How to establish a Reverse SSH to a Serial Device behind the AirLink device

Similar documents
Configuring IP to Serial with Auto Answer and Serial to IP

Configuring WAN Failover with a Cisco 881 Router and an AirLink ES440

Serial Cables & Adapters

Cisco ISE Command-Line Interface

Lab Organizing CCENT Objectives by OSI Layer

Lab Developing ACLs to Implement Firewall Rule Sets

Securely manage data center and network equipment from anywhere in the world.

Providing Credentials

QUICKSTART GUIDE FOR CDI CELLULAR STARTER KIT

Connecting and Setting Up Your Laptop Computer

Using a Sierra Wireless AirLink Raven X or Raven-E with a Cisco Router Application Note

How to add a SIP server How to register a handset

NetVanta 3000 Series (with T1/FT1 or T1/FT1 with DSX-1 Network Interface Module)

A More Secure and Cost-Effective Replacement for Modems

L2F Case Study Overview

Note: This case study utilizes Packet Tracer. Please see the Chapter 5 Packet Tracer file located in Supplemental Materials.

How To Set Up A Netvanta For A Pc Or Ipad (Netvanta) With A Network Card (Netvina) With An Ipa (Net Vanta) And A Ppl (Netvi) (Netva)

Application Note 2. Using the TCPDIAL & TCPPERM Commands to Connect Two TransPort router Serial Interfaces Over TCP/IP.

ASUS WL-5XX Series Wireless Router Internet Configuration. User s Guide

Windows Dial Up Networking (DUN) for AirLink Modems Application Note - How To

Comtrend 1 Port Router Installation Guide CT-5072T

How to deploy console cable to connect WIAS-3200N and PC, to reset setting or check status via console

Cable Pinouts. SRP I/O Module

PT Activity: Configure Cisco Routers for Syslog, NTP, and SSH Operations

Lab Configure Basic AP Security through IOS CLI

Lab Creating a Logical Network Diagram

Digi Connect WAN Application Guide Using the Digi Connect WAN and Digi Connect VPN with a Wireless Router/Access Point

50-Port 10/100/1000Mbps with 4 Shared SFP. Managed Gigabit Switch WGSW Quick Installation Guide

Configuring a Cisco 2509-RJ Terminal Router

Lab 4.4.8a Configure a Cisco GRE over IPSec Tunnel using SDM

USER GUIDE. Ethernet Configuration Guide (Lantronix) P/N: Rev 6

ZyWALL 5. Internet Security Appliance. Quick Start Guide Version 3.62 (XD.0) May 2004

SCS3205/4805 Quick Start Guide

Apple Airport Extreme Base Station V4.0.8 Firmware: Version 5.4

This techno knowledge paper can help you if: You need to setup a WAN connection between a Patton Router and a NetGuardian.

Multi-Homing Dual WAN Firewall Router

Firewall VPN Router. Quick Installation Guide M73-APO09-380

Installing Your Vonage Device in Front of an Existing Router for customers with DSL INTERNET SERVICE

Unpacking the Product. Rack Installation. Then, use the screws provided with the equipment rack to mount the firewall in the rack.

Connecting to the Internet. LAN Hardware Requirements. Computer Requirements. LAN Configuration Requirements

P-660HNU-Tx. Wireless N ADSL2+ 4-port Gateway DEFAULT LOGIN DETAILS. Firmware v1.02 Edition 1, 11/2011. IP Address:

Wireless G Broadband quick install

Full Install Setup Guide Actiontec F2250 Gateway

Classroom Management network FAQ and troubleshooting

Comtrend 4 Port Router Installation Guide CT-5361T

isco Connecting Routers Back to Back Through the AUX P

Self Help Guide IMPORTANT! Configuring Your Router With Your Modem. Please read the following carefully; This Guide refers to the following Products:

BiPAC 7404V series. VoIP/(802.11g) ADSL2+ (VPN) Firewall Router. Quick Start Guide

How To Configure L2TP VPN Connection for MAC OS X client

DOORKING SYSTEMS 1830 SERIES NETWORK WORKSHOP LAN APPLICATIONS ACCESS CONTROL SOLUTIONS LOCAL AREA NETWORK (LAN) CONNECTION REV 04.

