Home

InRouter 700 Series User`s Manual - Shop Online

image

Contents

1. 1500 Description Edit PPTP Tunnel Enable Tunnel name PPTP Server Username Password Startup Modes Authencation Type Local IP Address Remote IP Address Remote Subnet Remote Netmask Link Detection Interval Max Retries for Link Detection Enable NAT Enable MPPE Enable MPPC MTU IRU Enable Debug Expert Options Expert Only 5 PPTP Clients Name Enable 5 Startup Mode Authencation Type Auto Activated wf Auto Activated et Startup Modes Trigged by Data Manually Activated CHAP PAP Set Authencation Type MS CHAPv1 MS CHAPv2 Link Detection Interval Set Link Detection Interval Max Retries for Link Detection Set Max Retries for Link Detection 6 Open VPN Tunnels In the configuration WEB of 700 select VPN gt Open VPN Tunnels as below InHand Networks D ewwwainhandnetworks com Connecting Devices Enabling Services Open PH Tunnels Enable Hame Tunnel Description Tunnel Status Conneted Time Show Detail Status Seconds Click Add to add a new Open VPN tunnel Open PH Tunnels Edit OPENYPN Tunnel Tunnel name Enable Mode Client Y Protocol Port OPENVPN Server 211 189 3 69 Authencation Type User Password v Username Password Pre shared Key Remote Subnet 192 168 8 0 ct ct Remote Netmask 255 255 70 Link Detection Interval 80 Secomds Link Detection Time
2. Dialup Number Username and Password are provided by local mobile operator The following examples show parameters provided by China Mobile Vodafone Please contact with local operator for details 1 China Mobile APN CMNET Phone Number 99 User Name web Password web 2 Vodafone APN internet Phone Number 99 User Name web Password web After correctly configurting InRouter 700 can now access Internet Open IE Browser input www google com you should see the Google home pages InHand Networks Connecting Devices Enabling Services Web Images Videos Maps News Shopping Gmail more iGoogle Search settings Sign in Google Advanced Search Language Tools Google Search l m Feeling Lucky Advertising Programs Business Solutions About Google Go to Google China 2010 Privacy 2 4Quick IPSec VPN Configuration If you need to build a VPN tunnel to access to your remote PLC through Internet or you need to ensure security of the data transmission here s a quick configuration guide of IPSec for InRouter700 Series Remote Control Center InRouter von x P PLC Engineer Station Connect PC with Router to enter router configuration interface select VPN gt IPSec setting System Network Services Firewall Qos VPN IPSec Settings Enable NAT Traversal WATT Keep alive time interval of NATT 60 seconds Enable Compression D
3. 23 Q ick Connection to IMENE EE 15 EN IS el RE 15 PE PMN mi unt EAEE EE A E ET A EEEE EEE 15 15 GE E 15 A Connect nk omer viry ee 16 2 3 6 Start to configure your InRouter 700 Optional oooooooooonnccccncnnnonononononnnonononnnnnnnnnnnnnnnnonononnnnnnnnnnnnnnnnnnnnnnnnos 18 2 5 4 Connect INR with MED E 19 27 ICIP See VEN Cont STIG E 20 25 Reset to Factory Detalla col lla 22 2 A ETET TETEE EE E EE EEEE 22 RS DN EE 23 Advanced Coni our atio inalienables a a EE EES 24 oul 25 SR SR A II PI ei OO PO E EE E E ES 25 SN EE 26 E E 30 o UU me e o UE A An 40 ET EE 44 ES A II IN E peaeecteuacnseaasedansimsseuonouiae atts 46 A A AA 46 PS eo A 54 SR AA A A A T ET 55 EE 58 ARMS A AA A o EEEE 59 Ao EE 1 63 PO EE 5 inHand Networks Connecting Devices Enabling Services I Introduction to InRouter 700 Series Overview e Product Models e Product Features amp Specifications e Package Checklist InHand Networks Connecting Devices Enabling Services 1 1 Overview InRouter 700 series industrial grade routers provide users with stable and high speed connection between remote devices and customer s center via 2 5G 3G networks They allow wide voltage power supply 9 48V DC large range operating temperature from 25 C to 70 C 10 158F humidity 95 RH and fully sati
4. LAN DNS DDNS Static Route and etc InHand Networks imwwiinhandnetworks com Connecting Devices Enabling Services a hana InHand Networks Services Firewall QoS VPN Tools Status Dialup ALL Schedule Management Custom E Manage uninet l 99 1 4 0 lo always Always Online 30 Seconds seconds 500 500 m sch E N Auto Y Seconds 0 disable eo nomppe nomppc nodeflate nobsdcomp now novjccomp Ignore Traffic e 30 Seconds 5 Seconds Description Default System Network Enable Time schedule Shared Connection NAT Network Provider ISP APN Access Number Username Password Primary Profile Retries Network Select Type Band Static IP Connection Mode Redial Interval Show Advanced Options Initial Commands PIN Code Dial Timeout MTU MRU TX Queue Length Authencation Type Enable IP head compression Use default asyncmap Use Peer DNS Link Detection Interval Link Detection Max Retries Debug Expert Options ICMP Detection Mode ICMP Detection Server ICMP Detection Interval ICMP Detection Timeout ICMP Detection Retries Enable PPP dialup Enable Enable Set time for online and offline Enabled device linked with Router Can access to internet Disable device Can NOT access to internet via Router Select local ISP if not listed here please select Customer Customer Choose mobile network type HSD
5. 2011 8 21 Add description for functions 1 Double Dialup set backup parameters for PPP dialup at Networks gt Dialup Double IPSec set backup IPSec tunnel at VPN gt IPSec Tunnels DHCP Relay at Service gt DHCP Relay DNS Relay at Service gt DNS Relay Enable SSH configuration Disable Multi Manager function at System gt Admin Access Loopback at Networks gt Loopback Port Mirror at Networks gt Port Mirror o N Ch an E W WV 2012 1 12 Add description for functions 1 Add description for Multi IP Access 2 Add network models for United States market 3 Add description for Dynamic GRE 4 Add model selection for ICMP 5 Status L Modem display changes 2012 5 8 Add description for functions 1 Add short connection for DTU trigger by serial port 2 Add the Virtual IP port mapping for Firewall gt Port Mapping 3 Use two units to display signal strength asu dBm InHand Networks Connecting Devices Enabling Services content enee tere to ET 3 1 1 O 4 E E E 6 1 3 Product PE AMIECS eegene 7 7 e E 8 meses REE 9 Power UR 9 o Ee Te 9 EE Features 000 TER 9 A 10 Db e 10 E ER eege te E Tee 1 12 2 1 ee 13 2 2 Weis Ty E 13
6. Enable Client to Client O Server Mode Only Client Hanagement Enable Tunnel name Username CommonHame Password Local Static Route Remote Static Route must be 4n 1 M Open Add Apply Cancel Name Description Enable Client to Client Enable client access to other clients Client Management Tunnel Name Tunnel Name of the Client Username Common Name Username using Username password mode or Common Name in CA CA mode Local Static Route The client subnet Remote Static Route The server subnet Attention CA can only be produced by customer s PC InRouter700 cannot produce CA InHand Networks D www inhandnetworks com Connecting Devices Enabling Services 8 Certificate Management Certificate Management Certificate Hanapenment Enable SCEP Simple Certificate Enrollment Protocol Protect Key Protect Key Confirm E GER E e ees e 778 Description Default Enable SCEP Click Enable Simple Certificate Enrollment Protocol Certificate Protected Key Set Certificate Protected Key Certificate Protected Key Confirm Confirm Certificate Protected Key 3 1 8 Tools Tools contain PING Detection Route Trace Link Speed Test and etc 1 PING System Network Services Firewall 5 VPN Tools Status PING Host Ping Count la Packet Size 32 Bytes N T Description Default Packet Size Set PING Packet Size 32 Bytes InHand Networks gt imwwinhandne
7. MAC IP Bundling MAC Address IP Address Description t 00 00 00 00 00 00 192 168 2 2 Add When firewall denies all access to the external network only PC with MAC IP Bundling can access external network Name Description Default MAC Address Set Bundling Mac address IP Address Set Bundling IP address 192 168 2 2 3 1 6 QoS Systern Network Services Firewall Qos VPN Bandwidth Control Enable Outbound Limit Max Bandwidth 100000 kbit s Inbound Limit Max Bandwidth 100000 kbit s Description Outbound Limit Max Set the limit speed of out bound 100000kbit s Bandwidth bandwidth Inbound Limit Max Set the limit speed of inbound bandwidth 100000kbit s Bandwidth 3 1 7 VPN For IR79x only This page introduces the parameters in InRouter 700 s Web 1 IPSec Settings To build an IPSec VPN Tunnel you need first set IPSec properties in this page then turn to IPSec Tunnels to add your VPN InHand Networks gt wwwinhandnetworks com Connecting Devices Enabling Services Qos VPN Tools Status IPSec Settings IPSec Settings system Network Services Firewall Enable NAT Traversal NATT Keep alive time interval of NATT 60 Seconds Enable Compression Debug O Force NATT O Description 1 Select to Enable or Disable NATT normally we need to enable unless you ensure there 18 no NAT routers in the network 2 Select to enable Compression Mode or Debug Description Default Qos VPN T
