• Home
  • Products
      • Back
      • Sports Bars
          • Back
          • Control System
          • Sports Bar Info
              • Back
              • Packages
              • Project Process
              • Competition
              • Video Integration
              • Audio Integration
          • Audio Streamer
      • Residential
          • Back
          • Home Automation
      • Digital Signage
          • Back
          • Overview
          • Mosaic Video Wall
      • Drivers
      • Installations
      • SmartRemote
          • Back
          • Introduction
      • Products
      • SmartScreen
      • RV / Marine
          • Back
          • Shelly Relays - RV Slide Control
  • Shop
  • Support
      • Back
      • Documentation
          • Back
          • Downloads
      • Dealers
      • Forum
      • Contact Us
  • About
  • Login
 

Product Documentation

Documentation
Hardware
SmartRemote1
SmartRemote Screen Protector1
myServer 5 Update1
Business Related Info
About Us6
Allonis Hardware and Support1
Become an Integrator1
Copyright notices and licenses for Open Source Software1
License Transfers1
Payment Options and other Ordering FAQ1
Privacy policy1
Streaming TV for my Bar / Restaurant1
System Licensing1
Getting Started
Common Tasks
Audio / Video Integration for Audio1
Audio / Video Integration for Video1
Remote Programming - How it Works1
File Storage FAQ1
Music Streamers1
myButton: Play an audio file upon pressing a Panic button1
Sending SMS messages from myServer1
Television Control1
Troubleshooting
Network Management1
Networking FAQ1
Setting a Static IP address1
Networking - Connect to a Device Default IP address1
Accessing myServer from the Internet1
myServer 6 Router1
myFirewall Installation1
Network Switches1
Network 24 and 48 Port 10G L3 Managed Switch (Rack)1
Network Security - myFirewall21
Network Security - myFirewall41
WiFi Router Configuration1
QR Code support via myServer 61
VLAN Network Setup1
VLAN Allonis L3 Switch Network Setup1
VLAN Support on myServer 6 Controllers - Raspberry Pi41
myServer 6
myServer Setup
Installation1
myServer Startup2
myServer Configuration1
myServer Configuration - 21
Sports Bar Project Process1
myServer 6 Controller Installation1
Adding Rooms to myServer1
Adding Lighting1
myServer 6 - Master Image Installation1
Find.myServer.fyi1
Flashing Pi CM4 using the IO Board1
Migrating to myServer 6 From Previous Versions1
MultiZone Audio Design - Commercial1
myServer 6 Installation on Mint OS1
myServer 6 Installation on Windows OS1
myServer 6 USB Installation1
Networking Basics1
Creating a Bootable Image on SDMicro and USB1
myServer Virtual Environment Installation1
myServer 6 Automation Events1
myServer 6 Command Syntax1
Macros - Naming Convention1
myServer Backup and Restore1
Core System Capabilities1
MQTT
Broker
Certificate
Discovery
Testing your Setup
Logging
myServer 6 Hardware
myServer 6 1.5U Rack Mount Hardware1
myServer 6 Shelf Mount1
myServer Features1
How To
User Interface Scene Transitions1
Advanced Configuration
Authentication
Remote Access
Master Image Updates1
3rd Party Automation System Integration
Home Automation Overview1
HomeAssistant Gateway Driver1
Homeseer Driver Installation1
Node Red - Installation1
Why Automate your Home or Business1
QSC Core Driver1
Applets
TVListings App1
Weather App Installation1
Drivers1
Amplifiers
Audio Matrix
AES67 Audio IP Networking Overview1
Allen and Heath Audio Matrix Driver1
Atlas Atmosphere Audio Driver1
AVPro ACMax24A Audio Matrix1
BSS-100 Driver1
DBX - Driver1
DBX640 - Driver1
MonoPrice Blackbird Driver1
MRC88 Audio Matrix Driver1
QSC Audio Driver1
RTIADx Audio Driver1
Russound Rio Driver1
Russound RNET Audio Driver1
Wiring: Connecting RCA audio jacks to Phoenix Connectors1
DSP444 AES67 Audio over IP Driver1
DSP4428 AES67 Audio over IP Driver1
Audio Video Receivers
Anthem AVR Driver1
Denon Driver1
Integra AV Receiver Driver1
Marantz AudioVideo Receiver Driver1
Onkyo AVR Driver1
Blinds
Lutron Blinds1
Somfy RS485 Blinds1
Somfy Synergy UAI+ Blinds1
Somfy Z-Wave Blinds1
TRO.Y Blinds Controller Driver1
Bond Bridge - Shades1
Camera
BlueIris Camera NVR1
Hikvision IP PTZ Camera Setup1
