EW50 Industrial LTE Cellular Gateway
162
server (host). As in the diagram, the clients behind the M2M gateway can access to the host "Host-
DC" located in the control center through Site to Host VPN tunnel.
Host to Site: For a single host (or mobile user) to access the resources located in an intranet, the
Host to Site scenario can be applied.
Host to Host: Host to Host is a special configuration for building a VPN tunnel between two single
hosts.
Site to Site with "Full Tunnel" enabled
In "Site to Site" scenario, client hosts at the remote site
can access enterprise resources in the Intranet of HQ
gateway via an established IPsec tunnel, as described
above. However, Internet access from remote sites still
goes through the regular WAN connection. If you want
all packets from remote site to be routed via this IPsec
tunnel, including HQ server access and Internet access,
enable the “Full Tunnel" setting.
Site to Site with "Hub and Spoke" mechanism
For a control center to manage the secure Intranet
among all its remote sites, there is a simple
configuration, called Hub and Spoke, for the whole
VPN network. A Hub and Spoke VPN Network is set
up in organizations with centralized control center
over all its remote sites, like shops or offices. The
control center acts as the Hub and the remote shops
or Offices act as Spokes. All VPN tunnels from
remote sites terminate at this Hub, which acts as a
concentrator. Site-to-site connections between
spokes do not exist. Traffic originating from one
spoke and destined for another spoke has to go via
the Hub. Under such configuration, you don’t need
to maintain VPN tunnels between the remote clients.