15.2 Federal Communication Commission Interference
42
42
43
Statement
2
1. TosIboX® overvIew
Table of Contents
Tosibox was born from the idea that secure remote access
doesn’t have to be complicated, expensive or timeconsuming.
TOSIBOX
®
offers a new, automatic way to establish a
remote connection easily, quickly and securely. TOSIBOX®
is the world’s only remote access device with the patented
Plug & GoTM technology.
The solution consists of Key and Lock devices that are
taken into use by serializing the Key physically using the
USB port of the Lock.
TOSIBOX
®
Locks and Keys that have been serialized
to each other will discover each other over the Internet
and on separate local networks regardless of how they
are connected to the Internet. This allows the control of
network devices in the Lock’s LAN network.
Tosibox delivers fast and easy remote access to your
machines and devices anywhere you can establish a
network connection.
FINLAND
http://help.tosibox.com (suomeksi)
+358 44 744 0065
support@tosibox.com
Opening hours:
from 8 am till 4 pm Mon – Fri (UTC+2 time zone)
SWEDEN
http://help.tosibox.com (English)
+46406688059
support@tosibox.com
Opening hours:
from 8 am till 4 pm Mon – Fri (UTC+2 time zone)
GERMANY
Tosibox Service & Support Center
http://help.tosibox.com (Deutsch)
+49 618 2948 4255
support.dach@tosibox.com
Kettelerstraße 3
63512 Hainburg
Germany
3
1.1 LOCK CONNECTIONS
Table of Contents
LAN3 Port
LAN2 Port
LAN1 Port
Service port
WAN Port
Reset Button (Not
used)
DC Power Input
USB Port (for
serialization and USBModem)
4
2. TosIboX® glossary
Key
An intelligent USB-connected device that contains a secure
cryptoprocessor. The Key is used to establish a secure
connection to the Lock.
Sub Key
An additional Key that has restricted access rights.
Backup Key
A duplicated backup copy of the Key. All serializations and
rights are automatically synchronized between the original
Key and the Backup Key.
Lock
device that accepts remote connections from serialized
Keys and creates private and secure access to connected
network devices. The network devices that are connected
to the Lock´s LAN port are automatically found. The Lock
automatically distributes IP addresses for the Keys, Sub
Keys and the network devices connected to LAN port(s) of
the Lock. The Lock can also control network devices with
xed IP addresses.
Sub Lock
A Lock that has been converted to Sub Lock mode of
operation. When connecting two Locks to each other, one
must be in Sub Lock mode of operation.
DHCP-server
A network device or software that distributes IP addresses
to other devices in a network.
Lock 200 sales package content
TOSIBOX® Lock 200
USB Cable
Cable Saddle
Ethernet Cable
DIN Rail Bracket
Table of Contents
AC Adapter
DC Feed Plug
Rubber Feet
5
Table of Contents
3. TosIboX® Key, loCK, User InTerfaCes, mobIle ClIenTs overvIew
3.1 TOSIBOX® KEY
An intelligent USB-connected device that contains a secure
cryptoprocessor. The Key is used to establish a connection
with the Lock.
Key user interface*
*Key user interface (installed from the Key device). In the image on the
right you’ll notice TOSIBOX
TOSIBOX® Key and the network devices connected to them.
®
Lock devices that are serialized for the
6
3.2 TOSIBOX® LOCK
TOSIBOX® Lock is a device that accepts remote
connections from serialized Keys and provides access to
connected network devices. For more information, please
see glossary (page 5).
*Web user interface of the Lock. The Lock settings can be
changed via:
Service port•
Encrypted TOSIBOX•
•
Local network
Web user interface for the Lock*
®
VPN connection
Table of Contents
7
3.3 USER INTERFACE – LOCK
Table of Contents
Locks and Keys
Green: Connected
Red: Disconnected
Remotely controlled
devices
Green: Connected
Red: Disconnected
Details of the
remotely controlled
devices
8
Status bar shows
general information.
