3. Connect to the Resnet and classnet by using the file we provided. 1. Download racoon, ppp, dhcp-client,



Similar documents
Creating a Gateway to Gateway VPN between Sidewinder G2 and Linux

How To Configure L2TP VPN Connection for MAC OS X client

Advanced Computer Network Technologies Project Configuration of mvpn. Noha Pavol noh031

Creating a Gateway to Client VPN between Sidewinder G2 and a Mac OS X Client

Purple Sturgeon Standard VPN Installation Manual for Windows XP

How To Establish IPSec VPN connection between Cyberoam and Mikrotik router

Interconnection between the Windows Azure

I. What is VPN? II. Types of VPN connection. There are two types of VPN connection:

Viking VPN Guide Linux/UNIX

How to setup a VPN on Windows XP in Safari.

SingTel VPN as a Service. Quick Start Guide

Configuring a Check Point FireWall-1 to SOHO IPSec Tunnel

Establishing a VPN tunnel to CNet CWR-854 VPN router using WinXP IPSec client

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Fortinet Firewall. Overview

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Sonicwall Firewall.

Using a Remote SQL Server Best Practices

VPNC Interoperability Profile

IPsec VPN Application Guide REV:

Use Shrew Soft VPN Client to connect with IPSec VPN Server on RV130 and RV130W

DFL-210/260, DFL-800/860, DFL-1600/2500 How to setup IPSec VPN connection

Configuration Guide. How to establish IPsec VPN Tunnel between D-Link DSR Router and iphone ios. Overview

How do I set up a branch office VPN tunnel with the Management Server?

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Cisco Firewall. Overview

Astaro Security Gateway V8. Remote Access via L2TP over IPSec Configuring ASG and Client

Configuring IPsec VPN with a FortiGate and a Cisco ASA

For paid computer support call

Weidmueller minirouter with two Ethernet ports (IE-ARM-E) Firmware (please use appl-note_router-update-en.pdf for updates)

Application Note: Integrate Juniper IPSec VPN with Gemalto SA Server. October

NAS 323 Using Your NAS as a VPN Server

VPN L2TP Application. Installation Guide

Setting up D-Link VPN Client to VPN Routers

Configuring a VPN for Dynamic IP Address Connections

Using Microsoft Expression Web to Upload Your Site

How To Configure Apple ipad for Cyberoam L2TP

LAN-Cell to Cisco Tunneling

Configure IPSec VPN Tunnels With the Wizard

Configuring Windows 2000/XP IPsec for Site-to-Site VPN

How To Configure A Kiwi Ip Address On A Gbk (Networking) To Be A Static Ip Address (Network) On A Ip Address From A Ipad (Netware) On An Ipad Or Ipad 2 (

Mac OS VPN Set Up Guide

ZyWALL USG-Series. How to setup a Site-to-site VPN connection between two ZyWALL USG series.

Installation Logon Recording Basis. By AD Logon Name AD Logon Name(recommended) By Windows Logon Name IP Address

Chapter 2 Editor s Note:

VPN (OpenVPN) Setting Guide. Johnny

Setting up VPN Tracker with Nortel VPN Routers

VPN Tracker for Mac OS X

Virtual Private Network and Remote Access Setup

ASA and Native L2TP IPSec Android Client Configuration Example

OvisLink 8000VPN VPN Guide WL/IP-8000VPN. Version 0.6

Browser Client 2.0 Admin Guide

VPN Wizard Default Settings and General Information

Deployment Guide: Transparent Mode

Configuring a FortiGate unit as an L2TP/IPsec server

Sophos UTM. Remote Access via SSL. Configuring UTM and Client

Configuring an IPSec Tunnel between a Firebox & a Check Point FireWall-1

Configuring the OfficeConnect Secure Gateway for a remote L2TP over IPSec connection

VPN Overview. The path for wireless VPN users

DESLock+ Basic Setup Guide Version 1.20, rev: June 9th 2014

F-Secure Messaging Security Gateway. Deployment Guide

Astaro User Portal: Getting Software and Certificates Astaro IPsec Client: Configuring the Client...14

ESET SECURE AUTHENTICATION. Cisco ASA Internet Protocol Security (IPSec) VPN Integration Guide

Authenticating a Lucent Portmaster 3 with Microsoft IAS and Active Directory

NETASQ SSO Agent Installation and deployment

Release Notes. Pre-Installation Recommendations... 1 Platform Compatibility... 1 Known Issues... 2 Resolved Issues... 2 Troubleshooting...

