RACOM M!DGE, MG102 Operating Manual

Page 1
Operating manual
.
GPRS/EDGE/UMTS routers
M!DGE, MG102
.
1.1
11/16/2011
RACOMs.r.o. •Mirova1283•59231NoveMestonaMorave•CzechRepublic
Tel.:+420565659511•Fax:+420565659512•E-mail: racom@racom.eu
Page 2
Page 3
Table of Contents
Introduction .......................................................................................................................................... 5
1. Product description .......................................................................................................................... 6
1.1. The M!DGE – MG102 Family ............................................................................................... 6
1.2. Product Description M!DGE ................................................................................................. 7
1.3. Product Description MG102 ................................................................................................. 9
1.4. M!DGE/MG102 Software .................................................................................................... 12
1.5. Application Overview .......................................................................................................... 12
2. Installation ..................................................................................................................................... 14
2.1. Environmental Conditions .................................................................................................. 14
2.2. Installation of the Router .................................................................................................... 14
2.3. GPRS/EDGE/UMTS router assembly ............................................................................... 15
3. Configuration ................................................................................................................................. 16
3.1. Configuration via the M!DGE/MG102 Web Manager ......................................................... 16
3.2. Configuration Parameters of the M!DGE/MG102 ............................................................... 83
3.3. Configuration via Command Line Interface (CLI) ............................................................... 96
4. Software Interfaces ..................................................................................................................... 102
4.1. GPS Server ...................................................................................................................... 102
5. Troubleshooting ........................................................................................................................... 104
5.1. Error Messages ................................................................................................................ 104
5.2. System Log and Log Files ................................................................................................ 104
5.3. Network Protocol Analyzer ............................................................................................... 104
6. Customer Service ........................................................................................................................ 106
6.1. Support ............................................................................................................................. 106
A. Connectors and Cables .............................................................................................................. 107
A.1. Pin Assignments for the Communication Interfaces ........................................................ 107
A.2. Ethernet Plug (ETH; RJ-45) ............................................................................................. 108
A.3. Power Plug MG102 .......................................................................................................... 108
A.4. Cable ETH/RS232 ........................................................................................................... 108
B. Safety Instructions ...................................................................................................................... 109
B.1. Declaration of Conformity ................................................................................................ 109
B.2. RoHS and WEEE compliance .......................................................................................... 110
C. Glossary ...................................................................................................................................... 111
D. Revision History .......................................................................................................................... 113
List of Figures
1. Router MG102 ................................................................................................................................. 5
2. Router M!DGE ................................................................................................................................. 5
1.1. Production code MG102 ............................................................................................................... 6
1.2. Front panel and terminal panel of M!DGE .................................................................................... 7
1.3. The Front Panel ............................................................................................................................ 9
1.4. The Back Panel of 2009 model .................................................................................................. 11
1.5. The Back Panel of 2010 model .................................................................................................. 11
A.1. Serial connector Sub-D 9pol plug female (DSUB9F) ............................................................... 107
A.2. RJ-45 Plug ............................................................................................................................... 108
A.3. Power connector ...................................................................................................................... 108
A.4. RJ-45 and RS232 D-SUB-9 ..................................................................................................... 108
List of Tables
3© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Page 4
1.1. MG Model Overview ..................................................................................................................... 6
1.2. M!DGEs interfaces and status indicators ..................................................................................... 7
1.3. Pin assignment of screw terminal ................................................................................................ 8
1.4. Components on the front panel .................................................................................................. 10
1.5. Components on the back panel ................................................................................................. 11
A.1. Pin assignment COM interface RS232 .................................................................................... 107
A.2. Pin assignment COM interface RS485 .................................................................................... 107
A.3. Pin assignment Ethernet Interface ........................................................................................... 108
A.4. Pin assignment power plug ...................................................................................................... 108
A.5. Pin assignment Ethernet Interface ........................................................................................... 108
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.4
GPRS/EDGE/UMTS routers M!DGE, MG102
Page 5
Introduction
Thank you for purchasing M!DGE/MG102 Wireless Router from Racom. This chapter gives you an in­troduction to M!DGE/MG102 Wireless Router. The following chapters describe the installation and the configuration.
In next description is used the notation router instead of GPRS/EDGE/UMTS router.
Fig. 1: Router MG102
Fig. 2: Router M!DGE
5© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Introduction
Page 6
1. Product description
1.1. The M!DGE – MG102 Family
The handling of the different MG models is very similar. All models run MG Software which adapts itself to the MG Hardware. The software will not allow you to configure options the hardware does not offer (e.g. GPS or Digital I/O). The below table shows the hardware varieties:
Tab. 1.1: MG Model Overview
MG102-
2GW
MG102-
2NW
MG102-
2GN
MG102-
2NN
MG102-
1GN
MG102-
1NN
M!DGE
yesyesyesyesyesyesyesGSM, GPRS, EDGE
yesyesyesyesyes
UMTS, HSDPA, HSUPA
yesyesWLAN
2222221SIM card sockets
4444442Ethernet ports
1111111Serial ports
yesyesyes
Integrated GPS re­ceiver
2/2
Digital inputs / out­puts
Following models are in standard production:
M!DGE
MG102-1NN and MG102-1GN
MG102-2NN and MG102-2GN
Other models are available on demand.
=GPRSrouterMG102,
includestwoSIMcard–worksintwonetworks, worksin850/900/1800/1900/2100MHzbands,
MG102-2GN
Example:
modemhasanintegratedGPSreceiver
MG102-2NN
2×sim–2
GPRS,EDGE–1
GPRS,EDGE,UMTS–2
GPSne–N
GPSano–G
WLANne–N
WLANano–W
GSM
Fig. 1.1: Production code MG102
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.6
Product description
Page 7
1.2. Product Description M!DGE
Fig. 1.2: Front panel and terminal panel of M!DGE
The following table describes the meaning of the status indicators:
Tab. 1.2: M!DGEs interfaces and status indicators
FunctionStateColorLabel
The caption on the green side apply start up, maintenancesolid
greenStatus
The caption on the yellow side apply start up, maintenanceblinking slowly
Very good GSM signalgreen ongreen yellow red
Mob
Good GSM signalyellow on
Bad GSM signalred on
VPN connection is upon greenVPN
VPN connection is downoff
Input seton yellowIn1
Input not setoff
Input seton yellowIn2
Input not setoff
Closedon yellowOut1
Openedoff
Closedon yellowOut2
Openedoff
USB Host Port. Support for memory sticks for configuration and
software update.
USB
First Ethernet Port. Can be used as LAN or WAN PortEthernet 1
First Ethernet Port. Can be used as LAN or WAN PortEthernet 2
SMA female connector for GSM/UMTS antenna 50 ΩMobile
7© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Product description
Page 8
Please find the description of each interface in the following table:
1.2.1. Pin Assignments
Screw terminal
Tab. 1.3: Pin assignment of screw terminal
signalpin
V
GND
1
V1+ (12–48 V=)2
V
GND
3
V2+ (12–48 V=)4
RxD5
TxD6
GND7
Out1: Dry contact relay
Normally open with M!DGE without
powering
8
9
Out2: Dry contact relay
Normally open with M!DGE without
powering
10
11
DI1−12
DI1+13
DI2−14
DI2+15
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.8
Product description
Page 9
1.3. Product Description MG102
1.3.1. The Front Panel
The front panel has 10 status indicators. In addition there are two SIM card slots and a reset button at the front panel.
Fig. 1.3: The Front Panel
The following table describes the components on the front panel:
9© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Product description
Page 10
Tab. 1.4: Components on the front panel
FunctionStateColorLabelPanel
The device is poweredon
greenPowerFront
Power is missingoff
This indicates one of the following conditions:
- the device is starting up
- loading a new configuration
- factory reset initiated by Web Manager
blinking slowly
greenStatusFront
The device is readyon
Restart triggered by watchdogblinking fastly
The device does not start upoff
1 LED on: weak signal 2 LEDs on: medium signal 3 LEDs on: strong signal 4 LEDs on: very strong signal
on
green
Signal Strength
Front
No or insufficient signaloff
Software updaterunning
Mobile connection is being establishedblinking slowly
greenUMTS/GSMFront Mobile connection is upon
Mobile connection is downoff
WLAN connection is being establishedblinking slowly
greenWLANFront WLAN connection is upon
WLAN connection is downoff
VPN connection is upon
greenVPNFront
VPN connection is downoff
Service is enabled and valid GPS data is received and transmitted
on
green
GPS (MG102
-xGx only)
Front
No GPS data transmitted (not available or service disabled)off
Restart: press this button when the status LED is on Factory reset: press and hold this button for at least 5 seconds
ResetFront
SIM socket 1SIM1Front
SIM socket 2SIM2Front
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.10
Product description
Page 11
1.3.2. The Back Panel
The back panel has the interfaces described in the table below:
Fig. 1.4: The Back Panel of 2009 model
Fig. 1.5: The Back Panel of 2010 model
Tab. 1.5: Components on the back panel
FunctionStateColorLabelPanel
GPS antenna connector Impedance: 50 Ω Connector: SMA female MG102-xGx support passive GPS antennas only
GPS Antenna (MG102-xGx only)
Back
UMTS / GSM antenna connector Impedance: 50 Ω Connector: SMA female
UMTS / GSM Antenna
Back
Sub-D 9 (model 2009) or RJ45 port (model 2010) RS232 (default) or RS485 (configurable)
COMBack
4 Ethernet ports – 4port Eth switch / 4 LANs/1WAN+3LANs according to setting The default IP address is set to 192.168.1.1.
