In addition, we refer to the conditions of use specified in the license contract. You can get the latest version of this manual on the Internet at the Hirschmann product site (http://www.hirschmann.com). Hirschmann Automation and Control GmbH Stuttgarter Str.
1.4.5 Set SMS Service Center 1.4.6 Unlock SIM Card 1.4.7 Send SMS Help 1.5.1 About 1.5.2 Technical Support 1.5.3 License Info Icon Bar 1.6.1 Logout 1.6.2 Reboot 1.6.3 Timeout Counter OpenVPN protocol UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 4
Tunnel paired with a WIN/Linux SERVER 2.5.1 OpenVPN tunnel configuration on the router 2.5.2 Tunnel configuration on Computer 1 – Server Multi-server – Hirschmann router (CLIENT) 2.6.1 OpenVPN tunnel configuration on Hirschmann routers 2.6.2 OpenVPN server configuration OpenVPN client to client 2.7.1 OpenVPN server configuration...
Page 5
GRE Protocol GRE Tunnel Configuration GRE Configuration Examples 4.2.1 GRE Tunnel Between Hirschmann Routers 4.2.2 GRE Tunnel Between Hirschmann Router and a Linux System 4.2.3 GRE Tunnel Between Hirschmann Router and Cisco Router 4.2.4 GRE over IPsec tunnel AT Commands Description of AT commands 5.1.1 ATE...
Page 6
SNMP OID Tree structure System Interfaces ICMP Management Information Base (MIB) Sample settings and readout: Installation of OpenVPN (Windows) General Information Abbreviations used Technical Data Maintenance Index Further support UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
This "Configuration" user manual contains the information you need to start operating the device. It takes you step by step from the first startup operation through to the basic settings for operation in your environment. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 8
A note emphasizes an important fact or draws your attention to a dependency. ASCII representation in the graphical user interface Courier Symbols used: WLAN access point Router with firewall Switch with firewall Router Switch Bridge UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 9
About this Manual A random computer Configuration Computer Server PLC - Programmable logic controller I/O - Robot UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 10
About this Manual UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Before you start any machine which is controlled via data transmission, be sure to complete the configuration of all the data transmission devices. Failure to follow these instructions can result in death, serious injury, or equipment damage. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
SMS for example. The router can automatically upgrade a configuration and firmware from a server. This allows you to configure several routers at a time. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Note: Wireless transmissions only functions when you activate the SIM card for data traffic and insert it into the router. Remove the power source before inserting the SIM card. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 15
Note: For increased security of the network connected to the router, change the default router password. When the default password of the router is still active, the "Change password" title is highlighted in red. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Connect to the router using SSH. Replace the file, /etc/certs/https_cert, on the router with your newly created certificate. Replace the file /etc/certs/https_key with your newly generated key. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Displays the total number of sent packets. Tx Errors Displays the total number of erroneous sent packets. Tx Dropped Displays the total number of dropped sent packets. Table 1: Mobile Connection UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Displays the type of expansion port fitted on the router. Binary Input Displays the state of binary input. Binary Output Displays the state of binary output. Table 2: System Information UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
USB interface. tun0 Displays the OpenVPN tunnel interface status. gre1 Displays the GRE tunnel interface status. Displays the Local loopback interface status. Table 4: Description of Interfaces in LAN Status UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 20
Status" dialog. If the connection to a mobile network is active, it is displayed in the "Interfaces" frame as a usb0 interface. At the bottom of the dialog, the router displays a "Route Table". UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 21
Displays the Location Area Code. The LAS is a unique number assigned to each location area. Channel Displays the channel on which the router is communicating. Table 6: Mobile Network Information UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 22
WAN connection during each logging period. The router maintains standard intervals for example, as the previous 24 hours and last week, and also includes information about one user-defined interval. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 23
Traffic Statistics The last frame of the dialog, the "Mobile Network Connection Log", displays information about the mobile network connection and detected connection problems that occurred while establishing the connections. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 24
The DHCP server assigns each device its IP address and netmask, the IP address of the default gateway, and the IP address of the DNS server. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 25
Note: The records in the "DHCP" dialog are divided into 2 separate parts the "Active DHCP Leases (Primary LAN)", and the "Active DHCP Leases (WLAN)". Figure 4: DHCP Status UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 26
DynDNS server failure. Note: In order for the DynDNS function to perform correctly, purchase a public IP address from your provider or have your provider assign you a public IP address. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
If the IPsec tunnel is successfully established, the dialog displays IPsec SA established. Other information located in this dialog pertains only to the internal characteristics of the IPsec tunnel. Figure 6: IPsec Status UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
"syslogd -R &" command. If remote syslog deamon uses a Windows OS, install a syslog server application for example, Syslog Watcher. To start the Syslogd application with these options, modify the "/etc/ init.d/syslog" script using SSH. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 29
Basic Information 1.2 Status Figure 7: System Log Figure 8: Example program syslogd start with the parameter -R UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
You can restore a configuration of the router using the "Restore Configuration" dialog. To navigate to the directory containing the configuration file (.cfg) you wish to load on the router, use the "Browse" button. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 31
To upload the firmware to the router, click the "Update" button. Figure 10: Software Information about programming the FLASH memory is displayed after a successful firmware update (see figure below): UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
IP address Specifies a fixed set of IP addresses for the network interfaces ETH. Subnet Mask Specifies a Subnet Mask for the IP address. Table 11: Configuration of Network Interface UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 33
The DHCP server assigns the IP address, the gateway IP address and the IP address of the DNS server to the connected clients. If you enter the values manually in the dialog, then the router retains the values. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 34
Example 1: Configure the network interface to connect to a dynamic DHCP server: The range of the dynamic allocated addresses is from 192.168.1.2 to 192.168.1.4. The address is allocated for 600 second (10 minutes). UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 35
Basic Information 1.3 Configuration Figure 11: Topology of LAN Configuration Example 1 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 36
The address is allocated for 600 second (10 minutes). The client with the MAC address 01:23:45:67:89:ab has the IP address 192.168.1.10. The client with the MAC address 01:54:68:18:BA:7e has the IP address 192.168.1.11. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 37
Basic Information 1.3 Configuration Figure 13: Topology of LAN Configuration Example 2 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 38
Example 3: Configure the network interface to connect to a default gateway and DNS server The Default gateway IP address is 192.168.1.20. The DNS server IP address is 192.168.1.20. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 39
