All rights reserved November 25, 2010. The information in this document is proprietary to Redline Communications Inc. This document may not in whole or in part be copied, reproduced, or reduced to any medium without prior consent, in writing, from Redline Communications Incorporated.
Also, record the MAC address identified on the unit product label. Redline does not endorse or support the use of outdoor cable assemblies: i) not supplied by Redline, ii) third-party products that do not meet Redline's cable and connector assembly specifications, or iii) cables not installed and weatherproofed as specified in the RDL-3000 Installation Guidelines manual.
Deployment in USA and Canada: FCC & IC Notices Read the following notices about deployment in the USA and Canada: The Model RDL-3000 and its antenna must be professionally installed. WARNING -- FCC & IC RF Exposure Warnings To satisfy FCC and IC RF exposure requirements for RF transmitting devices, the...
Ethernet network. The outdoor unit can be used with a selection of antennas. One RDL-3000 must be configured as a Sector Controller (PMP SC) to control all RF transmissions in a sector that may contain many subscribers. The Sector Controller uses...
The Ethernet port connects to the PoE Adapter using a weatherproof CAT-5e Ethernet cable. The maximum total length of the Ethernet cable is 100 m (328 ft). For example, 98 m from the RDL-3000 to the PoE and 2 m from the PoE to the local network equipment.
Ground Lug A ground-lug is provided on the RDL-3000 chassis. Use this connection to terminate a grounding wire. All RDL-3000 systems must be properly grounded to protect against power surges and accumulated static electricity. Audible Alignment When enabled, the audible alignment signal chirps slowly when a low signal level is detected, and faster for stronger signals.
(administrator) and a second concurrent session with read-only access (e.g., monitor or show parameter settings). To connect to the RDL-3000 CLI management, open a Telnet session to the IP address of the RDL-3000. When the command prompt screen appears, login to the RDL-3000.
Customer equipment including personal computers, routers, etc., must be connected only to the INPUT (DATA) port on the PoE unit. Only the outdoors Ethernet interface cable connecting to the RDL-3000 can be safely connected to the OUTPUT (DATA & POWER) connector. Connecting customer premises Ethernet equipment directly to the OUTPUT (DATA &...
Operation in PMP mode is controlled by the options keys. When a PMP-only options key is activated, the RDL-3000 operation is restricted to the number of purchased subscriber connections. This mode is not equivalent to operating the RDL-3000 in PTP mode with multiple remote units. Enter PMP-only options keys before deploying and configuring the RDL-3000 units.
The RDL-3000 can operate as a VLAN-aware wireless L2 switch, with traffic being classified and processed based on the packet VLAN ID. The RDL-3000 also provides a Pass through mode that can be used to process traffic that is not matched to a known VID, or simply to forward all traffic received on a port.
The RDL-3000 can operate as a VLAN-aware wireless L2 switch, with traffic being classified and processed based on the packet VLAN ID. The RDL-3000 also provides a Pass through mode that can be used to process traffic that is not matched to a known VID, or simply to forward all traffic received on a port.
Note: If the Management VLAN Tagging feature is to be used, it is strongly recommended to create and test VLAN connectivity before enabling VLAN Management. If any connectivity issue exists with VLAN services, the RDL-3000 unit management functions will be unreachable and a site visit and/or long reset operation may be required to recover control of the unit.
User Manual VLAN Mapping Fig. 17 displays an example of the RDL-3000 VLAN mapping feature. Similar to Label Switch Router (LSR) in Multi-protocol Label Switching (MPLS), the RDL-3000 PMP system can map (change) the VLAN tag based on the ingress and egress port. The VLAN tagging can be specified separately for each Service Group (sector controller port) and Service (subscriber port).
PTP Mode Operation in PTP mode is controlled by the options keys. Enter PTP-only options keys before deploying and configuring the RDL-3000 units. When a PTP-only options key is activated, the RDL-3000 operation is restricted to a single point-to-point connection. A separate range of RF power settings are provided for PTP operation.
Web Interface Connecting With a Web Browser The RDL-3000 can be configured and monitored using a PC equipped with a standard Web browser (Internet Explorer 6.0 or higher). The following diagram illustrates the required standard Ethernet Cat-5e cable connection from the RDL-3000 Ethernet port to the PoE, and the Ethernet Cat-5e crossover cable from the PoE to the PC.
Net Mask = 255.255.255.0 2. On the PC, open a browser and enter the unit RDL-3000 IP address. The factory default IP address is 192.168.25.2. 3. Enter the username and password to login. The factory default username is 'admin', and the default password is 'admin'.
