The names of the programs as well as all copyrights relating to the programs are sole property of Viola Systems. Any transfer, licensing to a third party, leasing, renting, transportation, copying, editing, translating, modifying into another programming language or reverse engineering for any intent is forbidden without the written consent of Viola Systems.
Viola M2M Gateway User's Manual Warranty and Safety Instructions Read these safety instructions carefully before using the product: Warranty will be void, if the product is used in any way, which is in contradiction with the instructions given in this manual, or if the product has been tampered with.
Only a computer with network connection and a HTML browser is required to configure the Viola M2M Gateway. Using the Viola M2M Gateway Webmin user interface you can configure and view the status of the remote Arctic devices and configure the VPN connection between Viola M2M Gateway and Arctic device.
M2M Gateway can forward packets to local Ethernet (eth0) which it is connected to company network. Also it is possible to route packets to second Ethernet (eth1) of M2M Gateway. More complex routing solutions can be made but they need consultation of your local network administrator.
2. Network Requirements 2. Network Requirements To work properly M2M Gateway requires the parameters described in this chapter to be configured. For your network settings contact your local network administrator. Note: Misconfiguration of the M2M Gateway can seriously hinder your network. Make sure you verify your network configuration with local network administrator.
M2M Gateway and devices behind it. This means that for example local firewall to router needs to be aware of routes going via the M2M Gateway. Routing can be complex to setup in large networks and it is recommend to consult local network administrator also about routing.
Gateway. Only incoming SSH connections are required to have access to DMZ zone. Services other than SSH are optional. If the M2M Gateway is located in the DMZ and it has a private IP address the firewall has to support port forwarding or destination network address translation (DNAT). For firewall configuration please refer to your firewall documentation or to your local network administrator.
Gateway can be enabled from the Webmin configuration interface. The IP address of the second Ethernet of the M2M Gateway is then used as the default gateway for the devices connected to the second Ethernet port. This configuration is relatively easy to setup and it is the easiest way of setting up the M2M Gateway.
Figure 3. M2M Gateway front panel 3.2. Back Panel The M2M Gateway has power connector on the right side of the back panel. Ethernet interfaces are located in the left side of the back panel. See Figure 4 for connector locations. Depending on the network configuration only one of them or both are used.
Power connector is standard 3 pin IEC inlet. Nominal input voltage is 110-230V. Power switch is lit when power is on. To turn off the M2M Gateway, change switch position from 1 to 0. Note: Always remember to shut down the operating system before switching off the power, as data losses or corruption might occur if the system is not shut down properly.
4. Getting started 4. Getting started This chapter aims to give the necessary information to get the M2M Gateway device to fully working condition. It is assumed that you have already gathered up the necessary networking parameters for your specific networking environment, such as IP addressing and firewall issues. Look at the chapter 2 for network requirements and Chapter 7 for examples how the device could be connected and what would be the best configuration for your specific case.
Page 15
= 0.172/0.201/0.240/0.030 ms, pipe 2 [anon@ymous anon]$ If necessary, adjust your network settings so that the address 10.10.10.10 is accessible. After you have a working connection to M2M Gateway, use your favorite HTML browser to connect to Webmin configuration interface by entering address http://10.10.10.10:10000 to address bar.
To connect to M2M Gateway, use HTML browser and address http://<ip_address>:10000 to log in to M2M Gateway. Webmin uses port 10000 so it is necessary to include it to the address while connecting. If port number is omitted, the browser will try the default port 80 and won't be able to connect.
ICMP echo Use SSH-VPN Enables and disables the VPN operation of Arctic Tunnel Server IP The M2M Gateway public IP Address for eth0 interface where Arctic makes the VPN connection Routing Mode Selects the type of routing none, network or Proxy ARP Remote Network IP IP address of remote network to be routed If ”Routing Mode”...
Both of these keys can be copy&pasted from WWW user interface. The ”Server SSH Key Entry” can also be received via HTTP protocol if the M2M Gateway HTTP server is not blocked by firewall or it has not been disabled from the M2M Gateway.
Viola M2M Gateway User's Manual 5. VPN Configuration for Arctic 5.4. Checking VPN Status from Arctic After setting VPN settings and rebooting Arctic the VPN status can be checked from Network ->Summary page. When VPN is connected, user interface looks like in the following picture. VPN connection is up and running if VPN Tunnel device is present in the network interface listing.
The bottom of the page contains the SSH key management section. The parameters for VPN tunneling on M2M Gateway side are listed in table below. These are visible on the peer listing and they are asked when a new peer is added. They could be modified by pressing the Edit button on appropriate peer.
Gateway 6.1. Adding Peer Adding a new peer to M2M Gateway is done by pressing the Add peer button on the SSH-VPN configuration screen. The following window will appear. The parameters are listed in previous section. The configuration examples in Chapter 7 show generic guidelines how the configuration could be done.
As the VPN setup can be rather complex subject to learn, some example configurations are described here for your convenience. All these examples require that you have a static IP address for your M2M Gateway which is accessible from outside the firewall by Arctic devices. 7.1. Example 1. Basic VPN Tunnel Configuring VPN tunnel between M2M Gateway and Arctic GPRS device.
Page 23
Then Key management field below the settings complains the keys could not be found. Now we have to open a connection to M2M Gateway to configure the other endpoint of the tunnel. Do not close the Arctic Configurator as we will need it again very soon.
Page 24
Peer name is same as the hostname of Arctic device. Hostname is case sensitive and has to be same in both ends (Arctic and M2M Gateway). IP pair could be any pair of IP addresses as long as they don't conflict with existing ones. For example, first Arctic device IP pair could be 10.10.10.10:10.10.10.11, second could be 10.10.10.12:10.10.10.13 and so on.
Page 25
Paste the key from server and press Insert button. Now that just pasted key is shown in Server SSH key entry among its IP address. Now copy the Local SSH key from its field and paste it to M2M configuration screen. Remember to select the correct peer from the drop-down list if you have more than one Arctic configured.
If this is not the case, please take some time and browse the user interfaces of both M2M Gateway and Arctic. This will make the settings more familiar to you. Select routing mode to “Tunnel the following network”. IP address and netmask is the address that is located in the opposite side of the tunnel.
7. VPN Setup Examples 7.3. Example 3. Proxy ARP This example describes how the M2M Gateway can make remote Arctic GPRS device to have IP address from same (eth0 or eth1) network. This is done by using routing mode “Proxy ARP” from user interface.
Viola Systems’ sole option and expense, and Viola Systems may use new or refurbished parts or products to do so. If Viola Systems is unable to repair or replace a defective product, your alternate exclusive remedy shall be a refund of the original purchase price.
Viola M2M Gateway User's Manual 11. Technical Support 11. Technical Support 11.1. Contacting Technical Support Phone: +358 20 1226 226 Fax: +358 20 1226 220 E-mail: support@violasystems.com On-line http://www.violasystems.com 11.2. Recording Product Information Before contacting our Technical Support staff, record the following information about your product: Product name.:...
Need help?
Do you have a question about the M2M and is the answer not in the manual?
Questions and answers