SlideShare a Scribd company logo
1 of 194
Download to read offline
Cambium
PMP 450 Configuration
and User Guide
System Release 12.0
PMP 450 module essential information

 Default IP Address for Management GUI Access   169.254.1.1


 Default Administrator Username                 admin


 Default Administrator Password                 (no password)



                                                See ―Updating the software version and using
 Software Upgrade Procedure                     CNUT‖ in the PMP 450 Configuration and User
                                                Guide



                                                1.   On the radio GUI, navigate to Configuration,
                                                     Unit Settings and select Set to Factory Defaults


                                                OR


                                                2.   On the radio GUI, navigate to Configuration,
 Resetting to Factory Defaults (2 options)
                                                     Unit Settings and enable and save option Set to
                                                     Factory Defaults Upon Default Plug Detection.
                                                     When the unit is powered on with a
                                                     default/override plug (see section ―Acquiring the
                                                     Override Plug‖ in the PMP 450 Configuration
                                                     and User Guide) the radio will be returned to its
                                                     factory default settings.




                                                                     pmp-0050 (September 2012)
Accuracy
 While reasonable efforts have been made to assure the accuracy of this document, Cambium Networks
 assumes no liability resulting from any inaccuracies or omissions in this document, or from use of the
 information obtained herein. Cambium reserves the right to make changes to any products described herein
 to improve reliability, function, or design, and reserves the right to revise this document and to make changes
 from time to time in content hereof with no obligation to notify any person of revisions or changes. Cambium
 does not assume any liability arising out of the application or use of any product, software, or circuit
 described herein; neither does it convey license under its patent rights or the rights of others. It is possible
 that this publication may contain references to, or information about Cambium products (machines and
 programs), programming, or services that are not announced in your country. Such references or information
 must not be construed to mean that Cambium intends to announce such Cambium products, programming,
 or services in your country.
 Copyrights
 This document, Cambium products, and 3rd Party Software products described in this document may include
 or describe copyrighted Cambium and other 3rd Party supplied computer programs stored in semiconductor
 memories or other media. Laws in the United States and other countries preserve for Cambium, its licensors,
 and other 3rd Party supplied software certain exclusive rights for copyrighted material, including the
 exclusive right to copy, reproduce in any form, distribute and make derivative works of the copyrighted
 material. Accordingly, any copyrighted material of Cambium, its licensors, or the 3rd Party software supplied
 material contained in the Cambium products described in this document may not be copied, reproduced,
 reverse engineered, distributed, merged or modified in any manner without the express written permission of
 Cambium. Furthermore, the purchase of Cambium products shall not be deemed to grant either directly or by
 implication, estoppel, or otherwise, any license under the copyrights, patents or patent applications of
 Cambium or other 3rd Party supplied software, except for the normal non-exclusive, royalty free license to
 use that arises by operation of law in the sale of a product.
 Restrictions
 Software and documentation are copyrighted materials. Making unauthorized copies is prohibited by law. No
 part of the software or documentation may be reproduced, transmitted, transcribed, stored in a retrieval
 system, or translated into any language or computer language, in any form or by any means, without prior
 written permission of Cambium.
 License Agreements
 The software described in this document is the property of Cambium and its licensors. It is furnished by
 express license agreement only and may be used only in accordance with the terms of such an agreement.
 High Risk Materials
 Components, units, or 3rd Party products used in the product described herein are NOT fault-tolerant and
 are NOT designed, manufactured, or intended for use as on-line control equipment in the following hazardous
 environments requiring fail-safe controls: the operation of Nuclear Facilities, Aircraft Navigation or Aircraft
 Communication Systems, Air Traffic Control, Life Support, or Weapons Systems (High Risk Activities).
 Cambium and its supplier(s) specifically disclaim any expressed or implied warranty of fitness for such High
 Risk Activities.
                     © 2012 Cambium Networks, Inc. All Rights Reserved.




pmp-0050 (September 2012)
PMP 450 Configuration and User Guide                                     Safety and regulatory information




Safety and regulatory information
      This section describes important safety and regulatory guidelines that must be observed by personnel
      installing or operating PMP 450 equipment.


Important safety information

       To prevent loss of life or physical injury, observe the safety guidelines in this section.


      Power lines
      Exercise extreme care when working near power lines.


      Working at heights
      Exercise extreme care when working at heights.


      Grounding and protective earth
      PMP 450 units must be properly grounded to protect against lightning. It is the user‘s responsibility to
      install the equipment in accordance with national regulations. In the USA, follow Section 810 of the
      National Electric Code, ANSI/NFPA No.70-1984 (USA). In Canada, follow Section 54 of the Canadian
      Electrical Code. These codes describe correct installation procedures for grounding the outdoor unit,
      mast, lead-in wire and discharge unit, size of grounding conductors and connection requirements for
      grounding electrodes. Other regulations may apply in different countries and therefore it is
      recommended that installation of the outdoor unit be contracted to a professional installer.


      Powering down before servicing
      Always power down and unplug the equipment before servicing.


      Primary disconnect device
      The AP or SM unit‘s power supply is the primary disconnect device.


      External cables
      Safety may be compromised if outdoor rated cables are not used for connections that will be exposed to
      the outdoor environment.




pmp-0050 (September 2012)                                                                                        i
Safety and regulatory information                               PMP 450 Configuration and User Guide



      RF exposure near the antenna
      Radio frequency (RF) fields will be present close to the antenna when the transmitter is on. Always
      turn off the power to the PMP 450 unit before undertaking maintenance activities in front of the
      antenna.


      Minimum separation distances
      Install the AP/SM so as to provide and maintain the minimum separation distances from all persons.
      The minimum separation distances for each frequency variant are specified in Calculated distances and
      power compliance margins on page 2-11.


Important regulatory information
      The PMP 450 product is certified as an unlicensed device in frequency bands where it is not allowed to
      cause interference to licensed services (called primary users of the bands).


      Radar avoidance
      In countries where radar systems are the primary band users, the regulators have mandated special
      requirements to protect these systems from interference caused by unlicensed devices. Unlicensed
      devices must detect and avoid co-channel operation with radar systems.
      Installers and users must meet all local regulatory requirements for radar detection. To meet these
      requirements, users must set the correct region code during commissioning of the PMP 450. If this is
      not done, installers and users may be liable to civil and criminal penalties.
      Contact the Cambium helpdesk if more guidance is required.


      USA and Canada specific information
      The USA Federal Communications Commission (FCC) has asked manufacturers to implement special
      features to prevent interference to radar systems that operate in the 5250-5350 and 5470-5725 MHz
      bands. These features must be implemented in all products able to operate outdoors in the UNII band.
      The use of the 5600 – 5650 MHz band is prohibited, even with detect-and-avoid functionality
      implemented.
      Manufacturers must ensure that such radio products cannot be configured to operate outside of FCC
      rules; specifically it must not be possible to disable or modify the radar protection functions that have
      been demonstrated to the FCC.
      In order to comply with these FCC requirements, Cambium supplies variants of the PMP 450 for
      operation in the USA or Canada. These variants are only allowed to operate with region codes that
      comply with FCC/IC rule.




ii                                                                          pmp-0050 (September 2012)
Contents                                                                                       PMP 450 Configuration and User Guide




Contents
     PMP 450 module essential information .......................................................................................................... 2
Safety and regulatory information ........................................................................... i
      Important safety information................................................................................................................... i
            Important regulatory information........................................................................................................... ii
About This Configuration and User Guide .............................................................. ix
  General information ........................................................................................................................................ x
            Version information ................................................................................................................................. x
            Contacting Cambium Networks ............................................................................................................... x
     Problems and warranty ................................................................................................................................ xii
     Security advice ............................................................................................................................................ xiv
     Warnings, cautions, and notes ...................................................................................................................... xv
Chapter 1: Configuration and alignment ........................................................... 1-1
  Preparing for configuration and alignment.................................................................................................. 1-2
            Safety precautions during configuration and alignment ....................................................................... 1-2
     Task 1: Connecting to the unit ..................................................................................................................... 1-3
            Configuring the management PC .......................................................................................................... 1-3
            Connecting to the PC and powering up................................................................................................. 1-5
            Logging into the web interface ............................................................................................................. 1-5
     Task 2: Configuring IP and Ethernet interfaces .......................................................................................... 1-6
            Configuring the AP IP interface ........................................................................................................... 1-6
            NAT, DHCP Server, DHCP Client, and DMZ in SM ............................................................................ 1-8
            Configuring the SM IP interface with NAT disabled .......................................................................... 1-12
            Configuring the SM IP interface with NAT enabled ........................................................................... 1-14
            NAT tab of the SM with NAT disabled .............................................................................................. 1-15
            NAT tab of the SM with NAT enabled ............................................................................................... 1-19
            Reconnecting to the management PC ................................................................................................. 1-24
            VLAN Tab of the AP ......................................................................................................................... 1-25
            VLAN Membership Tab of the AP ..................................................................................................... 1-29
            VLAN Tab of the SM ......................................................................................................................... 1-30
            VLAN Membership Tab of the SM ..................................................................................................... 1-34
            PPPoE Tab of the SM ........................................................................................................................ 1-35
            NAT Port Mapping Tab of the SM ..................................................................................................... 1-38
     Task 3: Upgrading the software version and using CNUT ......................................................................... 1-39
            Checking the installed software version .............................................................................................. 1-39
            Upgrading to a new software version.................................................................................................. 1-40
     Task 4: Configuring General and Unit settings .......................................................................................... 1-43
            General Tab of the AP ........................................................................................................................ 1-43
            Unit Settings Tab of the AP ............................................................................................................... 1-48
            General Tab of the SM ........................................................................................................................ 1-50

pmp-0050 (September 2012)                                                                                                                                           i
PMP 450 Configuration and User Guide                                                                                                                  Contents


           Unit Settings Tab of the SM ............................................................................................................... 1-53
           Time tab of the AP ............................................................................................................................. 1-54
     Task 5: Configuring security ...................................................................................................................... 1-56
           Isolating APs from the internet .......................................................................................................... 1-56
           Encrypting radio transmissions .......................................................................................................... 1-57
           Managing module access by passwords ............................................................................................... 1-57
           Requiring SM Authentication ............................................................................................................ 1-61
           Filtering protocols and ports .............................................................................................................. 1-61
           Encrypting downlink broadcasts ........................................................................................................ 1-64
           Isolating SMs ...................................................................................................................................... 1-64
           Filtering management through Ethernet ........................................................................................... 1-64
           Allowing management only from specified IP addresses .................................................................... 1-65
           Configuring management IP by DHCP .............................................................................................. 1-65
           Restricting radio Telnet access over the RF interface ........................................................................ 1-65
           Security Tab of the AP ....................................................................................................................... 1-68
           Protocol Filtering tab of the AP ......................................................................................................... 1-71
           Port configuration tab of the AP ........................................................................................................ 1-72
           Security Tab of the SM ....................................................................................................................... 1-73
           Protocol Filtering Tab of the SM ........................................................................................................ 1-77
           Port configuration tab of the SM ........................................................................................................ 1-78
     Task 6: Configuring radio parameters ........................................................................................................ 1-80
     Task 7: Setting up SNMP agent ................................................................................................................. 1-87
           SNMP Tab of the AP.......................................................................................................................... 1-88
           SNMP Tab of the SM ......................................................................................................................... 1-91
     Task 8: Configuring syslog ......................................................................................................................... 1-94
           Configuring AP system logging (syslog) ............................................................................................. 1-94
           Configuring SM system logging (syslog) ............................................................................................. 1-95
     Task 9: Configuring remote access ............................................................................................................. 1-96
           Configuring SM IP over-the-air access................................................................................................ 1-96
           Accessing SM over-the-air by LUID ................................................................................................... 1-97
     Task 10: Monitoring the AP-SM Link ........................................................................................................ 1-98
         Monitoring the AP-SM Link ............................................................................................................... 1-98
     Task 11: Configuring quality of service .................................................................................................... 1-100
           Maximum Information Rate (MIR) Parameters .............................................................................. 1-100
           Token Bucket Algorithm .................................................................................................................. 1-100
           MIR Data Entry Checking ............................................................................................................... 1-101
           Bandwidth from the SM Perspective ................................................................................................ 1-101
           Interaction of Burst Allocation and Sustained Data Rate Settings .................................................. 1-102
           High-priority Bandwidth ................................................................................................................. 1-102
           Traffic Scheduling ............................................................................................................................ 1-103
           Setting the Configuration Source ...................................................................................................... 1-104
           Quality of Service (QoS) Tab of the AP ............................................................................................ 1-106
           DiffServ Tab of the AP ..................................................................................................................... 1-108
           Quality of Service (QoS) Tab of the SM ............................................................................................ 1-109
           DiffServ Tab of the SM ..................................................................................................................... 1-111
ii                                                                                                                       pmp-0050 (September 2012)
PMP 450 Configuration and User Guide                                                                                                                                 Contents



     Task 12: Configuring a RADIUS server ................................................................................................... 1-113
            Understanding RADIUS for PMP 450 ............................................................................................ 1-113
            Choosing Authentication Mode and Configuring for Authentication Servers - AP ...................... 1-114
            SM Authentication Mode – Require RADIUS or Follow AP ...................................................... 1-116
            Handling Certificates ........................................................................................................................ 1-118
            Configuring your RADIUS servers for SM authentication ............................................................... 1-119
            Assigning SM management IP addressing via RADIUS .................................................................. 1-120
            Configuring your RADIUS server for SM configuration .................................................................. 1-121
            Using RADIUS for centralized AP and SM user name and password management ......................... 1-123
            RADIUS Device Data Accounting ................................................................................................... 1-127
            RADIUS Device Re-Authentication ................................................................................................ 1-130
            RADIUS Attribute Framed-IP-Address .......................................................................................... 1-131
Chapter 2: Reference information ..................................................................... 2-1
  Equipment specifications ............................................................................................................................. 2-2
            AP specifications .................................................................................................................................. 2-2
            SM specifications .................................................................................................................................. 2-4
     Wireless specifications ................................................................................................................................. 2-7
         General wireless specifications .............................................................................................................. 2-7
     Data network specifications ......................................................................................................................... 2-8
            Ethernet interface................................................................................................................................. 2-8
     Compliance with safety standards ............................................................................................................... 2-9
            Electrical safety compliance ................................................................................................................. 2-9
            Electromagnetic compatibility (EMC) compliance ............................................................................... 2-9
            Human exposure to radio frequency energy ......................................................................................... 2-9
     Compliance with radio regulations ............................................................................................................. 2-13
            Type approvals ................................................................................................................................... 2-13
            FCC compliance testing ...................................................................................................................... 2-13
            Region Codes ...................................................................................................................................... 2-14
            FCC and ICC IDs and certification numbers ...................................................................................... 2-16
     Notifications .............................................................................................................................................. 2-17
            PMP 450 regulatory compliance ......................................................................................................... 2-17
Chapter 3: Legal information ............................................................................ 3-1
  Cambium Networks end user license agreement .......................................................................................... 3-2
            Acceptance of this agreement ............................................................................................................... 3-2
            Definitions ............................................................................................................................................ 3-2
            Grant of license ..................................................................................................................................... 3-2
            Conditions of use ................................................................................................................................... 3-3
            Title and restrictions............................................................................................................................. 3-4
            Confidentiality ...................................................................................................................................... 3-4
            Right to use Cambium‘s name .............................................................................................................. 3-4
            Transfer ................................................................................................................................................ 3-5
            Updates ................................................................................................................................................ 3-5
            Maintenance ......................................................................................................................................... 3-5
            Disclaimer ............................................................................................................................................. 3-6

pmp-0050 (September 2012)                                                                                                                                                   iii
PMP 450 Configuration and User Guide                                                                                                                   Contents


           Limitation of liability ........................................................................................................................... 3-6
           U.S. government ................................................................................................................................... 3-7
           Term of license ...................................................................................................................................... 3-7
           Governing law ...................................................................................................................................... 3-7
           Assignment ........................................................................................................................................... 3-7
           Survival of provisions ........................................................................................................................... 3-8
           Entire agreement .................................................................................................................................. 3-8
     Hardware warranty ..................................................................................................................................... 3-9
     Limit of liability ........................................................................................................................................ 3-10
Appendix A:               Glossary ............................................................................................ I




iv                                                                                                                        pmp-0050 (September 2012)
List of Figures                                                                            PMP 450 Configuration and User Guide