8. Mbps RJ45 connector Auto MDI MDIX Magnetic Isolation Protection 1 5 KV built in IR704 794 Number of Ports 4 Ethernet 10 100 Mbps RJ45 connector auto MDI MDIX Magnetic Isolation Protection 1 5 KV built in Serial A Serial Type RS232 485 B Data bit 5 6 7 8 C Stop bit 1 2 D Check bit N O D E Baud rate 1 200bit s 115 200bit s SIM Interface SIM Control 3 V InHand Networks Connecting Devices Enabling Services 1 3 2 Functions PPP Support VPDN APN fast access to virtual private dial up network VPDN provided by mobile operator ensure high security data transmission Support PPPoE Point to Point Protocol over Ethernet Protocol Support CHAP PAP MS CHAP MS CHAP V2 authorization Support Connection Detection auto recovery auto link ensure reliable communication Support On demand connection SMS Activity Dynamic IP Support DHCP applied as Server Client Dynamic DNS Support Dynamic DNS IP Binding Flux Management Support rate limiting Firewall Function Package filtering Port Mapping Virtual Address Mapping DMZ zone MAC addresses binding Route function Support Static Routing Table VPN for IR79x only IPSec VPN L2TP VPN PPTP VPN GRE SSL VPN Link Backup VRRP Support VRRP protocols realizing immediate link backup Hot Link Backup for IR7x4 only Support Wireless Hot Link Backup for cable link via only one device DNS Forwarding Support DNS Forwarding support DNS record Network
9. and so on Routertconfig gt H nuram set com4_config 172088n1 set com4_conf ig 1972008n1 Enable advanced options of dialup Routertconfig st nuram set advanced 1 set aduanced 1 Configure ICMP server Routertconfig gt nuram set wanl_icmp_host wwus sina com set wanl_icmp_host wwu sina com Configure LAN IP Routertconfig2H nuram set lanBd_ip 192 168 1 set lanO_ip 172 168 2 1 Enable DHCP function outertconfig gt nuram set dhcpd_enable 1 et dhcpd_enable 1 Configure DHCP IP pool 192 168 2 10 192 168 2 20 Routertconfig t nuram set dhcpd_ start 1792 168 2 186 set dhcod_start 19 2 168 2 106 Routertconfig k set dhcpd_end 1 8 set dhcpd_end 192 168 2 20B Enable HTTP function Routertconfig st nuram set http enable 1 set http_enable 1 Configure HTTP service port Routertconfig gt nuram set http_port 4 set http_port 86 Enable HTTP local access Routertconfig2H nuram set http_local i set http_local 1 Enable HTTP remote access anand Networks Connecting Devices Enabling Services Routertconfig gt k nuram set http_remote 1 set http_remote 1 Check device ID Routertconfig gt nuram get ovdp_device_id ovdp device_id 711122732 After configuration please don t forget to commit and reboot router Routertconfig2R nuram commit z command okt Routertconfig gt H reboot are you sure to reboot EA Ge Connecting Devices Enabling Servic
10. status of router by send SMS e g show status Default Policy Block or Accept control SMS from certain Phone Phone List Include phone numbers accepted or blocked to send SMS to router Notice Before using this function please make sure you have a SIM card in the router that has SMS function Otherwise please contact local mobile operator to get one SMS you will get in your mobile phone Host SN Uptime the uptime of router for this time of reboot State Online Offline Cellular WAN IP LAN Up LAN IP 3 1 5 Firewall This page is to configure the firewall parameters 1 Basic Configuration Basic Default Filter Policy Block Anonymous WAN Requests ping Filter Multicast Defend Dos Attack NO Description Default Default Filter Policy Optional between Accept Refused Block Anonymous WAN Request ping Click to enable filer ping request Filter Multicast Click to enable filter multicast Defend DoS Attack Click to enable Defend DoS Attack Filtering BE Enable Proto Source Source Port Destination regen Action Log Description ALL ze 0 0 0 00 Add Name Description Default Protocol Optional among TCP UDP ICMP All Source IP address Set Source IP address 2 Filtering InHand Networks gt imww inhandnetworks com Connecting Devices Enabling Services 3 Port Mapping System Network Services Firewall Qos VPN Tools Status
11. tools Support Ping Trace Route and Telnet Wakeup Over LAN WOL Support Wakeup over LAN to wakeup industrial PC over Eth after receives SMS RSSI Cell ID Display inHand Networks Connecting Devices Enabling Services 1 3 3 Environmental Limits Operating Temperature 25 to 70 C 10 to 158 F Operating Humidity 5 to 95 RH Storage Temperature 40 to 85 C 40 to 167 F 1 3 4 Power Requirements Power Inputs 1 terminal block including power jack and serial Input Voltage 9 48 VDC 1 3 5 Physical Characteristics Housing Steel providing IP30 protection Weight 490g Dimensions mm IR701 791 20 0 Side View DIN Rail Kit Front View IR704 794 Side View Front View InHand Networks Connecting Devices Enabling Services RF conducted interference EN61000 4 6 Level 3 Damped oscillation Immunity EN61000 4 12 Level 3 Power frequency electromagnetic fields Immunity EN61000 4 8 Level 5 Anti shock IEC60068 2 27 Drop IEC60068 2 32 Vibration IEC60068 2 6 1 3 7 Device Management Software Device Manager Centralized management solution for InHand Networks Devices 1 3 8 Warranty Warranty Period 1 year Optional service for 3 years InHand Networks Connecting Devices Enabling Services 1 4Product Models The current models of InRouter700 Series include InRouter701 791GS55 InRouter701 791WHO1 InRouter 704 794WHOl1 The models are classified accord
12. 85 Device Data Analysis System VPN Tunnel InRouter 700 series can be used to connect your device with RS232 485 Ethernet Interface to internet via GPRS HSUPA cellular network Meanwhile to ensure the security and access InRouter 700 series support VPN enabling remote access and secure data transmission through Internet 2 2 Panel Layout IR701 791 Nh se Terminal ee Internal Block SIM Card Slot DIN Kit InHand Networks Connecting Devices Enabling Services IR704 794 Status LEDs Console Port DIN Kit DMZ LAN 2 Interface Description One 10 100Base TX RJ45 Port IR701 791GS55 IR701 791WHO01 IR701 791UE Ethernet Ports Four 10 100Base TX 4145 Ports IR704 794UE IR704 794WHO1 ANTENNA 2 5G 3G antenna SIM Card Connector Hold SIM card Description of LED op Blink 4 Legend oun Power Power Power Status Status Status Warn Warn Warn Error Error Error Power on Start to run firmware Begin dial to Internet Power Power Power Status Status Status Warn Warn Warn Error Error Error Connect to internet Upgrading firmware Restore factory default Signal Status LED Description 000 Signal 1 9 poor signal level router cannot work please check the antenna and local signal level Signal 10 19 Router can work under this signal level Signal 20 31 Perfect signal level InHand Networks gt wwwinhandnetworks com e Connecti
13. AA Current Bootloader Version 1 1 6 r1730 for detail get help for commands language set language Show Show system information exit exit current mode console ping ping test telnet telnet to a host traceroute trace route to a host enable turn on privileged commands Router gt Step 4 enter privileged mode password is 123456 eg Telnet 192 168 2 1 Welcome to Router console Inhand Copyright 2661 2611 Beijing InHand Networks Go Ltd http wuu inhandnetworks com IRYL LUHY Serial Number RW 911663117964 Description www inhand com cn Current Wersion 1 75 Current Bootloader Version 1 1 6 r173bB get help for commands language set language show shou system information exit exit current mode console ping ping test telnet telnet to a host traceroute trace route to a host enahle turn on privileged commands Router en input password Step 5 Login to privileged mode successfully Router Router Router Router Step 6 Enter configured mode then you could configure parameters you want to set up Routerk conf terminal Routertconf ig H 4 2 CLI command Configure username and password Routertconfig nuram set adm_user adm set adm_user adm Router tconfig nuram set adm_passud 123456 set adm_passwd 123456 Routertconf ig Enable serial function ASA nvram set console_enable 1 set console_enable 1 Configure serial port parameters like baudrate parity stop bit
14. B7 CD FF 203 86 43 5 This page shows the devices linked with IR700 6 Log Log a Level Time Module Content Too many logs old Loss are not displayed Please download Los file to check more logs debug Jun 19 13 06 49 In gent IMST 0123456 T89ABCDE info Jun 19 13 06 49 In gent Firmware Version 1 3 0 r1773 Entity Config Timestamp a 1275632533021 Sysconfig Timestamp 000000000000000 info Jun 19 13 06 59 InAgent Try to login 9th 10 info Jun 19 13 06 59 InAgzgent nvram sysconf_timestamp not found debug Jun 19 13 06 59 IndAgent IMST 0123456 T89ABCDE info Jun 19 13 06 59 In amp Agent Firmware Version 1 3 0 r1773 Entity Config Timestamp a 1275632533021 Sysconfig Timestamp 000000000000000 info Jun 19 13 07 09 Indgent Try to login 10th 10 info Jun 19 13 07 09 In amp Agent nvram sysconf_timestamp not found debug Jun 19 13 07 09 InAgent IMSI 0123456789ABCDE info Jun 19 13 07 09 In gent Firmware Version 1 3 0 r1773 Entity Config Timestamp a 1275632533021 Sysconfig Timestamp 00000000000000 info Jun 19 13 07 19 InAgent Try to connect OVDP AP 10 8 0 6 9000 info Jun 19 13 07 19 Indgent Try to login ith 10 info Jun 19 13 07 19 InAgent nvram sysconf_timestamp not found debug Jun 19 13 07 19 Indgent IMSI 0123456789ABCDE info Jun 19 13 07 19 IndAgent Firmware Version 1 3 0 r1773 Entity Config Timestamp a 1275632533021 Sysconfig Timestamp 000000000000000 info Jun 19 13 07 29 InAgent Try to login th 10 info
