Usser Guiide NTC-620 00 Serie es – Inte elligentt M2M Routerr
Copyright Copyright© 2013 NetCom mm Wireless Limited. All rights reserved. The information contained herein is proprietarry to NetComm Wireless. No part of this ddocument may be translated, transcribed, reproduced, in any fform, or by any means without prior writteen conssent of NetComm Wirreless. Note: This document is subject too change without nottice.
DOCUMENT VVERSION DATE Initial documennt release Table 1 - Document Revisionn History Tabl T le of o Co onte entss Ove erview ................................................................................................................................................ 5 Introduction ...............................................................................................................................................................................................................................
NetComm Wireless Intelligent M2M Router 4 www.netcommwireless.
Ove O ervie ew In ntroduc ction This document provides you all the informatioon you need to set upp, configure and use the NetComm Wireleess NTC-6200 Intelligent M2M Router. Ta arget a audienc ce This document is intendeed for system integrators or experienced hardware h installers wwho understand teleccommunications terminology and conceptts.
Product introduction Product overview Penta-band 3G with quad-band 2G auto-fallback HSPA+ up to 14.4 Mbps DL Ethernet port with full passive Power over Ethernet (PoE) support (802.3af) (NTC-6200-01 only) RS232/RS422/RS485 Port and USB 2.
Prroduct feature es The NetComm Wireless NNTC-6200 Intelligent M2M Router is an M22M device designed by NetComm Wireleess to address the rappid growth in M2M deeployments. It has beeen designed to provvide a price. Com mpatible with networkk worldwide, the Intelligent M2M Router caan be managed remootely even when it does not have an Internnet statee-of-the-art features aand versatility at an affordable connnection via the use off SMS diagnostics annd commands.
Physical dimensions and indicators Physical dimensions Below is a list of the physical dimensions of the Intelligent M2M Router. Figure 1 – Intelligent M2M Router Dimensions INTELLIGENT M2M ROUTER (WITHOUT EXTERNAL ANTENNAS ATTACHED) Length 143 mm Depth 107 mm Height 34 mm Weight 180g Table 2 - Device Dimensions NetComm Wireless Intelligent M2M Router 8 www.netcommwireless.
LE ED ind dicatorss The Intelligent M2M Routter uses 7 LEDs to display the current sysstem and connection status.
Signal strength LEDs The following table lists the signal strength range corresponding with the number of lit signal strength LEDs. NUMBER OF LIT LEDS SIGNAL STRENGTH All LEDs unlit < -109 dBm 1 -109 dBm to -101dBm 2 -101 dBm to -91 dBm 3 -91 dBm to -85 dBm 4 -85 dBm to -77 dBm 5 > -77 dBm Table 4 - Signal strength LED descriptions LED update interval The signal strength LEDs update within a few seconds with a rolling average signal strength reading.
In nterface es The following interfaces aare available on the Intelligent M2M Routeer: Figure 4 - Interfacess ITEM DESCRIPTION D Main anttenna socket SMA female connector for main antenna. Auxiliaryy antenna socket SMA female connector for auxiliary antenna. GPS anteenna socket SMA female connector for GPS antenna. Six-way terminal block connector Connect power sourrce, ignition and I/O wires hhere.
Plac P cem ment of tthe rou uter The two external high-peerformance antennas supplied with the rouuter are designed to provide optimum siggnal strength in a wide range of environmeents. If you find the signal strength is weaak, try a acceptable signall, try moving the routeer to a different placee or mounting it differrently. adjusting the orientation of the antennas.
Pe erpendicullar to the wall w If a large surface area is not available, there is the option of mounting the router perpeendicular to the wall. This T gives the router a small wall footprintt while remaining seccurely attached. Use apprropriately sized screwws in the mounting hooles provided on the back of the unit. Figure 6 - Waall mount - Perpendicu cular to the wall C Section DIIN Rail mo ount The Intelligent M2M Routter easily slides onto a C Section DIN rail so that it is horizontaally mounted.
Mounting bracket The provided mounting bracket provides additional methods of mounting the Intelligent M2M Router. To attach the mounting bracket, slide it onto the rear of the router as shown in the diagram below: Figure 9 - Sliding on the mounting bracket To remove the bracket, press the PUSH button and slide the router off the bracket: Figure 10 - Removing the mounting bracket NetComm Wireless Intelligent M2M Router 14 www.netcommwireless.
Ussing the m mounting brracket for wall moun nting By first attaching the DINN rail bracket to the wall, w the Intelligent M22M Router can be eassily attached and rem moved from the brackket.
Desk mount In situations where wall mounts and DIN rails are not required, you can simply place the Intelligent M2M Router on a desk using its rubber feet to prevent it from slipping. Figure 14 - Desk mount NetComm Wireless Intelligent M2M Router 16 www.netcommwireless.
