# ESG320

## <mark style="color:blue;">Introduction</mark>

This Quick Start Guide is designed to guide you through the installation of the **Gateway3 4G 1SFP**, model **ESG320**, including hardware mounting and configuration.

{% hint style="info" %}

## <mark style="color:blue;">**Gateway3 4G**</mark> <mark style="color:blue;"></mark><mark style="color:blue;">1SFP</mark>

### Cloud-Managed VPN Firewall with 4 x Gigabit (1x PoE+) Ethernet ports and one SFP slots

#### **Model:**  ESG320

* 4 x Gigabit Ports to unleash elevated speeds for NAS, workstations, or Wi-Fi 5 APs
* 1 x PoE+ port for a wide range of networking devices such as IP cameras, VoIP phones, workstations and more
  {% endhint %}

<details>

<summary><mark style="color:blue;"><strong>Content Quick Links</strong></mark></summary>

[**Hardware Overview**](#hardware-overview)

[**Hardware Installation**](#hardware-installation)

[**Configure with EnGenius Cloud**](#configure-with-engenius-cloud)

</details>

## <mark style="color:blue;">Package Contents</mark>

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2F8NL1C31AVLxcnrGHwuIC%2FIn-the-box.png?alt=media&#x26;token=450c3cb1-195c-494b-a4ed-f08699a12364" alt=""><figcaption></figcaption></figure>

## <mark style="color:blue;">System Requirements</mark>

The EnGenius Cloud is primarily accessible with a web browser or mobile app. Before signing up for the EnGenius Cloud Service or logging on to the EnGenius Cloud Platform to manage your network, ensure that you've downloaded the right app and used the supported browser.&#x20;

### **Mobile App:**&#x20;

**EnGenius Cloud To-Go** (iOS/Android)

![](https://content.gitbook.com/content/FoczbxDur7GFtvaYVcCL/blobs/97OxZDw6cKijhFtUdUfR/image.png)

:arrow\_down: [Download the Cloud To-Go mobile app here](https://qr.engenius.ai/app/cloud2go)

### **Web Browser:**&#x20;

* Google Chrome (57.0.2987.110 and later)
* Microsoft Edge (80.0.361.103 and later)
* Mozilla Firefox (52.0 and later)

## <mark style="color:blue;">**Network Requirements**</mark>

Before you get started, please make sure the WAN access method in your network environment which will be used to connect this VPN Firewall device to the Internet; by default, EnGenius Cloud-managed VPN Firewall (ESG-series) is able to assign IP addresses by its internal DHCP server when users connect their client devices to LAN ports (P1, P2, or P3 port).

## <mark style="color:blue;">Hardware Overview</mark>

### <mark style="color:blue;">Ports</mark>

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2FWSFhTwWh0s5W93b0MdbM%2FOverview-S_SFP%E6%A8%99%E7%A4%BA%E6%9B%B4%E6%96%B0%E5%BE%8C_20241210.png?alt=media&#x26;token=106f7f10-131e-468a-94f5-3625da4436d9" alt=""><figcaption></figcaption></figure>

{% hint style="info" %}

* <mark style="color:blue;">**Reset to default**</mark><mark style="color:blue;">:</mark> Press and hold the reset button more than 10 seconds, and the **Power/WWAN/Debug/PoE** LED will become Flashing. Then, the device will be reset to factory default settings.
* <mark style="color:blue;">**WAN1 Combo Port:**</mark> ESG320 Support SFP/Ethernet WAN combo port. here comes the introduction how to select the WAN1 port.\
  \- **Use SFP port as WAN1 port:** The VPN Firewall will prefer the SFP interface as the WAN1 port if an SFP module is inserted before device boot up, and automatically disabling the corresponding RJ45 WAN interface.\
  \- **Use RJ45 as WAN1 port:** If no physical SFP modules are detected in the VPN Firewall, the system will default to using the RJ45 interfaces as WAN1 port.
  {% endhint %}

### <mark style="color:blue;">LEDs</mark>

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2FHQ5jWvCson08ajpvrb6x%2FESG320_LED.png?alt=media&#x26;token=e97ff9c9-64fe-4de9-a9f9-97e7ae1e8f72" alt=""><figcaption></figcaption></figure>

## <mark style="color:blue;">Hardware Installation</mark>&#x20;

The VPN Firewall can be placed on a flat surface or installed on the wall. Please perform the following steps to install:

### Place on a Flat Surface

Attach the **Rubber Footpads** at the bottom of the **VPN Firewall** at each corner. The **Rubber Footpads** help secure the **VPN Firewall** and protect it from vibration and shock when stacking.

