L-INX User Manual 187 LOYTEC
Version 4.0 LOYTEC electronics GmbH
Configuration Server menu (see Section 4.2.10). This ensures that no unwanted device can
join the IP-852 channel. A properly configured IP-852 channel list can look like Figure 151.
List of channel members
=======================
No Name IP Address Status Flags
---------------------------------------------------------------------------
000 local 128.168.1.253:1628 registered
---------------------------------------------------------------------------
NAT Router 128.168.1.250
+ 001 lip-n1 10.0.2.2:1628 registered
+ 002 lip-n2 10.0.2.3:1631 registered
---------------------------------------------------------------------------
003 pc37 128.168.1.37:1628 not responding
---------------------------------------------------------------------------
Press <RETURN> to continue
Figure 151: Properly configured IP-852 channel with 4 channel members.
Note that also i.LON 1000/600, VNI and LOYTEC NIC852 based network nodes (e.g.,
LonMaker or NL-220 applications) can join the IP-852 channel managed by the
configuration server.
Note that the built-in configuration server should be used if LOYTEC CEA-852 devices are
communicating across firewalls/NAT routers.
For adding multiple devices behind a NAT router, the configuration server supports the
extended NAT mode (see Section 7.3.2). The configuration server automatically switches
the channel mode to extended NAT if needed. Note that the i.LON 600 must be configured
with the i.LON CS to extended NAT mode before adding the i.LON 600 to the
configuration server, because the i.LON 600 does not switch to that mode automatically.
7.3 Firewall and NAT Router Configuration
The CEA-709 router can be used behind a firewall and/or NAT (Network Address
Translation) router as shown in Figure 152. Note, that in general, only one CEA-852 device
can be used behind the NAT router. This mode of operation is referred to as ―Standard‖
channel mode. It is fully compliant with CEA-852.
LOYTEC‘s newer devices such as the L-IP and the L-INX family support more than one
CEA-852 channel member behind a NAT router. This mode of operation is referred to as
―Extended NAT‖ channel mode. This mode introduces extensions to the standard mode
which need to be supported by all members. Other devices supporting the extended NAT
mode are the i.LON 600. See Section 7.2.5 on compatibility with the i.LON 600.
7.3.1 Automatic NAT Configuration
In order to use the L-INX behind a firewall, the public NAT address and the local IP
address must be set in the IP configuration menu (see Section 4.2.4). By default, the NAT
address is determined automatically when adding the L-INX to the channel in the
configuration server. Alternatively, the NAT address can be configured manually.
Furthermore, the NAT router must be configured to forward ports 1628 and 1629 for UDP
and TCP packets to the private IP address of the L-INX (192.168.1.100 in Figure 152). In
summary we can say, the following parameters must be set in order to operate a L-INX
behind a NAT router.
Specify the IP address (private IP address: 192.168.1.100),
Specify the gateway address (e.g., 192.168.1.1),
Specify the NAT address (public IP address: 135.23.2.1) or use automatic NAT router
discovery,
Enable port forwarding for ports 1628 and 1629 in the NAT router for TCP and UDP,