Table of Contents

Advertisement

Quick Links

www.3grouterstore.co.uk
GWR High Speed Cellular Router Series

User Manual

version 1.1.
Date: June 2014.
UK SALES : 0800 508 8366

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the GWR High Speed Router Series and is the answer not in the manual?

Questions and answers

Subscribe to Our Youtube Channel

Summary of Contents for Geneko GWR High Speed Router Series

  • Page 1: User Manual

    www.3grouterstore.co.uk GWR High Speed Cellular Router Series User Manual version 1.1. Date: June 2014. UK SALES : 0800 508 8366...
  • Page 2: Table Of Contents

    ..........................58 ETTINGS ERIAL Serial port over TCP/UDP settings ........................58 Modbus Gateway settings ..........................60 SMS – SMS R ........................62 EMOTE ONTROL SMS – Send SMS..............................63 ............................. 64 AINTENANCE Maintenance – Device Identity Settings......................64 Geneko GWR High Speed Router Series...
  • Page 3 ........................... 123 IREWALL EXAMPLE – ........................130 MANAGEMENT EXAMPLE ....................... 131 EFINING KEEPALIVE FUNCTIONALITY APENDIX ..................................132 A. H GWR-HS R ?............. 132 OW TO CHIEVE AXIMUM IGNAL TRENGTH WITH OUTER Antenna placement ............................133 Antenna Options.............................133 Geneko GWR High Speed Router Series...
  • Page 4: List Of Figures

    Figure 48 – Default Settings page...........................69 Figure 49 – System Reboot page ............................69 Figure 50 – Command Line Interface..........................70 Figure 51 – Remote Management...........................71 Figure 52 – Connection Manager............................72 Figure 53 – Connection Wizard – Initial Step........................73 Geneko GWR High Speed Router Series...
  • Page 5 Figure 103 – IPSec start/stop page for GWR-HS Router ....................108 Figure 104 – Network Interfaces (list) ...........................109 Figure 105 – Network Interfaces (edit)..........................109 Figure 106 – AutoKey Advanced Gateway........................110 Figure 107 – Gateway parameters ..........................110 Figure 108 – Gateway advanced parameters .......................111 Geneko GWR High Speed Router Series...
  • Page 6 Figure 135 – Allowing WEB access ..........................128 Figure 136 – Outbound rule for WEB access.........................129 Figure 137 – Complete firewall configuration ......................130 Figure 138– Configuration page for SMS management....................131 Figure 139– Configuration page for GSM keepalive ....................132 Geneko GWR High Speed Router Series...
  • Page 7: List Of Tables

    Table 23 – Router Management............................65 Table 24 – Date/time parameters............................66 Table 25 – Command Line Interface parameters......................70 Table 26 – Remote Management parameters ........................71 Table 27 – SNMP parameters ............................76 Table 28 – Syslog parameters............................78 Geneko GWR High Speed Router Series...
  • Page 8: Description Of The Lte Router Series

    GWR-HS routers will reduce the costs and speed up the ROI process for each one of possible applications. The list of most common GWR-HS router applications is presented bellow. Geneko GWR High Speed Router Series...
  • Page 9: Typical Application

    • Remote Office Solution, • Remote Access Solution. There are numerous variations of each and every one of above listed applications. Therefore GENEKO formed highly dedicated, top rated support team that can help you analyze your requirements and existing system, chose the right topology for your new system, perform initial configuration and tests and monitor the complete system after installation.
  • Page 10: Technical Parameters

    Operation: –10° C to 55° C (14° F to 131° F) Environmental Storage: –20° C to +85° C (–4° F to +185° F) Relative humidity: 5% to 95% (non–condensing) Dimensions and Width/Length/Height: 95mm/135mm/35mm weight Weight: 380g Table 1 – Technical parameters Geneko GWR High Speed Router Series...
  • Page 11: Protocols And Features

    Data integrity • Authentication and key management. • Perfect Forward Secrecy, • Diffie–Hellman Group 1,2,5,14 • DPD for constant connection, IKE features • NAT Traversal, • Send Initial Contact, • IP Payload Compression Protocol. Geneko GWR High Speed Router Series...
  • Page 12: Table 2 - Gwr-Hs Router Features

    Traffic and event log Log tracing. RADIUS client Authentication via remote RADIUS server Maintenance Ping utility. Diagnostic Export of configuration. Settings backup External taster and configuration application. Factory default settings Table 2 – GWR-HS Router features Geneko GWR High Speed Router Series...
  • Page 13: Product Overview

    HS Router. You can also reset the GWR-HS Router to factory defaults using the Maintenance > Default Settings screen. Back panel On the back panel of device (Figure 3 and Figure 4) the following connectors are located: • slot for SIM cards, • SMA connector for connection of the GSM/UMTS/LTE antenna. Geneko GWR High Speed Router Series...
  • Page 14: Top Panel

    There is a sequence of 8 LED indicators on the top of this device by which the indication of the system current state, WiFi state, device power supply and presence of GSM/UMTS/LTE network as well as signal level is performed. Geneko GWR High Speed Router Series...
  • Page 15: Figure 5 - Gwr-Hs Router Top Panel Side Figure 6 - Gwr-Hsw Router Top Panel Side

