VPN tunnel between SCALANCE M-800 and security CPs   
4.1 Procedure in principle 
  SCALANCE M-800 Getting Started 
144  Getting Started, 06/2015, C79000-G8976-C337-04 
Internal network 2 - attachment to a port of the CP 1628
 
●  In the test setup, in the internal network, each network node is implemented by one PC 
connected to the internal port of the security module. 
–  PC1 with security module 1: PC with CP 1628 for protection of the internal network 
–  PC2: PC with the Security Configuration Tool and STEP 7 
The PC represents a node in the internal network. 
●  Connection to the external, public network via DSL router 
Access to the Internet is via a DSL modem or a DSL router connected to one of the ports 
of the security module. 
Required devices/components 
Use the following components for setup: 
●  Connection to the mobile wireless network 
–  1 x M874 (additional option: a suitably installed standard rail with fittings) 
–  1 x 24 V power supply with cable connector and terminal block plug 
–  1 x suitable antenna 
–  1 x SIM card of your mobile wireless provider. Suitable services are enabled, e.g. 
Internet. 
●  Connecting to ADSL 
–  1 x M812 or 1 x M816 (optionally also: a suitably installed standard rail with fittings) 
–  1 x 24 V power supply with cable connector and terminal block plug 
–  ADSL access is enabled 
●  1 x PC with CP 1628 
●  1 x PC with the Security Configuration Tool and STEP 7. 
●  1 x DSL modem or DSL router 
●  The required network cable, TP cable (twisted pair) complying with the IE FC RJ-45 
standard for Industrial Ethernet 
For the configuration example, the devices are given the following IP address settings 
 
Internal network 
1 
 
M-800  192.168.100.1 
255.255.255.0 
Fixed IP address, e.g. 
90.90.90.90 
Provider dependent 
As an alternative, the DDNS 
hostname can also be used. 
Admin PC  192.168.100.20