Siemens SIMATIC NET SCALANCE S615 Configuration Manual page 283

Industrial ethernet security web based management
Hide thumbs Also See for SIMATIC NET SCALANCE S615:
Table of Contents

Advertisement

● Remote Type
Specify the type of remote station address.
– Manual
– Any
● Remote Address
Can only be edited with the remote type "Manual".
– In standard mode, enter the WAN IP address or the DDNS hostname of the partner. The
– In Roadwarrior mode, you can specify either the address of the partner or enter an IP
● Remote Subnet
– In standard mode, enter the remote subnet of the remote station. Use the CIDR notation.
– In Roadwarrior mode, the remote address informs the device of its accessible subnets
● Virtual IP Mode
Specify whether or not the remote station is offered a virtual IP address.
The following options are available:
– User defined IPv4
– None
● Virtual IP
Specify the subnet (CIDR) from which the remote station is offered a virtual IP address.
Can only be edited if "user defined IPv4" is selected in "Virtual IP Mode".
Procedure
Configure VPN standard mode
1. Enter the name of the remote station in "Remote End Name".
2. Click the "Create" button. A new entry is generated in the table.
3. For "Remote Mode", select "Standard".
4. For "Remote Type", select "manual".
5. In "Remote Address", enter the WAN IP address and in "Remote Subnet" the subnet of the
remote station.
6. Click the "Set Values" button.
SCALANCE S615 Web Based Management
Configuration Manual, 11/2019, C79000-G8976-C388-08
The address of the partner is known. The device can either establish the VPN connection
actively as a VPN client or wait passively for connection establishment by the partner.
Accepts the connection from remote stations with any IP address address. The device
can only wait for VPN connections but cannot establish a VPN tunnel as the active
partner.
network mask is always 32
range from which connections will be accepted.
Multiple subnets can be used only with IKEv2. The enter the subnets separated by a
comma.
and the device learns them.
The virtual IP address is from the band specified in "Virtual IP".
No virtual IP address. The VPN tunnel is established dynamically to the internal IP
address of the remote station.
Configuring with Web Based Management
4.9 "Security" menu
283

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents