HowTo: VPN with PPTP and the Windows VPN client Securepoint Security Systems Version 2007nx Release 3
Contents 1 Configuration of the appliance... 4 1.1 Setting up network objects... 4 1.2 Creating firewall rules... 5 1.3 PPTP configuration... 6 1.4 Setting up users... 7 2 Configuration of PPTP VPN roadwarrior under Windows... 8 2.1 Setting up the VPN connection... 8 2.2 Configure the settings of the VPN connection... 9 2
VPN with PPTP and the Windows VPN-client A VPN connects one or several computers or networks by using another network, e. g. the internet, as a means of transport. For instance, this could be the computer of a member of staff at their home or in a subsidiary which is linked to the network at the headquarter through the internet. For the user, the VPN looks like a normal network connection to the destination computer. The actual way of transmission is not perceived. The VPN provides the user with a virtual IPconnection which is tunneled by an actual one. The data packages transmitted via this connection are encoded at the client and decoded by the Securepoint servers - and the other way round. Target: Establishing a VPN-PPTP connection between the Securepoint appliance and a Windows PPTP-client. fig. 1 VPN layer 3
1 Configuration of the appliance 1.1 Setting up network objects Select over Firewall the tab Network objects. Set up network objects as shown in the following image. fig. 2 required network objects 4
1.2 Creating firewall rules Select over Firewall the tab rules. Set up the firewall rules as shown in the following image. fig. 3 firewall rules 5
1.3 PPTP configuration In the main menu select VPN over the selection list VPN PPTP. The local PPTP-interface should be a free IP-address from the internal net. The PPTP-IP-addresses (PPTP address-pool) are assigned to the PPTP-Interface in the following step. With this configuration the PPTP-client can communicate with the internal net over the proxy-arp function, because of assigning an internal IP-address by the dial-in. fig. 4 VPN PPTP settings - tab General fig. 5 VPN PPTP settings - tab NS/WINS 6
1.4 Setting up users Over authentication select the tab New. Set up a PPTP-user with name, login, password, group membership and an IPaddress. fig. 6 creatig new user account fig. 7 setting group membership fig. 8 setting tunnel IP-address 7
2 Configuration of PPTP VPN roadwarrior under Windows 2.1 Setting up the VPN connection First, create a standard VPN connection with the network connection assistant. Start the assistant over start Control Panel Network and Internet Connections Network Connections Create a new connection or start Connect To Show all connections Create a new connection fig. 9 start Connection Wizard - click Next fig. 10 select Connect to network fig. 11 select VPN connection fig. 12 insert a name for the connection 8
HowTo: VPN with PPTP and the Windows VPN client fig. 13 insert the IP-address or hostname of the firewall fig. 14 finish the Wizard - you can create a shortcut if you want 2.2 Configure the settings of the VPN connection Open the Properties of the VPN connection in order to adjust additional settings. Then select Networking and adjust Type of VPN to PPTP-VPN fig. 15 insert user name and password as set on the firewall fig. 16 change VPN type to PPTP VPN
In the Properties of the Internet Protocol TCP/IP in the Advanced section the option use default gateway for the remote network can be selected. Now you can start the PPTP-connection. fig. 17 select Internet Protocol and click Properties fig. 18 click Advanced fig. 19 you can use the default gateway 10