Hongdian User Manual-H8922S 4G Dual SIM Router
Hongdian User Manual-H8922S 4G Dual SIM Router
com
User Manual
H8922S 3G/4G Router
H8922S 3G/4G Router User Manual
Hongdian Corporation
and DTU are the trademarks and logos of Hongdian Corporation. Other trademarks and
logos mentioned in this manual belong to other organizations related. Hongdian Corporation does not own
the rights of other trademarks and logos.
Caution
The content of this document may be updated from time to time due to product version updates or other
reasons. Unless otherwise agreement, this document is intended as a guide for use only. All statements,
information and recommendations in this document do not constitute any express or implied warranty.
Foreword
Overview
H8922S 4G router is designed and manufactured by Hongdian, it based on 4G cellular network technology, in-
dustrial class quality. With its embedded cellular module, it has been widely used in finance, transportation,
telecom, electricity, security system and other industries. This document introduced how to use H8922S and its
function features.
Product Version
The following table lists the product versions related to this document.
Readers
The document applies to the following persons:
R&D engineers
Technical support engineers
Customers
You are recommended to start from Chapter One if you know and use any Router product of Hongdian for the
first time so as to get a better understanding of the product and the correct usage by reading all the contents
of the document.
You are recommended to select any chapter or section you want to know via the contents below if you have
known or used any Router product of Hongdian or a similar product of any other company.
Section Contents
Section Contents
3 Installation of H8922S 4G Router How to install H8922S 4G Router is introduced in the chapter.
7 FAQ/Exception handling The causes and handling methods for common faults of H8922S
4G Router during usage are introduced in the chapter.
Conventions
Symbol Conventions
The symbols that may be found in this document are defined as follows.
Symbol Description
Indicates a tip that may help you address a problem or save your time.
Command Conventions
Convention Description
{ x | y | ... } Optional items are grouped in braces and separated by vertical ars. One item is
selected.
[ x | y | ... ] Optional items are grouped in brackets and separated by vertical bars. One item is
selected or no item is selected.
Convention Description
{ x | y | ... } * Optional items are grouped in braces and separated by vertical ars. A minimum of
one item or a maximum of all items can be selected.
[ x | y | ... ] * Optional items are grouped in brackets and separated by vertical ars. Several items
or no item can be selected.
&<1-n> The parameter before the & sign can be repeated 1 to n times.
GUI Conventions
Convention Description
Boldface Buttons, menus, parameters, tabs, window, and dialog titles are in boldface. For
example, click OK.
> Multi-level menus are in boldface and separated by the ">" signs.
For example, choose File > Create > Folder.
Keyboard Operations
Format Description
Key Press the key. For example, press Enter and press Tab.
Key 1+Key 2 Press the keys concurrently. For example, pressing Ctrl+Alt+A means the three keys
should be pressed concurrently.
Key 1, Key 2 Press the keys in turn. For example, pressing Alt, A means the two keys should be
pressed in turn.
Mouse Operation
Action Description
Click Select and release the primary mouse button without moving the pointer.
Double-click Press the primary mouse button twice continuously and quickly without moving the
pointer.
Drag Press and hold the primary mouse button and move the pointer to a certain posi-
tion.
Contents
Foreword .................................................................................................................................. ii
Overview ................................................................................................................................................................ ii
Product Version ...................................................................................................................................................... ii
Conventions .......................................................................................................................................................... iii
1 Product Introduction .............................................................................................................. 1
About this chapter.................................................................................................................................................. 1
Overview ................................................................................................................................................................ 1
1.1 Product positioning .......................................................................................................................................... 1
1.2 Function & Features ......................................................................................................................................... 3
1.3 Technical Specifications ................................................................................................................................... 4
1 Product Introduction
1.1 Summary The summary of H8922S 4G Router is briefly introduced in the section.
1.2 Product Orientation The product orientation of H8922S 4G Router is briefly introduced in the sec-
tion.
1.3 Function & features The functions and features of H8922S 4G Router are briefly introduced in the
section.
1.4 Technical Indicators The technical indicators and relevant specifications for H8922S 4G Router are
and Specifications briefly introduced in the section.
Overview
H8922S 4G Router is a wireless router gateway researched and developed based on 4G technology. Besides
the functions such as VPN, firewall, NAT, PPPoE, DHCP of conventional routers, it can also support 4G wireless
dialing to provide wireless high speed bandwidth as high as 100Mbps. H8922S 4G Router has three modes:
single mode single card, single mode dual card, dual mode dual card. and all of the three forms support
802.11n to provide local wireless local area network (WLAN) as high as 150Mbps. The most dominant feature
of H8922S 4G Router is that it can support simultaneous online and backup switch over among various net-
works such as WAN, WLAN and 4G. The backup in various networks can guarantee and maintain communica-
tion links to the greatest extent so as to avoid business loss caused by communication outage. The simultane-
ous online of various networks can facilitate strategy diversion based on business so as to realize the band-
width rationality and adequate utilization of various network channels.
H8922S 4G Router supports the M2M wireless remote comprehensive network management platform inde-
pendently researched and developed by Hongdian. The M2M platform is able to realize the statistics of 4G
wireless network information and status in the place where H8922S 4G Router is used as well as the remote
upgrade and configuration management for H8922S 4G Router.
H8922S 4G Router is widely used in power, energy, agriculture, numerical control, information media, finance,
self-service terminals, intelligent logistics, smart oil fields, smart cities, environmental disaster reduction and
other scenarios.
Dual mode backup application for financial industry
H8922S 4G Router can provide guarantees for highly secure transmission of financial data via ways such as IPSec
VPN. The risks of communication outage caused by operators’ network faults can be greatly reduced via its dual
mode switch over function. The typical network is as shown in Figure 1-1
H8922S 4G Router supports the transmission on-board videos. In a parking lot, HD video can be transmitted to
nearby WLAN hot spots via WLAN, then transmitted to Internet via WLAN hot spots. When an automobile is
running, relevant data can be transmitted to a video server via 3G/4G network communication. The typical
network is as shown in Figure 1-3.
Basic functions
Support global bands.
Supports hot backup failover for various networks such as WAN, WLAN, 4G.
Supports 802.11b/g/n wireless mode; Supports WLAN AP/station mode.
Supports the high speed data exchange of 4 LAN interfaces.
Supports PPPoE dialing at a WAN interface.
Supports the access of private networks such as VPDN, APN.
Supports various VPN protocols, such as IPSec, GRE, IPIP, PPTP, L2TP
Supports GRE over IPSec, IPSec over PPTP/L2TP/GRE/IPIP
Supports the multi parameter and multifunction combination switchover functions original developed by
Hongdian to realize the flexible and rapid communication switchover of multiple servers and the switch-
over of multiple operators on a single card.
Supports DHCP Server.
Optional for GPS
Optional for serial port, (1 x RS232, 1 x RS485)
Supports local, long distance, platform firmware/patch upgrade.
Supports firmware update by CFE (The update method used for when the breakdown of file systems
caused by abnormal conditions such as a power failure during webpage update process happens, which
has a higher efficiency).
Supports various management methods such as WEB, CLI, SSH and platforms.
Supports M2M platform management.
Supports the backup and import of parameters and Supports the use of private keys to import or export
parameter configurations.
Supports internal storage of equipment.
Supports DNS proxy and DDNS.
Supports NTP network timing.
Supports SNMP network management
Supports local logs and remote logs.
Supports QoS (Quality of Service) (optional), and it can perform various types of QoS bandwidth intelligent
management for business, protocols and IP network segments.
Supports static routing, RIPv2 (Routing Information Protocol) and OSPF (Open Shortest Path First) dynamic
routing, source address strategy routing.
Supports fixed time management to effectively control online surfing flow and duration.
Supports data trigger online and off-line at fixed time or when data is idle.
Supports the link detection functions such as LCP (Link Control Protocol) detection, ICMP (Internet Control
Message Protocol) detection to guarantee the stability and reliability of wireless network.
LED status monitoring (The status of power supply, system, 3G/4G network type and signal strength, etc.
is displayed).
Supports local and remote system running log functions to realize the monitoring of equipment operation
in real time.
Power supply
Other parameters
2 Product Structure
Chapter Content
2.1 Hardware
2.1.1 Appearance & Size
Appearance
Size
2.1.2 Accessories
Table 2-2 H8922S 4G router accessories
Chapter Content
3.1 Unpacking Unpack H8922S 4G router box and the packing list.
3.2 How to install How to install H8922S 4G router with SIM/UIM card and Ethernet cable, etc.
3.1 Unpacking
Upon arrival of the equipment, it is necessary to unpack the box and inspect whether the device and accesso-
ries are complete. Generally speaking, the complete set of equipment shall include the parts shown in Table 2-
2. The packing materials shall be properly kept for future use.
Before install SIM/UIM card, disconnect any power resource of the router.
Step 1 Use a small stick push the yellow button on router, the SIM slot will pop out as Figure 3-1
shows.
Step 2 Put SIM card in slot at proper direction as Figure 3-2 shows.
---END
An antenna must be connected before power-on to avoid the impedance mismatching of RF that causes
unsuccessful dial-up and Internet access due to poor signals.
Operating steps
Step 1 Inspect whether the antenna is correctly connected.
Step 2 Inspect whether the SIM card is correctly and properly installed and confirm whether the
SIM card is valid.
Step 3 Provide power supply for H8922S 4G Router. The following content is about the router
dialing with SIM 1, and it will be the same when using SIM 2.
After providing power supply, it means that the power supply for the router is normal in
case the LAN interface lamp of H8922S 4G Router connected with a lower computer is
bright.
After a certain period, it means the router system is started in case the RUN indicator lamp
of the router is bright.
After the RUN indicator lamp is bright for a while, it means that the router has found the
module and started dialing in case the NET indicator lamp is bright and flashing quickly.
During the dialing process, the RF lamp will be bright, which means that the router has ac-
quired the signal strength of the SIM card, and the network signal strength can be judged
as per the flashing condition of the RF lamp. See “4.1 Terminal Panel Indicator Lamp Status”
for details.
Upon the completion of router dialing, in case the NET lamp is normally on, it means that
the connected network is 3G/4G. In case it is flashing slowly, it means that the connected
network is 2G/2.5G/2.75G.
For different modules, the durations for the router to find all modules are various; in addition, the durations for dial-
ing are various due to different networks. Therefore, for different modules, the durations of router dialing and acquir-
ing IP addresses may vary. However, the router dialing process is exactly as specified above.
---End
4.1 Terminal Panel In- The terminal panel indicator lamp status of H8922S 4G Router is briefly intro-
dicator Lamp Status duced in the section.
4.2 Local Connection The local connection configuration process after installing H8922S 4G Router is
Configuration briefly introduced in the section.
PWR,SYS
Normally on: the system is started and working normally.
Off: the system is not completely started (within 10 seconds after power-on or dur-
ing restarting).
Normally on: the connection of interfaces and other equipment via network cable
WAN
is normal.
Flashing: There has data sending and transmission.
