195Eg Ethernet Wired LAN 195Eg. Wireless Ethernet Setting IP Address Using Utility Programs Begin...

Post on 24-Dec-2015

221 views 2 download

Tags:

Transcript of 195Eg Ethernet Wired LAN 195Eg. Wireless Ethernet Setting IP Address Using Utility Programs Begin...

Wireless Ethernet Programming

195Eg

Ethernet Wired LAN

195Eg

Wireless Ethernet

• Setting IP Address• Using Utility Programs

Begin Programming

• Definition• Selection• Programming

Modes of Operation

Repeating and Meshing

Security

Overview

Sample Ethernet Stack Model

IP-MulticastIP

TCP

UDP/TCP/IP

Application

Presentation

Session

Transport

Network

Link

Physical

EthernetMAC

EthernetPhysical

ComputerSystem

ApplicationProgram

IEEE 802.3

UDP

Wireless LAN Replaces Only Two Lowest Layers

Basic Hardware Layout

• Antenna• Power Supply

Assign IP Address to ESTeem

• Match IP subnet of computer• Discovery Utility

Programming with Web Interface

• Standard web browser available in all computers

ESTeem Network Configuration (ENC)

Starting Out

AP Bridge

AP Router

AP Masquerade

EtherStation

Station Router

Station Masquerade

Airscope

Ethernet Only

Modes of Operation

Most commonly used mode of operation

Bridges wireless and wired network ports

All data from both wired and wireless are shared

Simple network configuration • Single IP subnet• No IP routing required

Applications• Fixed Locations• Small or isolated Ethernet network

Access Point Bridge

Provides wireless access to mobile clients

• Developed for WiFi type access• Available to all ESTeem client modes

Connects mobile clients to fixed Ethernet network

Expands range between mobile clients

Access Point

Mobile Wireless Network With Overlap Coverage

Note:

Antenna’s shown are for illustration purposes. There are many antenna options available depending on your application.

10/100BaseT

Access Point Bridge with Repeater

Feature Enabled

Access Point Bridge with Repeater

Feature Enabled

Access Point Bridge with Repeater

Feature Enabled

Stand Alone Repeater

10/100BaseT

HUB or Switch

Ethernet Wired LAN

Ethernet Wired LAN

Mobile PLC

Station Masquerade or Station Router Mode

Mobile PLC

EtherStation Mode

Remote Video

MonitoringClient Mode

Client Mode

Voice over IP

Access Point Bridge - Repeater

Ethernet Bridge Mode

• IEEE 802.11 Does Not Define AP to AP Connections • Proprietary Ethernet Link• Repeating and All Modes of Operation Supported• Extended Security

• Features Lost such as Access Point Repeater• No Open Standard Equipment

• Links Networks Together• Links Fixed Ethernet Nodes in Network

Proprietary Bridge

Access Point Bridge with

Repeater Mode

NOTE:

Repeater may be stand-alone or attached to a network or device.

Access Point Router with Repeater Mode

Repeater

Hub or Switch

Bldg. LAN

Main Office Voice over IP

Remote Office

Bldg. LAN

Voice over IP

Line-of-Sight P

ath

Access Point Bridge with Repeater Mode

Line-of-Sight P

ath

54 Mbps

54 Mbps

Wireless Bridge With Repeater

Web Interface• Setup Menu• Repeater Peer Configuration

ENC Utility

Programming AP Bridge

Web Interface

• Setup Menu• Select AP Bridge

Programming AP Bridge

DHCP Services

• None• Client• Server

Programming AP Bridge

Static IP Address

• Enter desired IP address for modem• Enter Netmask consistent with

Network

Programming AP Bridge

Default Route

• Ignored In AP Bridge Mode• Must have a default route configure

• Leave at default

Programming AP Bridge

Security Features

• Turn On Security Features• Enter desired Network SSID

• Used by client devices

Programming AP Bridge

Security Features

• Encryption type for AP-Client association

• Hide SSID for enhanced security

Programming AP Bridge

Security Features

• Encryption key or Passphrase for AP-Client association

Programming AP Bridge

Security Features

• Access Control List for AP-Client association

• MAC Filter

Programming AP Bridge

Operations

• Choose desired frequency channel• All ESTeem Modems must be

configured to the same channel

Programming AP Bridge

Repeater Peers

• Enable Repeater Capability• Set as Root bridge in master location• Select Add to configure repeater peers

Programming AP Bridge

Repeater Peers

• Enter WLAN MAC address of Remote ESTeem

• Configure Bridge level Encryption Type• Enable and Create Repeater Peer

Programming AP Bridge

Repeater Peers

• Configured Repeater Peers are displayed in table

• Select Add to configure additional repeater peers

Programming AP Bridge

AP Bridge

• Commit Changes and proceed to next ESTeem modem

• Reboot of approx 45 seconds

Programming AP Bridge

195E acts as router between wireless network and wired network

More extensive network configuration required

• Wired and wireless must be on different subnets• Network router required

• Existing network router• Configuring ESTeem 195E as router

Applications

• Connecting wireless network to large plant network• Network segmentation

Access Point Router

195E used as firewall between wireless network and wired network

Wireless network requests on wired network will pass but wired network requests will not

Used for isolating wireless network from wired Ethernet network

Applications

• Network firewall requirements• Functions similar to home cable/DSL routers

Access Point Masquerade

Web Interface• Setup Menu• Repeater Peer Configuration

ENC Utility

Programming AP Router-Masq.

Web Interface

• Setup Menu• Select AP Router or

Masquerade

Programming AP Router-Masq.

Wired DHCP Services

• None• Client• Server

Programming AP Router-Masq.