Insta allation n an nd confiigurration of o th he In ntelllige ent M2M MR Routter Po owerin ng the router r The Intelligent M2M Routter can be powered in one of three ways: 1. Power overr Ethernet (802.3af PooE) (available on the NTC-6200-01 only) 2. DC power iinput via 6-pin conneector (8-40V DC) 3. DC power iinput via field terminaated power source (88-40V DC) The green power LED onn the router lights up when a power sourcee is connected. Po ower over Ethernet (802.
i I/O Dedicated terminal for ignition detection. Three terminals used for input/output detection. (Please refer to the User Guide). Table 8 - Locking power block pin outs Failover power support (NTC-6200-01 only) The Intelligent M2M Router includes support for connection of two power sources at the same time. When a PoE Ethernet cable is connected and DC power is also supplied to the DC input jack of the router, the router will source power exclusively from the PoE source.
Adv A vanc ced con nfig gura ation n The Intelligent M2M Routter comes with precoonfigured settings thaat should suit most cuustomers. For advancced configuration, logg in to the web-basedd user interface of the router. To loog in to the web-baseed user interface routter: 1. Open a web browser (e.g. Internet Explorer, Firefox, Safari), type http://1 92.168.1.1 into the address bar and press Enter. The web-baased user interface log in screen is displayyed.
Status The status page of the web interface provides system related information and is displayed when you log in to the Intelligent M2M Router management console. The status page shows System information, LAN details, Cellular connection status, Packet data connection status and Advanced status details. You can toggle the sections from view by clicking the show or hide them. Extra status boxes will appear as additional software features are enabled (e.g. VPN connectivity).
ITEM DEFINITION System information System up time The current uptime of the router. Board version The hardware veersion of the router. Serial Number The serial numbber of the router. Software The software version number running on thhe router. Model The type of phone module and the firmwarre version of the module. Firmware version The firmware revvision of the phone modulee. IMEI The Internationaal Mobile Station Equipmennt Identity number used to uniquely u identify a mobile device.
IMSI The International mobile subscriber identity is a unique identifier of the user of a cellular network. Cell ID A unique code that identifies the base station from within the location area of the current mobile network signal. Channel number (UARFCN) The channel number of the current 3G/2G connection. Table 11 - Status page item details NetComm Wireless Intelligent M2M Router 22 www.netcommwireless.
Interrnet The Internet section provvides configuration opptions for Wireless WAN, W LAN, Routing annd VPN connectivity. Data D Co onnectio on The data connection pagge allows you to configure and enable/disable the connection profile. To access this page, click on the Networking menu, annd under the Wirelesss WAN menu, selectt the Dataa Connection item. Figure 118 – Data connectionn settings www.netcommwireless.
ITEM DEFINITION Data connection Transparent Bridge (PPPoE) Toggles the transparent bridge function on and off. Profile name list Default Sets the corresponding profile to be the default gateway for all outbound traffic except traffic for which there are configured static route rules or profile routing settings. Status Toggles the corresponding profile on and off. If your carrier supports it, two profiles may be turned on simultaneously. APN The APN configured for the corresponding profile.
2. Click the Prrofile toggle key to tuurn the profile on. Addditional settings appeear. Figure 20 - Dataa connection settings - Profile turned on 3. In the Profille name field, enter a name for the profilee. This name is only uused to identify the prrofile on the router. 4. Ensure thatt the Automatic APN selection toggle key is set to off. If it is noot, click it to toggle it to the off position. 5.
13. Click the Save button when you have finished entering the profile details. Confirming a successful connection After configuring the packet data session, and ensuring that it is enabled, click on the Status menu item at the top of the page to return to the Status page. When there is a mobile broadband connection, the WWAN section is expanded showing the details of the connection and the Status field displays Connected. To see details on the connected session, you can click the Show data usage button.
Connect C t on De emand The connect on demand feature keeps the Paacket Data Protocol (PDP) context deactivvated by default while making it appear too locally connected ddevices that the routeer has a permanent r attempts to esttablish a mobile broaadband data connection. connnection to the mobile broadband network.
Setting the router to dial a connection when traffic is detected on specific ports In some situations, you may wish to have the internet connection disabled except at times when outbound traffic to a particular external host’s port or range of ports is sent to the router. To use this feature, click Enable dial port filter and enter the port number or list of port numbers separated by commas.
Se etting time ers for conn nection an nd disconn nection The router has a numberr of timer settings which let you determine when a connection iis dialled and when it is disconnected. Figure 27 – Dial onn demand - Connect and an disconnect timers OPTION DESCRIPTION On data activity, stay online for at least When traffic as per the connfigured settings above apppear, the router will either continue to stay online, or dial a connection and will not disconnect it for the specified time periood (min.
Manually connecting/disconnecting There may be times when you need to either force a connection to be made or force a disconnection manually. You can use the Manual connect and Manual disconnect buttons to do this whenever necessary. The online status of the connection is displayed above the buttons. Figure 29 - Dial on demand - Online/Offline control When you have finished configuring the options for the Dial on demand feature, click the Save button at the bottom to save your changes.
Operato O or Settin ngs The Operator settings paage enables you to seelect which frequency band you will use ffor your connection and a enables you to sccan for available netwwork operators in youur area. Fi Figure 30 - Band settinngs p you are promptted to disable the data connection if it is Note: In ordeer to change the celluular band settings, thhe data connection mmust be disabled. Whhen you access this page, already activve.