Ethernet Ports
Back
Voltage feed connector (9–32 VDC)PowerBack
Physical linkon
green
Link/Activity (Ethernet Ports)
Back No physical linkoff
Data transmissionflashing
Data rate 100 MBit/son
green
Speed 10/100 (Ethernet Ports)
Back
Data rate 10 MBit/soff
11© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Product description
Page 12
1.4. M!DGE/MG102 Software
All M!DGE/MG102 Wireless Routers run M!DGE/MG102 Software. Software offers the following key features:
Interfaces and Connection Management (section Section 3.1.4, “Interfaces”) ○ Dial-out (on demand, permanent) ○ Connection Monitoring ○ Fallback to backup profile or SIM ○ SIM and PIN management ○ Automatic or manual network selection
Routing (section Section 3.1.5, “Routing”) ○ Static Routing ○ NAPT / Port Forwarding
Security / Firewall (section Section 3.1.6, “Firewall”) ○ NAPT / Port Forwarding ○ Access Control Lists ○ Stateful Inspection Firewall
Virtual Private Networking (VPN) (section Section 1.5.3, “Virtual Private Networks (VPN)”) ○ OpenVPN Client ○ PPTP Server ○ IPsec Peer ○ Dial-in Server
Services (section Section 3.1.8, “Services” ) ○ COM Server (Tunneling of the serial line over IP) ○ Modbus-RTU to Modbus-TCP Gateway ○ DHCP Server ○ DNS Proxy Server ○ Dynamic DNS Client ○ E-mail Client ○ Notification via E-mail and SMS ○ SMS Client ○ SSH Server ○ SNMP Agent ○ Telnet Server ○ Unstructured Supplementary Service Data (USSD) ○ Web Server ○ GPS Daemon (MG102-xGx only)
System Administration (section Section 3.1.9, “System”) ○ Configuration via Web Manager ○ Configuration via Command Line Interface (CLI) accessible via Secure Shell (SSH) and telnet ○ Batch configuration with text files ○ User admnistration ○ Troubleshooting tools ○ Over the air software update
1.5. Application Overview
M!DGE/MG102 is an access router for mobile telecom networks. Router can hook up a whole local area network to the mobile telecom network. Certainly M!DGE/MG102 can also be used to attach a single device.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.12
Product description
Page 13
1.5.1. Mobile Internet Access
M!DGE/MG102 can be used for mobile Internet access. Supported services include:
Universal Mobile Telecommunications System (UMTS), High Speed Packet Access (HSPA) including HSDPA and HSUPA
General Packet Radio Service (GPRS), Enhanced Data rates for GSM Evolution (EDGE)
Circuit Switched Data (CSD)
1.5.2. Access to a Remote Network
M!DGE/MG102 can be used to access a remote network. Possible setups are:
Access via public IP address
Access via M!DGE/MG102 initiated VPN
Access via CSD Dial-in
1.5.3. Virtual Private Networks (VPN)
M!DGE/MG102 supports various types of VPN technologies. The following components are included:
OpenVPN client
IPsec initiator
PPTP server
Dial-in server
13© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Product description
Page 14
2. Installation
2.1. Environmental Conditions
The following precaution must be taken before installing M!DGE/MG102:
Avoid direct solar radiation
Protect the device from humidity, steam and aggressive fluids
Grant sufficient circulation of air around M!DGE/MG102
For indoor use only
Temperature range MG102-1xx: −20 °C to +70 °C
Temperature range MG102-2xx: −20 °C to +65 °C
Temperature range M!DGE: −20 °C to +65 °C
Humidity: 0 to 95 % (non condensing)
Altitude up to 4000 m (MG102)
Mains Voltage Ripple less than ±10 % of the nominal voltage
Overvoltage Category: II
Pollution Degree: 2
2.2. Installation of the Router
MG102 is designed for mounting to a panel using through holes or to be put on a worktop for installing to DIN rails use DIN rail bracket. M!DGE is designed for mounting to a DIN rail. M!DGE is designed for mounting to a DIN rail. Please consider the safety instructions and the environmental conditions.
2.2.1. Installation of the SIM Card(s)
The MG102 router incorporates two separate SIM card sockets so that if your application demands it, you may install SIM cards for two different networks of two different mobile network operators. If you only use one SIM card insert it in SIM socket 1.
M!DGE has only one SIM card socked. For instalation of SIM card the cover has to be removed. Make sure the SIM is suitable for data transmission.
2.2.2. Installation of the UMTS/GSM Antenna
MG102 Wireless Routers will only operate reliably over the GSM network if there is a good signal. For many applications the flexible stub antenna provided will be suitable but in some circumstances it may be necessary to use a remote antenna with an extended cable to allow the antenna itself to be positioned to provide the best possible signal reception. MG102 can supply a range of suitable antennas. Consider the effects caused by Faraday cages such as large metal surfaces (elevators, machine housings, etc.), close meshed iron constructions. Fit the antenna or connect the antenna cable to the GSM antenna connector.
Note
Be sure that the antenna was installed according to the recommendation of antenna producer and all parts of antenna and antenna holder was properly fasten.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.14
Installation
Page 15
2.2.3. Installation of the GPS Antenna
MG102 require passive GPS antennas. The router needs to put the antenna with a good view of satellites.
2.2.4. Installation of the Local Area Network
Up to four Ethernet devices can directly be connected to the MG102, maximal two to M!DGE.
2.2.5. Installation of the Power Supply
MG102 can be powered with the included power supply or another external source supplying between 9 and 32 Volts DC (10–55 Volts DC M!DGE). M!DGE/MG102 is for use with certified (CSA or equivalent) power supply, which must have a limited and SELV circuit output.
2.3. GPRS/EDGE/UMTS router assembly
Routers M!DGE/MG102 are special devices which require skilled assembly. For subsequent maintenance RACOM specially trains the user’s skilled staff and as an additional aid provides them with Operating regulations for radio data networks and Firmware – Documentation. Only the manufacturer, RACOM s.r.o. Mírová 1283, 592 31 Nové Město na Moravě, Czech Republic, Tel.: +420 565659511, is entitled to repair any devices.
Important
CAUTION! Danger of explosion upon replacing the incorrect type of battery. Follow the manufacturers instructions for handling used batteries.
15© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Installation
Page 16
3. Configuration
M!DGE/MG102 holds different configurations, such as the factory configuration and the user configur­ation. The user configuration can be modified by the user as follows:
Using the forms on the web pages of Web Manager (chapter Section 3.1, “Configuration via the M!DGE/MG102 Web Manager”)
Upload a new configuration file using the Web Manager (chapter Chapter 3, Configuration)
Using the M!DGE/MG102 Command Line Interface (chapter Section 3.3, “Configuration via Command Line Interface (CLI)”)
M!DGE can be configured via a USB stick with a prepared configuration file.
If you are new to M!DGE/MG102 we recommend configuring it using the M!DGE/MG102 Web Manager.
3.1. Configuration via the M!DGE/MG102 Web Manager
The M!DGE/MG102 Web Manager can always be reached via the Ethernet interface. After the successful setup the Web Manager can also be accessed via the mobile interface. Any up to date web browser may be used. Any web browser supporting JavaScript may be used. By default the IP address of the Ethernet interface is 192.168.1.1, the web server runs on port 80.
3.1.1. Initial Access to the Web Manager and Password Definition
The minimum configuration steps usually include:
1. defining the admin password
2. entering the PIN code for the SIM card
3. configuring the Access Point Name (APN)
4. start the mobile connection
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.16
Configuration
Page 17
DescriptionStep
Please connect the Ethernet interfaces of your computer and the M!DGE/MG102.1.
If not yet enabled, please enable the Dynamic Host Configuration Protocol (DHCP) so that your computer can lease an IP address from M!DGE/MG102. Wait a moment until your PC has re­ceived the parameters (IP address, subnet mask, default gateway, DNS server). How to do using Windows XP: Start > Connect To > Show all connections > Local Area Connection > Right Click > Properties > Internet Protocol (TCP/IP) > Properties > Obtain an IP address automatically. Alternative: Instead of using the DHCP, configure a static IP address on your PC (e.g. 192.168.1.10 mask
255.255.255.0) so that it is operating in the same subnet as the M!DGE/MG102. The factory default IP address is 192.168.1.1 The default subnet mask is 255.255.255.0.
2.
Start a Web Browser on your PC. Type the M!DGE/MG102 IP address in the address bar:
http://192.168.1.1
3.
Follow the instructions of the Web Manager to configure the device.4.
3.1.2. Initial Access for the admin user account
Please set a password for the admin user account. Choose something that is both easy to remember and a strong password (such as one that contains numbers, letters and punctuation).
The password shall have a minimum length of 6 characters. It shall contain a minimum of 2 numbers and 2 letters.
17© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 18
3.1.3. Home
This page gives you a system overview. It helps you when initially setting up device but also functions as dashboard during normal operation.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.18
Configuration
Page 19
3.1.4. Interfaces
In the section the physical Interfaces of M!DGE/MG102 are configured. Details for all enabled connec­tions are displayed on its own section Appendix A, Connectors and Cables
WAN
Link Management
FW 3.4 introduces a WAN link manager. Depending on your hardware, you can choose from Mobile (GSM/UMTS), WLAN, Ethernet and PPPoE. WAN links have to be configured and enabled before adding them. In case a link goes down, the system will automatically switch over to the next link in the priority list. You can configure each link to be either established when the switch occurs or permanently in order to minimize link downtime.
DescriptionStep
This link will be used if ever possible.1st priority:
The first fallback technology. You can hold it ready (faster) or establish it only when the fallback actually occurs.
2nd priority:
The second fallback technology. You can hold it ready (faster) or establish it only when the fallback actually occurs.
3rd priority:
The third fallback technology. You can hold it ready (faster) or establish it only when the fallback actually occurs.
4th priority:
19© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 20
Link Management – Setings
IP health check – this feature is prepared for switching between profiles or lines. MG102 is
checking availability of Monitored host 1 (optionaly 2). If the host (hosts) is (are) not reachable the second profile (link) will be switched to.
Note
This functionality has a close relationship with Connection Supervisor.
DescriptionParameter
The required signal strength for GSM/UMTS in order to qualify the link as a fallback alternative.
Mobile:
The required signal strength for WLAN in order to qualify the link as a fallback al­ternative.
WLAN:*
Specify whether the Signal strength LEDs on the NB2500/NB2600/NB2600R front panel shall indicate the WLAN or mobile signal strength.
Signal strength
LED shows:
Note
WLAN is available only with relevant HW. IP health check option is not used at M!DGE.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.20
Configuration
Page 21
Maximum Segment Size
The maximum segment size (MSS) is the largest amount of data, specified in bytes, that a computer or communications device can handle in a single, unfragmented piece. For optimum communications, the number of bytes in the data segment and the headers must not add up to more than the number of bytes in the maximum transmission unit (MTU).
DescriptionParameter
The maximum segment size (MSS) for the mobile interfaceMSS adjust-
ment:
Ethernet Interface
Switch Settings
Choose whether you want to have all Ethernet ports in one LAN (default) or apply a subnet for every Ethernet port or have a WAN port separated.
21© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 22
Combined mode (LAN)
MG102 IP AddressNetworkPorts
192.168.1.1192.168.1.0/24Port 1, 2, 3, 4
Mixed mode ( LAN / WAN)
MG102 IP AddressNetworkPorts
192.168.1.1192.168.1.0/24Port 1–3 (MG102)
192.168.2.1192.168.2.0/24Port 4 (MG102)
M!DGE uses two Ethernet interfaces. It is possible set the same LAN for both or LAN1 and LAN2 or LAN and WAN combination.
