ssl vpn split tunnel - d-link | building networks for people 1… · · 2012-10-15192.168.10....
TRANSCRIPT
t
tt
S
(LAN:192.168
Here we are tthe resource
In this scenartunnel. Normterminology.
DSR‐1000N
Step 1) Go to
8.10.1)DSR‐10
trying to buildof a company
rio the traffic mal internet tr
N Setup
o SETUP > VPN
000N(WAN) ‐
d a SSL VPN sy network.
of the SSL cliraffic will be s
N Settings > S
How to
SSL VPN
‐ ‐
| INTER
server on the
ent sending dsent through
SSL VPN serve
setup SSL VP
N Split Tu
‐ ‐ ‐ ‐ S
RNET
DSR‐1000N f
data to 192.1their local ISP
er > Portal Lay
PN
unnel
SSL Clients
for users who
68.10.0/24 wP, this setup i
youts.
o are able to r
will be forwardis called “split
Page
remotely con
ded via SSL Vt tunnel” in V
e 1 of 24
nect into
VPN VPN
S
‐‐‐
Step 2) Click
Under Portal ‐ Portal Layou‐ Portal Site T‐ Banner Mes
Next make su
“Add” to add
configurationut Name: EntTitle: Enter in ssage: Enter i
ure all of the
d a Portal.
n enter informer in a name a Title, this cn a Message,
boxes have b
How to
mation into thfor the Portacan be left bla this can be le
een selected
setup SSL VP
he following:l ank eft blank
then click “S
PN
Save Settings”
”.
Page
e 2 of 24
S
Step 3) Go to
Click “Add” t
o ADVANCE >
o create a do
Users > Dom
omain object.
How to
ains.
setup SSL VPPN Page
e 3 of 24
‐‐‐‐
Under Doma
‐ Domain Nam‐ Authenticat‐ Select Porta‐ Time out: Se
Click “Save Se
in enter in th
me: Enter in ation Type: Selal: Select the et to 360
ettings” once
e following:
a name for thect Local Usename of the P
e done.
How to
he Domain er DatabasePortal that w
setup SSL VP
as added bef
PN
fore
Page
e 4 of 24
S
Step 4) Go to
Click on “Add
o ADVANCED
d”
> Users > Us
How to
ers
setup SSL VP
PN Page
e 5 of 24
‐‐‐‐‐
S
Under User C‐ User Name:‐ First Name: ‐ Last Name: ‐ User Type: L‐ Select Grou
Once done se
Step 5) Go to
Configuration : A name for tFirst name oThe last namLeave as is (SSup: Enter in th
elect “Save Se
o TOOLS > Adm
enter in the the use(this isf user e SL VPN User) he name of th
ettings”
min > Remote
How to
following: s used when t
he Portal that
e Manageme
setup SSL VP
the user logs
t was added i
nt
PN
in).
n step 2.
Page
e 6 of 24
S
S
Select “Enabl
Step 6) Go to
le Remote M
o SETUP > VPN
anagement”
N Settings > S
How to
, then click “S
SSL VPN Client
setup SSL VP
Save Settings
t > SSL VPN C
PN
s”.
Client
Pagee 7 of 24
S
S
Select “Enabl
Step 7) Go to
le Split Tunne
o ADVANCED
el Support”.
> VPN Setting
How to
gs > SSL VPN
setup SSL VP
Client > Conf
PN
figured Client
Routes.
Page
e 8 of 24
Under Config
Under Destin
Once done cl
gured Client r
nation Netwo
ick “Save Set
outes click “A
rk enter in th
ttings”, this is
How to
Add”.
e LAN netwo
s the last step
setup SSL VP
rk then unde
p on the DSR‐
PN
er Subnet mas
1000N.
sk the local Su
Page
ubnet.
e 9 of 24
S
g
Client test
Step 1) Acces
Under Portal
NOTE: if the Igo in the plac
t / setup.
ss VPN Setting
Layouts you
IP seen is a prce of the priva
gs > SSL VPN
will see the e
rivate IP (as sate IP.
How to
Server > Port
entry that you
een below) y
setup SSL VP
tal Layouts.
u added befo
you need to fi
PN
re, next to it
nd out what
a URL, write d
the public IP
Page
down this ad
is, the public
e 10 of 24
dress.
c IP will
S
T
T
t
Step 2) From
In our examp
This will bringin on page 5
The first page
SSL VPN TunSSL Port Forthe DSR-100
the Client PC
ple its https://
g up a page aof the guide.
e that you wil
nnel: Used torwarding: Cre0N)
C enter in the
/192.168.10.
sking for a Us
ll see after log
o all full accesates a SSL tu
How to
Portal URL (a
16/portal/te
sername / pa
gging in expla
ss to the remounnel to the re
setup SSL VP
as seen in ste
st_custom_p
ssword, ente
ains the differ
ote site. emote site bu
PN
ep 1).
portal
er in the Usern
rent services
ut allow allows
name / Passw
available.
s access to ce
Page
word that you
ertain service
e 11 of 24
u entered
es (set on
S
T
Step 3) Selec
Then click on
Click on “OK
Next click on
ct VPN Tunne
n “SSL VPN
K” to close the
n the bar at th
el tab at the to
Tunnel”, this
e Information
e top of the p
How to
op of the pag
s will pop up a
bar.
page and sele
setup SSL VP
e
a box at the to
ect “Install Ac
PN
op of the page
ctiveX Contr
e and a warn
rol”.
Page
ing (as seen
e 12 of 24
below).
Y
You will see a
Under Digital
a Security Wa
Signature De
arning, Click
etails, Click “
How to
“OK”
“View Certific
setup SSL VP
cate”
PN
Pagee 13 of 24
Y
You should s
Step 4) You s
ee a new scr
should now se
een (Certifica
ee the “Certi
How to
ate), Click “In
ficate Import
setup SSL VP
stall Certific
t Wizard”, Cl
PN
cate” (found a
lick “Next”.
at the bottom
Page
of the pop up
e 14 of 24
p).
T
Leave the top
Then Click “
p option selec
Finish”.
cted then Clic
How to
ck “Next”.
setup SSL VP
PN Page
e 15 of 24
T
Y
Click “Yes”
Then Click “
You need to C
on the Securi
OK”
Click on “Inst
ity Warning.
tall Certificat
How to
te” a seconds
setup SSL VP
s time.
PN
Page
e 16 of 24
Once done C
If you get a S
Click “OK”.
Security Warn
ing Click on
How to
“OK”
setup SSL VP
PN
Pagee 17 of 24
How to setup SSL VPPN
Pagee 18 of 24
Port forward
How to setup SSL VPPN Page
e 19 of 24
How to setup SSL VPPN
Pagee 20 of 24
How to setup SSL VPPN
Pagee 21 of 24
How to setup SSL VPPN
Pagee 22 of 24
How to setup SSL VPPN
Pagee 23 of 24
How to setup SSL VPPN Pagee 24 of 24