Figure 31 - Operator settings A list of the detected 3G service carriers in your area is displayed. Figure 32 - Detected operator list Select the most appropriate 3G service from the list shown and click Apply. When Select operator mode is set to Automatic, the router selects the most appropriate operator based on the inserted SIM card. This is the default option and is sufficient for most users.
b) Enter the PIN in the Current PINN field and then enterr it again in the Confirrm current PIN field to t confirm the PIN. c) If you are pplacing the router in a remote, unattendedd location, you may wwish to check the Rem member PIN option. This T feature allows thhe router to automaticcally send the PIN to the SIM each tiime the SIM asks for it (usually at power up).
Changing the SIM PIN code If you would like to change the PIN, click the Change PIN button and enter the current PIN into the Current PIN and Confirm current PIN fields, then enter the desired PIN into the New PIN and Confirm new PIN fields and click the Save button. Figure 35 - PIN settings - Change PIN When the PIN has been changed successfully, the following screen is displayed: Figure 36 - SIM security settings – PIN unlock successful NetComm Wireless Intelligent M2M Router 34 www.netcommwireless.
Un nlocking a PUK locke ed SIM Afterr three incorrect attem mpts at entering the PIN, the SIM card beecomes PUK (Personnal Unblocking Key) locked and you are reequested to enter a PPUK code to unlock it. Note: To obtaain the PUK unlock coode, you must contacct Vodafone. You will be issued a PUKK to enable you to unllock the SIM and enteer a new PIN. Enter tthe new PIN and PUKK codes. Clickk the Save button whhen you have finishedd entering the new PIN and PUK codes.
LA AN LA AN configu uration The LAN configuration paage is used to configgure the LAN settingss of the router and to enable or disable DNNS Masquerading. Figure 338 – LAN configuration on settings The default IP of the Etheernet port is 192.168.1.1 with subnet maskk 255.255.255.0. To cchange the IP address or Subnet mask, enter e the new IP Addrress and/or Subnet mask m and click the Saave buttoon.
DH HCP The DHCP page is used to adjust the settingss used by the router’ss built in DHPC Serveer which assigns IP addresses a to locally connected c devices.
OPTION DESCRIPTION DHCP start range Sets the first IP address of the DHCP range DHCP end range Sets the last IP address of the DHCP range DHCP lease time (seconds) The length of time in seconds that DHCP allocated IP addresses are valid Default domain name suffix Specifies the default domain name suffix for the DHCP clients. A domain name suffix enables users to access a local server, for example, server1, without typing the full domain name server1.domain.
Dy ynamic DHCP client list The Dynamic DHCP cliennt list displays a list of o the DHCP clients. If you want to reservee the current IP addreess for future use, click the Clone button aand the details will bee copied to the addreess member to click the Save S button under thhe Address reservatioon list section to conffirm the configurationn. reservation list fields. Rem Figuree 42 - Dynamic DHCP client c list www.netcommwireless.
Routing Static Static routing is the alternative to dynamic routing used in more complex network scenarios and is used to facilitate communication between devices on different networks. Static routing involves configuring the routers in your network with all the information necessary to allow the packets to be forwarded to the correct destination. If you change the IP address of one of the devices in the static route, the route will be broken.
Figurre 44 - Adding a staticc route Active routing liist Static routes are displayeed in the Active routinng list. Figgure 45 - Active routing ng list eleting static rroutes De From m the static routing lisst, click the icoon to the right of the entry e you wish to deleete. Figure re 46 - Deleting a statitic route www.netcommwireless.
RIP RIP (Routing Information Protocol) is used forr advertising routes too other routers. Thus all the routes in the router’s r routing table will be advertised to other nearby routerss. For example, the rooute for thhe router’s Ethernet ssubnet could be adveertised to a router on the PPP interface sidde so that a router onn this network will knoow how to route to a ddevice on the router’s Ethernet subnet. Sttatic routees must be added manually according to your requirements. See S Adding Static Rooutes.
Re edundancy y (VRRP) configurati c ion Virtuual Router Redundanccy Protocol (VRRP) iss a non-proprietary reedundancy protocol designed to increasee the availability of the default gateway seervicing hosts on the same subnet. This increeased reliability is acchieved by advertisingg a “virtual router” (an abstract representtation of master and backup b routers actingg as a group) as a deefault gateway to thee host(s) instead of onne physsical router.
Port Forwarding The Port forwarding list is used to configure the Network Address Translation (NAT) rules currently in effect on the router. Figure 49 – Port forwarding list The purpose of the port forwarding feature is to allow mapping of inbound requests to a specific port on the WAN IP address to a device connected on the Ethernet interface. Adding a port forwarding rule To create a new port forwarding rule: 1. Click the +Add button. The port forwarding settings screen is displayed. 2.
Figuree 50 - Port forwarding settings s d a port forwardinng rule, click the To delete www.netcommwireless.com button on the Portt forwarding list for thhe corresponding rulee that you would like to delete.
DMZ The Demilitarized Zone (DMZ) allows you to configure all incoming traffic on all protocols to be forwarded to a selected device behind the router. This feature can be used to avoid complex port forwarding rules, but it exposes the device to untrusted networks as there is no filtering of what traffic is allowed and what is denied. The DMZ configuration page is used to specify the IP Address of the device to use as the DMZ host. Figure 51 - DMZ configuration 1.
