UTN
img
Select your language  

myUTN Control Center
联机帮助
版本 4.1

网络 - IPv4

元素 说明
DHCP 启用/禁用 DHCP 协议。
本协议使自动分配 UTN 服务器的 IP 地址成为可能。
BOOTP 启用/禁用 BOOTP 协议。
本协议使自动分配 UTN 服务器的 IP 地址成为可能。
ARP/PING 通过 ARP/PING 启用/禁用 IP 地址分配。
可通过 ARP 表向硬件地址分配 IP 地址。
IP 地址 UTN 服务器的 IP 地址
子网掩码 UTN 服务器的子网掩码
网关 UTN 服务器的网关地址

网络 - IPv4 VLAN

元素 说明
IPv4 management VLAN Enables/disables the forwarding of IPv4 management VLAN data.
附注: If this option is enabled, SNMP is only available in the IPv4 management VLAN.
IPv4 management VLAN - VLAN ID ID for the identification of the IPv4 management VLAN (1–4094).
IPv4 management VLAN - IP 地址 UTN 服务器的 IP 地址
IPv4 management VLAN - 子网掩码 UTN 服务器的子网掩码
IPv4 management VLAN - 网关 Gateway address of the IPv4 management VLAN
IPv4 management VLAN - Access from any VLAN Enables/disables the administrative access (web) to the UTN server via IPv4 client VLANs.
If this option is enabled, the UTN server can be administrated via all VLANs.
IPv4 management VLAN - Access via LAN (untagged) Enables/disables the administrative access to the UTN server via IPv4 packets without tag.
If this option is disabled, the UTN server can only be administrated via VLANs.
IPv4 client VLAN - VLAN Enables/disables the forwarding of IPv4 client VLAN data.
IPv4 client VLAN - IP 地址 IP address of the UTN server within the IPv4 client VLAN.
IPv4 client VLAN - 子网掩码 Subnet mask of the UTN server within the IPv4 client VLAN.
IPv4 client VLAN - 网关 Gateway address of the IPv4 client VLAN.
IPv4 client VLAN - VLAN ID ID for the identification of the IPv4 client VLAN (1–4094).

网络 - IPv6

元素 说明
IPv6 启用/禁用 UTN 服务器的 IPv6 功能。
自动配置 启用/禁用 UTN 服务器的 IPv6 地址的自动分配。
IPv6 地址 以 n:n:n:n:n:n:n:n 格式界定手动分配的 UTN 服务器 IPv6 单播地址。每个"n"均表示八个 16 位地址元素中任一个的十六进制值。
路由器 界定路由器的 IPv6 单播地址。UTN 服务器将其“路由器请求”(RS) 发送至此路由器。
前缀长度 定义 IPv6 地址的子网前缀长度。值 64 是预设的。
地址范围由前缀表示。可将前缀长度(所用的位 数)添加至 IPv6 地址中,并将其指定为小数。该小数由"/"隔开。

网络 - DNS

元素 说明
DNS 通过 DNS 服务器启用/禁用名称解析。
DNS 允许手动指派名称和地址。
主DNS 服务器 界定主要 DNS 服务器的 IP 地址。
辅 DNS 服务器 界定次要 DNS 服务器的 IP 地址。
主要 DNS 服务器不可用时,可使用次要 DNS 服务器。
域名(后缀) 界定现有 DNS 服务器的域名。

网络 - SNMP

元素 说明
SNMPv1 启用/禁用 SNMPv1。
只读 启用/禁用社区写保护。
社区 SNMP 社区名称。
SNMP 社区是一种基本形式的访问保护,在该社区中,具备相同访问权的多个参与者组合在一起。
SNMPv3 启用/禁用 SNMPv3。
:For SNMPv3 you have to define user accounts.
哈希算法 界定哈希算法。
访问权 界定 SNMP 用户的访问权。
加密 界定加密方法。

