Manual
Table Of Contents
- Chapter 1 Accessing the Web User Interface
- Chapter 2 Cellular Connections
- Chapter 3 Web User Interface
- 3.1 Web User Interface Introduction
- 3.2 Status Tab
- 3.3 Admin Tab
- 3.4 Network Tab
- 3.5 Services Tab
- 3.6 Automation Tab
- 3.7 Advanced Tab
- Chapter 4 Red Lion Support
- Chapter 5 Compliance Statements & User Information
- Chapter 6 Licensing & Warranty
- Chapter 7 Appendices

Software User Guide 61
Network Tab
EnableFirewall(Required):Specify whethertoenablethefirewallserviceonthisdevice.Therecommendedsetting
forthisfieldisYes
.
Note:Disablingthefirewallwillcompromisesecurityandroutingfunctionsoftheunit.
AllowPing:ToallowICMPechoresponses(Ping)fromexternaldevicesthroughuntrustedinterfacesonthisunit,
selectYes;otherwiseselectNo.TherecommendedsettingforthisfieldisYes
.
Torestrictaccessviaaconfiguredwhitelist,selectawhitelistnameforthelistofnamesavailableinthedrop‐down
menu.Note:Thissettingwillnot
overrideanyfirewallrulesdefinedonotherpages,suchasserviceaccessorredirect
rules.
PingWhitelistName:Selectthedesiredwhitelistfromthedrop‐downmenu.WhitelistsarecreatedintheNet‐
work>Firewall>ACLRules>Subnet>WhitelistRulesscreen.
AllowSSH:ToallowexternaldevicestoconnecttotheSSHServer,viaport
22,throughuntrustedinterfacesonthis
unit,selectYes;otherwiseselectNo.TherecommendedsettingforthisfieldisYes
.
TorestrictaccessviaaconfiguredWhitelist,clickthecheckboxmarkedUseWhitelistandthenselectaWhitelistname
fromthelistofnamesavailableinthedrop‐downlistboxprovided.Whitelistsmaybeviewed/definedviatheNet‐
work>Firewall>ACLRules>SubnetWhitelistRulesscreen.
Note:Settingthisoptionto
YesdoesnotenabletheSSHserver,itjustallowsittobeaccessibleviathefirewallwhenit
isenabled.TheSSHServermaybeenabledviatheServices>SSH/TELNETServerscreen.
IftheSSHServerisconfiguredtouseaportotherthan22,arulespecificallyforthealternate
portwillneedtobe
addedviatheNetwork>Firewall>PortAllow/ForwardingRules>ServiceAccessRulesscreen.
Note:Thissettingwillnotoverrideanyfirewallrulesdefinedonotherpages,suchasserviceaccessorredirectrules.
SSHWhitelistName:Selectthedesiredwhitelistforthedrop‐downmenu.WhitelistsarecreatedintheNet‐
work>Firewall>ACLRules>SubnetWhitelistRulesscreen.
AllowTelnet:ToallowexternaldevicestoconnecttotheTELNETSer ver,viaport23,throughuntrustedinterfaceson
thisunit,selectYes;otherwiseselectNo.The
recommendedsettingforthisfieldisNo.
Torestrictaccessviaaconfiguredwhitelist,clickthecheckboxmarkedUseWhitelistandthenselectawhitelistname
fromthelistofnamesavailableinthedrop‐downlistboxprovided.Whitelistsmaybeviewed/definedviatheNet‐
work>Firewall>ACLRules>SubnetWhitelistRulesscreen.
Note:SettingthisoptiontoYes
doesnotenabletheTelnetServer,itjustallowsittobeaccessibleviathefirewallwhen
itisenabled.TheTelnetServermaybeenabledviatheServices>SSH/TelnetServerScreen.
Note:Thissettingwillnotoverrideanyfirewallrulesdefinedonotherpages,suchasserviceaccessorredirectrules.
TelnetWhitelistName:Selectthedesiredwhitelistforthedrop‐downmenu.Whitelistsarecreate dintheNet‐
work>Firewall>ACLRules>SubnetWhitelistRulesscreen.
AllowModb us:ToallowexternaldevicestoconnecttotheMODBUSServer,viaport502,throughuntrustedinter‐
facesonthisunit,selectYes;otherwiseselectNo.
TherecommendedsettingforthisfieldisNo.
Torestrictaccessviaaconfiguredwhitelist,clickthecheckboxmarkedUseWhitelistandthenselectawhitelistname
forthelistofnamesavailableinthedrop‐downlistboxprovided.White listmaybeviewed/definedviatheNet‐
work>Firewall>ACLRules>SubnetWhitelistRulesscreen.
Note:SettingthisoptiontoYes
doesnotenabletheMODBUSserver,itjustallowsittobeaccessibleviathefirewall
whenitisenabled.TheMODBUSServermaybeenabledviatheAutomation>ModBus>Forwardingscreen.
ModbusWhitelistName:Selectthedesiredwhitelistforthedrop‐downmenu.WhitelistsarecreatedintheNet‐
work>Firewall>ACLRules>
SubnetWhitelistRulesscreen.