Ro outer Firew wall The Router firewall page is used to enable or disable the in-built firewall on the router. When enabled, the firewall performs stateeful packet inspectionn on inbound traffic from f the wireless WAAN and blocks all unknown sservices, that is, all seervices not listed on the Services configuuration page of the router. With respect to the other Routing options on the t Networking page, the firewall takes a low priority.
MA AC / IP / P Port filterin ng The MAC/IP/Port filter feaature allows you apply a policy to the traffic that passes througgh the router, both inbound and outboundd, so that network acccess can be controlleed. When the filter is a except thosee listed in the “Currennt MAC / IP / Port filtering rules in effect” liist.
Figure 55 - MAC / IP / Port filteering settings OPTION DESCRIPTIO ON Bound Use the drop down list to seelect the direction of the traaffic for which you want to apply a to the rule. Inbound rerefers to all traffic that is entering the roouter including data enterinng from the WAN and the LAN. L Outbound refers to all traffic exiting the router inccluding traffic leaving in the direction of thhe WAN and traffic leaving in the direction of the LAN.
VPN V A Virrtual Private Network (VPN) is a tunnel prooviding a private link between two networrks or devices over a public network. Dataa to be sent via a VPNN needs to be encappsulated and as suchh is geneerally not visible to thhe public network. The advantages of a VPNN connection includee: Data PProtection Accesss Control Data OOrigin Authenticationn Data IIntegrity Eachh VPN connection haas different configurattion requirements.
Figu gure 58 – IPSec profilee edit www.netcommwireless.
NetComm Wireless Intelligent M2M Router 52 www.netcommwireless.
The following table descrribes each of the fieldds of the IPSec VPN Connection Settings page. ITTEM DEFINITION IPSec profile Enables or disabless the VPN profile. Profile name A name used to ideentify the VPN connection pprofile. Remote IPSec server adddress The IP address of thhe IPSec server. Remote LAN address Enter the IP address of the remote network forr use on the VPN connectioon. Remote LAN subnet massk Enter the subnet maask in use on the remote neetwork.
Op penVPN OpenVPN is an open souurce virtual private neetwork (VPN) program m for creating point-too-point or server-to-m multi-client encryptedd tunnels between hoost computers. It can traverse network adddress w well through prroxy servers and cann run over TCP and UDP transslation (NAT) and fireewalls and allows autthentication by certificcate, pre-shared keyy or username and paassword. OpenVPN works transsports.
Ce ertificate Auth hentication In the Certificate Manageement section, enter the required details to t create a client certtificate. All fields are required. When you have finished enterinng the details, click thhe Generate button. Figure Fi 60 - OpenVPN se server configuration – Certificate manageme ment w format you wouuld like.
Figure 61 – OpenVPN server profile settings NetComm Wireless Intelligent M2M Router 56 www.netcommwireless.
Use ername / Passsword Authen ntication In the Username/Passwoord section, enter the username and password you would like tto use for authentication on the OpenVPN N Server. Click the Doownload CA certificatte button to save the ca.crt file. This file will need to be provided to the client. Note: If yoou wish to have moree than one client connnect to this OpenVPNN server, you must usse Certificate authenttication mode as Useername/Password only allows for a single client connectioon.
Certificate Authentication In the Certificate upload section at the bottom of the screen, click the Browse button and locate the certificate file you downloaded when you configured the OpenVPN server. When it has been selected, click the Upload button to send it to the router. Figure 63 - OpenVPN client - Certificate upload Username / Password Authentication Enter the username and password to authenticate with the OpenVPN server.
Figure 65 - OpenVPN P2P modde settings 4. Use the Seerver port field to seleect a port number andd then use the drop ddown list to select a packet p type to use for the OpenVPN serveer. The default OpenVPN port is 1194 andd default paccket type is UDP. 5. In the Locaal IP Address and Remote IP Address fields, enter the respecttive local and remotee IP addresses to usee for the OpenVPN tunnnel. The slave should have the reverse settings of tthe master. 6.
PPTP-Client The Point-to-Point Tunnelling Protocol (PPTP) is a method for implementing virtual private networks using a TCP and GRE tunnel to encapsulate PPP packets. PPTP operates on Layer 2 of the OSI model and is included on Windows computers. Configuring the PPTP Client To configure the PPTP client: 1. From the menu bar at the top of the screen, click Networking and then from the VPN section on the left side of the screen, click PPTP client. The PPTP client list is displayed.
3. Click the Ennable PPTP client toggle key to switch it to the ON position. 4. In the Profille name list, enter a profile name for the tunnel. t This may be aanything you like andd is used to identify thhe tunnel on the routeer. 5. Use the Ussername and Passwoord fields to enter the username and passsword for the PPTP acccount. 6. In the PPTPP server address field, enter the IP addreess of the PPTP serveer. 7.
GRE tunnelling The Generic Route Encapsulation (GRE) protocol is used in addition to Point-to-Point Tunnelling Protocol (PPTP) to create VPNs (virtual private networks) between clients and servers or between clients only. Once a PPTP control session establishes the VPN tunnel GRE is used to securely encapsulate the data or payload. Configuring GRE tunnelling To configure GRE tunnelling: 1.
