Need a quote? A specific configuration, a project? Contact us on 02 51 99 13 03 .

Setting up and using MILESIGHT VPN

Paramétrage et utilisation de MILESIGHT VPN

Equipe Sparwan |

Discovering the menus

“Device” menu

View information about Milesight devices connected to MilesightVPN. You can change the “Name” and “Remote Subnet” when the subnet allocation method is “Manual”.

zN3GiFmISXF-_lV7MFnaaIFbtO5rVmSPgcPgpRL5NOVQY_iX22rzPUamOs7oZaCYIIhQ4XEIFYt8M0XVBkaNJztzQrscftx15zpIB17LdY0Kw836y_dC0JH579Z3H6QeeU9iIonBDf5yZL kxkhkhnmHXK3faDxVA9EiTHGAxPDE8Bv8dEyPpsYsTBBuxeQ


Characteristic

Description

Name: Name

Show device name. Users can click on it to change the name.

Status: Status

Shows the connection status of the device.

Serial number: Serial number

Displays the serial number of the device.

Virtual IP: Virtual IP

View the device's virtual IP address.

Real IP: Real IP

Shows the actual IP address of the device's WAN/cellular port.

Time: Hour

Show the connection time of the control device.

Remote subnet: Remote subnet

Show subnet segment and device mask. Users can click on it to edit it.

Historical: See the history

Click to view the historical statistics record.

2Db2lARYchADqE4pDtolcbZhoLGVLQieJNvS5N9oGkAo5OOQuxQuobHG35PpL7I9GLd_0aQpm03ytRT5JOiFnO01tlOeQLiw5R7vJB7t1AvqmFmde13XbasjmaZD0DsxVqhZmP7Oa3VKm hIbj0o2O3uBnXPnaDt8O5501vCnCKDHYa4Uwx2nz4VIKu9zwg

Clear: Erase

Click to clear logout device records.

.

“Control” menu

View information about control devices (PC, laptop, etc.) connected to MilesightVPN. You can change the “Name” and “Remote Subnet” for subnet allocation

kQZnWP1YcfHuiw9JWJPU7Ji8QWvqrukvgdiEOgHRnmPrBdwOe0zg9BR1yRBqfuFbLsUDbankaHNd41R9Z2j_Ik3TPoEmN2938-N6ZTY1357dywBvWmsFWKQeX-yTEGxLW0bZA5dPOSvGDEyKYe9 I-WjlnaAfH4i9cnrrqClIJVk4PQaHQxti6bwrW06upQ

Characteristic

Description

Name: Name

Displays the name of the control device.

Status: Status

Displays the connection status of the control device.

Virtual IP: Virtual IP

View the device's virtual IP address.

Real IP: Real IP

Show the real IP address of the controlling device.

Time: Hour

Show the connection time of the control device.

Clear: Erase

Click to clear logout device records.

“VPN” menu

Configure basic VPN settings and import the extension license. After changing VPN settings, please reconnect Milesight devices for it to take effect.

_g64F4WoAW05ouhKEDgF8eehr0eMFLTIi1bVGTB86EuDoAoT77uHAU4Kxfm5aMASXRO8YeW4qgqlbnA-Q7iInR-npghKll0tgh1t1X5NBcK0-4A2DvFiBvWNiKcGxQiQAd71INXmyQfr6-M7y4D 7Fy7Vc7YkxFBEmezNnX-n2dMu-7ag4CkXzufKt_41Uw

Characteristic

Description

Default value

Listen IP: Listening IP

Enter the MilesightVPN IP address.

NULL

Protocol: Protocol

Select the communication protocol (TCP/UDP).

UDP

Port

Port of service

1194

Client Subnet: Client subnet

Set the virtual address pool segment and mask.

10.8.0.0/16

Subnet allocation method: Subnet allocation method

Select from “Manual” or “Auto” options. Manual: Manually change the remote subnet from the Device page

Auto: Automatically configure the remote subnet via “Subnet

behind the customer. Manual

Subnet

Behind the customer

Manual

Subnet behind client: Subnet behind the client.

Configure the subnet of the Milesight device.

NULL

Ping interval: Ping interval

Set the ping interval (in seconds)

60

Ping Restart: Ping reconnection

Reconnect interval (in seconds)

150

Compression

Select from the “None” or “LZO” options. LZO: Lempel-Ziv-Oberhumer (or LZO) is a lossless algorithm that compresses data to ensure high decompression speed.

LZO

Encryption: Encryption

Select from "NONE", "BF-CBC", "DES-EDE3-CBC", "AES-128-CBC", "AES-192-CBC" and "AES-256-CBC".

BF-CBC

Authorization Code: authorization code

Enter the authorization code for Milesight device connection

(5 to 31 alphanumeric combinations).

Random

License: License

Import the license to expand managed devices.

