WEB
MANAGEMENT
3. 7
IPSEC VPN
fatbox G3
EXAMPLE. (Site-to-Site (L2L) IPSEC VPN Tunnel 192.168.1.0/24 -- 10.1.1.0/24)
After the remote end-point (e.g. a CISCO ASA520 security appliance with internet access and connected to the customer’s SCADA or
payment processing server) is congured to accept remote IPSEC site-to-site connections.
FATBOX G3 integrates
Strongswan 5.0 IPSEC
VPN client to enable secure
encrypted networking and
communications to your
remote Ethernet devices.
IPSEC VPN conguration can
be extremely complex to
deploy successfully, especial-
ly for users not from network
security sectors.
NET
R
et h1dc et h0 ser i al
di p
1 2 3 4
TX RX I N GND
D- D+
amplie d
engineerin g
fatbox G3
Workstation
Switch
Firewall
e.g. CISCO ASA5520
192.168.1.0/202.200.XXX.XXX
HSPA Cellular
ETH1
10.1.1.0/24
Remote Device
10.1.1.3
Data Server
e.g. SCADA
Server
192.168.1.20/24
fatbox G3