4. In the Profille name, enter a proffile name for the tunnnel. This may be anytthing you like and is used u to identify the tuunnel on the router. 5. In the GRE server address fieldd, enter the IP addresss of the GRE server. 6. In the Locaal tunnel address fieldd, enter the IP addresss you want to assignn the tunnel locally. 7. In the Remote tunnel address field, enter the IP address you want to asssign to the remote tunnnel. 8.
Services Dynamic DNS The DDNS page is used to configure the Dynamic DNS feature of the router. A number of Dynamic DNS hosts are available from which to select. Figure 70 – Dynamic DNS settings Dynamic DNS provides a method for the router to update an external name server with the current WAN IP address. To configure dynamic DNS: 1. Click the DDNS configuration toggle key to switch it to the ON position. 2. From the Dynamic DNS drop down list, select the Dynamic DNS service that you wish to use.
Network N k time (NTP) ( The NTP (Network Time PProtocol) settings pagge allows you to configure the Intelligent M2M Router to synchhronize its internal cloock with a global Inteernet Time server andd specify the time zone for f for features ssuch as System Log entries and Firewall settings where the cuurrent system time is displayed and recorrded. the location of the router.. This provides an acccurate timekeeping function Any NTP server availablee publicly on the interrnet may be used.
Data stream manager The data stream manager provides you with the ability to create mappings between input ports and output ports (e.g. Serial Port, SMS, GPS, USB) and performs any required translation or data processing by each virtual data tunnel. Customers interested in developing their own applications to create custom mappings can contact NetComm Wireless about our Software Development Kit. To add a new data stream: 1. Click the +Add button on the right side of the page.
Watchdo W ogs To access the Watchdoggs page, click the Services menu item, theen select the Watchddogs menu item on the left. Figuure 74 - Watchdogs Seettings Watcchdogs are features wwhich monitor the router for anomalies annd restart the router iff an anomaly occurs preventing its normaal operation. When coonfigured, the watchddogs feature transmitts conttrolled ping packets tto 1 or 2 user specifieed IP addresses to confirm an active connnection.
The watchdog works as ffollows: a) The router ssends 3 consecutive pings to the first desstination address at tthe interval specified in the Periodic Ping timer field. b) If all 3 pings to the first destination address fail, the router r sends 3 conseecutive pings to the second s destination adddress at the Periodicc Ping timer interval.
Co onfiguring g Periodic Ping settin ngs The Periodic Ping settinggs configure the routeer to transmit controlled ping packets to 2 specified IP addresses. If the router does not receive responnses to the pings, thee router will reboot. To configure the ping waatchdog: 1. In the First destination address field, enter a websitee address or IP addreess to which the router should send the first round of ping req uests. 2.
SNMP SNMP configuration The SNMP page is used to configure the SNMP features of the router. Figure 76 - SNMP configuration SNMP (Simple Network Management Protocol) is used to remotely monitor the router for conditions that may warrant administrative attention. It can be used to retrieve information from the router such as the signal strength, the system time and the interface status. To configure SNMP: 1. Click the SNMP toggle key to switch it to the ON position. 2.
SN NMP traps SNM MP traps are messagees from the router to the Network Manageement System sent ass UDP packets. Theyy are often used to nootify the managementt system of any significant events such ass whetther the link is up or ddown. Co onfiguring g SNMP tra aps To configure SNMP trapss: 1. In the Trap destination field, entter the IP address to which SNMP data is to be sent. 2. In the Hearrtbeat interval field, enter the number of seeconds between SNMMP heartbeats. 3.
TR R-069 To access the TR-069 coonfiguration page, clicck the Services menu item, then select thhe TR-069 menu item on the left. Figure re 78 - TR-069 configu guration The TR-069 (Technical RReport 069) protocol is a technical specificcation also known as CPE WAN Managem ment Protocol (CWMPP). It is a framework fofor remote management and autoconffiguration of end-userr devices such as customer-premises equuipment (CPE) and AAuto Configuration Seervers (ACS).
GPS G The built-in GPS module allows you to use loccation-based services, monitor field deplooyed hardware or findd your current locatioon. The GPS Status wwindow provides up to date information abbout c location and tthe current GPS signal conditions (positioon dilution of precisioon (PDOP), horizontal dilution of precision (HDOP) and verticall dilution of precision (VDOP)) of the routeer. the current To use the GPS function, set the GPS operation toggle key to ON and click the Save bbutton.
SMS messaging The Intelligent M2M Router offers an advanced SMS feature set, including sending messages, receiving messages, redirecting incoming messages to another destination, as well as supporting remote commands and diagnostics messages. Some of the functions supported include: Ability to send a text message via a CDMA network and store it in permanent storage. Ability to receive a text message via a CDMA network and store it in permanent storage.
OPTION DEFINITION Geneeral SMS configuration SMSS messaging Toggles the SMS functionalityy of the router on and off. Messsages per page (10-50) The number of SMS messagees to display per page. Muust be a value between 10 and 50. Encooding scheme The encoding method used ffor outbound SMS messages. GSM 7-bit mode permits up to 160 characters peer message but drops to 500 characters if the message inccludes special characters.