Separated mode (LANs )
MG102 IP AddressNetworkPorts
192.168.1.1192.168.1.0/24Port 1
192.168.2.1192.168.2.0/24Port 2
192.168.3.1192.168.3.0/24Port 3
192.168.4.1192.168.4.0/24Port 4
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.22
Configuration
Page 23
Port Settings
For every Ethernet port the link negotiation can be set. In most cases auto negotiation will work.
IP Settings
Define the M!DGE/MG102 LAN. Usually the first address within that LAN is assigned to the router. Provide that IP address and net mask in dot-decimal notation or use the defaults.
23© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 24
WAN
DescriptionParameter
Disabled means that the IP interface will be left unconfigured. Static configuration allows you to set the IP parameters. DHCP means that the IP configuration will be retrieved automatically from an external DHCP server.
IP mode:
Enable or disable the PPPoE connectionStatus:
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.24
Configuration
Page 25
DescriptionParameter
PPPoE passwordPassword:
Specifies the service name set on the access concentrator. Leave it blank unless you have many services and need to specify the one you need to connect to.
Service name:
This may be left blank and the client will connect to any access concentrator.
Access con-
centrator
name:
25© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 26
Mobile
Administration
After the configuration (e.g. setting the APN), the mobile connection is enabled here. We recommend using the ´pernament´ option. The UMTS/GSM LED is blinking during the connection establishment and goes on as soon as the connection is up. See the troubleshooting section and log files if the connection does not come up.
DescriptionParameter
This can be permanent, dial on demand or disabled. The on demand method waits for traffic coming from the LAN going to the WAN. The permanent method keeps up the mobile interface. In case of link loss the connection is reestablished.
Administrative
connection
status:
Number of redialing attempts before switching to the next profile.Redial at-
tempts:
Time in minutes after that an idle connection will be disconnected when working with ‘dial on demand’
Dial on de-
mand idle
timeout:
Shows whether a connection is up or not.
Operational
connection
status:
Choose mobile if M!DGE/MG102 is driving around. For stationary installation choose ‘stationary’
Application
area:
The preferred service type can be set here.Service type:
IP address on mobile interface (ppp0) assigned by PPP serverIP address:
Subnet mask on mobile interface (ppp0) assigned by PPP serverSubnet mask:
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.26
Configuration
Page 27
Configuration
DescriptionParameter
Specify the SIM card that shall be used for this profile.SIM used:
Set the phone number that is to dial. This should be *99***1# for packet services (GPRS/UMTS). For ISDN and CSD connections use the phone number to dial.
Phone num-
ber:
User name (get this information from mobile operator, can be void)
User Name:
Password (get this information from mobile operator, can be void)
Password:
Access Point Name (get this information from mobile operator or from our APN database)
Access point
name:
Use Challenge Handshake Authentication Protocol (CHAP) or Password Authen­tication Protocol (PAP)
Authentication
method:
Ckeck this, if the connection is made to an ISDN modem.Call to ISDN:
Enable or disable Van Jacobson TCP/IP Header Compression for PPP. In order to benefit of this features the mobile operator must support it.
IP Header
Compression:
Enable or disable PPP data compression. In order to benefit of this features the mobile operator must support it.
Software Com-
pression:
Specifies whether a DNS request to the provider is made or not.
PPP DNS
query:
27© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 28
DescriptionParameter
Enable or disable fixed IP address on the mobile interface.
Enable Specif­ic Client IP Ad-
dress:
Specify a fixed client IP address on the mobile interface.
Specific Client
IP Address:
Specifies the condition for a profile switch to the other profile. Primary profile
Profile switch
condition:
○ never the Fallback profile will not be used
○ redial attemps reached
Fallback Profile will be needed after the number of redial attemp will be ex-
ceeded. (Interfaces Mobile Administrators)
○ ping check failed
Fallback Profile will be used in case that number of trials set in Interfaces WAN Link Managenet Settings will be excceded.
Note
If the time set in Services Connection Supervisor Ping Monitor Configuration is
shorter then time set. In the above mentioned menus – Fallback Profile NEVER be used.
Maximum Segment Size (MSS)
described above Maximum Segment Size
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.28
Configuration
Page 29
SIM
This section lets you store the PIN code. With the correct PIN code deposited you will be able to enable or disable PIN protection.
M!DGE/MG102 can only read SIM cards if the correct PIN code is provided or if PIN protection is disabled. It is not recommended to disable PIN protection since a SIM card thief could misuse an unprotected SIM.
DescriptionParameter
The PIN code for the SIM card.PIN code:
Enable or disable PIN protectionPIN protection:
Number of Short Message Service Centers (SMSCs) for sending Mobile Originating (MO) SMS messages. Contact your mobile operator.
SMS center
number:
29© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 30
DescriptionParameter
Choose automatic or manual provider network selection. For manual selection, please specify the provider.
Network selec-
tion:
COM Port
DescriptionParameter
RS232 or RS485. Consider the pin assignments on chapter Appendix A, Connectors and Cables
Physical pro-
tocol:
This property specifies the baud rate of the COM portBaud rate:
This property specifies the parity used with every frame that is transmitted or received.Parity:
This property specifies the number of stop bits used to indicate the end of a frame.Stop bits:
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.30
Configuration
Page 31
DescriptionParameter
This property specifies the number of data bits contained in each frame.Data bits:
In XON/XOFF software flow control, either end can send a stop (XOFF) or start (XON) character to the other end to control the rate of incoming data.
Software flow
control:
In RTS/CTS hardware flow control, the computer and the modem use the RTS and CTS lines respectively to control the flow of data
Hardware flow
control:
USB Port
valid only for M!DGE
DescriptionParameter
Enable USB autorun feature.
Digital I/O Server (M!DGE only)
Digital I/O Management via Web Manager
The digital inputs and outputs can be monitored and controlled via the Web Manager or by software.
31© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 32
DescriptionParameter
Digital inputs levels:
0 to 5.6 VDClogical level 0
7.2 to 40 VDClogical level 1
Note
Negative input voltage is not recognised.
Digital outputs parametres:
1 AMaximal continuous current
60 VDC, 42 VAC (Vrms)Maximal switching voltage
60 WMaximal switching capacity
Digital I/O Management
To manage digital inputs and outputs via TCP software is required that handles the TCP connection. For test purposes e.g. telnet can be used. The payload contains the states of the four inputs/outputs:
The value 0 represents the state “off”, the value 1 the state “on”.
07
OUT2OUT1IN2IN10000
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.32
Configuration
Page 33
Monitor the digital inputs and outputs
Every change of digital inputs triggers a message of the above format to be sent. It also contains the valid states of the outputs.
Set digital outputs
To set the states of the digital I/O send the following pattern as ASCII characters
DescriptionPattern
Turn all digital outputs off00000000
Turn output 2 on, turn output 1 off00000001
Turn output 1 on, turn output 2 off00000010
Turn output 1 on, turn output 2 on00000011
Get status of digital inputs and output
To get the states of the digital I/O send the following pattern as ASCII characters
DescriptionPattern
Request a message with all states00010000
33© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 34
3.1.5. Routing
Static routing is the term used to refer to a manual method that is used to set up routing between net­works. Static routing has the advantage of being predictable and simple to set up.
This section lists the routing table and lets the user add and delete routes.
DescriptionParameter
To enter network route select “Net”. To enter a route to a host select “Host”.
Select
The destination network or host. You can provide IP addresses in dotted decimal or host/network names.
Destination
The network's IP address together with its address mask defines a range of IP ad­dresses. For IP subnets, the address mask is referred to as the subnet mask. For host routes, the mask is "all ones" (in dotted decimal 255.255.255.255).
Mask
Next hop (gateway); the next router which knows how to reach the destinationGateway
Identity of network interface through which a packet will be sent to reach the gateway.Interface
The 'distance' to the target (usually counted in hops). It is not used by recent kernels, but may be needed by routing daemons.
Metric
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.34
Configuration
Page 35
DescriptionParameter
Displays whether a particular route is persistent or not.Persistent
Displays whether a particular route is active or not.Active
3.1.6. Firewall
Access Control Lists
Access Control for Local Host – The access from the WAN interface to M!DGE/MG102 itself and its local applications can be managed using this filter.
Access Control for Exposed Host from WAN and OpenVPN – The access from the WAN interface to a defined Exposed Host can be managed using this filter. The same can be done on the second tab for the OpenVPN interface.
35© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 36
You can set both WAN and Open VPN rules.
DescriptionParameter
Enter the IP Address of the device that is to expose. Leave this field blank to disable the feature.
Exposed host:
Access Control for VPN Tunnels and WAN from LAN – Having the Ethernet ports split into multiple LANs this filter manages the access from any LAN port to any VPN Tunnel. Use the option “specify permitted networks“ to permit access to certain networks. Those networks might be any peer networks of a VPN tunnel or the WAN interface to get direct Internet access.
Note
Filtering for LAN interfaces is available only if 4LANs are set in Interfaces Switch setings Ethernet Mode.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.36
Configuration
Page 37
NAPT
This page lets you set the options for Network Address and Port Translation (NAPT). NAPT is a feature that translates TCP or UDP communications made between hosts on a private network and hosts on a public network. It allows a single public IP address to be used by many hosts on the private network, which is usually called a Local Area Network or LAN.
NAPT on Mobile Interface
Port forwarding is the act of forwarding a network port from one network node to another. This technique can allow an external user to reach a port on a private IP address (inside the LAN) from the outside (Internet).
DescriptionParameter
Enable or disable NAPT. NAPT needs to be enabled normally (i.e. when using Internet Access). Internet Service Providers will not route your private LAN Addresses.
NAPT status
User-defined Name for the NAPT entry.Service name:
External IP port (mobile interface).External port:
Check this box to forward traffic to local host service (Webserver, SSH, Telnet). To forward traffic to an external host in the LAN provide the host address below.
Local host:
Host to which the traffic will be forwarded.Host address:
Port to which the traffic will be forwarded.Internal port:
Protocol (UDP or TCP) to which this entry applies.Protocol:
Enable (Yes) or disable (No) the entry.Enabled:
37© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 38
NAPT on OpenVPN Interface
The same settings as above, but for other interface
Expert Mode
Upload text files with firewall rules.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.38
Configuration
Page 39
3.1.7. VPN
OpenVPN
Install an OpenVPN Server or subscribe to the appropriate service.
If you have your own OpenVPN server the first step in building an OpenVPN 2.0 configuration is to establish a PKI (public key infrastructure). The PKI consists of:
○ a separate certificate (also known as a public key) and private key for the server and each client,
and
○ a master Certificate Authority (CA) certificate and key which is used to sign each of the server and
client certificates.
Prepare the OpenVPN certificate files. Use the tools and documentation that come with the OpenVPN software. A Guide to basic RSA Key Management is found under http://openvpn.net/easyrsa.html
For alternative authentication methods see http://openvpn.net/index.php/documentation/howto.html#auth
For more information also see http://openvpn.net/howto.html
Please make sure that the M!DGE/MG102 system time is correct when working with OpenVPN. Other­wise authentication issues may arise.