15. Connecting Devices Enabling Services InRouter 700 Series User s Manual Second Edition March 2013 For Firmware Version 1 3 7 12565 os 2013 InHand Networks All rights reserved Republication without permission 1s prohibited InRouter 700 Series User s Manual Copyright Notice Copyright O 2013 InHand Networks All rights reserved Reproduction without permission is prohibited Trademarks InHand is a registered trademark of InHand Networks Other registered marks cited in this manual represented their respective companies Disclaimer Information in this document is subject to change without notice and does not represent an obligation on the part of InHand Networks This user manual may include intentional technical or typographical errors Changes are periodically made to the manual to correct such errors and these changes are not informed in new editions Technical Support Contact Information InHand Networks China Tel 86 010 64391099 Fax 86 010 64399872 Email support inhandnetworks com Connecting Devices Enabling Services Release Notes 2011 3 24 Add description for functions 1 WOL Wakeup Over LAN at Networks gt LAN 2 SMS control reboot show status at Service gt SMS 3 User X 509 mode for OpenVPN client Add Notice 1 WAN LAN settings don t set the WAN LAN IP as 192 168 3 1 the default IP of DMZ port
16. ISP Used to configure the APN username password and other parameters of major operators 7 System Upgrade ay stem Network SE lees Firewall Tools status Upgrade select the file to use Brews Current Version 1 3 0 fa Current Bootloader Version 1 4 To upgrade the system click System gt System upgrade to enter upgrade page then follow the steps below Click Browse choose the upgrade file InHand Networks gt imwwinhandnetworks com Connecting Devices Enabling Services Choose file Look ir E My Documents My Pictures My Recent E MEET Documents Mu Computer Mu Network File name update bin bf Places Files of type Files e Cancel Click update and then click sure to begin update the window will show as below 0 01 Upgrading system It will take about 1 5 minutes depending on network Please wait and don t interrupt Upgrade firmware succeed and click reboot to restart IR700 8 Reboot If you need to reboot system please click System gt Reboot Then click OK to restart system Microsoft Internet Explorer E e Confirm Reboot 9 Logout If you need to logout system click System gt Logout and then click OK Microsoft Internet Explorer E 2 Confirm Logout 3 1 3 Network Network settings include Dialup
17. Jun 19 13 07 29 IndAgent nvram sysconf_timestamp not found debug Jun 19 13 07 29 In gent IMSI 0123456789ABCDE info Jun 19 13 07 29 IndAgent Firmware Version 1 3 0 r1773 Entity Config Timestamp a 1275632533021 Sysconfig Timestamp 000000000000000 Download Log File Download System Diagnosing Data This page shows the log of system including download log file Under certain situation when there re problems that can t be diagnosed at the moment you ll be asked to provide the diagnose log to InHand engineers you may click Download System Diagnosing Data and then send the diagnose log to US InHand Networks Connecting Devices Enabling Services IV CLI Configuration CLI Configuration InHand Networks imwwinhandnetworks com 4 1 CLI Operation Step 1 Input telnet LAN IP to login CLI configuration For example G Documents and Settings MAdministrator telnet 1292 168 2 1 Step 2 After connection is succeed input username and password of IR700 The default username password is adm 123456 Attention password will not be showed Telnet 192 168 2 1 Router login adm Password m Step 3 Login to User Mode ci Telnet 192 168 2 1 Welcome to Router console Inhand Copyright P2H61 26011 Beijing InHand Networks Co Ltd http www inhandnetworks Com IR 1iWH76 Serial Number 1 41 Description www inhand com cn Current Wersion es es
18. MHz Warning This is a class A product In a domestic environment this product may cause radio interference in which case the user may be required to take adequate measures WEEE Notice The Directive on Waste Electrical and Electronic Equipment WEEE which entered into force as European law on 13th February 2003 resulted in a major change in the treatment of electrical equipment at end of life The purpose of this Directive is as a first priority the prevention of WEEE and in addition to promote the reuse recycling and other forms of recovery of such wastes so as to reduce disposal The WEEE logo shown at the left on the product or on its box indicates that this product must not be disposed of or dumped with your other household waste You are liable to dispose of all your electronic or electrical waste equipment by relocating over to the specified collection point for recycling of such hazardous waste Isolated collection and proper recovery of your electronic and electrical waste equipment at the time of disposal will allow us to help conserving natural resources Moreover proper recycling of the electronic and electrical waste equipment will ensure safety of human health and environment For more information about electronic and electrical waste equipment disposal recovery and collection points please contact your local city centre household waste disposal service shop from where you purchased the equipment or m
19. PA or GPRS cmnet uninet APN parameters provided by Local ISP you can set TWO different group of dialup parameters APN Username Password and set one as backup Dialup parameters provided by Local ISP SRO OH EO O BETH or 777 Dialup parameters provided by Local ISP gprs or CDMA 1 Dialup Enable Time Schedule SHARED ISP Network Select Type APN Access Number Username InHand Networks gt imwwinhandnetworks com Connecting Devices Enabling Services Dialup parameters provided by Local ISP gprs or CDMAT Primary Profile Retries After retries and dialup still failed router will try backup dialup parameters if you O always use main have set two IPSec tunnels and one as backup router will also stop the main one and parameters and never use try another more details please see at VPN gt IPSec backup MONITOR TRAFFIC Ignore Traffic When InRouter detected there are business data DTU IPSec receive or transmit InRouter will not send ICMP probe packet When detected without business data InRouter will send ICPM probe packet IGNORE TRAFFIC ICMP Detection Mode No matter whether InRouter have some data receive or transmit DUT IPSec data InRouter always send the ICMP probe packet HANDOVER ONLY InRouter send the ICMP probe Packet when the field change from a base station to other station Dialup Time Sched
20. Port Mapping Enable Proto Source Service Port Internal Address SE Log External Address Optional Tunnel Name OpenVPN Description TCP gt 0 8080 8080 Name Description Default External Address Optional Set the virtual IP or tunnel name which get Tunnel Name OpenVPN in VPN 4 Virtual IP Mapping System Network Services Firewall Qos VPN Tools Status Virtual IP Mapping Virtual IP for Router E gt Source IP Range Enable Virtual IP Real IP Log Description E a Add An internal PC s IP can match to a virtual IP and external network can access to internal PC via this virtual IP address Name Description Default Virtual IP for Router Set Virtual IP for Router Source IP Range Set range of source IP address 5 DMZ All Port Mapping system Network services Firewall Qos VPN Tools Status DMZ Enable DMZ al DMZ Host Source Address Range Optional Example 1 1 1 1 1 1 1 0 24 1 1 1 1 2 2 2 2 InHand Networks gt imwwinhandnetworks com Connecting Devices Enabling Services Mapping all the ports and then external PC can get access to all the ports of internal device behind IR ZOO Attention this function cannot map the admin port of IR700 e g 80 TCP to the device s port Name Description Default Source Address Range Set IP address with restrict IP access 6 MAC IP Bundling System Network Services Firewall Qos VPN Tools Status
21. System Network Services Firewall Qos MAC Address 00 18 05 00 45 C6 Default IP Address 192 168 1 254 Netmask 255 255 255 0 MTU Defaut elo Detection host 0 0 0 0 LAN Mode Auto Negotiation ze 3 Click Apply then you will see Executing Please wait for 8 Seconds Now the IP address of 14700 has been reset and in order to enter the configuration page you need to set your PC in the same subnet as InRouter for example 192 168 1 10 24 then input the updated IP address 192 168 1 254 in your IE Browser InHand Networks imwwinhandnetworks com Status Connecting Devices Enabling Services 2 3 7 Connect InRouter with Internet Follow the configuration steps below to enable 14700 to connect to Internet Click Network gt Dialup enter dialup configuration interface YE 0 inhand InHand Networks syetem Network Services Firewall 5 VPN Tools Dialup Enable Time schedule ALL Schedule Management Shared Connection NAT Network Provider ISP Custom Manage APN uninet Access Number keet H Username gprs TI Password GER Primary Profile Retriez 0 0 always Network Select Type Auto Band a Je Static IP Connection Mode Always Online Fedial Interval 20 Seconds Show Advanced Options Please check the APN Dialup Number Username and Password
