Q. Should I use a VPN 3002 Hardware Client or the VPN Client software?
A. The VPN 3002 Hardware Client provides an alternative to deploying the
VPN client software to PCs or servers at remote locations. It is important to
understand that it is a hardware client, and that you configure it as a
client, not as a site-to-site connection. Reasons to use the VPN 3002 rather
than the software client include:
-
The computers at the remote site have operating systems other than Windows.
-
Using the VPN 3002 eliminates the need to install and maintain software on
those computers.
-
The VPN 3002 requires minimal configuration.
Q. What versions of operating systems support the VPN 3000 Client?
A. The VPN 3000 Client is supported on Microsoft Windows 95, Windows 98,
Windows 98SE, Windows NT 4.0 and Windows 2000. Keep in mind that Windows 95
requires at least DUN 1.2, and NT 4.0 requires SP 3 or higher.
Q. Will the VPN 3000 Client interoperate with ISP dialers built on Microsoft
Connection Manager?
A.
The VPN 3000 Client interoperates with ISP dialers built on Microsoft
Connection Manager v1.2 once you add an additional attribute to the connection
manager *.cms files. Open all of the *CMS files. Under the Connection Manager
heading, add the line: DoNotCheckBindings=1. Save the files.
Q. If I place my VPN 3000 Concentrator behind a firewall or router running
access control lists, which ports and protocols do I need to allow through?
A.
| Service |
Protocol Number |
Source Port |
Destination Port |
| PPTP Control Connection |
6 (TCP) |
1023 |
1723 |
| PPTP Tunnel Encapsulation |
47 (GRE) |
N/A |
N/A |
|
ISAKMP/IPSEC Key Management |
17 (UDP) |
500 |
500 |
|
IPSEC Tunnel Encapsulation |
50 (ESP) |
N/A |
N/A |
Q. What is the purpose of the group name and group password?
A.
The group name and group password are used to create a hash, which is then used
to create a security association.
Q. How can I tell which address was assigned to me after establishing a VPN
Client connection to the VPN Concentrator?
A.
The VPN Client icon on the taskbar lets you view the status of your private
network connection. Right-click the icon and select Status from the pop-up
menu. On the Status screen, you can see the Client IP address and the Server IP
address.
Q. Does the concentrator proxy arp on behalf of the tunneled user?
A.
Yes.
Q. What alternatives are available for UNIX, Mainframe, or clients not running
the supported operating system; or what if I don't want to install any software
on my computer?
A.
There is a VPN hardware client solution that is platform independent and can be
utilized in these cases.
|