OpenVPN Administration
DescriptionParameter
Enable or disable OpenVPN. If enabled, OpenVPN client configurations will be started after mobile connection establishment. Server configurations will be started immediately after M!DGE/MG102 startup.
OpenVPN ad-
ministrative
status:
39© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 40
OpenVPN Configuration (Standard Client Configuration)
DescriptionParameter
Set the active configurationConfiguration mode:
Use certificates or user name / passwordAuthentication meth-
od:
First OpenVPN server addressFirst server address
First OpenVPN server port, default 1194First server port
Second OpenVPN server address (optional)Second server ad-
dress
Second OpenVPN server port (optional)Second server port
tun or tapVPN device type
With tap: bridge tap device with ethernet, or use routingBridging
Enable or disable OpenVPN compressionCompression
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.40
Configuration
Page 41
OpenVPN Client Certificates
DescriptionFile TypeCertificate File
Master Certificate Authority (CA) certificate and key which is used to sign each of the server and client certificates.
*.crtRoot certificate file
Separate certificate (also known as a public key)*.crtClient certificate file
Private key for the server and each client*.keyFirst server address
Tip
Use the dial-out connection method “permanent“ in context with OpenVPN.
OpenVPN Configuration (Client Expert Configuration)
This configuration mode gives you more flexibility. The configuration upload takes a zip file which may include one or more OpenVPN client configurations.
Typically such a zip file includes files such as:
○ client.conf (The client configuration file, referring to …) ○ ca.crt (OpenVPN root certificate file) ○ client.crt (OpenVPN client certificate file) ○ client.key (OpenVPN private key file)
The name of the configuration file (here client.conf) can be chosen freely but the extension must be .conf. To configure multiple tunnels (i.e. multiple *.conf files each referring to its certificates) you should place all files belonging to a single tunnel/process into a subfolder or make sure that there are no naming conflicts.
If OpenVPN is enabled and the configuration mode is set to “client expert configuration” all configurations (*.conf) will be started after mobile connection establishment.
41© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 42
OpenVPN Configuration (Server Expert Configuration)
This configuration mode lets you run an OpenVPN server on M!DGE/MG102. The configuration upload takes a zip file which may include one or more OpenVPN server configurations.
Typically such a zip file includes files such as:
server.conf (The client configuration file, referring to)
ca.crt (OpenVPN root certificate file)
server.crt (OpenVPN client certificate file)
server.key (OpenVPN private key file)
dh1024.pem (Diffie hellman parameters)
A directory (with default name “ccd”) containing client-specific configuration files
To configure multiple server processes (i.e. multiple *.conf files each referring to its certificates) you should place all files belonging to a single tunnel/process into a subfolder or make sure that there are no naming conflicts.
If OpenVPN is enabled and the configuration mode is set to “server expert configuration” all configura­tions (*.conf) will be started after M!DGE/MG102 startup.
Consider the following points when running OpenVPN without having established a mobile connection:
Configure a Default Route to the Ethernet Interface / LAN.
Configure a time server (NTP) and make sure that it is available via the LAN.
Manually configure a DNS server (on DHCP Server web page!) and make sure that it is available via the LAN.
For further information and external OpenVPN documentation please see chapter the section called “OpenVPN”.
IPsec
IPsec (IP security) is a suite of protocols for securing Internet Protocol (IP) communications by authen­ticating and/or encrypting each IP packet in a data stream. IPsec also includes protocols for crypto­graphic key establishment.
IPsec can be used to create Virtual Private Networks (VPN) and this is the dominant use.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.42
Configuration
Page 43
IPsec Administration
DescriptionParameter
Enable or disable IPsec.
IPsec administrative
status:
IPsec Configuration
43© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 44
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.44
Configuration
Page 45
DescriptionParameter
IP address or host name of IPsec peer / responder / server.
Remote server
address:
The remote private network. Provide an IP address in dotted decimal notation.Remote LAN
address:
The remote private network. Provide a subnet mask in dotted decimal notation.
Remote LAN
subnet mask:
Enable or disable NAT-Traversal.NAT Traversal
The pre-shared key (PSK)Preshared Key
(PSK):
Choose a negotiation mode. The default is main mode (identity-protection). Ag­gressive mode is less secure than main mode as it reveals your identity to an
IKE mode:
eavesdropper. However, with pre-shared key authentication and dynamic IP ad- dresses aggressive mode is the only choice.
IKE encryption methodIKE encryption:
IKE hash methodIKE hash:
IKE Diffie-Hellman Group
IKE Diffie-Hell-
man Group:
Use Perfect Forward Secrecy. This feature increases security as with PFS, penet­ration of the key-exchange protocol does not compromise keys negotiated earlier.
Perfect For-
ward Secrecy
(PFS):
Local IDLocal ID:
Remote IDRemote ID:
ESP encryption method
ESP encryp-
tion:
ESP hash methodESP hash:
Enable or disable Dead Peer Detection.Status:
Set the delay (in seconds) between Dead Peer Dectection (RFC 3706) keepalives (R_U_THERE, R_U_THERE_ACK) that are sent for this connection (default 30 seconds).
Detection cycle
[sec]:
The number of unanswered DPD R_U_THERE requests until the IPsec peer is considered dead (M!DGE/MG102 will try to reestablish a dead connection automat­ically)
Failure count:
45© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 46
PPTP Server
The Point-to-Point Tunneling Protocol (PPTP) is a method for implementing virtual private networks. PPTP is popular because it is easy to configure and it was the first VPN protocol that was supported by Microsoft Dial-up Networking. Users that are allowed to connect to the PPTP server are defined under the section “User Accounts”.
DescriptionParameter
Enable/disable PPTP serverPPTP state
Address range start for PPTP serverPPTP address range
start:
Address range size for PPTP server
PPTP address range
size:
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.46
Configuration
Page 47
Dial-in Server
On this page the Dial-in server of M!DGE/MG102 can be administrated and configured. Users that are allowed to dial-in are defined under the section “User Accounts”.
Dial-in Server Administration
DescriptionParameter
The Dial-in server can be enabled or disabled. Consequently the device will allow incoming calls or not.
Dial-in administrative
status:
Shows whether a connection is active or not.
Dial-in operational
status:
Dial-in Server Configuration
DescriptionParameter
Start address of the range for the dial-in server.Address range start:
Number of addresses that the dial-in server can assign.Address range size:
47© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 48
3.1.8. Services
COM Server / Gateway
Max Packet Size: Limits the package size to the configured value
Max Packet Timeout: If data is received on serial line, waits for more data for the configured time to avoid to much segmentation which would lead on inefficiency
Max Latency Timeout: Limits the maximum latency if the above criteria are not fulfilled
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.48
Configuration
Page 49
COM Server Administration
DescriptionParameter
The COM server / modbus gateway can be enabled or disabled.COM server status:
COM Server Configuration
DescriptionParameter
“Telnet” or “TCP raw” for COM server applications, “Modbus TCP” for modbus gateway
Protocol on TCP/IP:
The protocol implicitely defined on the COM port.Protocol on COM port:
TCP Configuration
DescriptionParameter
The protocol implicitely defined on the COM port.Protocol on COM port:
TCP – timeout in seconds or endlessTime-out
UDP Configuration
DescriptionParameter
Local UDP portLocal Port
IP address of remoteRemote IP
49© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 50
DescriptionParameter
UDP port of remoteRemote Port
Max. lenght of packetMax. Packet Size
If data is received on serial line, waits for more data for the configured time to avoid to much segmentation which would lead on inefficiency
Max. Packet Timeout
Limits the maximum latency if the above criteria are not fulfilledMax. Latency Timeout
Connection Supervisor
The connection supervisor monitors connectivity and automatically recovers the connections in case of link loss.
First you should check the option “monitor connection establishment“ to make sure that problems during connections establishment are detected and recovered.
Second the active connection should be monitored. If you are running an IPsec or OpenVPN based VPN we recommend to use the protocol integrated monitoring service (IPsec DPD or OpenVPN keep­alive). Else you should configure and enable the ping monitor application.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.50
Configuration
Page 51
DescriptionParameter
Reference host 1 to which IP connectivity is checked by sending probes.Host 1:
Reference host 2 to which IP connectivity is checked by sending probes (optional). The test is considered successful if host 1 or 2 answers.
Host 2:
Source IP address to be used as source of the ping probes.
Source IP ad-
dress:
The time to wait before sending the next probe in case the last probe was successful.
Monitoring inter-
val:
The time to wait until sending the next probe in case the last probe was unsuccessful.Retry interval:
Number of consecutive unsuccessful probes that are required until the next recovery action is initiated.
Consecutive
loss threshold:
1. Trying to reestablish a broken connection
2. Restart the internal modem
3. Restart the M!DGE/MG102
The recovery
actions are:
Note
If both Host1 and Host2 are not available the restarting with primary profile will follow. In case that IP health check is set for longer period that Ping monitor for internal switch to the fallback profile will NEVER be proceded.
51© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 52
DHCP Server
The DHCP server assigns the following information:
1. Any IP address out of the configured range
2. As default gateway the IP address of M!DGE/MG102 is assigned
3. As DNS server the IP address of M!DGE/MG102 is assigned or manually configured DNS servers
DHCP Server Administration
DescriptionParameter
The Dynamic Host Configuration Protocol (DHCP) server can be enabled or disabled. If it is enabled it will answer to DHCP requests of devices in the LAN.
DHCP server status:
DHCP Server Configuration
DescriptionParameter
Address range start for DHCP serverAddress range start:
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.52
Configuration
Page 53
DescriptionParameter
Address range size for DHCP serverAddress range size:
Manually configured first DNS serverDNS server 1:
Manually configured second DNS serverDNS server 2:
Propagate DNS proxy server as third DNS serverDNS server 3:
DNS Proxy Server
The DNS Proxy enabled M!DGE/MG102 forwards DNS requests to the DNS server provided by the mobile operator. Devices within the M!DGE/MG102 LAN may be configured to use M!DGE/MG102 as DNS server.
DescriptionParameter
Enabled or disabledDNS proxy server status:
53© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 54
Dynamic DNS
The Dynamic DNS Client of M!DGE/MG102 is completely compatible to the Dynamic Network Services provided by the organization DynDNS (www.dyndns.com).
Dynamic DNS Administration
DescriptionParameter
Enable or disable the Dynamic DNS ClientDynamic DNS status:
Dynamic DNS Configuration
DescriptionParameter
DynDNS Service according Dynamic Network Services, Inc. (www.dyndns.com). Please consult www.dyndns.com for more details.