List of Figures
Figure 1 NAT disabled implementation ............................................................................................................ 1-9
Figure 2 NAT with DHCP client and DHCP server implementation .............................................................. 1-10
Figure 3 NAT with DHCP client implementation ........................................................................................... 1-10
Figure 4 NAT with DHCP server implementation .......................................................................................... 1-11
Figure 5 NAT without DHCP implementation .............................................................................................. 1-11
Figure 6 IP tab of the SM with NAT disabled................................................................................................. 1-12
Figure 7 IP tab of SM with NAT enabled ....................................................................................................... 1-14
Figure 8 NAT tab of the SM with NAT disabled ............................................................................................. 1-15
Figure 9 NAT tab of the SM with NAT enabled ............................................................................................. 1-19
Figure 10 VLAN tab of the AP ....................................................................................................................... 1-25
Figure 11 VLAN Membership tab of the AP ................................................................................................... 1-29
Figure 12 VLAN tab of the SM ....................................................................................................................... 1-30
Figure 13 VLAN Membership tab of the SM .................................................................................................... 1-34
Figure 14 Unit Settings tab of the AP ............................................................................................................. 1-48
Figure 15 General tab of the SM...................................................................................................................... 1-50
Figure 16 Unit Settings tab of the SM ............................................................................................................. 1-53
Figure 17 Time tab of the AP .......................................................................................................................... 1-54
Figure 18 General Status tab view for GUEST-level account ......................................................................... 1-58
Figure 19 SM Add User tab ............................................................................................................................. 1-58
Figure 20 Delete User tab of the SM ............................................................................................................... 1-59
Figure 21 RJ-11 pinout for the override plug .................................................................................................. 1-60
Figure 22 Categorical protocol filtering ........................................................................................................... 1-63
Figure 23 Ports filtered per protocol selection ................................................................................................. 1-63
Figure 24 RF Telnet Access Restrictions (orange) and Flow through (green) ................................................. 1-66
Figure 25 RF Telnet Access Restriction (orange) and Potential Security Hole (green) ................................... 1-67
Figure 26 Security tab of the AP ..................................................................................................................... 1-68
Figure 27 Security tab of the SM ..................................................................................................................... 1-73
Figure 28 Port Configuration tab of the SM ..................................................................................................... 1-78
Figure 29 Radio tab of the AP ......................................................................................................................... 1-80
Figure 30 SNMP tab of the AP ....................................................................................................................... 1-88
Figure 31 SNMP tab of the SM ....................................................................................................................... 1-91
Figure 32 AP Syslog Configuration page ......................................................................................................... 1-94
Figure 33 SM Syslog Configuration page ......................................................................................................... 1-95
Figure 34 SM IP Configuration page ............................................................................................................... 1-96
Figure 35 AP Session Status page ................................................................................................................... 1-97
Figure 36 AP Remote Subscribers page .......................................................................................................... 1-97
Figure 37 AP Session Status page ................................................................................................................... 1-98
Figure 38 Uplink and downlink rate caps adjusted to apply aggregate cap ................................................... 1-101
Figure 39 Uplink and downlink rate cap adjustment example ....................................................................... 1-101

pmp-0050 (September 2012)                                                                                                                                 v
PMP 450 Configuration and User Guide                                                                                                     List of Figures


Figure 40 Quality of Service (QoS) tab of the AP ......................................................................................... 1-106
Figure 41 Diffserv tab of the AP ................................................................................................................... 1-108
Figure 42 Quality of Service (QoS) tab of the SM ......................................................................................... 1-109
Figure 43 Diffserv tab of the SM ................................................................................................................... 1-111
Figure 44 Security tab of the AP ................................................................................................................... 1-115
Figure 45 Security tab of the SM ................................................................................................................... 1-117
Figure 46 SM Certificate Management .......................................................................................................... 1-119
Figure 47 User Authentication tab of the AP ............................................................................................... 1-124
Figure 48 User Authentication tab of the SM ............................................................................................... 1-126
Figure 49 SM specifications ............................................................................................................................... 2-4




vi                                                                                                                    pmp-0050 (September 2012)
PMP 450 Configuration and User Guide                                                                                                              List of Tables




List of Tables
Table 1 IP interface attributes .................................................................................................................. 1-7
Table 2 SM with NAT disabled - IP attributes ....................................................................................... 1-13
Table 3 SM with NAT enabled - IP attributes ........................................................................................ 1-14
Table 4 SM with NAT disabled - NAT attributes.................................................................................... 1-16
Table 5 SM with NAT enabled - NAT attributes .................................................................................... 1-20
Table 6 SM DNS Options with NAT Enabled ......................................................................................... 1-24
Table 7 AP VLAN tab attributes ............................................................................................................ 1-26
Table 8: Q-in-Q Ethernet frame ............................................................................................................... 1-27
Table 9 AP VLAN Membership attributes .............................................................................................. 1-29
Table 10 SM VLAN attributes ................................................................................................................ 1-31
Table 11 SM VLAN Membership attributes ............................................................................................ 1-34
Table 12 PPPoE tab of the SM ............................................................................................................... 1-35
Table 13 SM PPPoE attributes ............................................................................................................... 1-36
Table 14 NAT Port Mapping tab of the SM ............................................................................................ 1-38
Table 15 SM NAT Port Mapping attributes ............................................................................................ 1-38
Table 16 General tab of the AP ............................................................................................................... 1-43
Table 17 AP General Configuration attributes ........................................................................................ 1-44
Table 18 AP Unit Settings attributes ...................................................................................................... 1-49
Table 19 SM General Configuration attributes ........................................................................................ 1-51
Table 20 SM Unit Settings attributes ...................................................................................................... 1-53
Table 21 AP Time attributes ................................................................................................................... 1-54
Table 22 AP Security attributes .............................................................................................................. 1-69
Table 23 Protocol Filtering tab of the AP ............................................................................................... 1-71
Table 24 AP Protocol Filtering attributes ............................................................................................... 1-71
Table 25 Port configuration tab of the AP .............................................................................................. 1-72
Table 26 AP Port Configuration attributes ............................................................................................. 1-72
Table 27 SM Security attributes .............................................................................................................. 1-74
Table 28 Protocol Filtering tab of the SM ............................................................................................... 1-77
Table 29 SM Protocol Filtering attributes ............................................................................................... 1-77
Table 30 SM Port Configuration attributes ............................................................................................. 1-78
Table 31 AP Radio attributes ................................................................................................................. 1-81
Table 32 Radio tab of SM ........................................................................................................................ 1-84
Table 33 SM Radio attributes ................................................................................................................. 1-84
Table 34 AP SNMP attributes ................................................................................................................ 1-89
Table 35 SM SNMP attributes ................................................................................................................ 1-92
Table 36 Syslog Configuration attributes ................................................................................................ 1-95

pmp-0050 (September 2012)                                                                                                                                 1-7
List of Tables                                                                                       PMP 450 Configuration and User Guide

-
Table 37 Syslog Configuration attributes ................................................................................................ 1-95
Table 38 Characteristics of traffic scheduling ......................................................................................... 1-103
Table 39 Recommended combined settings for typical operations ......................................................... 1-104
Table 40 Where feature values are obtained for an SM with authentication required ........................... 1-105
Table 41 Where feature values are obtained for an SM with authentication disabled ............................ 1-106
Table 42 AP QoS attributes .................................................................................................................. 1-106
Table 43 AP Diffserv attributes ............................................................................................................ 1-108
Table 44 SM Quality of Service attributes ............................................................................................ 1-109
Table 45 SM Diffserv attributes ............................................................................................................ 1-112
Table 46 RADIUS Vendor Specific Attributes (VSAs) ......................................................................... 1-121
Table 47 AP User Authentication and Access Tracking attributes ....................................................... 1-124
Table 48 SM User Authentication and Access Tracking attributes ....................................................... 1-126
Table 49 Device data accounting RADIUS attributes .......................................................................... 1-127
Table 50 RADIUS accounting messages configuration ......................................................................... 1-130
Table 51 Device re-authentication configuration .................................................................................. 1-130
Table 52 Connectorized AP physical specifications ................................................................................... 2-2
Table 53 PMP 450 wireless specifications .................................................................................................. 2-7
Table 54 PMP 450 Ethernet bridging specifications ................................................................................. 2-8
Table 55 PMP 450 safety compliance specifications .................................................................................. 2-9
Table 56 EMC emissions compliance ......................................................................................................... 2-9
Table 57 Power compliance margins ....................................................................................................... 2-12
Table 58 Radio certifications ................................................................................................................... 2-13
Table 59 Region Code information .......................................................................................................... 2-14
Table 60 Region Code EIRP information ............................................................................................... 2-15
Table 61 US FCC IDs and Industry Canada Certification Numbers and Covered Configurations .......... 2-16




1-8                                                                                                                 pmp-0050 (September 2012)
PMP 450 module essential information                                    PMP 450 Configuration and User Guide




About This Configuration and User Guide
       This guide describes the configuration of the Cambium PMP 450 Series of point-to-multipoint
       wireless equipment deployment. It is intended for use by the system administrator.
       After the initial general and legal information, the guide begins with a set of tasks to complete a
       basic configuration of the equipment. Once this configuration is complete, the units are ready for
       deployment. Advanced configuration, also defined in this document, may be initiated at the
       operator‘s discretion.




pmp-0050 (September 2012)                                                                                    ix
PMP 450 Configuration and User Guide                                                       General information



General information

Version information
      The following shows the issue status of this document since it was first released:

       Issue          Date of issue        Remarks
       001v000        September 2012       System Release 12.0




Contacting Cambium Networks
      PMP support website: http://www.cambiumnetworks.com/support
      Cambium main website: http://www.cambiumnetworks.com/
      Sales enquiries: solutions@cambiumnetworks.com
      Email support: support@cambiumnetworks.com
      Telephone numbers:
          For full list of Cambium support telephone numbers, see:
          http://www.cambiumnetworks.com/support/technical.php
      Address:
          Cambium Networks
          3800 Golf Road, Suite 360
          Rolling Meadows, IL 60008




x                                                                                  pmp-0050 (September 2012)
General information                                                      PMP 450 Configuration and User Guide




Purpose
       Cambium Networks Point-To-Multipoint (PMP) documents are intended to instruct and assist
       personnel in the operation, installation and maintenance of the Cambium PMP equipment and
       ancillary devices. It is recommended that all personnel engaged in such activities be properly
       trained.
       Cambium disclaims all liability whatsoever, implied or express, for any risk of damage, loss or
       reduction in system performance arising directly or indirectly out of the failure of the customer, or
       anyone acting on the customer's behalf, to abide by the instructions, system parameters, or
       recommendations made in this document.


Cross references
       References to external publications are shown in italics. Other cross references, emphasized in blue
       text in electronic versions, are active links to the references.
       This document is divided into numbered chapters that are divided into sections. Sections are not
       numbered, but are individually named at the top of each page, and are listed in the table of
       contents.


Feedback
       We appreciate feedback from the users of our documents. This includes feedback on the structure,
       content, accuracy, or completeness of our documents. Send feedback to email support (see
       ‗Contacting Cambium Networks‘).




pmp-0050 (September 2012)                                                                                      xi
PMP 450 Configuration and User Guide                                                       Problems and warranty



Problems and warranty

Reporting problems
      If any problems are encountered when installing or operating this equipment, follow this
      procedure to investigate and report:

        1     Search this document and the software release notes of supported releases.

        2     Visit the support website. http://www.cambiumenetworks.com/support/pmp/software/index.php

        3     Ask for assistance from the Cambium product supplier.

        4     Gather information from affected units such as:
                   The IP addresses and MAC addresses.
                   The software releases.
                   The configuration of software features.
                   Any available diagnostic downloads.
                   CNUT Support Capture Tool information

        5     Escalate the problem by emailing or telephoning support.

      See ‗Contacting Cambium Networks‘ for URLs, email addresses and telephone numbers.


Repair and service
      If unit failure is suspected, obtain details of the Return Material Authorization (RMA) process
      from the support website.


Warranty
      Cambium‘s standard hardware warranty is for one (1) year from date of shipment from Cambium
      or a Cambium distributor. Cambium warrants that hardware will conform to the relevant
      published specifications and will be free from material defects in material and workmanship under
      normal use and service. Cambium shall within this time, at its own option, either repair or replace
      the defective product within thirty (30) days of receipt of the defective product. Repaired or
      replaced product will be subject to the original warranty period but not less than thirty (30) days.
      To register PMP products or activate warranties, visit the support website.
      Extended warranties are available for PMP 450 products. For warranty assistance, contact the
      reseller or distributor.




xii                                                                               pmp-0050 (September 2012)
Problems and warranty                                              PMP 450 Configuration and User Guide




        Using non-Cambium parts for repair could damage the equipment or void warranty. Contact
        Cambium for service and repair instructions.



        Portions of Cambium equipment may be damaged from exposure to electrostatic discharge. Use
        precautions to prevent damage.




pmp-0050 (September 2012)                                                                            xiii
PMP 450 Configuration and User Guide                                                                 Security advice



Security advice

      Cambium Networks systems and equipment provide security parameters that can be configured
      by the operator based on their particular operating environment. Cambium recommends setting
      and using these parameters following industry recognized security practices. Security aspects to be
      considered are protecting the confidentiality, integrity, and availability of information and assets.
      Assets include the ability to communicate, information about the nature of the communications,
      and information about the parties involved.
      In certain instances Cambium makes specific recommendations regarding security practices,
      however the implementation of these recommendations and final responsibility for the security of
      the system lies with the operator of the system.




xiv                                                                               pmp-0050 (September 2012)
Warnings, cautions, and notes                                            PMP 450 Configuration and User Guide



Warnings, cautions, and notes

       The following describes how warnings and cautions are used in this document and in all
       documents of the Cambium Networks document set.


Warnings
       Warnings precede instructions that contain potentially hazardous situations. Warnings are used
       to alert the reader to possible hazards that could cause loss of life or physical injury. A warning
       has the following format:


        Warning text and consequence for not following the instructions in the warning.



Cautions
       Cautions precede instructions and are used when there is a possibility of damage to systems,
       software, or individual items of equipment within a system. However, this damage presents no
       danger to personnel. A caution has the following format:


        Caution text and consequence for not following the instructions in the caution.



Notes
       A note means that there is a possibility of an undesirable situation or provides additional
       information to help the reader understand a topic or concept. A note has the following format:


        Note text.




pmp-0050 (September 2012)                                                                                    xv
PMP 450 Configuration and User Guide




Chapter 1: Configuration and alignment
      This chapter describes all configuration and alignment tasks that are performed when a PMP 450 link
      is deployed.
      Observe the precautions in Preparing for configuration and alignment on page 1-2.
      This section is divided into several tasks, including:
          Task 1: Connecting to the unit on page 1-3
          Task 2: Configuring IP and Ethernet interfaces on page 1-6
          Task 3: Upgrading the software version and using CNUT on page 1-39
          Task 4: Configuring General and Unit settings on page 1-43
          Task 5: Configuring security on page 1-56
          Task 6: Configuring radio parameters on page 1-80
          Task 7: Setting up SNMP agent on page 1-87
          Task 8: Configuring syslog on page 1-94
          Task 9: Configuring remote access on page 1-96
          Task 10: Monitoring the AP-SM Link on page 1-98
          Task 11: Configuring quality of service on page 1-100
          Task 12: Configuring a RADIUS server on page 1-113




pmp-0050 (September 2012)                                                                              1-1
PMP 450 Configuration and User Guide                                Preparing for configuration and alignment



Preparing for configuration and alignment

      This section describes the checks to be performed before proceeding with unit configuration and
      antenna alignment.


Safety precautions during configuration and alignment
      All national and local safety standards must be followed while configuring the units and aligning the
      antennas.


       Ensure that personnel are not exposed to unsafe levels of RF energy. The units start to radiate as soon
       as they are powered up.
      Observe the following guidelines:
          Never work in front of the antenna when the AP or SM is powered.
          Always power down the AP or SM before connecting or disconnecting the drop cable from the unit.




