travisco_nabisco
Regular Contributor
I am currently working on a project at work that involves placing a cellular modem and router on a train with the requirement that someone on a corporate network be able to connect to the train using an IPSec VPN connection.
The device we have on the train will be configured to accept VPN connections from the WAN IP of the corporate network.
Our current setup, which doesn't quite meet all the requirements, is that the device associated with the WAN IP of the corporate network, a VPN router, is responsible for opening and closing the VPN connection. This puts in a limitation that only a single user can connect to a single train at a time.
I need to come up with a configuration where more than one VPN can be used at a time. ie there will be one user connected to one train, and at the same time another user connected to another train. Each train has identical static IP assignments.
Is there a way to have the on train VPN router accept a connection that initiates directly from a computer on the corporate network?
Here is a general diagram of what I am trying to create.
The device we have on the train will be configured to accept VPN connections from the WAN IP of the corporate network.
Our current setup, which doesn't quite meet all the requirements, is that the device associated with the WAN IP of the corporate network, a VPN router, is responsible for opening and closing the VPN connection. This puts in a limitation that only a single user can connect to a single train at a time.
I need to come up with a configuration where more than one VPN can be used at a time. ie there will be one user connected to one train, and at the same time another user connected to another train. Each train has identical static IP assignments.
Is there a way to have the on train VPN router accept a connection that initiates directly from a computer on the corporate network?
Here is a general diagram of what I am trying to create.