# Install Insys EBW100 router with UMTS connection and OpenVPN Client
# Requirements
- OpenVPN server is still running
- Client cert file .OVPN has been downloaded locally from OpenVPN AS
- SIM with an internet mobile provider up-to-date subscription
- SIM inserted in it slot
- Power supply is up
# First connection
- Access to admin interface with
http://192.168.1.1. Default: insys/icom
# UMTS
- Go to UMTS
- Set PIN and press OK
- Signal quality appear when connection is UP

# Dial-Out
- Go to Dial-Out
- Select Yes to Dial-Out
- Configure Dialing options for UMTS with provider settings (Click on ? to read details)

- Press OK
# OpenVPN Client
- Go to Dial-Out > OpenVPN client
- Check Activate OpenVPN client
- Define OpenVPN settings from .OVPN file

- Select Authentication based on certificate
- Fill username and password with OpenVPN AS settings

- Upload each certificate files splitted from the .OVPN file

Note: Press OK after each file selection
- Press OK and reload system by pressing on re-connect WAN now

- Wait 1-2 minutes and go to OpenVPN client state for controlling connection

- The router is connected and available in OpenVPN server current users list.

# OVPN file
OpenVPN AS deliver a unique .OVPN file with all the necessary for the connection with a PC/Mobile OpenVPN client. In our case, EBW100 is not able to read the complete file and you need to extract data for EBW100 configuration.
- Open .OVPN file in text editor
- Use Connection settings to complete EBW OpenVPN Client connection form
setenv FORWARD_COMPATIBLE 1
client
server-poll-timeout 4
nobind
remote vpn.xxx.comonway.com 1194 udp
remote vpn.xxx.comonway.com 1194 udp
remote vpn.xxx.comonway.com 9443 tcp
remote vpn.xxx.comonway.com 1194 udp
remote vpn.xxx.comonway.com 1194 udp
remote vpn.xxx.comonway.com 1194 udp
remote vpn.xxx.comonway.com 1194 udp
remote vpn.xxx.comonway.com 1194 udp
dev tun
dev-type tun
ns-cert-type server
setenv opt tls-version-min 1.0 or-highest
reneg-sec 604800
sndbuf 0
rcvbuf 0
auth-user-pass
# NOTE: LZO commands are pushed by the Access Server at connect time.
# NOTE: The below line doesn't disable LZO.
comp-lzo no
verb 3
setenv PUSH_PEER_INFO
- Copy CA certificate inside
<ca></ca>tags to ca.crt
-----BEGIN CERTIFICATE-----
MIICuDCCAaCgAwIBAgIEXgTRBDANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQDDApP
cGVuVlBOIENBMB4XDTE5MTIxOTE1MjU1NloXDTI5MTIyMzE1MjU1NlowFTETMBEG
A1UEAwwKT3Blb4fQTiBDQTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEB
ALokJiXpGGqQqJrXwYAHwOAU7uVzZ7czgSZtx7nGa3xMHI7dsQqibIZmTWe6bns1
hn+o6xyzS6uC7I9N4PPhTxgPfR7UriF2tM8PBMHKhnZptoJ1kvyFOvk60U9yuSyO
4ipha0u+WZ5dsRmDNxgagM5pUjHs8LKRB4ixIoUbsr8JL5v8AFNj4qF/TuQ/S61T
ONv4Pp6uWx+2dLYCD2IZetEqRzB3F/UOidB784A+GSR0/dlIfiRD52wjHCzYx2VI
WjwQtTsoZL7aErGQv4oM2g0CAwEAAaMQMA4wDAYDVR0TBAUwAwEB/zANBgkqhkiG
9w0BAQsFAAOCAQEAMmRay5YhWPzS41etyht+54Ae+12Vxo3mgiiFxp2oC3Ju0ktE
/WyCPKZTeKcEsqjwi/lwcVSScCbyepghSE4IlrjZRu3ZOxDz2cn+OhIcAAhGeJ/N
GqjFjb2DAs4bEmGua5UCMrfjLYdWrM3fiFpHjvoB6ZpwL7KsjacM3cBNbVEvexhM
+KZfD0FmEPco0wqUbHTVp8CMd3+WR5Ju4ZHNnFYbvje9aqcfKKpptHcNn+IqxO6Q
eaVpfD7hnngFHIqPx207GSBRMecmjcoKs4aj3/HUb7rWGJJdoKtm248VAaEFa2rY
DAq9xq81lYUxH+pc+Mff78bjTlGgTzlWimtXgA==
-----END CERTIFICATE-----
- Copy client certificate inside
<cert></cert>tags to client.crt
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
- Copy client key inside
<key></key>tags to client.key
-----BEGIN PRIVATE KEY-----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-----END PRIVATE KEY-----
- Copy preshared key
<tls-auth></tls-auth>tags to preshared_key
#
# 2048 bit OpenVPN static key (Server Agent)
#
-----BEGIN OpenVPN Static key V1-----
0832f7b9abb214fac8e22bd75dff86da
da7bc92fcb29c58a79ba2bf29dc1f0d9
71ce9e385f2247141800bc7f3fc9a0a4
98b35d4d29fb03e029b6327bfdb8aa50
64635d0496fc425a602d608f3f11b6f6
b7401667d1e0f1671a7ed1dc3d5fd3dc
4537f280bd99d4a2abc79716a0286ea3
0cfa121e518c91ab85de35e66bab568e
9f54c28e3391536b67b7fa24912bce05
3733a51d1c485fedf71ae133e0ff1f8e
5b9954f1d4a2d77b9585a05225958ea8
ace85cf063004a4292eb186d46a6b237
71445247345ce82f336da26a1ad0789e
cb67b98db4a2f85f4ad047846bb2a70b
-----END OpenVPN Static key V1-----