The names of the programs as well as all copyrights relating to the programs are the sole property of Viola Systems. Any transfer, licensing to a third party, leasing, renting, transportation, copying, editing, translating, modifying into another programming language or reverse engineering for any intent is forbidden without the written consent of Viola Systems.
Manufacturer’s Address: Lemminkäisenkatu 14-18 A FI-20520 Turku Finland declares that this product: Product Name: Viola M2M Gateway Enterprise Edition conforms to the following standards: EMC: EN 55022 Emission Test (Class A) 1. Radiated Emissions (30-1000MHz) 2. Conducted Emissions (0.15-30MHz) EN 50082-1 Immunity Test 1.
User Manual Viola M2M Gateway Enterprise Edition Revisions Date Document Firmware Description of Changes Version Version 10/2010 Manual released Firmware Version 2.4 Document Version 3.0...
VPN connection between M2M Gateway and Arctic device. Arctics have a WWW user interface which can be used to configure them using a HTML browser. For the rest of this documentation, the Viola M2M Gateway is referred as M2M Gateway. 1.2 M2M Gateway Features The M2M Gateway offers different advanced features for network usage.
Figure 2. M2M Gateway front panel 1.4.2 Back Panel The M2M Gateway has power connector on the right side of the back panel. Ethernet interfaces are located in the left side of the back panel. See Figure 4 for connector locations. Depending on the network configuration only one of them or both are used.
2.1 Connection Principle Company Intranet is normally connected to Internet via firewall. Figure 6 shows the M2M Gateway connected to the Demilitarized Zone (DMZ) of the firewall. This configuration allows hosts from Company Intranet to connect via firewall to the M2M Gateway. Other configurations are also possible.
SSH connections are required to have access to DMZ zone. Services other than SSH are optional. If the M2M Gateway is located in the DMZ and it has a private IP address, the firewall has to support port forwarding or destination network address translation (DNAT).
If a firewall or network configuration does not allow the use of a DMZ or only few host has to have access to the M2M Gateway, the second Ethernet can be used. The second Ethernet of the M2M Gateway can be enabled from the Webmin configuration interface.Web user interface..
Viola M2M Gateway (laptop IP for example 10.10.10.11 with netmask 255.0.0.0). Check with ping command. 3. Connect to the Viola M2M Gateway using your web browser. The default IP address of Viola M2M Gateway is 10.10.10.10 (netmask 255.0.0.0). Note that you have to connect to a HTTPS port 10000 (see figure 8).
Page 16
User Manual Viola M2M Gateway Enterprise Edition 6. Now you should be logged in a see a main configuration menu. Icons on the blue background are primary navigation icons and they are always visible on the screen. Icons lower are secondary navigation icons and clicking them allows the user to change the specific settings they represent.
Page 17
The existing web browser connection hangs up after you apply the settings, so open a new connection to the new IP address (check your Ethernet cabling) 12. Now you should be able to connect to the M2M Gateway with your new IP address.
User Manual Viola M2M Gateway Enterprise Edition 4 Network Configuration This chapter describes how to configure network interfaces on M2M Gateway. 4.1 Configuration screens Network configuration screens can be found from main menu and pressing Network Configuration icon. Figure 13. Network Configuration Menu...
VPN implementation on M2M Gateway requires: ■ Open port in firewall for selected VPN server port ■ Fixed IP address for M2M Gateway accessible from public Internet or used ■ Remote client to connect to M2M Gateway (most commonly Viola Arctic product) ■...
Figure 16. Typical network setup with routing The basic rules explained in the previous example are valid also in this example. Please take some time to browse the user interfaces of both M2M Gateway and Arctic to become familiar with the settings Firmware Version 2.4...
Page 21
Select routing mode to Tunnel the following network. IP address and netmask is the address that is located in the opposite side of the tunnel. For example, on Arctic set IP address to be the address that is assigned to the eth1 of M2M Gateway and vice versa.
Viola M2M Gateway Enterprise Edition 6 SSH-VPN Configuration This chapter describes how to use SSH-VPN module on Viola M2M Gateway. 6.1 Introduction to SSH-VPN SSH-VPN uses SSH keys and remote nodes hostname to authenticate and validate remote connections. It is the default VPN for Viola Arctic products.