Using a VPN with Niagara Systems. v0.3 6, July 2013

Defender EAP Agent Installation and Configuration Guide

Setup a Virtual Host/Website

Configure an IPSec Tunnel between a Firebox Vclass & a Check Point FireWall-1

Chapter 6 Basic Virtual Private Networking

Quick Note 041. Digi TransPort to Digi TransPort VPN Tunnel using OpenSSL certificates.

TSM for Windows Installation Instructions: Download the latest TSM Client Using the following link:

Configuring an IPsec VPN to provide ios devices with secure, remote access to the network

AG MacOS Standalone Array Client Administration Guide

IPsec VPN Security between Aruba Remote Access Points and Mobility Controllers

Quick Start Guide. WRV210 Wireless-G VPN Router with RangeBooster. Cisco Small Business

University of Central Florida UCF VPN User Guide UCF Service Desk

Configuring your network settings to use Google Public DNS

How to: Set up TTUnet VPN on your Mac in OS X Snow Leopard, Lion, Mountain Lion, or

Cisco QuickVPN Installation Tips for Windows Operating Systems

ECA IIS Instructions. January 2005

How To Configure An Ipsec Tunnel On A Network With A Network Gateways (Dfl-800) On A Pnet 2.5V2.5 (Dlf-600) On An Ipse Vpn

Application Notes. How to Configure UTM with Apple OSX and ios Devices for IPsec VPN

How To Establish IPSec VPN between Cyberoam and Microsoft Azure

Sophos UTM. Remote Access via PPTP. Configuring UTM and Client

Trend Micro Incorporated reserves the right to make changes to this document and to the products described herein without notice.

Yale Software Library

How To Set Up A Vpn Tunnel Between Winxp And Zwall On A Pc 2 And Winxp On A Windows Xp 2 On A Microsoft Gbk2 (Windows) On A Macbook 2 (Windows 2) On An Ip

Integration with Active Directory

Basic Exchange Setup Guide

Network/VPN Overlap How-To with SonicOS 2.0 Enhanced Updated 9/26/03 SonicWALL,Inc.

Setting Up Scan to SMB on TaskALFA series MFP s.

Case Study - Configuration between NXC2500 and LDAP Server

SMC7004ABR Barricade Broadband Router Installation Instructions

SETTING UP REMOTE ACCESS ON EYEMAX PC BASED DVR.

How to Install Multiple Monitoring Agents on a Microsoft Operating System. Version StoneGate Firewall/VPN 2.6 and SMC 3.2

Configuring SSH Sentinel VPN client and D-Link DFL-500 Firewall

AT&T Global Network Client v6.8.0 and Passport IP Setup Instructions for Broadband VPN Access

Step-by-Step Guide for Creating and Testing Connection Manager Profiles in a Test Lab

Chapter 5 Virtual Private Networking Using IPsec

Transcription:

Please follow the steps below to establish a VPN connection. *** The following instructions are for ClassNet and ResNet networks only while connection from Public ISP may not be suppor 1. Download and Install L2TP VPN Corresponding Package 2. Configure the corresponding configuration file 3. Connect to the Resnet and classnet by using the file we provided 4. Tips for broadband users I. Download and Install L2TP VPN Package 1. Download racoon, ppp, dhcp-client, ipsec-tools, xl2tpd to a computer which have Internet access, then transfer to your computer running debian by clicking the URL. racoon and ipsec-tools gnome-ppp dhcp-client xl2tpd 2. Double-click the package downloaded; you will be reminded that the client can also be downloaded through yum channel. Then click Close.

3. Click Install Package to install racoon and ipsec-tools, ppp,dhcp-client and xl2tpd. 4. Type your computer's root account password, and then click OK. 5. Click Apply to continue the installation. 6. Click Install anyway to continue the installation.

