Site Search

Connect SIM by macnica

ConnectSIM by Macnica

IP design for SIMs for industrial IoT: Using fixed/dynamic global IPs and private IPs

From line selection to "communication configuration": The premise of industrial IoT has changed

In the past, industrial IoT communications often required decisions based on "line conditions," such as area, communication quality, and whether or not a fixed IP address was used.
On the other hand, the scope of considerations is expanding due to the widespread use of cloud integration, the increase in the number of connected devices, and the increasing sophistication of security requirements.

The following aspects are particularly important:

・Do you need to access the device directly from outside? (reachability)

- Should the reach be limited via the Internet or by using a closed network/VPN (security)?

・Can operation and maintenance be carried out even if the number of units increases (reproducibility, cost)?

For this reason, it is important to select a communication SIM not as a single line, but as a"communication configuration"that includes IP design and communication routes.

The Role of IP Addresses in Industrial IoT

The following types of communications are typically used in industrial IoT:

・Data transmission from on-site equipment to the cloud

・Remote equipment monitoring and maintenance

・Continuous connection between bases and systems

・Security-focused closed network communication and VPN connections

These uses allow
"Do you need to access the device from outside?""Do you need to access it via the Internet?"
Because of these different requirements, the optimal IP address format varies greatly.

What is a global IP address?

A global IP address is an IP address used when connecting directly to the Internet using a SIM.
There are two main types of industrial IoT:

Fixed global IP

content

feature

・Always assign the same global IP address to the SIM
-The IP address remains the same even after reconnection or rebooting

Primary use cases

・Direct access to surveillance cameras and equipment from outside
・Cloud services that restrict source IP addresses
・Termination of VPN connection
One-to-one communication with customer systems

merit

・Connection settings are stable
・It eliminates the need to check IP addresses when troubleshooting
・Easy to link with external systems

Points to note

・Since it is always connected to the Internet, it is an easy target for attacks
・Requires the use of a firewall or VPN
・Operation and security costs tend to rise as the number of devices increases

Dynamic Global IP

content

feature

IP address changes every time you connect
-Same method as general mobile communications

Primary use cases

- One-way communication from device to cloud
・Configuration that does not allow direct access from outside
・Outbound communications such as MQTT and HTTPS

merit

・Relatively low security risk
・Suitable for a large number of IoT devices

Points to note

・Direct connection from outside is not possible
・It is not compatible with systems that require IP restrictions.

What is a private IP address?

There are two types of private IPs: a configuration that goes via the Internet and a configuration that is completed within a closed network.

content

feature

・Closed IP addresses that are not used on the Internet
・Used for communication between SIMs or with base networks

Primary use cases

・Outbound communication to the cloud
- Closed network connection with factories and base networks
・Facility control and other applications that require high security, such as in the financial, medical, and critical infrastructure fields. IoT
VPN and combination with private network services

merit

・(In the case of closed network connections) High security can be ensured as it does not go through the Internet
・The risk of external attacks can be significantly reduced
・Easy to operate and manage even if the number of units increases

Points to note

・Even if it is a private IP, it does not necessarily mean that the communication is closed
・To achieve closed network communication, configurations such as a closed network, dedicated APN, or VPN are required.
・Cloud integration may require the design of a gateway, etc.

Guidelines for selecting IP addresses for IoT SIMs

Communication Configuration

Main uses

Recommended IP

Cloud Send Only

Sensors, meters, and log transmission

Dynamic Global IP

Direct access from outside

Monitoring, maintenance, and site management

Fixed global IP

Highly secure communications

Factories, control systems, critical infrastructure

Private IP

It is realistic to consider SIM cards for industrial IoT with "IP design included"

In industrial IoT, fixed global IP addresses can be effective depending on the application, but if selected without fully understanding the requirements, it could increase security measures, operational burden, and costs.

When selecting a communications SIM, it is important to consider the communications configuration, including IP address design, taking the following points into account:

 

-Communication direction (monitoring or control/outbound-focused)

- Quantity scale (several to tens of thousands)

- Security requirements (how far the reach is allowed)

・Operation and maintenance system (how to isolate problems, whether or not there is on-site support)

Summary

・Use a fixed global IP address only when necessary

・For many IoT applications, dynamic IP + cloud connectivity is sufficient.

・For security-conscious applications, private IP + closed network communication is effective

It is becoming increasingly important to select a communication SIM for industrial IoT as a communication configuration (a system including IP design) that matches your requirements (communication direction, security, and operational system) rather than as a single line.

So far, we have explained the differences between fixed global IPs, dynamic global IPs, and private IPs, and how to choose one depending on your needs. 

In reality, the optimal solution will vary from case to case, depending not only on the IP address type but also on factors such as "reachability (whether it can be accessed from outside)," "security," "operation and maintenance system," and "number of devices."

 

Connect SIM by macnica offers multiple options for industrial IoT, including dynamic global IP, fixed global IP, and private IP (closed area, VPN, etc. configurations).

Please feel free to contact us with any questions you may have, such as "Which one is appropriate for our company's purposes?" or "Will we be able to operate it if the number of units increases in the future?"