Login using
“admin” user.
Passwords can
be found on the
bottom of the Lock
4. TosIboX® Key and loCK serIalIzaTIon
The instructions below can be further claried
by seeing the accompanying diagram on the
following page.
1. Connect the TOSIBOX
Lock and wait for 2 minutes. Serialize the
Key to the Lock by inserting the Key into
the USB port of the Lock. When the LED
on the Key stops blinking, the serialization
is complete (approximately 10 seconds).
Remove the Key from the Lock. You can
also serialize additional Locks to the same
Key. After the rst Key is serialized to the
Lock, the subsequent Keys (Sub Keys) are
serialized with a computer. See section
”Multiple Keys, p.20”. Please see the
accompanying image on the next page.
2 - 3. Connect the Lock to your network
according to your use case. See section
Deploying the Lock (p.11.). Remember
to make sure that the Lock has a working
internet connection.
4. Connect the Key to your computer and
install the Key software. Follow the section
”Deploying the Key”.
5. The TOSIBOX
®
to be used to control and monitor remote
devices.
®
AC adapter to the
connection is now ready
Table of Contents
9
5. TosIboX® loCK
5.1 DEPLOYING THE LOCK
Table of Contents
With its factory default settings, the Lock is connected to
the Internet via its WAN port or a USB modem that can
be connected to the USB port of the Lock. In this mode,
the Lock creates its own protected local network for the
connected devices. Only devices that are connected to the
Lock by cable are accessible with the Key.
Notes:
See “USB modem for the Lock” (p.35) to connect a USB
modem to the Lock’s USB port.
If the Lock is connected to a DHCP enabled network via any of its •
LAN ports (LAN1, LAN2 or LAN3), the Lock’s own LAN functionality
will be lost and an error will result. LAN functionality can be restored
by resolving any DHCP conicts by removing improper LAN
connections to the Lock.
CONNECTING NETWORK DEVICES TO THE LOCK
A) Connecting network devices that use dynamic IP
addresses (DHCP)
Network devices with a DHCP client enabled will
automatically connect to the Lock. Simply plug them in and
go.
B) Connecting network devices with static IP addresses:
Assign static IP addresses to devices (from the Lock’s static IP range).1.
Go to Network > LAN and see the IP address of the Lock from 2.
”IPv4 address”. Check also that the network mask in ”IPv4
netmask” is set to 255.255.255.192.
Go to the settings of the network device. Enter an unused IP 3.
address into the device that falls within the Lock’s static IP range.
This can be found on the default (front) page of the Lock’s web user
interface.
10
Table of Contents
4. Go to the Lock’s web user interface and click “Scan for LAN
Devices”. The Lock will automatically locate all devices that match
the Lock’s IP range.
C) Conguring a Lock’s static IP address to match an
existing network
Make a note of the IP address and netmask of each controlled 1.
network device.
Select an unused address that falls within the IP address range 2.
utilized by the network devices. Go to the Lock’s settings by clicking
Network > LAN. Set the Lock’s IP address eld to “IPv4 address”
and the netmask eld to “IPv4 netmask” and leave the gateway
broadcast elds empty.
Go to Network > DHCP and set the “Start” value so that it’s higher 3.
than all used static addresses. Set the limit value to a suitable value
so that it covers the rest of the unused address in the LAN range.
For example, the range 192.168.5.50 – 192.168.5.254 contains 205
addresses so the value would be 205.
CONNECTING THE LOCK TO AN EXISTING NETWORK
IN CLIENT MODE
Client mode can be used for connecting the Lock to an
existing network (e.g. an ofce network). In this mode, the
Lock joins the network like any other device (e.g. a PC) and
provides remote users with access to other devices in the
same network. The Lock will obtain its address from the
DHCP, so the local network needs to have a working DHCP
server that allocates IP addresses.