None

“Certificate” menu

After clicking "Create and Upload", it will generate a unique ovpn file with control certificate

devices to connect to MilesightVPN.

ryDc4K0MZyg5syYNspyxPd-kQb8psmQ3qKnQ-AKjJ9ZLscwCQS5YSgDvshPTLKV2RilFw9qWvEmQjZE2jSANrQ4PON3jjRw7f7waANsHvnwMu9IC65AvoEPgkwdTqiaXWsYBYvTxvpg7HO07LeK nTWbiLR2am8rOWQ5EZ9lKNNGkMwErQk5oAAgLiiIJ

“Account” menu



You can edit user account information on this page

OndUZgJKIiLLqNWjUjdeUZyu1Jl93svHRj9-p_VxHTI5QT9aHMjb6VYz6cdmtNmK1UQvBwgPg5aQYQFJ5T2pyPNleXCoZhTW4AQ2EkdrWZPINGp0u8X2jmdNUICT8WQJ66D0KQEWpz-PZ NKNmmAyRcanxOon7mU9gG5rOohHBAHyyVlhDGT4c6H0ShMsAg

Characteristic

Description

Username: Identifier

Enter a new username. You can use characters like az, 0-9, "_", "-", "$". The first character cannot be a number

Old Password: Old password

Enter the old password

New Password: New password

Enter the new password to change the password

Confirm New Password: Confirm the new password

Confirm the new password.



“Ping Tool” menu

The Ping tool is used to check the network connection between MilesightVPN and other devices.

8JCGjW5BJOf4wfHqaZ11mT7JZ2RiM2rxgp6C4NMIDbukde_8UjuTXj_xVLocJu8weI9IRW2lL0gQbRIC8_mpgSRD2-UyvY_0UK0BNFEjUGVS0N5T7JNDGZ_alCdS0bhCk8alpTSAn88xgBtQ6cR v4Endv6-DdbM5yU_c9AmWrwfd2J5a8zfWIPPUkQpsEQ

Application examples

Connect Milesight devices to MilesightVPN

  1. Make sure the network between the routers and the MilesightVPN platform is functional.
  2. Go to the “ SystemDevice ManagementMilesightVPN ” page to fill in the MilesightVPN server information.
  • Server: address or domain name of the MilesightVPN server
  • Port: 18443 (fixed)
  • Authorization code: this code can be found on the VPN page of the MilesightVPN server
  • Device name: user-defined name _6wWtVK1_SDQMwi807fJzEXcHLx0xNP3c1yfTl5vS6As97-DRaLfN2mxFR8jdTT5ddmtoN0uTnVolbLhyIfDil-9SHvTxQIa_bWNmzIyAClLjaqWaUFlbkLSkEfXd24RHtBOomg9FNrXuDCLh5dPEh skTsuGZXFP6G-aBYmeMxgjm_3Ne52sjgHcsNEoxg
  1. Click "Connect" and after a while you can check that it shows "connected". lxpi6lECSvZyMtkC1s2yeGksC3XaQcQBO4jkgkS336bM_zIzM2pVRxuTe5FBiA5p2i6m_6qCyHK_l0DWnp62f1ZSp9QspDOkMTSc-YHGX2vpFo5tDgnGureW-zF-C-PUsMsI3mvw-8Ov Ak6n1EELYRkMmY8ppniLzZzqkaauIx2oBx0qSuziGt07eROo-w

The router connection status can also be checked on MilesightVPN's web GUI.

hM_1R41fjrPX01vKi6GWOQ02Oq-zw7K-l8p6OsATcpYGVtUiI8faHc-RqbyQZRAaoKNcR9pIwapwhyFJZ__4EAQ8thh3EPgnlAzlVoL6MeU6iIu12QtTbnwP0-P7EAM-3TNh0C7RnnN78 xjtMtQzggJ10UcnnFqRqamHTI9AxRPtNGSDW_1Tyl-dgChs-w

Note: Time synchronization is required between MilesightVPN and routers.

  1. Go to " NetworkFirewallSecurity " to enable remote access services if you need to access routers remotely. You can also change service ports here.

7DtnS7c6G3wldiJLLLfmSUhOaaUnZArQQbrQFRoy2YXfzyIOrGM_9EZz9e04w366M45rpm0NxjofExDqY8yc5oEic4LiHc4AtrklJRv3hiXA-ZWW85m0P2_xz11Zm0RwbfFRXIMZ4H4s6hpyLn9 OM745Qmip8n6V2mefYPvJ51V2tpHu14d8Ggx4lfITzg

Connect the device to MilesightVPN

This example mainly shows how to connect a Windows 10 laptop to the MilesightVPN platform.