Service type:
URL under which M!DGE/MG102 will be available, e.g. my M!DGE/MG102.dyndns.org
Host name:
Server IP Address or URL, normally members.dyndns.orgServer address:
TCP Port of the Dynamic DNS Server, e.g. 80 or 8245Server port:
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.54
Configuration
Page 55
DescriptionParameter
UsernameUser name:
PasswordPassword:
Optional support e-mail addressSupport e-mail:
E-mail Client
E-Mail Client Administration
DescriptionParameter
Sending e-mail can be enabled or disabled. Disabling the e-mail client means that no notification via e-mail will be performed.
E-mail client status:
E-mail Client Configuration
DescriptionParameter
Sender’s e-mail addressFrom e-mail address:
SMTP server addressServer address:
Default port for SMTP is 25Server port:
If enabled M!DGE/MG102 will logon to SMTP server before sending e­mails
Authentication required:
UsernameUser name:
PasswordPassword:
55© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 56
Event Manager
Events
There are several predefined system events. If such an event occurs a notification message to SMS or e-mail recipients if such an events
DescriptionParameter
PPP connection up. ppp0 interface address: %PPP_IP%.PPP connection established
PPP connection down.PPP connection down
PPP failure to connect. Error reported: %PPP_ERR%. See manual and logs to identify the problem.
PPP connection failure
VPN connection up. tun0/tap0 interface address: %VPN_IP%.VPN connection established
VPN connection down.VPN connection down
VPN failure to connect. See logs to identify the problem.VPN connection failure
Dial-in connection establish: user: %DIN_USER% from: %DIN_IP%.
Dial-in connection estab-
lished
Dial-in connection terminated: user: %DIN_USER% from: %DIN_IP%.Dial-in connection down
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.56
Configuration
Page 57
DescriptionParameter
Dial-in failure to connect.Dial-in connection failure
DYNDNS update with %DYNDNS_IP% address.Dynamic DNS registration
DynDNS failure to reach server.Dynamic DNS failure to reach
server
Log-in to the Configuration GUI, by the user: %LOGIN_USER%.Login to the Web Manager
Failed attempt to log-in to the Configuration GUI, by the user: %LO­GIN_USER%.
Failed to Login to the Web
Manager
Restart after power up.Restart after power up
Restart due to a software exception.Restart due to a software ex-
ception
Restart after rebooting from Web Management.Restart after rebooting from
Web Management
Restart due to Web Manager.Restart due to Web Manager
Startup completedStartup completed
%UDP_MESSAGE%Arriving UDP Message
This is a test.Test Event
GPS position is available.GPS reception on
GPS position is not available.GPS reception off
Input change: IN1 is On.Digital Input 1 on
Input change: IN1 is Off.Digital Input 1 off
Input change: IN2 is On.Digital Input 2 on
Input change: IN2 is Off.Digital Input 2 off
Output change: OUT1 is On, changed from %DIO_SOURCE%.Digital Output 1 on
Output change: OUT1 is Off, changed from %DIO_SOURCE%.Digital Output 1 off
Output change: OUT2 is On, changed from %DIO_SOURCE%.Digital Output 2 on
Output change: OUT2 is Off, changed from %DIO_SOURCE%.Digital Output 2 off
The following event variables will be replaced within event texts as follows:
DescriptionParameter
The current IP address on the mobile interface (ppp0)%PPP_IP%
Error message in case of mobile connection failure%PPP_ERR%
The current address of the OpenVPN interdface%VPN_IP%
IPsec or OpenVPN%VPN_TYPE%
The IP address which has been sent to the DNS server%DYNDNS_IP%
User name which the dial-in connection has been authenticated against%DIN_USER%
The IP address of the dial-in peer%DIN_IP%
Name of the user who tried to log on to the Web Manager%LOGIN_USER%
Source that triggered an output change%DIO_SOURCE%
Text message that has been received by the message receiver%UDP_MESSAGE%
57© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 58
DescriptionParameter
Reason why a restart happened%RESTART_REAS-
ON%
Status of digital input 1, possible values include [on, off]%DST_IN1%
Status of digital input 2, possible values include [on, off]%DST_IN2%
Status of digital output 1, possible values include [on, off]%DST_OUT1%
Status of digital output 2, possible values include [on, off]%DST_OUT2%
Subscribers
Subscribers are recepients of SMS or e-mail event notifications.
It is possible to create groups and fill them with users and other groups. This mechanism let you send event notifications to multiple destinations/users.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.58
Configuration
Page 59
Event Processor
Notifications can be generated or digital outputs can be set based on the occurrence of several events.
59© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 60
GPS
This feature is available on MG102xGx.
If valid GPS data is available (at least 3 satellites available) it will be sent as UDP payload to the con­figured host. The content of such a data package is separated into two lines. The first line contains GPS data in the GPGGA format; the second line contains GPRMC data.
For more information on the GPS data stream see chapter Section 4.1, “GPS Server”
DescriptionParameter
Enable or disable GPS data streamGPS status:
Destination address of application where the GPS data will be sent toDestination address:
Destination UDP port of application where the GPS data will be sent toDestination UDP port:
The refresh cycle / frequency of sending dataGPS update cycle:
GPS Data
GPS Data is only supported with activated Berlios GPS daemon. Go to GPS Settings to configure.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.60
Configuration
Page 61
SMS
SMS can be used to control M!DGE/MG102 and for event notification.
DescriptionParameter
Sending SMS can be enabled or disabled. Disabling sending SMS means that no notification via SMS will be performed.
SMS notification:
Receiving SMS can be enabled or disabled. Disabling receiving SMS means that controlling M!DGE/MG102 via SMS will not be possible.
SMS control:
DescriptionParametersCom-
mand
A SMS with the following information will be returned
• Signal strength
• Mobile connection state (up/down)
• current IP address of the mobile (ppp) interface
• current IP address of the VPN interface (if enabled)
status
61© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 62
DescriptionParametersCom-
mand
This will initiate a Dial-out connection over GSM and the VPN connection (if enabled) and trigger sending an SMS with the following information:
• current IP address of the PPP interface
• current IP address of the VPN interface (if enabled) The profile name is an optional parameter.
connect
terminates all connections on the mobile interface (Dial-out and VPN)
discon-
nect
M!DGE/MG102 will be restartedreboot
Set administrative status of the mobile connection to disabledmanual
method
Set administrative status of the mobile connection to enabled, permanent.permanent
Set administrative status of the mobile connection to enabled, dial on demand.
dialondemand
Switch output 1 on1 on
output
Switch output 1 off1 off
Switch output 1 on2 on
Switch output 2 off2 off
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.62
Configuration
Page 63
SSH Server
DescriptionParameter
SSH server portPort:
The standard port 22 is used. For higher security change it to different number. This number shall be used as parametr in SSH command.
63© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 64
SNMP Agent
DescriptionParameter
Enable or disable the SNMP agent.SNMP agent status:
SNMP agent port.Listening Port:
An SNMP community is the group that devices and management stations running SNMP belong to.
Community:
System maintainer.Contact:
Location of the device.Location:
The host where the traps will be sent to.Trap target host:
The port where the traps will be sent to.Trap target port:
A trap will be sent, if signal strength goes lower than this.
Signal strength trap
threshold dBm:
No further traps will be sent as long signal strengt his not higher than this.
Signal strength trap react-
ivation threshold dBm:
SNMP version.Operation mode
SNMP traps are generated in the following situations, if the SNMP agent is enabled:
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.64
Configuration
Page 65
Startup of the M!DGE/MG102
Shutdown of the M!DGE/MG102
VPN connected
VPN disconnected
Signal Strength below „Signal strength trap threshold“
The startup trap is implemented using the standard coldStart & warmStart traps.
The system-shutdown trap is sent, when the system is rebooted via the reboot function of the web in­terface or when the watchdog reboots the system.
Telnet Server
DescriptionParameter
Telnet server portPort:
65© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 66
UDP Message Receiver
DescriptionParameter
UDP message receiver portPort:
The UPD Message Receiver is a service that listens on the configured port (default 2157) for arriving UDP packets with a string in the payload. If an UPD package is arriving, the event “Arriving UDP Message” is fired (see chapter ???). Use the Event Manager (the section called “Event Manager”) to forward the message (UDP payload) to a SMS or E-mail destination.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.66
Configuration
Page 67
Unstructured Supplementary Services Data (USSD)
Unstructured Supplementary Services Data (USSD) is a GSM service that allows high speed interactive communication between the subscribers and applications across a GSM Network. A sample USSD service is the bill status service accessed by dialing *141# or similar numbers in between * and # ac­cording to mobile network. Contact your mobile operator for further information.
67© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 68
Web Server
DescriptionParameter
Web server port for http connectionsHTTP port:
Web server port for https connectionsHTTPS port:
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.68
Configuration
Page 69
Captive Portal
The captive portal is used to redirect unauthorized WLAN/LAN clients to a login page where they have to authenticate against locally configured users or remotely over RADIUS.
DescriptionParameter
Enable or disable the captive portal.Administrative Status:
Define whether user must accept by pressing a button or they have to au­thenticate to a RADUIS server.
Authentication Mode:
Requests to this address are not being checked.Walled Garden Address:
69© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 70
3.1.9. System
Authentication
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.70
Configuration
Page 71
User Accounts
This page lets you manage the user accounts on the device.
The user admin is a built-in power user that has permission to access both the Web Manager and the Dial-in server. Any other user-defined user only has permission for dial-in connections.
DescriptionParameter
Define a user nameUser name
Define a passwordEnter password:
Confirm the passwordRe-enter password:
File Configuration
Configuration via the Web Manager becomes tedious for large volumes of devices. M!DGE/MG102 offers automatic and manual file-based configuration.
A single text file (*.cfg) or a zip archive (*.zip) containing one or more of the following files can be up­loaded.
When uploading a zip file, the files included must be named as follows:
○ user-config.cfg (the user configuration file) ○ ca.crt.credential_mode (OpenVPN root certificate file for credential based authentication) ○ ca.crt.certificate_mode (OpenVPN root certificate file for certificate based authentication) ○ client.crt.certificate_mode (OpenVPN client certificate file) ○ client.key.certificate_mode (OpenVPN private key file) ○ templateProfiles (updating provider database)
71© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 72
Automatic File Configurration
DescriptionParameter
Enable/disable automatic configuration updateStatus:
Every day at this time M!DGE/MG102 will do a check for updatesTime of day:
Update over mobile or Ethernet Interface?Mode:
Specify the protocol used to transfer the new user configuration file to M!DGE/MG102. You will need an appropriate server
Protocol:
The server and directory where the new s configuration file can be downloaded
Server IP ad-
dress and
path:
The result of the last try will be displayed here.