IP Camera Integration1
IP Camera PTZ Driver1
Lumens Camera Driver1
Ubiquiti IP Camera Setup1
Samsung NVR Driver1
Armcrest IP Cameras1
IPCamera Wyze Integration1
Contact / Motion Sensor
Control Device
Harmony Hub Driver1
MyQ Garage Door Opener1
Tablet Power Solutions1
Infrared Control1
UPS Monitor Driver1
UPS myServer Pi Driver1
VideoStorm irUSB1
Elgato Stream Deck1
Shotbox Driver1
Ratgdo Garage Door Control1
Energy
AccuEnergy Driver1
Fan
Bond Bridge - Fans
Intercom
Keypad
Lighting
DMX Lighting1
Lutron Caseta Driver1
Lutron Driver1
Phillips Hue Driver1
Lighting Sim Driver1
Powerline DMX Pool Lighting1
Shelly Automation Device Driver1
Media Player
AndroidTV Driver1
AppleTV control1
Blu100 Driver1
BluRay Player IR Control1
Cable TV - IR1
DLNA Media Player Driver Installation1
Emby Media Server Configuration1
eStream4K Device Using IR1
FireTV 4K Installation1
HEOS Driver1
Kodi Application1
Live Streamer Driver1
MediaMTX Streaming Media Driver1
MediaPlayer Audio Amp1
myAudioPlayer1
myMediaPlayer1
Oppo Blu-Ray Player Driver1
Roku Player Control1
Streaming Media Hardware Comparison1
Sony X1000 BluRay Driver1
Tivo Player Driver1
Sonos Driver1
Zidoo Media Players1
Media Service1
Streaming Music for Commercial Implementations1
TuneIn Application
Pool
Jandy Pools1
Projector
Optoma Projector Driver1
PJLink Driver1
BenQ Projector Driver1
Mitsubishi Projector Driver1
NEC Projector Driver1
Sony Projector
Vivitek Projector Driver1
JVC Projector Driver1
Sony VPL Projector Driver1
JVC LX-NZ30 Projector Driver1
Receiver
Relay
Digital Loggers1
Dingtian Relay Driver1
Electronic Salon GPIO Relay1
iMatic Relay Driver1
Satellite
DirecTV Driver1
Dish Network Driver1
Security System
DSC Security System Driver1
ELK Driver Installation and Use1
Security Simulator Driver1
Honeywell Security1
Outdoor Grill Integration
Traeger Grill Integration
Green Mountain Grill Driver
Sensor
1-Wire Temperature Sensor1
GPS Receiver Driver1
Water Tank Level Sensing1
Television / Monitor
Controlling TVs via CEC1
Generic TVIR2
HiSense TV Control1
NoHassle TV Driver1
Insignia TV Control1
LG TV Driver1
LGWebOS Driver1
Samsung BET Driver1
Samsung Signage TV Driver1
Samsung Tizen TV Driver1
Samsung TV Driver1
Sony TV Driver1
Sharp TV Driver1
Sunbrite TV Driver1
Viewsonic TV Driver1
PJLink Driver1
TCL TV Driver1
Peerless TV Driver1
Vizio TV Driver1
Thermostat
Climate Simulator1
EcoBee Thermostat1
Venstar Thermostat Driver1
Tuner
Video Matrix
Video Wall Control1
AVPro QuadView Driver1
AVPro Video Matrix2
ANeuVideo Driver1
Brightlink Video Switcher1
Factor A8 Matrix Switch Driver1
HDTV HDBaseT Driver1
HDTV Video over IP Driver1
AVOIP 4K Driver1
HDMI 36x36 Video Matrix1
HDMI Matrix Basics1
HDTV HDBitT Driver1
HDTV Quad Driver1
Just Add Power Driver1
Knox Video Switcher Driver1
MOiP Video Matrix Driver1
Shinybow Video Driver1
Connectivity Technologies
CAN Driver1
Connecting Bluetooth Devices to a Windows PC1
Controlling a Water Valve via Tasmota Relay1
DMX
DMX - PKNight Art-Net controller setup1
Art-Net DMX Driver1
GenericGPIO Relay Driver1
Generic Modbus Driver1
Generic Serial Driver1
GlobalCache Driver1
IFTTT Configuration1
Infrared Control2
Matter1
MQTT Use1
OBD/VIC Driver1
OLA Service Monitor1
Raspberry BLE Device Driver1
Relays - IP controlled1
Sainsmart IP Relay Driver1
Serial to Net for Pi Installation1
Sonoff Devices1
Tasmota1
UPB Lighting Driver1
Waveshare GPIO Relay Driver1
Zigbee Driver1
Z-Wave JSUI Driver1
ZWay Raz Driver1
ESP32 Projects
ESP32 Doorbell Camera
ESP32 - Rotary Encoder1
User Interfaces
myDesigner 6
myDesigner 61
myDesigner 6 Installation1
myDesigner 6 Useage1
Administrator Template1
Modern
Modern Template - Phones1
Modern Template - Tablets1
Moonlight
Moonlight Template Strategy1
Moonlight - SmartRemote1
Moonlight - SmartPhone1
Moonlight - Tablet1
Sheer Template
Sheer Template - Phones1
Sheer Template - Tablets1
SportsBar
SportsBar - Tablet1
SportsBar - SmartPhone1
TV Placement1
Browser Compatibility1
Adding Grafana Charting into your UI1
Device Networking1
iPort Surface Mounts1
Setting up a Tablet for myServer 6 Templates1
Setting up an iPad / iPhone for system access1
Tools and Helpers
Developer Tools
Driver Examples

