Connect Allen Bradley through port forward

How can I connect to an Allen Bradley SLC PLC via port forward through a Public IP?

There are probably more elegant ways to do this, but for the IT novice (like myself) here is one possibility:
Create a VPN tunnel using hardware firewall devices (I’ve used SonicWall).
I am assuming you have an internet connection available on both ends (SCADA server and PLC).
This is a horrible idea. With sites like shodan, you could get hacked quite quickly.

Hi Kyle,

I’m curious as to why you think this is such a bad idea. I agree simply forwarding the relevant port through the firewall to the PLC would be a bad idea, but surely a VPN setup with SonicWall devices will be impervious to Shodan.