    Signal strength LED is on. Reset condition will be indicated by blinks of the first and last Signal strength LED. When signal quality is not known or not detectable there will be running LED indication. Geneko GWR High Speed Router Series...
  • Page 16: Putting Into Operation

    Power consumption of GWR-HS router is 2W in standby and 3W in burst mode. SIM card must not be changed, installed or taken out while device operates. This procedure is performed when power supply is not connected. Geneko GWR High Speed Router Series...
  • Page 17: Declaration Of Conformity

    User Manual Declaration of conformity Figure 7 – Declaration of conformity Geneko GWR High Speed Router Series...
  • Page 18: Device Configuration

    After successfully finished process of authentication of Username/Password you can access Main Configuration Menu. You can set all parameters of the GWR-HS Router using web application. All functionalities and parameters are organized within few main tabs (windows). Geneko GWR High Speed Router Series...
  • Page 19: Add/Remove/Update Manipulation In Tables

    To save all the changes in the form press Save button. By clicking Save data are checked for validity. If they are not valid, error message will be displayed. To discard changes press the Reload button. By clicking Reload, previous settings will be loaded in the form. Geneko GWR High Speed Router Series...
  • Page 20: Status Information

    Figure 9 – General router information Status – Network Information Network Information Tab provides information about Ethernet port and Ethernet traffic statistics in bytes) Screenshot of Network Router information is shown in Figure 10. Geneko GWR High Speed Router Series...
  • Page 21: Status - Dhcp

    WAN information menu has three submenus which provide information about: GPRS/EDGE/HSPA/HSPA+/LTE mobile module(manufacturer and model), Mobile operator and signal quality, Mobile traffic statistics (in bytes) Screenshot of WAN information from the router is shown in Figure 12. Geneko GWR High Speed Router Series...
  • Page 22: Status - Firewall

    INPUT, FORWARD and OUTPUT chain. Each of these groups has packet counter which can be cleared with one of three displayed button: Reset INPUT, Reset FORWARD and Reset OUTPUT. Figure 13 – Firewall Information Geneko GWR High Speed Router Series...
  • Page 23: Status - Routes

    Routing page in first routing table. Figure 14 – Information about active routes Status – Router Monitoring Router Monitoring Tab provides summarized information about router, router’s interfaces and traffic statistics. Figure 15 – Router monitoring Geneko GWR High Speed Router Series...
  • Page 24: Settings - Network

    Save. Table 3 – Network parameters In the Figure 16 you can see screenshot of Network Tab configuration menu. Figure 16 – Network parameters configuration page Geneko GWR High Speed Router Series...
  • Page 25: Settings - Dhcp Server

    Click Remove to delete selected item from table. Click Save to save your changes back to the GWR-HS Router. Save Reload Click Reload to discard any changes and reload previous settings. Table 4 – DHCP Server parameters Geneko GWR High Speed Router Series...
  • Page 26: Figure 17 - Dhcp Server Configuration Page

    User Manual Figure 17 – DHCP Server configuration page Geneko GWR High Speed Router Series...
  • Page 27: Settings - Wan Setting

    GSM 2G preferred, GSM and UMTS only, LTE only and finally LTE,UMTS,GSM. This field specifies Dial String for GSM/UMTS/LTE modem connection initialization. In Dial String most cases you have to change only APN field based on parameters obtained from Geneko GWR High Speed Router Series...
  • Page 28 Displays amount of traffic that has been transferred over SIM card from the moment of enabling "SIM data limit" option. Current traffic In order to refresh the displayed value in the "Current traffic" field please click on Refresh. Geneko GWR High Speed Router Series...
  • Page 29: Table 5 - Wan Parameters

    Protocol) authentication. Max. CHAP challenge Set the maximum number of CHAP challenge transmissions to n (default 10). transmissions Set the CHAP restart interval (retransmission timeout for challenges) to n seconds CHAP restart interval (default 3). Geneko GWR High Speed Router Series...
  • Page 30 LCP–Echo–Interval reply. This option can be used with the lcp–echo–failure option to detect that the peer is no longer connected. Use Peer DNS With this option enabled, router resolves addresses using ISP’s DNS servers. Geneko GWR High Speed Router Series...
  • Page 31: Settings - Wireless

    Authentication Type access Password for WPA2-PSK. Input from 8 to 63 printable characters Passphrase Select one from list of legally allowed Wireless LAN channels using IEEE 802.11, or Channel Auto for automatic channel selection Geneko GWR High Speed Router Series...
  • Page 32: Table 7 - Wireless Settings

    Maximum number of clients allowed to connect to Access Point Reload Click Reload to discard any changes and reload previous settings Click Save button to save your changes back to the Geneko Router. Whether you Save make changes or not, router will reboot every time you click Save Table 7 –...
  • Page 33: Settings - Routing

    For every routing rule enter the IP address of the gateway. Please notice that ppp0 interface has only one default gateway (provided by Mobile operator) and because of that that there is no option for gateway when you choose ppp0 interface. Geneko GWR High Speed Router Series...
  • Page 34: Port Translation

    For incoming data, the GWR-HS Router forwards IP traffic destined for a specific port, port range or GRE/IPsec protocol from the cellular interface to a private IP address on the Ethernet “side” of the GWR-HS Router. Geneko GWR High Speed Router Series...
  • Page 35: Settings - Dynamic Routing Protocol

