Viola Systems M2M User Manual

Enterprise edition
Hide thumbs Also See for M2M:

Advertisement

Quick Links

Viola M2M Gateway Enterprise Edition User
Manual
Viola M2M Gateway Enterprise Edition (2505)
Firmware Version 2.4
Document Version 3.0
October 2010

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the M2M and is the answer not in the manual?

Questions and answers

Subscribe to Our Youtube Channel

Summary of Contents for Viola Systems M2M

  • Page 1 Viola M2M Gateway Enterprise Edition User Manual Viola M2M Gateway Enterprise Edition (2505) Firmware Version 2.4 Document Version 3.0 October 2010...
  • Page 2: Copyright And Trademark

    Edition Copyright and Trademark Copyright © 2008-2010, Viola Systems Ltd. All rights to this manual are owned solely by Viola Systems Ltd. (referred elsewhere in this User’s Manual as Viola Systems). All rights reserved. No part of this manual may be transmitted or reproduced in any form or by any means without a prior written permission from Viola Systems.
  • Page 3: Disclaimer

    The names of the programs as well as all copyrights relating to the programs are the sole property of Viola Systems. Any transfer, licensing to a third party, leasing, renting, transportation, copying, editing, translating, modifying into another programming language or reverse engineering for any intent is forbidden without the written consent of Viola Systems.
  • Page 4: Declaration Of Conformity

    Manufacturer’s Address: Lemminkäisenkatu 14-18 A FI-20520 Turku Finland declares that this product: Product Name: Viola M2M Gateway Enterprise Edition conforms to the following standards: EMC: EN 55022 Emission Test (Class A) 1. Radiated Emissions (30-1000MHz) 2. Conducted Emissions (0.15-30MHz) EN 50082-1 Immunity Test 1.
  • Page 5: Warranty And Safety Instructions

    Viola Systems manufactured hardware or software could lead directly to death, personal injury, or severe physical or environmental damage.
  • Page 6: Revisions

    User Manual Viola M2M Gateway Enterprise Edition Revisions Date Document Firmware Description of Changes Version Version 10/2010 Manual released Firmware Version 2.4 Document Version 3.0...
  • Page 7: Table Of Contents

    Contents COPYRIGHT AND TRADEMARK ..................2 DISCLAIMER..........................3 DECLARATION OF CONFORMITY..................4 WARRANTY AND SAFETY INSTRUCTIONS...............5 REVISIONS..........................6 1. INTRODUCTION....................... 9 About Viola M2M Gateway....................9 M2M Gateway Features......................9 Packaging information......................10 Hardware description......................10 1.4.1 Front panel......................10 1.4.2 Back Panel......................10 1.4.3...
  • Page 8 User Manual Viola M2M Gateway Enterprise Edition 9. ADDITIONAL SYSTEM CONFIGURATION..............29 Changing system password....................29 Firewall..........................29 9.2.1 Firewall configuration screen.................. 29 9.2.2 Changing firewall rules....................30 Date and time........................30 9.3.1 Manual configuration....................31 9.3.2 Automatic configuration with NTP................31 Backup..........................31 9.4.1...
  • Page 9: Introduction

    VPN connection between M2M Gateway and Arctic device. Arctics have a WWW user interface which can be used to configure them using a HTML browser. For the rest of this documentation, the Viola M2M Gateway is referred as M2M Gateway. 1.2 M2M Gateway Features The M2M Gateway offers different advanced features for network usage.
  • Page 10: Packaging Information

    Figure 2. M2M Gateway front panel 1.4.2 Back Panel The M2M Gateway has power connector on the right side of the back panel. Ethernet interfaces are located in the left side of the back panel. See Figure 4 for connector locations. Depending on the network configuration only one of them or both are used.
  • Page 11: Product Label

    User Manual Viola M2M Gateway Enterprise Edition 1. PCI Express expansion 2. PCI Express expansion 3. Power supply, bay #2 *) 4. Power supply, bay #1 *) 5. NIC 2 (eth1) *) 6. NIC 2 (eth1) *) 7. Keyboard ps2 connector 8.
  • Page 12: Network Requirements

