VPN connection for Microsoft Windows systems

VPN service is used to connect external computers an specific the VLAN, with remote management purposes. Only the L2TP/IPSEC VPN protocol with digital certificates authentication is supported.

Computers with Windows 2000 or Windows XP without SP2 require update KBQ818043. You can only connect a single client from each public IP address (even behind a NAT), and each user can only maintain one VPN session simultaneously.

Requirements

To connect to the VPN service ask your system administrator:

  • File <customer>-VPNCA.crt
    • VPN Certification Authority.
    • This file can be downloaded from the SSL Certificates, page.
    • It can be identified as "VPN INTERNAL CA CERTIFICATE"
  • VPN IP address.
    • It is the same IP address used to access the Cloud management system.
    • It is the IP address corresponding to the name of your Cloud-Bricks node.
    • You can get by solving the name of your node through the nslookup command, for example:
      #nslookup sample1.cloud-bricks.net
  • The following information can be obtained from the VPN Users page.
    • File <user>-vpn.p12 (User certificate for the VPN connection).
    • File <user>-vpn.key (Private key connection)
    • Username and password with permissions to connect to the VPN.

Install Certification Authority

Execute the "mmc" command:


Enable Certificate Management Console:



Add the Snap-in certificates.


Manage Certificates for Local Computer:


Select Local computer.


  • Navigate to "Console Root" ā†’ "Certificates (Local Computer)" ā†’ "Trusted Root Certification Authorities" ā†’ "Certificates"..
  • Right click and choose the "All Tasks" ā†’ Import option


The "Certificate Import Wizard" starts:


Import the file xxxxxVPNCA.crt

Select where to store the certificate.

Install User Certificate

Now we will import the user certificate in the "Personal" folder

The installation wizard will open.

Select the file <user>-vpn.p12

The password to import the certificate is the same password used to connect the VPN.

Select where to store the certificate.


The process ends with success.

Create the VPN connection

In the Windows Control Panel, navigate to Network and sharing Center:


We will create a new network connection:

Select "Connect to a workplace".


Select "Use my Internet Connection (VPN)".

Place the cloud IP address  and choose a name for the connection. Important to select the "Do not connect now."

Place the username and password that your administrator gave you.


We still need to configure the VPN, please do not connect yet.


Configure the VPN

Network Center in the Control Panel choose "Change adapter settings".


Find the VPN connection that was created and edit its properties:

Configure the VPN according to the following image and then click on "Advanced Settings".

On the Network tab, choose the IPv4 protocol and click "Properties.

Click on "Advanced".

Disable the option to use the gateway of the remote network:

Close all windows by clicking "OK. The connection is ready for use.

Connect

In the Network Connections window, look for the VPN that was created and choose the "Connect"

Place the username and password given by your Administrator and click "Connect.


 

After a few seconds you will be connected to the VLAN of your virtual machines.

You can now connect to virtual machines on the corresponding VLAN using private IP network addresses 10.X.X.

If the connection was not successful, please check if all configuration steps were performed correctly and then contact your Administrator.


Other Languages
[an error occurred while processing this directive]