    Click RIP Tab, to open the Routing Information Protocol screen. Use this screen to configure the GWR-HS Router RIP parameters (Figure 21). Figure 21 – RIP configuration page Geneko GWR High Speed Router Series...
  • Page 36: Rip Routing Engine For The Gwr-Hs Router

    // Redistribute routes defined on WEB interface // router# redistribute static // Redistribute routes defined locally in RIP configuration // router# redistribute connected // Redistribute directly connected routes // Disable RIP update (optional): Geneko GWR High Speed Router Series...
  • Page 37: Virtual Router Redundancy Protocol (Vrrp)

    VRRP is a protocol which elects a master server on a LAN and the master answers to a 'virtual ip address'. If it fails a backup server takes over the ip address. In following screen are represented VRRP settings. Figure 22 – VRRP configuration page Geneko GWR High Speed Router Series...
  • Page 38: Table 10 - Vrrp Parameters

    Enter authentication password as hexkey [0-9a-fA-F]+ Password Virtual IP address Ip address(es) of the virtual server Click Reload to discard any changes and reload previous settings Reload Save Click Save to save changes Table 10 – VRRP parameters Geneko GWR High Speed Router Series...
  • Page 39: Settings - Vpn Settings

    Enter a number from 1 to 10 times. Click Add to insert (add) new item in table to the GWR-HS Router. Remove Click Remove to delete selected item from table. Geneko GWR High Speed Router Series...
  • Page 40: Gre Keepalive

    Enter a number from 1 to 60 seconds, and the number of times to retry after failed keepalives before determining that the tunnel endpoint is down. Enter a number from 1 to 10 times. Geneko GWR High Speed Router Series...
  • Page 41: Internet Protocol Security (Ipsec)

    Set IPSec log level. Log level Click on this button to add a new Device–to–Device IPSec tunnel. After you have added Add New Tunnel the tunnel, you will see it listed in the Summary table. Geneko GWR High Speed Router Series...
  • Page 42: Figure 25 - Ipsec Settings

    To create a tunnel click Add New Tunnel button. Depending on your selection, the Local Group Setup and Remote Group Setup settings will differ. Proceed to the appropriate instructions for your selection. Figure 25 – IPSec Settings Geneko GWR High Speed Router Series...
  • Page 43 128 is recommended because it is the most secure. Make sure both ends of the IPSec tunnel use the same encryption method. Select a method of authentication: MD5 or SHA1. The authentication method Phase 1 Authentication determines how the ESP packets are validated. MD5 is a one–way hashing algorithm Geneko GWR High Speed Router Series...
  • Page 44 IP address/Hostname at remote side of tunnel which will be pinged in order to Ping IP or Hostname determine current state. Specify time period in seconds between two ping. Ping interval Packet size Specify packet size for ping message. Geneko GWR High Speed Router Series...
  • Page 45: Table 13 - Ipsec Parameters

    Click Save to save your changes back to the GWR-HS Router. After that router Save automatically goes back and begin negotiations of the tunnels by clicking on the Start. Table 13 – IPSec Parameters Geneko GWR High Speed Router Series...
  • Page 46: Openvpn

    OpenVPN Summary. This screen gathers information about settings of all defined OpenVPN tunnels. Up to 5 OpenVPN tunnels can be defined on GWR-HS router. OpenVPN Summary and OpenVPN Settings are briefly displayed in following figures and tables. Figure 27 – OpenVPN Summary screen Geneko GWR High Speed Router Series...
  • Page 47 NAT Rules Enables NAT through the tunnel. Keep Alive Check the box if you want to use keepalive. This field specifies the target IP address for periodical traffic generated using ping in Ping Interval Geneko GWR High Speed Router Series...
  • Page 48: Table 14 - Openvpn Parameters

    Click Save to save your changes back to the GWR-HS Router. After that router automatically goes back and begin negotiations of the tunnels by clicking on the Save Start button. Table 14 – OpenVPN parameters Geneko GWR High Speed Router Series...
  • Page 49: Figure 28 - Openvpn Configuration Page

    User Manual Figure 28 – OpenVPN configuration page Figure 29 – OpenVPN network topology Geneko GWR High Speed Router Series...
  • Page 50: Point-To-Point Tunneling Protocol (Pptp)

    User Manual Point-to-Point Tunneling Protocol (PPTP) The Geneko Router can be used as a PTPP (Point-to-Point Tunneling Protocol) client. PPTP uses a control channel over TCP and a GRE tunnel operating to encapsulate PPP packets. Figure 30 – PPTP configuration page...
  • Page 51: Layer2 Tunneling Protocol (L2Tp)

    Tunnel ID is a 32-bit integer value. Uniquely identifies the tunnel. The value used must Tunnel ID match the peer tunnel id value being used at the peer UDP Source Port UDP source port is used for the tunnel. Must be present when UDP encapsulation is Geneko GWR High Speed Router Series...
  • Page 52: Table 16 - L2Tp Parameters

    Delete is used to delete selected tunnel from table Delete Reload is used to discard any changes and reload previous settings Reload Save Save is used to create new, or save changes to existing tunnel Table 16 – L2TP parameters Geneko GWR High Speed Router Series...
  • Page 53: Settings - Firewall - Ip Filtering

