VPN Tracker for Mac OS X



Similar documents
VPN Tracker for Mac OS X

VPN Tracker for Mac OS X

VPN Tracker for Mac OS X

VPN Tracker for Mac OS X

VPN Configuration Guide LANCOM

VPN Configuration Guide D-Link DFL-800

VPN Configuration Guide. Cisco Small Business (Linksys) WRVS4400N / RVS4000

VPN Configuration Guide. Cisco Small Business (Linksys) RV016 / RV042 / RV082

VPN Configuration Guide. Cisco Small Business (Linksys) WRV210

VPN Configuration Guide D-Link DFL-200

VPN Configuration Guide Netgear FVS338 / FVX538 / FVS124G

VPN Configuration Guide. ZyWALL USG Series / ZyWALL 1050

VPN Configuration Guide Linksys RV042/RV082

VPN Configuration Guide SonicWALL with SonicWALL Simple Client Provisioning

VPN Configuration Guide SonicWALL with SonicWALL Simple Client Provisioning

VPN Configuration Guide DrayTek Vigor / VigorPro

VPN Quick Configuration Guide. Astaro Security Gateway V8

VPN Tracker for Mac OS X

Configuring a VPN for Dynamic IP Address Connections

VPN Configuration Guide WatchGuard Fireware XTM

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Cisco Firewall. Overview

VPN Configuration Guide. Juniper Networks NetScreen / SSG / ISG Series

VPN Configuration Guide. Parallels Remote Desktop for Mac

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Fortinet Firewall. Overview

VPN Configuration Guide. Linksys (Belkin) LRT214 / LRT224 Gigabit VPN Router

VPN Configuration Guide. Cisco ASA 5500 Series

How To Configure L2TP VPN Connection for MAC OS X client

How To Configure Apple ipad for Cyberoam L2TP

Configuring an IPsec VPN to provide ios devices with secure, remote access to the network

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Sonicwall Firewall.

VPN Configuration Guide. Dell SonicWALL

CREATING AN IKE IPSEC TUNNEL BETWEEN AN INTERNET SECURITY ROUTER AND A WINDOWS 2000/XP PC

Configuring IPsec VPN with a FortiGate and a Cisco ASA

Configuring a Check Point FireWall-1 to SOHO IPSec Tunnel

Configuring IPsec VPN between a FortiGate and Microsoft Azure

VPN Configuration of ProSafe VPN Lite software and NETGEAR ProSafe Router:

Workflow Guide. Establish Site-to-Site VPN Connection using RSA Keys. For Customers with Sophos Firewall Document Date: November 2015

How To Configure An Ipsec Tunnel On A Network With A Network Gateways (Dfl-800) On A Pnet 2.5V2.5 (Dlf-600) On An Ipse Vpn

How To Setup Cyberoam VPN Client to connect a Cyberoam for remote access using preshared key

Configure IPSec VPN Tunnels With the Wizard

Fireware How To VPN. Introduction. Is there anything I need to know before I start? Configuring a BOVPN Gateway

VPN Wizard Default Settings and General Information

VPN L2TP Application. Installation Guide

Network/VPN Overlap How-To with SonicOS 2.0 Enhanced Updated 9/26/03 SonicWALL,Inc.

How To - Setup Cyberoam VPN Client to connect to a Cyberoam for the remote access using preshared key

VPN Configuration Guide. Dealing with Identical Local and Remote Network Addresses

Configure VPN between ProSafe VPN Client Software and FVG318

Configuring TheGreenBow VPN Client with a TP-LINK VPN Router

Configuring SSL VPN on the Cisco ISA500 Security Appliance

Setting up D-Link VPN Client to VPN Routers

VPN Configuration Guide. AVM FRITZ!Box

Chapter 6 Virtual Private Networking

Configure an IPSec Tunnel between a Firebox Vclass & a Check Point FireWall-1

VPNC Interoperability Profile

Configuring an IPSec Tunnel between a Firebox & a Check Point FireWall-1

VPN. VPN For BIPAC 741/743GE

Configuring Windows 2000/XP IPsec for Site-to-Site VPN

Deploying the Barracuda Link Balancer with Cisco ASA VPN Tunnels

VPN Configuration of ProSafe Client and Netgear ProSafe Router:

