VPNs over LTE

HI all,
I was being tasked with something way out of my knowledge…

We have X amount of units* deployed around the country. Every unit has hAP AC lite on site and internet provided by LTE dongle.

Every unit is sending various data to local network. So if you’re on site all is good. We would however like all the data to be also available remotely. As far as I am aware the VPNs in a standard configuration (so client to server) are no go because LTE dongle is not provided with public IP.

We have another hAP ac lite in our office where static IP is known. So we could make all the remote routers to dial in to VPN to server. There would be another VPN for clients to connect to server network where all the remote routers would already called in.This router is however behind ISP’s router - it is managed though and it is within our control so we should be able to do changes to it if necessary.

I don’t even know if I explained the problem correctly but hopefully you’ll understand what I need. I’m sure there are also other solutions available so if you have one please do share it.

*unit is a truck with loads of equipment which is constantly sharing monitoring data.

Thanks!

Cheers,
Gasper
Annotation 2020-04-21 113254.jpg

You can do that VPN connection with one central point who can act as VPN server.
You can do a VLAN-s at some of VPNs to separate one traffic from other.
You can do a firewall rules dedicated to that VPN traffic by separate chain-s with jump action.