Off: no network cable is inserted or the connection of interfaces and other equip-
RF
Normally on: the signal strength is good, 21~31.
Quick flashing (0.5s flashing): the signal strength is medium, 11~20.
Slow flashing (2s flashing): the signal strength is poor, 1~10.
Off: no signal.
connected.
Quick flashing (0.5s flashing): in process of dialing.
Off: fail to find any module or dialing is forbidden.
Specify the IP
Step 1 Click “start > control panel”, find “Network Connections” icon and double click it to enter,
select “Local Area Connection” corresponding to the network card on this page. Refer to
the figure below.
Step 2 Double-click “Local Area Connection” to open the window of “Local Area Connection Sta-
tus” , as shown in Figure 4-2.
Step 3 Click “Properties” in the window of”Local Area Connection Status” to open the window of
“Local Area Connection Properties”.
There are two configuration methods for the latter configuration, the regular method
configuration and the advanced configuration.
General configuration
[Link]-click “Internet Protocol (TCP/IP)” in the window of “Local Area Connection Prop-
erties” to open the window of “Internet Protocol (TCP/IP) Properties” . Modify the general
network configuration in the General tab. As shown in Figure 4-5
Remember:
H8922S 4G Router LAN port factory default parameter:
IP address: [Link]
Subnet mask: [Link]
H8922S 4G Router factory default login parameter:
Management interface login IP address: [Link]
Login name: admin
Login password: admin
2. Click "OK" to complete the configuration.
Advanced configuration
In the original network environment configuration (steps 1 to 3), you do not want to inter-
rupt the local PC to continue LAN communication, and you can consider adding advanced
configuration when configuring the Router.
1. Click “Advance” in Figure 4-5 to open Advanced TCP/IP Settings, as shown in Figure 4-6.
2. Click “Add” in the IP address (R) to fill in the IP address to be configured, as shown in
Figure 4-7.
---END
H8922S 4G Router has a built-in DHCP (Dynamic Host Configuration Protocol) server, which automatically as-
signs an IP (Internet Protocol) address to the terminal (or PC) connected to it according to preset parameters.
The H8922S 4G Router's built-in DHCP service is turned on at the factory. The DHCP service is enabled before
the function is configured.
Step 4 Click “Start > Control” Panel. In the window that opens, double-click “Network Connections”,
as shown in Figure 4-8.
Step 5 Right-click “Local Area Connection 2” and click “Properties” in the pop-up menu to open the
window of”Local Area Connection 2” , as shown in Figure 4-9.
Step 6 In "This connection uses the following items (O):", select "Internet Protocol (TCP/IP)" and
double-click to enter the "Internet (TCP/IP) Properties" window, as shown in Figure 4-10.
Step 7 If the Internet Protocol (TCP/IP) attribute is as shown in Figure 4-8, no change is required.
If the Internet Protocol (TCP/IP) attribute is not as shown in Figure 4-10, select "Automati-
cally obtain an IP address" in "General".
Step 8 Click “OK” to complete the configuration.
---END
Configuration check
Step 9 Click “Start > Run”, enter the “cmd” command in the input box of “Run” and press Enter.
Open the “Run” window, as shown in Figure 4-11.
Step 10 In the window of "Run", enter the command "ipconfig". For the configuration method of
the above two connections, the IP Address displayed in the "ipconfig" window is different:in
the specified IP configuration method, the IP Address shows the IP address entered in Figure
4-3, as shown in Figure 4-11. In the configuration method of automatically obtaining IP ad-
dress from the router DHCP, the IP Address is displayed as "2~254". The random number,
as shown in Figure 4-12. The window shown in Figure 4-12 shows that the IP configuration
is normal.
Figure 4-12 The execution result of "ipconfig" in DHPC automatically obtaining IP mode.
Step 11 Enter the following command in the command line window to confirm whether the connec-
tivity is normal
Ping [Link]
If the interface shown in Figure 4-14 appears, the local computer is properly connected to
the H8922S 4G Router.
---END
5.1 Overview the configuration of the H8922S 4G Routers in the WEB mode is introduced in
this section briefly .
5.2 basic configuration what the H8922S 4G Routers need to complete before performing advanced
configuration is introduced in this section briefly.
5.3 Application the H8922S 4G Router application configuration, and how to configure it are
introduced in this section briefly.
5.4 Security the H8922S 4G Router security configuration, and how to configure it are intro-
duced in this section briefly .
5.5 Forward the H8922S 4G Router forwarding configuration, and how to configure it are
introduced in this section briefly .
5.6 VPN the H8922S 4G Router VPN functions, and how to configure them are intro-
duced in this section briefly .
5.7 System The H8922S 4G Router system management configuration, and the specific
configuration and operation methods are introduced in this section briefly .
5.8 Status This section briefly introduces the H8922S 4G Router status query, and status
query method.
Overview
H8922S 4G Router can be configured by WEB mode, which is easy to operate and intuitive. After the local con-
nection configuration of the PC and the H8922S 4G Routers is completed according to the "Local Area Connec-
tion Configuration", you can start Internet Explorer or other browsers on the PC and log in to the H8922S 4G
Routers for configuration.
Step 1 Open the Internet Explorer browser of the configuration computer and enter
"[Link] in the address bar. Enter the authentication page of the user login
identity, as shown in Figure 5-1.
Figure 5-1 The Local authentication page of the user login identity
Step 2 To log in as Local, just enter "Username", "Password" and then click "Login" to log in to the
WEB configuration page of H8922S 4G Router.
Step 3 To log in as Radius, you need to select "Radius Authentication", then enter the radius
username and password, and click "Login" to log in to the WEB configuration page of the
H8922S 4G Router.
When logging into the system for the first time. The default username is admin and the password is admin. To
change the password, please refer to "5.7.5 User Management".
---END
5.2.1 LAN
The LAN port configuration is mainly used for the connection between the router and the lower device, so that
the lower device can access the external network through the router, and at the same time ensure normal
communication between the network segments connected to the router.
Step 1 Log in to the WEB configuration interface of the H8922S 4G Router.
For details, see “5.2.1 Logging In to the WEB Configuration page”.
Step 2 Click “Network > LAN”.
Open the page of LAN , as shown in Figure 5-3.
Host name The name of router Manual input, Maximum length limited to 32 word
type character,Please refer to the “Parameter Spec-
ification Table” for input specifications.
IP1~4 Used to divide subnets, these Enter it manually. Format: A.B.C.D/M, please refer
subnets can communicate with to "Parameter Specification Table" for input specifi-
each other, and IP1~4 represent [Link] default IP1: [Link]/24, and IP2~4
4 subnets. are input in the above format, but the contents be-
tween the two cannot be the same.
Loopback The virtual interface address of Enter it manually. Format: A.B.C.D/M, please refer
address the router, which is configured to “Parameter Specification Table” for input speci-
and will not disappear due to the fications.
LAN interface being closed.
Lan Config- Duplex mode and port rate for The following pull frame selection method is used
ure setting the lan port to select the port rate and duplex mode. The de-
fault is auto mode.
Step 4 Click Save to complete the configuration of connection type of the LAN port .
When the user changes the IP1 address, if the page does not automatically jump, please make sure that the user's computer has
the same network address as the modified LAN address, or set the computer to automatically obtain the IP, and then enter the
new one in the browser.
---END
5.2.2 WAN
The WAN is mainly used to connect to the Internet through Ethernet. The connection modes are static IP,
DHCP, and PPPoE.
Configure the PPPoE ser- General WORD type, maximum 64 bytes, can not be
Service Name vice name, which is usu- empty, please refer to "Parameter Specification Ta-
ally used for identification ble" for input specifications.
and judgment between
the client and the server.
It is usually provided by
the server. The ADSL dial-
up is provided by the ISP.
Advanced parameters are Click "Hide" to display the parameters of the ad-
used in special cases. It is vanced settings.
usually not recom-
Advanced set- mended. For the parame-
tings ter description of "Ad-
vanced Settings", please
refer to the related pa-
rameters in Table 5-3.
Wan Configure Duplex mode and port The following pull frame selection method is used to
rate for setting the wan select the port rate and duplex mode. The default is
port auto mode
5.2.3 Modem
Mobile network is one of the core functions of H8922S 4G Router. H8922S 4G Router supports single-mode
single-card dialing and single-mode dual-card backup dialing. It provides high-speed wireless broadband access
for users. Internet access speeds of 3G can usually reach 1 to 5 Mbps, 3.5G networks can reach be up to 20
Mbps, and LTE can be up to nearly 100 Mbps.
Step 1 Log in to the WEB configuration page of the H8922S 4G Router.
For details, see “5.2.1 Logging In to the WEB Configuration Page”.
Step 2 Single click “Network > Modem”.
Open the page of Modem, as shown in Figure 5-5.
Step 3 “Add”, ”Edit”,” Delete”, “Enable”, and “Disable” actions for Mobile Network Parameters.
Action:
Add
1. Click “Add” to display the Add page of modem Configuration, as shown in Figure 5-6..
2. Add the "Modem" parameter. Table 5-3 describes the parameters of the modem.
dom or other functions are controlled). When the button is clicked, it will be grayed out
When multiple sets of modem parame- to indicate that the current state is in effect. If
ters are disabled, modem dialing is disa- "Enable" is grayed out, it indicates that the
bled. function or parameter is enabled.
APN The unique identifier of an interface. It is Alphanumeric WORD type, up to 12 bytes, non-
used when other functions are invoked empty,please refer to"Parameter Specification
or associated with the interface. For ex- Table" for input specifications.
ample, you can configure the route of
the interface and control the disable and
enable of the interface.
Service Code A type of code identifier for a net- CODE type, maximum 64 bytes, please refer
work, usually a fixed network of ser- to "Parameter Specification Table" for input
vices has a fixed service code. specifications.
Username The identity of the access operator WORD type / CODE type, each of which has
/Password network is used to access different a maximum length of 64 bytes, which are
private network services to isolate dif- both present or empty at the same time.
ferent private networks in the case of
private network services.
PIN Personal Identification Number, the Alphanumeric WORD type, please refer to
identification password of the SIM "Parameter Specification Table" for input
card, the user can use the PIN code to specifications.
unlock and lock the SIM card to pre-
vent illegal users from using it.
Network Use this option to force the required The drop-down box option options include:
auto
Type access network type to 2G or 3G/4G.
wcdma
Usually used when a network is unsta-
edge
ble or only wants to work on a net-
fdd-lte
work
tdd-lte
td-scdma
evdo
cdma
Compress (It needs to match the server when configuring. The default is all disabled.)
More
LCP inter- After PPP dialing succeed, LCP is Value area : 1~512
val/Retry needed to keep PPP link alive. Also it Unit: second
could be used to quickly spot network
interrupt and reconnect Default value: 30/5
MTU the number of bytes of the maximum Value area : 128~16364 byte
transfer unit by PPP interface, some-
times financial data has request on
this
MRU the number of bytes of the maximum Value area : 128~16364 byte
receive unit by PPP interface, some-
times financial data has request on
this
Professional
nomppe Do not suggest modify, please contact us for
mppe required help if necessary
mppe stateless
nodeflate
nobsdcomp
default-asyncmap
When the button is gray, it indicates that the corresponding action is already in effect. When you click Enable,
the Enable button is grayed out to indicate that the feature or parameter is currently enabled.
