efive 100 Installation Guide

Similar documents
efive 25 Installation Guide

Using your PC to access a remote M90 via GSM

VENTILATION. Short catalogue VENTILATION COMMON FEATURES.

Component identification

Accessories - cable tie bases

Vision OPLC. Technical Specifications. V T34 Technical Specifications

PanelView 800. Allen-Bradley Component Level Human Machine Interface Solutions

When any of the following symbols appear, read the associated information carefully. Symbol Meaning Description

SNAP PAC Redundancy Option Kit

UTM Content Security Gigabit Gateway CS-950

UniStream HMI Panel. CPU-for-Panel

Smart Portal SP5000SERIES

FiberINTER. FiberINTERF. FiberINTERFACES.

Vision OPLC V TR20/V350-J-TR20

CARLO GAVAZZI. Automation Components. The quick-fit energy metering solutions

Citrix CloudBridge CB User Manual

IO-DI8-RO8, IO-DI8-RO8-L I/O Expansion Modules 8 Inputs, 8 Outputs

Quick Installation Guide

EX-RC1 Remote I/O Adapter

Screen 2.4" 3.5" Color Touch 4.3" Color Touch. RS232/485 Yes Yes Yes Yes Yes* USB device, mini-b Com Ports, separate order, user-installed

Industrial 24-Port 10/100/1000Mbps Managed Gigabit. Switch (-40~75 degrees C) with 4 Shared SFP Ports IGSW-24040T. Quick Installation Guide

100% electricity. Power factor correction components

Application. Contents of Package. Inspect the CyberSwitch upon receipt. The package should contain the following items:

D-Link (Europe) Ltd. 4 th Floor Merit House Edgware Road London HA7 1DP U.K. Tel: Fax:

UniStream CPU-for-Panel

Failure to comply with appropriate safety guidelines can cause severe injury or property damage.

EasyConnect PROFIBUS-Connector, 90

LIMANDA Handheld Enclosures Product Drawings Last Updated 6/5/2008

V E5B Snap-in I/O Module

V E62B Snap-in I/O Module

ZyWALL 70. Internet Security Appliance. Quick Start Guide Version 3.62 December 2003

Industrial Ethernet from Hirschmann. WELCOME TO ATEX ZONE 1: SIMPLY A GOOD CONNECTION

Vision OPLC. General Description. Standard Kit Contents. Installation Guide Vision120. This guide provides basic information for Unitronics Vision120.

16/24/48-Port 10/100/1000T + 2/4-Port 100/1000X SFP Managed Switch GS T2S/GS T2S/GS T4S. Quick Installation Guide

24-Port 100/1000X SFP + 4-Port 10G SFP+ Managed. Metro Ethernet Switch MGSW-28240F. Quick Installation Guide

Unitronics Devices and RS485 Table Of Contents

16/24-Port 10/100/1000T 802.3at PoE + 2-Port 100/1000X SFP Managed Switch GS P2S GS P2S. Quick Installation Guide

L2+ Managed Gigabit Switch WGSW series

You and your devices, together everywhere

IO-DI16, IO-DI16-L I/O Expansion Modules

DINALOG A 96 x 24. Programmable quasi-analogue bar graph meters. Technical characteristics DINALOG A 96 x 24

Micro800 Programmable Controllers

ewon Flexy - Base Units

28-Port 10/100/1000Mbps with. 4 Shared SFP Managed Gigabit Switch WGSW / WGSW-28040P. Quick Installation Guide

Installation Guide V290 (Color) This guide provides basic information for Unitronics LCD color touchscreen models V C30B and V T40B.

CARLO GAVAZZI Automation Components. Wireless Safety System

IFS NS P-4S-2X Quick Start Guide

20.4VDC to 28.8VDC with less than 10% ripple Max. current consumption See Note 1 npn inputs

Industrial L2/L4 Managed Gigabit Switch. With 4-Port 802.3at PoE+ IGS P4T/IGS P4T2S. Quick Installation Guide

Bulletin 440R 440R 440R-S

CARLO GAVAZZI Automation Components. Switching Power Supplies from 5W up to 960W

Medium Voltage Solutions For Water and Wastewater Treatment

Bulletin 1492 In-Panel I/O Wiring System Modules and Cables for Allen-Bradley Programmable Controllers Reduced Wiring Time, Accurate Connections

Deploy a Customer Site

Failure to comply with appropriate safety guidelines can cause severe injury or property damage.