    2.1 Connection Principle Company Intranet is normally connected to Internet via firewall. Figure 6 shows the M2M Gateway connected to the Demilitarized Zone (DMZ) of the firewall. This configuration allows hosts from Company Intranet to connect via firewall to the M2M Gateway. Other configurations are also possible.
  • Page 13: Routing Setup

    SSH connections are required to have access to DMZ zone. Services other than SSH are optional. If the M2M Gateway is located in the DMZ and it has a private IP address, the firewall has to support port forwarding or destination network address translation (DNAT).
  • Page 14: Using The Second Ethernet Port

    If a firewall or network configuration does not allow the use of a DMZ or only few host has to have access to the M2M Gateway, the second Ethernet can be used. The second Ethernet of the M2M Gateway can be enabled from the Webmin configuration interface.Web user interface..
  • Page 15: Quick Installation

    Viola M2M Gateway (laptop IP for example 10.10.10.11 with netmask 255.0.0.0). Check with ping command. 3. Connect to the Viola M2M Gateway using your web browser. The default IP address of Viola M2M Gateway is 10.10.10.10 (netmask 255.0.0.0). Note that you have to connect to a HTTPS port 10000 (see figure 8).
  • Page 16 User Manual Viola M2M Gateway Enterprise Edition 6. Now you should be logged in a see a main configuration menu. Icons on the blue background are primary navigation icons and they are always visible on the screen. Icons lower are secondary navigation icons and clicking them allows the user to change the specific settings they represent.
  • Page 17 The existing web browser connection hangs up after you apply the settings, so open a new connection to the new IP address (check your Ethernet cabling) 12. Now you should be able to connect to the M2M Gateway with your new IP address.
  • Page 18: Network Configuration

    User Manual Viola M2M Gateway Enterprise Edition 4 Network Configuration This chapter describes how to configure network interfaces on M2M Gateway. 4.1 Configuration screens Network configuration screens can be found from main menu and pressing Network Configuration icon. Figure 13. Network Configuration Menu...
  • Page 19: Vpn Connectivity

    VPN implementation on M2M Gateway requires: ■ Open port in firewall for selected VPN server port ■ Fixed IP address for M2M Gateway accessible from public Internet or used ■ Remote client to connect to M2M Gateway (most commonly Viola Arctic product) ■...
  • Page 20: Typical Connection Scheme With Routing

    Figure 16. Typical network setup with routing The basic rules explained in the previous example are valid also in this example. Please take some time to browse the user interfaces of both M2M Gateway and Arctic to become familiar with the settings Firmware Version 2.4...
  • Page 21 Select routing mode to Tunnel the following network. IP address and netmask is the address that is located in the opposite side of the tunnel. For example, on Arctic set IP address to be the address that is assigned to the eth1 of M2M Gateway and vice versa.
  • Page 22: Ssh-Vpn Configuration

    Viola M2M Gateway Enterprise Edition 6 SSH-VPN Configuration This chapter describes how to use SSH-VPN module on Viola M2M Gateway. 6.1 Introduction to SSH-VPN SSH-VPN uses SSH keys and remote nodes hostname to authenticate and validate remote connections. It is the default VPN for Viola Arctic products.
  • Page 23: Creating New Connection

    Gateway to separate web browser windows. 6. On the Arctic, navigate to Network->SSH-VPN page. 7. Copy key from Arctic to M2M (see figure 6.4). 8. Select correct peer from list on M2M, paste Arctic key below and press Enter key button. Firmware Version 2.4...
  • Page 24: Checking Connection

    3. Results for individual peers can be seen on Check column on peer list. Note! Peer interface tells which interface is assigned to a peer. It is a local interface on M2M Gateway and it can not be used to determine the current connection status. 6.5 Finalising SSH-VPN setup After all the peers have been configured, do the following: Firmware Version 2.4...
  • Page 25: Editing Existing Connection

    Default port for SSH is 22. It is recommended to change this to something less common to increase system security. Changing SSH port on M2M Gateway is done by entering new port to a configuration field located in the bottom of the SSH-VPN configuration screen and pressing Change port button.
  • Page 26: L2Tp-Vpn Configuration

    User Manual Viola M2M Gateway Enterprise Edition 7 L2TP-VPN Configuration 7.1 Introduction to L2TP-VPN L2TP-VPN uses username and password to authenticate and validate remote connections. It is available on Viola Arctic products. 7.2 L2TP-VPN configuration screen Configuration screen is shown in figure 22.
  • Page 27: Creating New Connection