    Options for firewall rule action: ACCEPT (forward traffic), REJECT (deny traffic with Policy ICMP error returned), DROP (drop traffic) Reject-with Select the reject type of the rule. The default error message is to send a port- Geneko GWR High Speed Router Series...
  • Page 54: Settings - Firewall - Mac Filtering

    Ethernet packets with a source MAC address that is configured in the MAC Filter table will be allowed. If the source MAC address is not in the MAC Filter table, the packet will dropped. Geneko GWR High Speed Router Series...
  • Page 55: Dmz Host

    Internet gaming, Video–conferencing and etc. It is recommended that you set your computer with a static IP if you want to use this function. Figure 34 – DMZ Host configuration page Geneko GWR High Speed Router Series...
  • Page 56: Settings - Dyndns

    DynDNS services, except No–IP service, is 86400 seconds. Update cycle value for No–IP service is represented in minutes and minimum is 1 minute. Number of tries Number of tries (default: 1) if network problem. Geneko GWR High Speed Router Series...
  • Page 57: Table 19 - Dyndns Parameters

    Time between update retry attempts, default value is 1800. Period Click Reload to discard any changes and reload previous settings. Reload Click Save to save your changes back to the GWR-HS Router. Save Table 19 – DynDNS parameters Geneko GWR High Speed Router Series...
  • Page 58: Settings - Serial Port

    Select server mode in order to listen for incoming connection, or client mode to Mode establish one. Number of the TCP/UDP port to accept connections for this device. (Only on server Bind to TCP/UDP port side) Specify server IP address. (Only on client side). Server IP address Geneko GWR High Speed Router Series...
  • Page 59: Figure 37 - Serial Port Configuration Page

    Table 20 – Serial Port over TCP/UDP parameters Click Serial Port Tab to open the Serial Port Configuration screen. Use this screen to configure the GWR-HS Router serial port parameters (Figure 37). Figure 37 – Serial Port configuration page Geneko GWR High Speed Router Series...
  • Page 60: Modbus Gateway Settings

    Click Reload to discard any changes and reload previous settings. Click Save button to save your changes back to the GWR-HS Router and Save activate/deactivate serial to Ethernet converter. Table 21 – Modbus gateway parameters Geneko GWR High Speed Router Series...
  • Page 61: Figure 38 - Modbus Gateway Configuration Page

    User Manual Figure 38 – Modbus gateway configuration page Geneko GWR High Speed Router Series...
  • Page 62: Sms - Sms Remote Control

    (option “Use default SMSC is enabled”) or manually by entering number under field “Custom SMSC”. As presented in the figure configuration should be performed separately for both SIM cards. After the configuration is entered, user must click on Save button in order to save the configuration. Geneko GWR High Speed Router Series...
  • Page 63: Sms - Send Sms

    Field marked with red are changeable . First field is phone number where is sent SMS to. Second field is message itself. Third field is authorization (username:password) encrypted in BASE64. Link for online BASE64 encryption is following http://www.base64encode.org. Username password written format username:password. Geneko GWR High Speed Router Series...
  • Page 64: Maintenance

    NOTE: The password cannot be recovered if it is lost or forgotten. If the password is lost or forgotten, you have to reset the Router to its factory default settings; this will remove all of your configuration changes. Geneko GWR High Speed Router Series...
  • Page 65: Figure 42 - Router Management Configuration Page

    WEB GUI Timeout WEB session timeout Click Save button to save your changes back to the GWR-HS Router. Save Click Reload to discard any changes and reload previous settings. Reload Table 23 – Router Management Geneko GWR High Speed Router Series...
  • Page 66: Maintenance - Date/Time Settings

    Enables daylight saving time and GMT offset based on TZ database Click Save button to save your changes back to the GWR-HS Router. Save Click Reload to discard any changes and reload previous settings. Reload Table 24 – Date/time parameters Geneko GWR High Speed Router Series...
  • Page 67: Maintenance - Diagnostics

    You can use this feature to upgrade the GWR-HS Router firmware to the latest version. If you need to download the latest version of the GWR-HS Router firmware, please visit Geneko support site. Follow the on–screen instructions to access the download page for the GWR-HS Router.
  • Page 68: Maintenance - Settings Backup

    Select the location where you want to store your backup configuration file. By default, this file will be called confFile.bkg, but you may rename it if you wish. This process may take up to a minute. Geneko GWR High Speed Router Series...
  • Page 69: Maintenance - Default Settings

    Figure 48 – Default Settings page Maintenance – System Reboot If you need to restart the Router, Geneko recommends that you use the Reboot tool on this screen. Click Reboot to have the GWR-HS Router reboot. This does not affect the router’s configuration.
  • Page 70: Management - Command Line Interface

    Edit mode are the same as Web interface login parameters. After timeout, session will auto logout Save Click Save to save your changes back to the GWR-HS Router. Click Reload to discard any changes and reload previous settings. Reload Table 25 – Command Line Interface parameters Geneko GWR High Speed Router Series...
  • Page 71: Management - Remote Management

    Username Specify the password. Password Click Save to save your changes back to the GWR-HS Router. Save Reload Click Reload to discard any changes and reload previous settings. Table 26 – Remote Management parameters Geneko GWR High Speed Router Series...
  • Page 72: Management - Connection Manager

