 255.255.255.0...
Page 41
HY-LINE truecon Router Handbuch Seite 41 ipsec configuration: Keep not used values in the default settings (e.g. identifier value, type, etc) ipsec algorithmen (encryption/authentication) fill in manually, pay attention to syntax HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de...
Page 42
: 192.168.180.0/24 Router-IP LAN: 192.168.3.254 255.255.255.0 Netz : 192.168.3.0/24 255.255.255.0 Hier müssen im HY-LINE Router 2 Routen konfiguriert werden, eine für ausgehenden Traffic (out) und eine für eingehenden Traffic (in). ipsec Policies OUT: HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de...
Page 43
HY-LINE truecon Router Handbuch Seite 43 ipsec Policies IN: HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
Page 44
HY-LINE truecon Router Handbuch Seite 44 ipsec Policies summary: Add user: Menu ..\Advanced\User Management : User subsystem: VPN ipsec user Username: public IP-address (WAN) of Server room Passwort: preshared key HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
Page 45
VPN-ipsec certificate connections Base settings: see VPN with preshared Keys. The HY-LINE router is based on x.509 certificates. The router uses 2 files: the certifacate file with extension .crt and the private key file with extension: e.g. p12 for pkcs 12 Files.
HY-LINE truecon Router Handbuch Seite 46 The menu for the configuration of access to the router over SSH (Secure Shell TCP/IP). How to reach the M2M router if the SSL-Access (HTTPS) is de-activated: Example: Listen Port 443, SSL turned off: http://IP-Adresse-des-router:443/amcgi.cgi Example: Listen Port 789, SSL turned off: http://IP-Adresse-des-router:789/amcgi.cgi...
Important notice: The upload and download works error free with a Mozilla Firefox Internet Browser, Safarie browser or Microsoft Internet Explorer Version 7.x and higher. Incremental Update Support:Upload incremental updates. Provide by HY-LINE Tech support. HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de...
HY-LINE truecon Router Handbuch Seite 48 Logging: The system log will show details about the routers functions, e.g. dial in the interrnet, sending mails, using DynDNS, etc. HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
HY-LINE truecon Router Handbuch Seite 49 User Management can add, change and remove users from the router. HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
Page 50
HY-LINE truecon Router Handbuch Seite 50 Function M2M Industrial router with free modem choice, VPN and Firewall for easy, secure and worldwide access to machines and facilities. Virtual Private Network, Protocol: IPSec (Pre-Shared Key / X.509 Zertificates); PPTP (PAP, CHAP, MS-CHAP V2)
CE, EMV EN61000-4-3, EN61000-4-2, ENV50204, EN55022-B Gehäuse 120 x 101 x 60 mm, approx. 450g, plastic DIN rail mount IP 20 Specials Original RJ45-Port without function HY-LINE Router with 4-port switch HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
HY-LINE truecon Router Handbuch Seite 52 Din rial mount case - DIN (EN 60715) Router with 4-port switch width: 60mm (compared to 35mm standard router) HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
Page 53
HY-LINE truecon Router Handbuch Seite 53 In order to open the case, take out the red top hat rail clip, afterwards carfuly pull appart the housing while pushing the clips firmly that hold the housing together (found at each corner of the shell).
Page 55
HY-LINE truecon Router Handbuch Seite 55 Detailed schematic of hole plug for Analog / ISDN – Router Cap for Analog / ISDN – Router Case for Analog / ISDN – Router HY-LINE Systems GmbH Inselkammerstr. 10 82008 Unterhaching systems(at)hy-line.de www.hy-line.de/systems...
HY-LINE truecon Router Handbuch Seite 56 Technical information Analog modem country code settings - Log on to the Router via SSH or seriell: - Type in following commands (case sensitive) sys sh svactivate stop mgetty-s0 svactivate stop pppd microcom /dev/ttyS0 at+gci=42 (=Germany for example) at&w...
HY-LINE truecon Router Handbuch Seite 57 Software-Reset to factory defaults (available on Router hardware newer January 2009) 1. Turn off router from power supply 2. Set umper 1 to ON position (Jumper 1 is located on the router side inside the case) 3.
Need help?
Do you have a question about the M2M ROUTER and is the answer not in the manual?
Questions and answers