
OVERVIEW
Page 14
DOC_DEV_IPL_User Guide_C
4.2
IPL functions
IP router
The IPL-C provides powerful, flexible and comprehensive solutions to route IP packets from one network to
other networks :
Static routes, to reach nested networks,
Network address t
ranslation d‘adresse (NAT, DNAT, port forwarding),
Routing protocol (RIP),
Domain name management DNS et DynDNS.
IPSec & OpenVPN tunnels
The IPL-E features IPSec and OpenVPN tunnels to provide a high level of security and also compatibility with
existing devices.
The VPN connection guarantees a high level of performance and security
Transparency : The VPN interconnects the two networks so that any machine in one network can
communicate with a machine on the other network.
Authentication : The router that establishes the VPN is authenticated by the one that accepts it and
any other connection is rejected.
Confidentiality : Data traffic via the VPN is encrypted.
IPSec will be chosen when the IPL needs to establish a VPN with an already installed IPSec VPN server.
OpenVPN will be preferred when VPN traffic is routed through intermediate routers to take advantage of the
flexibility of this technique.
Remote access server for PCs, tablets and smartphones
The IPL can also behave like a remote access server.
If he is registered in the user list, a remote user can access to particular devices of a machine network
depending on his identity.
The new HTTPS portal make possible to access easily and safely to HMIs or PLCS web servers using a
tablet, a PC or a smartphone.
Firewall
The firewall protects against the sophisticated attacks coming from the Internet.
It is also able to filter IP frames between the WAN interface or any VPN interface on one hand, and the LAN
interface on the other hand.
VRRP redundancy
VRRP makes possible to use two routers shaping a redundant solution.