1-2                                                                               pmp-0050 (September 2012)
Task 1: Connecting to the unit                                          PMP 450 Configuration and User Guide



Task 1: Connecting to the unit

       This task consists of the following procedures:
             Configuring the management PC on page 1-3
             Connecting to the PC and powering up on page 1-5
             Logging into the web interface on page 1-5


Configuring the management PC
       To configure the local management PC to communicate with the PMP 450 AP or SM, proceed as
       follows:
       Procedure 1 Configuring the management PC

         1       Select Properties for the Ethernet port.

         2       Select the Internet Protocol (TCP/IP) item (in Windows 7, this item is called ―Internet Protocol
                 Version 4 (TCP/IPv4):




         3       Click on Properties.




pmp-0050 (September 2012)                                                                                           1-3
PMP 450 Configuration and User Guide                                         Task 1: Connecting to the unit



        4    Enter an IP address that is valid for the 169.254.X.X network, avoiding:
                  169.254.0.0 and 169.254.1.1 and 169.254.1.2
             A good example is 169.254.1.3:




        5    Enter a subnet mask of 255.255.255.0.
             Leave the default gateway blank.




1-4                                                                           pmp-0050 (September 2012)
Task 1: Connecting to the unit                                          PMP 450 Configuration and User Guide




Connecting to the PC and powering up
       To connect the PMP 450 AP or SM to the PC and power up the unit, proceed as follows:
       Procedure 2 Connecting to the PC and powering up

         1     Check that the AP or SM and the associated power supply are correctly connected.

         2     Connect the PC Ethernet port to the LAN port of the power supply using a standard (not crossed)
               Ethernet cable.

         3     Apply power to the radio power supply. The green Power LED should illuminate continuously.




Logging into the web interface
       To log into the web interface as a system administrator, proceed as follows:
       Procedure 3 Logging into the web interface

         1    Start the web browser from the management PC.

         2    Type the IP address of the unit into the address bar. The factory default IP address is 169.254.1.1.
              Press ENTER. The web interface General Status page is displayed:




         3    Log in with the desired username and password. See section Managing module access by passwords on
              page 1-57 for more information.




pmp-0050 (September 2012)                                                                                        1-5
PMP 450 Configuration and User Guide                         Task 2: Configuring IP and Ethernet interfaces



Task 2: Configuring IP and Ethernet interfaces

      This task consists of the following sections:
            Configuring the AP IP interface on page 1-6
            NAT, DHCP Server, DHCP Client, and DMZ in SM on page 1-8
            Configuring the SM IP interface with NAT disabled on page 1-12
            Configuring the SM IP interface with NAT enabled on page 1-14
            NAT tab of the SM with NAT disabled on page 1-15
            NAT tab of the SM with NAT enabled on page 1-19
            Reconnecting to the management PC on page 1-24


Configuring the AP IP interface
      The IP interface allows users to connect to the PMP 450 web interface, either from a locally connected
      computer or from a management network.

      To configure the IP interface, proceed as follows
      Procedure 4 Configuring the AP IP interface

        1      Select menu option Configuration, IP. The LAN configuration page is displayed:




        2      Update IP Address, Subnet Mask and Gateway IP Address to meet network requirements (as
               specified by the network administrator).

        3      Review the other IP interface attributes and update them, if required (Table 1).




1-6                                                                              pmp-0050 (September 2012)
Task 2: Configuring IP and Ethernet interfaces                        PMP 450 Configuration and User Guide



         4    Select Save. The ―Reboot Required‖ message is displayed:




         5    Select Reboot.


       Table 1 IP interface attributes

        Attribute              Meaning

        IP Address             Internet protocol (IP) address. This address is used by the family of Internet
                               protocols to uniquely identify this unit on a network.

        Subnet Mask            Defines the address range of the connected IP network.

        Gateway IP Address     The IP address of a computer on the current network that acts as a gateway.
                               A gateway acts as an entrance and exit to packets from and to other
                               networks.

        DHCP state             If Enabled is selected, the DHCP server automatically assigns the IP
                               configuration (IP address, subnet mask, and gateway IP address) and the
                               values of those individual parameters (above) are not used. The setting of this
                               DHCP state parameter is also viewable, but not settable, in the Network
                               Interface tab of the Home page.

        DNS IP Address         Canopy devices allow for configuration of a preferred and alternate DNS
                               server IP address either automatically or manually. Devices must set DNS
                               server IP address manually when DHCP is disabled for the management
                               interface of the device. DNS servers may be configured automatically from
                               the DHCP response when DHCP is enabled for the management interface of
                               the device. Optionally devices may be configured to set the DNS server IP
                               address manually when DHCP is enabled for the management interface. The
                               default DNS IP addresses are 0.0.0.0 when configured manually.
        Preferred DNS Server   The first address used for DNS resolution.



pmp-0050 (September 2012)                                                                                        1-7
PMP 450 Configuration and User Guide                         Task 2: Configuring IP and Ethernet interfaces



       Attribute               Meaning

       Alternate DNS Server    Upon failure to reach the Preferred DNS server, the Alternate DNS Server is
                               used.

       Domain Name             The operator‘s management domain name may be configured for DNS. The
                               domain name configuration can be used for configuration of the servers in the
                               operator‘s network. The default domain name is example.com, and is only
                               used if configured as such.

       LAN2 Network            It is recommended to not change this parameter from the default AP private
       Interface               IP address of 192.168.101.1. A /24 CIDR subnet is used to communicate with
                               each of the SMs that are registered. The AP uses a combination of the private
       Configuration (Radio
                               IP and the LUID (logical unit ID) of the SM.
       Private Interface) –
                               For example, if an SM is the first to register in an AP, and another SM
       IP Address              registers later, then the AP whose Private IP address is 192.168.101.1 uses
                               the following SM Private IP addresses to communicate to each:

                                 SM                         LUID       Private IP

                                 First SM registered        2          192.168.101.2

                                 Second SM registered       3          192.168.101.3




NAT, DHCP Server, DHCP Client, and DMZ in SM
      The system provides NAT (network address translation) for SMs in the following combinations of NAT
      and DHCP (Dynamic Host Configuration Protocol):
          NAT Disabled
          NAT with DHCP Client (DHCP selected as the Connection Type of the WAN interface) and DHCP
          Server
          NAT with DHCP Client(DHCP selected as the Connection Type of the WAN interface)
          NAT with DHCP Server
          NAT without DHCP


      NAT
      NAT isolates devices connected to the Ethernet/wired side of an SM from being seen directly from the
      wireless side of the SM. With NAT enabled, the SM has an IP address for transport traffic (separate
      from its address for management), terminates transport traffic, and allows you to assign a range of IP
      addresses to devices that are connected to the Ethernet/wired side of the SM.
      In the Cambium system, NAT supports many protocols, including HTTP, ICMP (Internet Control
      Message Protocols), and FTP (File Transfer Protocol). For virtual private network (VPN)
      implementation, L2TP over IPSec (Level 2 Tunneling Protocol over IP Security) and PPTP (Point to
      Point Tunneling Protocol) are supported.




1-8                                                                              pmp-0050 (September 2012)
Task 2: Configuring IP and Ethernet interfaces                           PMP 450 Configuration and User Guide



       DHCP
       DHCP enables a device to be assigned a new IP address and TCP/IP parameters, including a default
       gateway, whenever the device reboots. Thus DHCP reduces configuration time, conserves IP addresses,
       and allows modules to be moved to a different network within the Cambium system.
       In conjunction with the NAT features, each SM provides
           a DHCP server that assigns IP addresses to computers connected to the SM by Ethernet protocol.
           a DHCP client that receives an IP address for the SM from a network DHCP server.


       DMZ
       In conjunction with the NAT features, a DMZ (demilitarized zone) allows the assignment of one IP
       address behind the SM for a device to logically exist outside the firewall and receive network traffic.
       The first three octets of this IP address must be identical to the first three octets of the NAT private IP
       address.


       NAT Disabled
       The NAT Disabled implementation is illustrated in Figure 1.


       Figure 1 NAT disabled implementation




pmp-0050 (September 2012)                                                                                            1-9
PMP 450 Configuration and User Guide            Task 2: Configuring IP and Ethernet interfaces



       NAT with DHCP Client and DHCP Server
       Figure 2 NAT with DHCP client and DHCP server implementation




       NAT with DHCP Client
       Figure 3 NAT with DHCP client implementation




1-10                                                            pmp-0050 (September 2012)
Task 2: Configuring IP and Ethernet interfaces        PMP 450 Configuration and User Guide



       NAT with DHCP Server
       Figure 4 NAT with DHCP server implementation




       NAT without DHCP
       Figure 5   NAT without DHCP implementation




pmp-0050 (September 2012)                                                           1-11
PMP 450 Configuration and User Guide                         Task 2: Configuring IP and Ethernet interfaces



       NAT and VPNs
       VPN technology provides the benefits of a private network during communication over a public
       network. One typical use of a VPN is to connect remote employees, who are at home or in a different
       city, to their corporate network over the public Internet. Any of several VPN implementation schemes
       is possible. By design, NAT translates or changes addresses, and thus interferes with a VPN that is not
       specifically supported by a given NAT implementation.
       With NAT enabled, SMs support L2TP over IPSec (Level 2 Tunneling Protocol over IP Security)
       VPNs and PPTP (Point to Point Tunneling Protocol) VPNs. With NAT disabled, SMs support all
       types of VPNs.




Configuring the SM IP interface with NAT disabled
       Figure 6 IP tab of the SM with NAT disabled




       In the IP tab of an SM with NAT disabled, you may set the following parameters.




1-12                                                                              pmp-0050 (September 2012)
Task 2: Configuring IP and Ethernet interfaces                     PMP 450 Configuration and User Guide


       Table 2 SM with NAT disabled - IP attributes

        Attribute                    Meaning
        LAN1 Network Interface       Enter the non-routable IP address to associate with the Ethernet
        Configuration, IP Address    connection on this SM. (The default IP address from the factory is
                                     169.254.1.1.) If you set and then forget this parameter, then you
                                     must both
                                          physically access the module.
                                          use an override plug to electronically access the module
                                          configuration parameters at 169.254.1.1. See Overriding
                                          Forgotten IP Addresses or Passwords on AP on Page 1-59.




                                       Note or print the IP settings from this page. Ensure that you
                                       can readily associate these IP settings both with the module and
                                       with the other data that you store about the module.

        LAN1 Network Interface       Specify whether the IP address of the SM should be visible to only a
        Configuration, Network       device connected to the SM by Ethernet (Local) or should be visible
        Accessibility                to the AP as well (Public).

        LAN1 Network Interface       Enter an appropriate subnet mask for the SM to communicate on the
        Configuration, Subnet Mask   network. The default subnet mask is 255.255.0.0.

        LAN1 Network Interface       Enter the appropriate gateway for the SM to communicate with the
        Configuration, Gateway IP    network. The default gateway is 169.254.0.0.
        Address

        LAN1 Network Interface       If you select Enabled, the DHCP server automatically assigns the IP
        Configuration, DHCP state    configuration (IP address, subnet mask, and gateway IP address) and
                                     the values of those individual parameters (above) are not used. The
                                     setting of this DHCP state parameter is also viewable, but not
                                     settable, in the Network Interface tab of the Home page.
                                     In this tab, DHCP State is settable only if the Network Accessibility
                                     parameter in the IP tab is set to Public. This parameter is also
                                     settable in the NAT tab of the Configuration web page, but only
                                     when NAT is enabled.
                                     If the DHCP state parameter is set to Enabled in the Configuration
                                     => IP tab of the SM, do not check the BootpClient option for Packet
                                     Filter Types in its Protocol Filtering tab, because doing so would
                                     block the DHCP request. (Filters apply to all packets that leave the
                                     SM via its RF interface, including those that the SM itself generates.)
                                     If you want to keep DHCP enabled and avoid the blocking scenario,
                                     select the Bootp Server option instead. This will result in responses
                                     being appropriately filtered and discarded.




pmp-0050 (September 2012)                                                                                      1-13
PMP 450 Configuration and User Guide                       Task 2: Configuring IP and Ethernet interfaces



       Attribute                       Meaning

       LAN1 Network Interface          Canopy devices allow for configuration of a preferred and alternate
       Configuration, DNS IP           DNS server IP address either automatically or manually. Devices
                                       must set DNS server IP address manually when DHCP is disabled for
       Address
                                       the management interface of the device. DNS servers may be
                                       configured automatically from the DHCP response when DHCP is
                                       enabled for the management interface of the device. Optionally
                                       devices may be configured to set the DNS server IP address manually
                                       when DHCP is enabled for the management interface. The default
                                       DNS IP addresses are 0.0.0.0 when configured manually.
       LAN1 Network Interface          The first DNS server used for DNS resolution.
       Configuration, Preferred DNS
       Server

       LAN1 Network Interface          The second DNS server used for DNS resolution.
       Configuration, Alternate DNS
       Server

       LAN1 Network Interface          The operator‘s management domain name may be configured for
       Configuration, Domain Name      DNS. The domain name configuration can be used for configuration
                                       of the servers in the operator‘s network. The default domain name is
                                       example.com, and is only used if configured as such.



Configuring the SM IP interface with NAT enabled
       Figure 7 IP tab of SM with NAT enabled




       In the IP tab of an SM with NAT enabled, you may set the following parameters.
       Table 3 SM with NAT enabled - IP attributes

       Attribute                       Meaning

       NAT Network Interface           Assign an IP address for SM management through Ethernet access to
       Configuration, IP Address       the SM. Set only the first three bytes. The last byte is permanently
                                       set to 1. This address becomes the base for the range of DHCP-
                                       assigned addresses.

       NAT Network Interface           Assign a subnet mask of 255.255.255.0 or a more restrictive subnet
       Configuration, Subnet Mask      mask. Set only the last byte of this subnet mask. Each of the first
                                       three bytes is permanently set to 255.


1-14                                                                            pmp-0050 (September 2012)
Task 2: Configuring IP and Ethernet interfaces        PMP 450 Configuration and User Guide



NAT tab of the SM with NAT disabled
       Figure 8 NAT tab of the SM with NAT disabled




pmp-0050 (September 2012)                                                           1-15
PMP 450 Configuration and User Guide                       Task 2: Configuring IP and Ethernet interfaces


       In the NAT tab of an SM with NAT disabled, you may set the following parameters.


       Table 4 SM with NAT disabled - NAT attributes

       Attribute                       Meaning
       NAT Enable/Disable              This parameter enables or disabled the Network Address Translation
                                       (NAT) feature for the SM. NAT isolates devices connected to the
                                       Ethernet/wired side of an SM from being seen directly from the
                                       wireless side of the SM. With NAT enabled, the SM has an IP
                                       address for transport traffic separate from its address for
                                       management, terminates transport traffic, and allows you to assign a
                                       range of IP addresses to devices that are connected to the
                                       Ethernet/wired side of the SM
                                       When NAT is enabled, VLANs are not supported on the wired side of
                                       that SM. You can enable NAT in SMs within a sector where VLAN is
                                       enabled in the AP, but this may constrain network design

       WAN Interface, Connection       This parameter is not configurable when NAT is disabled.
       Type

       WAN Interface, IP Address       This field displays the IP address for the SM. DHCP Server will not
                                       automatically assign this address when NAT is disabled.

       WAN Interface, Subnet Mask      This field displays the subnet mask for the SM. DHCP Server will not
                                       automatically assign this address when NAT is disabled.

       WAN Interface, Gateway IP       This field displays the gateway IP address for the SM. DHCP Server
       Address                         will not automatically assign this address when NAT is disabled.

       WAN Interface, Reply to         This parameter is not configurable when NAT is disabled.
       Ping on WAN Interface

       LAN Interface, IP Address       This parameter is not configurable when NAT is disabled.

       LAN Interface, Subnet Mask      This parameter is not configurable when NAT is disabled.

       LAN Interface, DMZ Enable       This parameter is not configurable when NAT is disabled.