---END
5.2.4 WLAN
H8922S 4G Router provides two functions of WLAN AP and Station client. Through the AP function, H8922S 4G
Router can provide wireless LAN hotspots. Through the Station client function, H8922S 4G Router can be con-
nected to other AP device,The lower device of the H8922S 4G Router can access the external network through
the connected AP device.
Step 1 Log in to the WEB configuration page of the H8922S 4G Router.
For details, see “5.2.1 Logging In to the WEB Configuration page”.
Step 2 Single click “Network > WLAN”.
Open the page of WLAN. When you select different WLAN working modes (AP, Station),
the displayed pages are shown in Figure 5-8 and Figure 5-9. When the WLAN working
mode selects the station, you need to scan the surrounding APs to select an AP to access,
as shown in Figure 5-10.
Step 3 Configure parameters related to WLAN. The parameter description is shown in Table 5-4.
SSID The identity of the WLAN server. General WORD type, maximum 32 bytes,
please refer to "Parameter Specification Ta-
ble" for input specifications.
WLAN Encryption
WPA Renewal The time interval for the AP to verify Value area: 120-86400
Interval the WLAN client key; if the verifica- Units: Seconds
tion is passed, the WLAN connection
is continued, and if the verification
fails, the WLAN connection is dis-
connected.
When the working mode select station , H8922S 4G Router will automatically match according to the selected AP and the corre-
sponding encryption algorithm (to keep consistent with AP encryption); shared key update interval is required to fill in the con-
nections of AP key and interval.
---END
Status Enable the current rule. All enabled rules have only
Enable
one rule running at a time, and the associated inter-
Disable
faces in all disabled rules are disabled. For example,
select modem0, ipsec1, vpdn2 in rule0, and modem0,
ipsec1, and vpdn2 are disabled if rule0 is disabled.
Basic settings
Rule name Name identifier of a rule of parameter select , used Value area : [0,9]
to distinguish different rules.
Interval/Retry The interval between detections and the maximum Value area : 1~512
Times number of failures. If the number of failures reaches Units: seconds/time
the configured number, switch to the next rule to
work. Default: 60/3
Running timeout It is used to limit the maximum working time of the cur- Value area : 1~65535
rent rule. This parameter is invalid in rule0. This param-
eter is configured in other rules and switches to rule0 Units: seconds
after reaching the maximum working time. If it is not
configured, it is switched in the order of rule. Configura-
tion is not recommended when there is usually no strict
master/slave requirement.
Add interface detection rules
Interface name Name of the interface associated with the rule, such The drop-down box op-
as the modem interface name: modem0, modem2. tion is automatically
produced depending on
the number of interface
names currently config-
ured in the system.
Check method The detection method is divided into interface state Dropdown List
detection and ICMP detection, and it is determined state
whether it is necessary to switch to the next rule by icmp
checking the status or the link (switching after reach-
ing the maximum number of failures).
To ensure that the user controls the uplink and downlink of the router, the H8922S 4G Routers provide multiple functions for the
modem/modem2, such as parameter select, link backup, ICMP detection, task management, and trigger [Link] task man-
agement is to perform the action on the modem/modem2 and keep the state after the action is executed, and the parameter
select, the link backup, and the ICMP detection all perform the action on the modem/modem2 but do not maintain the state.
Therefore, the function of parameter select, ICMP detection, and task management trigger setting can only be performed on the
modem/modem2 without conflict, and can be used together.
In addition, when using the parameter select and link backup functions at the same time, make sure that the two functions use
different interface types. If you need to use, please contact our technical support staff.
---END
Step 3 Configure parameters related to “Network Type”. The parameter description is shown in Table 5-6.
DNS type Configure the DNS type of the router. If Dropdown List
you select an interface, you can obtain interface
the DNS automatically by using inter- custom
face dialing. If the WAN is static IP, you
must manually set the DNS.
When the "default route" selects the "eth0" interface and the WAN port is switched from DHCP or static IP
to PPPoE, the default route of the router needs to click "Save" on the page of"Network Type" to take ef-
fect and display.
---END
Step 3 Click “Add” to open the page for adding the “Link Backup” rule, as shown in Figure 5-15.
Figure 5-15 The page for adding the “Link Backup” rule
Step 4 Configure parameters related to”Link Backup”. The parameter description is shown in Table 5-7.
Running
If the current link is main link, shows the main link stability Value area:1-65535
Timeout time
if the current link is backup link, shows the shortest work-
Units: seconds
ing time
Note:
Running timeout is only suitable for switching between mas-
ter and slave
Interface Interface used for link switching Dropdown List
modem 0
Name
modem 1
eth1
eth0
Check Mode Link detection mode, it supports icmp detection and wget Dropdown List
icmp
detection mode (http)
http
Interval/Re-
The normal detection interval and the maximum number Value area:1-65535
try Times of failures of the link. The maximum number of failures ar- Units: seconds/times
rives to switch the link.
When the link backup function is enabled, the default route of the router is the default route of the link
backup [Link] the link backup is the master-slave switchover, the master link is switched to the primary
link as soon as the primary link is detected successfully.
---END
The Dynamic Host Configuration Protocol (DHCP) is a network protocol for a local area network. After the DHCP
function is enabled, the lower device can automatically obtain the dynamic IP.
Step 1 Log in to the WEB configuration page of the H8922S 4G Router.
For details, see “5.2.1 Logging In to the WEB Configuration Page”.
Step 2 Single click “Network > DHCP Server”.
Open the page of “DHCP Server” , as shown in Figure 5-16.
IP Pool The DHCP client can get the scope of IP address. The
Dropdown List
IP addresses range assigned for the DHCP client Se-
br0
custom
lecting interface represents using network segment
that the interface belongs to. This option can be
configured to specify the IP address range of the
lower machine, for example: only hope at most
four machine can automatically obtain the IP
Start IP Configure the starting IP address of the DHCP ad- Manual input
dress pool when the address pool is selected as cus- Format: A.B.C.D/Mask
tom.
Example: [Link]
End IP Configure the ending IP address of the DHCP ad- Manual input
dress pool when the address pool is selected as cus- Format: A.B.C.D/Mask
tom.
Example: [Link]
Gateway DHCP client access gateway IP source, divided into Dropdown List
Type default, br0, eth0, custom four categories, associ- Default value: default
ated interface, the interface IP assigned to the
DHCP client as a gateway
Gateway When the gateway type selects custom, it is usually Format: A.B.C.D
used when specifying the lower-end gateway IP. Example: [Link]
DNS Type DHCP client access to the DNS IP source, has a de- Dropdown List
default
fault, modem, eth0, br0, custom and so on, gen-
modem
erally do not recommend to modify the configura-
eth0
tion, especially under the dual modem application
br0
scenario configuration is not recommended
custom
IP, MAC binding is used to assign a fixed MAC within the specified range of IP addresses
IP Binding with the specified MAC: when a DHCP client Manual input
MAC Configure DHCP to obtain an IP ,need to specify the WORD Type MAC Format
DHCP client's MAC address Example: [Link]
---END
Step 3 "Add," "Edit," "Delete," "Enable," and "Disable" operations for "ICMP Detection."
Add
1. Click “Add”. The Add page of ICMP Detection is displayed, as shown in Figure 5-18.
2. Configure parameters for the ICMP detection service. The parameter description is shown in Table 5-9.
ICMP check To enable or disable ICMP check rules, multiple rules can Button
service be used simultaneously, and one specific rule can be disa- Enable
bled Disable
Basic Config
Rule Name ICMP Check rule name, just to distinguish different rules WORD type, max 12
bytes
Check Type Destination address of ICMP check, it supports two meth- Dropdown list:
ods of detecting ICMP and Domain. icmp
domain
Destination The destination address of the ICMP detection can be ei- WORD type, max 64
Address ther IP or domain name. To set the domain name, you bytes
need to ensure that the router is configured correctly.
Destination A backup destination address of ICMP check, if “destina- WORD type, max 64
backup tion address” cannot be linked by ICMP check, the “desti- bytes
nation backup” address will be checked, if still cannot
linked, the router will recognize ICMP check fails
Interval/Re- Check time interval and max check failure times when link Value area : 1~65535
try Times is OK, if check failure times reaches the max times, then Unit: second/time
“timeout action “ will be executed, e.g. “modem reset”
Source Inter- Router sends an ICMP detected packet's source address Dropdown List options
face br0
modem
eth0
Timeout ac- An action when check failure times reach max failure times. Dropdown List options
tion Can be modem-reset, reboot, custom
modem-reset: modem
redials
modem2-reset: mo-
dem2 redials
reboot: router reboots
custom: customized ac-
tion
Run com- If “Timeout action” is “custom”, this shall be configured. WORD type, max 64
mands Commands are BGO operation. It is not suggested to use, bytes
if need, please contact our technical engineers
If the ICMP is normal, it is sent according to the ICMP detection interval. If an abnormality occurs, the ICMP
packet is sent continuously according to the abnormal ICMP detection. If the detection destination address is
unreachable, the backup address is detected. If the number of times the backup address fails to be detected
also reaches the number of retransmissions, the router performs a "timeout action".
Modify
As shown in Figure 5-18, determine a parameter configuration record and click Modify to modify the parameter
record. The parameter description is shown in Table 5-9.
Delete
As shown in Figure 5-18, determine a parameter configuration record and click Delete to delete the parameter
record.
Enable
As shown in Figure 5-18, determine a parameter configuration record and click Enable to enable the parameter
record.
Disable
As shown in Figure 5-18, determine a parameter configuration record and click Disable to disable the parame-
ter record.
Refresh
Click “refresh” to refresh the current page.
---END
Step 3 Configure DDNS parameter. The parameter description is shown in Table 5-10.
Service Provider Select the DDNS service provider that Dropdown List options
router currently supports, don’t support 322
other providers 88ip
dnsexit
dyndns
zoneedit
changeip
noip
dnsomatic
duckdns
Token Enter when the Service Provider selects Word type,Maximum 64 bytes.
duckdns
Server Port Set the port number of the DDNS server Value area: 1~65535
provided by the service provider. The de- If empty, it means 80 port
fault port number is 80
Username/Pass Set user name/password of the DDNS Normal WORD type/CODE type, Maxi-
word service registered in the service provider mum 64 bytes.
User Domain Set the domain of the DDNS service pro- Normal WORD type, max 64 bytes
vided by the service provider
Update Interval Set the interval of the DDNS client ob- Value area: 120~86400
tains new IP, suggest 240s or above Unit: seconds
---END
Basic settings
Work Mode The working mode of the router Drop-down box selection.
GPS function, the default "Client".
Protocol The protocol used by the router for Radio button selection
GPS data transmission.