myFirewall Installation

sg 1000 back vented    myFirewall4

Network Security - myFirewall

myServer must be installed behind a secure firewall with the proper ports forwarded to the Internet (for remote connection) and with port reflection. Not all routers can be configured this way. Worse, you setup your Internet provider's modem and they reflash it loosing all of your settings that can take hours to reset (not to mention your system goes down).

Allonis properly configures a quality, yet inexpensive gateway that should work plug and play and is designed for reliability.

We support two models:  myFirewall2 (has two ports:  WAN and LAN) and myFirewall4 (WAN / LAN1 / LAN2 / LAN3).  The four port model enables next level security like putting all automation and security systems on a secure network, allowing all clients on the private network to communicate to the devices, and a Guest network that only has access to the Internet (no Intranet access).

Here is how it would be installed:

Internet<<<>>>your Internet service provider <<<>>>your Internet service providers modem / router (setup in Bridge Mode) <<<>>>myFirewall (configured by Allonis)<<<>>>myServer and rest of Intranet network devices

Optionally, Allonis can log into myFirewall and custom configure it for your exact requirements.  Please contact Allonis if you need a special setup.

myFirewall Product Description

The new Allonis myFirewall series is a cost-effective, state-of-the-art, pfSense® Security Gateway appliances. The myFirewall comes with either dual or quad 1Gbps Ethernet ports, enabling maximum throughput exceeding 300Mbps. The processor and ram provided combine to facilitate low-power consumption while maintaining performance. myFirewall comes in a lightweight and durable anodized aluminum case.

myFirewall is an inexpensive platform, purpose-built to run pfSense software and can be deployed in many environments: Multi-dwelling units (MDU) such as apartments and dorm rooms, commercial-control applications (SCADA), as well as more traditional small office, home office deployments, or anywhere that security is needed. myFirewall is also the ideal security gateway for the Internet of Things (IoT). IoT applications include many remote monitoring applications for smart home/smart cities, commercial automation, energy management, agricultural, and health care. All of these can be deployed with best-in-class network security, safeguarding network connected devices. myFirewall is a cost-effective solution to protect devices on your network at the point of connection.

myFirewall is better than a build-it-yourself firewall solution. Attempting to DIY on something as important as protecting your network can be a risky, time consuming, and expensive process. Get the power and flexibility of pfSense software, the world’s most popular open-source firewall, as a pre-integrated appliance that is robust and ready to go out of the box, all at a low price.

  • Stateful packet filtering firewall or pure router
  • Routing policy per gateway and per-rule for failover and load balancing
  • Transparent layer 2 firewall
  • Support for IPV6, NAT, BGP
  • Captive portal with MAC filtering, RADIUS support, etc
  • VPN: IPsec, OpenVPN, L2TP
  • Dynamic DNS client
  • Reporting and monitoring features with real time information

myFirewall2 

[joocart product_id=123]

myFirewall4

[joocart product_id=131]

myFirewall2 ships with:

IP: 192.168.1.201

Username / password: admin/pfsense

To enable Split DNS, first get a NoIP public DNS name setup and log into the myFirewall.  Services / DNS Resolver.

