VPN tunnel between SCALANCE M-800 and security CPs
4.1 Procedure in principle
SCALANCE M-800 Getting Started
144 Getting Started, 06/2015, C79000-G8976-C337-04
Internal network 2 - attachment to a port of the CP 1628
● In the test setup, in the internal network, each network node is implemented by one PC
connected to the internal port of the security module.
– PC1 with security module 1: PC with CP 1628 for protection of the internal network
– PC2: PC with the Security Configuration Tool and STEP 7
The PC represents a node in the internal network.
● Connection to the external, public network via DSL router
Access to the Internet is via a DSL modem or a DSL router connected to one of the ports
of the security module.
Required devices/components
Use the following components for setup:
● Connection to the mobile wireless network
– 1 x M874 (additional option: a suitably installed standard rail with fittings)
– 1 x 24 V power supply with cable connector and terminal block plug
– 1 x suitable antenna
– 1 x SIM card of your mobile wireless provider. Suitable services are enabled, e.g.
Internet.
● Connecting to ADSL
– 1 x M812 or 1 x M816 (optionally also: a suitably installed standard rail with fittings)
– 1 x 24 V power supply with cable connector and terminal block plug
– ADSL access is enabled
● 1 x PC with CP 1628
● 1 x PC with the Security Configuration Tool and STEP 7.
● 1 x DSL modem or DSL router
● The required network cable, TP cable (twisted pair) complying with the IE FC RJ-45
standard for Industrial Ethernet
For the configuration example, the devices are given the following IP address settings
Internal network
1
M-800 192.168.100.1
255.255.255.0
Fixed IP address, e.g.
90.90.90.90
Provider dependent
As an alternative, the DDNS
hostname can also be used.
Admin PC 192.168.100.20