801.11n Wireless Broadband Router

Shield Pro. Quick Start Guide

How To Configure Apple ipad for Cyberoam L2TP

Cable Specifications and Information

How do I Install and Configure MS Remote Desktop for the Haas Terminal Server on my Mac?

NAPT. (SV8100 version 3.0 or higher)

Chapter 8 Lab B: Configuring a Remote Access VPN Server and Client

Extending the range of a wireless network by using mesh topology

GSC/VRC IP Converter. Installation and Operation Manual

Prestige 314 Read Me First

PC/POLL SYSTEMS Version 7 Polling SPS2000 Cash Register TCP/IP Communications

M2M Series Routers. Port Forwarding / DMZ Setup

Using LiveAction with Cisco Secure ACS (TACACS+ Server)

Web Authentication Application Note

Lab 8.3.3b Configuring a Remote Router Using SSH

Configuring Devices for Use with Cisco Configuration Professional (CCP) 2.5

WestermoConnect User Guide. VPNeFree Service

Technology Spotlight on Cellular Data Networking for SCADA system networks. Presented by Teamwork Solutions, Inc.

How do I Install and Configure MS Remote Desktop for the Haas Terminal Server on my Mac?

Connecting the DG-102S VoIP Gateway to your network

RJ45 Shielded (standard) port pinout. CS9000, Jetstream , Lanstream 2000, RTA8/RJX, RRC16, MTA8/RJX & SXDC8/RJX

You may refer the Quick Installation Guide in the package box for more information.

ETHERNET WEATHER STATION CONNECTIONS Application Note 33

Symphony Network Troubleshooting

TotalCloud Phone System

June 2013 v. 0.2

Cisco VPN Client Troubleshooting Error Messages

Packet Tracer 3 Lab VLSM 2 Solution

Quick Note 038. Upgrade Software options and/or VPN Licenses on a Digi Transport router.

VPN PPTP Application. Installation Guide

Application Note. Terminal Server G6

How to setup PPTP VPN connection with DI-804HV or DI-808HV using Windows PPTP client

enetworks TM Using the Syslog Feature C.1 Configuring the Syslog Feature

Connecting an Android to a FortiGate with SSL VPN

Cisco CCNA Optional Semester 4 Labs Wide Area Networking LAB 1 T1 TSU WAN LINK OVERVIEW - Instructor Guide (Estimated time: 30 minutes)

Objectives. Background. Required Resources. CCNA Security

Setting up VPN Access for Remote Diagnostics Support

Cisco 831 Router and Cisco SOHO 91 Router Cabling and Setup Quick Start Guide

Honeywell Internet Connection Module

Configuring Routers and Their Settings

Application Note Startup Tool - Getting Started Guide

Applicazioni Telematiche

Configuring RADIUS Authentication for Device Administration

Chapter 1 Installing the Gateway

Initial Access and Basic IPv4 Internet Configuration

SNMP-1 Configuration Guide

Figure 1 - T1/E1 Internet Access

Packet Tracer - Connecting a Wired and Wireless LAN Topology

Lab 2.5.2a Configure SSH

CHANGE NETWORK SETTINGS Technicolor TG582n

Transcription:

How to establish a Reverse SSH to a Serial Device behind the AirLink device This article applies to the ES440, GX440 and LS300 AirLink devices. Cable required When using a blue console cable to connect to a Cisco router, you must use an additional NULL modem DB9 adapter, ending in a DB9 Male connector that is attached to the AirLink device s serial port. For other router vendors, the adapter may be required, depending on the router s console port. Typical console cables AirLink devices support a DCE Female DB9. See DB9 pin-out at the end of this article. Setting up a Reverse SSH connection The following illustration shows a standard Out of Band (OOB) connection between the AirLink device and a router: 1

