SMP Gateway User Manual • 103
When enabled, the firewall shuts off all the TCP/UDP ports of the SMP Gateway, except for the
VPN port (TCP 1723) and another port (23) that is reserved for internal use. All the network
messages exchanged between the SMP Gateway and the SMP Tools go through the VPN port. If
security is enabled, these messages are encapsulated and encrypted by the VPN (Virtual Private
Network) protocol before being forwarded to the destination port.
SMP Tools use several TCP/UDP ports. If any tool tries to connect to an SMP Gateway
configured with the firewall, the tool automatically establish a VPN connection to the gateway.
There are still some cases where you want to set up and use a VPN connection manually, which is
the subject of the next section.
13.6.1 Manually Setting Up a VPN Connection
As seen previously, VPN connections are automatically established by the SMP Tools when they
connect to an SMP Gateway secured by its built-in firewall. You still may need to set up and use a
VNP connection manually if:
The firewall is active, and the software application you want to use to connect to the
SMP Gateway is not an SMP Tool (for example, the CoDeSys development environment used
for automation purposes);
The firewall is inactive, but you still want to encrypt the data that is exchanged between the
software application and the SMP Gateway.
Note: To manually set up a VPN connection, the user must have the System
Management privilege for the SMP Gateway.
To set up/use a VPN connection:
In SMP Manager, select the gateway for which you want to configure a VPN connection from
your PC.
From the Gateway menu, select Make VPN Connection.
What happens when you click this function the first time is:
It creates a new connection in the Network Connections view of Windows’ Control
Panel.
In SMP Manager, under the VPN column for the selected gateway, you will see the
“Connecting…” status message, then “Connected”.
In Windows, open the Start menu, and navigate up to the \All
Programs\Accessories\Communications menu. Select Network Connections. You will
now see a new icon named after your gateway, under Virtual Private Network.
You are now ready to use your tool/application through the VPN connection.
Note: Microsoft Windows© XP only allows 2 outgoing VPN connections simultaneously.