网络 - 电子邮件

元素 说明
POP3 启用/禁用 POP3 功能。
POP3 - 服务器名称 Defines a POP3 server via the IP address or the host name.
只有预先配置了 DNS 服务器,才能使用主机名。)
POP3 - 服务器端口 定义 UTN 服务器接收电子邮件所使用的端口。端口号 110 是预设的。When using SSL/TLS, enter 995 as port number.
POP3 - 安全性 定义将使用的验证方法 (APOP / SSL/TLS)。
When using SSL/TLS, the encryption strength is defined via the encryption protocol and level.
POP3 - 检查邮件的频率 定义从 POP3 服务器检索电子邮件的时间间隔(分钟)。
POP3 - 忽略超出此容量的邮件 定义 UTN 服务器可接受的最大电子邮件容量 (Kb)。
(0 = 无限制)
POP3 - 用户名 定义 UTN 服务器连接到 POP3 服务器所使用的用户名。
POP3 - 密码 定义 UTN 服务器连接到 POP3 服务器所使用的密码。
SMTP - 服务器名称 Defines an SMTP server via the IP address or the host name.
(只有预先配置了 DNS 服务器,才能使用主机名。)
SMTP - 服务器端口 定义 UTN 服务器发送电子邮件至 SMTP 服务器所使用的端口号。已预设端口号 25。
SMTP - SSL/TLS 启用/禁用 SSL/TLS。SSL/TLS is used to encrypt the transmission between the UTN server and the SMTP server.
The encryption strength is defined via the encryption protocol and level.
SMTP - 发件人姓名 Defines the email address used by the UTN server to send emails.
:Very often the name of the sender and the user name are identical.
SMTP - ;登录 启用/禁用登录所需的 SMTP 验证。
SMTP - 用户名 Defines the user name used by the UTN server to log on to the SMTP server.
SMTP - 密码 Defines the password used by the UTN server to log on to the SMTP server.
SMTP - 安全性 (S/MIME) 启用/禁用是否通过 S/MIME 对电子邮件进行加密和签名。
SMTP - 为电子邮件签名 定义电子邮件的 签名。发件人创建的签名可让收件人验证发件人的身份,并确保电子邮件未被修改。电子邮件的签名需要 S/MIME 证书
SMTP - 完全加密 定义电子邮件的加密。
只有收件人才能打开并阅读加密的电子邮件。加密需要 S/MIME 证书
SMTP - 附加公开密钥 将公开密钥与电子邮件一同发送。 许多电子邮件客户端要求附加公开密钥以查看电子邮件。

网络 - Bonjour

元素 说明
Bonjour 启用/禁用 Bonjour。
Bonjour 描述了一种用于自动认别 IP 网络中计算机,设备和网络服务的技术。
Bonjour 名称 界定 UTN 服务器的 Bonjour 名称。
UTN 服务器将此名称用于其 Bonjour 服务。如果未输入 Bonjour 名称,将使用默认的名称 (设备名称@ICxxxxxx)。

设备 - 说明

元素 说明
主机名 定义 UTN 服务器的主机名称。
说明 可自由定义的说明
联系人 可自由定义的说明

设备 - 日期/时间

元素 说明
日期/时间 启用/禁用时间服务器 (SNTP)。
时间服务器可同步网络内各设备的时间。
时间服务器 通过 IP 地址或主机名定义时间服务器。
(只有预先配置了 DNS 服务器,才能使用主机名。)
时区 时区用于均衡通过时间服务器接收的时间与当地时间之间的差异,
包括国家/地区的特殊性,例如,夏令时。

设备 - UTN 端口

元素 说明
UTN 端口 界定 UTN 端口的数量。
客户端和 UTN 服务器通过 UTN 端口进行通讯。端口号 9200 是预设的。
附注: 防火墙绝不能阻止 UTN 端口。
UTN SSL端口 界定 UTN SSL 端口的数量。加密连接意味着客户端和 UTN 服务器通过 UTN SSL 端口进行通信。 端口号 9443 是预设的。
附注 防火墙绝不能阻止 UTN SSL 端口。
如要界定加密连接,请参阅: 加 密.

设备 - USB 端口

元素 说明
端口 禁用/启用 USB 端口电源(或连接到该端口的 USB 设备) 此功能可用于开关连接到该 USB 端口的 USB 设备(例如,出现错误)。
端口名称 Freely definable description of the USB port.
If no port name is defined, the default name of the USB device connected will be used. Using the port description, the connected USB device can be displayed with the desired name.