Last software
update:
M!DGE/MG102 will only try to download the following files: ○ <serialNumber>.cfg ○ <serialNumber>.zip
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.72
Configuration
Page 73
Manual File Configuration
DescriptionParameter
Press [Download] will download a zip file name user-config.zip containing
• user-config.cfg
• ca.crt.credential_mode
• ca.crt.certificate_mode
• client.crt.certificate_mode
• client.key.certificate_mode
• templateProfiles if available.
Current configura-
tion files:
The following files are acceppted for upload:
• *.cfg (max size 100KB)
• *.zip (max size 100KB) The zip file may include
• user-config.cfg
• ca.crt.credential_mode
• ca.crt.certificate_mode
• client.crt.certificate_mode
• client.key.certificate_mode
• templateProfiles
New configuration
files:
73© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 74
Factory reset
Press [Reset] to set the device to factory default. Your current configuration will be lost.
This action can also be initiated by pressing and holding the Reset button for at least five seconds.
The factory reset will also set the IP address of the Ethernet interface to 192.168.1.1. You will be able to communicate again with the device using the default network parameters.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.74
Configuration
Page 75
Troubleshooting
Network Debugging
75© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 76
Log Files
Log files can be viewed a downloaded here. Please provide these files when placing a support re­quest.
System Log Redirection
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.76
Configuration
Page 77
DescriptionParameter
The host where the syslog messages will be forwarded to. A Syslog server has to be running on this IP address. You can use free TFTP server TFTPD32 for example.
IP address:
Restart
Tech Support
77© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 78
Note
For using of this feature a connection to Internet is required.
System Information:
Provide this information when placing a support request.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.78
Configuration
Page 79
Time and Region
The Network Time Protocol (NTP) is a protocol for synchronizing the clocks of computer systems over packet-switched, variable-latency data networks. M!DGE/MG102 can synchronize its system time with a NTP server.
If enabled, time synchronisation is done after the mobile interface is up but before starting any VPN connections. Later on time synchronisation is performed every 60 minutes.
For Time synchronization from GPS use a non existing address of NTP server e. g. 1.1.1.1.
DescriptionParameter
Enable/disable time synchronisationNTP state:
Host name of NTP serverNTP server:
Host name of optional second NTP server
NTP server 2
(optional):
Time zoneTime zone:
Software Update
Software upgrade from the last official software release to the current release published on www.ra­com.eu is supported. For further details please consult the release note.
Software downgrade is not supported. Software downgrade may lead to loss of configuration and inac­cessibility of the device.
79© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 80
Automatic Software Update
DescriptionParameter
Enable/disable automatic software updateStatus:
Every day at this time M!DGE/MG102 will do a check for updatesTime of day:
Update over mobile or Ethernet Interface?Mode;
Specify the protocol used to transfer the new software to M!DGE/MG102. You will need an appropriate server
Protocol:
The directory where the new software can be downloaded
Server IP address
and path:
The result of the last try will be displayed here.
Last software up-
date:
Manual Software Update
The easiest way to update the M!DGE/MG102 Software is to connect M!DGE/MG102 to network with a TFTP server. If you only have a Notebook or a PC available the update process involves the preparation of a TFTP Server.
Tip
Be aware of any firewall on your PC that may hinder you doing the update! We recom­mend disabling the firewall on your PC during the update.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.80
Configuration
Page 81
DescriptionParameter
Update over mobile or Ethernet Interface?Mode:
Specify the protocol used to transfer the new software to M!DGE/MG102. You will need an appropriate server.
Protocol:
Provide a host name and a path to a server which hosts the new software. For local updates (TFTP) this value is limited to 26 characters.
Server IP address and
path:
The result of the last try will be displayed here.Last software update:
Step by Step:
DescriptionPara-
meter
Connect your PC with MG102 using a network cable.1.
If the IP address has been modified set it back to 192.168.1.1 and the subnet mask to
255.255.255.0 (see also chapter 3.1.3.1). Your PC must operate in the same subnet as MG102.
2.
Set the IP address of your PC to 192.168.1.2 and the subnet mask to 255.255.255.0
3.
81© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 82
DescriptionPara-
meter
Download the recommended TFTP server “TFTPD32” from our website, install it on your PC and start it. Configure the TFTP server as follows:
-In the dialog „Tftpd32: Settings“ choose the base directory (e.g. „C:\TFTP“). Create a new directory if there is none.
- Unpack the new software to this directory into a subfolder such as 3.3.1.2135
4.
On the web page “SYSTEMManual Software Update” enter the IP address and path of
the TFTP server (192.168.1.2) as follows:
5.
Press [Apply] and confirm by pressing [OK]. Wait until the update is complete. See the progress bar Do not unplug the power connector during the update!
6.
Check the results of the update. Refreshing the page or even reopening the browser windows may avoid cache problem. In case of success, “software update successfull” will be displayed, otherwise an error message.
7.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.82
Configuration
Page 83
Licensing
3.1.10. Logout
Log out from Web Manager
3.2. Configuration Parameters of the M!DGE/MG102
The information in this chapter is needed to configure M!DGE/MG102 via the Command Line Interface or File Configuration. If you are using the Web Manager and its forms to configure M!DGE/MG102, you may skip this chapter.
A configuration parameter consists of two main parts, its name (latter called key) and its value. The user configuration file contains all parameters. Download this file (user-config.cfg) using the Web Manager to get all parameters listed.
83© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 84
Racom has defined some types of parameters that are often used. The table below shows the defined parameter types. In addition other types of parameters may exist.
DescriptionFormatAllowed charac-
ters
Parameter Type
String must include “@” Second part must be a valid hostname
user@hostname
a–z A–Z 0–9 _-. @ (mandatory)
email
Fully-Qualified Host Name (FQHN) or host name
a–z A–Z 0–9 _-.
hostname
Decimal dotted notationxxx.xxx.xxx.xxxNumbers and dotsipaddress
Decimal dotted notationxxx.xxx.xxx.xxxNumbers and dotsnetmask
a–z A–Z 0–9 _-. @
username
All but &, \", \'password
+ 0–9 * #
phone number
Time, e.g. for automatic software or config­uration update
hh:mm:ss0–9, and :time
3.2.1. Interfaces related Parameters
Ethernet
DescriptionRangeDefault ValueParameter
IP address Ethernetipaddress192.168.1.1
network.PrivateInterface.IpAd-
dress
Netmask Ethernetnetmask255.255.255.0
network.PrivateInterface.Net-
Mask
Mobile Interface and SIM Cards
DescriptionRangeDefault ValueParameter
PIN code, e.g. 12344 digit numeric valuevoidsimcard.check.pincode
0 = PIN protection disabled 1 = PIN protection enabled
[0,1]0simcard.pinStatus
PIN code, e.g. 12344 digit numeric valuevoid
simcard.sim2.check.pin-
code
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.84
Configuration
Page 85
DescriptionRangeDefault ValueParameter
0 = PIN protection disabled 1 = PIN protection enabled
[0,1]0simcard.sim2.pinStatus
[automatic,manual]automaticnetworkselection.mode
Select the network provider defined by the supplied Local Area Identity (LAI)
numeric value (LAI)void
networkselection.net-
work_lai
0 = manual only 1 = dial on demand 2 = permanent
[0..2]0dialout.connectionMethod
Redial attempts[1..4294967296]2
dialout.connSetup.redialAt-
tempt
Idle timeout in minutes (in case of dial on demand)
[1..35791394]1
dialout.connSetup.idle-
Timeout
Profile nameusernamevoiddialout.profiles.0.name
Usernameusernamevoiddialout.profiles.0.username
Passwordpasswordvoiddialout.profiles.0.password
Phone numberphone numbervoid
dialout.pro-
files.0.phoneNumber
Chap = CHAP Pap = PAP
[chap, pap]void
dialout.profiles.0.authMeth-
od
Acess Point Namehostnamevoiddialout.profiles.0.apn
0 = off 1 = enable IP header compression
[0,1]voiddialout.profiles.0.IPHC
0 = off 1 = enable software compression
[0,1]voiddialout.profiles.0.IPSC
0 = do not query DNS server 1 = query DNS server
[0,1]void
dialout.pro-
files.0.queryDNS=1
0 = off 1 = enable specific client IP address
[0,1]voiddialout.profiles.0.ESCIP
Specific client addressipaddressvoid
dialout.profiles.0.SCAd-
dress
SIM used for primary profile[SIM1,SIM2]SIM1dialout.profiles.0.SIM
0 = normal call 1 = is ISDN call
[0,1]voiddialout.profiles.0.ISDN
Condition for profile switch
[never, redialAt­temptsReached]
never
dialout.profiles.0.switchCon-
dition
Profile nameusernamevoiddialout.profiles.1.name
Usernameusernamevoiddialout.profiles.1.username
Passwordpasswordvoiddialout.profiles.1.password
Phone numberphone numbervoid
dialout.pro-
files.1.phoneNumber
Chap = CHAP Pap = PAP
[chap, pap]void
dialout.profiles.1.authMeth-
od
85© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 86
DescriptionRangeDefault ValueParameter
Acess Point Namehostnamevoiddialout.profiles.1.apn
0 = off 1 = enable IP header compression
[0,1]voiddialout.profiles.1.IPHC
0 = off 1 = enable software compression
[0,1]voiddialout.profiles.1.IPSC
0 = do not query DNS server 1 = query DNS server
[0,1]void
dialout.pro-
files.1.queryDNS=1
0 = off 1 = enable specific client IP address
[0,1]voiddialout.profiles.1.ESCIP
Specific client addressipaddressvoid
dialout.profiles.1.SCAd-
dress
SIM used for fallback profile[SIM1,SIM2]SIM2dialout.profiles.1.SIM