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2FYAbWAqXgqRLHsyJJW0bI%2FESG320%20QSG.png?alt=media&#x26;token=7b6f9ca1-f33c-40a6-866f-f85dc4ec6383" alt=""><figcaption></figcaption></figure>

### Wall Mount

To mount the **VPN Firewall** on a wall, install the two provided **Screws** in positions that correspond to the slots on the bottom side of the **VPN Firewall**, then mount the **VPN Firewall**.

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2F8dJzSV6swb2B52qDF13K%2FESG320%20QSG%20(1).png?alt=media&#x26;token=e50c273b-7043-466a-91b0-25ec5c2f6857" alt=""><figcaption></figcaption></figure>

## <mark style="color:blue;">Configure with EnGenius Cloud</mark>

### <mark style="color:blue;">**Step1: Register Device**</mark>

You can register the device either by **Cloud To-Go** **mobile app** or the **EnGenius Cloud platform**.

#### <mark style="color:blue;">**Cloud To-Go**</mark> <mark style="color:blue;"></mark><mark style="color:blue;">Mobile App</mark>

1. &#x20;Open and log in to the **EnGenius Cloud To-Go** mobile app.&#x20;
2. Scan the QR code on the back of the device via the app.

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2FF8JJf41gbwNrj8Y4GOlO%2F05.png?alt=media&#x26;token=ab2c2534-b5f1-4f2a-8997-7fbbae17a1b5" alt=""><figcaption><p>Scan to Register</p></figcaption></figure>

3\. If the camera successfully scans a QR code, the app will display the Device Information. You could tap "**Register**" to complete the Registration.

4\. Registered devices will be shown on the ***Inventory & License*** page. Upon sliding left the device,     you can click "**Add to Network**" to add the device to your designated Network.

![](https://files.gitbook.com/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FmRomiX3WsvMeLsjVRyCm%2Fuploads%2FfS7wRndzO2loIjZcP9Ke%2Fimage.png?alt=media\&token=dd500864-838a-436c-9ffd-d25d3345c520)

{% hint style="info" %}
**Network**: Management domain shared same configurations within EnGenius Clou&#x64;**.**
{% endhint %}

#### <mark style="color:blue;">EnGenius Cloud Platform</mark>

1. Log into the **EnGenius Cloud Platform**: <https://cloud.engenius.ai/>.&#x20;
2. Go to the ***home > Inventory*** page and click "**Register Device**".
3. Enter the **Serial Number** of the device(s) for device registration. Please refer to "[User Manual-Registering Devices to Organization](https://docs.engenius.ai/home/cloud-user-manual/getting-started/device-onboarding)".&#x20;

![Register Device](https://content.gitbook.com/content/FoczbxDur7GFtvaYVcCL/blobs/fAU7yNjptpONaEnwgMNj/Serial.png)

4\. Select the registered device and click "**Assign to Network**" to add the device to your designated Network.&#x20;

{% hint style="info" %} <mark style="color:blue;">**Network**</mark><mark style="color:blue;">:</mark> Management domain shared same configurations within EnGenius Cloud<mark style="color:blue;">**.**</mark>
{% endhint %}

### <mark style="color:blue;">**Step2: Power On Device**</mark>

Connect the **Power Adaptor** to the back of the **VPN Firewall**, and then plug the **Power Adaptor** into the power outlet.

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2FvYTzsUe9mDmwkDgE7R87%2FESG_XG60_Power%20on%20device.png?alt=media&#x26;token=07f5d4a5-80da-466f-a19f-706364dbaf88" alt=""><figcaption></figcaption></figure>

### <mark style="color:blue;">Step3: Connect to EnGenius Cloud</mark>

#### Connecting to WAN1

Depending on WAN connection type in your network, WAN1 default connection setting is DHCP; if your WAN connection type is DHCP, after you connect Ethernet cable to WAN1 port, you can skip the next WAN1 connection set-up section through VPN Firewall Local Status Page.

#### WAN1 Connection Set-up through Device Local Status Page

If your WAN connection type is Static IP or PPPoE, after you connect Ethernet cable to WAN1 port, you have to access ESG’s Local Status Page to configure WAN1 connection.  User can connect a PC to P1, P2, or P3 LAN port, and then open browser and type <http://192.168.66.1> or <http://local.engenius> in URL field., where default login username/password is admin/admin&#x20;

**Note:** After ESG has been assigned to an Organization/Network, this local credential will be updated by the Local Credential setting in Cloud Configuration (Configure > General Settings > Local Credential).