TCP
UDP
Server Port The port used by the GPS server. Value range: 1 to 65535
Packet header Set the content in the GPS data Enter it manually.
message data header Maximum input length: 64 bits
GPS report in- GPS data packet transmission in- Enter it manually.
terval terval Value range: 1 to 65535
Unit: second
Default 120
---END
H8922SS 4G Router system has built-in communication function with registration center and data center, which
can provide similar DTU (Data Transfer Unit), which is used to convert serial port data into IP data or convert IP
data into serial port. The wireless terminal device that transmits data through the wireless communication net-
work has the function of transparent data transmission function, and also provides a buffer function to avoid
packet loss caused by switching after the data center is switched.
When you select Client in Work Mode, the Data Center Settings tab and the Heartbeat Settings tab are
displayed, as shown in Figure 5-21.
When”DDP Client”is selected in “Work Mode”, the “Data Center Settings”tab and the “Heartbeat Settings”
tab will be displayed, and the parameter “Identity Code”will be displayed in “Basic Settings”, corresponding
to Figure 5- 22.
DDP client mode supports TCP and UDP protocols.
Support TCP, UDP, MQTT when "client mode" is selected in "working mode"
Step 3 If the DTU works in the server working mode, you need to configure the DTU as the parameter in the server
working mode, as shown in Figure 5-20.
Step 4 If the DTU works in the client/DDP client working mode, set the "working mode" to "DTU client" or "DDP
client" and configure the corresponding parameters. As shown in Figure 5-21 and Figure 5-22. The parameter
description is shown in Table 5-12.
Server Port The port number of the DTU data center (must be the same Enter it manually.
as the service port set by the server). Range 1-65535
Server IP or Do- The IP address or domain name of the DTU Data Center Format:A.B.C.D
main 2 Server (DSC), used to reserve each other with the "Service Word type
Address".
Server Port 2 The port number of the DSC data center (must be the same Enter it manually.
as the service port set by the server). Range 1-65535
Server IP or Do- The IP address or domain name of the DTU Data Center Format:A.B.C.D
main 3 Server (DSC), used to reserve each other with the "Service Word type
Address".
Server Port 3 The port number of the DSC data center (must be the same Enter it manually.
as the service port set by the server). Range 1-65535
Connect Interval The interval at which the client DTU and the server re-es- Enter it manually.
tablish a connection after the connection fails. Value range: 1 to 65535
Unit: second
Retry Times The maximum number of times the client DTU and the Enter it manually.
server try to connect after the connection fails. Value range: 1 to 65535
Unit: times
MQTT settings
Heartbeat Data Set the heartbeat to send content (when no data is sent, Enter it manually.
every time the heartbeat time, the router sends the content Maximum input length: 64
once) bits
Heartbeat Inter- Set the interval for heartbeat sending (when no data is sent,
Enter it manually.
val the router will send heartbeat content every other time)。 Value range: 1 to 65535
Unit: second
Serial port parameter setting (mainly used for correct connection between devices connected to the DTU port)
Rate The data transfer rate of the serial port. Drop-down list selection.
Set according to the actual
serial port requirements of
the DTU.
Default: 115200
Parity The way the data is verified. Drop-down list selection.
Set according to the actual
serial port requirements of
the DTU.
Value range: None, Odd,
Even
Default: None (no parity)
SNMP(Simple Network Management Protocol)can monitor routers remotely and get to know the status of rout-
ers (Support interface status check, like VPN, modem etc. MIB of our company shall be used).
Step 1 Log in to the H8922S 4G Router WEB configuration page.
For details, see “5.2.1 Logging In to the WEB Configuration Page”.
Step 2 Click “Applications >SNMP” to open the page of “SNMP”, as shown in Figure 5-21 .
Figure 5-24 The configuration page of “SNMP”(the V2 version configuration page above, the following figure is
the V3 version configuration page)
SNMP Version SNMP version setting, support for SNMPV2c Dropdown list:
and SNMPV3 SNMPV2c
SNMPV3
Port SNMP port, suggest to be default port161 Value area: 1~65535
Default: 161
Community The community password of the SNMP service WORD type, Maxium 32 bytes
that the SNMP client connects to the router
Trap Port Link-state router report server address’s port Value area: 1~65535
Default: 162
Source Interface Used to specify the source address of the mes- Dropdown list:
default
(configured when sage packet when communicating with the
br0
SNMP version is SNMP tool.
modem
selected for
eth0
SNMPV3)
SNMPv3 Setting
enter it)
Encryption (when Encryption mode selection, support AES and Dropdown list:
Mode selects Auth DES AES
Encryption Key (en- Used to encrypt and decrypt data with the snmp Enter it manually.
ter when Mode se- tool The value ranges from 8 to 32
lects Auth Priv) characters.
Step 4 Single click “save” icon to finish the configuration of SNMP.
Trap: One of the five data types of the SNMP protocol, which refers to the trap message reported by the managed device, indicat-
ing that the device is faulty or changed. H8922S 4G Router reports the type and content of the trap including: modem connection
status and which interface, which SIM card dial, VPDN/TUNNEL/IPSec interface connection and disconnection.
The MIB library corresponding to SNMP can be downloaded from our website. If necessary, please contact our technical staff.
---END
Server Port WMMP port No, shall be the same with Port Value area: 1~65535
No of M2M platform server
Source Inter- The source interface carried by the data com- Dropdown list:
face (selected munication between the router and the M2M default
when the pro- platform. When using this function, you need br0
tocol selects to turn off the MASQ function, otherwise the Modem
wmmp) message will be sent to change the source IP. eth0
Status Display the connection status Connected to the platform
shows connected, not connected
to the platform, it shows discon-
nected
Step 3 To add a new task management rule, click “Add” to enter the task management rule settings
page, as shown in Figure 5-24.
Status Enable timing rules. Multiple rules can be run at the options
same time, or one rule can be disabled. In addition Enable
to the time-interval type of action tasks, other func- Disable
tions need to be used together with the NTP ser-
vice. Otherwise, it is difficult to achieve reasonable
time task control.
Basic Config
Task type Task type has action task and status task. Action Dropdown List options:
task is for time point or time interval, while status modem-online
task is for time period (for “modem-online” and modem2-online
“modem2-online”), which means that the modem reboot
will be online (if down, modem will automatically custom
redial) during the configured time period. Modem
Action The command is a background operation com- WORD type. Maxium 64 digits
mand, which is usually not recommended. If you
need to configure it, please contact our technical
staff.
Set time
Time type Range or interval for status task or action task Dropdown List options:
range
interval
When “time type” select “range”
Clock To input hour and minute. When beginning and Value area: [00:00,23:59]
end hour and minute are the same, it means a time Format: HH:mm-HH:mm
point for action task
Week Days in a week for task. When “day” and “week” Value area: [1,7]
are both input, it means only if both conditions Format: X-X
meet, the task will begin
1 for Monday
When no trust number is added, the SMS service function can be used for any mobile phone number;when there is a trusted
number, only the trusted number can use the SMS service function.
---END
Source Interface Server IP or domain for The source interface IP carried by the communication
getting the GPS data message with Radius, the MASQ function needs to be
disabled when using this function, otherwise the
source IP may be changed.
5.4.1 IP Filter
IP filter refers to judgment whether to allow router to forward the data according to filter rules, thus to manage
internet surfing of PC in LAN. IP filter is used to allow part of PCs in LAN to visit external WAN network or
forbidden some PCs from visiting specific website.
Step 1 Log in to the H8922S 4G Router WEB configuration page.
For details, see “5.2.1 Logging In to the WEB Configuration Page”.
Step 2 Click “Security > IP Filter” to open the configuration page of”IP Filter”.As shown in Figure 5-
27.
Step 3 Click “Add” to add a new IP filter rule and configure IP filter parameter. There are two types
of IP filter: “Input” and “Forward”, as show in Figure 5-28 and Figure 5-29.
Type Select a filter type, you can choose according Dropdown List options
to their needs, "Input" or "Forward" Input
Input: whether to allow access to the router Forward
Forward: whether to allow the router for-
warding
Default Action The default action rule. You can select "Ac- Dropdown List options
cept" or " Drop " Accept
Accept: firewall to accept the package, which Drop
can be passed
Drop: firewall discards the packet directly
Mirror Rule When the filter type selects "Forward", it Dropdown List options
needs to be configured Enable
Enable: Base on the configured rules, system Disable
auto adds totally opposite rules in addition.
Opposite rules mean all the source ad-
dress/port and destination address/port are
reverse in the rules
Disabled: no treatment
Source IP
The source IP address of the packet Manual input
Format: A.B.C.D/Mask
Example: [Link] or
[Link]/24
Source Port The source Port of the packet, when the pro- Value area: 1-65535 or [1-
tocol choose "icmp", it don’t need to con- 65535], it can be a range, or a
figure single port
Destination Type Design an IP packet access router interface Dropdown List options
interface
any
Interface Configure when Destination Type select “In- Dropdown List options
terface”, means the IP packet access the br0
router interface modem
eth0
eth1
Destination Port IP packet access router ports (when the pro- Value area: 1-65535 or [1-
tocol select "icmp", requires no configura- 65535], it can be a range, or a
tion) single port
The IP input rule indicates whether other devices are allowed to access the router. The destination address in the rule can only
select the interface of the router. The IP forwarding rule indicates whether IP packets are allowed to be forwarded through the
router. The destination address in the rule can be the interface address of the router. All other IP addresses except.
After the port is configured in the rule, select the "all" protocol to indicate that both "tcp" and "udp" protocols are selected. When
the port is not configured in the rule, select "all" to indicate that "tcp" and "udp" are selected at the same time. "icmp" three
protocols.
--END
Black list: websites in the blacklist cannot be visited. Click “black list” to forbid visiting the websites in the
list.
White list: only the websites in the white list can be visited, while other websites cannot be visited. Click
“White list” to activate it.
Step 3 Click “ADD” to add a new domain filter rule and configure domain filtering parameter.
Domain keyword Keyword of domain for filter WORD type, max 64 digits.
E.g. [Link], the keyword is “google”.
Input configuration
Basic Settings
Default Action Default actions of the rule. Can be “accept” or “Drop”: To choose “accept” or
Accept: to accept all packages from this MAC. “Drop”
Drop: to drop all packages from this MAC.
Filter mode To choose “Input”, “Forward” or “Both”. To choose “Input”, “For-
Input: all packages visiting router. ward” or “Both”.
Forward: all packages forwarded by router.
Both: both Input and forward.
Step 3 Click "Mod" to open or close the 80 (HTTP), 23 (CLI), 5123 (SSH), 443 (HTTPS) ports of dif-
ferent interfaces. See below:
Interface The interface that needs to be configured for the port. No action required
The default is not to choose.
SSH The SSH port can be chosen to open or close . Radio button selection.
Open
Close
CLI The CLI port can be chosen to open or close . Radio button selection.
Open
Close
HTTP The HTTP port can be chosen to open or close . Radio button selection.
Open
Close
HTTPS The HTTPS port can be chosen to open or close . Radio button selection.