22. ame adm Password soosoo Internet Click Login to enter configure interface InHand Networks iwwwinhandnetworks com 4 3 Seconds Stop Connecting Devices Enabling Services Router gt Cellular Router y gt inhand InHand Networks Services Firewall 5 VPN Tools System Status Router IR794 Z30 LP RZ7141005119560 ww inhand com cn 1 3 4 r2101 1 1 6 r1742 2011 03 22 15 37 16 2011 03 22 15 37 17 Sync Time O day 00 01 30 0 13 0 05 0 01 13 35MB 2 756 00KB 20 16 System Network Name Model Serial Number Description Current Version Current Bootloader Version Router Time PC Time Up time CPU Load 1 5 15 mins Memory consumption Total Free 3 1 2 System System settings include the 9 parts Basic Setup Time Serial Port Admin Access System Log Config Management Tools status Update Reboot and Logout 1 Basic Setup system Network Services Firewall Gas Basic Setup Example Default English ze Language Router Mame Hostname Description Parameters Name InHand Networks gt imwwinhandnetworks com Connecting Devices Enabling Services system Network Services Firewall Qos YPN Tools Status Time Router Time 2010 04 12 10 55 23 PC Time 2010 04 12 10 55 22 Timezone Custom Y Custom TZ String CST 8 Auto Update Time NTP Time Serve
23. and for manufactures IP Address Set IP Address in LAN 192 168 2 1 If Changed you need to input the new address for entering the configuration web Set Net Mask of LAN 255 255 255 0 Set MTU length optional between Default and Manual 1500 Set Detection Host Address 0 0 0 0 WOL MAC Address Set the MAC of PC in the LAN of router for Wakeup Blank Over LAN WOL function you should also set Networks gt Dialup and change dialup mode into Trigger by SMS Multi IP Settings Support additional 8 IP addresses at the most 5 Loopback system Network Services Firewall Qos YPN Tools Status Loopback IP Address Netmask 255 0 0 0 i Multi IP Settings IF Address Hetmask Description Oooo O IN InHand Networks imwwinhandnetworks com Connecting Devices Enabling Services Name Description Default IP Address The IP Address for loopback 127 0 0 1 Set Net Mask of loopback host 255 0 0 0 Multi IP Settings Support additional 8 IP addresses at the most IP Address Net mask Set additional IP Net mask of loopback host 6 DMZ Port for IR7x4 only Configure this page after select WAN DMZ LAN mode in Port Mode page System Network Services Firewall Qos YPN Tools Status DMZ Port MAC Address 00 18 05 00 50 50 IP Address Netmask MTU 1500 Multi IP Settings IP Address Netmask Description Descri
24. anufacturer of the equipment Iintand Networks Connecting Devices Enabling Services 1 2 Package Checklist We put each InRouter 700 cellular router in a box with standard accessories Additionally there re optional accessories can be ordered When you receive our package please check carefully and if there re items missing or appearing to be damaged please contact with your InHand Networks sales representative Items in package include Standard Accessories Accessories Description CTN S O Power Adapter 100 265V AC in 12V DC out included in IR7xx Power plug American Standard included in IR7xx Optional Antennas Picture Description UMTS HSDPA WCDMA Cellular UMTS Quad band Antennas included in IR7xxWHO1 GPRS Quad band GSM GPRS Cellular Antennas included in IR7xxGS55 H UMTS Quad band Anti thief antenna Optional for IR7xxWH01 UMTS Quad band Stick antenna Optional for IR7xxWH01 UMTS Quad band Anti thief antenna Optional for IR7xxWH01 InHand Networks 2 www inhandnetworks com Connecting Devices Enabling Services 1 3 Product Features 1 3 1 Interfaces WAN Cellular WAN Band Options HSUPA HSDPA WCDMA 850 900 1900 2 100MHz GSM GPRS EDGE 850 900 1800 1900MHz Ethernet WAN Ethernet 10 100 Mbps RJ45 connector Auto MDI MDIX Magnetic Isolation Protection 1 5 KV built in LAN IR701 791 Number of Ports 1 Ethernet 10 100
25. d because of an overdue charge gt Whether the dialup parameters e g APN dialup number account and password are correctly configured gt Whether the signal is normal gt Whether the power supply voltage is normal 5 Why does upgrading the firmware of my InRouter always fail Please check gt When upgrading locally check if the local PC and InRouter are in the same network segment gt When upgrading remotely please first make sure the InRouter can access Internet 6 After InRouter establishes VPN with the VPN server your PC under InRouter can connect to the server but the center can t connect to your PC under InRouter Please make sure the firewall of your computer 1s disabled 7 After InRouter establishes VPN with the VPN server Your PC can t connect to the server Please make sure Shared Connection on Network gt WAN or Network gt Dialup is enabled in the configuration of InRouter 8 InRouter is powered on but the Power LED is not on gt Check if the protective tube is burn out gt Check the power supply voltage range and if the positive and negative electrodes are correctly connected Networks Connecting Devices Enabling Services 9 InRouter is powered on but the Network LED is not on when connected to PC gt When the PC and InRouter are connected with a network cable please check whether a network crossover cable is used gt Check if the networ
26. ebug DW Force WATT F Enable NAT Traversal NATT select enable Keep alive time interval of NATT set the Keep alive time interval of NATT default is 60 seconds Enable Compression select enable Please change the parameters according to actual situation Click Apply to complete the configuration 1 Select VPN gt IPSec Tunnels to check or modify parameters of IPSec Tunnels system Network Services Firewall Qos VPN Tools Status IPSec Tunnels EE Name Tunnel Description Phase 1 Parameters Phase 2 Parameters Link Detection Parameters Add Show Detail Status InHand Networks 0 ewwwainhandnetworks com Connecting Devices Enabling Services Click Add to add a new IPSec Tunnel ee SerIvicez Firewall Eos VFN Tools Status IPSec Tunnels IPSec_tunnel_ 1 Auto Activated l Main Mode e ESP Tunnel Mode EN Subnet Subnet Le 192 168 2 1 255 255 255 0 0 0 0 0 255 255 255 0 Hand Net G in system Network Edit IP5ec tunnel Show Advanced Options Basic Parameters Tunnel Name Destination Address Startup Modes Restart WAN when failed Negotiation Mode IF5ec Frotocol IPsec Mode Tunnel Type Local Subnet Local Netmask Remote Subnet Remote Netmask Basic Parameters basic parameters of IPSec tunnel Tunnel Name name IPSec tunnel the default is IPSec_tunnel_1 Destination Address set to VPN server IP domain e g the domain provided by GJJ
27. eed to input the old one 123456 Enable allow manage Router by LAN e g HTTP Enable Disable forbid manage Router by LAN Enable allow to manage IR700 by WAN e g HTTP Enable Disable forbid to manage IR700 by WAN e g HTTP Set the range of allowed IP address for WAN Control services server can be set at HTTP HTTPS TELNET SSHD this time for example 192 168 2 1 30 or 192 168 2 1 192 168 2 10 Describe the parameters of management non influence to IR700 Other Parameters Set the Log Timeout configuration web will be disconnected after timeout 500 seconds InHand Networks imwwinhandnetworks com Enable Allowed Access from WAN Optional Description Log Timeout Connecting Devices Enabling Services 5 System Log System Network Services Firewall 5 VPN Tools Status System Log baken Log to Remote System IP Address POrt UDP 192 168 2 23 eu Name Description Default Log to Remote System Enable remote log server IP address Port UDP Set the IP and Port of remote log server Port 514 6 Config Management System Network Services Firewall Qos VPN Tools Status Config Management besen Router Configuration ar Restore default configuration Network Provider ISP es Name Description Router Configuration Import Backup configuration file Restore default configuration Click to reset IR700 to enable RESET you need to reboot IR700 Network Provider
28. em Dialup Modem Type Status Manufacturer Product Signal Level Register Status IMEI ESN Code IMSI Code Network Type PLMN LAC Cell ID This page shows the status of Modem including signal level Network Connections 00 18 05 00 56 10 Static IP 203 86 43 190 255 255 255 0 203 86 43 185 1500 Connected 0 day 17 26 19 Disabled 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 1500 Disconnected 3 Network Connections VAN MAC Address Connection Type IP Address Netmask Gateway DNS MTU Status Connection time Dialup Connection Type IP Address Netmask Gateway DNS MTU Status This page shows the network connections via WAN or LAN InHand Networks B imwwinhandnetworks com Connecting Devices Enabling Services 4 Route Table System Network Services Firewall QoS VPN Tools Status Route Table Destination Netmask Gateray Metric Interface 10 8 0 2 255 255 255 255 0 0 0 0 0 Lon 192 1868 0 295 WEE 200 0 0 0 0 0 0 lanl 192 168 3 0 255 255 255 0 10 8 0 2 0 tun 203 86 43 0 a a By 0 0 0 0 0 wan 10 8 0 0 255 255 255 0 10 8 0 2 0 tun 192 168 9 0 A 0 12 0 W 127 0 0 0 255 0 0 0 0 0 0 0 0 lo default 0 0 0 0 203 86 43 185 0 wan Manual Refresh This page shows the route table of IR700 5 Device List System Network Services Firewall 5 YPN Tools Status Device List lala Interface MAC Address IP Address t Host Lease wan 00 16 46