       LAN Interface, DMZ IP           This parameter is not configurable when NAT is disabled.
       Address

       LAN DHCP Server, DHCP           This parameter is not configurable when NAT is disabled.
       Server Enable/Disable

       LAN DHCP Server, DHCP           This parameter is not configurable when NAT is disabled.
       Server Lease Timeout

       LAN DHCP Server, DHCP           This parameter is not configurable when NAT is disabled.
       Start IP

       LAN DHCP Server, Number         This parameter is not configurable when NAT is disabled.
       of IPs to Lease



1-16                                                                           pmp-0050 (September 2012)
Task 2: Configuring IP and Ethernet interfaces                       PMP 450 Configuration and User Guide



        Attribute                      Meaning

        LAN DHCP Server, DNS           This parameter is not configurable when NAT is disabled.
        Server Proxy

        LAN DHCP Server, DNS IP        This parameter is not configurable when NAT is disabled.
        Address

        LAN DHCP Server, Preferred     This parameter is not configurable when NAT is disabled.
        DNS IP Address

        LAN DHCP Server, Alternate     This parameter is not configurable when NAT is disabled.
        DNS IP Address

        Remote Configuration           This parameter is not configurable when NAT is disabled.
        Interface, Interface
        Enable/Disable

        Remote Configuration           This parameter is not configurable when NAT is disabled.
        Interface, Connection Type

        Remote Configuration           This parameter is not configurable when NAT is disabled.
        Interface, IP Address

        Remote Configuration           This parameter is not configurable when NAT is disabled.
        Interface, Subnet Mask

        Remote Configuration           This parameter is not configurable when NAT is disabled.
        Interface, Gateway IP
        Address

        Remote Configuration           This parameter is not configurable when NAT is disabled.
        Interface, DNS IP Address

        Remote Configuration           This parameter is not configurable when NAT is disabled.
        Interface, Preferred DNS
        Server

        Remote Connection Interface,   This parameter is not configurable when NAT is disabled.
        Alternate DNS Server

        Remote Connection Interface,   This parameter is not configurable when NAT is disabled.
        Domain Name

        NAT Protocol Parameters,       If a router upstream has an ARP cache of longer duration (as some
        ARP Cache Timeout              use 30 minutes), enter a value of longer duration than the router
                                       ARP cache. The default value of this field is 20 minutes.

        NAT Protocol Parameters,       Where a large network exists behind the SM, you can set this
        TCP Session Garbage            parameter to lower than the default value of 120 minutes. This
        Timeout                        action makes additional resources available for greater traffic than
                                       the default value accommodates.




pmp-0050 (September 2012)                                                                                     1-17
PMP 450 Configuration and User Guide                 Task 2: Configuring IP and Ethernet interfaces



       Attribute                  Meaning

       NAT Protocol Parameters,   You may adjust this parameter in the range of 1 to 1440 minutes,
       UDP Session Garbage        based on network performance. The default value of this parameter
       Timeout                    is 4 minutes.




1-18                                                                     pmp-0050 (September 2012)
Task 2: Configuring IP and Ethernet interfaces       PMP 450 Configuration and User Guide



NAT tab of the SM with NAT enabled
       Figure 9 NAT tab of the SM with NAT enabled




pmp-0050 (September 2012)                                                          1-19
PMP 450 Configuration and User Guide                        Task 2: Configuring IP and Ethernet interfaces


       In the NAT tab of an SM with NAT enabled, you may set the following parameters.
       Table 5 SM with NAT enabled - NAT attributes

       Attribute                       Meaning
       NAT Enable/Disable              This parameter enables or disabled the Network Address Translation
                                       (NAT) feature for the SM. NAT isolates devices connected to the
                                       Ethernet/wired side of an SM from being seen directly from the
                                       wireless side of the SM. With NAT enabled, the SM has an IP
                                       address for transport traffic separate from its address for
                                       management, terminates transport traffic, and allows you to assign a
                                       range of IP addresses to devices that are connected to the
                                       Ethernet/wired side of the SM.
                                       When NAT is enabled, VLANs are not supported on the wired side
                                       of that SM. You can enable NAT in SMs within a sector where
                                       VLAN is enabled in the AP, but this may constrain network design.

       WAN Interface                   The WAN interface is the RF-side address for transport traffic.

       WAN Interface, Connection       This parameter may be set to
       Type                            Static IP—when this is the selection, the following three parameters
                                       (IP Address, Subnet Mask, and Gateway IP Address) must all be
                                       properly populated.
                                       DHCP—when this is the selection, the information from the DHCP
                                       server configures the interface.
                                       PPPoE—when this is the selection, the information from the PPPoE
                                       server configures the interface.

       WAN Interface, Subnet Mask      If Static IP is set as the Connection Type of the WAN interface, then
                                       this parameter configures the subnet mask of the SM for RF
                                       transport traffic.

       WAN Interface, Gateway IP       If Static IP is set as the Connection Type of the WAN interface, then
       Address                         this parameter configures the gateway IP address for the SM for RF
                                       transport traffic.

       WAN Interface, Reply to Ping    By default, the radio interface does not respond to pings. If you use a
       on WAN Interface                management system (such as WM) that will occasionally ping the
                                       SM, set this parameter to Enabled.

       LAN Interface                   The LAN interface is both the management access through the
                                       Ethernet port and the Ethernet-side address for transport traffic.
                                       When NAT is enabled, this interface is redundantly shown as the
                                       NAT Network Interface Configuration on the IP tab of the
                                       Configuration web page in the SM.

       LAN Interface, IP Address       Assign an IP address for SM management through Ethernet access
                                       to the SM. This address becomes the base for the range of DHCP-
                                       assigned addresses.




1-20                                                                             pmp-0050 (September 2012)
Task 2: Configuring IP and Ethernet interfaces                     PMP 450 Configuration and User Guide



        Attribute                    Meaning

        LAN Interface, Subnet Mask   Assign a subnet mask of 255.255.255.0 or a more restrictive subnet
                                     mask. Set only the last byte of this subnet mask. Each of the first
                                     three bytes is permanently set to 255.

        LAN Interface, DMZ Enable    Either enable or disable DMZ for this SM.

        LAN Interface, DMZ IP        If you enable DMZ in the parameter above, set the last byte of the
        Address                      DMZ host IP address to use for this SM when DMZ is enabled. Only
                                     one such address is allowed. The first three bytes are identical to
                                     those of the NAT private IP address. Ensure that the device that
                                     should receive network traffic behind this SM is assigned this
                                     address. The system provides a warning if you enter an address
                                     within the range that DHCP can assign.

        LAN DHCP Server              This is the server (in the SM) that provides an IP address to the
                                     device connected to the Ethernet port of the SM.

        LAN DHCP Server, DHCP        Select either
        Server Enable/Disable        Enabled to
                                          allow this SM to assign IP addresses, subnet masks, and
                                          gateway IP addresses to attached devices.
                                          assign a start address for DHCP.
                                          designate how many IP addresses may be temporarily used
                                          (leased).
                                     Disabled to disallow the SM to assign addresses to attached devices.

        LAN DHCP Server, DHCP        Based on network performance, enter the number of days between
        Server Lease Timeout         when the DHCP server assigns an IP address and when that address
                                     expires. The range of values for this parameter is 1 to 30 days. The
                                     default value is 30 days.

        LAN DHCP Server, DHCP        If you will be enabling DHCP Server below, set the last byte of the
        Start IP                     starting IP address that the DHCP server will assign. The first three
                                     bytes are identical to those of the NAT private IP address.

        LAN DHCP Server, Number      Enter how many IP addresses the DHCP server is allowed to assign.
        of IPs to Lease              The default value is 50 addresses.

        LAN DHCP Server, DNS         This parameter enables or disables advertisement of the SM as the
        Server Proxy                 DNS server. On initial boot up of an SM with the NAT WAN
                                     interface configured as DHCP or PPPoE, the SM module will not
                                     immediately have DNS information. With DNS Server Proxy
                                     disabled, the clients will renew their lease about every minute until
                                     the SM has the DNS information to give out. At this point the SM
                                     will go to the full configured lease time period which is 30 days by
                                     default. With DNS Server Proxy enabled, the SM will give out full
                                     term leases with its NAT LAN IP as the DNS server.




pmp-0050 (September 2012)                                                                                    1-21
PMP 450 Configuration and User Guide                      Task 2: Configuring IP and Ethernet interfaces



       Attribute                    Meaning

       LAN DHCP Server, DNS IP      Select either
       Address                      Obtain Automatically to allow the system to set the IP address of the
                                    DNS server.
                                    Set Manually to enable yourself to set both a preferred and an
                                    alternate DNS IP address.

       LAN DHCP Server, Preferred   Enter the preferred DNS IP address to use when the DNS IP Address
       DNS IP Address               parameter is set to Set Manually.

       LAN DHCP Server, Alternate   Enter the DNS IP address to use when the DNS IP Address
       DNS IP Address               parameter is set to Set Manually and no response is received from the
                                    preferred DNS IP address.

       Remote Configuration         If you want over-the-air management capability for the SM, select
       Interface, Interface         Enabled. If you want to limit management of the SM to its Ethernet
       Enable/Disable               interface, select Disabled.

       Remote Configuration         The Remote Configuration interface is the RF-side address for
       Interface                    management by an EMS or NMS (WM, for example).

       Remote Configuration         When this interface is Disabled, the SM is not directly accessible by
       Interface, Interface         IP address, and management access is only through either
       Enable/Disable               the LAN (Ethernet) interface
                                    a link from an AP web page into the WAN (RF-side) interface.
                                    When this interface is Enabled, you can configure management
                                    access through either
                                    a Static IP address
                                    an IP address that DHCP provides for the WAN interface.

       Remote Configuration         This parameter may be set to
       Interface, Connection Type   Static IP—when this is the selection, the following three parameters
                                    (IP Address, Subnet Mask, and Gateway IP Address) must all be
                                    properly populated.
                                    DHCP—when this is the selection, the information from the DHCP
                                    server configures the interface.

       Remote Configuration         If Static IP is set as the Connection Type of the WAN interface, then
       Interface, IP Address        this parameter configures the IP address of the SM for RF
                                    management traffic.

       Remote Configuration         If Static IP is set as the Connection Type of the WAN interface, then
       Interface, Subnet Mask       this parameter configures the subnet mask of the SM for RF
                                    management traffic.




1-22                                                                         pmp-0050 (September 2012)
Task 2: Configuring IP and Ethernet interfaces                       PMP 450 Configuration and User Guide



        Attribute                      Meaning

        Remote Configuration           If Static IP is set as the Connection Type of the WAN interface, then
        Interface, Gateway IP          this parameter configures the gateway IP address for the SM for RF
        Address                        management traffic.
                                       Note or print the IP settings from this page. Ensure that you can
                                       readily associate these IP settings both with the module and with
                                       the other data that you store about the module.

        Remote Configuration           Select either
        Interface, DNS IP Address      Obtain Automatically to allow the system to set the IP address of the
                                       DNS server.
                                       Set Manually to enable yourself to set both a preferred and an
                                       alternate DNS IP address.

        Remote Configuration           Enter the preferred DNS IP address to use when the DNS IP Address
        Interface, Preferred DNS       parameter is set to Set Manually.
        Server

        Remote Configuration           Enter the DNS IP address to use when the DNS IP Address
        Interface, Alternate DNS       parameter is set to Set Manually and no response is received from the
        Server                         preferred DNS IP address.

        Remote Configuration           Domain Name to use for management DNS configuration. This
        Interface, Domain Name         domain name may be concatenated to DNS names used configured
                                       for the remote configuration interface.

        NAT Protocol Parameters,       If a router upstream has an ARP cache of longer duration (as some
        ARP Cache Timeout              use 30 minutes), enter a value of longer duration than the router
                                       ARP cache. The default value of this field is 20 minutes.

        NAT Protocol Parameters,       Where a large network exists behind the SM, you can set this
        TCP Session Garbage Timeout    parameter to lower than the default value of 120 minutes. This
                                       action makes additional resources available for greater traffic than
                                       the default value accommodates.

        NAT Protocol Parameters,       You may adjust this parameter in the range of 1 to 1440 minutes,
        UDP Session Garbage            based on network performance. The default value of this parameter
        Timeout                        is 4 minutes.


       SM NAT DNS Considerations
       SM DNS behavior is different depending on the accessibility of the SM. When NAT is enabled the DNS
       configuration that is discussed in this document is tied to the RF Remote Configuration Interface,
       which must be enabled to utilize DNS Client functionality. Note that the WAN DNS settings when
       NAT is enabled are unchanged with the addition of the management DNS feature discussed in this
       document.




pmp-0050 (September 2012)                                                                                      1-23
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide
Pmp 450 configuration_user_guide

More Related Content

What's hot

Tl wr743 nd-v2_user_guide
Tl wr743 nd-v2_user_guideTl wr743 nd-v2_user_guide
Tl wr743 nd-v2_user_guidecristian975
 
3 otf202202 opti x rtn 900 routine maintenance
3   otf202202 opti x rtn 900 routine maintenance3   otf202202 opti x rtn 900 routine maintenance
3 otf202202 opti x rtn 900 routine maintenancehoshiarsdiq
 
Opti x rtn 910950980 hardware description wind
Opti x rtn 910950980 hardware description windOpti x rtn 910950980 hardware description wind
Opti x rtn 910950980 hardware description windnctgayaranga
 
Configurando Tp-link W8951nd em router
Configurando Tp-link W8951nd em routerConfigurando Tp-link W8951nd em router
Configurando Tp-link W8951nd em routermaxytetsu
 
Manual do modem tp link td-w8960n
Manual do modem tp link td-w8960nManual do modem tp link td-w8960n
Manual do modem tp link td-w8960nmaxytetsu
 
Phn 2525 000v001 (optical interface)
Phn 2525 000v001 (optical interface)Phn 2525 000v001 (optical interface)
Phn 2525 000v001 (optical interface)Advantec Distribution
 
아보패널PC ARBOR LYNC-817 17인치 산업용패널PC 매뉴얼
아보패널PC ARBOR LYNC-817 17인치 산업용패널PC 매뉴얼아보패널PC ARBOR LYNC-817 17인치 산업용패널PC 매뉴얼
아보패널PC ARBOR LYNC-817 17인치 산업용패널PC 매뉴얼HION IT
 
AN - Implementing 1+1 RF Redundancy with the SMD-989 v1 0
AN - Implementing 1+1 RF Redundancy with the SMD-989 v1 0AN - Implementing 1+1 RF Redundancy with the SMD-989 v1 0
AN - Implementing 1+1 RF Redundancy with the SMD-989 v1 0John Earnest
 
Pmp 400 430-and_ptp_200-230_configuration_and_user_guide
Pmp 400 430-and_ptp_200-230_configuration_and_user_guidePmp 400 430-and_ptp_200-230_configuration_and_user_guide
Pmp 400 430-and_ptp_200-230_configuration_and_user_guideAdvantec Distribution
 
Overview on cisco catalyst 2960 s, 2960-c and 2960 series switches
Overview on cisco catalyst 2960 s, 2960-c and 2960 series switchesOverview on cisco catalyst 2960 s, 2960-c and 2960 series switches
Overview on cisco catalyst 2960 s, 2960-c and 2960 series switchesIT Tech
 

What's hot (13)

Plr5000
Plr5000Plr5000
Plr5000
 
Tl wr743 nd-v2_user_guide
Tl wr743 nd-v2_user_guideTl wr743 nd-v2_user_guide
Tl wr743 nd-v2_user_guide
 
3 otf202202 opti x rtn 900 routine maintenance
3   otf202202 opti x rtn 900 routine maintenance3   otf202202 opti x rtn 900 routine maintenance
3 otf202202 opti x rtn 900 routine maintenance
 
Opti x rtn 910950980 hardware description wind
Opti x rtn 910950980 hardware description windOpti x rtn 910950980 hardware description wind
Opti x rtn 910950980 hardware description wind
 
Configurando Tp-link W8951nd em router
Configurando Tp-link W8951nd em routerConfigurando Tp-link W8951nd em router
Configurando Tp-link W8951nd em router
 
Manual do modem tp link td-w8960n
Manual do modem tp link td-w8960nManual do modem tp link td-w8960n
Manual do modem tp link td-w8960n
 
Phn 2525 000v001 (optical interface)
Phn 2525 000v001 (optical interface)Phn 2525 000v001 (optical interface)
Phn 2525 000v001 (optical interface)
 
Dfm 562e manual
Dfm 562e manualDfm 562e manual
Dfm 562e manual
 
아보패널PC ARBOR LYNC-817 17인치 산업용패널PC 매뉴얼
아보패널PC ARBOR LYNC-817 17인치 산업용패널PC 매뉴얼아보패널PC ARBOR LYNC-817 17인치 산업용패널PC 매뉴얼
아보패널PC ARBOR LYNC-817 17인치 산업용패널PC 매뉴얼
 