设备 - 通知

元素 说明
电子邮件地址 定义接收通知的收件人电子邮件地址。
如果 UTN 服务器重启,则发送电子邮件 启用/禁用 UTN 服务器重启时是否发送电子邮件。
如果 USB 设备连接或断开,则发送电子邮件 启用/禁用 USB 设备连接到 UTN 服务器或从 UTN 服务器移除时是否发送电子邮件。
Send email if USB port is activated or deactivated Enables/disables the sending of emails after a USB port was activated/deactivated.
状态电子邮件 - 收件人 启用/禁用向收件人 1 或 2 定期发送状态电子邮件。
状态电子邮件 - 间隔 指定发送状态电子邮件的时间间隔。
SNMP 陷阱 - 地址 定义收件人的 SNMP 陷阱地址。
SNMP 陷阱 - 社区 定义收件人的 SNMP 陷阱社区。
如果 UTN 服务器重启,则发送陷阱 启用/禁用 UTN 服务器重启时发送 SNMP 陷阱。
如果 USB 设备连接或断开,则发送陷阱 启用/禁用 USB 设备连接到 UTN 服务器或从 UTN 服务器移除时发送SNMP 陷阱。
Send trap if USB port is activated or deactivated Enables/disables the sending of SNMP traps after a USB port was activated/deactivated.

安全性 - SSL 连接

元素 说明
Encryption protocol Defines the encryption protocol to be used for SSL/TLS connections. Which protocols can be chosen depends on the product and its software version.
With 'Any', the protocol is automatically negotiated by both communicating parties.
加密级别 定义用于 SSL/TLS 连接的加密级别。
- 任何 (The encryption is automatically negotiated by both communicating parties. The strongest encryption supported by both parties will always be chosen.)
- 兼容
- 低(低加密)
- 中(加密)
- 高(高加密)

With '任何', one of the available encryption protocols respectively levels will be automatically negotiated by both communicating parties.
详细的信息(连接状态、密码套件等)可在“详细信息”页上找到。

安全性 - 设备访问

元素 说明
HTTP/HTTPS 界定 myUTN 控制中心的允许连接类型 (HTTP/HTTPS)。
如果仅选择 HTTPS 作为连接类型,则通过 SSL/TLS 保护 myUTN 控制中心的管理权。The encryption strength is defined via the encryption prtocol and level.
用户帐户 Defines the two user accounts (name and password) for restricted myUTN Control Center access and SNMP access.
- Administrator: Complete access to the myUTN Control Center. The user can see all pages and administrate.
- Read-only user: Very restricted access to the myUTN Control Center. The user can only see the 'START' page.
Restrict Control Center access Enables/disables the myUTN Control Center access restriction.
If access is restricted, a login screen is displayed when opnening the myUTN Control Center.
Note: If access is restricted, user accounts must be defined.
Login screen displays Defines the type of login screen. Alternatively are displayed
- a list of users (User names are displayed. Only the password must be entered.)
- name and password request (Neutral login screen in which user name and password are to be entered.)
对话超时 Enables/disables the session timeout. If there is no activity during the timeout defined, the connection to the myUTN Control Center is terminated for security reasons. In the box, enter the time in seconds after which the timeout is to be effective.
SNMPv1 启用/禁用 SNMPv1。
只读 启用/禁用社区写保护。
SNMPv3 启用/禁用 SNMPv3。
Disable input devices (HID class) De-/activates the blocking of input devices (HID - human interface devices).
Use this function to protect the UTN server from USB devices that present themselves as HID class devices but actually used for abuse (known as "BadUSB").

安全性 - TCP 端口访问

元素 说明
端口访问控制 启用/禁用选定端口的锁定。
可在"安全级别"区域中界定要锁定的端口类型。
注意事项:可能再也不能向 UTN 服务器(例如,DNS 服务器和 SNTP 服务器)发送信息,并可能失去 UTN 服务器的可配置性。 在"异常"区域中,界定从端口锁定中排除的元素,以确保 UTN 服务器的可配置性。通过启用"测试模式"测试访问控制。
测试模式 启用/禁用测试模式。
测试模式允许您通过访问控制测试参数。如果启用测试模式,访问保护将在重新启动 UTN 服务器前一直处于活动状态。
注意事项:测试成功后,您必须禁用测试模式,以便访问保护能永久地处于活动状态。
安全级别 锁定对选定端口类型的访问。
- 锁定 UTN 访问(UTN 端口)
- 锁定 TCP 访问(TCP 端口:HTTP/HTTPS/UTN)
- 全部锁定(所有端口)

:只有启用参数"端口访问控制"后,锁定才能生效。在"异常"区域中,界定从端口锁定中排除的元素,以确保 UTN 服务器的可配置性。
异常 使用 IP 或硬件地址界定从端口锁定中排除的元素。总共可界定 16 个异常。The use of wildcards (*) allows you to define subnetworks.
:将不通过路由器发送硬件地址 (MAC)!