    GWR-HS Router’s Ethernet port – With this option you can define LAN interface IP address and subnet mask. • GWR-HS router’s Ethernet port and GPRS/EDGE/HSPA/HSPA+/LTE network connection – Selecting this option you can configure parameters for LAN and WAN interface Geneko GWR High Speed Router Series...
  • Page 73: Figure 53 - Connection Wizard - Initial Step

    Ethernet IP, Firmware version, Pingable (if Ethernet IP address of the router is in the same IP subnet as PC interface then this field will be marked, i.e. you can access router over web interface). Geneko GWR High Speed Router Series...
  • Page 74: Figure 54 - Connection Wizard - Router Detection

    When you select one of the routers from the list and click Next you will get to the following screen. Figure 55 – Connection Wizard – LAN Settings If you selected to configure LAN and WAN interface click, upon entering LAN information click Next and you will be able to setup WAN interface. Geneko GWR High Speed Router Series...
  • Page 75: Figure 56 - Connection Wizard - Wan Settings

    After entering the configuration parameters if you mark option Establish connection router will start with connection establishment immediately when you press Finish button. If not you have to start connection establishment manually on the router’s web interface. Geneko GWR High Speed Router Series...
  • Page 76: Management - Simple Management Protocol (Snmp)

    Sets the interface enabled for SNMP traps. The default is Both. Reload Click Reload to discard any changes and reload previous settings. Click Save button to save your changes back to the GWR-HS Router and Save enable/disable SNMP. Table 27 – SNMP parameters Geneko GWR High Speed Router Series...
  • Page 77: Management - Logs

    Sets the port on which Syslog data has been sent. The default is 514. You can specify port by marking on user defined and specify port you want Syslog Service Port data to be sent. Geneko GWR High Speed Router Series...
  • Page 78: Logout

    The Logout tab is located on the down left–hand corner of the screen. Click this tab to exit the web–based utility. (If you ex it the web–based utility, you will need to re–enter your User Name and Password to log in and then manage the Router.) Geneko GWR High Speed Router Series...
  • Page 79: Configuration Examples

    Optionally configure IP Filtering and TCP service port settings to block any unwanted incoming traffic. • Configure the GWR-HS Router LAN address (10.1.1.1) as a default gateway address on your PCs. Configure valid DNS address on your PCs. Geneko GWR High Speed Router Series...
  • Page 80: Gre Tunnel Configuration Between Two Gwr-Hs Routers

    Use SIM card with a static IP address, obtained from Mobile Operator. (Note the default gateway may show, or change to, an address such as 10.0.0.1; this is normal as it is the GSM/UMTS provider’s network default gateway). Geneko GWR High Speed Router Series...
  • Page 81: Figure 62 - Gre Configuration Page For Gwr-Hs Router 1

    Click Network Tab, to open the LAN NETWORK screen. Use this screen to configure LAN TCP/IP settings. Configure IP address and Netmask. • IP Address: 192.168.2.1, • Subnet Mask: 255.255.255.0, • Press Save to accept the changes. Geneko GWR High Speed Router Series...
  • Page 82: Figure 64 - Network Configuration Page For Gwr-Hs Router 2

    Press Save to accept the changes. Figure 65 – GRE configuration page for GWR-HS Router 2 • Configure GRE Route. Click Routing on Settings Tab. Parameters for this example are: • Destination Network: 192.168.4.0, • Netmask: 255.255.255.0. Geneko GWR High Speed Router Series...
  • Page 83: Figure 66 - Routing Configuration Page For Gwr-Hs Router 2

    Figure 66 – Routing configuration page for GWR-HS Router 2 • Optionally configure IP Filtering and TCP service port settings to block any unwanted incoming traffic. • On the device connected on GWR-HS router 2 setup default gateway 192.168.2.1. Geneko GWR High Speed Router Series...
  • Page 84: Gre Tunnel Configuration Between Gwr-Hs Router And Third Party Router

    Tunnel peer address will be the GWR-HS Router WAN's mobile IP address. For this reason, a static mobile IP address is preferred on the GWR-HS Router WAN (GPRS) side, • Remote Subnet is remote LAN network address and Remote Subnet Mask is subnet of remote LAN. Geneko GWR High Speed Router Series...
  • Page 85: Figure 68 - Network Configuration Page

    Check the status of GSM/UMTS connection (WAN Settings Tab). If disconnected please click Connect button. • Click VPN Settings > GRE Tunneling to configure new VPN tunnel parameters: • Enable: yes, • Local Tunnel Address: 10.10.10.1, • Local Tunnel Netmask: 255.255.255.252 (Unchangeable, always 255.255.255.252), Geneko GWR High Speed Router Series...
  • Page 86: Figure 69 - Gre Configuration Page

    Figure 70 – Routing configuration page • Optionally configure IP Filtering and TCP service port settings to block any unwanted incoming traffic. User from remote LAN should be able to communicate with HQ LAN. Geneko GWR High Speed Router Series...
  • Page 87: Ipsec Tunnel Configuration Between Two Gwr-Hs Routers