  1. Install the OpenVPN software. You can select OpenVPN Connect or Community OpenVPNasOpenVPN client.
  2. After installation, open Windows Service Manager to ensure OpenVPN services are running mMda4dx9sBeOMyJSIvtmZjKUCj1aLv0ZNbP6oNlNIJ1d82-ZI6Mbvz99V9wzu_jtmeZXe6UxYrX1UILc-OZ4Pm2-NSBYFn3WQpeN6UUhKFGMIpbPl5EcnRRUuEyEFn3TsfRt2oEF4UgCPY yo2Rbx70PeFJ0CdX7d2lTP9SQOYVaPoFC2KVBAsfSXp090sg
  3. Go to the MilesightVPN “Certificate” page, enter a certificate name, click “Create and Upload” to download the certificate. AnB5pB7DNaoFrR3x_AnWGzT3CEKhy0RX9oMGFaNciTC_JqPX4QYCUnPrvXOkV4YVXkvXmL5 3kLPO31pdWPhvZNJUiUS2AwYOs39-4SUdf7gRc20xDqljcIVy1fcSl98a1HsEZqFsivv_qWU apH3p9MA91SdGqxCgMmB7NHVhBYF5M7dNcCCOGpHez21G8w

Noticed :

  • If the IP address of the Milesight VPN server is not included in the certificate, check that you have entered it correctly in the “VPN” menu
  • If you use a default certificate, all traffic will go through VPN tunnels and the laptop may not have access to the Internet. In order to set a specific tunnel and not affect normal Internet access, please open the certificate and replace "redirect-gateway defl" with "route 192.168.0.0 255.255.0.0" (192.168.0.0 is the routers subnet Milesight). 4a2NkstemHci7YWrH0_YpJwou4Z7tmhlyXRhk2eIt-kqXaBGfrsFyiqp8PlaEhAPU10ln7eh1n-dv8zeLj_ryYYIEF440utnEf8tclFdCJGadIEn3QGn_gW_aylg-YBeSn4Z0w41lsbU5NjWG RYizz7_eGx5MBxoMpdd2co5BCmF6cNIycTiPZtr6lJLrA
  1. Run the OpenVPN software with the certificate yY9drJmZAsvHmogpXrRKTqtuw0Z3XKqYjDYCYbMJb0_zZlOWF8UaV-tRWHKxvA1Vw25vyDVCHCU4fdNXabla9JZTmukff7YieF8RpgAGphCY68HAQ8Bj5-NTHZvJzGfzYnjpMdQZgMs8H qo2xVDfErBj-Xh0ch2JgFyYxUBALXQs5ySJ2upCdXtxExYv_Q

Run OpenVPN GUI, select this file and click Connect.

sDAsU67CTnFKGW0-hYie4yzNAaFLFgxT-hvzD6-j1e3TbILUJ7P29ZrpaKmkkNj6iK-ThntUPxs7Ag34yEOEeRdtF7KYDKhGyWvUaco1pV4kCW3S1uLiLKT6Si74Uy-udMxvpIRIg0XsHv EOP0KXOWmJN4jLP9IAedOhNQlt0KNVan93tCJKB1qelo66-A

2) If you are using OpenVPN Connect, run the software and import the certificate, then connect the device to MilesightVPN.

KRL1ha0GX4JalihaiO1knX88glGRxO-GWoUTJybdyivJlDtm3zZ6WYe_ET7VvRQ9BoN5GpCB5BB8CfcvltkjU3TCamlQj_fJI2R2kLgOwPmEJttLGpvXLhfMojulpIs096sydhBF0wuA0OlMNy BdXJwDo66pAs-1FAV9SW_aNC4seO8opVaWHwCSZewoeQ

Communication with devices

Method 1: Virtual IP Access

Users can use the virtual IP address to access the router from a laptop.

-pm77i14IvGzTvWMSa2N3AHBLwJomoOcFqaWC8seAIfrbuWykeCxD2wSIU-Oux7PBOtUgLbR9dwocNFz7AiBZTK5hMouYgj4stPZyaDCeYwxp6PDCD4P32sYklX7FRLLc9zs9mXG9i5sccDCQBWAk1 WRDdjWiq-E21aTQspMVA1CEaIxVQO9cq7x9bQYEA

If you need to access devices under the router's subnet, you can add a port mapping rule in the router's web GUI and use the address: “Virtual IP:port” (example 10.8.0.2:80 ) to access the device.

8h9J4BKi51PX5XKl6L_J-VauEL4TMWQyPLiOKmIzF7CIMRuE-G_Q2ztMWKHifqqEBV-5gUFdW7DPt15v5qw7s6fLpWkSvn3xiSsIjJRWbLU1v5y2pEGV36eznsWCq6IN7BUWpWYNClnqU2 rzpkLZvk67PVe1J73ENx7SMYNG4d8mH1_a5ucHjWm-MvmKBQ

Method 2: Real IP Access

Users can use a real subnet IP (bridge0) to access the router from a laptop. To do this, make sure the subnet is different from your laptop and your laptop's routing table must include the subnet.

Rbx-xe6xgEiFTm5r1s9L2g8FGExSS98K3Jqh4Fd3n_XzU_YIwbbx8NMB0sneF2SdX4VeajoEGto11_AZk50Vw_HPrpFRboLmKlEeT0DYJ3xS8T9UBfoIJyIzug2dP-HmYjoSMgjbMqu81MBP2G 64-5cpwIPfMvYY2Rh65Zgqka8kuWIAD2G8DElxy_tqXw

You need help ?

Our pre-sales team is available to answer your questions and guide you through your projects.

View the products on our shop by clicking below:

Sparwan shop

You can contact us directly, we can define a tailor-made solution and equipment with you thanks to our network of partners.

Contact form

sales@sparwan.com

02 51 99 13 03