AN - Implementing 1+1 RF Redundancy with the SMD-989 v1 0
AN - Implementing 1+1 RF Redundancy with the SMD-989 v1 0AN - Implementing 1+1 RF Redundancy with the SMD-989 v1 0
AN - Implementing 1+1 RF Redundancy with the SMD-989 v1 0
 
Bts huawei3012
Bts huawei3012Bts huawei3012
Bts huawei3012
 
Pmp 400 430-and_ptp_200-230_configuration_and_user_guide
Pmp 400 430-and_ptp_200-230_configuration_and_user_guidePmp 400 430-and_ptp_200-230_configuration_and_user_guide
Pmp 400 430-and_ptp_200-230_configuration_and_user_guide
 
Overview on cisco catalyst 2960 s, 2960-c and 2960 series switches
Overview on cisco catalyst 2960 s, 2960-c and 2960 series switchesOverview on cisco catalyst 2960 s, 2960-c and 2960 series switches
Overview on cisco catalyst 2960 s, 2960-c and 2960 series switches
 

Similar to Pmp 450 configuration_user_guide

Cambium ptp 600 series 10 04 user guide
Cambium ptp 600 series 10 04 user guideCambium ptp 600 series 10 04 user guide
Cambium ptp 600 series 10 04 user guideAdvantec Distribution
 
Cambium ptp300 500 series 05-02 system user guide-1
Cambium ptp300 500 series 05-02 system user guide-1Cambium ptp300 500 series 05-02 system user guide-1
Cambium ptp300 500 series 05-02 system user guide-1Advantec Distribution
 
Cambium ptp300 500 series 05-02 system user guide
Cambium ptp300 500 series 05-02 system user guideCambium ptp300 500 series 05-02 system user guide
Cambium ptp300 500 series 05-02 system user guideAdvantec Distribution
 
Cambium ptp300 500 series 05-02 system user guide
Cambium ptp300 500 series 05-02 system user guideCambium ptp300 500 series 05-02 system user guide
Cambium ptp300 500 series 05-02 system user guideAdvantec Distribution
 
Ptp800 user guide system release 05 00
Ptp800 user guide system release 05 00Ptp800 user guide system release 05 00
Ptp800 user guide system release 05 00Advantec Distribution
 
Cambium network ptp 800 series 05 00 user guide
Cambium network ptp 800 series 05 00 user guideCambium network ptp 800 series 05 00 user guide
Cambium network ptp 800 series 05 00 user guideAdvantec Distribution
 
Cambium network ptp 800 series 05 01 user guide
Cambium network ptp 800 series 05 01 user guideCambium network ptp 800 series 05 01 user guide
Cambium network ptp 800 series 05 01 user guideAdvantec Distribution
 
Cambium network ptp 810 series 01 00 user guide
Cambium network ptp 810 series 01 00 user guideCambium network ptp 810 series 01 00 user guide
Cambium network ptp 810 series 01 00 user guideAdvantec Distribution
 
Phn 2525 000v001 (optical interface)
Phn 2525 000v001 (optical interface)Phn 2525 000v001 (optical interface)
Phn 2525 000v001 (optical interface)Advantec Distribution
 
Aoc usas-l8i
Aoc usas-l8iAoc usas-l8i
Aoc usas-l8ilaonap166
 

Similar to Pmp 450 configuration_user_guide (20)

Pmp 450 installation_guide
Pmp 450 installation_guidePmp 450 installation_guide
Pmp 450 installation_guide
 
Phn 2510 003v000
Phn 2510 003v000Phn 2510 003v000
Phn 2510 003v000
 
Phn 2510 003v000
Phn 2510 003v000Phn 2510 003v000
Phn 2510 003v000
 
Cambium ptp 600 series 10 04 user guide
Cambium ptp 600 series 10 04 user guideCambium ptp 600 series 10 04 user guide
Cambium ptp 600 series 10 04 user guide
 
Cambium ptp300 500 series 05-02 system user guide-1
Cambium ptp300 500 series 05-02 system user guide-1Cambium ptp300 500 series 05-02 system user guide-1
Cambium ptp300 500 series 05-02 system user guide-1
 
Cambium ptp300 500 series 05-02 system user guide
Cambium ptp300 500 series 05-02 system user guideCambium ptp300 500 series 05-02 system user guide
Cambium ptp300 500 series 05-02 system user guide
 
Cambium ptp300 500 series 05-02 system user guide
Cambium ptp300 500 series 05-02 system user guideCambium ptp300 500 series 05-02 system user guide
Cambium ptp300 500 series 05-02 system user guide
 
Ptp800 user guide system release 05 00
Ptp800 user guide system release 05 00Ptp800 user guide system release 05 00
Ptp800 user guide system release 05 00
 
Cambium network ptp 800 series 05 00 user guide
Cambium network ptp 800 series 05 00 user guideCambium network ptp 800 series 05 00 user guide
Cambium network ptp 800 series 05 00 user guide
 
Cambium network ptp 800 series 05 01 user guide
Cambium network ptp 800 series 05 01 user guideCambium network ptp 800 series 05 01 user guide
Cambium network ptp 800 series 05 01 user guide
 
Cambium network ptp 810 series 01 00 user guide
Cambium network ptp 810 series 01 00 user guideCambium network ptp 810 series 01 00 user guide
Cambium network ptp 810 series 01 00 user guide
 
Ptp600 hazardous location guide
Ptp600 hazardous location guidePtp600 hazardous location guide
Ptp600 hazardous location guide
 
Ptp600 hazardous location guide
Ptp600 hazardous location guidePtp600 hazardous location guide
Ptp600 hazardous location guide
 
Ptp600 hazardous location guide
Ptp600 hazardous location guidePtp600 hazardous location guide
Ptp600 hazardous location guide
 
Phn 2525 000v001 (optical interface)
Phn 2525 000v001 (optical interface)Phn 2525 000v001 (optical interface)
Phn 2525 000v001 (optical interface)
 
Em sg500v1
Em sg500v1Em sg500v1
Em sg500v1
 
Ugps user guide_v_e
Ugps user guide_v_eUgps user guide_v_e
Ugps user guide_v_e
 
Ugps user guide_v_e
Ugps user guide_v_eUgps user guide_v_e
Ugps user guide_v_e
 
Hcd5 mih
Hcd5 mihHcd5 mih
Hcd5 mih
 
Aoc usas-l8i
Aoc usas-l8iAoc usas-l8i
Aoc usas-l8i
 

More from Advantec Distribution (20)

E pmp for public presentation feb 27 2015
E pmp for public presentation feb 27 2015E pmp for public presentation feb 27 2015
E pmp for public presentation feb 27 2015
 
1 wi ng5_wlan_brochure
1 wi ng5_wlan_brochure1 wi ng5_wlan_brochure
1 wi ng5_wlan_brochure
 
Vx9000 datasheet
Vx9000 datasheetVx9000 datasheet
Vx9000 datasheet
 
Nx7500 datasheet
Nx7500 datasheetNx7500 datasheet
Nx7500 datasheet
 
Nx9500 datasheet
Nx9500 datasheetNx9500 datasheet
Nx9500 datasheet
 
Nx4500 6500 datasheet
Nx4500 6500 datasheetNx4500 6500 datasheet
Nx4500 6500 datasheet
 
Rfs7000 datasheet
Rfs7000 datasheetRfs7000 datasheet
Rfs7000 datasheet
 
Rfs6000 datasheet
Rfs6000 datasheetRfs6000 datasheet
Rfs6000 datasheet
 
Rfs4000 datasheet
Rfs4000 datasheetRfs4000 datasheet
Rfs4000 datasheet
 
Ap8200 datasheet
Ap8200 datasheetAp8200 datasheet
Ap8200 datasheet
 
Ap7181 datasheet
Ap7181 datasheetAp7181 datasheet
Ap7181 datasheet
 
Ap8222 datasheet
Ap8222 datasheetAp8222 datasheet
Ap8222 datasheet
 
Ap8163 datasheet
Ap8163 datasheetAp8163 datasheet
Ap8163 datasheet
 
Ap6562 datasheet
Ap6562 datasheetAp6562 datasheet
Ap6562 datasheet
 
Ap8122 datasheet
Ap8122 datasheetAp8122 datasheet
Ap8122 datasheet
 
Ap8132 datasheet
Ap8132 datasheetAp8132 datasheet
Ap8132 datasheet
 
Ap7532 datasheet
Ap7532 datasheetAp7532 datasheet
Ap7532 datasheet
 
Ap7502 datasheet
Ap7502 datasheetAp7502 datasheet
Ap7502 datasheet
 
Ap7131 datasheet
Ap7131 datasheetAp7131 datasheet
Ap7131 datasheet
 
Ap7522 datasheet
Ap7522 datasheetAp7522 datasheet
Ap7522 datasheet
 

Recently uploaded

Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsMark Billinghurst
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Mattias Andersson
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfAddepto
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024The Digital Insurer
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenHervé Boutemy
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...Fwdays
 
Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsMiki Katsuragi
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024Lorenzo Miniero
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationSlibray Presentation
 
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Patryk Bandurski
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsRizwan Syed
 
Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Enterprise Knowledge
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024Stephanie Beckett
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):comworks
 
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr LapshynFwdays
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationSafe Software
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationRidwan Fadjar
 

Recently uploaded (20)

Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR Systems
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdf
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache Maven
 
DMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special EditionDMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special Edition
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
 
Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering Tips
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck Presentation
 
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL Certs
 
Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):
 
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
"Federated learning: out of reach no matter how close",Oleksandr Lapshyn
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
 