Open
Close
Step 4 Click Save to complete the configuration of opening or closing the port on the interface.
Step 5 Click the “Mod” button to enable or disable the ping function, see below:
Interface The interface that needs to be configured for the port. The No action required
default is not to choose.
ping The ping can be chosen to turn ping on or off Radio button selection.
Open
Close
Step 6 Click Save to complete the configuration that the ping function is open or closed.
---END
5.4.5 Anti-attack
A DDoS attack is a common type of network attack. If the attacked object is severe, the entire network may be
paralyzed. The device provides DDoS attack defense. This allows the device to reduce this network attack. In
addition, port scanning is also used by some hackers to attack the device. A large number of port scans also
occupy a large amount of resources of the device. The device provides a function of prohibiting port scanning,
which enables the device to reduce illegal port scanning.
DDoS service The DDos can be chosen to enable or Radio button selection.
disable. Enable
Disable
Port Scan Limit The function of port Scan Limit can be Radio button selection.
chosen to enable or disable.
Enable
Disable
Step 3 Click "Save"to finish the configuration of “Anti-attack” .
---END
5.5.1 NAT
The configuration of DNAT rule
The DNAT is a destination address replacement and is used to replace the destination address inside the exter-
nal network access router with the address set by the user.
Step 1 Click "Forward>NAT".
Open the configuration page of “NAT”. See below:
Step 2 Click the "Add" button and select a new DNAT rule with the conversion type "DNAT", see
below:
Basic Settings
Original Address (when the ini- The external address, the address Manual input
tial address type select “static”, needs to be converted Format1: A.B.C.D
needs to be configured)
Format2: A.B.C.D/Mask
Original port The port of external IP, the port Value area: 1~65535
need to be replaced
When a port is configured in the DNAT rule, the protocol selects "all" to select two protocols "tcp" and "udp";
when no port is configured in the DNAT rule, the protocol selects "all" to select "tcp" and "udp" , "icmp"
three kinds of agreements.
Original Port Source address port to be replaced. Value area: 1-65535 or [1-
65535], it can be a range, or a
single port
Mapping Address The type of new source address after the Dropdown List
interface
Type source address is replaced
static
Dropdown List
Interface Select the interface of the router as source ad-
br0
dress after replacement
modem
eth0
eth1
Mapping Address New source address after source address re- Format:
placement A.B.C.D
Mapping Port The new port which replaces the original port Value area: 1-65535 or [1-
of source address. 65535], it can be a range, or a
single port
When a SNAT rule is configured with port specified, selecting “all” in protocol means selecting two protocols contain
"tcp", "udp"; when a SNAT rule is configured with no port specified, selecting “all” in protocol means selecting three
protocols contains "tcp", "udp","icmp".
---END
Interface Select the IP of an interface as the communica- Select from Dropdown List:
tion address between the router LAN and the out-
side.
br0
modem
eth0
eth1
Step 3 Single click “save” to finish the configuration of MASQ.
MASQ rule: the source address of all packets in the LAN need to be transferred into the specific ip address of the router, so the PC
from the LAN can send packets out; If MASQ rule in the router will be deleted, the router LAN of the PC cannot communicate with
external network.
---END
Step 2 Click “Add” to add a new static route, configuration page. See below:
Basic Setting
Static routing will forward according to the destination address of the packet, if the router received the packet (e.g. source address
is [Link] destination address is [Link]), it will forward the packet to next hop according to the route which meets with the desti-
nation address ([Link]).
It will forward the packet to next hop according to the route which meets with the destination address ([Link]).
Policy routing will forward according to the source address of the packet, if the router received the packet (e.g. source address is
[Link] destination address is [Link]), it will forward the packet to next hop according to the route which meet with the source
address ([Link]).
Policy routing has higher priority than static routing, policy-based routing priority regardless of how much.
---END
5.5.3 QoS
QoS (Quality of Service) quality of service, is a security mechanism for the network, is a technique to solve the
network bandwidth allocation and network priority and other issues. When the network is overloaded or con-
gested, QoS to ensure that critical traffic is not delayed or dropped, while ensuring the efficient operation of
the network, our H8922S 4G Router supports custom QoS services.
Step 1 Click “Forward > Qos”.
Step 2 Open the configuration page of “Qos”. See below:
Ceil Rate In ensuring the basic rate and the Value area: 1~65535
spare bandwidth, the maximum Units: Kbps
bandwidth of the network ad-
dress of the communication can
be obtained with higher priority
will be given priority redundant
bandwidth
QoS is mainly used to allocate the average bandwidth for the users which access Internet through the router, or assigned specific
users with more bandwidth. If the router is connected with two subnets: [Link]/24 and [Link]/24, the router QOS can
control the rate of these two subnets; If the router's bandwidth is relatively well-off, the router can adjust the bandwidth based
on priority and redundancy of two subnets, that is, the router meets the high priority redundancy bandwidth firstly, then meets
the low priority subnet redundancy bandwidth.
---END
RIP Service Enable or disable RIP Service Click the button to select.
Enable
Disable
Redistribute Connected Whether to redistribute direct Click the button to select.
routes to RIP Enable
Disable
Redistribute Static Whether to redistribute static Click the button to select.
routes to RIP Enable
Disable
Redistribute Kernel Whether to redistribute kernel Click the button to select.
routes to RIP Enable
Disable
Step 3 Click “Add” to add a new RIP route, configuration page. See below:
Add Type Add the type of RIP Click the button to select Add Type
route When it is “Network”, need to configure destina-
tion network address.
When it is “Neighbor”, need to configure neigh-
bor’s IP address
Network(directly connect Add the destination Add the destination network of RIP route
to the router) network of RIP route Format: A.B.C.D/Mask
Neighbor(directly connect Add the neighbor’s IP Add the neighbor’s IP address of RIP route
to the router) address of RIP route Format: A.B.C.D
RIP is an interior gateway protocol. If the communications between the two routers do not go through another router, the two
routers are adjacent. The RIP protocol specifies that no information exchange between non-adjacent routers.
Routers exchanging information is all the information currently known to the router. That is its own routing table. At a fixed time
to exchange routing information (such as every 30 seconds), then the router receives the routing information to update the
routing table.
RIP protocol "distance" also known as "hops " (hop count), because each through a router hop count is incremented. The RIP
judges a better router according to the less routing hops, as the “shorter distance”. RIP allows a path can contain up to 15 rout-
ers. Therefore, when the distance reach to 16 hops, it means the destination unreachable. RIP visible only for small Internet.
---END
OSPF configuration
OSPF (Open Shortest Path First) protocol is one of the (Interior Gateway Protocol), the most widely used IGP,
for a single AS (autonomous system) in the routing decisions for large networks. OSPF business can be based
whether the user needs to be configured at the factory H8922S 4G Router.
Step 1 Click “Forward > OSPF”.
OSPF Service Enable or disable OSPF Service Click the button to select
Enable
Disable
Redistribute Connected Whether to redistribute direct routes Click the button to select
to OSPF Enable
Disable
Redistribute Static Whether to redistribute static routes Click the button to select
to OSPF Enable
Disable
Redistribute Kernel Whether to redistribute kernel routes Click the button to select
to OSPF Enable
Disable
Step 3 Click “Add” to add a new OSPF route, configuration page. See below:
Area Number Used to identify the network (only the Manual input
routers with the same domain address can Value area:[0,65535]
exchange routing information)
Neighbor The router can reach in the next hop Manual input
Format1: A.B.C.D/Mask
OSPF is a link-state (Link-state) routing protocol, commonly used for the same routing domain. Here, the routing domain is an
autonomous system, which refers to the routers can switch routing information through a unified network switching or routing
protocol routing policy in the AS, all OSPF routers maintains an identical description of the database structure AS, which is stored
in the database link status information corresponding routing domain, OSPF router is through this database to calculate its OSPF
routing table.
As a link-state routing protocol, OSPF link state broadcast data LSA (Link State Advertisement) sent to all routers in an area, which
is different from the distance vector routing protocols. Distance vector routing protocol passed some or all routing information of
the routing table to the adjacent routers.
---END
BGP configuration
Border Gateway Protocol (BGP) is a routing protocol for an autonomous system running on TCP. BGP is the only
protocol used to handle networks like the size of the Internet, and the only protocol that can properly handle
multiple connections between unrelated routing domains. BGP is built on the experience of EGP. The main
function of the BGP system is to exchange network reachability information with other BGP systems. Network
reachability information includes information about the listed autonomous systems (AS). This information ef-
fectively constructs a topology map of the AS interconnect and thereby clears the routing loop while imple-
menting policy decisions at the AS level.
Step 5 Configure the rule parameters of the route mode. See below:BGP rule parameter instruc-
tion
Neighbor The address of the device that the router Manual input
can reach at one hop. Format: A.B.C.D
BGP (Border Gateway Protocol) is a distance vector routing protocol that implements reachable routes be-
tween ASs (Autonomous System) and selects the best route.
BGP advantages:
BGP guarantees the security, flexibility, stability, reliability and efficiency of the network in many aspects.
BGP adopts authentication and GTSM to ensure network security.
BGP provides a variety of routing policies, which can flexibly route routes and guide neighbors to advertise
routes according to policies.
BGP provides route aggregation and route aging to prevent network flapping and effectively improve network
stability.
BGP uses TCP as its transport layer protocol (destination port number 179) and supports association with BGP
and BFD, BGP tracking, and BGP GR and NSR to improve network reliability.
In the scenario where the number of neighbors is large, the number of routes is large, and most of the neigh-
bors have the same egress policy, BGP uses the group-packaging technology to greatly improve the perfor-
mance of BGP packet delivery.
---END
VPDN English is Virtual Private Dial-up Networks, also known as virtual private dial-up network. It is a kind of
VPN service and is a virtual private dial-up network service based on dial-up users. That is, dial-up access to the
Internet is a secure virtual private network that is built using the bearer function of the IP network combined
with the corresponding authentication and authorization mechanism. It is a technology that has developed rap-
idly in recent years with the development of the Internet.
VPDN supports both L2TP and PPTP protocols.
Point to Point Tunneling Protocol (PPTP) is a network technology that supports multi-protocol virtual private
networks. It is also a Layer 2 protocol. Through this protocol, remote users can securely access the corporate
network through Windows mainstream operating systems and other systems equipped with peer-to-peer pro-
tocols, and can dial into the local ISP to securely connect to the corporate network through the Internet.
L2TP (Layer Two Tunneling Protocol) Abbreviation for Layer 2 Tunneling Protocol, which is a kind of VPDN (Vir-
tual Private Dial-Up Networking) technology, which is used for channel transmission of Layer 2 data. L2TP pro-
vides a means of remote access control. A typical application scenario is: a company employee dials into the
company's local network access server (NAS) through PPP, thereby accessing the company's internal network,
obtaining an IP address and accessing it. Network resources for the corresponding permissions. The employee's
access to the company's network is as safe and convenient as a corporate LAN.
Step 1 Click “VPN > VPDN” to open the configuration page of “VPDN”.
Step 2 Click “Add” to add a new VPDN [Link] shown in Figure 5-58.