Basic Information 1.3 Configuration Figure 15: Topology of LAN Configuration Example 3 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 40
1.3 Configuration Figure 16: LAN Configuration Example 3 Mobile WAN To configuring an interface for a mobile network connection, open the "Mobile LAN" dialog in the "Configuration" section. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 41
The default value is 1500 B. Other settings can cause the router to incorrectly transmit data. Table 14: Mobile WAN Connection Configuration UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 42
DNS server of the mobile network carrier. To specify the IP addresses of the Primary DNS servers manually, from the "DNS Server" pull down list, select the value set manually. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 43
"Ping Interval", then the router sends a ping request to the "Ping IP Address". Note: Enabling the "Check Connection" function for mobile networks is necessary for uninterrupted and lasting operation of the router. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 44
SIM card when home network is detected" "Switch to backup SIM card when data limit is exceeded and switch to default SIM card when data limit isn't exceeded" UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 45
Table 18: Toggle between SIM Card Configurations The following parameters specifies the length of time that the router waits before attempting to change back to the default SIM card or APN. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 46
PC connected to the ETH port of the router. You assign the IP address of the SIM card to the PC. The changes in the dialog apply after clicking the "Set" button. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 47
Basic Information 1.3 Configuration Figure 17: Mobile WAN Configuration UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 48
SIM card after exceeding the data limits of 800MB. The router sends a warning SMS upon reaching 400MB. The accounting period starts on the 18th day of the month. Figure 19: Mobile WAN Configuration Example 2 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 49
Virtual Server IP Specifies the virtual server IP address. Assign this address to both Address routers. A connected device sends its data through this virtual address. Table 20: VRRP Configuration UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 50
Enter an IP address that you are certain is constantly available and you are able to send ICMP queries for example, the DNS server of the mobile network carrier. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 51
If the router does not receive a response within the timeout period, it attempts to test the mobile WAN connection using standard ping commands. Example of the VRRP protocol: Figure 21: Topology of VRRP Configuration Example UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 52
Basic Information 1.3 Configuration Figure 22: VRRP Configuration Example - Master Router Figure 23: VRRP Configuration Example - Backup Router UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 53
If you leave this field blank, then the router uses the default server, members.dyndns.org. Table 22: DynDNS configuration Example of the DynDNS client configuration with domain hirschmann.dyndns.org: Figure 24: DynDNS Configuration Example UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 54
The default value is 1492 bytes. Other settings can cause incorrect data transmission. Table 23: PPPoE Configuration UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 55
Open the "Status"> "Device Information" dialog. Click on "More Information" in the "Primary LAN" frame. Verify that the "Flags" parameter value is Running. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 56
The following list contains the names of backup routes and corresponding network interfaces in order of implicit priorities: Mobile WAN (usb0) PPPoE (ppp0) UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
IP address table. This means that access is permitted only to addresses specified in the table. It is possible to specify up to eight remote IP addresses for access. You can specify the following parameters: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 58
IP addresses, and ports. Parameter Description Source Specifies the IP address from which access to the router is allowed. Destination Specifies the IP address of destination device. Table 26: Forward Filtering UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 59
As a protection against DoS attacks, the "Enable protection against DoS attacks" limits the number of allowed connections per second to 5. The DoS attack floods the target system with meaningless requirements. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 60
from IP address 171.92.5.45 using any protocol from IP address 10.0.2.123 using the TCP protocol on port 1000 from IP address 142.2.26.54 using the ICMP protocol UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 61
TCP/UDP port to another TCP/UDP port. The router modifies the information in the packet header as the packets traverse a router. The dialog allows you to specify up to 16 PAT rules. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 62
HTTP to HTTPS protocol. The router does not allow an unsecured HTTP protocol to access the GUI dialogs. To access the GUI dialogs, mark the "Enable remote HTTPS access on port" check box. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 63
Activates/deactivates the network address translation (PAT) function. outgoing packets Table 29: Remote Access Configuration Example1: NAT configuration with 1 connection to the router: Figure 30: Topology of NAT configuration Example 1 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 64
"Default Server IP Address" field. The connected device replies if a PING is sent to the IP address of the SIM card. Example2: Configuration with more equipment connected: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 65
IP address of the router (10.0.0.1), the router responds as usual (not forwarding). And since the "Send all remaining incoming packets to default server" is inactive, the router denies connection attempts. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 66
Basic Information 1.3 Configuration Figure 33: NAT Configuration Example 2 Services The "Services Configuration" dialog is only available for users with the admin role. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 67
Left empty – access limitation is disabled, any IP address can connect Note: Changing the IP address requires you to restart the device. After restarting the device re-establish the ssh connection. Figure 34: Services UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The OpenVPN communicates using TCP in server mode. TCP client The OpenVPN communicates using TCP in client mode. UDP/TCP port Specifies the port of the relevant protocol (UDP or TCP) Table 31: OpenVPN Tunnels Overview UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 69
not applied (default setting) NAT rules are not applied to the OpenVPN tunnel. applied NAT rules are applied to the OpenVPN tunnel. Table 31: OpenVPN Tunnels Overview UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 70
SSH - run the openvpnd --help command. Table 31: OpenVPN Tunnels Overview The changes in the dialog apply after clicking the "Set" button. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 71
Basic Information 1.3 Configuration Figure 36: OpenVPN Tunnel Configuration Example of the OpenVPN tunnel configuration: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 72
Remote Interface IP Address 203.0.112.0 203.0.113.0 Compression Authenticate mode none none Table 32: OpenVPN Configuration Example For examples of different OpenVPN tunnel configuration and authentication options: See “OpenVPN protocol” on page 121. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 73
Activates/deactivates the individual IPsec tunnels. Description Displays the name of the tunnel specified in the configuration of the tunnel. Edit Opens the IPsec Tunnels Configuration form. Table 33: IPsec Tunnels List UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 74
IP address (for example, 192.168.1.1) DN (for example, C=DE,O=Hirschmann Automation and Control GmbH,OU=TP,CN=A) FQDN (for example, @director.hirschmann.de) – the “@” symbol proceeds the FQDN. User FQDN (for example, director@hirschmann.de) First Remote Subnet Specifies the IP address of a network behind the remote side of the tunnel.
Page 75
IP address (for example, 192.168.1.1) DN (for example, C=DE,O=Hirschmann Automation and Control GmbH,OU=TP,CN=A) FQDN (for example, @director.hirschmann.de) – the “@” symbol proceeds the FQDN. User FQDN (for example, director@hirschmann.de) First Local Subnet Specifies the IP address of a local network.