Start Up Time: Time and date of the last system reboot/powered-cycle. Current Time: Current time on the RDL-3000 internal clock. The time may be unavailable if the SNTP (time server) feature is disabled. The screen will display 'N/A (GMT +0:00'.
Tx Off: Radio transmitter is disabled for 30 minutes. Chg Freq: Radio transmitter is changed to a different RF frequency. Status Code: Code indicating the status of the RDL-3000 system. Code '0000 0000' indicates normal operation. Refer to section 6.2: Status Codes on page 119.
Link Up Time: Total time the wireless link has been operational. Link lost Count: Number of times link has been out of service. Status Code: Code indicating the condition of the RDL-3000 system. Configured Subscriber Services: The number of Services provisioned on this link.
System Messages (Log) Click System Log in the main menu to view the system activity and error messages recorded by the RDL-3000. This screen is identical for the sector controller and subscriber units. Fig. 34: Web - System Log Messages Clear Log: Click to erase all messages from the system log file.
User Manual System Identification System Name: Enter the name for this RDL-3000. The system name may be up to thirty alpha-numeric characters including a-z, A-Z, 0-9, dash (-), and underscore (_). System Details: Enter additional descriptive details about this RDL-3000. The system details may be up to thirty alpha-numeric characters including a-z, A-Z, 0-9, dash (-), and underscore (_).
Page 59
3000. This method is supported by all versions of RDL-3000 firmware. RADIUS Only: Use only RADIUS for user authentication. An access request to the RDL-3000 is forwarded to the RADIUS server. At least one RADIUS server must be enabled in this mode. The configuration can be done through the CLI or HTTP.
Ethernet packet has this VLAN ID. Important: If the Management VLAN Tagging feature is required, it is recommended to test the VLAN connectivity before activating this function. Otherwise, the RDL-3000 unit may become unmanageable require a long reset operation to recover control.
Fig. 39: Web - SNMP Configuration Screen SNMP Community Settings Use this section of the screen to manage the SNMP community settings. The RDL-3000 supports up to eight separate community strings. Each community name is assigned specific access rights (read/write). The 'public' and 'private' community strings are default access values and should be changed to secure system access.
SNMP v3 Security Settings SNMP v3 supports authentication and privacy settings to provide secure management access. Security methods are associated with RDL-3000 user accounts. Fig. 41: Web - SNMP V3 Configuration Security Name: User name of the SNMP v3 account.
Enabled ( ): The RDL-3000 sends SNMP trap messages. Link Up/Down Trap Enabled: Control SNMP trap messages for the link status. Disabled ( ): The RDL-3000 does not send SNMP trap messages based on changes to the wireless link status.
Basic Wireless Configuration System Mode: The system designated as sector controller establishes and manages the bi-directional data link with a remote end RDL-3000. Only one system in a wireless link must be set for Sector Controller mode (PMP SC). PMP SC: RDL-3000 automatically sends poll messages to locate and register remote RDL-3000 subscribers, and negotiates operating settings for the link.
Auto scan: (Subscriber Only) Check this box to enable the subscriber to automatically scan available channels to locate and register with an RDL-3000 PMP Master. When Auto scan is not enabled, the wireless link can be established only at the frequency specified in the RF Freq.
It is important to enter the correct value. If this value is set higher than the true gain, the sensitivity is too low and the RDL-3000 will not be operating in compliance with the UK/ETSI standard. If this value is set lower than the true gain, the RDL-3000 is more sensitive to interference and may experience false triggers.
Page 69
(packet rate, packet size, etc). Fixed Frame: Select the wireless frame mode. Disabled ( ): RDL-3000 adjusts the wireless frame size dynamically based on uplink and downlink traffic patterns. Enabled ( ): Wireless frame size is fixed at the value specified in the Frame Size field.
CLI 'load' command. Uncheck this box to allow network connections without requiring authentication. Note: This dialog item is visible only if enabled by the Options Key and X.509 certificates are loaded on the RDL-3000. Fast Registration Enable: (Subscriber only) Check this box to enable the sector controller to use pre-shared keys for quick authentication of a subscriber (bypass Diffie- Hellman method).
Page 77
Example: In a link operating at 16 QAM 3/4, transient interference may result in a temporary change from to 16 QAM 1/2 to maintain the required PER. The RDL-3000 periodically tests transmission at a higher rate and resumes operation at the normal rate after the interference has cleared.
Page 78
PIR of that wireless link. Incorrect PIR settings may result in excessive latency or dropped packets (buffer full condition). DL Burst Rate: Downlink burst rate for unicast traffic. The RDL-3000 will establish a wireless link only at the specified rate. The communicating wireless unit must also be operating at the same fixed rate.