29. erval 24 hours Trust phone list Y Name Description InHand Networks Connecting Devices Enabling Services Query SMS Interval Trust phone list Default Status System Network Services Firewall QoS VPN Tools DTU Enable DTU Protocol Transparent Protocol UDP Mode Client 4 Frame Interval 100 mseconds 4 Parallel w 15 Seconds 180 Seconds Description Set DTU protocol Please see more in related Quick Guide Optional between TCP UDP UDP Set Frame Interval 100 Set Multi Server Policy Parallel Poll Parallel Set the IP address and Port of server to receive data Default Services Firewall 5 VPN Tools SES show status English Only reboot English Only Block Action Description Accept Accept Apply Cancel Description Serial Buffer Frames Multi Server Policy Min Reconnect Interval Max Reconnect Interval DTU ID Source IP Multi Server Server Address Enable DTU Protocol Protocol Mode Frame Interval Serial Buffer Frames Multi Server Policy DTU ID Multi Server System Network Enable Status Query Reboot SES Access Control Default Policy Phone Humber 15201697807 15201697807 Click to enable SMS control InHand Networks W swwwiinhandnetworks com 6 DTU 7 SMS Connecting Devices Enabling Services Status Query Set Status Query SMS and you can see
30. es FQA 1 InRouter is powered on but can not access Internet through it Please check gt Whether the InRouter is inserted with a SIM card gt Whether the SIM card is enabled with data service whether the service of the SIM card is suspended because of an overdue charge gt Whether the dialup parameters e g APN dialup number account and password are correctly configured gt Whether the IP Address of your computer is the same subnet with InRouter and the gateway address is InRouter LAN address 2 InRouter is powered on have a ping to detect InRouter from your PC and find packet loss Please check if the network crossover cable is in good condition 3 Forget the setting after revising IP address and can t configure InRouter Method 1 connect InRouter with serial cable configure it through console port Method 2 within 5 seconds after InRouter is powered on press and hold the Restore button until the ERROR LED flashes then release the button and the ERROR LED should goes off press and hold the button again until the ERROR LED blinks 6 times the InRouter is now restored to factory default settings You may configure it now 4 After InRouter is powered on it frequently auto restarts Why does this happen Please check gt Whether the module works normally gt Whether the InRouter is inserted with a SIM card gt Whether the SIM card is enabled with data service whether the service of the SIM card is suspende
31. et the DHCP Server s address always you need Blank ensure DHCP server is in the same LAN or VPN subnet as IR700 s LAN Source IP The interface IR700 will forward the DHCP Blank acknowledge packages always set the LAN IP of IR700 4 VRRP System Network Services Firewall Qos VPN Tools status VRRP Enable ul Group ID 1 Priority Advertisement Interval Seconds Virtual IP Name Description Default Group ID Select group id of routers range 1 255 InHand Networks gt imwwinhandnetworks com Connecting Devices Enabling Services Status Default 5 Device Manager system Network Services Firewall Qos VPN Tools Device Manager Mode Vendor Device ID server Port Login Retries Status Default Heartbeat Interval 120 Seconds Packet Receiving Timeout 30 Seconds Packet Transmit Retries 3 Query SMS Interval 24 hours Trust phone list Name Description Mode Disabled Only SMS SMS IP system Network Services Firewall Qos VPN Tools Device Manager Mode 24 Dous Query SMS Interval Trust phone list Name Description Query SMS Interval Set how long to check SMS status Default 9000 Trust Phone List Add trust Cell Phone List System Network Services Firewall Qos VPN Tools Device Manager Mode Vendor Device ID Server Port Login Retries Heartbeat Interval 120 seconds Packet Receiving Timeout 30 seconds Packet Transmit Retries 3 Query SMS Int
32. et via Router MAC Address Set MAC Address MTU Set Max Transmission Unit optional between default and manual ADSL Dialup PPPoE Settings Connection Mode Set connection mode Connect on Demand Always Online Manual Advanced Options 30 3 3 Status ICMP Detection Max Reties Set ICMP Detection Max Reties 3 Link Backup for IR7x4 only System Network Services Firewall 5 VPN Tools Link Backup Enable Main Link WAN ICMP Detection Server AAA ICMP Detection Interval 10 Seconds ICMP Detection Timeout 3 Seconds ICMP Detection Max Retries El Backup Link WAN wi Apply Cancel Link Backup to realize link backup between Cellular WAN and Ethernet WAN when one fails IR700 will try the other Default Description ICMP Detection Timeout Timeout for each ICMP package 3 seconds ICMP Detection Max Retries After the retries 11 no ICMP succeed dialup will try the backup link InHand Networks Connecting Devices Enabling Services 4 LAN LAN PE MAC Address 00 19 05 00 56 10 Default IP Address 192 168 2 1 Netmask 255 255 255 0 NTU Default ei 1500 Detection host 0 0 0 0 WOL MAC Address EE EE EE EE 4F 25 Device List Multi 1P Settings IF Address Metmazk Description Add Apply Cancel Notice please DO NOT set LAN address as 192 168 3 x an IP for DMZ port Name Description Default MAC Address The MAC address in LAN 00 10 A1 86 95 02 Provided by InH
33. ing to main difference including cellular network VPN support and interface for device Ethernet CA X 509 base64 Serial LAN Cellular WAN WAN poms GSM GPRS IR701GS55 RS232 485 1 RJ45 850 900 1800 1900 MHz GSM GPRS IR791GS55 RS232 485 1 RJ45 850 900 1800 1900 MHz SS HSUPA HSDPA WCDMA 850 900 1900 2 100MHz IR701WHO1 RS232 485 1 RJ45 GSM GPRS EDGE 850 900 1800 1900MHz HSUPA HSDPA WCDMA 850 900 1900 2100MHz IR791WHO1 RS232 485 1 RJ45 IPSec PPTP L2TP GRE SSL GSM GPRS EDGE 850 900 1800 1900MHz WCDMA HSUPA ADSL DHCP IR704WHO1 RS232 485 4 5 850 900 1900 2 100MHz PPPoE Static IP WCDMA HSUPA ADSL DHCP IR794WHO1 RS232 485 4 5 IPSec PPTP L2TP GRE SSL 850 900 1900 2100MHz PPPoE Static IP IR701UE RS232 485 1 RJ45 USB Modem IR791UE RS232 485 1 RJ45 USB Modem ADSL DHCP IR704UE RS232 485 4 5 USB Modem N A PPPoE Static IP ADSL DHCP IR794UE RS232 485 4 5 USB Modem IPSec PPTP L2TP GRE SSL PPPoE Static IP InHand Networks Connecting Devices Enabling Services II Quick Installation Guide Typical Application Panel Layout e Quick Connect to Internet e Quick IPSec VPN Configuration e Reset to Factory Defaults InHand Networks imwwinhandnetworks com e Connecting Devices Enabling Services 2 1 Typical Application HSUPA WCDMA GPRS Device Database System of SCADA Internet Access Y Ki ISP Station Cisco Juniper Zen RS232 4
34. ion Interval ICMP Detection Timeout IC MP Detection Max Retries Save Cancel N I Description Show Advanced Options Disable Auto Activate Trigged by Data Passive Manually Activated Enable Tunnel Name Destination Address Startup Mode Negotiation Mode Optional Main Mode or Main Mode Aggressive Mode IPSec Mode Optional ESP or AH Enable Advanced options IPSec Mode Optional Tunnel Mode or Transport Mode Tunnel Mode Enable Advanced options Tunnel Type Optional Subnet Subnet Mode Host Host Host Subnet Subnet Host Subnet Subnet Local Subnet Local Subnet Net Mask Set IPSec Local Protected Subnet Net Mask 255 255 255 0 Set IPSec Remote Protected Subnet Blank Remote Subnet Address Remote Subnet Net Mask Set IPSec Remote Protected Subnet Net Mask 255 255 255 0 Remote ID Type Optional FQDN IP Address USERFQDN or IP Address Remote ID Only for FQDN and USERFQDN Set the ID according to ID type Optional Shared Key or Certificate Shared Key Authentication Type InHand Networks Connecting Devices Enabling Services Blank Type Key While choosing Shared Key Authentication Set IPSec VPN Negotiation Key IPSec Lifetime 3600sec Perfect Forward Secrecy PFS Disable Enable Advanced options Link Detection Parameters Enable Advanced options 3 GRE Tunnels System Network Services Firewall Qos VPN Tools Status GRE Tunnels aen Enable Name _LocalvirtualIP Peer Address Remote v
35. irtual IP Remote Subnet Remote Netmask Key NAT ege Description tun0 0 0 0 0 0 0 0 0 255 255 255 0 Enable Dynamic GRE Port UDP Max Idle Time 0 0 disable GRE Tunnels Beyond this time no flows tunnel are disconnected Max Idle Time InHand Networks Connecting Devices Enabling Services L2TP Clients L2TP_TUNNEL_1 7 12tpserver Auto Activated vj CHAP ze 255 255 255 0 60 Seconds Description Default Edit L2TP Tunnel Enable Tunnel name L2TP Server Username Password L2TP Server Name Startup Modes Authencation Type Enable Challenge Secrets Challenge Secrets Local IP Address Remote IP Address Remote Subnet Remote Netmask Link Detection Interval Max Retries for Link Detection Enable NAT MTU MRU Enable Debug Expert Options Expert Only Name 4 L2TP Clients Startup Modes Set Startup Modes Auto Activated Auto Activated Trigged by Data Manually Activated Max Retries for Link Detection Set Max Retries for Link Detection Enable NAT Click Enable NAT Disable TU Enable Debug Mode Click Enable Debug Mode InHand Networks D ewwwainhandnetworks com Connecting Devices Enabling Services PPTP Clients Default Click Enable Enable PPTP_TUNNEL_1 L Auto Activated Auto v 255 255 255 0 160 Seconds Bo O O 5 1500
