Viola Systems M2M User Manual

Hide thumbs Also See for M2M:

Advertisement

Quick Links

Viola M2M Gateway
User's Manual
Version 2.0
Modified Aug 13, 2004

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the M2M and is the answer not in the manual?

Questions and answers

Subscribe to Our Youtube Channel

Summary of Contents for Viola Systems M2M

  • Page 1 Viola M2M Gateway User's Manual Version 2.0 Modified Aug 13, 2004...
  • Page 2: Copyright And Trademark

    Copyright © 2004, Viola Systems Ltd. All rights to this manual are owned solely by Viola Systems Ltd. (referred in this manual as Viola Systems). All rights reserved. No part of the contents of this manual may be transmitted or reproduced in any form or by any means without the written permission of Viola Systems.
  • Page 3: Revision History

    The names of the programs as well as all copyrights relating to the programs are sole property of Viola Systems. Any transfer, licensing to a third party, leasing, renting, transportation, copying, editing, translating, modifying into another programming language or reverse engineering for any intent is forbidden without the written consent of Viola Systems.
  • Page 4: Warranty And Safety Instructions

    Viola M2M Gateway User's Manual Warranty and Safety Instructions Read these safety instructions carefully before using the product: Warranty will be void, if the product is used in any way, which is in contradiction with the instructions given in this manual, or if the product has been tampered with.
  • Page 5: Table Of Contents

    5.4. Checking VPN Status from Arctic..................1 9 6. VPN Configuration for M2M Gateway..............20 6.1. Adding Peer........................21 6.2. Checking VPN Status from M2M Gateway................ 2 1 7. VPN Setup Examples..................22 7.1. Example 1. Basic VPN Tunnel..................2 2 7.2. Example 2. Tunneling Network..................26 7.3.
  • Page 6: Introduction

    Only a computer with network connection and a HTML browser is required to configure the Viola M2M Gateway. Using the Viola M2M Gateway Webmin user interface you can configure and view the status of the remote Arctic devices and configure the VPN connection between Viola M2M Gateway and Arctic device.
  • Page 7: Features

    M2M Gateway can forward packets to local Ethernet (eth0) which it is connected to company network. Also it is possible to route packets to second Ethernet (eth1) of M2M Gateway. More complex routing solutions can be made but they need consultation of your local network administrator.
  • Page 8: Network Requirements

    2. Network Requirements 2. Network Requirements To work properly M2M Gateway requires the parameters described in this chapter to be configured. For your network settings contact your local network administrator. Note: Misconfiguration of the M2M Gateway can seriously hinder your network. Make sure you verify your network configuration with local network administrator.
  • Page 9: Routing Setup

    M2M Gateway and devices behind it. This means that for example local firewall to router needs to be aware of routes going via the M2M Gateway. Routing can be complex to setup in large networks and it is recommend to consult local network administrator also about routing.
  • Page 10: Recommended Network Setup

    Gateway. Only incoming SSH connections are required to have access to DMZ zone. Services other than SSH are optional. If the M2M Gateway is located in the DMZ and it has a private IP address the firewall has to support port forwarding or destination network address translation (DNAT). For firewall configuration please refer to your firewall documentation or to your local network administrator.
  • Page 11: Using The Second Ethernet Port

    Gateway can be enabled from the Webmin configuration interface. The IP address of the second Ethernet of the M2M Gateway is then used as the default gateway for the devices connected to the second Ethernet port. This configuration is relatively easy to setup and it is the easiest way of setting up the M2M Gateway.
  • Page 12: Physical Interfaces

    Figure 3. M2M Gateway front panel 3.2. Back Panel The M2M Gateway has power connector on the right side of the back panel. Ethernet interfaces are located in the left side of the back panel. See Figure 4 for connector locations. Depending on the network configuration only one of them or both are used.
  • Page 13: Power Switch And Connector

    Power connector is standard 3 pin IEC inlet. Nominal input voltage is 110-230V. Power switch is lit when power is on. To turn off the M2M Gateway, change switch position from 1 to 0. Note: Always remember to shut down the operating system before switching off the power, as data losses or corruption might occur if the system is not shut down properly.
  • Page 14: Getting Started

    4. Getting started 4. Getting started This chapter aims to give the necessary information to get the M2M Gateway device to fully working condition. It is assumed that you have already gathered up the necessary networking parameters for your specific networking environment, such as IP addressing and firewall issues. Look at the chapter 2 for network requirements and Chapter 7 for examples how the device could be connected and what would be the best configuration for your specific case.
  • Page 15 = 0.172/0.201/0.240/0.030 ms, pipe 2 [anon@ymous anon]$ If necessary, adjust your network settings so that the address 10.10.10.10 is accessible. After you have a working connection to M2M Gateway, use your favorite HTML browser to connect to Webmin configuration interface by entering address http://10.10.10.10:10000 to address bar.
  • Page 16: Using Webmin

