Tosibox Lock 200 & Key 200 Users Manual

Lock 200 & Key 200
Table of Contents
User Manual v1.2
1
Table of ConTenTs
Table of Contents
1. TOSIBOX® overview 3
2. TOSIBOX® glossary 5
3. TOSIBOX
®
Key, Lock, User interfaces,
mobile clients overview 6
3.1 TOSIBOX® Key
3.2 TOSIBOX® Lock
3.3 User Interface – Lock
4. TOSIBOX® Key and Lock serialization 9
5. TOSIBOX
5.1 Deploying the Lock
5.3 updating the Lock software
5.4 USB Modem settings for the lock
5.5 Key connection settings for the Lock
5.6 Advanced settings for the Lock
5.7 Internet connection priorities
5.8 PoE
5.9 Mounting instructions
5.10 Input powering options
®
Lock 10
6. TOSIBOX® Key 19
6.1 Taking the Master Key into use
6.2 Renaming and using devices
6.3 Adding extra Keys
6.4 Remote serialization of extra keys
6.5 PUK code for the Key
7. Mobile Client 27
7.1 Mobile Client for Android Devices
7.2 Mobile Client for iPhones and iPads
9. Troubleshooting 37
10. Maintenance instructions
37
11. Technical data
11.1 TOSIBOX® Lock 200
11.2 TOSIBOX® Key 200
38
12. Limited Warranty 40
13. PATENTS
14. Legal Notices
15. Declarations
15.1 Declaration of conformity
15.2 Federal Communication Commission Interference
42
42
43
Statement
2

1. TosIboX® overvIew

Table of Contents
Tosibox was born from the idea that secure remote access doesn’t have to be complicated, expensive or time­consuming.
TOSIBOX
®
offers a new, automatic way to establish a remote connection easily, quickly and securely. TOSIBOX® is the world’s only remote access device with the patented Plug & GoTM technology.
The solution consists of Key and Lock devices that are taken into use by serializing the Key physically using the USB port of the Lock.
TOSIBOX
®
Locks and Keys that have been serialized to each other will discover each other over the Internet and on separate local networks regardless of how they are connected to the Internet. This allows the control of network devices in the Lock’s LAN network.
Tosibox delivers fast and easy remote access to your machines and devices anywhere you can establish a network connection.
FINLAND
http://help.tosibox.com (suomeksi)
+358 44 744 0065
support@tosibox.com
Opening hours: from 8 am till 4 pm Mon – Fri (UTC+2 time zone)
SWEDEN
http://help.tosibox.com (English)
+46406688059
support@tosibox.com
Opening hours: from 8 am till 4 pm Mon – Fri (UTC+2 time zone)
GERMANY
Tosibox Service & Support Center
http://help.tosibox.com (Deutsch)
+49 618 2948 4255
support.dach@tosibox.com
Kettelerstraße 3
63512 Hainburg
Germany
3

1.1 LOCK CONNECTIONS

Table of Contents
LAN3 Port
LAN2 Port
LAN1 Port
Service port
WAN Port
Reset Button (Not used)
DC Power Input
USB Port (for serialization and USB­Modem)
4

2. TosIboX® glossary

Key
An intelligent USB-connected device that contains a secure cryptoprocessor. The Key is used to establish a secure connection to the Lock.
Sub Key
An additional Key that has restricted access rights.
Backup Key
A duplicated backup copy of the Key. All serializations and rights are automatically synchronized between the original Key and the Backup Key.
Lock
device that accepts remote connections from serialized Keys and creates private and secure access to connected network devices. The network devices that are connected to the Lock´s LAN port are automatically found. The Lock automatically distributes IP addresses for the Keys, Sub Keys and the network devices connected to LAN port(s) of the Lock. The Lock can also control network devices with
xed IP addresses.
Sub Lock
A Lock that has been converted to Sub Lock mode of operation. When connecting two Locks to each other, one must be in Sub Lock mode of operation.
DHCP-server
A network device or software that distributes IP addresses to other devices in a network.
Lock 200 sales package content
TOSIBOX® Lock 200
USB Cable
Cable Saddle
Ethernet Cable
DIN Rail Bracket
Table of Contents
AC Adapter
DC Feed Plug
Rubber Feet
5
Table of Contents