How To Industrial Networking

Configuring IPsec between a Microsoft Windows XP Professional (1 NIC) and the VPN router

IPsec VPN Application Guide REV:

How to access peers with different VPN through IPSec. Tunnel

Creating a Gateway to Client VPN between Sidewinder G2 and a Mac OS X Client

Netgear ProSafe VPN firewall (FVS318 or FVM318) to Cisco PIX firewall

How to setup PPTP VPN connection with DI-804HV or DI-808HV using Windows PPTP client

VPN Solution Guide Peplink Balance Series. Peplink Balance. VPN Solution Guide Copyright 2015 Peplink

ENDIAN Topologies Setup of different Network topologies with Endian Firewalls

Configuration Guide. How to establish IPsec VPN Tunnel between D-Link DSR Router and iphone ios. Overview

How To Establish IPSec VPN between Cyberoam and Microsoft Azure

UTM - VPN: Configuring a Site to Site VPN Policy using Main Mode (Static IP address on both sites) i...

I. What is VPN? II. Types of VPN connection. There are two types of VPN connection:

Global VPN Client Getting Started Guide

Connecting Remote Offices by Setting Up VPN Tunnels

Firewall Defaults and Some Basic Rules

VPN PPTP Application. Installation Guide

What information will you find in this document?

How To Establish Site-to-Site VPN Connection. using Preshared Key. Applicable Version: onwards. Overview. Scenario. Site A Configuration

Configuring a Lan-to-Lan VPN with Overlapping Subnets with Juniper NetScreen/ISG/SSG Products

7. Configuring IPSec VPNs

Global VPN Client Getting Started Guide

Using IPsec VPN to provide communication between offices

How To Set Up A Vpn Tunnel Between Winxp And Zwall On A Pc 2 And Winxp On A Windows Xp 2 On A Microsoft Gbk2 (Windows) On A Macbook 2 (Windows 2) On An Ip

Best Practices: Pass-Through w/bypass (Bridge Mode)

How to set up Inbound Load Balance under Drop-in Mode

Windows XP VPN Client Example

Cisco Which VPN Solution is Right for You?

Lab 4.4.8a Configure a Cisco GRE over IPSec Tunnel using SDM

HOWTO: How to configure IPSEC gateway (office) to gateway

IPSecuritas 3.x. Configuration Instructions. AVM FRITZ!Box. for

Virtual Private Network and Remote Access Setup

ISG50 Application Note Version 1.0 June, 2011

Setting up VPN connection: DI-824VUP+ with Windows PPTP client

Application Notes for Configuring a SonicWALL VPN with an Avaya IP Telephony Infrastructure - Issue 1.0

Application Notes. How to Configure UTM with Apple OSX and ios Devices for IPsec VPN

Cisco SA 500 Series Security Appliance

Apliware firewall. TheGreenBow IPSec VPN Client. Configuration Guide.

OvisLink 8000VPN VPN Guide WL/IP-8000VPN. Version 0.6

RouteFinder. IPSec VPN Client. Setup Examples. Reference Guide. Internet Security Appliance

How To Configure Syslog over VPN

Transcription:

VPN Tracker for Mac OS X How-to: Interoperability with NETASQ Internet Security Appliances Rev. 3.0 Copyright 2003-2004 equinux USA Inc. All rights reserved.

1. Introduction 1. Introduction This document describes how VPN Tracker can be used to establish a connection between a Macintosh running Mac OS X and a NETASQ Internet Security Appliance. The NETASQ is configured as a router connecting a company LAN to the Internet. This paper is only a supplement to, not a replacement for, the instructions that have been included with your NETASQ. Please be sure to read those instructions and understand them before starting. All trademarks, product names, company names, logos, screenshots displayed, cited or otherwise indicated on the How-to are the property of their respective owners. EQUINUX SHALL HAVE ABSOLUTELY NO LIABILITY FOR ANY DIRECT OR INDIRECT, SPECIAL OR OTHER CONSEQUENTIAL DAMAGES IN CONNECTION WITH THE USE OF THE HOW-TO OR ANY CHANGE TO THE ROUTER GENERALLY, INCLUDING WITHOUT LIMITATION, ANY LOST PROFITS, BUSINESS, OR DATA, EVEN IF EQUINUX HAS BEEN ADVISED OF THE POSSIBILITY OF SUCH DAMAGES. 2