0 = normal call 1 = is ISDN call
[0,1]voiddialout.profiles.1.ISDN
Condition for profile switch
[never, elpas8h, elaps16h, elaps24h,
never
dialout.profiles.1.switchCon-
dition redialAttempts-
Reached]
0 = disabled 1= enabled
[0,1]0network.MSS.status
Maximum Segment Size[100,1500]1400network.MSS.adjustment
Digital I/O
DescriptionRangeDefault ValueParameter
TCP Port for monitoring[1 .. 65535]2158digitalIO.receiving.tcpPort
State of output 1[on,off]off
digitalIO.controlOutPut.out-
put1
State of output 2[on,off]off
digitalIO.controlOutPut.out-
put2
0 = set values after reboot to digitalIO.afterReboot.output1 digitalIO.afterReboot.output2 1 = restore values after reboot
[0,1]1digitalIO.keepOnReboot
State of output 1 after reboot[on,off]offdigitalIO.afterReboot.output1
State of output 2 after reboot[on,off]offdigitalIO.afterReboot.output2
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.86
Configuration
Page 87
3.2.2. Routing related Parameters
DescriptionRangeDefault
Value
Parameter
hostnamevoid
with l =
[0..20]
static_routes.<l>.interface
hostnamevoidstatic_routes.<l>.target
netmaskvoidstatic_routes.<l>.mask
hostnamevoidstatic_routes.<l>.gateway
Default is 0.[0..32766]voidstatic_routes.<l>.metric
3.2.3. Firewall related Parameters
NAPT on mobile Interface
DescriptionRangeDefault
Value
Parameter
0 = NAPT off 1 = NAPT on
[0,1]1
with j =
[0..49]
napt_mobile.status
External port range start[1 .. 65535]voidnapt_mobile..<j>.extPort.start
External por range end[1 .. 65535]voidnapt_mobile..<j>.extPort.end
ipaddressvoidnapt_mobile..<j>.intHost
Internal port[1 .. 65535]voidnapt_mobile.<j>.intPort
TCP or UDP[TCP, UDP]TCPnapt_mobile.<j>.protocol
0 = disabled 1= enabled
[0,1]1napt_mobile.<j>.status
0 = redirect to other host 1 = redirect to localhost
[0,1]0napt_mobile.<j>.isRedirect
87© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 88
NAPT on OpenVPN Interface
DescriptionRangeDefault
Value
Parameter
0 = NAPT off 1 = NAPT on
[0,1]1
with j =
[0..49]
napt_openvpn.status
External port range start
[1 .. 65535]voidnapt_openvpn.<j>.extPort
External por range end
[1 .. 65535]voidnapt_openvpn.<j>.intPort
ipaddressvoidnapt_openvpn.<j>.intHost
Internal port[1 .. 65535]voidnapt_openvpn.<j>.intPort
TCP or UDP[TCP, UDP]TCPnapt_openvpn.<j>.protocol
0 = disabled 1= enabled
[0,1]1napt_openvpn.<j>.status
0 = redirect to other host 1 = redirect to local­host
[0,1]0napt_openvpn.<j>.isRedirect
Access Control List Local Host
DescriptionRangeDefault
Value
Parameter
0 = deny all 1 = permit entries 0 = permit all
[0,1,2]2firewall_local_host.policy
Source host / nethostnamevoid
with j =
[0..19]
firewall_local_host.<j>. target
netmaskvoidfirewall_local_host.<j>.mask
Access Control List for Exposed Host on Mobile Interface
DescriptionRangeDefault
Value
Parameter
0 = deny all 1 = permit entries 0 = permit all
[0,1,2]1firewall_exposed_host_mobile.policy
The exposed hosthostnamevoidfirewall_exposed_host_mobile.host
Source host / nethostnamevoid
with j =
[0..19]
firewall_exposed_host_mo-
bile.<j>.target
netmaskvoid
firewall_exposed_host_mo-
bile.<j>.mask
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.88
Configuration
Page 89
Access Control List for Exposed Host on OpenVPN Interface
DescriptionRangeDefault
Value
Parameter
0 = deny all 1 = permit entries 0 = permit all
[0,1,2]1firewall_exposed_host_openvpn.policy
The exposed hosthostnamevoidfirewall_exposed_host_openvpn.host
Source host / nethostnamevoid
with j =
[0..19]
firewall_exposed_host_openvpn.<j>.
target
netmaskvoid
firewall_exposed_host_open-
vpn.<j>.mask
3.2.4. VPN related Parameters
OpenVPN
DescriptionRangeDefault ValueParameter
0 = disabled 1= enabled
[0,1]0vpn.status
0 = Standard mode 1= Expert mode
[0,1]0vpn.mode
0 = crertificate-based authentication 1= credential-based authentication
[0,1]0vpn.auth
OpenVPN server FQHNhostnamevoid
vpn.configuration.serverAd-
dress
OpenVPN server port[1 .. 65535]voidvpn.configuration.serverPort
2ndOpenVPN server FQHNhostnamevoid
vpn.configuration.serverAd-
dress2
2ndOpenVPN server port[1 .. 65535]1194vpn.configuration.serverPort2
tun = tun device tap = tap device
[tun, tap]tunvpn.configuration.devType
0 = disabled 1= enabled
[0,1]1
vpn.configuration.compres-
sionStatus
For credential-based authenticationusernamevoidvpn.configuration.username
For credential-based authenticationpasswordvoidvpn.configuration.password
IPsec Parameters
DescriptionRangeDefault ValueParameter
0 = disabled 1= enabled
[0,1]0ipsec.status
ipaddressvoidipsec.remote.serverIp
0 = crertificate-based authentication 1= credential-based authentication
Ipaddressvoidipsec.remote.lanAddress
89© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 90
DescriptionRangeDefault ValueParameter
OpenVPN server FQHNnetmask255.255.0.0ipsec.remote.lanMask
OpenVPN server portpasswordvoidipsec.ike.psk
[identity-protec­tion, aggressive]
identity-protec­tion
ipsec.ike.mode
3des3desipsec.ike.encryption
[sha1, md5]md5ec.ike.hash
[modp1024, modp1536]
modp1024ipsec.ike.dh
usernamevoidipsec.ike.localId
usernamevoidipsec.ike.remoteId
3des3desipsec.esp.encryption
[sha1, md5]md5ipsec.esp.hash
For credential-based authentication[0,1]0ipsec.pfs
For credential-based authentication[0,1]1ipsec.dpd.state
For credential-based authentication[5.. 120]30ipsec.dpd.cycle
[1.. 10]3ipsec.dpd.failureCount
PPTP Server
DescriptionRangeDefault ValueParameter
0 = disabled 1= enabled
[0,1]1network.PPTP.status
Address range startipaddress192.168.1.200
network.PPTP.Address-
RangeStart
Address range size[2,254]5
network.PPTP.Address-
RangeSize
Dial-in Server
DescriptionRangeDefault ValueParameter
0 = Dial-in disabled 1= Dial-in enabled
[0,1]0dialin.status
Address range startipaddress192.168.254.1
dialin.configuration.address-
RangeStart
Address range size[2..254]254
dialin.configuration.address-
RangeSize
0 = off 1= Disable NAPT on Dial-on
[0,1]0dialin.disableNapt
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.90
Configuration
Page 91
3.2.5. Services related Parameters
COM Server
DescriptionRangeDefault ValueParameter
0 = disabled 1= enabled
[0,1]voidserial_srv.status
[raw, telnet, modbus]telnetserial_srv.opt.protocol
[1 .. 65535]2000serial_srv.opt.port
[300, 1200, 2400, 4800, 9600, 19200, 38400, 115200]
115200serial_srv.opt.baud_rate
NONE, ODD, EVEN]voidserial_srv.opt.parity=
1DATABITS, 2DAT­ABITS]
voidserial_srv.opt.stopbits=
[8DATABITS, 7DAT­ABITS]
8DATABITSserial_srv.opt.databits
0 = disabled 1= enabled
[0,1]voidserial_srv.opt.xonxoff
0 = disabled 1= enabled
[0,1]voidserial_srv.opt.rtscts
[RS232, RS485]RS232serial_srv.opt.phys_proto
DNS Proxy Server
DescriptionRangeDefault ValueParameter
0 = DNS Proxy off 1= DNS Proxy on
[0,1]1network.DNS.status
DHCP Server
DescriptionRangeDefault ValueParameter
0 = DHCP server off 1= DHCP server on
[0,1]1network.DHCP.status
DHCP range startipaddress192.168.1.100
network.DHCPSettings.AddressRange-
Start
DHCP range size[1..255]100
network.DHCPSettings.AddressRangeS-
ize
DNS Server 1hostnameProxynetwork.DHCPSettings.DNSServer
DNS Server 2hostnamevoidnetwork.DHCPSettings.DNSServer0
DNS Server 3hostnamevoidnetwork.DHCPSettings.DNSServer1
91© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 92
Dynamic DNS
DescriptionRangeDefault ValueParameter
dyndns = Dynamic DNS dyndns-static = Static DNS dyndns-custom = Custom DNS
[dyndns, dyndns-static, dyndns-custom]
dyndnsdyndns.serviceType
hostnamevoiddyndns.hostname
usernamevoiddyndns.username
passwordvoiddyndns.password
e-mailvoiddyndns.supportEmail
hostnamevoiddyndns.serverAddress
Dynamic DNS Listening Port[1 .. 65535]voiddyndns.port
0 = disabled 1= enabled
[0,1]0dyndns.status
SMS Parameters
DescriptionRangeDefault ValueParameter
0 = disabled 1= enabled
[0,1]1sms.receiving.status
0 = disabled 1= enabled
[0,1]0sms.sending.status
SMSC numberphone numbervoidsms.sending.gateway
SMSC numberphone numbervoidsms.sending.sim2.gateway
E-Mail Parameters
DescriptionRangeDefault ValueParameter
0 = disabled 1= enabled
[0,1]0email.sending.status
hostnamevoidemail.sending.smtp.host
[1 .. 65535]voidemail.sending.smtp.port
From E-mail Addressemailvoidemail.sending.smtp.from
0 = disabled 1= enabled
[0,1]void
email.sending.smtp.authen-
tication
usernamevoid
email.sending.smtp.user-
name
passwordvoid
email.sending.smtp.pass-
word
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.92
Configuration
Page 93
GPS Parameters
DescriptionRangeDefault ValueParameter
0 = Dial-in disabled 1= Dial-in enabled
[0,1]0gps.status
hostnamevoidgps.destination.hostname
[1 .. 65535]voidgps.destination.port
[3..∞]3gps.updateCycle
Event Manager
Events
DescriptionRangeDefault ValueParameter
Event Messagepasswordvoidevents.pppUp.message
Event Messagepasswordvoidevents.pppDown.message
Event Messagepasswordvoidevents.pppFailure.message
Event Messagepasswordvoidevents.vpnUp.message
Event Messagepasswordvoidevents.vpnDown.message
Event Messagepasswordvoidevents.vpnFailure.message
Event Messagepasswordvoidevents.dialInUp.message
Event Messagepasswordvoidevents.dialInDown.message
Event Messagepasswordvoidevents.dialInFailure.message
Event Messagepasswordvoidevents.dyndnsReg.message=
Event Messagepasswordvoidevents.dyndnsFailure.message=
Event Messagepasswordvoidevents.logInGUI.message=
Event Messagepasswordvoidevents.logFailedGUI.message=
Event Messagepasswordvoidevents.restartCrash.message=
Event Messagepasswordvoidevents.restartWebManagement.message
Event Messagepasswordvoidevents.powerUp.message
Event Messagepasswordvoidevents.startUpComplete.message
Event Messagepasswordvoidevents.digitalInput1_On.message
Event Messagepasswordvoidevents.digitalInput2_On.message
Event Messagepasswordvoidevents.digitalInput1_Off.message
Event Messagepasswordvoidevents.digitalInput2_Off.message
Event Messagepasswordvoidevents.digitalOutput1_On.message
Event Messagepasswordvoidevents.digitalOutput2_On.message
Event Messagepasswordvoidevents.digitalOutput1_Off.message
Event Messagepasswordvoidevents.digitalOutput2_Off.message
Event Messagepasswordvoidevents.udpMessage.message
Event Messagepasswordvoidevents.gpsUp.message
Event Messagepasswordvoidevents.gpsDown.message
93© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 94
DescriptionRangeDefault ValueParameter