    VPN connections. A custom APN should also support mobile terminated data that may be required in most site–to– site VPNs. For the purpose of detailed explanation of IPSec tunnel configuration , two scenarios will be examined and network illustrated in the Figure 62 will be used for both scenarios. Geneko GWR High Speed Router Series...
  • Page 88: Scenario #1

    • IP Address: 172.29.8.5, • Remote ID Type: IP Address, • Remote Security Group Type: IP, • IP Address: 192.168.10.1. • IPSec Setup • Key Exchange Mode: IKE with Preshared key, • Mode: aggressive, Geneko GWR High Speed Router Series...
  • Page 89: Figure 73 - Ipsec Configuration Page I For Gwr-Hs Router 1

    Send Initial Contact: true. Figure 73 – IPSEC configuration page I for GWR-HS Router 1 Figure 74 – IPSec configuration page II for GWR-HS Router 1 NOTE : Options NAT Traversal and Send Initial Contact are predefined Geneko GWR High Speed Router Series...
  • Page 90: Figure 75 - Ipsec Configuration Page Iii For Gwr-Hs Router 1

    Click Network Tab, to open the LAN NETWORK screen. Use this screen to configure LAN TCP/IP settings. Configure IP address and Netmask. • IP Address: 192.168.10.1, • Subnet Mask: 255.255.255.0, Press Save to accept the changes. Geneko GWR High Speed Router Series...
  • Page 91: Figure 77 - Network Configuration Page For Gwr-Hs Router 2

    Failover Enable Tunnel Failover: false. • Advanced • Compress(Support IP Payload Compression Protocol(IPComp)): false, • Dead Peer Detection(DPD): false, • NAT Traversal: true, • Send Initial Contact: true, Press Save to accept the changes. Geneko GWR High Speed Router Series...
  • Page 92: Figure 78 - Ipsec Configuration Page I For Gwr-Hs Router 2

    Figure 78 – IPSEC configuration page I for GWR-HS Router 2 Figure 79 – IPSec configuration page II for GWR-HS Router 2 NOTE : Options NAT Traversal and Send Initial Contact are predefined. Figure 80 – IPSec configuration page III for GWR-HS Router 2 Geneko GWR High Speed Router Series...
  • Page 93: Figure 81 - Ipsec Start/Stop Page For Gwr-Hs Router 2

    Figure 81 – IPSec start/stop page for GWR-HS Router 2 Click Start button and after that Wait button on Internet Protocol Security page to initiate IPSEC tunnel. • On the device connected on GWR-HS router 2 setup default gateway 192.168.10.1. Geneko GWR High Speed Router Series...
  • Page 94: Scenario #2

    Local ID Type: IP Address • IP Address From: SIM 1 (WAN connection is established over SIM 1), • Local Security Group Type: Subnet, • IP Address: 10.0.10.0, • Subnet Mask: 255.255.255.0. • Remote Group Setup Geneko GWR High Speed Router Series...
  • Page 95: Figure 83 - Ipsec Configuration Page I For Gwr-Hs Router 1

    • Advanced • Compress(Support IP Payload Compression Protocol(IPComp)): false, • Dead Peer Detection(DPD): false, • NAT Traversal: true, • Send Initial Contact: true. Figure 83 – IPSEC configuration page I for GWR-HS Router 1 Geneko GWR High Speed Router Series...
  • Page 96: Figure 84 - Ipsec Configuration Page Ii For Gwr-Hs Router 1

    If connection mode Wait is selected that indicates side of IPSec tunnel which listens and responses to IPSec establishing requests from Connect side. Figure 86 – IPSec start/stop page for GWR-HS Router 1 Click Start button and after that Connect button on Internet Protocol Security page to initiate IPSEC tunnel Geneko GWR High Speed Router Series...
  • Page 97: Figure 87 - Network Configuration Page For Gwr-Hs Router 2

    Remote Group Setup • Remote Security Gateway Type: IP Only, • IP Address: 172.29.8.4, • Remote ID Type: IP Address, • Remote Security Group Type: Subnet, • IP Address: 10.0.10.0, • Subnet: 255.255.255.0. • Failover Geneko GWR High Speed Router Series...
  • Page 98: Figure 88 - Ipsec Configuration Page I For Gwr-Hs Router 2

    NAT Traversal: true, • Send Initial Contact: true. Press Save to accept the changes. Figure 88 – IPSEC configuration page I for GWR-HS Router 2 Figure 89 – IPSEC configuration page II for GWR-HS Router 2 Geneko GWR High Speed Router Series...
  • Page 99: Figure 90 - Ipsec Configuration Page Iii For Gwr-Hs Router 2

    Figure 91 – IPSec start/stop page for GWR-HS Router 1 Click Start button and after that Wait button on Internet Protocol Security page to initiate IPSEC tunnel. • On the device connected on GWR-HS router 2 setup default gateway 192.168.10.1. Geneko GWR High Speed Router Series...
  • Page 100: Ipsec Tunnel Configuration Between Gwr-Hs Router And Cisco Router

