Digi Connect® Family Application Guide
How to Create a VPN between a Connect Gateway
and WatchGuard
_______________________________________________________________________
Scenario
Digi Connect WAN is used for remote site connectivity. The primary site is using a
WatchGuard VPN appliance. The two networks need to be connected, and the data needs
to be encrypted between them.
Theory of Operation
A remote location needs to be able to build a secure tunnel between the main site and a
remote branch. One location is using a Digi Connect gateway to provide primary internet
connectivity. The other location is using a WatchGuard VPN appliance for primary site
connectivity. AVPN tunnel will be created to the Digi Connect gateway, creating a
secure connection for data to pass through.
Sample Diagram
ConnectPort WAN
WatchGuard
WAN IP: 1.2.3.4
WAN IP: 5.6.7.8
LAN IP: 192.168.1.1
LAN IP: 192.168.111.1
Internet Cloud
Servers, PCs, PLCs, etc.
PCs, PLCs, etc.
Carrier Plan and PC / VPN Appliance Requirements
Digi Connect Requirements: Firmware version must be 2.8 or later. To download the
latest firmware, go to http://www.digi.com/support.
GSM GPRS/EDGE APN Type needed: VPN and GRE end-points usually require static
(persistent) IP addresses and must support mobile terminated data connections. If mobile
termination is not an option with your current APN, you will need to acquire a new one
that does support mobile termination.
CDMA networks may also require special plans to provide static IP addresses and
support mobile terminated data connections.
Check with your wireless provider on the available plan types.
5/14/2009
Digi International
1 of 5
Need help?
Do you have a question about the Connect Series and is the answer not in the manual?
Questions and answers