Specifications

46 / 80
Use SSH-VPN
Set to “Yes” to allow SSH-VPN operation
Interface
Defines the interface (GPRS or Ethernet) to be used when establishing the SSH-VPN
tunnel. In this example, the GPRS will be used.
Primary server IP
The public IP address of the M2M Gateway, where the Arctic connects to. This is the IP
address obtained from Internet service provider.
Primary server port
The TCP port, to which the Arctic will connect when establishing the SSH connection (port
where M2M Gateway listens to incoming SSH connections). The default is port 22, but it
can be changed from M2M GW’s SSH-VPN configuration. Use the default port 22 in this
example.
Primary server GW
If Ethernet is used, and the M2M Gateway is not in the same LAN as Arctic, this field must
contain the IP address of Arctic LAN's default gateway. Leave as 0 in this example.
Routing mode
o Set as "None" if the SSH-VPN is a default route already and no need for accessing
other devices than the M2M GW.
o Set as "Tunnel the following network" for informing the Arctic which network is
reachable behind the VPN tunnel at M2M side. This is used e.g. for accessing devices
in M2M’s LAN, e.g. SCADA computer.
o Set as Default route” if the SSH-VPN tunnel is the primary communication channel
for all hosts in Arctic’s LAN.
Set as "Tunnel the following network" in this example.
Note: If “Default route” is enabled, the other default gateways (Ethernet and GPRS)
must be disabled.
SSH-VPN key management
In addition to the VPN parameters, the SSH keys must be exchanged between the Arctic
and M2M GW. Enter (copy-paste) the M2M GW’s SSH-VPN server’s key to the line
Insert SSH key for primary server <IP>”. Respectively, enter (copy-paste) the “Local
server public key” to the M2M GW’s SSH client configuration.
See the Arctic’s and M2M GW’s user’s manuals for more details regarding SSH key
exchange.
Note: When copying the SSH public keys, be aware that the keys are longer than the
visible key part on the screen.
14.5. Configuring the L2TP settings of the Arctic
This step is an alternative to the chapter 14.4: Configuring the SSH-VPN settings of the Arctic.
Note: Enable only one type of VPN in the same Arctic.
Setting up the L2TP-VPN differs from SSH-VPN, because there is no key exchange between M2M
GW and Arctic.