Network Appliance How To Guide: PPTP Client
Network Appliance How To Guide: PPTP Client
X
XROADS NETWORKS
Network Appliance How To Guide: PPTP Client
HowTo Guide
V 3 . 3
XRoads Networks
17165 Von Karman • Suite 112
888-9-XROADS
V 3 . 3
Table of Contents
PPTP Client Overview 3
C O M P ON E N T S
Firewall Settings 11
The next sections detail the setup and configuration of a PPTP client and how to
setup PPTP failover.
3
Setting Up The PPTP Client (Example Configuration)
This section provides a step-by-step overview of how to setup the PPTP client on a
Windows platform.
The first step is to create a VPN connection on the Windows PC. This can be done
via Microsoft’s built-in “New Connection Wizard”.
4
Step A – Network Connection Wizard
Once started the New Connection Wizard will show the following screen.
Select the “Connect to the network at my workplace” to create the new PPTP
connection.
5
Click the “Next” button to display the following screen.
Select the “Virtual Private Network connection” to create the new PPTP connection.
Now enter the connection name that you defined for this user.
6
Enter the IP address of the remote Edge appliance (a URL may also be used as long
as it can be properly resolved). NOTE: Ping to test URL.
Click the “Finish” button to return to the Control Panel->Network Connections screen.
7
Step B – PPTP Properties
Now that the PPTP tunnel has been created, several minor modifications need to be
made to get everything to work correctly with the Edge appliance.
Step 1) Click the Properties button and click the “Advanced (custom settings) radio
button, then click the “Settings” button as seen below.
8
Step 2) Select “Optional encryption” from the dropdown menu, then click the “Allow
these protocols radio button and make sure that ONLY the “Microsoft CHAP Version
2” is selected to ensure the highest authentication possible.
9
Tunnel Creation
Access the web GUI interface for the Edge appliance and select the EdgeWALL tab.
Then select the ‘Virtual Private Networking (PPTP)’ selection from the drop-down
menu. Then click the “Add Tunnel” button and use the steps below to create a new
client tunnel.
The following steps outline how to create a new client tunnel. This process should
work for all remote PPTP clients.
Step 2) Enter the connection name that was assigned during the client setup.
Step 4) The IP address will automatically be assigned from the pool designated in the
Address Range.
Step 5) Click the “Add / Update” button to create the tunnel information.
WARNING: Make sure to create a firewall rule to allow the PPTP addresses to
access the LAN network. The default is to block this access.
10
Firewall Settings
When creating PPTP clients, it is critical that you create a firewall rule to allow PPTP
connections to access the rest of the LAN network.
By default, PPTP clients can only communicate with the Edge appliance and each
other. By creating the firewall rule, as defined below, PPTP clients can access the
rest of the LAN.
The rule allows the PPTP LAN addresses to communicate with the rest of the LAN
network. If you are having any problems, make sure that the rule is configured
similar to that which is defined below:
11
PPTP Client Failover
In the event the primary PPTP tunnel fails, it should be able to re-establish itself using
the URL, if a URL was used when creating the PPTP client configuration on the
Windows system.
If a URL was not used, then a secondary PPTP tunnel would need to be configured
to provide failover via the secondary WAN IP address on the Edge appliance.
If a URL was used, for automated failover to work properly the DNS for that record
would need to be handled by the Edge appliance.
12