User guide
Table Of Contents
- 1 Security recommendations
- 2 CERTIFICATE OF CONFORMITY
- 3 Products identification
- 4 Data-sheet
- 5 Product overview
- 1 Dimensions
- 2 Connectors
- 3 Led indicators
- 4 DIP switches
- 5 Factory default push-button
- 6 Mounting the product on a DIN rail or removing it
- 7 Cooling
- 8 RS232 interface
- 9 RS485 interface
- 10 Digital input and output
- 11 Connecting the antenna
- 12 Installing the SIM card
- Set up steps
- 2 Connecting a PC to the router for configuration
- 3 Rebooting the router after parameters changes
- 4 Recovering the factory LAN IP address
- 5 Recovering the factory configuration
- 6 Restricting access to the administration server
- 7 Recovering a free access to the administration server
- 8 Factory configuration
- 9 LAN interface set up
- 10 UMTS – GSM-GPRS-3GDGE interface set up
- 11 Setting up the DynDNS service
- 12 Creating VPN connections between routers
- 13 Routing functions
- 14 Address and port translation
- 15 VRRP redundancy
- 16 Remote users connections service
- 17 Remote users connections
- 18 M2Me_Connect service
- 19 Users list
- 20 Firewall
- 21 Serial to IP gateway
- 22 USB to IP gateway
- 23 Advanced functions
- 1 Diagnostic menu
- 2 Saving the configuration to a file
- 3 Updating the firmware
- Signets Word

SET UP
12 Creating VPN connections between routers
12.1 Principles
A VPN tunnel is a safe link set between two end-points routers over an IP network : Both routers
authenticate, data are encrypted and each device of a LAN can exchange data with each device f the
other one.
To get more explanations about how VPNs work, refer to appendix 1.
25 VPNs can be set on the WAN interface of the RAS-3G router.
Two types of VPN can be set : TLS VPN and IPSec VPN.
IPSec has the advantage to be a standard solution.
TLS is easier to employ because the transport layer is TCP or UDP; it is why, it can be easily used
when the VPN must pass through several or even numerous company routers.
Once a type of VPN (TLS or IPSec) has been selected, all the VPN set with the RAS-3G router will be
of the same type.
Two steps are necessary to configure the RAS-3G to create VPN connections between routers :
1
st
step : Select the VPN type and set up the VPN parameters
2 types of VPNs can be used to connect RAS-3G routers together or with other type of routers: IPSec
or TLS/ SSL
Once a type of VPN has be selected, it applies to all the connections with remote routers.
2
nd
step : Creating VPN connections
A connection can be an incoming connection
or an outgoing connection.
If a connection is an incoming connection,
the local router is named “VPN server” and
the remote router is a “VPN client”.
Internet
VPN
Outgoing
connection
Incoming
connection
VPN
client
VPN
server
UMTS GPRS EDGE router ref. RAS-3G User guide ref. 9020009-01
Page 35