Page 76
The encryption and hash algorithm are selected automatically. manual The encryption and hash algorithm are defined by the user. Table 35: IPsec Tunnels Configuration Part 2 of 6 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 77
Table 35: IPsec Tunnels Configuration Part 2 of 6 Figure 40: Screenshot IPsec Tunnels Configuration Part 2 of 6 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 78
PFS DH Group Specifies the Diffie-Hellman group number (see IKE DH Group) Table 36: IPsec Tunnels Configuration Part 3 of 6 Figure 41: Screenshot IPsec Tunnels Configuration Part 3 of 6 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 79
CA Certificate Specifies the certificate for X.509 authentication. Remote Certificate / Specifies the certificate for X.509 authentication. PubKey Table 38: IPsec Tunnels Configuration Part 5 of 6 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 80
Table 39: IPsec Tunnels Configuration Part 6 of 6 Figure 44: Screenshot IPsec Tunnels Configuration Part 6 of 6 The changes in the dialog apply after clicking the "Set" button. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 81
The certificates and private keys have to be in the PEM format. Use only certificates containing start and stop tags. The following procedure describes how to generate certificates and keys without a password phrase: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 82
Figure 46: Generation of certificates and keys without a password phrase Listed below are the certificates with password phrase "router" (certification authority remains unchanged): Figure 47: Certificates with password phrase "router" UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 83
Specifies the IP address of the local side of the tunnel. Address Remote Interface IP Specifies the IP address of the remote side of the tunnel. Address Table 42: GRE Tunnel Configuration dialog UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 84
Table 42: GRE Tunnel Configuration dialog Note: The GRE tunnel does not pass through NAT. Figure 49: GRE Tunnel Configuration dialog Example of the GRE Tunnel configuration: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 85
"Configuration" section of the main menu. The L2TP tunnel function allows you to create a password protected connection between 2 LAN networks. The router activates the tunnels after you mark the "Create L2TP tunnel" check box. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 86
Specifies the username for the L2TP tunnel login. Password Specifies the password for the L2TP tunnel login. Table 44: GRE Tunnel Configuration Figure 51: L2TP Tunnel Configuration Example of the L2TP tunnel configuration: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 87
192.168.1.254 Local IP Address 192.168.1.1 Remote IP Address Remote Subnet 192.168.2.0 192.168.1.0 Remote Subnet Mask 255.255.255.0 255.255.255.0 Username username username Password password password Table 45: L2TP Tunnel Configuration Example UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The figure below displays an example of a Time configuration with the primary server set to 0.de.pool.ntp.org and the secondary server set to 1.de.pool.ntp.org and with the automatic change for daylight saving time enabled. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 89
To enable the SNMPv1/v2 function, mark the "Enable SNMPv1/v2 access" check box. It is also necessary to specify a password for access to the "Community" SNMP agent, The default setting is public. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 90
So it is obvious that there is a tree structure. The following figure displays the basic tree structure that is used for creating the OIDs. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 91
Basic Information 1.3 Configuration Figure 54: OID Basic Structure The SNMP values that are specific for Hirschmann routers create the tree starting at OID = 1.3.6.1.4.1.248.40.1. You interpret the OID in the following manner: iso.org.dod.internet.private.enterprises.hirschmann The following figure displays the tree used for creating Hirschmann OIDs.
Page 92
Basic Information 1.3 Configuration See “SNMP OID” on page 259. Example of SNMP settings: Figure 56: SNMP Configuration Example UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 93
Furthermore, you can find the status of the internal variables by entering their OID. The path to the objects is: iso -> org -> dod -> internet -> private -> enterprises -> hirschmann -> protocols The path to information about the router is: iso ->...
Page 94
The command above sends an e-mail address to, name@domain.com with the subject, body message, and attachment “abc.doc” directly from the directory /mnt/abc.doc. The router attempts to send the message 5 times. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 95
You can configure up to 3 numbers for incoming SMS messages. To enable the function, mark the "Enable remote control via SMS" check box. The default setting of the remote control function is active. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 96
Sets the alternative profile 3 reboot The router reboots get ip The router responds with the IP address of the SIM card. Table 52: Control SMS UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 97
Selects the SMS memory storage types, to be used for the short message operations AT+CREG Displays the network registration status AT+CSCA Sets the short message service center (SMSC) number Table 54: List of AT Commands UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 98
After disconnecting from the mobile network, the phone with the number entered in the dialog receives an SMS in the following form: Router (Unit ID) has lost connection to the mobile network. IP address xxx.xxx.xxx.xxx UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 99
Basic Information Device Configuration > SMS Figure 59: Example 1 – SMS configuration Example 2: Control the router using an SMS from any phone number. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 100
Basic Information Device Configuration > SMS Figure 60: Example 2 – SMS configuration Example 3: Control the router using an SMS from 2 phone numbers. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 101
To specify the values for the USB port parameters, click "USB Port" in the "Configuration" section of the main menu. The following tables describe the parameters available in the dialog. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 102
TCP connection. The CD signal verifies that another device is connected to the other side of the cable. Description Activated The TCP connection is enabled. Inactive The TCP connection is disabled. Table 57: CD signal description UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 103
The router supports the following USB/RS232 converters: FTDI Prolific PL2303 Silicon Laboratories CP210× The changes in the dialog apply after clicking the "Set" button. Figure 62: USB configuration dialog UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 104
Basic Information Device Configuration > SMS Examples of the USB port configurations: Figure 63: Example 1 – USB port configuration Figure 64: Example 2 – USB port configuration UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 105
Specifies the base part of the domain or IP address of the server from which the router downloads the configuration or firmware file. Also specifies the communication protocol for example: HTTP, HTTPS, FTP or FTPS. Table 59: Automatic Update Configuration UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 106
The router checks whether a new firmware and configuration file is available every day at 1:00 in the morning. The Unit ID parameter is specified. Firmware: http://www.hirschmann.com/en/QR/OWL/OWL-LTE.bin Configuration file: http://www.hirschmann.com/en/QR/OWL/ neckartenzlingen.cfg UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 107
The router checks whether a new firmware and configuration file is available every day at 1:00 in the morning. The router has MAC address 00:11:22:33:44:55. Firmware: http://www.hirschmann.com/en/QR/OWL/OWL-LTE.bin Configuration file: http://www.hirschmann.com/en/QR/OWL/ 00.11.22.33.44.55.cfg Figure 66: Automatic Update Example 2 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
"admin" account is locked and the "users" do not have sufficient permissions. In the second frame you can add a new user. You can find detail descriptions to the parameters the table below. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Figure 67: Users 1.4.2 Change Profile Using profiles you can change between different router configurations. You can change the profile using an SMS message or the GUI interface of the router. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
"Confirm Password" field, and press the "Set" button. Note: The default password of the router is private for the admin user. To maintain the security of your network change the default password. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
"Time" manually. When entering the values manually use the format yyyy-mm-dd as seen in the figure below. You can also adjust the clock using the specified NTP server. After you enter the appropriate values, click the "Set" button. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
(+420-xxx-xxx-xxx). If you are unable to send or receive SMS messages, contact your carrier to find out if this parameter is required. Figure 71: Set SMS service center address UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
SMS messages. Enter the "Phone number" and text of your message in the "Message" field, then click the "Send" button. The router limits the maximum length of an SMS to 160 characters. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Basic Information 1.5 Help 1.5 Help 1.5.1 About The "About" dialog displays information about the firmware version and basic information about the Hirschmann Automation and Control GmbH. Figure 74: About UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Basic Information 1.5 Help 1.5.2 Technical Support You can find basic information about the Hirschmann Automation and Control GmbH technical support in the "Technical Support" dialog. You can also find information about the Hirschmann Automation and Control GmbH Competence Center.