Modify in the Hosts Override fields the myserver and the allonis.local to your NoIP DNS name (or your registered DNS name) and click Save.  This must match your myServer DNS name

In myServer Network properties, type your NoIP DNS name in the DNS field.

Restart myServer for the setting changes to take effect.

myFirewall Installation Help

To help you organize your network, here is an Addressing Example:

  • Gateway(FW/Router)=192.168.x.201 (or 200, 202, 203, 204 - 209)
  • myServer=Static 192.168.x.210
  • Printers=192.168.x.220 - 229
  • Security=192.168.x.100 - 192.168.x.109
  • Audio=192.168.x.110 - 192.168.x.129
  • Video=192.168.x.130 - 192.168.x.149
  • Lighting Control Systems=192.168.x.150 - 192.168.x.159
  • Climate Control Systems=192.168.x.160 - 192.168.x.169
  • ClientPCs=192.168.x.170 - 192.168.x.199
  • Other=192.168.x.200 - 192.168.x.219

Interfaces:
WAN=Connection to Internet
LAN1=General Purpose
LAN2=Home Automation/Secure Systems - secure internal network. Note: Firewall rules must control access! 
LAN3=Other (Guest Network, etc)

WAN= DHCP, DHCP6
LAN1=Static 192.168.0.200 Subnet 192.168.0.x 255.255.255.0 DHCP Scope=192.168.0.3-192.168.1.99 
LAN2=Static 192.168.2.200 Subnet 192.168.2.x 255.255.255.0 DHCP Scope=192.168.2.3-192.168.2.99
LAN3=Static 192.168.3.200 Subnet 192.168.3.x 255.255.255.0 DHCP Scope=192.168.3.3-192.168.3.99

Note: 192.1.x.1-2 are reserved for devices that boot on that IP by default.  This prevents the DHCP server from providing those IPs, and then when you plug in a default device, there will be an IP conflict.

FW Rules:
WAN Interface:
Port Forward/NAT WAN Address TCP 6245 to myServer TCP 80
Port Forward/NAT WAN Address TCP 6246 to myServer TCP 6246
Port Forward/NAT WAN Address TCP 8181 to myServer TCP 8181

Port 3342 must not be blocked from myServer to the Internet.  This port is used for web services like Alexa.  By default, most all routers permit this traffic.

 

LAN1 Interface:
Allow protocol IPV4 TCP/UDP ANY to ANY excluding LAN2 subnet

LAN2 Interface:
Allow protocol IPV4 TCP/UDP ANY to ANY

LAN3 Interface:
Allow protocol IPV4 TCP/UDP ANY to ANY excluding LAN2 (or as needed per requirements for LAN3)

DynDNS (Dynamic DNS) Registration:
{username}.ddns.net
Allonis myUI for tablets http://{username}.ddns.net:6245/myui.tablets/index.html
Allonis myUI for phones http://{username}.ddns.net:6245/myui.phones/index.html

As myFirewall is configured with "Split DNS", the user always uses the same URL (including the port) when both inside and outside of the network.  Split DNS routes the request when originating from within the Intranet directly to the myServer PC for immediate response.  As FYI, the alternative strategy of using "Port Reflection" routes the request outside of the Intranet for resolution which then points back to myServer.  This takes a bit longer to process.

WiFi:
WiFi can be configured with a Guest mode so no WiFi device on that network can connect to the Elk (as example)
Example of a SSID for Guest:  myHome2_Guest or myHome5_Guest (2.4 vs. 5 ghz connection speeds)
 
Seems the new Google WiFi (GWF) can't be in Bridge mode and also do their magic of mesh networking on the WiFi side.  So, by default the Google WiFi will have it's own DHCP server turned on and create another network domain of it's own for the WiFi clients.  You can have myFirewall manage these clients, but you would then turn on Bridge Mode on GWF which the downside is GWF's WiFi mesh networking would then not function.  But, the LAN would work just fine as long as you have enough wired GWF (or other) WiFi access points.
 

Installation Steps

Step 1) Change network configuration in existing myServer to Tools / Options / Network tab.  Change myServer DNS name to "{username}.ddns.net" (as example).  Web server TCP/IP port to 6245 and WebSockets TCP to 8181.