New message The New message page can be used to send SMS text messages to a single or multiple recipients. A new SMS message can be sent to a maximum of 100 recipients at the same time. After sending the message, the result is displayed next to the destination number as “Success” or “Failure” if the message failed to send. By default, only one destination number field is displayed.
Inb box / Outb box The Inbox displays all recceived messages thaat are stored on the router while the Outboox displays all sent messages. m Figure 81 - SMS Inboox FFigure 82 - SMS Outbbox ICON DESCRIPTION Forwward button. Click this buttton to open a new messag e window where you can forward the corresponding message to another recipiient. Repply button. Click this buttonn to open a new message wwindow where you can reply to the sender. Addd to White list.
Diagnos D stics The Diagnostics page is used to configure thee SMS diagnostics and command executtion configuration. Thhis allows you to channge the configurationn, perform functions remotely r and check on o the MS commands. statuus of the router via SM To access the Diagnosticcs page, click on the Services menu item then select the SMSS menu on the left andd finally select Diagnostics beneath it.
On nly accept auth henticated SM MS messages Enabbles or disables checcking the sender’s phhone number againstt the allowed sender white list for incoming diagnostics and coommand execution SSMS messages. If authentication is enableed, the router will cheeck if the sender’s nuumber exists in the wwhite list. If it exists, thhe router then checkss the password (if connfigured) in the incom ming message against the passsword in the white listt for the correspondinng sending number.
White List for diagnostic or execution SMS The white list is a list of mobile numbers that you can create which are considered “friendly” to the router. If Only accept authenticated SMS messages is enabled in the diagnostics section, the router will compare the mobile number of all incoming diagnostic and command messages against this white list to determine whether the diagnostic or command should be executed. You may optionally configure a password for each number to give an additional level of security.
Se ending g an SM MS Diag gnostic Comm mand Folloow the steps below too configure the routerr to optionally acceptt SMS diagnostic commmands only from auuthenticated senders and learn how to seend SMS diagnostic commands c to the router. 1. Navigate too the Services > SMSS messaging > Diagnnostics page 2. Confirm thaat the Enable remote diagnostics and com mmand execution togggle key is set to the ON position. If it is seet to OFF click the tooggle key to switch it to the ON position. 3.
SMS command format Generic Format for reading variables: get VARIABLE PASSWORD get VARIABLE Generic Format for writing to variables: set VARIABLE=VALUE PASSWORD set VARIABLE=VALUE Generic Format for executing a command: Execute COMMAND PASSWORD execute COMMAND Replies Upon receipt of a successfully formatted, authenticated (if required) command, the gateway will reply to the SMS in the following format: TYPE SMS CONTENTS get command “VARIABLE=VALUE” set command “Successfully set VARIABLE to VALUE”
www.netcommwireless.
A paassword (if required),, only needs to be sppecified once per SMS, but can be prefixeed to each commandd if desired. “PASSSWORD get Variable1”; “get VARIABLE22” “PASSSWORD set VARIABBLE1=VALUE1”; “sett VARIABLE2=VALUEE2” If thee command sent includes the “reboot” coommand and has alreeady passed the whitte list password checck, the device keeps this password and ex executes the remaininng command line afteer the rebooot with this same passsword.
The following table lists vvalid variables where “x” is a profile numbber (1-6). If no profile is specified, variablees are read from or written w to for the curreent active profile. If a profile is specified, variaables are read from oor written to for the sppecified profile number (‘x’). # RDB VARIABLE NAAME SMS VARIABLE NAME 2 3 DESCRRIPTION EXAM MPLE VALUE link.profile.1.enable Reaad: link.profile.1.appn (proofile no,atd#xxx,user,pass,,auth,iplocal,status) link.profile.1.
Not required get meid Required PASSWORD get meid Not required get band Required PASSWORD get band Not required execute pdpcycle Required PASSWORD execute pdpcycle Not required execute pdpdown Required PASSWORD execute pdpdown Not required execute pdpup Required PASSWORD execute pdpup Not required get wanip; get rssi Required PASSWORD get wanip; get rssi Not required set ssh.genkeys=1; set username=test; set auth=pap Required PASSWORD set ssh.
Not requireed set ssh.proto=1 Required PASSWORD set ssh.pproto=1 Not requireed get ssh.passauth Required PASSWORD get.ssh.ppassauth Not requireed set ssh.passauth=1 orr set ssh.passauth=0 Required PASSWORD set ssh.ppassauth=1 or PASSWORD set ssh.passauth=0 Not requireed execute ssh.genkeys Required PASSWORD execute ssh.genkeys s Not requireed execute ssh.clearkeyss Required PASSWORD execute ssh.
System Log The Log pages are used to display or download the System log and IPSec logs on the router. System log The System Log enables you to troubleshoot any issues you may be experiencing with your Intelligent M2M Router. To access the System Log page, click on the System menu. The System Log is displayed. Figure 86 - System log file Log file Use the Display level drop-down list to select a message level to be displayed. The message levels are described in the table below.