"Project" – name of the project "License" – type of the license "More Information" – the "License" and a link to "Website" of the project Figure 76: License Info UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
When you click on the icon, the router discards any unsaved changes to the configuration. Figure 77: Logout 1.6.2 Reboot This configuration function is only available for users with the admin role. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The last icon, the number in a grey field, displays time remaining until the router automatically logs out an inactive user. The counter begins at 500s. The counter restarts every time you open a different dialog. Figure 79: Timeout Counter UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 120
Basic Information 1.6 Icon Bar UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The OpenVPN program uses the common network protocols (TCP and UDP) and thus creates an alternative to the IPsec protocol. Figure 80: Basic scheme UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The router allows you to create only 2 OpenVPN tunnels simultaneously. The router only supports a TUN adapter. The router can not be used as a multi-client server. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
After clicking the Edit button for a tunnel, the router opens the second of 2 OpenVPN Tunnel Configuration dialogs. The dialog contains a form that you use to set specific OpenVPN tunnel parameters. The following table contains the description of the individual parameters: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 124
not applied – NAT rules are not applied to the OpenVPN tunnel You specify the NAT rules in the Security> NAT dialog. Table 63: Configuration of OpenVPN tunnel UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 125
Assign a remote IP address, the server IP address to the CLIENT routers. For SERVER routers, we recommend that you leave the Remote IP Address parameter blank. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 126
If you connect 2 routers, configure a router as a CLIENT and the other as a SERVER. We recommend that you set the Ping Interval and the Ping Timeout parameters. Figure 82: OpenVPN tunnel Configuration dialog UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
2.3 Router on both sides of tunnel The figure below displays a network where a Hirschmann router is installed on both sides of the OpenVPN tunnel. The IP address of the SIM cards in the routers can be configured as either static or dynamic.
Remote IP Address 10.0.2.36 Remote Subnet 192.168.1.0 Remote Subnet Mask 255.255.255.0 Local Interface IP Address 10.168.1.2 Remote Interface IP Address 10.168.1.1 Table 65: Configuration of the second router (no authentication) UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 129
65 on page 128. If you select ”applied” from the NAT Rules drop down menu, then the router applies the rules specified in the Security> NAT dialog to the OpenVPN tunnel. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 130
It is also possible to verify a successful establishment of the OpenVPN tunnel in the system log, click System Log in menu tree. After the router establishes an OpenVPN tunnel, the log displays the “Initialization Sequence Completed” entry. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 131
OpenVPN protocol 2.3 Router on both sides of tunnel Figure 86: System log UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Table 67: Configuration of the second router (pre-shared secret) The procedure of creating the pre-shared key is described in the pre-key chapter. See “Creation of pre-shared key” on page 161. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 133
67 on page 132. If you select ”applied” from the NAT Rules drop down menu, then the router applies the rules specified in the Security> NAT dialog to the OpenVPN tunnel. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 134
It is also possible to verify a successful establishment of the OpenVPN tunnel in the system log, click System Log in menu tree. After the router establishes an OpenVPN tunnel, the log displays the “Initialization Sequence Completed” entry. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
VPN server Table 68: Configuration of the first router (username/password) Enter the following parameters in the configuration of the second router. This router is the CLIENT: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 136
VPN server Table 69: Configuration of the second router (username/password) The procedure of creating certificate is described in the certificate chapter. See “Creation of certificates” on page 162. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 137
69 on page 136. If you select ”applied” from the NAT Rules drop down menu, then the router applies the rules specified in the Security> NAT dialog to the OpenVPN tunnel. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 138
It is also possible to verify a successful establishment of the OpenVPN tunnel in the system log, click System Log in menu tree. After the router establishes an OpenVPN tunnel, the log displays the “Initialization Sequence Completed” entry. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Local Certificate local certificate assigned by the VPN server Local Private Key local private key assigned by the VPN server Table 70: Configuration of the first router (X.509 certificate) UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 140
VPN server Table 71: Configuration of the second router (X.509 certificate) The procedure of creating certificate is described in the certificate chapter. See “Creation of certificates” on page 162. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 141
71 on page 140. If you select ”applied” from the NAT Rules drop down menu, then the router applies the rules specified in the Security> NAT dialog to the OpenVPN tunnel. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 142
It is also possible to verify a successful establishment of the OpenVPN tunnel in the system log, click System Log in menu tree. After the router establishes an OpenVPN tunnel, the log displays the “Initialization Sequence Completed” entry. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 143
OpenVPN protocol 2.3 Router on both sides of tunnel Figure 95: System log UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
CLIENT mode, is on the other side. The IP address of the SIM card in the router can be static or dynamic. Figure 96: OpenVPN tunnel paired with a Windows/Linux CLIENT UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
DH Parameters Diffie-Hellman protocol for key exchange Local Certificate local certificate assigned by router (SERVER) Local Private Key local private key assigned by router (SERVER) Table 72: Router configuration UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 146
Figure 97: Router configuration Note: If you select ”applied” from the NAT Rules drop down menu, then the router applies the rules specified in the Security> NAT dialog to the OpenVPN tunnel. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 147
It is also possible to verify a successful establishment of the OpenVPN tunnel in the system log, click System Log in menu tree. After the router establishes an OpenVPN tunnel, the log displays the “Initialization Sequence Completed” entry. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Computer 1 in the figure at the beginning of this chapter. See figure 144 “OpenVPN tunnel paired with a Windows/Linux CLIENT”. remote [SERVER_IP]tls-clientdev tunifconfig 10.168.1.2 10.168.1.1ns- cert-type serverroute 192.168.2.0 255.255.255.0 10.168.1.2mute 10ca cacert.pemcert client-cert.crt key client-key.keycomp-lzoverb 3 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
2.5 Tunnel paired with a WIN/ Linux SERVER The figure below shows situation, where Hirschmann router is on one side of OpenVPN tunnel and device with an operating system Windows/Linux in SERVER mode is on the other side. IP address of the SIM card in the router can be static or dynamic.