User Manual Utilities Screens 4.7.1 Spectrum Sweep Use the RDL-3000 Spectrum Sweep feature to determine if RF spectrum is clear of Spectrum Sweep interference. Click Utilities -> in the left hand menu to display the Spectrum Sweep configuration screen. Click to expand or to hide fields.
(_). Important: There must always be at least one 'administrator' account active on the RDL-3000. You can not manage the RDL-3000 if all accounts are 'user'. Note: When user authentication is set to RADIUS Only or Local + RADIUS, the authorization data is retrieved from the RADIUS server at ten minute intervals.
The options keys (a string of numbers, letters, and dashes) enable RDL-3000 features including the maximum uncoded burst rate and frequency ranges (See 8.3: Regional Codes on page 138). Options key are unique to a specific RDL-3000 (keyed to MAC address).
RDL-3000 User Manual The RDL-3000 has the following default settings when operating with no option key: Table 8: Defaults with No Options Key System SNMP VLAN for Data (Classification) Disabled VLAN for Management Disabled Wireless System Mode PMP SS Only...
Click Utilities -> in the main menu to display the Firmware Management screen. This screen is used to upgrade the RDL-3000 with new firmware. The RDL-3000 contains non-volatile storage for two versions of the firmware. The upload overwrites the Alternative (inactive) version.
Page 94
Do not interrupt the transfer process. When the transfer is complete, the RDL-3000 checks the integrity of the uploaded file and registers a status message in the event log. If errors were introduced during the transfer process, the firmware file is discarded and the upload must be repeated.
192.168.25.11, Net Mask = 255.255.255.0 Telnet Access Use the following steps to establish a Telnet session with the RDL-3000. Refer to the RDL-3000 User Manual section 5: CLI Interface for a complete description of the available commands. 1. On the PC, open a Telnet client and enter the unit IP address. The factory default IP is '192.168.25.2'.
User Manual Table 9: CLI - Command Summary Command Description apply Activate changes without overwriting saved configuration. Add static ARP definitions to the RDL-3000 ARP table. chgver Change default version of firmware and reboot. clear Clear commands. Delete an ID.
Table 12: CLI - arp arp <add> <del> <print> add <Host> <MAC> Add a new static entry in the RDL-3000 ARP table. Use 'save config' to save these entries permanently. A maximum of two static entries can be added to the table. Host Host IP address.
RDL-3000 User Manual 5.3.3 chgver Use the chgver command to change the firmware version loaded when the RDL-3000 is rebooted. Table 13: CLI - chgver Use this command to switch to alternate firmware version. chgver (no options) Switch to the binary saved in the alternate version of firmware. This command works silently (no operator confirmation) and the RDL-3000 reboots immediately.
Table 18: CLI - generate Use the built-in utility to create SSH keys. generate <sshkey> The RDL-3000 will generate a key using its internal encryption engine. sshkey <dsa | rsa> Generate DSA key for SSH. Generate RSA key for SSH.
<server IP> <filename> Use this command to load the RDL-3000 configuration information from a file (created using script command) located on a remote TFTP server. The file must be located in the TFTP default directory. The 'save config' command must be used to save the loaded configuration in non volatile memory.
- Specify a unique ID for this Link: 5.3.13 ping Use the ping command to initiate an ICMP ping command from the RDL-3000. Table 23: CLI - ping Send an ICMP ping command. This can be used to confirm network access to FTP/TFTP servers, syslog servers, etc.
Use the script command to save a file containing a string of Commands that can be used to restore the current (active) configuration of the RDL-3000. Saved configuration files can be viewed, copied, and/or modified using a text editor.
Page 109
- ID for Link, Service, or Service Group. name - Name (maximum 15 text characters). ipaddr <ip> <mask> Enter the IP address and subnet mask of the RDL-3000. Confirmation is required. Example: set ipaddr ip 192.168.100.10 mask 255.255.255.0 ldlpir <id> <50-50000>...
Page 110
Event messages are logged for each of these operations. Enter the 'show log' command to view event messages. peermac <MAC> MAC address of the communicating RDL-3000. Required for wireless encryption. Use form: aa:bb:cc:dd:ee:ff pskey <key>...
Page 112
A-Z, 0-9, dash (-), and underscore (_). sysloc <location> Enter location description for this RDL-3000 location. Enter up to thirty (30) alpha- numeric characters including a-z, A-Z, 0-9, dash (-), and underscore (_). syslog <off | on>...
Page 113
User Manual Table 28: CLI - set sysname <text> Enter the name for this RDL-3000. Use any combination of up to 20 letters and numbers. telnet <off | on> Enable or disable the Telnet port. If the Telnet port is disabled, it will not be possible to use the CLI interface.