Authentication & Encryption (matching with the server when configuring, defaults to negotiation)
Compress (configuration needs to match the server, the default is all disabled)
more
Peer's DNS Auto get peer DNS when PPP dialing. DNS is
Disable
necessary if want visit domain name. In order
Negotiation
to forbid LAN pc visit domain name, you may
disable it
LCP Interval/LCP After PPP dialing succeed, LCP is needed to Value area : 1~512
Retry keep PPP link alive. Also it could be used to Unit: second
quickly spot network interrupt and reconnect
Default value: 30/5
MTU the number of bytes of the maximum transfer Value area : 128~16364 byte
unit by PPP interface, sometimes financial
data has request on this
MRU the number of bytes of the maximum receive Value area : 128~16364 byte
unit by PPP interface, sometimes financial
data has request on this
Local IP Set the local IP address when PPP dialing, need A.B.C.D,
ISP support Example: [Link]
Professional
nomppe Do not suggest modify,
mppe required please contact us for help if
mppe stateless
necessary
nodeflate
nobsdcomp
default-asyncmap
---END
Tunnel name Name of the tunnel, cannot be modified after An easily identifiable name
save is recommended. Modifica-
tions are not allowed after
saving. The maximum sup-
port input is 8 characters.
Interface type To choose “interface” or “static IP” Select from Dropdown List.
Static IP
Interface
Local Extern in- This parameter will need to be set if “interface” Select from Dropdown List.
terface is selected in “interface type”. Choose any modem
Local extern IP This parameter need to be set if “static IP” is se- Format: interface type
lected for “interface type”. It is to set IP address A.B.C.D/M.
to external network
Tunnel Key When the tunnel mode is set to gre, the tunnel Enter it manually.
key is set to unlock the tunnel. The two sides of Input range: 0~4294967295
the tunnel must be set consistently.
Step 3 Click “Add” to add a new IPSec rule. There are 3 phases for IPSec configuration:
1. Phase 1 parameter
Basic Settings
Select Set the phase type of IPSec, including the Select “Phase 1”
first phase, the second phase, and the
third phase.
Policy Name The name of this stage is mainly used for To input the name of phase 1. Cannot be
the matching of the third stage. changed after save.
Supports up to 12 characters of input.
Initial Mode The first phase of IPSec negotiation Select from Dropdown List, “aggr” is rec-
mode, including "main" (main mode) and ommended
"aggr" (barbaric mode).
Encrypt First stage encryption method selection. Select from Dropdown List
des
3des
aes256
aes192
aes128
Hash First stage hash algorithm selection. Select from Dropdown List
md5
sha1
sha2_256
Authentica- The first stage of the certification method Select from Dropdown List:
tion selection. psk
Rsasig
xauth
IKE The first phase of the IKE version selec- Select from Dropdown List:
tion. ikev1
Ikev2
Pre Share To set pre share key Max 24 letters
Key
Self Identify Configure the IPSEC local ID to indicate You can fill in the IPSec local ID. It must be
the identity of the local end. If not config- the same as the peer ID preset by the IPSec
ured, the IP address is used. peer server.
Maxium 64 bytes.
Match Iden- Configure the IPSEC peer ID to indicate can fill in the IPSec peer ID, which is the
tify the peer identity. If not configured, the IP same as the local ID of the IPSec peer
address is used. server.
Word type,Maxium 64 bytes.
Group Name Configured here as the key length for the Select from Dropdown List
first phase of IKE negotiation. group768
group1024
group1536
group2048
group3072
Grouo4096
DPD Service To enable DPD service,The DPD peer de- Dropdown list:
tection needs to be supported by the Enable
peer server. It is used to check whether Disable
the IKE environment is normal. If the IKE
environment is abnormal, the IKE envi- Click “Enable” to enable the peer detection
ronment is renegotiated to ensure the se- service.
curity and connectivity stability and con-
nectivity of the IPSec environment.
DPD Retry Max times to continuous DPD check fail- Manual input
Times ure. Value area: 1~512
Unit: times
In above parameters, “Initial Mode”, “Encrypt”, “Hash”, “Authentication” “Pre Share Key”, “IKE Lifetime”,
“Group Name”DH Group” need to match parameter of IPSec server. “Self Identify” and “Match Identify” needs
to match “match Identify” and “Self Identify” of IPSec sever respectively.
See below parameters instruction of the second phase of the IPSec rule.
Table 5-39 The parameters of the second phase of the IPSec rule
Basic Settings
Select Set the phase type of IPSec, including Radio button selection.
the first phase, the second phase, and The second phase of the rule is added
the third phase. here, so select "Phase 2".
Policy Name The name of this stage is mainly used To input the name of phase 2. Cannot be
for the matching of the third stage. changed after save
Encrypt The choice of the second stage en- Select from Dropdown List
cryption method. des
3des
aes256
aes192
aes128
Hash The second stage of hash algorithm Select from Dropdown List
selection md5
sha1
Sha2_256
Group Name Used when perfect forward encryp- Select from Dropdown List
tion is enabled, here configured as the group768
key length for IPSec second-phase SA group1024
negotiation. group1536
group2048
group3072
Grouo4096
PFS Enabling or disabling perfect forward Select from Dropdown List
encryption, enabling perfect forward Select open or close according to the set-
encryption increases system over- tings of the peer IPSec server.
head, but increases IPSec security.
Local Protoport Configure the protocol and port that Manual input, the front box enters the
the local end needs to encrypt. protocol code, and the rear box enters
the port.
Remote Proto- Configure the protocol and port that Manual input, the front box enters the
port the peer needs to encrypt. protocol code, and the rear box enters
the port.
Transport Mode Supports tunnel, transport and auto. Select from Dropdown List
auto
Transport
tunnel
Local Subnet Set local subnet No need to set for “transport” mode,
only for “auto” and “tunnel”. Format:
A.B.C.D/M
Remote Subnet To set local subnet No need to set for “transport” mode,
only for “auto” and “tunnel”. Format:
A.B.C.D/M
Single click “save” to finish the configuration of phase 2 .
Among the above parameters, the transmission protocol, encryption method, hash algorithm, DH group, per-
fect forward encryption, key lifetime, etc. must be consistent with the IPSec server configuration; if the trans-
mission mode is set to automatic or tunnel mode, the local subnet and the remote terminal network must be
consistent with the configuration of the remote subnet and local subnet in the IPSec server.
The protocol code of the local protocol port and the remote protocol port must be the same, indicating that
one protocol is encrypted. When the local protocol port and the remote protocol port are configured, IPSec
encrypts the protocol and port, and other communications are not encrypted. When this parameter is not con-
figured, it means that IPSec encrypts all communications.
set the matching phase parameters of the IPSec rule. After the configuration is complete,
click “Save”.
When the encrypted interface selects br0 and the br0 interface has multiple addresses, the address selected by
IPSec is the IP1 address of br0.
Table 5-41 describes the parameters of the matching phase of the IPSec rule.
Table 5-40 The parameters of the matching phase of the IPSec rule.
Basic Settings
Select Set the phase type of IPSec, including the first Radio button selection.
phase, the second phase, and the third phase. The rule added here is the matching
phase, so select "IPSec".
Interface The name of this stage is mainly used for the A maximum of 12-bit strings are al-
Name matching of the third stage. lowed.
Fill in the name of the stage. Cannot
be modified after saving
Match Phase1 To select a matching name of “phase1” Select from Dropdown List.
Select the policy name for the first
Match Phase2 To select a matching name of “phase2” Select from Dropdown List
Select the policy name for the sec-
ond phase configuration.
Destination IP IP or domain name of the IPSec peer server. Fill in the IP or domain name of the
or Domain IPSec peer server.
Maximum allowable input of 64-bit
strings.
Encryption In- To select binding interface of IPSec. to bind Select from Dropdown List
terface VPDN/modem/br0 as local interface of IPSec
initial can support IPSec OVER VPDN. In addi-
tion, after binding, IPSec rule will change as
per the charge of binding interface. Thus can
resume link of IPSec dialing interface and keep
IPSec linked as soon as possible
---END
Status OpenVPN connection status display There are two states: disconnected,
connected
Local Virtual Display of virtual interface IP address after Display the IP address of the virtual
IP OpenVPN connection interface
Dev Dev represents the network interface type, and Dropdown list options:
supports two types: tun
Tun(OSI Layer 3):Simulates network layer de- tap
vice to operate the third layer data packets, Select the required working mode
such as IP packets from dropdown list.
Tap(OSI Layer 2):Equates to an Ethernet de- Demand consistent with peer.
vice to operate the second layer data packets,
such as Ethernet data frame.
Protocol
Data transfer protocol type settings: Dropdown list options:
TCP protocol: A kind of connection oriented
reliable transmission protocol, which is suitable
tcp
for the occasions where the reliability require-
udp
ment is high and the communication efficiency is Select the required working mode
not high. from dropdown list.
UDP protocol: A kind of non - connection un- Demand consistent with peer.
reliable transmission protocol, which is suitable
for the scene with relatively high efficiency and
relatively low reliability.
Destination Specifies connected server address WORD type,max 32 bytes.
IP or domain Demand consistent with peer.
Nobind Configure whether to bind to the specific local Click button options:
port. Enable
Disable
Authentica- Configuring the VPN data transfer mode: Dropdown list options:
tion SSL: encrypt the network connection in auth
transport layer, high safety factor. ssl
Text: transport with text form during trans-
text
mission, low safety factor Select the required data transfer
Auth: username + password + ca verification, type from dropdown list.
high security factor
Key Specifies the private key path for the current cli- WORD type,max 32 bytes.
ent
Cert Specifies the certificate file path for the current WORD type,max 32 bytes.”。
client
Tls Open TLS, if the server is open, the client must WORD type,max 32 bytes.
also open.
TLS: secure transport layer protocol (TLS) to pro-
vide confidentiality and data integrity between
two communication applications. The protocol
consists of two layers: the TLS record protocol
(TLS Record) and the TLS handshake protocol
(TLS Handshake)
Basic settings
Peer Extern IP The external interface IP of the peer Fill in the external interface IP of the tunnel
network of the tunnel is usually the peer network.
Tunnel Key Used to unlock the tunnel. The two Enter it manually.
sides of the tunnel must be set con- Input range: 0~4294967295
sistently.
Initiate Mode The first phase of IPSec negotiation Drop-down list selection.
mode, including "main" (main mode) main
and "aggr" (barbaric mode). aggr
Select the startup mode to be set from the
drop-down list. Generally, both ends have
NAT and use USERID to suggest "savage
mode".
Encrypt The choice of the first stage encryp- Drop-down list selection.
tion method des
3des
aes256
aes192
aes128
Hash The choice of the first stage hash al- Drop-down list selection.
gorithm md5
sha1
sha2_256
Group Name Configured here as the key length for Drop-down list selection.
the first phase of IKE negotiation. group768
group1024
group1536
group2048
group3072
group4096
IKE Lifetime The lifetime of the IKE key. Fill in the appropriate key life cycle.
