Table of contents General information......................Short description....................... Scope of delivery ...................... Target group ......................Intended use ......................Safety........................Abbreviations ......................System overview........................Range of functions....................Dimensions of the housing ..................Electronic assembly units ..................Mounting the Gateway......................Connecting the Gateway ..................... Initial operation ........................
1 General information 1 General information 1.1 Short description The IF-4041 Gateway offers maximum security for the seamless connection of Opendor wireless locking components to the IF-6040 access control system. With over-the-air technology, every door becomes an online door. The Gateway is an ideal solution for cost-effective, uncomplicated and wireless compliance with current security standards for a wide range of applications.
1 General information Any other use is not in accordance with the intended purpose and therefore not permitted. Modifications to the device are not permitted. 1.5 Safety WARNING Danger to life due to electric shock People can be seriously hurt or killed through physical contact with live parts (e.g. 230 V~). Make sure that you cannot touch live lines during installation.
2 System overview IEEE Institute of Electrical and Electronics Engineers NC contact Normally closed contact NO contact Normally open contact Power over Ethernet RFID Radio-Frequency Identification Shield Secure shell 2 System overview 2.1 Range of functions Main functions of the IF-4041 Gateway: Certificate-based encryption from the terminal via the Gateway to the host Grant or withdraw access permissions online in real time No cabling to end device required...
3 Mounting the Gateway 2.3 Electronic assembly units Connection for serial DIP switches Reset button service cable USB connection for dongle Power supply without PoE RJ45, Ethernet 10/100 of IF-ServiceApp 3 Mounting the Gateway NOTICE Damage due to the manipulation of the gateway Manipulation of the gateway can lead to data loss.
4 Connecting the Gateway 1. Open the lid of the housing. 2. Cable duct, surface-mounted: Use a saw to cut open the ribs on the bottom shell of the housing on both sides and break the web out and rework any sharp-edged parts with a file. 3.
5 Initial operation 5 Initial operation The IF-4041 Gateway is part of the Controller product family. That is why the term Controller is used in this section and in the following sections. Prerequisites ü Service IF6040 Pki Service installed ü...
5 Initial operation 4. Check and adjust parameters 5. Start communication with Open 6. Log in with username fieldservice 7. Specify a password Details on valid password requirements and how to change a password can be found underUsers and passwords [} 14].
5 Initial operation Detailed information on this subject can be found in the IF-6040 documentation 5.3 Registering the controller Prerequisites ü PKI certificate installed and configured IF-ServiceApp To register the controller: 1. Use the USB cable to connect the dongle to the USB port of the controller The IF-ServiceApp is connected to the controller.
6 Further information for initial operation 3. Logging to the controller 4. Enter the serial number in the ble-node-list.json file in the /mnt/app folder 5. Reset the controller with facory-reset application-restart Connecting devices with IF-6040 1. “Wake up” the component by means of a booking 2.
Page 13
6 Further information for initial operation Restart application 1. Set switches: 2. Shortly press the Reset button 3. Wait until the RUN LED lights up again (procedure can take up to 30 seconds) Associated console command: factory-reset reboot Cold boot All settings made on the controller via IF-6040 or OC Task are deleted or reset to default.
6 Further information for initial operation For initial operation, the controller can then only be accessed via a serial console or the IF- ServiceApp. 1. Set switches: 2. Shortly press the Reset button 3. Wait until the RUN LED lights up again (procedure can take up to 30 seconds) 4.
Page 15
6 Further information for initial operation Name conventions The log files of both services are named according to the following convention: <service-name>-<controller-hostname>.log In the factory state, the host name corresponds to the controller’s serial number. Changes to the host name are only adopted in the file name of the log files after the services have been restarted.
Page 16
6 Further information for initial operation Examples Command Result Shows last xx entries of the cloudreadyd service showlog -n xx Shows last xx entries of the service-app-mgr service showlog -s -n xx Open a specific log file Opens the xx-th backup of the cloudreadyd service showlog -v xx Opens the xx-th backup of the service-app-mgr service showlog -s -v xx...
6 Further information for initial operation 6.4 Checking and setting network parameters The DHCP (dynamic IP address) option is set by default. With the nmcli-wrapper tool, you can set the Static IP option. The nmcli-wrapper -? command lists the call parameters of the nmcli-wrapper command: ...
6 Further information for initial operation 8. No IPv4 search domain used, therefore: 9. IPv4 search domain []: (r)emove/(e)dit? r 10. Enter the host name or accept suggestion with [Enter] To apply the settings: Restart the controller - or – Enter nmcli-wrapper -r <connection name>...
6 Further information for initial operation Via configuration editor: For delivery of registration data, even via email: Connection data to the SMTP server (not included in if6040.applicationserver scope of delivery). .exe_custom.config (**) (*) In the installation folder of both NoM services, e.g. c:\Program Files\Interflex\IF6040\CommunicationSecurity\...
Page 20
6 Further information for initial operation New custom system certificate Path for exporting the new customer system certificate, directory e.g. for a later import after relocating the computer Computer name Name of the computer with IF6040 Pki Service service. Complete domain name (FQDN). Is later automatically added to a field of the derived customer system certificate.
Page 21
6 Further information for initial operation With regard to New TLS certificate name: The character string that comes before the name is automatically placed in front of the name. With regard to New TLS certificate directory: Required for the subsequent import on the TLS server.
6 Further information for initial operation Checking certificates 1. Select the SubjectType=EndEntity setting in the derived customer system certificate (TLS) with Basic constraints 2. Check certificate chain (six certificates): 6.7 Configuring PKI and TLS The files for both IF6040 Pki Service and IF6040 Tls Proxy services are located in the IF6040\CommunicationSecurity\...
Page 23
6 Further information for initial operation C:\Program Files\Interflex\IF6040\CommunicationSecurity\... (even if you chose the suggested 32-bit path during installation). Configuration Configuring the TLS service Use the file IFTls.exe_custom.config on the TLS server. Pay attention to the comments in the configuration file. Certificates 1.
7 Technical specifications Configuring the PKI service Use the file IFPki.exe_custom.config on the PKI server computer. Pay attention to the comments in the configuration file. 1. Enter the required certificate names Replace the DummyName entry in case of newly installed files 2.
Need help?
Do you have a question about the interflex IF-4041 and is the answer not in the manual?
Questions and answers