
LIP-ME20X User Manual
15
LOYTEC
Version 7.2
LOYTEC electronics GmbH
Internet Connection Sharing
Combined with an LTE-800 mobile interface a LOYTEC device can act as a NAT router to
share the mobile Internet connection with other devices on the LAN. For doing so, the
Internet connection sharing
feature can be enabled on the
IP Host
tab, where the default
router interface is selected. Other devices on the LAN need to specify the IP address of the
LOYTEC device offering connection sharing as their default gateway. This way, local
devices can use NTP, VPN client or other Internet services.
Figure 2: Internet connection sharing
Dynamic DNS
LOYTEC devices can now make use of a dynamic DNS service to register a public DNS
name. This makes the device reachable over a publich IP address that can change over time,
for instance an LTE-800 mobile interface using a public IP address assigned by the mobile
carrier. A number of dynamic DNS providers are preconfigured and can be selected on the
IP Host
tab of the port configuration as shown in Figure 3.
Figure 3: Dynamic DNS Settings
Secure Building Automation Protocols using VPN
This firmware version enhances flexibility and control over which building automation
protocols are directly available on the VPN. A separate
VPN
tab has been added to the port
configuration that allows configuring IP-based control protocols to be running directly on
the VPN client. This effectively secures otherwise unsecured automation protocols such as
BACnet/IP. When running on the VPN interface, the protocols are assigned the VPN’s IP
address and as a protocol node, the LOYTEC device is also reachable over multi-NAT
access networks, such as LTE.
For example, simply set up BACnet/IP on the VPN interface and add all other BACnet/IP
devices to the same VPN. Each node establishes a secure channel to the OpenVPN server
hub, which routes the traffic between the communicating peer nodes. No unencrypted traffic
will ever be transmitted.