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 Presentation
 

Pmp 450 configuration_user_guide

  • 1. Cambium PMP 450 Configuration and User Guide System Release 12.0
  • 2. PMP 450 module essential information Default IP Address for Management GUI Access 169.254.1.1 Default Administrator Username admin Default Administrator Password (no password) See ―Updating the software version and using Software Upgrade Procedure CNUT‖ in the PMP 450 Configuration and User Guide 1. On the radio GUI, navigate to Configuration, Unit Settings and select Set to Factory Defaults OR 2. On the radio GUI, navigate to Configuration, Resetting to Factory Defaults (2 options) Unit Settings and enable and save option Set to Factory Defaults Upon Default Plug Detection. When the unit is powered on with a default/override plug (see section ―Acquiring the Override Plug‖ in the PMP 450 Configuration and User Guide) the radio will be returned to its factory default settings. pmp-0050 (September 2012)
  • 3. Accuracy While reasonable efforts have been made to assure the accuracy of this document, Cambium Networks assumes no liability resulting from any inaccuracies or omissions in this document, or from use of the information obtained herein. Cambium reserves the right to make changes to any products described herein to improve reliability, function, or design, and reserves the right to revise this document and to make changes from time to time in content hereof with no obligation to notify any person of revisions or changes. Cambium does not assume any liability arising out of the application or use of any product, software, or circuit described herein; neither does it convey license under its patent rights or the rights of others. It is possible that this publication may contain references to, or information about Cambium products (machines and programs), programming, or services that are not announced in your country. Such references or information must not be construed to mean that Cambium intends to announce such Cambium products, programming, or services in your country. Copyrights This document, Cambium products, and 3rd Party Software products described in this document may include or describe copyrighted Cambium and other 3rd Party supplied computer programs stored in semiconductor memories or other media. Laws in the United States and other countries preserve for Cambium, its licensors, and other 3rd Party supplied software certain exclusive rights for copyrighted material, including the exclusive right to copy, reproduce in any form, distribute and make derivative works of the copyrighted material. Accordingly, any copyrighted material of Cambium, its licensors, or the 3rd Party software supplied material contained in the Cambium products described in this document may not be copied, reproduced, reverse engineered, distributed, merged or modified in any manner without the express written permission of Cambium. Furthermore, the purchase of Cambium products shall not be deemed to grant either directly or by implication, estoppel, or otherwise, any license under the copyrights, patents or patent applications of Cambium or other 3rd Party supplied software, except for the normal non-exclusive, royalty free license to use that arises by operation of law in the sale of a product. Restrictions Software and documentation are copyrighted materials. Making unauthorized copies is prohibited by law. No part of the software or documentation may be reproduced, transmitted, transcribed, stored in a retrieval system, or translated into any language or computer language, in any form or by any means, without prior written permission of Cambium. License Agreements The software described in this document is the property of Cambium and its licensors. It is furnished by express license agreement only and may be used only in accordance with the terms of such an agreement. High Risk Materials Components, units, or 3rd Party products used in the product described herein are NOT fault-tolerant and are NOT designed, manufactured, or intended for use as on-line control equipment in the following hazardous environments requiring fail-safe controls: the operation of Nuclear Facilities, Aircraft Navigation or Aircraft Communication Systems, Air Traffic Control, Life Support, or Weapons Systems (High Risk Activities). Cambium and its supplier(s) specifically disclaim any expressed or implied warranty of fitness for such High Risk Activities. © 2012 Cambium Networks, Inc. All Rights Reserved. pmp-0050 (September 2012)
  • 4.
  • 5. PMP 450 Configuration and User Guide Safety and regulatory information Safety and regulatory information This section describes important safety and regulatory guidelines that must be observed by personnel installing or operating PMP 450 equipment. Important safety information To prevent loss of life or physical injury, observe the safety guidelines in this section. Power lines Exercise extreme care when working near power lines. Working at heights Exercise extreme care when working at heights. Grounding and protective earth PMP 450 units must be properly grounded to protect against lightning. It is the user‘s responsibility to install the equipment in accordance with national regulations. In the USA, follow Section 810 of the National Electric Code, ANSI/NFPA No.70-1984 (USA). In Canada, follow Section 54 of the Canadian Electrical Code. These codes describe correct installation procedures for grounding the outdoor unit, mast, lead-in wire and discharge unit, size of grounding conductors and connection requirements for grounding electrodes. Other regulations may apply in different countries and therefore it is recommended that installation of the outdoor unit be contracted to a professional installer. Powering down before servicing Always power down and unplug the equipment before servicing. Primary disconnect device The AP or SM unit‘s power supply is the primary disconnect device. External cables Safety may be compromised if outdoor rated cables are not used for connections that will be exposed to the outdoor environment. pmp-0050 (September 2012) i
  • 6. Safety and regulatory information PMP 450 Configuration and User Guide RF exposure near the antenna Radio frequency (RF) fields will be present close to the antenna when the transmitter is on. Always turn off the power to the PMP 450 unit before undertaking maintenance activities in front of the antenna. Minimum separation distances Install the AP/SM so as to provide and maintain the minimum separation distances from all persons. The minimum separation distances for each frequency variant are specified in Calculated distances and power compliance margins on page 2-11. Important regulatory information The PMP 450 product is certified as an unlicensed device in frequency bands where it is not allowed to cause interference to licensed services (called primary users of the bands). Radar avoidance In countries where radar systems are the primary band users, the regulators have mandated special requirements to protect these systems from interference caused by unlicensed devices. Unlicensed devices must detect and avoid co-channel operation with radar systems. Installers and users must meet all local regulatory requirements for radar detection. To meet these requirements, users must set the correct region code during commissioning of the PMP 450. If this is not done, installers and users may be liable to civil and criminal penalties. Contact the Cambium helpdesk if more guidance is required. USA and Canada specific information The USA Federal Communications Commission (FCC) has asked manufacturers to implement special features to prevent interference to radar systems that operate in the 5250-5350 and 5470-5725 MHz bands. These features must be implemented in all products able to operate outdoors in the UNII band. The use of the 5600 – 5650 MHz band is prohibited, even with detect-and-avoid functionality implemented. Manufacturers must ensure that such radio products cannot be configured to operate outside of FCC rules; specifically it must not be possible to disable or modify the radar protection functions that have been demonstrated to the FCC. In order to comply with these FCC requirements, Cambium supplies variants of the PMP 450 for operation in the USA or Canada. These variants are only allowed to operate with region codes that comply with FCC/IC rule. ii pmp-0050 (September 2012)
  • 7. Contents PMP 450 Configuration and User Guide Contents PMP 450 module essential information .......................................................................................................... 2 Safety and regulatory information ........................................................................... i Important safety information................................................................................................................... i Important regulatory information........................................................................................................... ii About This Configuration and User Guide .............................................................. ix General information ........................................................................................................................................ x Version information ................................................................................................................................. x Contacting Cambium Networks ............................................................................................................... x Problems and warranty ................................................................................................................................ xii Security advice ............................................................................................................................................ xiv Warnings, cautions, and notes ...................................................................................................................... xv Chapter 1: Configuration and alignment ........................................................... 1-1 Preparing for configuration and alignment.................................................................................................. 1-2 Safety precautions during configuration and alignment ....................................................................... 1-2 Task 1: Connecting to the unit ..................................................................................................................... 1-3 Configuring the management PC .......................................................................................................... 1-3 Connecting to the PC and powering up................................................................................................. 1-5 Logging into the web interface ............................................................................................................. 1-5 Task 2: Configuring IP and Ethernet interfaces .......................................................................................... 1-6 Configuring the AP IP interface ........................................................................................................... 1-6 NAT, DHCP Server, DHCP Client, and DMZ in SM ............................................................................ 1-8 Configuring the SM IP interface with NAT disabled .......................................................................... 1-12 Configuring the SM IP interface with NAT enabled ........................................................................... 1-14 NAT tab of the SM with NAT disabled .............................................................................................. 1-15 NAT tab of the SM with NAT enabled ............................................................................................... 1-19 Reconnecting to the management PC ................................................................................................. 1-24 VLAN Tab of the AP ......................................................................................................................... 1-25 VLAN Membership Tab of the AP ..................................................................................................... 1-29 VLAN Tab of the SM ......................................................................................................................... 1-30 VLAN Membership Tab of the SM ..................................................................................................... 1-34 PPPoE Tab of the SM ........................................................................................................................ 1-35 NAT Port Mapping Tab of the SM ..................................................................................................... 1-38 Task 3: Upgrading the software version and using CNUT ......................................................................... 1-39 Checking the installed software version .............................................................................................. 1-39 Upgrading to a new software version.................................................................................................. 1-40 Task 4: Configuring General and Unit settings .......................................................................................... 1-43 General Tab of the AP ........................................................................................................................ 1-43 Unit Settings Tab of the AP ............................................................................................................... 1-48 General Tab of the SM ........................................................................................................................ 1-50 pmp-0050 (September 2012) i
  • 8. PMP 450 Configuration and User Guide Contents Unit Settings Tab of the SM ............................................................................................................... 1-53 Time tab of the AP ............................................................................................................................. 1-54 Task 5: Configuring security ...................................................................................................................... 1-56 Isolating APs from the internet .......................................................................................................... 1-56 Encrypting radio transmissions .......................................................................................................... 1-57 Managing module access by passwords ............................................................................................... 1-57 Requiring SM Authentication ............................................................................................................ 1-61 Filtering protocols and ports .............................................................................................................. 1-61 Encrypting downlink broadcasts ........................................................................................................ 1-64 Isolating SMs ...................................................................................................................................... 1-64 Filtering management through Ethernet ........................................................................................... 1-64 Allowing management only from specified IP addresses .................................................................... 1-65 Configuring management IP by DHCP .............................................................................................. 1-65 Restricting radio Telnet access over the RF interface ........................................................................ 1-65 Security Tab of the AP ....................................................................................................................... 1-68 Protocol Filtering tab of the AP ......................................................................................................... 1-71 Port configuration tab of the AP ........................................................................................................ 1-72 Security Tab of the SM ....................................................................................................................... 1-73 Protocol Filtering Tab of the SM ........................................................................................................ 1-77 Port configuration tab of the SM ........................................................................................................ 1-78 Task 6: Configuring radio parameters ........................................................................................................ 1-80 Task 7: Setting up SNMP agent ................................................................................................................. 1-87 SNMP Tab of the AP.......................................................................................................................... 1-88 SNMP Tab of the SM ......................................................................................................................... 1-91 Task 8: Configuring syslog ......................................................................................................................... 1-94 Configuring AP system logging (syslog) ............................................................................................. 1-94 Configuring SM system logging (syslog) ............................................................................................. 1-95 Task 9: Configuring remote access ............................................................................................................. 1-96 Configuring SM IP over-the-air access................................................................................................ 1-96 Accessing SM over-the-air by LUID ................................................................................................... 1-97 Task 10: Monitoring the AP-SM Link ........................................................................................................ 1-98 Monitoring the AP-SM Link ............................................................................................................... 1-98 Task 11: Configuring quality of service .................................................................................................... 1-100 Maximum Information Rate (MIR) Parameters .............................................................................. 1-100 Token Bucket Algorithm .................................................................................................................. 1-100 MIR Data Entry Checking ............................................................................................................... 1-101 Bandwidth from the SM Perspective ................................................................................................ 1-101 Interaction of Burst Allocation and Sustained Data Rate Settings .................................................. 1-102 High-priority Bandwidth ................................................................................................................. 1-102 Traffic Scheduling ............................................................................................................................ 1-103 Setting the Configuration Source ...................................................................................................... 1-104 Quality of Service (QoS) Tab of the AP ............................................................................................ 1-106 DiffServ Tab of the AP ..................................................................................................................... 1-108 Quality of Service (QoS) Tab of the SM ............................................................................................ 1-109 DiffServ Tab of the SM ..................................................................................................................... 1-111 ii pmp-0050 (September 2012)
  • 9. PMP 450 Configuration and User Guide Contents Task 12: Configuring a RADIUS server ................................................................................................... 1-113 Understanding RADIUS for PMP 450 ............................................................................................ 1-113 Choosing Authentication Mode and Configuring for Authentication Servers - AP ...................... 1-114 SM Authentication Mode – Require RADIUS or Follow AP ...................................................... 1-116 Handling Certificates ........................................................................................................................ 1-118 Configuring your RADIUS servers for SM authentication ............................................................... 1-119 Assigning SM management IP addressing via RADIUS .................................................................. 1-120 Configuring your RADIUS server for SM configuration .................................................................. 1-121 Using RADIUS for centralized AP and SM user name and password management ......................... 1-123 RADIUS Device Data Accounting ................................................................................................... 1-127 RADIUS Device Re-Authentication ................................................................................................ 1-130 RADIUS Attribute Framed-IP-Address .......................................................................................... 1-131 Chapter 2: Reference information ..................................................................... 2-1 Equipment specifications ............................................................................................................................. 2-2 AP specifications .................................................................................................................................. 2-2 SM specifications .................................................................................................................................. 2-4 Wireless specifications ................................................................................................................................. 2-7 General wireless specifications .............................................................................................................. 2-7 Data network specifications ......................................................................................................................... 2-8 Ethernet interface................................................................................................................................. 2-8 Compliance with safety standards ............................................................................................................... 2-9 Electrical safety compliance ................................................................................................................. 2-9 Electromagnetic compatibility (EMC) compliance ............................................................................... 2-9 Human exposure to radio frequency energy ......................................................................................... 2-9 Compliance with radio regulations ............................................................................................................. 2-13 Type approvals ................................................................................................................................... 2-13 FCC compliance testing ...................................................................................................................... 2-13 Region Codes ...................................................................................................................................... 2-14 FCC and ICC IDs and certification numbers ...................................................................................... 2-16 Notifications .............................................................................................................................................. 2-17 PMP 450 regulatory compliance ......................................................................................................... 2-17 Chapter 3: Legal information ............................................................................ 3-1 Cambium Networks end user license agreement .......................................................................................... 3-2 Acceptance of this agreement ............................................................................................................... 3-2 Definitions ............................................................................................................................................ 3-2 Grant of license ..................................................................................................................................... 3-2 Conditions of use ................................................................................................................................... 3-3 Title and restrictions............................................................................................................................. 3-4 Confidentiality ...................................................................................................................................... 3-4 Right to use Cambium‘s name .............................................................................................................. 3-4 Transfer ................................................................................................................................................ 3-5 Updates ................................................................................................................................................ 3-5 Maintenance ......................................................................................................................................... 3-5 Disclaimer ............................................................................................................................................. 3-6 pmp-0050 (September 2012) iii
