Manual
Table Of Contents
- Chapter 1 Accessing the Web User Interface
- Chapter 2 Cellular Connections
- Chapter 3 Web User Interface
- 3.1 Web User Interface Introduction
- 3.2 Status Tab
- 3.3 Admin Tab
- 3.4 Network Tab
- 3.5 Services Tab
- 3.6 Automation Tab
- 3.7 Advanced Tab
- Chapter 4 Red Lion Support
- Chapter 5 Compliance Statements & User Information
- Chapter 6 Licensing & Warranty
- Chapter 7 Appendices

Software User Guide 62
Network Tab
AllowDNP3:ToallowexternaldevicestoconnecttotheDNP3Server,viaport20,000,throughuntrustedinterfaces
onthisunit,selectYes;otherwiseselectNo.TherecommendedsettingforthisfieldisNo
.
Torestrictaccessviaaconfiguredwhitelist,clickthecheckboxmarkedUseWhitelistandthenselectawhitelistname
forthelistofnamesavailableinthedrop‐downlistboxprovided.White listsmaybeviewed/definedviatheNet‐
work>Firewall>ACLRules>SubnetWhitelistRulesscreen.
Note:SettingthisoptiontoYes
doesnotenabletheDNP3Server,itjustallowsittobeaccessibleviathefirewallwhen
itisenabled.ThenDNP3Ser vermaybeenabledviatheAutomation>DNP3>PhysicalLinkLayerscreen.
DNP3WhitelistName:Selectthedesiredwhitelistforthedrop‐downmenu.WhitelistsarecreatedintheNet‐
work>Firewall>ACL
Rules>SubnetWhitelistRulesscreen.
AllowWebInterfaceAccess:ToallowexternaldevicestoconnecttotheWebInterface,throughuntrustedinterfaces
onthisunit,selectYes;otherwiseselectNo.TherecommendedsettingforthisfeatureisYes
.
Torestrictaccessviaaconfiguredwhitelist,clickthecheckboxmarkedUseWhitelistandthenselectawhitelistname
fromthelistofnamesavailableinthedrop‐downlistboxprovided.Whitelistsmaybeviewed/definedviatheNet‐
work>Firewall>ACLRules>SubnetWhitelistRulesscreen.
Note:Thissettingwillnotoverrideanyfirewallrulesdefinedonotherpages,suchasserviceaccessorredirectrules.
WebUIWhitelistName:Selectthedesiredwhitelistforthedrop‐downmenu.WhitelistsarecreatedintheNet‐
work>Firewall>ACLRules>SubnetWhitelistRulesscreen.
AllowSNMPAgentAccess:ToallowexternaldevicestoconnecttotheSNMPAgent,viaport161,throughuntrusted
interfacesonthisunit,selectYes;otherwise
selectNo.TherecommendedsettingforthisfeatureisYes.
Torestrictaccessviaaconfiguredwhitelist,clickthecheckboxmarkedUseWhitelistandthenselectawhitelistname
fromthelistofnamesavailableinthedrop‐downlistboxprovided.Whitelistsmaybeviewed/definedviatheNet‐
work>Firewall>ACLRules>SubnetWhitelistRulesscreen.
Note:SettingthisoptiontoYes
doesnotenabletheSNMPAgent,itjustallowsittobeaccessibleviathefirewallwhen
itisenabled.TheSNMPAgentmaybeenabledviatheServices>SNMPAgentscreen.
Note:Thissettingwillnotoverrideanyfirewallrulesdefinedonotherpages,suchasserviceaccessorredirectrules.
SNMPWhitelistName:Selectthedesiredwhitelistforthedrop‐downmenu.WhitelistsarecreatedintheNet‐
work>Firewall>ACLRules>SubnetWhitelistRulesscreen.
AllowIPSEC(Required):SpecifywhethertoallowESPdata,aswellasUDPport500tocommunicatewithexternal
devicesthroughuntrustedinterfaces.Therecommendedsettingfor
thisfieldisYes.
Note:ThisisnecessaryifyouareplanningtoconfigureanyIPSECtunnelsoriginatingfromthisdevice.
AllowNAT‐Traversal(Required):SpecifywhethertoallowdataonUDPport4500onuntrustedinterface.Therecom‐
mendedsettingforthisfieldisYes
.
Note:ThisisnecessaryifyouareplanningtorunanyIPSECtunnelsthroughourdevice.Thiswouldsupportaunit
behindatrustedinterfacetomakeanIPSECconnectiontoahostbeyondanuntrustedinterface.
TrustedInterfaces:Identifiesthetrusted(internal)interface.Trafficfromthisinterfacewillbepermitted
outbound.
Defaultis“WAN/eth0”.