36. is gjj ovdp 3322 org Startup Modes select Auto Activated Negotiation Mode optional between Main Mode and Aggressive Mode Generally select Main Mode IPSec Protocols optional among ESP AH Generally select ESP IPSec Mode optional between Tunnel Mode and Transport Mode Generally select Tunnel Mode Tunnel Type optional among Host Host Host Subnet Subnet Host and Subnet Subnet Local Subnet IPSec local subnet protected E g 172 16 16 0 Local Net Mask IPSec local Net Mask protected E g 255 255 255 252 Remote Subnet IPSec remote subnet protected E g 172 16 0 0 Remote Net Mask IPSec remote Net Mask protected E g 255 240 0 0 Phase 1 Parameters configuration parameters during Phase 1 of IPSec negotiation IKE Policy optional between 3DES MD5 96 and AES MD5 96 suggest selecting 3DES MD5 96 IKE Lifetime the default 18 86400 seconds Local ID Type optional among FODN USERFQDN IP address suggest selecting IP address Remote ID Type optional among FODN USERFQDN IP address suggest selecting IP address Authentication Type optional between Shared Key and Certificate generally choose Shared Key Key set IPSec VPN negotiating key Phase 2 Parameters configuration parameters during Phase 2 of IPSec negotiation IPSec Policy optional between 3DES MD5 96 and AES MD5 96 suggest selecting 3DES MD5 96 IPSec Lifetime the default 1s 3600 seconds Perfect Forward Encryption Optional among None GROUP1 GROUP2 a
37. k cable is in good condition gt Please set the network card of the PC to 10 100M and full duplex 10 InRouter is powered on when connected with PC the Network LED is normal but can t have a ping detection to the InRouter gt Check if the IP Address of the PC and InRouter are in the same subnet and the gateway address is InRouter LAN address 11 InRouter is powered on but can t configure through the web interface gt Whether the IP Address of your computer is the same subnet with InRouter and the gateway address is InRouter LAN address gt Check the firewall settings of the PC used to configure InRouter whether this function is shielded by the firewall 12 The InRouter dialup always fails I can t find out why Please restore InRouter to factory default settings and configure the parameters again 13 How to restore InRouter to factory default settings 14700 routers 1 Press and hold the Restore button power on InRouter 2 Release the button until after the STATUS LED flashes and the ERROR LED 1s on 3 After the button is released the ERROR LED will go off within 30s press and hold the Restore button again until the ERROR LED flashes 4 Release the button the system is now successfully restored to factory default settings InHand Networks Connecting Devices Enabling Services Support In case you have problems with the installation and use please address them to us by e mail sup
38. n Status General Support Connection Status Connected Duration 00 18 12 Speed 1 0 Gbps Activity Received 107 297 3 Click Properties enter Local Area Connection Properties screen Local Area Connection Properties General Advanced Connect using VMware Accelerated AMD PCNet Ad This connection uses the following items Client for Microsoft Networks a File and Printer Sharing for Microsoft Networks El 005 Packet Scheduler Internet Protocol TCP IP Transmission Control Protocol Internet Protocol The default wide area network protocol that provides communication across diverse interconnected networks Description C Show icon in notification area when connected Notify me when this connection has limited or no connectivity Choose Internet Protocol TCP IP click properties button ensure your PC can obtain IP and DNS address automatically Or you can set your PC in the subnet 192 168 2 0 24 for example set IP 192 168 2 10 Net Mask 255 255 255 0 Default Gateway 192 168 2 1 InHand Networks D Sewwwinhandnetworks com Connecting Devices Enabling Services Internet Protocol TCP IP Properties General Alternate Configuration You can get IP settings assigned automatically if your network supports this capability Otherwise you need to ask your network adminis
39. nd GROUPS This parameter should match with the server generally select None Click Save to finish adding IPSec Tunnel nHand Networks Connecting Devices Enabling Services system Network services Firewall Qos VPN Tools Status IPSec Tunnels EN Name Tunnel Description Phase 1 Parameters Phase 2 Parameters cai CH a Authentication Type Ge Enable DPD Interval 192 168 2 1 255 255 255 0 router 0 0 0 0 0 0 0 0 255 255 255 0 modp1024 EE EIERE IPSec_tunnel_1 SE Lifetime 180Seconds ESP Tunnel Mode Main Mode Auto Activated Lifetime 3600Seconds Disabled ICMP 86400Seconds Detection Disabled Perfect Forward Serecy PFS Add Show Detail Status You can click Show Detail Status to observe the specific connection details or click Add to add a new tunnel Now you have successfully built a high security IPSec tunnel Here s an example We set an IPSec Tunnel from subnet 192 168 220 0 24 to subnet 192 168 123 0 24 when it succeeds the screen will show IPSec Tunnels Name Tanl hirisi Phase 1 Phase 2 Link Detection 7 Faramtters Parameters Parameters cation 18 168 220 0 255 255 255 O reuter ll 150 184 123 0255 255 265 D Type Shared Key Enable DFD ESP Tunnel Wadi Aggrattivs Bode Auto Activated Policy dead Interval za 500 STWIE OUICK D eent QIZ IPsec SA extablizhed EVENT_ZZA_REFLACE in 2 9 5 neveri 4 Feier 38 5 505 e Was E econ IPSec tunnel 1 IPSEC r
40. ng Devices Enabling Services 2 3 Quick Connection to Internet 2 3 1 Insert SIM Card USB Modem For the external USB modem type insert the USB card into the USB port 2 3 2 Antenna Installation After install the IR700 connect the interface of enhanced antenna to the interface of skin antenna and screw closely Put the amplifier of enhanced antenna to where it can receive the good signal Attention Position and angle of the antenna may influence the quality of signal 2 3 3 Power Supply Link the power supply in the product package with InRouter watch where the InRouter Power LED on the panel is light up If not please connect with InHand for technical supports You can configure IR700 after the Power LED lights up 2 3 4 Connect Link IR700 with PC 1 Using the cable to link 14700 with PC 2 After connected you can see one LED of RJ45 Interface turns green and the other flashes InHand Networks BP wwwinhandnetworks com Connecting Devices Enabling Services 2 3 5 Build Connection between InRouter and your PC IR700 Router can auto distribute IP address for PC Please set the PC to automatically obtain IP address via DHCP Based on the Windows Operation System 1 Open Control Panel double click Network Connections icon and enter Network Connections Screen 2 Double click Local Area Connection enter Local Area Connection Status screen Local Area Connectio
41. nk which means reset to factory defaults succeed Power Status Warn Error RESET Factory default settings IP 192 168 2 1 Net Mask 255 255 255 0 Serial parameter 19200 8 N 1 2 5 2 Web Approach 1 Login the web interface of IR700 select System gt Config Management Basic Setup Time Serial Port Admin Access System L 6 z R Router Configuration E T Management SE 7 Ecce Upgrade Reboot Restore default configuration Logout 2 Click Restore default configuration to Reset IR700 InHand Networks gt imwwinhandnetworks com Connecting Devices Enabling Services HI Advanced Configuration Configuration on Web InHand Networks imwwinhandnetworks com Connecting Devices Enabling Services 3 1 Configuration on Web InRouter must be correctly configured before use This Chapter will show you how to configure InRouter via Web interfaece 3 1 1 Preparation Firstly connect your devices to IR700 with a cable or a HUB switch then set the IP of PC and IR700 in the same subnet for example Set PC IP to 192 168 2 50 net mask 255 255 255 0 gateway default IP of IR700 192 168 2 1 Network Connections 5 Back E D Search Folders D Q oO GE Address Network Connections eal gt Ez Local Area Connection Properties HE Internet Protocol TCP IP Properties 3 General Advanced General Connect using You can get IP set
42. ools status Ee Link Detection Parameters IPSec Tunnels Phase 1Parameters Phase 2 Parameters IPSec Tunnels Click to enable NATT Enable NAT Transversal NATT Keep alive time interval of NATT Enable Compression Enable Debug Force NATT 2 IPSec Tunnels system Network Services Firewall Name Tunnel Description Add Show Detail Status Click Add and enter the configuration web Edit IPSec tunnel Show Advanced Options Basic Parameters Tunnel Name Pec tunnel 1 Destination Address 0 0 0 startup Modes Auto Activated Restart WAN when failed Mam Mode i Ki D ESP gt Tunnel Mode Ki subnet Subnet e 32 160 2 1 59 255 255 0 RIE El ho Gu in Gu CH InHand Networks gt imwwinhandnetworks com Negotiation Mode IPSec Protocol IPSec Mode Tunnel Type Local Subnet Local Netmask Remote subnet Remote Metmask Connecting Devices Enabling Services SDES MD5 DH2 e 6400 seconds IP Address Y IP Address Y shared Key e 3055 05 56 he 600 Seconds None e seconds 0 disable DU Seconds DAL seconds seconds a Phase 1 Parameters IKE Policy IKE Lifetime Local ID Type Remote ID Type Authentication Type Key Phase 2 Parameters IPSec Policy IPSec Lifetime Perfect Forward Serecy PFS Link Detection Parameters DPD Time Interval DPD Timeout ICMP Detection Server ICMP Detection Local IP ICMP Detect