Value range: 120~86400
Unit: second
Pre Share Key Set the pre-shared key. Fill in the pre-shared key preset by the IPSec
peer server.
An alphanumeric string of up to 64 charac-
ters in length.
Self Identify Configure the IPSEC local ID to indi- You can fill in the IPSec local ID. It must be
cate the identity of the local end. If the same as the peer ID preset by the IPSec
not configured, the IP address is peer server.
used. WORD [Link] alphanumeric string of up to
64 characters in [Link] addition, the local
identifier supports space input.
Match identify Configure the IPSEC peer ID to indi- You can fill in the IPSec peer ID. It must be
cate the peer identity. If not config- the same as the local ID preset by the IPSec
ured, the IP address is used. peer server.
WORD [Link] alphanumeric string of up to
64 characters in [Link] addition, the peer
identifier supports space input.
Lifetime Key lifetime of the IPSec SA (IPSec Fill in the life cycle of the appropriate key.
SA). Value range: 120~86400
Unit: second
SA Algorithm The choice of the second stage en- Drop-down list selection.
cryption and hash combination des-sha1
des-sha2_256
des-md5
3des-sha1
3des-sha2_256
3des-md5
aes128-sha1
aes128-sha2_256
aes128-md5
aes192-sha1
aes192-sha2_256
aes192-md5
aes256-sha1
aes256-sha2_256
aes256-md5
PFS After the key length is selected, the Drop-down list selection.
perfect forward encryption is auto- close
matically enabled. This is configured group768
as the key length of the IPSec sec- group1024
ond-phase SA negotiation. group1536
group2048
group3072
group4096
Encrypt Inter- Select the binding interface of IPSec Drop-down list selection.
face modem
eth0
br0
Nhrp Cisco Se- The NHRP next hop routing resolu- Enter it manually.
crets tion protocol is used to solve point- Maximum support input of 64 characters.
to-multipoint environmental data
communication problems. Fill in the
NHRP key here, and it needs to be
consistent with the peer.
For details ,please see “5.2.1 Logging In to the WEB Configuration Page”.
Step 2 Click “System>Local Log”.
Open the configuration page of”Local Log”. See below:
Step 3 Select type of “Local Log” and then click “View” to see log.
Click “Clear” to clear the log info in the “Log Table”, and click “Export” to export log in your
local PC.
There are 3 kinds of log:
Message: system log, to record the running log of router, usually for most of users.
Application: application program log, to record the Open or close of some application programs.
Kernel: kernel log of router, usually for R&D engineers.
---END
The remote log is mainly used to connect to the remote log server. The router can upload the local log to the
remote log server. The configuration steps are as follows:
Step 1 Log in to the WEB configuration page of the H8922S 4G Router.
For details ,please see “5.2.1 Logging In to the WEB Configuration Page”.
Log Status To enable or disable remote log Click “Enable”to enable the re-
mote log.
Remote IP or Domain IP address of the remote log server (ei- To input the IP address or domain
ther the IP address of the LAN side PC or to receive log
the public network address).
Remote Port Port number of the remote log server. Default port: 514
Step 4 Single click “save” to finish the configuration of “Remote Log” parameter.
A software tool Syslog is used to receive remote log in server. Syslog can be downloaded at website of [Link]
---END
5.7.3 Clock
H8922S 4G Router supports NTP (Network Time Protocol) network protocol timing. When the NTP network is
paired, the system time of the router can be ensured to correspond to the actual time. The functions such as
task management can be executed at the correct time. Specific steps are as follows.
Step 1 Log in to the WEB configuration page of the H8922S 4G Router.
For details ,please see “5.2.1 Logging In to the WEB Configuration Page”.
Step 2 Click “System > Clock” to open the page of “Clock”. See below:
Time Synch. Type Type to synchronize system time Select from Dropdown List:
Ntp(correcting time via the network)
Source Interface The original interface with the Select from Dropdown List:
modem
NTP server
eth0
Br0
NTP Server Backup NTP server Manual input server domain or IP address
Backup
NTP Synch. Inter- Interval for NTP client to check Value area: 1~65535
val time with NTP Server. E.g. every Unit: second
10 minutes
Default: 600 s
When select “Manual” in “Time Synch. Type”(This page only shows the configured time, the system real time
is in the upper right corner of the WEB page)
5.7.4 Account
“Account” User provides the ability for users to modify the username/password. At the same time, user man-
agement can modify the access port of the router's WEB and block other users from accessing the route.
Step 1 Log in to the WEB configuration page of the H8922S 4G Router.
For details ,please see “5.2.1 Logging In to the WEB Configuration Page”.
Step 2 Click “System > Account” to open the page of “Account”.AS shown in figure 5-74.
Account Type Visit the router on web Select from Dropdown List
Admin password Current password Enter the login password of the currently logged
in user.
New password con- To confirm the new pass- Manual input, max 64 word type.
firm word
“Account” only provides the user's modification function, and does not provide functions such as adding and
deleting.
If the "port" parameter has not been modified, you can log in to the router page by directly entering the IP
address of the router. If the port is modified to other numbers and the modification is successful, you need to
enter the IP address of the router to log in to the router page.
The admin can only modify the password of the admin itself, but cannot modify the password and parameters
of the guest; the guest itself has no function of “Account”.
Step 4 Click “Save” to finish [Link] the save is successful, the page will automatically
jump to the login page, and the user needs to enter the modified username/password to
enter.
---END
Step 3 Input IP address or domain to be tested in “Destination”, click “Ping, to check whether the
router can be linked with destination. See below:
Don't Fragment When the network detection type is "Ping", Single box.
you can set whether the ping packet carries Unchecked by default
the DF identifier. DF is the identification bit
of the slice.
Reslove Names When the network detection type is "MTR", Single box.
you can set whether to perform name reso- Unchecked by default
lution.
Trace: Traceroute. Through Traceroute, we can know what path the computer from the computer to the other
end of the Internet is. It takes a long time to send a small packet to the destination device until it returns. Each
device Traceroute on one path is measured 3 times. The output includes the time (ms) of each test and the
name of the device (if any) and its IP address.
---END
5.7.6 Files
Firmware Setting
The H8922S supports upgrading the system files on the local network. Before upgrading, please make sure that
you have obtained the target file of the system update and have saved the update files on the computer on the
LAN.
Step 1 Click “System > Files” to open the page of “Files”.As shown in figure 5-76.
Step 2 Click Browse, select the upgrade file locally, and click Upgrade to start the upgrade. If "Re-
store Default" is selected, the configuration of the router will be restored to the factory
settings after the patch or program is upgraded; if it is not selected, only the patch or pro-
gram will be upgraded, and the parameter configuration of the router will be maintained.
---END
Step 2 Press the RESET interface. Do not release it. Hold it, meanwhile power on router(After
power-on, keep pressing the “RESET”button for 2 to 5 seconds or more and then release
the “RESET”button
Step 3 Enter [Link] into the upgrade page in the browser of the PC, as shown below:
Step 4 Click “Browse” and select the upgrade file on the local PC, and then click Upload to start the
upgrade. See below:
The upgrade process will last for about 3 to 6 minutes. Please wait patiently and observe
the SYS indicator of the device. If the SYS indicator is on, the program upgrade is successful.
You can also PING br0 address on your PC (ping [Link] –t). if Ping ok, upgrading is OK.
---END
Backup setting
The H8922S series routers support backup and recovery of configuration files. See below:
Click “Browse”to view the configuration file that needs to be imported locally, and click “Import” to com-
plete the import of the file. If the parameters of the router are incorrect or the file is lost, you can use the
"Import" function to restore the parameters.
Click “Export” to export the configuration file to the local file to implement file/parameter backup.
After the backup file is imported, the system automatically restarts a Key: adding a key when exporting a file,
you need to enter the key when importing the file. Otherwise, the router will be garbled; the key can be left
blank. If the key is entered incorrectly during import, the router page will not be accessible and the key must be
8 digits.
The routers of the H8922S series support backup and recovery of BGP configuration files, as shown in Figure 5-
81.
Click “Browse” to view the BGP configuration file that needs to be imported locally. Click “Import” to
complete the import of the file. If the router parameters are incorrect or the
file is lost, you can use the "Import" function to restore the parameters.
Click Export to export the BGP configuration file to the local device to implement file/parameter backup.
Factory setting
H8922S 4G router has function to resume factory configuration. Users can set the configuration to factory mode,
and also can set the current configuration into default configuration and generate a default factory configura-
tion file in router. To resume this default factory setting, users can click “Load” in “factory setting”. If the default
factory configuration file is deleted, the router will be resumed back to initial factory setting.
Set as default: Save the current configuration as the default factory configuration.
Restore default: Restore the factory configuration.
Reboot
Click the "Restart" button to restart the system.
5.8 Status
Overview
H8922S 4G Router provides status display information. Through the status page, you can quickly view the basic
information, network status, and routing table information of the router.
Step 2 Click “Status > Base System information” to open the page of “Base Information”.
Click “Refresh” to re-detect the latest parameters of the system and display it to the current page.
Software Version Operating system and application software version information Not available
corresponding to the product
5.8.2 LAN
By viewing the "LAN Status" information of the H8922S 4G Router, you can learn the basic information of the
"LAN Status" of the H8922S 4G Router. The specific operation method is as follows.
Step 1 Log in to the WEB configuration page of the H8922S 4G Router.
For details ,please see “5.2.1 Logging In to the WEB Configuration Page”.
Step 2 Click “Status > LAN” to open the page of “LAN”.As shown in figure 5-84.
LAN status Displays whether the status of the current LAN interface function is Not available
enabled or disabled.
IP Displays the IP address configured for the LAN port. Not available
Subnet Mask Displays the network address where the configured LAN interface is Not available
located.
MAC Displays the physical address of the LAN network port. This address Not available
is generally fixed and unique.
Client List List of client information connected to the device through the LAN Not available
port
---END
5.8.3 WAN
By viewing the "WAN Status" information of the H8922S 4G Router, you can learn the basic information of the
"LAN Status" of the H8922S 4G Router. The specific operation method is as follows.
Step 1 Log in to the WEB configuration page of the H8922S 4G Router.
For details, please see “5.2.1 Logging In to the WEB Configuration Page”.
Step 2 Click “Status > WAN” to open the page of “WAN”. Because the WAN port has three forms
of static IP/DHCP/PPPOE, when the WAN port is in any of these three forms, the WAN status
displays the WAN information in this form. See below:
WAN Status Shows whether the status of the current WAN interface function Not available
is enabled or disabled.
Wan Type Displays the type of the current WAN interface. Not available
Status Displays the configured local IP address of the WAN port. Not available
Local IP Address Displays the network address where the configured WAN inter- Not available
face is located.
Remote IP Displays the physical address of the LAN NIC, which is generally Not available
fixed and unique.
Status To show the link status of WAN interface in PPPoE mode Not available
---END
5.8.4 Modem
By querying the status of the “modem”, you can learn about the "mobile network status" and "mobile network
device information". Therefore, it is determined whether the network and the device are normal according to
the relevant state. It is also conducive to analysis and problem solving of abnormal situations.