  • 10. PMP 450 Configuration and User Guide Contents Limitation of liability ........................................................................................................................... 3-6 U.S. government ................................................................................................................................... 3-7 Term of license ...................................................................................................................................... 3-7 Governing law ...................................................................................................................................... 3-7 Assignment ........................................................................................................................................... 3-7 Survival of provisions ........................................................................................................................... 3-8 Entire agreement .................................................................................................................................. 3-8 Hardware warranty ..................................................................................................................................... 3-9 Limit of liability ........................................................................................................................................ 3-10 Appendix A: Glossary ............................................................................................ I iv pmp-0050 (September 2012)
  • 11. List of Figures PMP 450 Configuration and User Guide List of Figures Figure 1 NAT disabled implementation ............................................................................................................ 1-9 Figure 2 NAT with DHCP client and DHCP server implementation .............................................................. 1-10 Figure 3 NAT with DHCP client implementation ........................................................................................... 1-10 Figure 4 NAT with DHCP server implementation .......................................................................................... 1-11 Figure 5 NAT without DHCP implementation .............................................................................................. 1-11 Figure 6 IP tab of the SM with NAT disabled................................................................................................. 1-12 Figure 7 IP tab of SM with NAT enabled ....................................................................................................... 1-14 Figure 8 NAT tab of the SM with NAT disabled ............................................................................................. 1-15 Figure 9 NAT tab of the SM with NAT enabled ............................................................................................. 1-19 Figure 10 VLAN tab of the AP ....................................................................................................................... 1-25 Figure 11 VLAN Membership tab of the AP ................................................................................................... 1-29 Figure 12 VLAN tab of the SM ....................................................................................................................... 1-30 Figure 13 VLAN Membership tab of the SM .................................................................................................... 1-34 Figure 14 Unit Settings tab of the AP ............................................................................................................. 1-48 Figure 15 General tab of the SM...................................................................................................................... 1-50 Figure 16 Unit Settings tab of the SM ............................................................................................................. 1-53 Figure 17 Time tab of the AP .......................................................................................................................... 1-54 Figure 18 General Status tab view for GUEST-level account ......................................................................... 1-58 Figure 19 SM Add User tab ............................................................................................................................. 1-58 Figure 20 Delete User tab of the SM ............................................................................................................... 1-59 Figure 21 RJ-11 pinout for the override plug .................................................................................................. 1-60 Figure 22 Categorical protocol filtering ........................................................................................................... 1-63 Figure 23 Ports filtered per protocol selection ................................................................................................. 1-63 Figure 24 RF Telnet Access Restrictions (orange) and Flow through (green) ................................................. 1-66 Figure 25 RF Telnet Access Restriction (orange) and Potential Security Hole (green) ................................... 1-67 Figure 26 Security tab of the AP ..................................................................................................................... 1-68 Figure 27 Security tab of the SM ..................................................................................................................... 1-73 Figure 28 Port Configuration tab of the SM ..................................................................................................... 1-78 Figure 29 Radio tab of the AP ......................................................................................................................... 1-80 Figure 30 SNMP tab of the AP ....................................................................................................................... 1-88 Figure 31 SNMP tab of the SM ....................................................................................................................... 1-91 Figure 32 AP Syslog Configuration page ......................................................................................................... 1-94 Figure 33 SM Syslog Configuration page ......................................................................................................... 1-95 Figure 34 SM IP Configuration page ............................................................................................................... 1-96 Figure 35 AP Session Status page ................................................................................................................... 1-97 Figure 36 AP Remote Subscribers page .......................................................................................................... 1-97 Figure 37 AP Session Status page ................................................................................................................... 1-98 Figure 38 Uplink and downlink rate caps adjusted to apply aggregate cap ................................................... 1-101 Figure 39 Uplink and downlink rate cap adjustment example ....................................................................... 1-101 pmp-0050 (September 2012) v
  • 12. PMP 450 Configuration and User Guide List of Figures Figure 40 Quality of Service (QoS) tab of the AP ......................................................................................... 1-106 Figure 41 Diffserv tab of the AP ................................................................................................................... 1-108 Figure 42 Quality of Service (QoS) tab of the SM ......................................................................................... 1-109 Figure 43 Diffserv tab of the SM ................................................................................................................... 1-111 Figure 44 Security tab of the AP ................................................................................................................... 1-115 Figure 45 Security tab of the SM ................................................................................................................... 1-117 Figure 46 SM Certificate Management .......................................................................................................... 1-119 Figure 47 User Authentication tab of the AP ............................................................................................... 1-124 Figure 48 User Authentication tab of the SM ............................................................................................... 1-126 Figure 49 SM specifications ............................................................................................................................... 2-4 vi pmp-0050 (September 2012)
  • 13. PMP 450 Configuration and User Guide List of Tables List of Tables Table 1 IP interface attributes .................................................................................................................. 1-7 Table 2 SM with NAT disabled - IP attributes ....................................................................................... 1-13 Table 3 SM with NAT enabled - IP attributes ........................................................................................ 1-14 Table 4 SM with NAT disabled - NAT attributes.................................................................................... 1-16 Table 5 SM with NAT enabled - NAT attributes .................................................................................... 1-20 Table 6 SM DNS Options with NAT Enabled ......................................................................................... 1-24 Table 7 AP VLAN tab attributes ............................................................................................................ 1-26 Table 8: Q-in-Q Ethernet frame ............................................................................................................... 1-27 Table 9 AP VLAN Membership attributes .............................................................................................. 1-29 Table 10 SM VLAN attributes ................................................................................................................ 1-31 Table 11 SM VLAN Membership attributes ............................................................................................ 1-34 Table 12 PPPoE tab of the SM ............................................................................................................... 1-35 Table 13 SM PPPoE attributes ............................................................................................................... 1-36 Table 14 NAT Port Mapping tab of the SM ............................................................................................ 1-38 Table 15 SM NAT Port Mapping attributes ............................................................................................ 1-38 Table 16 General tab of the AP ............................................................................................................... 1-43 Table 17 AP General Configuration attributes ........................................................................................ 1-44 Table 18 AP Unit Settings attributes ...................................................................................................... 1-49 Table 19 SM General Configuration attributes ........................................................................................ 1-51 Table 20 SM Unit Settings attributes ...................................................................................................... 1-53 Table 21 AP Time attributes ................................................................................................................... 1-54 Table 22 AP Security attributes .............................................................................................................. 1-69 Table 23 Protocol Filtering tab of the AP ............................................................................................... 1-71 Table 24 AP Protocol Filtering attributes ............................................................................................... 1-71 Table 25 Port configuration tab of the AP .............................................................................................. 1-72 Table 26 AP Port Configuration attributes ............................................................................................. 1-72 Table 27 SM Security attributes .............................................................................................................. 1-74 Table 28 Protocol Filtering tab of the SM ............................................................................................... 1-77 Table 29 SM Protocol Filtering attributes ............................................................................................... 1-77 Table 30 SM Port Configuration attributes ............................................................................................. 1-78 Table 31 AP Radio attributes ................................................................................................................. 1-81 Table 32 Radio tab of SM ........................................................................................................................ 1-84 Table 33 SM Radio attributes ................................................................................................................. 1-84 Table 34 AP SNMP attributes ................................................................................................................ 1-89 Table 35 SM SNMP attributes ................................................................................................................ 1-92 Table 36 Syslog Configuration attributes ................................................................................................ 1-95 pmp-0050 (September 2012) 1-7
  • 14. List of Tables PMP 450 Configuration and User Guide - Table 37 Syslog Configuration attributes ................................................................................................ 1-95 Table 38 Characteristics of traffic scheduling ......................................................................................... 1-103 Table 39 Recommended combined settings for typical operations ......................................................... 1-104 Table 40 Where feature values are obtained for an SM with authentication required ........................... 1-105 Table 41 Where feature values are obtained for an SM with authentication disabled ............................ 1-106 Table 42 AP QoS attributes .................................................................................................................. 1-106 Table 43 AP Diffserv attributes ............................................................................................................ 1-108 Table 44 SM Quality of Service attributes ............................................................................................ 1-109 Table 45 SM Diffserv attributes ............................................................................................................ 1-112 Table 46 RADIUS Vendor Specific Attributes (VSAs) ......................................................................... 1-121 Table 47 AP User Authentication and Access Tracking attributes ....................................................... 1-124 Table 48 SM User Authentication and Access Tracking attributes ....................................................... 1-126 Table 49 Device data accounting RADIUS attributes .......................................................................... 1-127 Table 50 RADIUS accounting messages configuration ......................................................................... 1-130 Table 51 Device re-authentication configuration .................................................................................. 1-130 Table 52 Connectorized AP physical specifications ................................................................................... 2-2 Table 53 PMP 450 wireless specifications .................................................................................................. 2-7 Table 54 PMP 450 Ethernet bridging specifications ................................................................................. 2-8 Table 55 PMP 450 safety compliance specifications .................................................................................. 2-9 Table 56 EMC emissions compliance ......................................................................................................... 2-9 Table 57 Power compliance margins ....................................................................................................... 2-12 Table 58 Radio certifications ................................................................................................................... 2-13 Table 59 Region Code information .......................................................................................................... 2-14 Table 60 Region Code EIRP information ............................................................................................... 2-15 Table 61 US FCC IDs and Industry Canada Certification Numbers and Covered Configurations .......... 2-16 1-8 pmp-0050 (September 2012)
  • 15. PMP 450 module essential information PMP 450 Configuration and User Guide About This Configuration and User Guide This guide describes the configuration of the Cambium PMP 450 Series of point-to-multipoint wireless equipment deployment. It is intended for use by the system administrator. After the initial general and legal information, the guide begins with a set of tasks to complete a basic configuration of the equipment. Once this configuration is complete, the units are ready for deployment. Advanced configuration, also defined in this document, may be initiated at the operator‘s discretion. pmp-0050 (September 2012) ix
  • 16. PMP 450 Configuration and User Guide General information General information Version information The following shows the issue status of this document since it was first released: Issue Date of issue Remarks 001v000 September 2012 System Release 12.0 Contacting Cambium Networks PMP support website: http://www.cambiumnetworks.com/support Cambium main website: http://www.cambiumnetworks.com/ Sales enquiries: solutions@cambiumnetworks.com Email support: support@cambiumnetworks.com Telephone numbers: For full list of Cambium support telephone numbers, see: http://www.cambiumnetworks.com/support/technical.php Address: Cambium Networks 3800 Golf Road, Suite 360 Rolling Meadows, IL 60008 x pmp-0050 (September 2012)
  • 17. General information PMP 450 Configuration and User Guide Purpose Cambium Networks Point-To-Multipoint (PMP) documents are intended to instruct and assist personnel in the operation, installation and maintenance of the Cambium PMP equipment and ancillary devices. It is recommended that all personnel engaged in such activities be properly trained. Cambium disclaims all liability whatsoever, implied or express, for any risk of damage, loss or reduction in system performance arising directly or indirectly out of the failure of the customer, or anyone acting on the customer's behalf, to abide by the instructions, system parameters, or recommendations made in this document. Cross references References to external publications are shown in italics. Other cross references, emphasized in blue text in electronic versions, are active links to the references. This document is divided into numbered chapters that are divided into sections. Sections are not numbered, but are individually named at the top of each page, and are listed in the table of contents. Feedback We appreciate feedback from the users of our documents. This includes feedback on the structure, content, accuracy, or completeness of our documents. Send feedback to email support (see ‗Contacting Cambium Networks‘). pmp-0050 (September 2012) xi
  • 18. PMP 450 Configuration and User Guide Problems and warranty Problems and warranty Reporting problems If any problems are encountered when installing or operating this equipment, follow this procedure to investigate and report: 1 Search this document and the software release notes of supported releases. 2 Visit the support website. http://www.cambiumenetworks.com/support/pmp/software/index.php 3 Ask for assistance from the Cambium product supplier. 4 Gather information from affected units such as: The IP addresses and MAC addresses. The software releases. The configuration of software features. Any available diagnostic downloads. CNUT Support Capture Tool information 5 Escalate the problem by emailing or telephoning support. See ‗Contacting Cambium Networks‘ for URLs, email addresses and telephone numbers. Repair and service If unit failure is suspected, obtain details of the Return Material Authorization (RMA) process from the support website. Warranty Cambium‘s standard hardware warranty is for one (1) year from date of shipment from Cambium or a Cambium distributor. Cambium warrants that hardware will conform to the relevant published specifications and will be free from material defects in material and workmanship under normal use and service. Cambium shall within this time, at its own option, either repair or replace the defective product within thirty (30) days of receipt of the defective product. Repaired or replaced product will be subject to the original warranty period but not less than thirty (30) days. To register PMP products or activate warranties, visit the support website. Extended warranties are available for PMP 450 products. For warranty assistance, contact the reseller or distributor. xii pmp-0050 (September 2012)
  • 19. Problems and warranty PMP 450 Configuration and User Guide Using non-Cambium parts for repair could damage the equipment or void warranty. Contact Cambium for service and repair instructions. Portions of Cambium equipment may be damaged from exposure to electrostatic discharge. Use precautions to prevent damage. pmp-0050 (September 2012) xiii
  • 20. PMP 450 Configuration and User Guide Security advice Security advice Cambium Networks systems and equipment provide security parameters that can be configured by the operator based on their particular operating environment. Cambium recommends setting and using these parameters following industry recognized security practices. Security aspects to be considered are protecting the confidentiality, integrity, and availability of information and assets. Assets include the ability to communicate, information about the nature of the communications, and information about the parties involved. In certain instances Cambium makes specific recommendations regarding security practices, however the implementation of these recommendations and final responsibility for the security of the system lies with the operator of the system. xiv pmp-0050 (September 2012)
  • 21. Warnings, cautions, and notes PMP 450 Configuration and User Guide Warnings, cautions, and notes The following describes how warnings and cautions are used in this document and in all documents of the Cambium Networks document set. Warnings Warnings precede instructions that contain potentially hazardous situations. Warnings are used to alert the reader to possible hazards that could cause loss of life or physical injury. A warning has the following format: Warning text and consequence for not following the instructions in the warning. Cautions Cautions precede instructions and are used when there is a possibility of damage to systems, software, or individual items of equipment within a system. However, this damage presents no danger to personnel. A caution has the following format: Caution text and consequence for not following the instructions in the caution. Notes A note means that there is a possibility of an undesirable situation or provides additional information to help the reader understand a topic or concept. A note has the following format: Note text. pmp-0050 (September 2012) xv
  • 22.
  • 23. PMP 450 Configuration and User Guide Chapter 1: Configuration and alignment This chapter describes all configuration and alignment tasks that are performed when a PMP 450 link is deployed. Observe the precautions in Preparing for configuration and alignment on page 1-2. This section is divided into several tasks, including: Task 1: Connecting to the unit on page 1-3 Task 2: Configuring IP and Ethernet interfaces on page 1-6 Task 3: Upgrading the software version and using CNUT on page 1-39 Task 4: Configuring General and Unit settings on page 1-43 Task 5: Configuring security on page 1-56 Task 6: Configuring radio parameters on page 1-80 Task 7: Setting up SNMP agent on page 1-87 Task 8: Configuring syslog on page 1-94 Task 9: Configuring remote access on page 1-96 Task 10: Monitoring the AP-SM Link on page 1-98 Task 11: Configuring quality of service on page 1-100 Task 12: Configuring a RADIUS server on page 1-113 pmp-0050 (September 2012) 1-1
  • 24. PMP 450 Configuration and User Guide Preparing for configuration and alignment Preparing for configuration and alignment This section describes the checks to be performed before proceeding with unit configuration and antenna alignment. Safety precautions during configuration and alignment All national and local safety standards must be followed while configuring the units and aligning the antennas. Ensure that personnel are not exposed to unsafe levels of RF energy. The units start to radiate as soon as they are powered up. Observe the following guidelines: Never work in front of the antenna when the AP or SM is powered. Always power down the AP or SM before connecting or disconnecting the drop cable from the unit. 1-2 pmp-0050 (September 2012)
  • 25. Task 1: Connecting to the unit PMP 450 Configuration and User Guide Task 1: Connecting to the unit This task consists of the following procedures: Configuring the management PC on page 1-3 Connecting to the PC and powering up on page 1-5 Logging into the web interface on page 1-5 Configuring the management PC To configure the local management PC to communicate with the PMP 450 AP or SM, proceed as follows: Procedure 1 Configuring the management PC 1 Select Properties for the Ethernet port. 2 Select the Internet Protocol (TCP/IP) item (in Windows 7, this item is called ―Internet Protocol Version 4 (TCP/IPv4): 3 Click on Properties. pmp-0050 (September 2012) 1-3
  • 26. PMP 450 Configuration and User Guide Task 1: Connecting to the unit 4 Enter an IP address that is valid for the 169.254.X.X network, avoiding: 169.254.0.0 and 169.254.1.1 and 169.254.1.2 A good example is 169.254.1.3: 5 Enter a subnet mask of 255.255.255.0. Leave the default gateway blank. 1-4 pmp-0050 (September 2012)
  • 27. Task 1: Connecting to the unit PMP 450 Configuration and User Guide Connecting to the PC and powering up To connect the PMP 450 AP or SM to the PC and power up the unit, proceed as follows: Procedure 2 Connecting to the PC and powering up 1 Check that the AP or SM and the associated power supply are correctly connected. 2 Connect the PC Ethernet port to the LAN port of the power supply using a standard (not crossed) Ethernet cable. 3 Apply power to the radio power supply. The green Power LED should illuminate continuously. Logging into the web interface To log into the web interface as a system administrator, proceed as follows: Procedure 3 Logging into the web interface 1 Start the web browser from the management PC. 2 Type the IP address of the unit into the address bar. The factory default IP address is 169.254.1.1. Press ENTER. The web interface General Status page is displayed: 3 Log in with the desired username and password. See section Managing module access by passwords on page 1-57 for more information. pmp-0050 (September 2012) 1-5