    User Manual Viola M2M Gateway Enterprise Edition 11.Status (Active or Inactive) 12.Status (Active or Inactive) 13.Enable/Disable button 14.Edit button 15.Remove button 7.3 Creating new connection To create new connection: 1. From the L2TP-VPN configuration screen, select Add peer button. 2. Fill in the settings for the tunnel. For simple point-to-point tunnel only peer name and IP pair are needed.
  • Page 28: Openvpn Configuration

    User Manual Viola M2M Gateway Enterprise Edition 8 OpenVPN Configuration Please refer to Viola Systems' OpenVPN application note. Firmware Version 2.4 Document Version 3.0...
  • Page 29: Additional System Configuration

    Note! It is not recommended to use M2M Gateway without firewall turned on if connected to any public network. For more detailed explanation about firewall configuration, refer to application note Configuring Viola M2M Gateway firewall.
  • Page 30: Changing Firewall Rules

    Viola M2M Gateway Enterprise Edition 1. Login to M2M Gateway and enter the web user interface main menu. 2. From the top icon row on the blue background, select Networking icon. 3. From the Networking page select Linux Firewall icon.
  • Page 31: Manual Configuration

    Viola M2M Gateway Enterprise Edition 1. Login to M2M Gateway and enter the web user interface main menu. 2. From the top icon row on the blue background, select System icon. 3. From the System page select System Time icon.
  • Page 32: Creating Backups

    Edition Figure 30. Backup Screen 9.4.2 Creating backups From the first page select Viola M2M Backup icon and press create backup button to create a backup file. When the backup is created succesfully, a notification text appears. Figure 31. Backup created message 9.4.3 Restoring backups...
  • Page 33: System Logs

    9.5 System logs To reach the system logs: 1. Login to M2M Gateway and enter the web user interface main menu. 2. From the top icon row on the blue background, select System icon. 3. From the System page select System Logs icon.
  • Page 34: Factory Default Settings

    User Manual Viola M2M Gateway Enterprise Edition Figure 34. Supportlog Screen 9.7 Factory default settings Factory default settings can be restored by selecting factoryBackup from backup restore selection screen. See section 9.4. Firmware Version 2.4 Document Version 3.0...
  • Page 35: Advanced Settings

    User Manual Viola M2M Gateway Enterprise Edition 10 Advanced settings These configuration options are targeted for advanced users only. Under normal operation, these should not be changed. 10.1 Command Line Shell The Connection status displayed on SSH-VPN page does not update automatically, it has to be updated manually and the current status needs to be checked.
  • Page 36 User Manual Viola M2M Gateway Enterprise Edition Figure 37. Others Menu Firmware Version 2.4 Document Version 3.0...
  • Page 37: Troubleshooting

    Q: From Arctic Ethernet connection to M2M Gateway Ethernet is not working? A: Check that IP forwarding has been enabled on Arctic. Q: If only one public IP is available, can the M2M Gateway be used? A: Yes, if firewall connected to public IP can forward incoming SSH connections to the M2M Gateway.
  • Page 38: Specifications

    User Manual Viola M2M Gateway Enterprise Edition 12 Specifications Table 3: Technical specifications Processor Intel Celeron 2.5GHz Memory 512Mb Hard Drive 80Gb Input voltage 100-240VAC (5A max) Casing Metal 19in rack mountable Operating temperature 0 to 45 C Storage temperature...
  • Page 39: Limited Warranty

    Your sole and exclusive remedy for a covered defect is repair or replacement of the defective product, at Viola Systems’ sole option and expense, and Viola Systems may use new or refurbished parts or products to do so. If Viola Systems is unable to repair or replace a defective product, your alternate exclusive remedy shall be a refund of the original purchase price.
  • Page 40: Technical Support

    User Manual Viola M2M Gateway Enterprise Edition 14 Technical Support Contacting Technical Support Phone: +358 20 1226 226 Fax: +358 20 1226 220 E-mail: support@violasystems.com Internet: http://www.violasystems.com Recording Arctic Information Before contacting our Technical Support staff, please record (if possible) the...

Table of Contents