43. out 300 Seconds Renegotiate Interval 86400 Seconds Enable NAT O Enable LZO Encryption Algorithms MTU Max Fragment Size Ir Debug Level Warn v Expert Options Expert Only Name Description OPEN VPN Server OPEN VPN Server s IP or DNS Authencation Type 1 None for host to host connection not available when 700 as server 2 Pre shared Key for host to host connection not available when 700 as server 3 User Password For multi users to access CA needed Client root CA ca crt Server root CA ca crt public key pub crt private key pri key 4 X 509 Cert multi client CA mode for multi users to access InHand Networks imwwinhandnetworks com Connecting Devices Enabling Services CA needed Client root CA ca crt public key pub crt private key pri key Server root CA ca crt public key pub crt private key pri key 5 X 509 Cert CA mode for host to host tunnel CA needed Client root CA ca crt public key pub crt private key pri key Server root CA ca crt public key pub crt private key pri key 6 User X 509 mode username password CA certificate CA needed Client root CA ca crt public key pub crt private key pri key Server root CA ca crt public key pub crt private key pri key Set shared key or TLS AUTH static password 7 Open VPN Advanced This configuration page is only used for the Open VPN Server Open PH Advanced
44. oute owner 15 42508 idle importcadain initiati Li fetisa KI Timeout azp 153741150 410407810 5 1 40 von OP te Leit 5 L A0 Sq cnda 1 1 ref rethiss 294801751 Enable Perfect SoG erc onge Disabled ieur 500 STATE D zent ADS ISAKMP SA established EVERS CA EEFLACE in 650 nemeni Forvard TSARMP 1314243603 iaag 1 19415 ont O adie Semper ls srs lee Zerecy FE Lroap Prlection 1 Add Show Detail Status And the PC in IPSec client subnet can get access to the server sg subnet Open command in your PC then ping a PC in the server s subnet CosDocuments and Settings Jdason Hu gt ping 192 168 123 258 Pinging 192 168 123 258 with 32 bytes of data Reply from 192 168 123 258 bytes 32 time 428ms TTL 63 Reply from 192 168 123 256 bytes 32 time 395ms TITL 63 Reply from 192 168 123 256 bytes 32 time 397ms TTL 63 Reply from 192 168 123 258 bytes 32 time 393ms TTL 63 2 5 Reset to Factory Defaults 2 5 1 Hardware Approach Legend oun op 2 Blink 4 1 Press and hold RESET button while turning on IR700 Power Status Warn Error RESET 2 When you see ERROR LED turns on about 10 seconds after power on release the RESET button InHand Networks Connecting Devices Enabling Services Power Status Warn Error RESET 0 3 After a few seconds the ERROR LED then turns off now press RESET button again 4 Then you will see ERROR and STATUS LED bli
45. port inhandnetworks com Copyright 2011 InHand Networks All rights reserved Tel 86 10 64391099 8011 Fax 86 10 64399872 Address Wangyjing Science Park Road Lizezhonger Chaoyang District Beijing P R C 100102 Website http www inhandnetworks com Email info inhandnetworks com Subject to alterations without notice InHand Networks
46. ption Default MAC Address Set MAC address of DMZ port Provided by Manufacture InHand MTU Optional between Default amp Manual Multi IP Settings 8 additional IP address at the most Set additional IP address for DMZ port Description of additional IP address 7 Port Mode for IR7x4 only system Network services Firewall Qos VPN Tools Status Port Mode Port Mode WAN DMZ LAN ze WAN DMZ LAN Notice please DO NOT set WAN IP LAN IP DMZ IP the same it will disable your link to internet Descriptions Default LAN four LAN ports WAN DMZ LAN WAN LAN 3 LAN ports and 1 WAN port WAN DMZ LAN 1 WAN port 1 DMZ port and 2 LAN ports InHand Networks Connecting Devices Enabling Services 8 Port Mirror for IR7x4 only syetem Network Services Firewall Hoi YPN Tools Status Port Mirror Enable Destination Port Priel MMi Fort 1 None Fort E None Port 3 Fort 4 None ls This function is used for Engineer capture packages of different ports of IR700 Destination Port the port to which you wand to send the copied packages Here we set Port 3 as example after you set Port 1 as destination port and Port 3 Both you can link your PC to Port 1 and get the packages sent and received by Port 3 9 DNS System Network GEES ES Firewall OS Tools otatus DNS Primary DNS 0 0 0 0 secondary ONS 0 0 0 0 Name Description Default 10 DDNS Dynamic DNS system Network services Fi
47. rewall Qos Tools Status DDNS Dynamic DNS gt Dialup Current Address Service Type Disabled K Name Description Default Current Address Show the current IP address Service Type Select DDNS Provider Disabled InHand Networks gt imwwinhandnetworks com Connecting Devices Enabling Services System Network Services Firewall 5 VPN Tools Status DDRS Dynamic DHS gt WAN Last Update Last Response Current Address 10 5 1 40 Service Type DynDNS Dynamic E URL http fwww dyndns com Username test Password et O nx Backup MX O Force Update O Apply Cancel Name Description Default system Network services Firewall Qos Tools Status Static Route Destination Netmask Gateway Interface Description 0 0 0 0 255 255 2550 SS Add Name Description Default 11 Static Route Set subnet Mask of destination 255 255 255 0 InHand Networks D iwwiinhandnetworks com Connecting Devices Enabling Services 3 1 4 Service Service settings include DHCP Service DNS Forwarding VRRP and other related parameters 1 DHCP Service System Network Services Firewall QoS VPN Tools Status DHCP Service Enable DHCP IP Pool Starting Address 10 5 1 90 IP Pool Ending Address 10 5 1 254 Lease 60 Minutes DNS Edit Windows Name Server WINS 0 Static DHCP MAC Address IP Address Host 4 00 00 00 00 00 00 10 5 1 90 Name Descrip
48. rs 114 60 61 1 pool ntp org Name Description Default T 1970 1 1 80000 PC Time Display PC time or the time of device linked with router 2 Time Custom TZ string Set the string of time zone of Router CST 8 Auto Update Time Time Update Interval Disabled NTP Time Servers after enable the Setting for NTP Time server Three at the most pool ntp org Auto Update Time System Network Services Firewall Qos YPN Tools Status Serial Port pa Baudrate 19200 vw Data Bits Parity Stop Bit 1v Hardware Flow Control Software Flow Control Description Default Baud Rate Serial baud rate 19200 Parity Set parity bit of serial data Stop Bit Set stop bit of serial data Hardware Flow Control Enable Hardware Flow Control 3 Serial Port Software Flow Control Enable Software Flow Control InHand Networks gt wwwinhandnetworks com Connecting Devices Enabling Services 4 Admin Access Admin Access Description LJ Remote Allowed addresses from WAN access Optional Local Username Old Password New Password Confirm New Password Management Enable Service Type Service Port aCCess E SC LU HTTP HTTPS m TELNET lt GH m Console K Non privileged users Password Username Pd Add Description Default Username Password Username for configuration web login adm Username Old Password To change the password you n
49. sfy various EMC verifications which ensure stability and reliability under harsh industrial conditions The InRouter 700 can be placed on a desktop or DIN mounted InRouter 700 series products support VPN IPSec PPTP L2TP GRE SSL VPN which create high security links between remote equipment and customer s center In Addition InRouter 700 series products support the Device Manager remote device manage platform which realizes remote operation including remote control remote monitor parameters configure firmware upgrade log alarm management information statistics display batch configuration update and etc InHand Networks gt www inhandnetworks com Connecting Devices Enabling Services Important Safety Information This product is not intended for use in the following circumstances e Area s where radio transmission equipment such as cell phone are not permitted e Hospitals health care facilities and area s where cell phones are restricted by law 6 Gas stations fuel storage and places where chemical are stored 6 Chemical plants or places with potential explosion hazard e Any metal surface that may weaken the radio signal level RF safety distance e For GPRS router the compliance boundary distance is r 0 26m for GSM 900MHz and r 0 13m for DCS 1800 MHz e For HSUPA router the compliance boundary distance is r 0 26m for GSM 900MHz and 6 r 0 13m for DCS 1800 MHz r 0 094 for WCDMA 900MHz r 0 063 for WCDMA 2100