L2+ Managed Metro Ethernet Switch MGSW / MGSD Series

L2/L4 Managed Gigabit Ethernet Switch GS-4210 Ultra PoE Series

CARLO GAVAZZI Automation Components. Surge Protection Devices

Vision OPLC. V TR6 Technical Specifications. Technical Specifications.

L2+ Managed LCD Switch GS T2XV(R) / GS T4XV(R) Quick Installation Guide

UTM Content Security Gateway CS-2001

L2+ Managed PoE Switch GS-5220 PoE Series

This guide provides basic information for Unitronics Models V230/260/280/290 (Non-color Screens).

ZyWALL 10W. Internet Security Gateway. Quick Start Guide Version 3.62 December 2003

Type PowerFlex 4 PowerFlex 4M PowerFlex 40 PowerFlex 40P PowerFlex 400 Ratings 240V, 1-phase kw kw

TA Series Analog VoIP Gateway Installation Guide

DMC SNMP Module for Chassis-Based Media Converter Manual. Rev. 01 (JUN. 2002) 1907MCB RECYCLABLE

SX-8-EP PoE-Powered Managed Gigabit Switch with 8 Rear-Facing Ports QUICK START GUIDE

Industrial 4G LTE Cellular Gateway ICG-2420-LTE

L2+ 24-Port Gigabit Managed Switch with. Hardware Layer3 IPv4/IPv6 Static Routing GS S8C GS S8CR. Quick Installation Guide

48-Port 10/100Mbps + 4 Gigabit TP / 2 SFP. Managed Switch WGSW Quick Installation Guide

Setting Up Your Cisco Unified Videoconferencing 3515 MCU

This guide provides basic information for Unitronics Models V230/260/280/290 (Non-color Screens).

TZ 170 Quick Start Guide

48-Port 10/100/1000Base-T with 4 Shared SFP. Managed Gigabit Switch WGSW Quick Installation Guide

Installation Guide V1210-T20BJ This guide provides basic information for Unitronics controllers V1210-T20BJ.

Manager Appliance Quick Start Guide

Setting Up Your Cisco Unified Videoconferencing 3500 Gateway

L2+ Managed Gigabit/10 Gigabit Ethernet Switch GS-5220 Series

3 Digital, 3 Digital/Analog, 3 PT1000/NI1000 Inputs, 5 Relay, 1 pnp/npn Outputs

Management Security Switch SGSD-1022 / SGSD-1022P SGSW-2840 / SGSW-2840P. Quick Installation Guide

NAT Proxy Server. Administrator Installation and Configuration Guide. 08NATPM.IX2.00c.en2

Vision OPLC V TR20

RS-232/422/485 to Copper or Fiber. Ethernet Converter. User s Manual

Switched Rack Power Distribution Unit

V350-RA22 V350J-RA22.

Ethernet Interface Module

Wireless Network Video Recorder

NEW. telephone sockets. Support frames and plates selection charts (p. 514 to 521) Support frames and plates selection charts (p.

TIME SERVER NETSILON. Quick start.

24-Port 10/100/1000Mbps with. 4 Shared SFP Managed Gigabit Switch

24-Port Gigabit + 4-Port 10G SFP+ Slot. Layer 3 Stackable Managed Switch XGS Quick Installation Guide

GV-POE2401-V2 24-Port 802.3at Web Management PoE

UDS-Universal Docking Stations Product Drawings Last Updated 4/22/2008

Configuring the Switch

Codian IP VCR IP VCR 2200 Series

McAfee Network Security Platform

How to Set Up Your SRX4100 Services Gateway

TFC-1600MM Media Conversion System. Management Configuring Guide

Installing the Cisco Unified Videoconferencing 3545 MCU

Transcription:

ewon Installation Guide IG 013 / Rev 1.3 efive 100 Installation Guide Contents This short guide explains how to install the efive 100 Firewall and to get started with the embedded configuration web site.