2. Use a remoote syslog server www.netcommwireless.
Enable the log to file option When the router is configured to log to a file, the log data is stored in flash memory, making it accessible after a reboot of the router. Up to 512kb of log data will be stored before it is overwritten by new log data. Flash memory has a finite number of program-erase operations that it may perform to the blocks of memory.
IPS Sec log The IPSec log section proovides the ability for you to download the log for the IPSec VPPN function. This can assist in troubleshoooting any problems yoou may have with thee IPSec VPN. Figure 88 - IPSec logg Use the Log level drop down list to specify the type of detail you want w to capture in thee log and then click the Save button.
Sy ystem C Config guration n Se ettings bac ckup and restore r The settings backup / resstore page is used too backup or restore thhe router’s configurattion or to reset it to faactory defaults. In ordder to view the settinggs page you must bee logged into the webb user dmin.
Up pload To access the Upload paage, click on the Systtem menu, then System Configuration andd then Upload. The Upload page allows you to upload firmwaare files, HTTPS certificates or user createed application packaages to the Intelligentt M2M Router. When firmware files have been b uploaded, they can also be installed from thiss page. PDF files, such as this user guidee may also be uploadded for access on thee router’s help page.
Figure 91 - File upload 6. Repeat steps 4 and 5 for the main system firmware image. 7. The uploaded firmware images are listed in the Uploaded files section. Click the Install link next to the recovery image to begin installing the recovery firmware image and then click OK on the confirmation window that appears. Figure 92 - Uploaded files 8. The recovery firmware image is flashed and when it is complete, the router displays “The firmware update was successful” and returns to the main Upload screen.
9. Click the Innstall link to the right of o the main firmware image you uploadedd and then click OK to t confirm that you waant to continue with tthe installation. Note: Do not remove the power when w the router’s LEDDs are flashing as thiss is when the firmware update is in processs. 10. The installaation is complete wheen the countdown reaaches zero. The routeer attempts to redirecct you to the Status page. Figure 94 --– Installing main firm mware image 11.
Package manager The Package Manager page is used to provide details of any user installed packages on the router and allow them to be uninstalled. For more information on application development, contact NetComm Wireless about our Software Development Kit. Figure 95 – Software applications manager The Application name, Version number of the application, the architecture type and time of installation are all displayed.
Ad dministratiion setting gs To access the Administraation Settings page, click c on the System menu m then the Adminnistration menu on thee left and then click on o Administration Setttings. The Administration settings page is used to enable or disable prottocols used for remotte access and configgure the passwords for the user accountss used to log in to thee router. Figur ure 96 - Administrationn page www.netcommwireless.
OPTION DEFINITION D Remote router access coontrol Enable HTTP Enable or disaable remote HTTP access to t the router. You can also set the port you would likee remote HTTP access to be available on. HTTP management port Enter a port nuumber between 1 and 65534 to use when accessing the router remotely. Enable HTTPS Enable or disaable remote HTTPS accesss to the router using a secuure connection.
HTTPS H k key managem ment What W is HTT TP Secure?? HTTP Secure or HTTPS iss the use of the HTTPP protocol over an SSSL/TLS protocol. It is used primarily to prootect against eavesdrropping of communiccation between a webb browser and the weeb t which it is connectted. This is especiallyy important when youu wish to have a secuure connection over a public network such as the internet.
CODE COUNTRY COUNTRY CODE COUNTRY CODE COUNTRY AX Åland Islands ER Eritrea LS Lesotho SA Saudi Arabia AD Andorra ES Spain LT Lithuania SB Solomon Islands AE United Arab Emirates ET Ethiopia LU Luxembourg SC Seychelles AF Afghanistan FI Finland LV Latvia SE Sweden AG Antigua and Barbuda FJ Fiji LY Libya SG Singapore AI Anguilla FK Falkland Islands (Malvinas) MA Morocco SH St.
www.netcommwireless.
3. When you have entered all the required details, press the Generate button. The certificate takes several minutes to generate. When the certificate has been generated, you are informed that it has been successfully generated and installed. The web server on the router restarts and you are logged out of the router. Click OK to be taken back to the login screen. Figure 98 - New certificate successfully generated message NetComm Wireless Intelligent M2M Router 102 www.netcommwireless.
SS SH Key y Manag gemen nt Secuure Shell (SSH) is UNNIX-based command interface and network protocol used to ggain secure access too a remote computer, execute commandss on a remote machinne or to transfer files betwween machines. It waas designed as a replacement for Telnet and a other insecure reemote shell protocols which send informattion, including passwwords, as plain text. a Two ccommon ways of usinng SSH are: SSH uses RSA public keyy cryptography for booth connection and authentication.
Host key management SSH keys provide a means of identification using public key cryptography and challenge response authentication. This means that a secure connection can be established without transmitting a password, thereby greatly reducing the threat of someone eavesdropping and guessing the correct credentials. SSH Keys always come in pairs with one being a public key and the other a private key. The public key may be shared with any server to which you want to connect.