List all SNMP trap settings. 5.3.22 upgrade Use the upgrade command to upload a new firmware binary file to the RDL-3000. Table 32: CLI - upgrade Configure SNMP community permissions. upgrade <ip addr> <file name> <user name> <password> ip addr IP address of the FTP/TFTP server.
(_). The operator must confirm their own password and a password for the new account. The RDL-3000 supports administrator and user accounts. See Table 4: Web - Screens and User Access on page 42 for permissions associated with each group.
For correct operation the host computer and the RDL-3000 must be on the same subnet. For example, if the RDL-3000 is using the factory default settings, the host computer could be set for an IP of 192.168.25.3 and a subnet mask of 255.255.255.0.
RDL-3000 User Manual Working with System Parameters The RDL-3000 is a highly configurable communications device. This section describes how to view, modify, test, and save parameter settings. 6.3.1 Parameters Overview The RDL-3000 maintains the following sets of parameters: Runtime Parameters Currently active system settings.
1. Make all necessary editing changes to the configuration. 2. Issue the command 'reboot 300'. This will set a timer to reboot the RDL-3000 in five minutes (5 x 60 seconds). A longer or shorter time can also be specified.
If the operator can not access the RDL-3000 management interface (forgotten IP, username, and/or password), a long reset operation must be performed to provide access the unit. The long reset provides an opportunity to login to the RDL-3000 using the default IP, usernames and passwords. The long reset procedure requires local access to the RDL-3000 PoE adapter to power-cycle the RDL-3000, and a PC with an Ethernet cable and a Telnet client or Web browser.
Modify settings as required and reboot the RDL-3000 to exit from long reset mode. If using a web browser to access the RDL-3000, prepare the PC for by opening a Web browser on the PC and typing the following URL into the address bar: http://192.168.25.2...
Page 125
IP address (192.168.25.2) and the default administrator username (admin) and password (admin). Perform a long reset and use a Web browser to login to the RDL-3000 using the default IP address (192.168.25.2), and the default administrator username (admin) and password (admin).
Chapter 7 Security Overview The Redline RDL-3000 provides a high level of security and reliability. Security features include wireless authentication using X.509 certificates, and wireless encryption using AES encryption. AES encryption is optional and may be purchased separately and enabled by loading an AES-enabled options key.
Always use secure transfer (e.g., SSH or SSL) when working with encryption keys and certificates. It is recommended to use the RDL-3000 local Ethernet port to transfer encryption keys and certificates, or sftp if loading certificates or keys across an open network.
1. Obtain an AES-enabled upgrade options key for all communicating RDL-3000 systems. 2. Copy the new options key to each RDL-3000 and set this to be the active key. See section 4.7.3: Product Options on page 90. 3. Choose the same AES encryption setting on all communicating RDL-3000 systems.
5. Login to the RDL-3000 and verify the files have been successfully loaded. Example Use TFTP server at IP address 192.168.25.10 to load an SSH key file for the RDL-3000 with MAC address 00 09 02 01 C1 9A. 192.168.25.2# load file 192.168.25.10 dsa_key_00-09-02-01-C1-9A.pem usr tftp 192.168.25.2# show files usr...
The security certificate presented was issued for a different website address.) e operator has full access to the secure Web interface. It is recommended that system operators generate a unique certificate and private-public keys, and load these on the RDL-3000 before using the HTTPS feature in a production environment. 7.5.2 Enable HTTPS/SSL HTTPS is disabled by (factory) default.
Page 131
Ethernet port when transferring encryption keys and certificates to the RDL-3000. 4. Use the command 'show files usr' to verify the files have been successfully loaded. 5. Reboot the RDL-3000 to activate changes to the key files. HTTPS is available when the system reboot is completed. Example Load HTTPS (SSL) key and certificate files from the TFTP server at 192.168.25.1 to the RDL-...
8.2.1 Packet Classification at the Sector Controller The RDL-3000 PMP deployment can be configured for use with VLAN tagged traffic, untagged traffic, or a combination these two types. Ingress packets received on the sector controller Ethernet port are classified according to the criteria in the following table.
8.2.2 Packet Classification at the Subscriber The RDL-3000 PMP deployment can be configured for use with VLAN tagged traffic, untagged traffic, or a combination these two types. Ingress packets received on the subscriber Ethernet port are classified according to the criteria in the following table.
A regional code is integrated into each options key. This feature enforces compliance to regional regulatory statutes. Options keys are unique to a specific RDL-3000 (keyed to MAC address). Available frequencies are limited to the radio type (e.g., 5.4 GHz).
Need help?
Do you have a question about the RDL-3000 and is the answer not in the manual?
Questions and answers