2. Prerequisites 2. Prerequisites First you have to make sure that your NETASQ has VPN support built in. Please refer to your NETASQ manual for details. Furthermore you should use a recent NETASQ fimware version. The latest firmware release for your NETASQ appliance can be obtained from https://www. netasq.com/ For this document, NS-BSD version 5.0.10 has been used. When using Pre-shared key authentication you need one VPN Tracker Personal Edition license for each Mac connecting to the NETASQ. VPN Tracker is compatible with Mac OS X 10.2.x / 10.3. 3

3. Connecting a VPN Tracker host to a NETASQ using Pre-shared Key Authentication In this example the Mac running VPN Tracker is directly connected to the Internet via a dialup or PPP connection. 1 The NETASQ is configured in NAT mode and has the static WAN IP address 169.1.2.3 and the private LAN IP address 192.168.1.1. The Stations in the LAN behind the NETASQ use 192.168.1.1 as their default gateway and should have a working Internet connection. Chicago Mac-VPN Tracker dynamic IP New York NETASQ WAN 169.1.2.3 LAN 192.168.1.1 192.168.1.10 192.168.1.20 192.168.1.30 Figure 1: VPN Tracker NETASQ connection diagram LAN 192.168.1.0/24 1 Please note that the connection via a router, which uses Network Address Translation (NAT), only works if the NAT router supports IPSEC passthrough. Please contact your router s manufacturer for details. 4

3.1 NET ASQ Configuration The pre-defined VPN Tracker connection type has been created using the default settings for your NETASQ appliance. If you change any of the settings on the NETASQ, you will eventually have to adjust the connection type in VPN Tracker. In Firewall Manager please go to [Configuration -> VPN -> IPsec Tunnels] and edit an empty slot: Step 1 Enter an arbritary name for the VPN tunnel.seq Figure 3: NETASQ - VPN Wizard - Step 1 5

Step 2 Check Advanced mode. Figure 4: NETASQ - VPN Wizard - Step 2 6

Step 3 Adjust the Tunnel Endpoints: Local IPS-Firewall interface: Firewall_bridge Peer IP address: any Figure 6: NETASQ - VPN Wizard - Step 3 7

Step 4 Adjust the Traffic endpoints: Local host at traffic end point: Network_bridge Remote host at traffic end point: any Figure 8: NETASQ - VPN Wizard - Step 4 8

Step 5 Adjust your IPSec VPN Tunnel configuration: Phase 1 negotiation mode: Aggressive mode Identity type: IP Address Identity: the public IP address of your NETASQ gateway Figure 11: NETASQ - IPSec Tunnel Configuration Step 6 Create a new Pre-shared key for this this identity: Type: user@fqdn(e-mail) Peer Identity: a e-mail address (e.g. vpntracker@equinux.com) Share key: your Pre-shared key Figure 12: NETASQ - Pre-shared key configuration Finally, send your configuration and activate the previously created tunnel. 9

3.2 VPN T racker Configuration Step 1 Add a new connection with the following options: Vendor: NETASQ Model: your VPN device Figure 16: VPN Tracker - Connection settings 10

Step 2 Change your Network Settings: VPN Server Address: public IP address of your VPN Gateway (e.g. 169.1.2.3) Remote Network/Mask: network address and netmask of the remote network (eg. 192.168.1.0/255.255.255.0). Figure 17: VPN Tracker Network settings Please note: In order to access multiple remote networks simultaneously, just add them by pressing the Plus-button. 2 2 For this step VPN Tracker Professional Edition is needed. 11

Step 3 Change your Authentication Settings: Pre-shared key: the same Pre-shared key as in the NETASQ configuration. Figure 18: VPN Tracker - Authentication settings 12

Step 4 Identifier Settings: Local Identifier: E-mail address (e.g. vpntracker@equinux.com). Remote Identifier: Remote endpoint IP address. Figure 19: VPN Tracker - Identifier settings Step 5 Save the connection and Click Start IPsec in the VPN Tracker main window. You re done. After 10-20 seconds the red status indicator for the connection should change to green, which means you re securely connected to the NETASQ. After IPsec has been started, you may quit VPN Tracker. The IPsec service will keep running. Now to test your connection simply ping a host in the NETASQ network from the dialed-in Mac in the Terminal utility: ping 192.168.1.10 13