DH Parameters Diffie-Hellman protocol for key exchange Local Certificate local certificate assigned by router Local Private Key local private key assigned by router Table 73: Router configuration UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 151
Figure 101:Router configuration Note: If you select ”applied” from the NAT Rules drop down menu, then the router applies the rules specified in the Security> NAT dialog to the OpenVPN tunnel. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 152
It is also possible to verify a successful establishment of the OpenVPN tunnel in the system log, click System Log in menu tree. After the router establishes an OpenVPN tunnel, the log displays the “Initialization Sequence Completed” entry. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The figure below displays a network, where an OpenVPN multi-server is on one side of an OpenVPN tunnel and several Hirschmann routers, three in this case, in the CLIENT mode are on the other side. The IP address of the SIM card in the routers can be static or dynamic.
2.6 Multi-server – Hirschmann router (CLIENT) 2.6.1 OpenVPN tunnel configuration on Hirschmann routers Figure 105:Configuration of Hirschmann router Note: Configuration of other routers is similar, the only difference is the “Description” parameter. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The figure below displays a network, where an OpenVPN server is on one side of an OpenVPN tunnel and several Hirschmann routers, three in this case, in the CLIENT mode are on the other side. The IP address of the SIM card in the routers can be static or dynamic.
Figure 107:Router configuration After establishing an OpenVPN tunnel, the Network> LAN Status dialog displays the tun0 interface in the Interface section, and the associated route in the Route Table section. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 160
It is also possible to verify a successful establishment of the OpenVPN tunnel in the system log, click System Log in menu tree. After the router establishes an OpenVPN tunnel, the log displays the “Initialization Sequence Completed” entry. Figure 109:System log UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
It is typically used a hierarchical model. 2.9.2 Generating certificates In the folder with the OpenVPN program (by default: C: Program Files OpenVPN) is easy-rsa directory in which vars.bat.sample file is saved. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 163
KEY_DIR=keys set KEY_SIZE=1024 set KEY_COUNTRY=DE set KEY_PROVINCE=PA set KEY_CITY=Neckartenzlingen set KEY_ORG=Hirschmann set KEY_EMAIL=test@Hirschmann.de It is necessary to load the file vars.bat, which can be done using the command line: Figure 112:vars.bat loading. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 164
To delete the previously generated certificates that were saved in the directory, use the clean-all command: Figure 113:clean-all command. To generate a certificate authority (CA), use the build-ca command: Figure 114:Generating a certificate authority UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 165
The following figure (on next page) shows the progress of generating certificates and keys for the server, which is called as server. A process for generating certificates and keys for each client is the same. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 166
OpenVPN protocol 2.9 Creation of certificates Figure 115:generating certificates and keys Finally, generate a Diffie-Hellman key (DH key) using the build-dh command (see figure below). UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
CA certificate clients and server ca.key Key to k CA secret and secure repository dh1024.pem Diffie-Hellmann key only server Table 74: Overview of the generated files UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 168
OpenVPN protocol 2.9 Creation of certificates Figure 117:Overview of the generated files UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The host may be specified by name or by number, using Internet dot notation. For detail description of this command, visit Linux manual pages. Examples: View arp table without translating IP addresses to domain names arp -n UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 170
Multiple -f (or –file) options may be used. Table 76: awk options Examples: Show IP address of Gateway route -n | awk ’/^0 .0 .0 .0/ { print $2 } UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 175
Set timeout -u <status> Set status, eg. ASSURED Table 85: conntrack and expectation options Examples: Display content of conntrack table. conntrack -L Delete content of contrack table. conntrack -F UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 176
.See “wget” on page 216. Synopsis: curl [options...] <url> Options: Type curl --help for options to show in the command line or visit online manual page at http://curl.haxx.se/docs/manpage.html UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 177
Display the current date and time. date Setting the date and time on December 24, 2011 20:00. date 122420002011 defaults The script is used to restore the default configuration. Synopsis: defaults UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 178
View the latest news and subsequent deletion of the kernel ring buffer. dmesg -c echo This command prints the strings to standard output. Synopsis: echo [-n] [-e] [-E] [<string> ...] Options: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 179
Switch profile to "Alternative 1". echo "PROFILE=alt1" > /etc/settingsreboot Send a sequence of bytes 0x41,0x54,0x0D,0x0A to serial line (write data in octal). echo -n -e " 101 124 015 012" > /dev/ttyS0 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 180
Switch interface eth0 to mode 10 Mbit/s, half duplex. ethtool -s eth0 speed 10 duplex half autoneg off Turn on autonegacion on the interface eth0. ethtool -s eth0 autoneg on UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 181
-perm 664 free This command is used to display information about free and used memory. Synopsis: free UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 182
File of the new firmware, filename has to be specified HTML output (used when called from web configuration) Do not reboot after firmware update finish update procedures, called by default Table 93: fwupdate options UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 183
/var/log/messages View all processes whose name the contents of the string "ppp". ps | grep ppp gsmat The program used for sending AT command to GSM module. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 184
The channel on which the router communicates Level The signal quality of the selected cell Neighbours Signal quality of neighboring hearing cells Uptime Time to establish PPP connection Table 95: Description of GSM information UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 185
[on | off] gsmsms The program used to send SMS message. Synopsis: gsmsms <phone number> <text> Examples: Send SMS "Hello word" on telephone number +420123456789. gsmsms +420123456789 "Hello word" UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 187