  • 28. PMP 450 Configuration and User Guide Task 2: Configuring IP and Ethernet interfaces Task 2: Configuring IP and Ethernet interfaces This task consists of the following sections: Configuring the AP IP interface on page 1-6 NAT, DHCP Server, DHCP Client, and DMZ in SM on page 1-8 Configuring the SM IP interface with NAT disabled on page 1-12 Configuring the SM IP interface with NAT enabled on page 1-14 NAT tab of the SM with NAT disabled on page 1-15 NAT tab of the SM with NAT enabled on page 1-19 Reconnecting to the management PC on page 1-24 Configuring the AP IP interface The IP interface allows users to connect to the PMP 450 web interface, either from a locally connected computer or from a management network. To configure the IP interface, proceed as follows Procedure 4 Configuring the AP IP interface 1 Select menu option Configuration, IP. The LAN configuration page is displayed: 2 Update IP Address, Subnet Mask and Gateway IP Address to meet network requirements (as specified by the network administrator). 3 Review the other IP interface attributes and update them, if required (Table 1). 1-6 pmp-0050 (September 2012)
  • 29. Task 2: Configuring IP and Ethernet interfaces PMP 450 Configuration and User Guide 4 Select Save. The ―Reboot Required‖ message is displayed: 5 Select Reboot. Table 1 IP interface attributes Attribute Meaning IP Address Internet protocol (IP) address. This address is used by the family of Internet protocols to uniquely identify this unit on a network. Subnet Mask Defines the address range of the connected IP network. Gateway IP Address The IP address of a computer on the current network that acts as a gateway. A gateway acts as an entrance and exit to packets from and to other networks. DHCP state If Enabled is selected, the DHCP server automatically assigns the IP configuration (IP address, subnet mask, and gateway IP address) and the values of those individual parameters (above) are not used. The setting of this DHCP state parameter is also viewable, but not settable, in the Network Interface tab of the Home page. DNS IP Address Canopy devices allow for configuration of a preferred and alternate DNS server IP address either automatically or manually. Devices must set DNS server IP address manually when DHCP is disabled for the management interface of the device. DNS servers may be configured automatically from the DHCP response when DHCP is enabled for the management interface of the device. Optionally devices may be configured to set the DNS server IP address manually when DHCP is enabled for the management interface. The default DNS IP addresses are 0.0.0.0 when configured manually. Preferred DNS Server The first address used for DNS resolution. pmp-0050 (September 2012) 1-7
  • 30. PMP 450 Configuration and User Guide Task 2: Configuring IP and Ethernet interfaces Attribute Meaning Alternate DNS Server Upon failure to reach the Preferred DNS server, the Alternate DNS Server is used. Domain Name The operator‘s management domain name may be configured for DNS. The domain name configuration can be used for configuration of the servers in the operator‘s network. The default domain name is example.com, and is only used if configured as such. LAN2 Network It is recommended to not change this parameter from the default AP private Interface IP address of 192.168.101.1. A /24 CIDR subnet is used to communicate with each of the SMs that are registered. The AP uses a combination of the private Configuration (Radio IP and the LUID (logical unit ID) of the SM. Private Interface) – For example, if an SM is the first to register in an AP, and another SM IP Address registers later, then the AP whose Private IP address is 192.168.101.1 uses the following SM Private IP addresses to communicate to each: SM LUID Private IP First SM registered 2 192.168.101.2 Second SM registered 3 192.168.101.3 NAT, DHCP Server, DHCP Client, and DMZ in SM The system provides NAT (network address translation) for SMs in the following combinations of NAT and DHCP (Dynamic Host Configuration Protocol): NAT Disabled NAT with DHCP Client (DHCP selected as the Connection Type of the WAN interface) and DHCP Server NAT with DHCP Client(DHCP selected as the Connection Type of the WAN interface) NAT with DHCP Server NAT without DHCP NAT NAT isolates devices connected to the Ethernet/wired side of an SM from being seen directly from the wireless side of the SM. With NAT enabled, the SM has an IP address for transport traffic (separate from its address for management), terminates transport traffic, and allows you to assign a range of IP addresses to devices that are connected to the Ethernet/wired side of the SM. In the Cambium system, NAT supports many protocols, including HTTP, ICMP (Internet Control Message Protocols), and FTP (File Transfer Protocol). For virtual private network (VPN) implementation, L2TP over IPSec (Level 2 Tunneling Protocol over IP Security) and PPTP (Point to Point Tunneling Protocol) are supported. 1-8 pmp-0050 (September 2012)
  • 31. Task 2: Configuring IP and Ethernet interfaces PMP 450 Configuration and User Guide DHCP DHCP enables a device to be assigned a new IP address and TCP/IP parameters, including a default gateway, whenever the device reboots. Thus DHCP reduces configuration time, conserves IP addresses, and allows modules to be moved to a different network within the Cambium system. In conjunction with the NAT features, each SM provides a DHCP server that assigns IP addresses to computers connected to the SM by Ethernet protocol. a DHCP client that receives an IP address for the SM from a network DHCP server. DMZ In conjunction with the NAT features, a DMZ (demilitarized zone) allows the assignment of one IP address behind the SM for a device to logically exist outside the firewall and receive network traffic. The first three octets of this IP address must be identical to the first three octets of the NAT private IP address. NAT Disabled The NAT Disabled implementation is illustrated in Figure 1. Figure 1 NAT disabled implementation pmp-0050 (September 2012) 1-9
  • 32. PMP 450 Configuration and User Guide Task 2: Configuring IP and Ethernet interfaces NAT with DHCP Client and DHCP Server Figure 2 NAT with DHCP client and DHCP server implementation NAT with DHCP Client Figure 3 NAT with DHCP client implementation 1-10 pmp-0050 (September 2012)
  • 33. Task 2: Configuring IP and Ethernet interfaces PMP 450 Configuration and User Guide NAT with DHCP Server Figure 4 NAT with DHCP server implementation NAT without DHCP Figure 5 NAT without DHCP implementation pmp-0050 (September 2012) 1-11
  • 34. PMP 450 Configuration and User Guide Task 2: Configuring IP and Ethernet interfaces NAT and VPNs VPN technology provides the benefits of a private network during communication over a public network. One typical use of a VPN is to connect remote employees, who are at home or in a different city, to their corporate network over the public Internet. Any of several VPN implementation schemes is possible. By design, NAT translates or changes addresses, and thus interferes with a VPN that is not specifically supported by a given NAT implementation. With NAT enabled, SMs support L2TP over IPSec (Level 2 Tunneling Protocol over IP Security) VPNs and PPTP (Point to Point Tunneling Protocol) VPNs. With NAT disabled, SMs support all types of VPNs. Configuring the SM IP interface with NAT disabled Figure 6 IP tab of the SM with NAT disabled In the IP tab of an SM with NAT disabled, you may set the following parameters. 1-12 pmp-0050 (September 2012)
  • 35. Task 2: Configuring IP and Ethernet interfaces PMP 450 Configuration and User Guide Table 2 SM with NAT disabled - IP attributes Attribute Meaning LAN1 Network Interface Enter the non-routable IP address to associate with the Ethernet Configuration, IP Address connection on this SM. (The default IP address from the factory is 169.254.1.1.) If you set and then forget this parameter, then you must both physically access the module. use an override plug to electronically access the module configuration parameters at 169.254.1.1. See Overriding Forgotten IP Addresses or Passwords on AP on Page 1-59. Note or print the IP settings from this page. Ensure that you can readily associate these IP settings both with the module and with the other data that you store about the module. LAN1 Network Interface Specify whether the IP address of the SM should be visible to only a Configuration, Network device connected to the SM by Ethernet (Local) or should be visible Accessibility to the AP as well (Public). LAN1 Network Interface Enter an appropriate subnet mask for the SM to communicate on the Configuration, Subnet Mask network. The default subnet mask is 255.255.0.0. LAN1 Network Interface Enter the appropriate gateway for the SM to communicate with the Configuration, Gateway IP network. The default gateway is 169.254.0.0. Address LAN1 Network Interface If you select Enabled, the DHCP server automatically assigns the IP Configuration, DHCP state configuration (IP address, subnet mask, and gateway IP address) and the values of those individual parameters (above) are not used. The setting of this DHCP state parameter is also viewable, but not settable, in the Network Interface tab of the Home page. In this tab, DHCP State is settable only if the Network Accessibility parameter in the IP tab is set to Public. This parameter is also settable in the NAT tab of the Configuration web page, but only when NAT is enabled. If the DHCP state parameter is set to Enabled in the Configuration => IP tab of the SM, do not check the BootpClient option for Packet Filter Types in its Protocol Filtering tab, because doing so would block the DHCP request. (Filters apply to all packets that leave the SM via its RF interface, including those that the SM itself generates.) If you want to keep DHCP enabled and avoid the blocking scenario, select the Bootp Server option instead. This will result in responses being appropriately filtered and discarded. pmp-0050 (September 2012) 1-13
  • 36. PMP 450 Configuration and User Guide Task 2: Configuring IP and Ethernet interfaces Attribute Meaning LAN1 Network Interface Canopy devices allow for configuration of a preferred and alternate Configuration, DNS IP DNS server IP address either automatically or manually. Devices must set DNS server IP address manually when DHCP is disabled for Address the management interface of the device. DNS servers may be configured automatically from the DHCP response when DHCP is enabled for the management interface of the device. Optionally devices may be configured to set the DNS server IP address manually when DHCP is enabled for the management interface. The default DNS IP addresses are 0.0.0.0 when configured manually. LAN1 Network Interface The first DNS server used for DNS resolution. Configuration, Preferred DNS Server LAN1 Network Interface The second DNS server used for DNS resolution. Configuration, Alternate DNS Server LAN1 Network Interface The operator‘s management domain name may be configured for Configuration, Domain Name DNS. The domain name configuration can be used for configuration of the servers in the operator‘s network. The default domain name is example.com, and is only used if configured as such. Configuring the SM IP interface with NAT enabled Figure 7 IP tab of SM with NAT enabled In the IP tab of an SM with NAT enabled, you may set the following parameters. Table 3 SM with NAT enabled - IP attributes Attribute Meaning NAT Network Interface Assign an IP address for SM management through Ethernet access to Configuration, IP Address the SM. Set only the first three bytes. The last byte is permanently set to 1. This address becomes the base for the range of DHCP- assigned addresses. NAT Network Interface Assign a subnet mask of 255.255.255.0 or a more restrictive subnet Configuration, Subnet Mask mask. Set only the last byte of this subnet mask. Each of the first three bytes is permanently set to 255. 1-14 pmp-0050 (September 2012)
  • 37. Task 2: Configuring IP and Ethernet interfaces PMP 450 Configuration and User Guide NAT tab of the SM with NAT disabled Figure 8 NAT tab of the SM with NAT disabled pmp-0050 (September 2012) 1-15
  • 38. PMP 450 Configuration and User Guide Task 2: Configuring IP and Ethernet interfaces In the NAT tab of an SM with NAT disabled, you may set the following parameters. Table 4 SM with NAT disabled - NAT attributes Attribute Meaning NAT Enable/Disable This parameter enables or disabled the Network Address Translation (NAT) feature for the SM. NAT isolates devices connected to the Ethernet/wired side of an SM from being seen directly from the wireless side of the SM. With NAT enabled, the SM has an IP address for transport traffic separate from its address for management, terminates transport traffic, and allows you to assign a range of IP addresses to devices that are connected to the Ethernet/wired side of the SM When NAT is enabled, VLANs are not supported on the wired side of that SM. You can enable NAT in SMs within a sector where VLAN is enabled in the AP, but this may constrain network design WAN Interface, Connection This parameter is not configurable when NAT is disabled. Type WAN Interface, IP Address This field displays the IP address for the SM. DHCP Server will not automatically assign this address when NAT is disabled. WAN Interface, Subnet Mask This field displays the subnet mask for the SM. DHCP Server will not automatically assign this address when NAT is disabled. WAN Interface, Gateway IP This field displays the gateway IP address for the SM. DHCP Server Address will not automatically assign this address when NAT is disabled. WAN Interface, Reply to This parameter is not configurable when NAT is disabled. Ping on WAN Interface LAN Interface, IP Address This parameter is not configurable when NAT is disabled. LAN Interface, Subnet Mask This parameter is not configurable when NAT is disabled. LAN Interface, DMZ Enable This parameter is not configurable when NAT is disabled. LAN Interface, DMZ IP This parameter is not configurable when NAT is disabled. Address LAN DHCP Server, DHCP This parameter is not configurable when NAT is disabled. Server Enable/Disable LAN DHCP Server, DHCP This parameter is not configurable when NAT is disabled. Server Lease Timeout LAN DHCP Server, DHCP This parameter is not configurable when NAT is disabled. Start IP LAN DHCP Server, Number This parameter is not configurable when NAT is disabled. of IPs to Lease 1-16 pmp-0050 (September 2012)
  • 39. Task 2: Configuring IP and Ethernet interfaces PMP 450 Configuration and User Guide Attribute Meaning LAN DHCP Server, DNS This parameter is not configurable when NAT is disabled. Server Proxy LAN DHCP Server, DNS IP This parameter is not configurable when NAT is disabled. Address LAN DHCP Server, Preferred This parameter is not configurable when NAT is disabled. DNS IP Address LAN DHCP Server, Alternate This parameter is not configurable when NAT is disabled. DNS IP Address Remote Configuration This parameter is not configurable when NAT is disabled. Interface, Interface Enable/Disable Remote Configuration This parameter is not configurable when NAT is disabled. Interface, Connection Type Remote Configuration This parameter is not configurable when NAT is disabled. Interface, IP Address Remote Configuration This parameter is not configurable when NAT is disabled. Interface, Subnet Mask Remote Configuration This parameter is not configurable when NAT is disabled. Interface, Gateway IP Address Remote Configuration This parameter is not configurable when NAT is disabled. Interface, DNS IP Address Remote Configuration This parameter is not configurable when NAT is disabled. Interface, Preferred DNS Server Remote Connection Interface, This parameter is not configurable when NAT is disabled. Alternate DNS Server Remote Connection Interface, This parameter is not configurable when NAT is disabled. Domain Name NAT Protocol Parameters, If a router upstream has an ARP cache of longer duration (as some ARP Cache Timeout use 30 minutes), enter a value of longer duration than the router ARP cache. The default value of this field is 20 minutes. NAT Protocol Parameters, Where a large network exists behind the SM, you can set this TCP Session Garbage parameter to lower than the default value of 120 minutes. This Timeout action makes additional resources available for greater traffic than the default value accommodates. pmp-0050 (September 2012) 1-17
  • 40. PMP 450 Configuration and User Guide Task 2: Configuring IP and Ethernet interfaces Attribute Meaning NAT Protocol Parameters, You may adjust this parameter in the range of 1 to 1440 minutes, UDP Session Garbage based on network performance. The default value of this parameter Timeout is 4 minutes. 1-18 pmp-0050 (September 2012)
  • 41. Task 2: Configuring IP and Ethernet interfaces PMP 450 Configuration and User Guide NAT tab of the SM with NAT enabled Figure 9 NAT tab of the SM with NAT enabled pmp-0050 (September 2012) 1-19
  • 42. PMP 450 Configuration and User Guide Task 2: Configuring IP and Ethernet interfaces In the NAT tab of an SM with NAT enabled, you may set the following parameters. Table 5 SM with NAT enabled - NAT attributes Attribute Meaning NAT Enable/Disable This parameter enables or disabled the Network Address Translation (NAT) feature for the SM. NAT isolates devices connected to the Ethernet/wired side of an SM from being seen directly from the wireless side of the SM. With NAT enabled, the SM has an IP address for transport traffic separate from its address for management, terminates transport traffic, and allows you to assign a range of IP addresses to devices that are connected to the Ethernet/wired side of the SM. When NAT is enabled, VLANs are not supported on the wired side of that SM. You can enable NAT in SMs within a sector where VLAN is enabled in the AP, but this may constrain network design. WAN Interface The WAN interface is the RF-side address for transport traffic. WAN Interface, Connection This parameter may be set to Type Static IP—when this is the selection, the following three parameters (IP Address, Subnet Mask, and Gateway IP Address) must all be properly populated. DHCP—when this is the selection, the information from the DHCP server configures the interface. PPPoE—when this is the selection, the information from the PPPoE server configures the interface. WAN Interface, Subnet Mask If Static IP is set as the Connection Type of the WAN interface, then this parameter configures the subnet mask of the SM for RF transport traffic. WAN Interface, Gateway IP If Static IP is set as the Connection Type of the WAN interface, then Address this parameter configures the gateway IP address for the SM for RF transport traffic. WAN Interface, Reply to Ping By default, the radio interface does not respond to pings. If you use a on WAN Interface management system (such as WM) that will occasionally ping the SM, set this parameter to Enabled. LAN Interface The LAN interface is both the management access through the Ethernet port and the Ethernet-side address for transport traffic. When NAT is enabled, this interface is redundantly shown as the NAT Network Interface Configuration on the IP tab of the Configuration web page in the SM. LAN Interface, IP Address Assign an IP address for SM management through Ethernet access to the SM. This address becomes the base for the range of DHCP- assigned addresses. 1-20 pmp-0050 (September 2012)
  • 43. Task 2: Configuring IP and Ethernet interfaces PMP 450 Configuration and User Guide Attribute Meaning LAN Interface, Subnet Mask Assign a subnet mask of 255.255.255.0 or a more restrictive subnet mask. Set only the last byte of this subnet mask. Each of the first three bytes is permanently set to 255. LAN Interface, DMZ Enable Either enable or disable DMZ for this SM. LAN Interface, DMZ IP If you enable DMZ in the parameter above, set the last byte of the Address DMZ host IP address to use for this SM when DMZ is enabled. Only one such address is allowed. The first three bytes are identical to those of the NAT private IP address. Ensure that the device that should receive network traffic behind this SM is assigned this address. The system provides a warning if you enter an address within the range that DHCP can assign. LAN DHCP Server This is the server (in the SM) that provides an IP address to the device connected to the Ethernet port of the SM. LAN DHCP Server, DHCP Select either Server Enable/Disable Enabled to allow this SM to assign IP addresses, subnet masks, and gateway IP addresses to attached devices. assign a start address for DHCP. designate how many IP addresses may be temporarily used (leased). Disabled to disallow the SM to assign addresses to attached devices. LAN DHCP Server, DHCP Based on network performance, enter the number of days between Server Lease Timeout when the DHCP server assigns an IP address and when that address expires. The range of values for this parameter is 1 to 30 days. The default value is 30 days. LAN DHCP Server, DHCP If you will be enabling DHCP Server below, set the last byte of the Start IP starting IP address that the DHCP server will assign. The first three bytes are identical to those of the NAT private IP address. LAN DHCP Server, Number Enter how many IP addresses the DHCP server is allowed to assign. of IPs to Lease The default value is 50 addresses. LAN DHCP Server, DNS This parameter enables or disables advertisement of the SM as the Server Proxy DNS server. On initial boot up of an SM with the NAT WAN interface configured as DHCP or PPPoE, the SM module will not immediately have DNS information. With DNS Server Proxy disabled, the clients will renew their lease about every minute until the SM has the DNS information to give out. At this point the SM will go to the full configured lease time period which is 30 days by default. With DNS Server Proxy enabled, the SM will give out full term leases with its NAT LAN IP as the DNS server. pmp-0050 (September 2012) 1-21
  • 44. PMP 450 Configuration and User Guide Task 2: Configuring IP and Ethernet interfaces Attribute Meaning LAN DHCP Server, DNS IP Select either Address Obtain Automatically to allow the system to set the IP address of the DNS server. Set Manually to enable yourself to set both a preferred and an alternate DNS IP address. LAN DHCP Server, Preferred Enter the preferred DNS IP address to use when the DNS IP Address DNS IP Address parameter is set to Set Manually. LAN DHCP Server, Alternate Enter the DNS IP address to use when the DNS IP Address DNS IP Address parameter is set to Set Manually and no response is received from the preferred DNS IP address. Remote Configuration If you want over-the-air management capability for the SM, select Interface, Interface Enabled. If you want to limit management of the SM to its Ethernet Enable/Disable interface, select Disabled. Remote Configuration The Remote Configuration interface is the RF-side address for Interface management by an EMS or NMS (WM, for example). Remote Configuration When this interface is Disabled, the SM is not directly accessible by Interface, Interface IP address, and management access is only through either Enable/Disable the LAN (Ethernet) interface a link from an AP web page into the WAN (RF-side) interface. When this interface is Enabled, you can configure management access through either a Static IP address an IP address that DHCP provides for the WAN interface. Remote Configuration This parameter may be set to Interface, Connection Type Static IP—when this is the selection, the following three parameters (IP Address, Subnet Mask, and Gateway IP Address) must all be properly populated. DHCP—when this is the selection, the information from the DHCP server configures the interface. Remote Configuration If Static IP is set as the Connection Type of the WAN interface, then Interface, IP Address this parameter configures the IP address of the SM for RF management traffic. Remote Configuration If Static IP is set as the Connection Type of the WAN interface, then Interface, Subnet Mask this parameter configures the subnet mask of the SM for RF management traffic. 1-22 pmp-0050 (September 2012)
  • 45. Task 2: Configuring IP and Ethernet interfaces PMP 450 Configuration and User Guide Attribute Meaning Remote Configuration If Static IP is set as the Connection Type of the WAN interface, then Interface, Gateway IP this parameter configures the gateway IP address for the SM for RF Address management traffic. Note or print the IP settings from this page. Ensure that you can readily associate these IP settings both with the module and with the other data that you store about the module. Remote Configuration Select either Interface, DNS IP Address Obtain Automatically to allow the system to set the IP address of the DNS server. Set Manually to enable yourself to set both a preferred and an alternate DNS IP address. Remote Configuration Enter the preferred DNS IP address to use when the DNS IP Address Interface, Preferred DNS parameter is set to Set Manually. Server Remote Configuration Enter the DNS IP address to use when the DNS IP Address Interface, Alternate DNS parameter is set to Set Manually and no response is received from the Server preferred DNS IP address. Remote Configuration Domain Name to use for management DNS configuration. This Interface, Domain Name domain name may be concatenated to DNS names used configured for the remote configuration interface. NAT Protocol Parameters, If a router upstream has an ARP cache of longer duration (as some ARP Cache Timeout use 30 minutes), enter a value of longer duration than the router ARP cache. The default value of this field is 20 minutes. NAT Protocol Parameters, Where a large network exists behind the SM, you can set this TCP Session Garbage Timeout parameter to lower than the default value of 120 minutes. This action makes additional resources available for greater traffic than the default value accommodates. NAT Protocol Parameters, You may adjust this parameter in the range of 1 to 1440 minutes, UDP Session Garbage based on network performance. The default value of this parameter Timeout is 4 minutes. SM NAT DNS Considerations SM DNS behavior is different depending on the accessibility of the SM. When NAT is enabled the DNS configuration that is discussed in this document is tied to the RF Remote Configuration Interface, which must be enabled to utilize DNS Client functionality. Note that the WAN DNS settings when NAT is enabled are unchanged with the addition of the management DNS feature discussed in this document. pmp-0050 (September 2012) 1-23