    Click Network Tab, to open the LAN NETWORK screen. Use this screen to configure LAN TCP/IP settings. Configure IP address and Netmask. • IP Address: 192.168.10.1, • Subnet Mask: 255.255.255.0. Press Save to accept the changes. Figure 93 – Network configuration page for GWR-HS Router Geneko GWR High Speed Router Series...
  • Page 101 Enable Tunnel Failover: false. • Advanced • Compress(Support IP Payload Compression Protocol(IPComp)): false, • Dead Peer Detection(DPD): false, • NAT Traversal: true, • Send Initial Contact Notification: true. Press Save to accept the changes. Geneko GWR High Speed Router Series...
  • Page 102: Figure 94 - Ipsec Configuration Page I For Gwr-Hs Router

    User Manual Figure 94 – IPSEC configuration page I for GWR-HS Router Figure 95 – IPSec configuration page II for GWR-HS Router Geneko GWR High Speed Router Series...
  • Page 103: Figure 96 - Ipsec Configuration Page Iii For Gwr-Hs Router

    28800 !––– Profile for LAN–to–LAN connection, that references !––– the wildcard pre–shared key and a wildcard identity crypto isakmp profile L2L description LAN to LAN vpn connection keyring remote match identity address 0.0.0.0 Geneko GWR High Speed Router Series...
  • Page 104 Use this section to confirm that your configuration works properly. Debug commands that run on the Cisco router can confirm that the correct parameters are matched for the remote connections. Geneko GWR High Speed Router Series...
  • Page 105: Ipsec Tunnel Configuration Between Gwr-Hs Router And Juniper Ssg Firewall

    Click Network Tab, to open the LAN NETWORK screen. Use this screen to configure LAN TCP/IP settings. Configure IP address and Netmask. • IP Address: 192.168.10.1, • Subnet Mask: 255.255.255.0, • Press Save to accept the changes. Geneko GWR High Speed Router Series...
  • Page 106: Figure 99 - Network Configuration Page For Gwr-Hs Router

    Remote Security Group Type: Subnet, • IP Address: 10.10.10.0, • Subnet Mask: 255.255.255.0. • Advanced • Compress(Support IP Payload Compression Protocol(IPComp)): false, • Dead Peer Detection(DPD): false, • NAT Traversal: true, • Press Save to accept the changes. Geneko GWR High Speed Router Series...
  • Page 107: Figure 100 - Ipsec Configuration Page I For Gwr-Hs Router

    User Manual Figure 100 – IPSEC configuration page I for GWR-HS Router Figure 101 – IPSec configuration page II for GWR-HS Router Figure 102 – IPSec configuration page III for GWR-HS Router Geneko GWR High Speed Router Series...
  • Page 108: Figure 103 - Ipsec Start/Stop Page For Gwr-Hs Router

    Click Start button and after that Connect button on Internet Protocol Security page to initiate IPSEC tunnel Figure 103 – IPSec start/stop page for GWR-HS Router • On the device connected on GWR-HS router setup default gateway 192.168.10.1. Geneko GWR High Speed Router Series...
  • Page 109: Figure 104 - Network Interfaces (List)

    Figure 104 – Network Interfaces (list) • Bind New tunnel interface to Untrust interface (outside int – with public IP addresss). • Use unnumbered option for IP address configuration. Figure 105 – Network Interfaces (edit) Geneko GWR High Speed Router Series...
  • Page 110: Figure 106 - Autokey Advanced Gateway

    Remote Gateway type: Dynamic IP address( because your GWR-HS router are hidden behind Mobile operator router’s (firewall) NAT), Peer ID: 172.30.147.96, Presharedkey: 1234567890, Local ID: 150.160.170.1. Figure 107 – Gateway parameters • Click Advanced button. Security level – User Defined: custom, Phase 1 proposal: pre–g2–3des–sha, Geneko GWR High Speed Router Series...
  • Page 111: Figure 108 - Gateway Advanced Parameters

    Click VPNs in main menu. Click AutoKey IKE. • Click New button. Figure 109 – AutoKey IKE AutoKey IKE parameters are: VPNname: TestGWR-HS, Security level: Custom, Remote Gateway: Predefined, Choose VPN Gateway from step 2. Geneko GWR High Speed Router Series...
  • Page 112: Figure 110 - Autokey Ike Parameters

    Bind to – Tunnel interface: tunnel.3(from step 1), Proxy ID: Enabled, LocalIP/netmask: 10.10.10.0/24, RemoteIP/netmask: 192.168.10.0/24, Click Return and OK. Figure 111 – AutoKey IKE advanced parameters Step 4 – Routing • Click Destination tab on Routing menu. Geneko GWR High Speed Router Series...
  • Page 113: Figure 112 - Routing Parameters

    Click Policies in main menu. • Click New button (from Untrust to trust zone), Source Address: 192.168.10.0/24, Destination Address: 10.10.10.0/24, Services: Any. • Click OK. Figure 113 – Policies from untrust to trust zone Geneko GWR High Speed Router Series...
  • Page 114: Figure 114 - Policies From Trust To Untrust Zone

    Click Policies in main menu. • Click New button (from trust to untrust zone), Source Address: 10.10.10.0/24, Destination Address: 192.168.10.0/24, Services: Any. • Click OK. Figure 114 – Policies from trust to untrust zone Geneko GWR High Speed Router Series...
  • Page 115: Openvpn Tunnel Between Gwr-Hs Router And Openvnp Server

    OpenVPN configuration Open VPN is established between one central locations and three remote locations with Geneko router configured in TCP client mode. Authentication used is pre-shared key.
  • Page 116: Figure 116 - Openvpn Application Settings