    To connect to M2M Gateway, use HTML browser and address http://<ip_address>:10000 to log in to M2M Gateway. Webmin uses port 10000 so it is necessary to include it to the address while connecting. If port number is omitted, the browser will try the default port 80 and won't be able to connect.
  • Page 17: Vpn Configuration For Arctic

    ICMP echo Use SSH-VPN Enables and disables the VPN operation of Arctic Tunnel Server IP The M2M Gateway public IP Address for eth0 interface where Arctic makes the VPN connection Routing Mode Selects the type of routing none, network or Proxy ARP Remote Network IP IP address of remote network to be routed If ”Routing Mode”...
  • Page 18: Key Management

    Both of these keys can be copy&pasted from WWW user interface. The ”Server SSH Key Entry” can also be received via HTTP protocol if the M2M Gateway HTTP server is not blocked by firewall or it has not been disabled from the M2M Gateway.
  • Page 19: Checking Vpn Status From Arctic

    Viola M2M Gateway User's Manual 5. VPN Configuration for Arctic 5.4. Checking VPN Status from Arctic After setting VPN settings and rebooting Arctic the VPN status can be checked from Network ->Summary page. When VPN is connected, user interface looks like in the following picture. VPN connection is up and running if VPN Tunnel device is present in the network interface listing.
  • Page 20: Vpn Configuration For M2M Gateway

    The bottom of the page contains the SSH key management section. The parameters for VPN tunneling on M2M Gateway side are listed in table below. These are visible on the peer listing and they are asked when a new peer is added. They could be modified by pressing the Edit button on appropriate peer.
  • Page 21: Adding Peer

    Gateway 6.1. Adding Peer Adding a new peer to M2M Gateway is done by pressing the Add peer button on the SSH-VPN configuration screen. The following window will appear. The parameters are listed in previous section. The configuration examples in Chapter 7 show generic guidelines how the configuration could be done.
  • Page 22: Vpn Setup Examples

    As the VPN setup can be rather complex subject to learn, some example configurations are described here for your convenience. All these examples require that you have a static IP address for your M2M Gateway which is accessible from outside the firewall by Arctic devices. 7.1. Example 1. Basic VPN Tunnel Configuring VPN tunnel between M2M Gateway and Arctic GPRS device.
  • Page 23 Then Key management field below the settings complains the keys could not be found. Now we have to open a connection to M2M Gateway to configure the other endpoint of the tunnel. Do not close the Arctic Configurator as we will need it again very soon.
  • Page 24 Peer name is same as the hostname of Arctic device. Hostname is case sensitive and has to be same in both ends (Arctic and M2M Gateway). IP pair could be any pair of IP addresses as long as they don't conflict with existing ones. For example, first Arctic device IP pair could be 10.10.10.10:10.10.10.11, second could be 10.10.10.12:10.10.10.13 and so on.
  • Page 25 Paste the key from server and press Insert button. Now that just pasted key is shown in Server SSH key entry among its IP address. Now copy the Local SSH key from its field and paste it to M2M configuration screen. Remember to select the correct peer from the drop-down list if you have more than one Arctic configured.
  • Page 26: Example 2. Tunneling Network

    If this is not the case, please take some time and browse the user interfaces of both M2M Gateway and Arctic. This will make the settings more familiar to you. Select routing mode to “Tunnel the following network”. IP address and netmask is the address that is located in the opposite side of the tunnel.
  • Page 27: Example 3. Proxy Arp

    7. VPN Setup Examples 7.3. Example 3. Proxy ARP This example describes how the M2M Gateway can make remote Arctic GPRS device to have IP address from same (eth0 or eth1) network. This is done by using routing mode “Proxy ARP” from user interface.
  • Page 28: Troubleshooting

    Problem Three Q: If only one public IP is available, can the M2M Gateway be used? A: Yes, if firewall connected to public IP can forward incoming ssh connections to the M2M Gateway. Copyright © 2004, Viola Systems Ltd. Page 28...
  • Page 29: Technical Specifications

    Viola M2M Gateway User's Manual 9. Technical Specifications 9. Technical Specifications Processor x86 400MHz 256 MB RAM Memory 30GB HDD 10/100 Base-T. Shielded RJ45 Network Interface 2x Ethernet (IEEE 802.3) 1.5 kV isolation transformer 4 x Male DB9 connector DTE,...
  • Page 30: Limited Warranty

    Viola Systems’ sole option and expense, and Viola Systems may use new or refurbished parts or products to do so. If Viola Systems is unable to repair or replace a defective product, your alternate exclusive remedy shall be a refund of the original purchase price.
  • Page 31: Technical Support

    Viola M2M Gateway User's Manual 11. Technical Support 11. Technical Support 11.1. Contacting Technical Support Phone: +358 20 1226 226 Fax: +358 20 1226 220 E-mail: support@violasystems.com On-line http://www.violasystems.com 11.2. Recording Product Information Before contacting our Technical Support staff, record the following information about your product: Product name.:...

Table of Contents