WEB
MANAGEMENT
3.6
IPSEC VPN
fat
box G3
EXAMPLE. (Site-to-Site (L2L) IPSEC VPN Tunnel 192.168.1.0/24 -- 10.1.1.0/24)
After the remote end-point (e.g. a CISCO ASA520 security appliance with internet access and connected to the customer’s SCADA or
payment processing server) is configured to accept remote IPSEC site-to-site connections.
FATBOX G3 integrates
Strongswan 5.0 IPSEC
VPN client to enable secure
encrypted networking and
communications to your
remote Ethernet and serial
port devices.
IPSEC VPN configuration can
be extremely complex to
deploy successfully, especial-
ly for users not from network
security sectors.
NET
R
eth1
dc
eth0
serial
dip
1 2 3 4
TX RX IN GND
D- D+
amplifie d
engineerin g
fat
box G3
Workstation
Switch
Firewall
e.g. CISCO ASA5520
192.168.1.0/202.200.XXX.XXX
HSPA Cellular
LAN 10.1.1.0/24
Remote Device
10.1.1.3
Data Server
e.g. SCADA
Server
192.168.1.20/24
fat
box G3