
L-INX/L-GATE User Manual
25
LOYTEC
LOYTEC electronics GmbH
Figure 2: Internet connection sharing
Dynamic DNS
LOYTEC devices can now make use of a dynamic DNS service to register a public DNS
name. This makes the device reachable over a publich IP address that can change over time,
for instance an LTE-800 mobile interface using a public IP address assigned by the mobile
carrier. A number of dynamic DNS providers are preconfigured and can be selected on the
IP Host
tab of the port configuration as shown in Figure 3.
Figure 3: Dynamic DNS Settings
Secure Building Automation Protocols using VPN
This firmware version enhances flexibility and control over which building automation
protocols are directly available on the VPN. A separate
VPN
tab has been added to the port
configuration that allows configuring IP-based control protocols to be running directly on the
VPN client. This effectively secures otherwise unsecured automation protocols such as
BACnet/IP, Modbus TCP, KNXnet/IP or CEA-852. When running on the VPN interface, the
protocols are assigned the VPN’s IP address and as a protocol node, the LOYTEC device is
also reachable over multi-NAT access networks, such as LTE.
For example, simply set up the CEA-852 configuration server on the VPN interface and add
all other CEA-852 clients on the same VPN. The same can be done for BACnet/IP. Each
node establishes a secure channel to the OpenVPN server hub, which routes the traffic
between the communicating peer nodes. No unencrypted traffic will ever be transmitted.