Automation Units and Automation Networks
254 SICAM RTUs, SICAM AK 3 User Manual
Edition 07.2016, DC2-028-2.03
6.4.1 SICAM AK 3 as Telecontrol Substation with IPSec VPN via fixed
Network
Hint
You must enter the extern visible IP-address of the router as default gateway in parameter Network
settings| IP address , in this example 192.168.1.151
SICAM AK 3
WAN
SICA M AK
CP-2016
Office Zone
Control Center Zone 1
SICAM
TOOLBOX II
UDP
IEC 61850
60870-104
https
NTP Server
SNMP Manager
SICAM
WEB
https
SICAM
TOOLBOX II
60870-104
https
NTP Server
SNMP Manager
SICAM
WEB
https
IPSec VPN Tunnel
IPSec VPN Tunnel
2 redundant router
Cisco 1941 (HSRP)
IP security - Remote Site 2
IP-Address
: 192.168.1.152
IP security - Remote Site 2
Subnet IP-Address
Subnet mask
:
:
122.33.0.0
255.255.255.0
IP security - Remote Site 1
IP-Address
: 192.168.1.151
IP security - Remote Site 1
Subnet IP-Address
Subnet mask
:
:
172.17.0.0
255.255.248.0
IP address: 122.33.0.254
Control system or SICAM AK 3
IP address: 122.33.0.2
Subnet mask: 255.255.255.0
IP address: 172.17.0.254
Control system or SICAM AK 3
IP address: 172.17.0.22
Subnet mask: 255.255.248.0
Own IP address
IPSec VPN own
tunnel IP address
IPSec VPN own
tunnel subnet mask
................
.....................
.............
.........
......
172.16.0.3
255.255.0.0
192.168.1.151
192.168.1.161
255.255.255.0
Subnet mask
Default gateway
Possible interface conigurations:
X0 (PRE0): ET24 on CPCX26 or PCCX26
X1 (PRE1): ET24 on CPCX26 or PCCX26
X3 (PRE3): SM-2558/ETA4 on BSE
CP-2016 or CP-2019