The RUT301 and the “LAN robotics” is managed by us. WAN is provided by the customer.
Now the customer wants to addtional access from their PC a database server in the “robotics lan”, but they do not want to be in the same subnet as our robotic lan.
The customer asked us to change the gateway adress to their gateway which doesn’t make sense to me. As far as I understand our RUT301 has to be the gateway or else VPN connections won’t work any more.
LAN4 could be configured as another lan, but it seems like the customer wants to connect a whole different network topology to the LAN 4 (blue area)…
Maybe someone here having a clue if this is possible?
It would be helpful if you could also share the IP addresses currently assigned to each device within the topology, as well as how your customer determines which new IP addresses should be assigned and what changes need to be made.
Additionally, you mentioned a VPN on the RUT301. Could you please clarify whether the RUT301 is acting as a server or a client, what type of VPN is being used, and where the VPN connection is established? Including this information in a network topology diagram would also be very helpful.
Assigning the same IP address to multiple devices will cause conflicts, so this should be avoided.
Based on the topology and IP addresses you provided, it appears that the RUT301, Customer Gateway, and LAN robotics devices are all within the same network (10.7.37.X). If that is the case, you should be able to access the LAN robotics devices directly from the customer PC.
thank you very much for your answer and your help!
The problem is, that the customer gateway seems to be a kind of router / firewall and the device behind has an unknown IP.
Since the WAN side from the RUT301 is in the customers network and not directly attached to the internet, we set up port forwarding from WAN to LAN (on the RUT301) so they can access the needed devices.
This way we can make sure that our managed “LAN robotics” is not touched by the customer.
The network diagram is not correct since beetween the RMS cloud and the WAN port of the RUT is another network provided by the customer (but this on is unknown to us). I guess there must be a firewall or something beetween.