7. Click OK to finish the package installation. 8. Repeat the step 2 to step for installing the others package except racoon and ipsec-tools package. 9. You should select "direct" and press Enter to continue the installation of the racoon and ipsec tools package. II. Configure the corresponding configuration file

1.Edit the configuration of the packages installed using any word editor (e.g. vi, vim, gedit) I. Edit the racoon.conf file Enter the command: gedit /etc/racoon/racoon.conf And then copy and paste the code like the picture shown below for the racoon configuration file. The configuration of raccoon.conf should be: log debug; path pre_shared_key "/etc/racoon/psk.txt"; padding { maximum_length 20; randomize off; strict_check off; exclusive_tail off; } remote anonymous { exchange_mode main; doi ipsec_doi; situation identity_only; generate_policy on; proposal_check obey; proposal { encryption_algorithm des; hash_algorithm sha1; authentication_method pre_shared_key; dh_group 1; } } sainfo anonymous { lifetime time 28800 sec;

encryption_algorithm 3des; authentication_algorithm hmac_md5; compression_algorithm deflate; } II.Edit the Pre-Shared Key file The first one is the servers IP and the second one is the pre-shared key, using Resnet VPN, the setting should be: Enter the command, gedit /etc/racoon/psk.txt You can copy and paste all codes below the psk file. #resnet 10.0.255.246 ipsec-vpn 10.0.255.247 ipsec-vpn 10.0.255.248 ipsec-vpn 10.0.255.249 ipsec-vpn 10.0.255.251 ipsec-vpn 10.0.255.253 ipsec-vpn 10.0.255.252 ipsec-vpn 10.0.255.254 ipsec-vpn #classnet 10.0.191.254 ipsec-vpn 10.0.191.253 ipsec-vpn #broadband 137.189.192.201 ipsec-vpn 137.189.192.204 ipsec-vpn

III. Edit the configuration of the l2tpd (for ubuntu 7.10) or xl2tpd (for ubuntu 8.04) Enter the command according to your ubuntu's version: gedit /etc/xl2tpd/xl2tpd.conf [global] port = 1701 auth file = /etc/ppp/pap-secrets [lac connect] lns = vpn.cuhk.edu.hk require pap = yes ppp debug = yes pppoptfile = /etc/ppp/options.xl2tpd IV. Edit the pap secrets file according to the nature of the VPN connection Enter the command gedit /etc/ppp/pap-secrets s0123456 vpn.cuhk.edu.hk yourpassword V. Edit the option file Enter the command : gedit /etc/ppp/options.xl2tpd lock debug mtu 1000 nobsdcomp nodeflate noaccomp nopcomp novj

defaultroute replacedefaultroute name s0123456 (change to your student ID) III. Connect to Resnet/Classnet 1.Download the script connect.sh from here and save the file to the corresponding location. 2. You should at the directory where connect.sh exist in the terminal and then type the below to excute the script file.when yo to the VPN, you need to execute it everytime../connect.sh 3. You can check whether your connection is under VPN connection by using "ifconfig" command. If you can see the ppp0 connection, that means your connection is under VPN connection. 4. For disconnection, please enter the following command. echo "d" > /var/run/xl2tpd/l2tp-control IV. Tips for broadband users Please go though the steps in I and II. Then, you are required to make the following amendments.

http://helpdes 1. Adding static route First you have to identify the IP address of your ISP's default gateway and the broadband VPN server you are connecting. For ADSL-based broadband: /sbin/route add -host vpn.server.ip.address ppp0 (adding both broadband VPN server IP addresses are ok) /sbin/route add default ppp1 For ethernet-based broadband: /sbin/route add -host vpn.server.ip.address gw isp.default.gateway.ip (adding both broadband VPN server IP addresses are ok) /sbin/route add default ppp0 2. Modification of connect.sh remove the dhclient changing ipsec encryption commands with local ip address as the following: echo -e spdadd youripaddress/32\[1701\] 0.0.0.0\/0\[0\] any \-P out ipsec esp\/transport\/\/require\; 3. For DNS server If you can connect by IP but can't resolve DNS, you need to add the CUHK DNS servers to resolv.conf gedit /etc/resolv.conf nameserver 137.189.192.3 nameserver 137.189.196.3 For comments and enquiries about this service, please write to the ITSC Elec