The hardware clock is kept in coordinated universal time The hardware clock is kept in local time Table 98: hwclock options Examples: Set the hardware clock to the current system time. hwclock -w -u UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 188
View the status of all interfaces. ifconfig Activation of loopback with IP address 127.0.0.1/8. ifconfig lo up Activation of virtual interface eth0:0 with IP address 192.168.2.1/24.ifconfig eth0:0 192.168.2.1 netmask 255.255.255.0 up UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 189
1. Determine the state of analog input AN1 on expansion port XC-CNT. io get an1 Determine the state of counter input CNT1 on expansion port XC-CNT. io get cnt1 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 190
IPSec policies Table 102:ip objects Examples: View the status of all interfaces. ip link show View the route table. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 191
[ -<signal> ] <process-id> [ <process-id> …] kill -l Options: Option Description Print a list of signal names. These are found in /usr/include/linux/signal.h Do not complain if no processes were killed Table 103:kill options UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 192
The program used to control the USR LED on the front panel of the router. Synopsis: led [on | off] Options: Option Description User LED is on User LED is off Table 105:led options UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 193
Commands and Scripts Examples: Turn on USR LED. led on Turn off USR LED. led off UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 194
Make a backup of the target (if exists) before link operation Use suffix instead of when making backup files Table 106:ln options Examples: Creating a symbolic link to file /var/log/messages called my.log. ln -s /var/log/messages my.log UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 195
Send the message System rebooted to the syslogd daemon. logger System rebooted Send the message System going down immediately!!! to the syslog daemon, at the emerg level and user facility. logger -p user.emerg "System going down immediately!!! UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 196
Synopsis: lpm [-b] [-i <interval>] Options: Option Description Wake up the router on binary input In1 Wake up the router after time interval specified in seconds Table 108:lpm options UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 197
With -l: show access time Sort the listing by version List entries by lines instead of by columns Sort the listing by extension Table 109:ls options Examples: View list contents of actually directory. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 198
Option Description Set permission mode (as in chmod), not rwxrwxrwx – umask No error if existing, make parent directories as needed Table 110: mkdir options Examples: mkdir -p /tmp/test/example UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 199
Table 112: mount options For detail description this command, visit Linux manual pages. Examples: Connect a contents of USB flash drive to the directory /mnt. mount -t vfat /dev/sda1 /mnt UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 200
Open a TCP connection to port 42 of 192.168.3.1, using port 31337 as the source port, with a timeout of 5 seconds: nc -p 31337 -w 5 192.168.3.1 42 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 201
Specify the maximum time waiting for a server response as the value timeout, in seconds and fraction. Table 116: ntpdate options Examples: Set the system time according to the NTP server time.windows.com. ntpdate time.windows.com UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 202
Generate a new certificate for the HTTPS server. openssl req -new -out /tmp/csr -newkey rsa:1024 -nodes -keyout /etc/certs/ https_key openssl x509 -req -setstart 700101000000Z -setend 400101000000Z -in /tmp/ csr -signkey /etc/certs/https_key -out /etc/certs/https_cert UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 203
Quiet mode, only displays output at start and when finished Selects outgoing interface Table 118: ping options Examples: Send one ICMP packet Echo Request with size 500 B on IP address 10.0.0.1. ping -c 1 -s 500 10.0.0.1 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 204
115200 bit/s, 8N1. portd -c /dev/ttyS0 -b 115200 -t 1000 & This program is used to view report process status. Synopsis: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 205
Reboot router after 10 second. reboot -d 10 restore This program is used to restore configuration from file. Synopsis: restore <filename> Examples: Restore configuration from file /tmp/my.cfg. restore /tmp/my.cfg UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 206
Remove directory /tmp/test and all subdirectories. rm -rf /tmp/test rmdir This program is used to remove empty directories. Synopsis: rmdir <filename> Examples: Remove empty directory /tmp/test. rmdir /tmp/test UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 207
-net 192.168.3.0/24 dev eth0 Add routing IP addresses 192.168.3.1 through 192.168.1.2 gateway. route add -host 192.168.3.1 gw 192.168.1.2 Add default gateway 192.168.1.2 route add default gw 192.168.1.2 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 208
This program is used to start, stop or restart specified service. Synopsis: service < service name > <start | stop | restart> Examples: Start service cron. service cron start Restart service ppp. service ppp restart UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 209
- snmptrap This program is used to sending SNMP trap. Synopsis: snmptrap [-c <community>] [-g <generic>] [-s <specific>] <hostname> [<oid> <type> <value>] Options: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 210
Send TRAP with info about the status of a digital input BIN0 to the IP address 192.168.1.2. snmptrap 192.168.1.2 1.3.6.1.4.1.30140.2.3.1.0 u ’io get bin0’ Send TRAP "warm start" to the IP address 192.168.1.2 snmptrap -g 1 192.168.1.2 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 211
Status of available peripheral ports Status of mobile connection System information wifi Status of wlan interafce Table 126:status options Examples: Show verbosed status of mobile connection. status -v mobile UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 212
Verbosely list files processed Table 128:tar options Examples: Creating log.tar archive that contains files from the directory /var/log. tar -cf log.tar /var/log Extract files from the archive log.tar. tar -xf log.tar UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 213
This program is used to establish interactive communication with another computer over a network using the TELNET protocol. Synopsis: telnet <host> [<port>] Examples: Connect to 192.168.1.2 by protocol Telnet. telnet 192.168.1.2 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 214
Set the type-of-service in probe packets to the following value (default 0) Set the time (in seconds) to wait for a response to a probe (default 3 sec) Specify a loose source route gateway (8 maximum) Table 130:traceroute options UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 215
