EasyManuals Logo

Siemens SCALANCE S615 Manual

Siemens SCALANCE S615
36 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #28 background imageLoading...
Page #28 background image
2 UseCases at a Glance
NAT_S615
Entry ID: 109744660, V1.1, 08/2017
28
Siemens AG All rights reserved
Process flow (active connection establishment from CPU2 to CPU1):
The additional NAT IP address 192.168.1.2 is used by the SCALANCE S615.
CPU2 accesses the local IP address 192.168.1.2 as the destination.
Using the definition in its NAT table, the SCALANCE S615 replaces the source and
destination IP address and sends the packet to CPU1.
Due to the change of the source IP address, all packets, from CPU1’s perspective,
are from CPU2 from the local subnet VLAN1. Therefore, CPU1 can reply directly
without a gateway entry.
In all reply packets from CPU1 to CPU2, the source and destination IP address is
automatically replaced.
Advantages
The advantage of the NAT table is that, due to the use of an additional address, all
ports can be forwarded or used.
Subsequent changes to the CPUs’ hardware configuration are not required
(reaction-free).
Disadvantages
The disadvantage is that only active connection establishment from CPU2 to CPU1
is possible. Furthermore, an additional IP address from the subnet of VLAN2 is
required that must be configured accordingly.
NAT and firewall rules
The destination NAT table of the SCALANCE S615 translates packets from VLAN2
with the destination IP address 192.168.1.2 to the CPU’s IP address 192.168.2.20.
Figure 2-19
The source NAT table of the SCALANCE S615 translates packets with the source
IP address 192.168.1.10 to its own VLAN1 IP address 192.168.2.1.
Figure 2-20
The firewall must allow communication between CPU2 (VLAN2) and CPU1
(VLAN1). The services are limited to TCP port 102.
Figure 2-21

Other manuals for Siemens SCALANCE S615

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Siemens SCALANCE S615 and is the answer not in the manual?

Siemens SCALANCE S615 Specifications

General IconGeneral
ProtocolsIPsec, OpenVPN
Power Supply24 V DC
Mounting TypeDIN Rail
Product NameSCALANCE S615
Ports5
FirewallYes
Weight0.6 kg
CertificationsCE

Related product manuals