Event Messagepasswordvoidevents.testEvent.message
Subscribers
DescriptionRangeDefault
Value
Parameter
Name of subscriberhostnamevoid
with k =
[0..19]
subscriber.<k>.name
Phone number for SMS
phone numbervoidsubscriber.<k>.sms.destination
E-mail addressemailvoidsubscriber.<k>.email.destination
Name of grouphostnamevoid
with l =
[0..9]
subscr_grp.<l>.name
Indices of users in this group
0:1:2:…19voidsubscr_grp.<l>.members.users
Indices of groups in this group
0:1:2:…9voidsubscr_grp.<l>.members.groups
Event Processor
DescriptionRangeDefault
Value
Parameter
0:1:2:…9voidevtProc.sequence
hostnamevoid
with l =
[0..9]
evtProc.<l>. eventName
Send = send message Switch = switch digital I/O
[send, switchOn, switchOff]
voidevtProc.<l>.action
Index of subscriber or group or input or output
u:0…9 g:0…9 o:0…2
voidevtProc.<l>.target
SNMP Agent
DescriptionRangeDefault ValueParameter
0 = Dial-in disabled 1= Dial-in enabled
[0,1]0snmp.status
[1 .. 65535]161snmp.port
publicsnmp.community
voidsnmp.contact
voidsnmp.location
hostnamevoidsnmp.traphost
[1 .. 65535]162snmp.trapport
Signal strength trap threshold dBm[-113 to -51]-113snmp.siglow
Signal strength trap reactivation threshold dBm:
[-113 to -51]-51snmp.sighigh
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.94
Configuration
Page 95
SSH Server
DescriptionRangeDefault ValueParameter
[1 .. 65535]22sshServer.port
Telnet Server
DescriptionRangeDefault ValueParameter
[1 .. 65535]23telnetServer.port
Web Server
DescriptionRangeDefault ValueParameter
[1 .. 65535]80webServer.http.port
[1 .. 65535]80webServer.https.port
UDP Message Receiver
DescriptionRangeDefault ValueParameter
[1 .. 65535]2157
udpMessage.receiving.udp-
Port
3.2.6. System related Parameters
User Accounts
DescriptionRangeDefault
Value
Parameter
"not set" = reset admin password
passwordvoiduser.admin.password
0 = disabled 1= enabled
[0,1]1administrator.deviceAccess
hostnamevoid
with k =
[0..20]
user.<k>.name
passwordvoiduser.<k>.password
Troubleshooting
DescriptionRangeDefault ValueParameter
ipaddressvoidredirectSyslogIp
0 = disabled 1= enabled
[0,1]1webMgrDbg.status
95© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 96
Time Synchronisation
DescriptionRangeDefault ValueParameter
0 = disabled 1= enabled
[0,1]1network.NTP.status
NTP serverhostname
swisstime.ethz.ch ???
network.NTP.server
Backup NTP serverhostnamevoidnetwork.NTP.server2
Time zone
[UTC-12… UTC+12]
UTC+2network.timezone
Software Update
DescriptionRangeDefault ValueParameter
ipaddressswu_man.url
0 = disabled 1= enabled
[0,1]1swu_auto.status
hh:mm:sstimeswu_auto.time
hostnameswu_auto.url
Configuration Update
DescriptionRangeDefault ValueParameter
0 = disabled 1= enabled
[0,1]1cfg_auto.status
hh:mm:sstimevoidcfg_auto.time
hostnamevoidcfg_auto.url
3.3. Configuration via Command Line Interface (CLI)
The command line interface is accessible after successful login to M!DGE/MG102 via telnet or Secure Shell (SSH). By default the telnet server answers on port 23, the SSH server on port 22.
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.96
Configuration
Page 97
Logon via Telnet via Windows Telnet ClientLogon via SSH with PuTTY
After authentication, type “cli help” into the Shell to learn about the usage of the command line interface. CLI will stop after every call. You have to include ‘cli’ for every new call.
3.3.1. CLI Overview
The Command Line Interface mainly provides functions to read and write values of the M!DGE/MG102 configuration parameters. In addition, the CLI provides functions to query status information.
DescriptionReturnCommand
Read values of one or more specified configuration parameters.stringcli get
Write values of one or more specified configuration parameters.voidcli set
Show available networks including Location Area Identities (LAIs)stringcli network
Select the network provider defined by the supplied Local Area Identity (LAI) or set the network selection method to automatic
voidcli select
Show a status overview of M!DGE/MG102stringcli status
Print the cli help message (usage)stringcli help
Abort a command. Exit from CLIvoidCtrl+C
3.3.2. CLI Usage
Usage and Return ValueCommand
‘cli get’ is used to read values from configuration parameters. Arguments include all configuration keys as described in chapter
3.2 Usage: cli get <key1>[&<key2>[...]] Example: cli get user.admin.password The return value is the value of the queried parameter.
cli get
Note
cli get <invalidKey> returns no error message
‘cli set’ is used to assign values to configuration parameters. Arguments include all configuration keys as described in chapter
3.2 Usage: set <key1>=<value1>[&<key2>=<value2>[...]] Example: cli set user.admin.password=admin02
cli set
‘cli set’ produces no return value and no error message. To check if the modification took place, use ‘cli get’
97© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 98
Usage and Return ValueCommand
Note
cli set <invalidKey>=<correctValue> returns no error message cli set <validKey>=< inCorrectValue> returns no error message, no range check is performed
Not for end user use! Root rights are required.cli configure
Not for end user use! Root rights are required.cli configureAll
‘cli network’ provides mobile network information on the optionally specified SIM card. If no SIM card is specified, the command is
cli network
applied to SIM1. The information returned includes the Local Area Identity (LAI) Usage: network [sim1/sim2] Example: cli network sim1
‘cli set’ produces no return value and no error message. To check if the modification took place, use ‘cli get’
Note
The following commands are identical: ‘cli network’ and ‘cli network sim1’
‘cli select automatic’ sets the network selection mode for the spe­cified SIM card to automatic. Usage: select automatic [sim1/sim2]
cli select automatic
Note
The following commands are identical: ‘cli select automatic’ and ‘cli select automatic sim1’
The following commands have the same effect: ‘cli select automatic sim1’ and ‘cli set networkselec­tion.mode=automatic’ ‘cli select automatic sim2’ and ‘cli set networkselec­tion.sim2.mode=automatic’
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.98
Configuration
Page 99
Usage and Return ValueCommand
‘cli select manual’ selects the network provider defined by the supplied Local Area Identity (LAI) for the specified SIM card Usage: select manual <LAI> [sim1/sim2]
cli select manual
Note
The following commands are identical: ‘cli select manual <lai>’ and ‘cli select manual sim1 <lai>’
The following commands have the same effect: ‘cli select manual <lai> sim1’ and ‘cli set networkselec­tion.network_lai=<lai> ‘cli select manual <lai> sim2’ and ‘cli set networkselec­tion.sim2.network_lai=<lai>
‘cli status’ returns both, ‘cli status overview’ and ‘cli status system’ concatenated. The option -html is used to query a HTML version of the status information.
cli status
show the status of all interfaces, networks and services.cli status overview
show the status of all interfacescli status overview interfaces
show the state of the SIM-Card
cli status overview interfaces
sim_state
show the state of the PIN
cli status overview interfaces
pin_state
show the actual signal strength
cli status overview interfaces sig-
nal_strength
show the state of the wireless connection
cli status overview interfaces
con_state
show the type of the wireless connection
cli status overview interfaces
con_type
show the mode of the network selection
cli status overview interfaces
net_sel_mode
show the current network provider
cli status overview interfaces
net_sel_prov
show the amount of received and transmitted data
cli status overview interfaces
data_rxtx
show the actual down- and upstream rates
cli status overview interfaces
stream_updown
show the last reset date of data counter
cli status overview interfaces
last_reset
show the status of all networkscli status overview networks
show the state of the NAPT service on the mobile if
cli status overview networks
napt_state_mob
99© RACOM s.r.o. – GPRS/EDGE/UMTS routersM!DGE, MG102
Configuration
Page 100
Usage and Return ValueCommand
show the state of the NAPT service on the vpn if
cli status overview networks
napt_state_ovpn
show the state of the OpenVPN connection
cli status overview networks open-
vpn_state
show the state of the IPsec connection
cli status overview networks
ipsec_state
show the state of the PPTP server
cli status overview networks
pptp_state
show the status of all servicescli status overview services
show the state of the Dynamic DNS client
cli status overview services
dyndns_state
show the state of the Dial-in service
cli status overview services dial-
in_state
show the state of the DHCP server
cli status overview services dh-
cp_state
show the state of the DNS Proxy server
cli status overview services
dns_state
show the state of the GPS signal
cli status overview services
gps_state
show the state of the Keep-alive service
cli status overview services
keepalive_state
show the state of the SMS receiving service
cli status overview services
sms_rec_state
show the state of the SMS sending service
cli status overview services
sms_send_state
show the state of the E-Mail service
cli status overview services
email_state
show the state of the digital inputscli status overview services dig_in
show the state of the digital outputscli status overview services dig_out
show M!DGE/MG102 systems information including hardware and software versions
cli status system
show the M!DGE/MG102 product namecli status system prod_name
show the M!DGE/MG102 product typecli status system prod_type
show the M!DGE/MG102 hardware versioncli status system hw_ver
show the M!DGE/MG102 serial numbercli status system serial
show the M!DGE/MG102 operating systemcli status system os
show the M!DGE/MG102 software versioncli status system nbsw
show the M!DGE/MG102 CPUcli status system cpu
show the M!DGE/MG102 wireless modulecli status system wireless_module
show the amount of RAM installed in the M!DGE/MG102cli status system ram
show the amount of flash installed in the M!DGE/MG102cli status system flash
Print the cli help message (usage)Help
GPRS/EDGE/UMTS routersM!DGE, MG102 – © RACOM s.r.o.100
Configuration
Loading...