3. TosIboX® Key, loCK, User InTerfaCes, mobIle ClIenTs overvIew

3.1 TOSIBOX® KEY

An intelligent USB-connected device that contains a secure cryptoprocessor. The Key is used to establish a connection with the Lock.
Key user interface*
*Key user interface (installed from the Key device). In the image on the right you’ll notice TOSIBOX TOSIBOX® Key and the network devices connected to them.
®
Lock devices that are serialized for the
6

3.2 TOSIBOX® LOCK

TOSIBOX® Lock is a device that accepts remote connections from serialized Keys and provides access to connected network devices. For more information, please see glossary (page 5).
*Web user interface of the Lock. The Lock settings can be changed via:
Service port•
Encrypted TOSIBOX•
•
Local network
Web user interface for the Lock*
®
VPN connection
Table of Contents
7

3.3 USER INTERFACE – LOCK

Table of Contents
Locks and Keys
Green: Connected
Red: Disconnected
Remotely controlled devices
Green: Connected
Red: Disconnected
Details of the remotely controlled devices
8
Status bar shows general information.
Login using “admin” user. Passwords can be found on the bottom of the Lock

4. TosIboX® Key and loCK serIalIzaTIon

The instructions below can be further claried
by seeing the accompanying diagram on the following page.
1. Connect the TOSIBOX
Lock and wait for 2 minutes. Serialize the Key to the Lock by inserting the Key into the USB port of the Lock. When the LED on the Key stops blinking, the serialization is complete (approximately 10 seconds). Remove the Key from the Lock. You can also serialize additional Locks to the same
Key. After the rst Key is serialized to the
Lock, the subsequent Keys (Sub Keys) are serialized with a computer. See section ”Multiple Keys, p.20”. Please see the accompanying image on the next page.
2 - 3. Connect the Lock to your network
according to your use case. See section Deploying the Lock (p.11.). Remember to make sure that the Lock has a working internet connection.
4. Connect the Key to your computer and
install the Key software. Follow the section ”Deploying the Key”.
5. The TOSIBOX
®
to be used to control and monitor remote devices.
®
AC adapter to the
connection is now ready
Table of Contents
9