50. ss Set WAN port IP 192 168 1 29 Set WAN por Net Mask 2552552550 InHand Networks Connecting Devices Enabling Services Gateway Set WAN Gateway 192 168 1 1 MTU Set Max Transmission Unit optional between default and manual 1500 Multi IP Settings can set 8 additional IP address at the most IP address Set the additional IP address of LAN WAN Dynamic Address DHCP WAN Type Dynamic Address DHCP SHARED MAC aen MTU Name Description Default SHARED Enabled the local device linked with Router can get access to Enable internet Disable the local device can t get access to internet via Router SET WAN Type ADSL Dialup PPPoE SHARED MAC Address 00 18 05 00 51 44 get ADSL Dialup PPPoE Settings Password Static IP IP Address Peer Address 0 0 0 0 Connection Mode Always Online Show Advanced Options Service Name TX Queue Length Enable IP head compression Use Peer DNS Link Detection Interval 55 Seconds Link Detection Max Retries Debug O Expert Options ICMP Detection Server ICMP Detection Interval 30 seconds ICMP Detection Timeout 3 seconds ICMP Detection Max Retries Apply Cancel Description Default InHand Networks gt imwwinhandnetworks com Connecting Devices Enabling Services 1500 Enabled the local device linked with Router can get access to internet Disable the local device can t get access to intern
51. ta timed out timed out timed out timed out Ping statistics for 192 168 2 1 Packets Sent 4 Received Lost 4 188 E C Documents and Settings inhand gt The connection is not built you need to check step by step starting from Section 2 3 4 Connecting Devices Enabling Services 2 3 6 Start to configure your InRouter 700 Optional After you have finished the former steps you can configure the Router 1 Open IE browser input the default IP address of the Router http 192 168 2 1 you can see the login page as below Router Login Username Password 1 Input username default adm and the password default 123456 then click login to enter the operation screen 2 Change the IP configuration Attention After updating the configuration please click apply to activate your configuration If you want to set your own IP of InRouter 700 please follow the instructions below system Network Services Firewall QoS VPN Tools Status System Status Name Router Model IR711VZ30 Serial Number RZ7110911116349 Description www inhand com cn Current Version 1 3 0 11729 test Current Bootloader Version 116072 Router Time 2010 04 06 16 47 16 PC Time 2010 04 06 16 47 59 Up time 0 day 00 03 10 CPU Load 1 15 15 mins 0 01 0 00 0 00 Memory consumption TotalFree 13 35 3 860 00KB 28 24 Click Network gt LAN change the IP address to 192 168 1 254
52. tings assigned automatically if your network supports this capability Otherwise you need to ask your network administrator for ES VMware Accelerated AMD PCNet Ad the appropriate IP settings This connection uses the following items Obtain an IP address automatically E Client for Microsoft Networks Use the following IP address El File and Printer Sharing for Microsoft Networks IP address 192 169 2 50 2 005 Packet Scheduler 5 2F Internet Protocol TCP IP Subnet mask 255 255 255 0 Default gateway 192 168 2 1 Description Obtain DNS server address automatically Transmission Control Protocol Internet Protocol The default Use the following DNS server addresses wide area network protocol that provides communication across diverse interconnected networks Preferred DNS server 202 106 0 2q ane a Alternate DNS server C Show icon in notification area when connected Notify me when this connection has limited or no connectivity Local Area Connection Open IE browser input the IP address of 14700 http 192 168 2 1 default IP of IR700 Then you ll see the Login Window pop up you need to login as Administrator Input the username and password default adm 123456 3 Router gt Login Microsoft Internet Explorer Fie Edt View Favorites Tools Heb Q EI e x a Le Seach Sie Favorites 3 3 Address 48 http 192 168 2 1 Router Login Usern
53. tion Default Enable DHCP Click to enable DHCP IP Pool Starting Address Set the starting IP address of DHCP pool 192 168 2 2 IP Pool Ending Address Set the ending IP address of DHCP pool 192 168 2 100 Lease Set the valid time lease of IP address 60 minutes obtained by DHCP Windows Name Server Set WINS Blank WINS Static DHCP can set 20 designated IP address at the most MAC Address Set the MAC address of a designated IP Blank address 2 DNS Relay System Network Services Firewall QoS VPN Tools Status DNS Relay a Enable DNS Relay Static IP address lt gt Domain Name Pairing IP Address Host Description t I Name Description Default Enable DNS Relay Click to enable DNS Relay Disabled Designate IP address lt gt DNS couples 20 at the most IP Address Set IP address lt gt DNS couples Host Set the name of IP address lt gt DNS couples Description Describe IP address lt gt DNS couples InHand Networks gt imwwinhandnetworks com Connecting Devices Enabling Services 3 DHCP Relay gt 5 f InHand Networks System Network Services Firewall QoS VPN Tools Status DHCP Relay Enable DHCP Server 10 52 1 28 Source IP 192 168 2 1 This function can realize DHCP relay and send relay packages to LAN interface of router Name Description Default Enable DHCP Relay Click to enable DHCP Relay Enable after enable DHCP DHCP Server S
54. trator for the appropriate IP settings Obtain an IP address automatically Use the following IP address Obtain DNS server address automatically Use the following DNS server addresses Advanced Click OK InRouter will allocate an IP address 192 168 2 X and a gateway 192 168 2 1 the default address of IR700 After configure TCP IP protocols you can use ping command to check whether the link between PC and Router is built correctly Below 1s an example to execute Ping command under Windows XP Microsoft Windows AF Version 5 1 266B 6062 Copyright 1985 2881 Microsoft Corp G 5 Documents and Settings sinhand gt ping 192 168 2 1 Pinging 192 168 2 1 with 32 bytes of data Reply from 192 168 2 1 bytes 32 time ims TTL 128 Reply from 192 168 2 1 bytes 32 time 1lms TTL 128 Reply from 192 168 2 1 bytes 32 time ims TTL 128 Reply from 192 168 2 1 bhytes 32 timetims TTL 128 Ping statistics for 192 168 2 1 Packets Sent 4 Received 4 Lost A Bx Approximate round trip times in milli seconds Mininum Ams Maximum ims Average C Documents and Settings inhand ping 1972 168 2 1 Ping 192 168 2 1 If the screen shows Then the PC and InRouter are correctly connected Else if it shows Microsoft Windows AP Version 5 1 2688 LC Copyright 1985 2661 Microsoft Corp Co Documents and Settings inhand gt ping 1972 168 2 1 Pinging 192 168 2 1 with 32 bytes of da
55. tworks com Status Default Connecting Devices Enabling Services Tools Services Firewall QoS VPN Traceroute 0000000 i 3 Seconds Ee Description Network 2 Trace Route System Host Maximum Hops Timeout Protocol Expert Options Name Max Hops Time Out Protocol Expert Options VER Tools Status Link Speed Test QoS Network Services Firewall Browse download 3 Link Speed Test System Test link speed via unload or download 3 1 9 Status Status contains System Modem Network Connections Route Table Device List and Log Tools Status Services Firewall QoS VPN System Router IRT94VZ30 RZ7941005119560 ww inhand com cn 1 3 0 11773 10 2010 06 19 13 00 32 2010 06 19 13 00 48 0 day 17 21 52 0 00 0 00 0 00 13 35MB 1 120 00KB 8 19 1 System Status System Network Name Model Serial Number Description Current Version Current Bootloader Version Router Time PC Time Up time CPU Load 1 5 15 mins Memory consumption Total Free This page shows the status of system including Name Model Type Current Version and etc InHand Networks gt imwwinhandnetworks com Connecting Devices Enabling Services Status Tools Modem VPN Services Firewall Qos MC2716 modem is ready ZTE MC2716 wil 25 asu 63 dBm registered 0x8092E148 460036101203339 Auto Network 2 Modem Status Syst
56. ule Management system Network services Firewall Qos VPN Tools status Dialup Schedule Management Name Sunday Monday Tuesday Wednesday Thursday Friday Saturday Time Range 1 Time Range 2 Time Range 3 Description schedule_1 O O 9 00 12 00 14 00 18 00 0 00 0 00 Add Name Description Default sie RECH 9 6 E 000 InHand Networks Connecting Devices Enabling Services A SE nt Thursday Friday Saturday Time Range 1 Time Range 2 Time Range 3 Description 2 WAN for IR7x4 only System Network Services Firewall ROS Tools status WAN Type Disabled static IP Dynamic Address DHCP ADSL Dialup PPPoE Disabled This page is to set the type of WAN port Description Default Static IP Disabled Dynamic Address DHCP ADSL Dialup PPPoE Disabled Attention There can only be one WAN type at one time enabling one type WAN will disabled another WAN Static IP WAN Type Static IP G SHARED IP Address Netmask Gateway MTU Multi IP Settings IP Address Netmask Description IS Add Notice please DO NOT set WAN address as 192 168 3 x an IP for DMZ port Description Default Name r E U SHARED Enabled the local device linked with Router can get access to Enable internet Disable the local device can t get access to internet via Router MAC Address Set MAC Address d IP Addre

Download Pdf Manuals

image

Related Search

Related Contents

Circulaire DGT no 20 du 13 novembre 2008  Manuel d`utilisation  IDEAL Security SKDXSS Installation Guide  Troubleshooting Guide  

Copyright © All rights reserved.
Failed to retrieve file