Table of Contents 1. What is efive 100?... 3 2. Compliance... 3 3. Hardware description... 4 3.1 Package contents... 4 3.2 Housing interfaces... 4 3.2.1 Front Panel... 4 3.2.2 Back panel... 5 3.3 Markings... 5 3.4 Mechanical outline... 6 4. Software configuration... 7 4.1 Factory default IP settings... 7 4.2 Network interface configuration... 7 4.2.1 Selecting the appropriate IP ranges... 7 4.2.2 Setting the LAN IP (green) address... 8 4.2.3 Setting the WAN (red) address... 9 5. General specifications of efive 100... 10 Appendix 1 - Serial Console Access... 11 Revision history... 13 i efive 100 Installation Guide (How to) Page 2/13

What is efive 100? Chapter 1. 1. What is efive 100? This Installation Guide describes the hardware and software installation of the VPN server platform efive 100. efive 100 is a rackmount hardware platform featuring a Virtual Private Network (VPN) gateway with OpenVPN. It has been designed to be a perfect match with the ewon range to build a VPN network. The efive 100 acts as OpenVPN Server and the ewons as OpenVPN Clients. The model efive 100 is designed to support up to 200 VPN clients. For smaller configurations there is the efive 25 (see IG-012-0-EN). The objective is to connect for example a SCADA PC to the PLC devices behind the ewon. The SCADA PC makes part of the LAN network of the efive and has the efive as default Gateway. When the VPN connection is established between the ewon and the efive, the efive routes the requests from the SCADA to the network behind the ewon. An example of typical IP address configuration is given in the picture below. The System and VPN configuration to reach this objective are described in the user guide AUG-050-0-EN (efive system and VPN configuration). This guide is available on the ewon support site http://wiki.ewon.biz/efive. 2. Compliance The current versions of the product certificates for the efive are available from our Support site: http://wiki.ewon.biz/support/07_documentations/official_documents efive 100 Installation Guide (How to) Page 3/13

Hardware description Chapter 3. 3. Hardware description 3.1 Package contents 1 The efive 100 VPN server hardware platform x 1 2 AC power cords (1 x NEMA 5-15p + 1 x CEE 7/7 France/Germany) 3 Plastic adhesive stands x 4 (small adhesive stands to affix on the bottom of the unit) 4 Quick start guide 5 Rack mounting ears x 2 + mounting screws 6 Serial cable for terminal emulator on console port See Appendix 1 - Serial Console Access 3.2 Housing interfaces 3.2.1 Front Panel Ethernet Port 1 - LAN (green) Ethernet Port 2 - WAN (red) Ethernet Port 3 - DMZ (orange) Ethernet Port 4 WLAN (blue) Left side LED - Activity LED (orange single color) OFF = No connection (or appliance OFF) ORANGE flashing = Activity Right side LED - Transfer rate indication (double color) OFF 10Mbps GREEN 100Mbps AMBER 1000Mbps Reserved port Reserved port Console port RJ45 connector to fit RS-232-cable as console port. Interface for reset to factory settings. Connection through terminal emulator See Appendix 1 - Serial Console Access COM port 1 Default settings: Rate 115200 Parity 8, n, 1 Flow control: None Reserved buttons LED panel Power LED ON when the appliance is ON. HDD LED ON when reading/writing on the solid state drive (SSD) LAN By Pass LED ON when running the LAN By-Pass function No label LED - Reserved USB ports (2) for mouse/keyboard connection efive 100 Installation Guide (How to) Page 4/13

Hardware description Chapter 3. 3.2.2 Back panel Outlets of the system fans AC inlet and power switch 3.3 Markings The identification label of the efive 100 is placed on the bottom plate of the housing. The different parts of the label are shown below: Device type Serial number 1236 = year+week 0154 = sequential number 05 = Product code Commercial part number Hardware version efive 100 Installation Guide (How to) Page 5/13

Hardware description Chapter 3. 3.4 Mechanical outline All dimensions are in millimeters. efive 100 Installation Guide (How to) Page 6/13

Software configuration Chapter 4. 4. Software configuration 4.1 Factory default IP settings Default LAN IP address (Port 1) 10.0.0.153 Corresponding Subnet Mask 255.255.255.0 4.2 Network interface configuration 4.2.1 Selecting the appropriate IP ranges Configuring the VPN server is simple. However, you need to pay attention to the different IP ranges of the involved networks. The IP range of the LAN-side needs to be different than the one on the WAN-side. Check with the network administrator whether the planned WAN range is compliant with the current IT-policy. For more information about the different networks used by the efive, please see the efive User Guide, AUG- 050-0-EN which is available from the ewon Support website http://wiki.ewon.biz/support/07_documentations.fi st connection Connect your PC with the LAN-port of your efive (Port 1 - green). Make sure that your PC is having an IP address that is compatible with the default LAN IP address of the efive. Open your browser and type the default address 10.0.0.153 in the URL field. Hit Enter. You can discard the security warning as shown. r Enter the default username and password. Default username: admin Default password: admin Warning! For security reasons, changing the default password admin is absolutely required. To change the admin password, from the menu bar, click on System, Passwords. Enter the new password twice and click Save. efive 100 Installation Guide (How to) Page 7/13