Step 1 Log in to the WEB configuration page of the H8922S 4G Router.
For details ,please see “5.2.1 Logging In to the WEB Configuration Page”.
Step 2 Click “Status > Modem” to open the page of “Modem”. As shown in figure 5-88. The param-
eter description is shown in Table 5-52.
Modem Select The name of the Modem rule that is currently dialed by the mobile Not available
network.
Up Time The online duration of the H8922S 4G Router after dialing the line is Not available
displayed.
Modem Status H8922S4G Router connection status with the wireless network. Not available
Contains both connected and disconnected states.
Network Type The type of network corresponding to the SIM card currently in ef- Not available
fect.
IP Address H8922S 4G Router obtained the external network IP address when Not available
dialing.
DNS H8922S 4G Router obtains the preferred DNS address when dialing. Not available
SIM Status The working status of the SIM corresponding to the card slot cur- Not available
rently used by the 4G Router.
SIM ICCID The ICCID number of the SIM card. Not available
SIM IMSI The IMSI number of the SIM card. Not available
LAC The location area code used by Modem dialing. Not available
RSRP The received power of the reference signal dialed by Modem. Only Not available
displayed when 4G dialing.
SINR The ratio of the signal dialed by Modem to the interference plus Not available
noise. Only displayed when 4G dialing.
---END
5.8.5 WLAN
You can learn the basic information about the WLAN of the router by viewing the WLAN Status information of
the H8922S 4G Router. The specific operation method is as follows.
Step 1 Log in to the WEB configuration page of the H8922S 4G Router.
For details ,please see “5.2.1 Logging In to the WEB Configuration Page”.
Step 2 Click “Status > WLAN”. The H8922S 4G Routers have WLAN and station modes. See below:
Basic information
AP Isolation The isolation status of the WLAN client device. Not available
Network Mode The network mode currently used by ap. Not available
Client information
Basic information
Status The state of the other APs connected to the WLAN when it Not available
is stationed.
IP Address IP address assigned to the router by the connected AP of the Not available
router
Mask Subnet mask assigned to the router by the connected AP of Not available
the router
Gateway The default gateway assigned to the router by the con- Not available
nected AP of the router
Primary DNS The preferred DNS address assigned to the router by the Not available
connected AP of the router
Secondary DNS The backup DNS address assigned to the router by the con- Not available
nected AP of the router
MAC Address MAC address of the connected AP of the router Not available
---END
Static route
Subnet Mask IP network the router can reach. It is used together with Not available
“Network”
Gateway Next hop IP address which the router will reach Not available
Policy route
---END
5.8.7 GPS
By querying the status of the routing table, you can learn the GPS information of the H8922S 4G Router.
Last Fix Time The display of the last specified time. Not available
Number Of Satellites The display of the number of satellites used by GPS. Not available
Used
Number Of Visible Display of the number of satellites available for GPS. Not available
Satellites
Height The height of the device from sea level. Unit M. Not available
--END
Flow chart The traffic usage information of the interface is displayed in Not available
real time through the picture. The speed of uploading and
downloading can be seen through the picture, the red line in-
dicates uploading, and the blue line indicates download。
Statistics It can display the average speed of uploading and download- Not available
ing within 5min, 10min, and 15min, and the peak speed.
--END
6 Typical application
6.1 Overview This section briefly introduces several typical application functions of the H8922S
4G Router.
6.2 Link backup func- This section briefly introduces a typical application example of the H8922S
tion Router trigger setting function.
6.3 Parameter select This section briefly introduces a typical application example of the H8922S 4G
function Router parameter select function.
6.4 VPN This section briefly introduces the H8922S 4G Router VPN application examples.
6.4 Schedule This section briefly introduces the practical application examples of the H8922S
4G Router task management functions.
6.1 Overview
The H8922S 4G Routers are widely used. The commonly used functions include on-demand dialing, parameter
link backup, and VPN. The following are some typical application scenarios provided by the H8922S 4G Router
systems.
Parameter configuration
In this scenario, you need to perform the configuration of Link Backup. For details, see "Link Backup."
Application result
After all the parameters are configured, the default route of the router goes to the eth0 (WAN) interface of the
primary link. If the router can ping the IP address of [Link], the router will always work on the primary
link. As shown in Figure 6-3, the backup link modem is always online. If the wired network (WAN port) fails to
ping [Link] due to a fault, the router will switch the link to the modem after multiple failures, so that
the services of the lower computer can be performed normally, as shown in below.
Figure 6-3 The primary link is detected normally and works on the primary link
Figure 6-4 The primary link fails to be detected and is switched to the backup link.
Configuration
In this scenario, you need to perform parameter select. For the configuration procedure, see Parameter select.
When the working L2TP link is disconnected from the server for some reason, the router performs the param-
eter "check icmp" in the parameter switch, and pings the configured destination IP to detect whether the router
is disconnected from the network operator. After failing to ping the destination IP address three times, the
router will switch to the PPTP link, maintain the connection with the server, and continue to work.
Application result
Initially, the PPTP link is used, and then the L2TP connection is disconnected. After the ping [Link] fails,
the router switches to the L2TP link and maintains the connection with the server, as shown in Figure 6-8.
6.4 VPN
Scene introduction
VPN is a virtual private network, which is a secure local area network based on the Internet. Currently, the
H8922S 4G Router supports L2TP/PPTP/GRE/IPIP/IPSec/OpenVPN six protocol VPNs.
L2TP is an abbreviation of Layer 2 channel protocol. It is a kind of VPDN (Virtual Private Dial-Up Networking)
technology, which is used for channel transmission of Layer 2 data. L2TP provides a means of remote access
control. The typical application scenario is that a company employee dials into the company's local network
access server (NAS) through L2TP to access the company's internal network, obtain an IP address, and access
it. Network resources for the corresponding permissions. The employee's access to the company's network is
as safe and convenient as a corporate LAN.
Here, IPSec is used to establish a communication link between employees and the company to ensure that
employees work as if they are accessing the corporate LAN, as shown in Figure 6-9.
PC1 establishes an IPSec link with the company's router through the VPN function of H8922S and uses tunnel
mode communication. The LAN address on the H8922S side is [Link]/24, and the LAN address on the
router side of the company is [Link]/24. Through the established IPSec connection, the two LANs can
communicate securely.
Parameter configuration
In this scenario, you need to configure the VPN function. For the configuration procedure, see 5.6.4 IPSec Set-
tings. Figure 6-10, Figure 6-111, and Figure 6-12 show the configuration.
The same configuration should be used on the router of the company. The difference is that the configuration
of the local end identifier, the peer end identifier, the local subnet, and the terminal network are opposite to
those of the H8922S 4G Router.
Application result
AAfter configuring the parameters of the H8922S 4G Router, and the company router, the two negotiate and
establish an IPSec connection, as shown in Figure 6-13. At this point, the LANs in the two places can access the
remote LAN as if they were accessing the local area network. At the same time, you can ping the company
subnet through this terminal network.
6.5 Schedule
Scene introduction
H8922S 4G Router support timing task, by setting timing task, at certain time, router will operate reboot, online
command. Etc. Easier the customer operation. I assume set the router online at certain time and keep a moment,
then reboot every 24 hours. You could set like below.
Application result
Router will be online at 10:05 AM and keep online until 10:08, then offline at 10:09.
And router will reboot every 24 hours count began last reboot.
---END
7 FAQ/Exception handling
Chapter Content
7.1 Hardware failure Possible hardware failure during using H8922S 4G Router and
how to handle them
7.2 Dial online problem Possible problem during dialing and how to handle them
7.4 WEB config problem config problem Possible WEB config problem and how to handle them
Possible Reason
Power supply does not match, it should be 5-36VDC
No power supply
Solution
Make sure the power supply is 5~36VDC
Check the power adapter and cable connection
Possible Reason
SIM slot damaged
Solution
SIM slot damaged, please contact us to repair
Check the SIM card direction, please make sure the SIM goldfinger is up
Possible Reason
Ethernet cable connection problem
Ethernet cable damage
PC end network card abnormal
Solution
Re-connect Ethernet cable
Change a Ethernet cable
Check network card setting on PC end
Possible Reason
Antenna type do not match
Wrong connection
Solution
Please check antenna interface, should be SMA-J
Please check antenna type, there are 3G/4G and WIFI, GPS antenna, do not mix them
Possible Reason
SIM card network type do not match
Solution
Change to a suitable SIM card
Recharge SIM card
Change to suitable power supply
Change Modem setting, please check related chapter
7.2.2 No Signal
Phenomenon
H8922S 4G Router modem status show no signal
Possible Reason
Antenna connect wrong
Modem cannot online
Modem offline
Solution
Connect suitable antenna
Modem cannot online, check SIM and modem setting
Modem offline, check router setting, like wake up setting, ICMP setting, check if there are any setting
make router offline
Possible Reason
SIM card damage
SIM bad contact
Solution
Replace SIM card
Re-install SIM card
Possible Reason
Antenna connect wrong
Area signal weak
Solution
Check the antenna and re-connect it.
Contact Telecom Operator to confirm signal problem
Change to high-gain antenna
Possible Reason
Modem compress protocol do not match with server end
Solution
Change compress protocol setting
Possible Reason
VPDN port work abnormal
VPDN parameter wrong
VPDN peer server abnormal
Solution
Make sure Modem is online
Set the correct port to VPDN
VPDN parameter wrong
Check VPDN peer server
Possible Reason
Router table config wrong
VPN peer server config wrong
Solution
Add related Router table
Check VPN peer server setting
Possible Reason
VPN peer server config wrong
Local Router has no MASQ
Wrong local route table
Solution
Check VPN peer server setting
Local Router has no MASQ, please manual add VPN port MASQ
Wrong local route table, set right route table
Possible Reason
Auto reboot during updating H8922S 4G Router
Power supply problem
Wrong firmware
Power off during updating router
Solution
Check setting, disable the function which may cause reboot
Change to a suitable power supply
Ask technical support for suitable firmware
Power off during updating router, please make sure power supply normal
Possible Reason
Backup setting file format wrong
No reboot after backup setting
Solution
Choose a right file to import
Must reboot after import setting, then parameters available
Possible Reason
Patch format wrong
Patch name too complicated
Solution
Check patch format, change to a right one
Change the patch name to a simple one
Possible Reason
Power supply do not match
Firmware version or format do not match
Power off during updating process
Solution
If power supply do not match, please change then update again
If firmware version, format do not match, please change then update again
If power off during updating, please update again
Possible Reason
Firmware oversize cause updating failure
Solution
Using CFE mode to update again, and router will restore to factory mode. If after CFE updating, still cannot
visit WEB GUI, please contact us for repairing
Possible Reason
User has changed the password
Solution
After router power on, push and hold RESET button over 10 seconds then release, then re-power on router,
router will back to factory mode (Username/Password both admin), but patch will reserve
When router is power on, press and hold RESET button around 1s, router will reboot and kept all setting.