    Only difference to previous configuration is 2.2.2.5, 2.2.2.6 (IP address of local and remote interface) and dev-node adap2. Configuration file for third remote location is: proto tcp-server dev tun ifconfig 2.2.2.9 2.2.2.10 Geneko GWR High Speed Router Series...
  • Page 117: Figure 117 - Openvpn Gwr-Hs Settings

    Where pre-shared secret you paste from the key.txt file which you generate on OpenVPN server. In routing table static ip route to local OpenVPN server network (in this case it is 192.168.2.0/24) should be entered. Geneko GWR High Speed Router Series...
  • Page 118: Portforwarding - Example

    IP address of the incoming packets. The forth defined access flow is redirecting all WEB traffic from the local workstation to one outside IP address, web authentication server for example. Geneko GWR High Speed Router Series...
  • Page 119: Figure 122- Portforwarding Example

    – Portforwarding example Figure 122 Portforwarding is configured on the ROUTING page selected from the main menu. Configuration of the examples described above is presented in the following picture: Figure 123– GWR-HS portforwarding configuration Geneko GWR High Speed Router Series...
  • Page 120: Serial Port - Example

    From the main menu on the left side of web interface option SERIAL PORT should be selected and following page is displayed. Figure 125– GWR-HS Serial port settings Option SERIAL PORT OVER TCP/UDP SETTINGS is used for configuration of transparent serial communication. Configuration parameters are presented in picture below Geneko GWR High Speed Router Series...
  • Page 121: Figure 126- Gwr-Hs Settings For Serial-To-Ip Conversion

    Keepalive interval: 60 sec Log Settings • Log level: level 1 When serial port is configured button SAVE should be selected and STATUS of the service should change to started like on the picture above. Geneko GWR High Speed Router Series...
  • Page 122: Figure 127- Virtual Com Port Application

    After “Create COM” is activated if everything is alright in log will be shown message that port COM10 is created, like in picture above. In communication with remote serial device COM10 should be selected on workstation. Geneko GWR High Speed Router Series...
  • Page 123: Firewall - Example

    17. REJECT all other traffic All packets which are not stated as ACCEPT in previous rules are denied. If this rule is not enabled all packets which are not stated as DROP/REJECT are permitted. Geneko GWR High Speed Router Series...
  • Page 124: Figure 129 - Firewall Example

    Figure 129 – Firewall example Firewall is enabled in SETTINGS>FIREWALL page. Page for firewall configuration is presented in the following picture: Figure 130 – Initial firewall configuration on GWR-HS Geneko GWR High Speed Router Series...
  • Page 125: Figure 131 - Filtering Of Telnet Traffic

    ICMP-Type: echo-request Input interface: ppp_0 Source address: Single IP ; 212.62.38.196 Inverted source address rule logic: selected Destination address: Any Packet state: NEW Policy: REJECT Reject-with: icmp-port-unreachable Configuration should be like on the picture below. Geneko GWR High Speed Router Series...
  • Page 126: Figure 132 - Filtering Of Icmp Traffic

    After configuration is finished SAVE button should be selected and user is returned to main configuration page. Priority of rule is changed by selecting number in drop-down menu. In this example number 5 is selected. Geneko GWR High Speed Router Series...
  • Page 127: Figure 134 - Ipsec Firewall Rules

    HTTP on ppp_0) This rule can be used in example with additional restriction in source IP address to 212.62.38.210. Policy should be configured in following way: Enable: selected Source address: Single IP; 212.62.38.210 All other settings should remain the same like in the picture below Geneko GWR High Speed Router Series...
  • Page 128: Figure 135 - Allowing Web Access

    This rule is example of traffic filtering in direction from inside to outside. New rule should be added by selecting ADD NEW RULE button. Policy should be configured in following way: Rule name: Allow HTTP from LAN Enable: selected Chain: FORWARD Service: HTTP Geneko GWR High Speed Router Series...
  • Page 129: Figure 136 - Outbound Rule For Web Access

    After all rules are configured and saved button APPLY RULES in bottom right corner should be selected to activate traffic filtering. When all 13 rules from this example is configured firewall should look like this: Geneko GWR High Speed Router Series...
  • Page 130: Sms Management - Example

    User Manual Figure 137 – Complete firewall configuration SMS management – example GWR-HS routers can be managed over the SMS messages. Commands from the SMS are executed on the Geneko GWR High Speed Router Series...
  • Page 131: Defining Keepalive Functionality

    80%). If this value is defined as 100% for example, that means only if all packets are dropped action will be performed (switch SIM or PPP restart). Value which is entered here depends on that how many Geneko GWR High Speed Router Series...
  • Page 132: Apendix

    The better the signal strength, the less data retransmission and, therefore, better throughput. RSSI information is available from several sources: • The LEDs on the device give a general indication. • Via the GWR-HS Router local user interface. Signal strength LED indicator: Geneko GWR High Speed Router Series...
  • Page 133: Antenna Placement

    NOTE: Another way of optimizing throughput is by sending non–encrypted data through the device. Application layer encryption or VPN put a heavy toll on bandwidth utilization. For example, IPsec ESP headers and trailers can add 20–30% or more overhead. Geneko GWR High Speed Router Series...

Table of Contents