[-R] [<file> …] Options: Option Description Read only, do not write to the file Table 132:vi options Examples: Open file /etc/rc.local in the text editor vi. vi /etc/rc.local UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 216
Set directory prefix to DIR Save to filename (’-’ for stdout) Use proxy (’on’ or ’off’) Table 133:wget options Examples: Download a file my.cfg from HTTP server with IP address 10.0.0.1. wget http://10.0.0.1/my.cfg UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 217
Find files named core in or below the directory /tmp and delete them. Note that this will work incorrectly if there are any filenames containing newlines or spaces. find /tmp -name core -type f -print | xargs /bin/rm -f UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
EOF 3.1.4 Send information email 1 Send information email about establishing of PPP connection. Up Script: EMAIL=john.doe@email.com /usr/bin/email -t $EMAIL -s "Router has established PPP connection. IP address: $4" UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Send information SNMP trap about change state of binary input BIN0. Startup Script: SNMP_MANAGER=192.168.1.2 while true do /usr/bin/io get bin0 VAL=$? if [ "$VAL" != "$OLD" ]; then /usr/bin/snmptrap $SNMP_MANAGER 1.3.6.1.4.1.30140.2.3.1.0 u $VAL OLD=$VAL fi sleep 1 done UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 223
(/root/DHCP_MAC) as you need (MAC addresses and IP addresses). Finally, reboot router or press Apply button on LAN page in the web interface of your router. Example of DHCP_MAC file: ETH_DHCP_STAT_MAC7=00:0A:14:80:92:2F ETH_DHCP_STAT_IPADDR7=192.168.1.55 ETH_DHCP_STAT_MAC8=00:0A:14:12:34:56 ETH_DHCP_STAT_IPADDR8=192.168.1.11 ETH_DHCP_STAT_MAC9=00:0A:14:F0:92:6A ETH_DHCP_STAT_IPADDR9=192.168.1.71 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 224
Commands and Scripts 3.1 Examples of scripts UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Mobility protocols, Linux and BSD can establish ad-hoc IP over the GRE tunnels which are inter-operable with the Cisco equipment. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 226
Security Payload) in the IPsec protocol. The GRE protocol is specified in RFC 2784 and RFC 2890. It is determined by number 47 in the Protocol field in the IP header. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Enables the individual tunnels Description Displays the name of the tunnel specified in the configuration form Edit Configuration of the GRE tunnel Table 135:GRE tunnels overview Figure 119:GRE tunnels overview UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 228
Specify the same key on both routers, otherwise the router drops the received packets. Using the pre-shared key alone, does not provide a tunnel. Table 136:GRE tunnels configuration UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 229
IP packets) or GRE over IPsec (secured IPsec tunnel and then GRE encapsulation inside of the IPsec tunnel). Press the Set button to implement all the changes in Settings. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Figure 121:Topology of the Hirschmann to Hirschmann router configuration example The figure above is an example of how to connect two LANs using GRE tunnel between the two Hirschmann routers. The default gateway for stations in the blue network is the Router A (192.168.1.1), for stations in the red network it is the Router B (192.168.2.1).
Page 231
After you active the GRE tunnel, the router displays that a new network interface, “gre1”, created in every router. You can view in the "Network" dialog in the "Status" section, see the figure below: UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 232
The -c switch tells the number of requests, the -I switch tells the interface used (gre1). Figure 125:Program ping using gre1 network interface UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Linux System The example of the GRE tunnel between Hirschmann Router and a Linux system is shown here. Linux is running on the Hirschmann router, so it is a simple example to configure. UM Configuration OWL LTE M12...
Page 234
In the Linux system, run the terminal and create the other side of the GRE tunnel in the following way: First, verify the Linux kernel module allowing the GRE tunnel is present. You can do this by running these commands on the Hirschmann OWL Router: Command $ sudo modprobe ip_gre UM Configuration OWL LTE M12 Release 01.2.02 Rev.
Page 235
For shutting down or deleting the GRE interface, use these commands: Command $ sudo ip link set gre1 down $ sudo ip tunnel del gre1 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The mentioned commands are used in the Hirschmann router (for example, using an SSH command line access), since the Linux OS is running on the Hirschmann routers and the ip program is available on these routers (see Commands and Scripts Application Note).
Page 237
GRE Protocol 4.2 GRE Configuration Examples Figure 130:Hirschmann router – GRE tunnel configuration Log into the console of the Cisco router (for example, using the telnet or serial line) and enter into the configuration terminal and type the config terminal command.
Page 238
Hirschmann router using GRE tunnel – to the 10.20.30.2 address and vice versa). To verify the GRE encapsulation, you can, for example, from the Cisco router’s console, log in to the Hirschmann router using SSH (ssh admin@10.20.30.2) and run there the tcpdump program for packet analysis.
GRE over IPsec tunnel Example of creating the GRE tunnel inside of the IPsec tunnel between the two Hirschmann routers is shown here. This secured (encrypted) connection is used to transport the routing information (protocols) between the networks. Figure 132:Topology of the GRE over IPsec example For GRE over IPsec, make sure the IPsec connection is established and also GRE tunnel is set up on both the routers.
Page 240
GRE Protocol 4.2 GRE Configuration Examples Figure 133:Router A – IPsec configuration (IPsec item in the Customization section) UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 241
GRE Protocol 4.2 GRE Configuration Examples Figure 134:Router A – GRE configuration UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 242
GRE Protocol 4.2 GRE Configuration Examples Figure 135:Router B – IPsec configuration (IPsec item in the Customization section) UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 243
GRE tunnel. When writing in the console of router A, the tcpdump program on the router B captures the encrypted ESP packets. The communication is running using the GRE tunnel and is IPsec encrypted. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 244
GRE Protocol 4.2 GRE Configuration Examples Figure 138:Router B – ESP packets captured by tcpdump program UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
After establishing a connection with the router through a serial interface or an Ethernet it is possible to use AT commands to work with SMS messages. This application not only lists commands that Hirschmann Automation and Control GmbH routers support. For other AT commands, the router sends an OK response.