Enabling the SSH server Go to ACEmanager > Services > Telnet/SSH and select SSH as the Remote Login Server mode. It is important to enter the Remote Login Server Telnet/SSH port which is by default Port 2332. This is the port that will be used when establishing SSH sessions. Note: Since you have enabled the SSH server, you will be reaching the connected serial device by establishing a Reverse SSH session. Basically, Telnet has been disabled. Keep in mind when opening SSH sessions that the port to be used is the Remote Login Server Telnet/SSH port. Enabling Reverse Telnet/SSH Go to ACEmanager > Serial: Port Configuration and set the Startup Mode Default field to Reverse Telnet/SSH. Configure the serial port to match your serial device. Most routers console ports are set to 9600, 8N1. That s it for this menu. The Auto login option is not supported when establishing Reverse SSH connections. The Device port is not used at all for Reverse SSH connections. 2

Testing SSH into a connected device To test Reverse SSH functionality, open any SSH application. For this example, we used putty.exe. The following screen shot shows that application. Replace the Mode WANIP with the Cellular IP address obtained by the AirLink device from your Mobile Network Operator. For our example, it is 166.10.10.10 A message similar to the following is displayed: If the cable is correct and the router is accepting OOB messages, it prompts for the SSH login credentials. You must provide ALEOS Reverse Telnet/SSH credentials (username: sconsole, and password: 12345). After that, you are prompted for the router s console login credentials username and password. 3

Please note if you use the default user: user and password: 12345, it establishes a normal AT command session. Reverse SSH and VPN When the AirLink device is connected to a VPN, assuming it has the default device IP 192.168.13.31, you can access the OOB router on the serial console port from a computer on the VPN network establishing an SSH session to IP 192.168.13.31 on port 2332. Please note that it is using the device LAN IP or Device IP address. The connection is redirected to the device s serial port, which in turn makes the connection to the router, as shown below: VPN Server Internet Wireless Network D B 9 To Router s Console port PC connected to VPN SSH to 192.168.13.31/2332 PC not connected to VPN SSH to 166.10.10.10/2332 *Out of band connection VPN Tunnel *If the device has a VPN Split tunnel enabled, it means the ACEmanager out of band is set to Allowed. It is possible to access the OOB router s console port using the device s Public WAN IP address, for example, SSH to 166.10.10.10 on port 2332 by default. Troubleshooting I am attempting an SSH connection on a specified SSH port, but the connection times out. There are several possible reasons for this. First of all, the device should have a Public IP that can be accessed from the Internet. Test accessing the device using ACEmanager on port 9191, and then try to make the connection using SSH on the default ALEOS port, 2332. If that works, be sure the Reverse Telnet/SSH has been set to SSH. Verify that the serial port configuration matches your serial device, and check the console cable. I can establish an SSH connection with the Remote login Server Telnet/SSH port, but it does not prompt for the router s console login credentials. Check the console cable. Reverse Telnet/SSH is a stable feature, however hardware issues arise in the field mostly because of incorrect console cables or DB9 adapters. Be sure to use console cables specified by the router s manufacturer. In most of the cases, a DB9 null adapter is required. When Reverse Telnet/SSH is enabled, can I still connect to the device using Telnet to port 2332? No. It is not possible to use Telnet on 2332 once SSH has been enabled. The AirLink device only accepts 4

SSH connections on the Reverse login server Telnet/SSH port, as shown in ACEmanager > Services > Telnet/SSH. Depending on whether you are using user: user or sconsole, you will be redirected to either an AT command session or an SSH to serial port. What is the DB9 pin-out for the AirLink device? What are the DB9 and RJ 45 standard pin-outs for Cisco cables? 5