Wired Static IP Address

• Enter desired Ethernet IP address for modem

• Enter Netmask consistent with the wired network

Programming AP Router-Masq.

Default Route

• Enter IP address of the network default gateway or router

Programming AP Router-Masq.

Wireless DHCP Services

• None• Client• Server

Programming AP Router-Masq.

Wireless Static IP Address

• Enter desired Wireless IP address for modem (must be on different subnet)

• Enter Netmask consistent with the wireless network

Programming AP Router-Masq.

Security Features

• Turn On Security Features• Enter desired Network SSID

• Used by client devices

Programming AP Router-Masq.

Security Features

• Encryption type for AP-Client association

• Hide SSID for enhanced security

Programming AP Router-Masq.

Default Route

• Enter IP address of the network default gateway or router

Programming AP Router-Masq.

Security Features

• Encryption key or Passphrase for AP-Client association

Programming AP Router-Masq.

Security Features

• Access Control List for AP-Client association

• MAC Filter

Programming AP Router-Masq.

Operations

• Choose desired frequency channel• All ESTeem Modems must be

configured to the same channel

Programming AP Router-Masq.

Repeater Peers

• Enable Repeater Capability• Set as Root bridge in master location• Select Add to configure repeater peers

Programming AP Router-Masq.

Repeater Peers

• Enter WLAN MAC address of Remote ESTeem

• Configure Bridge level Encryption Type• Enable and Create Repeater Peer

Programming AP Router-Masq.

Repeater Peers

• Configured Repeater Peers are displayed in table

• Select Add to configure additional repeater peers

Programming AP Router-Masq.

AP Router - Masquerade

• Commit Changes and proceed to next ESTeem modem

• Reboot of approx 45 seconds

Programming AP Router-Masq.

Access Point Mode Or Access Point

Repeater

10BaseT

HUB or Switch

Mobile PLC

EtherStation Mode

Mobile PLC

Station Masquerade or Station Router Mode

Voice over IP

Mobile Client in Network

• Moves Between Multiple Access Points

Greatly Extended Range of Mobile Devices

• Vehicles• Forklifts

ESTeem Client Applications

EtherStation

• Single Ethernet device on wireless network• Only one device connected to ESTeem

Station Router

• Multiple Ethernet devices on client connection• Router between wireless network and connected devices• IP address for each device visible on network

Station Masquerade

• Multiple Ethernet devices on client connection• Firewall between connected clients and wireless network• IP address for each device hidden on network • All devices appear as a single IP on network

ESTeem Client Modes

Web Interface

• Setup Menu• Select EtherStation

Programming EtherStation

Security Features

• Enter Network SSID• Select Encryption Type• Enter MAC address of connected

device

Programming EtherStation

Security Features

• Encryption key or Passphrase for matching network Access Points

Programming EtherStation

Security Features

• Access Control List for AP-Client association

• MAC Filter

Programming EtherStation

EtherStation

• Commit Changes – ESTeem will no longer have an IP address

• Reboot of approx 45 seconds

Programming EtherStation

Custom Roaming Code

• Most Mobile Clients Will Move Only on Connection Loss• Overlapping Coverage Not Helpful

ESTeem Custom Roaming Code

• Signal Strength Threshold• Number of Missed Packets• Client Will Stay With Access Point Until Better Link Found• Client Will Obtain Highest Data Rate Possible

Authentication

• Verification Of Network ID and Security Code• Association with New Access Point• Disassociation of Old Access Point

ESTeem Client Roaming

ESTeem Mesh Technology

Redundant Repeater Routes

• Configured Priority Routing• Manual Input• Direct Control Over Routing

• Auto Configuration • Shortest Path to Root Bridge• Highest Signal Strength

Priority Routing Configuration

• Multiple Links Create “Meshing” Pattern• “Self Healing” from Spanning Tree Protocol

Redundant Path Overview

LOS

Repeater Peer Links

• WLAN Address of Remote ESTeem• Path Cost or Path Length• Encryption Type• Data Rate

Routing Base Upon Spanning Tree Protocol (STP)

• Root Bridge• Path Length• Rapid Spanning Tree Protocol

Enable Each Fixed Route

• Mobile Clients Not Required in List

Mesh Network Configuration

Repeater MeshConfiguration Example

Path Length

Access Point Router with Repeater

10/100BaseT

HUB or Switch

10/100BaseT

Access Point Bridge with Repeater

Primary Repeater Path

Backup Repeater Path

Access Point Bridge with Repeater

Prim

ary R

epe

ater P

ath

Plant NetworkLarge Wired LAN

Remote BuildingSmall Ethernet Wired LAN

Stand-Alone Repeater Site

Network Router

(Required)

* Root Bridge Path Length = 1

Path Length = 1

Path Length Direct = 1Path Length Through Repeater = 2Direct Path Would Be Primary

Path Length = 3

WEP

• 64/128 Bit

WPA

• Pre-Shared Key (PSK)• Enterprise (Radius Server)

WPA2 (AES-CCMP)

• Pre-Shared Key (PSK)• Enterprise (Radius Server)

Hide SSID and Beacon Probes

Mobile Client Security

WEP 64

• 5 Hexadecimal Bytes• Manually entered with colon (:) separation

WEP 128

• 13 Hexadecimal Bytes

TKIP

• 32 Hexadecimal Bytes

CCMP

• 16 Hexadecimal Bytes

ENC Utility

• Security configuration on “link” line

Repeater Peer Security

Additional Security Overlay

• Access Point or Client

“MAC Filter” to Accept or Deny MAC Addresses

• Unique for ALL Ethernet Devices• MAC Address Set at Factory• Single Addresses in List• ESTeem Global List

Simple but Most Secure Method

• Physical Compromise Required

Access Control List (ACL)