LE ED operatiion mode The 7 front LED indicatorrs may be turned off after a a timeout periodd for aesthetic or powwer saving reasons. To T access the LED Operation O Mode pagee, click the System menu, then Administraation M on thhe left and finally seleect LED Operation Mode. Figure re 100 - LED Operationn Mode m of the LEDs on the front panel of thee router. To set the ligghts to operate at all times, t set this to Alwa ways on.
Re eboot The reboot option in the SSystem section perfoorms a soft reboot of the router. This can bbe useful if you have made configuration changes you want too implement. To reeboot the router: 1. Click the Syystem menu item from m the top menu bar. 2. Click the Reboot button from thee menu on the left sidde of the screen. Figure re 101 - Reboot menuu option 3. The router ddisplays a warning thhat you are about to perform p a reboot.
App A pend dix A: T Tables Tabble 1 - Document Revision History ............................ . .......................................................................................................................................................................... 3 Tabble 2 - Device Dim mensions ...................................................................................................................................................................................................................
Appendix B: Device Mounting Dimensions The image below is at 100% scale and may be used as a template for mounting the device. All dimensions shown are in millimetres. Figure 103 - Device mounting dimensions NetComm Wireless Intelligent M2M Router 108 www.netcommwireless.
App A pend dix C: M Mou unting Brac B ckett The image below is at 1000% scale and may be b used as a templatee for mounting the brracket. All dimensionns shown are in millim metres. Figuure 104 - Mounting brracket www.netcommwireless.
App A pend dix D: D Defa aultt Settting gs The following tables list thhe default settings foor the Intelligent M2M M Router. LAN (MANAGEMENTT) Static IP Address: 192.168.1.1 Subneet Mask: 255.255.255.0 Default Gateway: 192.168.1.
Restorin ng facto ory deffault settings Resttoring factory defaultss will reset the Intelliggent M2M Router to its factory default connfiguration. You may encounter a situationn where you need to restore the factory deefaults on your Intelligent M2M M Router such as: You have lost your username and password annd are unable to loginn to the web configurration page; You aare asked to perform a factory reset by support staff.
Recovery mode The Intelligent M2M Router features two independent operating systems, each with its own file systems. These two systems are referred to as 'Main' and 'Recovery'. It is always possible to use one in order to restore the other in the event that one system becomes damaged or corrupted (such as during a firmware upgrade failure). Both systems have Web interfaces that can be used to manipulate the other inactive system.
App A pend dix E: H HTT TPS Uplo U oad ding g a self--sign ned d cert c ifica ate If you have your own selff-signed certificate orr one purchased elseewhere and signed bby a Certificate Authority, you can upload it to the Intelligent M22M Router using the Upload page. Note: Your keey and certificate filees must be named server.key and server.ccrt respectively otherrwise they will not work. To upload your certificatee: 1. Click on thee System item from thhe top menu bar.
3. Click the Upload button to begin uploading it to the router. The file appears in the list of files stored on the router. Figure 108 - Server certificate file uploaded 4. Repeat steps 2 and 3 for the server key file. 5. Click the Install link next to the server.crt file then click OK on the prompt that is displayed. The certificate file is installed. Repeat this for the key file. When each file is installed it is removed from the list of stored files. Figure 109 - Installing the server.
App A pend dix F: R RJ-45 5 co onnecto or The RJ-45 connector proovides an interface foor a data connection and a for device input power using the pin layout shown below. Pin: 8 1 Figure re 110 -The RJ-45 connnector PIIN COLOUUR SIGNAAL (802.3AF MODE A) A SIGNAAL (802.
Safety and product care RF Exposure Your device contains a transmitter and a receiver. When it is on, it receives and transmits RF energy. When you communicate with your device, the system handling your connection controls the power level at which your device transmits. This device meets the government’s requirements for exposure to radio waves.
FC CC Sta atement FC CC compliiance Fedeeral Communicationss Commission Notice (United States): Befoore a wireless devicee model is available for f sale to the public, it must be tested andd certified to the FCCC that it does not excceed the limit established by thhe government-adoppted requirement for safe s exposure. FC CC regulattions § 155.19 (a)(3) This device complies withh part 15 of the FCC Rules.
IC Regulations: RSS-Gen 7.1.3 This device complies with Industry Canada license-exempt RSS standard(s). Operation is subject to the following two conditions: (1) this device may not cause interference, and (2) this device must accept any interference, including interference that may cause undesired operation of the device. Le présent appareil est conforme aux CNR d'Industrie Canada applicables aux appareils radio exempts de licence.
Electrica al safetty Ac ccessoriess Onlyy use approved acceessories. Do not n connect with incoompatible products or accessories. Co onnection to a car Seekk professional advicee when connecting a device interface to thhe vehicle electrical ssystem. Distracti D ion Op perating m machinery Full attention a must be givven to operating the machinery m in order too reduce the risk of ann accident. Prroduct handliing You alone are responsiblle for how you use yoour device and any consequences of its uuse.
Emergency situations This device, like any wireless device, operates using radio signals, which cannot guarantee connection in all conditions. Therefore, you must never rely solely on any wireless device for emergency communications. Device heating Your device may become warm during normal use. Faulty and damaged products Do not attempt to disassemble the device or its accessories. Only qualified personnel must service or repair the device or its accessories.