Gateway to separate web browser windows. 6. On the Arctic, navigate to Network->SSH-VPN page. 7. Copy key from Arctic to M2M (see figure 6.4). 8. Select correct peer from list on M2M, paste Arctic key below and press Enter key button. Firmware Version 2.4...
3. Results for individual peers can be seen on Check column on peer list. Note! Peer interface tells which interface is assigned to a peer. It is a local interface on M2M Gateway and it can not be used to determine the current connection status. 6.5 Finalising SSH-VPN setup After all the peers have been configured, do the following: Firmware Version 2.4...
Default port for SSH is 22. It is recommended to change this to something less common to increase system security. Changing SSH port on M2M Gateway is done by entering new port to a configuration field located in the bottom of the SSH-VPN configuration screen and pressing Change port button.
User Manual Viola M2M Gateway Enterprise Edition 7 L2TP-VPN Configuration 7.1 Introduction to L2TP-VPN L2TP-VPN uses username and password to authenticate and validate remote connections. It is available on Viola Arctic products. 7.2 L2TP-VPN configuration screen Configuration screen is shown in figure 22.
User Manual Viola M2M Gateway Enterprise Edition 11.Status (Active or Inactive) 12.Status (Active or Inactive) 13.Enable/Disable button 14.Edit button 15.Remove button 7.3 Creating new connection To create new connection: 1. From the L2TP-VPN configuration screen, select Add peer button. 2. Fill in the settings for the tunnel. For simple point-to-point tunnel only peer name and IP pair are needed.
Note! It is not recommended to use M2M Gateway without firewall turned on if connected to any public network. For more detailed explanation about firewall configuration, refer to application note Configuring Viola M2M Gateway firewall.
Viola M2M Gateway Enterprise Edition 1. Login to M2M Gateway and enter the web user interface main menu. 2. From the top icon row on the blue background, select Networking icon. 3. From the Networking page select Linux Firewall icon.
Viola M2M Gateway Enterprise Edition 1. Login to M2M Gateway and enter the web user interface main menu. 2. From the top icon row on the blue background, select System icon. 3. From the System page select System Time icon.
Edition Figure 30. Backup Screen 9.4.2 Creating backups From the first page select Viola M2M Backup icon and press create backup button to create a backup file. When the backup is created succesfully, a notification text appears. Figure 31. Backup created message 9.4.3 Restoring backups...
9.5 System logs To reach the system logs: 1. Login to M2M Gateway and enter the web user interface main menu. 2. From the top icon row on the blue background, select System icon. 3. From the System page select System Logs icon.
User Manual Viola M2M Gateway Enterprise Edition Figure 34. Supportlog Screen 9.7 Factory default settings Factory default settings can be restored by selecting factoryBackup from backup restore selection screen. See section 9.4. Firmware Version 2.4 Document Version 3.0...
User Manual Viola M2M Gateway Enterprise Edition 10 Advanced settings These configuration options are targeted for advanced users only. Under normal operation, these should not be changed. 10.1 Command Line Shell The Connection status displayed on SSH-VPN page does not update automatically, it has to be updated manually and the current status needs to be checked.
Page 36
User Manual Viola M2M Gateway Enterprise Edition Figure 37. Others Menu Firmware Version 2.4 Document Version 3.0...
Q: From Arctic Ethernet connection to M2M Gateway Ethernet is not working? A: Check that IP forwarding has been enabled on Arctic. Q: If only one public IP is available, can the M2M Gateway be used? A: Yes, if firewall connected to public IP can forward incoming SSH connections to the M2M Gateway.
Your sole and exclusive remedy for a covered defect is repair or replacement of the defective product, at Viola Systems’ sole option and expense, and Viola Systems may use new or refurbished parts or products to do so. If Viola Systems is unable to repair or replace a defective product, your alternate exclusive remedy shall be a refund of the original purchase price.
Need help?
Do you have a question about the M2M and is the answer not in the manual?
Questions and answers