Step 2) Restart myServer for these new settings to take effect

Step 3) Reconfigure myServer PC IP to Static IP: 192.168.0.210 / Gateway: 192.168.0.201 / DNS Server: 192.168.0.201.  Note that once you commit these changes, you won't be able to communicate to this PC until after the rest of network is configured and reconnected.

Step 4) Put the Internet modem or cable box into Bridge Mode (see your modem's instructions for how to do this - see appendix below).  Restart this modem.  Note you will loose Internet connectivity once you have done this.  Make sure you know how to reset your modem back to the way it was if for some reason you need help from the Internet (like from Allonis).  Make sure you know what your Internet service provider's login credentials (write them down).

Step 5) Rewire like this: 

  • Internet feed to Cable / DSL modem.  Modem LAN connection to myFirewall WAN connection
  • myFirewall LAN1 connection to existing hardwired LAN (192.168.0.x)
  • myFirewall LAN2 and LAN3 won't be connected to anything.

Step 6) Power up the myFirewall.  It is always best to plug the myFirewall transformer into a UPS / Generator supply to ensure network up time in event of power outage.

Step 7) From the Intranet (LAN1), make sure you have a PC client setup DHCP.  It will get it's address from myFirewall.

Step 8) From the PC client, in a Chrome or Safari browser, go to:  https://192.168.0.201 You will see a "Certificate is Invalid" message.  Ignore the messages and continue to Accept.   Log in with admin / allonis.  You should now see the Dashboard of the myFirewall.  You can manage all of the settings from here.  Allonis has pre-set most of the important settings.

Step 9) Test your network:  From the PC client, open a DOS window and issue:  ping 192.168.0.210    hit the Enter key.  You should immediately see responses back from the myServer PC.

Step 10) Test myServer:  From the PC client open a Chrome or Safari browser and go to:  http://{username}.ddns.net:6245/myUI.Tablets/index.html  (as example)  You should see either a login screen or your home page (depends on how you have configured myServer).  If soon all of your images load, then you are done!!

Optional Step 11) If you have the myFirewall4, this is setup so you can move myServer, your security panel etc to the LAN2.  This will put those devices on 192.168.2.X network.  myServer will be 192.168.2.210.  myFirewall4 is configured to pass only web data from LAN1 to LAN2 to keep LAN2 more secure.

Optional Step 12) myFirewall4 is also setup with a LAN3, this is intended so you can create a Guest network.  This port will only allow traffic to the Internet, and not to LAN1 or LAN2.

As the myFirewall will be responsible for all packet routing, the Internet provider's cable / DSL modem should be put into Bridge Mode.  This allows all packets to be bidirectionally past through the modem.

Appendix

How do I enable bridge mode?

 

The best solution to double NAT is enabling bridge mode on your modem/router combo.

Log into your router or modem/router combo and find its settings to enable bridge mode. To access your router’s settings, you might have to open an internet browser, and enter your router’s IP address in the address bar. Like this:

Details vary depending on the device. Many ISPs and manufacturers provide instructions on how to do this:

 
  • Visit: http://www.att.com/esupport/article.jsp?sid=KB401538
  • Note the link for “See other versions of this article” that provides instructions for several different modes.
  • Configuring IP Pass Through
  • How to Bridge PACE 5031 NV
 

For the following modems:

  • VersaLink 7500 gateway
  • VersaLink 327W gateway
  • Actiontec 704WG gateway
  • Westell 6100 modem

Visit: http://www.verizon.com/support/residential/internet/highspeed/networking/setup/questionsone/123765.htm

For the Actiontec GT704WG modem, visit: http://www.verizon.com/support/residential/internet/highspeedinternet/networking/setup/actiontec704wg/123754.htm

For the Actiontec MI424WR, visit: http://support.actiontec.com/doc_files/Configure_MI424WR_as_a_LAN_MoCA_Bridge.pdf 

 

For Comcast Home users, follow the instructions in this help article: Enable or Disable Bridge Mode on a Wireless Gateway.

For Comcast Business users, contact Comcast Business support and ask them to set your modem to "Passthrough" or "Bridge" mode.

 

How do I change my settings?

Contact Us

We are always open for a quick chat! Give us a call or email us any time and we will respond shortly.

  (248)918-0123
  info@allonis.com