Got it

AR-502G-L-D-H cannot access webserver from outside

Created: Feb 8, 2020 20:18:41Latest reply: May 31, 2020 15:13:34 444 6 0 0 0
  Rewarded HiCoins: 2 (problem resolved)

Hello

I have configured the AR-502G-L-D-H in a very basic way: I access it only through serial comms, I do not need any other interface.

It is just connecting to the 4g network, and attached to it there is a openWRT router with fixed IP (192.168.1.20).

Now, everything works, from the network I can surf the internet. However, in openWRT I allowed access to web configuration (through ports 80 and 443) from outside, in order to perform remote control.

In order to do that, as on the 4g network I do not have fixed IP, I have subscribed to a dynamic DNS service, so I know the IP from outside.

For some reason, I cannot get through, it seems that the AR 502 is blocking requests from outside to http and https webserver.


I do not think firewall is enabled.

Below there is my configuration.

So, how can I allow http and https to get through?

As far as I know, VLAN are not supported by this modem.


[V200R007C00SPC600]
#
 sysname Router
#
acl number 3002  
 rule 5 permit ip source 192.168.1.0 0.0.0.255 
#
aaa
 authentication-scheme default
 authorization-scheme default
 accounting-scheme default
 domain default
 domain default_admin
 local-user admin password irreversible-cipher (somepassword)
 local-user admin privilege level 15
 local-user admin service-type terminal
#
firewall zone Local
 priority 4
#
interface GigabitEthernet0/0/0
 ip address 192.168.1.1 255.255.255.0
#
interface Cellular0/0/0
 dialer enable-circular                   
 dialer-group 1
 apn-profile company_name
 dialer timer autodial 10
 dialer number *99# autodial
 nat outbound 3002 
 ip address negotiate
#
interface NULL0
#
dialer-rule
 dialer-rule 1 ip permit
#
apn profile company_name
 apn apn_name
#
 snmp-agent local-engineid 800007DB03707990F2FD3A
#
ip route-static 0.0.0.0 0.0.0.0 Cellular0/0/0
#
user-interface con 0
 authentication-mode aaa
user-interface tty 1 2
 shell
user-interface vty 0 4                    
#
return


Featured Answers

Recommended answer

Popeye_Wang
Admin Created Feb 9, 2020 03:47:04

Hello,
If only NAT is configured, the Internet cannot access intranet resources. Please try to add the NAT server configuration.
https://support.huawei.com/hedex/hdx.do?docid=EDOC1000163884&id=dc_cfg_NAT_0022&lang=en
I hope this helps.
View more
  • x
  • convention:

All Answers

Hello,

I searched the documentation and found that this model does not support the web.

ar

http://support.huawei.com/hedex/hdx.do?docid=EDOC1000092203&id=dc_ar_cfg_web_cd&lang=en


Thanks

View more
  • x
  • convention:

Hello,
If only NAT is configured, the Internet cannot access intranet resources. Please try to add the NAT server configuration.
https://support.huawei.com/hedex/hdx.do?docid=EDOC1000163884&id=dc_cfg_NAT_0022&lang=en
I hope this helps.
View more
  • x
  • convention:

Posted by wissal at 2020-02-09 03:07 Hello,I searched the documentation and found that this model does not support the web.http://support ...
wissal, you misunderstood my question. I need to access a server which is inside the LAN from the internet, passing through the AR502. I do not asked how to access AR502 webserver.
View more
  • x
  • convention:

Posted by Popeye_Wang at 2020-02-09 03:47Hello,If only NAT is configured, the Internet cannot access intranet resources. Please try to add th ...

ok, but... is there an example with https? Moreover, should I do this in the ethernet interface or in the Cellular interface?

View more
  • x
  • convention:

Posted by user_3642070 at 2020-02-09 09:08 Posted by Popeye_Wang at 2020-02-09 09:08Hello,If only NAT is configured, the Internet cannot access i ...
Hi @user_3642070
For HTTPS, you just need configure the port to TCP 443.
For the 2nd question, as far as I know, the command shuld be configured in the Cellular interface.
View more
  • x
  • convention:

thank you!
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.