CTRL+Z key combination. Transmitting the message takes some time. You can deactivate the SMS writing function by pressing the Esc key. Command Action AT-CMGS=”465717171” Enter >Hello World! CTRL+Z (shortcut key) UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
If the status of a message is “received unread”, once the AT+CMGR command retrieves it, the status changes to “received read”. Each message is displayed in this form (parameters are described in the previous command): UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
For SIM card, use “SM”. Expected response is a string in the following form: +CPMS: <used1>,<max1>,<used2>,<max2>,<used3>,<max3>, where the used items indicate the number of messages currently in this memory, the max items indicate the number of messages that are stored. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The AT+CSCS= <set> command changes the character set. If this command is in the form “AT+CSCS=?”, the response is a list of supported character sets. Command Action AT+CSCS=? Enter +CSCS: (“GSM”,”IRA”,’HEX”) UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
CREG: <n>, <stat>, where <n> corresponds to one of the following values: 0 – disable network registration unsolicited result code 1 – enable network registration unsolicited result code UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
0 or 99 according to the SIM card. If this error rate is measured, its value is from 0 to 7. Command Action AT+CSQ=1 Enter +CSQ: 28,99 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
+CGMM: “UCR11 V2” 5.1.14 AT+CGMM See the previous command AT+CGMM… 5.1.15 AT+GSN The AT+GSN command returns the device to the product serial number. Command Action AT+GSN Enter +GSN: “5700001” UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The value of this parameter starts at zero (0 corresponds to AT+GMM). 5.1.18 AT+CGPADDR The command AT+CGPADDR displays the IP address of the ppp0 interface. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The AT+CMSS command sends a message from a SIM storage location value <index>. The location corresponds to the value that is returned by AT+CMGW command. The response is a reference value. Command Action AT+CMSS=2 Enter +CMSS: 12 UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
2 – numeric format Command Action AT+COPS? Enter +COPS: 0,0,”02 - CZ” 5.1.22 AT+GMI The AT+GMI command returns the device to the manufacturer specific identity. Command Action AT+GMI Enter +GMI: HIRSCHMANN UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
See the previous command AT+GMI… 5.1.24 AT+GMR The AT+GMR command returns the device to the manufacturer specific model revision identity. 5.1.25 AT+CGMR See the previous command AT+GMR… 5.1.26 AT+CGSN See the command AT+CGSN… UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Returns the manufacturer specific model revision identity AT+GSN Returns the product serial number Determines whether or not the device echoes characters Transmits the manufacturer specific information about the device Table 137:List of AT commands UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
So it is obvious that there is a tree structure. It is stored in the MIB (Management Information Base) that contains names and descriptions of the numeric identifiers. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 260
For more information see section 1.5 .1.3.6.1.2.1.6 For more information see section 1.6 .1.3.6.1.2.1.7 For more information see section 1.7 .1.3.6.1.2.1.8 Not supported by OWL routers Table 138:Basic groups UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 261
Not supported by OWL routers Table 138:Basic groups An example of OID value can be.1.3.6.1.2.1.4. This value corresponds to the text version of the MIB iso.org.dod.internet.mgmt.mib-2.ip (provides information about IP addresses). UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
If it is unknown, the value is a zero- length string. .1.3.6.1.2.1.1.7 sysServices A value which indicates the set of services that this entity primarily offers. .1.3.6.1.2.1.8 Not supported by Hirschmann routers Table 139:System UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Table 140:Interfaces IfTable is the parent element for a group ifEntry (OID.1.3.6.1.2.1.2.2.1). This group includes scalar objects that store information relating to a particular interface. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 264
(for example, the lack of buffer space). Note that this counter would include datagrams counted in ipForwDatagrams if any such packets met this (discretionary) discard criterion. Table 141:IP UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 265
The IP Address Translation table used for mapping from IP addresses to physical addresses. .1.3.6.1.2.1.4.23 ipRoutingDiscards The number of routing entries that are selected to discard even though they are valid. Table 141:IP UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
The number of ICMP Destination Unreachable messages sent. .1.3.6.1.2.1.5.17 icmpOutTimeExcds The number of ICMP Time Exceeded messages sent. .1.3.6.1.2.1.5.18 icmpOutParmProbs The number of ICMP Parameter Problem messages sent. Table 142:ICMP UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 267
The number of ICMP Timestamp Reply messages sent. .1.3.6.1.2.1.5.25 icmpOutAddrMasks The number of ICMP Address Mask Request messages sent. .1.3.6.1.2.1.5.26 icmpOutAddrMaskReps The number of ICMP Address Mask Reply messages sent Table 142:ICMP UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
.1.3.6.1.2.1.6.11 tcpOutSegs The total number of segments sent, including those on current connections but excluding those containing only retransmitted octets. Table 143:TCP UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 269
It is a table containing information about existing TCP connections and TCP listeners. This table is considered to be outdated and now is usually replaced by the tcpConnectionTable and tcpListenerTable tables. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
UDP listener. There are two scalar objects udpLocalAddress (.1.3.6.1.2.1.7.5.1.1) and udpLocalPort (.1.3.6.1.2.1.7.5.1.2). The first gives the local address for UDP listener and the second gives the local port number for UDP listener. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
MAC Address 12-digit hexadecimal number in accordance with ISO/IEC 8802-3 Object identifier x.x.x.x… (e.g. 1.3.6.1.4.1.248...) Octet string ASCII character string PSID Power supply identifier (number of the power supply unit) UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 272
Time value = integer in range 0-2 Type field 4-digit hexadecimal number in accordance with ISO/IEC 8802-3 32-1 Counter Integer (0-2 ), whose value is increased by 1 when certain events occur. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Sample settings and readout: 8 Sample settings and readout: Figure 141:Example of SNMP configuration UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 276
OIDs in the MIB tree. To display the state of object identifier, enter the OID number. The path to objects is: iso.org.dod.internet.private.enterprises.hirschmann.protocols The path to basic information about the router is: iso.org.dod.internet.mgmt.mib-2.system UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
After opening the appropriate file the following dialog is displayed. Procedures described in this manual require the installation file version 2.2.2 or older. Newer versions do not include easy-rsa directory. Figure 143:Installation of OpenVPN – basic information UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 278
The next dialog that opens allows you to select the components of the OpenVPN program that you want to include in installation. See figure 144 on page 278. Figure 144:Installation of OpenVPN - license agreement UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 279
Using the “Browse” button, navigate to the appropriate directory. Start the installation, click the “Install” button and wait for the process to be completed. Click the “Next” button. Click the “Finish” button. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Page 280
Installation of OpenVPN (Windows) Figure 146:Installation of OpenVPN – location UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
General Information Technical Data B.2 Technical Data You will find the technical data in the document “User Manual Installation”. UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Hirschmann is continually working on improving and developing their software. Check regularly whether there is an updated version of the software that provides you with additional benefits. You find information and software downloads on the Hirschmann product pages on the Internet (http:/ /www.hirschmann.com).
Page 286
General Information Maintenance UM Configuration OWL LTE M12 Release 01.2.02 Rev. 01 - 06/2018...
Further support D Further support Technical questions For technical questions, please contact any Hirschmann dealer in your area or Hirschmann directly. You find the addresses of our partners on the Internet at http:// www.hirschmann.com. A list of local telephone numbers and email addresses for technical support...
Need help?
Do you have a question about the OWL LTE M12 and is the answer not in the manual?
Questions and answers