Software configuration Chapter 4. The home page of the efive opens. 4.2.2 Setting the LAN IP (green) address Click Network, Interfaces from the main menu. The interfaces window opens. (see next page) efive 100 Installation Guide (How to) Page 8/13

Software configuration Chapter 4. In the LAN section, replace the default address and Network mask by the one you want to use. 4.2.3 Setting the WAN (red) address The are no default settings on the WAN side. Depending on the requirements, you can configure the WAN port to acquire a dynamic address automatically (DHCP enabled) or with a fixed IP address and network mask. In this area, you also have to configure the DNS server address(es) and the default gateway. The WAN/DMZ and VPN configuration are described in the software document AUG-050-0-EN (efive Client configuration & device access). efive 100 Installation Guide (How to) Page 9/13

Software configuration Chapter 4. 5. General specifications of efive 100 Form factor Dimensions Weight Power supply Operation temperature Storage temperature Relative Humidity Ethernet interfaces Serial interface USB interfaces Mechanical/Power/Environmental 1U Rack mount 44mm (1.73 ) (H) x 430mm (16.93 ) (W) x 248mm (9.76 ) (D) 7kg (15.43 lb) AC to DC 84W open frame, Input 100-240 VAC 50/60 Hz 1A typ. 3A max. 0 C ~ 45 C (32 F ~ 113 F) -20 C ~ 70 C (-4 F ~ 158 F) 0 to 95% non condensing Interfaces 6 x 10/100/1000Mbps Ethernet ports on RJ45 (out of which only 1 to 4 are used) 1 x RS232 Serial-port on RJ45 for console connection 2 x USB ports NOTE: All specifications and images are subject to change without notice. efive 100 Installation Guide (How to) Page 10/13

Appendix 1 - Serial Console Access Chapter Appendix 1 - Serial Console Access The VPN server platform efive 100 features a serial port allowing to connect a terminal console. This access is a useful rescue solution when it appears impossible to connect with the Ethernet interface. This happens i.e. when the IP configuration is uncertain or unknown, when the admin password is lost. 1. To make this connection, use the serial cable delivered with the unit. This black cable has a DB9 termination on one end and an RJ45 termination on the other end. 2. Connect the RJ45 side in connector 7 as shown and the DB9-side to the serial COM port of your PC. 3. On your PC, open a terminal application like HyperTerminal or PuTTY (www.putty.org). Configure the terminal application to open a serial (2) session on: COM-port used (3) @ 115200 bps (4) Check the Serial (5) parameters to be 8, n, 1 Flow Control: None Click Open (6) efive 100 Installation Guide (How to) Page 11/13

Appendix 1 - Serial Console Access Chapter 4. Type any character and hit [enter] (1) the efive returns a Menu (2). Select an option (3) depending on what you want to do. To display the current IP configuration without resetting the unit, select option 1 (Reboot). After reboot, the IP configuration appears in as header in the terminal interface. 5. To reset the unit to its factory settings (IP 10.0.0.153 and the admin password to admin) type 0 and hit [enter]. Wait for the reboot to complete (takes some time). efive 100 Installation Guide (How to) Page 12/13

Revision history Revision Level Date Description 1.0 10/01/12 Initial release 1.1 12/12/12 Add terminal emulator port + cable + power cords 1.2 14/06/13 Add serial console access 1.3 09/05/14 efive 25 supports up to 50 VPN Clients efive 100 supports up to 200 VPN Clients i Helsinki tel. +358 9 540 4940 info@klinkmann.fi St. Petersburg tel. +7 812 327 3752 klinkmann@klinkmann.spb.ru Moscow tel. +7 495 641 1616 moscow@klinkmann.spb.ru Yekaterinburg tel. +7 343 287 19 19 yekaterinburg@klinkmann.spb.ru Samara tel. +7 846 273 95 85 samara@klinkmann.spb.ru Кiev tel. +38 044 495 33 40 klinkmann@klinkmann.kiev.ua Riga tel. +371 6738 1617 klinkmann@klinkmann.lv Vilnius tel. +370 5 215 1646 post@klinkmann.lt Tallinn tel. +372 668 4500 klinkmann.est@klinkmann.ee Мinsk tel. +375 17 200 0876 minsk@klinkmann.com