Setting the Lock to client mode:
Log into the Lock’s web user interface as admin and open the LAN 1.
settings by clicking Network > LAN.
Change the LAN interface protocol eld to “DHCP client”. Click the 2.
“Switch protocol” button and click “Save”.
Connect a cable from the local network to one of the Lock’s LAN 3.
ports (e.g. LAN3).
Notice in client mode:
Do not connect the Internet to the Lock’s WAN Port or a USB •
modem to the USB port. Doing so will automatically deactivate
the client mode and revert the Lock’s LAN settings back to factory
defaults.
•
Do not connect any LAN port directly to the Internet.
Do not connect the controlled devices to the Lock’s LAN ports.•
The Lock will scan the entire LAN network for connected devices and •
will grant device access to any user with a serialized Key. Please keep
this in mind when considering network and information security.
•
In cases where access rights need to be restricted, switch on MAC/
IP ltering (under Advanced settings) or set up the Lock in its factory
default conguration.
•
In this mode, the Lock’s inbuilt rewall does not protect the devices
in the LAN network.
11
5.2 CONNECTING LOCKS
With TOSIBOX® Locks one can connect machines in
separate places so that the connection between them is
permanently and automatically on. One example is a real-
time protected connection between home and ofce. This
is made with a Lock/Sub Lock solution (see accompanying
image Connecting Locks). Up to 10 Sub Locks can be
connected to one Lock.
First serialize the Key to all the Locks to be connected
as described in section “TOSIBOX
serialization”.
Connecting Locks
Insert a serialized Key to the USB port of the computer.1.
Choose ”Devices” from the Key user menu and ”Connect Locks” 2.
from the drop down menu.
Choose the Locks that you want to connect together and choose 3.
”Next”.
Choose the Lock that you want to attach the Sub Locks. The other 4.
Locks will be changed to Sub Lock operating mode.
Conrm the selection > Save > serializing is ready. 5.
Note: The connections will come into effect when the
Locks have access to the Internet.
The Sub Lock ends of the connection in the picture do not
have their own DHCP service. If the connection between
the Lock and the Sub Lock is interrupted, the network
devices connected with the Sub Lock can no longer
connect to the Internet and each other.
®
Lock and Key
Table of Contents
12
Table of Contents
5.3 UPDATING THE LOCK SOFTWARE
Connect the computer to the service port of the Lock with 1.
an ethernet cable. First check that you have access to the
Internet via the service port. Open an internet browser and type
http://172.17.17.17 or http://service.tosibox into the address eld
to access the Lock user interface.
Do not type “www” before the “http://” in either address.
Alternatively you can also log in remotely using the ³admin² user
ID. When the connection between the Key and the Lock is active,
double click the Lock symbol in the Key user interface. Log in using
“admin” for the user ID. The admin password is visible on the
bottom of the Lock.
Choose “Settings” > “Software update”. If there is a software 2.
update available for the Lock, you can start the update by clicking
the “Start software update” button.
Wait until the update has been downloaded and installed. Do not 3.
interrupt the power of the Lock during the software update process.
The update is complete when the software gives a notice “Software
updated successfully”.
Automatic software updates are activated as a default
setting. You can select the time when the automatic update
of the released software is allowed. You can deactivate the
automatic software update from the Lock user interface.
You can connect the Lock to the Internet with a USB
Modem. For information on supported modems go to:
http://help.tosibox.com
Log in as admin user, select “Network” > “USB Modem”.4.
Fill in the APN and if necessary the PIN eld according to the SIM 5.
card settings. For APN settings information, please contact your
mobile operator.
Conrm the selection > Save.6.
Connect a Tosibox supported USB Modem to the USB port of the 7.
Lock.
5.5 KEY CONNECTION SETTINGS FOR THE LOCK
You can allow connections from Lock to Key. Log into the
Lock as admin,
select “Settings” > “Keys and Locks” > remove selection
“Deny access towards client” You can change the Key
connection type from Layer 3 -routed to