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2FFh5kjcOMWb55m1gYGdSx%2FGW02-320.png?alt=media&#x26;token=3b844b42-5941-4ff2-8757-4292a7978cc4" alt=""><figcaption><p>*The display model number may be varied according to different models.</p></figcaption></figure>

#### (a) WAN1 Connection by Static IP

Please fill in the IP address config information for your WAN connection {if the uplink switch has tagged VLAN, you need to specify its VLAN ID accordingly).

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2FoI4Gu5xIo0JWscqkmM0y%2FESG320%20QSG%20(2).png?alt=media&#x26;token=2c07dcdf-81fa-4759-9789-3263bc890c47" alt=""><figcaption></figcaption></figure>

#### (b) WAN1 Connection by PPPoE

Please fill in the PPPoE config information for your WAN connection {if the uplink switch has tagged VLAN, you need to specify its VLAN ID accordingly).

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2Fxl0qodgG6WfG3L6bQ4NI%2Fimage.png?alt=media&#x26;token=67b9f8c5-88d2-421a-b787-e1a98a326aaa" alt=""><figcaption></figcaption></figure>

#### EnGenius Cloud Connected

Once the device is powered on and ready to connect to the Internet, It will automatically download the default configuration settings from EnGenius Cloud for automated provisioning.&#x20;

{% hint style="warning" %}
When the VPN Firewall is connected to the EnGenius Cloud Platform for the first time and assigned to Network, it will automatically check the latest available firmware. If the firmware upgrade is required, it might take **8\~10 minutes** to complete the process.&#x20;
{% endhint %}

### <mark style="color:blue;">**Step 4: Manage with the EnGenius Cloud**</mark>

Log in to the [**EnGenius Clou**<mark style="color:blue;">**d**</mark>](https://cloud.engenius.ai/) <mark style="color:blue;">**Platform**</mark> to configure detailed settings. For more information, please refer to [User Manual](https://docs.engenius.ai/engenius-cloud/).

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2FbA3F8u0PUjZjqTfw6BGI%2Fimage.png?alt=media&#x26;token=90281990-c971-49fa-b70b-ef6c369e141d" alt=""><figcaption></figcaption></figure>

### <mark style="color:blue;">Troubleshooting</mark>

If your VPN Firewall device cannot be managed by the EnGenius Cloud Platform, there might be a problem with connecting to EnGenius Cloud.

To troubleshoot the connection issue, you may log in to the **VPN Firewall Local Web** page:

1. Make sure that your computer LAN interface is set to DHCP and connect to VPN Firewall LAN port to get DHCP IP address from the VPN Firewall.  By default, the computer should get the IP address in this segment 192.168.66.x.
2. Under your web browser, enter the URL:  <mark style="color:blue;">**<http://192.168.66.1>**</mark> to access the VPN Firewall's local status page web interface.&#x20;
3. You can review the device status after logging into the VPN Firewall with the default admin account/password <mark style="background-color:green;">(admin/admin).</mark>
4. Check the information on the **Device Status** and take action if necessary.

<figure><img src="https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2F38OgVjJAyM4MKRTgTpP9%2Fimage.png?alt=media&#x26;token=d907038d-c368-4a4b-8187-f5b693f91c53" alt=""><figcaption></figcaption></figure>

{% hint style="warning" %} <mark style="color:blue;">**Change WAN IP Assignment Settings**</mark>

By default, the EnGenius Cloud-managed VPN Firewall's WAN1 setting is set to DHCP client. If you encounter issues with IP address assignment, please double-check the IP setting, including IP address, subnet mask, VPN Firewall, DNS, and management VLAN. If the issue still exists, you may change your IP assignment from "***DHCP*** " to "***Static IP***" or "***PPPoE***" via the following procedure in VPN Firewall's Local Status Page page.

1. Go to the **Local Setting** section.
2. &#x20;Change Configuration setting to "***Static IP***" or "***PPPoE***".
3. Configure the needed settings for the selected type.
4. Reconnect this VPN Firewall to the network and try again.

![](https://2824051977-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FFoczbxDur7GFtvaYVcCL%2Fuploads%2Fmq5joIexC3z1q6qYe2Y9%2Fimage.png?alt=media\&token=9e356bca-6864-468e-8870-1c837bc144ab)

{% endhint %}

##