安全性 - USB 端口访问

元素 说明
方法 指定控制访问(通过 USB 端口)与 UTN 服务器连接的 USB 设备的方法。
- 端口密钥控制:指定连接到 USB 端口的 USB 设备所使用的密钥的部署。
- 设备分配:设备分配表示一个 USB 设备被永久地分配给一个 USB 端口。这样,一个 USB 设备只能在其分配的 USB 端口上使用。
(两种安全方法还可以结合使用。)
密钥 指定端口密钥控制所需的密钥。密钥可以手动输入或自动生成(最多允许 64 个字符)。
USB 设备 显示通过设备分配被分配给 USB 端口的 USB 设备的 VID(供应商 ID)和 PID(产品 ID)。
分配 VLAN VLAN 分配给 USB 端口。

安全性 - 证书

元素 说明
证书状态 单击放大镜符号以显示安装的证书。可删除显示的证书。
通过单击软盘图标可将安装的证书保存在本地。
自己签名的证书 显示某页以创建自我签名的证书。
然后可在设备上安装自我签名的证书。
证书申请 启动某页以创建证书申请。
In order to use a certificate that has been issued especially for the UTN server, a certificate request may be created. It must be sent to the certification authority which creates a certificate on the basis of this request. When the certificate has been received, it must be saved in the device.
PKCS#12 证书 启动某页以安装 PKCS#12 证书。
PKCS#12 证书用于保存密钥及其各自的证书,还可通过密码保护这些密钥和证书。
:PKCS#12 证书必须是 base64 格式。
申请的证书 Displays a page for the installation of a certificate that has been created by a certification authority (CA) for the UTN server on the basis of a certificate request.
:The requested certificate must be in 'base64 format'.
CA 证书 Displays a page for the installation of a certification authority's (CA) certificate.
CA certificates are used for verifying certificates that have been issued by the respective certification authority.
:CA 证书必须是 base64 格式。 Up to 32 CA certificates can be installed.
S/MIME证书 启动某页以安装申请的 S/MIME 证书。
S/MIME 证书(*.pem 文件)用于对由 UTN 服务器发送的电子邮件进行签名和加密。
:S/MIME 证书必须是 base64 格式。

安全性 - 验证

元素 说明
验证方法 界定用于验证网络中设备或用户的身份验证方法。
用户名 界定身份验证服务器 (RADIUS) 中保存的 UTN 服务器的名称。
密码 界定身份验证服务器 (RADIUS) 中保存的 UTN 服务器的密码。
PEAP/EAP-FAST 选项 界定 EAP 身份验证方法 TTLS、PEAP 和 FAST 的外部身份验证类型。
内部授权 界定 EAP 身份验证方法 TTLS、PEAP 和 FAST 的内部身份验证类型。
EAP root certificate Defines the root certificate for the authentication procedure.
Choose the root CA certificate of the certification authority that has issued the certificate of the authentication server (RADIUS).
>注:The certificate must already be installed on the device; see: CA 证书.
匿名名称 为 EAP 身份验证方法 TTLS、PEAP 和 FAST 的未加密部件界定匿名名称。
WPA 插件 WPA 的可选扩展。

安全性 - 加密

元素 说明
USB 端口 启用/禁用 USB 端口的 SSL/TLS 加密。
如果启用加密,将以加密方式传输客户端和 USB 设备(已连接至 USB 端口)之间的负载。The encryption strength is defined via the encryption prtocol and level.

维护 - 参数备份

元素 说明
参数状态 单击放大镜符号,以显示 UTN 服务器的当前参数值。
单击软盘符号,即可在本地保存带有当前参数值的文本文件。
参数设置 将先前选定的带有参数值的文本文件导入至 UTN 服务器。文件中的参数值应用于 UTN 服务器。

维护 - 默认设置

元素 说明
默认设置 将 UTN 服务器的参数重置为其默认值。
:UTN 服务器的 IP 地址也会得以重置,因此,重置后,无法启动或显示 myUTN 控制中心。安装的证书将不会被删除。

维护 - 更新

元素 说明
更新 在 UTN 服务器上安装先前选定的更新文件(固件/软件)。
更新过程中,新固件/软件将覆盖和替换旧固件/软件。原始参数值保持不变。

维护 - 重新启动

元素 说明
重新启动 初始化 UTN 服务器的重启。