5. TosIboX® loCK

5.1 DEPLOYING THE LOCK

Table of Contents
With its factory default settings, the Lock is connected to the Internet via its WAN port or a USB modem that can be connected to the USB port of the Lock. In this mode, the Lock creates its own protected local network for the connected devices. Only devices that are connected to the Lock by cable are accessible with the Key.
Notes:
See “USB modem for the Lock” (p.35) to connect a USB modem to the Lock’s USB port.
If the Lock is connected to a DHCP enabled network via any of its • LAN ports (LAN1, LAN2 or LAN3), the Lock’s own LAN functionality will be lost and an error will result. LAN functionality can be restored
by resolving any DHCP conicts by removing improper LAN
connections to the Lock.
CONNECTING NETWORK DEVICES TO THE LOCK
A) Connecting network devices that use dynamic IP addresses (DHCP)
Network devices with a DHCP client enabled will automatically connect to the Lock. Simply plug them in and go.
B) Connecting network devices with static IP addresses:
Assign static IP addresses to devices (from the Lock’s static IP range).1.
Go to Network > LAN and see the IP address of the Lock from 2. ”IPv4 address”. Check also that the network mask in ”IPv4 netmask” is set to 255.255.255.192.
Go to the settings of the network device. Enter an unused IP 3. address into the device that falls within the Lock’s static IP range. This can be found on the default (front) page of the Lock’s web user interface.
10
Table of Contents
4. Go to the Lock’s web user interface and click “Scan for LAN
Devices”. The Lock will automatically locate all devices that match the Lock’s IP range.
C) Conguring a Lock’s static IP address to match an
existing network
Make a note of the IP address and netmask of each controlled 1. network device.
Select an unused address that falls within the IP address range 2. utilized by the network devices. Go to the Lock’s settings by clicking
Network > LAN. Set the Lock’s IP address eld to “IPv4 address” and the netmask eld to “IPv4 netmask” and leave the gateway broadcast elds empty.
Go to Network > DHCP and set the “Start” value so that it’s higher 3. than all used static addresses. Set the limit value to a suitable value so that it covers the rest of the unused address in the LAN range. For example, the range 192.168.5.50 – 192.168.5.254 contains 205 addresses so the value would be 205.
CONNECTING THE LOCK TO AN EXISTING NETWORK IN CLIENT MODE
Client mode can be used for connecting the Lock to an
existing network (e.g. an ofce network). In this mode, the
Lock joins the network like any other device (e.g. a PC) and provides remote users with access to other devices in the same network. The Lock will obtain its address from the DHCP, so the local network needs to have a working DHCP server that allocates IP addresses.
Setting the Lock to client mode:
Log into the Lock’s web user interface as admin and open the LAN 1. settings by clicking Network > LAN.
Change the LAN interface protocol eld to “DHCP client”. Click the 2. “Switch protocol” button and click “Save”.
Connect a cable from the local network to one of the Lock’s LAN 3. ports (e.g. LAN3).
Notice in client mode:
Do not connect the Internet to the Lock’s WAN Port or a USB • modem to the USB port. Doing so will automatically deactivate the client mode and revert the Lock’s LAN settings back to factory defaults.
•
Do not connect any LAN port directly to the Internet.
Do not connect the controlled devices to the Lock’s LAN ports.•
The Lock will scan the entire LAN network for connected devices and • will grant device access to any user with a serialized Key. Please keep this in mind when considering network and information security.
•
In cases where access rights need to be restricted, switch on MAC/
IP ltering (under Advanced settings) or set up the Lock in its factory default conguration.
•
In this mode, the Lock’s inbuilt rewall does not protect the devices
in the LAN network.
11
5.2 CONNECTING LOCKS
With TOSIBOX® Locks one can connect machines in separate places so that the connection between them is permanently and automatically on. One example is a real-
time protected connection between home and ofce. This
is made with a Lock/Sub Lock solution (see accompanying image Connecting Locks). Up to 10 Sub Locks can be connected to one Lock.
First serialize the Key to all the Locks to be connected as described in section “TOSIBOX serialization”.
Connecting Locks
Insert a serialized Key to the USB port of the computer.1.
Choose ”Devices” from the Key user menu and ”Connect Locks” 2. from the drop down menu.
Choose the Locks that you want to connect together and choose 3. ”Next”.
Choose the Lock that you want to attach the Sub Locks. The other 4. Locks will be changed to Sub Lock operating mode.
Conrm the selection > Save > serializing is ready. 5.
Note: The connections will come into effect when the Locks have access to the Internet.
The Sub Lock ends of the connection in the picture do not have their own DHCP service. If the connection between the Lock and the Sub Lock is interrupted, the network devices connected with the Sub Lock can no longer connect to the Internet and each other.
®
Lock and Key
Table of Contents
12
Table of Contents

5.3 UPDATING THE LOCK SOFTWARE

Connect the computer to the service port of the Lock with 1. an ethernet cable. First check that you have access to the Internet via the service port. Open an internet browser and type
http://172.17.17.17 or http://service.tosibox into the address eld
to access the Lock user interface. Do not type “www” before the “http://” in either address.
Alternatively you can also log in remotely using the ³admin² user ID. When the connection between the Key and the Lock is active, double click the Lock symbol in the Key user interface. Log in using “admin” for the user ID. The admin password is visible on the bottom of the Lock.
Choose “Settings” > “Software update”. If there is a software 2. update available for the Lock, you can start the update by clicking the “Start software update” button.
Wait until the update has been downloaded and installed. Do not 3. interrupt the power of the Lock during the software update process. The update is complete when the software gives a notice “Software updated successfully”.
Automatic software updates are activated as a default setting. You can select the time when the automatic update of the released software is allowed. You can deactivate the automatic software update from the Lock user interface.
Choose “Settings” > “Software update” > uncheck the box “Auto-update enabled”.

5.4 USB MODEM SETTINGS FOR THE LOCK

You can connect the Lock to the Internet with a USB Modem. For information on supported modems go to: http://help.tosibox.com
Log in as admin user, select “Network” > “USB Modem”.4.
Fill in the APN and if necessary the PIN eld according to the SIM 5. card settings. For APN settings information, please contact your mobile operator.
Conrm the selection > Save.6.
Connect a Tosibox supported USB Modem to the USB port of the 7. Lock.

5.5 KEY CONNECTION SETTINGS FOR THE LOCK

You can allow connections from Lock to Key. Log into the Lock as admin,
select “Settings” > “Keys and Locks” > remove selection “Deny access towards client” You can change the Key connection type from Layer 3 -routed to
Layer 2 -bridged (“Connection type” > “Layer 2 -bridged”).
13
Loading...
+ 29 hidden pages